﻿"Time of Day","Process Name","PID","Operation","Path","Duration","Detail","TID"
"10:46:09.3867104 AM","firefox.exe","2652","Process Start","","0.0000000","Parent PID: 5436, Command line: ""C:\Program Files\Firefox Nightly\firefox.exe"" , Current directory: C:\Program Files\Firefox Nightly\, Environment: ;	=::=::\;	ALLUSERSPROFILE=C:\ProgramData;	APPDATA=C:\Users\diggles\AppData\Roaming;	CommonProgramFiles=C:\Program Files\Common Files;	CommonProgramFiles(x86)=C:\Program Files (x86)\Common Files;	CommonProgramW6432=C:\Program Files\Common Files;	COMPUTERNAME=LAPTOP-49TAGD3F;	ComSpec=C:\WINDOWS\system32\cmd.exe;	DriverData=C:\Windows\System32\Drivers\DriverData;	HOMEDRIVE=C:;	HOMEPATH=\Users\diggles;	LOCALAPPDATA=C:\Users\diggles\AppData\Local;	LOGONSERVER=\\LAPTOP-49TAGD3F;	NUMBER_OF_PROCESSORS=4;	OneDrive=C:\Users\diggles\OneDrive;	OS=Windows_NT;	Path=C:\Program Files\Firefox Nightly;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\WINDOWS\System32\OpenSSH\;C:\Users\diggles\AppData\Local\Microsoft\WindowsApps;;	PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC;	PROCESSOR_ARCHITECTURE=AMD64;	PROCESSOR_IDENTIFIER=Intel64 Family 6 Model 142 Stepping 9, GenuineIntel;	PROCESSOR_LEVEL=6;	PROCESSOR_REVISION=8e09;	ProgramData=C:\ProgramData;	ProgramFiles=C:\Program Files;	ProgramFiles(x86)=C:\Program Files (x86);	ProgramW6432=C:\Program Files;	PSModulePath=C:\Program Files\WindowsPowerShell\Modules;C:\WINDOWS\system32\WindowsPowerShell\v1.0\Modules;	PUBLIC=C:\Users\Public;	SESSIONNAME=Console;	SystemDrive=C:;	SystemRoot=C:\WINDOWS;	TEMP=C:\Users\diggles\AppData\Local\Temp;	TMP=C:\Users\diggles\AppData\Local\Temp;	USERDOMAIN=LAPTOP-49TAGD3F;	USERDOMAIN_ROAMINGPROFILE=LAPTOP-49TAGD3F;	USERNAME=diggles;	USERPROFILE=C:\Users\diggles;	windir=C:\WINDOWS","5960"
"10:46:09.3867163 AM","firefox.exe","2652","Thread Create","","0.0000000","Thread ID: 7980","5960"
"10:46:09.4375333 AM","firefox.exe","2652","Load Image","C:\Program Files\Firefox Nightly\firefox.exe","0.0000000","Image Base: 0x7ff7bb360000, Image Size: 0x93000","7980"
"10:46:09.4376357 AM","firefox.exe","2652","Load Image","C:\Windows\System32\ntdll.dll","0.0000000","Image Base: 0x7ffb49780000, Image Size: 0x1e1000","7980"
"10:46:09.4382040 AM","firefox.exe","2652","CreateFile","C:\Windows\Prefetch\FIREFOX.EXE-FD5AC7EC.pf","0.0000759","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","7980"
"10:46:09.4383341 AM","firefox.exe","2652","QueryStandardInformationFile","C:\Windows\Prefetch\FIREFOX.EXE-FD5AC7EC.pf","0.0000171","AllocationSize: 36,864, EndOfFile: 35,636, NumberOfLinks: 1, DeletePending: False, Directory: False","7980"
"10:46:09.4384211 AM","firefox.exe","2652","ReadFile","C:\Windows\Prefetch\FIREFOX.EXE-FD5AC7EC.pf","0.0001306","Offset: 0, Length: 35,636, Priority: Normal","7980"
"10:46:09.4405289 AM","firefox.exe","2652","CloseFile","C:\Windows\Prefetch\FIREFOX.EXE-FD5AC7EC.pf","0.0000469","","7980"
"10:46:09.7048979 AM","firefox.exe","2652","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\Segment Heap","0.0000162","Desired Access: Query Value","7980"
"10:46:09.7049341 AM","firefox.exe","2652","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager\Segment Heap","0.0000111","Desired Access: Query Value","7980"
"10:46:09.7050873 AM","firefox.exe","2652","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager","0.0000090","Desired Access: Query Value, Enumerate Sub Keys","7980"
"10:46:09.7051121 AM","firefox.exe","2652","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000110","Desired Access: Query Value, Enumerate Sub Keys","7980"
"10:46:09.7051441 AM","firefox.exe","2652","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\ResourcePolicies","0.0000072","Length: 24","7980"
"10:46:09.7051722 AM","firefox.exe","2652","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000030","","7980"
"10:46:09.7057994 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0220561","Offset: 363,008, Length: 512, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7980"
"10:46:09.7284256 AM","firefox.exe","2652","CreateFile","C:\Program Files\Firefox Nightly","0.0000495","Desired Access: Execute/Traverse, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7980"
"10:46:09.7286560 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0103275","Offset: 364,032, Length: 512, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7980"
"10:46:09.7392992 AM","firefox.exe","2652","Load Image","C:\Windows\System32\kernel32.dll","0.0000000","Image Base: 0x7ffb470b0000, Image Size: 0xb1000","7980"
"10:46:09.7397007 AM","firefox.exe","2652","Load Image","C:\Windows\System32\KernelBase.dll","0.0000000","Image Base: 0x7ffb46720000, Image Size: 0x273000","7980"
"10:46:09.7417734 AM","firefox.exe","2652","RegOpenKey","HKLM\System\CurrentControlSet\Control\SafeBoot\Option","0.0000158","Desired Access: Query Value, Set Value","7980"
"10:46:09.7418101 AM","firefox.exe","2652","RegOpenKey","HKLM\System\CurrentControlSet\Control\SafeBoot\Option","0.0000175","Desired Access: Query Value, Set Value","7980"
"10:46:09.7418481 AM","firefox.exe","2652","RegOpenKey","HKLM\System\CurrentControlSet\Control\Srp\GP\DLL","0.0000085","Desired Access: Read","7980"
"10:46:09.7418694 AM","firefox.exe","2652","RegOpenKey","HKLM\System\CurrentControlSet\Control\Srp\GP\DLL","0.0000158","Desired Access: Read","7980"
"10:46:09.7419014 AM","firefox.exe","2652","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers","0.0000244","Desired Access: Query Value","7980"
"10:46:09.7419475 AM","firefox.exe","2652","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Windows\safer\codeidentifiers\TransparentEnabled","0.0000068","Length: 80","7980"
"10:46:09.7419757 AM","firefox.exe","2652","RegCloseKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\safer\codeidentifiers","0.0000034","","7980"
"10:46:09.7420136 AM","firefox.exe","2652","RegOpenKey","HKCU\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers","0.0000141","Desired Access: Query Value","7980"
"10:46:09.7420887 AM","firefox.exe","2652","RegOpenKey","HKLM\System\CurrentControlSet\Control\FileSystem\","0.0000111","Desired Access: Read","7980"
"10:46:09.7421126 AM","firefox.exe","2652","RegOpenKey","HKLM\System\CurrentControlSet\Control\FileSystem","0.0000128","Desired Access: Read","7980"
"10:46:09.7421434 AM","firefox.exe","2652","RegQueryValue","HKLM\System\CurrentControlSet\Control\FileSystem\LongPathsEnabled","0.0000085","Type: REG_DWORD, Length: 4, Data: 0","7980"
"10:46:09.7421694 AM","firefox.exe","2652","RegCloseKey","HKLM\System\CurrentControlSet\Control\FileSystem","0.0000025","","7980"
"10:46:09.7427253 AM","firefox.exe","2652","CreateFile","C:\Program Files\Firefox Nightly","0.0000474","Desired Access: Execute/Traverse, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7980"
"10:46:09.7429190 AM","firefox.exe","2652","Thread Create","","0.0000000","Thread ID: 7096","7980"
"10:46:09.7431162 AM","firefox.exe","2652","Load Image","C:\Windows\System32\advapi32.dll","0.0000000","Image Base: 0x7ffb48a60000, Image Size: 0xa1000","7980"
"10:46:09.7435121 AM","firefox.exe","2652","Load Image","C:\Windows\System32\msvcrt.dll","0.0000000","Image Base: 0x7ffb48e80000, Image Size: 0x9e000","7980"
"10:46:09.7436712 AM","firefox.exe","2652","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000342","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7096"
"10:46:09.7437340 AM","firefox.exe","2652","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000081","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7096"
"10:46:09.7437630 AM","firefox.exe","2652","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000124","","7096"
"10:46:09.7438325 AM","firefox.exe","2652","Thread Create","","0.0000000","Thread ID: 6560","7980"
"10:46:09.7439755 AM","firefox.exe","2652","Load Image","C:\Windows\System32\sechost.dll","0.0000000","Image Base: 0x7ffb48e20000, Image Size: 0x5b000","7980"
"10:46:09.7442929 AM","firefox.exe","2652","Load Image","C:\Windows\System32\rpcrt4.dll","0.0000000","Image Base: 0x7ffb471a0000, Image Size: 0x124000","7980"
"10:46:09.7444495 AM","firefox.exe","2652","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000448","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7096"
"10:46:09.7445455 AM","firefox.exe","2652","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000119","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7096"
"10:46:09.7447170 AM","firefox.exe","2652","Thread Create","","0.0000000","Thread ID: 5724","7980"
"10:46:09.7447264 AM","firefox.exe","2652","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000081","SyncType: SyncTypeOther","7096"
"10:46:09.7448915 AM","firefox.exe","2652","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager","0.0000188","Desired Access: Query Value, Enumerate Sub Keys","6560"
"10:46:09.7449090 AM","firefox.exe","2652","Load Image","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000000","Image Base: 0x7ffb3c6d0000, Image Size: 0x8f000","7096"
"10:46:09.7449431 AM","firefox.exe","2652","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000154","Desired Access: Query Value, Enumerate Sub Keys","6560"
"10:46:09.7449743 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0097613","Offset: 541,696, Length: 1,024, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7096"
"10:46:09.7449935 AM","firefox.exe","2652","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\ResourcePolicies","0.0000107","Length: 24","6560"
"10:46:09.7450404 AM","firefox.exe","2652","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000051","","6560"
"10:46:09.7453327 AM","firefox.exe","2652","Load Image","C:\Windows\System32\ucrtbase.dll","0.0000000","Image Base: 0x7ffb45da0000, Image Size: 0xf8000","7980"
"10:46:09.7454995 AM","firefox.exe","2652","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000205","Desired Access: Query Value","5724"
"10:46:09.7455494 AM","firefox.exe","2652","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000145","Desired Access: Query Value","5724"
"10:46:09.7455942 AM","firefox.exe","2652","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\SafeDllSearchMode","0.0000103","Length: 16","5724"
"10:46:09.7465026 AM","firefox.exe","2652","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000354","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5724"
"10:46:09.7465094 AM","firefox.exe","2652","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000363","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7980"
"10:46:09.7465641 AM","firefox.exe","2652","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000081","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","5724"
"10:46:09.7465687 AM","firefox.exe","2652","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000077","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7980"
"10:46:09.7465939 AM","firefox.exe","2652","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000128","","5724"
"10:46:09.7465952 AM","firefox.exe","2652","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000124","","7980"
"10:46:09.7469152 AM","firefox.exe","2652","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000299","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7980"
"10:46:09.7469229 AM","firefox.exe","2652","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000311","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5724"
"10:46:09.7469916 AM","firefox.exe","2652","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000085","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5724"
"10:46:09.7469958 AM","firefox.exe","2652","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000107","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7980"
"10:46:09.7471469 AM","firefox.exe","2652","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000051","SyncType: SyncTypeOther","7980"
"10:46:09.7472241 AM","firefox.exe","2652","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000073","SyncType: SyncTypeOther","5724"
"10:46:09.7473056 AM","firefox.exe","2652","Load Image","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000000","Image Base: 0x7ffb3c6b0000, Image Size: 0x16000","7980"
"10:46:09.7473474 AM","firefox.exe","2652","Load Image","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000000","Image Base: 0x7ffb32080000, Image Size: 0x9b000","5724"
"10:46:09.7475356 AM","firefox.exe","2652","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000277","","7980"
"10:46:09.7475671 AM","firefox.exe","2652","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000180","","5724"
"10:46:09.7548542 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0109278","Offset: 554,496, Length: 512, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7096"
"10:46:09.7660179 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0006277","Offset: 517,632, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6560"
"10:46:09.7661084 AM","firefox.exe","2652","RegOpenKey","HKCU","0.0000200","Desired Access: Maximum Allowed, Granted Access: All Access","7096"
"10:46:09.7661698 AM","firefox.exe","2652","RegOpenKey","HKCU\Control Panel\Desktop\MuiCached\MachineLanguageConfiguration","0.0000282","Desired Access: Read","7096"
"10:46:09.7662308 AM","firefox.exe","2652","RegCloseKey","HKCU","0.0000035","","7096"
"10:46:09.7662607 AM","firefox.exe","2652","RegOpenKey","HKLM\Software\Policies\Microsoft\MUI\Settings","0.0000149","Desired Access: Read","7096"
"10:46:09.7663021 AM","firefox.exe","2652","RegOpenKey","HKCU","0.0000085","Desired Access: Maximum Allowed, Granted Access: All Access","7096"
"10:46:09.7663311 AM","firefox.exe","2652","RegOpenKey","HKCU\Software\Policies\Microsoft\Control Panel\Desktop","0.0000098","Desired Access: Read","7096"
"10:46:09.7663584 AM","firefox.exe","2652","RegOpenKey","HKCU\Control Panel\Desktop\LanguageConfiguration","0.0000141","Desired Access: Read","7096"
"10:46:09.7663972 AM","firefox.exe","2652","RegEnumValue","HKCU\Control Panel\Desktop\LanguageConfiguration","0.0000069","Index: 0, Length: 512","7096"
"10:46:09.7664301 AM","firefox.exe","2652","RegCloseKey","HKCU\Control Panel\Desktop\LanguageConfiguration","0.0000034","","7096"
"10:46:09.7664728 AM","firefox.exe","2652","RegCloseKey","HKCU","0.0000030","","7096"
"10:46:09.7665086 AM","firefox.exe","2652","RegOpenKey","HKLM\Software\Policies\Microsoft\MUI\Settings","0.0000175","Desired Access: Read","7096"
"10:46:09.7665594 AM","firefox.exe","2652","RegOpenKey","HKCU","0.0000132","Desired Access: Maximum Allowed, Granted Access: All Access","7096"
"10:46:09.7666038 AM","firefox.exe","2652","RegOpenKey","HKCU\Software\Policies\Microsoft\Control Panel\Desktop","0.0000110","Desired Access: Read","7096"
"10:46:09.7666400 AM","firefox.exe","2652","RegOpenKey","HKCU\Control Panel\Desktop","0.0000290","Desired Access: Read","7096"
"10:46:09.7666985 AM","firefox.exe","2652","RegQueryValue","HKCU\Control Panel\Desktop\PreferredUILanguages","0.0000119","Length: 12","7096"
"10:46:09.7667407 AM","firefox.exe","2652","RegCloseKey","HKCU\Control Panel\Desktop","0.0000039","","7096"
"10:46:09.7667731 AM","firefox.exe","2652","RegCloseKey","HKCU","0.0000035","","7096"
"10:46:09.7668064 AM","firefox.exe","2652","RegOpenKey","HKLM\Software\Policies\Microsoft\MUI\Settings","0.0000128","Desired Access: Read","7096"
"10:46:09.7668542 AM","firefox.exe","2652","RegOpenKey","HKCU","0.0000111","Desired Access: Maximum Allowed, Granted Access: All Access","7096"
"10:46:09.7668952 AM","firefox.exe","2652","RegOpenKey","HKCU\Control Panel\Desktop\MuiCached","0.0000200","Desired Access: Read","7096"
"10:46:09.7669489 AM","firefox.exe","2652","RegQueryValue","HKCU\Control Panel\Desktop\MuiCached\MachinePreferredUILanguages","0.0000081","Length: 12","7096"
"10:46:09.7669809 AM","firefox.exe","2652","RegQueryValue","HKCU\Control Panel\Desktop\MuiCached\MachinePreferredUILanguages","0.0000077","Type: REG_MULTI_SZ, Length: 12, Data: en-US","7096"
"10:46:09.7670249 AM","firefox.exe","2652","RegCloseKey","HKCU\Control Panel\Desktop\MuiCached","0.0000038","","7096"
"10:46:09.7670556 AM","firefox.exe","2652","RegCloseKey","HKCU","0.0000034","","7096"
"10:46:09.7672207 AM","firefox.exe","2652","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\SideBySide","0.0000209","Desired Access: Read","7096"
"10:46:09.7672681 AM","firefox.exe","2652","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest","0.0000089","Length: 20","7096"
"10:46:09.7673018 AM","firefox.exe","2652","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide","0.0000034","","7096"
"10:46:09.7673637 AM","firefox.exe","2652","CreateFile","C:\Program Files\Firefox Nightly\CRYPTBASE.DLL","0.0001194","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6560"
"10:46:09.7678240 AM","firefox.exe","2652","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000555","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7096"
"10:46:09.7680839 AM","firefox.exe","2652","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000358","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6560"
"10:46:09.7681457 AM","firefox.exe","2652","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000094","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","6560"
"10:46:09.7681760 AM","firefox.exe","2652","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000137","","6560"
"10:46:09.7684956 AM","firefox.exe","2652","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000559","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","6560"
"10:46:09.7686168 AM","firefox.exe","2652","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000089","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","6560"
"10:46:09.7686863 AM","firefox.exe","2652","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000043","SyncType: SyncTypeOther","6560"
"10:46:09.7688322 AM","firefox.exe","2652","Load Image","C:\Windows\System32\cryptbase.dll","0.0000000","Image Base: 0x7ffb45480000, Image Size: 0xb000","6560"
"10:46:09.7692034 AM","firefox.exe","2652","Load Image","C:\Windows\System32\bcryptprimitives.dll","0.0000000","Image Base: 0x7ffb46b90000, Image Size: 0x7a000","6560"
"10:46:09.7693869 AM","firefox.exe","2652","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000209","","6560"
"10:46:09.7693993 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0004424","Offset: 459,776, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5724"
"10:46:09.7698716 AM","firefox.exe","2652","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000243","","7096"
"10:46:09.7699339 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0006037","Offset: 476,160, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5724"
"10:46:09.7700525 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0004518","Offset: 534,016, Length: 7,680, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7096"
"10:46:09.7706537 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0004109","Offset: 504,832, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5724"
"10:46:09.7707864 AM","firefox.exe","2652","Load Image","C:\Windows\System32\crypt32.dll","0.0000000","Image Base: 0x7ffb469a0000, Image Size: 0x1e2000","7096"
"10:46:09.7711712 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0004049","Offset: 443,392, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5724"
"10:46:09.7712391 AM","firefox.exe","2652","Load Image","C:\Windows\System32\msasn1.dll","0.0000000","Image Base: 0x7ffb45b10000, Image Size: 0x12000","7096"
"10:46:09.7716376 AM","firefox.exe","2652","Load Image","C:\Windows\System32\wintrust.dll","0.0000000","Image Base: 0x7ffb45ea0000, Image Size: 0x57000","7096"
"10:46:09.7716875 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0003558","Offset: 533,504, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5724"
"10:46:09.7719682 AM","firefox.exe","2652","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000265","","7096"
"10:46:09.7721201 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0003128","Offset: 558,080, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5724"
"10:46:09.7726317 AM","firefox.exe","2652","CreateFile","C:\Program Files\Firefox Nightly\VERSION.dll","0.0000538","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6560"
"10:46:09.7730059 AM","firefox.exe","2652","CreateFile","C:\Program Files\Firefox Nightly\dbghelp.dll","0.0000324","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7096"
"10:46:09.7738452 AM","firefox.exe","2652","CreateFile","C:\Windows\System32\version.dll","0.0000558","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6560"
"10:46:09.7740030 AM","firefox.exe","2652","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000111","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","6560"
"10:46:09.7740431 AM","firefox.exe","2652","CloseFile","C:\Windows\System32\version.dll","0.0000188","","6560"
"10:46:09.7745594 AM","firefox.exe","2652","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000559","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7096"
"10:46:09.7747168 AM","firefox.exe","2652","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000103","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","7096"
"10:46:09.7747510 AM","firefox.exe","2652","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000166","","7096"
"10:46:09.7749221 AM","firefox.exe","2652","CreateFile","C:\Windows\System32\version.dll","0.0000465","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","6560"
"10:46:09.7750569 AM","firefox.exe","2652","CreateFileMapping","C:\Windows\System32\version.dll","0.0000179","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","6560"
"10:46:09.7750949 AM","firefox.exe","2652","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000320","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7096"
"10:46:09.7751409 AM","firefox.exe","2652","CreateFileMapping","C:\Windows\System32\version.dll","0.0000056","SyncType: SyncTypeOther","6560"
"10:46:09.7751815 AM","firefox.exe","2652","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000119","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7096"
"10:46:09.7752352 AM","firefox.exe","2652","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000047","SyncType: SyncTypeOther","7096"
"10:46:09.7753338 AM","firefox.exe","2652","Load Image","C:\Windows\System32\version.dll","0.0000000","Image Base: 0x7ffb39300000, Image Size: 0xa000","6560"
"10:46:09.7754285 AM","firefox.exe","2652","Load Image","C:\Windows\System32\dbghelp.dll","0.0000000","Image Base: 0x7ffb37030000, Image Size: 0x1c9000","7096"
"10:46:09.7756683 AM","firefox.exe","2652","CloseFile","C:\Windows\System32\version.dll","0.0000205","","6560"
"10:46:09.7756969 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0003934","Offset: 492,544, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5724"
"10:46:09.7757302 AM","firefox.exe","2652","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000213","","7096"
"10:46:09.7762793 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0003025","Offset: 555,008, Length: 512, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5724"
"10:46:09.7772730 AM","firefox.exe","2652","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Versions","0.0000196","Desired Access: Read","7980"
"10:46:09.7773285 AM","firefox.exe","2652","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Versions","0.0000183","Desired Access: Read","7980"
"10:46:09.7773912 AM","firefox.exe","2652","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Versions\(Default)","0.0000119","Type: REG_SZ, Length: 18, Data: 0006020E","7980"
"10:46:09.7775798 AM","firefox.exe","2652","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager","0.0000149","Desired Access: Query Value, Enumerate Sub Keys","7980"
"10:46:09.7776250 AM","firefox.exe","2652","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000149","Desired Access: Query Value, Enumerate Sub Keys","7980"
"10:46:09.7776741 AM","firefox.exe","2652","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\ResourcePolicies","0.0000106","Length: 24","7980"
"10:46:09.7777210 AM","firefox.exe","2652","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000047","","7980"
"10:46:09.7789225 AM","firefox.exe","2652","RegOpenKey","HKLM","0.0000145","Desired Access: Maximum Allowed, Granted Access: Read","7980"
"10:46:09.7789797 AM","firefox.exe","2652","RegQueryKey","HKLM","0.0000059","Query: HandleTags, HandleTags: 0x0","7980"
"10:46:09.7790215 AM","firefox.exe","2652","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\msasn1","0.0000205","Desired Access: Read","7980"
"10:46:09.7791000 AM","firefox.exe","2652","RegOpenKey","HKLM\SOFTWARE\Microsoft\AppModel\Lookaside\Packages","0.0000171","Desired Access: Read","7980"
"10:46:09.7804350 AM","firefox.exe","2652","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy","0.0000167","Desired Access: Query Value","7980"
"10:46:09.7804811 AM","firefox.exe","2652","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy","0.0000166","Desired Access: Query Value","7980"
"10:46:09.7805302 AM","firefox.exe","2652","RegQueryValue","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy\Enabled","0.0000102","Type: REG_DWORD, Length: 4, Data: 0","7980"
"10:46:09.7805733 AM","firefox.exe","2652","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000119","Desired Access: Query Value","7980"
"10:46:09.7806087 AM","firefox.exe","2652","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000132","Desired Access: Query Value","7980"
"10:46:09.7806496 AM","firefox.exe","2652","RegQueryValue","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy","0.0000099","Length: 20","7980"
"10:46:09.7806816 AM","firefox.exe","2652","RegQueryValue","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy\MDMEnabled","0.0000081","Type: REG_DWORD, Length: 4, Data: 0","7980"
"10:46:09.7807230 AM","firefox.exe","2652","RegCloseKey","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy","0.0000043","","7980"
"10:46:09.7807559 AM","firefox.exe","2652","RegCloseKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000038","","7980"
"10:46:09.7807913 AM","firefox.exe","2652","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Policies\Microsoft\Cryptography\Configuration","0.0000136","Desired Access: Query Value","7980"
"10:46:09.7808284 AM","firefox.exe","2652","RegOpenKey","HKLM\System\CurrentControlSet\Policies\Microsoft\Cryptography\Configuration","0.0000115","Desired Access: Query Value","7980"
"10:46:09.7810396 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0005850","Offset: 542,720, Length: 11,776, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7980"
"10:46:09.7817201 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0004395","Offset: 467,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7980"
"10:46:09.7821946 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0005632","Offset: 443,392, Length: 29,184, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7980"
"10:46:09.7835373 AM","firefox.exe","2652","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000380","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7980"
"10:46:09.7836056 AM","firefox.exe","2652","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000094","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7980"
"10:46:09.7836380 AM","firefox.exe","2652","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000132","","7980"
"10:46:09.7837472 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0003751","Offset: 488,960, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7980"
"10:46:09.7842661 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0004074","Offset: 107,520, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7980"
"10:46:09.7848169 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0004087","Offset: 295,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7980"
"10:46:09.7852606 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0003751","Offset: 295,936, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7980"
"10:46:09.7857202 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0096200","Offset: 1,024, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7980"
"10:46:09.7956666 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0091717","Offset: 350,720, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7980"
"10:46:09.8049129 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0105332","Offset: 295,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7980"
"10:46:09.8154708 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0110929","Offset: 271,360, Length: 30,208, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7980"
"10:46:09.8273441 AM","firefox.exe","2652","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000418","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7980"
"10:46:09.8274145 AM","firefox.exe","2652","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000094","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7980"
"10:46:09.8274456 AM","firefox.exe","2652","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000141","","7980"
"10:46:09.8275911 AM","firefox.exe","2652","QueryNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000103","Name: \Program Files\Firefox Nightly\firefox.exe","7980"
"10:46:09.8276739 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0100143","Offset: 317,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7980"
"10:46:09.8383282 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0013607","Offset: 66,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7980"
"10:46:09.8397243 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0005393","Offset: 66,560, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7980"
"10:46:09.8406625 AM","firefox.exe","2652","CreateFile","C:\Windows\explorer.exe","0.0000410","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7980"
"10:46:09.8408187 AM","firefox.exe","2652","QueryIdInformation","C:\Windows\explorer.exe","0.0000106","","7980"
"10:46:09.8408716 AM","firefox.exe","2652","CloseFile","C:\Windows\explorer.exe","0.0000153","","7980"
"10:46:09.8411745 AM","firefox.exe","2652","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000346","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7980"
"10:46:09.8412441 AM","firefox.exe","2652","QueryIdInformation","C:\Program Files\Firefox Nightly\firefox.exe","0.0000081","","7980"
"10:46:09.8412872 AM","firefox.exe","2652","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000115","","7980"
"10:46:09.8414177 AM","firefox.exe","2652","RegOpenKey","HKCU","0.0000162","Desired Access: Maximum Allowed, Granted Access: All Access","7980"
"10:46:09.8414629 AM","firefox.exe","2652","RegQueryKey","HKCU","0.0000035","Query: HandleTags, HandleTags: 0x0","7980"
"10:46:09.8414898 AM","firefox.exe","2652","RegCreateKey","HKCU\SOFTWARE\Mozilla\Firefox\Launcher","0.0000316","Desired Access: All Access, Disposition: REG_OPENED_EXISTING_KEY","7980"
"10:46:09.8415568 AM","firefox.exe","2652","RegQueryValue","HKCU\Software\Mozilla\Firefox\Launcher\C:\Program Files\Firefox Nightly\firefox.exe|Image","0.0000252","Type: REG_DWORD, Length: 4, Data: 1585133130","7980"
"10:46:09.8416008 AM","firefox.exe","2652","RegQueryValue","HKCU\Software\Mozilla\Firefox\Launcher\C:\Program Files\Firefox Nightly\firefox.exe|Launcher","0.0000328","Type: REG_QWORD, Length: 8, Data: ","7980"
"10:46:09.8416498 AM","firefox.exe","2652","RegQueryValue","HKCU\Software\Mozilla\Firefox\Launcher\C:\Program Files\Firefox Nightly\firefox.exe|Browser","0.0000137","Type: REG_QWORD, Length: 8, Data: ","7980"
"10:46:09.8418013 AM","firefox.exe","2652","ReadFile","C:\Windows\System32\KernelBase.dll","0.0083733","Offset: 2,154,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7980"
"10:46:09.8508040 AM","firefox.exe","2652","RegSetValue","HKCU\Software\Mozilla\Firefox\Launcher\C:\Program Files\Firefox Nightly\firefox.exe|Launcher","0.0001668","Type: REG_QWORD, Length: 8, Data: ","7980"
"10:46:09.8511649 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0005824","Offset: 1,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7980"
"10:46:09.8517977 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0004834","Offset: 1,024, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7980"
"10:46:09.8525879 AM","firefox.exe","2652","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options","0.0000354","Desired Access: Query Value, Enumerate Sub Keys","7980"
"10:46:09.8526787 AM","firefox.exe","2652","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000154","Desired Access: Query Value, Enumerate Sub Keys","7980"
"10:46:09.8527632 AM","firefox.exe","2652","RegOpenKey","HKLM\Software\Microsoft\Wow64\x86\xtajit","0.0000423","Desired Access: Query Value","7980"
"10:46:09.8534506 AM","firefox.exe","2652","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000751","Desired Access: Read Data/List Directory, Execute/Traverse, Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7980"
"10:46:09.8535965 AM","firefox.exe","2652","CreateFileMapping","C:\Program Files\Firefox Nightly\firefox.exe","0.0000171","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE","7980"
"10:46:09.8536985 AM","firefox.exe","2652","CreateFileMapping","C:\Program Files\Firefox Nightly\firefox.exe","0.0000072","SyncType: SyncTypeOther","7980"
"10:46:09.8538376 AM","firefox.exe","2652","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000166","Desired Access: Query Value, Enumerate Sub Keys","7980"
"10:46:09.8539447 AM","firefox.exe","2652","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000136","Information: Label","7980"
"10:46:09.8540961 AM","firefox.exe","2652","QueryNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000209","Name: \Program Files\Firefox Nightly\firefox.exe","7980"
"10:46:09.8551568 AM","firefox.exe","2652","RegOpenKey","HKLM\System\CurrentControlSet\Services\bam\UserSettings\S-1-5-21-429253301-29906273-2566354956-1001","0.0000329","Desired Access: All Access","7980"
"10:46:09.8552439 AM","firefox.exe","2652","RegQueryValue","HKLM\System\CurrentControlSet\Services\bam\UserSettings\S-1-5-21-429253301-29906273-2566354956-1001\\Device\HarddiskVolume3\Program Files\Firefox Nightly\firefox.exe","0.0000200","Type: REG_BINARY, Length: 24, Data: 8B 3B DC 6E 96 03 D6 01 00 00 00 00 00 00 00 00","7980"
"10:46:09.8553070 AM","firefox.exe","2652","RegSetValue","HKLM\System\CurrentControlSet\Services\bam\UserSettings\S-1-5-21-429253301-29906273-2566354956-1001\\Device\HarddiskVolume3\Program Files\Firefox Nightly\firefox.exe","0.0001041","Type: REG_BINARY, Length: 24, Data: C0 C1 23 6F 96 03 D6 01 00 00 00 00 00 00 00 00","7980"
"10:46:09.8554692 AM","firefox.exe","2652","RegCloseKey","HKLM\System\CurrentControlSet\Services\bam\UserSettings\S-1-5-21-429253301-29906273-2566354956-1001","0.0000081","","7980"
"10:46:09.8555246 AM","firefox.exe","2652","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\BAM","0.0000231","Desired Access: Query Value","7980"
"10:46:09.8555818 AM","firefox.exe","2652","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager\BAM","0.0000196","Desired Access: Query Value","7980"
"10:46:09.8557021 AM","firefox.exe","2652","Process Create","C:\Program Files\Firefox Nightly\firefox.exe","0.0000000","PID: 7384, Command line: ""C:\Program Files\Firefox Nightly\firefox.exe""","7980"
"10:46:09.8557277 AM","firefox.exe","7384","Process Start","","0.0000000","Parent PID: 2652, Command line: ""C:\Program Files\Firefox Nightly\firefox.exe"", Current directory: C:\Program Files\Firefox Nightly\, Environment: ;	=::=::\;	ALLUSERSPROFILE=C:\ProgramData;	APPDATA=C:\Users\diggles\AppData\Roaming;	CommonProgramFiles=C:\Program Files\Common Files;	CommonProgramFiles(x86)=C:\Program Files (x86)\Common Files;	CommonProgramW6432=C:\Program Files\Common Files;	COMPUTERNAME=LAPTOP-49TAGD3F;	ComSpec=C:\WINDOWS\system32\cmd.exe;	DriverData=C:\Windows\System32\Drivers\DriverData;	HOMEDRIVE=C:;	HOMEPATH=\Users\diggles;	LOCALAPPDATA=C:\Users\diggles\AppData\Local;	LOGONSERVER=\\LAPTOP-49TAGD3F;	NUMBER_OF_PROCESSORS=4;	OneDrive=C:\Users\diggles\OneDrive;	OS=Windows_NT;	Path=C:\Program Files\Firefox Nightly;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\WINDOWS\System32\OpenSSH\;C:\Users\diggles\AppData\Local\Microsoft\WindowsApps;;	PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC;	PROCESSOR_ARCHITECTURE=AMD64;	PROCESSOR_IDENTIFIER=Intel64 Family 6 Model 142 Stepping 9, GenuineIntel;	PROCESSOR_LEVEL=6;	PROCESSOR_REVISION=8e09;	ProgramData=C:\ProgramData;	ProgramFiles=C:\Program Files;	ProgramFiles(x86)=C:\Program Files (x86);	ProgramW6432=C:\Program Files;	PSModulePath=C:\Program Files\WindowsPowerShell\Modules;C:\WINDOWS\system32\WindowsPowerShell\v1.0\Modules;	PUBLIC=C:\Users\Public;	SESSIONNAME=Console;	SystemDrive=C:;	SystemRoot=C:\WINDOWS;	TEMP=C:\Users\diggles\AppData\Local\Temp;	TMP=C:\Users\diggles\AppData\Local\Temp;	USERDOMAIN=LAPTOP-49TAGD3F;	USERDOMAIN_ROAMINGPROFILE=LAPTOP-49TAGD3F;	USERNAME=diggles;	USERPROFILE=C:\Users\diggles;	windir=C:\WINDOWS","7980"
"10:46:09.8557648 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 5728","7980"
"10:46:09.8558847 AM","firefox.exe","2652","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager\AppCertDlls","0.0000205","Desired Access: Query Value","7980"
"10:46:09.8559334 AM","firefox.exe","2652","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager\AppCertDlls","0.0000166","Desired Access: Query Value","7980"
"10:46:09.8560042 AM","firefox.exe","2652","RegOpenKey","HKLM\System\CurrentControlSet\Control\SafeBoot\Option","0.0000154","Desired Access: Query Value, Set Value","7980"
"10:46:09.8560439 AM","firefox.exe","2652","RegOpenKey","HKLM\System\CurrentControlSet\Control\SafeBoot\Option","0.0000256","Desired Access: Query Value, Set Value","7980"
"10:46:09.8561023 AM","firefox.exe","2652","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers","0.0000269","Desired Access: Query Value","7980"
"10:46:09.8561633 AM","firefox.exe","2652","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Windows\safer\codeidentifiers\TransparentEnabled","0.0000128","Length: 80","7980"
"10:46:09.8562017 AM","firefox.exe","2652","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Windows\safer\codeidentifiers\AuthenticodeEnabled","0.0000120","Type: REG_DWORD, Length: 4, Data: 0","7980"
"10:46:09.8562517 AM","firefox.exe","2652","RegCloseKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\safer\codeidentifiers","0.0000055","","7980"
"10:46:09.8563152 AM","firefox.exe","2652","RegOpenKey","HKCU\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers","0.0000252","Desired Access: Query Value","7980"
"10:46:09.8565627 AM","firefox.exe","2652","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders","0.0000388","Desired Access: Query Value","7980"
"10:46:09.8566455 AM","firefox.exe","2652","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Cache","0.0000205","Type: REG_SZ, Length: 118, Data: C:\Users\diggles\AppData\Local\Microsoft\Windows\INetCache","7980"
"10:46:09.8567086 AM","firefox.exe","2652","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders","0.0000060","","7980"
"10:46:09.8567628 AM","firefox.exe","2652","RegOpenKey","HKCU\Software\Microsoft\Windows NT\CurrentVersion","0.0000209","Desired Access: Enumerate Sub Keys","7980"
"10:46:09.8568178 AM","firefox.exe","2652","RegOpenKey","HKCU\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Layers","0.0000248","Desired Access: Query Value","7980"
"10:46:09.8569296 AM","firefox.exe","2652","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000162","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7980"
"10:46:09.8574894 AM","firefox.exe","2652","CreateFile","C:\Windows\apppatch\sysmain.sdb","0.0000636","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","7980"
"10:46:09.8576669 AM","firefox.exe","2652","QueryBasicInformationFile","C:\Windows\apppatch\sysmain.sdb","0.0000175","CreationTime: 4/25/2019 5:35:45 PM, LastAccessTime: 4/25/2019 5:35:45 PM, LastWriteTime: 2/16/2019 1:02:22 AM, ChangeTime: 4/25/2019 8:14:04 PM, FileAttributes: A","7980"
"10:46:09.8577232 AM","firefox.exe","2652","CloseFile","C:\Windows\apppatch\sysmain.sdb","0.0000269","","7980"
"10:46:09.8578713 AM","firefox.exe","2652","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000107","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","7980"
"10:46:09.8581128 AM","firefox.exe","2652","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\SideBySide","0.0000303","Desired Access: Read","7980"
"10:46:09.8581806 AM","firefox.exe","2652","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest","0.0000132","Length: 20","7980"
"10:46:09.8582318 AM","firefox.exe","2652","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide","0.0000056","","7980"
"10:46:09.8605682 AM","firefox.exe","2652","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000333","","7980"
"10:46:09.8607270 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0007885","Offset: 29,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7980"
"10:46:09.8615837 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0006904","Offset: 29,696, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7980"
"10:46:09.8646783 AM","firefox.exe","2652","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000743","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","7980"
"10:46:09.8648388 AM","firefox.exe","2652","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000772","Offset: 264, Length: 8, Priority: Normal","7980"
"10:46:09.8650700 AM","firefox.exe","2652","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000341","","7980"
"10:46:09.8655999 AM","firefox.exe","7384","Load Image","C:\Program Files\Firefox Nightly\firefox.exe","0.0000000","Image Base: 0x7ff7bb360000, Image Size: 0x93000","5728"
"10:46:09.8656247 AM","firefox.exe","2652","Load Image","C:\Windows\System32\user32.dll","0.0000000","Image Base: 0x7ffb488d0000, Image Size: 0x190000","7980"
"10:46:09.8657028 AM","firefox.exe","7384","Load Image","C:\Windows\System32\ntdll.dll","0.0000000","Image Base: 0x7ffb49780000, Image Size: 0x1e1000","5728"
"10:46:09.8660671 AM","firefox.exe","2652","Load Image","C:\Windows\System32\win32u.dll","0.0000000","Image Base: 0x7ffb45f50000, Image Size: 0x20000","7980"
"10:46:09.8664981 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\Segment Heap","0.0000354","Desired Access: Query Value","5728"
"10:46:09.8665045 AM","firefox.exe","2652","Load Image","C:\Windows\System32\gdi32.dll","0.0000000","Image Base: 0x7ffb47170000, Image Size: 0x28000","7980"
"10:46:09.8666141 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager\Segment Heap","0.0000299","Desired Access: Query Value","5728"
"10:46:09.8669064 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager","0.0000196","Desired Access: Query Value, Enumerate Sub Keys","5728"
"10:46:09.8669913 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000290","Desired Access: Query Value, Enumerate Sub Keys","5728"
"10:46:09.8670596 AM","firefox.exe","2652","Load Image","C:\Windows\System32\gdi32full.dll","0.0000000","Image Base: 0x7ffb45c00000, Image Size: 0x192000","7980"
"10:46:09.8670702 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\ResourcePolicies","0.0000158","Length: 24","5728"
"10:46:09.8671317 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000064","","5728"
"10:46:09.8675583 AM","firefox.exe","2652","Load Image","C:\Windows\System32\msvcp_win.dll","0.0000000","Image Base: 0x7ffb46680000, Image Size: 0x9f000","7980"
"10:46:09.8691340 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000828","Desired Access: Execute/Traverse, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.8697540 AM","firefox.exe","7384","Load Image","C:\Windows\System32\kernel32.dll","0.0000000","Image Base: 0x7ffb470b0000, Image Size: 0xb1000","5728"
"10:46:09.8698692 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\kernel32.dll","0.0000277","Name: \Windows\System32\kernel32.dll","5728"
"10:46:09.8705796 AM","firefox.exe","7384","Load Image","C:\Windows\System32\KernelBase.dll","0.0000000","Image Base: 0x7ffb46720000, Image Size: 0x273000","5728"
"10:46:09.8707148 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\KernelBase.dll","0.0000282","Name: \Windows\System32\KernelBase.dll","5728"
"10:46:09.8709200 AM","firefox.exe","2652","CreateFile","C:\Windows\System32\imm32.dll","0.0000760","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7980"
"10:46:09.8711048 AM","firefox.exe","2652","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000183","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","7980"
"10:46:09.8711709 AM","firefox.exe","2652","CloseFile","C:\Windows\System32\imm32.dll","0.0000256","","7980"
"10:46:09.8716910 AM","firefox.exe","2652","CreateFile","C:\Windows\System32\imm32.dll","0.0000589","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7980"
"10:46:09.8718591 AM","firefox.exe","2652","CreateFileMapping","C:\Windows\System32\imm32.dll","0.0000150","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7980"
"10:46:09.8719193 AM","firefox.exe","2652","QueryStandardInformationFile","C:\Windows\System32\imm32.dll","0.0000145","AllocationSize: 176,128, EndOfFile: 173,648, NumberOfLinks: 2, DeletePending: False, Directory: False","7980"
"10:46:09.8720127 AM","firefox.exe","2652","CreateFileMapping","C:\Windows\System32\imm32.dll","0.0000077","SyncType: SyncTypeOther","7980"
"10:46:09.8722197 AM","firefox.exe","2652","CloseFile","C:\Windows\System32\imm32.dll","0.0000277","","7980"
"10:46:09.8726532 AM","firefox.exe","2652","Load Image","C:\Windows\System32\imm32.dll","0.0000000","Image Base: 0x7ffb48730000, Image Size: 0x2d000","7980"
"10:46:09.8746717 AM","firefox.exe","2652","CreateFile","C:\Windows\System32\imm32.dll","0.0000930","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7980"
"10:46:09.8749209 AM","firefox.exe","2652","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000239","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","7980"
"10:46:09.8750271 AM","firefox.exe","2652","CloseFile","C:\Windows\System32\imm32.dll","0.0000453","","7980"
"10:46:09.8752725 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\SafeBoot\Option","0.0000388","Desired Access: Query Value, Set Value","5728"
"10:46:09.8753617 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\SafeBoot\Option","0.0000435","Desired Access: Query Value, Set Value","5728"
"10:46:09.8754606 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Srp\GP\DLL","0.0000252","Desired Access: Read","5728"
"10:46:09.8755272 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Srp\GP\DLL","0.0000363","Desired Access: Read","5728"
"10:46:09.8756181 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers","0.0000397","Desired Access: Query Value","5728"
"10:46:09.8757111 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Windows\safer\codeidentifiers\TransparentEnabled","0.0000200","Length: 80","5728"
"10:46:09.8757913 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\safer\codeidentifiers","0.0000090","","5728"
"10:46:09.8759005 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers","0.0000384","Desired Access: Query Value","5728"
"10:46:09.8761122 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\FileSystem\","0.0000418","Desired Access: Read","5728"
"10:46:09.8761932 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\FileSystem","0.0000231","Desired Access: Read","5728"
"10:46:09.8762602 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\FileSystem\LongPathsEnabled","0.0000184","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:09.8763255 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\FileSystem","0.0000068","","5728"
"10:46:09.8766933 AM","firefox.exe","2652","CreateFile","C:\Windows\System32\imm32.dll","0.0000725","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7980"
"10:46:09.8769271 AM","firefox.exe","2652","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000149","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","7980"
"10:46:09.8769698 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000665","Desired Access: Execute/Traverse, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.8770090 AM","firefox.exe","2652","CloseFile","C:\Windows\System32\imm32.dll","0.0000295","","7980"
"10:46:09.8772390 AM","firefox.exe","2652","RegOpenKey","HKLM\System\CurrentControlSet\Control\Error Message Instrument\","0.0000486","Desired Access: Read","7980"
"10:46:09.8773465 AM","firefox.exe","7384","Load Image","C:\Windows\System32\advapi32.dll","0.0000000","Image Base: 0x7ffb48a60000, Image Size: 0xa1000","5728"
"10:46:09.8773550 AM","firefox.exe","2652","RegOpenKey","HKLM\System\CurrentControlSet\Control\Error Message Instrument","0.0000274","Desired Access: Read","7980"
"10:46:09.8774357 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\advapi32.dll","0.0000209","Name: \Windows\System32\advapi32.dll","5728"
"10:46:09.8775633 AM","firefox.exe","2652","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000213","Desired Access: Query Value, Enumerate Sub Keys","7980"
"10:46:09.8776490 AM","firefox.exe","2652","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Display","0.0000299","Desired Access: Read","7980"
"10:46:09.8777971 AM","firefox.exe","2652","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Display","0.0000333","Desired Access: Read","7980"
"10:46:09.8779238 AM","firefox.exe","2652","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000209","Desired Access: Query Value, Enumerate Sub Keys","7980"
"10:46:09.8779622 AM","firefox.exe","7384","Load Image","C:\Windows\System32\msvcrt.dll","0.0000000","Image Base: 0x7ffb48e80000, Image Size: 0x9e000","5728"
"10:46:09.8780074 AM","firefox.exe","2652","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Display","0.0000256","Desired Access: Read","7980"
"10:46:09.8780475 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\msvcrt.dll","0.0000226","Name: \Windows\System32\msvcrt.dll","5728"
"10:46:09.8780842 AM","firefox.exe","2652","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Display","0.0000214","Desired Access: Read","7980"
"10:46:09.8782280 AM","firefox.exe","2652","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\GRE_Initialize","0.0000320","Desired Access: Read","7980"
"10:46:09.8783261 AM","firefox.exe","2652","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize\DisableMetaFiles","0.0000150","Length: 20","7980"
"10:46:09.8785710 AM","firefox.exe","2652","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize","0.0000137","","7980"
"10:46:09.8786372 AM","firefox.exe","7384","Load Image","C:\Windows\System32\sechost.dll","0.0000000","Image Base: 0x7ffb48e20000, Image Size: 0x5b000","5728"
"10:46:09.8787921 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000388","Name: \Windows\System32\sechost.dll","5728"
"10:46:09.8791628 AM","firefox.exe","2652","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Control Panel\Desktop","0.0000359","Desired Access: Read","7980"
"10:46:09.8793024 AM","firefox.exe","2652","RegOpenKey","HKCU\Software\Policies\Microsoft\Windows\Control Panel\Desktop","0.0000315","Desired Access: Read","7980"
"10:46:09.8794150 AM","firefox.exe","2652","RegOpenKey","HKCU\Control Panel\Desktop","0.0000239","Desired Access: Read","7980"
"10:46:09.8794692 AM","firefox.exe","7384","Load Image","C:\Windows\System32\rpcrt4.dll","0.0000000","Image Base: 0x7ffb471a0000, Image Size: 0x124000","5728"
"10:46:09.8795131 AM","firefox.exe","2652","RegQueryValue","HKCU\Control Panel\Desktop\EnablePerProcessSystemDPI","0.0000205","Length: 20","7980"
"10:46:09.8796147 AM","firefox.exe","2652","RegCloseKey","HKCU\Control Panel\Desktop","0.0000072","","7980"
"10:46:09.8796185 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000282","Name: \Windows\System32\rpcrt4.dll","5728"
"10:46:09.8798835 AM","firefox.exe","2652","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\Compatibility32","0.0000529","Desired Access: Read","7980"
"10:46:09.8800187 AM","firefox.exe","2652","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Compatibility32\firefox","0.0000137","Length: 172","7980"
"10:46:09.8801092 AM","firefox.exe","2652","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Compatibility32","0.0000077","","7980"
"10:46:09.8801966 AM","firefox.exe","2652","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\IME Compatibility","0.0000274","Desired Access: Read","7980"
"10:46:09.8806301 AM","firefox.exe","7384","Load Image","C:\Windows\System32\ucrtbase.dll","0.0000000","Image Base: 0x7ffb45da0000, Image Size: 0xf8000","5728"
"10:46:09.8807342 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000397","Name: \Windows\System32\ucrtbase.dll","5728"
"10:46:09.8819575 AM","firefox.exe","2652","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000265","Desired Access: Query Value, Enumerate Sub Keys","7980"
"10:46:09.8828258 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000789","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.8829708 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000201","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","5728"
"10:46:09.8830711 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000273","","5728"
"10:46:09.8837457 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000699","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.8839014 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000171","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:09.8840968 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000171","SyncType: SyncTypeOther","5728"
"10:46:09.8844143 AM","firefox.exe","7384","Load Image","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000000","Image Base: 0x7ffb3c6d0000, Image Size: 0x8f000","5728"
"10:46:09.8845316 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000303","Name: \Program Files\Firefox Nightly\mozglue.dll","5728"
"10:46:09.8852317 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000295","Desired Access: Maximum Allowed, Granted Access: All Access","5728"
"10:46:09.8853346 AM","firefox.exe","7384","RegOpenKey","HKCU\Control Panel\Desktop\MuiCached\MachineLanguageConfiguration","0.0000256","Desired Access: Read","5728"
"10:46:09.8854263 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000098","","5728"
"10:46:09.8854959 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\MUI\Settings","0.0000456","Desired Access: Read","5728"
"10:46:09.8856098 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000443","Desired Access: Maximum Allowed, Granted Access: All Access","5728"
"10:46:09.8857139 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Policies\Microsoft\Control Panel\Desktop","0.0000239","Desired Access: Read","5728"
"10:46:09.8857890 AM","firefox.exe","7384","RegOpenKey","HKCU\Control Panel\Desktop\LanguageConfiguration","0.0000230","Desired Access: Read","5728"
"10:46:09.8858649 AM","firefox.exe","7384","RegEnumValue","HKCU\Control Panel\Desktop\LanguageConfiguration","0.0000145","Index: 0, Length: 512","5728"
"10:46:09.8859426 AM","firefox.exe","7384","RegCloseKey","HKCU\Control Panel\Desktop\LanguageConfiguration","0.0000094","","5728"
"10:46:09.8860083 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000072","","5728"
"10:46:09.8860770 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\MUI\Settings","0.0000273","Desired Access: Read","5728"
"10:46:09.8861704 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000213","Desired Access: Maximum Allowed, Granted Access: All Access","5728"
"10:46:09.8862532 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Policies\Microsoft\Control Panel\Desktop","0.0000213","Desired Access: Read","5728"
"10:46:09.8863279 AM","firefox.exe","7384","RegOpenKey","HKCU\Control Panel\Desktop","0.0000179","Desired Access: Read","5728"
"10:46:09.8864029 AM","firefox.exe","7384","RegQueryValue","HKCU\Control Panel\Desktop\PreferredUILanguages","0.0000214","Length: 12","5728"
"10:46:09.8865199 AM","firefox.exe","7384","RegCloseKey","HKCU\Control Panel\Desktop","0.0000123","","5728"
"10:46:09.8866278 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000081","","5728"
"10:46:09.8867089 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\MUI\Settings","0.0000256","Desired Access: Read","5728"
"10:46:09.8867942 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000192","Desired Access: Maximum Allowed, Granted Access: All Access","5728"
"10:46:09.8868599 AM","firefox.exe","7384","RegOpenKey","HKCU\Control Panel\Desktop\MuiCached","0.0000184","Desired Access: Read","5728"
"10:46:09.8869188 AM","firefox.exe","7384","RegQueryValue","HKCU\Control Panel\Desktop\MuiCached\MachinePreferredUILanguages","0.0000124","Length: 12","5728"
"10:46:09.8869657 AM","firefox.exe","7384","RegQueryValue","HKCU\Control Panel\Desktop\MuiCached\MachinePreferredUILanguages","0.0000128","Type: REG_MULTI_SZ, Length: 12, Data: en-US","5728"
"10:46:09.8870476 AM","firefox.exe","7384","RegCloseKey","HKCU\Control Panel\Desktop\MuiCached","0.0000069","","5728"
"10:46:09.8871087 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000064","","5728"
"10:46:09.8873459 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\SideBySide","0.0000281","Desired Access: Read","5728"
"10:46:09.8874060 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest","0.0000116","Length: 20","5728"
"10:46:09.8874479 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide","0.0000042","","5728"
"10:46:09.8880900 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000674","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.8891686 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000252","","5728"
"10:46:09.8896704 AM","firefox.exe","7384","Load Image","C:\Windows\System32\crypt32.dll","0.0000000","Image Base: 0x7ffb469a0000, Image Size: 0x1e2000","5728"
"10:46:09.8897736 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\crypt32.dll","0.0000252","Name: \Windows\System32\crypt32.dll","5728"
"10:46:09.8903121 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager","0.0000264","Desired Access: Query Value, Enumerate Sub Keys","5728"
"10:46:09.8903795 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000192","Desired Access: Query Value, Enumerate Sub Keys","5728"
"10:46:09.8904426 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\ResourcePolicies","0.0000180","Length: 24","5728"
"10:46:09.8905045 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000132","","5728"
"10:46:09.8907874 AM","firefox.exe","7384","Load Image","C:\Windows\System32\msasn1.dll","0.0000000","Image Base: 0x7ffb45b10000, Image Size: 0x12000","5728"
"10:46:09.8908612 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\msasn1.dll","0.0000303","Name: \Windows\System32\msasn1.dll","5728"
"10:46:09.8914274 AM","firefox.exe","7384","Load Image","C:\Windows\System32\wintrust.dll","0.0000000","Image Base: 0x7ffb45ea0000, Image Size: 0x57000","5728"
"10:46:09.8914986 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\wintrust.dll","0.0000197","Name: \Windows\System32\wintrust.dll","5728"
"10:46:09.8919872 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000350","","5728"
"10:46:09.8935526 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000222","Desired Access: Query Value","5728"
"10:46:09.8936081 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000175","Desired Access: Query Value","5728"
"10:46:09.8936614 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\SafeDllSearchMode","0.0000111","Length: 16","5728"
"10:46:09.8950366 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000644","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.8951424 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000136","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","5728"
"10:46:09.8951910 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000201","","5728"
"10:46:09.8962376 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000713","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.8963810 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000141","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:09.8966950 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000094","SyncType: SyncTypeOther","5728"
"10:46:09.8969250 AM","firefox.exe","7384","Load Image","C:\Windows\System32\msvcp140.dll","0.0000000","Image Base: 0x7ffb1dfe0000, Image Size: 0xa7000","5728"
"10:46:09.8970398 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\msvcp140.dll","0.0000273","Name: \Windows\System32\msvcp140.dll","5728"
"10:46:09.8973141 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\msvcp140.dll","0.0008772","Offset: 630,784, Length: 7,168, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.8983535 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\msvcp140.dll","0.0007949","Offset: 500,224, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.8994551 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\msvcp140.dll","0.0005722","Offset: 614,912, Length: 15,872, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9002701 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000337","","5728"
"10:46:09.9016580 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000657","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.9017698 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000141","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","5728"
"10:46:09.9018227 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000226","","5728"
"10:46:09.9024444 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000652","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.9025805 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000260","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:09.9027908 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000085","SyncType: SyncTypeOther","5728"
"10:46:09.9030174 AM","firefox.exe","7384","Load Image","C:\Windows\System32\vcruntime140.dll","0.0000000","Image Base: 0x7ffb3c690000, Image Size: 0x16000","5728"
"10:46:09.9030993 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000213","Name: \Windows\System32\vcruntime140.dll","5728"
"10:46:09.9032567 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\vcruntime140.dll","0.0004395","Offset: 67,584, Length: 1,024, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9039718 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\vcruntime140.dll","0.0004224","Offset: 61,440, Length: 6,144, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9045555 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000401","","5728"
"10:46:09.9064793 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000722","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.9066581 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000167","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","5728"
"10:46:09.9067157 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000231","","5728"
"10:46:09.9073340 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000567","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.9074842 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\version.dll","0.0000119","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:09.9075639 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\version.dll","0.0000060","SyncType: SyncTypeOther","5728"
"10:46:09.9078950 AM","firefox.exe","7384","Load Image","C:\Windows\System32\version.dll","0.0000000","Image Base: 0x7ffb39300000, Image Size: 0xa000","5728"
"10:46:09.9079957 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\version.dll","0.0000261","Name: \Windows\System32\version.dll","5728"
"10:46:09.9083575 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000342","","5728"
"10:46:09.9101530 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000341","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.9102310 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000069","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","5728"
"10:46:09.9102554 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000106","","5728"
"10:46:09.9105190 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000342","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.9106150 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000073","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:09.9106692 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000047","SyncType: SyncTypeOther","5728"
"10:46:09.9108279 AM","firefox.exe","7384","Load Image","C:\Windows\System32\dbghelp.dll","0.0000000","Image Base: 0x7ffb37030000, Image Size: 0x1c9000","5728"
"10:46:09.9108860 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\dbghelp.dll","0.0000102","Name: \Windows\System32\dbghelp.dll","5728"
"10:46:09.9111010 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000141","","5728"
"10:46:09.9115089 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.9115533 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000059","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","5728"
"10:46:09.9115720 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000082","","5728"
"10:46:09.9119219 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.9119612 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000051","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","5728"
"10:46:09.9119782 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000077","","5728"
"10:46:09.9123110 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.9123456 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000051","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","5728"
"10:46:09.9123622 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000077","","5728"
"10:46:09.9132092 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.9132506 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000055","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","5728"
"10:46:09.9132693 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000081","","5728"
"10:46:09.9134630 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000218","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.9135104 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:09.9135484 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000034","SyncType: SyncTypeOther","5728"
"10:46:09.9136610 AM","firefox.exe","7384","Load Image","C:\Windows\System32\cryptbase.dll","0.0000000","Image Base: 0x7ffb45480000, Image Size: 0xb000","5728"
"10:46:09.9137067 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\cryptbase.dll","0.0000128","Name: \Windows\System32\cryptbase.dll","5728"
"10:46:09.9139806 AM","firefox.exe","7384","Load Image","C:\Windows\System32\bcryptprimitives.dll","0.0000000","Image Base: 0x7ffb46b90000, Image Size: 0x7a000","5728"
"10:46:09.9140284 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000115","Name: \Windows\System32\bcryptprimitives.dll","5728"
"10:46:09.9142306 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000188","","5728"
"10:46:09.9147729 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.9148301 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000081","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","5728"
"10:46:09.9148595 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000145","","5728"
"10:46:09.9149956 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\msvcp140.dll","0.0007100","Offset: 520,704, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9157965 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\msvcp140.dll","0.0003183","Offset: 553,472, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9161745 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\msvcp140.dll","0.0006084","Offset: 516,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9168452 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\msvcp140.dll","0.0002919","Offset: 582,144, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9172053 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\msvcp140.dll","0.0002944","Offset: 598,528, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9179554 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\msvcp140.dll","0.0007382","Offset: 537,088, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9193459 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Versions","0.0000141","Desired Access: Read","5728"
"10:46:09.9193843 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Versions","0.0000115","Desired Access: Read","5728"
"10:46:09.9194236 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Versions\(Default)","0.0000077","Type: REG_SZ, Length: 18, Data: 0006020E","5728"
"10:46:09.9195354 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager","0.0000076","Desired Access: Query Value, Enumerate Sub Keys","5728"
"10:46:09.9195593 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000081","Desired Access: Query Value, Enumerate Sub Keys","5728"
"10:46:09.9195844 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\ResourcePolicies","0.0000060","Length: 24","5728"
"10:46:09.9196198 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000039","","5728"
"10:46:09.9205133 AM","firefox.exe","7384","RegOpenKey","HKLM","0.0000085","Desired Access: Maximum Allowed, Granted Access: Read","5728"
"10:46:09.9205474 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:09.9205692 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\msasn1","0.0000132","Desired Access: Read","5728"
"10:46:09.9206123 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\AppModel\Lookaside\Packages","0.0000102","Desired Access: Read","5728"
"10:46:09.9210253 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\vcruntime140.dll","0.0003422","Offset: 68,608, Length: 2,560, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9214191 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\vcruntime140.dll","0.0002748","Offset: 46,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9217186 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\vcruntime140.dll","0.0003469","Offset: 21,504, Length: 31,744, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9221547 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\vcruntime140.dll","0.0002922","Offset: 13,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9224691 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\vcruntime140.dll","0.0002876","Offset: 1,024, Length: 20,480, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9229530 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\msvcp140.dll","0.0003575","Offset: 642,048, Length: 13,312, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9233685 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\msvcp140.dll","0.0006183","Offset: 442,880, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9240444 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\msvcp140.dll","0.0005884","Offset: 349,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9246562 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\msvcp140.dll","0.0006707","Offset: 340,992, Length: 32,256, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9254955 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\msvcp140.dll","0.0003682","Offset: 637,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9258889 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\msvcp140.dll","0.0005939","Offset: 58,368, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9269551 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\msvcp140.dll","0.0005210","Offset: 1,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9275047 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\msvcp140.dll","0.0003430","Offset: 1,024, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9279445 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\msvcp140.dll","0.0003700","Offset: 254,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9283435 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\msvcp140.dll","0.0003417","Offset: 254,976, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9288043 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\msvcp140.dll","0.0005154","Offset: 103,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9293538 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\msvcp140.dll","0.0003439","Offset: 103,424, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9299000 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\msvcp140.dll","0.0005521","Offset: 54,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9304841 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\msvcp140.dll","0.0005448","Offset: 33,792, Length: 24,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9311006 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\msvcp140.dll","0.0004352","Offset: 397,824, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9316160 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\msvcp140.dll","0.0003384","Offset: 426,496, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9323055 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy","0.0000132","Desired Access: Query Value","5728"
"10:46:09.9323388 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy","0.0000107","Desired Access: Query Value","5728"
"10:46:09.9323699 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy\Enabled","0.0000069","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:09.9323943 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000064","Desired Access: Query Value","5728"
"10:46:09.9324280 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000098","Desired Access: Query Value","5728"
"10:46:09.9324557 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy","0.0000055","Length: 20","5728"
"10:46:09.9324851 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy\MDMEnabled","0.0000060","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:09.9325120 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy","0.0000026","","5728"
"10:46:09.9325304 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000021","","5728"
"10:46:09.9325479 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Policies\Microsoft\Cryptography\Configuration","0.0000076","Desired Access: Query Value","5728"
"10:46:09.9325666 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Policies\Microsoft\Cryptography\Configuration","0.0000064","Desired Access: Query Value","5728"
"10:46:09.9332331 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000853","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.9333560 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000089","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","5728"
"10:46:09.9334084 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000214","","5728"
"10:46:09.9344777 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000576","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.9345694 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000128","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","5728"
"10:46:09.9346048 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000184","","5728"
"10:46:09.9349009 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000248","Name: \Program Files\Firefox Nightly\firefox.exe","5728"
"10:46:09.9358025 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000311","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.9358887 AM","firefox.exe","7384","QueryIdInformation","C:\Program Files\Firefox Nightly\firefox.exe","0.0000076","","5728"
"10:46:09.9359266 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000111","","5728"
"10:46:09.9362095 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000324","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.9362705 AM","firefox.exe","7384","QueryIdInformation","C:\Program Files\Firefox Nightly\firefox.exe","0.0000069","","5728"
"10:46:09.9362957 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000094","","5728"
"10:46:09.9364092 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000162","Desired Access: Maximum Allowed, Granted Access: All Access","5728"
"10:46:09.9364519 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000051","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:09.9364766 AM","firefox.exe","7384","RegCreateKey","HKCU\SOFTWARE\Mozilla\Firefox\Launcher","0.0000107","Desired Access: All Access, Disposition: REG_OPENED_EXISTING_KEY","5728"
"10:46:09.9365129 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Mozilla\Firefox\Launcher\C:\Program Files\Firefox Nightly\firefox.exe|Image","0.0000136","Type: REG_DWORD, Length: 4, Data: 1585133130","5728"
"10:46:09.9365666 AM","firefox.exe","7384","RegSetValue","HKCU\Software\Mozilla\Firefox\Launcher\C:\Program Files\Firefox Nightly\firefox.exe|Browser","0.0000367","Type: REG_QWORD, Length: 8, Data: ","5728"
"10:46:09.9366447 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Mozilla\Firefox\Launcher","0.0000034","","5728"
"10:46:09.9367360 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0004143","Offset: 201,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9371746 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0003550","Offset: 201,728, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9376098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0003316","Offset: 189,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9379627 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0003806","Offset: 168,960, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9385144 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0003230","Offset: 160,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9388574 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0003503","Offset: 144,384, Length: 24,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:09.9397231 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000295","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.9397760 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000069","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","5728"
"10:46:09.9398016 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000098","","5728"
"10:46:09.9400858 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\dependentlibs.list","0.0004898","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.9406575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\dependentlibs.list","0.0001174","Offset: 0, Length: 476, Priority: Normal","5728"
"10:46:09.9407318 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\dependentlibs.list","0.0000175","Offset: 0, Length: 476, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9410693 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000460","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.9411503 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:09.9411866 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000034","SyncType: SyncTypeOther","5728"
"10:46:09.9413206 AM","firefox.exe","7384","Load Image","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000000","Image Base: 0x7ffb3c6b0000, Image Size: 0x16000","5728"
"10:46:09.9413513 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000085","Name: \Program Files\Firefox Nightly\vcruntime140.dll","5728"
"10:46:09.9414153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0004318","Offset: 33,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9414742 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0004723","Offset: 37,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9420088 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000106","","5728"
"10:46:09.9423045 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000157","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.9423318 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","5728"
"10:46:09.9423450 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000051","","5728"
"10:46:09.9424662 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000128","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.9424965 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:09.9425319 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000025","SyncType: SyncTypeOther","5728"
"10:46:09.9425844 AM","firefox.exe","7384","Load Image","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000000","Image Base: 0x7ffb3c6b0000, Image Size: 0x16000","5728"
"10:46:09.9426074 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000068","Name: \Program Files\Firefox Nightly\vcruntime140.dll","5728"
"10:46:09.9427380 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000093","","5728"
"10:46:09.9429560 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000162","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.9429897 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:09.9430110 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000017","SyncType: SyncTypeOther","5728"
"10:46:09.9431168 AM","firefox.exe","7384","Load Image","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000000","Image Base: 0x7ffb32080000, Image Size: 0x9b000","5728"
"10:46:09.9431450 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000072","Name: \Program Files\Firefox Nightly\msvcp140.dll","5728"
"10:46:09.9431817 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0025873","Offset: 5,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9432329 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0026790","Offset: 9,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9432589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0030080","Offset: 17,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9432807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0030767","Offset: 21,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9433029 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0034713","Offset: 29,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9433276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0035089","Offset: 62,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9433477 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0039014","Offset: 70,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9433677 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0039851","Offset: 74,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9433980 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0043618","Offset: 78,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9434317 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0043776","Offset: 82,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9434522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0044523","Offset: 87,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9434727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0049280","Offset: 99,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9434936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0050236","Offset: 111,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9435136 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0054268","Offset: 115,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9435337 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0054315","Offset: 119,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9435533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0055100","Offset: 123,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9435751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0058952","Offset: 128,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9435956 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0059793","Offset: 132,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9436160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0063689","Offset: 136,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9436378 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0064576","Offset: 140,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9436591 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0067853","Offset: 144,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9436800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0068732","Offset: 148,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9437014 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0073118","Offset: 152,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9437304 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0074048","Offset: 156,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9437568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0073332","Offset: 160,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9437790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0074129","Offset: 164,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9438021 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0078856","Offset: 168,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9438345 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0079650","Offset: 173,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9438588 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0083111","Offset: 177,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9438814 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0083141","Offset: 181,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9439062 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0084284","Offset: 185,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9439326 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0088845","Offset: 189,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9439535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0089033","Offset: 193,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9439732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0089689","Offset: 197,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9439936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0094767","Offset: 201,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9440137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0095010","Offset: 205,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9440342 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0095833","Offset: 214,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9440547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0099844","Offset: 218,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9440743 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0100983","Offset: 222,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9440918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0104422","Offset: 226,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9441093 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0105293","Offset: 230,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9441268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0105386","Offset: 234,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9441430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0110084","Offset: 238,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9441605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0111078","Offset: 242,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9441780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0114969","Offset: 246,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9441946 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0115217","Offset: 250,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9442112 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0115836","Offset: 254,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9442283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0120474","Offset: 259,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9442518 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0121583","Offset: 263,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9442769 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0126076","Offset: 267,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9442991 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0126277","Offset: 271,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9443153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0130488","Offset: 275,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9443324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0131354","Offset: 279,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9443486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0135339","Offset: 283,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9443648 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0136167","Offset: 287,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9443828 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0139592","Offset: 291,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9444015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0140404","Offset: 295,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9444203 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0143932","Offset: 316,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9444369 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0144760","Offset: 320,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9444540 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0148186","Offset: 324,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9444745 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0149112","Offset: 340,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9444945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0152538","Offset: 345,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9445146 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0153353","Offset: 349,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9445317 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0157491","Offset: 353,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9445556 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0158182","Offset: 361,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9445773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0158938","Offset: 365,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9445957 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0158899","Offset: 369,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9446161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0159681","Offset: 373,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9446362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0160452","Offset: 377,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9446563 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0160409","Offset: 381,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9446759 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0161527","Offset: 386,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9446964 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0161502","Offset: 390,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9447168 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0162556","Offset: 394,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9447386 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0162240","Offset: 398,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9447599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0163273","Offset: 402,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9447787 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0163260","Offset: 406,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9447962 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0164263","Offset: 410,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9448133 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0164271","Offset: 414,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9448299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0165308","Offset: 418,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9448470 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0165077","Offset: 422,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9448640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0166076","Offset: 427,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9448815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0166076","Offset: 431,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9448990 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0167070","Offset: 435,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9449157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0166848","Offset: 439,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9449455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0167459","Offset: 521,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9449626 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0168026","Offset: 525,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9449792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0168658","Offset: 529,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9449980 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0168662","Offset: 549,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9450159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0169093","Offset: 553,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9450394 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0169558","Offset: 588,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9450603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0169971","Offset: 592,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9450778 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0170381","Offset: 596,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9450940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0170846","Offset: 600,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9451124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0171166","Offset: 604,672, Length: 512, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9622947 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000102","","5728"
"10:46:09.9625810 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.9626087 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","5728"
"10:46:09.9626228 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000051","","5728"
"10:46:09.9627789 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000150","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.9628101 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:09.9628357 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000017","SyncType: SyncTypeOther","5728"
"10:46:09.9629116 AM","firefox.exe","7384","Load Image","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000000","Image Base: 0x7ffb32080000, Image Size: 0x9b000","5728"
"10:46:09.9629368 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000056","Name: \Program Files\Firefox Nightly\msvcp140.dll","5728"
"10:46:09.9631015 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000073","","5728"
"10:46:09.9635303 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000235","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.9635789 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:09.9636148 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000034","SyncType: SyncTypeOther","5728"
"10:46:09.9637347 AM","firefox.exe","7384","Load Image","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000000","Image Base: 0x29207f70000, Image Size: 0x8f000","5728"
"10:46:09.9637684 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000081","Name: \Program Files\Firefox Nightly\mozglue.dll","5728"
"10:46:09.9638221 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0026825","Offset: 50,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9639015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0026411","Offset: 78,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9639459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0026974","Offset: 87,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9639843 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0032209","Offset: 91,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9640210 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0032170","Offset: 95,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9640572 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0032141","Offset: 99,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9641114 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0038242","Offset: 234,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9641366 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0039177","Offset: 238,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9641575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0038869","Offset: 242,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9641784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0038963","Offset: 246,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9641993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0044617","Offset: 250,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9642283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0045325","Offset: 254,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9642582 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0045521","Offset: 259,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9642876 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0049933","Offset: 263,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9643102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0050996","Offset: 267,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9643388 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0056265","Offset: 279,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9643649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0056256","Offset: 283,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9643858 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0057037","Offset: 287,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9644062 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0059661","Offset: 291,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9644314 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0060638","Offset: 328,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9644519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0060634","Offset: 332,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9644728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0061107","Offset: 336,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9644976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0061619","Offset: 340,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9645283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0062054","Offset: 345,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9645492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0062498","Offset: 349,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9645701 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0062639","Offset: 353,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9645910 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0063394","Offset: 357,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9646110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0063868","Offset: 361,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9646315 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0063834","Offset: 365,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9646516 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0064260","Offset: 369,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9646721 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0064678","Offset: 373,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9646930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0065557","Offset: 377,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9647169 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0065659","Offset: 381,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9647403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0066270","Offset: 386,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9647638 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0066726","Offset: 390,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9647873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0066658","Offset: 394,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9648116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0066991","Offset: 398,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9648282 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0067414","Offset: 402,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9648487 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0067921","Offset: 406,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9648726 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0068437","Offset: 410,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9648914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0068928","Offset: 414,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9649072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0068936","Offset: 418,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9649259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0069312","Offset: 422,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9649413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0069854","Offset: 427,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9649562 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0070575","Offset: 431,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9649716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0070797","Offset: 435,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9649865 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0071254","Offset: 439,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9722356 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000171","","5728"
"10:46:09.9724613 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000218","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:09.9725082 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000052","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:09.9726332 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000030","SyncType: SyncTypeOther","5728"
"10:46:09.9727096 AM","firefox.exe","7384","Load Image","C:\Program Files\Firefox Nightly\nss3.dll","0.0000000","Image Base: 0x7ffb1da70000, Image Size: 0x21d000","5728"
"10:46:09.9727566 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000072","Name: \Program Files\Firefox Nightly\nss3.dll","5728"
"10:46:09.9728043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0027678","Offset: 1,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9728773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0028228","Offset: 5,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9729123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0031531","Offset: 9,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9729532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0033007","Offset: 13,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9729737 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0036817","Offset: 17,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9729942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0036412","Offset: 21,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9730164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0037286","Offset: 25,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9730347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0043004","Offset: 29,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9730539 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0042599","Offset: 33,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9730821 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0043452","Offset: 37,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9731086 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0048520","Offset: 41,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9731350 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0048056","Offset: 46,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9731627 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0048918","Offset: 50,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9731905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0053888","Offset: 54,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9732203 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0053876","Offset: 58,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9732494 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0054711","Offset: 62,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9732818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0059528","Offset: 66,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9733121 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0059025","Offset: 70,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9733415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0059849","Offset: 74,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9733714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0065131","Offset: 78,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9734000 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0065139","Offset: 82,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9734268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0065763","Offset: 87,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9734576 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0066551","Offset: 91,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9734874 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0071582","Offset: 95,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9735164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0072359","Offset: 99,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9735480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0075653","Offset: 103,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9735770 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0076404","Offset: 107,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9736069 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0079719","Offset: 111,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9736329 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0080286","Offset: 115,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9736560 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0080840","Offset: 119,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9736782 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0085670","Offset: 123,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9737003 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0086499","Offset: 128,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9737174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0090018","Offset: 132,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9737336 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0090868","Offset: 136,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9737554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0094029","Offset: 140,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9737780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0094558","Offset: 144,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9737955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0111825","Offset: 148,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9738147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0113011","Offset: 152,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9738326 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0117615","Offset: 156,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9738492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0118994","Offset: 160,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9738655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0122948","Offset: 164,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9738817 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0124382","Offset: 168,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9738979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0128905","Offset: 173,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9739150 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0130594","Offset: 177,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9739312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0134724","Offset: 181,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9739482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0136500","Offset: 185,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9739653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0140600","Offset: 189,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9739794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0143010","Offset: 193,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9739930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0144862","Offset: 197,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9740067 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0150370","Offset: 201,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9740199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0153357","Offset: 205,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9740340 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0158579","Offset: 209,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9740498 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0161054","Offset: 214,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9740639 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0166233","Offset: 218,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9740779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0169037","Offset: 222,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9740920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0174895","Offset: 226,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9741057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0177924","Offset: 230,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9741206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0183642","Offset: 234,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9741343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0186837","Offset: 238,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9741496 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0200999","Offset: 242,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9741637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0231399","Offset: 246,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9741769 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0241737","Offset: 250,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9741906 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0243226","Offset: 254,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9742047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0250368","Offset: 259,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9742187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0251785","Offset: 263,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9742328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0259175","Offset: 267,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9742524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0301402","Offset: 271,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9742665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0304176","Offset: 275,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9742806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0306872","Offset: 279,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9742938 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0314595","Offset: 283,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9743075 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0317479","Offset: 287,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9743216 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0320218","Offset: 291,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9743356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0327980","Offset: 295,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9743493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0330688","Offset: 300,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9743630 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0333342","Offset: 304,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9743800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0340728","Offset: 308,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9743937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0343902","Offset: 312,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9744073 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0345247","Offset: 316,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9744214 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0354433","Offset: 320,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9744351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0357214","Offset: 324,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9744491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0359945","Offset: 328,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9744628 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0367945","Offset: 332,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9744764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0370651","Offset: 336,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9744901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0373351","Offset: 340,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9745033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0380899","Offset: 345,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9745174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0383907","Offset: 349,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9745311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0386637","Offset: 353,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9745447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0394032","Offset: 357,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9745596 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0396839","Offset: 361,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9745780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0405052","Offset: 365,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9745934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0414468","Offset: 369,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9746079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0417511","Offset: 373,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9746219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0418680","Offset: 377,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9746356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0428131","Offset: 381,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9746497 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0431036","Offset: 386,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9746659 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0433775","Offset: 390,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9746830 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0441698","Offset: 394,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9746983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0442864","Offset: 398,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9747137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0445777","Offset: 402,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9747290 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0454956","Offset: 406,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9747452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0457017","Offset: 410,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9747598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0459200","Offset: 414,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9747743 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0468241","Offset: 418,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9747900 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0470183","Offset: 422,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9748050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0472726","Offset: 427,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9748199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0481417","Offset: 431,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9748344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0482070","Offset: 435,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9748502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0486136","Offset: 439,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9748651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0493761","Offset: 443,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9748796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0494738","Offset: 447,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9748946 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0498795","Offset: 451,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9749155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0506164","Offset: 455,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9749330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0508062","Offset: 459,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9749505 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0510567","Offset: 463,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9749680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0519173","Offset: 467,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9749867 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0520266","Offset: 472,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9750085 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0523990","Offset: 476,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9750268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0531594","Offset: 480,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9750435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0533620","Offset: 484,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9750580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0535745","Offset: 488,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9750738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0544389","Offset: 492,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9750891 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0545145","Offset: 496,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9751054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0549291","Offset: 500,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9751237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0556856","Offset: 504,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9751399 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0557974","Offset: 508,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9751544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0561904","Offset: 513,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9751689 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0570271","Offset: 517,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9751834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0572229","Offset: 521,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9751975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0574729","Offset: 525,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9752116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0582332","Offset: 529,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9752257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0585980","Offset: 533,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9752398 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0586518","Offset: 537,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9752543 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0595742","Offset: 541,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9752696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0596528","Offset: 545,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9752918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0599446","Offset: 549,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9753200 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0608248","Offset: 553,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9753341 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0610219","Offset: 558,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9753481 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0613825","Offset: 562,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9753618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0621748","Offset: 566,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9753784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0623783","Offset: 570,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9753976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0626493","Offset: 574,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9754177 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0634526","Offset: 578,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9754322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0635179","Offset: 582,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9754467 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0639519","Offset: 586,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9754612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0647032","Offset: 590,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9754753 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0648171","Offset: 594,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9754894 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0652169","Offset: 599,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9755039 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0659751","Offset: 603,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9755201 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0660519","Offset: 607,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9755354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0664825","Offset: 611,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9755905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0672577","Offset: 615,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9756075 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0674463","Offset: 619,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9756221 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0677799","Offset: 623,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9756361 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0678461","Offset: 627,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9756506 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0682348","Offset: 631,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9756647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0682715","Offset: 635,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9756797 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0686691","Offset: 640,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9757146 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0687139","Offset: 644,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9757309 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0690697","Offset: 648,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9757454 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0691051","Offset: 652,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9757594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0694768","Offset: 656,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9757735 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0695178","Offset: 660,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9757889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0697857","Offset: 664,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9758072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0699760","Offset: 668,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9758247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0701590","Offset: 672,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9758418 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0703595","Offset: 676,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9758593 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0705323","Offset: 680,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9758768 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0707162","Offset: 685,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9758955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0708878","Offset: 689,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9759130 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0710572","Offset: 693,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9759305 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0712283","Offset: 697,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9759476 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0714015","Offset: 701,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9759621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0715704","Offset: 705,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9759762 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0717654","Offset: 709,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9759915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0719259","Offset: 713,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9760065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0720423","Offset: 717,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9760201 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0721985","Offset: 721,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9760355 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0723598","Offset: 726,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9760509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0725189","Offset: 730,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9760863 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0726541","Offset: 734,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9761025 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0728090","Offset: 738,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:09.9761174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0863813","Offset: 742,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0492268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0134622","Offset: 746,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0493638 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0136819","Offset: 750,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0494572 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0136261","Offset: 754,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0495357 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0137289","Offset: 758,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0496134 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0140015","Offset: 762,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0496851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0139989","Offset: 766,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0499304 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0237573","Offset: 771,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0640983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0104909","Offset: 775,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0741139 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0009715","Offset: 779,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0749246 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0085726","Offset: 783,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0751102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0086285","Offset: 787,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0752087 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0087992","Offset: 791,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0752779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0097378","Offset: 795,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0753414 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0097694","Offset: 799,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0754123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0101022","Offset: 803,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0754758 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0109692","Offset: 807,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0755360 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0110080","Offset: 812,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0755944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0113579","Offset: 816,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0756533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0121468","Offset: 820,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0757195 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0121753","Offset: 824,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0757873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0125624","Offset: 828,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0758530 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0132932","Offset: 832,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0759127 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0133351","Offset: 836,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0759716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0137553","Offset: 840,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0760352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0151535","Offset: 844,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0760958 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0152222","Offset: 848,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0761547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0156156","Offset: 852,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0762140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0164493","Offset: 857,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0762720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0164868","Offset: 861,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0763309 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0168350","Offset: 865,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0763906 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0176653","Offset: 869,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0764491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0176951","Offset: 873,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0765071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0180011","Offset: 877,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0765660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0188634","Offset: 881,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0766253 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0189009","Offset: 885,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0766842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0191850","Offset: 889,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0767430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0200278","Offset: 893,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0768023 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0200602","Offset: 898,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0768608 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0203192","Offset: 902,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0769090 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0212557","Offset: 906,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0769547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0212958","Offset: 910,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0769995 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0216060","Offset: 914,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0770541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0224457","Offset: 918,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0770993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0225054","Offset: 922,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0771441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0227857","Offset: 926,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0771893 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0236242","Offset: 930,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0772337 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0236724","Offset: 934,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0772794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0239744","Offset: 939,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0773246 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0248333","Offset: 943,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0773690 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0248939","Offset: 947,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0774150 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0251192","Offset: 951,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0774603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0260245","Offset: 955,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0775055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0260706","Offset: 959,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0775511 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0263638","Offset: 963,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0775968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0271774","Offset: 967,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0776429 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0272260","Offset: 971,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0776877 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0275251","Offset: 975,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0777329 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0283281","Offset: 979,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0777777 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0283729","Offset: 984,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0778234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0286699","Offset: 988,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0778758 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0294866","Offset: 992,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0779228 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0295275","Offset: 996,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0779688 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0298476","Offset: 1,000,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0780145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0307508","Offset: 1,004,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0780593 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0309645","Offset: 1,008,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0781045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0311621","Offset: 1,012,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0781485 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0319957","Offset: 1,016,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0781937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0320491","Offset: 1,020,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0782389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0325364","Offset: 1,025,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0782842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0332169","Offset: 1,029,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0783298 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0332626","Offset: 1,033,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0783755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0335629","Offset: 1,037,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0784203 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0344866","Offset: 1,041,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0784659 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0345323","Offset: 1,045,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0785111 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0347372","Offset: 1,049,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0785564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0348625","Offset: 1,053,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0786020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0359322","Offset: 1,057,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0786472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0359749","Offset: 1,061,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0787027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0362531","Offset: 1,065,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0787488 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0370697","Offset: 1,070,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0787940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0371137","Offset: 1,074,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0788401 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0374405","Offset: 1,078,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0788858 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0382520","Offset: 1,082,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0789310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0382934","Offset: 1,086,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0789766 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0385989","Offset: 1,090,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0790219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0394718","Offset: 1,094,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0790667 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0395140","Offset: 1,098,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0791123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0398247","Offset: 1,102,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0791571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0406443","Offset: 1,106,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0792015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0406934","Offset: 1,111,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0792471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0409772","Offset: 1,115,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0792928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0417972","Offset: 1,119,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0793376 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0418394","Offset: 1,123,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0793833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0421538","Offset: 1,127,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0794285 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0430136","Offset: 1,131,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0794741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0430627","Offset: 1,135,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0795279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0433421","Offset: 1,139,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0795727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0442522","Offset: 1,143,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0796175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0442962","Offset: 1,147,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0796631 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0445232","Offset: 1,152,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0797092 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0454209","Offset: 1,156,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0797540 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0454674","Offset: 1,160,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0797988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0457498","Offset: 1,164,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0798441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0465690","Offset: 1,168,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0798889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0466185","Offset: 1,172,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0799345 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0469040","Offset: 1,176,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0799797 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0477249","Offset: 1,180,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0800245 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0477885","Offset: 1,184,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0800693 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0480248","Offset: 1,188,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0801154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0489366","Offset: 1,192,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0801598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0489993","Offset: 1,197,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0802059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0494178","Offset: 1,201,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0802519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0501620","Offset: 1,205,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0802976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0502196","Offset: 1,209,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0803509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0504184","Offset: 1,213,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0803962 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0512781","Offset: 1,217,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0804422 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0513243","Offset: 1,221,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0804870 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0516281","Offset: 1,225,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0805323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0524642","Offset: 1,229,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0805771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0525321","Offset: 1,233,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0806231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0528283","Offset: 1,238,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0806679 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0537106","Offset: 1,242,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0807132 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0537566","Offset: 1,246,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0807580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0540604","Offset: 1,250,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0808032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0549104","Offset: 1,254,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0808484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0549624","Offset: 1,258,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0809201 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0553985","Offset: 1,262,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0809828 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0560539","Offset: 1,266,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0810306 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0561166","Offset: 1,270,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0810758 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0564050","Offset: 1,274,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0811206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0572259","Offset: 1,278,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0811684 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0572643","Offset: 1,283,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0812132 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0575933","Offset: 1,287,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0812580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0584458","Offset: 1,291,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0813033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0584922","Offset: 1,295,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0813493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0587935","Offset: 1,299,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0813954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0596378","Offset: 1,303,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0814406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0596882","Offset: 1,307,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0814999 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0599835","Offset: 1,311,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0816796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0606657","Offset: 1,315,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0818084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0606247","Offset: 1,319,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0819147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0608658","Offset: 1,324,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0820073 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0615258","Offset: 1,328,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0820725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0615677","Offset: 1,332,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0821374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0619943","Offset: 1,336,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0822001 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0620182","Offset: 1,340,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0822624 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0621053","Offset: 1,344,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0823255 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0622512","Offset: 1,348,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0823887 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0623753","Offset: 1,352,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0824510 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0625170","Offset: 1,356,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0825193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0626603","Offset: 1,360,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0826165 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0628878","Offset: 1,364,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0826959 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0636562","Offset: 1,369,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0827629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0638345","Offset: 1,373,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0828299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0640538","Offset: 1,377,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0828934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0641106","Offset: 1,381,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0829579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0644310","Offset: 1,385,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0830300 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0644118","Offset: 1,389,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0830995 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0645744","Offset: 1,393,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0831639 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0647229","Offset: 1,397,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0832343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0647519","Offset: 1,401,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0832996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0650753","Offset: 1,405,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0833662 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0650569","Offset: 1,410,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0834490 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0652096","Offset: 1,414,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0835552 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0652366","Offset: 1,418,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0836316 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0653889","Offset: 1,422,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0837062 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0654367","Offset: 1,426,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0838035 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0656377","Offset: 1,430,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0838816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0656082","Offset: 1,434,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0839669 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0657554","Offset: 1,438,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0840868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0657341","Offset: 1,442,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0842332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0658343","Offset: 1,446,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.0843326 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0696837","Offset: 1,451,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1505001 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0039284","Offset: 1,455,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1506746 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0038042","Offset: 1,459,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1507907 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0039262","Offset: 1,463,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1508918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0040623","Offset: 1,467,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1509895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0040841","Offset: 1,471,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1510821 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0042936","Offset: 1,475,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1512157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0042427","Offset: 1,479,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1513061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0137545","Offset: 1,483,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1559905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0098816","Offset: 1,487,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1655862 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0008986","Offset: 1,491,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1662873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0003904","Offset: 1,496,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1665394 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0003785","Offset: 1,500,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1667340 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0025079","Offset: 1,504,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1668645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0023510","Offset: 1,508,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1669810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0023032","Offset: 1,512,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1670706 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0022494","Offset: 1,516,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1671551 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0022404","Offset: 1,520,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1672391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0022366","Offset: 1,524,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1673223 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0089357","Offset: 1,528,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1674055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0199702","Offset: 1,532,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1768771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0114983","Offset: 1,537,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1879240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0024085","Offset: 1,541,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1888818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0024931","Offset: 1,545,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1891216 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0048009","Offset: 1,549,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1893281 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0048470","Offset: 1,553,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1894869 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0049041","Offset: 1,557,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1896319 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0055386","Offset: 1,561,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1897847 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0056448","Offset: 1,565,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1899242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0057271","Offset: 1,569,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1900603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0064320","Offset: 1,573,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1902002 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0065537","Offset: 1,577,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1903445 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0066419","Offset: 1,582,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1904737 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0072828","Offset: 1,586,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1906141 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0073946","Offset: 1,590,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1907549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0074761","Offset: 1,594,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1909111 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0080956","Offset: 1,598,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1910561 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0082104","Offset: 1,602,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1911645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0083333","Offset: 1,606,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1912609 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0090305","Offset: 1,610,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1913697 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0091533","Offset: 1,614,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1914913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0098898","Offset: 1,618,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1915814 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0107196","Offset: 1,623,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1916620 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0109129","Offset: 1,627,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1917409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0110503","Offset: 1,631,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1918310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0117892","Offset: 1,635,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1919116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0119019","Offset: 1,639,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1919918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0121310","Offset: 1,643,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1920754 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0127608","Offset: 1,647,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1921548 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0129925","Offset: 1,651,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1922346 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0130901","Offset: 1,655,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1923140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0137741","Offset: 1,659,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1923933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0139499","Offset: 1,664,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1924791 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0140736","Offset: 1,668,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1926045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0147670","Offset: 1,672,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1927564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0148681","Offset: 1,676,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1928473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0150225","Offset: 1,680,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1929096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0156284","Offset: 1,684,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1929668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0157918","Offset: 1,688,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1930252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0159467","Offset: 1,692,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1932624 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0164596","Offset: 1,696,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1933610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0166063","Offset: 1,700,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1934651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0171486","Offset: 1,704,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1935547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0173125","Offset: 1,709,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1936213 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0178671","Offset: 1,713,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1936861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0180651","Offset: 1,717,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1937761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0187576","Offset: 1,721,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1938892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0189112","Offset: 1,725,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1939814 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0189457","Offset: 1,729,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1941456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0195546","Offset: 1,733,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1942771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0196539","Offset: 1,737,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1943799 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0198524","Offset: 1,741,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1944831 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0204997","Offset: 1,745,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1945872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0205914","Offset: 1,750,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1946922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0207318","Offset: 1,754,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1947963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0216670","Offset: 1,758,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1949000 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0218202","Offset: 1,762,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1950152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0219047","Offset: 1,766,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1951201 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0230051","Offset: 1,770,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1952247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0231450","Offset: 1,774,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1953296 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0232628","Offset: 1,778,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1954320 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0242783","Offset: 1,782,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1955357 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0243922","Offset: 1,786,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1956403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0245009","Offset: 1,790,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1957435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0255386","Offset: 1,795,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1958472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0256888","Offset: 1,799,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1959457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0257865","Offset: 1,803,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1960477 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0268591","Offset: 1,807,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1961612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0270093","Offset: 1,811,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1962589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0270823","Offset: 1,815,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1963664 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0281050","Offset: 1,819,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1964701 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0282616","Offset: 1,823,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1965747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0284220","Offset: 1,827,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1966800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0293415","Offset: 1,831,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1967897 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0295032","Offset: 1,836,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1968942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0296329","Offset: 1,840,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1970640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0303578","Offset: 1,849,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1971767 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0305161","Offset: 1,853,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1972936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0306142","Offset: 1,857,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1974020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0313886","Offset: 1,861,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1975103 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0315815","Offset: 1,865,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1976179 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0316570","Offset: 1,869,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1977207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0325555","Offset: 1,873,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1978256 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0327344","Offset: 1,878,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1979323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0474586","Offset: 1,882,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1980582 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0476024","Offset: 1,886,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1981657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0489114","Offset: 1,890,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1982698 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0491132","Offset: 1,894,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1983760 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0492438","Offset: 1,898,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1984827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0499154","Offset: 1,902,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1985949 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0500856","Offset: 1,906,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1987020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0501897","Offset: 1,910,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1988087 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0509240","Offset: 1,914,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1989153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0509945","Offset: 1,918,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1990233 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0511134","Offset: 1,923,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1991312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0517825","Offset: 1,927,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1992336 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0519378","Offset: 1,931,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1993723 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0520338","Offset: 1,935,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1996053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0526016","Offset: 1,939,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1997098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0528124","Offset: 1,943,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.1997832 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0529084","Offset: 1,947,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2004462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0530911","Offset: 1,951,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2007667 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0530428","Offset: 1,955,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2009501 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0530847","Offset: 1,959,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2010760 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0538032","Offset: 1,964,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2011946 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0539367","Offset: 1,968,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2013303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0540237","Offset: 1,972,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2014301 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0546723","Offset: 1,976,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2015411 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0548246","Offset: 1,980,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2016494 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0549441","Offset: 1,984,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2017390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0556033","Offset: 1,988,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2018440 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0557483","Offset: 1,992,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2019118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0565223","Offset: 1,996,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2019737 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0573052","Offset: 2,000,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2020364 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0575506","Offset: 2,004,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2020987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0576658","Offset: 2,009,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2021704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0585029","Offset: 2,013,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2022357 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0587171","Offset: 2,017,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2022988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0589036","Offset: 2,021,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2023679 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0595909","Offset: 2,025,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2024298 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0597778","Offset: 2,029,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2024921 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0599357","Offset: 2,033,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2025535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0606090","Offset: 2,037,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2026197 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0607582","Offset: 2,041,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2026841 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0608752","Offset: 2,045,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2027635 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0609814","Offset: 2,062,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2028313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0611350","Offset: 2,066,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2028953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0612400","Offset: 2,070,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2029610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0614601","Offset: 2,074,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2030254 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0615681","Offset: 2,078,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2030869 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0616444","Offset: 2,082,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2031500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0618122","Offset: 2,086,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2032426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0618198","Offset: 2,091,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2033403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0618834","Offset: 2,095,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2034316 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0620588","Offset: 2,099,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2035289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0621313","Offset: 2,103,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2036095 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0621945","Offset: 2,107,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2037179 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0622892","Offset: 2,111,488, Length: 3,584, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2038079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0622926","Offset: 2,115,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2038702 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0624953","Offset: 2,119,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2039287 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0624845","Offset: 2,123,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2039901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0626062","Offset: 2,127,360, Length: 3,584, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2040584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0626975","Offset: 2,130,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2041177 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0627760","Offset: 2,135,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2042163 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0628468","Offset: 2,139,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2043191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0628801","Offset: 2,143,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2044172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0629313","Offset: 2,147,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2045226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0629812","Offset: 2,151,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2046092 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0630410","Offset: 2,155,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2046715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0631263","Offset: 2,159,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2047351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0632086","Offset: 2,163,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2047991 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0632777","Offset: 2,167,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2049045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0633148","Offset: 2,171,904, Length: 1,536, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2049860 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0633754","Offset: 2,173,440, Length: 512, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2689387 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000593","","5728"
"10:46:10.2706394 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000892","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:10.2707998 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000226","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","5728"
"10:46:10.2708711 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000264","","5728"
"10:46:10.2714202 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000478","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:10.2715256 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000128","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:10.2719109 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000102","SyncType: SyncTypeOther","5728"
"10:46:10.2721984 AM","firefox.exe","7384","Load Image","C:\Program Files\Firefox Nightly\nss3.dll","0.0000000","Image Base: 0x7ffb1da70000, Image Size: 0x21d000","5728"
"10:46:10.2724015 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000235","Name: \Program Files\Firefox Nightly\nss3.dll","5728"
"10:46:10.2731601 AM","firefox.exe","7384","Load Image","C:\Windows\System32\ws2_32.dll","0.0000000","Image Base: 0x7ffb48bc0000, Image Size: 0x6c000","5728"
"10:46:10.2732834 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\ws2_32.dll","0.0000316","Name: \Windows\System32\ws2_32.dll","5728"
"10:46:10.2739448 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000482","","5728"
"10:46:10.2754889 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000926","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:10.2757125 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000204","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","5728"
"10:46:10.2757952 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000320","","5728"
"10:46:10.2765372 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000811","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:10.2767655 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000315","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:10.2769161 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000115","SyncType: SyncTypeOther","5728"
"10:46:10.2772382 AM","firefox.exe","7384","Load Image","C:\Windows\System32\winmm.dll","0.0000000","Image Base: 0x7ffb437c0000, Image Size: 0x23000","5728"
"10:46:10.2773440 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\winmm.dll","0.0000291","Name: \Windows\System32\winmm.dll","5728"
"10:46:10.2779960 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000414","","5728"
"10:46:10.2790656 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000598","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:10.2793374 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000154","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","5728"
"10:46:10.2793899 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000226","","5728"
"10:46:10.2799185 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0001370","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:10.2802036 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000175","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:10.2804809 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000149","SyncType: SyncTypeOther","5728"
"10:46:10.2808640 AM","firefox.exe","7384","Load Image","C:\Windows\System32\wsock32.dll","0.0000000","Image Base: 0x7ffb3c880000, Image Size: 0x9000","5728"
"10:46:10.2809673 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\wsock32.dll","0.0000286","Name: \Windows\System32\wsock32.dll","5728"
"10:46:10.2813880 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000405","","5728"
"10:46:10.2839245 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0001046","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:10.2841110 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000200","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","5728"
"10:46:10.2841950 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000312","","5728"
"10:46:10.2851107 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0001075","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:10.2852992 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000338","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:10.2854537 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000102","SyncType: SyncTypeOther","5728"
"10:46:10.2857268 AM","firefox.exe","7384","Load Image","C:\Windows\System32\winmmbase.dll","0.0000000","Image Base: 0x7ffb43790000, Image Size: 0x2a000","5728"
"10:46:10.2858249 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\winmmbase.dll","0.0000294","Name: \Windows\System32\winmmbase.dll","5728"
"10:46:10.2865379 AM","firefox.exe","7384","Load Image","C:\Windows\System32\cfgmgr32.dll","0.0000000","Image Base: 0x7ffb45f00000, Image Size: 0x49000","5728"
"10:46:10.2866445 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000261","Name: \Windows\System32\cfgmgr32.dll","5728"
"10:46:10.2871877 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000456","","5728"
"10:46:10.2882223 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000756","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:10.2883580 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000197","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","5728"
"10:46:10.2884161 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000234","","5728"
"10:46:10.2891977 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000486","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:10.2892894 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000116","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","5728"
"10:46:10.2893304 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000175","","5728"
"10:46:10.2917982 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000734","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:10.2919489 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000119","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:10.2921455 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000094","SyncType: SyncTypeOther","5728"
"10:46:10.2923819 AM","firefox.exe","7384","Load Image","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000000","Image Base: 0x7ffb3c680000, Image Size: 0xd000","5728"
"10:46:10.2925133 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000337","Name: \Program Files\Firefox Nightly\lgpllibs.dll","5728"
"10:46:10.2926793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0004476","Offset: 1,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2929336 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0005781","Offset: 5,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2930795 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0009208","Offset: 9,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2931913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0008691","Offset: 13,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2933048 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0008427","Offset: 23,552, Length: 2,560, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2934102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0007795","Offset: 26,112, Length: 512, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2935267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0007053","Offset: 26,624, Length: 1,536, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2936406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0006285","Offset: 28,160, Length: 512, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.2944653 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000495","","5728"
"10:46:10.2958362 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000871","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:10.2959881 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000201","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","5728"
"10:46:10.2960645 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000316","","5728"
"10:46:10.2967915 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000807","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:10.2969618 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000213","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:10.2971858 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000145","SyncType: SyncTypeOther","5728"
"10:46:10.2974917 AM","firefox.exe","7384","Load Image","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000000","Image Base: 0x7ffb3c680000, Image Size: 0xd000","5728"
"10:46:10.2975975 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000311","Name: \Program Files\Firefox Nightly\lgpllibs.dll","5728"
"10:46:10.2980835 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000409","","5728"
"10:46:10.2989893 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0138560","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:10.3128931 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000072","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:10.3129208 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000064","AllocationSize: 109,776,896, EndOfFile: 109,775,560, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:10.3129490 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0112491","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.3255621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0147154","Offset: 82,406,912, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.3405616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0222251","Offset: 94,834,176, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.3630568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0006438","Offset: 94,850,560, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.3639046 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0005512","Offset: 94,866,944, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.3646619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0005538","Offset: 94,883,328, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.3654943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0010138","Offset: 94,899,712, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.3667261 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0005730","Offset: 94,916,096, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.3675061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0005273","Offset: 94,932,480, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.3682664 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0005444","Offset: 94,948,864, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.3690135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0005593","Offset: 94,965,248, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.3697623 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0005017","Offset: 94,981,632, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.3705021 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0004915","Offset: 94,998,016, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.3711857 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0005405","Offset: 95,014,400, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.3719272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0005312","Offset: 95,030,784, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.3726525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0005564","Offset: 95,047,168, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.3734436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0005167","Offset: 95,063,552, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.3741582 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0006366","Offset: 95,079,936, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.3750598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0005585","Offset: 95,096,320, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.3758252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0005479","Offset: 95,112,704, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.3765651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0005184","Offset: 95,129,088, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.3772772 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0008990","Offset: 95,145,472, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.3784309 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0004497","Offset: 95,161,856, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.3789851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0004822","Offset: 95,178,240, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.3795837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0004591","Offset: 95,194,624, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.3985820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0059571","Offset: 109,071,872, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4046603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0006144","Offset: 109,088,256, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4054193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0009246","Offset: 109,104,640, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4064616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0008935","Offset: 109,121,024, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4074716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0008716","Offset: 109,137,408, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4084610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0008777","Offset: 109,153,792, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4094760 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0008704","Offset: 109,170,176, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4104194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0008725","Offset: 109,186,560, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4113649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0009766","Offset: 109,202,944, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4124171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0009433","Offset: 109,219,328, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4134330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0009301","Offset: 109,235,712, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4144706 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0014699","Offset: 109,252,096, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4160151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0009699","Offset: 109,268,480, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4170750 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0008055","Offset: 109,284,864, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4179424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0010701","Offset: 109,301,248, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4190842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0009224","Offset: 109,317,632, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4200787 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0009165","Offset: 109,334,016, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4210686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0008939","Offset: 109,350,400, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4220696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0008729","Offset: 109,366,784, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4230138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0008947","Offset: 109,383,168, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4239823 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0009562","Offset: 109,399,552, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4250114 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0009127","Offset: 109,415,936, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4259957 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0009208","Offset: 109,432,320, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4270257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0007015","Offset: 109,448,704, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4278364 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0342797","Offset: 109,465,088, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4622556 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0006810","Offset: 109,481,472, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4630782 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0006656","Offset: 109,497,856, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4638846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0006272","Offset: 109,514,240, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4646539 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0006302","Offset: 109,530,624, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4654232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0006503","Offset: 109,547,008, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4662151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0003849","Offset: 109,563,392, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4667275 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0002501","Offset: 109,579,776, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4670979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0002445","Offset: 109,596,160, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4674665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0002415","Offset: 109,612,544, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4678202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0002291","Offset: 109,628,928, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4681569 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0002197","Offset: 109,645,312, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4684858 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0002236","Offset: 109,661,696, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4688182 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0002231","Offset: 109,678,080, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4691510 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0002300","Offset: 109,694,464, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4694893 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0006034","Offset: 109,710,848, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4702352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0002794","Offset: 109,727,232, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4706354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0002453","Offset: 109,743,616, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4710049 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0002432","Offset: 109,760,000, Length: 6,656, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:10.4827677 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000149","SyncType: SyncTypeOther","5728"
"10:46:10.4831145 AM","firefox.exe","7384","Load Image","C:\Program Files\Firefox Nightly\xul.dll","0.0000000","Image Base: 0x7ffb07c80000, Image Size: 0x6988000","5728"
"10:46:10.4831965 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000175","Name: \Program Files\Firefox Nightly\xul.dll","5728"
"10:46:10.4832724 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0153630","Offset: 1,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4833812 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0160517","Offset: 5,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4834439 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0167356","Offset: 9,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4834917 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0166456","Offset: 13,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4835369 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0166755","Offset: 17,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4835834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0166623","Offset: 21,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4836270 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0178679","Offset: 25,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4836713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0177682","Offset: 29,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4837153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0178172","Offset: 33,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4837597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0178167","Offset: 37,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4838028 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0196360","Offset: 41,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4838471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0195580","Offset: 46,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4838915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0195862","Offset: 50,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4839359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0195268","Offset: 54,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4839802 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0196220","Offset: 58,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4840242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0210027","Offset: 62,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4840686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0209237","Offset: 66,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4841129 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0209460","Offset: 70,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4841573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0210347","Offset: 74,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4842025 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0221919","Offset: 78,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4842465 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0221129","Offset: 82,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4842913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0221487","Offset: 87,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4843352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0222422","Offset: 91,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4843792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0235111","Offset: 95,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4844236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0234300","Offset: 99,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4844675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0234462","Offset: 103,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4845110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0235435","Offset: 107,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4845597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0247586","Offset: 111,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4846045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0247552","Offset: 115,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4846488 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0274104","Offset: 119,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4846928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0276898","Offset: 123,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4847376 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0279437","Offset: 128,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4847820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0284339","Offset: 132,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4848178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0287010","Offset: 136,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4848528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0287527","Offset: 140,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4848873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0415109","Offset: 144,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4849210 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0417853","Offset: 148,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4849556 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0418027","Offset: 152,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4849897 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0429194","Offset: 156,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4850239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0430917","Offset: 160,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4850584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0433575","Offset: 164,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4850930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0443734","Offset: 168,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4851280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0445385","Offset: 173,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4851621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0448078","Offset: 177,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4851962 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0457383","Offset: 181,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4852308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0460067","Offset: 185,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4852654 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0460374","Offset: 189,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4853004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0471266","Offset: 193,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4853341 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0474014","Offset: 197,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4853716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0474979","Offset: 201,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4854057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0485428","Offset: 205,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4854399 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0488069","Offset: 209,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4854740 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0488948","Offset: 214,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4855081 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0500528","Offset: 218,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4855423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0501244","Offset: 222,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4855773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0505464","Offset: 226,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4856123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0515098","Offset: 230,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4856460 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0515759","Offset: 234,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4856809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0519374","Offset: 238,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4857151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0520005","Offset: 242,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4857501 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0532130","Offset: 246,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4857846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0532873","Offset: 250,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4858192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0537025","Offset: 254,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4858537 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0781646","Offset: 259,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4858964 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0782286","Offset: 263,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4859318 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0786075","Offset: 267,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4859664 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0795197","Offset: 271,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4860018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0795914","Offset: 275,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4860364 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0798251","Offset: 279,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4860709 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0805381","Offset: 283,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4861055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0808427","Offset: 287,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4861396 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0810395","Offset: 291,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4861759 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0818416","Offset: 295,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4862117 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0819159","Offset: 300,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4862463 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0823037","Offset: 304,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4862808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0830504","Offset: 308,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4863154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0831242","Offset: 312,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4863500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0834911","Offset: 316,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4863888 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0841861","Offset: 320,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4864259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0842574","Offset: 324,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4864681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0846265","Offset: 328,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4865044 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0855954","Offset: 332,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4865403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0857174","Offset: 336,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4865757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0860971","Offset: 340,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4866115 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0861249","Offset: 345,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4866465 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0863971","Offset: 349,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4866815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0864654","Offset: 353,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4867165 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0867120","Offset: 357,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4867519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0867777","Offset: 361,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4867869 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0870247","Offset: 365,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4868223 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0870887","Offset: 369,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4868577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0872995","Offset: 373,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4868978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0873635","Offset: 377,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4869332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0876639","Offset: 381,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4869699 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0876916","Offset: 386,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4870096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0877834","Offset: 390,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4870459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0879898","Offset: 394,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4870808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0880462","Offset: 398,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4871163 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0882505","Offset: 402,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4871512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0883065","Offset: 406,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4871867 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0884980","Offset: 410,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4872229 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0885548","Offset: 414,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4872613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0887451","Offset: 418,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4872967 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0887818","Offset: 422,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4873321 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0889866","Offset: 427,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4873714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0890420","Offset: 431,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4874072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0892490","Offset: 435,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4874439 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0892708","Offset: 439,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4874802 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0894781","Offset: 443,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4875241 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0894922","Offset: 447,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4875634 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0896833","Offset: 451,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.4876022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0903468","Offset: 455,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5776811 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0013303","Offset: 459,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5778376 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0012771","Offset: 463,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5779759 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0013704","Offset: 467,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5780872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0013556","Offset: 472,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5781743 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0014861","Offset: 476,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5782566 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0014750","Offset: 480,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5783386 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0022003","Offset: 484,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5802667 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0010197","Offset: 488,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5809886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0008985","Offset: 492,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5816533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0037334","Offset: 496,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5818539 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0041160","Offset: 500,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5819972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0041984","Offset: 504,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5820898 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0048772","Offset: 508,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5821717 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0050577","Offset: 513,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5822519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0051896","Offset: 517,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5823322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0058359","Offset: 521,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5824098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0060122","Offset: 525,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5824875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0061546","Offset: 529,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5825647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0068937","Offset: 533,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5826453 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0070686","Offset: 537,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5827264 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0072081","Offset: 541,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5828045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0078575","Offset: 545,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5828838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0080350","Offset: 549,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5829649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0081852","Offset: 553,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5830438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0088542","Offset: 558,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5831215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0090278","Offset: 562,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5832004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0091623","Offset: 566,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5832785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0098219","Offset: 570,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5833557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0099917","Offset: 574,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5834330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0101312","Offset: 578,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5835115 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0108476","Offset: 582,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5835904 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0110212","Offset: 586,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5836685 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0111565","Offset: 590,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5837457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0118166","Offset: 594,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5838242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0119902","Offset: 599,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5839014 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0121281","Offset: 603,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5839787 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0127923","Offset: 607,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5840563 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0130317","Offset: 611,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5841344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0130961","Offset: 615,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5842155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0137361","Offset: 619,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5842940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0138965","Offset: 623,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5843584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0145007","Offset: 627,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5844215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0146893","Offset: 631,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5844830 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0152704","Offset: 635,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5845495 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0154471","Offset: 640,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5846106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0160085","Offset: 644,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5846729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0162005","Offset: 648,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5847334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0167728","Offset: 652,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5847945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0169527","Offset: 656,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5848550 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0175105","Offset: 660,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5849156 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0177089","Offset: 664,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5849766 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0184359","Offset: 668,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5850377 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0186406","Offset: 672,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5850987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0195063","Offset: 676,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5851597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0197380","Offset: 680,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5852211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0205812","Offset: 685,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5852813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0207834","Offset: 689,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5853628 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0215936","Offset: 693,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5854558 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0217511","Offset: 697,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5855211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0225613","Offset: 701,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5855834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0227567","Offset: 705,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5856440 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0235652","Offset: 709,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5857054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0237547","Offset: 713,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5857656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0245653","Offset: 717,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5858278 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0247604","Offset: 721,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5858893 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0256508","Offset: 726,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5859733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0258352","Offset: 730,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5860548 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0266343","Offset: 734,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5861193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0268437","Offset: 738,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5862123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0276228","Offset: 742,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5862933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0278034","Offset: 746,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5863565 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0286323","Offset: 750,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5864184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0288397","Offset: 754,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5864789 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0296543","Offset: 758,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5865391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0298560","Offset: 762,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5866005 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0306744","Offset: 766,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5866624 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0308664","Offset: 771,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5867234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0317308","Offset: 775,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5867853 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0319313","Offset: 779,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5868480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0327442","Offset: 783,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5869167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0467461","Offset: 787,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5870319 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0469074","Offset: 791,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5870997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0477991","Offset: 795,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5871800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0479915","Offset: 799,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5872785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0481328","Offset: 803,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5873451 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0494251","Offset: 807,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5874197 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0496684","Offset: 812,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5875068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0498279","Offset: 816,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5875729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0506113","Offset: 820,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5876361 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0508130","Offset: 824,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5876984 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0509453","Offset: 828,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5877602 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0516972","Offset: 832,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5878259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0518674","Offset: 836,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5878869 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0519634","Offset: 840,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5879480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0527113","Offset: 844,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5880090 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0529152","Offset: 848,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5880704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0530757","Offset: 852,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5881434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0537955","Offset: 857,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5882325 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0539124","Offset: 861,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5882987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0540963","Offset: 865,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5883644 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0548340","Offset: 869,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5884582 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0550013","Offset: 873,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5885282 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0551024","Offset: 877,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5885982 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0558042","Offset: 881,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5886916 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0559463","Offset: 885,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5887599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0561080","Offset: 889,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5888226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0568180","Offset: 893,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5888841 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0570266","Offset: 898,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5889459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0571858","Offset: 902,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5890074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0578778","Offset: 906,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5890684 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0580843","Offset: 910,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5891294 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0587196","Offset: 914,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5891908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0595325","Offset: 918,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5892514 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0602075","Offset: 922,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5893124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0604298","Offset: 926,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5893734 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0610839","Offset: 930,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5894605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0612579","Offset: 934,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5895407 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0613590","Offset: 939,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5896047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0620626","Offset: 943,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5896725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0622457","Offset: 947,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5897634 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0623105","Offset: 951,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5898304 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0630503","Offset: 955,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5899034 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0632295","Offset: 959,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5899925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0633401","Offset: 963,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5900595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0640970","Offset: 967,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5901210 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0642859","Offset: 971,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5901828 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0643956","Offset: 975,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5902460 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0651090","Offset: 979,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5903202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0652874","Offset: 984,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5903859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0653753","Offset: 988,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5904512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0660959","Offset: 992,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5905165 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0662802","Offset: 996,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5905818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0663864","Offset: 1,000,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5906761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0670874","Offset: 1,004,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5907554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0671720","Offset: 1,008,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5908224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0673776","Offset: 1,012,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5909043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0680803","Offset: 1,016,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5909863 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0682454","Offset: 1,020,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5910562 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0683628","Offset: 1,025,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5911420 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0691802","Offset: 1,029,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5912256 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0692208","Offset: 1,033,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5912952 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0692890","Offset: 1,037,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5913630 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0696005","Offset: 1,041,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5914283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0704530","Offset: 1,045,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5914948 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0705098","Offset: 1,049,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5915601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0706821","Offset: 1,053,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5916263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0707243","Offset: 1,057,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5916924 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0717300","Offset: 1,061,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5917594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0717974","Offset: 1,065,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5918247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0719872","Offset: 1,070,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5919207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0726989","Offset: 1,074,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5919979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0727463","Offset: 1,078,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5920649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0729502","Offset: 1,082,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5921557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0736705","Offset: 1,086,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5922377 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0737182","Offset: 1,090,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5923119 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0739124","Offset: 1,094,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5924689 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0745763","Offset: 1,098,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5925410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0746224","Offset: 1,102,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5926110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0748067","Offset: 1,106,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5926780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0748532","Offset: 1,111,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5927467 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0758290","Offset: 1,115,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5928137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0759045","Offset: 1,119,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5928811 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0761055","Offset: 1,123,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5929489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0761610","Offset: 1,127,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5930159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0771141","Offset: 1,131,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5931149 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0771457","Offset: 1,135,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5931955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0773309","Offset: 1,139,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5932655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0780822","Offset: 1,143,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5933589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0781087","Offset: 1,147,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5934392 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0783045","Offset: 1,152,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5935143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0790379","Offset: 1,156,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5936145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0790627","Offset: 1,160,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5936849 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0792633","Offset: 1,164,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5937528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0800897","Offset: 1,168,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5938206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0801362","Offset: 1,172,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5938884 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0803415","Offset: 1,176,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5939554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0803880","Offset: 1,180,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5940245 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0813855","Offset: 1,184,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5940911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0814798","Offset: 1,188,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5941594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0815190","Offset: 1,192,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5942268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0817371","Offset: 1,197,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5942955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0826134","Offset: 1,201,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5943983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0826356","Offset: 1,205,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5944691 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0826980","Offset: 1,209,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5945365 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0830670","Offset: 1,213,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5946313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0838311","Offset: 1,217,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5947089 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0838952","Offset: 1,221,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5947900 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0839391","Offset: 1,225,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5948851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0842869","Offset: 1,229,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5949530 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0850181","Offset: 1,233,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5950268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0850672","Offset: 1,238,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5950963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0852379","Offset: 1,242,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5951680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0852737","Offset: 1,246,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5952380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0862397","Offset: 1,250,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5953122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0862994","Offset: 1,254,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5953801 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0863655","Offset: 1,258,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5954475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0866032","Offset: 1,262,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5955222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0875341","Offset: 1,266,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5956207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0875517","Offset: 1,270,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5956881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0876144","Offset: 1,274,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5957628 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0879694","Offset: 1,278,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5958618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0886977","Offset: 1,283,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5959305 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0887468","Offset: 1,287,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5960132 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0887758","Offset: 1,291,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5960982 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0891252","Offset: 1,295,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5961750 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0899469","Offset: 1,299,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5962441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0900080","Offset: 1,303,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5963153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0901877","Offset: 1,307,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5963827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0902338","Offset: 1,311,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5964502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0912278","Offset: 1,315,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5965171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0912859","Offset: 1,319,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5965854 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0914570","Offset: 1,324,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5966524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0914992","Offset: 1,328,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5967266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0924550","Offset: 1,332,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5968239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0924878","Offset: 1,336,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5968943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0925629","Offset: 1,340,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5969617 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0927822","Offset: 1,344,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5971358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0935498","Offset: 1,348,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5972408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0936308","Offset: 1,352,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5972967 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0936637","Offset: 1,356,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5973415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0942273","Offset: 1,360,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5973846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0945204","Offset: 1,364,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5974268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0952863","Offset: 1,369,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5974737 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0953704","Offset: 1,373,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5975164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0955538","Offset: 1,377,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5975586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0956238","Offset: 1,381,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5976013 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0966431","Offset: 1,385,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5976568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0967075","Offset: 1,389,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5977037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0969128","Offset: 1,393,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5977464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0969857","Offset: 1,397,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5977895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0979546","Offset: 1,401,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5978321 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0980213","Offset: 1,405,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5978786 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0982397","Offset: 1,410,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5979311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0990969","Offset: 1,414,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5979938 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0991541","Offset: 1,418,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5980433 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0993559","Offset: 1,422,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5980873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0994241","Offset: 1,426,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5981304 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1004494","Offset: 1,430,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5981816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1005236","Offset: 1,434,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5982366 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1005945","Offset: 1,438,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5982827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1008227","Offset: 1,442,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5983249 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1017256","Offset: 1,446,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5983672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1018023","Offset: 1,451,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5984090 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1020025","Offset: 1,455,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5984512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1020627","Offset: 1,459,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5984930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1031221","Offset: 1,463,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5985374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1032036","Offset: 1,467,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5985796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1034118","Offset: 1,471,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5986210 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1034775","Offset: 1,475,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5986637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1044678","Offset: 1,479,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5987059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1045420","Offset: 1,483,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5987486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1046397","Offset: 1,487,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5987904 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1049811","Offset: 1,491,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5988378 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1057883","Offset: 1,496,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5988996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1058481","Offset: 1,500,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5989415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1060472","Offset: 1,504,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5989910 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1061044","Offset: 1,508,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5990387 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1071848","Offset: 1,512,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5990865 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1072667","Offset: 1,516,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5991484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1072902","Offset: 1,520,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5991902 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1074463","Offset: 1,524,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5992342 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1084511","Offset: 1,528,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5992755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1085595","Offset: 1,532,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5993169 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1086060","Offset: 1,537,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5993604 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1089965","Offset: 1,541,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5994018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1098310","Offset: 1,545,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5994454 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1099060","Offset: 1,549,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5994872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1101151","Offset: 1,553,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5995290 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1101940","Offset: 1,557,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5995708 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1112309","Offset: 1,561,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5996143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1113145","Offset: 1,565,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5996651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1115363","Offset: 1,569,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5997129 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1123487","Offset: 1,573,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5997794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1124068","Offset: 1,577,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5998242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1126056","Offset: 1,582,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5998673 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1126692","Offset: 1,586,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5999096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1136931","Offset: 1,590,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.5999535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1137636","Offset: 1,594,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6000145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1138169","Offset: 1,598,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6000623 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1141143","Offset: 1,602,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6001063 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1150512","Offset: 1,606,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6001489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1151366","Offset: 1,610,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6001907 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1152092","Offset: 1,614,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6002343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1154655","Offset: 1,618,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6002757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1163905","Offset: 1,623,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6003179 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1164699","Offset: 1,627,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6003606 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1165428","Offset: 1,631,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6004024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1169324","Offset: 1,635,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6004489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1177311","Offset: 1,639,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6004915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1178250","Offset: 1,643,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6005342 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1180234","Offset: 1,647,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6005760 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1180921","Offset: 1,651,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6006417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1191093","Offset: 1,655,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6006874 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1191805","Offset: 1,659,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6007313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1193785","Offset: 1,664,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6007736 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1194531","Offset: 1,668,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6008158 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1204721","Offset: 1,672,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6008704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1205331","Offset: 1,676,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6009242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1207216","Offset: 1,680,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6009690 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1207869","Offset: 1,684,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6010129 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1215938","Offset: 1,688,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6010488 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1217554","Offset: 1,692,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6010833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1219219","Offset: 1,696,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6011166 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1227611","Offset: 1,700,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6011499 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1229847","Offset: 1,704,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6011896 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1230576","Offset: 1,709,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6012241 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1241619","Offset: 1,713,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6012600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1242378","Offset: 1,717,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6012937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1244469","Offset: 1,721,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6013278 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1245237","Offset: 1,725,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6013615 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1258809","Offset: 1,729,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6013952 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1259778","Offset: 1,733,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6014341 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1260797","Offset: 1,737,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6014793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1263899","Offset: 1,741,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6015373 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1275893","Offset: 1,745,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6015744 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1276742","Offset: 1,750,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6016086 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1279088","Offset: 1,754,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6016431 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1279827","Offset: 1,758,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6016764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1293800","Offset: 1,762,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6017157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1294563","Offset: 1,766,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6017694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1296433","Offset: 1,770,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6018091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1297311","Offset: 1,774,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6018454 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1310892","Offset: 1,778,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6018803 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1311703","Offset: 1,782,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6019149 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1313781","Offset: 1,786,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6019486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1314540","Offset: 1,790,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6019827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1328284","Offset: 1,795,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6020190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1329222","Offset: 1,799,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6020523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1331287","Offset: 1,803,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6020869 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1332110","Offset: 1,807,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6021210 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1346476","Offset: 1,811,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6021547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1347313","Offset: 1,815,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6021880 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1349608","Offset: 1,819,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6022213 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1350363","Offset: 1,823,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6022545 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1362959","Offset: 1,827,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6022878 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1364038","Offset: 1,831,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6023266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1463162","Offset: 1,836,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6023911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1463899","Offset: 1,840,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6024307 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1468772","Offset: 1,844,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6024657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1473530","Offset: 1,848,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6024999 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1474434","Offset: 1,852,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6025340 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1478513","Offset: 1,856,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6025681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1481308","Offset: 1,860,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6026193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1483492","Offset: 1,864,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6026680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1484554","Offset: 1,868,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6027051 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1488603","Offset: 1,872,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6027392 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1491130","Offset: 1,876,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6027729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1492350","Offset: 1,881,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6028083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1495439","Offset: 1,885,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6028459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1500166","Offset: 1,889,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6028800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1500926","Offset: 1,893,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6029129 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1501365","Offset: 1,897,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6029466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1503251","Offset: 1,901,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6029799 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1508883","Offset: 1,905,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6030131 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1516316","Offset: 1,909,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6030481 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1517272","Offset: 1,913,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6030818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1519580","Offset: 1,917,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6031164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1525011","Offset: 1,922,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6031497 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1526082","Offset: 1,926,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6031842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1526411","Offset: 1,930,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6032205 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1528860","Offset: 1,934,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6032542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1533254","Offset: 1,938,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6032888 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1534649","Offset: 1,942,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6033229 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1533758","Offset: 1,946,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6033562 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1535503","Offset: 1,950,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6034078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1540973","Offset: 1,954,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6034560 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1542343","Offset: 1,958,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6034936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1541433","Offset: 1,963,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6035277 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1544855","Offset: 1,967,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6035618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1544083","Offset: 1,971,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6035955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1543320","Offset: 1,975,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6036310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1542547","Offset: 1,979,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6036877 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1541536","Offset: 1,983,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6037338 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1540499","Offset: 1,987,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6037709 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1549506","Offset: 1,991,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6038050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1548764","Offset: 1,995,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6038409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1548008","Offset: 1,999,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6038746 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1547262","Offset: 2,003,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6039083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1546438","Offset: 2,008,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6039433 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1545619","Offset: 2,012,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6039774 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1544873","Offset: 2,016,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6040115 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1544130","Offset: 2,020,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6040448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1543375","Offset: 2,024,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6040781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1542564","Offset: 2,028,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6041203 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1541677","Offset: 2,032,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6041558 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1540883","Offset: 2,036,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6041976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1540008","Offset: 2,040,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6042330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1539223","Offset: 2,044,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6042667 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1538425","Offset: 2,049,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6043000 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1549314","Offset: 2,053,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6043333 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1548187","Offset: 2,057,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6043670 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1547466","Offset: 2,061,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6044007 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1546651","Offset: 2,065,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6044352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1545905","Offset: 2,069,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6044715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1545150","Offset: 2,073,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6045052 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1544420","Offset: 2,077,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6045389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1543682","Offset: 2,081,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6045803 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1542846","Offset: 2,085,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6046358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1541791","Offset: 2,089,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6046737 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1545176","Offset: 2,094,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6047087 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1553619","Offset: 2,098,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6047429 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1552880","Offset: 2,102,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6047774 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1552113","Offset: 2,106,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6048115 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1551298","Offset: 2,110,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6048448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1550577","Offset: 2,114,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6049003 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1549621","Offset: 2,118,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6049468 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1548734","Offset: 2,122,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6049822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1547987","Offset: 2,126,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6050168 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1547168","Offset: 2,130,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6050509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1546426","Offset: 2,135,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6050850 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1545692","Offset: 2,139,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6051196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1544962","Offset: 2,143,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6051533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1544224","Offset: 2,147,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6051870 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1543460","Offset: 2,151,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6052211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1542654","Offset: 2,155,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6052557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1541911","Offset: 2,159,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6052890 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1541190","Offset: 2,163,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6053253 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1540396","Offset: 2,167,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6053598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1539590","Offset: 2,171,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6053935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1538776","Offset: 2,176,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6054268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1551917","Offset: 2,180,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6054609 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1551200","Offset: 2,184,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6054942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1550475","Offset: 2,188,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6055279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1549749","Offset: 2,192,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6055621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1548938","Offset: 2,196,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6055962 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1548213","Offset: 2,200,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6056299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1547471","Offset: 2,204,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6056636 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1546745","Offset: 2,208,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6056973 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1546016","Offset: 2,212,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6057314 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1545270","Offset: 2,216,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6057711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1544399","Offset: 2,221,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6058257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1543315","Offset: 2,225,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6058641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1555505","Offset: 2,229,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6059013 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1554715","Offset: 2,233,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6059354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1553913","Offset: 2,237,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6059691 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1553180","Offset: 2,241,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6060041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1552424","Offset: 2,245,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6060493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1551580","Offset: 2,249,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6061018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1550662","Offset: 2,253,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6061410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1549805","Offset: 2,257,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6061752 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1549041","Offset: 2,262,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6062102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1548281","Offset: 2,266,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6062486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1547411","Offset: 2,270,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6062831 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1546665","Offset: 2,274,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6063168 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1545914","Offset: 2,278,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6063510 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1545107","Offset: 2,282,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6063847 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1544377","Offset: 2,286,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6064184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1543652","Offset: 2,290,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6064525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1542914","Offset: 2,294,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6064866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1542168","Offset: 2,298,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6065208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1541365","Offset: 2,302,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6065545 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1554447","Offset: 2,307,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6065886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1553700","Offset: 2,311,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6066223 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1552979","Offset: 2,315,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6066556 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1552258","Offset: 2,319,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6066906 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1551379","Offset: 2,323,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6067252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1550615","Offset: 2,327,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6067589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1549890","Offset: 2,331,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6067917 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1549161","Offset: 2,335,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6068258 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1548431","Offset: 2,339,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6068596 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1547679","Offset: 2,343,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6068928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1546891","Offset: 2,348,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6069398 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1546028","Offset: 2,352,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6069931 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1545077","Offset: 2,356,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6070315 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1557177","Offset: 2,360,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6070669 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1556367","Offset: 2,364,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6071045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1555564","Offset: 2,368,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6071394 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1554789","Offset: 2,372,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6071804 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1553995","Offset: 2,376,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6072372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1553038","Offset: 2,380,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6072730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1552198","Offset: 2,384,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6073076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1551464","Offset: 2,388,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6073421 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1550731","Offset: 2,393,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6073762 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1549997","Offset: 2,397,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6074104 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1549258","Offset: 2,401,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6074437 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1548503","Offset: 2,405,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6074774 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1547705","Offset: 2,409,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6075124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1546967","Offset: 2,413,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6075465 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1546225","Offset: 2,417,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6075815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1545478","Offset: 2,421,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6076160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1544711","Offset: 2,425,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6076566 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1543835","Offset: 2,429,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6076950 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1556721","Offset: 2,434,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6077291 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1555979","Offset: 2,438,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6077666 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1555215","Offset: 2,442,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6078008 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1554485","Offset: 2,446,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6078358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1553666","Offset: 2,450,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6078699 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1552932","Offset: 2,454,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6079040 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1552194","Offset: 2,458,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6079377 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1551461","Offset: 2,462,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6079753 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1550701","Offset: 2,466,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6080090 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1549950","Offset: 2,470,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6080474 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1549105","Offset: 2,475,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6081041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1548150","Offset: 2,479,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6081438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1547360","Offset: 2,483,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6081792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1546588","Offset: 2,487,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6082134 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1558487","Offset: 2,491,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6082466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1557771","Offset: 2,495,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6082816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1557037","Offset: 2,499,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6083273 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1556187","Offset: 2,503,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6083785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1555296","Offset: 2,507,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6084160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1554451","Offset: 2,511,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6084502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1553704","Offset: 2,515,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6084847 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1552962","Offset: 2,520,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6085193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1552237","Offset: 2,524,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6085534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1551507","Offset: 2,528,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6085897 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1550735","Offset: 2,532,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6086242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1549933","Offset: 2,536,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6086588 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1549203","Offset: 2,540,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6086925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1548478","Offset: 2,544,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6087275 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1547731","Offset: 2,548,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6087689 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1546865","Offset: 2,552,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6088039 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1546033","Offset: 2,556,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6088376 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1558982","Offset: 2,561,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6088717 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1558253","Offset: 2,565,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6089058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1557519","Offset: 2,569,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6089387 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1556806","Offset: 2,573,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6089733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1555987","Offset: 2,577,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6090078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1555241","Offset: 2,581,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6090424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1554502","Offset: 2,585,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6090757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1553781","Offset: 2,589,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6091089 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1553056","Offset: 2,593,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6091426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1552310","Offset: 2,597,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6091862 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1551383","Offset: 2,601,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6092421 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1550355","Offset: 2,606,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6092788 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1549604","Offset: 2,610,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6093133 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1548866","Offset: 2,614,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6093479 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1548085","Offset: 2,618,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6093807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1560173","Offset: 2,622,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6094217 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1559370","Offset: 2,626,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6094780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1558406","Offset: 2,630,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6095194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1557591","Offset: 2,634,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6095544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1556768","Offset: 2,638,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6095881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1556038","Offset: 2,642,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6096231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1555279","Offset: 2,647,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6096572 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1554498","Offset: 2,651,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6096913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1553765","Offset: 2,655,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6097276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1552988","Offset: 2,659,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6097626 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1552168","Offset: 2,663,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6098070 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1551336","Offset: 2,667,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6098420 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1550602","Offset: 2,671,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6098765 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1549865","Offset: 2,675,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6099111 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1549100","Offset: 2,679,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6099448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1548303","Offset: 2,683,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6099781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1561375","Offset: 2,688,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6100113 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1560642","Offset: 2,692,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6100455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1559891","Offset: 2,696,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6100788 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1559148","Offset: 2,700,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6101133 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1558338","Offset: 2,704,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6101474 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1557566","Offset: 2,708,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6101816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1556823","Offset: 2,712,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6102149 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1556093","Offset: 2,716,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6102494 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1555352","Offset: 2,720,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6102848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1554584","Offset: 2,724,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6103390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1553555","Offset: 2,728,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6103842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1552698","Offset: 2,733,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6104205 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1551951","Offset: 2,737,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6104546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1551213","Offset: 2,741,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6104892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1550453","Offset: 2,745,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6105229 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1549609","Offset: 2,749,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6105652 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1561725","Offset: 2,753,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6106202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1560774","Offset: 2,757,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6106577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1560011","Offset: 2,761,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6106927 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1559200","Offset: 2,765,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6107264 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1558458","Offset: 2,769,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6107614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1557724","Offset: 2,774,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6107956 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1556976","Offset: 2,778,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6108297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1556243","Offset: 2,782,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6108625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1555522","Offset: 2,786,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6108963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1554719","Offset: 2,790,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6109300 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1553994","Offset: 2,794,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6109632 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1553265","Offset: 2,798,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6109978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1552514","Offset: 2,802,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6110319 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1551729","Offset: 2,806,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6110686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1550876","Offset: 2,810,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6111019 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1563714","Offset: 2,814,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6111356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1562989","Offset: 2,819,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6111693 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1562229","Offset: 2,823,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6112026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1561512","Offset: 2,827,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6112376 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1560693","Offset: 2,831,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6112717 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1559964","Offset: 2,835,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6113054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1559234","Offset: 2,839,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6113391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1558518","Offset: 2,843,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6113728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1557797","Offset: 2,847,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6114074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1557045","Offset: 2,851,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6114415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1556243","Offset: 2,855,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6114757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1555513","Offset: 2,860,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6115269 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1554617","Offset: 2,864,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6115793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1553705","Offset: 2,868,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6116173 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1552924","Offset: 2,872,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6116515 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1552112","Offset: 2,876,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6116869 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1551353","Offset: 2,880,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6117214 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1561653","Offset: 2,884,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6117581 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1560902","Offset: 2,888,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6118157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1559934","Offset: 2,892,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6118605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1559034","Offset: 2,896,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6118989 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1558197","Offset: 2,900,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6119335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1557459","Offset: 2,905,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6119680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1556730","Offset: 2,909,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6120022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1555991","Offset: 2,913,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6120363 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1555228","Offset: 2,917,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6120700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1554421","Offset: 2,921,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6121041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1567409","Offset: 2,925,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6121391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1566552","Offset: 2,929,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6121741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1565792","Offset: 2,933,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6122083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1565062","Offset: 2,937,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6122424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1564247","Offset: 2,941,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6122765 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1563497","Offset: 2,946,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6123107 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1562724","Offset: 2,950,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6123452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1561999","Offset: 2,954,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6123798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1561269","Offset: 2,958,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6124139 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1560514","Offset: 2,962,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6124476 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1559716","Offset: 2,966,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6124805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1558999","Offset: 2,970,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6125146 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1558278","Offset: 2,974,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6125492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1557544","Offset: 2,978,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6125833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1556793","Offset: 2,982,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6126353 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1555817","Offset: 2,987,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6126925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1554865","Offset: 2,991,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6127454 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1553956","Offset: 2,995,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6127834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1553192","Offset: 2,999,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6128180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1552471","Offset: 3,003,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6128529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1551636","Offset: 3,007,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6128875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1550850","Offset: 3,011,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6129259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1562908","Offset: 3,015,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6129818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1561965","Offset: 3,019,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6130236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1561133","Offset: 3,023,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6130595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1560313","Offset: 3,027,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6130949 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1559571","Offset: 3,032,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6131290 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1558824","Offset: 3,036,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6131631 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1558104","Offset: 3,040,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6131973 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1557352","Offset: 3,044,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6132318 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1556542","Offset: 3,048,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6132655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1569730","Offset: 3,052,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6133005 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1568996","Offset: 3,056,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6133347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1568279","Offset: 3,060,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6133735 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1567498","Offset: 3,064,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6134076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1566684","Offset: 3,068,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6134417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1565946","Offset: 3,073,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6134763 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1565220","Offset: 3,077,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6135100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1564508","Offset: 3,081,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6135463 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1563761","Offset: 3,085,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6135813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1563010","Offset: 3,089,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6136158 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1562208","Offset: 3,093,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6136495 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1561496","Offset: 3,097,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6136837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1560765","Offset: 3,101,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6137174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1560036","Offset: 3,105,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6137511 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1559289","Offset: 3,109,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6137882 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1558466","Offset: 3,113,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6138445 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1557519","Offset: 3,118,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6138902 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1556678","Offset: 3,122,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6139256 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1555940","Offset: 3,126,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6139597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1555224","Offset: 3,130,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6139951 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1554362","Offset: 3,134,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6140293 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1553589","Offset: 3,138,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6140689 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1552758","Offset: 3,142,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6141244 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1564452","Offset: 3,146,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6141620 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1563658","Offset: 3,150,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6141969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1562857","Offset: 3,154,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6142315 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1562131","Offset: 3,159,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6142665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1561393","Offset: 3,163,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6142998 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1560680","Offset: 3,167,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6143339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1559925","Offset: 3,171,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6143702 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1559106","Offset: 3,175,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6144035 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1571782","Offset: 3,179,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6144384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1571049","Offset: 3,183,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6144730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1570310","Offset: 3,187,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6145071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1569585","Offset: 3,191,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6145404 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1568787","Offset: 3,195,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6145741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1568066","Offset: 3,200,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6146078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1567345","Offset: 3,204,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6146415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1566633","Offset: 3,208,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6146761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1565898","Offset: 3,212,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6147107 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1565143","Offset: 3,216,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6147452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1564346","Offset: 3,220,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6147798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1563620","Offset: 3,224,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6148135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1562903","Offset: 3,228,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6148476 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1562144","Offset: 3,232,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6148813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1561402","Offset: 3,236,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6149163 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1560591","Offset: 3,240,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6149560 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1559801","Offset: 3,245,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6150110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1558872","Offset: 3,249,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6150507 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1558086","Offset: 3,253,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6150861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1557348","Offset: 3,257,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6151207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1556524","Offset: 3,261,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6151595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1555752","Offset: 3,265,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6151966 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1554997","Offset: 3,269,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6152474 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1554080","Offset: 3,273,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6152977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1565694","Offset: 3,277,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6153383 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1564827","Offset: 3,281,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6153801 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1564013","Offset: 3,286,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6154147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1563287","Offset: 3,290,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6154484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1562570","Offset: 3,294,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6154829 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1561820","Offset: 3,298,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6155175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1561017","Offset: 3,302,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6155516 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1573169","Offset: 3,306,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6155857 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1572525","Offset: 3,310,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6156207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1571877","Offset: 3,314,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6156544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1571245","Offset: 3,318,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6156890 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1570519","Offset: 3,322,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6157227 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1569850","Offset: 3,326,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6157568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1569214","Offset: 3,331,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6157901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1568501","Offset: 3,335,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6158251 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1567767","Offset: 3,339,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6158592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1567017","Offset: 3,343,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6158934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1566218","Offset: 3,347,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6159267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1565510","Offset: 3,351,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6159612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1564785","Offset: 3,355,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6159954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1564046","Offset: 3,359,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6160295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1563291","Offset: 3,363,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6160640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1562498","Offset: 3,367,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6161050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1561709","Offset: 3,372,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6161609 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1560770","Offset: 3,376,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6161989 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1560002","Offset: 3,380,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6162334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1559273","Offset: 3,384,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6162710 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1558410","Offset: 3,388,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6163064 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1557668","Offset: 3,392,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6163410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1556947","Offset: 3,396,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6163909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1556068","Offset: 3,400,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6164391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1555159","Offset: 3,404,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6164762 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1565749","Offset: 3,408,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6165112 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1565109","Offset: 3,412,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6165449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1564503","Offset: 3,417,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6165790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1563778","Offset: 3,421,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6166132 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1563138","Offset: 3,425,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6166511 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1562464","Offset: 3,429,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6166848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1572226","Offset: 3,433,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6167194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1571586","Offset: 3,437,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6167535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1570951","Offset: 3,441,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6167885 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1570311","Offset: 3,445,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6168222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1569598","Offset: 3,449,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6168568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1568953","Offset: 3,453,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6168914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1568304","Offset: 3,458,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6169255 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1567678","Offset: 3,462,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6169605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1567029","Offset: 3,466,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6169946 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1566402","Offset: 3,470,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6170283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1565690","Offset: 3,474,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6170688 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1564990","Offset: 3,478,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6171090 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1564243","Offset: 3,482,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6171435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1563607","Offset: 3,486,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6171776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1562972","Offset: 3,490,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6172118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1562331","Offset: 3,494,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6172604 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1561555","Offset: 3,499,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6173129 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1560642","Offset: 3,503,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6173504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1559947","Offset: 3,507,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6173846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1559311","Offset: 3,511,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6174196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1558670","Offset: 3,515,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6174537 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1558035","Offset: 3,519,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6174942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1557340","Offset: 3,523,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6175480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1556414","Offset: 3,527,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6175885 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1555701","Offset: 3,531,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6176235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1555031","Offset: 3,535,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6176576 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1564073","Offset: 3,539,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6176918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1563454","Offset: 3,544,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6177251 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1562707","Offset: 3,548,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6177596 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1562072","Offset: 3,552,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6177942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1561427","Offset: 3,556,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6178287 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1571202","Offset: 3,560,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6178637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1570554","Offset: 3,564,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6178979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1569922","Offset: 3,568,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6179316 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1569294","Offset: 3,572,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6179644 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1568565","Offset: 3,576,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6179986 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1567925","Offset: 3,580,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6180323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1567289","Offset: 3,585,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6180660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1566666","Offset: 3,589,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6181010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1566026","Offset: 3,593,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6181347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1565416","Offset: 3,597,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6181748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1564635","Offset: 3,601,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6182080 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1564009","Offset: 3,605,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6182422 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1563377","Offset: 3,609,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6182763 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1562746","Offset: 3,613,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6183100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1562114","Offset: 3,617,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6183446 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1561470","Offset: 3,621,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6183813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1560812","Offset: 3,625,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6184205 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1560032","Offset: 3,630,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6184764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1559170","Offset: 3,634,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6185152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1558458","Offset: 3,638,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6185507 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1557800","Offset: 3,642,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6185848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1557165","Offset: 3,646,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6186185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1556537","Offset: 3,650,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6186522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1555799","Offset: 3,654,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6186983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1555044","Offset: 3,658,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6187525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1554208","Offset: 3,662,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6187956 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1553452","Offset: 3,666,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6188301 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1562464","Offset: 3,671,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6188643 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1561721","Offset: 3,675,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6188980 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1561098","Offset: 3,679,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6189321 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1560467","Offset: 3,683,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6189650 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1570182","Offset: 3,687,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6189999 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1569534","Offset: 3,691,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6190341 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1568911","Offset: 3,695,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6190678 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1568283","Offset: 3,699,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6191006 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1567563","Offset: 3,703,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6191395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1566879","Offset: 3,707,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6191740 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1566232","Offset: 3,712,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6192077 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1565609","Offset: 3,716,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6192419 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1564989","Offset: 3,720,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6192768 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1564367","Offset: 3,724,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6193101 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1563655","Offset: 3,728,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6193434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1563031","Offset: 3,732,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6193775 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1562396","Offset: 3,736,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6194112 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1561769","Offset: 3,740,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6194450 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1561136","Offset: 3,744,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6194816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1560472","Offset: 3,748,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6195158 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1559840","Offset: 3,752,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6195550 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1559085","Offset: 3,757,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6196109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1558236","Offset: 3,761,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6196515 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1557510","Offset: 3,765,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6196873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1556853","Offset: 3,769,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6197223 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1556200","Offset: 3,773,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6197564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1555565","Offset: 3,777,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6197897 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1554848","Offset: 3,781,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6198371 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1554084","Offset: 3,785,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6198887 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1553278","Offset: 3,789,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6199254 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1552586","Offset: 3,793,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6199599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1551921","Offset: 3,798,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6199941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1560804","Offset: 3,802,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6200278 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1560190","Offset: 3,806,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6200615 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1559520","Offset: 3,810,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6200960 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1569645","Offset: 3,814,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6201293 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1569005","Offset: 3,818,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6201630 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1568356","Offset: 3,822,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6201976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1567699","Offset: 3,826,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6202322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1566952","Offset: 3,830,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6202659 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1566303","Offset: 3,834,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6202996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1565664","Offset: 3,838,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6203354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1564947","Offset: 3,843,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6203691 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1564299","Offset: 3,847,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6204028 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1563672","Offset: 3,851,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6204370 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1562928","Offset: 3,855,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6204711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1562285","Offset: 3,859,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6205048 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1561645","Offset: 3,863,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6205385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1561000","Offset: 3,867,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6205731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1560360","Offset: 3,871,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6206063 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1559704","Offset: 3,875,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6206396 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1559064","Offset: 3,879,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6206733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1558334","Offset: 3,884,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6207079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1557698","Offset: 3,888,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6207416 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1557054","Offset: 3,892,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6207753 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1556388","Offset: 3,896,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6208120 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1555705","Offset: 3,900,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6208461 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1555061","Offset: 3,904,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6208820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1554310","Offset: 3,908,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6209170 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1553648","Offset: 3,912,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6209579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1552932","Offset: 3,916,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6209929 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1552271","Offset: 3,920,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6210262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1551626","Offset: 3,924,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6210599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1550974","Offset: 3,929,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6210940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1795979","Offset: 3,933,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6211401 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1798052","Offset: 3,937,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6211742 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1802153","Offset: 3,941,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6212084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1802899","Offset: 3,945,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6212425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1806603","Offset: 3,949,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6212766 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1810989","Offset: 3,953,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6213099 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1811680","Offset: 3,957,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6213436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1815584","Offset: 3,961,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6213769 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1817837","Offset: 3,965,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6214102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1820166","Offset: 3,970,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6214447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1822271","Offset: 3,974,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6214789 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1823243","Offset: 3,978,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6215126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1826912","Offset: 3,982,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6215459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1829348","Offset: 3,986,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6215791 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1831414","Offset: 3,990,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6216137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1832489","Offset: 3,994,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6216470 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1836384","Offset: 3,998,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6216815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1838787","Offset: 4,002,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6217153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1840868","Offset: 4,006,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6217485 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1841825","Offset: 4,011,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6217818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1844525","Offset: 4,015,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6218151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1848612","Offset: 4,019,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6218488 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1849444","Offset: 4,023,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6218821 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1850140","Offset: 4,027,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6219162 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1852209","Offset: 4,031,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6219521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1856586","Offset: 4,035,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6219853 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1857402","Offset: 4,039,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6220190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1857718","Offset: 4,043,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6220527 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1861451","Offset: 4,047,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6220911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1862155","Offset: 4,051,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6221244 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1864954","Offset: 4,056,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6221586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1868371","Offset: 4,060,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6221923 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1867633","Offset: 4,064,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6222251 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1866614","Offset: 4,068,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6222584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1871409","Offset: 4,072,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6222921 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1870757","Offset: 4,076,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6223258 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1870057","Offset: 4,080,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6223591 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1869306","Offset: 4,084,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6223937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1868640","Offset: 4,088,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6224274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1867957","Offset: 4,092,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6224611 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1867287","Offset: 4,097,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6224948 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1866626","Offset: 4,101,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6225289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1865944","Offset: 4,105,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6225630 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1865219","Offset: 4,109,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6225963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1874678","Offset: 4,113,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6226305 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1874041","Offset: 4,117,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6226646 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1873321","Offset: 4,121,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6226983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1872689","Offset: 4,125,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6227311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1872046","Offset: 4,129,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6227657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1871401","Offset: 4,133,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6228007 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1870752","Offset: 4,137,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6228340 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1870065","Offset: 4,142,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6228685 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1869272","Offset: 4,146,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6229022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1868649","Offset: 4,150,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6229368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1867941","Offset: 4,154,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6229701 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1867236","Offset: 4,158,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6230038 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1866601","Offset: 4,162,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6230388 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1865905","Offset: 4,166,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6230738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1865231","Offset: 4,170,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6231070 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1864502","Offset: 4,174,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6231407 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1863777","Offset: 4,178,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6231757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1863081","Offset: 4,183,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6232094 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1869366","Offset: 4,187,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6232444 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1878450","Offset: 4,191,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6232794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1877835","Offset: 4,195,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6233140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1877306","Offset: 4,199,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6233481 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1876781","Offset: 4,203,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6233818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1876244","Offset: 4,207,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6234172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1875518","Offset: 4,211,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6234514 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1874882","Offset: 4,215,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6234851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1874131","Offset: 4,219,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6235183 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1873488","Offset: 4,224,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6235585 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1872766","Offset: 4,228,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6235922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1872113","Offset: 4,232,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6236271 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1871444","Offset: 4,236,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6236617 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1870782","Offset: 4,240,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6236958 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1870130","Offset: 4,244,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6237295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1869392","Offset: 4,248,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6237628 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1868726","Offset: 4,252,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6237982 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1868052","Offset: 4,256,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6238332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1867373","Offset: 4,260,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6238678 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1866712","Offset: 4,264,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6239049 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1866038","Offset: 4,269,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6239412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1865274","Offset: 4,273,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6239745 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1864629","Offset: 4,277,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6240082 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1863989","Offset: 4,281,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6240431 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1863350","Offset: 4,285,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6240769 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1862713","Offset: 4,289,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6241101 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1862083","Offset: 4,293,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6241443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1861442","Offset: 4,297,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6241891 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1860602","Offset: 4,301,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6242454 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1859753","Offset: 4,305,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6242842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1859023","Offset: 4,310,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6243196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1868355","Offset: 4,314,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6243542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1867872","Offset: 4,318,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6243892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1869203","Offset: 4,322,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6244271 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1868619","Offset: 4,326,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6244626 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1868068","Offset: 4,330,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6244967 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1867565","Offset: 4,334,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6245313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1867040","Offset: 4,338,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6245671 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1866426","Offset: 4,342,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6246017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1865888","Offset: 4,346,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6246371 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1865367","Offset: 4,350,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6246712 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1867719","Offset: 4,355,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6247070 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1867199","Offset: 4,359,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6247416 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1866669","Offset: 4,363,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6247766 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1866144","Offset: 4,367,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6248116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1865530","Offset: 4,371,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6248478 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1865040","Offset: 4,375,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6248837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1866891","Offset: 4,379,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6249212 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1866362","Offset: 4,383,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6249596 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1865854","Offset: 4,387,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6250002 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1865282","Offset: 4,391,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6250356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1864668","Offset: 4,396,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6250697 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1864199","Offset: 4,400,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6251064 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1865722","Offset: 4,404,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6251418 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1865022","Offset: 4,408,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6251764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1864523","Offset: 4,412,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6252634 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1863520","Offset: 4,416,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.6253266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2018694","Offset: 4,420,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8120762 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0150908","Offset: 4,424,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8122222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0150664","Offset: 4,428,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8123190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0149291","Offset: 4,432,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8124043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0149313","Offset: 4,436,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8124854 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0148907","Offset: 4,441,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8125690 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0148481","Offset: 4,445,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8126484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0148075","Offset: 4,449,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8127687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0153536","Offset: 4,453,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8279299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0008900","Offset: 4,457,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8285656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0025618","Offset: 4,461,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8291741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0019255","Offset: 4,465,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8293089 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0018761","Offset: 4,469,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8294058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0017629","Offset: 4,473,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8294898 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0017412","Offset: 4,477,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8295760 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0017041","Offset: 4,482,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8296579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0017715","Offset: 4,486,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8297386 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0016772","Offset: 4,490,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8298175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0016789","Offset: 4,494,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8298994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0015753","Offset: 4,498,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8299788 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0015718","Offset: 4,502,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8300752 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0015279","Offset: 4,506,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8301597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0014814","Offset: 4,510,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8302638 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0014169","Offset: 4,514,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8303662 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0181086","Offset: 4,518,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8323242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0169489","Offset: 4,523,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8489356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0068437","Offset: 4,527,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8490802 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0069991","Offset: 4,531,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8491728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0069777","Offset: 4,535,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8492590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0075943","Offset: 4,539,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8493452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0074214","Offset: 4,543,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8494246 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0075844","Offset: 4,547,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8495048 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0074513","Offset: 4,551,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8495875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0073310","Offset: 4,555,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8496656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0080905","Offset: 4,559,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8497446 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0080926","Offset: 4,563,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8498243 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0081588","Offset: 4,568,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8499028 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0080436","Offset: 4,572,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8499818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0079317","Offset: 4,576,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8500620 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0079787","Offset: 4,580,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8501409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0088943","Offset: 4,584,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8502199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0087300","Offset: 4,588,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8502988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0088943","Offset: 4,592,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8503875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0087702","Offset: 4,596,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8504678 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0086361","Offset: 4,600,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8505475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0094631","Offset: 4,604,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8506261 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0092992","Offset: 4,609,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8507054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0098381","Offset: 4,613,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8507848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0098603","Offset: 4,617,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8508633 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0115456","Offset: 4,621,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8509426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0113805","Offset: 4,625,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8510220 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0115405","Offset: 4,629,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8511005 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0114189","Offset: 4,633,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8511816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0113020","Offset: 4,637,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8512605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0121122","Offset: 4,641,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8513488 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0119736","Offset: 4,645,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8514286 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0120598","Offset: 4,649,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8514943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0119488","Offset: 4,654,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8515558 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0120064","Offset: 4,658,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8516262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0119112","Offset: 4,662,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8516885 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0119206","Offset: 4,666,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8517499 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0119104","Offset: 4,670,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8518109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0118968","Offset: 4,674,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8518728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0119215","Offset: 4,678,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8519372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0118976","Offset: 4,682,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8519982 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0119313","Offset: 4,686,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8520592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0119023","Offset: 4,690,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8521207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0120819","Offset: 4,695,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8521817 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0119778","Offset: 4,699,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8522435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0120474","Offset: 4,703,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8523041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0119506","Offset: 4,707,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8523651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0119689","Offset: 4,711,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8524262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0119475","Offset: 4,715,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8524872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0119300","Offset: 4,719,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8525490 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0119570","Offset: 4,723,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8526105 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0119424","Offset: 4,727,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8526715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0119458","Offset: 4,731,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8527338 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0119514","Offset: 4,736,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8527986 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0119267","Offset: 4,740,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8528597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0119385","Offset: 4,744,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8529219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0119501","Offset: 4,748,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8529872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0119399","Offset: 4,752,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8530504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0119164","Offset: 4,756,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8531122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0119284","Offset: 4,760,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8531775 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0119083","Offset: 4,764,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8532407 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0123912","Offset: 4,768,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8655406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0003256","Offset: 4,772,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8657373 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0005419","Offset: 4,776,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8658824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0008260","Offset: 4,781,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8660206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0011840","Offset: 4,785,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8661452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0011332","Offset: 4,789,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8662626 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0017971","Offset: 4,793,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8663901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0017609","Offset: 4,797,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8665134 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0023322","Offset: 4,801,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8666350 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0022814","Offset: 4,805,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8667716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0023995","Offset: 4,809,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8668966 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0023658","Offset: 4,813,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8670165 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0026206","Offset: 4,817,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8671376 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0047241","Offset: 4,822,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8672614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0047437","Offset: 4,826,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8673975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0047053","Offset: 4,830,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8675174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0050969","Offset: 4,834,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8676364 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0050565","Offset: 4,838,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8677538 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0050180","Offset: 4,842,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8678724 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0049775","Offset: 4,846,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8679906 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0056384","Offset: 4,850,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8681156 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0054545","Offset: 4,854,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8682389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0055010","Offset: 4,858,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8683626 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0053368","Offset: 4,862,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8684910 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0053061","Offset: 4,867,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8686254 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0058074","Offset: 4,871,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8689868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0055505","Offset: 4,875,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8692390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0053547","Offset: 4,879,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8694024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0056346","Offset: 4,883,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8695458 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0055722","Offset: 4,887,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8696776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0055386","Offset: 4,891,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8698111 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0058599","Offset: 4,895,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8699408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0058100","Offset: 4,899,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8700706 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0057433","Offset: 4,903,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8701930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0060766","Offset: 4,908,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8703202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0060172","Offset: 4,912,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8704452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0059746","Offset: 4,916,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8705719 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0063441","Offset: 4,920,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8706995 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0063074","Offset: 4,924,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8708279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0065677","Offset: 4,928,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8709533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0065792","Offset: 4,932,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8710792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0068254","Offset: 4,936,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8712072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0068117","Offset: 4,940,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8713314 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0072571","Offset: 4,944,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8714555 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0070857","Offset: 4,948,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8715613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0071352","Offset: 4,953,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8716612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0069943","Offset: 4,957,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8717610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0069850","Offset: 4,961,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8718626 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0074820","Offset: 4,965,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8719671 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0074743","Offset: 4,969,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8720665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0077436","Offset: 4,973,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8721689 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0077325","Offset: 4,977,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8722717 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0080111","Offset: 4,981,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8723724 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0079778","Offset: 4,985,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8724731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0079633","Offset: 4,989,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8725725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0083230","Offset: 4,994,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8728319 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0081707","Offset: 4,998,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8730862 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0082701","Offset: 5,002,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8732390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0082176","Offset: 5,006,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8738773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0079915","Offset: 5,010,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8740582 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0078955","Offset: 5,014,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8741806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0081391","Offset: 5,018,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8742984 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0081114","Offset: 5,022,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8746811 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0093841","Offset: 5,026,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8748113 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0093452","Offset: 5,030,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8749273 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0093555","Offset: 5,035,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8753075 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0100599","Offset: 5,039,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8754380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0100118","Offset: 5,043,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8755421 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0100092","Offset: 5,047,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8758963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0106756","Offset: 5,051,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8759940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0106871","Offset: 5,055,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8760605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0114087","Offset: 5,059,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8761215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0114783","Offset: 5,063,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8761826 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0121446","Offset: 5,067,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8764556 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0120022","Offset: 5,071,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8765350 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0127083","Offset: 5,075,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8765969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0127953","Offset: 5,080,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8766562 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0134946","Offset: 5,084,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8767176 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0135795","Offset: 5,088,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8767769 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0142716","Offset: 5,092,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8768371 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0143509","Offset: 5,096,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8770363 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0148988","Offset: 5,100,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8771170 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0149692","Offset: 5,104,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8771784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0156984","Offset: 5,108,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8772394 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0157824","Offset: 5,112,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8773000 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0165009","Offset: 5,116,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8774395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0164894","Offset: 5,121,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8775927 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0171290","Offset: 5,125,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8776708 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0171917","Offset: 5,129,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8777335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0179094","Offset: 5,133,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8777937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0192550","Offset: 5,137,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8778547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0216064","Offset: 5,141,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8780829 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0215493","Offset: 5,145,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8781555 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0183014","Offset: 5,149,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8788637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0292651","Offset: 5,153,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8789290 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0294571","Offset: 5,157,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8789888 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0296674","Offset: 5,161,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8790481 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0311270","Offset: 5,166,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8791086 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0314109","Offset: 5,170,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8791863 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0315973","Offset: 5,174,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8792396 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0323363","Offset: 5,178,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8792921 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0325645","Offset: 5,182,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8794850 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0330415","Offset: 5,186,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8795507 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0332651","Offset: 5,190,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8796049 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0338837","Offset: 5,194,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8796590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0341142","Offset: 5,198,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8797107 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0347187","Offset: 5,202,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8797627 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0349518","Offset: 5,207,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8799526 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0354851","Offset: 5,211,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8800174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0356967","Offset: 5,215,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8800704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0363285","Offset: 5,219,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8801233 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0365760","Offset: 5,223,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8802039 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0372374","Offset: 5,227,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8804049 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0372800","Offset: 5,231,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8805410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0374234","Offset: 5,235,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8806024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0381270","Offset: 5,239,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8806621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0383574","Offset: 5,243,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8807240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0389692","Offset: 5,248,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8807846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0391983","Offset: 5,252,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8808456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0398768","Offset: 5,256,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8810658 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0399458","Offset: 5,260,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8811387 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0413155","Offset: 5,264,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8812010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0414631","Offset: 5,268,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8812625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0416542","Offset: 5,272,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8813964 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0423220","Offset: 5,276,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8815364 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0424751","Offset: 5,280,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8816029 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0430640","Offset: 5,284,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8816661 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0433302","Offset: 5,288,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8817280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0438857","Offset: 5,293,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8817915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0441562","Offset: 5,297,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8819899 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0445978","Offset: 5,301,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8820633 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0447843","Offset: 5,305,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8821252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0454516","Offset: 5,309,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8821994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0456513","Offset: 5,313,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8822523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0462435","Offset: 5,317,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8823756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0463809","Offset: 5,321,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8824913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0469184","Offset: 5,325,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8825467 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0471404","Offset: 5,329,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8826009 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0478106","Offset: 5,334,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8826538 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0479924","Offset: 5,338,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8827072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0481476","Offset: 5,342,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8827609 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0488423","Offset: 5,346,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8828138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0490625","Offset: 5,350,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8830220 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0496082","Offset: 5,354,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8831133 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0498113","Offset: 5,358,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8832017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0498880","Offset: 5,362,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8834888 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0505605","Offset: 5,366,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8836010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0505503","Offset: 5,370,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8836859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0506804","Offset: 5,374,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8837691 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0514100","Offset: 5,379,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8838476 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0516165","Offset: 5,383,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8839488 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0521997","Offset: 5,387,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8840354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0523904","Offset: 5,391,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8841378 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0529029","Offset: 5,395,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8842726 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0530719","Offset: 5,399,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8843720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0536615","Offset: 5,403,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8844753 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0538437","Offset: 5,407,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8845892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0543659","Offset: 5,411,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8846826 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0545119","Offset: 5,415,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8851375 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0547362","Offset: 5,420,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8855052 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0547171","Offset: 5,424,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8856623 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0551420","Offset: 5,428,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8857322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0553162","Offset: 5,432,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8857941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0559122","Offset: 5,436,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8858564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0561771","Offset: 5,440,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8859217 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0567604","Offset: 5,444,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8859848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0569981","Offset: 5,448,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8860471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0576086","Offset: 5,452,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8861154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0577912","Offset: 5,456,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8861781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0583886","Offset: 5,460,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8862412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0586348","Offset: 5,465,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8863027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0591813","Offset: 5,469,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8863667 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0593912","Offset: 5,473,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8864290 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0599676","Offset: 5,477,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8864913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0602236","Offset: 5,481,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8866385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0607736","Offset: 5,485,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8867750 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0608982","Offset: 5,489,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8868394 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0610757","Offset: 5,493,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8869034 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0617315","Offset: 5,497,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8869670 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0619538","Offset: 5,501,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8870297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0626113","Offset: 5,506,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8870920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0628746","Offset: 5,510,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8871744 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0634757","Offset: 5,514,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8872281 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0636647","Offset: 5,518,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8872823 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0638665","Offset: 5,522,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8873365 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0645181","Offset: 5,526,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8873898 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0647348","Offset: 5,530,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8875119 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0652613","Offset: 5,534,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8876335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0654123","Offset: 5,538,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8876932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0660660","Offset: 5,542,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8877546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0662316","Offset: 5,547,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8878071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0664219","Offset: 5,551,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8878604 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0672296","Offset: 5,555,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8879125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0674945","Offset: 5,559,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8879654 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0680278","Offset: 5,563,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8880187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0682425","Offset: 5,567,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8880729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0688270","Offset: 5,571,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8881344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0690829","Offset: 5,575,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8881886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0696820","Offset: 5,579,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8882410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0698988","Offset: 5,583,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8883511 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0704274","Offset: 5,587,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8884126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0706394","Offset: 5,592,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8885265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0712137","Offset: 5,596,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8885849 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0714024","Offset: 5,600,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8886383 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0720376","Offset: 5,604,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8886907 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0723031","Offset: 5,608,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8887436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0729234","Offset: 5,612,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8887970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0731205","Offset: 5,616,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8888495 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0737071","Offset: 5,620,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8889015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0739321","Offset: 5,624,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8889544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0745721","Offset: 5,628,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8890069 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0747862","Offset: 5,633,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8890607 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0753357","Offset: 5,637,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8891136 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0755512","Offset: 5,641,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8891733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0761277","Offset: 5,645,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8892830 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0763196","Offset: 5,649,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8893435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0769734","Offset: 5,653,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8894613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0771389","Offset: 5,657,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8895172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0778437","Offset: 5,661,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8895718 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0779367","Offset: 5,665,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8896243 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0781385","Offset: 5,669,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8896785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0788438","Offset: 5,673,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8897310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0791267","Offset: 5,678,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8897847 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0797061","Offset: 5,682,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8898380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0799297","Offset: 5,686,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8898905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0801115","Offset: 5,690,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8899434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0808164","Offset: 5,694,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8899959 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0810685","Offset: 5,698,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8900484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0816850","Offset: 5,702,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8901009 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0819538","Offset: 5,706,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8902259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0824927","Offset: 5,710,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8903436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0825990","Offset: 5,714,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8904047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0828173","Offset: 5,719,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8904588 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0835419","Offset: 5,723,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8905118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0837812","Offset: 5,727,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8905651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0843401","Offset: 5,731,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8906176 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0845739","Offset: 5,735,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8906705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0852088","Offset: 5,739,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8907247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0854452","Offset: 5,743,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8907767 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0856070","Offset: 5,747,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8908292 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0863289","Offset: 5,751,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8908812 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0865533","Offset: 5,755,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8909354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0871805","Offset: 5,760,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8909982 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0873878","Offset: 5,764,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8911270 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0878683","Offset: 5,768,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8912486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0880513","Offset: 5,772,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8913054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0886051","Offset: 5,776,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8913595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0888812","Offset: 5,780,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8914124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0894850","Offset: 5,784,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8914645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0896424","Offset: 5,788,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8915178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0898318","Offset: 5,792,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8915703 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0906544","Offset: 5,796,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8916232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0909339","Offset: 5,800,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8916761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0914608","Offset: 5,805,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8917299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0916822","Offset: 5,809,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8917832 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0922809","Offset: 5,813,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8918361 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0924917","Offset: 5,817,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8918907 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0931253","Offset: 5,821,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8920136 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0932648","Offset: 5,825,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8921335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0933842","Offset: 5,829,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8921945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0940904","Offset: 5,833,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8922483 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0943045","Offset: 5,837,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8923021 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0948860","Offset: 5,841,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8923550 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0951096","Offset: 5,846,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8924074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0957672","Offset: 5,850,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8924603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0959921","Offset: 5,854,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8925124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0965791","Offset: 5,858,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8925649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0968189","Offset: 5,862,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8926182 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0974056","Offset: 5,866,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8926715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0976411","Offset: 5,870,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8927249 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0982380","Offset: 5,874,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8927769 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0984603","Offset: 5,878,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8928298 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0990845","Offset: 5,882,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8929438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0992568","Offset: 5,886,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8930547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0997936","Offset: 5,891,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8931153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1000142","Offset: 5,895,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8931682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1006713","Offset: 5,899,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8932211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1009068","Offset: 5,903,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8932731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1014969","Offset: 5,907,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8933261 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1017213","Offset: 5,911,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8933790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1023220","Offset: 5,915,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8934314 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1025457","Offset: 5,919,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8934848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1031434","Offset: 5,923,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8935411 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1033652","Offset: 5,927,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8935944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1039468","Offset: 5,932,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8936482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1041930","Offset: 5,936,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8937011 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1047907","Offset: 5,940,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8939558 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1048223","Offset: 5,944,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8940237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1054461","Offset: 5,948,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8940638 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1056564","Offset: 5,952,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8941047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1064019","Offset: 5,956,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8941359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1065592","Offset: 5,960,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8941632 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1067602","Offset: 5,964,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8941892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1074984","Offset: 5,968,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8942152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1077565","Offset: 5,972,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8942413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1083790","Offset: 5,977,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8942673 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1086265","Offset: 5,981,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8942933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1092541","Offset: 5,985,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8943232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1094939","Offset: 5,989,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8943513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1101719","Offset: 5,993,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8943774 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1104210","Offset: 5,997,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8944034 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1110777","Offset: 6,001,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8944290 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1113473","Offset: 6,005,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8944550 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1119720","Offset: 6,009,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8944802 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1122297","Offset: 6,013,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8945058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1128432","Offset: 6,018,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8945322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1130899","Offset: 6,022,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8945578 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1137034","Offset: 6,026,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8945839 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1139304","Offset: 6,030,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8946129 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1145725","Offset: 6,034,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8946440 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1148209","Offset: 6,038,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8946773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1154852","Offset: 6,042,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8947511 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1156900","Offset: 6,046,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8947865 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1163321","Offset: 6,050,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8948202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1165822","Offset: 6,054,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8948838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1171543","Offset: 6,059,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8949179 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1173958","Offset: 6,063,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8949491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1180008","Offset: 6,067,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8949760 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1182521","Offset: 6,071,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8950020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1188806","Offset: 6,075,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8950276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1191408","Offset: 6,079,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8950536 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1197672","Offset: 6,083,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8950801 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1199886","Offset: 6,087,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8951065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1206607","Offset: 6,091,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8951334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1209239","Offset: 6,095,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8951633 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1215647","Offset: 6,099,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8951897 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1218225","Offset: 6,104,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8952153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1225346","Offset: 6,108,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8952409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1227727","Offset: 6,112,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8952665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1229941","Offset: 6,116,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8952934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1237698","Offset: 6,120,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8953190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1240437","Offset: 6,124,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8953455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1246832","Offset: 6,128,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8953711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1249490","Offset: 6,132,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8953975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1256053","Offset: 6,136,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8954231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1258639","Offset: 6,140,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8954491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1265901","Offset: 6,145,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8954752 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1268601","Offset: 6,149,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8955012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1275065","Offset: 6,153,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8955268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1277710","Offset: 6,157,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8955524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1284268","Offset: 6,161,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8955780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1286961","Offset: 6,165,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8956040 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1293399","Offset: 6,169,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8956638 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1295720","Offset: 6,173,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8956945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1302141","Offset: 6,177,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8957209 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1304761","Offset: 6,181,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8957453 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1311276","Offset: 6,185,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8957679 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1314045","Offset: 6,190,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8957901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1320987","Offset: 6,194,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8958122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1323731","Offset: 6,198,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8958349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1330429","Offset: 6,202,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8958570 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1333178","Offset: 6,206,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8958801 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1339833","Offset: 6,210,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8959023 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1342504","Offset: 6,214,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8959245 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1348844","Offset: 6,218,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8959471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1351447","Offset: 6,222,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8959757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1357539","Offset: 6,226,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8959995 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1360113","Offset: 6,231,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8960222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1366265","Offset: 6,235,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8960443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1368497","Offset: 6,239,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8960670 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1375157","Offset: 6,243,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8960887 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1377704","Offset: 6,247,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8961113 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1384156","Offset: 6,251,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8961335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1386447","Offset: 6,255,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8961553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1392569","Offset: 6,259,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8961779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1395125","Offset: 6,263,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8962009 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1401679","Offset: 6,267,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8962235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1404307","Offset: 6,272,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8962457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1410537","Offset: 6,276,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8962683 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1413242","Offset: 6,280,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8962910 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1419432","Offset: 6,284,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8963140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1422193","Offset: 6,288,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8963366 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1428857","Offset: 6,292,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8963588 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1431464","Offset: 6,296,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8963810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1437962","Offset: 6,300,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8964032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1440578","Offset: 6,304,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8964249 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1446991","Offset: 6,308,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8964932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1449158","Offset: 6,312,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8965179 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1455388","Offset: 6,317,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8965401 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1457897","Offset: 6,321,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8965623 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1464113","Offset: 6,325,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8965845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1466780","Offset: 6,329,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8966071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1472971","Offset: 6,333,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8966293 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1475556","Offset: 6,337,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8966511 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1482271","Offset: 6,341,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8966733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1484934","Offset: 6,345,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8966963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1491338","Offset: 6,349,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8967181 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1494035","Offset: 6,353,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8967411 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1500401","Offset: 6,358,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8967629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1502952","Offset: 6,362,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8967885 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1509224","Offset: 6,366,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8968145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1511750","Offset: 6,370,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8968362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1518053","Offset: 6,374,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8968584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1520647","Offset: 6,378,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8968810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1526821","Offset: 6,382,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8969032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1529346","Offset: 6,386,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8969250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1536151","Offset: 6,390,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8969467 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1538823","Offset: 6,394,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8969694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1545102","Offset: 6,398,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8969915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1547723","Offset: 6,403,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8970137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1554212","Offset: 6,407,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8970760 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1556469","Offset: 6,411,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8971025 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1562656","Offset: 6,415,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8971251 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1565459","Offset: 6,419,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8971469 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1571842","Offset: 6,423,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8971695 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1574479","Offset: 6,427,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8971925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1580678","Offset: 6,431,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8972147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1583289","Offset: 6,435,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8972365 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1590167","Offset: 6,439,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8972586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1592736","Offset: 6,444,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8972808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1598906","Offset: 6,448,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8973034 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1601496","Offset: 6,452,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8973256 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1607734","Offset: 6,456,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8973474 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1610344","Offset: 6,460,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8973704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1616630","Offset: 6,464,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8973922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1619292","Offset: 6,468,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8974148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1625397","Offset: 6,472,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8974370 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1628008","Offset: 6,476,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8974596 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1634511","Offset: 6,480,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8974814 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1637126","Offset: 6,484,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8975036 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1644034","Offset: 6,489,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8975253 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1646850","Offset: 6,493,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8975479 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1653011","Offset: 6,497,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8975697 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1655524","Offset: 6,501,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8975919 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1661979","Offset: 6,505,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8976183 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1664659","Offset: 6,509,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8976444 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1670816","Offset: 6,513,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8976661 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1673432","Offset: 6,517,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8976887 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1679687","Offset: 6,521,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8977105 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1682349","Offset: 6,525,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8977331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1688629","Offset: 6,530,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8977549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1691279","Offset: 6,534,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8977770 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1698072","Offset: 6,538,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8977988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1700747","Offset: 6,542,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8978214 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1707126","Offset: 6,546,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8978436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1709592","Offset: 6,550,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8978658 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1715966","Offset: 6,554,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8978880 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1718739","Offset: 6,558,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8979102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1725062","Offset: 6,562,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8979324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1727690","Offset: 6,566,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8979541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1733933","Offset: 6,571,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8979763 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1736506","Offset: 6,575,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8979985 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1742731","Offset: 6,579,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8980207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1745316","Offset: 6,583,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8980424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1752084","Offset: 6,587,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8980642 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1754690","Offset: 6,591,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8980868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1760958","Offset: 6,595,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8981090 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1763569","Offset: 6,599,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8981316 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1769850","Offset: 6,603,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8981538 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1772546","Offset: 6,607,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8981768 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1778900","Offset: 6,611,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8981990 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1781481","Offset: 6,616,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8982255 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1787697","Offset: 6,620,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8982477 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1790299","Offset: 6,624,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8982707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1796687","Offset: 6,628,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8982929 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1799268","Offset: 6,632,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8983151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1805950","Offset: 6,636,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8983373 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1808574","Offset: 6,640,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8983599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1814871","Offset: 6,644,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8983821 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1817487","Offset: 6,648,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8984042 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1823764","Offset: 6,652,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8984269 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1826314","Offset: 6,657,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8984563 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1832484","Offset: 6,661,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8984836 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1835057","Offset: 6,665,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8985092 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1841244","Offset: 6,669,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8985318 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1843868","Offset: 6,673,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8985553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1850029","Offset: 6,677,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8985775 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1852610","Offset: 6,681,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8985997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1859270","Offset: 6,685,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8986257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1861805","Offset: 6,689,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8986483 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1868017","Offset: 6,693,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8986705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1870752","Offset: 6,697,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8986931 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1877336","Offset: 6,702,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8987153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1880002","Offset: 6,706,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8987383 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1893110","Offset: 6,710,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8987605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1896101","Offset: 6,714,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8987827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1902641","Offset: 6,718,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8988049 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1905427","Offset: 6,722,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8988279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1911512","Offset: 6,726,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8988505 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1914094","Offset: 6,730,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8988727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1920890","Offset: 6,734,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8988949 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1923420","Offset: 6,738,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8989180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1929683","Offset: 6,743,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8989401 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1932363","Offset: 6,747,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8989623 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1938686","Offset: 6,751,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8989879 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1941234","Offset: 6,755,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8990105 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1947647","Offset: 6,759,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8990327 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1950283","Offset: 6,763,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8990549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1956606","Offset: 6,767,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8990775 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1959231","Offset: 6,771,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8990997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1965545","Offset: 6,775,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8991219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1968199","Offset: 6,779,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8991441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1974914","Offset: 6,784,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8991663 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1977508","Offset: 6,788,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8991889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1984011","Offset: 6,792,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8992106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1986422","Offset: 6,796,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8992328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1992626","Offset: 6,800,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8992563 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.1995271","Offset: 6,804,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8992793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2001560","Offset: 6,808,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8993020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2004256","Offset: 6,812,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8993241 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2010597","Offset: 6,816,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8993468 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2013207","Offset: 6,820,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8993694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2019377","Offset: 6,824,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8993916 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2022142","Offset: 6,829,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8994137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2028978","Offset: 6,833,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8994359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2031649","Offset: 6,837,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8996531 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2036043","Offset: 6,841,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8996966 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2038441","Offset: 6,845,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8997337 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2044393","Offset: 6,849,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8997687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2046898","Offset: 6,853,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8998037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2053050","Offset: 6,857,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8998391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2055504","Offset: 6,861,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8998754 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2061571","Offset: 6,865,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8999125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2063990","Offset: 6,870,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8999505 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2070001","Offset: 6,874,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.8999872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2072450","Offset: 6,878,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9000222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2079115","Offset: 6,882,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9000576 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2081577","Offset: 6,886,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9000930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2087653","Offset: 6,890,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9001297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2090106","Offset: 6,894,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9001660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2096326","Offset: 6,898,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9002022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2098819","Offset: 6,902,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9002389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2104912","Offset: 6,906,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9003012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2107361","Offset: 6,910,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9003469 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2113632","Offset: 6,915,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9003848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2116044","Offset: 6,919,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9004266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2122111","Offset: 6,923,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9004621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2124551","Offset: 6,927,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9004966 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2131165","Offset: 6,931,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9005273 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2133802","Offset: 6,935,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9005512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2139992","Offset: 6,939,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9005781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2142522","Offset: 6,943,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9006033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2148675","Offset: 6,947,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9006323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2151149","Offset: 6,951,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9007868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2156064","Offset: 6,956,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9008175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2158612","Offset: 6,960,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9008409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2164854","Offset: 6,964,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9008640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2167623","Offset: 6,968,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9008870 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2173968","Offset: 6,972,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9009109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2176613","Offset: 6,976,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9009340 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2183422","Offset: 6,980,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9009566 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2186055","Offset: 6,984,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9009796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2192259","Offset: 6,988,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9010026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2194939","Offset: 6,992,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9010257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2201206","Offset: 6,996,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9010483 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2203804","Offset: 7,001,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9010705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2210085","Offset: 7,005,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9010982 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2212641","Offset: 7,009,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9011238 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2218939","Offset: 7,013,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9011464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2221678","Offset: 7,017,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9011686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2227941","Offset: 7,021,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9011912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2230476","Offset: 7,025,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9012143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2237148","Offset: 7,029,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9012369 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2239794","Offset: 7,033,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9012591 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2246258","Offset: 7,037,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9012817 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2248907","Offset: 7,042,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9013039 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2255137","Offset: 7,046,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9013269 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2257740","Offset: 7,050,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9013495 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2264050","Offset: 7,054,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9013730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2266627","Offset: 7,058,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9013956 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2272848","Offset: 7,062,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9014178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2275429","Offset: 7,066,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9014413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2281654","Offset: 7,070,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9014639 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2284214","Offset: 7,074,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9014865 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2290985","Offset: 7,078,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9015082 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2293601","Offset: 7,083,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9015309 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2299932","Offset: 7,087,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9015539 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2302480","Offset: 7,091,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9015765 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2308731","Offset: 7,095,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9016000 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2311295","Offset: 7,099,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9016230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2317383","Offset: 7,103,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9016503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2320136","Offset: 7,107,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9016734 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2326287","Offset: 7,111,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9016960 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2329829","Offset: 7,115,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9017186 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2336161","Offset: 7,119,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9017408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2338751","Offset: 7,123,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9017634 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2345821","Offset: 7,128,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9017864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2348402","Offset: 7,132,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9018090 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2354521","Offset: 7,136,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9018321 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2365242","Offset: 7,140,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9018547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2367017","Offset: 7,144,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9018773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2369437","Offset: 7,148,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9019004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2376792","Offset: 7,152,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9019238 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2379318","Offset: 7,156,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9019486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2385552","Offset: 7,160,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9019708 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2388060","Offset: 7,164,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9019929 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2394883","Offset: 7,169,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9020164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2397789","Offset: 7,173,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9020394 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2403827","Offset: 7,177,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9020621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2406411","Offset: 7,181,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9020847 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2412688","Offset: 7,185,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9021069 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2415307","Offset: 7,189,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9021299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2421652","Offset: 7,193,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9021525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2424063","Offset: 7,197,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9021751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2430339","Offset: 7,201,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9021973 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2432963","Offset: 7,205,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9022199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2439257","Offset: 7,209,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9022430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2441893","Offset: 7,214,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9022656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2448707","Offset: 7,218,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9022882 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2451323","Offset: 7,222,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9023112 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2457557","Offset: 7,226,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9023339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2460103","Offset: 7,230,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9023573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2466324","Offset: 7,234,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9023799 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2468863","Offset: 7,238,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9024025 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2475263","Offset: 7,242,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9024252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2477840","Offset: 7,246,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9024478 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2484065","Offset: 7,250,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9024704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2486633","Offset: 7,255,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9024934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2492812","Offset: 7,259,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9025156 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2495385","Offset: 7,263,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9025382 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2502118","Offset: 7,267,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9025608 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2504703","Offset: 7,271,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9025843 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2511018","Offset: 7,275,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9026073 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2513616","Offset: 7,279,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9026300 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2519811","Offset: 7,283,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9026560 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2522358","Offset: 7,287,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9026816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2528596","Offset: 7,291,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9027093 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2531097","Offset: 7,296,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9027349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2537271","Offset: 7,300,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9027605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2539792","Offset: 7,304,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9027831 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2545911","Offset: 7,308,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9028062 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2548624","Offset: 7,312,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9028292 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2555673","Offset: 7,316,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9028523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2558241","Offset: 7,320,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9028749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2564363","Offset: 7,324,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9028975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2566915","Offset: 7,328,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9029201 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2573115","Offset: 7,332,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9029436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2575640","Offset: 7,336,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9029657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2582114","Offset: 7,341,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9029888 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2584643","Offset: 7,345,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9030114 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2590915","Offset: 7,349,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9030340 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2593437","Offset: 7,353,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9030566 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2599654","Offset: 7,357,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9030797 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2602153","Offset: 7,361,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9031027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2608806","Offset: 7,365,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9031253 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2611417","Offset: 7,369,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9031484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2617565","Offset: 7,373,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9031714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2620091","Offset: 7,377,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9031940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2626406","Offset: 7,382,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9032166 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2628940","Offset: 7,386,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9032392 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2635191","Offset: 7,390,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9032619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2637754","Offset: 7,394,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9032853 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2644087","Offset: 7,398,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9033079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2646626","Offset: 7,402,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9033310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2652914","Offset: 7,406,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9033536 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2655478","Offset: 7,410,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9033766 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2662357","Offset: 7,414,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9033992 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2665019","Offset: 7,418,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9034219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2671295","Offset: 7,422,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9034445 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2673842","Offset: 7,427,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9034675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2680059","Offset: 7,431,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9034901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2682662","Offset: 7,435,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9035127 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2688831","Offset: 7,439,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9035358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2691370","Offset: 7,443,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9035631 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2697514","Offset: 7,447,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9035891 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2700048","Offset: 7,451,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9036117 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2706355","Offset: 7,455,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9036403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2708914","Offset: 7,459,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9036642 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2715758","Offset: 7,463,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9036872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2718314","Offset: 7,468,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9037103 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2724496","Offset: 7,472,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9037329 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2727060","Offset: 7,476,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9037559 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2733252","Offset: 7,480,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9037785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2735761","Offset: 7,484,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9038020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2741960","Offset: 7,488,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9038242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2744597","Offset: 7,492,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9038468 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2750852","Offset: 7,496,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9038699 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2753381","Offset: 7,500,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9038920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2759530","Offset: 7,504,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9039151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2762073","Offset: 7,508,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9039377 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2768750","Offset: 7,513,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9039607 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2771349","Offset: 7,517,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9039838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2778000","Offset: 7,521,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9040072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2780510","Offset: 7,525,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9040307 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2786777","Offset: 7,529,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9040542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2789337","Offset: 7,533,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9040776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2795622","Offset: 7,537,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9041003 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2798143","Offset: 7,541,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9041233 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2804304","Offset: 7,545,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9041463 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2806890","Offset: 7,549,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9041698 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2813043","Offset: 7,554,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9041997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2815560","Offset: 7,558,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9042359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2822442","Offset: 7,562,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9042726 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2824968","Offset: 7,566,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9043093 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2831010","Offset: 7,570,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9043353 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2833523","Offset: 7,574,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9043635 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2839607","Offset: 7,578,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9043912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2842116","Offset: 7,582,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9044203 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2848170","Offset: 7,586,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9044433 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2850687","Offset: 7,590,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9044672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2856998","Offset: 7,595,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9044902 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2859592","Offset: 7,599,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9045128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2865886","Offset: 7,603,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9045359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2868505","Offset: 7,607,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9045585 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2875332","Offset: 7,611,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9045811 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2877969","Offset: 7,615,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9046041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2884377","Offset: 7,619,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9046272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2887056","Offset: 7,623,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9046498 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2893213","Offset: 7,627,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9046728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2896188","Offset: 7,631,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9046955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2902194","Offset: 7,635,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9047185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2904712","Offset: 7,640,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9047415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2910959","Offset: 7,644,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9047748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2913450","Offset: 7,648,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9048038 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2919616","Offset: 7,652,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9048316 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2922137","Offset: 7,656,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9048546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2928989","Offset: 7,660,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9048879 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2931451","Offset: 7,664,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9049143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2937715","Offset: 7,668,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9049378 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2940279","Offset: 7,672,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9049600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2946611","Offset: 7,676,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9049835 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2949537","Offset: 7,681,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9050065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2955677","Offset: 7,685,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9050295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2958238","Offset: 7,689,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9050526 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2964356","Offset: 7,693,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9050760 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2966886","Offset: 7,697,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9050991 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2973111","Offset: 7,701,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9051230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2975709","Offset: 7,705,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9051460 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2982400","Offset: 7,709,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9051695 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2984968","Offset: 7,713,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9051925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2991257","Offset: 7,717,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9052190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.2993834","Offset: 7,721,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9052450 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3000166","Offset: 7,726,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9052770 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3002700","Offset: 7,730,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9053009 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3009036","Offset: 7,734,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9053487 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3011353","Offset: 7,738,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9053811 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3017523","Offset: 7,742,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9054080 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3019933","Offset: 7,746,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9054370 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3026022","Offset: 7,750,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9054613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3028544","Offset: 7,754,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9054848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3035217","Offset: 7,758,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9055083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3037832","Offset: 7,762,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9055313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3043874","Offset: 7,767,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9055548 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3046493","Offset: 7,771,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9055778 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3052595","Offset: 7,775,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9056055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3055309","Offset: 7,779,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9056286 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3061597","Offset: 7,783,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9056546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3063778","Offset: 7,787,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9056781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3070318","Offset: 7,791,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9057007 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3072874","Offset: 7,795,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9057246 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3079082","Offset: 7,799,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9057515 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3081783","Offset: 7,803,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9057779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3088665","Offset: 7,808,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9058018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3091319","Offset: 7,812,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9058244 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3097549","Offset: 7,816,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9058479 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3100138","Offset: 7,820,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9058709 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3106283","Offset: 7,824,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9058944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3108957","Offset: 7,828,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9059174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3115311","Offset: 7,832,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9059413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3117751","Offset: 7,836,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9059639 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3124088","Offset: 7,840,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9059870 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3126391","Offset: 7,844,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9060100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3132911","Offset: 7,848,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9060373 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3135471","Offset: 7,853,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9060672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3142250","Offset: 7,857,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9060983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3144768","Offset: 7,861,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9061222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3151019","Offset: 7,865,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9061461 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3153587","Offset: 7,869,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9061687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3159953","Offset: 7,873,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9061969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3162474","Offset: 7,877,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9062204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3168520","Offset: 7,881,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9062438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3171200","Offset: 7,885,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9062664 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3177425","Offset: 7,889,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9062895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3180006","Offset: 7,894,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9063125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3186112","Offset: 7,898,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9063356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3188676","Offset: 7,902,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9063586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3195460","Offset: 7,906,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9063816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3198050","Offset: 7,910,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9064047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3204271","Offset: 7,914,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9064307 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3206788","Offset: 7,918,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9064584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3213073","Offset: 7,922,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9064904 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3215591","Offset: 7,926,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9065288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3221807","Offset: 7,930,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9065672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3224162","Offset: 7,934,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9066065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3230165","Offset: 7,939,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9066449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3232832","Offset: 7,943,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9066820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3238865","Offset: 7,947,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9067196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3241284","Offset: 7,951,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9067580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3247842","Offset: 7,955,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9067959 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3250266","Offset: 7,959,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9068335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3256205","Offset: 7,963,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9068825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3258505","Offset: 7,967,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9069209 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3264632","Offset: 7,971,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9069589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3267017","Offset: 7,975,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9069969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3273156","Offset: 7,980,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9070336 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3275571","Offset: 7,984,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9070707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3281527","Offset: 7,988,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9071083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3283925","Offset: 7,992,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9071458 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3290180","Offset: 7,996,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9071833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3292626","Offset: 8,000,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9072200 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3299269","Offset: 8,004,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9072597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3301598","Offset: 8,008,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9072960 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3307400","Offset: 8,012,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9073318 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3310221","Offset: 8,016,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9073685 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3316301","Offset: 8,020,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9074009 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3318780","Offset: 8,025,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9074248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3325056","Offset: 8,029,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9074479 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3327637","Offset: 8,033,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9074731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3333853","Offset: 8,037,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9074965 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3336427","Offset: 8,041,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9075187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3342741","Offset: 8,045,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9075426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3345250","Offset: 8,049,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9075661 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3351880","Offset: 8,053,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9075891 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3354441","Offset: 8,057,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9076117 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3360738","Offset: 8,061,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9076348 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3363375","Offset: 8,066,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9076574 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3369706","Offset: 8,070,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9076817 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3372262","Offset: 8,074,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9077107 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3378466","Offset: 8,078,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9077338 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3381226","Offset: 8,082,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9077568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3387452","Offset: 8,086,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9077798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3390106","Offset: 8,090,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9078024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3396310","Offset: 8,094,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9078251 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3398971","Offset: 8,098,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9078477 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3405849","Offset: 8,102,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9078711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3408487","Offset: 8,107,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9078963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3414588","Offset: 8,111,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9079215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3417126","Offset: 8,115,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9079437 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3423356","Offset: 8,119,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9079680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3425907","Offset: 8,123,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9079940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3432184","Offset: 8,127,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9080171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3434829","Offset: 8,131,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9080414 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3441096","Offset: 8,135,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9081638 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3442680","Offset: 8,139,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9081933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3448939","Offset: 8,143,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9082172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3451366","Offset: 8,147,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9082445 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3457856","Offset: 8,152,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9082679 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3460839","Offset: 8,156,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9082910 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3467051","Offset: 8,160,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9083140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3469504","Offset: 8,164,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9083366 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3475776","Offset: 8,168,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9083597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3478272","Offset: 8,172,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9084292 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3483934","Offset: 8,176,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9084531 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3486447","Offset: 8,180,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9084762 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3492770","Offset: 8,184,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9084996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3495258","Offset: 8,188,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9085252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3501534","Offset: 8,193,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9085487 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3504115","Offset: 8,197,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9085709 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3510711","Offset: 8,201,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9085943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3513242","Offset: 8,205,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9086174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3519364","Offset: 8,209,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9086805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3521502","Offset: 8,213,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9087074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3527561","Offset: 8,217,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9087330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3530185","Offset: 8,221,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9087569 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3536482","Offset: 8,225,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9087808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3539081","Offset: 8,229,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9088043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3547742","Offset: 8,233,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9088269 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3550404","Offset: 8,238,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9088495 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3556036","Offset: 8,242,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9088725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3558874","Offset: 8,246,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9088947 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3565086","Offset: 8,250,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9089182 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3568038","Offset: 8,254,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9089412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3573795","Offset: 8,258,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9089664 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3576883","Offset: 8,262,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9089886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3584175","Offset: 8,266,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9090116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3587610","Offset: 8,270,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9090342 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3590546","Offset: 8,274,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9090564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3597765","Offset: 8,279,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9090799 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3601485","Offset: 8,283,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9091025 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3604728","Offset: 8,287,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9091247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3612438","Offset: 8,291,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9091473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3616717","Offset: 8,295,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9091699 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3620429","Offset: 8,299,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9091925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3628408","Offset: 8,303,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9092151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3633046","Offset: 8,307,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9092386 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3637219","Offset: 8,311,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9092616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3645799","Offset: 8,315,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9092843 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3650991","Offset: 8,320,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9093064 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3659418","Offset: 8,324,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9093389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3664841","Offset: 8,328,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9093645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3670012","Offset: 8,332,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9093867 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3679727","Offset: 8,336,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9094938 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3685193","Offset: 8,340,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9095620 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3690616","Offset: 8,344,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9095974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.3953093","Offset: 8,348,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9096294 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4063459","Offset: 8,352,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9096546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4230444","Offset: 8,356,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9096798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4229424","Offset: 8,360,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9097024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4232266","Offset: 8,365,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9097263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4231506","Offset: 8,369,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9097527 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4230811","Offset: 8,373,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9097771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4230166","Offset: 8,377,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9098001 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4240142","Offset: 8,381,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9098257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4239506","Offset: 8,385,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9098496 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4238478","Offset: 8,389,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9098743 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4241337","Offset: 8,393,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9098978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4240343","Offset: 8,397,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9099208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4239716","Offset: 8,401,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9099439 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4240197","Offset: 8,406,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9099669 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4249951","Offset: 8,410,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9099904 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4249371","Offset: 8,414,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9100143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4248364","Offset: 8,418,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9100395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4251457","Offset: 8,422,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9100655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4250855","Offset: 8,426,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9101047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4249862","Offset: 8,430,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9101406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4248965","Offset: 8,434,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9101901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4259346","Offset: 8,438,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9102285 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4258612","Offset: 8,442,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9102609 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4257541","Offset: 8,446,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9102852 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4260170","Offset: 8,451,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9103087 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4259291","Offset: 8,455,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9103313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4260690","Offset: 8,459,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9103586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4259939","Offset: 8,463,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9103940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4268695","Offset: 8,467,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9104303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4267935","Offset: 8,471,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9104602 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4266672","Offset: 8,475,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9104853 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4268823","Offset: 8,479,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9105101 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4270572","Offset: 8,483,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9105344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4269864","Offset: 8,487,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9105579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4269151","Offset: 8,492,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9105800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4268413","Offset: 8,496,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9106027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4279408","Offset: 8,500,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9106321 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4278610","Offset: 8,504,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9106556 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4277185","Offset: 8,508,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9106790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4281614","Offset: 8,512,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9107068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4280884","Offset: 8,516,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9107302 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4280206","Offset: 8,520,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9107528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4279515","Offset: 8,524,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9107759 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4278777","Offset: 8,528,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9108002 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4289567","Offset: 8,532,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9108407 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4288445","Offset: 8,537,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9108838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4287020","Offset: 8,541,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9109235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4291159","Offset: 8,545,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9109632 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4290318","Offset: 8,549,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9110054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4289457","Offset: 8,553,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9110306 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4288739","Offset: 8,557,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9110541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4287937","Offset: 8,561,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9110810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4299167","Offset: 8,565,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9111048 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4298438","Offset: 8,569,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9111279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4297085","Offset: 8,573,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9111514 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4300272","Offset: 8,578,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9111740 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4299598","Offset: 8,582,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9111970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4298847","Offset: 8,586,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9112200 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4300635","Offset: 8,590,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9112427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4299820","Offset: 8,594,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9112661 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4310107","Offset: 8,598,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9112892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4309351","Offset: 8,602,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9113122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4308106","Offset: 8,606,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9113344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4312432","Offset: 8,610,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9113579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4311711","Offset: 8,614,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9113830 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4310807","Offset: 8,619,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9114056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4310090","Offset: 8,623,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9114291 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4309284","Offset: 8,627,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9114522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4320671","Offset: 8,631,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9114756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4319942","Offset: 8,635,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9114978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4318482","Offset: 8,639,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9115213 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4322911","Offset: 8,643,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9115439 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4322245","Offset: 8,647,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9115669 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4321580","Offset: 8,651,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9115908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4320893","Offset: 8,655,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9116147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4319903","Offset: 8,659,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9116373 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4331223","Offset: 8,664,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9116595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4330480","Offset: 8,668,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9116838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4329060","Offset: 8,672,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9117069 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4332434","Offset: 8,676,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9117295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4331752","Offset: 8,680,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9117525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4330958","Offset: 8,684,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9117751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4332943","Offset: 8,688,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9118101 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4331944","Offset: 8,692,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9118353 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4341911","Offset: 8,696,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9118622 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4341164","Offset: 8,700,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9118895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4339850","Offset: 8,705,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9119505 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4342623","Offset: 8,709,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9119782 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4341856","Offset: 8,713,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9120013 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4341113","Offset: 8,717,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9120239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4342858","Offset: 8,721,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9120465 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4342154","Offset: 8,725,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9120695 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4352868","Offset: 8,729,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9120922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4352248","Offset: 8,733,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9121160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4351562","Offset: 8,737,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9121395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4350141","Offset: 8,741,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9121626 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4355026","Offset: 8,745,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9121852 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4354463","Offset: 8,750,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9122074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4353746","Offset: 8,754,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9122300 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4352278","Offset: 8,758,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9122522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4352927","Offset: 8,762,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9122748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4352291","Offset: 8,766,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9122982 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4363940","Offset: 8,770,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9123208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4363262","Offset: 8,774,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9123435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4362190","Offset: 8,778,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9123686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4365770","Offset: 8,782,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9123917 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4365198","Offset: 8,786,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9124143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4364635","Offset: 8,791,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9124369 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4364067","Offset: 8,795,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9124604 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4363466","Offset: 8,799,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9124834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4374444","Offset: 8,803,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9125060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4373813","Offset: 8,807,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9125291 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4372750","Offset: 8,811,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9125525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4375037","Offset: 8,815,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9125756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4375988","Offset: 8,819,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9126016 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4375331","Offset: 8,823,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9126272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4373868","Offset: 8,827,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9126600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4384629","Offset: 8,832,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9126835 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4383878","Offset: 8,836,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9127066 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4382375","Offset: 8,840,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9127296 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4385576","Offset: 8,844,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9127561 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4384551","Offset: 8,848,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9127821 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4386531","Offset: 8,852,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9128055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4385854","Offset: 8,856,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9128290 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4385115","Offset: 8,860,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9128521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4394804","Offset: 8,864,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9128755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4394011","Offset: 8,868,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9128977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4392565","Offset: 8,872,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9129207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4396955","Offset: 8,877,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9129429 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4396093","Offset: 8,881,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9129664 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4395385","Offset: 8,885,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9129894 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4394711","Offset: 8,889,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9130138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4393955","Offset: 8,893,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9130364 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4403798","Offset: 8,897,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9130590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4405360","Offset: 8,901,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9130820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4404610","Offset: 8,905,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9131051 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4407835","Offset: 8,909,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9131311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4407144","Offset: 8,913,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9131537 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4406453","Offset: 8,918,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9131772 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4405740","Offset: 8,922,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9132028 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4404720","Offset: 8,926,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9132258 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4416138","Offset: 8,930,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9132484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4415400","Offset: 8,934,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9132715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4413991","Offset: 8,938,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9132983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4417278","Offset: 8,942,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9133222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4416591","Offset: 8,946,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9133453 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4415839","Offset: 8,950,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9133679 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4417772","Offset: 8,954,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9133909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4416804","Offset: 8,958,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9134140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4426190","Offset: 8,963,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9134362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4425456","Offset: 8,967,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9134669 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4423967","Offset: 8,971,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9134929 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4427039","Offset: 8,975,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9135164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4426288","Offset: 8,979,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9135386 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4428080","Offset: 8,983,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9135612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4427406","Offset: 8,987,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9135842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4426651","Offset: 8,991,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9136068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4436622","Offset: 8,995,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9136299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4435845","Offset: 8,999,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9136529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4434608","Offset: 9,004,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9136755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4439050","Offset: 9,008,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9136981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4438308","Offset: 9,012,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9137212 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4437625","Offset: 9,016,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9137438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4436865","Offset: 9,020,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9137664 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4435888","Offset: 9,024,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9137907 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4447886","Offset: 9,028,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9138138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4447135","Offset: 9,032,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9138368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4445531","Offset: 9,036,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9138590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4450054","Offset: 9,040,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9138820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4449397","Offset: 9,044,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9139046 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4448612","Offset: 9,049,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9139277 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4447924","Offset: 9,053,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9139503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4447157","Offset: 9,057,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9139733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4457691","Offset: 9,061,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9139964 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4456744","Offset: 9,065,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9140190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4455553","Offset: 9,069,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9140416 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4458894","Offset: 9,073,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9140646 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4458203","Offset: 9,077,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9140873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4457430","Offset: 9,081,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9141107 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4459266","Offset: 9,085,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9141338 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4458450","Offset: 9,090,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9141564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4468417","Offset: 9,094,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9141786 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4467675","Offset: 9,098,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9142037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4466191","Offset: 9,102,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9142272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4469377","Offset: 9,106,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9142494 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4468379","Offset: 9,110,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9142737 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4470431","Offset: 9,114,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9142997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4469740","Offset: 9,118,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9143228 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4468989","Offset: 9,122,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9143450 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4479297","Offset: 9,126,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9143680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4478529","Offset: 9,131,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9143906 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4477356","Offset: 9,135,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9144137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4481848","Offset: 9,139,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9144375 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4481154","Offset: 9,143,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9144614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4480347","Offset: 9,147,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9144841 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4479310","Offset: 9,151,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9145062 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4478560","Offset: 9,155,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9145289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4489733","Offset: 9,159,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9145673 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4488615","Offset: 9,163,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9146091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4486998","Offset: 9,167,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9146466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4491372","Offset: 9,171,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9146807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4490451","Offset: 9,176,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9147063 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4489760","Offset: 9,180,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9147294 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4489072","Offset: 9,184,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9147524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4488296","Offset: 9,188,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9147750 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4499232","Offset: 9,192,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9147981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4498523","Offset: 9,196,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9148245 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4497278","Offset: 9,200,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9148484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4500691","Offset: 9,204,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9148715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4499978","Offset: 9,208,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9148937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4499218","Offset: 9,212,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9149171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4501053","Offset: 9,217,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9149397 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4500230","Offset: 9,221,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9149628 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4509936","Offset: 9,225,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9149862 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4509216","Offset: 9,229,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9150093 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4507978","Offset: 9,233,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9150323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4510922","Offset: 9,237,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9150549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4509847","Offset: 9,241,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9150775 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4512011","Offset: 9,245,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9151019 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4511284","Offset: 9,249,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9151253 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4510538","Offset: 9,253,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9151518 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4520573","Offset: 9,257,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9151748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4519759","Offset: 9,262,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9151979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4518346","Offset: 9,266,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9152205 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4522787","Offset: 9,270,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9152435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4522105","Offset: 9,274,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9152666 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4521294","Offset: 9,278,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9152892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4520599","Offset: 9,282,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9153126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4519840","Offset: 9,286,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9153442 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4531445","Offset: 9,290,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9153813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4530105","Offset: 9,294,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9154138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4528739","Offset: 9,298,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9154432 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4533365","Offset: 9,303,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9154714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4532515","Offset: 9,307,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9155085 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4531675","Offset: 9,311,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9155456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4530864","Offset: 9,315,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9155827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4529947","Offset: 9,319,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9156177 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4540639","Offset: 9,323,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9156489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4539824","Offset: 9,327,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9156779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4538531","Offset: 9,331,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9157056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4541804","Offset: 9,335,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9157346 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4541036","Offset: 9,339,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9157641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4539982","Offset: 9,344,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9157918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4541915","Offset: 9,348,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9158199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4541113","Offset: 9,352,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9158477 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4550551","Offset: 9,356,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9158754 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4549757","Offset: 9,360,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9159053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4548460","Offset: 9,364,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9159313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4551178","Offset: 9,368,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9159535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4550444","Offset: 9,372,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9159761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4552398","Offset: 9,376,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9159991 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4551716","Offset: 9,380,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9160222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4550965","Offset: 9,384,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9160448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4561166","Offset: 9,389,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9160678 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4560416","Offset: 9,393,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9160909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4558994","Offset: 9,397,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9161135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4563406","Offset: 9,401,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9161382 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4562716","Offset: 9,405,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9161613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4561904","Offset: 9,409,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9161886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4561183","Offset: 9,413,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9162146 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4560373","Offset: 9,417,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9162458 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4571406","Offset: 9,421,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9162812 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4570557","Offset: 9,425,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9163174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4569175","Offset: 9,430,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9163507 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4573510","Offset: 9,434,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9163844 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4572738","Offset: 9,438,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9164373 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4571735","Offset: 9,442,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9164817 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4570822","Offset: 9,446,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9165218 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4569926","Offset: 9,450,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9165649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4580426","Offset: 9,454,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9166050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4579513","Offset: 9,458,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9166426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4578190","Offset: 9,462,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9166818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4581181","Offset: 9,466,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9167241 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4580276","Offset: 9,470,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9167945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4579013","Offset: 9,475,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9168218 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4580759","Offset: 9,479,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9168461 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4580012","Offset: 9,483,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9168738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4590287","Offset: 9,487,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9169050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4589364","Offset: 9,491,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9169843 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4587599","Offset: 9,495,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9170786 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4589642","Offset: 9,499,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9171366 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4588495","Offset: 9,503,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9171947 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4590073","Offset: 9,507,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9172378 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4589198","Offset: 9,511,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9172710 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4588200","Offset: 9,516,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9173013 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4598287","Offset: 9,520,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9174925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4595684","Offset: 9,524,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9175569 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4594075","Offset: 9,528,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9175932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4598329","Offset: 9,532,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9177092 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4596597","Offset: 9,536,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9180105 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4593157","Offset: 9,540,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9180587 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4592202","Offset: 9,544,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9180984 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4591216","Offset: 9,548,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9181346 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4602622","Offset: 9,552,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9181585 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4601768","Offset: 9,556,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9181824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4600531","Offset: 9,561,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9182136 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4605270","Offset: 9,565,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9182498 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4604465","Offset: 9,569,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9182844 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4603679","Offset: 9,573,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9183091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4602984","Offset: 9,577,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9183347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4602280","Offset: 9,581,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9183573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4601538","Offset: 9,585,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9183808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4612896","Offset: 9,589,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9184038 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4612175","Offset: 9,593,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9184260 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4610959","Offset: 9,597,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9184486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4614108","Offset: 9,602,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9184717 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4613395","Offset: 9,606,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9185545 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4614000","Offset: 9,610,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9185950 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4613083","Offset: 9,614,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9186313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4611248","Offset: 9,618,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9186675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4623050","Offset: 9,622,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9187686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4621540","Offset: 9,626,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9188113 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4619867","Offset: 9,630,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9188523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4622090","Offset: 9,634,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9188907 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4624163","Offset: 9,638,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9189278 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4623379","Offset: 9,643,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9189636 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4622594","Offset: 9,647,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9190605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4621168","Offset: 9,651,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9191057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4620098","Offset: 9,655,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9191467 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4631387","Offset: 9,659,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9191885 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4630483","Offset: 9,663,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9192277 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4629101","Offset: 9,667,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9192687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4633090","Offset: 9,671,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9193084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4632228","Offset: 9,675,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9193472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4631375","Offset: 9,679,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9193856 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4630380","Offset: 9,683,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9194287 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4629442","Offset: 9,688,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9194671 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4639178","Offset: 9,692,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9195055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4640377","Offset: 9,696,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9195465 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4639391","Offset: 9,700,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9195857 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4642540","Offset: 9,704,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9196245 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4641534","Offset: 9,708,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9197282 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4639998","Offset: 9,712,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9197747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4639093","Offset: 9,716,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9198148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4638155","Offset: 9,720,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9198468 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4649453","Offset: 9,724,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9198758 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4648659","Offset: 9,729,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9199044 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4647417","Offset: 9,733,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9199326 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4650737","Offset: 9,737,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9200154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4649461","Offset: 9,741,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9200499 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4650524","Offset: 9,745,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9200892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4649627","Offset: 9,749,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9201212 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4647891","Offset: 9,753,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9201506 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4658647","Offset: 9,757,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9201848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4657763","Offset: 9,761,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9202125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4656437","Offset: 9,765,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9202496 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4660452","Offset: 9,769,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9202889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4659632","Offset: 9,774,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9203277 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4658818","Offset: 9,778,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9203661 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4657776","Offset: 9,782,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9204100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4656813","Offset: 9,786,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9205798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4667428","Offset: 9,790,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9206191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4666519","Offset: 9,794,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9206485 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4665005","Offset: 9,798,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9206746 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4669505","Offset: 9,802,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9206993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4668691","Offset: 9,806,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9207236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4667855","Offset: 9,810,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9207484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4667142","Offset: 9,815,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9207714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4666383","Offset: 9,819,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9207957 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4677997","Offset: 9,823,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9208184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4677002","Offset: 9,827,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9208482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4675496","Offset: 9,831,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9208717 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4680155","Offset: 9,835,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9208952 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4679319","Offset: 9,839,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9209190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4678616","Offset: 9,843,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9209425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4677894","Offset: 9,847,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9209651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4677122","Offset: 9,851,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9209877 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4687695","Offset: 9,856,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9210108 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4686973","Offset: 9,860,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9210355 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4685766","Offset: 9,864,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9210624 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4688817","Offset: 9,868,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9210863 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4688113","Offset: 9,872,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9211093 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4687341","Offset: 9,876,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9211379 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4689000","Offset: 9,880,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9211729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4688164","Offset: 9,884,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9212070 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4698225","Offset: 9,888,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9212395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4696902","Offset: 9,892,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9212715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4698485","Offset: 9,896,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9213048 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4700550","Offset: 9,901,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9213436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4699735","Offset: 9,905,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9213807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4698916","Offset: 9,909,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9214161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4697969","Offset: 9,913,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9214417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4697278","Offset: 9,917,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9214665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4708921","Offset: 9,921,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9214891 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4708174","Offset: 9,925,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9215121 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4706707","Offset: 9,929,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9215352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4711195","Offset: 9,933,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9215620 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4710466","Offset: 9,937,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9215855 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4709621","Offset: 9,942,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9216085 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4708866","Offset: 9,946,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9216312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4708119","Offset: 9,950,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9216542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4719225","Offset: 9,954,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9216819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4718423","Offset: 9,958,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9217058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4717190","Offset: 9,962,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9217323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4721721","Offset: 9,966,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9217549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4720910","Offset: 9,970,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9217779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4720254","Offset: 9,974,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9218005 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4719584","Offset: 9,978,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9218236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4718841","Offset: 9,982,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9218470 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4727900","Offset: 9,987,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9218731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4726935","Offset: 9,991,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9218974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4729158","Offset: 9,995,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9219204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4728395","Offset: 9,999,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9219443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4727780","Offset: 10,003,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9219674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4729094","Offset: 10,007,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9219955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4734667","Offset: 10,011,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9220297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4735140","Offset: 10,015,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9220698 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4735784","Offset: 10,019,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9221086 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4735037","Offset: 10,023,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9221406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4740004","Offset: 10,028,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9221653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4740457","Offset: 10,032,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9221914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4740985","Offset: 10,036,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9222136 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4741347","Offset: 10,040,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9222362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4745542","Offset: 10,044,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9222592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4745969","Offset: 10,048,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9222827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4746344","Offset: 10,052,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9223053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4750764","Offset: 10,056,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9223279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4751195","Offset: 10,060,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9223509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4751635","Offset: 10,064,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9223736 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4752001","Offset: 10,068,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9223966 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4758551","Offset: 10,073,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9224192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4757783","Offset: 10,077,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9224422 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4759627","Offset: 10,081,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9224653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4758978","Offset: 10,085,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9224883 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4758381","Offset: 10,089,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9225118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4764243","Offset: 10,093,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9225344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4764776","Offset: 10,097,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9225579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4765126","Offset: 10,101,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9225801 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4768799","Offset: 10,105,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9226031 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4769239","Offset: 10,109,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9226304 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4769747","Offset: 10,114,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9226534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4773920","Offset: 10,118,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9226773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4774415","Offset: 10,122,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9227004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4774811","Offset: 10,126,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9227238 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4778814","Offset: 10,130,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9227503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4779193","Offset: 10,134,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9227738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4779564","Offset: 10,138,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9227968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4783426","Offset: 10,142,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9228190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4783912","Offset: 10,146,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9228433 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4784339","Offset: 10,150,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9228659 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4788179","Offset: 10,155,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9228898 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4788584","Offset: 10,159,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9229124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4789033","Offset: 10,163,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9229368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4793397","Offset: 10,167,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9229598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4793824","Offset: 10,171,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9229828 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4794208","Offset: 10,175,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9230063 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4798048","Offset: 10,179,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9230298 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4798611","Offset: 10,183,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9230549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4799111","Offset: 10,187,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9230780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4802818","Offset: 10,191,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9231019 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4803321","Offset: 10,195,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9231245 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4803795","Offset: 10,200,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9231471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4807452","Offset: 10,204,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9231706 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4808040","Offset: 10,208,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9231932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4808471","Offset: 10,212,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9232158 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4812614","Offset: 10,216,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9232401 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4813126","Offset: 10,220,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9232640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4813643","Offset: 10,224,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9232871 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4817298","Offset: 10,228,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9233097 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4817840","Offset: 10,232,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9233323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4818289","Offset: 10,236,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9233557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4821980","Offset: 10,241,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9233822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4822509","Offset: 10,245,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9234052 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4822948","Offset: 10,249,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9234283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4826941","Offset: 10,253,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9234513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4827441","Offset: 10,257,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9234744 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4828033","Offset: 10,261,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9234987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4832211","Offset: 10,265,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9235256 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4832684","Offset: 10,269,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9235503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4833137","Offset: 10,273,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9235763 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4836934","Offset: 10,277,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9235994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4837523","Offset: 10,281,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9236228 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4837907","Offset: 10,286,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9236553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4841695","Offset: 10,290,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9236937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4842011","Offset: 10,294,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9237333 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4842426","Offset: 10,298,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9237709 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4846031","Offset: 10,302,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9238089 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4846393","Offset: 10,306,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9238447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4846765","Offset: 10,310,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9238831 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4850818","Offset: 10,314,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9239168 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4851377","Offset: 10,318,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9239522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4851667","Offset: 10,322,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9239842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4941976","Offset: 10,327,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9240137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4942585","Offset: 10,331,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9240423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4947249","Offset: 10,335,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9240704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4948252","Offset: 10,339,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9240986 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4951464","Offset: 10,343,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9241267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4952408","Offset: 10,347,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9241562 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4956247","Offset: 10,351,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9241835 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4957216","Offset: 10,355,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9242116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4960540","Offset: 10,359,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9242411 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4961679","Offset: 10,363,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9242645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4965076","Offset: 10,368,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9242867 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4966441","Offset: 10,372,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9243089 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4969965","Offset: 10,376,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9243328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4971544","Offset: 10,380,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9243567 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4982633","Offset: 10,384,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9243797 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4984480","Offset: 10,388,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9244024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4988943","Offset: 10,392,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9244258 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4993376","Offset: 10,396,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9244484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4994008","Offset: 10,400,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9244732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4997596","Offset: 10,404,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9244967 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4998158","Offset: 10,408,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9245380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5000950","Offset: 10,413,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9245794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5001359","Offset: 10,417,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9246161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5004260","Offset: 10,421,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9246507 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5004661","Offset: 10,425,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9246759 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5007562","Offset: 10,429,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9246989 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5008139","Offset: 10,433,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9247215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5011155","Offset: 10,437,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9247437 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5011727","Offset: 10,441,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9247706 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5014722","Offset: 10,445,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9247979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5015213","Offset: 10,449,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9248312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.4932025","Offset: 10,454,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9248644 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5028039","Offset: 10,458,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9248986 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5028533","Offset: 10,462,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9249301 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5031491","Offset: 10,466,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9249630 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5031951","Offset: 10,470,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9250010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5034792","Offset: 10,474,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9250343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5035236","Offset: 10,478,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9250748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5038056","Offset: 10,482,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9251260 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5038406","Offset: 10,486,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9251418 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5041406","Offset: 10,490,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9251849 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5041734","Offset: 10,494,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9252028 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5044806","Offset: 10,499,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9252143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5045523","Offset: 10,503,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9252263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5045979","Offset: 10,507,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9252373 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5050635","Offset: 10,511,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9252489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5051402","Offset: 10,515,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9252600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5054619","Offset: 10,519,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9252715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5055443","Offset: 10,523,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9252830 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5058443","Offset: 10,527,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9252941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5059134","Offset: 10,531,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9253065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5062270","Offset: 10,535,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9253176 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5062910","Offset: 10,540,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9253291 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5066059","Offset: 10,544,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9253402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5066698","Offset: 10,548,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9253521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5070236","Offset: 10,552,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9253636 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5070940","Offset: 10,556,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9253752 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5074131","Offset: 10,560,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9253867 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5074733","Offset: 10,564,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9253978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5077860","Offset: 10,568,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9254097 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5078539","Offset: 10,572,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9254212 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5081688","Offset: 10,576,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9254328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5082455","Offset: 10,580,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9254439 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5085570","Offset: 10,585,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9254554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5086189","Offset: 10,589,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9254669 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5089333","Offset: 10,593,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9254814 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5089982","Offset: 10,597,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9254925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5093545","Offset: 10,601,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9255040 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5094206","Offset: 10,605,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9255172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5097313","Offset: 10,609,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9255283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5097961","Offset: 10,613,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9255407 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5101165","Offset: 10,617,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9255518 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5101784","Offset: 10,621,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9255633 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5104924","Offset: 10,626,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9255748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5105782","Offset: 10,630,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9255864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5108985","Offset: 10,634,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9255975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5109655","Offset: 10,638,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9256094 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5112762","Offset: 10,642,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9256218 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5113427","Offset: 10,646,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9256333 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5116986","Offset: 10,650,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9256448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5117737","Offset: 10,654,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9256576 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5120792","Offset: 10,658,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9256755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5121372","Offset: 10,662,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9256930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5124679","Offset: 10,667,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9257109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5125374","Offset: 10,671,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9257297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5128485","Offset: 10,675,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9257438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5129124","Offset: 10,679,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9257549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5132260","Offset: 10,683,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9257660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5133041","Offset: 10,687,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9257813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5136028","Offset: 10,691,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9257933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5136621","Offset: 10,695,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9258044 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5140243","Offset: 10,699,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9258155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5140917","Offset: 10,703,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9258274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5144131","Offset: 10,707,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9258389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5144869","Offset: 10,712,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9258500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5147966","Offset: 10,716,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9258616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5148606","Offset: 10,720,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9258731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5151772","Offset: 10,724,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9258846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5152455","Offset: 10,728,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9258957 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5155629","Offset: 10,732,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9259076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5156299","Offset: 10,736,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9259196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5159401","Offset: 10,740,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9259311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5160071","Offset: 10,744,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9259426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5163732","Offset: 10,748,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9259537 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5164410","Offset: 10,753,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9259657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5167545","Offset: 10,757,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9259793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5168216","Offset: 10,761,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9260105 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5171121","Offset: 10,765,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9260301 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5171697","Offset: 10,769,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9260480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5174705","Offset: 10,773,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9260655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5175328","Offset: 10,777,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9260839 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5178353","Offset: 10,781,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9261022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5179006","Offset: 10,785,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9261210 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5182018","Offset: 10,789,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9261406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5182603","Offset: 10,793,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9261585 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5186115","Offset: 10,798,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9261773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5186707","Offset: 10,802,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9261986 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5189754","Offset: 10,806,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9262178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5190373","Offset: 10,810,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9262421 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5193441","Offset: 10,814,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9262622 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5194016","Offset: 10,818,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9262810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5197182","Offset: 10,822,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9263027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5197780","Offset: 10,826,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9263232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5200881","Offset: 10,830,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9263433 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5201444","Offset: 10,834,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9263633 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5204423","Offset: 10,839,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9263825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5205059","Offset: 10,843,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9264034 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5208527","Offset: 10,847,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9264226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5209180","Offset: 10,851,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9264440 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5212320","Offset: 10,855,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9264636 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5212909","Offset: 10,859,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9264858 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5215857","Offset: 10,863,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9265050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5216484","Offset: 10,867,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9265250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5219527","Offset: 10,871,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9265459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5220120","Offset: 10,875,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9265656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5223243","Offset: 10,880,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9265848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5223772","Offset: 10,884,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9266035 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5226802","Offset: 10,888,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9266227 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5227425","Offset: 10,892,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9266436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5230932","Offset: 10,896,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9266637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5231542","Offset: 10,900,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9266829 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5234571","Offset: 10,904,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9267025 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5235130","Offset: 10,908,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9267239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5238137","Offset: 10,912,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9267439 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5238744","Offset: 10,916,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9267635 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5256400","Offset: 10,920,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9267827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5257360","Offset: 10,925,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9268002 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5261319","Offset: 10,929,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9268169 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5262338","Offset: 10,933,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9268344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5265837","Offset: 10,937,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9268527 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5266900","Offset: 10,941,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9268711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5270893","Offset: 10,945,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9268881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5272203","Offset: 10,949,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9269043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5273249","Offset: 10,953,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9269184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5277720","Offset: 10,957,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9269325 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5279106","Offset: 10,961,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9269466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5283313","Offset: 10,966,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9269602 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5284619","Offset: 10,970,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9269743 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5289436","Offset: 10,974,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9269888 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5290119","Offset: 10,978,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9270029 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5291104","Offset: 10,982,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9270170 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5296058","Offset: 10,986,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9270328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5297824","Offset: 10,990,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9270443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5302641","Offset: 10,994,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9270558 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5304630","Offset: 10,998,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9270677 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5309144","Offset: 11,002,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9270793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5312220","Offset: 11,006,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9270904 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5317792","Offset: 11,011,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9271015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5319392","Offset: 11,015,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9271138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5324888","Offset: 11,019,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9271253 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5326616","Offset: 11,023,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9271369 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5332222","Offset: 11,027,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9271497 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5334099","Offset: 11,031,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9271616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5339800","Offset: 11,035,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9271812 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5341959","Offset: 11,039,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9272030 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5732590","Offset: 11,043,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9272239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5503683","Offset: 11,047,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9272427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5610217","Offset: 11,052,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9272580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5611212","Offset: 11,056,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9272696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5611838","Offset: 11,060,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9272819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5612057","Offset: 11,064,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9272939 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5619169","Offset: 11,068,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9273050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5629042","Offset: 11,072,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9273161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5630671","Offset: 11,076,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9273284 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5631269","Offset: 11,080,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9273404 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5638006","Offset: 11,084,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9273523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5637008","Offset: 11,088,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9273647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5639726","Offset: 11,092,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9273762 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5639231","Offset: 11,097,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9273873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5638723","Offset: 11,101,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9273984 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5638087","Offset: 11,105,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9274104 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5647900","Offset: 11,109,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9274219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5646885","Offset: 11,113,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9274334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5649748","Offset: 11,117,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9274449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5649245","Offset: 11,121,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9274569 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5648707","Offset: 11,125,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9274714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5648003","Offset: 11,129,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9274884 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5657194","Offset: 11,133,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9275064 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5656096","Offset: 11,138,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9275226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5658977","Offset: 11,142,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9275384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5657543","Offset: 11,146,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9275541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5658286","Offset: 11,150,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9275729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5657671","Offset: 11,154,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9276015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5666700","Offset: 11,158,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9276199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5665436","Offset: 11,162,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9276369 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5668428","Offset: 11,166,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9276519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5667877","Offset: 11,170,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9276664 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5667318","Offset: 11,174,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9276817 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5666563","Offset: 11,179,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9276928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5668394","Offset: 11,183,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9277039 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5676803","Offset: 11,187,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9277159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5677575","Offset: 11,191,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9277269 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5679551","Offset: 11,195,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9277389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5679043","Offset: 11,199,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9277504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5678412","Offset: 11,203,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9277624 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5677878","Offset: 11,207,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9277735 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5687819","Offset: 11,211,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9277850 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5686727","Offset: 11,215,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9277961 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5690614","Offset: 11,219,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9278072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5690068","Offset: 11,224,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9278178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5689514","Offset: 11,228,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9278311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5688903","Offset: 11,232,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9278426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5688097","Offset: 11,236,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9278545 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5698559","Offset: 11,240,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9278665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5697308","Offset: 11,244,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9278780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5700986","Offset: 11,248,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9278895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5700415","Offset: 11,252,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9279006 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5699856","Offset: 11,256,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9279117 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5699276","Offset: 11,260,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9279228 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5698682","Offset: 11,265,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9279343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5709230","Offset: 11,269,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9279454 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5708150","Offset: 11,273,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9279573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5710348","Offset: 11,277,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9279680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5709755","Offset: 11,281,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9279795 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5710740","Offset: 11,285,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9279902 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5723608","Offset: 11,289,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9280039 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5725605","Offset: 11,293,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9280154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5724986","Offset: 11,297,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9280273 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5726501","Offset: 11,301,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9280384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5725938","Offset: 11,305,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9280504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5735013","Offset: 11,310,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9280619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5733882","Offset: 11,314,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9280734 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5737889","Offset: 11,318,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9280853 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5737343","Offset: 11,322,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9280994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5736396","Offset: 11,326,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9281165 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5735764","Offset: 11,330,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9281344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5735090","Offset: 11,334,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9281532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5745961","Offset: 11,338,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9281728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5744771","Offset: 11,342,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9281865 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5749507","Offset: 11,346,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9281988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5748821","Offset: 11,351,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9282099 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5747984","Offset: 11,355,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9282253 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5747395","Offset: 11,359,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9282368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5746781","Offset: 11,363,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9282479 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5746128","Offset: 11,367,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9282594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5756863","Offset: 11,371,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9282714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5755749","Offset: 11,375,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9282829 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5759756","Offset: 11,379,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9282944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5759146","Offset: 11,383,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9283055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5758591","Offset: 11,387,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9283162 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5757998","Offset: 11,392,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9283281 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5757085","Offset: 11,396,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9283396 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5768038","Offset: 11,400,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9283520 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5766527","Offset: 11,404,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9283635 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5768690","Offset: 11,408,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9283751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5770968","Offset: 11,412,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9283866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5770409","Offset: 11,416,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9283981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5769740","Offset: 11,420,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9284092 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5769210","Offset: 11,424,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9284203 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5768647","Offset: 11,428,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9284318 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5779980","Offset: 11,432,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9284438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5779164","Offset: 11,437,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9284557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5778068","Offset: 11,441,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9284689 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5781853","Offset: 11,445,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9284813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5781285","Offset: 11,449,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9284954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5780683","Offset: 11,453,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9285069 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5780035","Offset: 11,457,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9285180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5782070","Offset: 11,461,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9285295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5789704","Offset: 11,465,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9285415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5791687","Offset: 11,469,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9285526 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5791055","Offset: 11,473,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9285641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5793633","Offset: 11,478,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9285756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5792942","Offset: 11,482,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9285888 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5799363","Offset: 11,486,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9286008 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5801351","Offset: 11,490,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9286123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5800890","Offset: 11,494,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9286234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5800199","Offset: 11,498,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9286358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5801995","Offset: 11,502,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9286477 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5801535","Offset: 11,506,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9286592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5807304","Offset: 11,510,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9286707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5807965","Offset: 11,514,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9286818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5808511","Offset: 11,518,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9286934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5812402","Offset: 11,523,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9287062 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5813084","Offset: 11,527,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9287177 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5813818","Offset: 11,531,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9287288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5818170","Offset: 11,535,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9287403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5818823","Offset: 11,539,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9287518 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5819374","Offset: 11,543,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9287642 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5823427","Offset: 11,547,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9287761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5824430","Offset: 11,551,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9287876 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5827562","Offset: 11,555,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9287992 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5828167","Offset: 11,559,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9288107 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5828739","Offset: 11,564,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9288222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5832699","Offset: 11,568,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9288363 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5833398","Offset: 11,572,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9288491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5833927","Offset: 11,576,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9288619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5838279","Offset: 11,580,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9288730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5838877","Offset: 11,584,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9288845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5839585","Offset: 11,588,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9288973 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5845925","Offset: 11,592,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9289088 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5847282","Offset: 11,596,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9289203 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5846732","Offset: 11,600,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9289314 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5849877","Offset: 11,604,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9289434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5849253","Offset: 11,609,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9289549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5848682","Offset: 11,613,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9289660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5848071","Offset: 11,617,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9289771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5847376","Offset: 11,621,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9289886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5858610","Offset: 11,625,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9289997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5857979","Offset: 11,629,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9290108 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5856912","Offset: 11,633,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9290223 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5861303","Offset: 11,637,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9290351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5860756","Offset: 11,641,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9290488 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5860133","Offset: 11,645,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9290603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5859404","Offset: 11,650,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9290722 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5858687","Offset: 11,654,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9290838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5870620","Offset: 11,658,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9290948 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5869508","Offset: 11,662,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9291153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5868245","Offset: 11,666,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9291623 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5872459","Offset: 11,670,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9291780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5871837","Offset: 11,674,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9291891 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5871389","Offset: 11,678,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9292011 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5870919","Offset: 11,682,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9292126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5870373","Offset: 11,686,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9292237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5880985","Offset: 11,691,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9292352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5880451","Offset: 11,695,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9292472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5879495","Offset: 11,699,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9292583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5883036","Offset: 11,703,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9292694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5882490","Offset: 11,707,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9292834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5881851","Offset: 11,711,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9292958 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5881207","Offset: 11,715,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9293078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5883105","Offset: 11,719,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9293193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5891322","Offset: 11,723,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9293312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5892769","Offset: 11,727,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9293432 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5892099","Offset: 11,731,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9293543 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5895448","Offset: 11,736,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9293654 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5895039","Offset: 11,740,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9293786 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5894612","Offset: 11,744,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9293897 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5894156","Offset: 11,748,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9294012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5893174","Offset: 11,752,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9294140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5903380","Offset: 11,756,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9294276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5902907","Offset: 11,760,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9294404 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5901943","Offset: 11,764,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9294520 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5904596","Offset: 11,768,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9294631 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5904088","Offset: 11,772,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9294742 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5903649","Offset: 11,777,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9294861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5903163","Offset: 11,781,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9294972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5913795","Offset: 11,785,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9295087 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5913360","Offset: 11,789,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9295211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5912571","Offset: 11,793,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9295326 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5914960","Offset: 11,797,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9295437 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5914529","Offset: 11,801,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9295556 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5914082","Offset: 11,805,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9295676 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5923165","Offset: 11,809,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9295791 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5922546","Offset: 11,813,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9295906 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5921783","Offset: 11,817,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9296022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5924338","Offset: 11,822,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9296141 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5923890","Offset: 11,826,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9296256 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5923477","Offset: 11,830,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9296401 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5922973","Offset: 11,834,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9296516 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5933205","Offset: 11,838,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9296657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5932723","Offset: 11,842,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9296772 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5931933","Offset: 11,846,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9296909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5933866","Offset: 11,850,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9297054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5933200","Offset: 11,854,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9297174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5933951","Offset: 11,858,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9297310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5942028","Offset: 11,863,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9297425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5941589","Offset: 11,867,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9297540 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5940825","Offset: 11,871,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9297656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5942962","Offset: 11,875,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9297771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5942553","Offset: 11,879,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9297882 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5942113","Offset: 11,883,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9297993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5951747","Offset: 11,887,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9298112 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5951265","Offset: 11,891,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9298227 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5950331","Offset: 11,895,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9298377 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5952737","Offset: 11,899,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9298543 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5952272","Offset: 11,904,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9298710 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5951730","Offset: 11,908,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9298872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5960238","Offset: 11,912,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9299068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5959713","Offset: 11,916,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9299230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5958698","Offset: 11,920,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9299644 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5961125","Offset: 11,924,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9299840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5960639","Offset: 11,928,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9299964 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5960157","Offset: 11,932,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9300083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5959543","Offset: 11,936,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9300199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5970294","Offset: 11,940,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9300314 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5969697","Offset: 11,944,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9300467 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5968887","Offset: 11,949,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9300583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5971101","Offset: 11,953,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9300698 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5970670","Offset: 11,957,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9300809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5970230","Offset: 11,961,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9300945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5978952","Offset: 11,965,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9301073 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5978500","Offset: 11,969,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9301218 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5977689","Offset: 11,973,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9301338 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5979058","Offset: 11,977,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9301457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5979980","Offset: 11,981,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9301590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5979553","Offset: 11,985,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9301722 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5979003","Offset: 11,990,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9301850 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5989234","Offset: 11,994,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9301969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5988808","Offset: 11,998,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9302084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5988049","Offset: 12,002,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9302200 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5990441","Offset: 12,006,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9302311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5990006","Offset: 12,010,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9302426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5989580","Offset: 12,014,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9302541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5998506","Offset: 12,018,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9302648 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5998062","Offset: 12,022,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9302767 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5997051","Offset: 12,026,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9302887 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5999717","Offset: 12,030,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9302998 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5999226","Offset: 12,035,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9303104 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5998817","Offset: 12,039,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9303224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.5998352","Offset: 12,043,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9303335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6008541","Offset: 12,047,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9303450 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6008114","Offset: 12,051,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9303586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6007291","Offset: 12,055,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9303723 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6009445","Offset: 12,059,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9303834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6009023","Offset: 12,063,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9303949 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6008422","Offset: 12,067,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9304090 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6017906","Offset: 12,071,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9304209 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6017318","Offset: 12,076,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9304342 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6016528","Offset: 12,080,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9304457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6018772","Offset: 12,084,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9304572 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6018341","Offset: 12,088,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9304687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6017860","Offset: 12,092,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9304811 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6024840","Offset: 12,096,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9304977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6026278","Offset: 12,100,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9305148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6025795","Offset: 12,104,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9305344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6025168","Offset: 12,108,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9305536 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6026175","Offset: 12,112,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9305668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6033736","Offset: 12,116,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9305779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6032955","Offset: 12,121,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9305899 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6033889","Offset: 12,125,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9306057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6035233","Offset: 12,129,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9306172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6034845","Offset: 12,133,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9306287 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6034337","Offset: 12,137,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9306402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6033907","Offset: 12,141,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9306513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6044846","Offset: 12,145,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9306628 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6044155","Offset: 12,149,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9306744 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6043301","Offset: 12,153,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9306855 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6046057","Offset: 12,157,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9306978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6045640","Offset: 12,162,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9307089 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6045222","Offset: 12,166,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9307204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6044731","Offset: 12,170,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9307320 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6054783","Offset: 12,174,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9307431 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6054339","Offset: 12,178,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9307542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6053567","Offset: 12,182,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9307652 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6055808","Offset: 12,186,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9307768 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6055338","Offset: 12,190,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9307887 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6054728","Offset: 12,194,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9307998 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6078156","Offset: 12,198,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9308113 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6077401","Offset: 12,203,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9308237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6079317","Offset: 12,207,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9308352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6078374","Offset: 12,211,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9308463 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6078749","Offset: 12,215,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9308583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6094847","Offset: 12,219,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9308694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6094079","Offset: 12,223,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9308813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6095952","Offset: 12,227,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9308932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6095526","Offset: 12,231,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9309043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6094933","Offset: 12,235,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9309159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6110177","Offset: 12,239,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9309308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6110698","Offset: 12,243,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9309427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6111671","Offset: 12,248,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9309619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6111134","Offset: 12,252,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9309743 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6111782","Offset: 12,256,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9309858 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6127189","Offset: 12,260,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9309986 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6126404","Offset: 12,264,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9310097 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6127594","Offset: 12,268,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9310221 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6129924","Offset: 12,272,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9310340 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6130637","Offset: 12,276,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9310456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6147963","Offset: 12,280,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9310571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6148590","Offset: 12,284,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9310690 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6159697","Offset: 12,289,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9310882 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6162564","Offset: 12,293,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9311100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6171980","Offset: 12,297,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9311296 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6181802","Offset: 12,301,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9311497 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6184345","Offset: 12,305,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9311667 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6200840","Offset: 12,309,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9311787 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6210854","Offset: 12,313,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9311911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6213516","Offset: 12,317,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9312051 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6150814","Offset: 12,321,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9312167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6159380","Offset: 12,325,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9312295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6169902","Offset: 12,329,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9312410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6172637","Offset: 12,334,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9312546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6182233","Offset: 12,338,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9312670 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6199031","Offset: 12,342,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9312785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6202385","Offset: 12,346,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9312896 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6211784","Offset: 12,350,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9313011 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6222148","Offset: 12,354,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9313127 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6223112","Offset: 12,358,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9313263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6227404","Offset: 12,362,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9313378 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6232414","Offset: 12,366,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9313494 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6234427","Offset: 12,370,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9313604 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6236561","Offset: 12,375,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9313720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6239513","Offset: 12,379,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9313835 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6241416","Offset: 12,383,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9313963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6243451","Offset: 12,387,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9314078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6245973","Offset: 12,391,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9314198 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6247700","Offset: 12,395,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9314308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6249818","Offset: 12,399,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9314428 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6252100","Offset: 12,403,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9314539 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6253520","Offset: 12,407,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9314692 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6255616","Offset: 12,411,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9314919 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6259280","Offset: 12,416,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9315106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6261389","Offset: 12,420,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9315281 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6264926","Offset: 12,424,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9315456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6266850","Offset: 12,428,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9315614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6270237","Offset: 12,432,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9315759 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6272298","Offset: 12,436,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9315908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6275614","Offset: 12,440,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9316054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6277640","Offset: 12,444,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9316199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6281403","Offset: 12,448,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9316339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6282982","Offset: 12,452,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9316480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6284621","Offset: 12,456,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9316621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6288610","Offset: 12,461,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9316770 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6290236","Offset: 12,465,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9316894 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6293248","Offset: 12,469,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9317022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6295087","Offset: 12,473,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9317137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6298086","Offset: 12,477,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9317257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6299835","Offset: 12,481,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9317432 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6300360","Offset: 12,485,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9317564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6299955","Offset: 12,489,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9317700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6300638","Offset: 12,493,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9317858 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6300898","Offset: 12,497,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9317982 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6301034","Offset: 12,502,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9318093 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6301900","Offset: 12,506,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9318208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6301538","Offset: 12,510,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9318328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6301098","Offset: 12,514,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9318447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6303061","Offset: 12,518,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9318571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6302690","Offset: 12,522,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9318690 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6302255","Offset: 12,526,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9318810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6301892","Offset: 12,530,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9318925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6301525","Offset: 12,534,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9319040 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6304443","Offset: 12,538,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9319155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6303373","Offset: 12,542,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9319266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6303983","Offset: 12,547,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9319386 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6302822","Offset: 12,551,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9319505 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6303505","Offset: 12,555,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9319620 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6302332","Offset: 12,559,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9319731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6303044","Offset: 12,563,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9319855 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6306496","Offset: 12,567,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9319966 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6305135","Offset: 12,571,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9320098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6304747","Offset: 12,575,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9320269 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6305843","Offset: 12,579,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9320440 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6304119","Offset: 12,583,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9320602 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6305275","Offset: 12,588,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9320755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6303279","Offset: 12,592,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9320926 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6304721","Offset: 12,596,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9321097 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6303193","Offset: 12,600,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9321280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6304123","Offset: 12,604,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9321464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6306325","Offset: 12,608,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9321651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6306965","Offset: 12,612,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9321805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6305745","Offset: 12,616,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9321924 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6305387","Offset: 12,620,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9322040 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6305032","Offset: 12,624,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9322151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6304665","Offset: 12,628,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9322308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6307827","Offset: 12,633,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9322419 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6307486","Offset: 12,637,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9322539 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6305838","Offset: 12,641,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9322658 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6305468","Offset: 12,645,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9322774 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6306896","Offset: 12,649,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9322884 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6306547","Offset: 12,653,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9323004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6306103","Offset: 12,657,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9323128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6305736","Offset: 12,661,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9323239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6311773","Offset: 12,665,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9323350 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6311359","Offset: 12,669,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9323469 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6311001","Offset: 12,674,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9323580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6310647","Offset: 12,678,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9323691 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6310297","Offset: 12,682,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9323810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6308569","Offset: 12,686,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9323947 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6308185","Offset: 12,690,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9324066 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6307763","Offset: 12,694,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9324177 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6307417","Offset: 12,698,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9324297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6307063","Offset: 12,702,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9324412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6306709","Offset: 12,706,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9324523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6306359","Offset: 12,710,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9324638 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6305971","Offset: 12,715,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9324753 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6308992","Offset: 12,719,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9324868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6308642","Offset: 12,723,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9324979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6308245","Offset: 12,727,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9325099 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6307814","Offset: 12,731,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9325214 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6307404","Offset: 12,735,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9325342 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6312243","Offset: 12,739,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9325453 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6311872","Offset: 12,743,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9325577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6311415","Offset: 12,747,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9325696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6311048","Offset: 12,751,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9325850 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6310634","Offset: 12,755,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9325965 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6310267","Offset: 12,760,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9326084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6309884","Offset: 12,764,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9326200 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6309362","Offset: 12,768,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9326319 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6315686","Offset: 12,772,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9326473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6315268","Offset: 12,776,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9326588 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6314892","Offset: 12,780,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9326707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6314415","Offset: 12,784,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9326814 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6314022","Offset: 12,788,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9326934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6313638","Offset: 12,792,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9327057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6313267","Offset: 12,796,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9327215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6312840","Offset: 12,801,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9327390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6312354","Offset: 12,805,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9327578 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6311910","Offset: 12,809,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9327766 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6311462","Offset: 12,813,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9327894 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6311078","Offset: 12,817,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9328009 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6310702","Offset: 12,821,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9328124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6310327","Offset: 12,825,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9328278 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6309819","Offset: 12,829,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9328406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6309435","Offset: 12,833,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9328534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6317034","Offset: 12,837,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9328662 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6316650","Offset: 12,841,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9328790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6316198","Offset: 12,846,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9328918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6315818","Offset: 12,850,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9329033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6315447","Offset: 12,854,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9329152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6315076","Offset: 12,858,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9329280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6314688","Offset: 12,862,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9329430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6313121","Offset: 12,866,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9329549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6321237","Offset: 12,870,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9329673 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6320819","Offset: 12,874,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9329792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6320448","Offset: 12,878,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9329907 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6320085","Offset: 12,882,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9330031 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6319701","Offset: 12,887,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9330146 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6319304","Offset: 12,891,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9330313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6318792","Offset: 12,895,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9330564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6318285","Offset: 12,899,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9330761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6317828","Offset: 12,903,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9330948 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6317380","Offset: 12,907,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9331145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6316927","Offset: 12,911,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9331337 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6316432","Offset: 12,915,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9331554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6315955","Offset: 12,919,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9331815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6315438","Offset: 12,923,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9332011 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6314982","Offset: 12,928,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9332228 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6314505","Offset: 12,932,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9332420 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6314048","Offset: 12,936,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9332625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6313472","Offset: 12,940,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9332826 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6312998","Offset: 12,944,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9333018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6310621","Offset: 12,948,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9333214 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6310156","Offset: 12,952,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9333406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6309700","Offset: 12,956,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9333598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6309243","Offset: 12,960,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9333803 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6317990","Offset: 12,964,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9334055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6317281","Offset: 12,968,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9334255 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6325346","Offset: 12,973,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9334507 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6324846","Offset: 12,977,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9334699 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6324398","Offset: 12,981,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9334904 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6323890","Offset: 12,985,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9335100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6323443","Offset: 12,989,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9335296 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6322995","Offset: 12,993,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9335510 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6322538","Offset: 12,997,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9335706 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6322077","Offset: 13,001,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9335911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6321612","Offset: 13,005,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9336209 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6321011","Offset: 13,009,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9336534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6320426","Offset: 13,014,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9336841 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6319863","Offset: 13,018,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9337169 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6319283","Offset: 13,022,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9337498 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6318698","Offset: 13,026,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9337711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6318169","Offset: 13,030,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9338415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6317205","Offset: 13,034,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9339354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6316019","Offset: 13,038,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9340331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6314760","Offset: 13,042,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9341210 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6313552","Offset: 13,046,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9341585 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6312870","Offset: 13,050,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9341777 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6312414","Offset: 13,054,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9341974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6311978","Offset: 13,059,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9342195 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6311497","Offset: 13,063,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9342366 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6311061","Offset: 13,067,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9342511 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6310660","Offset: 13,071,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9342665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6310199","Offset: 13,075,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9342844 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6309755","Offset: 13,079,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9343019 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6309316","Offset: 13,083,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9343173 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6308910","Offset: 13,087,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9343313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6317478","Offset: 13,091,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9343458 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6317069","Offset: 13,095,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9343595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6316607","Offset: 13,100,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9343740 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6324535","Offset: 13,104,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9343958 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6324048","Offset: 13,108,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9344141 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6323609","Offset: 13,112,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9344346 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6323152","Offset: 13,116,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9344529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6322709","Offset: 13,120,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9344726 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6322248","Offset: 13,124,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9344918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6321740","Offset: 13,128,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9345118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6321271","Offset: 13,132,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9345310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6320819","Offset: 13,136,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9345532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6320332","Offset: 13,140,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9345750 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6319854","Offset: 13,145,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9345946 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6319330","Offset: 13,149,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9346142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6318873","Offset: 13,153,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9346330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6318412","Offset: 13,157,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9346522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6317947","Offset: 13,161,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9346710 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6317499","Offset: 13,165,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9346906 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6316996","Offset: 13,169,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9347102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6316527","Offset: 13,173,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9347298 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6316066","Offset: 13,177,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9347499 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6315596","Offset: 13,181,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9347687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6315161","Offset: 13,186,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9347896 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6314696","Offset: 13,190,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9348096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6314172","Offset: 13,194,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9348297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6313719","Offset: 13,198,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9348489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6313275","Offset: 13,202,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9348694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6312823","Offset: 13,206,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9348890 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6312341","Offset: 13,210,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9349086 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6321088","Offset: 13,214,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9349282 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6320644","Offset: 13,218,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9349462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6320217","Offset: 13,222,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9349585 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6319804","Offset: 13,227,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9349701 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6319184","Offset: 13,231,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9349824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6327292","Offset: 13,235,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9349944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6326920","Offset: 13,239,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9350059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6326545","Offset: 13,243,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9350170 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6326126","Offset: 13,247,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9350289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6325734","Offset: 13,251,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9350400 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6325350","Offset: 13,255,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9350515 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6324966","Offset: 13,259,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9350635 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6324595","Offset: 13,263,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9350771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6324169","Offset: 13,267,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9350942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6323724","Offset: 13,272,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9351057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6323362","Offset: 13,276,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9351177 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6322990","Offset: 13,280,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9351292 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6322628","Offset: 13,284,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9351407 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6322257","Offset: 13,288,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9351522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6321830","Offset: 13,292,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9351646 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6321455","Offset: 13,296,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9351804 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6321053","Offset: 13,300,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9351923 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6320683","Offset: 13,304,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9352043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6320294","Offset: 13,308,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9352154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6319863","Offset: 13,313,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9352290 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6319450","Offset: 13,317,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9352410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6319069","Offset: 13,321,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9352546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6318686","Offset: 13,325,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9352662 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6318314","Offset: 13,329,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9352777 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6317926","Offset: 13,333,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9352888 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6317546","Offset: 13,337,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9353003 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6326259","Offset: 13,341,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9353122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6325888","Offset: 13,345,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9353238 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6325414","Offset: 13,349,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9353349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6325055","Offset: 13,353,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9353464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6324667","Offset: 13,358,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9353583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6324113","Offset: 13,362,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9353694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6332066","Offset: 13,366,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9353805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6331686","Offset: 13,370,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9353925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6331297","Offset: 13,374,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9354040 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6330913","Offset: 13,378,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9354151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6330546","Offset: 13,382,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9354257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6330146","Offset: 13,386,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9354377 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6329753","Offset: 13,390,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9354488 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6329330","Offset: 13,394,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9354603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6328951","Offset: 13,399,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9354722 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6328593","Offset: 13,403,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9354833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6328217","Offset: 13,407,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9354957 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6327773","Offset: 13,411,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9355072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6327390","Offset: 13,415,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9355187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6327006","Offset: 13,419,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9355298 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6326656","Offset: 13,423,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9355418 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6326288","Offset: 13,427,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9355533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6325871","Offset: 13,431,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9355648 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6325504","Offset: 13,435,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9355793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6325086","Offset: 13,440,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9355968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6324650","Offset: 13,444,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9356147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6324211","Offset: 13,448,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9356331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6323703","Offset: 13,452,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9356527 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6323251","Offset: 13,456,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9356685 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6322828","Offset: 13,460,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9356800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6331400","Offset: 13,464,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9356915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6330982","Offset: 13,468,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9357056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6330590","Offset: 13,472,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9357171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6330214","Offset: 13,476,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9357287 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6329838","Offset: 13,480,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9357402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6329476","Offset: 13,485,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9357521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6329105","Offset: 13,489,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9357632 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6328704","Offset: 13,493,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9357743 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6336320","Offset: 13,497,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9357863 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6335944","Offset: 13,501,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9357978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6335590","Offset: 13,505,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9358093 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6335172","Offset: 13,509,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9358204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6334809","Offset: 13,513,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9358323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6334447","Offset: 13,517,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9358434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6334084","Offset: 13,521,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9358550 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6333699","Offset: 13,526,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9358661 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6333328","Offset: 13,530,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9358776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6332889","Offset: 13,534,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9358882 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6332510","Offset: 13,538,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9358993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6332151","Offset: 13,542,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9359155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6331733","Offset: 13,546,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9359352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6331285","Offset: 13,550,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9359539 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6330778","Offset: 13,554,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9359714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6330347","Offset: 13,558,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9359911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6329885","Offset: 13,562,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9360098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6329459","Offset: 13,566,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9360286 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6329019","Offset: 13,571,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9360499 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6328469","Offset: 13,575,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9360704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6328000","Offset: 13,579,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9360879 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6327573","Offset: 13,583,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9361050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6336149","Offset: 13,587,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9361246 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6335714","Offset: 13,591,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9361438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6335266","Offset: 13,595,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9361634 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6334814","Offset: 13,599,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9361852 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6334344","Offset: 13,603,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9362040 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6333887","Offset: 13,607,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9362257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6333329","Offset: 13,612,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9362445 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6332881","Offset: 13,616,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9362633 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6332432","Offset: 13,620,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9362821 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6331967","Offset: 13,624,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9363025 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6339597","Offset: 13,628,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9363217 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6339089","Offset: 13,632,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9363414 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6338632","Offset: 13,636,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9363614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6338167","Offset: 13,640,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9363819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6337710","Offset: 13,644,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9364011 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6337267","Offset: 13,648,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9364203 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6336759","Offset: 13,652,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9364408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6336302","Offset: 13,657,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9364608 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6335799","Offset: 13,661,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9364847 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6335304","Offset: 13,665,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9365048 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6334860","Offset: 13,669,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9365244 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6334361","Offset: 13,673,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9365436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6333913","Offset: 13,677,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9365615 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6333470","Offset: 13,681,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9365773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6333060","Offset: 13,685,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9365910 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6332684","Offset: 13,689,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9366050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6332297","Offset: 13,693,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9366195 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6331802","Offset: 13,698,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9366336 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6331409","Offset: 13,702,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9366473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6331024","Offset: 13,706,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9366614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6339506","Offset: 13,710,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9366754 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6339106","Offset: 13,714,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9366895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6338705","Offset: 13,718,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9367036 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6338325","Offset: 13,722,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9367151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6337971","Offset: 13,726,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9367262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6337570","Offset: 13,730,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9367373 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6337220","Offset: 13,734,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9367514 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6336823","Offset: 13,739,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9367633 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6336465","Offset: 13,743,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9367749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6336102","Offset: 13,747,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9367859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6335736","Offset: 13,751,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9367979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6335189","Offset: 13,755,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9368090 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6343099","Offset: 13,759,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9368205 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6342728","Offset: 13,763,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9368320 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6342353","Offset: 13,767,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9368448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6341977","Offset: 13,771,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9368559 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6341619","Offset: 13,775,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9368674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6341218","Offset: 13,779,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9368815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6340825","Offset: 13,784,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9368939 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6340454","Offset: 13,788,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9369067 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6340083","Offset: 13,792,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9369178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6339703","Offset: 13,796,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9369297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6339247","Offset: 13,800,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9369408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6338880","Offset: 13,804,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9369536 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6338492","Offset: 13,808,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9369647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6338137","Offset: 13,812,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9369762 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6337775","Offset: 13,816,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9369890 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6337395","Offset: 13,820,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9370001 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6336956","Offset: 13,825,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9370121 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6336584","Offset: 13,829,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9370236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6336217","Offset: 13,833,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9370351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6344636","Offset: 13,837,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9370462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6344264","Offset: 13,841,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9370577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6343885","Offset: 13,845,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9370693 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6343517","Offset: 13,849,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9370803 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6343155","Offset: 13,853,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9370936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6342732","Offset: 13,857,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9371047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6342386","Offset: 13,861,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9371166 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6342007","Offset: 13,865,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9371281 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6341645","Offset: 13,870,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9371397 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6341286","Offset: 13,874,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9371507 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6340809","Offset: 13,878,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9371627 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6340437","Offset: 13,882,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9371738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6340053","Offset: 13,886,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9371853 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6347780","Offset: 13,890,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9371968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6347409","Offset: 13,894,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9372083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6347034","Offset: 13,898,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9372241 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6346560","Offset: 13,902,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9372412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6346133","Offset: 13,906,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9372578 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6345711","Offset: 13,911,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9372745 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6345275","Offset: 13,915,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9372898 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6344879","Offset: 13,919,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9373056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6344431","Offset: 13,923,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9373278 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6343953","Offset: 13,927,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9373423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6343556","Offset: 13,931,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9373607 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6343099","Offset: 13,935,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9373735 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6342715","Offset: 13,939,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9373871 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6342314","Offset: 13,943,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9374008 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6341823","Offset: 13,947,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9374161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6341419","Offset: 13,952,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9374294 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6341025","Offset: 13,956,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9374405 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6349687","Offset: 13,960,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9374524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6349312","Offset: 13,964,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9374631 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6348957","Offset: 13,968,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9374746 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6348586","Offset: 13,972,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9374861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6348155","Offset: 13,976,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9374976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6347784","Offset: 13,980,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9375087 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6347409","Offset: 13,984,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9375198 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6347046","Offset: 13,988,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9375330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6346675","Offset: 13,992,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9375446 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6346256","Offset: 13,997,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9375561 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6345872","Offset: 14,001,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9375676 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6345484","Offset: 14,005,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9375813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6345096","Offset: 14,009,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9375923 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6344725","Offset: 14,013,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9376060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6344162","Offset: 14,017,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9376179 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6351970","Offset: 14,021,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9376295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6351598","Offset: 14,025,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9376410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6351202","Offset: 14,029,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9376521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6350822","Offset: 14,033,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9376640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6350404","Offset: 14,038,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9376760 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6350028","Offset: 14,042,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9376875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6349649","Offset: 14,046,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9376994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6349291","Offset: 14,050,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9377131 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6348915","Offset: 14,054,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9377391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6348399","Offset: 14,058,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9377506 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6347921","Offset: 14,062,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9377622 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6347523","Offset: 14,066,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9377737 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6347148","Offset: 14,070,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9377848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6346773","Offset: 14,074,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9377980 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6346385","Offset: 14,078,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9378095 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6355204","Offset: 14,083,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9378215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6354811","Offset: 14,087,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9378360 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6354363","Offset: 14,091,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9378530 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6353924","Offset: 14,095,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9378722 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6353463","Offset: 14,099,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9378910 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6353007","Offset: 14,103,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9379085 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6352559","Offset: 14,107,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9379213 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6352111","Offset: 14,111,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9379328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6351735","Offset: 14,115,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9379439 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6351347","Offset: 14,119,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9379584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6350933","Offset: 14,124,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9379704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6350553","Offset: 14,128,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9379815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6350113","Offset: 14,132,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9379934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6349730","Offset: 14,136,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9380045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6349354","Offset: 14,140,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9380160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6348966","Offset: 14,144,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9380275 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6348561","Offset: 14,148,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9380438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6355839","Offset: 14,152,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9380591 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6355430","Offset: 14,156,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9380706 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6355081","Offset: 14,160,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9380826 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6354722","Offset: 14,164,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9380937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6354363","Offset: 14,169,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9381082 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6353902","Offset: 14,173,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9381197 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6353540","Offset: 14,177,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9381317 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6353177","Offset: 14,181,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9381432 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6352797","Offset: 14,185,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9381577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6352383","Offset: 14,189,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9381799 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6351820","Offset: 14,193,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9381986 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6357137","Offset: 14,197,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9382161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6356719","Offset: 14,201,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9382345 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6356283","Offset: 14,205,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9382541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6355831","Offset: 14,210,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9382733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6355400","Offset: 14,214,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9382942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6354867","Offset: 14,218,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9383126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6354448","Offset: 14,222,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9383305 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6354018","Offset: 14,226,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9383493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6353574","Offset: 14,230,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9383689 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6353113","Offset: 14,234,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9383881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6358374","Offset: 14,238,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9384056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6357900","Offset: 14,242,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9384243 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6357427","Offset: 14,246,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9384440 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6356987","Offset: 14,251,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9384645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6356535","Offset: 14,255,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9384824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6356121","Offset: 14,259,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9385011 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6355605","Offset: 14,263,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9385199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6355178","Offset: 14,267,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9385391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6354730","Offset: 14,271,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9385600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6354278","Offset: 14,275,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9385797 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6353804","Offset: 14,279,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9385993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6356770","Offset: 14,283,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9386185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6356334","Offset: 14,287,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9386398 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6361408","Offset: 14,291,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9386594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6360947","Offset: 14,296,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9386791 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6360443","Offset: 14,300,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9386987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6359978","Offset: 14,304,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9387187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6359539","Offset: 14,308,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9387384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6359095","Offset: 14,312,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9387576 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6358651","Offset: 14,316,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9387768 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6358169","Offset: 14,320,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9387985 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6357692","Offset: 14,324,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9388190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6357248","Offset: 14,328,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9388378 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6356800","Offset: 14,332,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9388583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6356356","Offset: 14,337,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9388779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6355895","Offset: 14,341,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9388988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6355375","Offset: 14,345,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9389180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6354931","Offset: 14,349,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9389376 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6354496","Offset: 14,353,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9389573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6354060","Offset: 14,357,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9389760 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6353617","Offset: 14,361,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9389931 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6361365","Offset: 14,365,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9390076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6360960","Offset: 14,369,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9390225 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6360555","Offset: 14,373,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9390366 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6360166","Offset: 14,377,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9390516 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6359747","Offset: 14,382,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9390652 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6359253","Offset: 14,386,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9390797 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6358852","Offset: 14,390,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9390934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6358459","Offset: 14,394,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9391074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6358080","Offset: 14,398,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9391224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6357687","Offset: 14,402,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9391348 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6357286","Offset: 14,406,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9391463 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6356885","Offset: 14,410,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9391574 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6363191","Offset: 14,414,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9391693 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6362811","Offset: 14,418,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9391808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6362428","Offset: 14,423,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9391924 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6362068","Offset: 14,427,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9392064 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6361634","Offset: 14,431,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9392188 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6361267","Offset: 14,435,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9392303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6360913","Offset: 14,439,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9392418 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6360550","Offset: 14,443,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9392529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6360183","Offset: 14,447,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9392645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6359807","Offset: 14,451,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9392764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6359355","Offset: 14,455,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9392879 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6358989","Offset: 14,459,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9392994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6358618","Offset: 14,464,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9393110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6367099","Offset: 14,468,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9393229 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6366711","Offset: 14,472,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9393353 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6366344","Offset: 14,476,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9393498 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6365900","Offset: 14,480,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9393634 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6365500","Offset: 14,484,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9393758 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6365103","Offset: 14,488,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9393899 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6364697","Offset: 14,492,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9394014 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6364301","Offset: 14,496,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9394129 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6363930","Offset: 14,500,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9394245 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6363494","Offset: 14,504,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9394360 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6363140","Offset: 14,509,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9394471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6362768","Offset: 14,513,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9394603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6362380","Offset: 14,517,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9394718 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6362001","Offset: 14,521,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9394833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6361549","Offset: 14,525,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9394953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6361173","Offset: 14,529,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9395068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6360798","Offset: 14,533,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9395183 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6360439","Offset: 14,537,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9395298 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6360047","Offset: 14,541,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9395422 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6367825","Offset: 14,545,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9395537 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6367394","Offset: 14,550,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9395657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6367014","Offset: 14,554,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9395768 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6366643","Offset: 14,558,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9395926 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6366246","Offset: 14,562,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9396096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6365837","Offset: 14,566,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9396263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6365341","Offset: 14,570,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9396425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6364932","Offset: 14,574,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9396587 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6364527","Offset: 14,578,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9396741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6364117","Offset: 14,582,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9396907 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6363575","Offset: 14,586,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9397099 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6372044","Offset: 14,590,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9397295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6371614","Offset: 14,595,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9397457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6371153","Offset: 14,599,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9397577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6370790","Offset: 14,603,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9397696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6370415","Offset: 14,607,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9397807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6370044","Offset: 14,611,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9397922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6369681","Offset: 14,615,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9398085 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6369275","Offset: 14,619,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9398200 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6368848","Offset: 14,623,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9398311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6368486","Offset: 14,627,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9398422 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6368085","Offset: 14,631,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9398537 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6367714","Offset: 14,636,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9398652 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6367347","Offset: 14,640,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9398776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6366903","Offset: 14,644,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9398887 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6366523","Offset: 14,648,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9399002 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6366156","Offset: 14,652,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9399117 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6365781","Offset: 14,656,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9399249 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6365402","Offset: 14,660,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9399360 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6364954","Offset: 14,664,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9399471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6364591","Offset: 14,668,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9399591 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6364198","Offset: 14,672,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9399714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6371908","Offset: 14,676,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9399838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6371520","Offset: 14,681,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9399949 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6371170","Offset: 14,685,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9400073 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6370726","Offset: 14,689,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9400188 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6370355","Offset: 14,693,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9400299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6370005","Offset: 14,697,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9400414 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6369647","Offset: 14,701,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9400529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6369152","Offset: 14,705,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9400670 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6368746","Offset: 14,709,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9400781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6377416","Offset: 14,713,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9400901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6376989","Offset: 14,717,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9401016 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6376618","Offset: 14,722,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9401127 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6376234","Offset: 14,726,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9401238 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6375867","Offset: 14,730,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9401357 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6375505","Offset: 14,734,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9401477 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6375082","Offset: 14,738,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9401592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6374707","Offset: 14,742,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9401737 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6374301","Offset: 14,746,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9401886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6373905","Offset: 14,750,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9402023 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6373512","Offset: 14,754,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9402142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6373141","Offset: 14,758,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9402313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6372654","Offset: 14,763,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9402428 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6372245","Offset: 14,767,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9402543 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6371857","Offset: 14,771,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9402650 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6371498","Offset: 14,775,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9402791 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6371105","Offset: 14,779,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9402949 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6370636","Offset: 14,783,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9403115 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6370210","Offset: 14,787,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9403290 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6369770","Offset: 14,791,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9403473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6369327","Offset: 14,795,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9403674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6368883","Offset: 14,799,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9403806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6368380","Offset: 14,803,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9403921 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6376124","Offset: 14,808,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9404037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6375743","Offset: 14,812,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9404216 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6375308","Offset: 14,816,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9404331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6374929","Offset: 14,820,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9404450 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6374541","Offset: 14,824,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9404570 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6374144","Offset: 14,828,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9404694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6373764","Offset: 14,832,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9404809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6382306","Offset: 14,836,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9404941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6381918","Offset: 14,840,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9405056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6381547","Offset: 14,844,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9405176 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6381175","Offset: 14,849,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9405291 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6380812","Offset: 14,853,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9405406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6380377","Offset: 14,857,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9405526 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6380001","Offset: 14,861,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9405637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6379630","Offset: 14,865,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9405756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6379268","Offset: 14,869,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9405876 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6378900","Offset: 14,873,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9405995 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6378444","Offset: 14,877,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9406106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6378077","Offset: 14,881,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9406225 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6377694","Offset: 14,885,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9406353 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6377310","Offset: 14,889,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9406473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6376951","Offset: 14,894,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9406648 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6376443","Offset: 14,898,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9407006 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6375791","Offset: 14,902,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9407804 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6374741","Offset: 14,906,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9408017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6374281","Offset: 14,910,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9408192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6373858","Offset: 14,914,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9408372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6373418","Offset: 14,918,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9408559 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6372885","Offset: 14,922,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9408709 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6372496","Offset: 14,926,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9408828 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6372130","Offset: 14,930,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9408956 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6371720","Offset: 14,935,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9409080 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6379639","Offset: 14,939,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9409204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6379250","Offset: 14,943,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9409323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6378888","Offset: 14,947,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9409438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6378521","Offset: 14,951,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9409558 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6378154","Offset: 14,955,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9409677 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6377715","Offset: 14,959,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9409792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6386266","Offset: 14,963,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9409912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6385890","Offset: 14,967,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9410048 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6385510","Offset: 14,971,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9410219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6385079","Offset: 14,976,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9410368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6384602","Offset: 14,980,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9410492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6384205","Offset: 14,984,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9410607 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6383834","Offset: 14,988,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9410748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6383428","Offset: 14,992,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9410863 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6383070","Offset: 14,996,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9410978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6382665","Offset: 15,000,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9411098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6382272","Offset: 15,004,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9411222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6381909","Offset: 15,008,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9411337 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6381555","Offset: 15,012,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9411452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6381179","Offset: 15,016,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9411567 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6380800","Offset: 15,021,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9411682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6380356","Offset: 15,025,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9411806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6379976","Offset: 15,029,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9411938 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6379593","Offset: 15,033,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9412062 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6379208","Offset: 15,037,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9412173 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6378811","Offset: 15,041,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9412288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6378385","Offset: 15,045,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9412408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6378009","Offset: 15,049,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9412527 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6377638","Offset: 15,053,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9412642 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6377259","Offset: 15,057,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9412775 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6376883","Offset: 15,062,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9412894 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6376414","Offset: 15,066,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9413022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6384277","Offset: 15,070,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9413137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6383714","Offset: 15,074,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9413253 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6383342","Offset: 15,078,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9413368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6382954","Offset: 15,082,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9413479 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6391603","Offset: 15,086,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9413594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6391227","Offset: 15,090,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9413743 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6390835","Offset: 15,094,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9413940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6390318","Offset: 15,098,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9414119 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6389879","Offset: 15,102,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9414306 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6389423","Offset: 15,107,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9414469 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6389017","Offset: 15,111,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9414639 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6388599","Offset: 15,115,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9414827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6388091","Offset: 15,119,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9415006 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6387639","Offset: 15,123,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9415194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6387212","Offset: 15,127,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9415399 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6386756","Offset: 15,131,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9415557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6386329","Offset: 15,135,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9415706 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6385890","Offset: 15,139,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9415851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6385476","Offset: 15,143,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9415988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6385083","Offset: 15,148,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9416124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6384691","Offset: 15,152,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9416269 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6384298","Offset: 15,156,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9416406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6383910","Offset: 15,160,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9416559 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6383432","Offset: 15,164,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9416704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6383023","Offset: 15,168,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9416845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6382617","Offset: 15,172,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9416965 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6382237","Offset: 15,176,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9417080 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6381870","Offset: 15,180,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9417199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6381414","Offset: 15,184,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9417319 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6381055","Offset: 15,188,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9417438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6380685","Offset: 15,193,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9417549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6380301","Offset: 15,197,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9417703 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6388296","Offset: 15,201,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9417822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6387917","Offset: 15,205,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9417937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6387409","Offset: 15,209,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9418057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6396125","Offset: 15,213,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9418168 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395767","Offset: 15,217,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9418317 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395302","Offset: 15,221,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9418466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394884","Offset: 15,225,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9418612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394495","Offset: 15,229,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9418748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394116","Offset: 15,234,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9418868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393757","Offset: 15,238,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9418983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393339","Offset: 15,242,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9419094 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392985","Offset: 15,246,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9419213 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392597","Offset: 15,250,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9419328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392235","Offset: 15,254,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9419439 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6391863","Offset: 15,258,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9419593 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6391398","Offset: 15,262,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9419768 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6390916","Offset: 15,266,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9419943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6390480","Offset: 15,270,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9420105 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6390058","Offset: 15,275,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9420263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6389648","Offset: 15,279,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9420438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6389222","Offset: 15,283,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9420608 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6388715","Offset: 15,287,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9420800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6388271","Offset: 15,291,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9420937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6387874","Offset: 15,295,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9421056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6387486","Offset: 15,299,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9421180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6387123","Offset: 15,303,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9421295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6386714","Offset: 15,307,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9421410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6386283","Offset: 15,311,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9421521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6385903","Offset: 15,315,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9421641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6385527","Offset: 15,320,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9421794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6385131","Offset: 15,324,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9421914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6384742","Offset: 15,328,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9422025 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392686","Offset: 15,332,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9422140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392303","Offset: 15,336,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9422251 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6397572","Offset: 15,340,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9422362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6397329","Offset: 15,344,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9422481 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6397048","Offset: 15,348,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9422601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6396791","Offset: 15,352,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9422712 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6396543","Offset: 15,356,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9422827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6396305","Offset: 15,361,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9422964 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6396035","Offset: 15,365,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9423079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395767","Offset: 15,369,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9423198 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395520","Offset: 15,373,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9423309 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395272","Offset: 15,377,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9423424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395025","Offset: 15,381,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9423540 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394781","Offset: 15,385,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9423650 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394522","Offset: 15,389,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9423774 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394265","Offset: 15,393,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9423894 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394017","Offset: 15,397,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9424009 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393774","Offset: 15,401,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9424124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393531","Offset: 15,406,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9424239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393284","Offset: 15,410,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9424354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393011","Offset: 15,414,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9424470 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392763","Offset: 15,418,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9424585 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392512","Offset: 15,422,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9424704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392260","Offset: 15,426,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9424815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392017","Offset: 15,430,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9424926 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6391748","Offset: 15,434,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9425046 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6391496","Offset: 15,438,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9425157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6391253","Offset: 15,442,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9425289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6390993","Offset: 15,447,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9425413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6390689","Offset: 15,451,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9425605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6390084","Offset: 15,455,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9425809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6389568","Offset: 15,459,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9425997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6397107","Offset: 15,463,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9426193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6396779","Offset: 15,467,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9426351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6396463","Offset: 15,471,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9426484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6396198","Offset: 15,475,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9426701 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395853","Offset: 15,479,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9426859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395562","Offset: 15,483,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9426983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395302","Offset: 15,488,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9427106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395017","Offset: 15,492,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9427222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394764","Offset: 15,496,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9427337 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394521","Offset: 15,500,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9427490 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394240","Offset: 15,504,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9427618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393971","Offset: 15,508,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9427734 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393719","Offset: 15,512,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9427840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393451","Offset: 15,516,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9427960 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393194","Offset: 15,520,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9428122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392904","Offset: 15,524,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9428241 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392644","Offset: 15,528,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9428361 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392388","Offset: 15,533,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9428480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392064","Offset: 15,537,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9428591 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6391812","Offset: 15,541,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9428711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6391551","Offset: 15,545,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9428826 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6391300","Offset: 15,549,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9428941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395848","Offset: 15,553,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9429069 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395588","Offset: 15,557,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9429184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395341","Offset: 15,561,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9429304 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395089","Offset: 15,565,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9429419 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394803","Offset: 15,569,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9429538 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394535","Offset: 15,574,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9429654 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394295","Offset: 15,578,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9429773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394048","Offset: 15,582,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9429884 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393711","Offset: 15,586,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9429999 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393429","Offset: 15,590,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9430174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395635","Offset: 15,594,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9430366 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395307","Offset: 15,598,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9430558 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394940","Offset: 15,602,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9430742 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394623","Offset: 15,606,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9430938 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394291","Offset: 15,610,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9431126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393966","Offset: 15,614,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9431313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393613","Offset: 15,619,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9431514 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6396309","Offset: 15,623,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9431697 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395994","Offset: 15,627,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9431885 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395678","Offset: 15,631,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9432073 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395353","Offset: 15,635,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9432265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395020","Offset: 15,639,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9432453 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394670","Offset: 15,643,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9432649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394325","Offset: 15,647,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9432841 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393984","Offset: 15,651,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9433046 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393616","Offset: 15,655,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9433229 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393301","Offset: 15,660,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9433421 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392973","Offset: 15,664,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9433613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392601","Offset: 15,668,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9433805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392260","Offset: 15,672,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9433997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395400","Offset: 15,676,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9434198 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395067","Offset: 15,680,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9434394 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394709","Offset: 15,684,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9434599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394372","Offset: 15,688,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9434859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393984","Offset: 15,692,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9435072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393634","Offset: 15,696,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9435281 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393289","Offset: 15,700,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9435478 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392904","Offset: 15,705,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9435674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392563","Offset: 15,709,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9435866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392230","Offset: 15,713,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9436058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393702","Offset: 15,717,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9436250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393356","Offset: 15,721,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9436438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394367","Offset: 15,725,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9436625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394048","Offset: 15,729,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9436822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393689","Offset: 15,733,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9437014 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393360","Offset: 15,737,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9437201 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393037","Offset: 15,741,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9437402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392699","Offset: 15,746,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9437602 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392354","Offset: 15,750,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9437794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394099","Offset: 15,754,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9437995 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393762","Offset: 15,758,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9438191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393438","Offset: 15,762,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9438370 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393122","Offset: 15,766,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9438537 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392772","Offset: 15,770,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9438733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392439","Offset: 15,774,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9438925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392094","Offset: 15,778,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9439194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393497","Offset: 15,782,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9439437 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393122","Offset: 15,787,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9439638 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392784","Offset: 15,791,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9439855 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392422","Offset: 15,795,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9440047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392072","Offset: 15,799,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9440252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393105","Offset: 15,803,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9440444 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392785","Offset: 15,807,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9440649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392448","Offset: 15,811,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9440841 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392106","Offset: 15,815,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9441054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392951","Offset: 15,819,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9441242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392640","Offset: 15,823,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9441447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392307","Offset: 15,827,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9441639 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6391918","Offset: 15,832,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9441835 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392695","Offset: 15,836,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9442044 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392345","Offset: 15,840,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9442240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6391983","Offset: 15,844,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9442432 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392439","Offset: 15,848,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9442624 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392094","Offset: 15,852,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9442838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392213","Offset: 15,856,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9443077 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392456","Offset: 15,860,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9443303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392102","Offset: 15,864,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9443499 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6391756","Offset: 15,868,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9443700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392230","Offset: 15,873,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9443892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6391871","Offset: 15,877,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9444037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392247","Offset: 15,881,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9444152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6391995","Offset: 15,885,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9444267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392422","Offset: 15,889,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9444378 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392106","Offset: 15,893,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9444493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392614","Offset: 15,897,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9444613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392349","Offset: 15,901,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9444728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392746","Offset: 15,905,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9444843 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392495","Offset: 15,909,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9444954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392908","Offset: 15,913,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9445073 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392619","Offset: 15,918,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9445206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393011","Offset: 15,922,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9445355 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392725","Offset: 15,926,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9445475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393087","Offset: 15,930,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9445590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392814","Offset: 15,934,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9445705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393237","Offset: 15,938,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9445820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6392960","Offset: 15,942,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9445935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393348","Offset: 15,946,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9446093 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393041","Offset: 15,950,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9446217 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393442","Offset: 15,954,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9446328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393143","Offset: 15,959,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9446443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393578","Offset: 15,963,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9446554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393335","Offset: 15,967,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9446673 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393694","Offset: 15,971,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9446784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393429","Offset: 15,975,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9446895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393856","Offset: 15,979,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9447019 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393540","Offset: 15,983,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9447147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393945","Offset: 15,987,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9447262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393677","Offset: 15,991,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9447377 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394057","Offset: 15,995,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9447493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393783","Offset: 16,000,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9447608 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394188","Offset: 16,004,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9447723 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6393924","Offset: 16,008,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9447838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394300","Offset: 16,012,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9447953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394035","Offset: 16,016,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9448064 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394475","Offset: 16,020,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9448175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394150","Offset: 16,024,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9448295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394649","Offset: 16,028,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9448410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394397","Offset: 16,032,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9448521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394764","Offset: 16,036,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9448662 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394491","Offset: 16,040,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9448781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394880","Offset: 16,045,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9448913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394560","Offset: 16,049,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9449029 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394977","Offset: 16,053,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9449140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394709","Offset: 16,057,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9449246 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395115","Offset: 16,061,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9449357 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394846","Offset: 16,065,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9449464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395281","Offset: 16,069,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9449579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394999","Offset: 16,073,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9449690 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395396","Offset: 16,077,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9449895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395042","Offset: 16,081,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9450104 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395353","Offset: 16,086,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9450313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394956","Offset: 16,090,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9450501 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395310","Offset: 16,094,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9450671 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6394978","Offset: 16,098,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9450821 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395332","Offset: 16,102,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9450970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395029","Offset: 16,106,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9451111 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395409","Offset: 16,110,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9451239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6395106","Offset: 16,114,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9451384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6396765","Offset: 16,118,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9451627 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6397973","Offset: 16,122,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9451742 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6398191","Offset: 16,126,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9451857 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6398370","Offset: 16,131,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9451968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6398507","Offset: 16,135,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9452079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6399151","Offset: 16,139,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9452190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6399637","Offset: 16,143,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9452310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6399359","Offset: 16,147,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9452421 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6399086","Offset: 16,151,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9452536 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6399901","Offset: 16,155,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9452647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6399628","Offset: 16,159,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9452766 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6399347","Offset: 16,163,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9452873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6400076","Offset: 16,167,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9453005 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6399808","Offset: 16,172,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9453116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6399539","Offset: 16,176,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9453248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6400073","Offset: 16,180,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9453359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6399842","Offset: 16,184,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9453475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6400242","Offset: 16,188,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9453590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6399970","Offset: 16,192,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9453709 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6400392","Offset: 16,196,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9453820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6400153","Offset: 16,200,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9453935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6400905","Offset: 16,204,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9454055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6401045","Offset: 16,208,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9454170 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6402598","Offset: 16,212,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9454289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6402347","Offset: 16,217,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9454409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6401941","Offset: 16,221,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9454528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6402906","Offset: 16,225,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9454644 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6402645","Offset: 16,229,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9454755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6402423","Offset: 16,233,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9454883 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6402162","Offset: 16,237,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9454998 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6402803","Offset: 16,241,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9455143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6402538","Offset: 16,245,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9455313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6402637","Offset: 16,249,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9455441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6403055","Offset: 16,253,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9455565 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6402820","Offset: 16,258,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9455680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6402586","Offset: 16,262,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9455813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6403251","Offset: 16,266,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9455928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6402952","Offset: 16,270,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9456047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6402671","Offset: 16,274,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9456167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6403404","Offset: 16,278,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9456286 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6403179","Offset: 16,282,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9456414 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6402914","Offset: 16,286,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9456542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6403439","Offset: 16,290,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9456657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6403200","Offset: 16,294,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9456777 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6403571","Offset: 16,299,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9456892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6403336","Offset: 16,303,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9457007 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6403725","Offset: 16,307,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9457123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6403459","Offset: 16,311,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9457229 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6403861","Offset: 16,315,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9457361 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6403614","Offset: 16,319,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9457477 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6403959","Offset: 16,323,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9457600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6403699","Offset: 16,327,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9457711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6404122","Offset: 16,331,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9457827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6403869","Offset: 16,335,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9457950 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6404232","Offset: 16,339,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9458074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6403968","Offset: 16,344,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9458185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6404275","Offset: 16,348,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9458300 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6404514","Offset: 16,352,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9458420 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6404279","Offset: 16,356,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9458535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6404505","Offset: 16,360,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9458650 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6404625","Offset: 16,364,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9458761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6404911","Offset: 16,368,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9458880 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6404651","Offset: 16,372,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9458996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6404889","Offset: 16,376,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9459119 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6404945","Offset: 16,380,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9459235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6405226","Offset: 16,385,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9459350 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6404987","Offset: 16,389,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9459473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6405338","Offset: 16,393,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9459606 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6405085","Offset: 16,397,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9459738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6405470","Offset: 16,401,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9459892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6405124","Offset: 16,405,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9460088 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6405469","Offset: 16,409,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9460267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6405150","Offset: 16,413,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9460446 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6405504","Offset: 16,417,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9460630 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6405136","Offset: 16,421,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9460809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6405508","Offset: 16,425,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9460963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6405239","Offset: 16,430,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9461108 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6405563","Offset: 16,434,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9461244 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6405312","Offset: 16,438,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9461385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6405649","Offset: 16,442,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9461534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6405355","Offset: 16,446,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9461679 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6405777","Offset: 16,450,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9461820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6405482","Offset: 16,454,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9461974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6405883","Offset: 16,458,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9462127 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6405615","Offset: 16,462,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9462260 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6405960","Offset: 16,466,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9462375 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6405721","Offset: 16,471,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9462494 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6406110","Offset: 16,475,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9462614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6405811","Offset: 16,479,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9462725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6406233","Offset: 16,483,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9462836 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6406007","Offset: 16,487,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9462964 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6406348","Offset: 16,491,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9463083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6406080","Offset: 16,495,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9463198 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6406524","Offset: 16,499,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9463326 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6406280","Offset: 16,503,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9463446 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6406506","Offset: 16,507,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9463565 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6406545","Offset: 16,512,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9463676 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6406831","Offset: 16,516,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9463796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6406591","Offset: 16,520,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9463936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6406916","Offset: 16,524,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9464052 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6406681","Offset: 16,528,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9464167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6407065","Offset: 16,532,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9464286 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6406771","Offset: 16,536,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9464401 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6407177","Offset: 16,540,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9464521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6406912","Offset: 16,544,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9464679 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6407291","Offset: 16,548,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9464849 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6406938","Offset: 16,552,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9465024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6407292","Offset: 16,557,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9465182 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6407019","Offset: 16,561,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9465336 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6407325","Offset: 16,565,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9465494 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6407027","Offset: 16,569,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9465686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6407347","Offset: 16,573,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9465882 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6406997","Offset: 16,577,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9466070 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6407317","Offset: 16,581,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9466211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6407026","Offset: 16,585,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9466334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6407445","Offset: 16,589,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9466445 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6407219","Offset: 16,593,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9466560 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6407573","Offset: 16,598,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9466714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6407279","Offset: 16,602,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9466829 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6407680","Offset: 16,606,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9466944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6407394","Offset: 16,610,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9467055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6407808","Offset: 16,614,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9467179 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6407569","Offset: 16,618,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9467294 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6407923","Offset: 16,622,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9467414 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6407662","Offset: 16,626,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9467529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6408166","Offset: 16,630,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9467738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6407812","Offset: 16,634,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9467875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6408072","Offset: 16,638,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9468011 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6408094","Offset: 16,643,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9468122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6408396","Offset: 16,647,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9468233 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6408170","Offset: 16,651,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9468352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6408533","Offset: 16,655,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9468463 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6408307","Offset: 16,659,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9468579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6408703","Offset: 16,663,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9468694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6408426","Offset: 16,667,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9468830 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6408794","Offset: 16,671,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9468945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6408563","Offset: 16,675,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9469061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6408951","Offset: 16,679,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9469176 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6408657","Offset: 16,684,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9469291 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6409066","Offset: 16,688,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9469402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6408844","Offset: 16,692,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9469517 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6409182","Offset: 16,696,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9469637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6408921","Offset: 16,700,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9469752 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6409314","Offset: 16,704,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9469880 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6409041","Offset: 16,708,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9469991 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6409425","Offset: 16,712,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9470115 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6409160","Offset: 16,716,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9470225 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6409579","Offset: 16,720,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9470349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6409331","Offset: 16,724,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9470533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6409616","Offset: 16,729,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9470733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6409284","Offset: 16,733,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9470921 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6410773","Offset: 16,737,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9471100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6410470","Offset: 16,741,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9471254 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6410043","Offset: 16,745,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9471369 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6410999","Offset: 16,749,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9471488 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6410726","Offset: 16,753,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9471638 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6410466","Offset: 16,757,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9471770 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6410201","Offset: 16,761,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9471881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6410867","Offset: 16,765,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9471996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6410632","Offset: 16,770,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9472120 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6410777","Offset: 16,774,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9472278 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6411148","Offset: 16,778,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9472389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6410926","Offset: 16,782,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9472500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6410692","Offset: 16,786,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9472619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6411490","Offset: 16,790,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9472734 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6411204","Offset: 16,794,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9472854 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6410905","Offset: 16,798,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9472995 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6411600","Offset: 16,802,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9473118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6411375","Offset: 16,806,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9473233 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6411136","Offset: 16,811,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9473349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6411758","Offset: 16,815,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9473464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6411532","Offset: 16,819,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9473579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6411298","Offset: 16,823,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9473690 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6411784","Offset: 16,827,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9473805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6411537","Offset: 16,831,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9473925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6646118","Offset: 16,835,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9474091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6648367","Offset: 16,839,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9474211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6651012","Offset: 16,843,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9474334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6657105","Offset: 16,847,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9474513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6658842","Offset: 16,851,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9474693 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6662494","Offset: 16,856,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9474880 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6664747","Offset: 16,860,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9475051 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6667588","Offset: 16,864,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9475239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6670989","Offset: 16,868,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9475439 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6673238","Offset: 16,872,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9475678 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6677223","Offset: 16,876,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9475870 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6679586","Offset: 16,880,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9476067 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6683080","Offset: 16,884,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9476246 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6685393","Offset: 16,888,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9476412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6688474","Offset: 16,892,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9476604 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6690658","Offset: 16,897,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9476800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6694533","Offset: 16,901,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9476988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6696269","Offset: 16,905,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9477167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6700067","Offset: 16,909,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9477347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6701696","Offset: 16,913,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9477539 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6705437","Offset: 16,917,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9477743 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6706893","Offset: 16,921,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9477918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6711028","Offset: 16,925,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9478093 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6712602","Offset: 16,929,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9478298 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6716292","Offset: 16,933,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9478486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6717581","Offset: 16,937,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9478682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6719241","Offset: 16,942,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9478878 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6722859","Offset: 16,946,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9479079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6723964","Offset: 16,950,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9479373 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6725500","Offset: 16,954,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9479791 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6728687","Offset: 16,958,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9479979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6729890","Offset: 16,962,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9480124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730052","Offset: 16,966,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9480261 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730201","Offset: 16,970,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9480389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730321","Offset: 16,974,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9480512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730394","Offset: 16,978,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9480628 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730470","Offset: 16,983,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9480743 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730543","Offset: 16,987,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9480858 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730641","Offset: 16,991,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9480977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730736","Offset: 16,995,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9481093 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730863","Offset: 16,999,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9481212 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730931","Offset: 17,003,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9481327 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731030","Offset: 17,007,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9481451 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731102","Offset: 17,011,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9481571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731204","Offset: 17,015,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9481686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731319","Offset: 17,019,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9481801 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731409","Offset: 17,024,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9481942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731460","Offset: 17,028,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9482057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731550","Offset: 17,032,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9482172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731657","Offset: 17,036,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9482283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731746","Offset: 17,040,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9482398 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731845","Offset: 17,044,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9482531 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731938","Offset: 17,048,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9482680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731989","Offset: 17,052,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9482829 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732054","Offset: 17,056,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9482974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732122","Offset: 17,060,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9483145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732190","Offset: 17,064,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9483286 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732232","Offset: 17,069,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9483473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732267","Offset: 17,073,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9483640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732301","Offset: 17,077,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9483840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732314","Offset: 17,081,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9484032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732365","Offset: 17,085,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9484195 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732394","Offset: 17,089,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9484357 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732424","Offset: 17,093,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9484502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732531","Offset: 17,097,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9484647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732612","Offset: 17,101,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9484788 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732659","Offset: 17,105,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9484928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732741","Offset: 17,110,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9485065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732792","Offset: 17,114,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9485214 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6734567","Offset: 17,118,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9485355 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6735966","Offset: 17,122,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9485496 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736226","Offset: 17,126,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9485637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736333","Offset: 17,130,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9485782 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736431","Offset: 17,134,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9485918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736593","Offset: 17,138,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9486059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736772","Offset: 17,142,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9486255 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736952","Offset: 17,146,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9486447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736623","Offset: 17,150,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9486836 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736571","Offset: 17,155,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9486985 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736696","Offset: 17,159,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9487134 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736811","Offset: 17,163,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9487275 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736892","Offset: 17,167,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9487416 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736977","Offset: 17,171,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9487565 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6737050","Offset: 17,175,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9487706 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6737135","Offset: 17,179,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9487889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6737413","Offset: 17,183,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9488056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6737050","Offset: 17,187,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9488214 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6737357","Offset: 17,191,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9488406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6737378","Offset: 17,196,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9488564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6737604","Offset: 17,200,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9488730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6737771","Offset: 17,204,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9488913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6737473","Offset: 17,208,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9489084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6737660","Offset: 17,212,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9489310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6738198","Offset: 17,216,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9489485 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6738364","Offset: 17,220,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9489686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6738888","Offset: 17,224,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9489895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6738952","Offset: 17,228,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9490104 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6738961","Offset: 17,232,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9490339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6739050","Offset: 17,236,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9490526 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6739217","Offset: 17,241,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9490740 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6738867","Offset: 17,245,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9490957 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6739124","Offset: 17,249,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9491175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6738769","Offset: 17,253,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9491375 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6738962","Offset: 17,257,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9491572 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6738995","Offset: 17,261,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9491806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6738983","Offset: 17,265,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9492032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6738974","Offset: 17,269,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9492246 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6739196","Offset: 17,273,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9492468 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6738854","Offset: 17,277,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9492685 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6739102","Offset: 17,282,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9492882 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6738764","Offset: 17,286,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9493099 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6738889","Offset: 17,290,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9493351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6738893","Offset: 17,294,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9493586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6739008","Offset: 17,298,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9493799 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6738675","Offset: 17,302,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9493999 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6738936","Offset: 17,306,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9494226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6738594","Offset: 17,310,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9494456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6738953","Offset: 17,314,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9494674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6738585","Offset: 17,318,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9494878 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6738944","Offset: 17,323,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9495109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6738607","Offset: 17,327,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9495275 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6738978","Offset: 17,331,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9495552 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6738582","Offset: 17,335,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9495762 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6738845","Offset: 17,339,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9495979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6738513","Offset: 17,343,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9496188 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6738833","Offset: 17,347,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9496376 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6738432","Offset: 17,351,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9497647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6737741","Offset: 17,355,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9498202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6737067","Offset: 17,359,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9498526 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6737199","Offset: 17,363,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9498778 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736836","Offset: 17,368,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9499008 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6737170","Offset: 17,372,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9499205 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736866","Offset: 17,376,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9499380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6737143","Offset: 17,380,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9499589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736793","Offset: 17,384,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9499853 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6737110","Offset: 17,388,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9500050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736785","Offset: 17,392,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9500216 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6737079","Offset: 17,396,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9500404 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736781","Offset: 17,400,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9500596 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6737092","Offset: 17,404,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9500771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736721","Offset: 17,409,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9500937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6737097","Offset: 17,413,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9501112 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736785","Offset: 17,417,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9501308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736930","Offset: 17,421,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9501509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736977","Offset: 17,425,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9501658 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6737186","Offset: 17,429,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9501812 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736917","Offset: 17,433,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9501970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6737228","Offset: 17,437,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9502930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736153","Offset: 17,441,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9503322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736252","Offset: 17,445,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9503612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6735808","Offset: 17,449,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9503787 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736132","Offset: 17,454,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9503911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6735868","Offset: 17,458,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9504073 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736282","Offset: 17,462,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9504192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736039","Offset: 17,466,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9504312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736401","Offset: 17,470,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9504423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736171","Offset: 17,474,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9504534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736567","Offset: 17,478,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9504696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736226","Offset: 17,482,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9504875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736580","Offset: 17,486,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9505093 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736247","Offset: 17,490,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9505315 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6736631","Offset: 17,495,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9506816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6734959","Offset: 17,499,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9507162 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6735207","Offset: 17,503,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9507290 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6734963","Offset: 17,507,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9507478 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6735245","Offset: 17,511,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9507917 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6734695","Offset: 17,515,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9509385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6733764","Offset: 17,519,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9509897 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6733137","Offset: 17,523,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9511629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731874","Offset: 17,527,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9511881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731512","Offset: 17,531,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9512064 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731870","Offset: 17,536,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9512256 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731452","Offset: 17,540,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9512461 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731836","Offset: 17,544,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9512666 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731516","Offset: 17,548,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9512867 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731665","Offset: 17,552,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9513084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731670","Offset: 17,556,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9513280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731823","Offset: 17,560,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9513481 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731512","Offset: 17,564,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9513690 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731763","Offset: 17,568,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9513925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731413","Offset: 17,572,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9514151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731682","Offset: 17,576,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9514339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731336","Offset: 17,581,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9514556 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731614","Offset: 17,585,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9514757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731277","Offset: 17,589,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9514970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731657","Offset: 17,593,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9515230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731273","Offset: 17,597,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9515435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731554","Offset: 17,601,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9515648 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731230","Offset: 17,605,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9515862 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731545","Offset: 17,609,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9516079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731145","Offset: 17,613,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9516301 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731469","Offset: 17,617,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9516527 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731132","Offset: 17,622,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9516732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731384","Offset: 17,626,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9516963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731038","Offset: 17,630,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9517180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731384","Offset: 17,634,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9517402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731047","Offset: 17,638,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9517624 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731285","Offset: 17,642,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9517859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730935","Offset: 17,646,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9518055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731285","Offset: 17,650,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9518272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730953","Offset: 17,654,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9518844 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730838","Offset: 17,658,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9519058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730513","Offset: 17,662,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9519232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731017","Offset: 17,667,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9519424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730552","Offset: 17,671,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9519616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731090","Offset: 17,675,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9519757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730842","Offset: 17,679,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9519915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730569","Offset: 17,683,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9520073 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731072","Offset: 17,687,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9520231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730795","Offset: 17,691,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9520384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731124","Offset: 17,695,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9520525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730868","Offset: 17,699,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9520687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731256","Offset: 17,703,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9520854 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730880","Offset: 17,708,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9521029 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731277","Offset: 17,712,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9521460 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730735","Offset: 17,716,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9521630 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731081","Offset: 17,720,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9521805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730727","Offset: 17,724,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9521989 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731089","Offset: 17,728,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9522211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730756","Offset: 17,732,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9522415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731013","Offset: 17,736,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9522633 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730675","Offset: 17,740,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9522842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730983","Offset: 17,744,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9523072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730616","Offset: 17,748,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9523273 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730897","Offset: 17,753,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9523486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730543","Offset: 17,757,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9523712 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730893","Offset: 17,761,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9523930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730445","Offset: 17,765,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9524143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730825","Offset: 17,769,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9524331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730526","Offset: 17,773,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9524557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730757","Offset: 17,777,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9524779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730419","Offset: 17,781,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9525044 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730722","Offset: 17,785,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9525266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730385","Offset: 17,789,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9525504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730607","Offset: 17,794,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9525701 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730304","Offset: 17,798,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9525923 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730645","Offset: 17,802,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9526149 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730300","Offset: 17,806,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9526371 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730564","Offset: 17,810,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9526622 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730198","Offset: 17,814,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9526819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730538","Offset: 17,818,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9527049 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730116","Offset: 17,822,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9527305 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730419","Offset: 17,826,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9527523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730090","Offset: 17,830,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9528000 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730189","Offset: 17,835,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9528141 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6729814","Offset: 17,839,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9528274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730304","Offset: 17,843,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9528389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730078","Offset: 17,847,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9528551 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730381","Offset: 17,851,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9528717 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730104","Offset: 17,855,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9528914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730410","Offset: 17,859,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9529118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730074","Offset: 17,863,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9529268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730406","Offset: 17,867,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9529387 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730172","Offset: 17,871,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9529519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730607","Offset: 17,875,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9529669 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730210","Offset: 17,880,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9529822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730667","Offset: 17,884,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9529950 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730424","Offset: 17,888,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9530061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730846","Offset: 17,892,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9530198 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730521","Offset: 17,896,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9530586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730688","Offset: 17,900,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9530718 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730441","Offset: 17,904,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9530851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730764","Offset: 17,908,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9530987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730518","Offset: 17,912,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9531115 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730876","Offset: 17,916,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9531235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730602","Offset: 17,921,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9531392 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730940","Offset: 17,925,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9531520 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730676","Offset: 17,929,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9531648 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731111","Offset: 17,933,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9531776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730765","Offset: 17,937,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9531909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731213","Offset: 17,941,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9532024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730982","Offset: 17,945,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9532152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731311","Offset: 17,949,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9532284 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731038","Offset: 17,953,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9532412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731503","Offset: 17,957,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9532536 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731264","Offset: 17,961,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9532971 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731286","Offset: 17,966,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9533210 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730931","Offset: 17,970,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9533423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731273","Offset: 17,974,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9533628 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730953","Offset: 17,978,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9533778 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731264","Offset: 17,982,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9533918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731013","Offset: 17,986,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9534046 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731414","Offset: 17,990,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9534183 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731059","Offset: 17,994,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9534358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731452","Offset: 17,998,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9534802 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730897","Offset: 18,002,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9535194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731025","Offset: 18,007,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9535360 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730650","Offset: 18,011,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9535540 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731153","Offset: 18,015,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9535693 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730825","Offset: 18,019,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9535826 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731200","Offset: 18,023,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9535954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6730961","Offset: 18,027,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9536094 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731316","Offset: 18,031,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9536210 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731063","Offset: 18,035,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9536342 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731405","Offset: 18,039,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9536474 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731136","Offset: 18,043,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9536602 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731571","Offset: 18,048,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9536730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731222","Offset: 18,052,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9536845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731674","Offset: 18,056,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9536978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731430","Offset: 18,060,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9537106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731840","Offset: 18,064,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9537238 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731482","Offset: 18,068,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9537370 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731947","Offset: 18,072,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9537524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731682","Offset: 18,076,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9537639 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732019","Offset: 18,080,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9537775 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731768","Offset: 18,084,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9537903 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732143","Offset: 18,088,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9538031 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731849","Offset: 18,093,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9538168 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732220","Offset: 18,097,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9538283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6731968","Offset: 18,101,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9538415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732425","Offset: 18,105,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9538552 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732041","Offset: 18,109,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9538680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732506","Offset: 18,113,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9538825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732250","Offset: 18,117,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9538944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732660","Offset: 18,121,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9539085 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732305","Offset: 18,125,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9539218 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732744","Offset: 18,129,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9539375 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732476","Offset: 18,134,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9539508 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732791","Offset: 18,138,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9539644 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732523","Offset: 18,142,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9539764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732924","Offset: 18,146,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9539892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732629","Offset: 18,150,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9540024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6733005","Offset: 18,154,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9540152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732740","Offset: 18,158,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9540306 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6733158","Offset: 18,162,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9540438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6732796","Offset: 18,166,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9540579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6733239","Offset: 18,170,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9540711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6733001","Offset: 18,174,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9540843 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6733312","Offset: 18,179,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9540971 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6733052","Offset: 18,183,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9541086 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6733513","Offset: 18,187,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9541227 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6733253","Offset: 18,191,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9541372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6733615","Offset: 18,195,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9541509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6733355","Offset: 18,199,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9541679 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6733756","Offset: 18,203,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9541820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6733496","Offset: 18,207,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9541940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6733858","Offset: 18,211,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9542068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6733615","Offset: 18,215,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9542204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6734016","Offset: 18,220,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9542332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6733696","Offset: 18,224,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9542464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6734106","Offset: 18,228,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9542580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6733875","Offset: 18,232,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9542712 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6734076","Offset: 18,236,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9542844 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6734473","Offset: 18,240,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9542976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6734704","Offset: 18,244,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9543104 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6734435","Offset: 18,248,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9543220 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6734809","Offset: 18,252,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9543365 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6734524","Offset: 18,256,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9543497 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6734916","Offset: 18,260,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9543651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6734600","Offset: 18,265,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9543804 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6734951","Offset: 18,269,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9543979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6734639","Offset: 18,273,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9544099 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6735099","Offset: 18,277,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9544269 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6734691","Offset: 18,281,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9544491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6735066","Offset: 18,285,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9544687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6734759","Offset: 18,289,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9544867 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6735155","Offset: 18,293,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9545012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6734745","Offset: 18,297,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9545178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6735219","Offset: 18,301,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9545340 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6734942","Offset: 18,306,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9545498 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6735228","Offset: 18,310,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9545656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6734938","Offset: 18,314,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9545835 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6735279","Offset: 18,318,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9545976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6734976","Offset: 18,322,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9546134 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6735326","Offset: 18,326,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9546266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6735053","Offset: 18,330,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9546398 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6735476","Offset: 18,334,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9546531 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6735138","Offset: 18,338,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9546663 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6883699","Offset: 18,342,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9546838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6884988","Offset: 18,347,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9546983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6887650","Offset: 18,351,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9547132 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6894891","Offset: 18,355,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9547282 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6896900","Offset: 18,359,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9547439 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6898676","Offset: 18,363,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9547555 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6905864","Offset: 18,367,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9547687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6908246","Offset: 18,371,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9547815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6915183","Offset: 18,375,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9547947 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6917760","Offset: 18,379,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9548084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6924472","Offset: 18,383,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9548250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6926878","Offset: 18,387,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9548455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6928815","Offset: 18,392,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9548643 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6935902","Offset: 18,396,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9548822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6938436","Offset: 18,400,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9549001 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6940429","Offset: 18,404,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9549219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6947200","Offset: 18,408,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9549402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6949756","Offset: 18,412,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9549603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6955593","Offset: 18,416,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9549761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6958114","Offset: 18,420,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9549893 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6964668","Offset: 18,424,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9550017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6967129","Offset: 18,428,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9550145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6969224","Offset: 18,433,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9550302 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6976270","Offset: 18,437,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9550430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6978770","Offset: 18,441,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9550554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6980835","Offset: 18,445,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9550682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6988933","Offset: 18,449,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9550810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6990260","Offset: 18,453,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9550934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.6992832","Offset: 18,457,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9551066 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7000628","Offset: 18,461,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9551190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7001984","Offset: 18,465,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9551318 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7004130","Offset: 18,469,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9551450 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7011747","Offset: 18,473,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9551561 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7014208","Offset: 18,478,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9551693 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7020220","Offset: 18,482,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9551821 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7022631","Offset: 18,486,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9552035 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7028548","Offset: 18,490,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9552193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7031100","Offset: 18,494,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9552312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7036894","Offset: 18,498,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9552483 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7039339","Offset: 18,502,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9552632 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7045312","Offset: 18,506,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9552764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7047834","Offset: 18,510,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9552892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7053876","Offset: 18,514,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9553029 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7056265","Offset: 18,519,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9553144 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7063322","Offset: 18,523,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9553268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7065703","Offset: 18,527,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9553396 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7071761","Offset: 18,531,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9553524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7074266","Offset: 18,535,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9553647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7080381","Offset: 18,539,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9553763 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7082799","Offset: 18,543,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9553895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7088952","Offset: 18,547,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9554027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7091235","Offset: 18,551,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9554159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7097251","Offset: 18,555,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9554292 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7099674","Offset: 18,560,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9554403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7105924","Offset: 18,564,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9554535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7108037","Offset: 18,568,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9554671 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7109898","Offset: 18,572,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9554834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7117965","Offset: 18,576,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9555021 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7120312","Offset: 18,580,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9555239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7122202","Offset: 18,584,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9555431 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7129255","Offset: 18,588,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9555597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7131645","Offset: 18,592,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9555730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7137613","Offset: 18,596,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9555853 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7140067","Offset: 18,600,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9556020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7146125","Offset: 18,605,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9556131 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7148600","Offset: 18,609,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9556276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7154650","Offset: 18,613,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9556425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7157061","Offset: 18,617,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9556562 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7163887","Offset: 18,621,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9556707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7166349","Offset: 18,625,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9556847 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7172336","Offset: 18,629,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9556967 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7174763","Offset: 18,633,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9557091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7180770","Offset: 18,637,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9557223 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7183254","Offset: 18,641,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9557351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7189168","Offset: 18,646,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9557479 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7191386","Offset: 18,650,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9557590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7197590","Offset: 18,654,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9557718 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7199966","Offset: 18,658,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9557846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7205953","Offset: 18,662,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9557974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7208410","Offset: 18,666,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9558102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7214827","Offset: 18,670,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9558234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7217110","Offset: 18,674,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9558354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7223288","Offset: 18,678,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9558482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7225720","Offset: 18,682,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9558618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7231698","Offset: 18,686,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9558750 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7234134","Offset: 18,691,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9558878 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7240261","Offset: 18,695,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9558994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7242705","Offset: 18,699,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9559126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7248662","Offset: 18,703,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9559271 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7250578","Offset: 18,707,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9559395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7256918","Offset: 18,711,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9559527 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7258898","Offset: 18,715,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9559668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7265758","Offset: 18,719,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9559783 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7267905","Offset: 18,723,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9559915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7274292","Offset: 18,727,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9560047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7276362","Offset: 18,732,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9560205 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7283030","Offset: 18,736,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9560380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7284844","Offset: 18,740,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9560517 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7286857","Offset: 18,744,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9560645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7294384","Offset: 18,748,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9560777 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7296470","Offset: 18,752,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9560905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7303348","Offset: 18,756,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9561050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7305375","Offset: 18,760,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9561170 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7312380","Offset: 18,764,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9561327 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7314408","Offset: 18,768,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9561460 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7320978","Offset: 18,772,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9561588 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7322983","Offset: 18,777,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9561720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7329383","Offset: 18,781,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9561865 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7331401","Offset: 18,785,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9561980 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7337840","Offset: 18,789,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9562108 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7339867","Offset: 18,793,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9562236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7346032","Offset: 18,797,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9562369 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7348293","Offset: 18,801,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9562497 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7354356","Offset: 18,805,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9562616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7356737","Offset: 18,809,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9562774 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7363150","Offset: 18,813,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9563055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7365501","Offset: 18,818,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9563192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7371478","Offset: 18,822,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9563316 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7373970","Offset: 18,826,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9563452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7380247","Offset: 18,830,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9563585 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7382571","Offset: 18,834,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9563713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7388766","Offset: 18,838,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9563841 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7391284","Offset: 18,842,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9564152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7398017","Offset: 18,846,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9564293 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7400214","Offset: 18,850,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9564417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7402330","Offset: 18,854,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9564545 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7410586","Offset: 18,859,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9564673 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7411115","Offset: 18,863,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9564801 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7415134","Offset: 18,867,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9564937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7422354","Offset: 18,871,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9565048 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7423732","Offset: 18,875,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9565180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7425947","Offset: 18,879,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9565368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7432931","Offset: 18,883,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9565581 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7435163","Offset: 18,887,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9565790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7437104","Offset: 18,891,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9566038 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7443969","Offset: 18,895,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9566221 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7446295","Offset: 18,899,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9566422 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7452314","Offset: 18,904,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9566610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7454516","Offset: 18,908,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9566814 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7456437","Offset: 18,912,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9567015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7464214","Offset: 18,916,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9567169 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7466765","Offset: 18,920,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9567339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7472586","Offset: 18,924,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9567501 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7474920","Offset: 18,928,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9567663 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7480910","Offset: 18,932,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9567838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7482881","Offset: 18,936,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9568001 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7489310","Offset: 18,940,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9568158 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7491155","Offset: 18,945,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9568325 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7497464","Offset: 18,949,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9568525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7499509","Offset: 18,953,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9568670 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7506186","Offset: 18,957,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9568798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7508072","Offset: 18,961,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9568909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7510111","Offset: 18,965,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9569063 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7518115","Offset: 18,969,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9569195 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7520168","Offset: 18,973,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9569323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7526691","Offset: 18,977,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9569447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7528577","Offset: 18,981,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9569562 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7535220","Offset: 18,985,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9569703 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7537268","Offset: 18,990,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9569848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7544057","Offset: 18,994,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9569976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7546339","Offset: 18,998,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9570113 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7552513","Offset: 19,002,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9570305 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7554454","Offset: 19,006,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9570424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7561443","Offset: 19,010,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9570552 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7563504","Offset: 19,014,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9570689 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7569878","Offset: 19,018,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9570817 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7571917","Offset: 19,022,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9570945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7578373","Offset: 19,026,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9571060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7580306","Offset: 19,031,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9571196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7586886","Offset: 19,035,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9571354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7588908","Offset: 19,039,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9571542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7595278","Offset: 19,043,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9571734 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7597198","Offset: 19,047,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9571926 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7603619","Offset: 19,051,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9572088 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7605544","Offset: 19,055,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9572280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7607459","Offset: 19,059,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9572485 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7615758","Offset: 19,063,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9572655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7617862","Offset: 19,067,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9572801 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7624483","Offset: 19,072,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9572920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7626356","Offset: 19,076,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9573052 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7628366","Offset: 19,080,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9573180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7635748","Offset: 19,084,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9573308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7637800","Offset: 19,088,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9573475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7644293","Offset: 19,092,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9573590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7646068","Offset: 19,096,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9573722 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7648031","Offset: 19,100,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9573850 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7655686","Offset: 19,104,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9573974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7657631","Offset: 19,108,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9574102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7664121","Offset: 19,112,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9574230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7666493","Offset: 19,117,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9574345 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7672949","Offset: 19,121,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9574469 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7674954","Offset: 19,125,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9574601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7681589","Offset: 19,129,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9574729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7683530","Offset: 19,133,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9574853 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7690036","Offset: 19,137,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9574964 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7692037","Offset: 19,141,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9575096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7698467","Offset: 19,145,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9575224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7700515","Offset: 19,149,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9575352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7706856","Offset: 19,153,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9575480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7708887","Offset: 19,158,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9575612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7715876","Offset: 19,162,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9575732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7717996","Offset: 19,166,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9575881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7724289","Offset: 19,170,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9576009 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7726406","Offset: 19,174,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9576154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7732998","Offset: 19,178,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9576282 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7735016","Offset: 19,182,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9576397 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7741484","Offset: 19,186,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9576611 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7743429","Offset: 19,190,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9576884 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7749804","Offset: 19,194,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9577029 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7751784","Offset: 19,198,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9577157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7758423","Offset: 19,203,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9577293 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7760399","Offset: 19,207,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9577417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7767451","Offset: 19,211,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9577549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7769559","Offset: 19,215,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9577682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7776112","Offset: 19,219,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9577822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7778199","Offset: 19,223,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9578006 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7784385","Offset: 19,227,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9578185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7786643","Offset: 19,231,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9578415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7792996","Offset: 19,235,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9578607 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7795296","Offset: 19,239,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9578744 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7801482","Offset: 19,244,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9579060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7803479","Offset: 19,248,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9579265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7805462","Offset: 19,252,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9579486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7813335","Offset: 19,256,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9579666 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7815724","Offset: 19,260,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9579806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7817517","Offset: 19,264,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9579934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7824877","Offset: 19,268,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9580062 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7827044","Offset: 19,272,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9580178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7829113","Offset: 19,276,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9580323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7836537","Offset: 19,280,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9580451 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7838764","Offset: 19,284,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9580600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7840846","Offset: 19,289,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9580724 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7848543","Offset: 19,293,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9580852 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7850996","Offset: 19,297,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9581005 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7852742","Offset: 19,301,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9581133 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7860593","Offset: 19,305,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9581278 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7862679","Offset: 19,309,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9581406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7864702","Offset: 19,313,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9581522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7872168","Offset: 19,317,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9581667 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7874199","Offset: 19,321,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9581799 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7876204","Offset: 19,325,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9581931 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7883594","Offset: 19,330,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9582055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7886064","Offset: 19,334,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9582191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7887789","Offset: 19,338,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9582307 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7895165","Offset: 19,342,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9582439 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7897260","Offset: 19,346,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9582580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7899282","Offset: 19,350,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9582729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7907458","Offset: 19,354,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9582857 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7909331","Offset: 19,358,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9582989 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7911341","Offset: 19,362,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9583105 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7918811","Offset: 19,366,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9583237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7921004","Offset: 19,371,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9583365 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7923090","Offset: 19,375,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9583506 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7930553","Offset: 19,379,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9583642 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7932627","Offset: 19,383,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9583774 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7934611","Offset: 19,387,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9583911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7942312","Offset: 19,391,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9584039 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7944287","Offset: 19,395,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9584167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7946357","Offset: 19,399,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9584295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7954647","Offset: 19,403,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9584427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7956840","Offset: 19,407,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9584542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7959016","Offset: 19,411,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9584666 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7966500","Offset: 19,416,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9584820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7968650","Offset: 19,420,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9584952 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7970724","Offset: 19,424,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9585123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7978139","Offset: 19,428,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9585242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7980298","Offset: 19,432,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9585374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7982368","Offset: 19,436,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9585519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7989749","Offset: 19,440,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9585652 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7991801","Offset: 19,444,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9585775 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.7993862","Offset: 19,448,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9585908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8002045","Offset: 19,452,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9586023 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8004320","Offset: 19,457,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9586151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8010720","Offset: 19,461,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9586283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8013058","Offset: 19,465,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9586403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8015007","Offset: 19,469,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9586548 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8022308","Offset: 19,473,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9586667 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8024480","Offset: 19,477,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9586799 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8026648","Offset: 19,481,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9586927 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8034255","Offset: 19,485,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9587073 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8036247","Offset: 19,489,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9587201 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8038282","Offset: 19,493,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9587384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8045587","Offset: 19,497,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9587576 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8047737","Offset: 19,502,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9587789 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8049730","Offset: 19,506,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9587998 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8057641","Offset: 19,510,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9588173 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8059697","Offset: 19,514,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9588370 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8061655","Offset: 19,518,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9588579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8069215","Offset: 19,522,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9588783 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8071328","Offset: 19,526,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9588980 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8073290","Offset: 19,530,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9589167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8080749","Offset: 19,534,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9589411 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8082813","Offset: 19,538,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9589590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8084810","Offset: 19,543,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9589748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8092294","Offset: 19,547,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9589906 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8094389","Offset: 19,551,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9590068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8096578","Offset: 19,555,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9590204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8104459","Offset: 19,559,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9590366 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8106319","Offset: 19,563,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9590533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8108281","Offset: 19,567,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9590695 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8115680","Offset: 19,571,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9590840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8117813","Offset: 19,575,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9590972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8119857","Offset: 19,579,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9591109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8127293","Offset: 19,584,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9591237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8129418","Offset: 19,588,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9591361 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8131440","Offset: 19,592,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9591476 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8139138","Offset: 19,596,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9591608 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8141007","Offset: 19,600,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9591757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8143029","Offset: 19,604,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9591890 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8150854","Offset: 19,608,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9592030 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8153193","Offset: 19,612,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9592167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8155586","Offset: 19,616,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9592286 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8162878","Offset: 19,620,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9592444 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8164964","Offset: 19,624,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9592577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8166973","Offset: 19,629,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9592705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8174457","Offset: 19,633,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9592833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8176654","Offset: 19,637,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9592943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8178818","Offset: 19,641,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9593097 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8193606","Offset: 19,645,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9593238 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8195978","Offset: 19,649,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9593498 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8203215","Offset: 19,653,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9593686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8205118","Offset: 19,657,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9593878 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8207097","Offset: 19,661,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9594061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8214432","Offset: 19,665,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9594241 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8216539","Offset: 19,670,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9594428 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8218549","Offset: 19,674,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9594637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8225969","Offset: 19,678,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9594876 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8228051","Offset: 19,682,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9595013 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8230176","Offset: 19,686,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9595166 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8237929","Offset: 19,690,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9595316 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8239852","Offset: 19,694,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9595478 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8241794","Offset: 19,698,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9595606 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8249610","Offset: 19,702,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9595738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8251996","Offset: 19,706,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9595858 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8258297","Offset: 19,710,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9595981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8260435","Offset: 19,715,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9596114 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8262530","Offset: 19,719,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9596242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8269945","Offset: 19,723,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9596370 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8272573","Offset: 19,727,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9596485 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8278696","Offset: 19,731,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9596613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8280766","Offset: 19,735,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9596741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8282771","Offset: 19,739,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9596873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8290136","Offset: 19,743,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9597005 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8292333","Offset: 19,747,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9597142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8294317","Offset: 19,751,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9597257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8302569","Offset: 19,756,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9597385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8304629","Offset: 19,760,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9597517 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8307062","Offset: 19,764,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9597633 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8314540","Offset: 19,768,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9597765 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8316712","Offset: 19,772,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9597897 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8318761","Offset: 19,776,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9598025 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8325852","Offset: 19,780,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9598153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8328275","Offset: 19,784,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9598285 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8330264","Offset: 19,788,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9598405 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8337670","Offset: 19,792,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9598550 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8339799","Offset: 19,796,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9598678 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8342103","Offset: 19,801,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9598806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8349818","Offset: 19,805,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9598934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8352023","Offset: 19,809,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9599053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8354093","Offset: 19,813,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9599211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8361555","Offset: 19,817,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9599339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8363633","Offset: 19,821,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9599484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8365634","Offset: 19,825,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9599612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8373067","Offset: 19,829,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9599800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8375140","Offset: 19,833,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9599988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8377384","Offset: 19,837,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9600180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8384540","Offset: 19,842,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9600316 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8386755","Offset: 19,846,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9600432 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8388917","Offset: 19,850,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9600564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8396947","Offset: 19,854,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9600696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8399439","Offset: 19,858,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9600862 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8401257","Offset: 19,862,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9600986 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8408574","Offset: 19,866,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9601123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8411036","Offset: 19,870,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9601251 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8417325","Offset: 19,874,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9601434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8419766","Offset: 19,878,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9601588 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8421753","Offset: 19,883,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9601724 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8429007","Offset: 19,887,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9601861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8431447","Offset: 19,891,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9601976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8438330","Offset: 19,895,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9602117 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8441449","Offset: 19,899,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9602249 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8442899","Offset: 19,903,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9602381 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8450639","Offset: 19,907,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9602509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8453067","Offset: 19,911,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9602646 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8454236","Offset: 19,915,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9602765 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8462266","Offset: 19,919,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9602889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8464881","Offset: 19,923,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9603021 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8467083","Offset: 19,928,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9603149 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8474541","Offset: 19,932,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9603277 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8475979","Offset: 19,936,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9603397 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8478633","Offset: 19,940,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9603546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8486351","Offset: 19,944,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9603678 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8488792","Offset: 19,948,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9603828 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8490131","Offset: 19,952,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9603956 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8497790","Offset: 19,956,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9604097 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8500196","Offset: 19,960,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9604220 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8501575","Offset: 19,964,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9604348 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8509861","Offset: 19,969,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9604481 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8512224","Offset: 19,973,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9604613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8513380","Offset: 19,977,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9604745 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8521381","Offset: 19,981,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9604873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8523787","Offset: 19,985,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9605010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8525604","Offset: 19,989,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9605142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8535789","Offset: 19,993,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9605274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8538290","Offset: 19,997,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9605402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8539698","Offset: 20,001,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9605539 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8546810","Offset: 20,005,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9605654 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8548900","Offset: 20,009,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9605790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8551243","Offset: 20,014,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9605944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8558228","Offset: 20,018,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9606072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8561039","Offset: 20,022,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9606200 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8563855","Offset: 20,026,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9606315 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8569935","Offset: 20,030,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9606448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8572857","Offset: 20,034,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9606580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8575541","Offset: 20,038,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9606712 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8582522","Offset: 20,042,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9606849 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8585649","Offset: 20,046,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9606964 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8588491","Offset: 20,050,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9607092 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8595352","Offset: 20,055,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9607233 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8598632","Offset: 20,059,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9607369 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8601948","Offset: 20,063,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9607497 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8608562","Offset: 20,067,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9607629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8612060","Offset: 20,071,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9607762 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8615127","Offset: 20,075,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9607890 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8622594","Offset: 20,079,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9608022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8626323","Offset: 20,083,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9608180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8629570","Offset: 20,087,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9608325 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8637430","Offset: 20,091,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9608530 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8641274","Offset: 20,096,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9608734 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8645063","Offset: 20,100,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9608944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8652465","Offset: 20,104,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9609153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8656390","Offset: 20,108,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9609332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.8893268","Offset: 20,112,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9609571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9003152","Offset: 20,116,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9609767 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9169010","Offset: 20,120,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9609963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9169202","Offset: 20,124,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9610108 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9169625","Offset: 20,128,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9610270 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9175743","Offset: 20,132,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9610428 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9175193","Offset: 20,136,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9610795 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9175487","Offset: 20,141,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9610932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9176272","Offset: 20,145,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9611047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9182783","Offset: 20,149,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9611184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9182390","Offset: 20,153,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9611312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9182761","Offset: 20,157,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9611444 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9183005","Offset: 20,161,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9611568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9189306","Offset: 20,165,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9611704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9188918","Offset: 20,169,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9611819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9189281","Offset: 20,173,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9611960 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9190275","Offset: 20,177,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9612092 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9195967","Offset: 20,182,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9612220 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9195600","Offset: 20,186,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9612348 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9196082","Offset: 20,190,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9612476 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9195831","Offset: 20,194,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9612587 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9196774","Offset: 20,198,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9612720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9203868","Offset: 20,202,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9612848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9203497","Offset: 20,206,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9612971 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9203856","Offset: 20,210,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9613133 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9204795","Offset: 20,214,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9613304 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9210367","Offset: 20,218,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9613526 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9209812","Offset: 20,222,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9613709 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9210214","Offset: 20,227,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9613910 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9210230","Offset: 20,231,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9614089 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9217087","Offset: 20,235,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9614298 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9216626","Offset: 20,239,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9614486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9216967","Offset: 20,243,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9614661 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9216997","Offset: 20,247,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9614802 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9217774","Offset: 20,251,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9614925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9223658","Offset: 20,255,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9615058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9223824","Offset: 20,259,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9615181 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9224059","Offset: 20,263,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9615335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9228662","Offset: 20,268,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9615463 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9228931","Offset: 20,272,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9615591 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9229678","Offset: 20,276,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9615723 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9233655","Offset: 20,280,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9615851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9233740","Offset: 20,284,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9615962 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9234751","Offset: 20,288,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9616094 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9239116","Offset: 20,292,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9616227 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9239171","Offset: 20,296,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9616350 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9240179","Offset: 20,300,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9616483 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9244227","Offset: 20,304,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9616602 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9244385","Offset: 20,308,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9616739 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9245319","Offset: 20,313,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9616871 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9249906","Offset: 20,317,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9617003 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9249971","Offset: 20,321,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9617114 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9251020","Offset: 20,325,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9617246 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9255142","Offset: 20,329,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9617374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9255214","Offset: 20,333,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9617502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9256196","Offset: 20,337,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9617635 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9260607","Offset: 20,341,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9617750 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9260748","Offset: 20,345,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9617899 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9261755","Offset: 20,349,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9618036 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9265706","Offset: 20,354,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9618185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9265736","Offset: 20,358,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9618330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9266738","Offset: 20,362,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9618462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9270865","Offset: 20,366,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9618573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9270967","Offset: 20,370,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9618706 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9271871","Offset: 20,374,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9618829 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9275895","Offset: 20,378,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9618957 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9275946","Offset: 20,382,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9619094 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9277017","Offset: 20,386,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9619218 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9281411","Offset: 20,390,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9619346 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9281484","Offset: 20,395,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9619482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9282474","Offset: 20,399,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9619614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9286587","Offset: 20,403,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9619730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9286659","Offset: 20,407,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9619879 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9287103","Offset: 20,411,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9620075 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9291541","Offset: 20,415,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9620280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9291553","Offset: 20,419,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9620498 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9291958","Offset: 20,423,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9620681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9296379","Offset: 20,427,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9620835 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9296438","Offset: 20,431,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9620993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9296886","Offset: 20,435,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9621142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9301896","Offset: 20,440,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9621296 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9301917","Offset: 20,444,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9621428 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9302399","Offset: 20,448,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9621543 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9307033","Offset: 20,452,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9621671 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9307105","Offset: 20,456,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9621799 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9307626","Offset: 20,460,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9621953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9312144","Offset: 20,464,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9622089 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9312213","Offset: 20,468,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9622204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9312725","Offset: 20,472,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9622349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9316774","Offset: 20,476,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9622482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9317336","Offset: 20,481,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9622627 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9320933","Offset: 20,485,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9622772 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9321590","Offset: 20,489,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9622900 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9325447","Offset: 20,493,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9623015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9325618","Offset: 20,497,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9623143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9326118","Offset: 20,501,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9623271 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9330546","Offset: 20,505,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9623395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9330627","Offset: 20,509,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9623621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9331054","Offset: 20,513,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9623821 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9335453","Offset: 20,517,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9624043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9335436","Offset: 20,521,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9624261 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9335884","Offset: 20,526,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9624432 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9340799","Offset: 20,530,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9624564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9341017","Offset: 20,534,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9624696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9341354","Offset: 20,538,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9624816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9345919","Offset: 20,542,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9624944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9346000","Offset: 20,546,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9625076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9346516","Offset: 20,550,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9625204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9350924","Offset: 20,554,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9625345 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9350996","Offset: 20,558,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9625464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9351504","Offset: 20,562,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9625601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9355903","Offset: 20,567,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9625729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9356120","Offset: 20,571,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9625882 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9356526","Offset: 20,575,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9626006 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9361394","Offset: 20,579,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9626151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9361454","Offset: 20,583,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9626296 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9361953","Offset: 20,587,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9626424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9366617","Offset: 20,591,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9626561 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9366689","Offset: 20,595,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9626672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9367184","Offset: 20,599,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9626804 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9371801","Offset: 20,603,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9626940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9371959","Offset: 20,608,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9627068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9372322","Offset: 20,612,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9627192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9376678","Offset: 20,616,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9627324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9376750","Offset: 20,620,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9627440 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9377266","Offset: 20,624,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9627572 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9382203","Offset: 20,628,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9627696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9382288","Offset: 20,632,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9627819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9382796","Offset: 20,636,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9627952 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9387327","Offset: 20,640,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9628067 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9387425","Offset: 20,644,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9628208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9387928","Offset: 20,648,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9628336 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9392353","Offset: 20,653,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9628468 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9392421","Offset: 20,657,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9628587 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9392930","Offset: 20,661,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9628711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9397444","Offset: 20,665,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9628839 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9397627","Offset: 20,669,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9628967 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9398404","Offset: 20,673,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9629091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9403442","Offset: 20,677,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9629206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9403532","Offset: 20,681,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9629389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9404027","Offset: 20,685,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9629598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9408439","Offset: 20,689,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9629808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9408434","Offset: 20,694,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9630008 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9408908","Offset: 20,698,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9630209 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9413341","Offset: 20,702,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9630362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9413380","Offset: 20,706,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9630541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9413807","Offset: 20,710,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9630704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9418235","Offset: 20,714,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9630866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9418282","Offset: 20,718,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9631028 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9418841","Offset: 20,722,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9631164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9423688","Offset: 20,726,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9631348 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9423713","Offset: 20,730,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9631518 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9424166","Offset: 20,734,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9631732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9428663","Offset: 20,739,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9631873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9428714","Offset: 20,743,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9632005 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9429170","Offset: 20,747,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9632124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9433625","Offset: 20,751,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9632248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9433736","Offset: 20,755,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9632380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9434282","Offset: 20,759,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9632508 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9438651","Offset: 20,763,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9632641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9438727","Offset: 20,767,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9632756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9439240","Offset: 20,771,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9632892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9444155","Offset: 20,775,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9633025 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9444278","Offset: 20,780,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9633153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9444756","Offset: 20,784,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9633281 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9449326","Offset: 20,788,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9633413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9449446","Offset: 20,792,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9633528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9450000","Offset: 20,796,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9633652 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9454352","Offset: 20,800,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9633780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9454429","Offset: 20,804,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9633972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9454886","Offset: 20,808,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9634160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9458968","Offset: 20,812,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9634339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9459455","Offset: 20,816,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9634569 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9459976","Offset: 20,820,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9634765 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9464640","Offset: 20,825,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9634949 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9464929","Offset: 20,829,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9635175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9465450","Offset: 20,833,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9635363 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9469554","Offset: 20,837,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9635521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9469861","Offset: 20,841,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9635653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9470258","Offset: 20,845,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9635781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9474828","Offset: 20,849,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9635896 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9475195","Offset: 20,853,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9636071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9475643","Offset: 20,857,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9636199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9480183","Offset: 20,861,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9636331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9480516","Offset: 20,866,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9636459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9481113","Offset: 20,870,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9636592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9485819","Offset: 20,874,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9636707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9486143","Offset: 20,878,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9636830 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9486643","Offset: 20,882,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9636963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9490982","Offset: 20,886,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9637091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9491438","Offset: 20,890,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9637219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9491878","Offset: 20,894,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9637330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9496119","Offset: 20,898,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9637466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9496324","Offset: 20,902,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9637594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9496874","Offset: 20,907,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9637726 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9501167","Offset: 20,911,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9637854 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9501495","Offset: 20,915,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9637987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9501921","Offset: 20,919,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9638123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9506752","Offset: 20,923,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9638260 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9507101","Offset: 20,927,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9638384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9507442","Offset: 20,931,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9638499 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9511910","Offset: 20,935,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9638635 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9512243","Offset: 20,939,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9638763 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9512623","Offset: 20,943,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9638896 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9516914","Offset: 20,947,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9639041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9517256","Offset: 20,952,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9639173 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9517708","Offset: 20,956,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9639288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9521834","Offset: 20,960,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9639416 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9522393","Offset: 20,964,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9639561 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9522696","Offset: 20,968,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9639693 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9527266","Offset: 20,972,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9639826 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9527683","Offset: 20,976,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9639941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9528260","Offset: 20,980,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9640082 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9532552","Offset: 20,984,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9640257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9532914","Offset: 20,988,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9640449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9533366","Offset: 20,993,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9640658 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9537313","Offset: 20,997,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9640884 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9537838","Offset: 21,001,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9641037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9538159","Offset: 21,005,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9641191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9542587","Offset: 21,009,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9641319 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9542805","Offset: 21,013,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9641494 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9543995","Offset: 21,017,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9641618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9549678","Offset: 21,021,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9641733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9549188","Offset: 21,025,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9641869 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9550114","Offset: 21,029,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9641997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9549781","Offset: 21,033,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9642121 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9556194","Offset: 21,038,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9642245 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9555447","Offset: 21,042,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9642381 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9556574","Offset: 21,046,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9642505 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9556207","Offset: 21,050,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9642646 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9556642","Offset: 21,054,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9642800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9563643","Offset: 21,058,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9642966 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9563118","Offset: 21,062,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9643094 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9563920","Offset: 21,066,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9643209 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9563601","Offset: 21,070,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9643337 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9564040","Offset: 21,074,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9643469 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9571353","Offset: 21,079,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9643602 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9570832","Offset: 21,083,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9643730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9571532","Offset: 21,087,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9643879 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9571724","Offset: 21,091,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9644003 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9572163","Offset: 21,095,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9644135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9578909","Offset: 21,099,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9644267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9578398","Offset: 21,103,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9644382 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9579085","Offset: 21,107,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9644515 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9579302","Offset: 21,111,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9644664 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9579758","Offset: 21,115,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9644796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9587008","Offset: 21,120,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9644941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9586492","Offset: 21,124,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9645108 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9587114","Offset: 21,128,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9645232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9587575","Offset: 21,132,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9645360 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9587818","Offset: 21,136,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9645590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9594440","Offset: 21,140,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9645825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9593825","Offset: 21,144,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9646042 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9594359","Offset: 21,148,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9646226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9594785","Offset: 21,152,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9646413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9600661","Offset: 21,156,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9646554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9600145","Offset: 21,160,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9646814 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9600678","Offset: 21,165,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9646972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9600862","Offset: 21,169,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9647109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9607364","Offset: 21,173,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9647224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9606869","Offset: 21,177,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9647335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9607552","Offset: 21,181,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9647459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9607760","Offset: 21,185,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9647570 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9614002","Offset: 21,189,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9647685 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9613482","Offset: 21,193,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9647809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9614169","Offset: 21,197,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9647954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9614369","Offset: 21,201,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9648086 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9620642","Offset: 21,206,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9648214 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9619938","Offset: 21,210,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9648342 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9620795","Offset: 21,214,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9648470 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9621013","Offset: 21,218,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9648585 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9627737","Offset: 21,222,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9648713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9627020","Offset: 21,226,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9648841 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9628113","Offset: 21,230,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9648969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9627780","Offset: 21,234,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9649106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9633970","Offset: 21,238,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9649221 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9633476","Offset: 21,242,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9649353 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9634176","Offset: 21,246,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9649485 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9634411","Offset: 21,251,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9649613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9634637","Offset: 21,255,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9649741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9641621","Offset: 21,259,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9649904 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9641070","Offset: 21,263,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9650091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9641894","Offset: 21,267,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9650296 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9642048","Offset: 21,271,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9650488 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9648405","Offset: 21,275,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9650693 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9647748","Offset: 21,279,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9650876 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9648439","Offset: 21,283,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9651043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9649028","Offset: 21,287,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9651222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9648661","Offset: 21,292,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9651384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9655799","Offset: 21,296,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9651542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9655206","Offset: 21,300,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9651700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9656136","Offset: 21,304,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9651879 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9656490","Offset: 21,308,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9652028 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9656154","Offset: 21,312,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9652165 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9663654","Offset: 21,316,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9652297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9663142","Offset: 21,320,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9652429 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9663842","Offset: 21,324,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9652553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9664077","Offset: 21,328,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9652668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9664311","Offset: 21,332,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9652801 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9671325","Offset: 21,337,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9652946 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9670809","Offset: 21,341,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9653082 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9671701","Offset: 21,345,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9653206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9671965","Offset: 21,349,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9653338 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9672170","Offset: 21,353,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9653471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9678135","Offset: 21,357,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9653603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9678549","Offset: 21,361,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9653727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9679043","Offset: 21,365,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9653842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9679270","Offset: 21,369,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9653978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9685896","Offset: 21,373,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9654123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9685397","Offset: 21,378,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9654285 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9686191","Offset: 21,382,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9654413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9686417","Offset: 21,386,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9654797 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9691934","Offset: 21,390,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9654981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9691370","Offset: 21,394,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9655160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9691963","Offset: 21,398,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9655361 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9692343","Offset: 21,402,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9655574 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9698329","Offset: 21,406,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9655804 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9697698","Offset: 21,410,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9655988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9698329","Offset: 21,414,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9656141 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9698705","Offset: 21,419,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9656274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9705002","Offset: 21,423,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9656410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9704461","Offset: 21,427,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9656568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9705130","Offset: 21,431,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9656696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9705399","Offset: 21,435,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9656820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9711867","Offset: 21,439,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9656948 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9711381","Offset: 21,443,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9657072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9712191","Offset: 21,447,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9657187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9711867","Offset: 21,451,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9657319 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9712311","Offset: 21,455,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9657447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9719223","Offset: 21,459,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9657592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9718686","Offset: 21,464,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9657720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9719368","Offset: 21,468,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9657869 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9719552","Offset: 21,472,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9657985 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9726327","Offset: 21,476,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9658130 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9725815","Offset: 21,480,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9658262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9726621","Offset: 21,484,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9658390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9726280","Offset: 21,488,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9658518 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9732834","Offset: 21,492,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9658629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9732100","Offset: 21,496,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9658761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9733171","Offset: 21,500,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9658889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9732855","Offset: 21,505,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9659030 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9733265","Offset: 21,509,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9659154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9741068","Offset: 21,513,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9659290 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9740574","Offset: 21,517,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9659405 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9741380","Offset: 21,521,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9659533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9741073","Offset: 21,525,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9659666 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9741486","Offset: 21,529,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9659794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9747558","Offset: 21,533,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9659917 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9748007","Offset: 21,537,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9660033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9748275","Offset: 21,541,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9660169 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9748467","Offset: 21,545,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9660319 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9754785","Offset: 21,550,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9660468 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9754274","Offset: 21,554,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9660600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9755072","Offset: 21,558,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9660758 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9754709","Offset: 21,562,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9660929 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9761629","Offset: 21,566,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9661142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9760849","Offset: 21,570,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9661360 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9761621","Offset: 21,574,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9661526 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9761792","Offset: 21,578,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9661671 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9767821","Offset: 21,582,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9661936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9767180","Offset: 21,586,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9662196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9768106","Offset: 21,591,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9662332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9767774","Offset: 21,595,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9662465 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9774015","Offset: 21,599,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9662601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9773504","Offset: 21,603,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9662742 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9774395","Offset: 21,607,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9662866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9774621","Offset: 21,611,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9662989 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9780988","Offset: 21,615,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9663126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9780471","Offset: 21,619,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9663263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9781098","Offset: 21,623,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9663391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9781380","Offset: 21,627,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9663523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9787498","Offset: 21,632,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9663659 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9786978","Offset: 21,636,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9663792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9787647","Offset: 21,640,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9663932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9787849","Offset: 21,644,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9664116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9788053","Offset: 21,648,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9664346 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9794850","Offset: 21,652,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9664564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9794282","Offset: 21,656,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9664781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9795017","Offset: 21,660,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9664995 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9794606","Offset: 21,664,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9665191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9801246","Offset: 21,668,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9665413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9800648","Offset: 21,672,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9665643 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9801208","Offset: 21,677,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9665861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9801327","Offset: 21,681,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9666083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9801864","Offset: 21,685,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9666356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9808439","Offset: 21,689,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9666573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9807842","Offset: 21,693,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9666812 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9808393","Offset: 21,697,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9667060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9808486","Offset: 21,701,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9667252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9808827","Offset: 21,705,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9667478 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9815940","Offset: 21,709,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9667717 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9815308","Offset: 21,713,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9667917 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9815911","Offset: 21,718,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9668122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9816034","Offset: 21,722,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9668340 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9816388","Offset: 21,726,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9668528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9823184","Offset: 21,730,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9668971 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9822362","Offset: 21,734,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9669415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9822720","Offset: 21,738,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9669803 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9822993","Offset: 21,742,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9670204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9823002","Offset: 21,746,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9670981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9829013","Offset: 21,750,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9671476 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9828164","Offset: 21,754,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9672095 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9828296","Offset: 21,758,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9672321 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9828659","Offset: 21,763,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9672564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9834692","Offset: 21,767,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9672786 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9834090","Offset: 21,771,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9672978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9834653","Offset: 21,775,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9673191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9835221","Offset: 21,779,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9673426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9841152","Offset: 21,783,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9673626 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9840555","Offset: 21,787,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9673827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9841177","Offset: 21,791,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9674066 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9841275","Offset: 21,795,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9674283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9847104","Offset: 21,799,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9674509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9846498","Offset: 21,804,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9674731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9847066","Offset: 21,808,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9674906 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9847228","Offset: 21,812,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9675081 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9847817","Offset: 21,816,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9675248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9855005","Offset: 21,820,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9675388 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9854468","Offset: 21,824,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9675576 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9855095","Offset: 21,828,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9675738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9855300","Offset: 21,832,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9675900 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9855659","Offset: 21,836,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9676058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9862511","Offset: 21,840,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9676225 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9861947","Offset: 21,844,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9676361 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9862605","Offset: 21,849,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9676493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9862810","Offset: 21,853,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9676621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9869270","Offset: 21,857,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9676749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9868792","Offset: 21,861,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9676877 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9869624","Offset: 21,865,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9676993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9869299","Offset: 21,869,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9677125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9875460","Offset: 21,873,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9677270 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9875746","Offset: 21,877,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9677453 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9876148","Offset: 21,881,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9677599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9875780","Offset: 21,885,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9677756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9876177","Offset: 21,890,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9677893 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9883119","Offset: 21,894,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9678021 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9882590","Offset: 21,898,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9678149 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9883272","Offset: 21,902,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9678264 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9883499","Offset: 21,906,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9678396 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9890185","Offset: 21,910,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9678541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9889698","Offset: 21,914,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9678669 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9890535","Offset: 21,918,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9678797 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9890176","Offset: 21,922,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9678930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9890611","Offset: 21,926,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9679045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9897570","Offset: 21,931,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9679173 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9897045","Offset: 21,935,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9679305 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9897732","Offset: 21,939,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9679433 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9897941","Offset: 21,943,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9679557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9898342","Offset: 21,947,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9679672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9905143","Offset: 21,951,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9679804 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9904632","Offset: 21,955,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9679932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9905293","Offset: 21,959,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9680060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9905502","Offset: 21,963,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9680188 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9912448","Offset: 21,967,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9680321 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9911965","Offset: 21,971,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9680440 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9912781","Offset: 21,976,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9680572 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9912461","Offset: 21,980,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9680700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9912888","Offset: 21,984,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9680833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9919872","Offset: 21,988,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9680961 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9919389","Offset: 21,992,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9681072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9920247","Offset: 21,996,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9681204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9919885","Offset: 22,000,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9681332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9920550","Offset: 22,004,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9681460 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9927693","Offset: 22,008,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9681584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9927185","Offset: 22,012,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9681716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9927855","Offset: 22,017,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9681835 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9928073","Offset: 22,021,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9681959 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9928563","Offset: 22,025,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9682104 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9948267","Offset: 22,029,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9682236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9948689","Offset: 22,033,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9682364 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9948907","Offset: 22,037,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9682518 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9949572","Offset: 22,041,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9682689 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9963212","Offset: 22,045,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9682817 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9962760","Offset: 22,049,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9682949 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9963324","Offset: 22,053,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9683073 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9963861","Offset: 22,057,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9683213 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9978112","Offset: 22,062,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9683324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9977515","Offset: 22,066,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9683448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9978628","Offset: 22,070,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9683580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9978262","Offset: 22,074,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9683725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9993135","Offset: 22,078,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9683849 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9992534","Offset: 22,082,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9683964 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9993566","Offset: 22,086,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9684097 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9993203","Offset: 22,090,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9684225 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9993723","Offset: 22,094,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9684353 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.9994197","Offset: 22,098,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9684481 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0016290","Offset: 22,103,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9684613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0017101","Offset: 22,107,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9684745 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0028702","Offset: 22,111,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9684877 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0030955","Offset: 22,115,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9685057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0045657","Offset: 22,119,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9685249 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0056584","Offset: 22,123,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9685424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0058833","Offset: 22,127,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9685620 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0068983","Offset: 22,131,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9685816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0078358","Offset: 22,135,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9685991 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0080687","Offset: 22,139,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9686170 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0090027","Offset: 22,144,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9686332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0099499","Offset: 22,148,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9686533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0108250","Offset: 22,152,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9686785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0018875","Offset: 22,156,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9686981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0027413","Offset: 22,160,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9687122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0044198","Offset: 22,164,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9687288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0047714","Offset: 22,168,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9687429 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0055386","Offset: 22,172,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9687565 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0066181","Offset: 22,176,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9687693 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0069475","Offset: 22,180,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9687826 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0078379","Offset: 22,184,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9687954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0087774","Offset: 22,189,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9688077 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0091623","Offset: 22,193,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9688214 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0099635","Offset: 22,197,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9688329 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0107597","Offset: 22,201,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9688457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0109649","Offset: 22,205,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9688598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0118934","Offset: 22,209,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9688709 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0119535","Offset: 22,213,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9688841 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0121976","Offset: 22,217,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9688973 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0130518","Offset: 22,221,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9689101 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0131457","Offset: 22,225,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9689229 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0135032","Offset: 22,230,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9689366 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0142707","Offset: 22,234,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9689477 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0143633","Offset: 22,238,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9689601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0147439","Offset: 22,242,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9689729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0162287","Offset: 22,246,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9689874 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0163093","Offset: 22,250,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9690002 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0166886","Offset: 22,254,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9690113 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0174515","Offset: 22,258,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9690249 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0176491","Offset: 22,262,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9690381 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0178539","Offset: 22,266,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9690505 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0185618","Offset: 22,270,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9690637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0187666","Offset: 22,275,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9690770 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0190212","Offset: 22,279,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9690889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0197641","Offset: 22,283,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9691017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0199770","Offset: 22,287,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9691154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0201967","Offset: 22,291,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9691282 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0210607","Offset: 22,295,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9691414 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0211414","Offset: 22,299,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9691529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0215599","Offset: 22,303,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9691661 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0222482","Offset: 22,307,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9691815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0223488","Offset: 22,311,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9692007 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0227328","Offset: 22,316,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9692237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0234258","Offset: 22,320,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9692464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0235063","Offset: 22,324,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9692617 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0238891","Offset: 22,328,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9692749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0245944","Offset: 22,332,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9692882 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0246776","Offset: 22,336,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9693065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0250919","Offset: 22,340,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9693189 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0258035","Offset: 22,344,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9693304 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0258855","Offset: 22,348,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9693436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0262640","Offset: 22,352,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9693564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0269697","Offset: 22,356,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9693692 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0270631","Offset: 22,361,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9693859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0274436","Offset: 22,365,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9694076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0281379","Offset: 22,369,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9694192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0282206","Offset: 22,373,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9694315 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0286341","Offset: 22,377,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9694443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0293155","Offset: 22,381,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9694571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0294192","Offset: 22,385,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9694712 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0298364","Offset: 22,389,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9694900 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0305622","Offset: 22,393,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9695032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0306471","Offset: 22,397,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9695190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0310311","Offset: 22,402,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9695403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0317091","Offset: 22,406,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9695587 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0317905","Offset: 22,410,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9695796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0322117","Offset: 22,414,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9696022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0328909","Offset: 22,418,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9696244 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0329425","Offset: 22,422,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9696508 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0331790","Offset: 22,426,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9696700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0339773","Offset: 22,430,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9696922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0340826","Offset: 22,434,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9697136 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0343083","Offset: 22,438,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9697362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0351667","Offset: 22,443,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9697579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0352504","Offset: 22,447,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9697823 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0356181","Offset: 22,451,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9698040 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0363994","Offset: 22,455,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9698262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0365300","Offset: 22,459,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9698463 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0374379","Offset: 22,463,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9698655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0375253","Offset: 22,467,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9698834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0378931","Offset: 22,471,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9699047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0386364","Offset: 22,475,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9699248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0387119","Offset: 22,479,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9699469 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0390811","Offset: 22,483,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9699696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0398652","Offset: 22,488,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9699922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0399958","Offset: 22,492,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9700148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0402091","Offset: 22,496,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9700344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0410416","Offset: 22,500,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9700566 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0411179","Offset: 22,504,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9700792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0415220","Offset: 22,508,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9700980 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0422528","Offset: 22,512,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9701202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0423275","Offset: 22,516,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9701436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0427005","Offset: 22,520,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9701654 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0434373","Offset: 22,524,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9702034 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0435264","Offset: 22,529,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9702332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0438277","Offset: 22,533,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9702533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0446746","Offset: 22,537,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9702798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0447433","Offset: 22,541,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9703024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0451209","Offset: 22,545,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9703224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0458556","Offset: 22,549,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9703386 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0459453","Offset: 22,553,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9703527 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0463267","Offset: 22,557,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9703689 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0470904","Offset: 22,561,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9703847 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0472065","Offset: 22,565,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9704005 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0474569","Offset: 22,569,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9704159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0483089","Offset: 22,574,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9704325 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0483900","Offset: 22,578,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9704470 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0487143","Offset: 22,582,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9704624 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0495458","Offset: 22,586,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9704782 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0496068","Offset: 22,590,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9704961 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0499857","Offset: 22,594,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9705119 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0507000","Offset: 22,598,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9705259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0508118","Offset: 22,602,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9705422 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0510669","Offset: 22,606,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9705579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0518973","Offset: 22,610,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9705742 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0519591","Offset: 22,615,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9705874 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0523418","Offset: 22,619,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9706006 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0530731","Offset: 22,623,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9706126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0531379","Offset: 22,627,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9706249 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0535195","Offset: 22,631,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9706377 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0543079","Offset: 22,635,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9706505 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0543672","Offset: 22,639,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9706629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0547256","Offset: 22,643,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9706744 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0554591","Offset: 22,647,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9706872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0555440","Offset: 22,651,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9707004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0559592","Offset: 22,656,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9707132 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0566853","Offset: 22,660,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9707260 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0567421","Offset: 22,664,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9707393 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0569588","Offset: 22,668,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9707512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0577870","Offset: 22,672,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9707653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0578714","Offset: 22,676,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9707802 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0582311","Offset: 22,680,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9707922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0589859","Offset: 22,684,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9708054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0590840","Offset: 22,688,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9708182 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0593720","Offset: 22,692,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9708323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0601801","Offset: 22,696,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9708455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0602390","Offset: 22,701,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9708592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0606499","Offset: 22,705,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9708711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0613428","Offset: 22,709,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9709023 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0614460","Offset: 22,713,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9709159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0618002","Offset: 22,717,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9709287 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0625102","Offset: 22,721,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9709411 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0625925","Offset: 22,725,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9709526 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0629740","Offset: 22,729,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9709684 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0637791","Offset: 22,733,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9709816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0638371","Offset: 22,737,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9709944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0641383","Offset: 22,742,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9710072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0649290","Offset: 22,746,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9710217 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0650126","Offset: 22,750,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9710345 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0654277","Offset: 22,754,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9710499 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0661223","Offset: 22,758,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9710661 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0662013","Offset: 22,762,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9710776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0665823","Offset: 22,766,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9710908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0672949","Offset: 22,770,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9711041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0673869","Offset: 22,774,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9711194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0677659","Offset: 22,778,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9711386 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0685236","Offset: 22,782,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9711583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0686674","Offset: 22,787,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9711740 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0689064","Offset: 22,791,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9711920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0697012","Offset: 22,795,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9712103 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0697994","Offset: 22,799,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9712329 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0701727","Offset: 22,803,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9712534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0708562","Offset: 22,807,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9712713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0709710","Offset: 22,811,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9712875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0712944","Offset: 22,815,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9713008 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0720278","Offset: 22,819,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9713136 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0721093","Offset: 22,823,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9713264 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0725193","Offset: 22,828,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9713447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0732511","Offset: 22,832,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9713567 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0733347","Offset: 22,836,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9713695 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0737114","Offset: 22,840,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9713818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0744377","Offset: 22,844,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9713946 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0745234","Offset: 22,848,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9714074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0749057","Offset: 22,852,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9714190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0756109","Offset: 22,856,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9714318 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0757257","Offset: 22,860,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9714450 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0761358","Offset: 22,864,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9714578 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0768159","Offset: 22,868,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9714706 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0768730","Offset: 22,873,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9714838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0772566","Offset: 22,877,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9714953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0780272","Offset: 22,881,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9715098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0781757","Offset: 22,885,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9715235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0783770","Offset: 22,889,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9715363 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0791937","Offset: 22,893,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9715491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0792986","Offset: 22,897,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9715606 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0795734","Offset: 22,901,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9715734 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0803470","Offset: 22,905,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9715862 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0804276","Offset: 22,909,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9715990 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0808112","Offset: 22,914,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9716118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0815050","Offset: 22,918,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9716250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0816142","Offset: 22,922,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9716370 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0819709","Offset: 22,926,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9716494 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0827448","Offset: 22,930,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9716626 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0828387","Offset: 22,934,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9716758 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0832219","Offset: 22,938,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9716886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0839557","Offset: 22,942,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9717001 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0840906","Offset: 22,946,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9717138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0844643","Offset: 22,950,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9717270 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0851568","Offset: 22,955,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9717398 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0852694","Offset: 22,959,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9717509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0855237","Offset: 22,963,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9717637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0863229","Offset: 22,967,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9717765 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0864180","Offset: 22,971,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9717893 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0868020","Offset: 22,975,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9718059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0875317","Offset: 22,979,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9718230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0876106","Offset: 22,983,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9718456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0879826","Offset: 22,987,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9718640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0886896","Offset: 22,991,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9718819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0888031","Offset: 22,995,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9718968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0890595","Offset: 23,000,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9719241 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0898527","Offset: 23,004,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9719374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0899542","Offset: 23,008,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9719506 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0903365","Offset: 23,012,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9719655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0910726","Offset: 23,016,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9719787 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0911566","Offset: 23,020,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9719911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0915171","Offset: 23,024,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9720026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0923044","Offset: 23,028,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9720163 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0923871","Offset: 23,032,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9720291 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0927510","Offset: 23,036,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9720419 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0935152","Offset: 23,041,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9720560 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0935894","Offset: 23,045,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9720679 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0938600","Offset: 23,049,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9720811 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0946655","Offset: 23,053,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9720961 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0947291","Offset: 23,057,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9721136 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0951032","Offset: 23,061,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9721340 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0958154","Offset: 23,065,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9721562 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0958960","Offset: 23,069,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9721767 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0962429","Offset: 23,073,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9721980 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0970374","Offset: 23,077,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9722207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0971081","Offset: 23,081,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9722424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0974773","Offset: 23,086,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9722625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0981898","Offset: 23,090,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9722825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0982483","Offset: 23,094,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9723030 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0986216","Offset: 23,098,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9723235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0993648","Offset: 23,102,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9723457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0994207","Offset: 23,106,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9723640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.0997715","Offset: 23,110,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9723854 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1005031","Offset: 23,114,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9724063 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1005868","Offset: 23,118,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9724289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1009648","Offset: 23,122,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9724523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1017576","Offset: 23,127,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9724750 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1018126","Offset: 23,131,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9724937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1021791","Offset: 23,135,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9725159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1028716","Offset: 23,139,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9725402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1029510","Offset: 23,143,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9725641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1033499","Offset: 23,147,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9725855 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1040466","Offset: 23,151,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9726081 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1040953","Offset: 23,155,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9726315 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1044704","Offset: 23,159,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9726542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1052195","Offset: 23,163,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9726785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1054171","Offset: 23,168,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9727015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1057597","Offset: 23,172,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9727241 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1058182","Offset: 23,176,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9727446 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1061962","Offset: 23,180,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9727659 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1067176","Offset: 23,184,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9727881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1067974","Offset: 23,188,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9728073 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1071690","Offset: 23,192,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9728308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1075338","Offset: 23,196,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9728521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1079238","Offset: 23,200,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9728739 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1080052","Offset: 23,204,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9728935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1081427","Offset: 23,208,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9729114 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1083530","Offset: 23,213,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9729268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1088300","Offset: 23,217,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9729503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1088837","Offset: 23,221,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9729720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1092460","Offset: 23,225,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9729916 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1096343","Offset: 23,229,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9730172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1096757","Offset: 23,233,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9730403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1098685","Offset: 23,237,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9730625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1100481","Offset: 23,241,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9730834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1102111","Offset: 23,245,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9731068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1103622","Offset: 23,249,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9731269 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1105162","Offset: 23,254,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9731487 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1106941","Offset: 23,258,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9731713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1107551","Offset: 23,262,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9731930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1109557","Offset: 23,266,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9732152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1112659","Offset: 23,270,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9732348 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1114387","Offset: 23,274,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9732570 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1115744","Offset: 23,278,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9732826 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1116972","Offset: 23,282,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9733082 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1118120","Offset: 23,286,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9733279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1119510","Offset: 23,290,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9733547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1119003","Offset: 23,294,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9733808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1119963","Offset: 23,299,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9734038 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1119472","Offset: 23,303,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9734256 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1119084","Offset: 23,307,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9734448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1120449","Offset: 23,311,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9734678 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1120040","Offset: 23,315,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9734849 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1119340","Offset: 23,319,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9734998 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1119541","Offset: 23,323,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9735160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1120663","Offset: 23,327,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9735318 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1121141","Offset: 23,331,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9735433 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1120087","Offset: 23,335,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9735561 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1120723","Offset: 23,340,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9735685 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1119643","Offset: 23,344,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9735813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1120275","Offset: 23,348,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9735937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1122429","Offset: 23,352,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9736052 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1122088","Offset: 23,356,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9736184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1121115","Offset: 23,360,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9736359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1121597","Offset: 23,364,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9736500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1120970","Offset: 23,368,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9736628 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1120449","Offset: 23,372,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9736760 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1120919","Offset: 23,376,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9736875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1123377","Offset: 23,380,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9736999 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1123095","Offset: 23,385,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9737174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1122754","Offset: 23,389,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9737323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1122438","Offset: 23,393,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9737468 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1122118","Offset: 23,397,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9737584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1121627","Offset: 23,401,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9737716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1121328","Offset: 23,405,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9737840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1121008","Offset: 23,409,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9737968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1122518","Offset: 23,413,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9738096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1123816","Offset: 23,417,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9738224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1123329","Offset: 23,421,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9738343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1124785","Offset: 23,426,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9738467 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1124490","Offset: 23,430,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9738599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1122779","Offset: 23,434,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9738727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1122476","Offset: 23,438,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9738872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1122139","Offset: 23,442,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9738987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1123714","Offset: 23,446,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9739124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1123406","Offset: 23,450,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9739252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1123108","Offset: 23,454,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9739380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1122775","Offset: 23,458,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9739504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1125740","Offset: 23,462,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9739636 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1125433","Offset: 23,467,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9739747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1124447","Offset: 23,471,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9739875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1123944","Offset: 23,475,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9740003 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1123628","Offset: 23,479,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9740118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1126099","Offset: 23,483,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9740255 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1125710","Offset: 23,487,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9740408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1125250","Offset: 23,491,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9740540 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1124921","Offset: 23,495,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9740686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1124174","Offset: 23,499,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9740822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1123871","Offset: 23,503,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9740942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1123585","Offset: 23,507,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9741082 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1123279","Offset: 23,512,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9741283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1126696","Offset: 23,516,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9741492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1126333","Offset: 23,520,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9741705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1125962","Offset: 23,524,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9741893 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1125612","Offset: 23,528,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9742047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1125292","Offset: 23,532,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9742179 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1124993","Offset: 23,536,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9742303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1124528","Offset: 23,540,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9742473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1126991","Offset: 23,544,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9742627 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1126683","Offset: 23,548,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9742742 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1126393","Offset: 23,553,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9742866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1125953","Offset: 23,557,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9743019 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1125642","Offset: 23,561,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9743135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1125360","Offset: 23,565,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9743344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1124959","Offset: 23,569,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9743463 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1123197","Offset: 23,573,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9743583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1127502","Offset: 23,577,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9743706 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1127144","Offset: 23,581,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9743817 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1126875","Offset: 23,585,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9743941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1126593","Offset: 23,589,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9744069 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1126308","Offset: 23,593,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9744184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1126018","Offset: 23,598,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9744316 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1125587","Offset: 23,602,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9744444 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1128390","Offset: 23,606,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9744572 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1128096","Offset: 23,610,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9744696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1127814","Offset: 23,614,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9744833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1127515","Offset: 23,618,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9744948 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1127233","Offset: 23,622,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9745076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1126935","Offset: 23,626,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9745204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1126487","Offset: 23,630,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9745336 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1126188","Offset: 23,634,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9745460 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1125860","Offset: 23,639,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9745575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1129435","Offset: 23,643,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9745724 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1129128","Offset: 23,647,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9745852 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1128838","Offset: 23,651,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9745985 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1128539","Offset: 23,655,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9746113 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1128189","Offset: 23,659,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9746249 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1127618","Offset: 23,663,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9746364 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1127349","Offset: 23,667,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9746492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1127063","Offset: 23,671,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9746620 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1126756","Offset: 23,675,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9746876 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1129901","Offset: 23,680,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9747128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1129491","Offset: 23,684,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9747286 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1129175","Offset: 23,688,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9747444 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1128855","Offset: 23,692,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9747580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1128548","Offset: 23,696,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9747708 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1128079","Offset: 23,700,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9747845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1127784","Offset: 23,704,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9747986 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1127464","Offset: 23,708,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9748101 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1127123","Offset: 23,712,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9748225 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1130736","Offset: 23,716,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9748361 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1130442","Offset: 23,720,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9748485 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1130165","Offset: 23,725,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9748613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1129870","Offset: 23,729,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9748724 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1129593","Offset: 23,733,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9748860 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1129145","Offset: 23,737,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9748993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1128850","Offset: 23,741,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9749125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1128556","Offset: 23,745,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9749240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1128279","Offset: 23,749,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9749364 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1127933","Offset: 23,753,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9749496 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1131283","Offset: 23,757,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9749633 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1130988","Offset: 23,761,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9749778 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1130689","Offset: 23,766,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9749893 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1130412","Offset: 23,770,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9750111 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1129849","Offset: 23,774,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9750247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1129550","Offset: 23,778,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9750396 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1129239","Offset: 23,782,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9750524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1128906","Offset: 23,786,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9750699 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1128488","Offset: 23,790,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9750887 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1133937","Offset: 23,794,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9751088 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1133561","Offset: 23,798,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9751275 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1133207","Offset: 23,802,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9751489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1132810","Offset: 23,806,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9751689 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1132413","Offset: 23,811,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9751881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1132064","Offset: 23,815,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9752090 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1131692","Offset: 23,819,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9752270 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1131355","Offset: 23,823,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9752449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1131018","Offset: 23,827,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9752590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1130638","Offset: 23,831,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9752752 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1130318","Offset: 23,835,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9752914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1129998","Offset: 23,839,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9753076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1129678","Offset: 23,843,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9753242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1129282","Offset: 23,847,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9753413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1128885","Offset: 23,852,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9753579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1128484","Offset: 23,856,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9753716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1128189","Offset: 23,860,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9753848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1127891","Offset: 23,864,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9753976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1127596","Offset: 23,868,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9754109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1127254","Offset: 23,872,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9754224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1130838","Offset: 23,876,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9754347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1134713","Offset: 23,880,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9754493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1134345","Offset: 23,884,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9754621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1134060","Offset: 23,888,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9754749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1133774","Offset: 23,892,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9754864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1133492","Offset: 23,897,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9754996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1133198","Offset: 23,901,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9755124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1132870","Offset: 23,905,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9755256 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1132571","Offset: 23,909,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9755380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1132285","Offset: 23,913,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9755517 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1131995","Offset: 23,917,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9755674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1131675","Offset: 23,921,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9755866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1131249","Offset: 23,925,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9756063 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1130890","Offset: 23,929,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9756242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1130553","Offset: 23,933,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9756421 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1130207","Offset: 23,938,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9756583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1129883","Offset: 23,942,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9756797 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1129494","Offset: 23,946,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9757014 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1128791","Offset: 23,950,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9757193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1128381","Offset: 23,954,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9757330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1133911","Offset: 23,958,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9757466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1133548","Offset: 23,962,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9757582 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1133219","Offset: 23,966,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9757748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1132823","Offset: 23,970,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9757872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1132541","Offset: 23,974,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9758004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1132247","Offset: 23,979,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9758128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1131624","Offset: 23,983,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9758243 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1131291","Offset: 23,987,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9758375 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1135165","Offset: 23,991,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9758499 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1134888","Offset: 23,995,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9758627 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1134598","Offset: 23,999,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9758751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1134307","Offset: 24,003,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9758874 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1133975","Offset: 24,007,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9759011 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1133676","Offset: 24,011,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9759143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1133386","Offset: 24,015,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9759271 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1133092","Offset: 24,019,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9759386 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1132806","Offset: 24,024,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9759519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1132336","Offset: 24,028,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9759681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1132003","Offset: 24,032,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9759839 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1131628","Offset: 24,036,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9759984 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1134678","Offset: 24,040,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9760129 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1134376","Offset: 24,044,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9760240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1134077","Offset: 24,048,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9760363 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1133715","Offset: 24,052,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9760496 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1137490","Offset: 24,056,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9760624 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1137132","Offset: 24,060,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9760935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1136667","Offset: 24,065,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9761050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1136394","Offset: 24,069,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9761183 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1136108","Offset: 24,073,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9761315 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1135809","Offset: 24,077,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9761443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1135442","Offset: 24,081,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9761567 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1135161","Offset: 24,085,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9761707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1134858","Offset: 24,089,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9761818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1134585","Offset: 24,093,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9761951 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1134290","Offset: 24,097,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9762079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1134000","Offset: 24,101,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9762194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1133684","Offset: 24,105,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9762330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1133386","Offset: 24,110,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9762531 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1133027","Offset: 24,114,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9762731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1132657","Offset: 24,118,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9762936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1132277","Offset: 24,122,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9763145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1131739","Offset: 24,126,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9763290 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1137064","Offset: 24,130,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9763414 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1136778","Offset: 24,134,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9763546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1136407","Offset: 24,138,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9763674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1136113","Offset: 24,142,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9763849 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1135771","Offset: 24,146,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9763969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1135489","Offset: 24,151,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9764097 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1135191","Offset: 24,155,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9764221 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1134823","Offset: 24,159,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9764353 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1134154","Offset: 24,163,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9764468 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1138630","Offset: 24,167,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9764592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1138327","Offset: 24,171,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9764720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1137977","Offset: 24,175,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9764848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1137691","Offset: 24,179,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9764976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1137401","Offset: 24,183,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9765087 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1137128","Offset: 24,187,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9765219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1136816","Offset: 24,192,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9765347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1136479","Offset: 24,196,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9765492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1136176","Offset: 24,200,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9765654 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1135852","Offset: 24,204,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9765795 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1135558","Offset: 24,208,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9765910 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1135276","Offset: 24,212,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9766038 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1134794","Offset: 24,216,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9766170 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1134427","Offset: 24,220,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9766298 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1138323","Offset: 24,224,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9766426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1138046","Offset: 24,228,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9766537 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1137777","Offset: 24,232,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9766674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1137482","Offset: 24,237,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9766802 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1137158","Offset: 24,241,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9766947 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1136552","Offset: 24,245,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9767079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1303144","Offset: 24,249,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9767211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1304301","Offset: 24,253,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9767335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1308123","Offset: 24,257,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9767467 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1318470","Offset: 24,261,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9767600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1319588","Offset: 24,265,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9767728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1322293","Offset: 24,269,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9767873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1333953","Offset: 24,273,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9768026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1335652","Offset: 24,278,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9768193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1337665","Offset: 24,282,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9768325 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1349621","Offset: 24,286,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9768449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1545760","Offset: 24,290,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9768602 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1547207","Offset: 24,294,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9768735 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1548934","Offset: 24,298,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9768867 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1551870","Offset: 24,302,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9769110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1561935","Offset: 24,306,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9769332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1562993","Offset: 24,310,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9769537 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1565412","Offset: 24,314,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9769746 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1574530","Offset: 24,318,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9769887 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1584889","Offset: 24,323,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9770019 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1586050","Offset: 24,327,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9770147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1588580","Offset: 24,331,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9770288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1597578","Offset: 24,335,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9770407 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1599170","Offset: 24,339,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9770552 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1600327","Offset: 24,343,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9770685 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1602762","Offset: 24,347,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9770817 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1613182","Offset: 24,351,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9770941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1614355","Offset: 24,355,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9771064 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1615610","Offset: 24,359,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9771201 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1618536","Offset: 24,364,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9771329 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1628870","Offset: 24,368,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9771478 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1629967","Offset: 24,372,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9771615 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1631699","Offset: 24,376,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9771734 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1633167","Offset: 24,380,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9771862 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1643910","Offset: 24,384,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9771994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1645012","Offset: 24,388,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9772118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1646163","Offset: 24,392,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9772259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1649133","Offset: 24,396,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9772498 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1658677","Offset: 24,400,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9772707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1660034","Offset: 24,404,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9772912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1661365","Offset: 24,409,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9773138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1664476","Offset: 24,413,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9773351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1673060","Offset: 24,417,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9773547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1674784","Offset: 24,421,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9773739 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1676726","Offset: 24,425,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9773936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1691338","Offset: 24,429,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9774136 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1694321","Offset: 24,433,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9774333 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1700448","Offset: 24,437,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9774525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1702781","Offset: 24,441,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9774725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1708888","Offset: 24,445,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9774930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1711157","Offset: 24,450,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9775135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1717425","Offset: 24,454,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9775322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1719636","Offset: 24,458,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9775553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1726172","Offset: 24,462,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9775766 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1728446","Offset: 24,466,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9775975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1734757","Offset: 24,470,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9776223 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1736859","Offset: 24,474,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9776402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1738959","Offset: 24,478,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9776598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1746166","Offset: 24,482,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9776760 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1748500","Offset: 24,486,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9776922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1754682","Offset: 24,491,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9777080 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1757088","Offset: 24,495,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9777238 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1763266","Offset: 24,499,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9777379 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1765562","Offset: 24,503,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9777541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1772529","Offset: 24,507,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9777695 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1774615","Offset: 24,511,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9777827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1776646","Offset: 24,515,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9777951 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1783951","Offset: 24,519,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9778066 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1786319","Offset: 24,523,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9778198 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1792527","Offset: 24,527,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9778326 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1794789","Offset: 24,531,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9778471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1800860","Offset: 24,536,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9778599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1803245","Offset: 24,540,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9778757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1809756","Offset: 24,544,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9778877 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1812102","Offset: 24,548,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9779005 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1814163","Offset: 24,552,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9779133 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1822568","Offset: 24,556,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9779261 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1825047","Offset: 24,560,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9779384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1831252","Offset: 24,564,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9779504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1833581","Offset: 24,568,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9779636 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1839977","Offset: 24,572,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9779764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1842358","Offset: 24,577,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9779888 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1848535","Offset: 24,581,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9780054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1850925","Offset: 24,585,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9780280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1856890","Offset: 24,589,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9780447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1859262","Offset: 24,593,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9780626 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1865137","Offset: 24,597,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9780805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1867638","Offset: 24,601,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9780997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1873991","Offset: 24,605,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9781202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1876226","Offset: 24,609,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9781351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1882366","Offset: 24,613,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9781496 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1884675","Offset: 24,617,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9781624 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1890810","Offset: 24,622,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9781757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1893293","Offset: 24,626,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9781867 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1899361","Offset: 24,630,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9782000 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1901852","Offset: 24,634,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9782196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1908022","Offset: 24,638,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9782324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1910193","Offset: 24,642,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9782448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1916286","Offset: 24,646,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9782563 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1918684","Offset: 24,650,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9782695 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1925652","Offset: 24,654,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9782827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1927990","Offset: 24,658,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9782955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1934198","Offset: 24,663,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9783083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1936421","Offset: 24,667,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9783216 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1942475","Offset: 24,671,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9783331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1945001","Offset: 24,675,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9783455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1950803","Offset: 24,679,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9783583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1953158","Offset: 24,683,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9783728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1959200","Offset: 24,687,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9783856 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1961564","Offset: 24,691,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9783975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1967990","Offset: 24,695,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9784099 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1970221","Offset: 24,699,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9784231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1972295","Offset: 24,704,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9784359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1980141","Offset: 24,708,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9784496 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1983217","Offset: 24,712,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9784654 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1989455","Offset: 24,716,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9784807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1991149","Offset: 24,720,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9784935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.1993761","Offset: 24,724,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9785063 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2001249","Offset: 24,728,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9785174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2003907","Offset: 24,732,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9785319 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2005682","Offset: 24,736,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9785464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2012867","Offset: 24,740,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9785592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2015209","Offset: 24,744,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9785716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2017184","Offset: 24,749,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9785853 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2025026","Offset: 24,753,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9785972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2027514","Offset: 24,757,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9786100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2029562","Offset: 24,761,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9786228 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2036854","Offset: 24,765,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9786373 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2039934","Offset: 24,769,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9786557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2041005","Offset: 24,773,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9786736 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2048826","Offset: 24,777,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9786987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2050759","Offset: 24,781,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9787175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2052683","Offset: 24,785,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9787312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2060768","Offset: 24,790,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9787440 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2063004","Offset: 24,794,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9787606 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2064967","Offset: 24,798,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9787721 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2072626","Offset: 24,802,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9787849 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2075399","Offset: 24,806,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9787977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2076470","Offset: 24,810,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9788105 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2084317","Offset: 24,814,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9788233 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2086919","Offset: 24,818,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9788349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2088472","Offset: 24,822,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9788498 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2096728","Offset: 24,826,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9788626 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2098784","Offset: 24,830,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9788754 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2100807","Offset: 24,835,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9788878 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2107949","Offset: 24,839,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9789014 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2110322","Offset: 24,843,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9789129 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2112315","Offset: 24,847,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9789253 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2119986","Offset: 24,851,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9789385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2122427","Offset: 24,855,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9789513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2124368","Offset: 24,859,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9789641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2131515","Offset: 24,863,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9789752 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2133882","Offset: 24,867,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9789889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2139830","Offset: 24,871,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9790021 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2142215","Offset: 24,876,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9790149 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2148747","Offset: 24,880,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9790264 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2150975","Offset: 24,884,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9790388 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2153436","Offset: 24,888,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9790520 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2160639","Offset: 24,892,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9790670 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2163006","Offset: 24,896,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9790798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2165203","Offset: 24,900,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9790913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2172530","Offset: 24,904,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9791062 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2175069","Offset: 24,908,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9791216 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2181212","Offset: 24,912,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9791344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2183409","Offset: 24,916,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9791485 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2185914","Offset: 24,921,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9791634 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2192660","Offset: 24,925,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9791758 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2194989","Offset: 24,929,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9791971 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2200877","Offset: 24,933,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9792223 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2203561","Offset: 24,937,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9792410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2210444","Offset: 24,941,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9792543 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2211655","Offset: 24,945,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9792709 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2214130","Offset: 24,949,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9792999 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2221729","Offset: 24,953,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9793119 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2224433","Offset: 24,957,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9793230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2226247","Offset: 24,962,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9793358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2233556","Offset: 24,966,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9793473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2235493","Offset: 24,970,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9793584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2237524","Offset: 24,974,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9793712 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2245084","Offset: 24,978,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9793827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2247265","Offset: 24,982,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9793951 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2249248","Offset: 24,986,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9794091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2256276","Offset: 24,990,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9794207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2259578","Offset: 24,994,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9794339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2265654","Offset: 24,998,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9794467 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2268095","Offset: 25,003,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9794595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2274443","Offset: 25,007,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9794727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2276782","Offset: 25,011,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9794859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2282585","Offset: 25,015,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9794975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2285630","Offset: 25,019,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9795124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2291361","Offset: 25,023,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9795359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2293972","Offset: 25,027,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9795559 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2299544","Offset: 25,031,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9795734 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2301844","Offset: 25,035,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9795879 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2307963","Offset: 25,039,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9796046 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2310130","Offset: 25,043,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9796203 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2316970","Offset: 25,048,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9796361 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2319410","Offset: 25,052,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9796515 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2325853","Offset: 25,056,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9796694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2328093","Offset: 25,060,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9796839 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2334190","Offset: 25,064,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9797001 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2336434","Offset: 25,068,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9797138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2338337","Offset: 25,072,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9797266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2345266","Offset: 25,076,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9797390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2348103","Offset: 25,080,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9797509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2354115","Offset: 25,084,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9797637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2356436","Offset: 25,089,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9797769 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2362260","Offset: 25,093,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9797906 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2364709","Offset: 25,097,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9798034 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2372261","Offset: 25,101,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9798170 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2373567","Offset: 25,105,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9798303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2375550","Offset: 25,109,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9798426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2382864","Offset: 25,113,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9798559 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2385172","Offset: 25,117,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9798691 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2391337","Offset: 25,121,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9798815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2394051","Offset: 25,125,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9798930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2400182","Offset: 25,129,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9799062 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2402491","Offset: 25,134,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9799194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2404313","Offset: 25,138,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9799344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2411523","Offset: 25,142,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9799514 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2413845","Offset: 25,146,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9799702 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2415926","Offset: 25,150,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9799886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2423785","Offset: 25,154,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9800065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2425786","Offset: 25,158,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9800389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2427643","Offset: 25,162,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9800590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2435198","Offset: 25,166,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9800786 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2437498","Offset: 25,170,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9800935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2443724","Offset: 25,175,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9801076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2445964","Offset: 25,179,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9801225 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2452304","Offset: 25,183,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9801405 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2454629","Offset: 25,187,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9801515 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2460565","Offset: 25,191,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9801643 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2462984","Offset: 25,195,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9801771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2469623","Offset: 25,199,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9801899 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2472042","Offset: 25,203,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9802027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2478284","Offset: 25,207,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9802138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2480315","Offset: 25,211,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9802271 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2486680","Offset: 25,216,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9802399 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2489219","Offset: 25,220,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9802574 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2495158","Offset: 25,224,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9802736 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2497535","Offset: 25,228,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9802868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2503739","Offset: 25,232,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9802996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2505774","Offset: 25,236,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9803124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2512289","Offset: 25,240,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9803252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2514559","Offset: 25,244,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9803384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2521134","Offset: 25,248,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9803517 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2523335","Offset: 25,252,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9803649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2530081","Offset: 25,256,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9803785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2531895","Offset: 25,261,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9803913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2534519","Offset: 25,265,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9804050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2541324","Offset: 25,269,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9804161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2543653","Offset: 25,273,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9804289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2549584","Offset: 25,277,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9804421 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2551939","Offset: 25,281,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9804549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2558126","Offset: 25,285,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9804677 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2560396","Offset: 25,289,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9804788 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2567346","Offset: 25,293,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9804920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2569395","Offset: 25,297,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9805048 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2571656","Offset: 25,302,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9805181 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2578870","Offset: 25,306,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9805309 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2581289","Offset: 25,310,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9805449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2587579","Offset: 25,314,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9805616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2589895","Offset: 25,318,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9805821 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2595860","Offset: 25,322,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9806038 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2598113","Offset: 25,326,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9806230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2604283","Offset: 25,330,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9806362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2606617","Offset: 25,334,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9806478 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2612880","Offset: 25,338,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9806653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2614911","Offset: 25,342,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9806802 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2621861","Offset: 25,347,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9806930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2624302","Offset: 25,351,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9807058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2630147","Offset: 25,355,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9807190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2632639","Offset: 25,359,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9807310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2638877","Offset: 25,363,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9807455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2641403","Offset: 25,367,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9807587 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2647244","Offset: 25,371,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9807711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2649868","Offset: 25,375,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9807856 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2655901","Offset: 25,379,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9807967 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2658341","Offset: 25,383,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9808125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2664980","Offset: 25,388,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9808257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2666969","Offset: 25,392,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9808389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2669051","Offset: 25,396,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9808517 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2676676","Offset: 25,400,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9808654 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2679073","Offset: 25,404,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9808773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2685021","Offset: 25,408,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9808901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2687504","Offset: 25,412,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9809038 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2693699","Offset: 25,416,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9809153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2696724","Offset: 25,420,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9809349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2702122","Offset: 25,424,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9809720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2704046","Offset: 25,428,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9809857 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2710280","Offset: 25,433,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9809985 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2712605","Offset: 25,437,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9810121 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2719180","Offset: 25,441,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9810258 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2721642","Offset: 25,445,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9810390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2728025","Offset: 25,449,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9810522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2730214","Offset: 25,453,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9810796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2736255","Offset: 25,457,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9810945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2738683","Offset: 25,461,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9811064 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2744657","Offset: 25,465,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9811197 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2746832","Offset: 25,469,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9811325 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2752865","Offset: 25,474,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9811453 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2755267","Offset: 25,478,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9811568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2761727","Offset: 25,482,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9811700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2763942","Offset: 25,486,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9811824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2770597","Offset: 25,490,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9811952 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2773311","Offset: 25,494,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9812076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2779139","Offset: 25,498,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9812208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2781524","Offset: 25,502,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9812340 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2787673","Offset: 25,506,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9812472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2790105","Offset: 25,510,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9812630 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2796343","Offset: 25,515,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9812818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2798753","Offset: 25,519,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9812954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2800725","Offset: 25,523,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9813091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2807863","Offset: 25,527,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9813219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2810239","Offset: 25,531,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9813343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2816349","Offset: 25,535,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9813471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2818683","Offset: 25,539,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9813590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2825262","Offset: 25,543,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9813727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2828168","Offset: 25,547,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9813855 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2834414","Offset: 25,551,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9813983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2836940","Offset: 25,555,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9814209 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2842666","Offset: 25,560,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9814409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2844996","Offset: 25,564,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9814661 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2851199","Offset: 25,568,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9814857 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2853751","Offset: 25,572,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9815015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2855206","Offset: 25,576,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9815143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2862297","Offset: 25,580,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9815258 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2864640","Offset: 25,584,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9815408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2871619","Offset: 25,588,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9815570 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2874128","Offset: 25,592,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9815715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2876027","Offset: 25,596,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9815907 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2883195","Offset: 25,601,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9816116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2885452","Offset: 25,605,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9816278 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2887509","Offset: 25,609,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9816479 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2894642","Offset: 25,613,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9816662 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2896934","Offset: 25,617,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9816824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2898922","Offset: 25,621,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9816978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2906094","Offset: 25,625,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9817114 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2908544","Offset: 25,629,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9817281 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2914747","Offset: 25,633,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9817456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2916944","Offset: 25,637,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9817644 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2923600","Offset: 25,641,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9817810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2925956","Offset: 25,646,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9817972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2932181","Offset: 25,650,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9818092 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2934403","Offset: 25,654,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9818220 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2940483","Offset: 25,658,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9818369 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2942920","Offset: 25,662,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9818514 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2949038","Offset: 25,666,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9818642 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2951517","Offset: 25,670,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9818757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2957683","Offset: 25,674,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9818902 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2959701","Offset: 25,678,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9819030 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2966084","Offset: 25,682,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9819158 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2968209","Offset: 25,687,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9819303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2975091","Offset: 25,691,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9819431 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2977250","Offset: 25,695,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9819546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2983710","Offset: 25,699,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9819674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2985771","Offset: 25,703,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9819802 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2992154","Offset: 25,707,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9819926 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.2994150","Offset: 25,711,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9820093 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3000550","Offset: 25,715,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9820259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3002521","Offset: 25,719,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9820451 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3008768","Offset: 25,723,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9820630 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3010863","Offset: 25,728,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9820805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3016815","Offset: 25,732,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9821018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3018978","Offset: 25,736,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9821232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3025885","Offset: 25,740,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9821411 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3028066","Offset: 25,744,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9821582 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3034239","Offset: 25,748,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9821718 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3036258","Offset: 25,752,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9821846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3042615","Offset: 25,756,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9821970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3044915","Offset: 25,760,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9822089 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3051648","Offset: 25,764,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9822226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3053777","Offset: 25,768,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9822354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3060556","Offset: 25,773,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9822508 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3062523","Offset: 25,777,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9822623 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3069136","Offset: 25,781,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9822751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3071082","Offset: 25,785,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9822900 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3077960","Offset: 25,789,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9823032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3080026","Offset: 25,793,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9823160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3086605","Offset: 25,797,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9823271 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3088636","Offset: 25,801,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9823404 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3090747","Offset: 25,805,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9823536 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3098329","Offset: 25,809,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9823668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3100390","Offset: 25,814,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9823796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3106974","Offset: 25,818,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9823928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3108856","Offset: 25,822,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9824044 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3115336","Offset: 25,826,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9824189 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3117388","Offset: 25,830,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9824321 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3124322","Offset: 25,834,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9824449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3126370","Offset: 25,838,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9824577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3133039","Offset: 25,842,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9824692 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3135155","Offset: 25,846,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9824824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3141577","Offset: 25,850,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9824952 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3143774","Offset: 25,854,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9825080 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3150084","Offset: 25,859,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9825230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3152051","Offset: 25,863,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9825362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3158357","Offset: 25,867,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9825481 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3160401","Offset: 25,871,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9825656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3166814","Offset: 25,875,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9825784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3169084","Offset: 25,879,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9825904 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3176008","Offset: 25,883,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9826032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3178244","Offset: 25,887,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9826160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3184507","Offset: 25,891,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9826305 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3186483","Offset: 25,895,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9826493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3192806","Offset: 25,900,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9826710 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3194743","Offset: 25,904,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9826902 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3201071","Offset: 25,908,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9827086 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3203089","Offset: 25,912,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9827222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3209502","Offset: 25,916,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9827350 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3211563","Offset: 25,920,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9827474 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3218099","Offset: 25,924,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9827589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3220083","Offset: 25,928,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9827721 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3227077","Offset: 25,932,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9827849 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3229210","Offset: 25,936,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9827973 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3235622","Offset: 25,940,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9828118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3237606","Offset: 25,945,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9828302 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3243989","Offset: 25,949,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9828506 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3245846","Offset: 25,953,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9828652 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3252168","Offset: 25,957,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9828788 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3254127","Offset: 25,961,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9828920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3260536","Offset: 25,965,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9829274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3262315","Offset: 25,969,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9829791 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3268458","Offset: 25,973,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9830047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3270293","Offset: 25,977,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9830247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3277124","Offset: 25,981,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9830418 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3279240","Offset: 25,986,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9830636 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3292949","Offset: 25,990,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9830810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3295271","Offset: 25,994,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9831002 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3301974","Offset: 25,998,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9831822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3303411","Offset: 26,002,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9832031 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3309819","Offset: 26,006,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9832206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3311795","Offset: 26,010,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9832406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3318259","Offset: 26,014,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9832581 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3320346","Offset: 26,018,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9832824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3326315","Offset: 26,022,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9833016 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3328730","Offset: 26,027,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9833230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3335462","Offset: 26,031,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9833434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3337626","Offset: 26,035,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9833631 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3343914","Offset: 26,039,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9834348 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3345365","Offset: 26,043,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9834604 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3351756","Offset: 26,047,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9834825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3353745","Offset: 26,051,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9835000 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3360406","Offset: 26,055,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9835205 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3362492","Offset: 26,059,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9835397 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3369041","Offset: 26,063,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9835534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3371136","Offset: 26,067,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9835709 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3377561","Offset: 26,072,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9835892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3379601","Offset: 26,076,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9836135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3386338","Offset: 26,080,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9836370 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3388275","Offset: 26,084,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9836579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3394650","Offset: 26,088,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9836780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3396672","Offset: 26,092,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9836976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3403285","Offset: 26,096,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9837159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3405236","Offset: 26,100,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9837364 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3411665","Offset: 26,104,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9837718 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3413449","Offset: 26,108,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9838149 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3419443","Offset: 26,113,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9838439 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3421415","Offset: 26,117,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9838755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3427495","Offset: 26,121,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9839148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3429278","Offset: 26,125,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9839395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3436152","Offset: 26,129,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9840986 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3436779","Offset: 26,133,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9841140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3443162","Offset: 26,137,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9841277 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3445218","Offset: 26,141,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9841417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3451687","Offset: 26,145,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9841533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3453743","Offset: 26,149,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9841665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3460318","Offset: 26,153,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9841823 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3462123","Offset: 26,158,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9841972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3464205","Offset: 26,162,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9842130 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3471693","Offset: 26,166,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9842266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3473878","Offset: 26,170,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9842382 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3480153","Offset: 26,174,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9842527 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3482308","Offset: 26,178,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9842659 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3484348","Offset: 26,182,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9842804 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3492233","Offset: 26,186,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9842941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3494660","Offset: 26,190,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9843615 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3500211","Offset: 26,194,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9843977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3502072","Offset: 26,199,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9844221 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3503991","Offset: 26,203,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9844366 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3511765","Offset: 26,207,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9844502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3514309","Offset: 26,211,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9844617 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3520449","Offset: 26,215,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9844754 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3522838","Offset: 26,219,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9844912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3524838","Offset: 26,223,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9845044 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3537046","Offset: 26,227,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9845176 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3539337","Offset: 26,231,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9845313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3541423","Offset: 26,235,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9845432 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3552607","Offset: 26,240,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9845560 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3554859","Offset: 26,244,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9845688 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3564135","Offset: 26,248,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9845816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3566102","Offset: 26,252,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9845944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3568146","Offset: 26,256,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9846060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3579038","Offset: 26,260,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9846192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3581227","Offset: 26,264,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9846324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3590004","Offset: 26,268,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9846456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3592312","Offset: 26,272,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9846584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3601754","Offset: 26,276,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9846721 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3603990","Offset: 26,280,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9846840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3613014","Offset: 26,285,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9846968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3615032","Offset: 26,289,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9847109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3617089","Offset: 26,293,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9847237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3628084","Offset: 26,297,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9847365 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3630285","Offset: 26,301,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9847480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3632368","Offset: 26,305,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9847613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3643268","Offset: 26,309,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9847766 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3645534","Offset: 26,313,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9847962 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3654162","Offset: 26,317,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9848176 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3656977","Offset: 26,321,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9848410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3665430","Offset: 26,326,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9848577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3667764","Offset: 26,330,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9848709 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3676600","Offset: 26,334,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9848837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3678861","Offset: 26,338,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9848961 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3793362","Offset: 26,342,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9849114 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3797130","Offset: 26,346,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9849242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3802062","Offset: 26,350,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9849375 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3810475","Offset: 26,354,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9849498 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3816052","Offset: 26,358,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9849635 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3818100","Offset: 26,362,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9849754 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3820972","Offset: 26,366,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9849878 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3822840","Offset: 26,371,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9850015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3825720","Offset: 26,375,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9850143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3827994","Offset: 26,379,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9850271 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3829871","Offset: 26,383,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9850407 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3831945","Offset: 26,387,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9850612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3833878","Offset: 26,391,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9850817 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3836165","Offset: 26,395,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9851026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3837961","Offset: 26,399,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9851239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3839775","Offset: 26,403,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9851427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3841605","Offset: 26,407,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9851670 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3843380","Offset: 26,412,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9851892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3844805","Offset: 26,416,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9852097 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3846580","Offset: 26,420,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9852306 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3848299","Offset: 26,424,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9852524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3849929","Offset: 26,428,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9852707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3851670","Offset: 26,432,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9852967 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3852844","Offset: 26,436,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9853185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3854405","Offset: 26,440,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9853398 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3858139","Offset: 26,444,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9853633 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3859632","Offset: 26,448,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9853821 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3861504","Offset: 26,452,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9854034 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3865259","Offset: 26,457,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9854247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3866595","Offset: 26,461,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9854465 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3868109","Offset: 26,465,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9854695 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3871109","Offset: 26,469,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9854892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3873809","Offset: 26,473,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9855139 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3873170","Offset: 26,477,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9855348 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3872718","Offset: 26,481,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9855557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3872189","Offset: 26,485,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9855770 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3871737","Offset: 26,489,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9855984 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3871241","Offset: 26,493,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9856227 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3874040","Offset: 26,498,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9856449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3873323","Offset: 26,502,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9856696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3872837","Offset: 26,506,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9856905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3872368","Offset: 26,510,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9857157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3874979","Offset: 26,514,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9857366 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3874535","Offset: 26,518,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9857601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3873797","Offset: 26,522,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9857814 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3873332","Offset: 26,526,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9858045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3872862","Offset: 26,530,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9858267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3872354","Offset: 26,534,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9858488 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3878316","Offset: 26,539,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9858680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3877885","Offset: 26,543,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9858881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3877441","Offset: 26,547,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9859047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3876959","Offset: 26,551,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9859175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3876588","Offset: 26,555,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9859308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3876216","Offset: 26,559,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9859419 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3875862","Offset: 26,563,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9859551 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3875486","Offset: 26,567,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9859679 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3873814","Offset: 26,571,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9859828 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3873204","Offset: 26,575,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9859956 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3874834","Offset: 26,579,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9860093 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3874351","Offset: 26,584,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9860208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3873997","Offset: 26,588,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9860344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3873627","Offset: 26,592,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9860502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3873230","Offset: 26,596,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9860647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3872116","Offset: 26,600,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9860792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3879749","Offset: 26,604,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9860912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3879373","Offset: 26,608,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9861232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3878772","Offset: 26,612,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9861360 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3878354","Offset: 26,616,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9861488 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3877965","Offset: 26,620,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9861620 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3877454","Offset: 26,625,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9861752 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3877074","Offset: 26,629,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9861868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3876719","Offset: 26,633,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9861996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3876348","Offset: 26,637,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9862124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3875938","Offset: 26,641,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9862269 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3882629","Offset: 26,645,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9862401 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3882241","Offset: 26,649,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9862516 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3881887","Offset: 26,653,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9862648 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3881422","Offset: 26,657,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9862776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3881046","Offset: 26,661,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9862909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3880666","Offset: 26,665,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9863041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3880299","Offset: 26,670,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9863156 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3879881","Offset: 26,674,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9863288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3878789","Offset: 26,678,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9863416 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3878414","Offset: 26,682,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9863544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3878026","Offset: 26,686,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9863672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3877565","Offset: 26,690,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9863809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3877074","Offset: 26,694,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9863928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3887007","Offset: 26,698,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9864056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3886644","Offset: 26,702,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9864184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3886265","Offset: 26,706,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9864312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3885782","Offset: 26,711,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9864457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3885377","Offset: 26,715,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9864568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3885019","Offset: 26,719,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9864701 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3884651","Offset: 26,723,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9864829 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3884276","Offset: 26,727,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9864961 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3883819","Offset: 26,731,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9865110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3883427","Offset: 26,735,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9865243 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3883034","Offset: 26,739,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9865353 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3882617","Offset: 26,743,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9865481 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3882250","Offset: 26,747,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9865618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3881788","Offset: 26,752,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9865746 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3881409","Offset: 26,756,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9865878 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3881016","Offset: 26,760,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9865998 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3880657","Offset: 26,764,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9866126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3880282","Offset: 26,768,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9866254 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3879860","Offset: 26,772,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9866382 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3888320","Offset: 26,776,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9866527 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3887945","Offset: 26,780,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9866646 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3887591","Offset: 26,784,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9866779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3887219","Offset: 26,788,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9866907 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3886840","Offset: 26,792,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9867035 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3886332","Offset: 26,797,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9867167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3885961","Offset: 26,801,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9867299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3885590","Offset: 26,805,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9867414 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3885223","Offset: 26,809,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9867632 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3884711","Offset: 26,813,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9867871 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3883392","Offset: 26,817,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9868084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3893031","Offset: 26,821,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9868285 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3892502","Offset: 26,825,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9868425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3892106","Offset: 26,829,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9868579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3891713","Offset: 26,833,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9868741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3891312","Offset: 26,838,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9868891 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3890923","Offset: 26,842,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9869031 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3890416","Offset: 26,846,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9869164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3890018","Offset: 26,850,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9869283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3889665","Offset: 26,854,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9869407 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3889306","Offset: 26,858,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9869535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3888939","Offset: 26,862,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9869663 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3888568","Offset: 26,866,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9869787 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3888124","Offset: 26,870,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9869927 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3887728","Offset: 26,874,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9870064 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3887356","Offset: 26,878,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9870196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3886985","Offset: 26,883,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9870324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3886589","Offset: 26,887,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9870452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3885927","Offset: 26,891,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9870584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3885505","Offset: 26,895,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9870695 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3885142","Offset: 26,899,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9870819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3884668","Offset: 26,903,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9870947 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3893505","Offset: 26,907,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9871075 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3893134","Offset: 26,911,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9871199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3892694","Offset: 26,915,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9871331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3892297","Offset: 26,919,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9871468 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3891930","Offset: 26,924,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9871600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3891550","Offset: 26,928,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9871728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3891175","Offset: 26,932,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9871860 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3889938","Offset: 26,936,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9871980 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3889468","Offset: 26,940,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9872116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3899222","Offset: 26,944,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9872244 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3898842","Offset: 26,948,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9872376 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3898454","Offset: 26,952,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9872500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3898070","Offset: 26,956,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9872632 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3897682","Offset: 26,960,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9872748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3897212","Offset: 26,964,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9872876 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3896849","Offset: 26,969,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9873004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3896487","Offset: 26,973,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9873132 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3896111","Offset: 26,977,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9873260 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3895727","Offset: 26,981,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9873388 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3895356","Offset: 26,985,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9873520 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3894913","Offset: 26,989,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9873652 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3894546","Offset: 26,993,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9873784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3894179","Offset: 26,997,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9873908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3893821","Offset: 27,001,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9874057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3893428","Offset: 27,005,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9874173 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3893005","Offset: 27,010,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9874305 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3892613","Offset: 27,014,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9874433 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3892229","Offset: 27,018,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9874561 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3891845","Offset: 27,022,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9874715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3891456","Offset: 27,026,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9874834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3890719","Offset: 27,030,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9874971 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3890304","Offset: 27,034,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9875103 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3899111","Offset: 27,038,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9875256 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3898702","Offset: 27,042,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9875393 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3898309","Offset: 27,046,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9875525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3897917","Offset: 27,051,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9875636 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3896790","Offset: 27,055,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9875764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3896308","Offset: 27,059,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9875896 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3895788","Offset: 27,063,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9876024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3903963","Offset: 27,067,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9876152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3903600","Offset: 27,071,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9876263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3903254","Offset: 27,075,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9876391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3902823","Offset: 27,079,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9876519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3902457","Offset: 27,083,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9876647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3902085","Offset: 27,087,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9876775 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3901723","Offset: 27,091,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9876937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3901305","Offset: 27,096,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9877070 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3900728","Offset: 27,100,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9877219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3900344","Offset: 27,104,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9877347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3899977","Offset: 27,108,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9877479 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3899585","Offset: 27,112,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9877603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3899205","Offset: 27,116,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9877718 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3898791","Offset: 27,120,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9877846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3898339","Offset: 27,124,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9877974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3897959","Offset: 27,128,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9878102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3897580","Offset: 27,132,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9878230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3897200","Offset: 27,137,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9878358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3896778","Offset: 27,141,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9878473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3904197","Offset: 27,145,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9878597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3903839","Offset: 27,149,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9878725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3903463","Offset: 27,153,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9878857 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3903097","Offset: 27,157,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9878981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3902734","Offset: 27,161,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9879101 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3902328","Offset: 27,165,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9879229 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3906304","Offset: 27,169,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9879361 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3905878","Offset: 27,173,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9879493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3905507","Offset: 27,177,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9880052 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3904709","Offset: 27,182,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9880201 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3904313","Offset: 27,186,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9880342 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3903924","Offset: 27,190,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9880487 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3903318","Offset: 27,194,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9880611 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3902955","Offset: 27,198,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9880807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3902516","Offset: 27,202,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9881021 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3902063","Offset: 27,206,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9881217 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3910849","Offset: 27,210,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9881413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3910405","Offset: 27,214,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9881900 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3909671","Offset: 27,218,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9882053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3909189","Offset: 27,223,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9882480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3908519","Offset: 27,227,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9882621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3908148","Offset: 27,231,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9882749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3907776","Offset: 27,235,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9883359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3906923","Offset: 27,239,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9883512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3906416","Offset: 27,243,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9884148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3905528","Offset: 27,247,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9884524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3904879","Offset: 27,251,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9884673 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3904457","Offset: 27,255,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9884805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3904086","Offset: 27,259,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9884925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3903719","Offset: 27,264,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9885083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3903198","Offset: 27,268,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9885228 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3902797","Offset: 27,272,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9885377 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3902388","Offset: 27,276,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9885522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3902008","Offset: 27,280,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9885654 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3901620","Offset: 27,284,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9886277 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3900507","Offset: 27,288,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9886414 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3900122","Offset: 27,292,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9886542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3899734","Offset: 27,296,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9886665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3906817","Offset: 27,300,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9886798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3906343","Offset: 27,304,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9886913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3905865","Offset: 27,309,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9887045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3905362","Offset: 27,313,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9887173 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3914693","Offset: 27,317,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9887305 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3914203","Offset: 27,321,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9887429 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3913810","Offset: 27,325,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9887561 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3913435","Offset: 27,329,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9887672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3913072","Offset: 27,333,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9887800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3912709","Offset: 27,337,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9887950 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3912308","Offset: 27,341,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9888078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3911860","Offset: 27,345,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9888210 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3911484","Offset: 27,350,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9888329 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3911135","Offset: 27,354,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9888462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3910763","Offset: 27,358,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9888585 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3910393","Offset: 27,362,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9888713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3909902","Offset: 27,366,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9888859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3909509","Offset: 27,370,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9888991 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3909133","Offset: 27,374,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9889106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3908784","Offset: 27,378,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9889234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3908348","Offset: 27,382,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9889362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3907883","Offset: 27,386,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9889490 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3907516","Offset: 27,390,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9889622 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3907133","Offset: 27,395,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9889755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3906757","Offset: 27,399,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9889887 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3906394","Offset: 27,403,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9890015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3906014","Offset: 27,407,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9890147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3905541","Offset: 27,411,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9890271 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3905161","Offset: 27,415,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9890403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3904777","Offset: 27,419,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9890514 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3904419","Offset: 27,423,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9890642 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3904014","Offset: 27,427,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9890770 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3913008","Offset: 27,431,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9890894 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3911642","Offset: 27,436,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9891111 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3911084","Offset: 27,440,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9891303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3920688","Offset: 27,444,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9891521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3920235","Offset: 27,448,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9891721 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3919779","Offset: 27,452,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9891884 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3919356","Offset: 27,456,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9892012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3918993","Offset: 27,460,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9892131 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3918584","Offset: 27,464,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9892263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3918205","Offset: 27,468,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9892391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3917834","Offset: 27,472,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9892519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3917475","Offset: 27,476,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9892664 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3917074","Offset: 27,481,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9892797 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3916596","Offset: 27,485,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9892912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3916242","Offset: 27,489,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9893040 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3915879","Offset: 27,493,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9893172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3915508","Offset: 27,497,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9893300 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3915133","Offset: 27,501,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9893441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3914693","Offset: 27,505,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9893556 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3914343","Offset: 27,509,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9893705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3913960","Offset: 27,513,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9893833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3913593","Offset: 27,517,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9893961 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3913221","Offset: 27,522,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9894077 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3912854","Offset: 27,526,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9894205 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3912372","Offset: 27,530,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9894328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3912018","Offset: 27,534,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9894461 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3911651","Offset: 27,538,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9894589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3911237","Offset: 27,542,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9894704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3910819","Offset: 27,546,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9894853 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3910209","Offset: 27,550,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9894990 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3909829","Offset: 27,554,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9895118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3909423","Offset: 27,558,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9895246 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3917782","Offset: 27,563,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9895378 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3917274","Offset: 27,567,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9895497 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3926516","Offset: 27,571,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9895625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3926150","Offset: 27,575,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9895753 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3925659","Offset: 27,579,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9895903 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3925249","Offset: 27,583,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9896031 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3924877","Offset: 27,587,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9896142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3924527","Offset: 27,591,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9896274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3924157","Offset: 27,595,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9896406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3923790","Offset: 27,599,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9896534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3923338","Offset: 27,603,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9896658 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3922970","Offset: 27,608,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9896790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3922604","Offset: 27,612,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9896905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3922254","Offset: 27,616,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9897051 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3921856","Offset: 27,620,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9897179 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3921378","Offset: 27,624,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9897319 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3920978","Offset: 27,628,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9897447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3920598","Offset: 27,632,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9897563 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3920226","Offset: 27,636,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9897695 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3919864","Offset: 27,640,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9897823 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3919425","Offset: 27,644,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9897955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3919058","Offset: 27,649,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9898079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3918695","Offset: 27,653,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9898215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3918324","Offset: 27,657,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9898331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3917969","Offset: 27,661,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9898459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3917581","Offset: 27,665,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9898587 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3916924","Offset: 27,669,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9898710 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3916571","Offset: 27,673,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9898834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3916186","Offset: 27,677,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9898949 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3915734","Offset: 27,681,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9899081 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3915227","Offset: 27,685,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9899227 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3914646","Offset: 27,689,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9899542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3922834","Offset: 27,694,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9899675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3932096","Offset: 27,698,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9899807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3931661","Offset: 27,702,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9899935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3931290","Offset: 27,706,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9900063 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3930928","Offset: 27,710,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9900195 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3930561","Offset: 27,714,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9900319 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3930202","Offset: 27,718,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9900451 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3929827","Offset: 27,722,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9900600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3929358","Offset: 27,726,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9900733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3928986","Offset: 27,730,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9900861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3928623","Offset: 27,735,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9900993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3928248","Offset: 27,739,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9901108 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3927890","Offset: 27,743,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9901232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3927399","Offset: 27,747,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9901364 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3927037","Offset: 27,751,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9901492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3926665","Offset: 27,755,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9901646 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3926260","Offset: 27,759,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9901774 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3925893","Offset: 27,763,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9901932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3925432","Offset: 27,767,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9902068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3925061","Offset: 27,771,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9902192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3924685","Offset: 27,776,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9902320 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3924323","Offset: 27,780,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9902452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3923960","Offset: 27,784,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9902567 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3923594","Offset: 27,788,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9902708 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3923099","Offset: 27,792,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9902939 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3922629","Offset: 27,796,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9903092 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3922245","Offset: 27,800,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9903220 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3921861","Offset: 27,804,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9903352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3921418","Offset: 27,808,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9903480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3920479","Offset: 27,812,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9903608 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3920014","Offset: 27,816,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9903741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3919506","Offset: 27,821,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9903856 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3937042","Offset: 27,825,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9903997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3936623","Offset: 27,829,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9904120 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3936215","Offset: 27,833,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9904248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3935724","Offset: 27,837,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9904372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3935344","Offset: 27,841,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9904483 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3934994","Offset: 27,845,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9904611 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3934631","Offset: 27,849,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9904739 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3934264","Offset: 27,853,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9904863 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3933842","Offset: 27,857,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9904987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3933483","Offset: 27,862,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9905119 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3933095","Offset: 27,866,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9905230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3932749","Offset: 27,870,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9905358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3932382","Offset: 27,874,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9905499 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3931892","Offset: 27,878,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9905644 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3931491","Offset: 27,882,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9905767 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3931112","Offset: 27,886,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9905878 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3930766","Offset: 27,890,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9906011 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3930394","Offset: 27,894,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9906139 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3930023","Offset: 27,898,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9906262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3929605","Offset: 27,902,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9906390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3929247","Offset: 27,907,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9906527 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3928858","Offset: 27,911,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9906642 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3928513","Offset: 27,915,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9906766 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3928120","Offset: 27,919,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9906898 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3927378","Offset: 27,923,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9907026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3926973","Offset: 27,927,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9907150 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3926511","Offset: 27,931,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9907265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3926051","Offset: 27,935,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9907401 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3925531","Offset: 27,939,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9907529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3925010","Offset: 27,943,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9907657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3935489","Offset: 27,948,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9907790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3935019","Offset: 27,952,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9907918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3942917","Offset: 27,956,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9908033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3942567","Offset: 27,960,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9908161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3942200","Offset: 27,964,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9908310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3941808","Offset: 27,968,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9908438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3941437","Offset: 27,972,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9908562 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3941018","Offset: 27,976,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9908677 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3940673","Offset: 27,980,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9908805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3940298","Offset: 27,984,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9908933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3939914","Offset: 27,988,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9909061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3939512","Offset: 27,993,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9909189 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3939082","Offset: 27,997,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9909322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3938714","Offset: 28,001,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9909437 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3938351","Offset: 28,005,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9909560 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3937989","Offset: 28,009,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9909723 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3937588","Offset: 28,013,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9909842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3937072","Offset: 28,017,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9909974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3936675","Offset: 28,021,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9910094 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3936321","Offset: 28,025,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9910209 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3935954","Offset: 28,029,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9910333 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3935595","Offset: 28,034,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9910465 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3935224","Offset: 28,038,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9910580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3934798","Offset: 28,042,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9910708 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3934418","Offset: 28,046,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9910832 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3934059","Offset: 28,050,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9910960 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3933684","Offset: 28,054,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9911092 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3933304","Offset: 28,058,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9911207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3932797","Offset: 28,062,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9911429 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3932332","Offset: 28,066,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9911660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3931815","Offset: 28,070,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9911800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3940524","Offset: 28,075,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9911928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3940063","Offset: 28,079,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9912061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3939563","Offset: 28,083,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9912180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3947683","Offset: 28,087,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9912308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3947231","Offset: 28,091,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9912445 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3946855","Offset: 28,095,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9912560 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3946505","Offset: 28,099,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9912688 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3946125","Offset: 28,103,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9912816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3945763","Offset: 28,107,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9912944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3945332","Offset: 28,111,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9913068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3944948","Offset: 28,115,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9913183 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3944598","Offset: 28,120,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9913324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3944218","Offset: 28,124,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9913452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3943855","Offset: 28,128,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9913575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3943455","Offset: 28,132,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9913699 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3942977","Offset: 28,136,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9913836 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3942580","Offset: 28,140,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9913947 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3942230","Offset: 28,144,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9914083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3941855","Offset: 28,148,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9914211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3941484","Offset: 28,152,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9914339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3941010","Offset: 28,156,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9914463 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3940660","Offset: 28,161,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9914595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3940285","Offset: 28,165,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9914727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3939905","Offset: 28,169,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9914872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3939517","Offset: 28,173,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9915005 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3938834","Offset: 28,177,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9915128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3938476","Offset: 28,181,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9915265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3938091","Offset: 28,185,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9915380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3937678","Offset: 28,189,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9915512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3937192","Offset: 28,193,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9915636 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3946540","Offset: 28,197,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9915764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3946066","Offset: 28,201,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9915892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3945567","Offset: 28,206,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9916020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3945059","Offset: 28,210,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9916131 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3944547","Offset: 28,214,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9916263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3953140","Offset: 28,218,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9916391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3952765","Offset: 28,222,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9916519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3952402","Offset: 28,226,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9916652 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3951962","Offset: 28,230,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9916763 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3951621","Offset: 28,234,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9916895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3951237","Offset: 28,238,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9917027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3950875","Offset: 28,242,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9917155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3950491","Offset: 28,247,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9917300 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3949987","Offset: 28,251,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9917432 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3949620","Offset: 28,255,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9917543 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3949279","Offset: 28,259,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9917676 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3948911","Offset: 28,263,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9917808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3948523","Offset: 28,267,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9917932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3948092","Offset: 28,271,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9918068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3947717","Offset: 28,275,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9918188 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3947363","Offset: 28,279,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9918328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3946958","Offset: 28,283,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9918461 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3946548","Offset: 28,288,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9918589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3946172","Offset: 28,292,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9918717 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3945686","Offset: 28,296,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9918870 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3945277","Offset: 28,300,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9918990 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3944914","Offset: 28,304,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9919143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3944522","Offset: 28,308,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9919280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3944112","Offset: 28,312,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9919399 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3943408","Offset: 28,316,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9919540 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3942973","Offset: 28,320,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9919668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3952824","Offset: 28,324,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9919796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3952372","Offset: 28,328,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9919920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3951992","Offset: 28,333,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9920035 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3951625","Offset: 28,337,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9920176 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3951246","Offset: 28,341,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9920304 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3950789","Offset: 28,345,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9920436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3958883","Offset: 28,349,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9920560 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3958507","Offset: 28,353,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9920692 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3958119","Offset: 28,357,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9920807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3957753","Offset: 28,361,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9920940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3957248","Offset: 28,365,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9921068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3956864","Offset: 28,369,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9921196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3956476","Offset: 28,374,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9921324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3956092","Offset: 28,378,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9921456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3955700","Offset: 28,382,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9921567 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3955329","Offset: 28,386,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9921716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3954860","Offset: 28,390,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9921840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3954484","Offset: 28,394,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9921964 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3954100","Offset: 28,398,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9922087 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3953725","Offset: 28,402,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9922220 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3953332","Offset: 28,406,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9922348 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3952892","Offset: 28,410,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9922476 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3952508","Offset: 28,414,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9922595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3952142","Offset: 28,419,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9922732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3951744","Offset: 28,423,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9922860 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3951373","Offset: 28,427,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9922988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3950725","Offset: 28,431,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9923111 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3950316","Offset: 28,435,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9923239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3949919","Offset: 28,439,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9923355 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3949470","Offset: 28,443,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9923500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3959877","Offset: 28,447,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9923628 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3959501","Offset: 28,451,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9923773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3959100","Offset: 28,455,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9923901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3958716","Offset: 28,460,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9924033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3958286","Offset: 28,464,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9924144 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3956545","Offset: 28,468,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9924272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3956071","Offset: 28,472,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9924400 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3955559","Offset: 28,476,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9924528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3960282","Offset: 28,480,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9924660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3959899","Offset: 28,484,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9924771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.3959532","Offset: 28,488,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9924903 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4244447","Offset: 28,492,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9925070 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4354169","Offset: 28,496,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9925202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4513730","Offset: 28,500,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9925317 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4514361","Offset: 28,505,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9925441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4515308","Offset: 28,509,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9925586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4519938","Offset: 28,513,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9925718 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4520309","Offset: 28,517,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9925842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4521119","Offset: 28,521,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9925953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4521311","Offset: 28,525,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9926102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4526432","Offset: 28,529,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9926235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4526824","Offset: 28,533,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9926392 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4527575","Offset: 28,537,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9926525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4532038","Offset: 28,541,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9926670 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4532221","Offset: 28,546,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9926785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4533198","Offset: 28,550,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9926909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4537307","Offset: 28,554,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9927037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4537537","Offset: 28,558,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9927160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4538421","Offset: 28,562,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9927288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4542381","Offset: 28,566,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9927399 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4542696","Offset: 28,570,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9927532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4543553","Offset: 28,574,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9927677 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4547662","Offset: 28,578,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9927809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4548025","Offset: 28,582,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9927933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4548887","Offset: 28,587,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9928065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4553516","Offset: 28,591,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9928180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4553708","Offset: 28,595,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9928338 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4554613","Offset: 28,599,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9928462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4558598","Offset: 28,603,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9928577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4558790","Offset: 28,607,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9928726 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4559771","Offset: 28,611,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9928859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4563487","Offset: 28,615,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9928987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4563905","Offset: 28,619,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9929110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4564431","Offset: 28,623,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9929243 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4568872","Offset: 28,627,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9929358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4569077","Offset: 28,632,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9929486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4569938","Offset: 28,636,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9929610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4574384","Offset: 28,640,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9929738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4574580","Offset: 28,644,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9929866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4575545","Offset: 28,648,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9929976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4579526","Offset: 28,652,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9930109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4579679","Offset: 28,656,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9930232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4580678","Offset: 28,660,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9930360 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4584779","Offset: 28,664,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9930484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4585004","Offset: 28,668,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9930616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4585820","Offset: 28,673,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9930732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4589574","Offset: 28,677,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9930855 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4590116","Offset: 28,681,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9931009 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4590329","Offset: 28,685,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9931137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4595146","Offset: 28,689,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9931269 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4595680","Offset: 28,693,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9931389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4596200","Offset: 28,697,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9931521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4600279","Offset: 28,701,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9931653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4600813","Offset: 28,705,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9931790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4601320","Offset: 28,709,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9931905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4605288","Offset: 28,713,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9932029 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4605941","Offset: 28,718,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9932229 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4609115","Offset: 28,722,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9932443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4609550","Offset: 28,726,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9932903 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4609739","Offset: 28,730,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9933091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4614103","Offset: 28,734,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9933339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4614636","Offset: 28,738,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9933573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4617657","Offset: 28,742,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9933808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4618246","Offset: 28,746,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9934038 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4621365","Offset: 28,750,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9934256 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4621983","Offset: 28,754,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9934439 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4625619","Offset: 28,759,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9934670 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4625819","Offset: 28,763,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9934913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4625772","Offset: 28,767,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9935114 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4626216","Offset: 28,771,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9935323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4630982","Offset: 28,775,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9935502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4631481","Offset: 28,779,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9935711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4631929","Offset: 28,783,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9935920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4636302","Offset: 28,787,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9936129 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4637045","Offset: 28,791,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9936334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4640040","Offset: 28,795,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9936543 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4640437","Offset: 28,800,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9936722 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4640859","Offset: 28,804,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9936918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4644811","Offset: 28,808,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9937119 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4645433","Offset: 28,812,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9937324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4648445","Offset: 28,816,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9937571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4648958","Offset: 28,820,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9937695 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4652089","Offset: 28,824,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9937827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4652691","Offset: 28,828,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9937976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4655998","Offset: 28,832,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9938104 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4656608","Offset: 28,836,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9938228 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4659791","Offset: 28,840,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9938360 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4660457","Offset: 28,845,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9938476 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4663634","Offset: 28,849,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9938608 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4664369","Offset: 28,853,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9938753 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4667360","Offset: 28,857,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9938864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4667944","Offset: 28,861,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9938996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4671004","Offset: 28,865,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9939124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4671678","Offset: 28,869,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9939252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4674788","Offset: 28,873,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9939380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4675466","Offset: 28,877,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9939512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4679349","Offset: 28,881,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9939632 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4680040","Offset: 28,886,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9939760 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4683347","Offset: 28,890,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9939888 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4683910","Offset: 28,894,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9940016 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4686978","Offset: 28,898,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9940140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4687669","Offset: 28,902,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9940255 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4690886","Offset: 28,906,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9940383 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4691547","Offset: 28,910,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9940511 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4694828","Offset: 28,914,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9940639 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4695549","Offset: 28,918,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9940763 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4698787","Offset: 28,922,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9940895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4699487","Offset: 28,926,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9941014 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4702999","Offset: 28,931,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9941138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4703678","Offset: 28,935,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9941270 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4706805","Offset: 28,939,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9941386 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4707457","Offset: 28,943,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9941535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4710594","Offset: 28,947,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9941667 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4711208","Offset: 28,951,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9941795 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4714246","Offset: 28,955,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9941923 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4714920","Offset: 28,959,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9942055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4718125","Offset: 28,963,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9942171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4718734","Offset: 28,967,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9942299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4721874","Offset: 28,972,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9942427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4722570","Offset: 28,976,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9942555 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4726145","Offset: 28,980,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9942678 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4726880","Offset: 28,984,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9942815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4729973","Offset: 28,988,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9942968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4730686","Offset: 28,992,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9943109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4733711","Offset: 28,996,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9943237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4734359","Offset: 29,000,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9943378 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4737474","Offset: 29,004,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9943510 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4738153","Offset: 29,008,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9943626 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4741245","Offset: 29,012,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9943749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4741924","Offset: 29,017,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9943882 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4745106","Offset: 29,021,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9944010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4745721","Offset: 29,025,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9944138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4749296","Offset: 29,029,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9944248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4750031","Offset: 29,033,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9944385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4753188","Offset: 29,037,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9944513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4753930","Offset: 29,041,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9944641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4757007","Offset: 29,045,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9944769 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4757685","Offset: 29,049,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9944901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4760749","Offset: 29,053,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9945021 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4761525","Offset: 29,058,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9945170 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4764537","Offset: 29,062,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9945298 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4765229","Offset: 29,066,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9945426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4768309","Offset: 29,070,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9945550 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4769085","Offset: 29,074,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9945665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4772772","Offset: 29,078,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9945814 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4773365","Offset: 29,082,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9945942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4776510","Offset: 29,086,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9946070 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4777252","Offset: 29,090,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9946198 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4780299","Offset: 29,094,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9946331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4780964","Offset: 29,099,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9946446 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4784100","Offset: 29,103,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9946574 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4784817","Offset: 29,107,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9946698 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4787986","Offset: 29,111,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9946838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4788687","Offset: 29,115,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9946966 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4791755","Offset: 29,119,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9947077 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4792514","Offset: 29,123,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9947214 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4796076","Offset: 29,127,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9947346 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4796768","Offset: 29,131,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9947474 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4799934","Offset: 29,135,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9947598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4800603","Offset: 29,139,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9947730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4803688","Offset: 29,144,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9947845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4804371","Offset: 29,148,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9947973 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4807563","Offset: 29,152,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9948097 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4808215","Offset: 29,156,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9948212 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4811300","Offset: 29,160,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9948344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4811928","Offset: 29,164,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9948472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4815072","Offset: 29,168,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9948600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4815793","Offset: 29,172,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9948724 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4819369","Offset: 29,176,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9948856 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4820077","Offset: 29,180,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9948972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4823191","Offset: 29,185,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9949095 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4823934","Offset: 29,189,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9949219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4827036","Offset: 29,193,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9949347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4827659","Offset: 29,197,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9949492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4830773","Offset: 29,201,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9949607 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4831542","Offset: 29,205,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9949740 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4834702","Offset: 29,209,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9949868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4835308","Offset: 29,213,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9950004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4838492","Offset: 29,217,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9950132 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4839200","Offset: 29,221,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9950264 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4842754","Offset: 29,225,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9950380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4843449","Offset: 29,230,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9950503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4846931","Offset: 29,234,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9950631 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4847631","Offset: 29,238,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9950751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4850775","Offset: 29,242,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9950887 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4851527","Offset: 29,246,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9951024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4854696","Offset: 29,250,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9951178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4855131","Offset: 29,254,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9951323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4858796","Offset: 29,258,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9951468 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4858796","Offset: 29,262,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9951583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4859398","Offset: 29,266,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9951707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4863852","Offset: 29,271,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9951835 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4863938","Offset: 29,275,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9951963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4864424","Offset: 29,279,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9952086 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4869348","Offset: 29,283,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9952202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4869510","Offset: 29,287,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9952330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4870000","Offset: 29,291,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9952458 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4873930","Offset: 29,295,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9952586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4874583","Offset: 29,299,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9952718 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4878248","Offset: 29,303,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9952850 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4878351","Offset: 29,307,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9952965 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4878897","Offset: 29,312,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9953089 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4883339","Offset: 29,316,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9953221 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4883407","Offset: 29,320,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9953345 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4884000","Offset: 29,324,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9953499 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4888868","Offset: 29,328,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9953614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4888949","Offset: 29,332,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9953750 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4889500","Offset: 29,336,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9953883 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4893988","Offset: 29,340,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9954015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4894078","Offset: 29,344,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9954143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4894692","Offset: 29,348,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9954314 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4899142","Offset: 29,352,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9954510 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4899146","Offset: 29,357,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9954715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4899650","Offset: 29,361,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9954945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4903998","Offset: 29,365,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9955154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4903994","Offset: 29,369,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9955355 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4904433","Offset: 29,373,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9955542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4909336","Offset: 29,377,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9955756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4909433","Offset: 29,381,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9955960 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4909818","Offset: 29,385,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9956170 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4914557","Offset: 29,389,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9956374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4914567","Offset: 29,393,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9956588 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4915005","Offset: 29,398,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9956771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4919853","Offset: 29,402,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9956976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4919848","Offset: 29,406,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9957181 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4920126","Offset: 29,410,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9957368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4924585","Offset: 29,414,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9957578 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4924584","Offset: 29,418,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9957782 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4925011","Offset: 29,422,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9957983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4929785","Offset: 29,426,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9958188 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4929807","Offset: 29,430,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9958405 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4930217","Offset: 29,434,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9958529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4934807","Offset: 29,438,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9958657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4934871","Offset: 29,443,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9958789 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4935384","Offset: 29,447,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9958917 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4939847","Offset: 29,451,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9959045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4939975","Offset: 29,455,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9959160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4940593","Offset: 29,459,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9959314 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4945022","Offset: 29,463,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9959468 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4945064","Offset: 29,467,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9959608 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4945590","Offset: 29,471,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9959736 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4950548","Offset: 29,475,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9959852 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4950735","Offset: 29,479,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9959988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4951260","Offset: 29,484,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9960125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4955769","Offset: 29,488,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9960253 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4955889","Offset: 29,492,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9960368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4956503","Offset: 29,496,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9960500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4960890","Offset: 29,500,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9960628 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4961018","Offset: 29,504,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9960761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4961542","Offset: 29,508,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9960884 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4965976","Offset: 29,512,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9961017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4966056","Offset: 29,516,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9961132 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4966628","Offset: 29,520,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9961255 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4971565","Offset: 29,524,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9961388 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4971641","Offset: 29,529,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9961516 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4972226","Offset: 29,533,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9961644 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4976663","Offset: 29,537,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9961759 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4976766","Offset: 29,541,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9961891 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4977338","Offset: 29,545,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9962036 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4981703","Offset: 29,549,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9962164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4981869","Offset: 29,553,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9962288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4982376","Offset: 29,557,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9962425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4986835","Offset: 29,561,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9962540 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4986920","Offset: 29,565,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9962663 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4987531","Offset: 29,570,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9962813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4992429","Offset: 29,574,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9962941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4992834","Offset: 29,578,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9963069 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4993333","Offset: 29,582,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9963180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4997886","Offset: 29,586,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9963312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4998103","Offset: 29,590,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9963440 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.4998586","Offset: 29,594,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9963572 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5003053","Offset: 29,598,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9963700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5003121","Offset: 29,602,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9963833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5003611","Offset: 29,606,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9963943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5008084","Offset: 29,611,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9964067 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5008224","Offset: 29,615,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9964199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5008702","Offset: 29,619,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9964327 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5013643","Offset: 29,623,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9964455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5013767","Offset: 29,627,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9964571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5014235","Offset: 29,631,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9964703 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5018737","Offset: 29,635,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9964848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5018857","Offset: 29,639,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9964993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5019390","Offset: 29,643,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9965121 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5023832","Offset: 29,647,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9965253 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5023900","Offset: 29,651,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9965373 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5024420","Offset: 29,656,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9965497 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5028401","Offset: 29,660,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9965625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5029109","Offset: 29,664,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9965753 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5032992","Offset: 29,668,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9965881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5033064","Offset: 29,672,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9965991 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5033607","Offset: 29,676,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9966128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5048774","Offset: 29,680,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9966256 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5049372","Offset: 29,684,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9966388 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5053980","Offset: 29,688,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9966503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5054198","Offset: 29,692,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9966644 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5054808","Offset: 29,697,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9966777 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5059692","Offset: 29,701,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9966905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5059799","Offset: 29,705,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9967050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5060303","Offset: 29,709,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9967182 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5064979","Offset: 29,713,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9967314 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5065086","Offset: 29,717,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9967459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5065705","Offset: 29,721,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9967604 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5070949","Offset: 29,725,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9967732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5071128","Offset: 29,729,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9967890 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5071708","Offset: 29,733,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9968010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5076426","Offset: 29,737,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9968142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5076525","Offset: 29,742,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9968274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5077071","Offset: 29,746,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9968398 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5088220","Offset: 29,750,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9968526 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5088616","Offset: 29,754,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9968637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5092849","Offset: 29,758,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9968769 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5092986","Offset: 29,762,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9968901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5093562","Offset: 29,766,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9969029 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5098861","Offset: 29,770,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9969145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5099031","Offset: 29,774,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9969260 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5099676","Offset: 29,778,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9969401 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5104510","Offset: 29,783,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9969511 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5104711","Offset: 29,787,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9969618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5105308","Offset: 29,791,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9969742 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5110150","Offset: 29,795,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9969857 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5110202","Offset: 29,799,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9969964 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5110837","Offset: 29,803,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9970087 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5115608","Offset: 29,807,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9970220 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5115782","Offset: 29,811,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9970335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5116401","Offset: 29,815,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9970467 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5121538","Offset: 29,819,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9970591 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5121717","Offset: 29,824,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9970719 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5122315","Offset: 29,828,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9970864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5127239","Offset: 29,832,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9970992 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5127422","Offset: 29,836,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9971111 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5128007","Offset: 29,840,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9971239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5132794","Offset: 29,844,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9971367 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5132956","Offset: 29,848,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9971508 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5133652","Offset: 29,852,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9971641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5138387","Offset: 29,856,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9971760 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5144728","Offset: 29,860,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9971892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5145325","Offset: 29,864,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9972016 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5150714","Offset: 29,869,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9972144 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5151247","Offset: 29,873,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9972272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5160932","Offset: 29,877,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9972404 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5161248","Offset: 29,881,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9972515 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5165588","Offset: 29,885,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9972643 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5165822","Offset: 29,889,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9972771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5166368","Offset: 29,893,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9972899 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5171156","Offset: 29,897,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9973031 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5171228","Offset: 29,901,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9973151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5171834","Offset: 29,905,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9973279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5177133","Offset: 29,910,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9973411 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5177231","Offset: 29,914,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9973552 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5177786","Offset: 29,918,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9973697 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5182530","Offset: 29,922,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9973825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5182710","Offset: 29,926,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9973940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5183209","Offset: 29,930,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9974068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5187757","Offset: 29,934,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9974196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5187855","Offset: 29,938,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9974324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5188410","Offset: 29,942,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9974457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5192983","Offset: 29,946,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9974589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5192996","Offset: 29,950,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9974721 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5193551","Offset: 29,955,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9974849 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5198727","Offset: 29,959,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9974986 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5198888","Offset: 29,963,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9975114 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5199464","Offset: 29,967,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9975263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5204077","Offset: 29,971,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9975395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5204154","Offset: 29,975,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9975527 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5204722","Offset: 29,979,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9975655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5209253","Offset: 29,983,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9975809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5209726","Offset: 29,987,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9976014 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5209995","Offset: 29,991,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9976236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5214483","Offset: 29,996,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9976449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5214612","Offset: 30,000,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9976658 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5215124","Offset: 30,004,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9976867 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5220248","Offset: 30,008,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9977051 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5220550","Offset: 30,012,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9977255 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5221063","Offset: 30,016,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9977469 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5225658","Offset: 30,020,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9977669 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5225782","Offset: 30,024,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9977878 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5226273","Offset: 30,028,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9978066 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5230654","Offset: 30,032,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9978275 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5230889","Offset: 30,036,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9978489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5231349","Offset: 30,041,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9978689 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5235808","Offset: 30,045,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9978873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5236128","Offset: 30,049,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9979077 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5236513","Offset: 30,053,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9979282 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5241547","Offset: 30,057,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9979513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5241653","Offset: 30,061,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9979717 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5242166","Offset: 30,065,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9979905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5246479","Offset: 30,069,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9980118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5246740","Offset: 30,073,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9980281 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5247464","Offset: 30,077,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9980409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5251663","Offset: 30,082,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9980537 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5252030","Offset: 30,086,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9980665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5252486","Offset: 30,090,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9980780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5256941","Offset: 30,094,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9980903 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5257338","Offset: 30,098,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9981036 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5257867","Offset: 30,102,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9981164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5262739","Offset: 30,106,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9981287 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5268479","Offset: 30,110,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9981403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5269553","Offset: 30,114,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9981535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5274733","Offset: 30,118,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9981663 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5275104","Offset: 30,123,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9981791 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5275522","Offset: 30,127,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9981936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5280207","Offset: 30,131,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9982068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5280609","Offset: 30,135,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9982183 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5281078","Offset: 30,139,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9982311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5285652","Offset: 30,143,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9982457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5285967","Offset: 30,147,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9982585 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5286726","Offset: 30,151,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9982725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5291578","Offset: 30,155,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9982858 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5291936","Offset: 30,159,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9983007 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5292585","Offset: 30,163,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9983135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5296945","Offset: 30,168,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9983259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5297368","Offset: 30,172,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9983387 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5297833","Offset: 30,176,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9983519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5302151","Offset: 30,180,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9983634 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5302522","Offset: 30,184,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9983758 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5303153","Offset: 30,188,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9983886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5307301","Offset: 30,192,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9984018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5307663","Offset: 30,196,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9984159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5308103","Offset: 30,200,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9984287 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5312903","Offset: 30,204,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9984428 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5313436","Offset: 30,209,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9984560 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5313803","Offset: 30,213,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9984684 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5318104","Offset: 30,217,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9984807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5318343","Offset: 30,221,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9984944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5318915","Offset: 30,225,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9985063 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5323237","Offset: 30,229,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9985209 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5323467","Offset: 30,233,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9985337 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5323996","Offset: 30,237,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9985452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5328335","Offset: 30,241,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9985584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5328749","Offset: 30,245,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9985712 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5329095","Offset: 30,249,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9985840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5333852","Offset: 30,254,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9985968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5334193","Offset: 30,258,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9986117 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5334710","Offset: 30,262,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9986237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5339109","Offset: 30,266,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9986365 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5339335","Offset: 30,270,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9986497 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5339890","Offset: 30,274,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9986625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5344216","Offset: 30,278,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9986749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5344736","Offset: 30,282,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9986864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5345125","Offset: 30,286,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9986992 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5349362","Offset: 30,290,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9987120 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5349724","Offset: 30,295,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9987248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5350168","Offset: 30,299,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9987376 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5354665","Offset: 30,303,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9987504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5355288","Offset: 30,307,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9987619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5359030","Offset: 30,311,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9987747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5359265","Offset: 30,315,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9987875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5359785","Offset: 30,319,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9987995 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5363876","Offset: 30,323,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9988144 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5364235","Offset: 30,327,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9988272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5364683","Offset: 30,331,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9988400 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5369180","Offset: 30,336,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9988528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5369739","Offset: 30,340,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9988677 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5370145","Offset: 30,344,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9988797 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5374799","Offset: 30,348,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9988929 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5375222","Offset: 30,352,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9989057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5375503","Offset: 30,356,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9989185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5376007","Offset: 30,360,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9989309 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5382590","Offset: 30,364,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9989424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5382078","Offset: 30,368,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9989556 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5382787","Offset: 30,372,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9989684 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5383290","Offset: 30,376,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9989812 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5383559","Offset: 30,381,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9989936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5390364","Offset: 30,385,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9990068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5389818","Offset: 30,389,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9990183 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5390548","Offset: 30,393,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9990311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5391056","Offset: 30,397,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9990444 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5397323","Offset: 30,401,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9990572 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5396785","Offset: 30,405,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9990713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5397476","Offset: 30,409,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9990828 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5397950","Offset: 30,413,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9990960 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5405827","Offset: 30,417,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9991084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5405353","Offset: 30,422,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9991216 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5405955","Offset: 30,426,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9991412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5406356","Offset: 30,430,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9991570 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5414778","Offset: 30,434,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9991685 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5415226","Offset: 30,438,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9991809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5416592","Offset: 30,442,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9991941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5421494","Offset: 30,446,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9992069 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5422220","Offset: 30,450,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9992197 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5423713","Offset: 30,454,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9992330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5429442","Offset: 30,458,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9992458 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5430906","Offset: 30,462,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9992590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5434161","Offset: 30,467,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9992718 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5437822","Offset: 30,471,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9992842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5441248","Offset: 30,475,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9992978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5443523","Offset: 30,479,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9993106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5449769","Offset: 30,483,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9993234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5452116","Offset: 30,487,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9993362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5456784","Offset: 30,491,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9993490 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5459233","Offset: 30,495,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9993610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5467271","Offset: 30,499,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9993725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5470509","Offset: 30,503,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9993857 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5491429","Offset: 30,508,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9993985 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5505573","Offset: 30,512,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9994113 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5508705","Offset: 30,516,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9994254 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5511781","Offset: 30,520,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9994390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5518041","Offset: 30,524,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9994506 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5522042","Offset: 30,528,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9994634 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5528101","Offset: 30,532,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9994766 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5531489","Offset: 30,536,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9994885 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5543926","Offset: 30,540,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9995308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5651821","Offset: 30,544,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9995436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5804218","Offset: 30,548,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9995572 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5804582","Offset: 30,553,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9995687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5806075","Offset: 30,557,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9995820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5810900","Offset: 30,561,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9995952 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5811468","Offset: 30,565,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9996084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5811114","Offset: 30,569,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9996208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5811617","Offset: 30,573,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9996323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5811929","Offset: 30,577,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9996460 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5818874","Offset: 30,581,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9996622 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5820155","Offset: 30,585,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9996972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5819531","Offset: 30,589,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9997223 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5818914","Offset: 30,594,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9997373 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5819881","Offset: 30,598,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9997514 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5826251","Offset: 30,602,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9997646 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5827625","Offset: 30,606,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9997893 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5826764","Offset: 30,610,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9998094 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5827655","Offset: 30,614,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9998273 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5832340","Offset: 30,618,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9998414 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5833343","Offset: 30,622,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9998546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5832895","Offset: 30,626,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9998678 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5833864","Offset: 30,630,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9998811 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5833445","Offset: 30,635,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9998926 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5839999","Offset: 30,639,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9999054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5841168","Offset: 30,643,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9999195 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5840668","Offset: 30,647,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9999331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5841364","Offset: 30,651,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9999459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5846933","Offset: 30,655,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9999579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5847960","Offset: 30,659,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9999719 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5847517","Offset: 30,663,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9999852 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5848169","Offset: 30,667,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:10.9999984 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5848434","Offset: 30,671,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0000142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5854480","Offset: 30,675,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0000278 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5855500","Offset: 30,680,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0000423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5855039","Offset: 30,684,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0000603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5856003","Offset: 30,688,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0000778 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5855495","Offset: 30,692,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0000987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5862339","Offset: 30,696,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0001191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5863291","Offset: 30,700,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0001349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5862822","Offset: 30,704,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0001524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5863837","Offset: 30,708,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0001682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5863380","Offset: 30,712,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0001819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5870045","Offset: 30,716,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0001951 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5871077","Offset: 30,721,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0002087 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5870613","Offset: 30,725,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0002203 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5871832","Offset: 30,729,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0002331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5871431","Offset: 30,733,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0002463 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5877635","Offset: 30,737,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0002651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5878958","Offset: 30,741,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0002826 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5878113","Offset: 30,745,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0003060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5879039","Offset: 30,749,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0003389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5884142","Offset: 30,753,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0003777 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5884880","Offset: 30,757,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0003939 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5884415","Offset: 30,761,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0004370 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5884799","Offset: 30,766,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0004903 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5889454","Offset: 30,770,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0005189 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5890346","Offset: 30,774,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0005334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5889877","Offset: 30,778,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0005471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5890542","Offset: 30,782,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0005595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5895943","Offset: 30,786,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0005735 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5897237","Offset: 30,790,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0005881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5896814","Offset: 30,794,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0006013 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5896319","Offset: 30,798,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0006128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5897317","Offset: 30,802,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0006260 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5903726","Offset: 30,807,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0006375 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5904742","Offset: 30,811,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0006525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5904293","Offset: 30,815,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0006657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5904921","Offset: 30,819,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0006785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5910395","Offset: 30,823,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0006913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5911376","Offset: 30,827,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0007033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5910962","Offset: 30,831,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0007161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5911922","Offset: 30,835,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0007293 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5911508","Offset: 30,839,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0007429 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5918442","Offset: 30,843,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0007545 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5919487","Offset: 30,848,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0007673 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5919047","Offset: 30,852,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0007801 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5919999","Offset: 30,856,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0007933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5919598","Offset: 30,860,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0008061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5925998","Offset: 30,864,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0008172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5927039","Offset: 30,868,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0008308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5926604","Offset: 30,872,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0008436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5927880","Offset: 30,876,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0008564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5927146","Offset: 30,880,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0008692 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5933567","Offset: 30,884,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0008825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5934582","Offset: 30,888,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0008940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5934156","Offset: 30,893,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0009068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5934838","Offset: 30,897,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0009200 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5935427","Offset: 30,901,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0009328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5941998","Offset: 30,905,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0009447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5941376","Offset: 30,909,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0009575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5942937","Offset: 30,913,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0009708 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5942241","Offset: 30,917,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0009849 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5943141","Offset: 30,921,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0010002 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5948876","Offset: 30,925,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0010151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5949858","Offset: 30,929,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0010284 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5949426","Offset: 30,934,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0010412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5950544","Offset: 30,938,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0010553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5949998","Offset: 30,942,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0010689 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5956629","Offset: 30,946,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0010821 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5957631","Offset: 30,950,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0010975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5957115","Offset: 30,954,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0011107 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5958165","Offset: 30,958,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0011235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5962611","Offset: 30,962,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0011380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5963046","Offset: 30,966,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0011513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5963536","Offset: 30,970,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0011628 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5969714","Offset: 30,974,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0011751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5968759","Offset: 30,979,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0011879 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5970624","Offset: 30,983,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0012007 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5970235","Offset: 30,987,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0012131 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5969817","Offset: 30,991,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0012246 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5977864","Offset: 30,995,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0012379 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5977193","Offset: 30,999,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0012502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5978905","Offset: 31,003,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0012639 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5978457","Offset: 31,007,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0012763 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5978008","Offset: 31,011,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0012895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5979016","Offset: 31,015,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0013006 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5986380","Offset: 31,020,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0013138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5985744","Offset: 31,024,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0013270 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5986734","Offset: 31,028,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0013416 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5986981","Offset: 31,032,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0013539 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5987733","Offset: 31,036,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0013654 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5994547","Offset: 31,040,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0013787 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5993906","Offset: 31,044,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0013915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5995498","Offset: 31,048,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0014043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5994764","Offset: 31,052,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0014171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.5995724","Offset: 31,056,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0014303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6001313","Offset: 31,060,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0014418 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6002350","Offset: 31,065,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0014546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6001911","Offset: 31,069,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0014674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6002593","Offset: 31,073,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0014802 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6007692","Offset: 31,077,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0014930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6008716","Offset: 31,081,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0015041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6008298","Offset: 31,085,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0015173 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6009591","Offset: 31,089,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0015306 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6008835","Offset: 31,093,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0015434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6015585","Offset: 31,097,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0015562 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6016609","Offset: 31,101,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0015711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6016157","Offset: 31,106,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0015826 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6017459","Offset: 31,110,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0015954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6016720","Offset: 31,114,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0016086 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6023261","Offset: 31,118,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0016232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6024233","Offset: 31,122,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0016355 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6023799","Offset: 31,126,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0016470 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6025903","Offset: 31,130,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0016603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6025462","Offset: 31,134,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0016731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6031214","Offset: 31,138,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0016859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6032276","Offset: 31,142,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0017004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6031815","Offset: 31,147,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0017119 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6032532","Offset: 31,151,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0017230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6038199","Offset: 31,155,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0017341 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6037571","Offset: 31,159,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0017465 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6038902","Offset: 31,163,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0017576 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6038412","Offset: 31,167,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0017704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6044261","Offset: 31,171,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0017844 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6045538","Offset: 31,175,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0017972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6045137","Offset: 31,179,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0018083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6044684","Offset: 31,183,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0018207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6045648","Offset: 31,187,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0018335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6052185","Offset: 31,192,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0018463 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6053217","Offset: 31,196,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0018591 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6052769","Offset: 31,200,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0018702 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6054066","Offset: 31,204,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0018856 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6053336","Offset: 31,208,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0019035 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6060048","Offset: 31,212,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0019167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6060761","Offset: 31,216,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0019291 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6061046","Offset: 31,220,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0019423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6061397","Offset: 31,224,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0019538 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6066653","Offset: 31,228,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0019666 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6067630","Offset: 31,233,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0019811 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6067178","Offset: 31,237,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0019931 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6068159","Offset: 31,241,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0020076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6067741","Offset: 31,245,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0020217 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6074546","Offset: 31,249,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0020353 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6075575","Offset: 31,253,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0020481 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6075127","Offset: 31,257,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0020669 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6076360","Offset: 31,261,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0020857 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6075574","Offset: 31,265,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0021061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6081894","Offset: 31,269,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0021266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6082845","Offset: 31,273,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0021471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6082333","Offset: 31,278,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0021676 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6082909","Offset: 31,282,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0021855 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6088366","Offset: 31,286,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0022064 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6089313","Offset: 31,290,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0022265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6088797","Offset: 31,294,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0022474 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6089360","Offset: 31,298,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0022674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6094719","Offset: 31,302,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0022875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6095982","Offset: 31,306,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0023058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6095530","Offset: 31,310,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0023267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6094946","Offset: 31,314,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0023472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6095846","Offset: 31,319,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0023677 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6101815","Offset: 31,323,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0023882 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6102736","Offset: 31,327,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0024061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6102250","Offset: 31,331,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0024274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6103470","Offset: 31,335,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0024483 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6102643","Offset: 31,339,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0024688 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6109422","Offset: 31,343,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0024893 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6110066","Offset: 31,347,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0025055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6110301","Offset: 31,351,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0025174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6110647","Offset: 31,355,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0025302 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6115763","Offset: 31,360,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0025435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6116786","Offset: 31,364,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0025563 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6116342","Offset: 31,368,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0025691 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6116991","Offset: 31,372,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0025806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6122482","Offset: 31,376,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0025938 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6123835","Offset: 31,380,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0026066 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6123430","Offset: 31,384,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0026198 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6122974","Offset: 31,388,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0026314 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6123937","Offset: 31,392,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0026442 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6130384","Offset: 31,396,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0026591 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6131421","Offset: 31,400,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0026723 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6130939","Offset: 31,405,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0026847 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6131955","Offset: 31,409,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0026958 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6131570","Offset: 31,413,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0027120 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6137847","Offset: 31,417,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0027274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6138858","Offset: 31,421,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0027406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6138410","Offset: 31,425,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0027534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6139745","Offset: 31,429,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0027666 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6138978","Offset: 31,433,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0027781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6145954","Offset: 31,437,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0027914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6146952","Offset: 31,441,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0028046 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6146495","Offset: 31,446,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0028174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6147809","Offset: 31,450,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0028319 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6147071","Offset: 31,454,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0028438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6153493","Offset: 31,458,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0028571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6154474","Offset: 31,462,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0028703 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6154030","Offset: 31,466,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0028831 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6155396","Offset: 31,470,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0028963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6154956","Offset: 31,474,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0029078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6161450","Offset: 31,478,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0029228 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6162461","Offset: 31,482,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0029377 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6161988","Offset: 31,486,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0029505 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6163131","Offset: 31,491,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0029620 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6162636","Offset: 31,495,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0029753 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6169091","Offset: 31,499,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0029881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6170115","Offset: 31,503,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0030013 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6169680","Offset: 31,507,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0030141 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6170683","Offset: 31,511,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0030273 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6175496","Offset: 31,515,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0030393 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6176554","Offset: 31,519,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0030538 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6176089","Offset: 31,523,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0030687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6176733","Offset: 31,527,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0030815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6182160","Offset: 31,532,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0030943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6183176","Offset: 31,536,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0031058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6182754","Offset: 31,540,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0031195 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6183436","Offset: 31,544,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0031327 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6188825","Offset: 31,548,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0031455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6190092","Offset: 31,552,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0031583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6189717","Offset: 31,556,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0031758 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6189192","Offset: 31,560,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0031903 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6190118","Offset: 31,564,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0032057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6195941","Offset: 31,568,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0032193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6196962","Offset: 31,572,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0032317 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6196530","Offset: 31,577,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0032445 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6197170","Offset: 31,581,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0032577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6203114","Offset: 31,585,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0032709 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6204407","Offset: 31,589,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0032854 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6203989","Offset: 31,593,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0032987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6203511","Offset: 31,597,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0033110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6204480","Offset: 31,601,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0033247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6210922","Offset: 31,605,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0033366 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6211605","Offset: 31,609,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0033494 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6212224","Offset: 31,613,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0033627 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6211801","Offset: 31,618,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0033755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6212343","Offset: 31,622,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0033878 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6218735","Offset: 31,626,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0033989 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6219772","Offset: 31,630,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0034126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6219327","Offset: 31,634,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0034254 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6219976","Offset: 31,638,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0034382 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6225983","Offset: 31,642,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0034523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6225318","Offset: 31,646,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0034659 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6226581","Offset: 31,650,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0034770 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6226167","Offset: 31,654,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0034915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6226786","Offset: 31,659,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0035048 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6232502","Offset: 31,663,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0035193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6233501","Offset: 31,667,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0035329 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6233058","Offset: 31,671,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0035461 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6233698","Offset: 31,675,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0035598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6239517","Offset: 31,679,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0035730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6240832","Offset: 31,683,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0035862 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6240427","Offset: 31,687,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0035982 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6239940","Offset: 31,691,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0036110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6240925","Offset: 31,695,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0036259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6247253","Offset: 31,699,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0036404 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6246536","Offset: 31,704,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0036549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6247966","Offset: 31,708,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0036665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6247474","Offset: 31,712,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0036814 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6248490","Offset: 31,716,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0036946 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6254937","Offset: 31,720,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0037078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6254306","Offset: 31,724,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0037206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6255556","Offset: 31,728,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0037343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6255129","Offset: 31,732,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0037475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6256042","Offset: 31,736,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0037603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6262447","Offset: 31,740,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0037736 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6262945","Offset: 31,745,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0037864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6263683","Offset: 31,749,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0037992 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6263261","Offset: 31,753,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0038107 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6264247","Offset: 31,757,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0038239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6270732","Offset: 31,761,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0038367 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6270092","Offset: 31,765,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0038499 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6271680","Offset: 31,769,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0038619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6270937","Offset: 31,773,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0038747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6271927","Offset: 31,777,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0038892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6278817","Offset: 31,781,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0039020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6278160","Offset: 31,785,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0039148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6279786","Offset: 31,790,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0039263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6279086","Offset: 31,794,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0039395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6280030","Offset: 31,798,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0039528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6286514","Offset: 31,802,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0039660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6285875","Offset: 31,806,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0039788 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6287568","Offset: 31,810,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0039916 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6287116","Offset: 31,814,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0040031 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6287829","Offset: 31,818,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0040159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6294007","Offset: 31,822,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0040291 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6294519","Offset: 31,826,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0040419 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6295582","Offset: 31,831,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0040543 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6295146","Offset: 31,835,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0040658 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6295803","Offset: 31,839,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0040790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6302118","Offset: 31,843,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0040918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6301491","Offset: 31,847,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0041051 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6303398","Offset: 31,851,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0041174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6303006","Offset: 31,855,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0041337 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6302566","Offset: 31,859,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0041456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6310050","Offset: 31,863,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0041588 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6309060","Offset: 31,867,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0041750 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6310379","Offset: 31,872,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0041955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6310861","Offset: 31,876,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0042156 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6310365","Offset: 31,880,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0042339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6316292","Offset: 31,884,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0042553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6316936","Offset: 31,888,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0042757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6317594","Offset: 31,892,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0042962 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6317090","Offset: 31,896,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0043167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6321856","Offset: 31,900,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0043380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6322539","Offset: 31,904,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0043581 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6322867","Offset: 31,908,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0043794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6326993","Offset: 31,912,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0044025 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6327526","Offset: 31,917,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0044234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6331093","Offset: 31,921,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0044438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6331844","Offset: 31,925,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0044618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6334898","Offset: 31,929,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0044827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6335423","Offset: 31,933,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0045032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6338495","Offset: 31,937,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0045241 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6339037","Offset: 31,941,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0045424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6342114","Offset: 31,945,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0045629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6342749","Offset: 31,949,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0045838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6346615","Offset: 31,953,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0045996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6347886","Offset: 31,958,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0046124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6347140","Offset: 31,962,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0046239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6348467","Offset: 31,966,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0046371 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6348045","Offset: 31,970,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0046504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6355558","Offset: 31,974,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0046632 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6354930","Offset: 31,978,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0046781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6356347","Offset: 31,982,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0046913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6355789","Offset: 31,986,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0047033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6356590","Offset: 31,990,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0047156 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6363187","Offset: 31,994,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0047284 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6362556","Offset: 31,998,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0047429 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6363849","Offset: 32,003,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0047557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6364130","Offset: 32,007,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0047673 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6364466","Offset: 32,011,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0047805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6370816","Offset: 32,015,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0047937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6370171","Offset: 32,019,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0048065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6372100","Offset: 32,023,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0048185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6371711","Offset: 32,027,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0048308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6371307","Offset: 32,031,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0048441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6379152","Offset: 32,035,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0048569 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6378222","Offset: 32,039,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0048692 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6380092","Offset: 32,044,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0048808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6379711","Offset: 32,048,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0048944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6379272","Offset: 32,052,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0049072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6387170","Offset: 32,056,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0049204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6385967","Offset: 32,060,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0049332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6388954","Offset: 32,064,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0049465 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6388437","Offset: 32,068,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0049580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6387950","Offset: 32,072,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0049712 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6387341","Offset: 32,076,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0049844 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6394876","Offset: 32,080,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0049977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6395972","Offset: 32,084,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0050100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6395413","Offset: 32,089,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0050216 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6396121","Offset: 32,093,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0050348 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6396915","Offset: 32,097,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0050476 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6402973","Offset: 32,101,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0050604 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6402325","Offset: 32,105,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0050732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6403771","Offset: 32,109,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0050864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6403255","Offset: 32,113,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0050975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6404335","Offset: 32,117,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0051103 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6410201","Offset: 32,121,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0051227 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6411310","Offset: 32,125,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0051355 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6410803","Offset: 32,130,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0051478 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6411934","Offset: 32,134,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0051594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6412304","Offset: 32,138,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0051743 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6417719","Offset: 32,142,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0051888 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6418820","Offset: 32,146,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0052037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6418274","Offset: 32,150,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0052170 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6419554","Offset: 32,154,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0052306 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6418999","Offset: 32,158,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0052421 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6425272","Offset: 32,162,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0052549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6426296","Offset: 32,166,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0052677 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6425796","Offset: 32,171,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0052805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6426872","Offset: 32,175,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0052929 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6432350","Offset: 32,179,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0053044 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6433395","Offset: 32,183,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0053177 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6432942","Offset: 32,187,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0053309 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6434287","Offset: 32,191,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0053437 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6433501","Offset: 32,195,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0053561 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6439509","Offset: 32,199,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0053693 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6440162","Offset: 32,203,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0053808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6440597","Offset: 32,207,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0053932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6441309","Offset: 32,211,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0054064 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6446737","Offset: 32,216,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0054192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6447501","Offset: 32,220,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0054337 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6447812","Offset: 32,224,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0054452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6448213","Offset: 32,228,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0054580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6453039","Offset: 32,232,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0054713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6454088","Offset: 32,236,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0054866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6453602","Offset: 32,240,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0054981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6454293","Offset: 32,244,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0055109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6459704","Offset: 32,248,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0055237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6461060","Offset: 32,252,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0055365 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6460659","Offset: 32,257,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0055489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6460160","Offset: 32,261,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0055604 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6461163","Offset: 32,265,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0055758 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6467848","Offset: 32,269,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0055886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6469184","Offset: 32,273,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0056018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6468774","Offset: 32,277,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0056146 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6468262","Offset: 32,281,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0056278 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6469308","Offset: 32,285,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0056389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6475102","Offset: 32,289,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0056517 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6476130","Offset: 32,293,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0056650 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6475673","Offset: 32,297,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0056778 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6476974","Offset: 32,302,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0056901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6476267","Offset: 32,306,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0057017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6482623","Offset: 32,310,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0057149 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6483682","Offset: 32,314,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0057277 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6483225","Offset: 32,318,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0057405 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6483895","Offset: 32,322,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0057533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6489322","Offset: 32,326,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0057665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6490453","Offset: 32,330,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0057780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6489950","Offset: 32,334,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0057908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6490688","Offset: 32,338,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0058041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6496123","Offset: 32,343,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0058156 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6497173","Offset: 32,347,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0058288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6496674","Offset: 32,351,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0058412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6497284","Offset: 32,355,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0058544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6497668","Offset: 32,359,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0058672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6504153","Offset: 32,363,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0058804 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6505745","Offset: 32,367,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0058920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6505258","Offset: 32,371,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0059043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6504760","Offset: 32,375,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0059171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6506168","Offset: 32,379,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0059299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6511680","Offset: 32,384,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0059423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6512721","Offset: 32,388,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0059538 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6512282","Offset: 32,392,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0059670 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6513024","Offset: 32,396,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0059798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6517927","Offset: 32,400,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0059926 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6518964","Offset: 32,404,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0060080 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6518494","Offset: 32,408,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0060234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6519765","Offset: 32,412,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0060353 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6519053","Offset: 32,416,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0060477 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6525922","Offset: 32,420,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0060613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6526951","Offset: 32,424,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0060741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6526494","Offset: 32,429,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0060865 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6527774","Offset: 32,433,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0060997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6527100","Offset: 32,437,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0061147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6533474","Offset: 32,441,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0061279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6534498","Offset: 32,445,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0061411 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6534042","Offset: 32,449,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0061539 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6535053","Offset: 32,453,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0061672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6539728","Offset: 32,457,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0061791 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6540877","Offset: 32,461,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0061919 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6540424","Offset: 32,465,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0062047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6541756","Offset: 32,470,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0062175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6541312","Offset: 32,474,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0062320 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6547831","Offset: 32,478,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0062435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6548557","Offset: 32,482,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0062568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6548812","Offset: 32,486,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0062708 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6549444","Offset: 32,490,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0062849 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6554146","Offset: 32,494,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0062977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6555183","Offset: 32,498,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0063135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6554654","Offset: 32,502,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0063254 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6555371","Offset: 32,506,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0063429 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6560499","Offset: 32,510,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0063638 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6561088","Offset: 32,515,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0063848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6576516","Offset: 32,519,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0064057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6577105","Offset: 32,523,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0064240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6577852","Offset: 32,527,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0064453 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6578125","Offset: 32,531,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0064658 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6583548","Offset: 32,535,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0064867 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6584086","Offset: 32,539,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0065047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6584430","Offset: 32,543,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0065247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6589205","Offset: 32,547,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0065452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6589802","Offset: 32,551,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0065657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6590408","Offset: 32,556,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0065857 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6592282","Offset: 32,560,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0066036 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6597201","Offset: 32,564,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0066250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6597760","Offset: 32,568,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0066455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6598958","Offset: 32,572,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0066885 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6603298","Offset: 32,576,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0067095 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6604770","Offset: 32,580,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0067278 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6608951","Offset: 32,584,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0067449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6609911","Offset: 32,588,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0067602 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6614345","Offset: 32,592,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0067739 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6615274","Offset: 32,596,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0067850 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6617233","Offset: 32,601,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0067961 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6622148","Offset: 32,605,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0068080 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6708783","Offset: 32,609,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0068195 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6715051","Offset: 32,613,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0068345 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6734745","Offset: 32,617,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0068507 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6735330","Offset: 32,621,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0068643 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6735736","Offset: 32,625,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0068776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6741299","Offset: 32,629,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0068912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6742234","Offset: 32,633,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0069044 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6744436","Offset: 32,637,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0069172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6748301","Offset: 32,642,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0069300 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6703753","Offset: 32,646,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0069424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6758400","Offset: 32,650,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0069535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6760004","Offset: 32,654,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0069672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6765760","Offset: 32,658,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0069800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6766724","Offset: 32,662,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0069928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6768904","Offset: 32,666,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0070051 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6774226","Offset: 32,670,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0070184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6776559","Offset: 32,674,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0070303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6780177","Offset: 32,678,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0070427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6782447","Offset: 32,683,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0070555 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6787038","Offset: 32,687,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0070679 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6790852","Offset: 32,691,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0070807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6815552","Offset: 32,695,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0070969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6966980","Offset: 32,699,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0071101 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6967638","Offset: 32,703,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0071225 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6968047","Offset: 32,707,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0071374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6974571","Offset: 32,711,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0071506 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6975907","Offset: 32,715,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0071630 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6975510","Offset: 32,719,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0071758 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6975011","Offset: 32,723,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0071882 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6976094","Offset: 32,728,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0072005 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6982968","Offset: 32,732,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0072121 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6983727","Offset: 32,736,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0072249 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6984410","Offset: 32,740,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0072377 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6983923","Offset: 32,744,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0072505 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6984525","Offset: 32,748,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0072628 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6985123","Offset: 32,752,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0072761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6991125","Offset: 32,756,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0072876 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6992205","Offset: 32,760,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0073000 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6991774","Offset: 32,764,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0073132 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6993067","Offset: 32,769,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0073260 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6992636","Offset: 32,773,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0073384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6998793","Offset: 32,777,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0073499 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6999744","Offset: 32,781,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0073648 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6999288","Offset: 32,785,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0073780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7000483","Offset: 32,789,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0073925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.6999924","Offset: 32,793,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0074041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7006131","Offset: 32,797,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0074169 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7007049","Offset: 32,801,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0074297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7006566","Offset: 32,805,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0074425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7007616","Offset: 32,809,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0074548 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7013074","Offset: 32,814,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0074664 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7014140","Offset: 32,818,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0074796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7013671","Offset: 32,822,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0074920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7015053","Offset: 32,826,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0075048 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7014285","Offset: 32,830,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0075176 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7020604","Offset: 32,834,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0075304 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7021496","Offset: 32,838,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0075423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7021022","Offset: 32,842,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0075547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7022178","Offset: 32,846,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0075692 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7027584","Offset: 32,850,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0075820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7028613","Offset: 32,855,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0075944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7028177","Offset: 32,859,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0076059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7029555","Offset: 32,863,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0076187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7028745","Offset: 32,867,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0076315 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7035170","Offset: 32,871,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0076456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7035738","Offset: 32,875,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0076601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7036015","Offset: 32,879,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0076759 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7037414","Offset: 32,883,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0076895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7041430","Offset: 32,887,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0077023 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7042458","Offset: 32,891,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0077147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7041971","Offset: 32,896,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0077258 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7042688","Offset: 32,900,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0077390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7048768","Offset: 32,904,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0077514 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7049822","Offset: 32,908,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0077646 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7049366","Offset: 32,912,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0077770 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7050082","Offset: 32,916,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0077919 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7050612","Offset: 32,920,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0078034 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7056299","Offset: 32,924,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0078158 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7057323","Offset: 32,928,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0078286 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7056879","Offset: 32,932,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0078410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7057545","Offset: 32,936,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0078533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7062964","Offset: 32,941,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0078644 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7064274","Offset: 32,945,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0078781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7063868","Offset: 32,949,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0078909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7063382","Offset: 32,953,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0079037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7064346","Offset: 32,957,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0079165 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7070763","Offset: 32,961,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0079297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7071792","Offset: 32,965,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0079412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7071365","Offset: 32,969,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0079562 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7072623","Offset: 32,973,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0079690 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7071885","Offset: 32,977,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0079818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7079091","Offset: 32,982,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0079946 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7078430","Offset: 32,986,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0080057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7079795","Offset: 32,990,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0080206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7079348","Offset: 32,994,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0080334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7080026","Offset: 32,998,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0080462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7086294","Offset: 33,002,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0080586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7086818","Offset: 33,006,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0080739 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7087130","Offset: 33,010,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0080850 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7087493","Offset: 33,014,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0080978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7093129","Offset: 33,018,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0081106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7094320","Offset: 33,022,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0081285 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7093868","Offset: 33,027,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0081426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7093394","Offset: 33,031,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0081559 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7094345","Offset: 33,035,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0081691 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7100276","Offset: 33,039,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0081819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7101137","Offset: 33,043,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0081943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7100681","Offset: 33,047,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0082071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7101368","Offset: 33,051,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0082216 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7108066","Offset: 33,055,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0082348 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7107422","Offset: 33,059,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0082472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7108702","Offset: 33,063,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0082685 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7108203","Offset: 33,068,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0082800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7108758","Offset: 33,072,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0082937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7114633","Offset: 33,076,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0083065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7115563","Offset: 33,080,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0083197 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7115098","Offset: 33,084,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0083338 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7115763","Offset: 33,088,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0083487 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7121622","Offset: 33,092,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0083602 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7123026","Offset: 33,096,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0083730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7122621","Offset: 33,100,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0083863 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7122129","Offset: 33,104,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0083991 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7123111","Offset: 33,108,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0084119 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7129199","Offset: 33,113,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0084229 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7130288","Offset: 33,117,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0084379 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7129771","Offset: 33,121,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0084507 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7130612","Offset: 33,125,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0084643 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7135894","Offset: 33,129,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0084780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7136935","Offset: 33,133,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0084925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7136478","Offset: 33,137,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0085053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7137037","Offset: 33,141,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0085181 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7137434","Offset: 33,145,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0085309 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7143804","Offset: 33,149,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0085428 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7145119","Offset: 33,154,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0085561 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7144709","Offset: 33,158,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0085689 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7144222","Offset: 33,162,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0085847 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7145212","Offset: 33,166,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0086056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7151019","Offset: 33,170,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0086295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7152013","Offset: 33,174,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0086478 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7151450","Offset: 33,178,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0086679 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7152811","Offset: 33,182,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0086883 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7151924","Offset: 33,186,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0087084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7158251","Offset: 33,190,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0087289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7159138","Offset: 33,195,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0087498 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7158626","Offset: 33,199,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0087711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7159928","Offset: 33,203,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0087920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7159011","Offset: 33,207,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0088125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7165667","Offset: 33,211,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0088325 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7166627","Offset: 33,215,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0088530 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7166111","Offset: 33,219,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0088718 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7167361","Offset: 33,223,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0088919 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7166857","Offset: 33,227,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0089132 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7172890","Offset: 33,231,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0089337 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7173829","Offset: 33,235,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0089537 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7173317","Offset: 33,240,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0089721 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7174413","Offset: 33,244,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0089934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7173795","Offset: 33,248,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0090139 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7180579","Offset: 33,252,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0090335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7181505","Offset: 33,256,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0090472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7181061","Offset: 33,260,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0090608 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7182409","Offset: 33,264,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0090745 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7181974","Offset: 33,268,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0090868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7187943","Offset: 33,272,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0091001 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7188958","Offset: 33,276,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0091129 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7188463","Offset: 33,281,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0091274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7189214","Offset: 33,285,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0091385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7195098","Offset: 33,289,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0091534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7194433","Offset: 33,293,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0091666 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7195730","Offset: 33,297,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0091799 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7195311","Offset: 33,301,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0091927 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7195994","Offset: 33,305,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0092042 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7202462","Offset: 33,309,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0092170 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7202966","Offset: 33,313,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0092293 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7203713","Offset: 33,317,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0092430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7203295","Offset: 33,321,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0092545 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7204285","Offset: 33,326,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0092677 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7210062","Offset: 33,330,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0092810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7211098","Offset: 33,334,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0092946 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7210646","Offset: 33,338,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0093087 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7211943","Offset: 33,342,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0093262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7211150","Offset: 33,346,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0093381 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7218092","Offset: 33,350,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0093509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7219112","Offset: 33,354,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0093637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7218672","Offset: 33,358,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0093765 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7219688","Offset: 33,362,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0093889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7224568","Offset: 33,367,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0094004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7225622","Offset: 33,371,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0094137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7225174","Offset: 33,375,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0094265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7225848","Offset: 33,379,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0094393 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7230823","Offset: 33,383,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0094521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7231889","Offset: 33,387,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0094653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7231420","Offset: 33,391,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0094768 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7232116","Offset: 33,395,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0094896 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7237974","Offset: 33,399,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0095024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7239284","Offset: 33,403,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0095139 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7238887","Offset: 33,408,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0095272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7238392","Offset: 33,412,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0095404 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7239373","Offset: 33,416,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0095536 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7246478","Offset: 33,420,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0095664 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7245821","Offset: 33,424,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0095796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7247365","Offset: 33,428,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0095907 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7246981","Offset: 33,432,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0096035 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7246559","Offset: 33,436,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0096168 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7253730","Offset: 33,440,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0096291 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7254243","Offset: 33,444,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0096419 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7254977","Offset: 33,448,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0096530 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7254572","Offset: 33,453,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0096663 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7255625","Offset: 33,457,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0096795 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7262025","Offset: 33,461,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0096923 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7261368","Offset: 33,465,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0097051 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7262712","Offset: 33,469,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0097183 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7262205","Offset: 33,473,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0097303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7262968","Offset: 33,477,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0097448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7269961","Offset: 33,481,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0097580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7269321","Offset: 33,485,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0097708 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7270601","Offset: 33,489,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0097836 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7270179","Offset: 33,494,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0097951 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7270870","Offset: 33,498,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0098083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7276835","Offset: 33,502,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0098211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7277305","Offset: 33,506,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0098344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7277923","Offset: 33,510,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0098472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7283789","Offset: 33,514,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0098604 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7282812","Offset: 33,518,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0098719 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7284741","Offset: 33,522,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0098843 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7284344","Offset: 33,526,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0098975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7283913","Offset: 33,530,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0099099 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7291312","Offset: 33,534,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0099227 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7290334","Offset: 33,539,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0099342 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7292336","Offset: 33,543,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0099491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7291918","Offset: 33,547,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0099624 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7291478","Offset: 33,551,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0099752 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7292651","Offset: 33,555,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0099880 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7300028","Offset: 33,559,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0100016 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7299393","Offset: 33,563,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0100131 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7300694","Offset: 33,567,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0100255 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7300268","Offset: 33,571,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0100387 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7300959","Offset: 33,575,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0100532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7307598","Offset: 33,580,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0100660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7306954","Offset: 33,584,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0100776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7308263","Offset: 33,588,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0100908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7307815","Offset: 33,592,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0101040 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7308805","Offset: 33,596,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0101181 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7315751","Offset: 33,600,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0101322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7315090","Offset: 33,604,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0101475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7316357","Offset: 33,608,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0101603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7315922","Offset: 33,612,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0101727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7316622","Offset: 33,616,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0101859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7323299","Offset: 33,620,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0101975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7322671","Offset: 33,625,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0102111 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7323956","Offset: 33,629,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0102243 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7323517","Offset: 33,633,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0102371 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7324511","Offset: 33,637,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0102499 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7331380","Offset: 33,641,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0102632 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7330748","Offset: 33,645,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0102747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7332024","Offset: 33,649,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0102875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7331606","Offset: 33,653,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0103007 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7332613","Offset: 33,657,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0103152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7338604","Offset: 33,661,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0103276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7339128","Offset: 33,666,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0103395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7340217","Offset: 33,670,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0103528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7339439","Offset: 33,674,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0103660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7340447","Offset: 33,678,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0103792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7346783","Offset: 33,682,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0103920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7346143","Offset: 33,686,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0104057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7347734","Offset: 33,690,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0104176 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7347005","Offset: 33,694,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0104325 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7347961","Offset: 33,698,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0104458 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7354185","Offset: 33,702,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0104569 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7354710","Offset: 33,707,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0104705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7355773","Offset: 33,711,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0104833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7355338","Offset: 33,715,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0104961 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7355986","Offset: 33,719,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0105089 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7362399","Offset: 33,723,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0105221 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7361751","Offset: 33,727,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0105337 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7363384","Offset: 33,731,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0105465 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7362923","Offset: 33,735,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0105593 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7363606","Offset: 33,739,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0105725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7370544","Offset: 33,743,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0106032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7369738","Offset: 33,747,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0106147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7371615","Offset: 33,752,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0106297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7371201","Offset: 33,756,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0106425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7370787","Offset: 33,760,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0106565 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7378408","Offset: 33,764,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0106698 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7377439","Offset: 33,768,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0106834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7379325","Offset: 33,772,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0106958 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7378936","Offset: 33,776,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0107146 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7378450","Offset: 33,780,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0107355 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7386262","Offset: 33,784,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0107564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7385221","Offset: 33,788,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0107764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7386459","Offset: 33,793,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0107952 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7386945","Offset: 33,797,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0108165 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7386450","Offset: 33,801,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0108375 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7393647","Offset: 33,805,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0108584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7392897","Offset: 33,809,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0108788 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7394399","Offset: 33,813,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0109002 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7393921","Offset: 33,817,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0109185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7393435","Offset: 33,821,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0109403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7400743","Offset: 33,825,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0109646 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7399971","Offset: 33,829,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0109855 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7400893","Offset: 33,833,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0110060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7401353","Offset: 33,838,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0110248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7400884","Offset: 33,842,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0110461 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7408095","Offset: 33,846,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0110666 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7407382","Offset: 33,850,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0110871 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7408615","Offset: 33,854,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0111075 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7408112","Offset: 33,858,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0111259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7409059","Offset: 33,862,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0111383 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7415715","Offset: 33,866,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0111511 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7415070","Offset: 33,870,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0111634 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7417213","Offset: 33,874,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0111749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7416599","Offset: 33,879,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0111882 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7416065","Offset: 33,883,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0112010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7423685","Offset: 33,887,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0112138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7422960","Offset: 33,891,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0112283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7424854","Offset: 33,895,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0112432 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7423993","Offset: 33,899,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0112547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7425141","Offset: 33,903,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0112671 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7431523","Offset: 33,907,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0112803 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7430794","Offset: 33,911,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0112931 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7432897","Offset: 33,915,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0113059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7432441","Offset: 33,920,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0113175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7431676","Offset: 33,924,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0113324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7438597","Offset: 33,928,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0113456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7439212","Offset: 33,932,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0113584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7440752","Offset: 33,936,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0113712 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7440330","Offset: 33,940,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0113844 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7439835","Offset: 33,944,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0113964 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7447288","Offset: 33,948,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0114092 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7446584","Offset: 33,952,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0114220 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7448410","Offset: 33,956,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0114335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7447933","Offset: 33,960,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0114484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7448714","Offset: 33,965,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0114634 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7454973","Offset: 33,969,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0114757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7454274","Offset: 33,973,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0114885 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7456398","Offset: 33,977,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0115018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7455984","Offset: 33,981,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0115133 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7455553","Offset: 33,985,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0115257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7463583","Offset: 33,989,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0115389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7462516","Offset: 33,993,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0115517 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7464688","Offset: 33,997,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0115645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7464266","Offset: 34,001,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0115760 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7463809","Offset: 34,006,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0115897 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7471246","Offset: 34,010,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0116046 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7470124","Offset: 34,014,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0116174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7472342","Offset: 34,018,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0116302 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7471916","Offset: 34,022,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0116434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7471447","Offset: 34,026,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0116554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7479152","Offset: 34,030,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0116682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7478418","Offset: 34,034,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0116827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7480257","Offset: 34,038,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0116955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7479796","Offset: 34,042,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0117083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7479340","Offset: 34,046,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0117198 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7480739","Offset: 34,051,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0117326 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7487873","Offset: 34,055,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0117454 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7487165","Offset: 34,059,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0117582 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7488658","Offset: 34,063,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0117714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7488176","Offset: 34,067,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0117876 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7489290","Offset: 34,071,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0118013 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7495668","Offset: 34,075,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0118141 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7494930","Offset: 34,079,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0118273 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7497042","Offset: 34,083,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0118401 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7496586","Offset: 34,087,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0118525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7495809","Offset: 34,092,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0118644 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7503370","Offset: 34,096,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0118794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7503958","Offset: 34,100,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0118926 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7505516","Offset: 34,104,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0119071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7505042","Offset: 34,108,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0119203 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7504211","Offset: 34,112,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0119336 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7505669","Offset: 34,116,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0119451 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7512752","Offset: 34,120,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0119575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7512048","Offset: 34,124,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0119707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7514241","Offset: 34,128,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0119835 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7513823","Offset: 34,132,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0119963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7513349","Offset: 34,137,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0120078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7521315","Offset: 34,141,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0120210 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7520193","Offset: 34,145,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0120338 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7522433","Offset: 34,149,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0120466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7522002","Offset: 34,153,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0120582 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7521532","Offset: 34,157,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0120705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7529042","Offset: 34,161,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0120816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7528014","Offset: 34,165,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0120923 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7530168","Offset: 34,169,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0121042 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7529755","Offset: 34,173,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0121158 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7529302","Offset: 34,178,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0121281 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7530591","Offset: 34,182,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0121409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7538109","Offset: 34,186,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0121529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7537396","Offset: 34,190,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0121657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7538889","Offset: 34,194,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0121785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7538416","Offset: 34,198,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0121913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7539214","Offset: 34,202,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0122045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7545887","Offset: 34,206,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0122160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7545200","Offset: 34,210,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0122292 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7547342","Offset: 34,214,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0122416 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7546544","Offset: 34,219,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0122544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7546088","Offset: 34,223,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0122672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7553435","Offset: 34,227,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0122804 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7554058","Offset: 34,231,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0122915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7555534","Offset: 34,235,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0123043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7554754","Offset: 34,239,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0123176 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7554301","Offset: 34,243,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0123304 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7562305","Offset: 34,247,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0123436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7561601","Offset: 34,251,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0123564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7563777","Offset: 34,255,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0123696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7563321","Offset: 34,259,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0123820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7562489","Offset: 34,264,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0123935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7563982","Offset: 34,268,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0124076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7570740","Offset: 34,272,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0124204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7570028","Offset: 34,276,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0124336 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7571662","Offset: 34,280,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0124460 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7571056","Offset: 34,284,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0124592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7571982","Offset: 34,288,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0124707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7578975","Offset: 34,292,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0124835 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7578250","Offset: 34,296,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0124963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7580426","Offset: 34,300,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0125091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7580008","Offset: 34,305,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0125219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7579513","Offset: 34,309,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0125352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7586544","Offset: 34,313,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0125484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7585836","Offset: 34,317,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0125608 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7587376","Offset: 34,321,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0125736 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7587999","Offset: 34,325,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0125864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7587542","Offset: 34,329,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0126022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7595807","Offset: 34,333,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0126150 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7593942","Offset: 34,337,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0126320 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7596925","Offset: 34,341,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0126465 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7596486","Offset: 34,345,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0126610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7595999","Offset: 34,350,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0126751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7602583","Offset: 34,354,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0126900 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7601508","Offset: 34,358,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0127016 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7603969","Offset: 34,362,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0127144 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7603529","Offset: 34,366,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0127267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7603103","Offset: 34,370,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0127395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7602643","Offset: 34,374,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0127528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7611269","Offset: 34,378,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0127643 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7610561","Offset: 34,382,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0127779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7612008","Offset: 34,386,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0127903 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7611564","Offset: 34,391,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0128035 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7612708","Offset: 34,395,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0128168 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7619171","Offset: 34,399,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0128300 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7618408","Offset: 34,403,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0128415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7620515","Offset: 34,407,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0128547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7619769","Offset: 34,411,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0128735 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7619240","Offset: 34,415,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0128944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7626711","Offset: 34,419,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0129158 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7625861","Offset: 34,423,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0129341 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7628012","Offset: 34,427,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0129550 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7627479","Offset: 34,432,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0129755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7626561","Offset: 34,436,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0129990 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7634488","Offset: 34,440,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0130182 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7633712","Offset: 34,444,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0130378 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7635487","Offset: 34,448,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0130583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7634544","Offset: 34,452,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0130783 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7635615","Offset: 34,456,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0130996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7641794","Offset: 34,460,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0131184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7641017","Offset: 34,464,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0131398 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7642847","Offset: 34,468,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0131598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7642280","Offset: 34,472,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0131807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7642992","Offset: 34,477,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0132012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7649584","Offset: 34,481,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0132221 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7648795","Offset: 34,485,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0132404 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7650024","Offset: 34,489,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0132605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7650301","Offset: 34,493,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0132818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7650634","Offset: 34,497,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0133002 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7656961","Offset: 34,501,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0133211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7656176","Offset: 34,505,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0133411 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7657751","Offset: 34,509,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0133595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7657051","Offset: 34,513,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0133727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7657968","Offset: 34,518,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0133859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7664842","Offset: 34,522,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0133970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7664159","Offset: 34,526,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0134098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7666028","Offset: 34,530,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0134243 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7665512","Offset: 34,534,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0134380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7666305","Offset: 34,538,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0134542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7672620","Offset: 34,542,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0134653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7671920","Offset: 34,546,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0134785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7673904","Offset: 34,550,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0134913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7673461","Offset: 34,554,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0135041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7672885","Offset: 34,558,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0135169 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7674079","Offset: 34,563,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0135297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7681636","Offset: 34,567,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0135412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7680544","Offset: 34,571,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0135540 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7682980","Offset: 34,575,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0135673 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7682570","Offset: 34,579,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0135796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7682169","Offset: 34,583,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0135929 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7681699","Offset: 34,587,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0136040 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7690390","Offset: 34,591,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0136193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7689636","Offset: 34,595,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0136321 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7691419","Offset: 34,599,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0136454 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7690992","Offset: 34,604,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0136582 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7690527","Offset: 34,608,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0136710 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7697968","Offset: 34,612,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0136825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7697260","Offset: 34,616,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0136953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7698399","Offset: 34,620,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0137081 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7699427","Offset: 34,624,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0137204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7698587","Offset: 34,628,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0137337 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7720820","Offset: 34,632,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0137452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7722058","Offset: 34,636,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0137584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7721546","Offset: 34,640,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0137712 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7722724","Offset: 34,644,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0137840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7735276","Offset: 34,649,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0137985 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7734449","Offset: 34,653,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0138118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7735980","Offset: 34,657,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0138228 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7735515","Offset: 34,661,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0138374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7749944","Offset: 34,665,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0138519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7749019","Offset: 34,669,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0138642 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7752113","Offset: 34,673,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0138775 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7751229","Offset: 34,677,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0138890 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7750781","Offset: 34,681,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0139018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7750290","Offset: 34,685,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0139154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7752279","Offset: 34,690,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0139291 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7771167","Offset: 34,694,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0139402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7770322","Offset: 34,698,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0139530 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7773002","Offset: 34,702,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0139662 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7772541","Offset: 34,706,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0139786 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7771995","Offset: 34,710,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0139922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7790820","Offset: 34,714,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0140038 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7789791","Offset: 34,718,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0140170 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7792052","Offset: 34,722,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0140294 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7791306","Offset: 34,726,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0140422 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7792833","Offset: 34,731,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0140567 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7792364","Offset: 34,735,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0140699 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7812720","Offset: 34,739,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0140810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7811334","Offset: 34,743,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0140942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7850958","Offset: 34,747,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0141108 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7852004","Offset: 34,751,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0141224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7854256","Offset: 34,755,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0141352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7865806","Offset: 34,759,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0141480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7866864","Offset: 34,763,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0141608 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7867824","Offset: 34,767,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0141740 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7870329","Offset: 34,771,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0141855 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7880825","Offset: 34,776,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0141979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7882536","Offset: 34,780,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0142107 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7883364","Offset: 34,784,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0142235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7886448","Offset: 34,788,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0142346 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7896287","Offset: 34,792,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0142495 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7898088","Offset: 34,796,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0142644 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7898677","Offset: 34,800,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0142772 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7901212","Offset: 34,804,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0142913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7909506","Offset: 34,808,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0143046 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7919626","Offset: 34,812,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0143156 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7921372","Offset: 34,817,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0143280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7930024","Offset: 34,821,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0143408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7931816","Offset: 34,825,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0143532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7934295","Offset: 34,829,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0143660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7944002","Offset: 34,833,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0143771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7945358","Offset: 34,837,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0143899 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7946084","Offset: 34,841,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0144027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7949488","Offset: 34,845,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0144155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7958905","Offset: 34,849,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0144279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7960099","Offset: 34,853,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0144424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7962549","Offset: 34,857,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0144539 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7963658","Offset: 34,862,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0144680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7974679","Offset: 34,866,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0144987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7975741","Offset: 34,870,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0145132 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7978694","Offset: 34,874,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0145277 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7987261","Offset: 34,878,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0145392 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7988405","Offset: 34,882,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0145529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7989885","Offset: 34,886,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0145661 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.7992591","Offset: 34,890,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0145789 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8002732","Offset: 34,894,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0145917 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8003893","Offset: 34,898,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0146049 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8007648","Offset: 34,903,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0146164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8013062","Offset: 34,907,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0146292 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8014769","Offset: 34,911,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0146425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8016087","Offset: 34,915,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0146553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8022905","Offset: 34,919,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0146676 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8024041","Offset: 34,923,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0146792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8026621","Offset: 34,927,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0146924 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8032262","Offset: 34,931,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0147052 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8033410","Offset: 34,935,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0147180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8035923","Offset: 34,939,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0147312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8040877","Offset: 34,944,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0147462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8042229","Offset: 34,948,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0147581 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8043910","Offset: 34,952,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0147705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8050045","Offset: 34,956,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0147837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8051321","Offset: 34,960,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0147969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8051974","Offset: 34,964,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0148093 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8055063","Offset: 34,968,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0148212 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8058532","Offset: 34,972,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0148358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8059607","Offset: 34,976,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0148486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8062064","Offset: 34,980,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0148618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8065559","Offset: 34,984,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0148733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8067347","Offset: 34,989,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0148857 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8068038","Offset: 34,993,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0148993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8069553","Offset: 34,997,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0149121 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8073952","Offset: 35,001,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0149245 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8075454","Offset: 35,005,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0149377 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8076239","Offset: 35,009,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0149510 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8080518","Offset: 35,013,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0149655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8081593","Offset: 35,017,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0149783 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8083615","Offset: 35,021,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0149911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8082630","Offset: 35,025,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0150047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8086620","Offset: 35,030,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0150179 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8086142","Offset: 35,034,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0150307 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8085643","Offset: 35,038,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0150440 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8084789","Offset: 35,042,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0150572 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8084349","Offset: 35,046,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0150700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8083893","Offset: 35,050,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0150836 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8083386","Offset: 35,054,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0150999 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8092426","Offset: 35,058,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0151148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8091966","Offset: 35,062,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0151302 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8091406","Offset: 35,066,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0151417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8090988","Offset: 35,070,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0151583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8090340","Offset: 35,075,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0151818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8089777","Offset: 35,079,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0152027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8089265","Offset: 35,083,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0152257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8088702","Offset: 35,087,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0152441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8088206","Offset: 35,091,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0152650 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8087682","Offset: 35,095,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0152855 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8087063","Offset: 35,099,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0153059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8086539","Offset: 35,103,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0153260 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8084435","Offset: 35,107,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0153478 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8090348","Offset: 35,111,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0153661 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8085608","Offset: 35,116,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0153857 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8084879","Offset: 35,120,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0154079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8084290","Offset: 35,124,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0154288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8092606","Offset: 35,128,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0154489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8091266","Offset: 35,132,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0154676 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8090682","Offset: 35,136,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0154920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8090058","Offset: 35,140,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0155129 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8101407","Offset: 35,144,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0155359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8100832","Offset: 35,148,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0155581 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8100153","Offset: 35,152,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0155726 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8099697","Offset: 35,156,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0155841 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8099202","Offset: 35,161,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0155969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8098754","Offset: 35,165,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0156097 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8098302","Offset: 35,169,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0156225 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8097751","Offset: 35,173,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0156353 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8097303","Offset: 35,177,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0156464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8096877","Offset: 35,181,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0156596 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8096429","Offset: 35,185,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0156724 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8095985","Offset: 35,189,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0156852 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8095537","Offset: 35,193,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0156980 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8095017","Offset: 35,197,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0157113 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8094559","Offset: 35,202,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0157245 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8094107","Offset: 35,206,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0157369 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8093574","Offset: 35,210,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0157501 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8092998","Offset: 35,214,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0157629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8092371","Offset: 35,218,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0157757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8091923","Offset: 35,222,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0157872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8091496","Offset: 35,226,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0158000 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8091048","Offset: 35,230,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0158124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8090613","Offset: 35,234,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0158269 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8089841","Offset: 35,238,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0158384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8089410","Offset: 35,243,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0158512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8088885","Offset: 35,247,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0158644 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8087904","Offset: 35,251,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0158772 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8109297","Offset: 35,255,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0158900 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8108755","Offset: 35,259,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0159011 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8108303","Offset: 35,263,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0159144 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8107850","Offset: 35,267,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0159272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8107385","Offset: 35,271,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0159400 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8106924","Offset: 35,275,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0159528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8106446","Offset: 35,279,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0159660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8105858","Offset: 35,283,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0159775 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8105440","Offset: 35,288,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0159920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8104992","Offset: 35,292,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0160052 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8104540","Offset: 35,296,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0160180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8104092","Offset: 35,300,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0160308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8103580","Offset: 35,304,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0160419 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8103119","Offset: 35,308,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0160552 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8102632","Offset: 35,312,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0160675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8102197","Offset: 35,316,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0160812 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8101749","Offset: 35,320,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0160923 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8101139","Offset: 35,324,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0161068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8100678","Offset: 35,329,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0161204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8100231","Offset: 35,333,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0161332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8099787","Offset: 35,337,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0161456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8099351","Offset: 35,341,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0161640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8098847","Offset: 35,345,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0161806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8098297","Offset: 35,349,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0161968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8097811","Offset: 35,353,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0162100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8097368","Offset: 35,357,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0162246 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8096902","Offset: 35,361,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0162386 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8096356","Offset: 35,365,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0162510 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8106959","Offset: 35,369,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0162638 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8106340","Offset: 35,374,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0162770 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8105760","Offset: 35,378,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0162903 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8115462","Offset: 35,382,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0163048 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8114997","Offset: 35,386,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0163167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8114553","Offset: 35,390,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0163304 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8114079","Offset: 35,394,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0163432 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8113542","Offset: 35,398,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0163560 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8113094","Offset: 35,402,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0163696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8112642","Offset: 35,406,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0163854 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8112147","Offset: 35,410,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0163969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8111695","Offset: 35,415,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0164097 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8111102","Offset: 35,419,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0164238 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8110637","Offset: 35,423,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0164375 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8110163","Offset: 35,427,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0164503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8109706","Offset: 35,431,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0164622 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8109246","Offset: 35,435,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0164763 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8108699","Offset: 35,439,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0164908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8108222","Offset: 35,443,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0165053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8107748","Offset: 35,447,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0165190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8107278","Offset: 35,451,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0165330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8106814","Offset: 35,456,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0165450 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8106327","Offset: 35,460,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0165586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8105265","Offset: 35,464,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0165727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8104676","Offset: 35,468,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0165855 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8253920","Offset: 35,472,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0166017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8254978","Offset: 35,476,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0166214 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8257444","Offset: 35,480,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0166435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8259373","Offset: 35,484,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0166640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8268619","Offset: 35,488,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0166794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8269800","Offset: 35,492,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0166930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8271047","Offset: 35,496,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0167067 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8274024","Offset: 35,501,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0167186 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8283945","Offset: 35,505,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0167327 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8285071","Offset: 35,509,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0167442 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8286573","Offset: 35,513,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0167562 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8289000","Offset: 35,517,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0167686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8299880","Offset: 35,521,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0167796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8301490","Offset: 35,525,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0167976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8300883","Offset: 35,529,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0168163 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8304190","Offset: 35,533,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0168279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8313538","Offset: 35,537,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0168436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8314994","Offset: 35,542,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0168808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8315654","Offset: 35,546,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0169183 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8319819","Offset: 35,550,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0169397 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8328599","Offset: 35,554,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0169529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8330037","Offset: 35,558,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0169657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8330967","Offset: 35,562,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0169785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8334112","Offset: 35,566,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0169909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8343456","Offset: 35,570,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0170079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8344698","Offset: 35,574,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0170207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8346447","Offset: 35,578,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0170344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8348938","Offset: 35,582,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0170480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8358129","Offset: 35,587,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0170608 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8359234","Offset: 35,591,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0170728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8360804","Offset: 35,595,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0170851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8363843","Offset: 35,599,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0170979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8373690","Offset: 35,603,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0171103 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8374833","Offset: 35,607,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0171240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8376407","Offset: 35,611,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0171355 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8379339","Offset: 35,615,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0171479 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8388315","Offset: 35,619,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0171607 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8389446","Offset: 35,623,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0171735 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8392002","Offset: 35,628,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0171863 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8393141","Offset: 35,632,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0171974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8403304","Offset: 35,636,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0172106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8404431","Offset: 35,640,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0172238 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8405916","Offset: 35,644,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0172375 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8408420","Offset: 35,648,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0172503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8419257","Offset: 35,652,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0172639 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8420440","Offset: 35,656,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0172754 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8421242","Offset: 35,660,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0172878 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8424160","Offset: 35,664,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0173023 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8433794","Offset: 35,668,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0173151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8435160","Offset: 35,673,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0173283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8435907","Offset: 35,677,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0173420 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8438658","Offset: 35,681,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0173574 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8448599","Offset: 35,685,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0173778 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8449679","Offset: 35,689,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0173996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8451535","Offset: 35,693,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0174201 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8452862","Offset: 35,697,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0174410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8463810","Offset: 35,701,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0174598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8464902","Offset: 35,705,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0174909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8465837","Offset: 35,709,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0175122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8467740","Offset: 35,714,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0175327 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8478518","Offset: 35,718,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0175528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8479609","Offset: 35,722,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0175707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8481060","Offset: 35,726,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0175916 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8483428","Offset: 35,730,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0176125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8493093","Offset: 35,734,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0176351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8494117","Offset: 35,738,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0176556 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8495332","Offset: 35,742,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0176769 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8497679","Offset: 35,746,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0176953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8508166","Offset: 35,750,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0177170 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8509251","Offset: 35,755,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0177405 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8510633","Offset: 35,759,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0177606 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8513017","Offset: 35,763,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0177793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8523322","Offset: 35,767,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0177994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8524422","Offset: 35,771,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0178143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8525161","Offset: 35,775,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0178288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8528596","Offset: 35,779,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0178425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8537598","Offset: 35,783,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0178544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8538823","Offset: 35,787,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0178672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8540056","Offset: 35,791,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0178805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8542551","Offset: 35,795,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0178933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8553316","Offset: 35,800,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0179056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8554477","Offset: 35,804,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0179171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8555676","Offset: 35,808,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0179304 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8558146","Offset: 35,812,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0179432 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8568356","Offset: 35,816,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0179564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8569504","Offset: 35,820,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0179688 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8571181","Offset: 35,824,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0179820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8572243","Offset: 35,828,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0179935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8582684","Offset: 35,832,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0180063 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8583943","Offset: 35,836,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0180195 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8585479","Offset: 35,841,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0180306 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8587420","Offset: 35,845,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0180443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8599123","Offset: 35,849,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0180592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8600566","Offset: 35,853,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0180720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8601159","Offset: 35,857,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0180844 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8604342","Offset: 35,861,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0180976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8613200","Offset: 35,865,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0181091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8614394","Offset: 35,869,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0181215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8615721","Offset: 35,873,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0181343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8618140","Offset: 35,877,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0181471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8628623","Offset: 35,881,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0181595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8629745","Offset: 35,886,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0181710 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8630407","Offset: 35,890,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0181847 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8633316","Offset: 35,894,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0181975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8643608","Offset: 35,898,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0182103 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8645408","Offset: 35,902,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0182231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8646057","Offset: 35,906,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0182363 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8648689","Offset: 35,910,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0182482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8658384","Offset: 35,914,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0182606 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8660167","Offset: 35,918,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0182755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8660807","Offset: 35,922,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0182875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8663380","Offset: 35,927,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0183024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8673151","Offset: 35,931,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0183157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8674246","Offset: 35,935,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0183285 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8675471","Offset: 35,939,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0183413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8677958","Offset: 35,943,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0183549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8687943","Offset: 35,947,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0183664 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8689454","Offset: 35,951,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0183809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8691480","Offset: 35,955,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0183942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8692926","Offset: 35,959,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0184070 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8703665","Offset: 35,963,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0184198 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8704915","Offset: 35,968,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0184309 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8706417","Offset: 35,972,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0184441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8708350","Offset: 35,976,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0184590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8718642","Offset: 35,980,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0184906 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8719580","Offset: 35,984,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0185051 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8721082","Offset: 35,988,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0185200 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8724026","Offset: 35,992,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0185320 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8733681","Offset: 35,996,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0185461 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8734773","Offset: 36,000,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0185631 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8736374","Offset: 36,004,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0185772 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8738789","Offset: 36,008,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0185900 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8750027","Offset: 36,013,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0186011 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8752958","Offset: 36,017,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0186143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8751388","Offset: 36,021,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0186271 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8753761","Offset: 36,025,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0186403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8761663","Offset: 36,029,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0186544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8763762","Offset: 36,033,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0186694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8765724","Offset: 36,037,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0186830 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8774753","Offset: 36,041,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0186975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8776472","Offset: 36,045,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0187103 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8779736","Offset: 36,049,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0187248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8786482","Offset: 36,054,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0187389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8788982","Offset: 36,058,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0187517 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8789997","Offset: 36,062,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0187649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8798335","Offset: 36,066,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0187777 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8799841","Offset: 36,070,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0187935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8802810","Offset: 36,074,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0188191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8809957","Offset: 36,078,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0188328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8812534","Offset: 36,082,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0188447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8814377","Offset: 36,086,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0188575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8822561","Offset: 36,090,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0188707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8825095","Offset: 36,094,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0188857 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8826016","Offset: 36,099,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0188981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8834042","Offset: 36,103,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0189096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8835723","Offset: 36,107,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0189228 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8838484","Offset: 36,111,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0189356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8845695","Offset: 36,115,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0189480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8848169","Offset: 36,119,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0189629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8849573","Offset: 36,123,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0189761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8857488","Offset: 36,127,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0189894 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8860013","Offset: 36,131,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0190017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8861025","Offset: 36,135,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0190150 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8869826","Offset: 36,140,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0190278 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8872770","Offset: 36,144,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0190401 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8873731","Offset: 36,148,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0190512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8881624","Offset: 36,152,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0190649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8884158","Offset: 36,156,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0190777 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8885157","Offset: 36,160,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0190918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8893366","Offset: 36,164,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0191033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8895845","Offset: 36,168,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0191161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8896899","Offset: 36,172,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0191293 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8905313","Offset: 36,176,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0191421 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8908197","Offset: 36,180,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0191545 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8909161","Offset: 36,185,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0191660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8917639","Offset: 36,189,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0191788 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8920165","Offset: 36,193,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0191916 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8921232","Offset: 36,197,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0192061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8930123","Offset: 36,201,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0192189 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8932683","Offset: 36,205,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0192321 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8934100","Offset: 36,209,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0192445 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8942164","Offset: 36,213,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0192573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8945057","Offset: 36,217,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0192701 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8946055","Offset: 36,221,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0192829 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8953961","Offset: 36,226,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0192970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8956419","Offset: 36,230,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0193085 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8957434","Offset: 36,234,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0193217 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8966228","Offset: 36,238,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0193345 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8968912","Offset: 36,242,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0193469 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8969735","Offset: 36,246,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0193614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8978217","Offset: 36,250,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0193763 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8980266","Offset: 36,254,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0193917 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8981554","Offset: 36,258,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0194054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8989805","Offset: 36,262,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0194177 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8992302","Offset: 36,267,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0194293 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.8993287","Offset: 36,271,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0194425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9001914","Offset: 36,275,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0194549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9002947","Offset: 36,279,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0194681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9006074","Offset: 36,283,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0194809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9013844","Offset: 36,287,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0194941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9016315","Offset: 36,291,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0195061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9017662","Offset: 36,295,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0195184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9025569","Offset: 36,299,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0195325 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9028035","Offset: 36,303,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0195453 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9029200","Offset: 36,307,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0195577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9037605","Offset: 36,312,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0195696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9038877","Offset: 36,316,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0195871 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9041855","Offset: 36,320,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0196076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9049104","Offset: 36,324,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0196281 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9050691","Offset: 36,328,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0196481 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9052458","Offset: 36,332,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0196695 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9061127","Offset: 36,336,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0196895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9063474","Offset: 36,340,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0197100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9064809","Offset: 36,344,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0197301 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9072907","Offset: 36,348,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0197505 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9074252","Offset: 36,353,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0197706 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9076871","Offset: 36,357,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0197889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9083690","Offset: 36,361,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0198098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9085678","Offset: 36,365,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0198307 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9088204","Offset: 36,369,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0198508 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9095431","Offset: 36,373,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0198704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9097804","Offset: 36,377,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0198913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9104370","Offset: 36,381,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0199097 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9107438","Offset: 36,385,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0199327 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9115250","Offset: 36,389,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0199536 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9116185","Offset: 36,393,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0199741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9118352","Offset: 36,398,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0199929 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9119521","Offset: 36,402,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0200095 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9129992","Offset: 36,406,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0200249 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9131186","Offset: 36,410,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0200377 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9132304","Offset: 36,414,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0200505 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9135013","Offset: 36,418,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0200629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9144613","Offset: 36,422,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0200757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9146145","Offset: 36,426,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0200885 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9147164","Offset: 36,430,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0201030 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9149980","Offset: 36,434,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0201153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9160050","Offset: 36,439,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0201286 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9161564","Offset: 36,443,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0201418 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9163054","Offset: 36,447,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0201546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9172910","Offset: 36,451,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0201674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9174057","Offset: 36,455,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0201802 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9175252","Offset: 36,459,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0201960 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9178034","Offset: 36,463,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0202096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9187899","Offset: 36,467,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0202233 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9188991","Offset: 36,471,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0202357 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9190040","Offset: 36,475,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0202489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9193091","Offset: 36,480,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0202613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9203284","Offset: 36,484,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0202728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9204086","Offset: 36,488,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0202860 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9205550","Offset: 36,492,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0202984 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9207585","Offset: 36,496,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0203112 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9216873","Offset: 36,500,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0203240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9218601","Offset: 36,504,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0203355 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9220492","Offset: 36,508,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0203483 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9228714","Offset: 36,512,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0203611 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9229866","Offset: 36,516,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0203735 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9232199","Offset: 36,520,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0203846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9240558","Offset: 36,525,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0203978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9241351","Offset: 36,529,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0204106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9245226","Offset: 36,533,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0204234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9252995","Offset: 36,537,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0204362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9253657","Offset: 36,541,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0204494 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9257424","Offset: 36,545,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0204609 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9264482","Offset: 36,549,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0204737 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9265501","Offset: 36,553,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0204865 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9269081","Offset: 36,557,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0204993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9276484","Offset: 36,561,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0205138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9277303","Offset: 36,566,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0205258 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9281113","Offset: 36,570,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0205390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9287359","Offset: 36,574,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0205518 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9289032","Offset: 36,578,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0205642 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9291003","Offset: 36,582,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0205766 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9299058","Offset: 36,586,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0205902 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9301298","Offset: 36,590,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0206017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9303901","Offset: 36,594,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0206141 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9311905","Offset: 36,598,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0206265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9312946","Offset: 36,602,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0206393 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9317110","Offset: 36,606,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0206517 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9324645","Offset: 36,611,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0206632 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9325247","Offset: 36,615,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0206764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9328144","Offset: 36,619,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0206909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9335991","Offset: 36,623,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0207041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9336836","Offset: 36,627,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0207169 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9339494","Offset: 36,631,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0207302 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9348381","Offset: 36,635,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0207417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9349029","Offset: 36,639,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0207545 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9351133","Offset: 36,643,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0207673 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9360212","Offset: 36,647,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0207818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9360865","Offset: 36,652,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0207946 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9365004","Offset: 36,656,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0208057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9371766","Offset: 36,660,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0208189 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9372607","Offset: 36,664,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0208313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9376729","Offset: 36,668,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0208441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9383760","Offset: 36,672,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0208565 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9384797","Offset: 36,676,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0208693 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9388982","Offset: 36,680,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0208808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9396645","Offset: 36,684,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0208949 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9397580","Offset: 36,688,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0209077 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9400276","Offset: 36,692,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0209200 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9408379","Offset: 36,697,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0209328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9409216","Offset: 36,701,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0209439 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9413478","Offset: 36,705,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0209567 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9421772","Offset: 36,709,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0209691 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9422822","Offset: 36,713,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0209815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9426623","Offset: 36,717,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0209938 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9436851","Offset: 36,721,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0210071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9437776","Offset: 36,725,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0210182 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9440123","Offset: 36,729,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0210305 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9450764","Offset: 36,733,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0210433 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9452753","Offset: 36,738,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0210544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9456076","Offset: 36,742,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0210677 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9466367","Offset: 36,746,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0210800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9467298","Offset: 36,750,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0210945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9471125","Offset: 36,754,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0211078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9480865","Offset: 36,758,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0211231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9481937","Offset: 36,762,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0211351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9486096","Offset: 36,766,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0211474 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9495522","Offset: 36,770,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0211607 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9497326","Offset: 36,774,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0211730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9499759","Offset: 36,779,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0211858 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9511146","Offset: 36,783,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0211974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9511897","Offset: 36,787,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0212106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9514700","Offset: 36,791,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0212234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9525452","Offset: 36,795,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0212362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9526852","Offset: 36,799,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0212490 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9529121","Offset: 36,803,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0212622 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9540198","Offset: 36,807,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0212742 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9541111","Offset: 36,811,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0212865 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9543859","Offset: 36,815,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0212993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9555183","Offset: 36,819,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0213113 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9556125","Offset: 36,824,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0213262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9560187","Offset: 36,828,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0213394 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9680043","Offset: 36,832,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0213569 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9682359","Offset: 36,836,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0213685 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9686344","Offset: 36,840,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0213821 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9687586","Offset: 36,844,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0213945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9691993","Offset: 36,848,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0214077 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9696158","Offset: 36,852,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0214201 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9696883","Offset: 36,856,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0214316 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9700966","Offset: 36,860,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0214453 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9704797","Offset: 36,865,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0214581 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9705493","Offset: 36,869,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0214704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9709320","Offset: 36,873,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0214828 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9713211","Offset: 36,877,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0214960 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9713869","Offset: 36,881,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0215075 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9717547","Offset: 36,885,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0215203 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9721749","Offset: 36,889,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0215331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9722343","Offset: 36,893,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0215477 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9723856","Offset: 36,897,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0215617 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9726161","Offset: 36,901,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0215728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9728136","Offset: 36,905,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0215878 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9730453","Offset: 36,910,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0216023 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9731114","Offset: 36,914,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0216155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9733337","Offset: 36,918,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0216283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9744004","Offset: 36,922,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0216599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9747481","Offset: 36,926,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0216718 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9748437","Offset: 36,930,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0216859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9749004","Offset: 36,934,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0217017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9751300","Offset: 36,938,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0217145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9754867","Offset: 36,942,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0217273 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9757068","Offset: 36,946,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0217388 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9757879","Offset: 36,951,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0217529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9759778","Offset: 36,955,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0217661 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9764079","Offset: 36,959,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0217840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9763439","Offset: 36,963,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0218049 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9762829","Offset: 36,967,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0218288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9765538","Offset: 36,971,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0218480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9765154","Offset: 36,975,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0218685 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9764770","Offset: 36,979,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0218890 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9764074","Offset: 36,983,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0219099 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9763678","Offset: 36,987,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0219329 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9763234","Offset: 36,992,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0219509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9762828","Offset: 36,996,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0219722 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9766865","Offset: 37,000,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0219927 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9766463","Offset: 37,004,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0220127 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9766071","Offset: 37,008,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0220341 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9765653","Offset: 37,012,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0220541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9765145","Offset: 37,016,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0220720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9764762","Offset: 37,020,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0220891 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9764399","Offset: 37,024,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0221092 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9763925","Offset: 37,028,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0221271 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9763541","Offset: 37,032,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0221441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9762944","Offset: 37,037,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0221668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9767039","Offset: 37,041,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0221851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9766651","Offset: 37,045,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0222026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9766220","Offset: 37,049,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0222158 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9765901","Offset: 37,053,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0222282 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9765589","Offset: 37,057,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0222414 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9765248","Offset: 37,061,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0222529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9764890","Offset: 37,065,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0222657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9768222","Offset: 37,069,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0222802 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9767795","Offset: 37,073,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0222935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9767304","Offset: 37,078,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0223058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9766814","Offset: 37,082,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0223174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9766463","Offset: 37,086,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0223306 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9765930","Offset: 37,090,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0223434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9765546","Offset: 37,094,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0223562 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9771784","Offset: 37,098,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0223677 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9771494","Offset: 37,102,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0223822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9771174","Offset: 37,106,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0223963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9770841","Offset: 37,110,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0224091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9770483","Offset: 37,114,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0224215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9770180","Offset: 37,118,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0224330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9769881","Offset: 37,123,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0224466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9769562","Offset: 37,127,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0224599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9769254","Offset: 37,131,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0224727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9768883","Offset: 37,135,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0224850 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9768580","Offset: 37,139,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0224983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9768260","Offset: 37,143,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0225098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9767970","Offset: 37,147,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0225226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9767667","Offset: 37,151,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0225358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9767347","Offset: 37,155,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0225486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9766903","Offset: 37,159,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0225610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9766604","Offset: 37,164,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0225725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9766310","Offset: 37,168,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0225870 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9765982","Offset: 37,172,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0226015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9765589","Offset: 37,176,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0226143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9770940","Offset: 37,180,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0226271 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9770402","Offset: 37,184,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0226404 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9770060","Offset: 37,188,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0226519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9769693","Offset: 37,192,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0226668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9769263","Offset: 37,196,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0226830 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9773739","Offset: 37,200,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0226962 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9773432","Offset: 37,204,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0227090 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9773116","Offset: 37,209,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0227201 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9772787","Offset: 37,213,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0227334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9772479","Offset: 37,217,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0227479 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9772155","Offset: 37,221,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0227611 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9771844","Offset: 37,225,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0227739 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9771528","Offset: 37,229,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0227871 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9771140","Offset: 37,233,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0227982 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9770854","Offset: 37,237,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0228110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9770543","Offset: 37,241,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0228255 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9770227","Offset: 37,245,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0228383 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9769916","Offset: 37,250,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0228511 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9769425","Offset: 37,254,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0228622 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9769135","Offset: 37,258,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0228754 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9768815","Offset: 37,262,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0228878 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9768465","Offset: 37,266,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0229010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9775049","Offset: 37,270,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0229156 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9774723","Offset: 37,274,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0229288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9774404","Offset: 37,278,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0229403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9774041","Offset: 37,282,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0229531 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9773734","Offset: 37,286,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0229655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9773439","Offset: 37,291,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0229800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9773119","Offset: 37,295,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0229945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9772795","Offset: 37,299,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0230060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9772394","Offset: 37,303,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0230192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9772087","Offset: 37,307,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0230316 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9771784","Offset: 37,311,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0230448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9771469","Offset: 37,315,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0230564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9771127","Offset: 37,319,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0230687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9770739","Offset: 37,323,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0230820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9770312","Offset: 37,327,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0230948 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9775611","Offset: 37,331,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0231071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9775317","Offset: 37,336,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0231204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9775009","Offset: 37,340,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0231332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9774706","Offset: 37,344,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0231464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9774361","Offset: 37,348,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0231592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9773849","Offset: 37,352,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0231720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9773542","Offset: 37,356,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0231852 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9773214","Offset: 37,360,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0231963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9772855","Offset: 37,364,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0232091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9772454","Offset: 37,368,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0232215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9772083","Offset: 37,372,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0232343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9778837","Offset: 37,377,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0232466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9778539","Offset: 37,381,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0232599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9778227","Offset: 37,385,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0232731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9777924","Offset: 37,389,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0232855 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9777608","Offset: 37,393,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0232983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9777296","Offset: 37,397,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0233094 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9776934","Offset: 37,401,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0233222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9776627","Offset: 37,405,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0233354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9776315","Offset: 37,409,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0233482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9776008","Offset: 37,413,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0233610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9775697","Offset: 37,417,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0233725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9775360","Offset: 37,422,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0233853 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9775053","Offset: 37,426,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0233981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9774745","Offset: 37,430,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0234105 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9774442","Offset: 37,434,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0234233 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9774139","Offset: 37,438,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0234365 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9773645","Offset: 37,442,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0234480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9773355","Offset: 37,446,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0234604 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9773047","Offset: 37,450,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0234749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9772702","Offset: 37,454,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0234881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9772292","Offset: 37,458,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0235014 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9779396","Offset: 37,463,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0235142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9779093","Offset: 37,467,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0235278 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9778731","Offset: 37,471,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0235406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9778351","Offset: 37,475,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0235547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9778009","Offset: 37,479,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0235675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9777672","Offset: 37,483,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0235807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9776819","Offset: 37,487,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0235918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9776516","Offset: 37,491,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0236046 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9776158","Offset: 37,495,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0236174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9783249","Offset: 37,499,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0236302 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9782946","Offset: 37,504,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0236426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9782647","Offset: 37,508,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0236541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9782357","Offset: 37,512,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0236669 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9782012","Offset: 37,516,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0236801 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9781700","Offset: 37,520,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0236929 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9781397","Offset: 37,524,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0237057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9781095","Offset: 37,528,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0237194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9780766","Offset: 37,532,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0237309 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9780395","Offset: 37,536,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0237433 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9780091","Offset: 37,540,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0237565 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9779776","Offset: 37,544,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0237693 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9779473","Offset: 37,549,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0237817 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9779170","Offset: 37,553,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0237928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9778837","Offset: 37,557,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0238060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9778526","Offset: 37,561,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0238192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9778223","Offset: 37,565,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0238320 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9777912","Offset: 37,569,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0238453 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9777591","Offset: 37,573,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0238585 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9777271","Offset: 37,577,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0238704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9776734","Offset: 37,581,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0238832 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9776414","Offset: 37,585,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0239024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9776017","Offset: 37,590,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0239229 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9782724","Offset: 37,594,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0239434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9782323","Offset: 37,598,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0239617 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9781918","Offset: 37,602,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0239835 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9780650","Offset: 37,606,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0240036 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9780189","Offset: 37,610,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0240274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9779674","Offset: 37,614,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0240462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9779213","Offset: 37,618,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0240663 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9787349","Offset: 37,622,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0240872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9786939","Offset: 37,626,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0241077 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9786487","Offset: 37,630,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0241277 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9786091","Offset: 37,635,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0241461 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9785706","Offset: 37,639,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0241665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9785284","Offset: 37,643,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0241866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9784734","Offset: 37,647,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0242075 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9784264","Offset: 37,651,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0242280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9783842","Offset: 37,655,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0242489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9783449","Offset: 37,659,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0242672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9783087","Offset: 37,663,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0242898 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9782686","Offset: 37,667,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0243069 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9782332","Offset: 37,671,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0243214 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9781960","Offset: 37,676,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0243372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9781623","Offset: 37,680,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0243509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9781303","Offset: 37,684,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0243641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9780987","Offset: 37,688,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0243765 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9780688","Offset: 37,692,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0243901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9780288","Offset: 37,696,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0244012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9779993","Offset: 37,700,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0244140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9779690","Offset: 37,704,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0244277 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9779374","Offset: 37,708,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0244405 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9779054","Offset: 37,712,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0244533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9778704","Offset: 37,716,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0244644 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9777911","Offset: 37,721,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0244776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9784627","Offset: 37,725,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0244904 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9784221","Offset: 37,729,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0245049 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9783799","Offset: 37,733,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0245173 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9783372","Offset: 37,737,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0245305 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9782967","Offset: 37,741,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0245429 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9788919","Offset: 37,745,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0245557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9788595","Offset: 37,749,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0245685 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9788262","Offset: 37,753,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0245813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9787856","Offset: 37,757,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0245936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9787537","Offset: 37,762,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0246052 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9787221","Offset: 37,766,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0246184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9786897","Offset: 37,770,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0246312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9786568","Offset: 37,774,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0246440 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9786201","Offset: 37,778,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0246568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9785881","Offset: 37,782,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0246700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9785557","Offset: 37,786,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0246815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9785242","Offset: 37,790,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0246943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9784917","Offset: 37,794,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0247088 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9784563","Offset: 37,798,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0247216 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9784166","Offset: 37,803,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0247357 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9783829","Offset: 37,807,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0247472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9783522","Offset: 37,811,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0247600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9783198","Offset: 37,815,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0247728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9782831","Offset: 37,819,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0247856 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9943352","Offset: 37,823,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0247984 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9942439","Offset: 37,827,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0248117 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9944055","Offset: 37,831,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0248232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9943590","Offset: 37,835,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0248356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9951948","Offset: 37,839,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0248479 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9952807","Offset: 37,843,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0248607 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9954070","Offset: 37,848,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0248735 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9953651","Offset: 37,852,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0248846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9953216","Offset: 37,856,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0248983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9954897","Offset: 37,860,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0249128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9954223","Offset: 37,864,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0249256 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9965235","Offset: 37,868,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0249384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9964245","Offset: 37,872,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0249516 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9967198","Offset: 37,876,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0249636 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9966715","Offset: 37,880,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0249764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9965593","Offset: 37,884,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0249892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9974468","Offset: 37,889,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0250007 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9973619","Offset: 37,893,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0250135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9976281","Offset: 37,897,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0250263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9975816","Offset: 37,901,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0250391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9975257","Offset: 37,905,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0250514 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9984645","Offset: 37,909,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0250647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9983688","Offset: 37,913,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0250762 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9986739","Offset: 37,917,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0250886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9986223","Offset: 37,921,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0251014 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9985617","Offset: 37,925,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0251142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9987174","Offset: 37,929,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0251265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9996169","Offset: 37,934,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0251398 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9994389","Offset: 37,938,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0251556 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9997892","Offset: 37,942,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0251709 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9997385","Offset: 37,946,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0251837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9996911","Offset: 37,950,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0251961 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","1.9996360","Offset: 37,954,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0252093 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0005850","Offset: 37,958,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0252208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0006818","Offset: 37,962,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0252353 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0008845","Offset: 37,966,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0252554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0007688","Offset: 37,970,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0252767 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0007074","Offset: 37,975,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0252908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0009007","Offset: 37,979,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0253036 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0017156","Offset: 37,983,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0253164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0016218","Offset: 37,987,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0253288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0019507","Offset: 37,991,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0253420 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0018991","Offset: 37,995,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0253535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0018394","Offset: 37,999,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0253659 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0027055","Offset: 38,003,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0253787 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0026112","Offset: 38,007,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0253911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0028778","Offset: 38,011,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0254056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0028237","Offset: 38,016,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0254167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0027516","Offset: 38,020,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0254299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0029146","Offset: 38,024,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0254423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0038174","Offset: 38,028,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0254551 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0036616","Offset: 38,032,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0254679 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0039778","Offset: 38,036,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0254815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0039275","Offset: 38,040,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0254926 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0038725","Offset: 38,044,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0255050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0047927","Offset: 38,048,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0255182 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0046362","Offset: 38,052,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0255306 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0049899","Offset: 38,056,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0255430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0049399","Offset: 38,061,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0255545 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0048939","Offset: 38,065,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0255677 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0048239","Offset: 38,069,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0255805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0058210","Offset: 38,073,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0255937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0057285","Offset: 38,077,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0256061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0060318","Offset: 38,081,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0256228 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0059161","Offset: 38,085,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0256343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0058602","Offset: 38,089,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0256466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0060737","Offset: 38,093,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0256594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0069351","Offset: 38,097,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0256722 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0068425","Offset: 38,102,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0256846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0071458","Offset: 38,106,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0256957 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0070963","Offset: 38,110,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0257089 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0070328","Offset: 38,114,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0257217 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0078558","Offset: 38,118,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0257345 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0077628","Offset: 38,122,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0257473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0080641","Offset: 38,126,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0257601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0080116","Offset: 38,130,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0257717 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0079522","Offset: 38,134,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0257840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0084890","Offset: 38,138,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0257968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0085650","Offset: 38,142,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0258092 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0086520","Offset: 38,147,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0258216 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0094468","Offset: 38,151,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0258331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0093500","Offset: 38,155,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0258463 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0096346","Offset: 38,159,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0258591 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0095766","Offset: 38,163,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0258745 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0094652","Offset: 38,167,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0258877 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0103612","Offset: 38,171,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0259009 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0102669","Offset: 38,175,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0259129 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0105766","Offset: 38,179,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0259257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0105293","Offset: 38,183,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0259385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0103945","Offset: 38,188,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0259500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0112854","Offset: 38,192,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0259662 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0111697","Offset: 38,196,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0259803 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0114919","Offset: 38,200,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0259935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0114296","Offset: 38,204,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0260072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0113685","Offset: 38,208,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0260208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0122706","Offset: 38,212,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0260324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0121745","Offset: 38,216,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0260456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0124523","Offset: 38,220,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0260635 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0123759","Offset: 38,224,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0260848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0122923","Offset: 38,228,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0261057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0131597","Offset: 38,233,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0261241 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0130547","Offset: 38,237,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0261450 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0133333","Offset: 38,241,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0261659 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0132745","Offset: 38,245,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0261889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0131499","Offset: 38,249,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0262098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0140792","Offset: 38,253,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0262282 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0139772","Offset: 38,257,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0262487 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0142942","Offset: 38,261,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0262692 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0142011","Offset: 38,265,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0262905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0141342","Offset: 38,269,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0263088 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0150042","Offset: 38,274,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0263297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0148912","Offset: 38,278,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0263506 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0151391","Offset: 38,282,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0263716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0150801","Offset: 38,286,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0263916 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0150144","Offset: 38,290,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0264364 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0159254","Offset: 38,294,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0264552 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0158255","Offset: 38,298,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0264748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0161233","Offset: 38,302,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0264893 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0160730","Offset: 38,306,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0265021 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0160141","Offset: 38,310,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0265145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0161613","Offset: 38,315,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0265260 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0170100","Offset: 38,319,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0265461 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0168503","Offset: 38,323,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0265597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0171840","Offset: 38,327,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0265742 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0171358","Offset: 38,331,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0265870 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0170863","Offset: 38,335,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0266020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0170248","Offset: 38,339,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0266135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0180681","Offset: 38,343,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0266258 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0179448","Offset: 38,347,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0266386 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0182772","Offset: 38,351,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0266510 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0181684","Offset: 38,355,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0266638 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0181172","Offset: 38,360,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0266749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0183557","Offset: 38,364,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0266877 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0183032","Offset: 38,368,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0267005 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0192188","Offset: 38,372,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0267133 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0191267","Offset: 38,376,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0267261 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0193797","Offset: 38,380,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0267393 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0193212","Offset: 38,384,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0267513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0192491","Offset: 38,388,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0267637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0202073","Offset: 38,392,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0267765 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0201118","Offset: 38,396,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0267901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0204485","Offset: 38,401,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0268033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0203819","Offset: 38,405,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0268166 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0203204","Offset: 38,409,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0268315 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0211674","Offset: 38,413,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0268443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0210488","Offset: 38,417,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0268592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0213424","Offset: 38,421,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0268720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0212886","Offset: 38,425,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0268840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0212186","Offset: 38,429,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0268985 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0213722","Offset: 38,433,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0269113 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0223138","Offset: 38,437,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0269237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0221589","Offset: 38,441,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0269352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0224999","Offset: 38,446,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0269480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0224538","Offset: 38,450,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0269608 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0224034","Offset: 38,454,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0269740 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0223459","Offset: 38,458,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0269864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0233400","Offset: 38,462,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0270000 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0232474","Offset: 38,466,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0270116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0235371","Offset: 38,470,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0270248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0234347","Offset: 38,474,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0270376 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0233749","Offset: 38,478,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0270500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0242905","Offset: 38,482,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0270623 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0241929","Offset: 38,487,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0270738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0245027","Offset: 38,491,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0270871 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0243960","Offset: 38,495,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0270999 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0243384","Offset: 38,499,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0271127 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0252706","Offset: 38,503,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0271250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0251726","Offset: 38,507,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0271396 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0254792","Offset: 38,511,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0271506 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0254281","Offset: 38,515,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0271630 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0253129","Offset: 38,519,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0271788 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0255109","Offset: 38,523,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0271903 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0263117","Offset: 38,528,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0272010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0262191","Offset: 38,532,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0272117 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0264841","Offset: 38,536,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0272236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0264295","Offset: 38,540,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0272347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0263531","Offset: 38,544,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0272454 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0272977","Offset: 38,548,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0272577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0272039","Offset: 38,552,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0272710 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0275034","Offset: 38,556,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0272825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0274535","Offset: 38,560,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0272953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0273886","Offset: 38,564,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0273077 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0282423","Offset: 38,568,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0273205 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0281323","Offset: 38,573,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0273333 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0284105","Offset: 38,577,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0273461 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0283529","Offset: 38,581,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0273576 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0282820","Offset: 38,585,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0273704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0284442","Offset: 38,589,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0273853 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0294260","Offset: 38,593,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0273977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0292642","Offset: 38,597,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0274126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0295723","Offset: 38,601,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0274237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0295279","Offset: 38,605,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0274387 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0294673","Offset: 38,609,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0274532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0303688","Offset: 38,614,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0274677 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0302067","Offset: 38,618,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0274805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0305621","Offset: 38,622,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0274933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0305118","Offset: 38,626,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0275044 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0304542","Offset: 38,630,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0275172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0303979","Offset: 38,634,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0275300 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0314462","Offset: 38,638,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0275423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0313498","Offset: 38,642,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0275551 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0316485","Offset: 38,646,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0275679 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0315410","Offset: 38,650,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0275812 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0314863","Offset: 38,654,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0275940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0316860","Offset: 38,659,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0276085 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0324830","Offset: 38,663,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0276221 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0323832","Offset: 38,667,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0276379 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0326063","Offset: 38,671,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0276490 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0327109","Offset: 38,675,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0276618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0326447","Offset: 38,679,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0276746 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0334072","Offset: 38,683,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0276870 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0333124","Offset: 38,687,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0276998 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0335783","Offset: 38,691,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0277113 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0335164","Offset: 38,695,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0277245 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0334426","Offset: 38,700,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0277386 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0343830","Offset: 38,704,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0277518 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0342716","Offset: 38,708,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0277642 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0345891","Offset: 38,712,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0277774 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0345379","Offset: 38,716,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0277889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0344794","Offset: 38,720,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0278017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0353242","Offset: 38,724,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0278150 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0352324","Offset: 38,728,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0278273 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0355039","Offset: 38,732,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0278406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0354500","Offset: 38,736,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0278521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0353792","Offset: 38,740,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0278649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0355397","Offset: 38,745,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0278777 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0364899","Offset: 38,749,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0278909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0363312","Offset: 38,753,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0279024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0366401","Offset: 38,757,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0279148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0365923","Offset: 38,761,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0279272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0365359","Offset: 38,765,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0279400 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0374665","Offset: 38,769,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0279524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0373048","Offset: 38,773,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0279635 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0376503","Offset: 38,777,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0279780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0376017","Offset: 38,781,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0279925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0375514","Offset: 38,786,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0280053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0374968","Offset: 38,790,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0280176 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0385136","Offset: 38,794,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0280313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0384163","Offset: 38,798,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0280432 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0387094","Offset: 38,802,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0280556 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0386053","Offset: 38,806,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0280684 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0385485","Offset: 38,810,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0280812 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0394334","Offset: 38,814,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0280932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0393391","Offset: 38,818,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0281047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0396391","Offset: 38,822,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0281175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0395887","Offset: 38,827,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0281307 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0394748","Offset: 38,831,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0281435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0403956","Offset: 38,835,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0281563 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0403030","Offset: 38,839,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0281704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0405905","Offset: 38,843,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0281815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0405419","Offset: 38,847,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0281947 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0404306","Offset: 38,851,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0282096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0413228","Offset: 38,855,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0282220 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0412263","Offset: 38,859,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0282352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0415532","Offset: 38,863,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0282480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0414887","Offset: 38,867,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0282625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0414111","Offset: 38,872,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0282830 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0422371","Offset: 38,876,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0283039 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0421270","Offset: 38,880,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0283227 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0424295","Offset: 38,884,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0283428 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0423723","Offset: 38,888,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0283641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0423058","Offset: 38,892,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0283846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0431710","Offset: 38,896,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0284051 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0430712","Offset: 38,900,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0284230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0433195","Offset: 38,904,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0284447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0432594","Offset: 38,908,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0284652 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0433852","Offset: 38,913,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0284853 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0433131","Offset: 38,917,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0285053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0442480","Offset: 38,921,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0285271 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0441263","Offset: 38,925,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0285454 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0444485","Offset: 38,929,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0285655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0443606","Offset: 38,933,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0285864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0443043","Offset: 38,937,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0286069 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0442445","Offset: 38,941,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0286269 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0452784","Offset: 38,945,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0286448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0451491","Offset: 38,949,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0286653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0454763","Offset: 38,953,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0286854 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0453547","Offset: 38,958,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0287054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0452937","Offset: 38,962,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0287255 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0454870","Offset: 38,966,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0287413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0480342","Offset: 38,970,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0287528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0479335","Offset: 38,974,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0287656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0481600","Offset: 38,978,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0287788 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0482236","Offset: 38,982,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0287916 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0496884","Offset: 38,986,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0288040 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0495954","Offset: 38,990,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0288172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0498441","Offset: 38,994,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0288304 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0497302","Offset: 38,999,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0288428 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0518234","Offset: 39,003,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0288556 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0520637","Offset: 39,007,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0288684 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0521272","Offset: 39,011,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0288816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0533078","Offset: 39,015,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0288927 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0543766","Offset: 39,019,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0289060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0546210","Offset: 39,023,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0289183 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0559212","Offset: 39,027,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0289303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0571866","Offset: 39,031,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0289431 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0583267","Offset: 39,035,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0289559 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0586893","Offset: 39,040,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0289687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0599659","Offset: 39,044,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0289819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0602147","Offset: 39,048,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0289951 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0615318","Offset: 39,052,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0290067 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0617221","Offset: 39,056,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0290190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0629757","Offset: 39,060,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0290357 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0530492","Offset: 39,064,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0290472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0533095","Offset: 39,068,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0290604 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0543455","Offset: 39,072,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0290732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0549863","Offset: 39,076,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0290864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0566546","Offset: 39,080,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0290988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0572541","Offset: 39,085,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0291120 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0582862","Offset: 39,089,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0291231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0588400","Offset: 39,093,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0291359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0599297","Offset: 39,097,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0291487 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0604067","Offset: 39,101,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0291615 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0614964","Offset: 39,105,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0291735 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0620152","Offset: 39,109,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0291850 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0630648","Offset: 39,113,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0291978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0631485","Offset: 39,117,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0292102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0635866","Offset: 39,121,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0292230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0645099","Offset: 39,126,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0292341 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0646358","Offset: 39,130,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0292481 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0649563","Offset: 39,134,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0292631 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0658633","Offset: 39,138,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0292772 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0659640","Offset: 39,142,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0292895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0663297","Offset: 39,146,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0293006 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0672321","Offset: 39,150,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0293139 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0673289","Offset: 39,154,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0293267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0675098","Offset: 39,158,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0293390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0677744","Offset: 39,162,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0293514 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0687916","Offset: 39,166,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0293646 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0689499","Offset: 39,171,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0293766 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0691491","Offset: 39,175,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0293889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0701484","Offset: 39,179,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0294017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0702662","Offset: 39,183,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0294145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0705644","Offset: 39,187,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0294269 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0714390","Offset: 39,191,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0294380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0715594","Offset: 39,195,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0294512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0718056","Offset: 39,199,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0294640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0727127","Offset: 39,203,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0294768 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0729115","Offset: 39,207,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0294896 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0730489","Offset: 39,212,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0295046 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0733573","Offset: 39,216,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0295161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0743570","Offset: 39,220,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0295285 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0744756","Offset: 39,224,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0295417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0746454","Offset: 39,228,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0295541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0749321","Offset: 39,232,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0295664 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0760292","Offset: 39,236,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0295780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0761430","Offset: 39,240,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0295908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0764553","Offset: 39,244,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0296053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0765569","Offset: 39,248,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0296202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0776312","Offset: 39,252,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0296326 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0777477","Offset: 39,257,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0296458 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0786796","Offset: 39,261,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0296573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0788567","Offset: 39,265,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0296697 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0799992","Offset: 39,269,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0296829 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0801140","Offset: 39,273,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0296957 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0803671","Offset: 39,277,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0297081 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0805880","Offset: 39,281,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0297192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0816722","Offset: 39,285,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0297324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0817879","Offset: 39,289,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0297452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0820396","Offset: 39,293,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0297576 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0821953","Offset: 39,298,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0297704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0833959","Offset: 39,302,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0297836 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0835112","Offset: 39,306,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0297951 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0836669","Offset: 39,310,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0298075 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0839105","Offset: 39,314,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0298216 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0849332","Offset: 39,318,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0298344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0851171","Offset: 39,322,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0298468 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0852451","Offset: 39,326,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0298583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0855792","Offset: 39,330,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0298711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0865998","Offset: 39,334,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0298839 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0867739","Offset: 39,339,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0298984 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0870256","Offset: 39,343,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0299095 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0879037","Offset: 39,347,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0299227 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0880249","Offset: 39,351,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0299355 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0883274","Offset: 39,355,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0299479 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0891849","Offset: 39,359,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0299603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0893104","Offset: 39,363,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0299718 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0896099","Offset: 39,367,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0299846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0897686","Offset: 39,371,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0299978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0909765","Offset: 39,375,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0300123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0910819","Offset: 39,379,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0300247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0913439","Offset: 39,384,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0300379 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0914886","Offset: 39,388,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0300494 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0925433","Offset: 39,392,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0300622 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0926747","Offset: 39,396,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0300793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0929814","Offset: 39,400,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0300929 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0938438","Offset: 39,404,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0301070 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0939513","Offset: 39,408,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0301194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0942021","Offset: 39,412,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0301322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0944330","Offset: 39,416,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0301454 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0954928","Offset: 39,420,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0301582 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0956055","Offset: 39,425,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0301693 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0958559","Offset: 39,429,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0301817 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0960278","Offset: 39,433,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0301945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0970979","Offset: 39,437,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0302073 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0972114","Offset: 39,441,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0302192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0973826","Offset: 39,445,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0302308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0977089","Offset: 39,449,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0302440 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0987564","Offset: 39,453,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0302568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0988694","Offset: 39,457,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0302692 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0990217","Offset: 39,461,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0302820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.0992961","Offset: 39,465,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0302948 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1003431","Offset: 39,470,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0303063 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1004763","Offset: 39,474,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0303208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1007536","Offset: 39,478,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0303366 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1016406","Offset: 39,482,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0303494 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1017648","Offset: 39,486,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0303617 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1020251","Offset: 39,490,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0303733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1022043","Offset: 39,494,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0303925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1032376","Offset: 39,498,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0304138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1033520","Offset: 39,502,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0304343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1035956","Offset: 39,506,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0304548 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1045420","Offset: 39,511,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0304757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1046482","Offset: 39,515,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0304936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1047946","Offset: 39,519,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0305141 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1050424","Offset: 39,523,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0305345 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1061062","Offset: 39,527,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0305550 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1062717","Offset: 39,531,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0305747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1065251","Offset: 39,535,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0305926 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1074561","Offset: 39,539,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0306135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1075598","Offset: 39,543,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0306570 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1077787","Offset: 39,547,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0306805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1079438","Offset: 39,552,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0307009 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1090353","Offset: 39,556,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0307248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1091313","Offset: 39,560,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0307432 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1093753","Offset: 39,564,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0307637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1095937","Offset: 39,568,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0307833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1106715","Offset: 39,572,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0307969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1107816","Offset: 39,576,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0308097 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1109741","Offset: 39,580,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0308251 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1112496","Offset: 39,584,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0308409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1122898","Offset: 39,588,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0308533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1123978","Offset: 39,592,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0308665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1126060","Offset: 39,597,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0308776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1128262","Offset: 39,601,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0308904 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1138745","Offset: 39,605,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0309045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1139777","Offset: 39,609,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0309181 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1143118","Offset: 39,613,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0309309 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1150858","Offset: 39,617,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0309424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1154191","Offset: 39,621,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0309557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1155696","Offset: 39,625,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0309680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1164094","Offset: 39,629,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0309808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1166841","Offset: 39,633,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0309936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1168476","Offset: 39,638,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0310069 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1177192","Offset: 39,642,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0310184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1178877","Offset: 39,646,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0310308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1181142","Offset: 39,650,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0310457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1189578","Offset: 39,654,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0310585 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1191686","Offset: 39,658,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0310709 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1193823","Offset: 39,662,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0310824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1204409","Offset: 39,666,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0310956 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1205557","Offset: 39,670,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0311084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1208057","Offset: 39,674,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0311216 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1210242","Offset: 39,678,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0311332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1220575","Offset: 39,683,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0311455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1221758","Offset: 39,687,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0311579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1224279","Offset: 39,691,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0311707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1225981","Offset: 39,695,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0311831 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1237164","Offset: 39,699,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0311946 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1238367","Offset: 39,703,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0312074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1239630","Offset: 39,707,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0312202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1242472","Offset: 39,711,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0312330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1253126","Offset: 39,715,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0312454 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1254918","Offset: 39,719,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0312590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1256173","Offset: 39,724,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0312705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1259211","Offset: 39,728,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0312829 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1269203","Offset: 39,732,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0312970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1270956","Offset: 39,736,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0313098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1272347","Offset: 39,740,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0313226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1275150","Offset: 39,744,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0313337 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1283739","Offset: 39,748,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0313469 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1285706","Offset: 39,752,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0313593 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1288100","Offset: 39,756,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0313742 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1295810","Offset: 39,760,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0313870 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1298605","Offset: 39,764,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0314003 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1305674","Offset: 39,769,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0314118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1309036","Offset: 39,773,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0314246 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1317548","Offset: 39,777,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0314374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1318790","Offset: 39,781,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0314497 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1321286","Offset: 39,785,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0314625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1330404","Offset: 39,789,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0314736 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1331987","Offset: 39,793,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0314869 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1334504","Offset: 39,797,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0315005 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1335981","Offset: 39,801,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0315133 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1345226","Offset: 39,805,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0315257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1347547","Offset: 39,810,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0315389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1349596","Offset: 39,814,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0315509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1358346","Offset: 39,818,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0315632 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1361009","Offset: 39,822,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0315799 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1363359","Offset: 39,826,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0315927 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1372605","Offset: 39,830,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0316051 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1373966","Offset: 39,834,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0316166 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1377397","Offset: 39,838,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0316298 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1386199","Offset: 39,842,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0316430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1387407","Offset: 39,846,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0316558 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1391098","Offset: 39,851,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0316686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1392109","Offset: 39,855,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0316819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1402152","Offset: 39,859,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0316934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1403394","Offset: 39,863,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0317057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1406428","Offset: 39,867,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0317185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1415448","Offset: 39,871,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0317335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1416629","Offset: 39,875,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0317450 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1419637","Offset: 39,879,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0317587 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1428656","Offset: 39,883,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0317732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1430879","Offset: 39,887,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0317860 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1431652","Offset: 39,891,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0317996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1433495","Offset: 39,896,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0318128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1444111","Offset: 39,900,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0318256 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1445536","Offset: 39,904,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0318380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1447285","Offset: 39,908,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0318525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1450609","Offset: 39,912,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0318649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1461301","Offset: 39,916,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0318764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1462453","Offset: 39,920,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0318892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1465470","Offset: 39,924,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0319020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1466630","Offset: 39,928,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0319152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1477651","Offset: 39,932,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0319280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1478769","Offset: 39,937,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0319413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1480501","Offset: 39,941,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0319532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1483671","Offset: 39,945,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0319656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1493566","Offset: 39,949,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0319780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1494730","Offset: 39,953,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0319908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1497260","Offset: 39,957,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0320031 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1499445","Offset: 39,961,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0320147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1508511","Offset: 39,965,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0320292 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1510572","Offset: 39,969,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0320437 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1512923","Offset: 39,973,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0320552 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1520842","Offset: 39,977,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0320659 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1523884","Offset: 39,982,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0320778 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1525839","Offset: 39,986,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0320889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1536505","Offset: 39,990,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0321013 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1537708","Offset: 39,994,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0321124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1540145","Offset: 39,998,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0321252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1541928","Offset: 40,002,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0321384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1552522","Offset: 40,006,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0321512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1553709","Offset: 40,010,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0321661 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1556870","Offset: 40,014,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0321776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1566850","Offset: 40,018,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0321904 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1568024","Offset: 40,023,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0322032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1569538","Offset: 40,027,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0322156 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1572201","Offset: 40,031,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0322284 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1582616","Offset: 40,035,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0322412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1585538","Offset: 40,039,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0322544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1586486","Offset: 40,043,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0322672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1589105","Offset: 40,047,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0322800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1599051","Offset: 40,051,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0322928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1600847","Offset: 40,055,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0323061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1601888","Offset: 40,059,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0323180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1606795","Offset: 40,064,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0323308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1615964","Offset: 40,068,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0323440 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1617116","Offset: 40,072,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0323581 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1618767","Offset: 40,076,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0323709 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1621639","Offset: 40,080,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0323824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1631956","Offset: 40,084,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0323952 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1633125","Offset: 40,088,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0324085 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1635210","Offset: 40,092,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0324230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1637685","Offset: 40,096,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0324375 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1647541","Offset: 40,100,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0324507 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1648689","Offset: 40,104,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0324622 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1651177","Offset: 40,109,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0324746 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1653178","Offset: 40,113,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0324887 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1663725","Offset: 40,117,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0325015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1665184","Offset: 40,121,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0325143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1666925","Offset: 40,125,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0325262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1675249","Offset: 40,129,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0325446 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1677020","Offset: 40,133,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0325659 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1680365","Offset: 40,137,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0325864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1689308","Offset: 40,141,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0326069 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1690344","Offset: 40,145,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0326282 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1693314","Offset: 40,150,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0326461 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1694744","Offset: 40,154,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0326670 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1705479","Offset: 40,158,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0326879 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1706614","Offset: 40,162,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0327063 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1709020","Offset: 40,166,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0327268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1717975","Offset: 40,170,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0327477 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1719260","Offset: 40,174,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0327724 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1721585","Offset: 40,178,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0327929 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1723189","Offset: 40,182,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0328142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1733152","Offset: 40,186,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0328326 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1734338","Offset: 40,190,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0328616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1737636","Offset: 40,195,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0328829 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1746311","Offset: 40,199,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0329260 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1747254","Offset: 40,203,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0329619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1750188","Offset: 40,207,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0329789 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1751243","Offset: 40,211,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0329922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1762596","Offset: 40,215,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0330037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1763808","Offset: 40,219,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0330195 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1766974","Offset: 40,223,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0330318 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1776288","Offset: 40,227,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0330438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1777457","Offset: 40,231,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0330557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1778797","Offset: 40,236,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0330672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1781498","Offset: 40,240,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0330779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1791785","Offset: 40,244,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0330924 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1793372","Offset: 40,248,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0331035 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1796384","Offset: 40,252,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0331167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1798031","Offset: 40,256,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0331295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1809129","Offset: 40,260,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0331423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1810959","Offset: 40,264,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0331543 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1813412","Offset: 40,268,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0331679 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1822083","Offset: 40,272,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0331812 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1823260","Offset: 40,276,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0331940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1826029","Offset: 40,281,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0332068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1827816","Offset: 40,285,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0332183 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1838317","Offset: 40,289,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0332315 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1839550","Offset: 40,293,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0332464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1842499","Offset: 40,297,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0332597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1852384","Offset: 40,301,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0332729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1853519","Offset: 40,305,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0332861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1854347","Offset: 40,309,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0332976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1857018","Offset: 40,313,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0333100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1867599","Offset: 40,317,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0333228 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1869170","Offset: 40,322,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0333356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1871870","Offset: 40,326,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0333484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1880822","Offset: 40,330,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0333595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1881987","Offset: 40,334,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0333732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1883727","Offset: 40,338,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0333860 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1886701","Offset: 40,342,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0333988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1896689","Offset: 40,346,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0334120 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1897833","Offset: 40,350,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0334252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1900299","Offset: 40,354,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0334367 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1902343","Offset: 40,358,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0334500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1913350","Offset: 40,363,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0334645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1914430","Offset: 40,367,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0334773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1916930","Offset: 40,371,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0334914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1918803","Offset: 40,375,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0335029 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1929406","Offset: 40,379,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0335161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1930597","Offset: 40,383,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0335289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1933093","Offset: 40,387,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0335417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1935815","Offset: 40,391,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0335541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1945995","Offset: 40,395,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0335976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1946861","Offset: 40,399,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0336104 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1948120","Offset: 40,403,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0336223 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1950996","Offset: 40,408,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0336360 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1961564","Offset: 40,412,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0336509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1963348","Offset: 40,416,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0336637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1964807","Offset: 40,420,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0336765 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1974352","Offset: 40,424,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0336898 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1975763","Offset: 40,428,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0337017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1978272","Offset: 40,432,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0337145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1987838","Offset: 40,436,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0337277 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1989067","Offset: 40,440,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0337405 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1991516","Offset: 40,444,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0337529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.1992984","Offset: 40,449,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0337644 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2004862","Offset: 40,453,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0337776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2005951","Offset: 40,457,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0337904 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2008438","Offset: 40,461,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0338037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2009538","Offset: 40,465,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0338182 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2020325","Offset: 40,469,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0338314 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2022074","Offset: 40,473,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0338425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2023619","Offset: 40,477,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0338809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2026213","Offset: 40,481,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0338928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2035378","Offset: 40,485,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0339061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2038044","Offset: 40,489,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0339189 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2039827","Offset: 40,494,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0339317 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2049743","Offset: 40,498,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0339449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2050912","Offset: 40,502,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0339564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2053409","Offset: 40,506,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0339688 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2055115","Offset: 40,510,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0339820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2066477","Offset: 40,514,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0339948 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2067608","Offset: 40,518,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0340076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2070113","Offset: 40,522,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0340191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2072361","Offset: 40,526,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0340341 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2082503","Offset: 40,530,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0340473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2083629","Offset: 40,535,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0340601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2086620","Offset: 40,539,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0340742 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2087674","Offset: 40,543,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0340874 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2099066","Offset: 40,547,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0340989 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2100278","Offset: 40,551,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0341117 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2101558","Offset: 40,555,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0341267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2104420","Offset: 40,559,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0341399 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2114870","Offset: 40,563,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0341527 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2116611","Offset: 40,567,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0341642 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2117980","Offset: 40,571,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0341774 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2121445","Offset: 40,576,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0341907 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2130899","Offset: 40,580,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0342039 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2132683","Offset: 40,584,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0342163 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2134253","Offset: 40,588,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0342299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2143487","Offset: 40,592,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0342419 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2144711","Offset: 40,596,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0342547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2148342","Offset: 40,600,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0342675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2157383","Offset: 40,604,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0342807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2158607","Offset: 40,608,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0342931 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2161082","Offset: 40,612,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0343050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2170251","Offset: 40,616,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0343182 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2172227","Offset: 40,621,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0343315 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2173468","Offset: 40,625,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0343443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2176267","Offset: 40,629,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0343566 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2185740","Offset: 40,633,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0343703 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2187331","Offset: 40,637,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0344249 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2189430","Offset: 40,641,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0344428 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2198881","Offset: 40,645,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0344761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2199849","Offset: 40,649,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0345469 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2201851","Offset: 40,653,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0345670 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2204619","Offset: 40,657,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0345823 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2214582","Offset: 40,662,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0345960 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2215819","Offset: 40,666,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0346088 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2218861","Offset: 40,670,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0346199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2227497","Offset: 40,674,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0346335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2229281","Offset: 40,678,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0346468 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2230833","Offset: 40,682,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0346600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2240493","Offset: 40,686,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0346724 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2241982","Offset: 40,690,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0346877 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2244419","Offset: 40,694,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0346997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2246159","Offset: 40,698,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0347129 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2257586","Offset: 40,702,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0347257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2258716","Offset: 40,707,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0347381 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2261216","Offset: 40,711,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0347509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2263584","Offset: 40,715,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0347620 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2273961","Offset: 40,719,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0347995 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2274836","Offset: 40,723,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0348144 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2277810","Offset: 40,727,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0348277 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2286407","Offset: 40,731,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0348426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2288225","Offset: 40,735,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0348571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2289449","Offset: 40,739,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0348716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2292120","Offset: 40,743,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0348861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2302924","Offset: 40,748,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0349002 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2304767","Offset: 40,752,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0349134 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2306337","Offset: 40,756,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0349267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2315727","Offset: 40,760,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0349395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2316939","Offset: 40,764,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0349531 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2319423","Offset: 40,768,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0349646 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2321335","Offset: 40,772,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0349774 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2332027","Offset: 40,776,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0349898 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2333895","Offset: 40,780,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0350026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2335128","Offset: 40,784,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0350154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2337671","Offset: 40,788,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0350265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2348073","Offset: 40,793,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0350397 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2349004","Offset: 40,797,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0350530 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2351772","Offset: 40,801,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0350658 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2352869","Offset: 40,805,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0350803 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2364781","Offset: 40,809,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0350935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2365737","Offset: 40,813,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0351054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2367513","Offset: 40,817,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0351199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2370086","Offset: 40,821,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0351344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2380577","Offset: 40,825,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0351472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2382109","Offset: 40,829,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0351596 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2384929","Offset: 40,834,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0351707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2386137","Offset: 40,838,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0351839 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2396872","Offset: 40,842,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0351967 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2398489","Offset: 40,846,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0352121 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2400255","Offset: 40,850,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0352258 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2410691","Offset: 40,854,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0352411 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2411818","Offset: 40,858,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0352531 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2414305","Offset: 40,862,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0352654 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2415914","Offset: 40,866,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0352782 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2426632","Offset: 40,870,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0352915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2427757","Offset: 40,875,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0353038 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2430237","Offset: 40,879,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0353154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2432463","Offset: 40,883,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0353282 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2442831","Offset: 40,887,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0353414 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2443992","Offset: 40,891,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0353542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2445737","Offset: 40,895,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0353666 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2448434","Offset: 40,899,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0353798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2460453","Offset: 40,903,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0353913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2461627","Offset: 40,907,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0354259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2462539","Offset: 40,911,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0354395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2465390","Offset: 40,915,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0354527 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2475558","Offset: 40,920,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0354655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2477320","Offset: 40,924,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0354783 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2478967","Offset: 40,928,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0354916 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2481650","Offset: 40,932,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0355035 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2498124","Offset: 40,936,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0355159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2500065","Offset: 40,940,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0355287 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2503069","Offset: 40,944,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0355432 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2512490","Offset: 40,948,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0355560 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2513633","Offset: 40,952,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0355671 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2516274","Offset: 40,956,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0355803 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2525640","Offset: 40,961,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0355935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2526826","Offset: 40,965,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0356068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2529722","Offset: 40,969,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0356196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2531229","Offset: 40,973,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0356328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2542501","Offset: 40,977,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0356443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2543662","Offset: 40,981,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0356567 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2545117","Offset: 40,985,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0356699 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2547686","Offset: 40,989,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0357045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2558134","Offset: 40,993,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0357271 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2559598","Offset: 40,997,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0357407 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2562192","Offset: 41,001,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0357561 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2570883","Offset: 41,006,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0357680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2572364","Offset: 41,010,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0357804 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2574890","Offset: 41,014,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0357932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2576669","Offset: 41,018,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0358060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2586692","Offset: 41,022,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0358184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2588116","Offset: 41,026,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0358303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2590655","Offset: 41,030,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0358436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2592942","Offset: 41,034,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0358564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2602956","Offset: 41,038,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0358692 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2604432","Offset: 41,042,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0358820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2606322","Offset: 41,047,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0358952 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2609765","Offset: 41,051,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0359067 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2620539","Offset: 41,055,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0359191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2621708","Offset: 41,059,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0359323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2624200","Offset: 41,063,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0359451 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2625906","Offset: 41,067,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0359592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2637413","Offset: 41,071,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0359711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2638673","Offset: 41,075,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0359844 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2639389","Offset: 41,079,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0359972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2641620","Offset: 41,083,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0360117 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2652172","Offset: 41,088,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0360253 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2653597","Offset: 41,092,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0360403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2656340","Offset: 41,096,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0360526 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2665493","Offset: 41,100,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0360654 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2666730","Offset: 41,104,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0360787 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2669823","Offset: 41,108,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0360915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2683660","Offset: 41,112,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0361038 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2695662","Offset: 41,116,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0361149 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2701085","Offset: 41,120,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0361286 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2707647","Offset: 41,124,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0361410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2711222","Offset: 41,128,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0361538 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2712161","Offset: 41,133,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0361683 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2716752","Offset: 41,137,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0361819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2719752","Offset: 41,141,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0361956 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2722427","Offset: 41,145,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0362088 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2724057","Offset: 41,149,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0362216 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2726732","Offset: 41,153,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0362344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2732654","Offset: 41,157,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0362472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2733687","Offset: 41,161,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0362583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2735176","Offset: 41,165,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0362715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2737638","Offset: 41,169,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0362839 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2741401","Offset: 41,174,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0362967 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2743918","Offset: 41,178,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0363095 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2746384","Offset: 41,182,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0363227 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2747703","Offset: 41,186,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0363342 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2749333","Offset: 41,190,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0363466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2755157","Offset: 41,194,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0363824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2756177","Offset: 41,198,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0363952 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2756885","Offset: 41,202,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0364089 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2758608","Offset: 41,206,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0364213 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2764795","Offset: 41,210,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0364349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2766348","Offset: 41,214,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0364464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2765798","Offset: 41,219,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0364588 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2768179","Offset: 41,223,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0364738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2774749","Offset: 41,227,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0364870 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2773751","Offset: 41,231,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0364994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2775308","Offset: 41,235,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0365113 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2776085","Offset: 41,239,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0365241 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2782476","Offset: 41,243,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0365369 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2781563","Offset: 41,247,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0365497 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2787485","Offset: 41,251,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0365642 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2785693","Offset: 41,255,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0365774 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2786880","Offset: 41,260,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0365894 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2784959","Offset: 41,264,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0366022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2784494","Offset: 41,268,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0366150 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2786051","Offset: 41,272,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0366278 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2783278","Offset: 41,276,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0366406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2782775","Offset: 41,280,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0366717 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2785075","Offset: 41,284,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0366854 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2781930","Offset: 41,288,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0366978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2794900","Offset: 41,292,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0367118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2788578","Offset: 41,296,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0367251 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2794324","Offset: 41,300,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0367379 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2787169","Offset: 41,305,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0367502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2793685","Offset: 41,309,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0367618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2786576","Offset: 41,313,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0367750 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2793053","Offset: 41,317,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0367878 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2796530","Offset: 41,321,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0368006 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2792349","Offset: 41,325,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0368134 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2795954","Offset: 41,329,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0368266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2791679","Offset: 41,333,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0368386 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2795399","Offset: 41,337,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0368526 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2791112","Offset: 41,341,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0368693 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2790629","Offset: 41,346,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0368846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2794624","Offset: 41,350,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0368970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2793762","Offset: 41,354,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0369090 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2789819","Offset: 41,358,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0369218 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2787736","Offset: 41,362,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0369363 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2792946","Offset: 41,366,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0369503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2787131","Offset: 41,370,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0369657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2786602","Offset: 41,374,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0369794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2788795","Offset: 41,378,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0369904 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2788390","Offset: 41,382,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0370032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2787955","Offset: 41,387,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0370160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2787503","Offset: 41,391,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0370293 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2786973","Offset: 41,395,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0370434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2797648","Offset: 41,399,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0370549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2796338","Offset: 41,403,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0370681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2804902","Offset: 41,407,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0370809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2804377","Offset: 41,411,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0370963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2803911","Offset: 41,415,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0371095 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2803481","Offset: 41,419,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0371231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2803046","Offset: 41,423,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0371351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2802615","Offset: 41,427,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0371475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2801983","Offset: 41,432,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0371607 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2801518","Offset: 41,436,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0371752 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2801066","Offset: 41,440,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0371876 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2800635","Offset: 41,444,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0371991 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2800213","Offset: 41,448,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0372123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2799769","Offset: 41,452,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0372247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2799163","Offset: 41,456,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0372392 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2798706","Offset: 41,460,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0372524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2798272","Offset: 41,464,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0372656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2797828","Offset: 41,468,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0372776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2797375","Offset: 41,473,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0373134 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2796441","Offset: 41,477,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0373262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2795989","Offset: 41,481,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0373416 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2795532","Offset: 41,485,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0373548 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2795012","Offset: 41,489,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0373672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2792878","Offset: 41,493,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0373804 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2792307","Offset: 41,497,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0373924 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2791679","Offset: 41,501,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0374047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2803946","Offset: 41,505,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0374180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2803284","Offset: 41,509,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0374303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2802568","Offset: 41,513,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0374427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2801988","Offset: 41,518,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0374542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2801450","Offset: 41,522,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0374713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2813418","Offset: 41,526,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0374845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2812953","Offset: 41,530,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0374973 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2812544","Offset: 41,534,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0375101 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2812036","Offset: 41,538,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0375234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2811570","Offset: 41,542,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0375349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2811169","Offset: 41,546,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0375472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2810726","Offset: 41,550,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0375605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2810286","Offset: 41,554,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0375733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2809761","Offset: 41,559,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0376053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2809125","Offset: 41,563,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0376181 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2808682","Offset: 41,567,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0376313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2808238","Offset: 41,571,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0376428 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2807833","Offset: 41,575,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0376552 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2807376","Offset: 41,579,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0376676 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2806813","Offset: 41,583,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0376821 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2806369","Offset: 41,587,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0376953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2805930","Offset: 41,591,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0377081 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2805508","Offset: 41,595,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0377218 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2805076","Offset: 41,600,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0377350 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2804569","Offset: 41,604,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0377474 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2804163","Offset: 41,608,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0377602 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2803728","Offset: 41,612,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0377751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2803272","Offset: 41,616,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0377866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2802837","Offset: 41,620,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0377994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2801808","Offset: 41,624,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0378126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2801365","Offset: 41,628,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0378250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2800883","Offset: 41,632,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0378378 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2811618","Offset: 41,636,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0378489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2811046","Offset: 41,640,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0378621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2810440","Offset: 41,645,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0378754 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2809816","Offset: 41,649,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0378882 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2821725","Offset: 41,653,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0379010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2821157","Offset: 41,657,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0379146 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2820714","Offset: 41,661,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0379261 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2820271","Offset: 41,665,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0379389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2819720","Offset: 41,669,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0379517 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2819289","Offset: 41,673,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0379662 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2818747","Offset: 41,677,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0379803 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2818304","Offset: 41,681,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0379918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2817877","Offset: 41,686,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0380068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2817416","Offset: 41,690,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0380200 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2816968","Offset: 41,694,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0380341 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2816520","Offset: 41,698,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0380482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2815961","Offset: 41,702,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0380614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2815491","Offset: 41,706,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0380729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2815065","Offset: 41,710,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0380857 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2814621","Offset: 41,714,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0380989 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2814152","Offset: 41,718,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0381122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2813580","Offset: 41,722,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0381245 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2813137","Offset: 41,726,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0381356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2812710","Offset: 41,731,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0381489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2812283","Offset: 41,735,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0381617 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2811860","Offset: 41,739,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0381749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2811182","Offset: 41,743,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0381873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2810742","Offset: 41,747,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0382009 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2810299","Offset: 41,751,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0382124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2809885","Offset: 41,755,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0382466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2809142","Offset: 41,759,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0382589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2808537","Offset: 41,763,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0382751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2820403","Offset: 41,767,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0382901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2818623","Offset: 41,772,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0383025 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2818043","Offset: 41,776,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0383157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2830510","Offset: 41,780,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0383272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2830101","Offset: 41,784,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0383417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2829678","Offset: 41,788,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0383729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2828970","Offset: 41,792,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0383861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2828415","Offset: 41,796,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0383989 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2827899","Offset: 41,800,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0384104 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2827472","Offset: 41,804,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0384236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2827037","Offset: 41,808,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0384360 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2826615","Offset: 41,812,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0384492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2826171","Offset: 41,817,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0384616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2825655","Offset: 41,821,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0384753 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2825206","Offset: 41,825,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0384872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2824776","Offset: 41,829,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0385047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2824298","Offset: 41,833,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0385457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2823594","Offset: 41,837,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0385580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2823061","Offset: 41,841,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0385713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2822621","Offset: 41,845,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0385858 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2822177","Offset: 41,849,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0386007 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2821721","Offset: 41,853,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0386122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2821316","Offset: 41,858,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0386250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2820863","Offset: 41,862,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0386395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2820288","Offset: 41,866,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0386540 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2819835","Offset: 41,870,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0386681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2819396","Offset: 41,874,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0386796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2818973","Offset: 41,878,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0386946 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2818478","Offset: 41,882,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0387074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2817799","Offset: 41,886,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0387202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2817313","Offset: 41,890,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0387330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2816822","Offset: 41,894,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0387466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2827562","Offset: 41,899,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0387581 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2826965","Offset: 41,903,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0387709 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2839151","Offset: 41,907,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0387837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2838613","Offset: 41,911,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0387965 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2838199","Offset: 41,915,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0388110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2837640","Offset: 41,919,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0388221 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2837115","Offset: 41,923,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0388354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2836688","Offset: 41,927,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0388482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2836244","Offset: 41,931,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0388614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2835715","Offset: 41,935,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0388742 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2835263","Offset: 41,939,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0388878 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2834683","Offset: 41,944,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0388994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2834235","Offset: 41,948,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0389117 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2833719","Offset: 41,952,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0389250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2833283","Offset: 41,956,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0389373 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2832874","Offset: 41,960,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0389497 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2832336","Offset: 41,964,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0389612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2831927","Offset: 41,968,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0389745 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2831461","Offset: 41,972,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0389873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2831009","Offset: 41,976,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0390005 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2830578","Offset: 41,980,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0390133 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2829960","Offset: 41,985,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0390265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2829516","Offset: 41,989,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0390402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2829068","Offset: 41,993,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0390538 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2828625","Offset: 41,997,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0390700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2828160","Offset: 42,001,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0390828 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2827737","Offset: 42,005,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0390956 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2827221","Offset: 42,009,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0391071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2826794","Offset: 42,013,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0391204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2826359","Offset: 42,017,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0391327 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2825911","Offset: 42,021,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0391455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2825416","Offset: 42,025,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0391583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2835725","Offset: 42,030,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0391716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2847709","Offset: 42,034,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0391831 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2847197","Offset: 42,038,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0391955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2846762","Offset: 42,042,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0392087 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2846322","Offset: 42,046,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0392450 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2845648","Offset: 42,050,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0392603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2845188","Offset: 42,054,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0392731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2844497","Offset: 42,058,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0392885 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2844031","Offset: 42,062,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0393004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2843601","Offset: 42,066,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0393132 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2843170","Offset: 42,071,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0393294 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2842696","Offset: 42,075,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0393431 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2842256","Offset: 42,079,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0393563 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2841728","Offset: 42,083,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0393678 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2841305","Offset: 42,087,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0393811 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2840865","Offset: 42,091,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0393939 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2840430","Offset: 42,095,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0394067 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2839982","Offset: 42,099,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0394190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2839475","Offset: 42,103,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0394323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2839030","Offset: 42,107,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0394438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2838617","Offset: 42,112,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0394562 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2838186","Offset: 42,116,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0394694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2837742","Offset: 42,120,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0394826 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2837047","Offset: 42,124,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0395163 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2836403","Offset: 42,128,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0395313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2835937","Offset: 42,132,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0395449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2835481","Offset: 42,136,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0395564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2834909","Offset: 42,140,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0395714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2834282","Offset: 42,144,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0395842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2833633","Offset: 42,148,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0395974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2832934","Offset: 42,152,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0396102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2832328","Offset: 42,157,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0396213 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2855381","Offset: 42,161,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0396345 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2854954","Offset: 42,165,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0396473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2854515","Offset: 42,169,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0396601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2853986","Offset: 42,173,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0396729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2853550","Offset: 42,177,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0396878 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2853098","Offset: 42,181,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0396998 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2852676","Offset: 42,185,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0397122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2852244","Offset: 42,189,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0397250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2851775","Offset: 42,193,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0397378 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2851220","Offset: 42,198,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0397518 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2850765","Offset: 42,202,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0397634 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2850346","Offset: 42,206,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0397766 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2849902","Offset: 42,210,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0397894 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2849454","Offset: 42,214,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0398022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2848929","Offset: 42,218,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0398146 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2848502","Offset: 42,222,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0398278 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2848055","Offset: 42,226,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0398389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2847645","Offset: 42,230,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0398513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2847129","Offset: 42,234,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0398645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2846523","Offset: 42,238,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0398773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2846083","Offset: 42,243,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0398897 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2845665","Offset: 42,247,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0399012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2845239","Offset: 42,251,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0399144 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2844799","Offset: 42,255,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0399272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2844317","Offset: 42,259,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0399404 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2843464","Offset: 42,263,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0399532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2842965","Offset: 42,267,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0399682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2842329","Offset: 42,271,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0399797 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2841727","Offset: 42,275,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0399925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2841087","Offset: 42,279,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0400057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2840443","Offset: 42,284,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0400185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2852505","Offset: 42,288,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0400309 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2863543","Offset: 42,292,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0400424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2863039","Offset: 42,296,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0400552 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2862608","Offset: 42,300,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0400680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2862169","Offset: 42,304,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0400812 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2861730","Offset: 42,308,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0400940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2861231","Offset: 42,312,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0401073 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2860709","Offset: 42,316,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0401192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2860287","Offset: 42,320,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0401316 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2859865","Offset: 42,324,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0401465 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2859400","Offset: 42,329,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0401922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2858640","Offset: 42,333,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0402067 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2858077","Offset: 42,337,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0402212 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2857629","Offset: 42,341,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0402348 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2857190","Offset: 42,345,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0402463 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2856772","Offset: 42,349,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0402587 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2856349","Offset: 42,353,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0402719 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2855893","Offset: 42,357,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0402847 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2855326","Offset: 42,361,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0402975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2854903","Offset: 42,365,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0403091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2854493","Offset: 42,370,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0403219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2854079","Offset: 42,374,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0403347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2853640","Offset: 42,378,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0403475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2853128","Offset: 42,382,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0403603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2852688","Offset: 42,386,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0403735 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2852257","Offset: 42,390,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0403850 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2851835","Offset: 42,394,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0403974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2851306","Offset: 42,398,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0404102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2850064","Offset: 42,402,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0404230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2849454","Offset: 42,406,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0404371 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2848857","Offset: 42,411,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0404695 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2860731","Offset: 42,415,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0404844 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2860070","Offset: 42,419,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0404968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2871487","Offset: 42,423,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0405100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2871048","Offset: 42,427,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0405224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2870626","Offset: 42,431,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0405352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2870190","Offset: 42,435,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0405476 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2869768","Offset: 42,439,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0405612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2869324","Offset: 42,443,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0405740 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2868817","Offset: 42,447,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0405868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2868377","Offset: 42,451,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0406001 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2867937","Offset: 42,456,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0406124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2867422","Offset: 42,460,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0406257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2866841","Offset: 42,464,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0406372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2866243","Offset: 42,468,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0406495 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2865826","Offset: 42,472,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0406623 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2865395","Offset: 42,476,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0406756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2864959","Offset: 42,480,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0406879 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2864533","Offset: 42,484,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0406995 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2864025","Offset: 42,488,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0407127 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2863603","Offset: 42,492,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0407255 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2863150","Offset: 42,497,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0407379 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2862715","Offset: 42,501,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0407507 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2862275","Offset: 42,505,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0407656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2861789","Offset: 42,509,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0407771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2860889","Offset: 42,513,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0407895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2860445","Offset: 42,517,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0408023 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2859908","Offset: 42,521,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0408151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2859297","Offset: 42,525,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0408279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2858666","Offset: 42,529,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0408407 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2858043","Offset: 42,533,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0408539 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2857399","Offset: 42,537,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0408667 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2869960","Offset: 42,542,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0408795 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2869316","Offset: 42,546,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0408923 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2868714","Offset: 42,550,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0409055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2879680","Offset: 42,554,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0409175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2879270","Offset: 42,558,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0409299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2878843","Offset: 42,562,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0409427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2878412","Offset: 42,566,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0409555 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2877977","Offset: 42,570,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0409704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2877448","Offset: 42,574,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0409832 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2876953","Offset: 42,578,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0409990 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2876488","Offset: 42,583,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0410126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2876049","Offset: 42,587,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0410259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2875604","Offset: 42,591,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0410387 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2875092","Offset: 42,595,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0410519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2874657","Offset: 42,599,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0410638 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2874231","Offset: 42,603,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0410762 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2873809","Offset: 42,607,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0410890 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2873378","Offset: 42,611,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0411018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2872947","Offset: 42,615,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0411355 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2872226","Offset: 42,619,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0411487 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2871778","Offset: 42,624,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0411654 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2871312","Offset: 42,628,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0411773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2870895","Offset: 42,632,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0411897 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2870425","Offset: 42,636,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0412025 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2869627","Offset: 42,640,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0412157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2869192","Offset: 42,644,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0412281 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2868757","Offset: 42,648,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0412396 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2868224","Offset: 42,652,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0412524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2867635","Offset: 42,656,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0412657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2867007","Offset: 42,660,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0412785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2866358","Offset: 42,664,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0412908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2878306","Offset: 42,669,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0413045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2877665","Offset: 42,673,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0413160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2877098","Offset: 42,677,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0413288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2876505","Offset: 42,681,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0413420 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2887577","Offset: 42,685,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0413565 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2887125","Offset: 42,689,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0413689 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2886621","Offset: 42,693,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0413804 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2886203","Offset: 42,697,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0413932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2885781","Offset: 42,701,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0414286 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2885128","Offset: 42,705,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0414427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2884684","Offset: 42,710,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0414555 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2884245","Offset: 42,714,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0414683 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2883733","Offset: 42,718,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0414811 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2883285","Offset: 42,722,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0414922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2882880","Offset: 42,726,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0415071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2882402","Offset: 42,730,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0415204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2881945","Offset: 42,734,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0415332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2881420","Offset: 42,738,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0415455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2880986","Offset: 42,742,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0415588 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2880537","Offset: 42,746,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0415707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2880085","Offset: 42,750,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0415848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2879526","Offset: 42,755,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0415976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2878865","Offset: 42,759,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0416104 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2878417","Offset: 42,763,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0416228 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2877977","Offset: 42,767,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0416343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2877538","Offset: 42,771,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0416475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2877090","Offset: 42,775,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0416603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2876603","Offset: 42,779,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0416731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2875759","Offset: 42,783,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0416859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2875281","Offset: 42,787,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0416991 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2874696","Offset: 42,791,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0417107 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2887867","Offset: 42,796,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0417235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2887423","Offset: 42,800,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0417363 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2886996","Offset: 42,804,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0417491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2886408","Offset: 42,808,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0417614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2884241","Offset: 42,812,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0417730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2892594","Offset: 42,816,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0417862 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2892172","Offset: 42,820,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0418020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2891715","Offset: 42,824,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0418169 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2891174","Offset: 42,828,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0418310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2890739","Offset: 42,832,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0418481 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2890269","Offset: 42,836,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0418596 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2889847","Offset: 42,841,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0418719 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2889314","Offset: 42,845,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0418847 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2888533","Offset: 42,849,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0418975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2887991","Offset: 42,853,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0419103 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2887548","Offset: 42,857,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0419219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2887116","Offset: 42,861,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0419347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2886544","Offset: 42,865,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0419470 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2885909","Offset: 42,869,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0419598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2895718","Offset: 42,873,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0419726 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2895432","Offset: 42,877,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0419854 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2895112","Offset: 42,882,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0419970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2894843","Offset: 42,886,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0420098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2894557","Offset: 42,890,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0420226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2894284","Offset: 42,894,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0420354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2893998","Offset: 42,898,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0420699 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2893461","Offset: 42,902,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0420844 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2893154","Offset: 42,906,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0420977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2892872","Offset: 42,910,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0421096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2892595","Offset: 42,914,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0421220 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2892317","Offset: 42,918,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0421348 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2892023","Offset: 42,923,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0421476 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2891669","Offset: 42,927,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0421621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2891366","Offset: 42,931,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0421732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2891101","Offset: 42,935,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0421868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2890765","Offset: 42,939,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0421996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2890376","Offset: 42,943,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0422146 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2895935","Offset: 42,947,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0422274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2895619","Offset: 42,951,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0422406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2895342","Offset: 42,955,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0422521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2895074","Offset: 42,959,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0422649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2894792","Offset: 42,963,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0422956 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2894331","Offset: 42,968,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0423089 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2893998","Offset: 42,972,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0423430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2893508","Offset: 42,976,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0423558 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2893217","Offset: 42,980,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0423694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2892924","Offset: 42,984,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0423810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2892611","Offset: 42,988,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0423942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2892253","Offset: 42,992,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0424074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2891451","Offset: 42,996,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0424202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2897787","Offset: 43,000,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0424326 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2897467","Offset: 43,004,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0424441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2897203","Offset: 43,009,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0424569 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2896925","Offset: 43,013,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0424697 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2896648","Offset: 43,017,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0424842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2896345","Offset: 43,021,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0424970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2895978","Offset: 43,025,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0425102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2895693","Offset: 43,029,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0425230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2895420","Offset: 43,033,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0425375 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2895125","Offset: 43,037,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0425521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2894826","Offset: 43,041,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0425649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2894540","Offset: 43,045,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0425777 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2894220","Offset: 43,049,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0425887 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2893926","Offset: 43,054,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0426020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2893631","Offset: 43,058,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0426148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2893298","Offset: 43,062,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0426297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2892936","Offset: 43,066,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0426434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2892394","Offset: 43,070,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0426579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2892078","Offset: 43,074,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0426690 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2897288","Offset: 43,078,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0426813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2896883","Offset: 43,082,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0426941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2896597","Offset: 43,086,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0427069 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2896316","Offset: 43,090,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0427193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2895982","Offset: 43,095,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0427308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2895629","Offset: 43,099,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0427441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2895240","Offset: 43,103,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0427586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2894834","Offset: 43,107,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0427731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2894472","Offset: 43,111,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0427854 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2900544","Offset: 43,115,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0427987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2900257","Offset: 43,119,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0428102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2899993","Offset: 43,123,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0428230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2899707","Offset: 43,127,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0428362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2899349","Offset: 43,131,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0428486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2899076","Offset: 43,136,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0428614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2898794","Offset: 43,140,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0428725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2898534","Offset: 43,144,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0428857 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2898244","Offset: 43,148,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0428981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2897928","Offset: 43,152,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0429113 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2897642","Offset: 43,156,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0429241 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2897369","Offset: 43,160,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0429373 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2897079","Offset: 43,164,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0429493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2896806","Offset: 43,168,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0429809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2896285","Offset: 43,172,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0429937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2896003","Offset: 43,176,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0430094 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2895693","Offset: 43,181,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0430222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2895407","Offset: 43,185,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0430350 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2895083","Offset: 43,189,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0430500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2894715","Offset: 43,193,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0430619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2894255","Offset: 43,197,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0430743 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2893973","Offset: 43,201,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0430880 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2893669","Offset: 43,205,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0431008 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2898913","Offset: 43,209,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0431131 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2898410","Offset: 43,213,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0431246 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2898133","Offset: 43,217,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0431374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2897800","Offset: 43,222,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0431502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2897109","Offset: 43,226,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0431630 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2903249","Offset: 43,230,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0431758 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2902963","Offset: 43,234,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0431891 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2902638","Offset: 43,238,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0432002 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2902369","Offset: 43,242,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0432130 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2902092","Offset: 43,246,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0432300 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2901773","Offset: 43,250,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0432445 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2901474","Offset: 43,254,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0432800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2900923","Offset: 43,258,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0432940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2900629","Offset: 43,262,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0433077 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2900338","Offset: 43,267,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0433196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2900070","Offset: 43,271,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0433324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2899789","Offset: 43,275,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0433457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2899493","Offset: 43,279,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0433602 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2899122","Offset: 43,283,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0433725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2898850","Offset: 43,287,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0433841 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2898580","Offset: 43,291,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0433973 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2898295","Offset: 43,295,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0434105 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2898001","Offset: 43,299,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0434237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2897668","Offset: 43,303,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0434361 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2897390","Offset: 43,308,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0434528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2897070","Offset: 43,312,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0434681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2896759","Offset: 43,316,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0434835 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2896400","Offset: 43,320,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0434967 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2895931","Offset: 43,324,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0435095 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2895654","Offset: 43,328,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0435240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2895347","Offset: 43,332,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0435355 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2895070","Offset: 43,336,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0435500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2900347","Offset: 43,340,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0435633 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2899451","Offset: 43,344,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0435761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2905326","Offset: 43,348,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0435889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2905049","Offset: 43,353,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0436021 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2904763","Offset: 43,357,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0436132 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2904490","Offset: 43,361,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0436277 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2904127","Offset: 43,365,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0436405 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2903846","Offset: 43,369,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0436533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2903564","Offset: 43,373,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0436661 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2903278","Offset: 43,377,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0436776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2903014","Offset: 43,381,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0436904 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2902685","Offset: 43,385,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0437032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2902404","Offset: 43,389,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0437160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2902122","Offset: 43,394,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0437288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2901849","Offset: 43,398,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0437425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2901554","Offset: 43,402,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0437544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2901277","Offset: 43,406,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0437668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2900931","Offset: 43,410,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0437800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2900637","Offset: 43,414,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0437932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2900326","Offset: 43,418,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0438056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2900023","Offset: 43,422,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0438188 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2899733","Offset: 43,426,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0438316 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2899409","Offset: 43,430,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0438444 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2899136","Offset: 43,435,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0438577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2898853","Offset: 43,439,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0438705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2898572","Offset: 43,443,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0438841 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2898282","Offset: 43,447,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0439170 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2897650","Offset: 43,451,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0439310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2897352","Offset: 43,455,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0439447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2897058","Offset: 43,459,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0439592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2896746","Offset: 43,463,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0439720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2901909","Offset: 43,467,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0439844 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2906346","Offset: 43,471,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0439997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2906039","Offset: 43,475,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0440117 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2905770","Offset: 43,480,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0440241 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2905497","Offset: 43,484,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0440373 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2905207","Offset: 43,488,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0440501 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2904904","Offset: 43,492,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0440629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2904580","Offset: 43,496,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0440744 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2904315","Offset: 43,500,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0440876 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2904030","Offset: 43,504,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0441004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2903752","Offset: 43,508,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0441149 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2903432","Offset: 43,512,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0441277 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2903112","Offset: 43,516,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0441410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2902821","Offset: 43,521,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0441525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2902561","Offset: 43,525,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0441653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2902280","Offset: 43,529,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0441973 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2901806","Offset: 43,533,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0442097 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2901405","Offset: 43,537,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0442229 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2901119","Offset: 43,541,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0442357 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2900838","Offset: 43,545,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0442489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2900552","Offset: 43,549,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0442604 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2900207","Offset: 43,553,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0442771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2899805","Offset: 43,557,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0442937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2899392","Offset: 43,561,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0443069 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2899025","Offset: 43,566,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0443193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2898683","Offset: 43,570,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0443308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2904657","Offset: 43,574,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0443445 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2904349","Offset: 43,578,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0443590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2903995","Offset: 43,582,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0443718 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2903632","Offset: 43,586,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0443846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2903257","Offset: 43,590,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0443978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2902890","Offset: 43,594,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0444098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2902536","Offset: 43,598,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0444221 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2904879","Offset: 43,602,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0444349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2904537","Offset: 43,607,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0444477 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.2904179","Offset: 43,611,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0444601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3183155","Offset: 43,615,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0444755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3185629","Offset: 43,619,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0444951 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3189726","Offset: 43,623,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0445070 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3194411","Offset: 43,627,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0445203 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3195925","Offset: 43,631,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0445331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3200110","Offset: 43,635,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0445459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3204369","Offset: 43,639,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0445587 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3204864","Offset: 43,643,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0445719 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3208904","Offset: 43,648,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0445834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3212868","Offset: 43,652,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0445958 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3213444","Offset: 43,656,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0446086 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3215791","Offset: 43,660,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0446210 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3219814","Offset: 43,664,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0446342 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3222157","Offset: 43,668,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0446461 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3225694","Offset: 43,672,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0446589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3228165","Offset: 43,676,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0446713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3231488","Offset: 43,680,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0446845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3233421","Offset: 43,684,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0446969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3237265","Offset: 43,688,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0447097 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3238989","Offset: 43,693,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0447212 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3243264","Offset: 43,697,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0447340 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3245018","Offset: 43,701,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0447473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3248887","Offset: 43,705,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0447596 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3250355","Offset: 43,709,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0447746 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3252343","Offset: 43,713,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0447861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3255398","Offset: 43,717,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0447993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3257216","Offset: 43,721,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0448117 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3260335","Offset: 43,725,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0448249 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3262187","Offset: 43,729,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0448373 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3265459","Offset: 43,734,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0448505 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3267102","Offset: 43,738,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0448620 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3270149","Offset: 43,742,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0448979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3270122","Offset: 43,746,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0449107 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3270681","Offset: 43,750,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0449235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3270169","Offset: 43,754,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0449363 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3271155","Offset: 43,758,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0449486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3270844","Offset: 43,762,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0449619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3270511","Offset: 43,766,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0449734 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3272008","Offset: 43,770,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0449858 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3271671","Offset: 43,774,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0449986 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3271334","Offset: 43,779,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0450114 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3270967","Offset: 43,783,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0450237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3272384","Offset: 43,787,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0450357 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3272051","Offset: 43,791,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0450485 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3271573","Offset: 43,795,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0450613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3272840","Offset: 43,799,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0450758 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3274287","Offset: 43,803,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0450886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3274901","Offset: 43,807,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0451061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3274278","Offset: 43,811,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0451206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3275051","Offset: 43,815,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0451330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3274735","Offset: 43,820,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0451475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3275251","Offset: 43,824,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0451799 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3274731","Offset: 43,828,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0451923 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3275319","Offset: 43,832,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0452051 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3275033","Offset: 43,836,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0452183 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3275524","Offset: 43,840,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0452298 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3275251","Offset: 43,844,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0452422 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3275806","Offset: 43,848,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0452554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3275452","Offset: 43,852,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0452682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3275806","Offset: 43,856,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0452806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3276045","Offset: 43,860,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0452921 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3275763","Offset: 43,865,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0453053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3276399","Offset: 43,869,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0453186 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3276010","Offset: 43,873,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0453326 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3276869","Offset: 43,877,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0453476 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3276548","Offset: 43,881,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0453629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3276229","Offset: 43,885,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0453745 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3277077","Offset: 43,889,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0453873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3276744","Offset: 43,893,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0453996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3276442","Offset: 43,897,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0454129 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3278216","Offset: 43,901,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0454252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3278631","Offset: 43,906,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0454368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3278314","Offset: 43,910,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0454500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3278664","Offset: 43,914,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0454624 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3278975","Offset: 43,918,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0454752 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3278681","Offset: 43,922,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0454875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3279262","Offset: 43,926,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0455008 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3278963","Offset: 43,930,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0455123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3279449","Offset: 43,934,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0455246 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3279164","Offset: 43,938,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0455374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3279732","Offset: 43,942,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0455524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3279321","Offset: 43,947,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0455648 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3280409","Offset: 43,951,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0455763 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3280098","Offset: 43,955,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0455895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3279765","Offset: 43,959,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0456023 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3279424","Offset: 43,963,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0456151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3280900","Offset: 43,967,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0456275 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3280588","Offset: 43,971,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0456411 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3280265","Offset: 43,975,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0456531 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3279936","Offset: 43,979,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0456654 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3281046","Offset: 43,983,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0456804 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3280648","Offset: 43,987,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0456932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3281395","Offset: 43,992,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0457060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3281075","Offset: 43,996,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0457171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3280768","Offset: 44,000,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0457303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3282440","Offset: 44,004,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0457427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3282124","Offset: 44,008,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0457555 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3281809","Offset: 44,012,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0457683 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3281476","Offset: 44,016,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0457819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3281058","Offset: 44,020,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0457930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3280738","Offset: 44,024,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0458058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3283226","Offset: 44,028,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0458400 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3282692","Offset: 44,033,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0458532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3282359","Offset: 44,037,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0458664 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3282035","Offset: 44,041,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0458792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3281715","Offset: 44,045,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0458929 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3281382","Offset: 44,049,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0459048 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3281028","Offset: 44,053,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0459193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3283866","Offset: 44,057,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0459351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3283516","Offset: 44,061,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0459496 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3283179","Offset: 44,065,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0459637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3282807","Offset: 44,069,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0459752 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3282496","Offset: 44,073,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0459880 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3282176","Offset: 44,078,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0460008 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3281856","Offset: 44,082,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0460136 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3281527","Offset: 44,086,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0460260 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3284595","Offset: 44,090,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0460392 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3284271","Offset: 44,094,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0460503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3283968","Offset: 44,098,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0460627 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3283656","Offset: 44,102,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0460755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3283332","Offset: 44,106,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0460883 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3282999","Offset: 44,110,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0461011 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3282594","Offset: 44,114,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0461314 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3282090","Offset: 44,119,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0461459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3283678","Offset: 44,123,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0461578 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3285914","Offset: 44,127,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0461710 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3285543","Offset: 44,131,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0461838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3285214","Offset: 44,135,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0461966 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3284881","Offset: 44,139,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0462094 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3284553","Offset: 44,143,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0462205 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3284233","Offset: 44,147,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0462342 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3283848","Offset: 44,151,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0462500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3283481","Offset: 44,155,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0462645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3283093","Offset: 44,160,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0462773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3282709","Offset: 44,164,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0462905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3287070","Offset: 44,168,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0463025 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3286677","Offset: 44,172,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0463148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3286353","Offset: 44,176,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0463276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3286021","Offset: 44,180,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0463404 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3285692","Offset: 44,184,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0463528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3285363","Offset: 44,188,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0463643 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3285014","Offset: 44,192,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0463771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3284681","Offset: 44,196,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0463899 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3284348","Offset: 44,200,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0464032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3284010","Offset: 44,205,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0464155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3283687","Offset: 44,209,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0464292 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3287718","Offset: 44,213,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0464407 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3287445","Offset: 44,217,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0464535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3287159","Offset: 44,221,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0464846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3286686","Offset: 44,225,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0464979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3286395","Offset: 44,229,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0465124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3286084","Offset: 44,233,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0465239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3285760","Offset: 44,237,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0465371 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3285427","Offset: 44,241,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0465521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3285073","Offset: 44,246,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0465644 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3284741","Offset: 44,250,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0465772 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3286793","Offset: 44,254,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0465905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3286510","Offset: 44,258,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0466024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3286229","Offset: 44,262,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0466152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3288683","Offset: 44,266,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0466280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3288397","Offset: 44,270,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0466408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3288102","Offset: 44,274,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0466532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3287816","Offset: 44,278,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0466647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3287535","Offset: 44,282,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0466779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3287143","Offset: 44,286,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0466903 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3286831","Offset: 44,291,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0467052 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3286524","Offset: 44,295,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0467176 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3286238","Offset: 44,299,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0467313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3285943","Offset: 44,303,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0467458 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3285593","Offset: 44,307,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0467598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3285291","Offset: 44,311,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0467948 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3289242","Offset: 44,315,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0468110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3288879","Offset: 44,319,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0468243 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3288588","Offset: 44,323,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0468384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3288285","Offset: 44,327,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0468533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3287978","Offset: 44,332,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0468648 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3287697","Offset: 44,336,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0468772 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3287338","Offset: 44,340,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0468904 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3287053","Offset: 44,344,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0469032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3286767","Offset: 44,348,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0469156 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3286472","Offset: 44,352,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0469271 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3286144","Offset: 44,356,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0469403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3285752","Offset: 44,360,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0469553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3288597","Offset: 44,364,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0469681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3288315","Offset: 44,368,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0469813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3288030","Offset: 44,372,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0469945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3287740","Offset: 44,377,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0470065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3287453","Offset: 44,381,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0470188 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3289191","Offset: 44,385,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0470321 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3288900","Offset: 44,389,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0470449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3288554","Offset: 44,393,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0470764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3288077","Offset: 44,397,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0470909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3287770","Offset: 44,401,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0471046 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3287479","Offset: 44,405,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0471161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3287198","Offset: 44,409,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0471289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3290112","Offset: 44,413,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0471426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3289813","Offset: 44,418,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0471571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3289467","Offset: 44,422,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0471699 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3289173","Offset: 44,426,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0471814 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3288896","Offset: 44,430,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0471963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3288585","Offset: 44,434,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0472096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3288294","Offset: 44,438,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0472224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3288004","Offset: 44,442,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0472352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3287671","Offset: 44,446,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0472488 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3287381","Offset: 44,450,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0472599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3287104","Offset: 44,454,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0472727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3290803","Offset: 44,459,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0472855 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3290517","Offset: 44,463,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0472983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3290227","Offset: 44,467,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0473124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3289886","Offset: 44,471,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0473239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3289613","Offset: 44,475,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0473371 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3289327","Offset: 44,479,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0473504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3289036","Offset: 44,483,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0473632 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3288725","Offset: 44,487,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0473760 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3288277","Offset: 44,491,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0473913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3287962","Offset: 44,495,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0474045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3287668","Offset: 44,499,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0474208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3289958","Offset: 44,504,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0474374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3289638","Offset: 44,508,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0474506 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3289340","Offset: 44,512,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0474630 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3290756","Offset: 44,516,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0474749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3290479","Offset: 44,520,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0474882 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3290150","Offset: 44,524,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0475010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3289864","Offset: 44,528,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0475138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3289578","Offset: 44,532,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0475283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3289284","Offset: 44,536,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0475415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3288990","Offset: 44,540,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0475534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3291768","Offset: 44,545,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0475697 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3291370","Offset: 44,549,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0475872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3291037","Offset: 44,553,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0476012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3290744","Offset: 44,557,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0476136 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3290462","Offset: 44,561,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0476251 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3290189","Offset: 44,565,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0476384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3289877","Offset: 44,569,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0476529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3289493","Offset: 44,573,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0476657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3289203","Offset: 44,577,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0476785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3288913","Offset: 44,581,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0476917 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3292279","Offset: 44,585,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0477262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3291691","Offset: 44,590,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0477437 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3291354","Offset: 44,594,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0477553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3291080","Offset: 44,598,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0477706 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3290769","Offset: 44,602,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0477838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3290475","Offset: 44,606,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0477962 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3290142","Offset: 44,610,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0478094 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3289848","Offset: 44,614,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0478210 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3289574","Offset: 44,618,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0478342 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3289263","Offset: 44,622,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0478470 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3291691","Offset: 44,626,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0478598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3291405","Offset: 44,631,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0478722 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3291123","Offset: 44,635,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0478837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3290846","Offset: 44,639,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0478969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3290543","Offset: 44,643,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0479097 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3291490","Offset: 44,647,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0479225 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3291175","Offset: 44,651,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0479349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3292535","Offset: 44,655,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0479481 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3292237","Offset: 44,659,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0479596 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3291968","Offset: 44,663,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0479741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3291665","Offset: 44,667,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0480057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3291136","Offset: 44,672,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0480194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3290846","Offset: 44,676,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0480322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3290560","Offset: 44,680,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0480462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3292404","Offset: 44,684,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0480599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3292105","Offset: 44,688,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0480714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3291832","Offset: 44,692,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0480838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3291528","Offset: 44,696,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0480966 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3291174","Offset: 44,700,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0481094 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3440939","Offset: 44,704,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0481222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3443119","Offset: 44,708,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0481333 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3444710","Offset: 44,712,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0481465 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3452719","Offset: 44,717,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0481593 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3454814","Offset: 44,721,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0481725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3457562","Offset: 44,725,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0481849 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3464935","Offset: 44,729,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0481986 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3467012","Offset: 44,733,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0482101 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3469129","Offset: 44,737,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0482225 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3477436","Offset: 44,741,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0482357 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3478648","Offset: 44,745,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0482481 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3480973","Offset: 44,749,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0482609 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3489297","Offset: 44,753,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0482720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3490231","Offset: 44,758,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0482852 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3494084","Offset: 44,762,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0482976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3501585","Offset: 44,766,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0483104 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3502502","Offset: 44,770,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0483232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3506816","Offset: 44,774,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0483360 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3512618","Offset: 44,778,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0483492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3515059","Offset: 44,782,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0483620 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3517022","Offset: 44,786,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0483748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3525406","Offset: 44,790,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0483889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3526925","Offset: 44,794,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0484025 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3529221","Offset: 44,798,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0484153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3536120","Offset: 44,803,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0484294 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3538573","Offset: 44,807,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0484426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3544679","Offset: 44,811,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0484554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3547119","Offset: 44,815,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0484678 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3553997","Offset: 44,819,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0484815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3556156","Offset: 44,823,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0484934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3558204","Offset: 44,827,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0485058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3565559","Offset: 44,831,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0485186 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3568064","Offset: 44,835,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0485314 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3574370","Offset: 44,839,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0485442 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3576542","Offset: 44,844,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0485553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3578620","Offset: 44,848,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0485685 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3585852","Offset: 44,852,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0485813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3588267","Offset: 44,856,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0485941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3594458","Offset: 44,860,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0486065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3596932","Offset: 44,864,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0486201 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3603806","Offset: 44,868,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0486504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3606119","Offset: 44,872,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0486649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3612421","Offset: 44,876,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0486764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3614682","Offset: 44,880,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0486892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3616841","Offset: 44,884,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0487020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3624095","Offset: 44,889,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0487161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3626411","Offset: 44,893,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0487293 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3632543","Offset: 44,897,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0487413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3634731","Offset: 44,901,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0487537 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3641357","Offset: 44,905,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0487665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3643362","Offset: 44,909,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0487793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3650466","Offset: 44,913,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0487916 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3652455","Offset: 44,917,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0488027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3654435","Offset: 44,921,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0488155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3662251","Offset: 44,925,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0488283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3664329","Offset: 44,930,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0488416 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3670451","Offset: 44,934,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0488544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3672713","Offset: 44,938,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0488672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3679228","Offset: 44,942,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0488787 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3681890","Offset: 44,946,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0488911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3684194","Offset: 44,950,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0489043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3691102","Offset: 44,954,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0489363 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3693743","Offset: 44,958,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0489487 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3700032","Offset: 44,962,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0489610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3702456","Offset: 44,966,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0489743 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3704499","Offset: 44,971,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0489858 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3712214","Offset: 44,975,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0489981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3714488","Offset: 44,979,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0490109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3720803","Offset: 44,983,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0490237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3722907","Offset: 44,987,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0490365 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3729225","Offset: 44,991,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0490481 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3731405","Offset: 44,995,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0490613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3737891","Offset: 44,999,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0490741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3739994","Offset: 45,003,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0490873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3746847","Offset: 45,007,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0491001 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3748536","Offset: 45,011,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0491133 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3750538","Offset: 45,016,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0491249 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3758818","Offset: 45,020,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0491377 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3760960","Offset: 45,024,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0491505 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3767390","Offset: 45,028,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0491633 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3769528","Offset: 45,032,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0491756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3776031","Offset: 45,036,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0491867 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3778168","Offset: 45,040,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0492000 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3784768","Offset: 45,044,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0492140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3786779","Offset: 45,048,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0492268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3788690","Offset: 45,052,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0492392 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3796302","Offset: 45,057,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0492541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3798333","Offset: 45,061,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0492657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3805270","Offset: 45,065,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0492785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3807245","Offset: 45,069,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0492908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3813680","Offset: 45,073,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0493036 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3815788","Offset: 45,077,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0493160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3822550","Offset: 45,081,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0493271 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3824624","Offset: 45,085,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0493403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3831092","Offset: 45,089,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0493531 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3833204","Offset: 45,093,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0493659 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3839758","Offset: 45,097,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0493783 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3842091","Offset: 45,102,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0493915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3848295","Offset: 45,106,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0494031 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3850326","Offset: 45,110,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0494154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3857157","Offset: 45,114,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0494304 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3859205","Offset: 45,118,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0494436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3865746","Offset: 45,122,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0494581 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3867764","Offset: 45,126,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0494764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3874092","Offset: 45,130,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0495097 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3876007","Offset: 45,134,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0495298 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3882697","Offset: 45,138,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0495733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3884289","Offset: 45,143,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0495874 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3886298","Offset: 45,147,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0496006 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3893799","Offset: 45,151,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0496134 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3895868","Offset: 45,155,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0496249 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3902853","Offset: 45,159,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0496386 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3904952","Offset: 45,163,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0496514 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3911604","Offset: 45,167,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0496642 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3913711","Offset: 45,171,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0496770 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3920990","Offset: 45,175,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0496906 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3922983","Offset: 45,179,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0497021 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3925087","Offset: 45,184,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0497149 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3932759","Offset: 45,188,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0497273 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3934960","Offset: 45,192,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0497401 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3941531","Offset: 45,196,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0497529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3943643","Offset: 45,200,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0497640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3950081","Offset: 45,204,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0497772 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3952223","Offset: 45,208,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0497905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3959352","Offset: 45,212,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0498028 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3961303","Offset: 45,216,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0498156 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3963329","Offset: 45,220,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0498506 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3970723","Offset: 45,224,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0498630 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3972920","Offset: 45,229,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0498745 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3979815","Offset: 45,233,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0498886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3981471","Offset: 45,237,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0499018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3983506","Offset: 45,241,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0499146 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3990998","Offset: 45,245,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0499270 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.3993580","Offset: 45,249,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0499407 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4000022","Offset: 45,253,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0499522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4002155","Offset: 45,257,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0499645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4009187","Offset: 45,261,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0499773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4011346","Offset: 45,265,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0499901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4017994","Offset: 45,270,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0500281 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4019730","Offset: 45,274,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0500409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4021765","Offset: 45,278,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0500541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4029228","Offset: 45,282,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0500674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4031301","Offset: 45,286,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0500802 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4037833","Offset: 45,290,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0500930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4039885","Offset: 45,294,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0501062 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4046384","Offset: 45,298,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0501177 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4048556","Offset: 45,302,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0501305 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4055835","Offset: 45,306,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0501437 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4057704","Offset: 45,310,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0501561 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4059781","Offset: 45,315,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0501689 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4067261","Offset: 45,319,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0501800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4069663","Offset: 45,323,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0501932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4076102","Offset: 45,327,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0502056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4078303","Offset: 45,331,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0502184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4084494","Offset: 45,335,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0502308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4087485","Offset: 45,339,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0502461 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4094529","Offset: 45,343,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0502577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4095446","Offset: 45,347,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0502705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4098322","Offset: 45,351,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0502837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4106638","Offset: 45,356,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0502961 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4108173","Offset: 45,360,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0503084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4110628","Offset: 45,364,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0503200 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4118405","Offset: 45,368,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0503328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4119331","Offset: 45,372,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0503456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4123141","Offset: 45,376,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0503584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4130501","Offset: 45,380,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0503729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4131730","Offset: 45,384,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0503861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4133979","Offset: 45,388,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0503980 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4142205","Offset: 45,392,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0504104 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4143097","Offset: 45,396,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0504236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4146899","Offset: 45,401,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0504360 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4154049","Offset: 45,405,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0504488 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4156212","Offset: 45,409,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0504783 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4157778","Offset: 45,413,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0504919 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4165245","Offset: 45,417,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0505047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4168074","Offset: 45,421,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0505175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4173996","Offset: 45,425,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0505529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4176082","Offset: 45,429,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0505653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4182410","Offset: 45,433,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0505789 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4184667","Offset: 45,437,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0505900 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4186724","Offset: 45,442,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0506037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4194019","Offset: 45,446,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0506165 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4196443","Offset: 45,450,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0506293 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4203052","Offset: 45,454,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0506421 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4205625","Offset: 45,458,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0506553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4211743","Offset: 45,462,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0506668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4214355","Offset: 45,466,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0506813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4216185","Offset: 45,470,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0506946 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4223660","Offset: 45,474,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0507074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4226181","Offset: 45,478,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0507215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4232184","Offset: 45,483,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0507330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4234599","Offset: 45,487,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0507458 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4240743","Offset: 45,491,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0507586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4243414","Offset: 45,495,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0507714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4249430","Offset: 45,499,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0507837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4251816","Offset: 45,503,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0507970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4258552","Offset: 45,507,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0508085 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4260895","Offset: 45,511,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0508405 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4267150","Offset: 45,515,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0508550 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4269253","Offset: 45,519,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0508687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4271036","Offset: 45,523,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0508819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4278704","Offset: 45,528,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0508943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4280880","Offset: 45,532,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0509079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4287331","Offset: 45,536,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0509194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4289380","Offset: 45,540,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0509318 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4295937","Offset: 45,544,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0509450 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4297904","Offset: 45,548,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0509595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4305102","Offset: 45,552,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0509719 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4307163","Offset: 45,556,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0509834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4313405","Offset: 45,560,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0509984 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4315670","Offset: 45,564,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0510112 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4322040","Offset: 45,569,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0510240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4324263","Offset: 45,573,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0510380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4326210","Offset: 45,577,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0510538 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4333757","Offset: 45,581,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0510666 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4335886","Offset: 45,585,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0510794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4342487","Offset: 45,589,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0510922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4344441","Offset: 45,593,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0511050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4346455","Offset: 45,597,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0511174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4354749","Offset: 45,601,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0511289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4356802","Offset: 45,605,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0511434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4363355","Offset: 45,609,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0511562 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4365676","Offset: 45,614,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0511707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4372174","Offset: 45,618,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0511835 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4374274","Offset: 45,622,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0511968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4381104","Offset: 45,626,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0512083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4383203","Offset: 45,630,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0512224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4389688","Offset: 45,634,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0512356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4391848","Offset: 45,638,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0512484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4398371","Offset: 45,642,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0512642 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4400526","Offset: 45,646,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0512757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4407323","Offset: 45,650,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0512889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4409311","Offset: 45,655,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0513017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4415857","Offset: 45,659,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0513141 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4417891","Offset: 45,663,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0513265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4424368","Offset: 45,667,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0513418 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4426417","Offset: 45,671,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0513538 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4432850","Offset: 45,675,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0513666 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4434890","Offset: 45,679,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0513789 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4441482","Offset: 45,683,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0513917 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4443488","Offset: 45,687,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0514041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4445467","Offset: 45,691,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0514156 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4453079","Offset: 45,696,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0514293 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4455242","Offset: 45,700,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0514421 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4462218","Offset: 45,704,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0514553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4464373","Offset: 45,708,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0514916 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4470653","Offset: 45,712,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0515044 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4472748","Offset: 45,716,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0515176 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4479396","Offset: 45,720,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0515291 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4481329","Offset: 45,724,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0515424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4487809","Offset: 45,728,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0515552 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4489802","Offset: 45,732,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0515675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4496322","Offset: 45,736,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0515803 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4498319","Offset: 45,741,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0515936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4504825","Offset: 45,745,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0516051 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4506928","Offset: 45,749,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0516175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4513981","Offset: 45,753,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0516332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4516119","Offset: 45,757,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0516460 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4522434","Offset: 45,761,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0516588 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4524520","Offset: 45,765,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0516729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4530895","Offset: 45,769,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0516861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4533122","Offset: 45,773,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0516994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4539811","Offset: 45,777,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0517122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4541731","Offset: 45,782,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0517250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4543720","Offset: 45,786,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0517378 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4551216","Offset: 45,790,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0517723 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4553081","Offset: 45,794,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0517903 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4559890","Offset: 45,798,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0518026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4562003","Offset: 45,802,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0518159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4568569","Offset: 45,806,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0518308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4570630","Offset: 45,810,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0518436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4577593","Offset: 45,814,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0518568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4579287","Offset: 45,818,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0518713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4581271","Offset: 45,822,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0518871 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4588917","Offset: 45,827,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0519008 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4590973","Offset: 45,831,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0519136 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4597411","Offset: 45,835,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0519259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4599563","Offset: 45,839,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0519392 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4606205","Offset: 45,843,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0519524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4608322","Offset: 45,847,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0519656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4615639","Offset: 45,851,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0519784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4617704","Offset: 45,855,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0519908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4624360","Offset: 45,859,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0520040 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4626472","Offset: 45,863,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0520151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4632975","Offset: 45,868,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0520275 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4635184","Offset: 45,872,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0520403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4641567","Offset: 45,876,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0520531 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4643679","Offset: 45,880,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0520655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4650177","Offset: 45,884,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0520770 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4652366","Offset: 45,888,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0520923 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4658686","Offset: 45,892,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0521051 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4660721","Offset: 45,896,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0521179 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4667663","Offset: 45,900,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0521307 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4669711","Offset: 45,904,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0521461 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4676311","Offset: 45,908,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0521576 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4678253","Offset: 45,913,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0521704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4680241","Offset: 45,917,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0521832 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4688036","Offset: 45,921,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0521960 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4690165","Offset: 45,925,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0522084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4696706","Offset: 45,929,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0522199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4698792","Offset: 45,933,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0522331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4705269","Offset: 45,937,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0522459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4707351","Offset: 45,941,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0522587 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4714362","Offset: 45,945,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0522715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4716286","Offset: 45,949,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0522848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4718299","Offset: 45,954,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0522963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4725851","Offset: 45,958,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0523091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4727989","Offset: 45,962,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0523219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4734692","Offset: 45,966,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0523347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4736701","Offset: 45,970,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0523471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4743127","Offset: 45,974,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0523581 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4745218","Offset: 45,978,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0523714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4751822","Offset: 45,982,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0523837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4753649","Offset: 45,986,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0523974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4755646","Offset: 45,990,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0524115 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4763684","Offset: 45,995,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0524460 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4765681","Offset: 45,999,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0524588 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4772218","Offset: 46,003,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0524704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4774273","Offset: 46,007,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0524840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4780742","Offset: 46,011,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0524968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4782846","Offset: 46,015,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0525096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4789489","Offset: 46,019,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0525220 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4791511","Offset: 46,023,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0525352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4793508","Offset: 46,027,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0525467 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4801210","Offset: 46,031,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0525591 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4803236","Offset: 46,035,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0525728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4809849","Offset: 46,040,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0525856 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4811752","Offset: 46,044,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0525979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4814206","Offset: 46,048,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0526090 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4822257","Offset: 46,052,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0526223 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4824262","Offset: 46,056,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0526346 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4826293","Offset: 46,060,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0526474 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4833816","Offset: 46,064,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0526602 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4836021","Offset: 46,068,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0526735 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4837992","Offset: 46,072,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0526867 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4846180","Offset: 46,076,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0527020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4848519","Offset: 46,081,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0527404 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4854799","Offset: 46,085,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0527558 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4856911","Offset: 46,089,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0527686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4858972","Offset: 46,093,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0527810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4867133","Offset: 46,097,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0527942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4869310","Offset: 46,101,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0528074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4871320","Offset: 46,105,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0528202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4878850","Offset: 46,109,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0528326 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4881278","Offset: 46,113,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0528454 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4883095","Offset: 46,117,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0528582 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4890613","Offset: 46,121,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0528697 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4892794","Offset: 46,126,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0528825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4894795","Offset: 46,130,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0528957 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4902373","Offset: 46,134,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0529085 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4904451","Offset: 46,138,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0529213 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4906417","Offset: 46,142,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0529346 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4914570","Offset: 46,146,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0529457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4917028","Offset: 46,150,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0529580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4918825","Offset: 46,154,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0529713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4926513","Offset: 46,158,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0529836 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4928689","Offset: 46,162,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0529960 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4930699","Offset: 46,167,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0530075 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4938507","Offset: 46,171,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0530208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4940328","Offset: 46,175,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0530336 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4942291","Offset: 46,179,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0530464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4949826","Offset: 46,183,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0530592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4951882","Offset: 46,187,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0530728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4953884","Offset: 46,191,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0530843 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4962238","Offset: 46,195,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0530967 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4964482","Offset: 46,199,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0531099 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4966526","Offset: 46,203,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0531244 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4974296","Offset: 46,208,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0531372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4976177","Offset: 46,212,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0531483 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4978196","Offset: 46,216,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0531611 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4985786","Offset: 46,220,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0531735 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4987928","Offset: 46,224,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0531859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4989992","Offset: 46,228,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0531983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4997600","Offset: 46,232,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0532115 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.4999814","Offset: 46,236,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0532226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5001969","Offset: 46,240,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0532349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5010409","Offset: 46,244,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0532477 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5012402","Offset: 46,248,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0532665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5014415","Offset: 46,253,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0532797 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5021976","Offset: 46,257,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0532908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5024182","Offset: 46,261,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0533032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5026247","Offset: 46,265,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0533160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5033807","Offset: 46,269,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0533288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5035970","Offset: 46,273,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0533412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5038001","Offset: 46,277,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0533540 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5045954","Offset: 46,281,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0533877 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5047554","Offset: 46,285,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0533996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5049628","Offset: 46,289,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0534129 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5057790","Offset: 46,294,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0534257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5059953","Offset: 46,298,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0534385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5062722","Offset: 46,302,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0534513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5069655","Offset: 46,306,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0534649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5071836","Offset: 46,310,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0534764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5079819","Offset: 46,314,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0534884 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5088685","Offset: 46,318,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0535016 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5091266","Offset: 46,322,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0535157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5093391","Offset: 46,326,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0535285 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5101007","Offset: 46,330,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0535413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5103157","Offset: 46,334,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0535545 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5105453","Offset: 46,339,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0535673 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5113419","Offset: 46,343,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0535818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5115570","Offset: 46,347,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0535946 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5117562","Offset: 46,351,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0536083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5125199","Offset: 46,355,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0536198 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5127345","Offset: 46,359,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0536326 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5129359","Offset: 46,363,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0536454 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5136847","Offset: 46,367,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0536770 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5138810","Offset: 46,371,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0536898 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5141067","Offset: 46,375,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0537026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5148328","Offset: 46,380,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0537162 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5150492","Offset: 46,384,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0537278 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5152693","Offset: 46,388,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0537410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5160715","Offset: 46,392,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0537542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5162955","Offset: 46,396,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0537674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5169347","Offset: 46,400,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0537824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5171526","Offset: 46,404,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0537943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5173553","Offset: 46,408,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0538075 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5181438","Offset: 46,412,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0538203 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5183341","Offset: 46,416,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0538331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5185402","Offset: 46,420,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0538455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5192980","Offset: 46,425,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0538587 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5195220","Offset: 46,429,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0538707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5197621","Offset: 46,433,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0538848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5205617","Offset: 46,437,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0538980 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5207751","Offset: 46,441,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0539108 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5209790","Offset: 46,445,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0539232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5217312","Offset: 46,449,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0539347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5219539","Offset: 46,453,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0539496 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5221554","Offset: 46,457,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0539624 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5229042","Offset: 46,461,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0539752 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5231414","Offset: 46,466,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0539880 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5238253","Offset: 46,470,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0540017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5240126","Offset: 46,474,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0540128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5242152","Offset: 46,478,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0540251 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5249645","Offset: 46,482,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0540384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5251740","Offset: 46,486,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0540512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5253766","Offset: 46,490,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0540635 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5261806","Offset: 46,494,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0540751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5264040","Offset: 46,498,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0540883 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5270526","Offset: 46,502,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0541011 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5273014","Offset: 46,507,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0541135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5274792","Offset: 46,511,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0541275 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5282332","Offset: 46,515,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0541412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5284546","Offset: 46,519,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0541527 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5290930","Offset: 46,523,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0541668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5293029","Offset: 46,527,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0541800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5294945","Offset: 46,531,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0541928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5303235","Offset: 46,535,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0542235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5305432","Offset: 46,539,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0542368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5308572","Offset: 46,543,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0542504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5316440","Offset: 46,547,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0542628 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5318863","Offset: 46,552,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0542756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5321197","Offset: 46,556,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0542880 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5329316","Offset: 46,560,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0543012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5332312","Offset: 46,564,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0543127 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5339151","Offset: 46,568,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0543532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5341311","Offset: 46,572,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0543673 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5343602","Offset: 46,576,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0543806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5351780","Offset: 46,580,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0543934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5354084","Offset: 46,584,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0544062 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5356380","Offset: 46,588,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0544194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5365041","Offset: 46,593,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0544330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5367444","Offset: 46,597,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0544458 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5374638","Offset: 46,601,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0544586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5376745","Offset: 46,605,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0544714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5379083","Offset: 46,609,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0544838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5387267","Offset: 46,613,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0544953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5389818","Offset: 46,617,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0545086 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5396777","Offset: 46,621,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0545209 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5399252","Offset: 46,625,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0545359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5401551","Offset: 46,629,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0545487 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5410144","Offset: 46,633,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0545619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5412926","Offset: 46,638,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0545734 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5419373","Offset: 46,642,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0545862 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5422113","Offset: 46,646,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0545990 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5429136","Offset: 46,650,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0546302 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5431460","Offset: 46,654,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0546425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5438343","Offset: 46,658,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0546549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5440724","Offset: 46,662,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0546703 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5443074","Offset: 46,666,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0546822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5451036","Offset: 46,670,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0546946 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5453822","Offset: 46,674,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0547078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5461741","Offset: 46,679,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0547206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5464472","Offset: 46,683,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0547334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5473048","Offset: 46,687,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0547445 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5475774","Offset: 46,691,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0547594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5482128","Offset: 46,695,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0547727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5484632","Offset: 46,699,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0547855 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5487264","Offset: 46,703,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0547978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5494296","Offset: 46,707,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0548106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5497270","Offset: 46,711,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0548222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5500226","Offset: 46,715,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0548345 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5507557","Offset: 46,720,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0548478 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5510829","Offset: 46,724,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0548606 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5514020","Offset: 46,728,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0548729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5522491","Offset: 46,732,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0548844 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5526041","Offset: 46,736,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0548977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5529731","Offset: 46,740,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0549109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5537965","Offset: 46,744,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0549237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5542569","Offset: 46,748,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0549365 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5550181","Offset: 46,752,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0549497 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5554943","Offset: 46,756,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0549612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5559363","Offset: 46,760,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0549736 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5568225","Offset: 46,765,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0549864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5573614","Offset: 46,769,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0549992 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5578857","Offset: 46,773,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0550120 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5588355","Offset: 46,777,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0550231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5594384","Offset: 46,781,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0550380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5603852","Offset: 46,785,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0550508 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5610162","Offset: 46,789,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0550641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5616105","Offset: 46,793,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0550769 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5820048","Offset: 46,797,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0550931 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.5933025","Offset: 46,801,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0551076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.8993624","Offset: 46,806,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0551204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.8992634","Offset: 46,810,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0551328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.8994319","Offset: 46,814,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0551443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.8999580","Offset: 46,818,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0551571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9002209","Offset: 46,822,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0551716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9001577","Offset: 46,826,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0551861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9000609","Offset: 46,830,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0551998 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9002473","Offset: 46,834,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0552126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9008254","Offset: 46,838,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0552241 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9007320","Offset: 46,842,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0552364 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9009625","Offset: 46,846,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0552676 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9008963","Offset: 46,851,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0552804 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9008400","Offset: 46,855,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0552940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9015957","Offset: 46,859,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0553081 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9017586","Offset: 46,863,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0553218 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9017069","Offset: 46,867,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0553333 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9020662","Offset: 46,871,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0553478 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9020163","Offset: 46,875,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0553610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9019557","Offset: 46,879,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0553738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9018807","Offset: 46,883,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0553866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9018316","Offset: 46,887,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0553977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9017578","Offset: 46,892,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0554110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9030505","Offset: 46,896,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0554238 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9029908","Offset: 46,900,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0554366 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9028299","Offset: 46,904,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0554498 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9032519","Offset: 46,908,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0554626 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9031900","Offset: 46,912,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0554741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9031414","Offset: 46,916,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0554865 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9030637","Offset: 46,920,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0554997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9040058","Offset: 46,924,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0555125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9039047","Offset: 46,928,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0555249 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9040344","Offset: 46,932,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0555552 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9043233","Offset: 46,937,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0555714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9042661","Offset: 46,941,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0555833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9042013","Offset: 46,945,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0555974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9041535","Offset: 46,949,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0556106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9040976","Offset: 46,953,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0556251 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9051775","Offset: 46,957,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0556375 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9051139","Offset: 46,961,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0556490 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9050188","Offset: 46,965,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0556623 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9055055","Offset: 46,969,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0556751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9054450","Offset: 46,973,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0556879 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9053835","Offset: 46,978,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0557002 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9053286","Offset: 46,982,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0557135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9052291","Offset: 46,986,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0557250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9051792","Offset: 46,990,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0557374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9064591","Offset: 46,994,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0557502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9064075","Offset: 46,998,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0557630 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9063145","Offset: 47,002,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0557753 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9067280","Offset: 47,006,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0557864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9066670","Offset: 47,010,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0557992 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9066196","Offset: 47,014,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0558120 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9065710","Offset: 47,019,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0558252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9065079","Offset: 47,023,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0558402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9064536","Offset: 47,027,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0558534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9078083","Offset: 47,031,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0558654 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9077443","Offset: 47,035,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0558807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9075459","Offset: 47,039,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0558935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9080694","Offset: 47,043,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0559080 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9080097","Offset: 47,047,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0559208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9079244","Offset: 47,051,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0559328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9078676","Offset: 47,055,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0559456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9078053","Offset: 47,059,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0559584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9080493","Offset: 47,064,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0559712 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9090874","Offset: 47,068,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0559848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9090162","Offset: 47,072,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0560002 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9088374","Offset: 47,076,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0560130 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9092709","Offset: 47,080,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0560258 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9092061","Offset: 47,084,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0560407 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9091442","Offset: 47,088,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0560535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9090892","Offset: 47,092,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0560663 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9097629","Offset: 47,096,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0560778 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9100125","Offset: 47,100,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0560911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9098989","Offset: 47,105,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0561056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9098358","Offset: 47,109,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0561184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9100342","Offset: 47,113,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0561312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9107898","Offset: 47,117,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0561444 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9106776","Offset: 47,121,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0561563 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9108210","Offset: 47,125,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0561687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9111094","Offset: 47,129,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0561815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9110510","Offset: 47,133,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0561943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9109942","Offset: 47,137,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0562071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9109294","Offset: 47,141,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0562182 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9108586","Offset: 47,145,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0562310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9119547","Offset: 47,150,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0562647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9118728","Offset: 47,154,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0562775 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9117631","Offset: 47,158,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0562907 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9122239","Offset: 47,162,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0563040 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9121671","Offset: 47,166,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0563163 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9121057","Offset: 47,170,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0563279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9119973","Offset: 47,174,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0563407 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9119303","Offset: 47,178,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0563535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9131672","Offset: 47,182,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0563667 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9130857","Offset: 47,186,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0563791 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9129202","Offset: 47,191,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0563923 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9134949","Offset: 47,195,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0564042 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9134271","Offset: 47,199,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0564166 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9132918","Offset: 47,203,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0564294 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9132317","Offset: 47,207,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0564422 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9131668","Offset: 47,211,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0564546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9154892","Offset: 47,215,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0564674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9158518","Offset: 47,219,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0564806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9157819","Offset: 47,223,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0564934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9157153","Offset: 47,227,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0565058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9155809","Offset: 47,232,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0565182 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9158731","Offset: 47,236,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0565489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9174138","Offset: 47,240,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0565625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9173473","Offset: 47,244,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0565740 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9171810","Offset: 47,248,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0565873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9174608","Offset: 47,252,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0566001 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9176767","Offset: 47,256,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0566129 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9176174","Offset: 47,260,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0566252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9175564","Offset: 47,264,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0566385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9174659","Offset: 47,268,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0566496 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9194256","Offset: 47,272,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0566619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9193040","Offset: 47,277,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0566769 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9197166","Offset: 47,281,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0566914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9196539","Offset: 47,285,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0567038 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9195898","Offset: 47,289,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0567148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9195246","Offset: 47,293,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0567276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9212159","Offset: 47,297,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0567404 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9210423","Offset: 47,301,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0567532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9213892","Offset: 47,305,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0567656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9213209","Offset: 47,309,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0567801 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9212501","Offset: 47,313,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0567916 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9214186","Offset: 47,318,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0568044 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9215240","Offset: 47,322,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0568215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9235127","Offset: 47,326,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0568352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9233961","Offset: 47,330,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0568480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9235694","Offset: 47,334,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0568591 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3658509","Offset: 47,338,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0568723 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9414113","Offset: 47,342,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0568847 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9415175","Offset: 47,346,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0568975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9416246","Offset: 47,350,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0569107 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9420458","Offset: 47,354,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0569239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9429823","Offset: 47,358,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0569354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9430941","Offset: 47,363,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0569478 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9433459","Offset: 47,367,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0569606 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9434559","Offset: 47,371,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0569734 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9445299","Offset: 47,375,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0569858 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9446339","Offset: 47,379,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0569969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9448831","Offset: 47,383,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0570101 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9450397","Offset: 47,387,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0570229 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9459455","Offset: 47,391,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0570374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9462011","Offset: 47,395,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0570498 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9463355","Offset: 47,399,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0570630 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9472725","Offset: 47,404,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0570745 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9474116","Offset: 47,408,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0570869 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9476441","Offset: 47,412,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0571014 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9477456","Offset: 47,416,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0571142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9488793","Offset: 47,420,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0571270 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9490043","Offset: 47,424,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0571381 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9492351","Offset: 47,428,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0571513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9493743","Offset: 47,432,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0571833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9503936","Offset: 47,436,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0571966 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9504955","Offset: 47,440,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0572098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9507494","Offset: 47,444,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0572226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9508624","Offset: 47,449,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0572354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9525128","Offset: 47,453,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0572465 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9526241","Offset: 47,457,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0572601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9530828","Offset: 47,461,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0572729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9539592","Offset: 47,465,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0572857 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9540672","Offset: 47,469,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0572985 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9543180","Offset: 47,473,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0573118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9544161","Offset: 47,477,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0573237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9555451","Offset: 47,481,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0573361 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9556513","Offset: 47,485,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0573489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9558805","Offset: 47,490,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0573612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9559761","Offset: 47,494,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0573740 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9570496","Offset: 47,498,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0573856 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9571528","Offset: 47,502,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0573984 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9572483","Offset: 47,506,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0574112 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9576669","Offset: 47,510,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0574240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9585339","Offset: 47,514,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0574385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9586777","Offset: 47,518,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0574688 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9587660","Offset: 47,522,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0574824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9590929","Offset: 47,526,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0574944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9600119","Offset: 47,531,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0575076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9601207","Offset: 47,535,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0575200 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9603843","Offset: 47,539,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0575328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9604838","Offset: 47,543,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0575456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9614988","Offset: 47,547,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0575588 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9616004","Offset: 47,551,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0575699 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9618363","Offset: 47,555,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0575827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9619413","Offset: 47,559,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0575955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9630242","Offset: 47,563,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0576083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9631214","Offset: 47,567,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0576211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9633488","Offset: 47,571,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0576352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9634512","Offset: 47,576,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0576497 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9644838","Offset: 47,580,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0576638 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9646211","Offset: 47,584,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0576766 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9647453","Offset: 47,588,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0576889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9651831","Offset: 47,592,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0577022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9659920","Offset: 47,596,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0577137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9660991","Offset: 47,600,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0577265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9662408","Offset: 47,604,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0577393 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9664955","Offset: 47,608,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0577516 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9675430","Offset: 47,612,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0577640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9676552","Offset: 47,617,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0577755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9678844","Offset: 47,621,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0577888 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9679884","Offset: 47,625,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0578016 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9690214","Offset: 47,629,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0578148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9691502","Offset: 47,633,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0578276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9692744","Offset: 47,637,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0578412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9695804","Offset: 47,641,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0578545 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9704836","Offset: 47,645,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0578694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9705997","Offset: 47,649,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0578831 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9708304","Offset: 47,653,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0578971 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9709235","Offset: 47,657,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0579121 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9720085","Offset: 47,662,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0579249 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9721122","Offset: 47,666,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0579402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9723836","Offset: 47,670,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0579556 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9724876","Offset: 47,674,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0579705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9734754","Offset: 47,678,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0579833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9735799","Offset: 47,682,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0579966 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9738107","Offset: 47,686,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0580081 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9739101","Offset: 47,690,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0580204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9749218","Offset: 47,694,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0580337 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9750237","Offset: 47,698,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0580465 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9752678","Offset: 47,703,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0580606 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9753642","Offset: 47,707,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0581135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9763583","Offset: 47,711,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0581280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9765154","Offset: 47,715,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0581403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9767672","Offset: 47,719,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0581536 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9775974","Offset: 47,723,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0581664 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9777058","Offset: 47,727,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0581792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9778303","Offset: 47,731,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0581915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9781423","Offset: 47,735,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0582031 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9790881","Offset: 47,739,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0582163 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9791936","Offset: 47,744,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0582308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9794235","Offset: 47,748,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0582436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9795750","Offset: 47,752,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0582564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9806238","Offset: 47,756,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0582696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9807522","Offset: 47,760,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0582811 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9808593","Offset: 47,764,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0582935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9813026","Offset: 47,768,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0583063 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9821069","Offset: 47,772,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0583191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9822106","Offset: 47,776,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0583315 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9823483","Offset: 47,780,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0583426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9826026","Offset: 47,784,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0583558 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9835840","Offset: 47,789,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0583682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9836859","Offset: 47,793,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0584019 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9838929","Offset: 47,797,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0584151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9840401","Offset: 47,801,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0584283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9850910","Offset: 47,805,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0584407 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9852186","Offset: 47,809,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0584522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9854451","Offset: 47,813,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0584676 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9855415","Offset: 47,817,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0584825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9865839","Offset: 47,821,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0584970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9867136","Offset: 47,825,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0585098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9868160","Offset: 47,830,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0585226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9872350","Offset: 47,834,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0585337 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9880444","Offset: 47,838,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0585465 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9881464","Offset: 47,842,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0585598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9884151","Offset: 47,846,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0585743 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9885107","Offset: 47,850,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0585866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9895719","Offset: 47,854,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0585982 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9896793","Offset: 47,858,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0586110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9899238","Offset: 47,862,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0586238 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9900629","Offset: 47,866,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0586370 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9909849","Offset: 47,870,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0586498 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9911351","Offset: 47,875,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0586630 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9915575","Offset: 47,879,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0586745 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9922791","Offset: 47,883,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0586873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9923832","Offset: 47,887,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0587001 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9925154","Offset: 47,891,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0587129 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9929302","Offset: 47,895,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0587253 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9938052","Offset: 47,899,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0587368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9939093","Offset: 47,903,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0587492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9941529","Offset: 47,907,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0587620 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9942937","Offset: 47,911,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0587744 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9952879","Offset: 47,916,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0587889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9953881","Offset: 47,920,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0588017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9956134","Offset: 47,924,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0588128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9957231","Offset: 47,928,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0588251 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9967599","Offset: 47,932,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0588384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9968734","Offset: 47,936,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0588507 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9969775","Offset: 47,940,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0588635 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9974093","Offset: 47,944,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0588746 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9982597","Offset: 47,948,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0588874 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9983574","Offset: 47,952,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0588998 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9985289","Offset: 47,956,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0589126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9989764","Offset: 47,961,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0589250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9997892","Offset: 47,965,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0589382 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9998916","Offset: 47,969,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0589493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","2.9999910","Offset: 47,973,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0589617 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0004582","Offset: 47,977,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0589745 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0012493","Offset: 47,981,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0589873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0013598","Offset: 47,985,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0589997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0015880","Offset: 47,989,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0590112 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0016960","Offset: 47,993,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0590423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0028071","Offset: 47,997,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0590551 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0029346","Offset: 48,002,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0590688 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0030020","Offset: 48,006,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0590816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0034261","Offset: 48,010,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0590944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0042628","Offset: 48,014,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0591067 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0043708","Offset: 48,018,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0591183 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0045184","Offset: 48,022,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0591311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0048452","Offset: 48,026,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0591439 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0057374","Offset: 48,030,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0591567 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0058504","Offset: 48,034,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0591690 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0059695","Offset: 48,038,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0591823 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0061811","Offset: 48,043,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0591934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0072857","Offset: 48,047,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0592057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0073929","Offset: 48,051,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0592190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0076245","Offset: 48,055,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0592313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0077150","Offset: 48,059,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0592441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0087749","Offset: 48,063,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0592569 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0088785","Offset: 48,067,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0592702 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0091076","Offset: 48,071,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0592847 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0091938","Offset: 48,075,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0592996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0102622","Offset: 48,079,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0593346 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0103420","Offset: 48,083,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0593487 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0104414","Offset: 48,088,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0593615 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0108604","Offset: 48,092,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0593730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0117568","Offset: 48,096,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0593879 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0118533","Offset: 48,100,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0594007 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0119740","Offset: 48,104,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0594139 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0123158","Offset: 48,108,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0594267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0132284","Offset: 48,112,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0594400 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0133406","Offset: 48,116,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0594511 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0135684","Offset: 48,120,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0594639 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0136661","Offset: 48,124,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0594771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0147213","Offset: 48,129,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0594916 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0148216","Offset: 48,133,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0595040 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0149466","Offset: 48,137,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0595159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0152649","Offset: 48,141,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0595287 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0162223","Offset: 48,145,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0595411 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0163217","Offset: 48,149,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0595539 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0164736","Offset: 48,153,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0595667 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0167484","Offset: 48,157,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0595799 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0176862","Offset: 48,161,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0595910 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0177882","Offset: 48,165,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0596038 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0180148","Offset: 48,169,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0596166 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0181372","Offset: 48,174,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0596311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0191518","Offset: 48,178,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0596435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0192551","Offset: 48,182,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0596550 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0194893","Offset: 48,186,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0596682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0195888","Offset: 48,190,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0596810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0207207","Offset: 48,194,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0596960 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0208243","Offset: 48,198,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0597088 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0209984","Offset: 48,202,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0597220 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0220374","Offset: 48,206,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0597335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0222887","Offset: 48,210,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0597463 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0222063","Offset: 48,215,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0597591 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0224192","Offset: 48,219,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0597719 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0233003","Offset: 48,223,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0597847 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0234061","Offset: 48,227,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0597962 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0236997","Offset: 48,231,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0598095 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0245342","Offset: 48,235,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0598223 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0246980","Offset: 48,239,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0598351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0248021","Offset: 48,243,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0598479 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0250726","Offset: 48,247,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0598611 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0260689","Offset: 48,251,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0598730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0261795","Offset: 48,256,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0598871 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0264325","Offset: 48,260,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0599016 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0265285","Offset: 48,264,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0599149 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0276685","Offset: 48,268,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0599272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0277863","Offset: 48,272,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0599383 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0279902","Offset: 48,276,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0599703 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0289084","Offset: 48,280,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0599823 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0290671","Offset: 48,284,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0599955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0292770","Offset: 48,288,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0600087 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0301398","Offset: 48,292,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0600219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0303570","Offset: 48,296,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0600343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0305613","Offset: 48,301,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0600463 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0313284","Offset: 48,305,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0600616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0315487","Offset: 48,309,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0600753 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0317423","Offset: 48,313,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0600881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0325244","Offset: 48,317,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0601009 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0327463","Offset: 48,321,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0601184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0329395","Offset: 48,325,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0601333 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0337289","Offset: 48,329,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0601461 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0339341","Offset: 48,333,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0601593 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0341155","Offset: 48,337,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0601738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0349603","Offset: 48,342,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0601866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0353004","Offset: 48,346,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0601977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0353865","Offset: 48,350,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0602110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0362931","Offset: 48,354,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0602238 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0364130","Offset: 48,358,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0602596 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0368184","Offset: 48,362,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0602733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0376218","Offset: 48,366,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0602865 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0377246","Offset: 48,370,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0602993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0377856","Offset: 48,374,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0603108 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0382196","Offset: 48,378,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0603240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0390597","Offset: 48,382,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0603373 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0391612","Offset: 48,387,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0603505 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0394040","Offset: 48,391,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0603650 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0394978","Offset: 48,395,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0603782 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0405846","Offset: 48,399,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0603902 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0406874","Offset: 48,403,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0604025 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0409315","Offset: 48,407,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0604170 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0410437","Offset: 48,411,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0604298 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0420647","Offset: 48,415,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0604426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0421624","Offset: 48,419,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0604537 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0423988","Offset: 48,423,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0604687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0424990","Offset: 48,428,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0604819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0435785","Offset: 48,432,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0604947 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0436822","Offset: 48,436,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0605075 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0437833","Offset: 48,440,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0605207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0441178","Offset: 48,444,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0605327 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0450748","Offset: 48,448,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0605450 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0451803","Offset: 48,452,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0605595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0454239","Offset: 48,456,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0605741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0455258","Offset: 48,460,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0605864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0465537","Offset: 48,464,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0605992 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0466531","Offset: 48,468,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0606142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0468958","Offset: 48,473,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0606287 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0470464","Offset: 48,477,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0606427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0480918","Offset: 48,481,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0606555 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0482062","Offset: 48,485,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0606709 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0482655","Offset: 48,489,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0606829 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0487185","Offset: 48,493,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0606952 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0496265","Offset: 48,497,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0607085 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0497327","Offset: 48,501,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0607213 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0497971","Offset: 48,505,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0607341 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0502217","Offset: 48,509,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0607469 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0510686","Offset: 48,514,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0607618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0512461","Offset: 48,518,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0607750 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0513524","Offset: 48,522,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0607878 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0514770","Offset: 48,526,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0608006 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0525321","Offset: 48,530,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0608138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0526294","Offset: 48,534,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0608271 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0528807","Offset: 48,538,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0608394 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0530011","Offset: 48,542,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0608522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0540878","Offset: 48,546,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0608650 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0541932","Offset: 48,550,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0608778 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0544172","Offset: 48,555,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0608889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0545272","Offset: 48,559,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0609218 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0555832","Offset: 48,563,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0609342 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0556890","Offset: 48,567,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0609499 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0557544","Offset: 48,571,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0609657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0561900","Offset: 48,575,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0609785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0570036","Offset: 48,579,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0609909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0571133","Offset: 48,583,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0610024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0571978","Offset: 48,587,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0610353 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0576244","Offset: 48,591,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0610485 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0585089","Offset: 48,595,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0610613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0586109","Offset: 48,600,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0610737 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0595478","Offset: 48,604,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0610869 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0596703","Offset: 48,608,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0610984 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0607655","Offset: 48,612,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0611108 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0608978","Offset: 48,616,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0611236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0611248","Offset: 48,620,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0611364 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0612208","Offset: 48,624,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0611488 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0622819","Offset: 48,628,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0611603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0623856","Offset: 48,632,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0611731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0625183","Offset: 48,636,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0612047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0629150","Offset: 48,641,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0612166 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0637795","Offset: 48,645,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0612303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0638831","Offset: 48,649,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0612431 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0640346","Offset: 48,653,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0612554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0643679","Offset: 48,657,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0612674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0652651","Offset: 48,661,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0612806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0653676","Offset: 48,665,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0612934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0656048","Offset: 48,669,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0613079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0657145","Offset: 48,673,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0613207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0665874","Offset: 48,677,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0613339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0667760","Offset: 48,681,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0613459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0671015","Offset: 48,686,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0613583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0679369","Offset: 48,690,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0613715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0680598","Offset: 48,694,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0613843 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0683000","Offset: 48,698,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0613967 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0684020","Offset: 48,702,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0614078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0694418","Offset: 48,706,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0614210 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0695399","Offset: 48,710,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0614338 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0697801","Offset: 48,714,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0614470 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0699205","Offset: 48,718,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0614594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0709138","Offset: 48,722,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0614730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0710154","Offset: 48,727,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0614846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0712466","Offset: 48,731,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0614969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0713478","Offset: 48,735,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0615097 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0724515","Offset: 48,739,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0615225 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0725565","Offset: 48,743,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0615349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0726563","Offset: 48,747,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0615464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0730928","Offset: 48,751,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0615618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0739073","Offset: 48,755,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0615746 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0740498","Offset: 48,759,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0615887 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0741121","Offset: 48,763,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0616015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0745601","Offset: 48,768,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0616147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0753686","Offset: 48,772,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0616258 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0754753","Offset: 48,776,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0616382 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0755994","Offset: 48,780,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0616514 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0759310","Offset: 48,784,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0616642 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0773338","Offset: 48,788,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0616770 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0774426","Offset: 48,792,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0616881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0776692","Offset: 48,796,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0617013 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0777716","Offset: 48,800,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0617141 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0792654","Offset: 48,804,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0617273 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0793810","Offset: 48,808,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0617401 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0794480","Offset: 48,813,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0617546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0798747","Offset: 48,817,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0617687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0810617","Offset: 48,821,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0617819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0811854","Offset: 48,825,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0617947 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0813194","Offset: 48,829,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0618071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0814815","Offset: 48,833,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0618199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0828251","Offset: 48,837,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0618310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0831105","Offset: 48,841,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0618442 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0832471","Offset: 48,845,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0618570 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0843568","Offset: 48,849,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0618698 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0845450","Offset: 48,854,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0618822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0848428","Offset: 48,858,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0619142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0859585","Offset: 48,862,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0619270 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0860588","Offset: 48,866,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0619479 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0863152","Offset: 48,870,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0619744 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0863984","Offset: 48,874,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0619897 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0877284","Offset: 48,878,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0620119 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0879745","Offset: 48,882,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0620256 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0881375","Offset: 48,886,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0620384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.0893420","Offset: 48,890,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0620503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1030636","Offset: 48,894,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0620657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1031796","Offset: 48,899,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0620781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1034881","Offset: 48,903,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0620909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1042804","Offset: 48,907,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0621037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1044865","Offset: 48,911,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0621147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1047063","Offset: 48,915,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0621284 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1054901","Offset: 48,919,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0621433 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1057896","Offset: 48,923,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0621557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1059718","Offset: 48,927,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0621706 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1069523","Offset: 48,931,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0621843 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1077471","Offset: 48,935,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0622048 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1078508","Offset: 48,940,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0622270 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1089144","Offset: 48,944,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0622410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1090084","Offset: 48,948,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0622538 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1092840","Offset: 48,952,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0622666 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1093787","Offset: 48,956,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0622782 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1104539","Offset: 48,960,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0622914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1105652","Offset: 48,964,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0623076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1108072","Offset: 48,968,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0623208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1108994","Offset: 48,972,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0623332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1120774","Offset: 48,976,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0623447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1121824","Offset: 48,980,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0623584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1123146","Offset: 48,985,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0623707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1127383","Offset: 48,989,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0623840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1136040","Offset: 48,993,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0623968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1137460","Offset: 48,997,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0624100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1139709","Offset: 49,001,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0624215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1141105","Offset: 49,005,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0624343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1151609","Offset: 49,009,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0624471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1152855","Offset: 49,013,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0624595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1155658","Offset: 49,017,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0624723 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1156686","Offset: 49,021,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0624834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1167583","Offset: 49,026,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0624962 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1168748","Offset: 49,030,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0625090 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1171244","Offset: 49,034,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0625214 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1172221","Offset: 49,038,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0625342 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1182781","Offset: 49,042,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0625470 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1183813","Offset: 49,046,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0625589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1186284","Offset: 49,050,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0625713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1187278","Offset: 49,054,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0625901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1197074","Offset: 49,058,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0626041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1198381","Offset: 49,062,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0626165 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1200104","Offset: 49,067,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0626280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1210289","Offset: 49,071,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0626408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1211373","Offset: 49,075,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0626536 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1213651","Offset: 49,079,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0626660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1215025","Offset: 49,083,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0626788 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1225260","Offset: 49,087,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0626916 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1226417","Offset: 49,091,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0627031 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1228853","Offset: 49,095,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0627155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1229838","Offset: 49,099,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0627287 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1240428","Offset: 49,103,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0627411 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1241674","Offset: 49,107,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0627535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1242937","Offset: 49,112,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0627650 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1247157","Offset: 49,116,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0627778 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1256275","Offset: 49,120,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0627906 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1257252","Offset: 49,124,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0628034 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1260302","Offset: 49,128,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0628158 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1261407","Offset: 49,132,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0628311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1272296","Offset: 49,136,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0628486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1273299","Offset: 49,140,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0628682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1274430","Offset: 49,144,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0628815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1276362","Offset: 49,148,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0628943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1286474","Offset: 49,153,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0629071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1287485","Offset: 49,157,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0629186 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1289849","Offset: 49,161,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0629314 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1290783","Offset: 49,165,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0629442 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1302192","Offset: 49,169,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0629566 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1303216","Offset: 49,173,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0629694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1305576","Offset: 49,177,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0629830 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1306545","Offset: 49,181,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0629967 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1317079","Offset: 49,185,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0630095 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1318090","Offset: 49,189,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0630223 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1320548","Offset: 49,193,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0630351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1321584","Offset: 49,198,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0630483 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1331970","Offset: 49,202,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0630594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1332989","Offset: 49,206,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0630718 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1335417","Offset: 49,210,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0630846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1336565","Offset: 49,214,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0630974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1347564","Offset: 49,218,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0631144 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1348584","Offset: 49,222,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0631336 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1350940","Offset: 49,226,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0631481 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1351989","Offset: 49,230,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0631609 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1362148","Offset: 49,234,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0631737 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1363262","Offset: 49,239,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0631861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1366265","Offset: 49,243,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0631993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1374475","Offset: 49,247,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0632126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1375455","Offset: 49,251,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0632254 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1378062","Offset: 49,255,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0632382 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1379398","Offset: 49,259,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0632510 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1389868","Offset: 49,263,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0632642 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1390897","Offset: 49,267,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0632757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1393423","Offset: 49,271,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0632881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1394630","Offset: 49,275,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0633005 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1405659","Offset: 49,280,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0633137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1406641","Offset: 49,284,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0633261 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1409008","Offset: 49,288,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0633371 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1409973","Offset: 49,292,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0633504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1420652","Offset: 49,296,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0633632 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1422214","Offset: 49,300,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0633764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1422871","Offset: 49,304,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0633909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1426285","Offset: 49,308,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0634063 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1435615","Offset: 49,312,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0634199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1436674","Offset: 49,316,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0634361 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1437843","Offset: 49,320,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0634489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1440664","Offset: 49,325,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0634617 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1450942","Offset: 49,329,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0634741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1451970","Offset: 49,333,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0634856 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1453182","Offset: 49,337,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0634989 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1457388","Offset: 49,341,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0635112 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1466396","Offset: 49,345,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0635236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1467646","Offset: 49,349,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0635364 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1469945","Offset: 49,353,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0635496 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1470944","Offset: 49,357,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0635611 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1481496","Offset: 49,361,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0635735 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1482886","Offset: 49,366,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0635863 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1484073","Offset: 49,370,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0635991 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1488335","Offset: 49,374,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0636128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1497427","Offset: 49,378,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0636247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1498724","Offset: 49,382,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0636375 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1501058","Offset: 49,386,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0636503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1502167","Offset: 49,390,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0636631 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1512331","Offset: 49,394,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0636759 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1513389","Offset: 49,398,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0636909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1515632","Offset: 49,402,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0637024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1516827","Offset: 49,406,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0637147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1527234","Offset: 49,411,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0637280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1528236","Offset: 49,415,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0637408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1530532","Offset: 49,419,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0637532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1531496","Offset: 49,423,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0637647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1542837","Offset: 49,427,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0637796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1544215","Offset: 49,431,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0638014 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1545380","Offset: 49,435,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0638154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1549630","Offset: 49,439,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0638287 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1557898","Offset: 49,443,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0638398 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1558965","Offset: 49,447,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0638530 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1561397","Offset: 49,452,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0638662 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1562665","Offset: 49,456,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0638786 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1573310","Offset: 49,460,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0638914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1574910","Offset: 49,464,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0639046 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1575584","Offset: 49,468,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0639157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1577594","Offset: 49,472,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0639281 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1588913","Offset: 49,476,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0639413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1589958","Offset: 49,480,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0639558 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1590936","Offset: 49,484,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0639686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1595160","Offset: 49,488,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0639797 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1603782","Offset: 49,492,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0639925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1605382","Offset: 49,497,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0640053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1606441","Offset: 49,501,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0640181 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1610618","Offset: 49,505,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0640322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1619014","Offset: 49,509,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0640454 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1620239","Offset: 49,513,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0640569 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1622569","Offset: 49,517,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0640714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1623793","Offset: 49,521,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0640928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1634383","Offset: 49,525,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0641081 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1635480","Offset: 49,529,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0641218 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1637864","Offset: 49,533,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0641333 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1638829","Offset: 49,538,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0641465 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1649598","Offset: 49,542,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0641589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1650660","Offset: 49,546,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0641717 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1652909","Offset: 49,550,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0641837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1653932","Offset: 49,554,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0641969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1664390","Offset: 49,558,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0642080 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1665717","Offset: 49,562,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0642233 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1666955","Offset: 49,566,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0642378 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1671068","Offset: 49,570,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0642511 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1680185","Offset: 49,574,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0642694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1681295","Offset: 49,579,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0642818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1682391","Offset: 49,583,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0642950 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1685229","Offset: 49,587,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0643078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1694910","Offset: 49,591,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0643206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1695729","Offset: 49,595,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0643343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1698182","Offset: 49,599,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0643479 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1699514","Offset: 49,603,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0643590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1710274","Offset: 49,607,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0643718 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1711384","Offset: 49,611,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0643846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1712382","Offset: 49,615,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0643970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1716550","Offset: 49,619,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0644102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1731109","Offset: 49,624,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0644217 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1734343","Offset: 49,628,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0644345 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1735375","Offset: 49,632,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0644469 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1743738","Offset: 49,636,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0644614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1746153","Offset: 49,640,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0644742 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1747365","Offset: 49,644,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0644870 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1755386","Offset: 49,648,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0644985 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1757285","Offset: 49,652,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0645130 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1760271","Offset: 49,656,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0645258 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1769317","Offset: 49,660,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0645382 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1770392","Offset: 49,665,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0645527 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1773148","Offset: 49,669,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0645647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1782449","Offset: 49,673,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0645770 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1783486","Offset: 49,677,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0645894 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1784130","Offset: 49,681,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0646022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1788389","Offset: 49,685,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0646150 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1796785","Offset: 49,689,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0646274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1798210","Offset: 49,693,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0646385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1799465","Offset: 49,697,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0646509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1803650","Offset: 49,701,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0646637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1811893","Offset: 49,705,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0646760 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1812978","Offset: 49,710,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0646888 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1815397","Offset: 49,714,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0646999 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1816805","Offset: 49,718,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0647144 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1827446","Offset: 49,722,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0647375 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1828311","Offset: 49,726,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0647520 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1830778","Offset: 49,730,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0647648 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1831836","Offset: 49,734,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0647763 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1842742","Offset: 49,738,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0647891 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1843689","Offset: 49,742,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0648015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1845980","Offset: 49,746,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0648143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1847307","Offset: 49,751,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0648266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1857761","Offset: 49,755,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0648399 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1858942","Offset: 49,759,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0648514 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1861216","Offset: 49,763,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0648633 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1862215","Offset: 49,767,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0648761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1873236","Offset: 49,771,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0648889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1874277","Offset: 49,775,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0649013 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1876171","Offset: 49,779,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0649128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1877656","Offset: 49,783,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0649261 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1887059","Offset: 49,787,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0649393 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1888574","Offset: 49,792,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0649517 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1891573","Offset: 49,796,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0649645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1899799","Offset: 49,800,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0649807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1900994","Offset: 49,804,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0649939 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1902586","Offset: 49,808,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0650127 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1905047","Offset: 49,812,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0650306 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1915049","Offset: 49,816,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0650438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1916035","Offset: 49,820,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0650583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1918868","Offset: 49,824,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0650724 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1919849","Offset: 49,828,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0650873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1930234","Offset: 49,832,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0650997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1931296","Offset: 49,837,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0651125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1933852","Offset: 49,841,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0651253 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1934962","Offset: 49,845,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0651368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1945466","Offset: 49,849,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0651501 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1946502","Offset: 49,853,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0651633 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1948900","Offset: 49,857,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0651757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1949980","Offset: 49,861,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0651880 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1961223","Offset: 49,865,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0652013 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1962438","Offset: 49,869,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0652128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1964755","Offset: 49,873,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0652256 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1965677","Offset: 49,878,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0652384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1976194","Offset: 49,882,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0652508 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1977333","Offset: 49,886,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0652636 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1980081","Offset: 49,890,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0652751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1981122","Offset: 49,894,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0652879 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1991802","Offset: 49,898,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0653011 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1992813","Offset: 49,902,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0653139 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1995109","Offset: 49,906,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0653267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.1996077","Offset: 49,910,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0653399 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2007256","Offset: 49,914,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0653514 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2008259","Offset: 49,918,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0653642 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2010665","Offset: 49,923,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0653770 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2011625","Offset: 49,927,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0653898 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2022181","Offset: 49,931,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0654022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2023363","Offset: 49,935,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0654133 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2025786","Offset: 49,939,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0654265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2026862","Offset: 49,943,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0654393 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2037012","Offset: 49,947,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0654521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2038070","Offset: 49,951,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0654645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2040971","Offset: 49,955,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0654782 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2041944","Offset: 49,959,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0654893 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2052704","Offset: 49,964,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0655016 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2053742","Offset: 49,968,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0655144 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2056233","Offset: 49,972,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0655268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2057253","Offset: 49,976,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0655409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2067770","Offset: 49,980,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0655524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2068811","Offset: 49,984,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0655669 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2071487","Offset: 49,988,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0655814 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2072528","Offset: 49,992,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0656121 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2082806","Offset: 49,996,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0656305 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2084145","Offset: 50,000,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0656522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2085311","Offset: 50,004,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0656702 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2088647","Offset: 50,009,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0656877 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2098101","Offset: 50,013,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0657022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2099104","Offset: 50,017,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0657150 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2102027","Offset: 50,021,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0657282 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2103094","Offset: 50,025,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0657406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2113048","Offset: 50,029,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0657521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2114200","Offset: 50,033,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0657653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2116457","Offset: 50,037,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0657781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2117413","Offset: 50,041,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0657926 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2128152","Offset: 50,045,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0658054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2129215","Offset: 50,050,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0658186 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2131515","Offset: 50,054,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0658306 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2132461","Offset: 50,058,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0658430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2143870","Offset: 50,062,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0658553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2145066","Offset: 50,066,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0658681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2146081","Offset: 50,070,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0658805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2150330","Offset: 50,074,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0658925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2158556","Offset: 50,078,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0659053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2159614","Offset: 50,082,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0659198 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2162746","Offset: 50,086,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0659347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2163702","Offset: 50,091,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0659573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2173575","Offset: 50,095,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0659705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2174527","Offset: 50,099,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0659842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2176267","Offset: 50,103,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0659970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2178106","Offset: 50,107,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0660098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2189430","Offset: 50,111,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0660222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2190488","Offset: 50,115,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0660354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2192856","Offset: 50,119,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0660469 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2193765","Offset: 50,123,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0660601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2204155","Offset: 50,127,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0660742 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2205426","Offset: 50,131,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0660874 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2207722","Offset: 50,136,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0660998 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2208737","Offset: 50,140,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0661130 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2219425","Offset: 50,144,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0662001 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2219698","Offset: 50,148,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0662137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2222275","Offset: 50,152,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0662270 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2223422","Offset: 50,156,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0662393 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2233915","Offset: 50,160,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0662526 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2234993","Offset: 50,164,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0662641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2237541","Offset: 50,168,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0662790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2238557","Offset: 50,172,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0662914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2249116","Offset: 50,177,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0663042 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2250162","Offset: 50,181,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0663166 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2252491","Offset: 50,185,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0663298 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2253464","Offset: 50,189,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0663417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2264323","Offset: 50,193,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0663545 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2265586","Offset: 50,197,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0663678 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2266618","Offset: 50,201,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0663827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2270923","Offset: 50,205,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0663964 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2279879","Offset: 50,209,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0664079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2280886","Offset: 50,213,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0664207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2283629","Offset: 50,217,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0664330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2284513","Offset: 50,222,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0664463 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2294552","Offset: 50,226,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0664586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2295850","Offset: 50,230,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0664719 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2298251","Offset: 50,234,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0664834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2299339","Offset: 50,238,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0664979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2309870","Offset: 50,242,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0665107 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2310928","Offset: 50,246,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0665231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2313556","Offset: 50,250,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0665380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2314883","Offset: 50,254,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0665491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2325972","Offset: 50,258,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0665623 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2327572","Offset: 50,263,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0665747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2328754","Offset: 50,267,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0665943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2331920","Offset: 50,271,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0666148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2340952","Offset: 50,275,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0666276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2341942","Offset: 50,279,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0666408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2344797","Offset: 50,283,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0666536 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2345787","Offset: 50,287,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0666698 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2355848","Offset: 50,291,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0666822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2356923","Offset: 50,295,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0666959 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2359341","Offset: 50,299,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0667074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2360464","Offset: 50,304,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0667206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2371489","Offset: 50,308,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0667351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2372492","Offset: 50,312,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0667496 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2374911","Offset: 50,316,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0667637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2375909","Offset: 50,320,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0667752 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2386551","Offset: 50,324,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0667889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2387975","Offset: 50,328,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0668017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2389247","Offset: 50,332,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0668149 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2393761","Offset: 50,336,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0668277 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2402055","Offset: 50,340,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0668409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2403191","Offset: 50,344,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0668525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2404402","Offset: 50,349,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0668661 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2407082","Offset: 50,353,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0668887 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2417663","Offset: 50,357,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0669066 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2418662","Offset: 50,361,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0669203 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2419864","Offset: 50,365,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0669318 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2424392","Offset: 50,369,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0669446 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2432392","Offset: 50,373,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0669574 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2433428","Offset: 50,377,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0669702 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2435698","Offset: 50,381,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0669830 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2436654","Offset: 50,385,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0669958 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2447035","Offset: 50,390,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0670073 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2448392","Offset: 50,394,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0670201 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2449621","Offset: 50,398,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0670334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2453857","Offset: 50,402,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0670457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2463035","Offset: 50,406,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0670590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2464191","Offset: 50,410,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0670705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2466917","Offset: 50,414,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0670833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2467890","Offset: 50,418,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0670974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2478207","Offset: 50,422,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0671119 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2479798","Offset: 50,426,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0671247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2480515","Offset: 50,430,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0671379 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2482457","Offset: 50,435,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0671494 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2492893","Offset: 50,439,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0671622 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2493904","Offset: 50,443,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0671750 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2496366","Offset: 50,447,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0671874 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2497479","Offset: 50,451,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0672006 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2508513","Offset: 50,455,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0672121 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2510003","Offset: 50,459,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0672254 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2511256","Offset: 50,463,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0672377 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2515447","Offset: 50,467,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0672505 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2523831","Offset: 50,471,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0672633 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2524821","Offset: 50,476,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0672761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2528153","Offset: 50,480,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0672877 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2529326","Offset: 50,484,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0673005 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2539310","Offset: 50,488,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0673128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2540420","Offset: 50,492,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0673252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2542732","Offset: 50,496,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0673384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2543790","Offset: 50,500,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0673517 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2555173","Offset: 50,504,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0673649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2556214","Offset: 50,508,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0673790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2558501","Offset: 50,512,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0673918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2559470","Offset: 50,516,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0674046 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2570294","Offset: 50,521,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0674178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2571498","Offset: 50,525,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0674289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2572539","Offset: 50,529,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0674438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2576716","Offset: 50,533,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0674566 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2584912","Offset: 50,537,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0674690 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2586226","Offset: 50,541,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0674822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2587937","Offset: 50,545,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0674937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2590310","Offset: 50,549,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0675070 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2600276","Offset: 50,553,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0675198 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2601543","Offset: 50,557,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0675321 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2603797","Offset: 50,562,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0675445 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2604727","Offset: 50,566,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0675573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2615082","Offset: 50,570,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0675705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2616106","Offset: 50,574,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0675919 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2618495","Offset: 50,578,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0676072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2619481","Offset: 50,582,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0676192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2630356","Offset: 50,586,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0676324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2631730","Offset: 50,590,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0676448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2632733","Offset: 50,594,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0676593 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2635728","Offset: 50,598,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0676721 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2646036","Offset: 50,603,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0676836 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2647073","Offset: 50,607,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0676973 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2649560","Offset: 50,611,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0677152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2650482","Offset: 50,615,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0677301 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2660701","Offset: 50,619,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0677425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2661716","Offset: 50,623,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0677561 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2664085","Offset: 50,627,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0677677 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2665053","Offset: 50,631,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0677805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2675903","Offset: 50,635,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0677933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2676952","Offset: 50,639,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0678056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2679278","Offset: 50,643,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0678180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2680213","Offset: 50,648,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0678312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2691549","Offset: 50,652,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0678428 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2692888","Offset: 50,656,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0678560 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2693904","Offset: 50,660,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0678756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2698043","Offset: 50,664,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0678922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2706828","Offset: 50,668,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0679055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2707839","Offset: 50,672,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0679178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2710592","Offset: 50,676,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0679306 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2711628","Offset: 50,680,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0679434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2721834","Offset: 50,684,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0679550 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2723203","Offset: 50,689,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0679682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2725486","Offset: 50,693,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0679810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2726403","Offset: 50,697,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0679938 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2737339","Offset: 50,701,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0680062 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2738546","Offset: 50,705,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0680194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2740825","Offset: 50,709,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0680322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2741849","Offset: 50,713,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0680454 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2752529","Offset: 50,717,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0680578 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2753766","Offset: 50,721,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0680706 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2756257","Offset: 50,725,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0680830 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2757230","Offset: 50,729,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0680962 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2767790","Offset: 50,734,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0681077 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2768874","Offset: 50,738,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0681209 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2771494","Offset: 50,742,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0681333 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2772415","Offset: 50,746,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0681457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2783001","Offset: 50,750,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0681589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2784157","Offset: 50,754,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0681704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2786171","Offset: 50,758,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0681832 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2795882","Offset: 50,762,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0681960 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2797350","Offset: 50,766,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0682088 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2797964","Offset: 50,770,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0682233 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2802235","Offset: 50,775,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0682366 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2810486","Offset: 50,779,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0682494 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2811562","Offset: 50,783,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0682639 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2814169","Offset: 50,787,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0682784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2815171","Offset: 50,791,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0682908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2825970","Offset: 50,795,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0683057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2826990","Offset: 50,799,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0683189 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2829320","Offset: 50,803,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0683501 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2830646","Offset: 50,807,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0683633 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2840678","Offset: 50,811,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0683765 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2841710","Offset: 50,816,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0683893 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2843204","Offset: 50,820,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0684021 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2846016","Offset: 50,824,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0684145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2855568","Offset: 50,828,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0684277 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2856750","Offset: 50,832,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0684405 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2859063","Offset: 50,836,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0684554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2860143","Offset: 50,840,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0684687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2871543","Offset: 50,844,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0684802 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2872533","Offset: 50,848,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0684956 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2875830","Offset: 50,852,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0685118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2876688","Offset: 50,856,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0685361 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2886557","Offset: 50,861,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0685604 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2887411","Offset: 50,865,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0685749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2889911","Offset: 50,869,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0685873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2891285","Offset: 50,873,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0686009 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2904055","Offset: 50,877,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0686133 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2905083","Offset: 50,881,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0686248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2907605","Offset: 50,885,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0686381 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2908526","Offset: 50,889,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0686513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2918207","Offset: 50,893,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0686637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2919803","Offset: 50,897,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0686765 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2922329","Offset: 50,902,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0686897 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2923865","Offset: 50,906,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0687012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2933252","Offset: 50,910,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0687136 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2934297","Offset: 50,914,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0687268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2939131","Offset: 50,918,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0687396 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2944853","Offset: 50,922,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0687524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2945954","Offset: 50,926,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0687639 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2955106","Offset: 50,930,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0687772 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2956219","Offset: 50,934,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0687946 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2961280","Offset: 50,938,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0688173 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2967534","Offset: 50,942,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0688296 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2968661","Offset: 50,947,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0688424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2977882","Offset: 50,951,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0688548 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2980650","Offset: 50,955,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0688676 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2983654","Offset: 50,959,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0688800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2991970","Offset: 50,963,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0688911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2994717","Offset: 50,967,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0689043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.2999197","Offset: 50,971,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0689171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3005909","Offset: 50,975,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0689299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3008601","Offset: 50,979,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0689423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3017642","Offset: 50,983,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0689559 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3020318","Offset: 50,988,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0689675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3632188","Offset: 50,992,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0689824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3300467","Offset: 50,996,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0689952 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3481408","Offset: 51,000,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0690080 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3482342","Offset: 51,004,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0690208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3482999","Offset: 51,008,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0690340 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3488000","Offset: 51,012,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0690451 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3488538","Offset: 51,016,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0690596 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3489020","Offset: 51,020,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0690728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3497793","Offset: 51,024,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0690852 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3497161","Offset: 51,028,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0690984 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3495830","Offset: 51,033,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0691100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3499469","Offset: 51,037,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0691232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3498453","Offset: 51,041,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0691356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3497877","Offset: 51,045,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0691484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3498654","Offset: 51,049,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0691607 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3508771","Offset: 51,053,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0691740 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3507661","Offset: 51,057,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0691868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3509022","Offset: 51,061,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0692000 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3511249","Offset: 51,065,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0692128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3510660","Offset: 51,069,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0692252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3509913","Offset: 51,074,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0692384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3509240","Offset: 51,078,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0692503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3521174","Offset: 51,082,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0692631 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3531512","Offset: 51,086,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0692764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3536158","Offset: 51,090,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0692892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3538709","Offset: 51,094,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0693020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3540284","Offset: 51,098,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0693148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3541009","Offset: 51,102,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0693267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3544990","Offset: 51,106,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0693395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3546249","Offset: 51,110,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0693557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3549961","Offset: 51,115,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0693715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3550929","Offset: 51,119,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0693873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3555021","Offset: 51,123,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0693988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3555956","Offset: 51,127,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0694120 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3556976","Offset: 51,131,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0694248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3563034","Offset: 51,135,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0694376 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3563930","Offset: 51,139,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0694526 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3565274","Offset: 51,143,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0694739 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3569677","Offset: 51,147,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0694867 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3571328","Offset: 51,151,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0694995 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3576201","Offset: 51,155,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0695127 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3577494","Offset: 51,160,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0695243 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3585587","Offset: 51,164,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0695375 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3586987","Offset: 51,168,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0695503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3586308","Offset: 51,172,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0695635 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3587695","Offset: 51,176,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0695776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3594210","Offset: 51,180,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0695912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3597705","Offset: 51,184,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0696028 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3601476","Offset: 51,188,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0696156 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3606545","Offset: 51,192,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0696284 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3609267","Offset: 51,196,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0696407 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3610838","Offset: 51,201,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0696557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3639834","Offset: 51,205,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0696668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3643251","Offset: 51,209,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0696800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3645944","Offset: 51,213,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0696924 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3647390","Offset: 51,217,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0697052 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3646891","Offset: 51,221,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0697175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3646200","Offset: 51,225,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0697308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3647620","Offset: 51,229,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0697419 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3656499","Offset: 51,233,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0697606 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3655920","Offset: 51,237,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0697798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3654921","Offset: 51,241,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0697922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3659111","Offset: 51,246,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0698054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3658629","Offset: 51,250,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0698182 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3658130","Offset: 51,254,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0698310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3657545","Offset: 51,258,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0698438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3656406","Offset: 51,262,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0698553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3668131","Offset: 51,266,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0698690 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3667448","Offset: 51,270,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0698818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3665839","Offset: 51,274,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0698946 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3671190","Offset: 51,278,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0699074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3670716","Offset: 51,282,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0699206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3670256","Offset: 51,287,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0699326 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3669154","Offset: 51,291,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0699471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3668604","Offset: 51,295,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0699599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3668058","Offset: 51,299,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0699727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3680316","Offset: 51,303,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0699855 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3678788","Offset: 51,307,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0699987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3680730","Offset: 51,311,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0700107 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3683063","Offset: 51,315,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0700235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3682035","Offset: 51,319,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0700363 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3681557","Offset: 51,323,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0700486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3681067","Offset: 51,328,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0700614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3689656","Offset: 51,332,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0700729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3691056","Offset: 51,336,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0700879 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3690479","Offset: 51,340,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0701024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3693820","Offset: 51,344,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0701169 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3693312","Offset: 51,348,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0701310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3692813","Offset: 51,352,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0701459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3691777","Offset: 51,356,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0701570 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3692182","Offset: 51,360,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0701702 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3700690","Offset: 51,364,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0701877 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3705690","Offset: 51,368,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0702031 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3705135","Offset: 51,373,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0702172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3703864","Offset: 51,377,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0702283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3703351","Offset: 51,381,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0702415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3702737","Offset: 51,385,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0702543 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3701952","Offset: 51,389,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0702671 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3705660","Offset: 51,393,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0702795 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3713903","Offset: 51,397,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0702927 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3712290","Offset: 51,401,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0703055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3714262","Offset: 51,405,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0703183 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3717099","Offset: 51,409,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0703315 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3716626","Offset: 51,414,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0703439 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3715815","Offset: 51,418,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0703584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3715196","Offset: 51,422,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0703703 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3714702","Offset: 51,426,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0703831 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3725530","Offset: 51,430,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0703959 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3725010","Offset: 51,434,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0704147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3723986","Offset: 51,438,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0704326 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3727762","Offset: 51,442,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0704459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3727292","Offset: 51,446,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0704591 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3726806","Offset: 51,450,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0704783 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3726089","Offset: 51,454,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0704915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3725347","Offset: 51,459,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0705035 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3736853","Offset: 51,463,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0705167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3736342","Offset: 51,467,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0705299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3735399","Offset: 51,471,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0705448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3737481","Offset: 51,475,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0705576 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3739832","Offset: 51,479,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0705709 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3739324","Offset: 51,483,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0705824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3738731","Offset: 51,487,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0705952 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3738245","Offset: 51,491,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0706080 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3737408","Offset: 51,495,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0706204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3749577","Offset: 51,500,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0706332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3749065","Offset: 51,504,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0706438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3747499","Offset: 51,508,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0706571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3752474","Offset: 51,512,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0706694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3751851","Offset: 51,516,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0706818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3751382","Offset: 51,520,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0707014 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3750537","Offset: 51,524,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0707193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3749987","Offset: 51,528,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0707334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3749343","Offset: 51,532,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0707462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3762642","Offset: 51,536,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0707586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3762057","Offset: 51,540,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0707701 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3760517","Offset: 51,545,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0707851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3765342","Offset: 51,549,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0707983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3764779","Offset: 51,553,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0708115 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3763798","Offset: 51,557,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0708239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3763217","Offset: 51,561,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0708375 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3762633","Offset: 51,565,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0708495 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3771977","Offset: 51,569,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0708623 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3773739","Offset: 51,573,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0708751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3772596","Offset: 51,577,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0708896 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3776180","Offset: 51,581,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0709020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3775369","Offset: 51,586,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0709135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3774900","Offset: 51,590,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0709263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3774426","Offset: 51,594,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0709391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3773876","Offset: 51,598,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0709515 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3781581","Offset: 51,602,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0709638 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3782546","Offset: 51,606,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0709771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3782972","Offset: 51,610,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0709886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3784107","Offset: 51,614,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0710039 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3788093","Offset: 51,618,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0710176 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3788805","Offset: 51,622,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0710312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3789326","Offset: 51,627,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0710436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3789803","Offset: 51,631,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0710551 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3798371","Offset: 51,635,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0710684 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3797846","Offset: 51,639,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0710812 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3796898","Offset: 51,643,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0710935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3801443","Offset: 51,647,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0711059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3800790","Offset: 51,651,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0711196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3800286","Offset: 51,655,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0711307 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3799855","Offset: 51,659,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0711430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3798981","Offset: 51,663,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0711558 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3798380","Offset: 51,667,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0711682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3810864","Offset: 51,672,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0711806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3811341","Offset: 51,676,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0711921 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3809827","Offset: 51,680,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0712049 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3814051","Offset: 51,684,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0712177 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3813483","Offset: 51,688,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0712301 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3812971","Offset: 51,692,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0712424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3812054","Offset: 51,696,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0712557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3811542","Offset: 51,700,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0712672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3813952","Offset: 51,704,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0712796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3823902","Offset: 51,708,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0712924 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3823347","Offset: 51,713,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0713069 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3822251","Offset: 51,717,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0713192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3826919","Offset: 51,721,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0713316 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3826416","Offset: 51,725,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0713525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3825716","Offset: 51,729,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0713696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3824320","Offset: 51,733,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0713832 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3823771","Offset: 51,737,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0713948 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3824854","Offset: 51,741,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0714076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3836194","Offset: 51,745,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0714204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3835695","Offset: 51,749,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0714332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3834714","Offset: 51,753,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0714455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3839126","Offset: 51,758,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0714575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3838627","Offset: 51,762,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0714703 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3837961","Offset: 51,766,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0714835 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3837454","Offset: 51,770,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0714963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3836660","Offset: 51,774,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0715091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3836071","Offset: 51,778,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0715219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3847655","Offset: 51,782,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0715334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3846209","Offset: 51,786,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0715458 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3850036","Offset: 51,790,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0715586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3849242","Offset: 51,794,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0715714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3848786","Offset: 51,799,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0715855 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3848303","Offset: 51,803,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0715970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3847779","Offset: 51,807,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0716115 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3856705","Offset: 51,811,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0716307 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3855864","Offset: 51,815,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0716486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3858352","Offset: 51,819,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0716610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3857869","Offset: 51,823,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0716734 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3856858","Offset: 51,827,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0716866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3863723","Offset: 51,831,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0716990 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3865579","Offset: 51,835,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0717118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3864555","Offset: 51,840,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0717229 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3865997","Offset: 51,844,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0717361 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3871412","Offset: 51,848,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0717489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3870618","Offset: 51,852,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0717617 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3873123","Offset: 51,856,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0717741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3872636","Offset: 51,860,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0717873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3871655","Offset: 51,864,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0717988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3879476","Offset: 51,868,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0718116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3878691","Offset: 51,872,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0718257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3881439","Offset: 51,876,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0718389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3880867","Offset: 51,880,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0718526 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3880184","Offset: 51,885,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0718637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3887079","Offset: 51,889,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0718786 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3886264","Offset: 51,893,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0718918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3888773","Offset: 51,897,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0719080 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3888270","Offset: 51,901,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0719208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3887711","Offset: 51,905,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0719345 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3894576","Offset: 51,909,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0719460 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3893799","Offset: 51,913,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0719584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3896517","Offset: 51,917,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0719733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3895886","Offset: 51,921,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0719861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3895361","Offset: 51,926,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0719985 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3903105","Offset: 51,930,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0720096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3901906","Offset: 51,934,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0720228 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3903988","Offset: 51,938,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0720356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3903497","Offset: 51,942,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0720480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3904184","Offset: 51,946,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0720604 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3913246","Offset: 51,950,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0720736 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3912551","Offset: 51,954,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0720851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3910874","Offset: 51,958,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0720975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3913750","Offset: 51,962,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0721120 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3915888","Offset: 51,966,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0721244 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3915252","Offset: 51,971,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0721367 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3914318","Offset: 51,975,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0721483 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3913715","Offset: 51,979,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0721611 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3924792","Offset: 51,983,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0721739 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3923580","Offset: 51,987,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0721867 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3922509","Offset: 51,991,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0721990 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3927583","Offset: 51,995,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0722123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3925846","Offset: 51,999,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0722238 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3925184","Offset: 52,003,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0722361 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3926495","Offset: 52,007,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0722485 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3925927","Offset: 52,012,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0722643 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3933309","Offset: 52,016,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0722831 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3936338","Offset: 52,020,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0722972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3935177","Offset: 52,024,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0723100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3934678","Offset: 52,028,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0723228 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3934029","Offset: 52,032,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0723377 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3936346","Offset: 52,036,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0723492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3945353","Offset: 52,040,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0723620 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3944150","Offset: 52,044,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0723748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3943173","Offset: 52,048,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0723876 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3947935","Offset: 52,052,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0724000 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3947154","Offset: 52,057,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0724115 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3946621","Offset: 52,061,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0724264 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3946002","Offset: 52,065,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0724409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3945435","Offset: 52,069,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0724537 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3955662","Offset: 52,073,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0724661 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3956088","Offset: 52,077,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0724798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3954625","Offset: 52,081,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0724913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3957987","Offset: 52,085,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0725037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3957295","Offset: 52,089,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0725169 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3956528","Offset: 52,093,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0725301 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3958529","Offset: 52,098,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0725476 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3957940","Offset: 52,102,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0725869 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3967429","Offset: 52,106,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0725997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3966904","Offset: 52,110,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0726112 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3965991","Offset: 52,114,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0726240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3970527","Offset: 52,118,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0726351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3969929","Offset: 52,122,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0726466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3969345","Offset: 52,126,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0726598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3968859","Offset: 52,130,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0726713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3968193","Offset: 52,134,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0726824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3967651","Offset: 52,139,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0726948 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3979154","Offset: 52,143,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0727072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3980536","Offset: 52,147,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0727187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3979956","Offset: 52,151,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0727319 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3983080","Offset: 52,155,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0727447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3982551","Offset: 52,159,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0727575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3982081","Offset: 52,163,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0727708 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3981432","Offset: 52,167,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0727857 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3980750","Offset: 52,171,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0727989 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3980285","Offset: 52,175,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0728113 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3993584","Offset: 52,179,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0728241 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3992952","Offset: 52,184,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0728369 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3991839","Offset: 52,188,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0728493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3996391","Offset: 52,192,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0728608 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3995743","Offset: 52,196,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0728740 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3995141","Offset: 52,200,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0728868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3994279","Offset: 52,204,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0728992 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3993643","Offset: 52,208,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0729116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.3996246","Offset: 52,212,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0729252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4006397","Offset: 52,216,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0729367 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4005740","Offset: 52,220,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0729491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4003820","Offset: 52,225,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0729619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4009648","Offset: 52,229,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0729747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4009072","Offset: 52,233,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0729871 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4008466","Offset: 52,237,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0729986 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4007839","Offset: 52,241,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0730114 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4006960","Offset: 52,245,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0730242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4006320","Offset: 52,249,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0730387 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4018749","Offset: 52,253,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0730511 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4018130","Offset: 52,257,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0730643 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4016376","Offset: 52,261,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0730758 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4022290","Offset: 52,265,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0730886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4019547","Offset: 52,270,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0731019 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4018910","Offset: 52,274,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0731142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4021441","Offset: 52,278,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0731270 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4020818","Offset: 52,282,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0731381 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4019525","Offset: 52,286,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0731513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4031767","Offset: 52,290,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0731637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4031080","Offset: 52,294,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0731761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4029364","Offset: 52,298,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0731889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4034544","Offset: 52,302,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0732021 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4033883","Offset: 52,306,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0732136 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4033017","Offset: 52,311,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0732281 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4032411","Offset: 52,315,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0732456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4031711","Offset: 52,319,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0732648 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4042924","Offset: 52,323,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0732798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4041724","Offset: 52,327,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0732930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4040590","Offset: 52,331,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0733071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4044937","Offset: 52,335,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0733199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4044383","Offset: 52,339,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0733331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4045479","Offset: 52,343,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0733451 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4043691","Offset: 52,347,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0733574 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4043065","Offset: 52,352,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0733702 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4052387","Offset: 52,356,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0733826 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4053855","Offset: 52,360,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0733950 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4053176","Offset: 52,364,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0734065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4057784","Offset: 52,368,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0734197 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4057192","Offset: 52,372,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0734325 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4056616","Offset: 52,376,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0734453 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4056005","Offset: 52,380,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0734598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4055229","Offset: 52,384,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0734748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4065639","Offset: 52,388,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0734901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4064978","Offset: 52,392,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0735055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4063864","Offset: 52,397,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0735204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4068780","Offset: 52,401,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0735422 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4068109","Offset: 52,405,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0735558 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4067534","Offset: 52,409,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0735691 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4066202","Offset: 52,413,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0735819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4065536","Offset: 52,417,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0735947 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4066710","Offset: 52,421,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0736083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4078256","Offset: 52,425,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0736203 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4077594","Offset: 52,429,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0736326 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4076503","Offset: 52,433,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0736471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4081418","Offset: 52,438,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0736599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4080842","Offset: 52,442,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0736727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4080227","Offset: 52,446,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0736860 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4079625","Offset: 52,450,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0736992 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4078798","Offset: 52,454,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0737124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4078120","Offset: 52,458,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0737252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4089550","Offset: 52,462,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0737380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4088483","Offset: 52,466,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0737512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4091918","Offset: 52,470,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0737628 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4091030","Offset: 52,474,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0737751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4090446","Offset: 52,478,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0737884 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4092118","Offset: 52,483,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0738012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4089618","Offset: 52,487,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0738135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4100686","Offset: 52,491,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0738251 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4100062","Offset: 52,495,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0738383 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4098945","Offset: 52,499,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0738507 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4103544","Offset: 52,503,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0738635 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4102981","Offset: 52,507,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0738780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4102388","Offset: 52,511,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0738912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4101795","Offset: 52,515,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0739027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4101181","Offset: 52,519,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0739168 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4111967","Offset: 52,524,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0739313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4111310","Offset: 52,528,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0739441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4110196","Offset: 52,532,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0739565 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4114765","Offset: 52,536,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0739684 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4114177","Offset: 52,540,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0739816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4113601","Offset: 52,544,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0739944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4112846","Offset: 52,548,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0740068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4112138","Offset: 52,552,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0740192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4124191","Offset: 52,556,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0740328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4123479","Offset: 52,560,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0740439 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4121729","Offset: 52,564,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0740563 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4127161","Offset: 52,569,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0740691 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4126550","Offset: 52,573,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0740819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4125475","Offset: 52,577,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0740943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4124886","Offset: 52,581,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0741058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4124195","Offset: 52,585,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0741186 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4132874","Offset: 52,589,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0741318 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4131927","Offset: 52,593,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0741463 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4135297","Offset: 52,597,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0741604 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4134708","Offset: 52,601,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0741818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4134059","Offset: 52,605,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0741997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4133372","Offset: 52,610,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0742138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4142409","Offset: 52,614,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0742261 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4144296","Offset: 52,618,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0742376 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4144727","Offset: 52,622,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0742509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4148417","Offset: 52,626,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0742632 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4147841","Offset: 52,630,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0742760 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4147283","Offset: 52,634,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0742884 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4146736","Offset: 52,638,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0743059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4145810","Offset: 52,642,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0743208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4145192","Offset: 52,646,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0743349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4144582","Offset: 52,651,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0743477 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4157761","Offset: 52,655,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0743622 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4157087","Offset: 52,659,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0743746 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4155995","Offset: 52,663,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0743874 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4160249","Offset: 52,667,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0744006 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4159647","Offset: 52,671,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0744130 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4158567","Offset: 52,675,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0744258 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4157898","Offset: 52,679,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0744390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4166820","Offset: 52,683,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0744540 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4168786","Offset: 52,687,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0744732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4167480","Offset: 52,691,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0744885 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4171265","Offset: 52,696,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0745022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4170586","Offset: 52,700,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0745137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4170032","Offset: 52,704,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0745265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4169447","Offset: 52,708,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0745393 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4168778","Offset: 52,712,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0745517 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4179576","Offset: 52,716,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0745640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4178975","Offset: 52,720,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0745773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4177853","Offset: 52,724,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0745901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4182896","Offset: 52,728,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0746024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4182303","Offset: 52,732,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0746161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4181706","Offset: 52,737,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0746327 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4181053","Offset: 52,741,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0746455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4179419","Offset: 52,745,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0746566 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4191835","Offset: 52,749,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0746699 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4190221","Offset: 52,753,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0746827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4191071","Offset: 52,757,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0746950 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4195466","Offset: 52,761,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0747074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4194881","Offset: 52,765,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0747206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4194301","Offset: 52,769,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0747322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4193737","Offset: 52,773,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0747445 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4193119","Offset: 52,777,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0747578 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4192235","Offset: 52,782,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0747701 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4191600","Offset: 52,786,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0747825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4204532","Offset: 52,790,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0747940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4203935","Offset: 52,794,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0748072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4202574","Offset: 52,798,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0748218 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4207557","Offset: 52,802,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0748363 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4206960","Offset: 52,806,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0748508 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4206341","Offset: 52,810,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0748657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4205676","Offset: 52,814,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0748772 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4204387","Offset: 52,818,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0748900 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4216808","Offset: 52,823,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0749045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4216125","Offset: 52,827,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0749190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4215012","Offset: 52,831,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0749314 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4220020","Offset: 52,835,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0749429 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4219440","Offset: 52,839,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0749557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4218877","Offset: 52,843,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0749685 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4218212","Offset: 52,847,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0749813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4217277","Offset: 52,851,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0749937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4216569","Offset: 52,855,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0750069 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4229493","Offset: 52,859,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0750184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4228853","Offset: 52,864,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0750312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4227125","Offset: 52,868,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0750440 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4230478","Offset: 52,872,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0750568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4229834","Offset: 52,876,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0750692 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4232266","Offset: 52,880,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0750807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4231805","Offset: 52,884,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0750935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4230807","Offset: 52,888,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0751123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4231135","Offset: 52,892,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0751341 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4239263","Offset: 52,896,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0751511 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4243065","Offset: 52,900,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0751656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4242468","Offset: 52,904,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0751784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4241870","Offset: 52,909,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0751917 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4241255","Offset: 52,913,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0752040 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4240569","Offset: 52,917,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0752151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4243436","Offset: 52,921,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0752284 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4251965","Offset: 52,925,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0752412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4251307","Offset: 52,929,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0752544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4250207","Offset: 52,933,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0752672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4254346","Offset: 52,937,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0752804 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4253749","Offset: 52,941,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0752919 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4253181","Offset: 52,945,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0753047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4252486","Offset: 52,950,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0753171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4251846","Offset: 52,954,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0753299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4264227","Offset: 52,958,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0753423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4263566","Offset: 52,962,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0753538 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4261851","Offset: 52,966,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0753670 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4265235","Offset: 52,970,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0753815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4264573","Offset: 52,974,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0753965 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4267163","Offset: 52,978,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0754174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4266228","Offset: 52,982,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0754306 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4265111","Offset: 52,986,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0754447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4282348","Offset: 52,990,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0754575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4283303","Offset: 52,995,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0754703 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4284532","Offset: 52,999,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0754818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4285181","Offset: 53,003,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0754946 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4291543","Offset: 53,007,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0755074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4292422","Offset: 53,011,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0755202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4379176","Offset: 53,015,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0755330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4380012","Offset: 53,019,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0755462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4387517","Offset: 53,023,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0755573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4389681","Offset: 53,027,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0755701 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4388537","Offset: 53,031,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0755829 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4390146","Offset: 53,036,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0755991 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4390794","Offset: 53,040,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0756119 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4400091","Offset: 53,044,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0756235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4401353","Offset: 53,048,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0756363 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4402109","Offset: 53,052,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0756491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4403222","Offset: 53,056,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0756619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4411175","Offset: 53,060,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0756747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4412447","Offset: 53,064,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0756879 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4413113","Offset: 53,068,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0756994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4421587","Offset: 53,072,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0757122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4423468","Offset: 53,076,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0757250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4424168","Offset: 53,081,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0757391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4425209","Offset: 53,085,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0757519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4434169","Offset: 53,089,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0757630 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4436042","Offset: 53,093,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0757762 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4374785","Offset: 53,097,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0757890 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4545427","Offset: 53,101,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0758018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4544351","Offset: 53,105,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0758142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4545704","Offset: 53,109,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0758274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4548507","Offset: 53,113,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0758389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4547936","Offset: 53,117,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0758513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4547364","Offset: 53,122,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0758820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4546519","Offset: 53,126,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0758952 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4568343","Offset: 53,130,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0759076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4566726","Offset: 53,134,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0759196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4568910","Offset: 53,138,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0759328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4569785","Offset: 53,142,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0759482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4569162","Offset: 53,146,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0759627 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4580571","Offset: 53,150,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0759780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4579057","Offset: 53,154,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0759912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4581199","Offset: 53,158,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0760028 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4582218","Offset: 53,163,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0760151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4581736","Offset: 53,167,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0760279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4581233","Offset: 53,171,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0760403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4589382","Offset: 53,175,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0760552 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4590991","Offset: 53,179,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0760744 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4590291","Offset: 53,183,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0760902 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4592599","Offset: 53,187,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0761039 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4599976","Offset: 53,191,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0761171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4601687","Offset: 53,195,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0761286 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4601017","Offset: 53,199,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0761414 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4603863","Offset: 53,203,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0761542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4611424","Offset: 53,208,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0761687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4612589","Offset: 53,212,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0761811 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4613736","Offset: 53,216,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0761931 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4621736","Offset: 53,220,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0762076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4622977","Offset: 53,224,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0762208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4624411","Offset: 53,228,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0762332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4648198","Offset: 53,232,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0762485 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4759260","Offset: 53,236,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0762618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4812614","Offset: 53,240,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0762746 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4810945","Offset: 53,244,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0762874 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4815728","Offset: 53,249,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0763002 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4814871","Offset: 53,253,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0763130 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4814303","Offset: 53,257,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0763245 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4813727","Offset: 53,261,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0763424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4812977","Offset: 53,265,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0763624 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4815456","Offset: 53,269,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0763752 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4823264","Offset: 53,273,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0763880 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4825423","Offset: 53,277,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0764008 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4824083","Offset: 53,281,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0764154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4827803","Offset: 53,285,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0764277 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4827151","Offset: 53,289,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0764397 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4826562","Offset: 53,294,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0764529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4825704","Offset: 53,298,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0764657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4825948","Offset: 53,302,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0764785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4836486","Offset: 53,306,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0764909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4835633","Offset: 53,310,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0765041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4834643","Offset: 53,314,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0765156 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4839191","Offset: 53,318,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0765284 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4838620","Offset: 53,322,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0765412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4838014","Offset: 53,326,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0765540 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4837293","Offset: 53,330,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0765668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4847618","Offset: 53,335,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0765796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4846965","Offset: 53,339,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0765911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4845246","Offset: 53,343,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0766044 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4850335","Offset: 53,347,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0766167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4849764","Offset: 53,351,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0766295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4848856","Offset: 53,355,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0766428 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4848262","Offset: 53,359,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0766551 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4847644","Offset: 53,363,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0766684 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4850152","Offset: 53,367,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0766816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4860589","Offset: 53,371,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0766965 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4859842","Offset: 53,376,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0767115 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4857845","Offset: 53,380,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0767264 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4862274","Offset: 53,384,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0767375 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4861561","Offset: 53,388,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0767503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4861083","Offset: 53,392,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0767631 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4860588","Offset: 53,396,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0767763 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4862189","Offset: 53,400,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0767921 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4872339","Offset: 53,404,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0768079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4870965","Offset: 53,408,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0768207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4869847","Offset: 53,412,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0768335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4875074","Offset: 53,416,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0768463 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4874208","Offset: 53,421,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0768587 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4873627","Offset: 53,425,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0768719 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4872953","Offset: 53,429,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0768851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4872292","Offset: 53,433,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0768979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4883727","Offset: 53,437,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0769107 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4883083","Offset: 53,441,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0769235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4881828","Offset: 53,445,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0769367 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4886407","Offset: 53,449,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0769483 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4885838","Offset: 53,453,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0769611 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4885241","Offset: 53,457,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0769739 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4884614","Offset: 53,462,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0769943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4883783","Offset: 53,466,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0770123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4894948","Offset: 53,470,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0770259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4894300","Offset: 53,474,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0770383 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4892512","Offset: 53,478,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0770515 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4898174","Offset: 53,482,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0770639 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4897517","Offset: 53,486,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0770754 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4896945","Offset: 53,490,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0770882 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4896343","Offset: 53,494,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0771027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4895477","Offset: 53,498,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0771155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4894859","Offset: 53,502,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0771283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4908034","Offset: 53,507,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0771420 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4907364","Offset: 53,511,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0771539 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4905478","Offset: 53,515,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0771667 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4909570","Offset: 53,519,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0771791 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4908977","Offset: 53,523,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0771919 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4908345","Offset: 53,527,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0772043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4911502","Offset: 53,531,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0772158 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4910965","Offset: 53,535,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0772290 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4910385","Offset: 53,539,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0772414 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4909792","Offset: 53,543,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0772563 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4920642","Offset: 53,548,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0772738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4919921","Offset: 53,552,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0772926 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4918777","Offset: 53,556,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0773062 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4923318","Offset: 53,560,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0773195 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4920868","Offset: 53,564,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0773318 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4922648","Offset: 53,568,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0773434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4922097","Offset: 53,572,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0773579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4921038","Offset: 53,576,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0773715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4932841","Offset: 53,580,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0773843 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4932141","Offset: 53,584,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0773971 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4930447","Offset: 53,588,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0774099 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4935614","Offset: 53,593,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0774219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4934961","Offset: 53,597,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0774342 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4934044","Offset: 53,601,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0774470 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4933485","Offset: 53,605,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0774594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4932841","Offset: 53,609,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0774722 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4944028","Offset: 53,613,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0774833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4942696","Offset: 53,617,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0774965 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4941592","Offset: 53,621,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0775093 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4946067","Offset: 53,625,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0775221 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4945474","Offset: 53,629,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0775345 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4944902","Offset: 53,634,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0775473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4944241","Offset: 53,638,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0775588 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4946387","Offset: 53,642,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0775746 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4954775","Offset: 53,646,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0775874 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4954165","Offset: 53,650,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0776023 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4953031","Offset: 53,654,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0776151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4956453","Offset: 53,658,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0776284 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4955099","Offset: 53,662,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0776416 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4957497","Offset: 53,666,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0776544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4957020","Offset: 53,670,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0776672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4956435","Offset: 53,675,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0776800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4967268","Offset: 53,679,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0776928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4966611","Offset: 53,683,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0777047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4965238","Offset: 53,687,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0777171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4970686","Offset: 53,691,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0777299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4970067","Offset: 53,695,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0777427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4969449","Offset: 53,699,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0777551 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4968787","Offset: 53,703,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0777666 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4967814","Offset: 53,707,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0777798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4967158","Offset: 53,711,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0777943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4979168","Offset: 53,715,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0778071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4978554","Offset: 53,720,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0778199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4977398","Offset: 53,724,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0778344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4982667","Offset: 53,728,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0778464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4982086","Offset: 53,732,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0778592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4981485","Offset: 53,736,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0778720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4980866","Offset: 53,740,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0778852 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4979753","Offset: 53,744,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0778976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4979074","Offset: 53,748,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0779087 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4992160","Offset: 53,752,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0779240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4991491","Offset: 53,756,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0779484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4989664","Offset: 53,761,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0779616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4994276","Offset: 53,765,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0779727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4993679","Offset: 53,769,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0779851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4995462","Offset: 53,773,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0779962 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4994886","Offset: 53,777,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0780068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4994294","Offset: 53,781,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0780205 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4992471","Offset: 53,785,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0780316 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.4991801","Offset: 53,789,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0780439 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5019471","Offset: 53,793,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0780555 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5020640","Offset: 53,797,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0780687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5024139","Offset: 53,801,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0780815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5023294","Offset: 53,806,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0780943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5022189","Offset: 53,810,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0781067 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5021566","Offset: 53,814,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0781199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5020926","Offset: 53,818,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0781310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5039716","Offset: 53,822,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0781455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5038573","Offset: 53,826,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0781591 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5042341","Offset: 53,830,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0781715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5041752","Offset: 53,834,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0781843 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5041171","Offset: 53,838,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0781954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5040506","Offset: 53,842,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0782138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5057226","Offset: 53,847,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0782351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5055392","Offset: 53,851,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0782496 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5058993","Offset: 53,855,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0782611 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5058370","Offset: 53,859,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0782739 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5057884","Offset: 53,863,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0782867 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5057368","Offset: 53,867,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0782995 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5059215","Offset: 53,871,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0783119 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5076439","Offset: 53,875,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0783234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5075360","Offset: 53,879,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0783362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5078270","Offset: 53,883,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0783494 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5077562","Offset: 53,888,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0783618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5076828","Offset: 53,892,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0783746 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5099838","Offset: 53,896,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0783878 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5098729","Offset: 53,900,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0783998 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5100410","Offset: 53,904,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0784126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5106106","Offset: 53,908,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0784284 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9743406","Offset: 53,912,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0784433 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5211749","Offset: 53,916,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0784561 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5212837","Offset: 53,920,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0784672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5215819","Offset: 53,924,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0784804 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5216856","Offset: 53,928,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0784932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5228291","Offset: 53,933,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0785060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5229379","Offset: 53,937,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0785184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5231798","Offset: 53,941,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0785316 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5233283","Offset: 53,945,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0785431 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5244107","Offset: 53,949,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0785576 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5245102","Offset: 53,953,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0785717 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5247580","Offset: 53,957,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0785845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5248604","Offset: 53,961,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0785986 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5259847","Offset: 53,965,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0786118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5261016","Offset: 53,969,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0786251 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5263302","Offset: 53,974,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0786379 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5264335","Offset: 53,978,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0786507 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5276162","Offset: 53,982,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0786635 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5277165","Offset: 53,986,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0786767 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5280083","Offset: 53,990,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0786886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5281266","Offset: 53,994,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0787036 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5292000","Offset: 53,998,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0787164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5293084","Offset: 54,002,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0787296 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5295490","Offset: 54,006,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0787441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5296745","Offset: 54,010,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0787560 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5307783","Offset: 54,014,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0787710 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5308768","Offset: 54,019,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0787842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5311303","Offset: 54,023,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0787970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5312685","Offset: 54,027,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0788094 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5350381","Offset: 54,031,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0788226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5357123","Offset: 54,035,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0788346 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5435902","Offset: 54,039,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0788469 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5437012","Offset: 54,043,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0788597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5439538","Offset: 54,047,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0788725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5440942","Offset: 54,051,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0788849 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5452201","Offset: 54,055,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0788981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5453225","Offset: 54,060,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0789212 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5455409","Offset: 54,064,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0789357 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5456365","Offset: 54,068,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0789493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5468061","Offset: 54,072,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0789613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5469694","Offset: 54,076,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0789741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5470769","Offset: 54,080,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0789873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5475028","Offset: 54,084,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0790065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5483949","Offset: 54,088,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0790193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5484999","Offset: 54,092,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0790308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5486198","Offset: 54,096,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0790440 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5488208","Offset: 54,100,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0790568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5499144","Offset: 54,105,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0790696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5500138","Offset: 54,109,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0790820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5502578","Offset: 54,113,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0790957 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5503657","Offset: 54,117,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0791072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5515164","Offset: 54,121,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0791196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5516192","Offset: 54,125,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0791345 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5518480","Offset: 54,129,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0791473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5519435","Offset: 54,133,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0791597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5530328","Offset: 54,137,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0791708 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5531736","Offset: 54,141,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0791874 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5541451","Offset: 54,146,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0792087 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5568857","Offset: 54,150,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0792224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5575196","Offset: 54,154,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0792339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5658725","Offset: 54,158,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0792484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5660010","Offset: 54,162,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0792616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5662514","Offset: 54,166,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0792749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5672323","Offset: 54,170,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0792872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5674790","Offset: 54,174,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0792988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5676931","Offset: 54,178,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0793120 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5684905","Offset: 54,182,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0793248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5687482","Offset: 54,187,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0793376 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5689573","Offset: 54,191,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0793504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5697219","Offset: 54,195,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0793632 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5699263","Offset: 54,199,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0793747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5701934","Offset: 54,203,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0793875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5709443","Offset: 54,207,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0794020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5711781","Offset: 54,211,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0794148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5713876","Offset: 54,215,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0794272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5722985","Offset: 54,219,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0794387 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5725601","Offset: 54,223,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0794515 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5727214","Offset: 54,227,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0794643 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5735560","Offset: 54,232,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0794771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5738064","Offset: 54,236,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0794895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5739421","Offset: 54,240,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0795027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5747771","Offset: 54,244,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0795142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5756671","Offset: 54,248,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0795266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5784114","Offset: 54,252,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0795390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5790983","Offset: 54,256,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0795518 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5882371","Offset: 54,260,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0795642 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5883480","Offset: 54,264,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0795774 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5887854","Offset: 54,268,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0795910 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5898009","Offset: 54,273,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0796038 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5899007","Offset: 54,277,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0796171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5901268","Offset: 54,281,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0796294 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5902254","Offset: 54,285,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0796427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5913360","Offset: 54,289,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0796542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5914602","Offset: 54,293,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0796666 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5915647","Offset: 54,297,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0796794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5919862","Offset: 54,301,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0796922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5928647","Offset: 54,305,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0797050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5929902","Offset: 54,309,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0797161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5932368","Offset: 54,313,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0797289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5933268","Offset: 54,318,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0797417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5944732","Offset: 54,322,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0797540 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5946512","Offset: 54,326,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0797664 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5947617","Offset: 54,330,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0797796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5950877","Offset: 54,334,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0797911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5960494","Offset: 54,338,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0798035 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5961719","Offset: 54,342,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0798163 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5964044","Offset: 54,346,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0798295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.5973252","Offset: 54,350,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0798492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6001450","Offset: 54,354,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0798662 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6008153","Offset: 54,359,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0798799 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6105023","Offset: 54,363,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0798927 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6106610","Offset: 54,367,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0799063 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6110852","Offset: 54,371,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0799179 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6120157","Offset: 54,375,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0799307 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6121548","Offset: 54,379,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0799430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6123844","Offset: 54,383,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0799558 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6124770","Offset: 54,387,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0799682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6135948","Offset: 54,391,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0799793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6136989","Offset: 54,395,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0799921 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6138201","Offset: 54,400,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0800053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6141077","Offset: 54,404,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0800198 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6151172","Offset: 54,408,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0800510 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6151991","Offset: 54,412,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0800659 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6154252","Offset: 54,416,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0800791 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6155298","Offset: 54,420,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0800928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6167031","Offset: 54,424,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0801056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6168123","Offset: 54,428,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0801231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6169296","Offset: 54,432,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0801449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6172423","Offset: 54,436,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0801572 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6181977","Offset: 54,440,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0801700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6189862","Offset: 54,445,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0801824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6220031","Offset: 54,449,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0801956 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6329024","Offset: 54,453,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0802071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6330176","Offset: 54,457,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0802199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6334498","Offset: 54,461,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0802327 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6343296","Offset: 54,465,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0802455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6344495","Offset: 54,469,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0802579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6346927","Offset: 54,473,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0802711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6348036","Offset: 54,477,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0802861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6358788","Offset: 54,481,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0802989 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6359824","Offset: 54,486,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0803117 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6362576","Offset: 54,490,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0803241 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6363566","Offset: 54,494,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0803373 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6374416","Offset: 54,498,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0803492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6375479","Offset: 54,502,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0803616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6377809","Offset: 54,506,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0803748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6378961","Offset: 54,510,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0803876 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6390396","Offset: 54,514,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0804021 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6391394","Offset: 54,518,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0804137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6393684","Offset: 54,522,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0804269 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6394602","Offset: 54,526,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0804397 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6430105","Offset: 54,531,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0804525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6436437","Offset: 54,535,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0804649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6551957","Offset: 54,539,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0804798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6552973","Offset: 54,543,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0804913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6556493","Offset: 54,547,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0805041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6557713","Offset: 54,551,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0805169 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6567104","Offset: 54,555,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0805297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6568798","Offset: 54,559,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0805417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6571076","Offset: 54,563,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0805532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6580680","Offset: 54,567,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0805664 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6583599","Offset: 54,572,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0805792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6584486","Offset: 54,576,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0805920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6594189","Offset: 54,580,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0806044 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6595430","Offset: 54,584,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0806176 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6597943","Offset: 54,588,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0806291 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6599185","Offset: 54,592,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0806415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6609894","Offset: 54,596,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0806543 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6611033","Offset: 54,600,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0806667 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6613350","Offset: 54,604,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0806795 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6614387","Offset: 54,608,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0806906 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6650875","Offset: 54,612,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0807038 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6657229","Offset: 54,617,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0807183 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6774656","Offset: 54,621,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0807311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6775808","Offset: 54,625,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0807439 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6780117","Offset: 54,629,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0807580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6787998","Offset: 54,633,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0807729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6789142","Offset: 54,637,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0807947 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6791364","Offset: 54,641,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0808092 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6792363","Offset: 54,645,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0808211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6803200","Offset: 54,649,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0808343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6804246","Offset: 54,653,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0808476 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6806895","Offset: 54,658,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0808599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6807924","Offset: 54,662,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0808723 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6819213","Offset: 54,666,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0808860 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6820241","Offset: 54,670,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0809005 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6823667","Offset: 54,674,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0809150 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6824811","Offset: 54,678,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0809303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6834842","Offset: 54,682,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0809436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6856183","Offset: 54,686,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0809594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6863923","Offset: 54,690,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0809709 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6870810","Offset: 54,694,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0809858 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6887992","Offset: 54,699,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0809986 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6891124","Offset: 54,703,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0810110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6892181","Offset: 54,707,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0810238 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6902929","Offset: 54,711,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0810370 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6903902","Offset: 54,715,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0810541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6906445","Offset: 54,719,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0810746 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6907682","Offset: 54,723,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0810891 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6918396","Offset: 54,727,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0811006 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6919467","Offset: 54,731,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0811134 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6921903","Offset: 54,735,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0811279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6923000","Offset: 54,739,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0811407 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6933786","Offset: 54,744,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0811535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6935010","Offset: 54,748,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0811667 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6937298","Offset: 54,752,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0811782 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6938339","Offset: 54,756,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0811932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6974793","Offset: 54,760,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0812064 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6981347","Offset: 54,764,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0812192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.6999377","Offset: 54,768,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0812320 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7000436","Offset: 54,772,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0812478 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7004796","Offset: 54,776,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0812849 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7012677","Offset: 54,780,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0813105 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7013624","Offset: 54,785,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0813455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7016397","Offset: 54,789,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0813809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7017212","Offset: 54,793,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0814035 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7026330","Offset: 54,797,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0814206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7027870","Offset: 54,801,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0814394 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7029948","Offset: 54,805,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0814522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7040508","Offset: 54,809,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0814650 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7041519","Offset: 54,813,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0814773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7043815","Offset: 54,817,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0814884 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7044933","Offset: 54,821,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0815038 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7080256","Offset: 54,825,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0815183 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7087348","Offset: 54,830,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0815311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7110669","Offset: 54,834,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0815435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7111761","Offset: 54,838,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0815567 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7114147","Offset: 54,842,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0815682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7115491","Offset: 54,846,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0815806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7126976","Offset: 54,850,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0815938 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7128197","Offset: 54,854,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0816083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7130493","Offset: 54,858,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0816207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7131777","Offset: 54,862,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0816318 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7143258","Offset: 54,866,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0816450 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7144295","Offset: 54,871,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0816574 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7147128","Offset: 54,875,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0816702 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7148084","Offset: 54,879,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0816834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7164455","Offset: 54,883,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0817035 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7178927","Offset: 54,887,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0817244 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7180271","Offset: 54,891,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0817436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7193984","Offset: 54,895,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0817598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7222332","Offset: 54,899,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0817713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7223506","Offset: 54,903,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0817845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7227747","Offset: 54,907,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0817973 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7237424","Offset: 54,912,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0818097 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7238473","Offset: 54,916,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0818221 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7241720","Offset: 54,920,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0818357 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7242762","Offset: 54,924,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0818473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7252933","Offset: 54,928,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0818596 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7254030","Offset: 54,932,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0818746 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7256431","Offset: 54,936,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0818874 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7257745","Offset: 54,940,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0818997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7287310","Offset: 54,944,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0819117 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7288402","Offset: 54,948,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0819245 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7296124","Offset: 54,952,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0819373 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7333317","Offset: 54,957,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0819497 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7334691","Offset: 54,961,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0819620 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7339436","Offset: 54,965,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0819770 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7348894","Offset: 54,969,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0819970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7349889","Offset: 54,973,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0820124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7352154","Offset: 54,977,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0820256 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7353174","Offset: 54,981,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0820371 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7364763","Offset: 54,985,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0820499 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7365782","Offset: 54,989,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0820631 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7368053","Offset: 54,993,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0820755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7369029","Offset: 54,998,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0820896 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7404489","Offset: 55,002,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0821028 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7411193","Offset: 55,006,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0821148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7446247","Offset: 55,010,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0821289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7447301","Offset: 55,014,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0821438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7449840","Offset: 55,018,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0821562 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7451209","Offset: 55,022,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0821690 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7462793","Offset: 55,026,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0821801 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7464013","Offset: 55,030,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0821933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7465234","Offset: 55,034,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0822065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7469454","Offset: 55,038,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0822193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7478222","Offset: 55,043,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0822321 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7479225","Offset: 55,047,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0822453 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7487519","Offset: 55,051,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0822569 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7507900","Offset: 55,055,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0822692 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7518691","Offset: 55,059,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0822825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7523981","Offset: 55,063,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0822965 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7557838","Offset: 55,067,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0823093 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7559140","Offset: 55,071,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0823204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7563108","Offset: 55,075,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0823341 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7571312","Offset: 55,079,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0823469 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7572391","Offset: 55,084,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0823597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7574828","Offset: 55,088,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0823725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7576253","Offset: 55,092,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0823861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7586873","Offset: 55,096,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0823977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7587883","Offset: 55,100,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0824105 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7597539","Offset: 55,104,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0824233 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7623685","Offset: 55,108,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0824356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7629800","Offset: 55,112,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0824480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7669591","Offset: 55,116,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0824595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7670593","Offset: 55,120,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0824723 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7673755","Offset: 55,124,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0824868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7674822","Offset: 55,129,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0824996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7686295","Offset: 55,133,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0825124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7687754","Offset: 55,137,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0825261 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7688714","Offset: 55,141,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0825402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7693223","Offset: 55,145,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0825530 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7720236","Offset: 55,149,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0825662 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7721396","Offset: 55,153,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0825786 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7729255","Offset: 55,157,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0825914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7781104","Offset: 55,161,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0826029 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7782154","Offset: 55,165,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0826170 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7784790","Offset: 55,170,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0826366 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7786109","Offset: 55,174,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0826562 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7797698","Offset: 55,178,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0826686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7798965","Offset: 55,182,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0826810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7800010","Offset: 55,186,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0826938 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7804199","Offset: 55,190,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0827061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7836900","Offset: 55,194,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0827185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7838001","Offset: 55,198,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0827300 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7846078","Offset: 55,202,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0827433 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7892490","Offset: 55,206,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0827561 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7893462","Offset: 55,211,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0827706 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7896556","Offset: 55,215,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0828525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7897017","Offset: 55,219,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0828674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7908337","Offset: 55,223,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0828794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7909386","Offset: 55,227,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0828917 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7910598","Offset: 55,231,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0829101 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7914822","Offset: 55,235,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0829314 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7946220","Offset: 55,239,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0829438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.7953840","Offset: 55,243,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0829583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8003031","Offset: 55,247,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0829694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8004098","Offset: 55,251,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0829805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8006679","Offset: 55,256,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0829924 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8007759","Offset: 55,260,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0830039 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8019667","Offset: 55,264,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0830172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8021002","Offset: 55,268,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0830283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8030474","Offset: 55,272,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0830419 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8031626","Offset: 55,276,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0830573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8059782","Offset: 55,280,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0830705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8065815","Offset: 55,284,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0830833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8113790","Offset: 55,288,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0830965 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8114758","Offset: 55,292,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0831076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8118048","Offset: 55,297,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0831209 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8128215","Offset: 55,301,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0831337 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8130881","Offset: 55,305,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0831465 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8139466","Offset: 55,309,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0831597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8164785","Offset: 55,313,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0831729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8171100","Offset: 55,317,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0831861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8225491","Offset: 55,321,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0831985 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8226472","Offset: 55,325,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0832134 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8229101","Offset: 55,329,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0832258 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8230355","Offset: 55,333,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0832390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8246838","Offset: 55,337,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0832510 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8248360","Offset: 55,342,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0832638 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8269608","Offset: 55,346,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0832766 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8278300","Offset: 55,350,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0832890 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8284704","Offset: 55,354,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0833026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8335772","Offset: 55,358,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0833141 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8336779","Offset: 55,362,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0833274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8341467","Offset: 55,366,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0833402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8356708","Offset: 55,370,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0833530 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8371390","Offset: 55,374,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0833653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8372547","Offset: 55,378,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0833786 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8385691","Offset: 55,383,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0833901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8447571","Offset: 55,387,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0834029 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8448663","Offset: 55,391,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0834161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8451693","Offset: 55,395,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0834285 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8467270","Offset: 55,399,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0834413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8481871","Offset: 55,403,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0834528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8489547","Offset: 55,407,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0834660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8558740","Offset: 55,411,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0834784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8559968","Offset: 55,415,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0834912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8561261","Offset: 55,419,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0835040 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8563936","Offset: 55,424,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0835172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8593534","Offset: 55,428,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0835283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8599947","Offset: 55,432,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0835424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8669421","Offset: 55,436,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0835629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8670390","Offset: 55,440,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0835787 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8672813","Offset: 55,444,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0835923 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8674247","Offset: 55,448,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0836047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8710142","Offset: 55,452,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0836192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8716534","Offset: 55,456,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0836503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8779860","Offset: 55,460,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0836623 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8781118","Offset: 55,464,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0836759 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8785283","Offset: 55,469,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0836892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8793607","Offset: 55,473,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0837020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8813929","Offset: 55,477,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0837143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8819826","Offset: 55,481,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0837276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8890443","Offset: 55,485,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0837391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8891591","Offset: 55,489,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0837523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8902680","Offset: 55,493,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0837651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8923007","Offset: 55,497,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0837779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.8930759","Offset: 55,501,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0837907 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9001117","Offset: 55,505,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0838035 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9002329","Offset: 55,510,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0838150 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9014126","Offset: 55,514,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0838313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9032434","Offset: 55,518,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0838530 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9041142","Offset: 55,522,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0838671 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9111995","Offset: 55,526,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0838820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9120874","Offset: 55,530,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0838948 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9136737","Offset: 55,534,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0839076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9144042","Offset: 55,538,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0839200 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9153390","Offset: 55,542,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0839315 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9222638","Offset: 55,546,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0839452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9231593","Offset: 55,550,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0839580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9235246","Offset: 55,555,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0839708 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9261021","Offset: 55,559,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0839831 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9268834","Offset: 55,563,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0839964 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9333017","Offset: 55,567,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0840075 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9354205","Offset: 55,571,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0840207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0025634","Offset: 55,575,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0840331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9783513","Offset: 55,579,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0840459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9961728","Offset: 55,583,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0840587 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9960627","Offset: 55,587,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0840732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9964475","Offset: 55,591,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0840847 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9963895","Offset: 55,596,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0840996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9962731","Offset: 55,600,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0841124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9961861","Offset: 55,604,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0841252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9973675","Offset: 55,608,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0841385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9973051","Offset: 55,612,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0841504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9971964","Offset: 55,616,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0841636 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9976406","Offset: 55,620,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0841764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9975847","Offset: 55,624,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0841892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9975271","Offset: 55,628,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0842016 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9974694","Offset: 55,632,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0842148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9974059","Offset: 55,636,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0842263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9985899","Offset: 55,641,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0842391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9985272","Offset: 55,645,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0842519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9984171","Offset: 55,649,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0842643 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9988032","Offset: 55,653,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0842797 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9987059","Offset: 55,657,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0842912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9986500","Offset: 55,661,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0843061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9985903","Offset: 55,665,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0843189 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9997082","Offset: 55,669,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0843322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9996420","Offset: 55,673,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0843445 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9995337","Offset: 55,677,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0843578 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9998088","Offset: 55,682,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0843697 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9997299","Offset: 55,686,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0843855 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9998289","Offset: 55,690,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0843991 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","3.9998665","Offset: 55,694,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0844111 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0008610","Offset: 55,698,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0844243 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0019836","Offset: 55,702,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0844358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0022328","Offset: 55,706,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0844491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0026799","Offset: 55,710,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0844614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0029692","Offset: 55,714,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0844742 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0028434","Offset: 55,718,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0844883 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0027729","Offset: 55,723,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0845015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0029940","Offset: 55,727,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0845156 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0037462","Offset: 55,731,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0845357 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0036740","Offset: 55,735,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0845523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0035567","Offset: 55,739,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0845638 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0040184","Offset: 55,743,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0845771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0039569","Offset: 55,747,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0845920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0038968","Offset: 55,751,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0846048 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0038298","Offset: 55,755,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0846172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0049002","Offset: 55,759,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0846291 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0048337","Offset: 55,763,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0846428 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0047232","Offset: 55,768,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0846552 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0052168","Offset: 55,772,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0846680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0051601","Offset: 55,776,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0846803 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0051021","Offset: 55,780,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0846940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0050393","Offset: 55,784,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0847055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0049481","Offset: 55,788,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0847187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0048798","Offset: 55,792,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0847315 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0061816","Offset: 55,796,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0847443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0061176","Offset: 55,800,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0847567 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0059157","Offset: 55,804,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0847712 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0063629","Offset: 55,809,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0847827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0062737","Offset: 55,813,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0847981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0062067","Offset: 55,817,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0848198 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0064154","Offset: 55,821,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0848318 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0063514","Offset: 55,825,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0848450 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0064384","Offset: 55,829,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0848582 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0071975","Offset: 55,833,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0848728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0074052","Offset: 55,837,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0848856 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0073386","Offset: 55,841,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0848975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0077513","Offset: 55,845,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0849112 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0076919","Offset: 55,849,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0849240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0076335","Offset: 55,854,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0849368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0075328","Offset: 55,858,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0849491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0074676","Offset: 55,862,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0849624 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0074035","Offset: 55,866,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0849739 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0087198","Offset: 55,870,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0849871 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0086511","Offset: 55,874,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0850016 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0084770","Offset: 55,878,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0850144 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0090069","Offset: 55,882,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0850268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0089472","Offset: 55,886,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0850400 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0088482","Offset: 55,890,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0850515 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0087860","Offset: 55,895,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0850648 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0087172","Offset: 55,899,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0850784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0098274","Offset: 55,903,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0850908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0097152","Offset: 55,907,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0851044 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0096039","Offset: 55,911,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0851185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0101005","Offset: 55,915,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0851339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0100139","Offset: 55,919,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0851467 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0099558","Offset: 55,923,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0851599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0098965","Offset: 55,927,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0851727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0098317","Offset: 55,931,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0851872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0109346","Offset: 55,936,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0852009 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0108731","Offset: 55,940,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0852184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0107567","Offset: 55,944,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0852358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0111198","Offset: 55,948,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0852486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0112517","Offset: 55,952,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0852619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0112004","Offset: 55,956,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0852734 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0111339","Offset: 55,960,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0852866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0109325","Offset: 55,964,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0852994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0126682","Offset: 55,968,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0853122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0125756","Offset: 55,972,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0853250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0129020","Offset: 55,976,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0853382 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0128077","Offset: 55,981,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0853510 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0127600","Offset: 55,985,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0853643 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0127010","Offset: 55,989,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0853771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0129237","Offset: 55,993,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0853899 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0139255","Offset: 55,997,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0854027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0138044","Offset: 56,001,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0854142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0137126","Offset: 56,005,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0854296 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0140966","Offset: 56,009,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0854513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0140412","Offset: 56,013,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0854722 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0139853","Offset: 56,017,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0854842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0139264","Offset: 56,022,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0854970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0148693","Offset: 56,026,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0855102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0148190","Offset: 56,030,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0855226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0147281","Offset: 56,034,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0855354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0151415","Offset: 56,038,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0855469 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0150921","Offset: 56,042,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0855601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0150264","Offset: 56,046,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0855725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0149752","Offset: 56,050,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0855857 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0148668","Offset: 56,054,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0855981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0160747","Offset: 56,058,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0856113 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0160205","Offset: 56,062,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0856245 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0158550","Offset: 56,067,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0856369 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0163217","Offset: 56,071,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0856497 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0162654","Offset: 56,075,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0856629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0161669","Offset: 56,079,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0856753 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0161122","Offset: 56,083,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0856868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0163661","Offset: 56,087,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0856996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0163107","Offset: 56,091,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0857146 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0171490","Offset: 56,095,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0857278 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0173325","Offset: 56,099,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0857470 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0172715","Offset: 56,103,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0857645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0176435","Offset: 56,108,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0857777 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0175753","Offset: 56,112,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0857909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0175280","Offset: 56,116,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0858033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0174349","Offset: 56,120,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0858144 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0173747","Offset: 56,124,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0858276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0173210","Offset: 56,128,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0858426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0186240","Offset: 56,132,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0858575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0185622","Offset: 56,136,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0858703 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0184132","Offset: 56,140,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0858835 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0188882","Offset: 56,144,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0858950 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0188267","Offset: 56,148,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0859078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0187384","Offset: 56,153,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0859211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0186893","Offset: 56,157,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0859339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0186295","Offset: 56,161,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0859462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0197099","Offset: 56,165,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0859582 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0196041","Offset: 56,169,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0859714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0195107","Offset: 56,173,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0859864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0199812","Offset: 56,177,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0859992 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0199027","Offset: 56,181,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0860128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0198298","Offset: 56,185,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0860277 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0197658","Offset: 56,189,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0860427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0197099","Offset: 56,194,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0860550 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0208210","Offset: 56,198,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0860678 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0207664","Offset: 56,202,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0860806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0206759","Offset: 56,206,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0860934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0209844","Offset: 56,210,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0861045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0209251","Offset: 56,214,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0861178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0210974","Offset: 56,218,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0861323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0210479","Offset: 56,222,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0861451 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0209877","Offset: 56,226,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0861579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0219644","Offset: 56,230,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0861711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0219102","Offset: 56,235,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0861830 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0218121","Offset: 56,239,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0861958 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0221961","Offset: 56,243,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0862086 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0221471","Offset: 56,247,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0862214 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0220882","Offset: 56,251,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0862338 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0219700","Offset: 56,255,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0862458 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0230340","Offset: 56,259,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0862590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0229291","Offset: 56,263,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0862722 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0228118","Offset: 56,267,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0862850 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0232615","Offset: 56,271,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0862978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0231898","Offset: 56,275,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0863110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0231416","Offset: 56,280,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0863230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0230929","Offset: 56,284,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0863358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0230349","Offset: 56,288,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0863503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0241216","Offset: 56,292,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0863631 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0240683","Offset: 56,296,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0863759 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0239723","Offset: 56,300,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0863870 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0244015","Offset: 56,304,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0864002 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0243486","Offset: 56,308,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0864156 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0242978","Offset: 56,312,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0864356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0242411","Offset: 56,316,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0864493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0241814","Offset: 56,321,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0864621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0252634","Offset: 56,325,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0864757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0252063","Offset: 56,329,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0864881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0250808","Offset: 56,333,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0865026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0254460","Offset: 56,337,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0865141 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0253936","Offset: 56,341,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0865269 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0252886","Offset: 56,345,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0865402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0255019","Offset: 56,349,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0865530 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0254464","Offset: 56,353,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0865675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0262396","Offset: 56,357,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0865807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0264495","Offset: 56,361,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0865926 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0263941","Offset: 56,366,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0866054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0267534","Offset: 56,370,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0866204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0266884","Offset: 56,374,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0866332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0266428","Offset: 56,378,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0866460 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0265485","Offset: 56,382,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0866571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0264956","Offset: 56,386,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0866707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0264436","Offset: 56,390,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0866835 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0277684","Offset: 56,394,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0866963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0276976","Offset: 56,398,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0867155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0275248","Offset: 56,402,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0867334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0280308","Offset: 56,407,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0867475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0279651","Offset: 56,411,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0867599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0278772","Offset: 56,415,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0867727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0278187","Offset: 56,419,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0867842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0277543","Offset: 56,423,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0867970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0289007","Offset: 56,427,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0868098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0287821","Offset: 56,431,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0868226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0286738","Offset: 56,435,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0868367 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0291657","Offset: 56,439,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0868542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0290757","Offset: 56,443,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0868674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0290185","Offset: 56,448,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0868798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0289613","Offset: 56,452,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0868926 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0288943","Offset: 56,456,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0869058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0299568","Offset: 56,460,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0869182 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0298351","Offset: 56,464,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0869297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0302264","Offset: 56,468,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0869425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0301564","Offset: 56,472,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0869553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0300143","Offset: 56,476,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0869681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0302358","Offset: 56,480,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0869809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0302891","Offset: 56,484,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0869941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0310068","Offset: 56,488,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0870061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0311608","Offset: 56,493,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0870185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0313370","Offset: 56,497,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0870334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0312773","Offset: 56,501,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0870645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0311962","Offset: 56,505,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0870769 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0321895","Offset: 56,509,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0870884 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0320517","Offset: 56,513,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0871017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0323554","Offset: 56,517,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0871145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0322953","Offset: 56,521,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0871268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0322292","Offset: 56,525,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0871409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0331892","Offset: 56,529,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0871541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0330719","Offset: 56,534,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0871661 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0332988","Offset: 56,538,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0871789 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0332335","Offset: 56,542,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0871917 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0333457","Offset: 56,546,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0872070 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0342000","Offset: 56,550,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0872203 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0340903","Offset: 56,554,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0872314 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0343121","Offset: 56,558,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0872446 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0342366","Offset: 56,562,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0872574 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0343557","Offset: 56,566,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0872723 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0352214","Offset: 56,570,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0872868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0351075","Offset: 56,574,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0873022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0353438","Offset: 56,579,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0873137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0352752","Offset: 56,583,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0873265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0353955","Offset: 56,587,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0873389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0362100","Offset: 56,591,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0873517 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0362974","Offset: 56,595,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0873641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0364344","Offset: 56,599,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0873756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0363708","Offset: 56,603,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0873884 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0364796","Offset: 56,607,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0874012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0373218","Offset: 56,611,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0874157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0372113","Offset: 56,615,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0874289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0374699","Offset: 56,620,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0874421 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0374111","Offset: 56,624,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0874532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0373462","Offset: 56,628,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0874656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0383211","Offset: 56,632,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0874805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0382068","Offset: 56,636,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0874933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0385379","Offset: 56,640,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0875057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0384265","Offset: 56,644,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0875172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0383608","Offset: 56,648,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0875305 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0392708","Offset: 56,652,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0875433 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0391625","Offset: 56,656,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0875578 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0394974","Offset: 56,660,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0875701 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0393789","Offset: 56,665,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0875834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0393097","Offset: 56,669,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0875949 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0395341","Offset: 56,673,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0876077 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0403998","Offset: 56,677,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0876205 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0402863","Offset: 56,681,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0876333 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0406247","Offset: 56,685,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0876457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0405662","Offset: 56,689,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0876568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0404962","Offset: 56,693,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0876725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0413539","Offset: 56,697,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0877050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0412250","Offset: 56,701,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0877186 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0414670","Offset: 56,706,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0877310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0415629","Offset: 56,710,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0877442 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0414998","Offset: 56,714,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0877557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0422043","Offset: 56,718,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0877681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0422968","Offset: 56,722,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0877809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0425618","Offset: 56,726,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0877937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0425042","Offset: 56,730,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0878061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0424465","Offset: 56,734,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0878172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0423872","Offset: 56,738,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0878304 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0435230","Offset: 56,742,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0878436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0434066","Offset: 56,747,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0878564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0437543","Offset: 56,751,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0878705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0436694","Offset: 56,755,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0878854 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0436093","Offset: 56,759,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0878974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0435469","Offset: 56,763,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0879098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0445577","Offset: 56,767,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0879230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0444472","Offset: 56,771,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0879358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0447766","Offset: 56,775,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0879482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0446592","Offset: 56,779,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0879614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0445923","Offset: 56,783,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0879742 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0455941","Offset: 56,787,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0879874 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0454810","Offset: 56,792,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0879998 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0458727","Offset: 56,796,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0880126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0458087","Offset: 56,800,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0880258 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0457443","Offset: 56,804,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0880408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0456124","Offset: 56,808,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0880612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0466339","Offset: 56,812,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0880757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0465179","Offset: 56,816,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0880877 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0467469","Offset: 56,820,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0881009 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0468476","Offset: 56,824,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0881137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0467790","Offset: 56,828,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0881282 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0475179","Offset: 56,833,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0881410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0476075","Offset: 56,837,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0881560 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0477858","Offset: 56,841,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0881675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0477287","Offset: 56,845,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0881803 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0476544","Offset: 56,849,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0881935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0486605","Offset: 56,853,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0882059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0484651","Offset: 56,857,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0882182 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0488500","Offset: 56,861,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0882298 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0488030","Offset: 56,865,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0882426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0487527","Offset: 56,869,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0882554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0486895","Offset: 56,873,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0882682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0497046","Offset: 56,878,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0882805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0496086","Offset: 56,882,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0882938 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0498270","Offset: 56,886,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0883057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0497814","Offset: 56,890,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0883181 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0497310","Offset: 56,894,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0883305 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0506978","Offset: 56,898,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0883433 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0506040","Offset: 56,902,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0883578 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0508156","Offset: 56,906,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0883761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0507457","Offset: 56,910,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0883923 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0509232","Offset: 56,914,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0884060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0517509","Offset: 56,919,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0884188 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0516519","Offset: 56,923,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0884303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0519408","Offset: 56,927,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0884422 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0518397","Offset: 56,931,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0884538 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0517880","Offset: 56,935,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0884657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0519728","Offset: 56,939,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0884772 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0528014","Offset: 56,943,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0884930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0527011","Offset: 56,947,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0885084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0530232","Offset: 56,951,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0885220 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0529558","Offset: 56,955,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0885353 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0528871","Offset: 56,960,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0885472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0537622","Offset: 56,964,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0885596 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0536449","Offset: 56,968,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0885724 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0540054","Offset: 56,972,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0885852 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0539414","Offset: 56,976,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0885976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0538701","Offset: 56,980,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0886091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0544542","Offset: 56,984,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0886223 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0545298","Offset: 56,988,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0886368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0546215","Offset: 56,992,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0886500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0551843","Offset: 56,996,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0886624 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0553328","Offset: 57,000,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0886761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0552636","Offset: 57,005,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0886876 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0553656","Offset: 57,009,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0887004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0559954","Offset: 57,013,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0887132 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0561379","Offset: 57,017,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0887264 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0560705","Offset: 57,021,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0887392 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0561699","Offset: 57,025,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0887524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0568402","Offset: 57,029,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0887657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0569856","Offset: 57,033,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0887785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0569110","Offset: 57,037,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0887913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0570210","Offset: 57,041,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0888041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0576768","Offset: 57,046,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0888177 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0577772","Offset: 57,050,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0888309 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0578164","Offset: 57,054,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0888450 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0578608","Offset: 57,058,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0888582 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0583873","Offset: 57,062,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0888706 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0584760","Offset: 57,066,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0888834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0585332","Offset: 57,070,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0888945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0591421","Offset: 57,074,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0889077 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0592833","Offset: 57,078,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0889205 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0592168","Offset: 57,082,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0889329 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0593614","Offset: 57,086,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0889453 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0598840","Offset: 57,091,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0889606 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0599715","Offset: 57,095,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0889743 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0600261","Offset: 57,099,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0889867 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0606174","Offset: 57,103,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0889995 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0607672","Offset: 57,107,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0890123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0606994","Offset: 57,111,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0890242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0608398","Offset: 57,115,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0890383 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0616701","Offset: 57,119,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0890588 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0614942","Offset: 57,123,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0890733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0618859","Offset: 57,127,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0890869 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0618254","Offset: 57,132,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0890989 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0617515","Offset: 57,136,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0891117 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0616850","Offset: 57,140,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0891262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0627295","Offset: 57,144,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0891390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0626185","Offset: 57,148,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0891514 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0629479","Offset: 57,152,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0891629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0628336","Offset: 57,156,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0891757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0627666","Offset: 57,160,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0891889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0629829","Offset: 57,164,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0892017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0638422","Offset: 57,168,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0892149 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0637322","Offset: 57,172,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0892286 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0638938","Offset: 57,177,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0892405 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0640582","Offset: 57,181,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0892589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0639890","Offset: 57,185,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0892725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0647933","Offset: 57,189,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0892849 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0646802","Offset: 57,193,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0892977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0650241","Offset: 57,197,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0893101 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0649626","Offset: 57,201,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0893289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0648133","Offset: 57,205,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0893540 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0657422","Offset: 57,209,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0893711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0655988","Offset: 57,213,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0893830 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0659692","Offset: 57,218,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0893958 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0659078","Offset: 57,222,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0894104 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0658356","Offset: 57,226,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0894232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0667384","Offset: 57,230,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0894360 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0666292","Offset: 57,234,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0894470 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0669761","Offset: 57,238,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0894603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0669138","Offset: 57,242,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0894735 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0668413","Offset: 57,246,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0894859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0676993","Offset: 57,250,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0894987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0675905","Offset: 57,254,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0895123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0679553","Offset: 57,259,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0895238 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0679011","Offset: 57,263,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0895362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0678495","Offset: 57,267,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0895512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0687629","Offset: 57,271,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0895635 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0685987","Offset: 57,275,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0895763 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0688308","Offset: 57,279,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0895874 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0689465","Offset: 57,283,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0896002 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0688816","Offset: 57,287,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0896130 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0693544","Offset: 57,291,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0896254 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0694486","Offset: 57,295,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0896378 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0695275","Offset: 57,299,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0896510 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0703194","Offset: 57,304,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0896625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0701927","Offset: 57,308,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0896749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0705328","Offset: 57,312,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0896898 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0704637","Offset: 57,316,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0897043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0703429","Offset: 57,320,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0897167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0713140","Offset: 57,324,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0897278 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0712082","Offset: 57,328,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0897410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0714975","Offset: 57,332,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0897538 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0714339","Offset: 57,336,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0897683 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0713533","Offset: 57,340,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0897811 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0715244","Offset: 57,345,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0897939 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0723666","Offset: 57,349,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0898055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0722599","Offset: 57,353,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0898178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0726077","Offset: 57,357,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0898311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0725393","Offset: 57,361,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0898439 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0724711","Offset: 57,365,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0898562 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0733842","Offset: 57,369,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0898673 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0732707","Offset: 57,373,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0898805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0736082","Offset: 57,377,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0898933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0735494","Offset: 57,381,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0899061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0734849","Offset: 57,385,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0899185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0744539","Offset: 57,390,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0899322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0742797","Offset: 57,394,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0899437 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0746198","Offset: 57,398,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0899561 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0745596","Offset: 57,402,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0899731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0744876","Offset: 57,406,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0899940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0746216","Offset: 57,410,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0900090 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0754923","Offset: 57,414,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0900222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0753772","Offset: 57,418,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0900367 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0757518","Offset: 57,422,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0900495 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0755948","Offset: 57,426,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0900623 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0755320","Offset: 57,431,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0900738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0761520","Offset: 57,435,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0900866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0762292","Offset: 57,439,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0900994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0763240","Offset: 57,443,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0901122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0767634","Offset: 57,447,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0901250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0768829","Offset: 57,451,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0901383 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0769370","Offset: 57,455,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0901528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0774575","Offset: 57,459,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0901677 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0775229","Offset: 57,463,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0901809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0776360","Offset: 57,467,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0901933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0780844","Offset: 57,472,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0902065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0781552","Offset: 57,476,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0902180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0782721","Offset: 57,480,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0902321 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0791370","Offset: 57,484,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0902471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0789577","Offset: 57,488,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0902684 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0793213","Offset: 57,492,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0902820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0792697","Offset: 57,496,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0902953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0792197","Offset: 57,500,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0903076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0791553","Offset: 57,504,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0903200 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0800603","Offset: 57,508,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0903332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0801495","Offset: 57,512,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0903452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0803687","Offset: 57,517,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0903576 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0802578","Offset: 57,521,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0903704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0801968","Offset: 57,525,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0903832 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0811380","Offset: 57,529,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0903955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0810297","Offset: 57,533,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0904071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0813731","Offset: 57,537,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0904199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0812378","Offset: 57,541,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0904331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0811683","Offset: 57,545,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0904476 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0821070","Offset: 57,549,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0904783 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0819555","Offset: 57,553,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0904920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0823164","Offset: 57,558,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0905035 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0822525","Offset: 57,562,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0905180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0821206","Offset: 57,566,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0905312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0823455","Offset: 57,570,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0905436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0842838","Offset: 57,574,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0905560 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0841759","Offset: 57,578,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0905675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0844797","Offset: 57,582,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0905807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0844118","Offset: 57,586,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0905935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0845590","Offset: 57,590,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0906063 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0845108","Offset: 57,594,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0906191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0854866","Offset: 57,598,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0906323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0853898","Offset: 57,603,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0906434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0855873","Offset: 57,607,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0906558 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0855284","Offset: 57,611,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0906686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0856138","Offset: 57,615,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0906827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0865110","Offset: 57,619,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0906951 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0866305","Offset: 57,623,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0907066 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0866830","Offset: 57,627,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0907194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0867517","Offset: 57,631,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0907317 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0874596","Offset: 57,635,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0907445 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0876721","Offset: 57,639,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0907569 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0877224","Offset: 57,644,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0907697 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0881994","Offset: 57,648,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0907808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0888027","Offset: 57,652,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0907932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0971047","Offset: 57,656,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0908060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0973689","Offset: 57,660,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0908184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0976338","Offset: 57,664,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0908307 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0984727","Offset: 57,668,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0908423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0985806","Offset: 57,672,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0908551 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0987167","Offset: 57,676,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0908674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.0968974","Offset: 57,680,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0908819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4030713","Offset: 57,684,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0908943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4039109","Offset: 57,689,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0909092 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4038461","Offset: 57,693,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0909208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4037385","Offset: 57,697,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0909331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4041648","Offset: 57,701,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0909506 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4041055","Offset: 57,705,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0909732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4040385","Offset: 57,709,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0909873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4039617","Offset: 57,713,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0910010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4038968","Offset: 57,717,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0910142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4050736","Offset: 57,721,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0910266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4049545","Offset: 57,725,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0910398 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4048415","Offset: 57,730,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0910509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4051807","Offset: 57,734,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0910633 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4051132","Offset: 57,738,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0910765 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4053411","Offset: 57,742,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0910889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4052779","Offset: 57,746,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0911029 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4051765","Offset: 57,750,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0911145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4060242","Offset: 57,754,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0911294 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4061667","Offset: 57,758,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0911422 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4060963","Offset: 57,762,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0911550 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4064206","Offset: 57,766,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0911674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4062277","Offset: 57,771,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0911806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4063540","Offset: 57,775,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0911921 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4063067","Offset: 57,779,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0912045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4062435","Offset: 57,783,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0912173 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4075124","Offset: 57,787,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0912369 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4074472","Offset: 57,791,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0912540 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4073332","Offset: 57,795,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0912676 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4077539","Offset: 57,799,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0912804 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4077066","Offset: 57,803,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0912941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4076016","Offset: 57,807,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0913073 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4075449","Offset: 57,811,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0913188 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4079050","Offset: 57,816,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0913325 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4078516","Offset: 57,820,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0913466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4077688","Offset: 57,824,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0913598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4077142","Offset: 57,828,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0913739 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4088419","Offset: 57,832,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0913854 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4087899","Offset: 57,836,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0914003 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4086896","Offset: 57,840,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0914131 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4090766","Offset: 57,844,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0914259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4090182","Offset: 57,848,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0914387 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4089721","Offset: 57,852,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0914515 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4089106","Offset: 57,857,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0914631 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4088397","Offset: 57,861,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0914754 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4099811","Offset: 57,865,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0914887 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4098834","Offset: 57,869,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0915015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4100105","Offset: 57,873,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0915138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4102039","Offset: 57,877,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0915266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4101198","Offset: 57,881,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0915399 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4100613","Offset: 57,885,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0915544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4102942","Offset: 57,889,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0915689 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4102448","Offset: 57,893,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0915812 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4101911","Offset: 57,897,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0915945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4112884","Offset: 57,902,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0916068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4112347","Offset: 57,906,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0916192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4111374","Offset: 57,910,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0916320 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4114587","Offset: 57,914,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0916448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4115807","Offset: 57,918,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0916585 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4115320","Offset: 57,922,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0916700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4114813","Offset: 57,926,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0916828 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4113426","Offset: 57,930,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0916960 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4112846","Offset: 57,934,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0917084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4126055","Offset: 57,938,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0917212 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4125535","Offset: 57,943,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0917344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4124520","Offset: 57,947,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0917464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4127612","Offset: 57,951,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0917596 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4126832","Offset: 57,955,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0917724 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4126294","Offset: 57,959,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0917869 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4128654","Offset: 57,963,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0918001 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4128151","Offset: 57,967,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0918146 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4127468","Offset: 57,971,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0918283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4139022","Offset: 57,975,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0918411 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4138305","Offset: 57,979,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0918539 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4136491","Offset: 57,984,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0918663 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4141364","Offset: 57,988,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0918863 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4140639","Offset: 57,992,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0919038 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4139730","Offset: 57,996,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0919175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4139055","Offset: 58,000,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0919303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4141722","Offset: 58,004,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0919413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4141109","Offset: 58,008,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0919546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4151173","Offset: 58,012,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0919678 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4150512","Offset: 58,016,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0919806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4148801","Offset: 58,020,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0919930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4152142","Offset: 58,024,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0920062 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4151502","Offset: 58,029,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0920177 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4154011","Offset: 58,033,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0920305 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4153431","Offset: 58,037,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0920450 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4152910","Offset: 58,041,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0920578 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4151993","Offset: 58,045,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0920706 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4164259","Offset: 58,049,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0920821 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4163581","Offset: 58,053,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0920954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4161917","Offset: 58,057,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0921082 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4166849","Offset: 58,061,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0921210 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4166273","Offset: 58,065,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0921333 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4165399","Offset: 58,070,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0921466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4164809","Offset: 58,074,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0921611 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4164169","Offset: 58,078,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0921811 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4175524","Offset: 58,082,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0921991 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4174153","Offset: 58,086,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0922106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4173031","Offset: 58,090,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0922242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4177810","Offset: 58,094,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0922387 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4177183","Offset: 58,098,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0922532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4176688","Offset: 58,102,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0922660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4176181","Offset: 58,106,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0922793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4175459","Offset: 58,110,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0922912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4186216","Offset: 58,115,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0923036 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4185609","Offset: 58,119,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0923168 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4184475","Offset: 58,123,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0923296 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4187914","Offset: 58,127,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0923437 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4186523","Offset: 58,131,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0923548 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4189112","Offset: 58,135,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0923680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4188511","Offset: 58,139,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0923812 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4187880","Offset: 58,143,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0923936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4198354","Offset: 58,147,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0924060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4197654","Offset: 58,151,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0924192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4196532","Offset: 58,156,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0924303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4198781","Offset: 58,160,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0924444 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4201477","Offset: 58,164,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0924576 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4200923","Offset: 58,168,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0924704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4200343","Offset: 58,172,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0924828 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4199758","Offset: 58,176,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0924943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4198828","Offset: 58,180,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0925075 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4210830","Offset: 58,184,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0925203 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4210139","Offset: 58,188,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0925344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4209025","Offset: 58,192,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0925472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4213454","Offset: 58,196,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0925604 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4212861","Offset: 58,201,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0925741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4212263","Offset: 58,205,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0925869 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4211406","Offset: 58,209,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0926018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4210745","Offset: 58,213,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0926163 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4221109","Offset: 58,217,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0926291 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4220046","Offset: 58,221,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0926432 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4222111","Offset: 58,225,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0926564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4225200","Offset: 58,229,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0926697 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4224590","Offset: 58,233,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0926825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4223544","Offset: 58,237,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0926953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4222930","Offset: 58,242,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0927085 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4222282","Offset: 58,246,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0927200 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4233362","Offset: 58,250,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0927324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4232726","Offset: 58,254,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0927452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4231613","Offset: 58,258,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0927580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4234399","Offset: 58,262,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0927725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4236199","Offset: 58,266,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0927836 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4235649","Offset: 58,270,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0927972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4235069","Offset: 58,274,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0928105 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4234458","Offset: 58,278,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0928288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4261697","Offset: 58,283,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0928472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4260545","Offset: 58,287,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0928608 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4262239","Offset: 58,291,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0928736 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4264462","Offset: 58,295,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0928864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4263801","Offset: 58,299,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0928988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4262529","Offset: 58,303,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0929103 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4281311","Offset: 58,307,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0929235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4280240","Offset: 58,311,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0929385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4283521","Offset: 58,315,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0929513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4282924","Offset: 58,319,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0929641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4282254","Offset: 58,323,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0929773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4281486","Offset: 58,328,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0929884 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4301514","Offset: 58,332,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0930012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4300404","Offset: 58,336,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0930140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4303707","Offset: 58,340,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0930268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4303195","Offset: 58,344,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0930396 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4302683","Offset: 58,348,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0930511 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4320099","Offset: 58,352,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0930660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4321627","Offset: 58,356,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0930788 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4323172","Offset: 58,360,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0930921 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4322638","Offset: 58,364,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0931113 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4322053","Offset: 58,369,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0931288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4340758","Offset: 58,373,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0931420 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4339201","Offset: 58,377,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0931548 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4342354","Offset: 58,381,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0931689 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4341812","Offset: 58,385,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0931804 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4341215","Offset: 58,389,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0931932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4343007","Offset: 58,393,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0932068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4418255","Offset: 58,397,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0932243 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4419368","Offset: 58,401,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0932363 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4420921","Offset: 58,405,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0932495 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4423989","Offset: 58,409,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0932623 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4434579","Offset: 58,414,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0932764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4435679","Offset: 58,418,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0932892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4438154","Offset: 58,422,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0933020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4439191","Offset: 58,426,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0933135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4450242","Offset: 58,430,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0933263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4451359","Offset: 58,434,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0933391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4452827","Offset: 58,438,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0933528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4463429","Offset: 58,442,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0933651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4473802","Offset: 58,446,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0933801 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4474890","Offset: 58,450,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0933941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4475607","Offset: 58,455,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0934069 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4479976","Offset: 58,459,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0934197 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4489098","Offset: 58,463,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0934351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4491155","Offset: 58,467,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0934509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4491760","Offset: 58,471,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0934645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4494521","Offset: 58,475,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0934778 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4504492","Offset: 58,479,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0934901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4506306","Offset: 58,483,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0935029 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4507138","Offset: 58,487,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0935153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4509621","Offset: 58,491,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0935285 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4519964","Offset: 58,496,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0935401 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4521072","Offset: 58,500,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0935524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4522673","Offset: 58,504,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0935652 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4525497","Offset: 58,508,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0935776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4535844","Offset: 58,512,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0935904 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4537098","Offset: 58,516,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0936024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4539389","Offset: 58,520,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0936152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4548733","Offset: 58,524,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0936280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4549787","Offset: 58,528,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0936425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4551097","Offset: 58,532,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0936548 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4553218","Offset: 58,536,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0936676 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4563787","Offset: 58,541,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0936792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4564878","Offset: 58,545,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0936920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4566713","Offset: 58,549,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0937048 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4575050","Offset: 58,553,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0937171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4576569","Offset: 58,557,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0937299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4578464","Offset: 58,561,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0937415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4588810","Offset: 58,565,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0937555 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4589894","Offset: 58,569,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0937752 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4591280","Offset: 58,573,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0937918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4594254","Offset: 58,577,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0938033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4604021","Offset: 58,582,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0938157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4605181","Offset: 58,586,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0938268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4606312","Offset: 58,590,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0938379 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4608778","Offset: 58,594,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0938520 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4619146","Offset: 58,598,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0938631 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4620311","Offset: 58,602,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0938754 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4621468","Offset: 58,606,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0938869 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4623942","Offset: 58,610,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0938997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4635659","Offset: 58,614,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0939125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4636883","Offset: 58,618,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0939253 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4637498","Offset: 58,622,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0939381 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4639213","Offset: 58,627,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0939697 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4649529","Offset: 58,631,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0939817 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4650945","Offset: 58,635,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0939945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4652068","Offset: 58,639,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0940073 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4654517","Offset: 58,643,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0940201 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4664326","Offset: 58,647,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0940324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4665427","Offset: 58,651,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0940444 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4667603","Offset: 58,655,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0940657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4668640","Offset: 58,659,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0940845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4686291","Offset: 58,663,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0940981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4687465","Offset: 58,668,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0941097 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4690561","Offset: 58,672,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0941220 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4699744","Offset: 58,676,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0941353 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4700857","Offset: 58,680,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0941481 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4701936","Offset: 58,684,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0941604 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4703900","Offset: 58,688,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0941715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4715036","Offset: 58,692,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0941848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4716178","Offset: 58,696,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0941976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4716810","Offset: 58,700,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0942104 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4720245","Offset: 58,704,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0942232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4729904","Offset: 58,708,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0942381 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4731628","Offset: 58,713,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0942500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4732504","Offset: 58,717,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0942641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4735144","Offset: 58,721,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0942782 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4744659","Offset: 58,725,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0942923 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4746301","Offset: 58,729,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0943051 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4747022","Offset: 58,733,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0943162 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4750461","Offset: 58,737,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0943294 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4759601","Offset: 58,741,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0943418 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4760693","Offset: 58,745,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0943546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4762178","Offset: 58,749,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0943669 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4765033","Offset: 58,754,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0943806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4775366","Offset: 58,758,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0943925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4776557","Offset: 58,762,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0944049 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4779697","Offset: 58,766,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0944177 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4780819","Offset: 58,770,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0944305 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4790513","Offset: 58,774,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0944429 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4791622","Offset: 58,778,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0944544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4793158","Offset: 58,782,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0944672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4796503","Offset: 58,786,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0944804 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4805758","Offset: 58,790,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0944945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4806871","Offset: 58,795,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0945077 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4808361","Offset: 58,799,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0945223 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4810792","Offset: 58,803,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0945342 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4821600","Offset: 58,807,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0945466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4822705","Offset: 58,811,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0945594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4823776","Offset: 58,815,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0945722 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4826784","Offset: 58,819,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0945845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4837161","Offset: 58,823,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0945956 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4838436","Offset: 58,827,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0946089 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4839140","Offset: 58,831,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0946212 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4841713","Offset: 58,835,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0946340 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4851441","Offset: 58,840,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0946464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4853643","Offset: 58,844,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0946596 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4854257","Offset: 58,848,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0946716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4856616","Offset: 58,852,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0946840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4867240","Offset: 58,856,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0946972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4868955","Offset: 58,860,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0947164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4869681","Offset: 58,864,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0947335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4872368","Offset: 58,868,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0947467 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4882063","Offset: 58,872,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0947612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4883095","Offset: 58,876,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0947744 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4885630","Offset: 58,881,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0947889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4886688","Offset: 58,885,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0948004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4896813","Offset: 58,889,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0948132 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4897880","Offset: 58,893,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0948265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4901045","Offset: 58,897,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0948393 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4902082","Offset: 58,901,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0948512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4912152","Offset: 58,905,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0948627 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4913171","Offset: 58,909,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0948755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4915591","Offset: 58,913,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0948883 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4917464","Offset: 58,917,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0949007 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4927413","Offset: 58,921,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0949135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4928489","Offset: 58,926,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0949267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4930853","Offset: 58,930,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0949387 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4931914","Offset: 58,934,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0949515 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4942850","Offset: 58,938,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0949647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4943930","Offset: 58,942,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0949775 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4945013","Offset: 58,946,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0949933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4947505","Offset: 58,950,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0950125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4958692","Offset: 58,954,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0950266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4959904","Offset: 58,958,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0950394 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4960595","Offset: 58,962,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0950526 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4963253","Offset: 58,967,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0950641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4973101","Offset: 58,971,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0950769 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4974816","Offset: 58,975,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0950936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4975426","Offset: 58,979,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0951076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4977969","Offset: 58,983,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0951200 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4987539","Offset: 58,987,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0951311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4989549","Offset: 58,991,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0951443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4990309","Offset: 58,995,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0951571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.4992980","Offset: 58,999,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0951699 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5003267","Offset: 59,003,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0951823 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5004282","Offset: 59,008,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0951955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5005771","Offset: 59,012,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0952092 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5007857","Offset: 59,016,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0952220 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5018268","Offset: 59,020,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0952352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5019356","Offset: 59,024,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0952480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5021383","Offset: 59,028,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0952604 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5023703","Offset: 59,032,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0952719 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5033432","Offset: 59,036,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0952868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5034482","Offset: 59,040,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0952996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5036952","Offset: 59,044,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0953124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5038573","Offset: 59,048,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0953265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5048962","Offset: 59,053,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0953410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5050016","Offset: 59,057,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0953530 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5051343","Offset: 59,061,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0953654 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5053843","Offset: 59,065,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0953777 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5063994","Offset: 59,069,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0953901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5065184","Offset: 59,073,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0954033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5066302","Offset: 59,077,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0954144 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5068841","Offset: 59,081,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0954294 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5079605","Offset: 59,085,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0954451 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5080690","Offset: 59,089,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0954579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5081210","Offset: 59,094,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0954703 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5084235","Offset: 59,098,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0954835 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5094441","Offset: 59,102,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0954951 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5096211","Offset: 59,106,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0955079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5096876","Offset: 59,110,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0955211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5099509","Offset: 59,114,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0955335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5109199","Offset: 59,118,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0955458 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5111098","Offset: 59,122,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0955574 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5111806","Offset: 59,126,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0955702 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5114331","Offset: 59,130,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0955830 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5123838","Offset: 59,134,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0955953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5124952","Offset: 59,139,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0956081 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5126484","Offset: 59,143,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0956231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5129086","Offset: 59,147,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0956342 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5139095","Offset: 59,151,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0956529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5140214","Offset: 59,155,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0956734 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5143328","Offset: 59,159,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0956854 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5144347","Offset: 59,163,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0956986 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5154208","Offset: 59,167,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0957114 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5155381","Offset: 59,171,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0957246 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5156832","Offset: 59,175,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0957370 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5160378","Offset: 59,180,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0957502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5169342","Offset: 59,184,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0957617 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5170499","Offset: 59,188,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0957741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5171966","Offset: 59,192,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0957865 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5174470","Offset: 59,196,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0957988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5187105","Offset: 59,200,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0958112 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5187855","Offset: 59,204,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0958227 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5189528","Offset: 59,208,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0958360 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5200488","Offset: 59,212,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0958488 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5202187","Offset: 59,216,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0958616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5202912","Offset: 59,220,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0958761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5205993","Offset: 59,225,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0958893 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5216237","Offset: 59,229,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0959012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5217991","Offset: 59,233,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0959200 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5218588","Offset: 59,237,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0959405 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5220252","Offset: 59,241,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0959576 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5231976","Offset: 59,245,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0959721 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5233090","Offset: 59,249,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0959866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5234340","Offset: 59,253,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0959994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5237391","Offset: 59,257,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0960122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5247580","Offset: 59,261,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0960250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5248702","Offset: 59,266,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0960365 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5250353","Offset: 59,270,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0960493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5252832","Offset: 59,274,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0960621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5262996","Offset: 59,278,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0960766 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5264357","Offset: 59,282,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0960890 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5265457","Offset: 59,286,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0961001 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5268393","Offset: 59,290,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0961133 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5278812","Offset: 59,294,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0961265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5280186","Offset: 59,298,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0961393 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5281308","Offset: 59,302,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0961521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5284295","Offset: 59,307,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0961654 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5294052","Offset: 59,311,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0961764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5295320","Offset: 59,315,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0961892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5296438","Offset: 59,319,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0962025 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5298882","Offset: 59,323,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0962212 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5309631","Offset: 59,327,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0962345 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5310829","Offset: 59,331,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0962460 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5311640","Offset: 59,335,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0962592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5313697","Offset: 59,339,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0962724 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5324496","Offset: 59,343,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0962852 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5326356","Offset: 59,347,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0962980 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5327103","Offset: 59,352,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0963117 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5328587","Offset: 59,356,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0963232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5339326","Offset: 59,360,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0963382 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5340986","Offset: 59,364,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0963505 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5341759","Offset: 59,368,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0963633 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5344553","Offset: 59,372,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0963761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5354414","Offset: 59,376,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0963872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5355574","Offset: 59,380,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0964004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5356880","Offset: 59,384,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0964137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5358586","Offset: 59,388,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0964265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5369952","Offset: 59,393,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0964388 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5371071","Offset: 59,397,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0964538 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5372926","Offset: 59,401,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0964653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5375358","Offset: 59,405,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0964781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5385270","Offset: 59,409,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0964926 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5386375","Offset: 59,413,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0965054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5387851","Offset: 59,417,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0965182 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5389801","Offset: 59,421,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0965297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5400673","Offset: 59,425,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0965425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5401799","Offset: 59,429,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0965575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5402852","Offset: 59,433,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0965724 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5405861","Offset: 59,438,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0965852 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5415802","Offset: 59,442,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0965984 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5417151","Offset: 59,446,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0966116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5418410","Offset: 59,450,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0966291 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5420850","Offset: 59,454,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0966500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5431837","Offset: 59,458,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0966633 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5433692","Offset: 59,462,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0966782 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5433095","Offset: 59,466,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0966910 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5435454","Offset: 59,470,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0967038 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5445827","Offset: 59,474,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0967166 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5447533","Offset: 59,479,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0967303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5448386","Offset: 59,483,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0967431 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5451117","Offset: 59,487,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0967580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5462172","Offset: 59,491,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0967704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5465645","Offset: 59,495,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0967832 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5464450","Offset: 59,499,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0967972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5466239","Offset: 59,503,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0968083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5474299","Offset: 59,507,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0968211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5476423","Offset: 59,511,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0968356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5478531","Offset: 59,515,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0968484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5486292","Offset: 59,520,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0968621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5488566","Offset: 59,524,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0968932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5490410","Offset: 59,528,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0969299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5497667","Offset: 59,532,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0969500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5499783","Offset: 59,536,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0969641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5501754","Offset: 59,540,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0969756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5509869","Offset: 59,544,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0969888 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5512229","Offset: 59,548,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0970016 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5514200","Offset: 59,552,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0970148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5521424","Offset: 59,556,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0970276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5523860","Offset: 59,560,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0970409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5525605","Offset: 59,565,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0970528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5533695","Offset: 59,569,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0970656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5535615","Offset: 59,573,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0970780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5537620","Offset: 59,577,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0970908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5546268","Offset: 59,581,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0971032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5548879","Offset: 59,585,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0971143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5550411","Offset: 59,589,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0971279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5558753","Offset: 59,593,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0971407 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5561402","Offset: 59,597,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0971535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5562529","Offset: 59,601,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0971659 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5571220","Offset: 59,606,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0971791 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5572159","Offset: 59,610,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0971906 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5575278","Offset: 59,614,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0972030 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5582727","Offset: 59,618,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0972158 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5584195","Offset: 59,622,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0972286 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5586375","Offset: 59,626,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0972410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5594541","Offset: 59,630,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0972521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5597187","Offset: 59,634,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0972653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5598288","Offset: 59,638,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0972798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5607568","Offset: 59,642,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0972947 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5608643","Offset: 59,646,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0973075 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5611429","Offset: 59,651,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0973208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5618277","Offset: 59,655,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0973323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5621520","Offset: 59,659,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0973451 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5623094","Offset: 59,663,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0973575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5631567","Offset: 59,667,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0973703 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5632323","Offset: 59,671,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0973826 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5636112","Offset: 59,675,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0973937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5643741","Offset: 59,679,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0974070 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5644205","Offset: 59,683,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0974198 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5647879","Offset: 59,687,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0974321 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5655905","Offset: 59,692,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0974449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5656857","Offset: 59,696,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0974582 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5660730","Offset: 59,700,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0974710 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5667953","Offset: 59,704,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0974833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5669217","Offset: 59,708,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0974983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5671644","Offset: 59,712,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0975140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5678766","Offset: 59,716,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0975268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5680567","Offset: 59,720,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0975384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5682546","Offset: 59,724,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0975533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5690371","Offset: 59,728,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0975772 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5692957","Offset: 59,732,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0976032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5695120","Offset: 59,737,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0976164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5703794","Offset: 59,741,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0976292 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5705074","Offset: 59,745,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0976438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5708717","Offset: 59,749,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0976570 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5714729","Offset: 59,753,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0976694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5717135","Offset: 59,757,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0976809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5719132","Offset: 59,761,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0977124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5726276","Offset: 59,765,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0977257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5728720","Offset: 59,769,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0977385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5735030","Offset: 59,773,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0977517 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5737240","Offset: 59,778,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0977649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5739323","Offset: 59,782,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0977769 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5747173","Offset: 59,786,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0977892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5749618","Offset: 59,790,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0978025 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5755775","Offset: 59,794,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0978148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5758318","Offset: 59,798,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0978276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5764565","Offset: 59,802,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0978413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5766911","Offset: 59,806,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0978626 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5773192","Offset: 59,810,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0978771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5776221","Offset: 59,814,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0978912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5780650","Offset: 59,819,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0979027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5783462","Offset: 59,823,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0979151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5787502","Offset: 59,827,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0979279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5790262","Offset: 59,831,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0979407 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5794504","Offset: 59,835,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0979531 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5796671","Offset: 59,839,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0979646 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5800797","Offset: 59,843,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0979774 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5802879","Offset: 59,847,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0979902 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5806911","Offset: 59,851,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0980030 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5808959","Offset: 59,855,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0980154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5812935","Offset: 59,859,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0980286 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5814885","Offset: 59,864,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0980406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5818840","Offset: 59,868,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0980529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5820629","Offset: 59,872,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0980657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5824541","Offset: 59,876,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0980785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5826431","Offset: 59,880,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0980909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5830681","Offset: 59,884,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0981020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5832515","Offset: 59,888,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0981152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5836215","Offset: 59,892,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0981280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5837836","Offset: 59,896,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0981408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5841074","Offset: 59,900,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0981532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5843242","Offset: 59,905,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0981664 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5846271","Offset: 59,909,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0981784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5848063","Offset: 59,913,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0981907 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5851562","Offset: 59,917,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0982040 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5852880","Offset: 59,921,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0982193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5854450","Offset: 59,925,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0982317 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5857360","Offset: 59,929,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0982432 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5859058","Offset: 59,933,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0982564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5862958","Offset: 59,937,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0982692 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5862651","Offset: 59,941,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0982820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5863517","Offset: 59,945,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0982948 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5863227","Offset: 59,950,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0983081 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5862924","Offset: 59,954,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0983196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5863717","Offset: 59,958,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0983324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5863303","Offset: 59,962,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0983456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5863637","Offset: 59,966,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0983580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5864409","Offset: 59,970,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0983708 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5864012","Offset: 59,974,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0983840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5863538","Offset: 59,978,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0983990 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5863555","Offset: 59,982,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0984143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5864315","Offset: 59,986,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0984271 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5864020","Offset: 59,991,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0984395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5864618","Offset: 59,995,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0984527 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5864217","Offset: 59,999,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0984642 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5863961","Offset: 60,003,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0984800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5865181","Offset: 60,007,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0984992 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5864857","Offset: 60,011,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0985159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5864523","Offset: 60,015,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0985299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5864204","Offset: 60,019,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0985432 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5863943","Offset: 60,023,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0985564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5865279","Offset: 60,027,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0985688 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5865023","Offset: 60,032,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0985820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5864763","Offset: 60,036,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0985931 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5864502","Offset: 60,040,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0986059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5864242","Offset: 60,044,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0986191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5865083","Offset: 60,048,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0986315 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5864827","Offset: 60,052,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0986443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5865142","Offset: 60,056,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0986554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5864852","Offset: 60,060,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0986707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5865651","Offset: 60,064,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0986835 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5865386","Offset: 60,068,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0986963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5865117","Offset: 60,072,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0987091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5864746","Offset: 60,077,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0987224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5865867","Offset: 60,081,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0987343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5865574","Offset: 60,085,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0987488 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5865296","Offset: 60,089,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0987625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5865018","Offset: 60,093,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0987842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5865915","Offset: 60,097,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0988013 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5865612","Offset: 60,101,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0988128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5865352","Offset: 60,105,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0988248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5865065","Offset: 60,109,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0988359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5865966","Offset: 60,113,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0988470 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5865718","Offset: 60,118,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0988589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5865458","Offset: 60,122,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0988700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5866218","Offset: 60,126,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0988824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5865876","Offset: 60,130,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0988956 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5865607","Offset: 60,134,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0989084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5866367","Offset: 60,138,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0989208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5866106","Offset: 60,142,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0989336 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5865846","Offset: 60,146,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0989447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5866576","Offset: 60,150,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0989579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5866243","Offset: 60,154,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0989711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5865945","Offset: 60,158,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0989839 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5866687","Offset: 60,163,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0989963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5866431","Offset: 60,167,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0990099 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5866137","Offset: 60,171,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0990215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5866708","Offset: 60,175,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0990338 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5866410","Offset: 60,179,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0990471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5866708","Offset: 60,183,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0990616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5866755","Offset: 60,187,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0990739 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5867024","Offset: 60,191,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0990855 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5866768","Offset: 60,195,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0991017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5867207","Offset: 60,199,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0991145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5866934","Offset: 60,204,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0991273 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5867318","Offset: 60,208,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0991401 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5867058","Offset: 60,212,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0991533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5867455","Offset: 60,216,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0991652 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5867187","Offset: 60,220,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0991776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5867481","Offset: 60,224,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0991904 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5867489","Offset: 60,228,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0992049 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5867703","Offset: 60,232,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0992173 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5867425","Offset: 60,236,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0992288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5868087","Offset: 60,240,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0992416 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5868296","Offset: 60,244,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0992544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5868428","Offset: 60,249,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0992672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5868530","Offset: 60,253,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0992796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5868590","Offset: 60,257,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0992928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5868867","Offset: 60,261,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0993039 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5868603","Offset: 60,265,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0993167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5869030","Offset: 60,269,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0993312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5868735","Offset: 60,273,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0993440 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5869153","Offset: 60,277,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0993568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5868876","Offset: 60,281,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0993679 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5869358","Offset: 60,285,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0993841 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5869034","Offset: 60,290,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0993974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5869464","Offset: 60,294,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0994119 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5869174","Offset: 60,298,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0994281 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5869588","Offset: 60,302,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0994464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5869247","Offset: 60,306,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0994614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5869695","Offset: 60,310,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0994750 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5869392","Offset: 60,314,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0994887 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5869831","Offset: 60,318,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0995006 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5869537","Offset: 60,322,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0995143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5869878","Offset: 60,326,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0995271 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5870019","Offset: 60,331,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0995394 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5870177","Offset: 60,335,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0995531 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5870506","Offset: 60,339,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0995667 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5870216","Offset: 60,343,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0995783 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5870663","Offset: 60,347,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0995949 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5870348","Offset: 60,351,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0996077 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5870638","Offset: 60,355,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0996205 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5870664","Offset: 60,359,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0996329 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5870958","Offset: 60,363,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0996444 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5870685","Offset: 60,367,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0996593 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5871150","Offset: 60,371,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0996721 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5870860","Offset: 60,376,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0996849 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5871304","Offset: 60,380,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0996973 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5871030","Offset: 60,384,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0997118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5871449","Offset: 60,388,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0997302 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5871107","Offset: 60,392,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0997489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5871504","Offset: 60,396,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0997626 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5871209","Offset: 60,400,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0997741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5871658","Offset: 60,404,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0997890 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5871355","Offset: 60,408,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0998018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5871790","Offset: 60,412,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0998146 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5871513","Offset: 60,417,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0998274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5871974","Offset: 60,421,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0998407 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.5871674","Offset: 60,425,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0998522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6150429","Offset: 60,429,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0998701 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6151790","Offset: 60,433,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0998825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6153428","Offset: 60,437,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0998961 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6155434","Offset: 60,441,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0999076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6173679","Offset: 60,445,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0999204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6174912","Offset: 60,449,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0999328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6177467","Offset: 60,453,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0999473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6187174","Offset: 60,457,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0999601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6188305","Offset: 60,462,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0999716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6189679","Offset: 60,466,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0999849 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6192114","Offset: 60,470,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.0999972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6202172","Offset: 60,474,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1000118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6203272","Offset: 60,478,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1000241 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6204894","Offset: 60,482,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1000374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6207116","Offset: 60,486,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1000493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6218129","Offset: 60,490,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1000617 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6219293","Offset: 60,494,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1000745 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6222591","Offset: 60,498,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1000873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6230604","Offset: 60,503,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1000996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6232004","Offset: 60,507,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1001112 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6234687","Offset: 60,511,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1001240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6236125","Offset: 60,515,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1001368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6246566","Offset: 60,519,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1001496 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6248012","Offset: 60,523,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1001624 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6249501","Offset: 60,527,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1001760 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6251942","Offset: 60,531,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1001875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6263475","Offset: 60,535,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1002003 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6264640","Offset: 60,539,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1002149 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6265727","Offset: 60,544,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1002294 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6268210","Offset: 60,548,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1002417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6284198","Offset: 60,552,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1002528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6285474","Offset: 60,556,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1002682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6288686","Offset: 60,560,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1002810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6297446","Offset: 60,564,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1002938 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6298632","Offset: 60,568,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1003070 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6301452","Offset: 60,572,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1003202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6310733","Offset: 60,576,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1003335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6311850","Offset: 60,580,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1003480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6312635","Offset: 60,584,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1003625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6315016","Offset: 60,589,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1003808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6325756","Offset: 60,593,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1003992 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6327355","Offset: 60,597,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1004133 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6328609","Offset: 60,601,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1004261 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6331135","Offset: 60,605,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1004401 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6340595","Offset: 60,609,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1004534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6342246","Offset: 60,613,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1004649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6342954","Offset: 60,617,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1004777 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6347280","Offset: 60,621,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1004905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6355344","Offset: 60,625,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1005033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6356428","Offset: 60,630,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1005157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6358809","Offset: 60,634,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1005272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6360161","Offset: 60,638,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1005400 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6370939","Offset: 60,642,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1005528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6372019","Offset: 60,646,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1005651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6374234","Offset: 60,650,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1005779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6376674","Offset: 60,654,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1005912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6386180","Offset: 60,658,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1006027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6387328","Offset: 60,662,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1006151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6389874","Offset: 60,666,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1006279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6391598","Offset: 60,670,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1006407 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6401727","Offset: 60,675,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1006547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6402748","Offset: 60,679,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1006752 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6404062","Offset: 60,683,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1006936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6406468","Offset: 60,687,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1007085 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6417096","Offset: 60,691,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1007217 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6418219","Offset: 60,695,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1007333 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6419596","Offset: 60,699,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1007461 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6422105","Offset: 60,703,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1007593 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6432759","Offset: 60,707,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1007717 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6433906","Offset: 60,711,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1007840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6434714","Offset: 60,716,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1007955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6437543","Offset: 60,720,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1008083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6446955","Offset: 60,724,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1008211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6448986","Offset: 60,728,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1008339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6449621","Offset: 60,732,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1008467 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6452630","Offset: 60,736,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1008600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6462378","Offset: 60,740,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1008715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6464196","Offset: 60,744,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1008843 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6465305","Offset: 60,748,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1008971 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6467793","Offset: 60,752,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1009116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6477141","Offset: 60,756,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1009240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6478399","Offset: 60,761,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1009359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6481613","Offset: 60,765,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1009491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6490351","Offset: 60,769,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1009619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6491499","Offset: 60,773,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1009752 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6492590","Offset: 60,777,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1009880 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6495637","Offset: 60,781,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1010008 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6505314","Offset: 60,785,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1010123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6506675","Offset: 60,789,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1010259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6507866","Offset: 60,793,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1010413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6509760","Offset: 60,797,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1010541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6520631","Offset: 60,802,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1010669 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6522078","Offset: 60,806,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1010784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6522671","Offset: 60,810,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1010921 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6525440","Offset: 60,814,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1011049 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6534698","Offset: 60,818,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1011177 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6536674","Offset: 60,822,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1011305 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6537595","Offset: 60,826,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1011441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6540024","Offset: 60,830,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1011557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6550579","Offset: 60,834,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1011680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6552171","Offset: 60,838,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1011808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6553037","Offset: 60,843,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1011936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6557449","Offset: 60,847,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1012060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6565542","Offset: 60,851,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1012175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6566639","Offset: 60,855,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1012307 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6567796","Offset: 60,859,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1012435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6570616","Offset: 60,863,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1012563 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6580297","Offset: 60,867,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1012691 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6581398","Offset: 60,871,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1012824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6583266","Offset: 60,875,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1012965 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6585813","Offset: 60,879,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1013165 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6595482","Offset: 60,883,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1013314 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6596519","Offset: 60,888,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1013434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6599074","Offset: 60,892,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1013570 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6600683","Offset: 60,896,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1013703 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6610781","Offset: 60,900,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1013831 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6611878","Offset: 60,904,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1013954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6613176","Offset: 60,908,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1014091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6615629","Offset: 60,912,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1014206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6626159","Offset: 60,916,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1014330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6627328","Offset: 60,920,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1014462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6628604","Offset: 60,924,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1014590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6631040","Offset: 60,929,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1014714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6642227","Offset: 60,933,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1014829 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6643255","Offset: 60,937,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1014961 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6644045","Offset: 60,941,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1015089 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6648542","Offset: 60,945,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1015217 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6656858","Offset: 60,949,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1015341 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6658645","Offset: 60,953,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1015478 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6659353","Offset: 60,957,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1015597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6664192","Offset: 60,961,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1015721 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6670673","Offset: 60,965,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1015849 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6672926","Offset: 60,969,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1016083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6675260","Offset: 60,974,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1016254 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6684194","Offset: 60,978,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1016416 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6685304","Offset: 60,982,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1016544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6686464","Offset: 60,986,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1016672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6689438","Offset: 60,990,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1016805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6699106","Offset: 60,994,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1016920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6700271","Offset: 60,998,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1017048 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6701559","Offset: 61,002,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1017171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6704615","Offset: 61,006,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1017299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6713601","Offset: 61,010,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1017423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6714799","Offset: 61,015,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1017534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6717188","Offset: 61,019,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1017666 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6718157","Offset: 61,023,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1017794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6729455","Offset: 61,027,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1017922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6730616","Offset: 61,031,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1018046 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6731145","Offset: 61,035,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1018178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6734592","Offset: 61,039,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1018298 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6743514","Offset: 61,043,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1018422 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6745254","Offset: 61,047,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1018554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6746108","Offset: 61,051,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1018695 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6748612","Offset: 61,056,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1019053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6758016","Offset: 61,060,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1019168 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6759800","Offset: 61,064,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1019301 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6760571","Offset: 61,068,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1019429 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6763669","Offset: 61,072,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1019552 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6773675","Offset: 61,076,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1019676 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6774882","Offset: 61,080,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1019804 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6776538","Offset: 61,084,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1019919 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6786138","Offset: 61,088,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1020043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6787277","Offset: 61,092,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1020167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6788356","Offset: 61,096,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1020295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6791983","Offset: 61,101,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1020418 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6800777","Offset: 61,105,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1020529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6801920","Offset: 61,109,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1020657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6803444","Offset: 61,113,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1020781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6805863","Offset: 61,117,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1020909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6815091","Offset: 61,121,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1021033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6816384","Offset: 61,125,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1021161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6818581","Offset: 61,129,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1021276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6828519","Offset: 61,133,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1021400 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6830310","Offset: 61,137,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1021528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6830984","Offset: 61,142,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1021656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6833660","Offset: 61,146,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1021784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6843055","Offset: 61,150,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1021899 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6844433","Offset: 61,154,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1022031 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6846285","Offset: 61,158,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1022155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6848666","Offset: 61,162,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1022283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6858048","Offset: 61,166,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1022411 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6859213","Offset: 61,170,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1022543 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6860830","Offset: 61,174,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1022680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6862741","Offset: 61,178,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1022803 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6873767","Offset: 61,182,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1022936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6875012","Offset: 61,187,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1023132 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6876536","Offset: 61,191,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1023303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6886379","Offset: 61,195,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1023435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6887522","Offset: 61,199,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1023606 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6888183","Offset: 61,203,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1023738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6891277","Offset: 61,207,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1023870 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6900907","Offset: 61,211,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1024007 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6902814","Offset: 61,215,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1024135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6903407","Offset: 61,219,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1024263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6904806","Offset: 61,223,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1024391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6916092","Offset: 61,228,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1024536 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6917641","Offset: 61,232,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1024651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6918439","Offset: 61,236,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1024783 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6921831","Offset: 61,240,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1024928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6930804","Offset: 61,244,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1025056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6932105","Offset: 61,248,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1025184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6934430","Offset: 61,252,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1025317 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6935501","Offset: 61,256,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1025432 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6945749","Offset: 61,260,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1025555 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6946992","Offset: 61,264,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1025688 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6948915","Offset: 61,268,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1025816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6950396","Offset: 61,273,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1026008 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6961045","Offset: 61,277,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1026187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6962082","Offset: 61,281,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1026362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6963836","Offset: 61,285,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1026515 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6966823","Offset: 61,289,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1026648 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6975996","Offset: 61,293,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1026776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6977058","Offset: 61,297,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1026917 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6978615","Offset: 61,301,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1027083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6981150","Offset: 61,305,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1027211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6991045","Offset: 61,309,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1027335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6992090","Offset: 61,314,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1027467 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6993788","Offset: 61,318,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1027616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.6996284","Offset: 61,322,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1027744 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7007105","Offset: 61,326,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1027872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7008171","Offset: 61,330,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1028000 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7009063","Offset: 61,334,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1028133 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7011746","Offset: 61,338,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1028248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7021986","Offset: 61,342,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1028393 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7023625","Offset: 61,346,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1028525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7024402","Offset: 61,350,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1028653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7027666","Offset: 61,355,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1028777 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7036719","Offset: 61,359,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1028896 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7038414","Offset: 61,363,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1029024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7039177","Offset: 61,367,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1029152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7041985","Offset: 61,371,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1029280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7051772","Offset: 61,375,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1029408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7053108","Offset: 61,379,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1029541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7055386","Offset: 61,383,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1029660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7056470","Offset: 61,387,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1029784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7066671","Offset: 61,391,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1029920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7067717","Offset: 61,395,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1030061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7070849","Offset: 61,400,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1030189 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7071813","Offset: 61,404,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1030304 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7081469","Offset: 61,408,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1030432 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7082480","Offset: 61,412,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1030560 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7084263","Offset: 61,416,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1030693 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7087352","Offset: 61,420,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1030821 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7096905","Offset: 61,424,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1030953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7097989","Offset: 61,428,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1031068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7099542","Offset: 61,432,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1031192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7102050","Offset: 61,436,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1031320 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7112525","Offset: 61,441,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1031443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7113618","Offset: 61,445,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1031571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7115039","Offset: 61,449,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1031682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7117343","Offset: 61,453,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1031832 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7126780","Offset: 61,457,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1031964 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7127693","Offset: 61,461,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1032096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7130595","Offset: 61,465,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1032220 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7138172","Offset: 61,469,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1032352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7140775","Offset: 61,473,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1032510 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7142204","Offset: 61,477,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1032732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7149948","Offset: 61,481,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1032877 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7152675","Offset: 61,486,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1032997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7153639","Offset: 61,490,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1033142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7163947","Offset: 61,494,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1033274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7165189","Offset: 61,498,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1033402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7165718","Offset: 61,502,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1033530 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7168577","Offset: 61,506,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1033662 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7177968","Offset: 61,510,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1033782 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7179183","Offset: 61,514,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1033910 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7180830","Offset: 61,518,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1034033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7183284","Offset: 61,522,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1034174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7193669","Offset: 61,527,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1034302 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7194821","Offset: 61,531,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1034413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7196451","Offset: 61,535,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1034541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7198917","Offset: 61,539,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1034690 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7208624","Offset: 61,543,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1034823 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7209797","Offset: 61,547,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1034946 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7211909","Offset: 61,551,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1035104 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7213334","Offset: 61,555,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1035249 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7223929","Offset: 61,559,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1035475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7224923","Offset: 61,563,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1035638 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7226373","Offset: 61,568,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1035753 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7229871","Offset: 61,572,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1035877 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7239309","Offset: 61,576,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1035987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7240556","Offset: 61,580,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1036094 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7243052","Offset: 61,584,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1036218 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7251495","Offset: 61,588,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1036329 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7253270","Offset: 61,592,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1036457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7253965","Offset: 61,596,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1036581 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7258437","Offset: 61,600,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1036721 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7266749","Offset: 61,604,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1036837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7268293","Offset: 61,608,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1036969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7269138","Offset: 61,613,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1037118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7271800","Offset: 61,617,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1037250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7280650","Offset: 61,621,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1037374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7282373","Offset: 61,625,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1037511 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7285227","Offset: 61,629,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1037622 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7293594","Offset: 61,633,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1037750 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7294891","Offset: 61,637,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1037878 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7296261","Offset: 61,641,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1038010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7299290","Offset: 61,645,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1038134 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7308288","Offset: 61,649,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1038249 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7309394","Offset: 61,654,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1038398 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7310922","Offset: 61,658,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1038543 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7313422","Offset: 61,662,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1038675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7323756","Offset: 61,666,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1038799 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7324797","Offset: 61,670,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1038931 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7327306","Offset: 61,674,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1039051 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7328351","Offset: 61,678,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1039179 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7339440","Offset: 61,682,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1039307 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7340523","Offset: 61,686,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1039435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7341624","Offset: 61,690,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1039563 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7344120","Offset: 61,694,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1039674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7354143","Offset: 61,699,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1039806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7355828","Offset: 61,703,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1039934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7356656","Offset: 61,707,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1040062 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7359587","Offset: 61,711,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1040190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7369477","Offset: 61,715,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1040322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7370519","Offset: 61,719,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1040438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7372344","Offset: 61,723,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1040561 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7374909","Offset: 61,727,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1040689 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7384347","Offset: 61,731,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1040834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7385409","Offset: 61,735,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1040975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7388447","Offset: 61,740,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1041090 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7389437","Offset: 61,744,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1041218 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7399801","Offset: 61,748,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1041346 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7400961","Offset: 61,752,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1041474 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7402152","Offset: 61,756,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1041619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7403910","Offset: 61,760,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1041846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7414942","Offset: 61,764,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1041974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7416513","Offset: 61,768,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1042119 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7417285","Offset: 61,772,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1042247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7420101","Offset: 61,776,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1042358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7429436","Offset: 61,780,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1042490 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7430768","Offset: 61,785,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1042618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7432103","Offset: 61,789,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1042746 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7434574","Offset: 61,793,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1042870 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7443632","Offset: 61,797,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1043002 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7445121","Offset: 61,801,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1043138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7447656","Offset: 61,805,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1043279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7457358","Offset: 61,809,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1043437 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7459137","Offset: 61,813,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1043586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7459850","Offset: 61,817,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1043710 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7460908","Offset: 61,821,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1043847 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7472056","Offset: 61,826,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1043979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7473162","Offset: 61,830,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1044111 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7474856","Offset: 61,834,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1044239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7476596","Offset: 61,838,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1044367 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7486777","Offset: 61,842,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1044559 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7488104","Offset: 61,846,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1044743 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7489776","Offset: 61,850,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1044879 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7491090","Offset: 61,854,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1045024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7501535","Offset: 61,858,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1045135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7502683","Offset: 61,862,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1045272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7504641","Offset: 61,867,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1045417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7506104","Offset: 61,871,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1045545 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7516767","Offset: 61,875,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1045686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7517957","Offset: 61,879,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1045818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7520304","Offset: 61,883,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1045933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7521861","Offset: 61,887,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1046057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7531696","Offset: 61,891,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1046185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7532775","Offset: 61,895,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1046313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7535199","Offset: 61,899,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1046441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7536214","Offset: 61,903,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1046556 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7546668","Offset: 61,907,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1046688 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7547722","Offset: 61,912,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1046816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7550244","Offset: 61,916,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1046949 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7552939","Offset: 61,920,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1047077 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7565727","Offset: 61,924,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1047209 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7567216","Offset: 61,928,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1047328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7569661","Offset: 61,932,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1047469 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7576526","Offset: 61,936,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1047601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7577593","Offset: 61,940,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1047729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7578822","Offset: 61,944,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1047857 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7581749","Offset: 61,948,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1047968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7587475","Offset: 61,953,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1048169 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7588490","Offset: 61,957,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1048301 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7590431","Offset: 61,961,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1048433 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7592927","Offset: 61,965,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1048557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7593977","Offset: 61,969,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1048689 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7596716","Offset: 61,973,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1048805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7600436","Offset: 61,977,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1048928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7603432","Offset: 61,981,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1049061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7604963","Offset: 61,985,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1049184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7607763","Offset: 61,989,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1049308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7608654","Offset: 61,993,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1049423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7611590","Offset: 61,998,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1049573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7614068","Offset: 62,002,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1049696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7615374","Offset: 62,006,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1049824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7617840","Offset: 62,010,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1049948 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7620759","Offset: 62,014,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1050085 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7622452","Offset: 62,018,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1050204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7623276","Offset: 62,022,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1050328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7628955","Offset: 62,026,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1050456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7631732","Offset: 62,030,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1050584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7630529","Offset: 62,034,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1050712 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7629885","Offset: 62,039,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1050827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7634314","Offset: 62,043,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1050981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7633025","Offset: 62,047,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1051211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7632360","Offset: 62,051,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1051352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7631702","Offset: 62,055,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1051484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7636707","Offset: 62,059,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1051629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7636097","Offset: 62,063,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1051821 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7635445","Offset: 62,067,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1051949 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7634570","Offset: 62,071,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1052073 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7633972","Offset: 62,075,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1052188 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7633392","Offset: 62,080,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1052320 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7632130","Offset: 62,084,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1052448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7646350","Offset: 62,088,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1052576 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7645847","Offset: 62,092,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1052700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7645219","Offset: 62,096,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1052832 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7644686","Offset: 62,100,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1052947 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7644166","Offset: 62,104,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1053071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7643726","Offset: 62,108,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1053199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7643278","Offset: 62,112,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1053327 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7642493","Offset: 62,116,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1053451 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7642075","Offset: 62,120,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1053566 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7641653","Offset: 62,125,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1053694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7641124","Offset: 62,129,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1053890 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7637369","Offset: 62,133,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1054078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7636865","Offset: 62,137,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1054236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7636370","Offset: 62,141,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1054385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7635487","Offset: 62,145,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1054509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7639997","Offset: 62,149,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1054637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7639519","Offset: 62,153,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1054778 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7638870","Offset: 62,157,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1054897 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7638444","Offset: 62,161,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1055030 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7638008","Offset: 62,166,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1055153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7637484","Offset: 62,170,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1055281 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7637015","Offset: 62,174,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1055409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7636465","Offset: 62,178,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1055542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7636029","Offset: 62,182,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1055657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7633908","Offset: 62,186,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1055781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7633439","Offset: 62,190,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1055913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7643905","Offset: 62,194,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1056041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7643474","Offset: 62,198,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1056165 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7642941","Offset: 62,202,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1056276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7654533","Offset: 62,206,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1056408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7648722","Offset: 62,211,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1056536 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7648266","Offset: 62,215,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1056664 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7647643","Offset: 62,219,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1056792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7647216","Offset: 62,223,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1056941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7646747","Offset: 62,227,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1057056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7646303","Offset: 62,231,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1057184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7645766","Offset: 62,235,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1057338 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7645138","Offset: 62,239,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1057466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7644703","Offset: 62,243,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1057594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7644174","Offset: 62,247,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1057735 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7643734","Offset: 62,252,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1057867 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7643287","Offset: 62,256,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1057999 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7642792","Offset: 62,260,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1058319 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7653616","Offset: 62,264,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1058447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7653092","Offset: 62,268,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1058584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7652647","Offset: 62,272,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1058699 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7651658","Offset: 62,276,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1058823 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7651141","Offset: 62,280,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1058976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7650685","Offset: 62,284,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1059109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7650160","Offset: 62,288,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1059254 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7649708","Offset: 62,292,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1059369 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7649089","Offset: 62,297,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1059505 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7648650","Offset: 62,301,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1059629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7648142","Offset: 62,305,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1059787 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7647664","Offset: 62,309,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1059932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7647127","Offset: 62,313,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1060090 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7646640","Offset: 62,317,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1060239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7646005","Offset: 62,321,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1060440 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7645394","Offset: 62,325,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1060598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7644929","Offset: 62,329,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1060713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7656577","Offset: 62,333,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1060845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7656129","Offset: 62,338,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1060977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7655601","Offset: 62,342,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1061101 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7655165","Offset: 62,346,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1061229 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7654730","Offset: 62,350,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1061366 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7654286","Offset: 62,354,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1061481 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7653859","Offset: 62,358,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1061605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7653181","Offset: 62,362,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1061758 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7652699","Offset: 62,366,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1061886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7652264","Offset: 62,370,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1062014 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7651829","Offset: 62,374,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1062125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7651410","Offset: 62,379,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1062257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7650852","Offset: 62,383,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1062398 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7650288","Offset: 62,387,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1062548 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7660434","Offset: 62,391,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1062676 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7660007","Offset: 62,395,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1062825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7659521","Offset: 62,399,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1062953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7658992","Offset: 62,403,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1063149 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7658489","Offset: 62,407,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1063328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7657998","Offset: 62,411,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1063448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7657563","Offset: 62,415,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1063580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7657102","Offset: 62,419,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1063708 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7656560","Offset: 62,424,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1063832 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7656121","Offset: 62,428,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1063956 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7655685","Offset: 62,432,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1064088 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7655229","Offset: 62,436,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1064207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7654798","Offset: 62,440,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1064331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7654329","Offset: 62,444,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1064455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7653765","Offset: 62,448,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1064583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7653326","Offset: 62,452,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1064728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7652878","Offset: 62,456,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1064843 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7663848","Offset: 62,460,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1064975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7663413","Offset: 62,465,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1065103 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7662888","Offset: 62,469,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1065231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7662453","Offset: 62,473,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1065359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7662013","Offset: 62,477,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1065492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7661569","Offset: 62,481,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1065611 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7661019","Offset: 62,485,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1065735 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7660383","Offset: 62,489,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1065867 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7659944","Offset: 62,493,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1065995 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7659513","Offset: 62,497,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1066136 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7659065","Offset: 62,501,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1066247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7658646","Offset: 62,505,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1066379 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7658182","Offset: 62,510,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1066507 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7657657","Offset: 62,514,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1066635 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7657179","Offset: 62,518,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1066763 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7667410","Offset: 62,522,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1066895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7666941","Offset: 62,526,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1067019 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7666344","Offset: 62,530,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1067147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7665891","Offset: 62,534,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1067279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7665422","Offset: 62,538,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1067424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7664949","Offset: 62,542,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1067565 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7664466","Offset: 62,546,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1067680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7663942","Offset: 62,551,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1067813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7663463","Offset: 62,555,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1067945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7663016","Offset: 62,559,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1068094 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7662547","Offset: 62,563,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1068235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7662094","Offset: 62,567,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1068393 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7661616","Offset: 62,571,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1068508 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7661113","Offset: 62,575,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1068636 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7660678","Offset: 62,579,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1068768 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7660238","Offset: 62,583,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1068913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7671289","Offset: 62,587,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1069037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7670837","Offset: 62,592,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1069152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7670231","Offset: 62,596,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1069289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7669774","Offset: 62,600,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1069468 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7669266","Offset: 62,604,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1069673 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7668737","Offset: 62,608,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1069852 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7668225","Offset: 62,612,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1070001 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7667586","Offset: 62,616,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1070134 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7667124","Offset: 62,620,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1070266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7666672","Offset: 62,624,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1070411 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7666194","Offset: 62,628,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1070522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7665759","Offset: 62,632,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1070654 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7665281","Offset: 62,637,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1070786 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7664727","Offset: 62,641,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1070914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7664271","Offset: 62,645,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1071042 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7663818","Offset: 62,649,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1071179 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7671464","Offset: 62,653,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1071294 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7671016","Offset: 62,657,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1071418 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7670572","Offset: 62,661,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1071550 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7669919","Offset: 62,665,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1071682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7669476","Offset: 62,669,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1071806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7669019","Offset: 62,673,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1071921 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7874195","Offset: 62,678,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1072096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7877002","Offset: 62,682,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1072263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7879809","Offset: 62,686,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1072442 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7884656","Offset: 62,690,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1072587 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7887387","Offset: 62,694,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1072715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7895801","Offset: 62,698,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1072839 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7898527","Offset: 62,702,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1072971 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7901732","Offset: 62,706,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1073090 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7905764","Offset: 62,710,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1073218 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7908405","Offset: 62,714,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1073346 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7910739","Offset: 62,718,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1073479 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7912151","Offset: 62,723,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1073602 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7914822","Offset: 62,727,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1073722 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7916234","Offset: 62,731,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1073854 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7918978","Offset: 62,735,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1073982 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7920441","Offset: 62,739,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1074114 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7922733","Offset: 62,743,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1074238 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7924938","Offset: 62,747,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1074370 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7926031","Offset: 62,751,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1074490 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7928245","Offset: 62,755,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1074618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7934201","Offset: 62,759,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1074746 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7935170","Offset: 62,764,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1074874 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7936100","Offset: 62,768,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1074998 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7938519","Offset: 62,772,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1075109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7939786","Offset: 62,776,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1075262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7942022","Offset: 62,780,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1075407 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7946233","Offset: 62,784,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1075535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7946950","Offset: 62,788,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1075663 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7949173","Offset: 62,792,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1075800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7952385","Offset: 62,796,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1075915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7954698","Offset: 62,800,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1076043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7957937","Offset: 62,804,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1076167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7957416","Offset: 62,809,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1076312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7956592","Offset: 62,813,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1076440 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7961832","Offset: 62,817,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1076572 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7961354","Offset: 62,821,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1076700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7960876","Offset: 62,825,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1076828 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7960300","Offset: 62,829,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1076956 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7959818","Offset: 62,833,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1077084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7959349","Offset: 62,837,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1077216 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7958871","Offset: 62,841,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1077336 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7958397","Offset: 62,845,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1077481 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7957557","Offset: 62,850,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1077613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7957058","Offset: 62,854,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1077750 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7965352","Offset: 62,858,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1077878 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7964934","Offset: 62,862,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1077989 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7964468","Offset: 62,866,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1078121 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7963999","Offset: 62,870,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1078257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7963612","Offset: 62,874,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1078385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7963121","Offset: 62,878,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1078513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7962703","Offset: 62,882,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1078671 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7962174","Offset: 62,886,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1078791 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7961704","Offset: 62,891,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1078914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7961312","Offset: 62,895,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1079047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7960769","Offset: 62,899,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1079183 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7960211","Offset: 62,903,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1079388 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7959622","Offset: 62,907,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1079559 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7966892","Offset: 62,911,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1079712 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7966479","Offset: 62,915,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1079840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7966001","Offset: 62,919,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1079990 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7965565","Offset: 62,923,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1080109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7964879","Offset: 62,927,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1080237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7964452","Offset: 62,931,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1080365 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7963961","Offset: 62,936,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1080493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7963415","Offset: 62,940,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1080621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7974261","Offset: 62,944,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1080736 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7973890","Offset: 62,948,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1080886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7973475","Offset: 62,952,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1081018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7972989","Offset: 62,956,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1081146 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7972597","Offset: 62,960,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1081274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7972204","Offset: 62,964,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1081406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7971803","Offset: 62,968,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1081526 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7971376","Offset: 62,972,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1081649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7970784","Offset: 62,977,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1081794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7970379","Offset: 62,981,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1081922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7969901","Offset: 62,985,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1082085 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7969478","Offset: 62,989,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1082302 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7968923","Offset: 62,993,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1082447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7968437","Offset: 62,997,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1082575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7967968","Offset: 63,001,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1082708 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7967575","Offset: 63,005,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1082823 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7967110","Offset: 63,009,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1082951 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7966713","Offset: 63,013,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1083074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7966210","Offset: 63,017,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1083202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7965685","Offset: 63,022,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1083326 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7965211","Offset: 63,026,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1083441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7964819","Offset: 63,030,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1083574 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7964302","Offset: 63,034,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1083706 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7963859","Offset: 63,038,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1083838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7974065","Offset: 63,042,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1083970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7973263","Offset: 63,046,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1084103 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7972848","Offset: 63,050,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1084218 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7972349","Offset: 63,054,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1084342 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7971739","Offset: 63,058,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1084525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7971104","Offset: 63,063,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1084662 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7970587","Offset: 63,067,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1084790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7981403","Offset: 63,071,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1084905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7980955","Offset: 63,075,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1085033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7980558","Offset: 63,079,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1085165 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7980153","Offset: 63,083,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1085289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7979760","Offset: 63,087,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1085417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7979308","Offset: 63,091,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1085553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7978728","Offset: 63,095,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1085673 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7978331","Offset: 63,099,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1085797 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7977938","Offset: 63,104,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1085946 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7977516","Offset: 63,108,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1086112 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7977086","Offset: 63,112,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1086240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7976608","Offset: 63,116,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1086356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7976219","Offset: 63,120,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1086488 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7975822","Offset: 63,124,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1086633 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7975408","Offset: 63,128,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1086944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7974824","Offset: 63,132,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1087077 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7974410","Offset: 63,136,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1087230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7973851","Offset: 63,140,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1087350 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7973471","Offset: 63,144,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1087490 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7973050","Offset: 63,149,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1087623 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7972644","Offset: 63,153,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1087751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7972208","Offset: 63,157,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1087879 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7971538","Offset: 63,161,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1088011 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7971129","Offset: 63,165,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1088156 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7970664","Offset: 63,169,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1088288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7980277","Offset: 63,173,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1088468 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7979773","Offset: 63,177,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1088702 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7979117","Offset: 63,181,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1088822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7978536","Offset: 63,185,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1088967 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7977985","Offset: 63,190,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1089095 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7977473","Offset: 63,194,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1089223 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7987846","Offset: 63,198,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1089359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7987449","Offset: 63,202,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1089470 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7987065","Offset: 63,206,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1089598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7986673","Offset: 63,210,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1089709 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7986216","Offset: 63,214,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1089837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7985819","Offset: 63,218,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1089965 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7985418","Offset: 63,222,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1090093 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7985022","Offset: 63,226,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1090221 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7984616","Offset: 63,230,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1090341 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7984146","Offset: 63,235,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1090469 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7983745","Offset: 63,239,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1090597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7983340","Offset: 63,243,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1090720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7982952","Offset: 63,247,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1090848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7982556","Offset: 63,251,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1090964 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7982167","Offset: 63,255,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1091096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7981608","Offset: 63,259,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1091232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7981199","Offset: 63,263,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1091433 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7980725","Offset: 63,267,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1091612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7980273","Offset: 63,271,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1091749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7979854","Offset: 63,276,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1091881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7979372","Offset: 63,280,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1092009 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7978971","Offset: 63,284,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1092137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7978570","Offset: 63,288,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1092248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7978190","Offset: 63,292,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1092380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7977777","Offset: 63,296,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1092508 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7976940","Offset: 63,300,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1092632 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7987167","Offset: 63,304,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1092785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7986251","Offset: 63,308,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1092943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7985807","Offset: 63,312,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1093076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7985294","Offset: 63,316,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1093199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7984224","Offset: 63,321,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1093332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7995636","Offset: 63,325,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1093455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7995249","Offset: 63,329,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1093583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7994780","Offset: 63,333,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1093694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7994387","Offset: 63,337,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1093826 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7993995","Offset: 63,341,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1093954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7993598","Offset: 63,345,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1094082 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7993197","Offset: 63,349,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1094206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7992787","Offset: 63,353,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1094343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7992253","Offset: 63,357,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1094458 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7991865","Offset: 63,362,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1094582 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7991477","Offset: 63,366,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1094714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7991072","Offset: 63,370,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1094859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7990632","Offset: 63,374,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1094983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7990077","Offset: 63,378,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1095098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7989676","Offset: 63,382,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1095230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7989271","Offset: 63,386,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1095358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7988857","Offset: 63,390,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1095486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7988435","Offset: 63,394,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1095610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7987876","Offset: 63,398,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1095742 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7987462","Offset: 63,403,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1095857 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7987057","Offset: 63,407,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1096002 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7986618","Offset: 63,411,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1096135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7986067","Offset: 63,415,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1096263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7985623","Offset: 63,419,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1096386 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7984941","Offset: 63,423,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1096502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7984437","Offset: 63,427,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1096634 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7983980","Offset: 63,431,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1096766 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7992992","Offset: 63,435,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1096894 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7992471","Offset: 63,439,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1097018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8001030","Offset: 63,443,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1097154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8000625","Offset: 63,448,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1097274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8000151","Offset: 63,452,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1097402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7999737","Offset: 63,456,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1097530 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7999208","Offset: 63,460,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1097658 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7998807","Offset: 63,464,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1097777 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7998423","Offset: 63,468,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1097940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7998000","Offset: 63,472,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1098149 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7997527","Offset: 63,476,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1098289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7996973","Offset: 63,480,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1098422 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7996571","Offset: 63,484,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1098537 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7996187","Offset: 63,489,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1098665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7995786","Offset: 63,493,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1098797 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7995377","Offset: 63,497,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1098925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7994971","Offset: 63,501,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1099049 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7994506","Offset: 63,505,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1099173 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7994109","Offset: 63,509,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1099301 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7993704","Offset: 63,513,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1099433 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7993299","Offset: 63,517,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1099586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7992843","Offset: 63,521,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1099719 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7991929","Offset: 63,525,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1099851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7991434","Offset: 63,529,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1099966 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7990893","Offset: 63,534,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1100094 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8001474","Offset: 63,538,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1100226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8001077","Offset: 63,542,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1100359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8000671","Offset: 63,546,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1100504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8000211","Offset: 63,550,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1100615 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7999225","Offset: 63,554,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1100802 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7998671","Offset: 63,558,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1101029 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7998017","Offset: 63,562,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1101191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8007835","Offset: 63,566,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1101340 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8007387","Offset: 63,570,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1101464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8006871","Offset: 63,575,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1101596 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8006470","Offset: 63,579,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1101724 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8006069","Offset: 63,583,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1101848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8005668","Offset: 63,587,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1101959 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8005275","Offset: 63,591,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1102095 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8004815","Offset: 63,595,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1102240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8004401","Offset: 63,599,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1102368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8004004","Offset: 63,603,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1102496 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8003607","Offset: 63,607,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1102629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8003137","Offset: 63,611,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1102748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8002600","Offset: 63,616,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1102893 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8002186","Offset: 63,620,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1103021 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8001790","Offset: 63,624,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1103145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8001397","Offset: 63,628,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1103269 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8000995","Offset: 63,632,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1103384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8000573","Offset: 63,636,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1103516 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8000032","Offset: 63,640,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1103644 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7999635","Offset: 63,644,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1103768 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7999238","Offset: 63,648,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1103896 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7998832","Offset: 63,652,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1104028 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7998329","Offset: 63,656,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1104143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.7997792","Offset: 63,661,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1104271 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8008608","Offset: 63,665,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1104404 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8008210","Offset: 63,669,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1104532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8007664","Offset: 63,673,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1104655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8007272","Offset: 63,677,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1104766 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8006893","Offset: 63,681,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1104898 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8006496","Offset: 63,685,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1105026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8006086","Offset: 63,689,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1105154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8005604","Offset: 63,693,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1105282 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8014641","Offset: 63,697,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1105415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8014256","Offset: 63,702,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1105530 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8013877","Offset: 63,706,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1105654 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8013488","Offset: 63,710,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1105782 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8013092","Offset: 63,714,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1105910 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8012631","Offset: 63,718,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1106038 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8012242","Offset: 63,722,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1106149 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8011875","Offset: 63,726,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1106277 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8011479","Offset: 63,730,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1106405 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8011086","Offset: 63,734,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1106537 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8010677","Offset: 63,738,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1106665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8010207","Offset: 63,742,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1106797 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8009798","Offset: 63,747,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1106912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8009423","Offset: 63,751,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1107036 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8009026","Offset: 63,755,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1107185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8008591","Offset: 63,759,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1107412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8007950","Offset: 63,763,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1107540 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8007549","Offset: 63,767,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1107672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8007148","Offset: 63,771,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1107800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8006756","Offset: 63,775,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1107945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8006350","Offset: 63,779,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1108081 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8005549","Offset: 63,783,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1108197 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8005049","Offset: 63,788,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1108320 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8015588","Offset: 63,792,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1108453 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8015195","Offset: 63,796,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1108581 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8014726","Offset: 63,800,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1108704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8014347","Offset: 63,804,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1108820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8013962","Offset: 63,808,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1108948 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8013578","Offset: 63,812,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1109076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8013155","Offset: 63,816,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1109221 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8012673","Offset: 63,820,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1109366 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8011440","Offset: 63,824,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1109553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8020866","Offset: 63,828,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1109673 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8020490","Offset: 63,833,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1109801 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8020085","Offset: 63,837,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1109929 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8019556","Offset: 63,841,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1110057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8019172","Offset: 63,845,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1110181 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8018788","Offset: 63,849,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1110351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8018353","Offset: 63,853,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1110573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8017866","Offset: 63,857,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1110727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8017422","Offset: 63,861,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1110859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8016902","Offset: 63,865,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1110974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8016510","Offset: 63,869,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1111102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8016117","Offset: 63,874,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1111230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8015716","Offset: 63,878,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1111358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8015311","Offset: 63,882,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1111482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8014845","Offset: 63,886,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1111597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8014466","Offset: 63,890,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1111729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8014078","Offset: 63,894,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1111875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8013676","Offset: 63,898,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1112003 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8013279","Offset: 63,902,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1112131 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8012511","Offset: 63,906,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1112263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8011999","Offset: 63,910,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1112378 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8022372","Offset: 63,915,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1112502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8021877","Offset: 63,919,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1112634 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8021480","Offset: 63,923,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1112762 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8021079","Offset: 63,927,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1112886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8020699","Offset: 63,931,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1113001 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8020320","Offset: 63,935,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1113137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8019608","Offset: 63,939,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1113283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8019197","Offset: 63,943,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1113411 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8018783","Offset: 63,947,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1113534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8018289","Offset: 63,951,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1113671 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8017717","Offset: 63,955,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1113786 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8027334","Offset: 63,960,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1113931 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8026916","Offset: 63,964,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1114059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8026408","Offset: 63,968,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1114191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8026020","Offset: 63,972,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1114315 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8025636","Offset: 63,976,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1114430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8025261","Offset: 63,980,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1114563 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8024863","Offset: 63,984,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1114691 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8024398","Offset: 63,988,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1114819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8023971","Offset: 63,992,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1114942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8023554","Offset: 63,996,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1115079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8023152","Offset: 64,001,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1115194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8022769","Offset: 64,005,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1115322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8022231","Offset: 64,009,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1115446 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8021821","Offset: 64,013,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1115574 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8021403","Offset: 64,017,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1115719 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8020989","Offset: 64,021,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1115834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8020614","Offset: 64,025,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1115966 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8020183","Offset: 64,029,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1116094 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8019407","Offset: 64,033,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1116222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8018912","Offset: 64,037,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1116350 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8029207","Offset: 64,041,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1116483 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8028801","Offset: 64,046,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1116598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8028435","Offset: 64,050,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1116726 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8028033","Offset: 64,054,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1116854 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8027453","Offset: 64,058,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1117016 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8027027","Offset: 64,062,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1117216 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8026566","Offset: 64,066,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1117344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8026174","Offset: 64,070,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1117502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8025743","Offset: 64,074,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1117635 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8025268","Offset: 64,078,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1117780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8024710","Offset: 64,082,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1117895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8024151","Offset: 64,087,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1118023 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8034340","Offset: 64,091,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1118155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8033854","Offset: 64,095,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1118283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8033388","Offset: 64,099,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1118428 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8032855","Offset: 64,103,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1118543 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8032275","Offset: 64,107,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1118671 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8031755","Offset: 64,111,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1118804 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8031255","Offset: 64,115,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1118949 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8030743","Offset: 64,119,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1119077 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8030239","Offset: 64,123,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1119213 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8029715","Offset: 64,128,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1119328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8029340","Offset: 64,132,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1119452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8028947","Offset: 64,136,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1119580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8028550","Offset: 64,140,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1119725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8028132","Offset: 64,144,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1119921 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8027317","Offset: 64,148,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1120109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8026873","Offset: 64,152,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1120241 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8026443","Offset: 64,156,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1120369 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8025939","Offset: 64,160,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1120502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8025409","Offset: 64,164,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1120617 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8037412","Offset: 64,168,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1120741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8036912","Offset: 64,173,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1120869 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8036277","Offset: 64,177,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1120997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8035790","Offset: 64,181,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1121142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8035300","Offset: 64,185,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1121257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8034826","Offset: 64,189,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1121385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8034357","Offset: 64,193,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1121513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8033529","Offset: 64,197,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1121641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8033047","Offset: 64,201,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1121782 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8032560","Offset: 64,205,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1121918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8032083","Offset: 64,209,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1122029 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8031597","Offset: 64,214,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1122157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8031025","Offset: 64,218,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1122281 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8043995","Offset: 64,222,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1122409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8043377","Offset: 64,226,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1122533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8042416","Offset: 64,230,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1122648 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8041973","Offset: 64,234,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1122776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8041533","Offset: 64,238,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1122908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8041051","Offset: 64,242,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1123036 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8040467","Offset: 64,246,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1123164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8039968","Offset: 64,250,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1123296 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8039251","Offset: 64,254,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1123416 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8038764","Offset: 64,259,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1123540 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8038209","Offset: 64,263,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1123685 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8037420","Offset: 64,267,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1123813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8036942","Offset: 64,271,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1123936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8036457","Offset: 64,275,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1124052 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8035957","Offset: 64,279,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1124180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8035479","Offset: 64,283,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1124308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8034928","Offset: 64,287,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1124619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8033777","Offset: 64,291,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1124747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8047806","Offset: 64,295,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1124931 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8047229","Offset: 64,300,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1125187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8046713","Offset: 64,304,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1125319 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8046312","Offset: 64,308,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1125455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8045894","Offset: 64,312,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1125583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8045451","Offset: 64,316,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1125745 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8044568","Offset: 64,320,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1125878 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8044089","Offset: 64,324,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1126031 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8043552","Offset: 64,328,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1126159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8043019","Offset: 64,332,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1126347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8042417","Offset: 64,336,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1126535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8041798","Offset: 64,340,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1126671 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8041235","Offset: 64,345,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1126816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8040454","Offset: 64,349,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1126944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8051249","Offset: 64,353,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1127068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8050852","Offset: 64,357,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1127179 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8050472","Offset: 64,361,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1127311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8050067","Offset: 64,365,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1127435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8049593","Offset: 64,369,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1127563 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8049184","Offset: 64,373,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1127708 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8048766","Offset: 64,377,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1127840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8048361","Offset: 64,381,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1127973 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8047954","Offset: 64,386,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1128096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8047426","Offset: 64,390,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1128229 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8047016","Offset: 64,394,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1128352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8046615","Offset: 64,398,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1128480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8046214","Offset: 64,402,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1128591 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8045830","Offset: 64,406,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1128724 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8045399","Offset: 64,410,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1128856 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8044465","Offset: 64,414,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1128984 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8043961","Offset: 64,418,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1129180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8054624","Offset: 64,422,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1129355 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8054189","Offset: 64,427,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1129492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8053778","Offset: 64,431,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1129615 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8053391","Offset: 64,435,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1129743 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8052994","Offset: 64,439,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1129854 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8052529","Offset: 64,443,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1129991 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8052115","Offset: 64,447,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1130119 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8051667","Offset: 64,451,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1130243 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8051231","Offset: 64,455,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1130392 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8050805","Offset: 64,459,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1130537 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8050370","Offset: 64,463,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1130652 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8049674","Offset: 64,467,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1130776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8049277","Offset: 64,472,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1130908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8048834","Offset: 64,476,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1131036 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8048258","Offset: 64,480,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1131194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8058063","Offset: 64,484,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1131309 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8057679","Offset: 64,488,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1131441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8057197","Offset: 64,492,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1131569 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8056792","Offset: 64,496,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1131697 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8056382","Offset: 64,500,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1131825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8055977","Offset: 64,504,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1131958 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8055524","Offset: 64,508,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1132069 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8055029","Offset: 64,513,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1132192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8054628","Offset: 64,517,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1132320 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8054223","Offset: 64,521,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1132448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8053813","Offset: 64,525,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1132576 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8053417","Offset: 64,529,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1132687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8052533","Offset: 64,533,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1132820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8052114","Offset: 64,537,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1132948 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8051602","Offset: 64,541,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1133088 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8051078","Offset: 64,545,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1133216 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8061976","Offset: 64,549,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1133349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8061574","Offset: 64,553,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1133464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8061181","Offset: 64,558,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1133588 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8060780","Offset: 64,562,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1133780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8060178","Offset: 64,566,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1133929 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8059769","Offset: 64,570,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1134061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8059360","Offset: 64,574,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1134185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8058967","Offset: 64,578,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1134317 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8058562","Offset: 64,582,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1134445 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8058157","Offset: 64,586,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1134573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8057670","Offset: 64,590,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1134697 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8057282","Offset: 64,594,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1134829 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8056864","Offset: 64,599,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1134944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8056484","Offset: 64,603,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1135068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8056049","Offset: 64,607,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1135196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8055076","Offset: 64,611,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1135324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8065034","Offset: 64,615,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1135448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8064629","Offset: 64,619,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1135559 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8064215","Offset: 64,623,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1135687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8063801","Offset: 64,627,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1135836 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8063358","Offset: 64,631,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1135977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8062918","Offset: 64,635,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1136182 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8062338","Offset: 64,640,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1136344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8061838","Offset: 64,644,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1136472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8061399","Offset: 64,648,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1136600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8061002","Offset: 64,652,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1136724 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8060567","Offset: 64,656,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1136839 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8059825","Offset: 64,660,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1136988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8059347","Offset: 64,664,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1137133 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8058818","Offset: 64,668,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1137261 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8058297","Offset: 64,672,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1137389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8069271","Offset: 64,676,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1137521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8068832","Offset: 64,680,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1137641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8068443","Offset: 64,685,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1137782 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8068016","Offset: 64,689,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1137910 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8067504","Offset: 64,693,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1138038 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8067108","Offset: 64,697,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1138161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8066712","Offset: 64,701,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1138277 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8066314","Offset: 64,705,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1138409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8065905","Offset: 64,709,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1138533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8065418","Offset: 64,713,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1138665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8065013","Offset: 64,717,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1138789 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8064603","Offset: 64,721,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1138959 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8064092","Offset: 64,726,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1139160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8063596","Offset: 64,730,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1139292 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8062645","Offset: 64,734,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1139403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8062248","Offset: 64,738,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1139527 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8061800","Offset: 64,742,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1139659 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8069143","Offset: 64,746,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1139770 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8068776","Offset: 64,750,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1139889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8068388","Offset: 64,754,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1140000 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8067983","Offset: 64,758,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1140124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8066925","Offset: 64,762,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1140265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8076887","Offset: 64,766,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1140397 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8076491","Offset: 64,771,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1140521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8076102","Offset: 64,775,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1140649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8075697","Offset: 64,779,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1140777 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8075300","Offset: 64,783,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1140931 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8074736","Offset: 64,787,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1141059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8074344","Offset: 64,791,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1141191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8073930","Offset: 64,795,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1141306 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8073516","Offset: 64,799,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1141430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8073068","Offset: 64,803,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1141558 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8072654","Offset: 64,807,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1141681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8072173","Offset: 64,812,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1141818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8071776","Offset: 64,816,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1141929 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8071396","Offset: 64,820,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1142078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8070982","Offset: 64,824,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1142240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8070526","Offset: 64,828,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1142373 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8069996","Offset: 64,832,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1142501 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8069591","Offset: 64,836,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1142633 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8069190","Offset: 64,840,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1142748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8068798","Offset: 64,844,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1142872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8068405","Offset: 64,848,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1143000 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8067906","Offset: 64,852,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1143124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8067496","Offset: 64,857,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1143256 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8067074","Offset: 64,861,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1143371 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8066677","Offset: 64,865,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1143499 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8066199","Offset: 64,869,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1143644 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8074438","Offset: 64,873,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1143772 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8084004","Offset: 64,877,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1143896 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8083616","Offset: 64,881,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1144028 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8083210","Offset: 64,885,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1144139 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8082745","Offset: 64,889,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1144267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8082344","Offset: 64,893,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1144391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8081956","Offset: 64,898,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1144515 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8081559","Offset: 64,902,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1144668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8081137","Offset: 64,906,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1144783 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8080663","Offset: 64,910,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1144911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8080258","Offset: 64,914,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1145039 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8079853","Offset: 64,918,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1145167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8079452","Offset: 64,922,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1145308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8079042","Offset: 64,926,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1145504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8078581","Offset: 64,930,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1145688 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8078043","Offset: 64,934,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1145816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8077642","Offset: 64,939,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1145991 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8077190","Offset: 64,943,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1146106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8076746","Offset: 64,947,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1146260 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8076302","Offset: 64,951,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1146388 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8075765","Offset: 64,955,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1146511 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8075377","Offset: 64,959,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1146639 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8074985","Offset: 64,963,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1146767 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8074588","Offset: 64,967,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1146883 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8074199","Offset: 64,971,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1147011 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8073687","Offset: 64,975,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1147134 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8073291","Offset: 64,979,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1147262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8072898","Offset: 64,984,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1147390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8072506","Offset: 64,988,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1147505 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8072109","Offset: 64,992,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1147655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8071622","Offset: 64,996,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1147779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8081448","Offset: 65,000,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1147907 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8080842","Offset: 65,004,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1148069 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8090762","Offset: 65,008,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1148231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8090045","Offset: 65,012,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1148427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8089585","Offset: 65,016,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1148564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8089171","Offset: 65,020,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1148696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8088778","Offset: 65,025,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1148811 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8088369","Offset: 65,029,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1148943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8087840","Offset: 65,033,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1149071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8087439","Offset: 65,037,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1149199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8087038","Offset: 65,041,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1149323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8086641","Offset: 65,045,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1149451 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8086244","Offset: 65,049,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1149566 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8085771","Offset: 65,053,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1149694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8085374","Offset: 65,057,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1149827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8084972","Offset: 65,061,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1149950 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8084580","Offset: 65,065,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1150083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8084170","Offset: 65,070,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1150215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8083731","Offset: 65,074,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1150347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8083189","Offset: 65,078,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1150513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8082742","Offset: 65,082,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1150650 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8082327","Offset: 65,086,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1150782 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8081922","Offset: 65,090,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1150910 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8081513","Offset: 65,094,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1151025 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8081043","Offset: 65,098,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1151158 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8080625","Offset: 65,102,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1151286 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8080236","Offset: 65,106,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1151409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8079806","Offset: 65,111,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1151542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8079370","Offset: 65,115,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1151661 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8078364","Offset: 65,119,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1151789 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8077856","Offset: 65,123,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1151917 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8089504","Offset: 65,127,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1152045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8089099","Offset: 65,131,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1152169 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8087690","Offset: 65,135,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1152297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8097662","Offset: 65,139,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1152412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8097273","Offset: 65,143,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1152540 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8096872","Offset: 65,147,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1152668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8096463","Offset: 65,152,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1152809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8095972","Offset: 65,156,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1152941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8095563","Offset: 65,160,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1153056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8095187","Offset: 65,164,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1153206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8094760","Offset: 65,168,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1153351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8094261","Offset: 65,172,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1153475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8093817","Offset: 65,176,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1153603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8093301","Offset: 65,180,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1153731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8092904","Offset: 65,184,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1153846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8092520","Offset: 65,188,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1153978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8092106","Offset: 65,192,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1154106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8091697","Offset: 65,197,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1154234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8091219","Offset: 65,201,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1154383 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8090793","Offset: 65,205,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1154494 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8090404","Offset: 65,209,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1154682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8089952","Offset: 65,213,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1154878 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8089474","Offset: 65,217,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1155019 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8088919","Offset: 65,221,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1155130 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8088535","Offset: 65,225,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1155262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8088134","Offset: 65,229,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1155390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8087738","Offset: 65,233,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1155514 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8087353","Offset: 65,238,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1155642 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8086918","Offset: 65,242,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1155757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8086355","Offset: 65,246,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1155889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8085886","Offset: 65,250,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1156035 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8096620","Offset: 65,254,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1156163 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8096172","Offset: 65,258,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1156286 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8095085","Offset: 65,262,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1156419 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8094521","Offset: 65,266,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1156529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8104331","Offset: 65,270,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1156657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8103934","Offset: 65,274,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1156790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8103519","Offset: 65,278,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1156913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8103064","Offset: 65,283,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1157046 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8102658","Offset: 65,287,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1157161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8102278","Offset: 65,291,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1157289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8101873","Offset: 65,295,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1157481 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8101395","Offset: 65,299,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1157664 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8100815","Offset: 65,303,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1157784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8100435","Offset: 65,307,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1157912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8100038","Offset: 65,311,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1158040 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8099641","Offset: 65,315,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1158164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8099248","Offset: 65,319,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1158287 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8098780","Offset: 65,324,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1158403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8098386","Offset: 65,328,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1158535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8097986","Offset: 65,332,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1158697 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8097551","Offset: 65,336,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1158825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8097086","Offset: 65,340,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1158953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8096633","Offset: 65,344,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1159085 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8096113","Offset: 65,348,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1159205 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8095716","Offset: 65,352,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1159333 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8095319","Offset: 65,356,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1159461 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8094922","Offset: 65,360,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1159606 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8094483","Offset: 65,364,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1159730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8093902","Offset: 65,369,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1159840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8093519","Offset: 65,373,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1159968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8093058","Offset: 65,377,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1160096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8103226","Offset: 65,381,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1160224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8102820","Offset: 65,385,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1160352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8102313","Offset: 65,389,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1160485 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8101779","Offset: 65,393,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1160600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8101203","Offset: 65,397,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1160728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8110666","Offset: 65,401,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1160856 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8110274","Offset: 65,405,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1160992 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8109873","Offset: 65,410,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1161342 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8109263","Offset: 65,414,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1161500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8108832","Offset: 65,418,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1161688 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8108298","Offset: 65,422,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1161824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8107893","Offset: 65,426,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1161952 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8107501","Offset: 65,430,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1162080 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8107091","Offset: 65,434,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1162213 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8106681","Offset: 65,438,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1162332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8106178","Offset: 65,442,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1162456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8105789","Offset: 65,446,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1162584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8105397","Offset: 65,451,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1162708 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8105013","Offset: 65,455,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1162831 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8104617","Offset: 65,459,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1162947 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8104146","Offset: 65,463,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1163079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8103758","Offset: 65,467,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1163207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8103362","Offset: 65,471,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1163331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8102965","Offset: 65,475,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1163459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8102568","Offset: 65,479,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1163595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8102150","Offset: 65,483,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1163710 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8101694","Offset: 65,487,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1163885 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8101254","Offset: 65,491,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1164094 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8100781","Offset: 65,496,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1164222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8100384","Offset: 65,500,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1164376 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8099867","Offset: 65,504,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1164504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8109868","Offset: 65,508,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1164636 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8109399","Offset: 65,512,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1164781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8108858","Offset: 65,516,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1164909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8108303","Offset: 65,520,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1165024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8107783","Offset: 65,524,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1165148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8107206","Offset: 65,528,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1165289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8116678","Offset: 65,532,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1165417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8116277","Offset: 65,537,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1165541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8115816","Offset: 65,541,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1165656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8115449","Offset: 65,545,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1165784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8115040","Offset: 65,549,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1165912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8114600","Offset: 65,553,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1166040 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8114203","Offset: 65,557,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1166164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8113747","Offset: 65,561,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1166296 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8113359","Offset: 65,565,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1166411 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8112975","Offset: 65,569,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1166535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8112578","Offset: 65,573,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1166718 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8112130","Offset: 65,577,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1166932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8111553","Offset: 65,582,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1167060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8111161","Offset: 65,586,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1167188 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8110756","Offset: 65,590,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1167316 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8110363","Offset: 65,594,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1167456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8109950","Offset: 65,598,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1167589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8109531","Offset: 65,602,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1167708 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8109011","Offset: 65,606,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1167832 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8108623","Offset: 65,610,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1167960 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8108230","Offset: 65,614,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1168084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8107850","Offset: 65,618,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1168207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8107424","Offset: 65,623,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1168323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8106770","Offset: 65,627,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1168455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8106289","Offset: 65,631,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1168583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8116964","Offset: 65,635,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1168715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8116486","Offset: 65,639,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1168856 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8116089","Offset: 65,643,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1168988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8115693","Offset: 65,647,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1169108 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8115300","Offset: 65,651,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1169231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8114904","Offset: 65,655,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1169355 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8114425","Offset: 65,659,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1169483 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8123420","Offset: 65,664,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1169607 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8123031","Offset: 65,668,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1169718 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8122656","Offset: 65,672,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1169850 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8122259","Offset: 65,676,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1169991 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8121858","Offset: 65,680,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1170119 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8121371","Offset: 65,684,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1170260 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8120970","Offset: 65,688,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1170392 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8120578","Offset: 65,692,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1170503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8120194","Offset: 65,696,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1170631 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8119797","Offset: 65,700,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1170755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8119370","Offset: 65,704,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1170883 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8118841","Offset: 65,709,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1171019 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8118436","Offset: 65,713,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1171134 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8118048","Offset: 65,717,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1171271 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8117600","Offset: 65,721,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1171399 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8117186","Offset: 65,725,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1171544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8116687","Offset: 65,729,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1171668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8116290","Offset: 65,733,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1171817 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8115863","Offset: 65,737,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1171928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8115488","Offset: 65,741,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1172073 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8115082","Offset: 65,745,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1172218 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8114340","Offset: 65,750,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1172363 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8113913","Offset: 65,754,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1172491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8113423","Offset: 65,758,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1172602 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8124175","Offset: 65,762,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1172751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8123595","Offset: 65,766,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1172896 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8123181","Offset: 65,770,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1173037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8122775","Offset: 65,774,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1173204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8122344","Offset: 65,778,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1173387 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8121892","Offset: 65,782,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1173528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8120714","Offset: 65,786,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1173660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8120173","Offset: 65,790,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1173784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8131697","Offset: 65,795,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1173895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8131232","Offset: 65,799,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1174027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8130758","Offset: 65,803,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1174155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8130259","Offset: 65,807,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1174287 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8129705","Offset: 65,811,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1174411 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8129227","Offset: 65,815,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1174565 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8128731","Offset: 65,819,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1174676 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8128292","Offset: 65,823,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1174799 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8127840","Offset: 65,827,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1174927 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8127298","Offset: 65,831,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1175051 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8126829","Offset: 65,836,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1175175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8126338","Offset: 65,840,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1175290 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8125886","Offset: 65,844,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1175418 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8125429","Offset: 65,848,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1175546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8124938","Offset: 65,852,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1175695 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8124371","Offset: 65,856,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1175819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8123915","Offset: 65,860,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1175951 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8123445","Offset: 65,864,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1176071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8122971","Offset: 65,868,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1176259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8122391","Offset: 65,872,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1176446 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8121560","Offset: 65,876,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1176570 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8121077","Offset: 65,881,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1176707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8120496","Offset: 65,885,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1176839 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8132836","Offset: 65,889,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1176988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8132341","Offset: 65,893,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1177125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8131871","Offset: 65,897,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1177283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8131368","Offset: 65,901,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1177402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8130349","Offset: 65,905,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1177522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8129887","Offset: 65,909,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1177654 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8129401","Offset: 65,913,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1177778 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8128902","Offset: 65,917,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1177927 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8128326","Offset: 65,922,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1178059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8140926","Offset: 65,926,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1178196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8140268","Offset: 65,930,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1178324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8139714","Offset: 65,934,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1178452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8138958","Offset: 65,938,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1178575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8138473","Offset: 65,942,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1178725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8137905","Offset: 65,946,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1178844 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8137082","Offset: 65,950,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1178972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8136599","Offset: 65,954,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1179100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8136130","Offset: 65,958,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1179228 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8135644","Offset: 65,963,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1179352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8135183","Offset: 65,967,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1179467 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8134645","Offset: 65,971,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1179599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8134176","Offset: 65,975,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1179732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8133698","Offset: 65,979,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1179872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8133208","Offset: 65,983,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1180005 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8132738","Offset: 65,987,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1180154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8132200","Offset: 65,991,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1180269 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8131561","Offset: 65,995,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1180397 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8131095","Offset: 65,999,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1180525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8130613","Offset: 66,003,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1180653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8130123","Offset: 66,008,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1180777 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8129610","Offset: 66,012,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1180888 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8143916","Offset: 66,016,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1181020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8143405","Offset: 66,020,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1181144 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8142901","Offset: 66,024,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1181272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8142389","Offset: 66,028,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1181396 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8141791","Offset: 66,032,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1181528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8141297","Offset: 66,036,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1181652 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8140784","Offset: 66,040,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1181780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8140264","Offset: 66,044,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1181908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8139611","Offset: 66,049,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1182053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8137870","Offset: 66,053,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1182202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8149284","Offset: 66,057,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1182322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8148784","Offset: 66,061,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1182454 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8148273","Offset: 66,065,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1182582 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8147739","Offset: 66,069,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1182727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8147091","Offset: 66,073,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1182953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8146481","Offset: 66,077,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1183085 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8145969","Offset: 66,081,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1183218 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8145444","Offset: 66,085,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1183341 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8144928","Offset: 66,089,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1183469 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8144173","Offset: 66,094,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1183584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8143674","Offset: 66,098,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1183717 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8143153","Offset: 66,102,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1183845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8142658","Offset: 66,106,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1183973 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8142141","Offset: 66,110,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1184101 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8141582","Offset: 66,114,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1184237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8140990","Offset: 66,118,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1184352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8154946","Offset: 66,122,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1184476 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8154263","Offset: 66,126,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1184604 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8153747","Offset: 66,130,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1184732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8153239","Offset: 66,135,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1184856 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8152740","Offset: 66,139,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1184967 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8152258","Offset: 66,143,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1185099 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8151627","Offset: 66,147,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1185253 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8151089","Offset: 66,151,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1185394 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8150559","Offset: 66,155,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1185530 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8150039","Offset: 66,159,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1185726 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8149455","Offset: 66,163,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1185914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8148828","Offset: 66,167,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1186034 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8147871","Offset: 66,171,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1186140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8147386","Offset: 66,176,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1186264 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8146873","Offset: 66,180,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1186375 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8146301","Offset: 66,184,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1186482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8159827","Offset: 66,188,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1186605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8159298","Offset: 66,192,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1186716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8158765","Offset: 66,196,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1186840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8158090","Offset: 66,200,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1186985 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8157557","Offset: 66,204,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1187113 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8157041","Offset: 66,208,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1187237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8156537","Offset: 66,212,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1187352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8156013","Offset: 66,216,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1187480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8155407","Offset: 66,221,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1187625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8154882","Offset: 66,225,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1187753 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8154370","Offset: 66,229,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1187881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8153866","Offset: 66,233,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1188013 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8153342","Offset: 66,237,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1188128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8152049","Offset: 66,241,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1188256 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8151495","Offset: 66,245,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1188384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8164892","Offset: 66,249,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1188512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8164312","Offset: 66,253,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1188636 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8163927","Offset: 66,257,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1188751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8163467","Offset: 66,262,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1188879 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8163010","Offset: 66,266,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1189007 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8162605","Offset: 66,270,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1189135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8162046","Offset: 66,274,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1189263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8161581","Offset: 66,278,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1189396 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8161192","Offset: 66,282,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1189511 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8160736","Offset: 66,286,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1189635 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8160343","Offset: 66,290,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1189763 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8159780","Offset: 66,294,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1189891 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8159379","Offset: 66,298,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1190014 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8158910","Offset: 66,302,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1190125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8158419","Offset: 66,307,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1190258 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8157889","Offset: 66,311,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1190386 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8157352","Offset: 66,315,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1190509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8168160","Offset: 66,319,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1190633 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8167618","Offset: 66,323,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1190765 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8167145","Offset: 66,327,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1190880 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8166765","Offset: 66,331,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1191004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8166368","Offset: 66,335,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1191136 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8165950","Offset: 66,339,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1191282 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8165429","Offset: 66,343,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1191405 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8164926","Offset: 66,348,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1191520 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8164474","Offset: 66,352,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1191653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8164008","Offset: 66,356,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1191781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8163539","Offset: 66,360,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1191904 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8163040","Offset: 66,364,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1192032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8162012","Offset: 66,368,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1192165 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8161521","Offset: 66,372,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1192280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8173011","Offset: 66,376,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1192408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8172614","Offset: 66,380,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1192536 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8172115","Offset: 66,384,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1192711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8171675","Offset: 66,388,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1192899 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8171219","Offset: 66,393,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1193039 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8170823","Offset: 66,397,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1193172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8170353","Offset: 66,401,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1193295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8169961","Offset: 66,405,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1193449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8169465","Offset: 66,409,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1193581 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8169001","Offset: 66,413,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1193718 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8168569","Offset: 66,417,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1193850 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8167968","Offset: 66,421,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1193978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8167507","Offset: 66,425,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1194102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8167119","Offset: 66,429,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1194217 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8166662","Offset: 66,434,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1194345 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8166189","Offset: 66,438,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1194473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8165288","Offset: 66,442,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1194605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8164849","Offset: 66,446,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1194733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8175883","Offset: 66,450,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1194866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8175485","Offset: 66,454,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1194981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8175025","Offset: 66,458,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1195109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8174641","Offset: 66,462,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1195237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8174240","Offset: 66,466,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1195365 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8173749","Offset: 66,470,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1195510 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8173160","Offset: 66,475,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1195698 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8172639","Offset: 66,479,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1195868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8172209","Offset: 66,483,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1196180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8171560","Offset: 66,487,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1196316 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8171027","Offset: 66,491,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1196427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8169892","Offset: 66,495,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1196555 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8169397","Offset: 66,499,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1196687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8181387","Offset: 66,503,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1196811 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8180986","Offset: 66,507,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1196935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8180593","Offset: 66,511,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1197050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8180132","Offset: 66,515,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1197182 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8179740","Offset: 66,520,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1197306 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8179270","Offset: 66,524,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1197434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8178805","Offset: 66,528,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1197562 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8178327","Offset: 66,532,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1197694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8177931","Offset: 66,536,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1197818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8177465","Offset: 66,540,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1197942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8177034","Offset: 66,544,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1198074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8176441","Offset: 66,548,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1198219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8176036","Offset: 66,552,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1198343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8175579","Offset: 66,556,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1198458 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8175115","Offset: 66,561,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1198590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8174650","Offset: 66,565,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1198735 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8173664","Offset: 66,569,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1198863 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8173203","Offset: 66,573,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1198987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8172772","Offset: 66,577,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1199154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8183652","Offset: 66,581,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1199273 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8183268","Offset: 66,585,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1199397 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8182871","Offset: 66,589,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1199529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8182479","Offset: 66,593,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1199657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8182056","Offset: 66,597,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1199781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8181518","Offset: 66,601,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1199892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8181122","Offset: 66,606,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1200024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8180717","Offset: 66,610,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1200152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8180307","Offset: 66,614,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1200280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8179791","Offset: 66,618,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1200408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8178617","Offset: 66,622,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1200540 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8178114","Offset: 66,626,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1200655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8189084","Offset: 66,630,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1200779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8188661","Offset: 66,634,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1200907 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8188265","Offset: 66,638,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1201052 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8187864","Offset: 66,642,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1201193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8187449","Offset: 66,647,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1201304 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8186997","Offset: 66,651,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1201436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8186601","Offset: 66,655,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1201564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8186204","Offset: 66,659,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1201714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8185794","Offset: 66,663,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1201854 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8185393","Offset: 66,667,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1202063 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8184877","Offset: 66,671,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1202234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8184301","Offset: 66,675,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1202371 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8183891","Offset: 66,679,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1202499 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8183494","Offset: 66,683,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1202656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8183000","Offset: 66,688,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1202789 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8182474","Offset: 66,692,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1202921 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8181796","Offset: 66,696,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1203049 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8181395","Offset: 66,700,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1203177 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8180994","Offset: 66,704,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1203309 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8180461","Offset: 66,708,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1203424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8190637","Offset: 66,712,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1203548 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8190236","Offset: 66,716,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1203680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8189801","Offset: 66,720,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1203808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8189263","Offset: 66,724,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1203932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8188875","Offset: 66,728,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1204047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8188487","Offset: 66,733,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1204180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8188076","Offset: 66,737,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1204325 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8187569","Offset: 66,741,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1204453 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8186455","Offset: 66,745,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1204581 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8185956","Offset: 66,749,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1204713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8185397","Offset: 66,753,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1204875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8196674","Offset: 66,757,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1205076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8196209","Offset: 66,761,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1205229 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8195800","Offset: 66,765,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1205349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8195402","Offset: 66,769,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1205485 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8194912","Offset: 66,774,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1205618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8194519","Offset: 66,778,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1205746 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8194126","Offset: 66,782,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1205874 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8193730","Offset: 66,786,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1206027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8193312","Offset: 66,790,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1206142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8192903","Offset: 66,794,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1206266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8192373","Offset: 66,798,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1206398 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8191972","Offset: 66,802,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1206526 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8191580","Offset: 66,806,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1206654 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8191145","Offset: 66,810,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1206765 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8190744","Offset: 66,814,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1206898 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8190261","Offset: 66,819,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1207026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8189877","Offset: 66,823,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1207175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8189450","Offset: 66,827,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1207316 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8189032","Offset: 66,831,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1207448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8188533","Offset: 66,835,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1207563 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8187501","Offset: 66,839,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1207687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198026","Offset: 66,843,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1207819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8197591","Offset: 66,847,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1207943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8197062","Offset: 66,851,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1208071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8196657","Offset: 66,855,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1208186 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8196269","Offset: 66,860,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1208318 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8195787","Offset: 66,864,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1208463 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8195254","Offset: 66,868,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1208596 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8194092","Offset: 66,872,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1208724 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8193585","Offset: 66,876,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1208856 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8193069","Offset: 66,880,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1208975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8200856","Offset: 66,884,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1209120 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8200608","Offset: 66,888,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1209248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8200378","Offset: 66,892,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1209376 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8200143","Offset: 66,896,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1209504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199883","Offset: 66,900,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1209615 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199665","Offset: 66,905,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1209765 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199413","Offset: 66,909,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1209923 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199148","Offset: 66,913,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1210102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198828","Offset: 66,917,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1210251 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198505","Offset: 66,921,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1210388 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198261","Offset: 66,925,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1210499 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198039","Offset: 66,929,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1210627 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8197809","Offset: 66,933,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1210759 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8197570","Offset: 66,937,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1210887 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8197339","Offset: 66,941,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1211011 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8197075","Offset: 66,946,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1211126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8196857","Offset: 66,950,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1211262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8196610","Offset: 66,954,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1211454 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8196316","Offset: 66,958,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1211646 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8196004","Offset: 66,962,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1211787 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8195642","Offset: 66,966,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1211932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8195356","Offset: 66,970,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1212065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199199","Offset: 66,974,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1212193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198965","Offset: 66,978,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1212316 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198735","Offset: 66,982,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1212431 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198513","Offset: 66,987,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1212559 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198274","Offset: 66,991,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1212687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8197929","Offset: 66,995,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1212815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8197694","Offset: 66,999,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1212961 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8197416","Offset: 67,003,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1213093 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8196887","Offset: 67,007,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1213208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8200723","Offset: 67,011,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1213332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8200501","Offset: 67,015,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1213464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8200262","Offset: 67,019,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1213592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8200032","Offset: 67,023,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1213716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199776","Offset: 67,027,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1213831 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199554","Offset: 67,032,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1213980 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199302","Offset: 67,036,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1214117 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199059","Offset: 67,040,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1214322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198747","Offset: 67,044,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1214484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198474","Offset: 67,048,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1214616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198189","Offset: 67,052,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1214744 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8197954","Offset: 67,056,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1214872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8197724","Offset: 67,060,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1215000 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8197489","Offset: 67,064,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1215111 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8197229","Offset: 67,068,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1215243 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8196862","Offset: 67,073,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1215371 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8196627","Offset: 67,077,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1215499 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8196393","Offset: 67,081,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1215627 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8196124","Offset: 67,085,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1215777 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8195820","Offset: 67,089,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1215892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198760","Offset: 67,093,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1216020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198470","Offset: 67,097,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1216148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198137","Offset: 67,101,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1216280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199754","Offset: 67,105,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1216404 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199524","Offset: 67,109,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1216519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199302","Offset: 67,113,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1216651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199068","Offset: 67,118,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1216783 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198786","Offset: 67,122,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1216907 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198551","Offset: 67,126,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1217035 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198317","Offset: 67,130,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1217185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198043","Offset: 67,134,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1217300 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8197796","Offset: 67,138,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1217423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8197541","Offset: 67,142,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1217551 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8197250","Offset: 67,146,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1217675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199785","Offset: 67,150,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1217799 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199558","Offset: 67,154,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1217914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199336","Offset: 67,159,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1218046 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199094","Offset: 67,163,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1218204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198778","Offset: 67,167,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1218366 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198509","Offset: 67,171,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1218503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198270","Offset: 67,175,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1218635 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198001","Offset: 67,179,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1218750 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8197745","Offset: 67,183,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1218874 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8197446","Offset: 67,187,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1219002 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199639","Offset: 67,191,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1219190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199353","Offset: 67,195,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1219322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199093","Offset: 67,200,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1219437 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198872","Offset: 67,204,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1219574 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198628","Offset: 67,208,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1219702 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198363","Offset: 67,212,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1219826 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198086","Offset: 67,216,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1219949 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199392","Offset: 67,220,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1220082 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199152","Offset: 67,224,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1220193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198820","Offset: 67,228,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1220321 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198572","Offset: 67,232,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1220449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199157","Offset: 67,236,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1220572 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198914","Offset: 67,240,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1220743 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199678","Offset: 67,245,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1220948 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199370","Offset: 67,249,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1221084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199128","Offset: 67,253,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1221229 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198842","Offset: 67,257,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1221357 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198462","Offset: 67,261,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1221473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199635","Offset: 67,265,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1221596 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199409","Offset: 67,269,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1221724 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199174","Offset: 67,273,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1221852 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8198923","Offset: 67,277,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1221976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199673","Offset: 67,281,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1222091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199443","Offset: 67,286,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1222219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199123","Offset: 67,290,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1222364 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199738","Offset: 67,294,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1222492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199507","Offset: 67,298,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1222616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199272","Offset: 67,302,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1222748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8200011","Offset: 67,306,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1222872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199763","Offset: 67,310,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1222996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199468","Offset: 67,314,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1223162 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8200156","Offset: 67,318,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1223350 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199857","Offset: 67,322,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1223499 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199477","Offset: 67,326,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1223700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8200070","Offset: 67,331,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1223862 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199801","Offset: 67,335,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1223994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199533","Offset: 67,339,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1224122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8200070","Offset: 67,343,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1224237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199797","Offset: 67,347,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1224365 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8200169","Offset: 67,351,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1224498 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199929","Offset: 67,355,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1224626 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8200339","Offset: 67,359,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1224749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8199994","Offset: 67,363,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1224860 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8200472","Offset: 67,367,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1224988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8200233","Offset: 67,372,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1225116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8200553","Offset: 67,376,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1225244 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8200314","Offset: 67,380,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1225372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8200681","Offset: 67,384,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1225500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8200390","Offset: 67,388,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1225615 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8200796","Offset: 67,392,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1225739 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8200531","Offset: 67,396,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1225863 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8201005","Offset: 67,400,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1225991 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8200625","Offset: 67,404,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1226115 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8201102","Offset: 67,408,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1226226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8200885","Offset: 67,412,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1226362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8201299","Offset: 67,417,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1226486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8200940","Offset: 67,421,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1226610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8201405","Offset: 67,425,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1226738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8201166","Offset: 67,429,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1226866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8201486","Offset: 67,433,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1226977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8201264","Offset: 67,437,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1227100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8201632","Offset: 67,441,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1227224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8201346","Offset: 67,445,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1227352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8201713","Offset: 67,449,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1227476 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8201457","Offset: 67,453,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1227599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8201901","Offset: 67,458,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1227727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8201547","Offset: 67,462,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1227851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8202020","Offset: 67,466,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1227975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8201777","Offset: 67,470,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1228099 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8202109","Offset: 67,474,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1228227 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8201875","Offset: 67,478,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1228338 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8202271","Offset: 67,482,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1228461 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8202046","Offset: 67,486,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1228585 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8202447","Offset: 67,490,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1228713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8202174","Offset: 67,494,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1228837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8202685","Offset: 67,499,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1228952 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8202421","Offset: 67,503,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1229080 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8202762","Offset: 67,507,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1229208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8202532","Offset: 67,511,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1229353 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8202933","Offset: 67,515,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1229481 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8202592","Offset: 67,519,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1229613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8203032","Offset: 67,523,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1229724 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8202810","Offset: 67,527,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1229852 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8203232","Offset: 67,531,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1229985 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8202864","Offset: 67,535,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1230181 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8203240","Offset: 67,539,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1230351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8202959","Offset: 67,544,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1230484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8203278","Offset: 67,548,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1230612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8203018","Offset: 67,552,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1230740 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8203406","Offset: 67,556,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1230876 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8203108","Offset: 67,560,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1230991 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8203488","Offset: 67,564,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1231115 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8203228","Offset: 67,568,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1231243 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8203676","Offset: 67,572,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1231371 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8203313","Offset: 67,576,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1231495 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8203769","Offset: 67,580,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1231610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8203539","Offset: 67,585,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1231738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8203966","Offset: 67,589,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1231866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8203599","Offset: 67,593,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1232015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8204026","Offset: 67,597,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1232143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8203791","Offset: 67,601,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1232276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8204115","Offset: 67,605,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1232391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8203863","Offset: 67,609,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1232519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8204251","Offset: 67,613,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1232643 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8203970","Offset: 67,617,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1232954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8204158","Offset: 67,621,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1233172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8203808","Offset: 67,625,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1233334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8204243","Offset: 67,630,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1233466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8203846","Offset: 67,634,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1233594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8204320","Offset: 67,638,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1233726 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8204086","Offset: 67,642,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1233842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8204418","Offset: 67,646,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1233965 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8204184","Offset: 67,650,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1234093 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8204597","Offset: 67,654,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1234226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8204358","Offset: 67,658,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1234349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8204755","Offset: 67,662,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1234460 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8204440","Offset: 67,666,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1234597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8205028","Offset: 67,671,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1234738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8204742","Offset: 67,675,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1234870 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8205194","Offset: 67,679,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1234994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8204968","Offset: 67,683,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1235126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8204704","Offset: 67,687,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1235241 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8205207","Offset: 67,691,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1235365 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8204960","Offset: 67,695,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1235493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8205297","Offset: 67,699,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1235617 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8205062","Offset: 67,703,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1235740 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8205511","Offset: 67,707,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1235851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8205280","Offset: 67,712,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1235983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8205622","Offset: 67,716,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1236111 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8205383","Offset: 67,720,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1236239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8205805","Offset: 67,724,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1236363 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8205442","Offset: 67,728,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1236491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8205899","Offset: 67,732,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1236606 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8205677","Offset: 67,736,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1236734 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8206091","Offset: 67,740,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1236858 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8205737","Offset: 67,744,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1236986 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8206197","Offset: 67,748,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1237110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8205962","Offset: 67,752,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1237225 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8206155","Offset: 67,757,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1237362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8206201","Offset: 67,761,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1237490 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8206495","Offset: 67,765,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1237622 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8206210","Offset: 67,769,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1237767 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8206568","Offset: 67,773,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1237899 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8206330","Offset: 67,777,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1238010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8206756","Offset: 67,781,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1238138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8206402","Offset: 67,785,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1238266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8206863","Offset: 67,789,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1238390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8206628","Offset: 67,793,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1238518 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8207033","Offset: 67,798,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1238629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8206705","Offset: 67,802,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1238778 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8207145","Offset: 67,806,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1238906 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8206901","Offset: 67,810,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1239030 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8207234","Offset: 67,814,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1239154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8206973","Offset: 67,818,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1239286 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8207383","Offset: 67,822,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1239401 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8207106","Offset: 67,826,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1239593 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8207588","Offset: 67,830,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1239772 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8207691","Offset: 67,834,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1239892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8208002","Offset: 67,838,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1240015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8207661","Offset: 67,843,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1240126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8208126","Offset: 67,847,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1240237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8207870","Offset: 67,851,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1240361 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8208122","Offset: 67,855,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1240476 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8208228","Offset: 67,859,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1240600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8208527","Offset: 67,863,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1240728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8208267","Offset: 67,867,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1240860 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8208612","Offset: 67,871,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1241005 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8208327","Offset: 67,875,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1241150 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8208792","Offset: 67,879,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1241278 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8208514","Offset: 67,884,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1241402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8208766","Offset: 67,888,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1241513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8208804","Offset: 67,892,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1241645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8209107","Offset: 67,896,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1241773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8208775","Offset: 67,900,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1241897 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8209201","Offset: 67,904,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1242021 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8208966","Offset: 67,908,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1242153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8209291","Offset: 67,912,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1242294 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8209034","Offset: 67,916,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1242503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8209359","Offset: 67,920,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1242644 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8209111","Offset: 67,924,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1242759 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8445156","Offset: 67,929,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1242981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8448736","Offset: 67,933,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1243126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8450908","Offset: 67,937,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1243250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8456433","Offset: 67,941,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1243390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8458750","Offset: 67,945,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1243523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8461890","Offset: 67,949,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1243655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8464403","Offset: 67,953,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1243821 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8469921","Offset: 67,957,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1243954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8472147","Offset: 67,961,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1244086 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8474319","Offset: 67,965,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1244201 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8476755","Offset: 67,970,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1244329 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8480169","Offset: 67,974,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1244457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8482537","Offset: 67,978,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1244585 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8486232","Offset: 67,982,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1244709 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8488181","Offset: 67,986,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1244820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8492282","Offset: 67,990,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1244952 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8494159","Offset: 67,994,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1245076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8498088","Offset: 67,998,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1245204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8499821","Offset: 68,002,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1245332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8503780","Offset: 68,006,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1245464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8505304","Offset: 68,011,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1245596 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8515762","Offset: 68,015,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1245746 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8517839","Offset: 68,019,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1245878 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8521828","Offset: 68,023,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1246006 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8523650","Offset: 68,027,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1246130 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8527319","Offset: 68,031,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1246245 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8528860","Offset: 68,035,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1246394 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8532470","Offset: 68,039,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1246522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8533882","Offset: 68,043,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1246650 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8536967","Offset: 68,047,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1246774 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8538771","Offset: 68,051,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1246906 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8541716","Offset: 68,056,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1247026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8542014","Offset: 68,060,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1247149 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8542249","Offset: 68,064,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1247277 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8542497","Offset: 68,068,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1247401 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8542228","Offset: 68,072,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1247525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8542633","Offset: 68,076,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1247640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8542394","Offset: 68,080,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1247789 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8542770","Offset: 68,084,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1247917 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8542509","Offset: 68,088,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1248041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8542893","Offset: 68,092,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1248165 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8542598","Offset: 68,097,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1248297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8543141","Offset: 68,101,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1248412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8542885","Offset: 68,105,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1248536 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8543256","Offset: 68,109,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1248660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8543017","Offset: 68,113,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1248788 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8543413","Offset: 68,117,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1248911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8543107","Offset: 68,121,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1249027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8543541","Offset: 68,125,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1249176 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8543273","Offset: 68,129,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1249406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8543508","Offset: 68,133,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1249543 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8543260","Offset: 68,137,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1249658 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8543806","Offset: 68,142,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1249786 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8543537","Offset: 68,146,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1249935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8543670","Offset: 68,150,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1250059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8543998","Offset: 68,154,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1250183 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8543648","Offset: 68,158,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1250298 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8544254","Offset: 68,162,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1250430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8543994","Offset: 68,166,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1250554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8543759","Offset: 68,170,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1250682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8544318","Offset: 68,174,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1250810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8543960","Offset: 68,178,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1250942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8544425","Offset: 68,183,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1251066 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8544169","Offset: 68,187,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1251207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8544591","Offset: 68,191,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1251361 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8544228","Offset: 68,195,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1251510 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8544698","Offset: 68,199,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1251634 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8544437","Offset: 68,203,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1251749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8544817","Offset: 68,207,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1251877 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8544582","Offset: 68,211,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1252043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8544946","Offset: 68,215,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1252252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8544566","Offset: 68,219,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1252385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8545039","Offset: 68,224,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1252513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8544796","Offset: 68,228,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1252645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8545278","Offset: 68,232,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1252773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8545009","Offset: 68,236,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1252897 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8545491","Offset: 68,240,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1253012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8545269","Offset: 68,244,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1253144 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8544992","Offset: 68,248,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1253272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8545577","Offset: 68,252,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1253400 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8545325","Offset: 68,256,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1253524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8545781","Offset: 68,260,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1253660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8545539","Offset: 68,264,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1253771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8545291","Offset: 68,269,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1253899 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8545799","Offset: 68,273,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1254023 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8545551","Offset: 68,277,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1254181 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8545880","Offset: 68,281,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1254309 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8545636","Offset: 68,285,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1254420 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8546123","Offset: 68,289,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1254552 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8545867","Offset: 68,293,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1254676 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8546204","Offset: 68,297,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1254804 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8545961","Offset: 68,301,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1254927 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8546379","Offset: 68,305,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1255060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8546050","Offset: 68,310,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1255175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8546494","Offset: 68,314,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1255299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8546259","Offset: 68,318,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1255427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8546669","Offset: 68,322,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1255550 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8546349","Offset: 68,326,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1255674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8546793","Offset: 68,330,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1255789 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8546563","Offset: 68,334,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1255922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8546891","Offset: 68,338,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1256050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8546647","Offset: 68,342,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1256195 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8547023","Offset: 68,346,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1256318 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8546721","Offset: 68,350,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1256455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8547104","Offset: 68,355,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1256574 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8546844","Offset: 68,359,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1256715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8547361","Offset: 68,363,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1256839 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8546916","Offset: 68,367,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1256963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8547595","Offset: 68,371,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1257091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8547356","Offset: 68,375,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1257206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8547096","Offset: 68,379,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1257334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8547672","Offset: 68,383,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1257462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8547305","Offset: 68,387,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1257590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8547911","Offset: 68,391,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1257718 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8547595","Offset: 68,396,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1257850 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8548201","Offset: 68,400,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1257965 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8547975","Offset: 68,404,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1258089 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8547659","Offset: 68,408,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1258230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8548184","Offset: 68,412,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1258358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8547940","Offset: 68,416,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1258482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8548363","Offset: 68,420,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1258601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8548043","Offset: 68,424,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1258755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8548452","Offset: 68,428,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1258964 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8548132","Offset: 68,432,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1259100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8548453","Offset: 68,436,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1259220 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8548188","Offset: 68,441,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1259365 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8548615","Offset: 68,445,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1259523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8548346","Offset: 68,449,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1259659 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8548679","Offset: 68,453,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1259783 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8548410","Offset: 68,457,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1259898 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8549059","Offset: 68,461,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1260030 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8548799","Offset: 68,465,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1260154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8549272","Offset: 68,469,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1260282 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8549037","Offset: 68,473,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1260427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8548777","Offset: 68,477,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1260559 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8549251","Offset: 68,482,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1260679 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8548994","Offset: 68,486,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1260815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8549358","Offset: 68,490,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1260939 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8549118","Offset: 68,494,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1261067 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8549554","Offset: 68,498,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1261191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8549306","Offset: 68,502,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1261306 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8549682","Offset: 68,506,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1261438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8549430","Offset: 68,510,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1261579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8549869","Offset: 68,514,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1261780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8549446","Offset: 68,518,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1261938 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8549856","Offset: 68,523,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1262087 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8549592","Offset: 68,527,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1262215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8550014","Offset: 68,531,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1262343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8549681","Offset: 68,535,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1262467 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8550010","Offset: 68,539,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1262599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8550031","Offset: 68,543,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1262727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8550262","Offset: 68,547,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1262855 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8550023","Offset: 68,551,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1262983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8550407","Offset: 68,555,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1263107 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8550138","Offset: 68,559,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1263239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8550535","Offset: 68,563,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1263354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8550309","Offset: 68,568,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1263482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8550731","Offset: 68,572,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1263614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8550369","Offset: 68,576,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1263747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8550837","Offset: 68,580,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1263870 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8550591","Offset: 68,584,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1263986 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8550952","Offset: 68,588,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1264139 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8550684","Offset: 68,592,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1264267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8551115","Offset: 68,596,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1264400 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8550871","Offset: 68,600,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1264540 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8551192","Offset: 68,604,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1264694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8550923","Offset: 68,609,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1264809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8551601","Offset: 68,613,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1264933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8551175","Offset: 68,617,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1265065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8551926","Offset: 68,621,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1265193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8551653","Offset: 68,625,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1265317 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8551375","Offset: 68,629,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1265428 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8552041","Offset: 68,633,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1265560 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8551806","Offset: 68,637,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1265692 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8551555","Offset: 68,641,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1265820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8552003","Offset: 68,645,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1265948 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8551760","Offset: 68,649,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1266081 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8552228","Offset: 68,654,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1266196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8551985","Offset: 68,658,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1266320 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8552330","Offset: 68,662,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1266448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8552087","Offset: 68,666,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1266576 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8552309","Offset: 68,670,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1266716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8552429","Offset: 68,674,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1266844 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8552762","Offset: 68,678,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1266981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8552519","Offset: 68,682,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1267109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8552250","Offset: 68,686,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1267233 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8552834","Offset: 68,690,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1267361 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8552582","Offset: 68,695,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1267493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8552924","Offset: 68,699,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1267621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8552681","Offset: 68,703,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1267766 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8553103","Offset: 68,707,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1267915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8552732","Offset: 68,711,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1268065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8553158","Offset: 68,715,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1268265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8552843","Offset: 68,719,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1268397 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8553180","Offset: 68,723,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1268530 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8552932","Offset: 68,727,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1268653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8553338","Offset: 68,731,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1268798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8553082","Offset: 68,736,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1268918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8553423","Offset: 68,740,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1269042 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8553163","Offset: 68,744,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1269174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8553628","Offset: 68,748,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1269302 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8553376","Offset: 68,752,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1269426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8553739","Offset: 68,756,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1269545 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8553504","Offset: 68,760,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1269673 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8553948","Offset: 68,764,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1269801 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8553594","Offset: 68,768,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1269929 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8554055","Offset: 68,772,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1270053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8553811","Offset: 68,776,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1270185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8554234","Offset: 68,781,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1270300 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8553923","Offset: 68,785,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1270424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8554362","Offset: 68,789,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1270556 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8554115","Offset: 68,793,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1270680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8554452","Offset: 68,797,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1270808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8554213","Offset: 68,801,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1270966 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8554562","Offset: 68,805,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1271175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8554178","Offset: 68,809,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1271312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8554570","Offset: 68,813,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1271444 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8554293","Offset: 68,817,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1271559 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8554767","Offset: 68,822,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1271683 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8554404","Offset: 68,826,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1271998 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8554708","Offset: 68,830,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1272131 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8554464","Offset: 68,834,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1272254 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8554883","Offset: 68,838,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1272370 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8554571","Offset: 68,842,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1272502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8555015","Offset: 68,846,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1272647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8554750","Offset: 68,850,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1272775 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8555100","Offset: 68,854,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1272899 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8554852","Offset: 68,858,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1273035 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8555245","Offset: 68,862,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1273168 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8554967","Offset: 68,867,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1273296 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8555338","Offset: 68,871,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1273428 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8555096","Offset: 68,875,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1273556 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8555501","Offset: 68,879,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1273680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8555155","Offset: 68,883,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1273795 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8555633","Offset: 68,887,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1273923 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8555390","Offset: 68,891,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1274051 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8555723","Offset: 68,895,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1274179 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8555454","Offset: 68,899,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1274307 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8555949","Offset: 68,903,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1274443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8555706","Offset: 68,908,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1274558 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8556060","Offset: 68,912,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1274686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8555817","Offset: 68,916,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1274832 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8556226","Offset: 68,920,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1274972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8555971","Offset: 68,924,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1275100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8556316","Offset: 68,928,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1275233 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8556068","Offset: 68,932,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1275369 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8556555","Offset: 68,936,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1275497 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8556120","Offset: 68,940,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1275625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8556794","Offset: 68,944,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1275753 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8556564","Offset: 68,948,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1275902 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8556274","Offset: 68,953,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1276052 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8556806","Offset: 68,957,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1276197 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8556542","Offset: 68,961,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1276325 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8556892","Offset: 68,965,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1276453 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8556644","Offset: 68,969,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1276577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8557054","Offset: 68,973,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1276692 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8556755","Offset: 68,977,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1276824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8557174","Offset: 68,981,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1276948 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8556939","Offset: 68,985,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1277076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8557267","Offset: 68,989,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1277204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8557024","Offset: 68,994,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1277336 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8557622","Offset: 68,998,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1277498 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8557349","Offset: 69,002,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1277699 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8557015","Offset: 69,006,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1277844 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8557549","Offset: 69,010,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1277959 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8557208","Offset: 69,014,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1278091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8557669","Offset: 69,018,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1278219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8557426","Offset: 69,022,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1278347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8557750","Offset: 69,026,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1278475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8557515","Offset: 69,030,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1278608 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8557877","Offset: 69,035,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1278723 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8557600","Offset: 69,039,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1278851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8557971","Offset: 69,043,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1278983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8557703","Offset: 69,047,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1279107 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8558142","Offset: 69,051,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1279235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8557788","Offset: 69,055,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1279367 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8558249","Offset: 69,059,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1279499 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8558006","Offset: 69,063,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1279627 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8558326","Offset: 69,067,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1279751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8558091","Offset: 69,071,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1279879 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8558501","Offset: 69,075,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1280011 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8558266","Offset: 69,080,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1280135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8558577","Offset: 69,084,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1280331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8558249","Offset: 69,088,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1280549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8558620","Offset: 69,092,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1280673 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8558381","Offset: 69,096,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1280805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8558705","Offset: 69,100,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1280933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8558466","Offset: 69,104,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1281095 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8558867","Offset: 69,108,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1281351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8558360","Offset: 69,112,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1281492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8558867","Offset: 69,116,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1281616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8558628","Offset: 69,121,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1281748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8559038","Offset: 69,125,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1281897 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8558693","Offset: 69,129,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1282025 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8559119","Offset: 69,133,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1282149 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8558880","Offset: 69,137,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1282260 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8559221","Offset: 69,141,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1282392 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8558953","Offset: 69,145,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1282516 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8559349","Offset: 69,149,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1282644 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8559059","Offset: 69,153,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1282768 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8559456","Offset: 69,157,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1282904 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8559183","Offset: 69,161,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1283024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8559639","Offset: 69,166,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1283147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8559277","Offset: 69,170,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1283292 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8559713","Offset: 69,174,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1283420 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8559474","Offset: 69,178,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1283544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8559874","Offset: 69,182,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1283659 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8559550","Offset: 69,186,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1283787 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8559986","Offset: 69,190,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1283937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8559729","Offset: 69,194,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1284086 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8560032","Offset: 69,198,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1284231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8559751","Offset: 69,202,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1284385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8560130","Offset: 69,207,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1284504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8559836","Offset: 69,211,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1284632 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8560224","Offset: 69,215,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1284764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8559956","Offset: 69,219,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1284914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8560373","Offset: 69,223,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1285042 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8560019","Offset: 69,227,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1285157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8560493","Offset: 69,231,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1285293 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8560246","Offset: 69,235,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1285421 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8560566","Offset: 69,239,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1285545 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8560301","Offset: 69,243,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1285669 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8560706","Offset: 69,248,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1285818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8560391","Offset: 69,252,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1285938 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8560783","Offset: 69,256,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1286078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8560506","Offset: 69,260,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1286206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8560946","Offset: 69,264,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1286330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8560587","Offset: 69,268,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1286458 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8561031","Offset: 69,272,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1286569 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8560809","Offset: 69,276,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1286748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8561172","Offset: 69,280,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1286962 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8560727","Offset: 69,284,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1287111 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8561223","Offset: 69,288,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1287226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8560967","Offset: 69,293,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1287354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8561347","Offset: 69,297,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1287478 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8561116","Offset: 69,301,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1287606 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8561479","Offset: 69,305,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1287730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8561218","Offset: 69,309,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1287845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8561577","Offset: 69,313,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1287973 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8561312","Offset: 69,317,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1288101 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8561743","Offset: 69,321,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1288225 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8561397","Offset: 69,325,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1288353 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8561849","Offset: 69,329,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1288502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8561590","Offset: 69,334,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1288613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8561922","Offset: 69,338,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1288741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8561662","Offset: 69,342,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1288869 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8562119","Offset: 69,346,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1288997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8561880","Offset: 69,350,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1289121 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8562208","Offset: 69,354,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1289236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8561956","Offset: 69,358,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1289368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8562417","Offset: 69,362,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1289556 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8562114","Offset: 69,366,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1289756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8562388","Offset: 69,370,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1289876 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8562157","Offset: 69,374,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1290000 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8562549","Offset: 69,379,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1290110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8562268","Offset: 69,383,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1290217 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8562682","Offset: 69,387,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1290358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8562426","Offset: 69,391,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1290473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8562844","Offset: 69,395,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1290597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8562507","Offset: 69,399,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1290725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8562951","Offset: 69,403,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1290840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8562725","Offset: 69,407,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1290972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8563041","Offset: 69,411,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1291100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8562776","Offset: 69,415,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1291224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8563185","Offset: 69,420,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1291356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8562883","Offset: 69,424,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1291472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8563283","Offset: 69,428,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1291600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8563018","Offset: 69,432,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1291745 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8563449","Offset: 69,436,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1291873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8563083","Offset: 69,440,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1292001 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8563539","Offset: 69,444,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1292129 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8563300","Offset: 69,448,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1292244 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8563714","Offset: 69,452,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1292427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8563318","Offset: 69,456,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1292589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8563728","Offset: 69,460,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1292713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8563497","Offset: 69,465,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1292845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8563907","Offset: 69,469,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1292961 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8563646","Offset: 69,473,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1293093 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8564060","Offset: 69,477,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1293221 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8563774","Offset: 69,481,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1293349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8564167","Offset: 69,485,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1293473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8563927","Offset: 69,489,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1293605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8564350","Offset: 69,493,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1293720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8564022","Offset: 69,497,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1293848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8564453","Offset: 69,501,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1293976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8564214","Offset: 69,506,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1294100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8564546","Offset: 69,510,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1294249 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8564282","Offset: 69,514,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1294364 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8564671","Offset: 69,518,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1294492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8564376","Offset: 69,522,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1294616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8564756","Offset: 69,526,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1294744 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8564495","Offset: 69,530,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1294872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8565012","Offset: 69,534,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1295000 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8564576","Offset: 69,538,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1295115 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8565110","Offset: 69,542,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1295243 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8564871","Offset: 69,547,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1295376 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8565271","Offset: 69,551,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1295499 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8564952","Offset: 69,555,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1295632 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8565374","Offset: 69,559,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1295747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8565148","Offset: 69,563,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1295883 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8565456","Offset: 69,567,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1296080 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8565126","Offset: 69,571,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1296267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8565464","Offset: 69,575,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1296387 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8565182","Offset: 69,579,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1296519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8565558","Offset: 69,583,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1296664 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8565276","Offset: 69,587,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1296792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8565699","Offset: 69,592,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1296933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8565344","Offset: 69,596,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1297052 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8565793","Offset: 69,600,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1297180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8565558","Offset: 69,604,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1297308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8565869","Offset: 69,608,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1297436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8565605","Offset: 69,612,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1297564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8566130","Offset: 69,616,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1297701 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8565882","Offset: 69,620,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1297816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8566223","Offset: 69,624,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1297940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8565984","Offset: 69,628,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1298068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8566419","Offset: 69,633,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1298196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8566172","Offset: 69,637,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1298320 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8566577","Offset: 69,641,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1298430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8566335","Offset: 69,645,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1298558 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8566808","Offset: 69,649,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1298721 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8566423","Offset: 69,653,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1298942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8566757","Offset: 69,657,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1299079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8566509","Offset: 69,661,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1299207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8566910","Offset: 69,665,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1299344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8566577","Offset: 69,669,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1299472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8567004","Offset: 69,673,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1299612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8566757","Offset: 69,678,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1299728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8567080","Offset: 69,682,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1299860 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8566816","Offset: 69,686,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1299988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8567251","Offset: 69,690,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1300116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8566919","Offset: 69,694,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1300240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8567349","Offset: 69,698,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1300376 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8567102","Offset: 69,702,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1300491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8567533","Offset: 69,706,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1300649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8567145","Offset: 69,710,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1300803 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8567576","Offset: 69,714,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1300948 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8567324","Offset: 69,719,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1301072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8567648","Offset: 69,723,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1301187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8567396","Offset: 69,727,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1301319 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8567853","Offset: 69,731,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1301447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8567618","Offset: 69,735,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1301575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8567934","Offset: 69,739,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1301699 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8567678","Offset: 69,743,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1301831 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8568135","Offset: 69,747,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1301946 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8567900","Offset: 69,751,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1302070 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8568241","Offset: 69,755,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1302219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8567981","Offset: 69,760,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1302347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8568370","Offset: 69,764,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1302471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8568045","Offset: 69,768,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1302582 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8568485","Offset: 69,772,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1302718 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8568225","Offset: 69,776,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1302846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8570525","Offset: 69,780,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1302992 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8572345","Offset: 69,784,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1303124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8571996","Offset: 69,788,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1303252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8572610","Offset: 69,792,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1303367 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8572389","Offset: 69,796,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1303491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8572107","Offset: 69,800,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1303623 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8572717","Offset: 69,805,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1303751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8572461","Offset: 69,809,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1303875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8572806","Offset: 69,813,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1303986 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8572585","Offset: 69,817,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1304118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8573024","Offset: 69,821,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1304310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8572602","Offset: 69,825,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1304442 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8573054","Offset: 69,829,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1304587 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8572794","Offset: 69,833,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1304724 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8573229","Offset: 69,837,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1304835 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8572870","Offset: 69,841,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1304967 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8573216","Offset: 69,846,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1305099 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8573310","Offset: 69,850,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1305227 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8573409","Offset: 69,854,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1305372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8573503","Offset: 69,858,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1305492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8573822","Offset: 69,862,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1305620 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8573570","Offset: 69,866,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1305799 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8575644","Offset: 69,870,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1306008 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8575166","Offset: 69,874,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1306136 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8575742","Offset: 69,878,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1306264 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8575994","Offset: 69,882,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1306388 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8575751","Offset: 69,886,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1306516 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8576088","Offset: 69,891,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1306640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8575857","Offset: 69,895,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1306755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8576250","Offset: 69,899,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1306887 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8575947","Offset: 69,903,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1307019 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8576340","Offset: 69,907,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1307147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8576071","Offset: 69,911,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1307292 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8576523","Offset: 69,915,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1307425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8576143","Offset: 69,919,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1307544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8576625","Offset: 69,923,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1307668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8576386","Offset: 69,927,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1307796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8576723","Offset: 69,932,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1307928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8576476","Offset: 69,936,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1308052 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8576877","Offset: 69,940,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1308167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8576655","Offset: 69,944,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1308295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8576980","Offset: 69,948,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1308423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8576715","Offset: 69,952,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1308568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8577184","Offset: 69,956,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1308781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8576852","Offset: 69,960,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1308944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8577171","Offset: 69,964,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1309076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8576924","Offset: 69,968,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1309208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8577351","Offset: 69,972,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1309332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8577013","Offset: 69,977,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1309447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8577321","Offset: 69,981,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1309579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8577368","Offset: 69,985,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1309707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8577470","Offset: 69,989,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1309840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8577657","Offset: 69,993,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1309985 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8577884","Offset: 69,997,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1310117 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8577641","Offset: 70,001,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1310228 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8577986","Offset: 70,005,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1310352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8577747","Offset: 70,009,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1310475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8578128","Offset: 70,013,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1310603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8577833","Offset: 70,018,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1310727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8578221","Offset: 70,022,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1310838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8577969","Offset: 70,026,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1310970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8578490","Offset: 70,030,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1311098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8578059","Offset: 70,034,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1311222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8578643","Offset: 70,038,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1311350 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8578400","Offset: 70,042,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1311482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8578819","Offset: 70,046,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1311597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8578503","Offset: 70,050,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1311721 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8578947","Offset: 70,054,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1311849 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8578699","Offset: 70,059,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1311977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8579032","Offset: 70,063,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1312101 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8578797","Offset: 70,067,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1312216 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8579194","Offset: 70,071,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1312348 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8578887","Offset: 70,075,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1312476 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8579284","Offset: 70,079,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1312604 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8579015","Offset: 70,083,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1312732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8579476","Offset: 70,087,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1312865 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8579104","Offset: 70,091,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1312980 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8579591","Offset: 70,095,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1313108 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8579347","Offset: 70,099,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1313236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8579680","Offset: 70,104,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1313381 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8579424","Offset: 70,108,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1313509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8579706","Offset: 70,112,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1313620 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8579740","Offset: 70,116,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1313752 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8579958","Offset: 70,120,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1313876 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8579723","Offset: 70,124,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1314004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8580167","Offset: 70,128,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1314132 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8579923","Offset: 70,132,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1314277 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8580252","Offset: 70,136,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1314396 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8580022","Offset: 70,140,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1314520 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8580444","Offset: 70,145,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1314652 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8580077","Offset: 70,149,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1314780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8580555","Offset: 70,153,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1314921 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8580299","Offset: 70,157,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1315036 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8580735","Offset: 70,161,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1315224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8580346","Offset: 70,165,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1315420 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8580722","Offset: 70,169,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1315561 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8580470","Offset: 70,173,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1315698 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8580798","Offset: 70,177,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1315826 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8580559","Offset: 70,181,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1315958 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8580965","Offset: 70,185,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1316086 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8580636","Offset: 70,190,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1316210 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8581088","Offset: 70,194,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1316321 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8580858","Offset: 70,198,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1316453 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8581348","Offset: 70,202,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1316585 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8580948","Offset: 70,206,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1316713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8581600","Offset: 70,210,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1316837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8581370","Offset: 70,214,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1316969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8581101","Offset: 70,218,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1317119 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8581647","Offset: 70,222,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1317281 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8581242","Offset: 70,226,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1317413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8581728","Offset: 70,231,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1317537 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8581498","Offset: 70,235,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1317677 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8581895","Offset: 70,239,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1317810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8581566","Offset: 70,243,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1317997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8581946","Offset: 70,247,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1318194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8581630","Offset: 70,251,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1318330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8581959","Offset: 70,255,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1318441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8581707","Offset: 70,259,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1318565 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8582121","Offset: 70,263,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1318697 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8581818","Offset: 70,267,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1318821 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8582215","Offset: 70,272,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1318945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8581954","Offset: 70,276,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1319056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8582457","Offset: 70,280,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1319188 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8582057","Offset: 70,284,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1319316 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8582590","Offset: 70,288,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1319444 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8582347","Offset: 70,292,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1319568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8582790","Offset: 70,296,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1319700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8582466","Offset: 70,300,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1319815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8582902","Offset: 70,304,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1319956 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8582650","Offset: 70,308,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1320088 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8582983","Offset: 70,312,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1320216 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8582740","Offset: 70,317,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1320340 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8583128","Offset: 70,321,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1320451 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8582884","Offset: 70,325,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1320583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8583239","Offset: 70,329,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1320711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8582966","Offset: 70,333,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1320839 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8583431","Offset: 70,337,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1320963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8583064","Offset: 70,341,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1321095 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8583610","Offset: 70,345,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1321210 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8583346","Offset: 70,349,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1321334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8583734","Offset: 70,353,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1321462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8583495","Offset: 70,358,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1321590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8583926","Offset: 70,362,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1321714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8583686","Offset: 70,366,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1321825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8584062","Offset: 70,370,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1321974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8583781","Offset: 70,374,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1322102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8584339","Offset: 70,378,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1322226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8584058","Offset: 70,382,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1322354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8584557","Offset: 70,386,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1322486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8584314","Offset: 70,390,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1322605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8584058","Offset: 70,394,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1322751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8584557","Offset: 70,398,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1322896 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8584275","Offset: 70,403,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1323024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8584642","Offset: 70,407,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1323147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8584408","Offset: 70,411,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1323267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8584915","Offset: 70,415,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1323399 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8584634","Offset: 70,419,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1323527 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8585005","Offset: 70,423,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1323655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8584766","Offset: 70,427,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1323783 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8585201","Offset: 70,431,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1323915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8584869","Offset: 70,435,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1324031 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8585303","Offset: 70,439,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1324154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8585065","Offset: 70,444,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1324282 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8585479","Offset: 70,448,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1324461 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8585078","Offset: 70,452,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1324645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8585487","Offset: 70,456,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1324786 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8585227","Offset: 70,460,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1324909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8585565","Offset: 70,464,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1325033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8585330","Offset: 70,468,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1325165 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8585710","Offset: 70,472,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1325298 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8585402","Offset: 70,476,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1325430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8585807","Offset: 70,480,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1325579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8585547","Offset: 70,484,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1325703 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8585965","Offset: 70,489,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1325852 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8585590","Offset: 70,493,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1325968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8586063","Offset: 70,497,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1326100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8585820","Offset: 70,501,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1326241 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8586025","Offset: 70,505,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1326369 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8586157","Offset: 70,509,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1326492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8586388","Offset: 70,513,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1326629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8586136","Offset: 70,517,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1326744 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8586477","Offset: 70,521,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1326868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8586242","Offset: 70,525,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1326996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8586660","Offset: 70,530,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1327137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8586404","Offset: 70,534,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1327329 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8586686","Offset: 70,538,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1327495 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8586405","Offset: 70,542,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1327627 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8586887","Offset: 70,546,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1327751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8586524","Offset: 70,550,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1327905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8586959","Offset: 70,554,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1328037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8586707","Offset: 70,558,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1328195 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8587130","Offset: 70,562,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1328361 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8586742","Offset: 70,566,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1328489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8587186","Offset: 70,571,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1328613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8586946","Offset: 70,575,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1328728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8587296","Offset: 70,579,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1328856 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8587058","Offset: 70,583,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1328984 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8587424","Offset: 70,587,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1329112 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8587164","Offset: 70,591,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1329236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8587514","Offset: 70,595,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1329368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8587245","Offset: 70,599,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1329483 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8587719","Offset: 70,603,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1329607 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8587348","Offset: 70,607,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1329739 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8587809","Offset: 70,611,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1329867 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8587565","Offset: 70,616,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1329991 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8587992","Offset: 70,620,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1330106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8587646","Offset: 70,624,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1330234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8588112","Offset: 70,628,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1330362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8587868","Offset: 70,632,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1330490 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8588086","Offset: 70,636,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1330623 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8588111","Offset: 70,640,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1330755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8588380","Offset: 70,644,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1330870 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8588124","Offset: 70,648,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1330998 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8588487","Offset: 70,652,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1331122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8588248","Offset: 70,657,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1331245 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8588914","Offset: 70,661,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1331369 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8588321","Offset: 70,665,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1331484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8589136","Offset: 70,669,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1331617 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8588900","Offset: 70,673,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1331745 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8588661","Offset: 70,677,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1331873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8589327","Offset: 70,681,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1332001 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8589092","Offset: 70,685,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1332129 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8588836","Offset: 70,689,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1332240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8589489","Offset: 70,693,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1332363 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8589191","Offset: 70,697,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1332487 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8588926","Offset: 70,702,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1332615 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8589592","Offset: 70,706,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1332735 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8589361","Offset: 70,710,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1332845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8589106","Offset: 70,714,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1332982 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8589788","Offset: 70,718,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1333110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8589323","Offset: 70,722,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1333255 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8589972","Offset: 70,726,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1333379 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8589741","Offset: 70,730,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1333537 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8589442","Offset: 70,734,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1333716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8589950","Offset: 70,738,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1333857 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8589690","Offset: 70,743,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1333989 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8590031","Offset: 70,747,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1334100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8589805","Offset: 70,751,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1334224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8590308","Offset: 70,755,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1334352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8589903","Offset: 70,759,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1334475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8590411","Offset: 70,763,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1334616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8590130","Offset: 70,767,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1334748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8590288","Offset: 70,771,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1334876 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8590582","Offset: 70,775,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1335004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8590339","Offset: 70,779,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1335132 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8590774","Offset: 70,784,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1335260 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8590544","Offset: 70,788,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1335384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8590283","Offset: 70,792,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1335495 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8590804","Offset: 70,796,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1335627 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8590501","Offset: 70,800,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1335751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8590893","Offset: 70,804,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1335896 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8590612","Offset: 70,808,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1336020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8591068","Offset: 70,812,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1336152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8590697","Offset: 70,816,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1336267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8591179","Offset: 70,820,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1336391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8590949","Offset: 70,824,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1336570 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8591235","Offset: 70,829,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1336779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8590911","Offset: 70,833,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1336912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8591307","Offset: 70,837,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1337023 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8591089","Offset: 70,841,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1337129 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8591439","Offset: 70,845,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1337253 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8591179","Offset: 70,849,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1337364 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8591610","Offset: 70,853,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1337471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8591388","Offset: 70,857,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1337590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8591729","Offset: 70,861,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1337714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8591469","Offset: 70,865,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1337829 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8591951","Offset: 70,870,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1337957 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8591563","Offset: 70,874,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1338089 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8592050","Offset: 70,878,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1338217 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8591806","Offset: 70,882,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1338341 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8592220","Offset: 70,886,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1338473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8591870","Offset: 70,890,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1338593 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8592395","Offset: 70,894,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1338716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8592139","Offset: 70,898,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1338844 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8592494","Offset: 70,902,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1338985 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8592246","Offset: 70,906,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1339113 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8592630","Offset: 70,910,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1339224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8592391","Offset: 70,915,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1339356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8592728","Offset: 70,919,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1339484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8592489","Offset: 70,923,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1339612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8592924","Offset: 70,927,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1339736 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8592553","Offset: 70,931,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1339873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8593030","Offset: 70,935,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1339988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8592800","Offset: 70,939,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1340116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8593218","Offset: 70,943,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1340244 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8592886","Offset: 70,947,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1340372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8593321","Offset: 70,951,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1340500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8593078","Offset: 70,956,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1340611 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8593423","Offset: 70,960,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1340743 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8593180","Offset: 70,964,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1340875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8593547","Offset: 70,968,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1341003 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8593257","Offset: 70,972,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1341131 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8593637","Offset: 70,976,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1341259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8593377","Offset: 70,980,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1341379 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8593816","Offset: 70,984,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1341520 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8593457","Offset: 70,988,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1341648 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8593909","Offset: 70,992,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1341776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8593666","Offset: 70,996,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1341899 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8593995","Offset: 71,001,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1342010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8593748","Offset: 71,005,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1342143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8594370","Offset: 71,009,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1342266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8594145","Offset: 71,013,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1342399 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8593901","Offset: 71,017,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1342544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8594417","Offset: 71,021,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1342676 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8594046","Offset: 71,025,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1342787 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8594413","Offset: 71,029,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1342940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8594418","Offset: 71,033,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1343179 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8594533","Offset: 71,037,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1343299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8594302","Offset: 71,042,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1343653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8594520","Offset: 71,046,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1343824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8594242","Offset: 71,050,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1343956 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8594562","Offset: 71,054,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1344080 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8594323","Offset: 71,058,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1344208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8594844","Offset: 71,062,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1344323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8594567","Offset: 71,066,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1344464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8594942","Offset: 71,070,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1344587 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8594704","Offset: 71,074,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1344720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8595104","Offset: 71,078,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1344839 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8594810","Offset: 71,083,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1344954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8595237","Offset: 71,087,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1345087 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8594989","Offset: 71,091,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1345215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8595321","Offset: 71,095,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1345343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8595083","Offset: 71,099,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1345483 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8595523","Offset: 71,103,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1345616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8595275","Offset: 71,107,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1345731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8595616","Offset: 71,111,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1345863 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8595373","Offset: 71,115,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1345987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8595804","Offset: 71,119,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1346115 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8595561","Offset: 71,123,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1346260 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8595881","Offset: 71,128,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1346379 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8595647","Offset: 71,132,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1346512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8596094","Offset: 71,136,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1346682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8595664","Offset: 71,140,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1346908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8596056","Offset: 71,144,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1347041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8595808","Offset: 71,148,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1347199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8596200","Offset: 71,152,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1347348 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8595817","Offset: 71,156,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1347493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8596150","Offset: 71,160,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1347634 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8596166","Offset: 71,164,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1347749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8596410","Offset: 71,169,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1347898 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8596150","Offset: 71,173,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1348031 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8596512","Offset: 71,177,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1348159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8596247","Offset: 71,181,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1348287 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8596597","Offset: 71,185,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1348419 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8596333","Offset: 71,189,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1348534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8596811","Offset: 71,193,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1348675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8596423","Offset: 71,197,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1348807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8596879","Offset: 71,201,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1348935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8596640","Offset: 71,205,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1349059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8597054","Offset: 71,209,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1349174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8596721","Offset: 71,214,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1349306 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8597174","Offset: 71,218,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1349451 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8596914","Offset: 71,222,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1349584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8597246","Offset: 71,226,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1349729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8596986","Offset: 71,230,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1349861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8597459","Offset: 71,234,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1349980 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8597080","Offset: 71,238,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1350104 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8597720","Offset: 71,242,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1350228 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8597494","Offset: 71,246,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1350352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8597259","Offset: 71,250,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1350475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8597746","Offset: 71,255,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1350591 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8597489","Offset: 71,259,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1350719 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8597847","Offset: 71,263,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1350847 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8597608","Offset: 71,267,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1350970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8598044","Offset: 71,271,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1351098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8597669","Offset: 71,275,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1351231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8598146","Offset: 71,279,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1351341 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8597921","Offset: 71,283,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1351465 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8598249","Offset: 71,287,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1351597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8597981","Offset: 71,291,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1351725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8598411","Offset: 71,296,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1351862 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8598172","Offset: 71,300,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1351977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8598505","Offset: 71,304,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1352131 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8598210","Offset: 71,308,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1352276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8598667","Offset: 71,312,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1352400 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8598423","Offset: 71,316,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1352523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8598778","Offset: 71,320,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1352656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8598534","Offset: 71,324,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1352771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8599008","Offset: 71,328,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1352895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8598603","Offset: 71,332,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1353027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8599098","Offset: 71,336,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1353151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8598859","Offset: 71,341,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1353334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8599213","Offset: 71,345,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1353517 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8598838","Offset: 71,349,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1353650 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8599260","Offset: 71,353,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1353782 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8599017","Offset: 71,357,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1353914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8599337","Offset: 71,361,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1354029 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8599086","Offset: 71,365,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1354153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8599482","Offset: 71,369,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1354281 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8599192","Offset: 71,373,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1354409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8599572","Offset: 71,377,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1354533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8599311","Offset: 71,382,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1354648 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8599811","Offset: 71,386,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1354780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8599410","Offset: 71,390,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1354908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8599905","Offset: 71,394,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1355036 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8599666","Offset: 71,398,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1355164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8600071","Offset: 71,402,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1355292 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8599726","Offset: 71,406,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1355408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8600267","Offset: 71,410,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1355531 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8599986","Offset: 71,414,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1355659 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8600365","Offset: 71,418,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1355792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8600122","Offset: 71,422,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1355920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8600488","Offset: 71,427,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1356048 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8600232","Offset: 71,431,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1356274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8600480","Offset: 71,435,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1356415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8600198","Offset: 71,439,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1356551 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8600651","Offset: 71,443,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1356671 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8600292","Offset: 71,447,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1356794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8600766","Offset: 71,451,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1356944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8600506","Offset: 71,455,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1357076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8600822","Offset: 71,459,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1357200 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8600561","Offset: 71,463,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1357315 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8600988","Offset: 71,468,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1357447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8600749","Offset: 71,472,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1357588 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8601069","Offset: 71,476,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1357716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8600804","Offset: 71,480,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1357861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8601265","Offset: 71,484,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1357993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8601014","Offset: 71,488,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1358108 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8601381","Offset: 71,492,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1358236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8601142","Offset: 71,496,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1358364 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8601552","Offset: 71,500,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1358492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8601227","Offset: 71,504,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1358616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8601645","Offset: 71,508,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1358727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8601423","Offset: 71,513,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1358859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8601838","Offset: 71,517,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1358987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8601479","Offset: 71,521,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1359115 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8601944","Offset: 71,525,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1359239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8601709","Offset: 71,529,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1359376 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8602029","Offset: 71,533,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1359495 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8601769","Offset: 71,537,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1359636 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8602157","Offset: 71,541,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1359764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8601871","Offset: 71,545,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1359905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8602234","Offset: 71,549,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1360033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8601965","Offset: 71,554,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1360173 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8602422","Offset: 71,558,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1360323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8602025","Offset: 71,562,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1360451 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8602507","Offset: 71,566,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1360579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8602272","Offset: 71,570,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1360707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8602682","Offset: 71,574,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1360839 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8602328","Offset: 71,578,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1360954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8602861","Offset: 71,582,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1361082 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8602588","Offset: 71,586,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1361210 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8602972","Offset: 71,590,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1361338 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8602729","Offset: 71,595,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1361462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8603109","Offset: 71,599,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1361573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8602865","Offset: 71,603,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1361701 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8603220","Offset: 71,607,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1361833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8602951","Offset: 71,611,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1361961 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8603403","Offset: 71,615,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1362089 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8603036","Offset: 71,619,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1362221 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8603514","Offset: 71,623,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1362341 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8603275","Offset: 71,627,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1362473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8603600","Offset: 71,631,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1362601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8603335","Offset: 71,635,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1362725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8603770","Offset: 71,640,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1362849 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8603544","Offset: 71,644,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1362964 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8603877","Offset: 71,648,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1363096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8603608","Offset: 71,652,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1363220 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8604115","Offset: 71,656,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1363386 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8603826","Offset: 71,660,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1363595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8604086","Offset: 71,664,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1363719 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8603851","Offset: 71,668,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1363851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8604252","Offset: 71,672,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1363979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8603903","Offset: 71,676,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1364124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8604325","Offset: 71,681,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1364240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8604094","Offset: 71,685,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1364372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8604512","Offset: 71,689,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1364500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8604150","Offset: 71,693,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1364628 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8604623","Offset: 71,697,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1364747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8604389","Offset: 71,701,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1364880 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8604717","Offset: 71,705,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1364999 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8604483","Offset: 71,709,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1365144 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8604837","Offset: 71,713,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1365293 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8604521","Offset: 71,717,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1365426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8604888","Offset: 71,721,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1365549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8604628","Offset: 71,726,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1365665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8605101","Offset: 71,730,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1365793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8604721","Offset: 71,734,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1365921 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8605190","Offset: 71,738,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1366053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8604948","Offset: 71,742,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1366236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8605311","Offset: 71,746,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1366433 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8604883","Offset: 71,750,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1366569 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8605409","Offset: 71,754,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1366719 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8605109","Offset: 71,758,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1366855 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8605498","Offset: 71,762,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1366970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8605268","Offset: 71,767,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1367103 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8605630","Offset: 71,771,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1367231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8605370","Offset: 71,775,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1367359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8605719","Offset: 71,779,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1367482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8605481","Offset: 71,783,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1367615 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8605903","Offset: 71,787,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1367730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8605549","Offset: 71,791,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1367858 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8606018","Offset: 71,795,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1368007 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8605758","Offset: 71,799,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1368131 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8606082","Offset: 71,803,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1368263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8605818","Offset: 71,808,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1368400 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8606223","Offset: 71,812,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1368553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8605963","Offset: 71,816,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1368690 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8606274","Offset: 71,820,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1368814 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8606014","Offset: 71,824,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1368942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8606487","Offset: 71,828,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1369074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8606236","Offset: 71,832,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1369189 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8606594","Offset: 71,836,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1369313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8606360","Offset: 71,840,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1369441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8606765","Offset: 71,844,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1369569 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8606419","Offset: 71,848,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1369692 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8606855","Offset: 71,853,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1369803 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8606629","Offset: 71,857,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1369936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8607038","Offset: 71,861,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1370059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8606689","Offset: 71,865,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1370192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8607149","Offset: 71,869,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1370320 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8606910","Offset: 71,873,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1370452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8607234","Offset: 71,877,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1370567 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8607004","Offset: 71,881,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1370695 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8607388","Offset: 71,885,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1370840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8607073","Offset: 71,889,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1370972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8607457","Offset: 71,894,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1371096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8607196","Offset: 71,898,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1371211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8607755","Offset: 71,902,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1371339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8607295","Offset: 71,906,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1371472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8607951","Offset: 71,910,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1371600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8607716","Offset: 71,914,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1371723 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8607457","Offset: 71,918,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1371860 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8608007","Offset: 71,922,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1371971 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8607780","Offset: 71,926,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1372095 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8608134","Offset: 71,930,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1372227 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8607887","Offset: 71,934,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1372355 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8608275","Offset: 71,939,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1372500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8607955","Offset: 71,943,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1372692 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8608190","Offset: 71,947,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1372850 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8608190","Offset: 71,951,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1372982 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8608408","Offset: 71,955,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1373127 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8608152","Offset: 71,959,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1373242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8608600","Offset: 71,963,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1373370 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8608357","Offset: 71,967,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1373498 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8608681","Offset: 71,971,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1373643 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8608425","Offset: 71,975,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1373771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8608852","Offset: 71,980,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1373882 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8608626","Offset: 71,984,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1374010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8609014","Offset: 71,988,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1374138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8608749","Offset: 71,992,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1374262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8609214","Offset: 71,996,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1374390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8608864","Offset: 72,000,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1374522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8609300","Offset: 72,004,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1374642 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8609065","Offset: 72,008,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1374766 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8609491","Offset: 72,012,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1374894 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8609154","Offset: 72,016,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1375022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8609593","Offset: 72,020,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1375145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8609360","Offset: 72,025,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1375256 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8609697","Offset: 72,029,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1375393 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8609423","Offset: 72,033,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1375521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8609816","Offset: 72,037,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1375666 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8609508","Offset: 72,041,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1375794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8609884","Offset: 72,045,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1375922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8609615","Offset: 72,049,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1376041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8610085","Offset: 72,053,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1376165 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8609718","Offset: 72,057,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1376293 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8610174","Offset: 72,061,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1376459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8609902","Offset: 72,066,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1376686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8610191","Offset: 72,070,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1376822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8609841","Offset: 72,074,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1376959 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8610170","Offset: 72,078,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1377095 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8610179","Offset: 72,082,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1377270 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8610358","Offset: 72,086,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1377402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8610119","Offset: 72,090,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1377543 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8610473","Offset: 72,094,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1377756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8610123","Offset: 72,098,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1377978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8610379","Offset: 72,102,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1378234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8609987","Offset: 72,107,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1378439 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8610319","Offset: 72,111,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1378614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8609944","Offset: 72,115,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1378806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8610324","Offset: 72,119,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1379152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8609862","Offset: 72,123,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1379288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8610179","Offset: 72,127,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1379425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8609905","Offset: 72,131,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1379557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8610400","Offset: 72,135,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1379694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8610131","Offset: 72,139,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1379813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8612154","Offset: 72,143,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1379941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8613976","Offset: 72,147,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1380078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8613463","Offset: 72,152,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1380206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614372","Offset: 72,156,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1380329 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614142","Offset: 72,160,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1380453 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8613908","Offset: 72,164,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1380594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8613609","Offset: 72,168,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1380730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614258","Offset: 72,172,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1380858 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8613980","Offset: 72,176,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1380991 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614368","Offset: 72,180,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1381157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614087","Offset: 72,184,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1381272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614539","Offset: 72,188,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1381434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614164","Offset: 72,193,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1381622 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614565","Offset: 72,197,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1381784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614287","Offset: 72,201,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1381955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614582","Offset: 72,205,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1382126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614300","Offset: 72,209,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1382326 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614616","Offset: 72,213,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1382450 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614321","Offset: 72,217,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1382574 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614731","Offset: 72,221,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1382723 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614441","Offset: 72,225,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1382864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614820","Offset: 72,229,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1382983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614565","Offset: 72,233,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1383150 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8616062","Offset: 72,238,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1383363 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8615610","Offset: 72,242,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1383632 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8615861","Offset: 72,246,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1383832 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8616028","Offset: 72,250,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1384033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8616203","Offset: 72,254,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1384195 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8615930","Offset: 72,258,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1384319 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8616267","Offset: 72,262,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1384498 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8615972","Offset: 72,266,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1384732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8616302","Offset: 72,270,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1384984 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8615930","Offset: 72,274,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1385240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8616148","Offset: 72,279,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1385462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8615802","Offset: 72,283,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1385897 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8615947","Offset: 72,287,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1386128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8615588","Offset: 72,291,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1386311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8615900","Offset: 72,295,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1386537 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8615559","Offset: 72,299,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1386793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8615836","Offset: 72,303,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1386981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8615465","Offset: 72,307,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1389686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8613319","Offset: 72,311,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1389929 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8612956","Offset: 72,315,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1390057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8613302","Offset: 72,320,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1390207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8613037","Offset: 72,324,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1390322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8613447","Offset: 72,328,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1390433 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8613190","Offset: 72,332,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1390544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8613583","Offset: 72,336,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1390655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8613357","Offset: 72,340,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1390783 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8613745","Offset: 72,344,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1390898 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8613434","Offset: 72,348,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1391026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8613856","Offset: 72,352,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1391154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8613587","Offset: 72,356,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1391290 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614040","Offset: 72,360,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1391401 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8613690","Offset: 72,365,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1391529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614160","Offset: 72,369,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1391657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8613916","Offset: 72,373,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1391781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614245","Offset: 72,377,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1391913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614002","Offset: 72,381,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1392028 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614399","Offset: 72,385,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1392156 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614096","Offset: 72,389,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1392280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614599","Offset: 72,393,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1392408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614313","Offset: 72,397,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1392540 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614821","Offset: 72,401,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1392660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614475","Offset: 72,406,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1392792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614919","Offset: 72,410,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1392920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614671","Offset: 72,414,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1393070 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614995","Offset: 72,418,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1393215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614739","Offset: 72,422,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1393334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8615124","Offset: 72,426,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1393471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614850","Offset: 72,430,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1393603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8615196","Offset: 72,434,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1393727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8614961","Offset: 72,438,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1393850 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8615427","Offset: 72,442,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1393987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8615017","Offset: 72,446,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1394098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8615529","Offset: 72,451,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1394226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8615260","Offset: 72,455,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1394354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8615520","Offset: 72,459,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1394482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8615738","Offset: 72,463,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1394610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8615853","Offset: 72,467,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1394721 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8616002","Offset: 72,471,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1394853 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8616126","Offset: 72,475,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1394981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8616258","Offset: 72,479,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1395109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8616604","Offset: 72,483,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1395237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8616348","Offset: 72,487,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1395369 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8616835","Offset: 72,492,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1395484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8616942","Offset: 72,496,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1395924 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8616839","Offset: 72,500,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1396060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8617061","Offset: 72,504,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1396201 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8616779","Offset: 72,508,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1396329 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8617035","Offset: 72,512,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1396457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8617159","Offset: 72,516,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1396590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8617308","Offset: 72,520,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1396705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8617453","Offset: 72,524,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1396833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8617589","Offset: 72,528,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1396965 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8617713","Offset: 72,532,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1397170 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8617956","Offset: 72,537,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1397306 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8618183","Offset: 72,541,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1397426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8617922","Offset: 72,545,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1397558 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8618174","Offset: 72,549,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1397690 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8618307","Offset: 72,553,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1397823 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8618541","Offset: 72,557,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1397951 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8618647","Offset: 72,561,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1398083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8618776","Offset: 72,565,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1398202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8618917","Offset: 72,569,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1398335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8619040","Offset: 72,573,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1398714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8619122","Offset: 72,578,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1398842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8618870","Offset: 72,582,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1398962 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8619079","Offset: 72,586,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1399094 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8619164","Offset: 72,590,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1399214 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8619531","Offset: 72,594,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1399324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8619651","Offset: 72,598,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1399444 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8762836","Offset: 72,602,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1399555 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8765997","Offset: 72,606,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1399674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8766979","Offset: 72,610,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1399785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8775781","Offset: 72,614,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1399918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8777683","Offset: 72,619,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1400058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8780457","Offset: 72,623,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1400191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8788435","Offset: 72,627,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1400319 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8790057","Offset: 72,631,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1400447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8791473","Offset: 72,635,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1400579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8800587","Offset: 72,639,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1400703 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8801726","Offset: 72,643,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1400831 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8804000","Offset: 72,647,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1400963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8813216","Offset: 72,651,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1401091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8814492","Offset: 72,655,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1401219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8815205","Offset: 72,659,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1401355 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8818644","Offset: 72,664,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1401509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8827932","Offset: 72,668,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1401637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8829703","Offset: 72,672,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1401765 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8830847","Offset: 72,676,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1401893 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8833197","Offset: 72,680,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1402025 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8842661","Offset: 72,684,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1402140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8844249","Offset: 72,688,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1402281 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8846531","Offset: 72,692,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1402409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8854791","Offset: 72,696,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1402537 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8855811","Offset: 72,700,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1402661 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8858081","Offset: 72,705,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1402772 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8859540","Offset: 72,709,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1402904 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8870092","Offset: 72,713,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1403036 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8871095","Offset: 72,717,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1403160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8873381","Offset: 72,721,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1403284 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8875386","Offset: 72,725,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1403416 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8885004","Offset: 72,729,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1403531 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8886331","Offset: 72,733,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1403655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8888570","Offset: 72,737,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1403787 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8896925","Offset: 72,741,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1403911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8898081","Offset: 72,745,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1404039 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8900615","Offset: 72,750,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1404150 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8908713","Offset: 72,754,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1404282 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8909823","Offset: 72,758,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1404410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8912199","Offset: 72,762,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1404534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8920997","Offset: 72,766,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1404662 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8922060","Offset: 72,770,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1404790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8924304","Offset: 72,774,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1405123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8932534","Offset: 72,778,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1405272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8934070","Offset: 72,782,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1405387 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8936447","Offset: 72,786,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1405520 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8944395","Offset: 72,791,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1405648 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8945453","Offset: 72,795,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1405776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8947710","Offset: 72,799,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1405908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8956892","Offset: 72,803,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1406019 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8957904","Offset: 72,807,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1406147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8960259","Offset: 72,811,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1406275 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8961564","Offset: 72,815,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1406403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8971728","Offset: 72,819,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1406531 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8973289","Offset: 72,823,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1406646 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8975858","Offset: 72,827,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1406778 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8976997","Offset: 72,832,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1406911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8986981","Offset: 72,836,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1407124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8988551","Offset: 72,840,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1407346 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8990949","Offset: 72,844,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1407568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.8999329","Offset: 72,848,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1408088 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9000063","Offset: 72,852,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1408336 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9001462","Offset: 72,856,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1408651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9004074","Offset: 72,860,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1408886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9014011","Offset: 72,864,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1409099 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9015103","Offset: 72,868,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1409355 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9017463","Offset: 72,872,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1409552 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9018977","Offset: 72,877,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1409791 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9028419","Offset: 72,881,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1409966 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9029856","Offset: 72,885,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1410175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9031316","Offset: 72,889,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1410384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9033714","Offset: 72,893,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1410588 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9043169","Offset: 72,897,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1410793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9044308","Offset: 72,901,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1410972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9046706","Offset: 72,905,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1411177 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9055415","Offset: 72,909,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1411378 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9057112","Offset: 72,913,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1411583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9058243","Offset: 72,918,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1411783 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9067011","Offset: 72,922,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1411992 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9068172","Offset: 72,926,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1412171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9070685","Offset: 72,930,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1412368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9079755","Offset: 72,934,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1412572 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9080912","Offset: 72,938,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1412773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9081467","Offset: 72,942,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1412969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9082815","Offset: 72,946,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1413148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9093213","Offset: 72,950,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1413362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9095192","Offset: 72,954,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1413494 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9095807","Offset: 72,958,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1413614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9098366","Offset: 72,963,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1413733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9108679","Offset: 72,967,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1413848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9110467","Offset: 72,971,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1413963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9111270","Offset: 72,975,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1414074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9114107","Offset: 72,979,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1414190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9123608","Offset: 72,983,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1414313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9124684","Offset: 72,987,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1414497 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9126173","Offset: 72,991,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1414693 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9128848","Offset: 72,995,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1414911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9138128","Offset: 72,999,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1415098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9139097","Offset: 73,004,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1415235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9142245","Offset: 73,008,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1415350 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9143261","Offset: 73,012,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1415461 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9153505","Offset: 73,016,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1415580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9154696","Offset: 73,020,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1415717 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9155971","Offset: 73,024,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1415892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9158975","Offset: 73,028,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1416011 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9168464","Offset: 73,032,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1416127 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9169479","Offset: 73,036,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1416250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9171886","Offset: 73,040,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1416383 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9172991","Offset: 73,044,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1416498 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9183401","Offset: 73,049,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1416626 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9184477","Offset: 73,053,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1416758 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9186913","Offset: 73,057,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1416886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9188035","Offset: 73,061,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1417001 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9202180","Offset: 73,065,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1417121 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9203271","Offset: 73,069,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1417240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9204437","Offset: 73,073,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1417351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9207043","Offset: 73,077,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1417462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9215508","Offset: 73,081,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1417603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9217194","Offset: 73,085,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1417808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9219651","Offset: 73,090,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1418030 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9222271","Offset: 73,094,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1418217 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9229836","Offset: 73,098,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1418350 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9233223","Offset: 73,102,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1418486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9234747","Offset: 73,106,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1418601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9243775","Offset: 73,110,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1418721 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9245025","Offset: 73,114,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1418836 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9248720","Offset: 73,118,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1418955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9256669","Offset: 73,122,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1419066 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9258274","Offset: 73,126,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1419177 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9262084","Offset: 73,131,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1419297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9270284","Offset: 73,135,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1419412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9272204","Offset: 73,139,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1419523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9275788","Offset: 73,143,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1419647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9284099","Offset: 73,147,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1419783 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9286890","Offset: 73,151,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1419903 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9289565","Offset: 73,155,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1420031 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9299510","Offset: 73,159,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1420154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9300671","Offset: 73,163,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1420287 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9306179","Offset: 73,167,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1420415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9312673","Offset: 73,171,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1420526 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9315480","Offset: 73,176,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1420658 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9324338","Offset: 73,180,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1420790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9516906","Offset: 73,184,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1420974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9627097","Offset: 73,188,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1421093 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9734306","Offset: 73,192,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1421234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9733149","Offset: 73,196,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1421366 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9737237","Offset: 73,200,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1421498 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9736589","Offset: 73,204,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1421622 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9735731","Offset: 73,208,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1421754 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9735057","Offset: 73,212,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1421870 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9734386","Offset: 73,217,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1422006 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9746291","Offset: 73,221,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1422138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9745673","Offset: 73,225,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1422262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9744572","Offset: 73,229,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1422377 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9748698","Offset: 73,233,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1422501 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9748134","Offset: 73,237,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1422612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9747592","Offset: 73,241,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1422727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9746969","Offset: 73,245,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1422842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9757291","Offset: 73,249,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1422953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9756177","Offset: 73,253,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1423086 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9757636","Offset: 73,257,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1423201 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9761058","Offset: 73,262,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1423329 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9760499","Offset: 73,266,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1423457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9759906","Offset: 73,270,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1423589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9759343","Offset: 73,274,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1423713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9758489","Offset: 73,278,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1423845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9757901","Offset: 73,282,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1423969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9770111","Offset: 73,286,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1424148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9769425","Offset: 73,290,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1424498 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9768085","Offset: 73,294,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1424873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9773111","Offset: 73,298,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1425095 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9772369","Offset: 73,303,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1425253 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9771720","Offset: 73,307,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1425432 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9770995","Offset: 73,311,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1425590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9769958","Offset: 73,315,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1425722 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9769276","Offset: 73,319,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1425842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9782382","Offset: 73,323,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1426021 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9781687","Offset: 73,327,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1426175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9780548","Offset: 73,331,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1426320 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9785446","Offset: 73,335,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1426559 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9784767","Offset: 73,339,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1426699 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9784192","Offset: 73,344,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1426836 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9783569","Offset: 73,348,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1426964 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9782758","Offset: 73,352,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1427122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9782011","Offset: 73,356,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1427254 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9794679","Offset: 73,360,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1427386 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9794027","Offset: 73,364,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1427519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9792900","Offset: 73,368,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1427651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9797103","Offset: 73,372,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1427762 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9796518","Offset: 73,376,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1427911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9795627","Offset: 73,380,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1428112 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9794858","Offset: 73,384,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1428312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9797423","Offset: 73,389,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1428538 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9796706","Offset: 73,393,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1428735 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9807146","Offset: 73,397,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1428948 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9806361","Offset: 73,401,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1429161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9804518","Offset: 73,405,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1429375 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9810146","Offset: 73,409,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1429554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9809484","Offset: 73,413,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1429759 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9808772","Offset: 73,417,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1429993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9808043","Offset: 73,421,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1430215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9807108","Offset: 73,425,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1430424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9806400","Offset: 73,430,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1430612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9830971","Offset: 73,434,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1430881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9829081","Offset: 73,438,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1431086 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9834231","Offset: 73,442,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1431367 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9833412","Offset: 73,446,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1431755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9832295","Offset: 73,450,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1431977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9831522","Offset: 73,454,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1432212 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9830848","Offset: 73,458,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1432413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9830084","Offset: 73,462,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1432605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9842026","Offset: 73,466,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1432792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9840922","Offset: 73,470,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1433001 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9844595","Offset: 73,475,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1433193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9843960","Offset: 73,479,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1433390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9843306","Offset: 73,483,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1433603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9842521","Offset: 73,487,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1433842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9853239","Offset: 73,491,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1434064 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9852501","Offset: 73,495,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1434256 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9850713","Offset: 73,499,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1434486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9856636","Offset: 73,503,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1434734 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9857548","Offset: 73,507,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1434930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9867370","Offset: 73,511,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1435118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9866146","Offset: 73,516,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1435318 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9867533","Offset: 73,520,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1435489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9870617","Offset: 73,524,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1435702 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9869956","Offset: 73,528,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1435903 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9869269","Offset: 73,532,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1436069 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9868211","Offset: 73,536,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1436227 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9867537","Offset: 73,540,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1436436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9880128","Offset: 73,544,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1436611 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9879283","Offset: 73,548,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1436747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9877445","Offset: 73,552,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1436880 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9881830","Offset: 73,556,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1437012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9881169","Offset: 73,561,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1437170 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9880631","Offset: 73,565,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1437332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9880081","Offset: 73,569,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1437498 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9889707","Offset: 73,573,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1437635 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9889071","Offset: 73,577,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1437793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9887948","Offset: 73,581,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1437942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9891699","Offset: 73,585,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1438083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9891089","Offset: 73,589,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1438202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9890441","Offset: 73,593,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1438339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9889681","Offset: 73,597,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1438493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9901371","Offset: 73,602,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1438629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9899998","Offset: 73,606,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1438766 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9898858","Offset: 73,610,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1438898 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9903125","Offset: 73,614,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1439090 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9902553","Offset: 73,618,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1439248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9902003","Offset: 73,622,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1439444 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9901273","Offset: 73,626,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1439632 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9910971","Offset: 73,630,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1439790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9910263","Offset: 73,634,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1439943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9909158","Offset: 73,638,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1440135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9911300","Offset: 73,643,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1440293 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9913041","Offset: 73,647,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1440425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9912529","Offset: 73,651,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1440566 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9912026","Offset: 73,655,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1440686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9911291","Offset: 73,659,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1440822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9923426","Offset: 73,663,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1440950 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9922739","Offset: 73,667,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1441082 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9921105","Offset: 73,671,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1441236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9925619","Offset: 73,675,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1441373 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9924744","Offset: 73,679,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1441488 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9924172","Offset: 73,683,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1441624 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9923507","Offset: 73,688,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1441752 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9932702","Offset: 73,692,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1441880 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9941824","Offset: 73,696,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1442017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9940667","Offset: 73,700,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1442136 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9944875","Offset: 73,704,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1442273 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9944371","Offset: 73,708,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1442405 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9943710","Offset: 73,712,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1442571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9942972","Offset: 73,716,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1442793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9950349","Offset: 73,720,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1443019 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9951420","Offset: 73,724,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1443186 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9950869","Offset: 73,729,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1443318 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9952107","Offset: 73,733,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1443450 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9951633","Offset: 73,737,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1443583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9958203","Offset: 73,741,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1443715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9958869","Offset: 73,745,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1443839 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9959453","Offset: 73,749,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1443971 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9963755","Offset: 73,753,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1444103 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9964800","Offset: 73,757,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1444235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9965321","Offset: 73,761,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1444363 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9969272","Offset: 73,765,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1444479 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9970022","Offset: 73,769,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1444615 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9970471","Offset: 73,774,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1444747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9974648","Offset: 73,778,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1444880 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9975330","Offset: 73,782,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1445012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9975817","Offset: 73,786,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1445153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9984623","Offset: 73,790,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1445268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9983147","Offset: 73,794,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1445405 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9982144","Offset: 73,798,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1445618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9986274","Offset: 73,802,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1445801 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9985634","Offset: 73,806,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1445946 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9984862","Offset: 73,810,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1446062 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9993676","Offset: 73,815,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1446198 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9995017","Offset: 73,819,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1446330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9994334","Offset: 73,823,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1446467 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","4.9995942","Offset: 73,827,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1446595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0000422","Offset: 73,831,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1446727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0000982","Offset: 73,835,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1446842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0001498","Offset: 73,839,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1446975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0007535","Offset: 73,843,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1447094 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0006759","Offset: 73,847,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1447209 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0008798","Offset: 73,851,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1447329 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0008264","Offset: 73,856,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1447444 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0007799","Offset: 73,860,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1447563 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0016384","Offset: 73,864,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1447683 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0015812","Offset: 73,868,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1447802 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0014844","Offset: 73,872,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1447913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0017660","Offset: 73,876,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1448033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0016909","Offset: 73,880,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1448144 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0016461","Offset: 73,884,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1448263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0023719","Offset: 73,888,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1448391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0024734","Offset: 73,892,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1448519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0024120","Offset: 73,896,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1448656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0025062","Offset: 73,901,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1448775 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0033272","Offset: 73,905,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1448912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0032785","Offset: 73,909,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1449044 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0032209","Offset: 73,913,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1449176 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0031621","Offset: 73,917,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1449309 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0033625","Offset: 73,921,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1449441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0038656","Offset: 73,925,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1449556 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0046712","Offset: 73,929,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1449688 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0047301","Offset: 73,933,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1449821 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0047812","Offset: 73,937,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1449949 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0052403","Offset: 73,942,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1450085 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0052988","Offset: 73,946,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1450200 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0053534","Offset: 73,950,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1450333 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0057885","Offset: 73,954,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1450465 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0058948","Offset: 73,958,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1450597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0059469","Offset: 73,962,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1450738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0063398","Offset: 73,966,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1451007 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0063914","Offset: 73,970,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1451165 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0064388","Offset: 73,974,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1451335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0069483","Offset: 73,978,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1451493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0070652","Offset: 73,982,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1451668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0069986","Offset: 73,987,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1451834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0070977","Offset: 73,991,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1451984 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0075563","Offset: 73,995,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1452244 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0076988","Offset: 73,999,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1452427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0076318","Offset: 74,003,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1452594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0077227","Offset: 74,007,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1452752 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0081950","Offset: 74,011,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1452914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0082995","Offset: 74,015,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1453093 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0083904","Offset: 74,019,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1453230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0083319","Offset: 74,023,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1453366 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0088764","Offset: 74,028,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1453490 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0089498","Offset: 74,032,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1453631 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0090325","Offset: 74,036,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1453750 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0094059","Offset: 74,040,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1453882 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0094721","Offset: 74,044,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1454019 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0095151","Offset: 74,048,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1454151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0102178","Offset: 74,052,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1454279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0101065","Offset: 74,056,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1454394 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0105656","Offset: 74,060,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1454531 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0105058","Offset: 74,064,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1454680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0104359","Offset: 74,068,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1454834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0103347","Offset: 74,073,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1455056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0102771","Offset: 74,077,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1455188 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0102225","Offset: 74,081,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1455346 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0113929","Offset: 74,085,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1455478 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0115162","Offset: 74,089,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1455610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0112696","Offset: 74,093,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1455738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0118119","Offset: 74,097,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1455875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0117521","Offset: 74,101,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1455990 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0116647","Offset: 74,105,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1456122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0115892","Offset: 74,109,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1456255 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0115260","Offset: 74,114,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1456387 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0125939","Offset: 74,118,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1456515 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0125095","Offset: 74,122,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1456656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0123789","Offset: 74,126,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1456771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0128691","Offset: 74,130,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1456903 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0128214","Offset: 74,134,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1457035 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0127728","Offset: 74,138,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1457168 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0127219","Offset: 74,142,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1457304 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0126614","Offset: 74,146,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1457419 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0136888","Offset: 74,150,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1457552 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0136256","Offset: 74,155,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1457680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0135168","Offset: 74,159,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1457812 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0140032","Offset: 74,163,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1457940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0139448","Offset: 74,167,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1458072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0138718","Offset: 74,171,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1458187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0138104","Offset: 74,175,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1458324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0136819","Offset: 74,179,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1458452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0149658","Offset: 74,183,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1458584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0149014","Offset: 74,187,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1458725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0147217","Offset: 74,191,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1458849 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0153323","Offset: 74,195,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1459028 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0152713","Offset: 74,200,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1459186 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0152120","Offset: 74,204,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1459339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0151480","Offset: 74,208,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1459467 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0150849","Offset: 74,212,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1459604 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0149969","Offset: 74,216,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1459723 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0149308","Offset: 74,220,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1459873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0162445","Offset: 74,224,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1460005 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0161784","Offset: 74,228,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1460133 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0160632","Offset: 74,232,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1460274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0165547","Offset: 74,236,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1460393 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0164950","Offset: 74,241,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1460526 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0164318","Offset: 74,245,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1460654 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0163635","Offset: 74,249,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1460786 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0162381","Offset: 74,253,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1460914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0174008","Offset: 74,257,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1461046 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0173347","Offset: 74,261,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1461166 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0171733","Offset: 74,265,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1461311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0176700","Offset: 74,269,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1461541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0176043","Offset: 74,273,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1461707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0175092","Offset: 74,277,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1461840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0174481","Offset: 74,281,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1461959 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0173816","Offset: 74,286,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1462087 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0184082","Offset: 74,290,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1462215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0186279","Offset: 74,294,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1462343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0184935","Offset: 74,298,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1462475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0190175","Offset: 74,302,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1462591 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0189410","Offset: 74,306,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1462727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0188754","Offset: 74,310,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1462855 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0188054","Offset: 74,314,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1462983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0186799","Offset: 74,318,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1463115 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0194036","Offset: 74,322,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1463248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0194586","Offset: 74,327,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1463359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0195029","Offset: 74,331,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1463487 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0196019","Offset: 74,335,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1463619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0200883","Offset: 74,339,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1463751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0202757","Offset: 74,343,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1463875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0202180","Offset: 74,347,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1463990 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0201536","Offset: 74,351,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1464122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0203478","Offset: 74,355,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1464323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0210987","Offset: 74,359,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1464523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0211342","Offset: 74,363,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1464660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0209720","Offset: 74,368,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1464779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0214495","Offset: 74,372,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1464912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0213871","Offset: 74,376,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1465044 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0213240","Offset: 74,380,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1465172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0212625","Offset: 74,384,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1465296 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0211951","Offset: 74,388,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1465432 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0223373","Offset: 74,392,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1465547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0222751","Offset: 74,396,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1465675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0221607","Offset: 74,400,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1465812 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0226185","Offset: 74,404,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1465944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0225605","Offset: 74,408,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1466077 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0225024","Offset: 74,413,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1466192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0224171","Offset: 74,417,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1466324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0223548","Offset: 74,421,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1466456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0226010","Offset: 74,425,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1466593 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0253854","Offset: 74,429,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1466725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0264896","Offset: 74,433,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1466857 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0267760","Offset: 74,437,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1466981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0268800","Offset: 74,441,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1467109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0278400","Offset: 74,445,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1467254 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0277274","Offset: 74,449,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1467412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0278887","Offset: 74,454,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1467549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0278426","Offset: 74,458,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1467664 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0279036","Offset: 74,462,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1467800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0293599","Offset: 74,466,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1467933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0292885","Offset: 74,470,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1468061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0294204","Offset: 74,474,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1468189 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0293786","Offset: 74,478,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1468325 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0294358","Offset: 74,482,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1468440 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0310012","Offset: 74,486,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1468568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0309232","Offset: 74,490,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1468696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0310209","Offset: 74,494,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1468850 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0310443","Offset: 74,499,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1469008 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0311527","Offset: 74,503,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1469123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0325108","Offset: 74,507,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1469259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0324353","Offset: 74,511,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1469392 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0325265","Offset: 74,515,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1469524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0325590","Offset: 74,519,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1469652 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0339461","Offset: 74,523,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1469784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0338727","Offset: 74,527,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1469908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0339627","Offset: 74,531,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1470036 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5296241","Offset: 74,535,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1470164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0520389","Offset: 74,540,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1470296 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0522727","Offset: 74,544,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1470420 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0525023","Offset: 74,548,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1470535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0534034","Offset: 74,552,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1470668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0534998","Offset: 74,556,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1470800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0538744","Offset: 74,560,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1470928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0546390","Offset: 74,564,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1471052 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0547597","Offset: 74,568,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1471197 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0551002","Offset: 74,572,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1471380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0559041","Offset: 74,576,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1471572 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0559950","Offset: 74,580,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1471713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0563589","Offset: 74,585,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1471828 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0571538","Offset: 74,589,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1471969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0572370","Offset: 74,593,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1472110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0576508","Offset: 74,597,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1472268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0584124","Offset: 74,601,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1472404 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0584760","Offset: 74,605,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1472536 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0588609","Offset: 74,609,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1472656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0596263","Offset: 74,613,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1472788 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0597070","Offset: 74,617,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1472920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0600944","Offset: 74,621,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1473053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0608986","Offset: 74,626,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1473181 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0609809","Offset: 74,630,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1473296 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0613850","Offset: 74,634,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1473428 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0621181","Offset: 74,638,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1473556 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0622000","Offset: 74,642,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1473688 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0625810","Offset: 74,646,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1473816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0654883","Offset: 74,650,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1473953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0661483","Offset: 74,654,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1474089 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0744735","Offset: 74,658,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1474298 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0745230","Offset: 74,662,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1474452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0749450","Offset: 74,667,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1474567 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0759195","Offset: 74,671,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1474704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0760142","Offset: 74,675,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1474836 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0764174","Offset: 74,679,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1474964 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0771559","Offset: 74,683,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1475092 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0772558","Offset: 74,687,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1475229 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0776188","Offset: 74,691,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1475344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0783873","Offset: 74,695,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1475493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0784761","Offset: 74,699,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1475642 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0788729","Offset: 74,703,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1475779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0796242","Offset: 74,707,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1475903 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0796860","Offset: 74,712,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1476018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0800551","Offset: 74,716,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1476159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0809208","Offset: 74,720,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1476295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0809815","Offset: 74,724,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1476423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0813663","Offset: 74,728,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1476556 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0821253","Offset: 74,732,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1476688 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0822085","Offset: 74,736,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1476803 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0825772","Offset: 74,740,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1476931 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0833477","Offset: 74,744,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1477063 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0834361","Offset: 74,748,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1477196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0838123","Offset: 74,753,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1477328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0865780","Offset: 74,757,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1477443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0869317","Offset: 74,761,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1477580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0875316","Offset: 74,765,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1477712 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0968304","Offset: 74,769,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1477844 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0969068","Offset: 74,773,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1477981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0973099","Offset: 74,777,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1478117 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0982397","Offset: 74,781,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1478237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0983331","Offset: 74,785,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1478365 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0987111","Offset: 74,789,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1478497 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0994988","Offset: 74,793,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1478629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0996754","Offset: 74,798,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1478757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.0999140","Offset: 74,802,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1478877 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1006866","Offset: 74,806,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1479009 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1008944","Offset: 74,810,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1479145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1012430","Offset: 74,814,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1479273 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1020315","Offset: 74,818,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1479406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1021125","Offset: 74,822,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1479546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1024911","Offset: 74,826,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1479662 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1032782","Offset: 74,830,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1479790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1033418","Offset: 74,834,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1479918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1037219","Offset: 74,839,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1480046 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1045125","Offset: 74,843,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1480174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1046875","Offset: 74,847,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1480289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1049627","Offset: 74,851,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1480425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1057602","Offset: 74,855,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1480583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1065990","Offset: 74,859,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1480805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1082327","Offset: 74,863,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1480933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1091854","Offset: 74,867,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1481061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1098024","Offset: 74,871,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1481189 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1192027","Offset: 74,875,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1481321 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1192599","Offset: 74,880,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1481449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1194716","Offset: 74,884,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1481565 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1205010","Offset: 74,888,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1481697 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1207630","Offset: 74,892,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1481825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1209341","Offset: 74,896,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1481953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1218685","Offset: 74,900,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1482081 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1219496","Offset: 74,904,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1482217 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1221958","Offset: 74,908,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1482328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1223383","Offset: 74,912,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1482456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1234771","Offset: 74,916,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1482610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1235799","Offset: 74,920,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1482738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1238073","Offset: 74,925,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1482866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1239080","Offset: 74,929,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1482981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1249999","Offset: 74,933,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1483113 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1251112","Offset: 74,937,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1483250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1252588","Offset: 74,941,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1483446 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1256996","Offset: 74,945,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1483621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1265213","Offset: 74,949,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1483830 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1266233","Offset: 74,953,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1483992 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1268661","Offset: 74,957,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1484125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1269881","Offset: 74,961,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1484253 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1306971","Offset: 74,966,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1484393 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1313768","Offset: 74,970,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1484534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1415358","Offset: 74,974,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1484662 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1416407","Offset: 74,978,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1484790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1419996","Offset: 74,982,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1484918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1421259","Offset: 74,986,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1485050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1431913","Offset: 74,990,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1485170 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1432975","Offset: 74,994,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1485302 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1435398","Offset: 74,998,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1485430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1436845","Offset: 75,002,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1485575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1447622","Offset: 75,006,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1485703 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1448727","Offset: 75,011,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1485814 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1451287","Offset: 75,015,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1485951 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1460913","Offset: 75,019,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1486079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1461949","Offset: 75,023,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1486207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1463630","Offset: 75,027,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1486335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1466054","Offset: 75,031,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1486471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1475970","Offset: 75,035,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1486591 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1477224","Offset: 75,039,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1486736 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1479554","Offset: 75,043,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1486864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1480731","Offset: 75,047,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1486996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1491253","Offset: 75,052,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1487128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1499283","Offset: 75,056,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1487261 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1520518","Offset: 75,060,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1487397 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1529696","Offset: 75,064,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1487525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1536356","Offset: 75,068,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1487657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1638565","Offset: 75,072,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1487785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1639576","Offset: 75,076,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1487918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1642267","Offset: 75,080,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1488037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1643364","Offset: 75,084,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1488161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1654931","Offset: 75,088,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1488297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1656314","Offset: 75,092,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1488430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1657679","Offset: 75,097,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1488553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1662006","Offset: 75,101,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1488673 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1670389","Offset: 75,105,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1488805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1671413","Offset: 75,109,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1488933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1674417","Offset: 75,113,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1489061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1675591","Offset: 75,117,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1489193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1686637","Offset: 75,121,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1489326 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1687643","Offset: 75,125,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1489462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1690191","Offset: 75,129,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1489603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1691386","Offset: 75,133,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1489752 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1702083","Offset: 75,138,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1489961 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1703034","Offset: 75,142,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1490124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1705444","Offset: 75,146,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1490252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1706775","Offset: 75,150,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1490384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1742637","Offset: 75,154,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1490512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1749651","Offset: 75,158,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1490644 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1861332","Offset: 75,162,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1490764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1862385","Offset: 75,166,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1490892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1865841","Offset: 75,170,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1491126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1866840","Offset: 75,174,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1491263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1877719","Offset: 75,179,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1491395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1878752","Offset: 75,183,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1491510 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1881325","Offset: 75,187,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1491647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1882255","Offset: 75,191,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1491775 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1893263","Offset: 75,195,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1491945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1894322","Offset: 75,199,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1492078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1897107","Offset: 75,203,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1492210 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1898080","Offset: 75,207,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1492334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1909724","Offset: 75,211,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1492462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1910816","Offset: 75,215,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1492658 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1914294","Offset: 75,219,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1492897 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1922605","Offset: 75,224,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1493029 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1923634","Offset: 75,228,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1493140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1925929","Offset: 75,232,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1493251 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1935388","Offset: 75,236,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1493409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1963190","Offset: 75,240,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1493541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.1969880","Offset: 75,244,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1493669 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2083851","Offset: 75,248,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1493797 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2084956","Offset: 75,252,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1493912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2087564","Offset: 75,256,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1494045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2088962","Offset: 75,260,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1494177 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2100777","Offset: 75,265,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1494330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2101942","Offset: 75,269,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1494471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2104366","Offset: 75,273,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1494625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2105415","Offset: 75,277,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1494761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2116176","Offset: 75,281,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1494906 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2117260","Offset: 75,285,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1495034 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2119641","Offset: 75,289,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1495167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2120493","Offset: 75,293,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1495295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2131484","Offset: 75,297,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1495410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2132508","Offset: 75,301,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1495542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2135005","Offset: 75,305,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1495670 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2136395","Offset: 75,310,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1495798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2172167","Offset: 75,314,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1495926 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2178695","Offset: 75,318,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1496058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2197119","Offset: 75,322,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1496178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2198650","Offset: 75,326,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1496306 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2203122","Offset: 75,330,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1496434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2211429","Offset: 75,334,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1496575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2212406","Offset: 75,338,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1496707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2214911","Offset: 75,342,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1496822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2215969","Offset: 75,346,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1496959 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2226891","Offset: 75,351,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1497091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2228359","Offset: 75,355,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1497219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2230693","Offset: 75,359,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1497351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2239811","Offset: 75,363,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1497488 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2240911","Offset: 75,367,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1497607 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2243340","Offset: 75,371,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1497735 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2244812","Offset: 75,375,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1497868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2277135","Offset: 75,379,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1497996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2276026","Offset: 75,383,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1498119 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2283382","Offset: 75,387,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1498234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2308415","Offset: 75,392,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1498367 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2309434","Offset: 75,396,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1498495 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2312259","Offset: 75,400,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1498627 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2313603","Offset: 75,404,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1498755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2325379","Offset: 75,408,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1498892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2326454","Offset: 75,412,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1499007 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2329010","Offset: 75,416,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1499152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2338072","Offset: 75,420,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1499378 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2339083","Offset: 75,424,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1499514 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2341358","Offset: 75,428,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1499655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2342335","Offset: 75,432,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1499783 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2353275","Offset: 75,437,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1499916 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2354554","Offset: 75,441,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1500044 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2356845","Offset: 75,445,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1500176 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2365515","Offset: 75,449,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1500291 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2394802","Offset: 75,453,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1500419 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2401010","Offset: 75,457,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1500547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2420500","Offset: 75,461,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1500679 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2422002","Offset: 75,465,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1500803 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2427263","Offset: 75,469,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1500918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2431700","Offset: 75,473,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1501050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2437977","Offset: 75,478,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1501178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2440908","Offset: 75,482,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1501306 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2443558","Offset: 75,486,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1501434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2450163","Offset: 75,490,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1501571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2452560","Offset: 75,494,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1501690 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2459037","Offset: 75,498,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1501818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2462536","Offset: 75,502,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1501968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2487602","Offset: 75,506,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1502173 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2493767","Offset: 75,510,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1502309 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2532262","Offset: 75,514,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1502441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2533333","Offset: 75,518,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1502595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2536076","Offset: 75,523,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1502723 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2537219","Offset: 75,527,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1503043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2548509","Offset: 75,531,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1503158 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2549554","Offset: 75,535,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1503308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2552242","Offset: 75,539,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1503453 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2553206","Offset: 75,543,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1503598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2564018","Offset: 75,547,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1503743 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2565200","Offset: 75,551,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1503858 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2567513","Offset: 75,555,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1503990 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2568520","Offset: 75,559,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1504122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2599027","Offset: 75,564,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1504250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2599970","Offset: 75,568,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1504378 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2607808","Offset: 75,572,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1504515 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2643417","Offset: 75,576,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1504630 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2644415","Offset: 75,580,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1504762 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2647560","Offset: 75,584,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1504890 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2657378","Offset: 75,588,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1505018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2659686","Offset: 75,592,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1505142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2661845","Offset: 75,596,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1505257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2671121","Offset: 75,600,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1505394 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2671773","Offset: 75,604,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1505522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2676385","Offset: 75,609,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1505654 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2689023","Offset: 75,613,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1505782 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2704691","Offset: 75,617,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1505914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2706632","Offset: 75,621,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1506030 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2719128","Offset: 75,625,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1506158 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2755156","Offset: 75,629,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1506290 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2756138","Offset: 75,633,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1506418 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2760336","Offset: 75,637,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1506542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2768281","Offset: 75,641,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1506657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2768993","Offset: 75,645,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1506793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2773329","Offset: 75,650,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1506926 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2781742","Offset: 75,654,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1507054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2782425","Offset: 75,658,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1507182 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2786235","Offset: 75,662,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1507314 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2799803","Offset: 75,666,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1507429 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2813896","Offset: 75,670,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1507557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2824785","Offset: 75,674,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1507685 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2866794","Offset: 75,678,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1507813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2867618","Offset: 75,682,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1507941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2871829","Offset: 75,686,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1508052 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2879842","Offset: 75,691,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1508184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2880725","Offset: 75,695,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1508312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2884770","Offset: 75,699,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1508483 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2893265","Offset: 75,703,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1508679 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2893879","Offset: 75,707,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1508837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2897647","Offset: 75,711,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1508974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2924496","Offset: 75,715,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1509106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2930555","Offset: 75,719,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1509234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2976964","Offset: 75,723,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1509349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2978735","Offset: 75,727,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1509481 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2981218","Offset: 75,731,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1509618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2992392","Offset: 75,736,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1509746 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2993339","Offset: 75,740,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1509878 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.2997111","Offset: 75,744,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1510010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3005555","Offset: 75,748,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1510143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3006250","Offset: 75,752,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1510292 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3016247","Offset: 75,756,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1510454 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3037325","Offset: 75,760,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1510586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3042441","Offset: 75,764,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1510710 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3089672","Offset: 75,768,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1510825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3090381","Offset: 75,772,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1510958 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3094715","Offset: 75,777,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1511090 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3104089","Offset: 75,781,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1511244 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3105057","Offset: 75,785,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1511457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3108736","Offset: 75,789,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1511585 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3116467","Offset: 75,793,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1511738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3124979","Offset: 75,797,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1511871 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3149969","Offset: 75,801,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1511999 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3156138","Offset: 75,805,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1512114 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3200691","Offset: 75,809,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1512246 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3201737","Offset: 75,813,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1512374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3205572","Offset: 75,817,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1512506 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3215305","Offset: 75,822,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1512630 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3215992","Offset: 75,826,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1512780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3219899","Offset: 75,830,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1512899 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3233933","Offset: 75,834,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1513027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3253517","Offset: 75,838,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1513155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3254234","Offset: 75,842,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1513283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3267994","Offset: 75,846,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1513424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3312034","Offset: 75,850,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1513556 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3312952","Offset: 75,854,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1513697 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3317401","Offset: 75,858,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1513829 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3325466","Offset: 75,863,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1513957 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3326191","Offset: 75,867,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1514081 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3329800","Offset: 75,871,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1514217 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3355708","Offset: 75,875,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1514337 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3362458","Offset: 75,879,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1514482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3423155","Offset: 75,883,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1514610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3424073","Offset: 75,887,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1514738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3427900","Offset: 75,891,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1514866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3438114","Offset: 75,895,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1514981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3439262","Offset: 75,899,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1515113 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3442851","Offset: 75,904,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1515246 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3468211","Offset: 75,908,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1515374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3475170","Offset: 75,912,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1515502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3534746","Offset: 75,916,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1515638 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3535557","Offset: 75,920,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1515758 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3537574","Offset: 75,924,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1515881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3540959","Offset: 75,928,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1516014 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3550916","Offset: 75,932,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1516142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3558758","Offset: 75,936,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1516270 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3573551","Offset: 75,940,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1516385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3583083","Offset: 75,944,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1516521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3588984","Offset: 75,949,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1516649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3645991","Offset: 75,953,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1516777 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3647130","Offset: 75,957,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1516905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3651410","Offset: 75,961,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1517042 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3660839","Offset: 75,965,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1517157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3668080","Offset: 75,969,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1517285 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3682893","Offset: 75,973,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1517417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3691453","Offset: 75,977,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1517545 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3697635","Offset: 75,981,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1517742 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3757005","Offset: 75,985,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1517925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3758439","Offset: 75,990,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1518062 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3760691","Offset: 75,994,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1518190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3762057","Offset: 75,998,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1518322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3779303","Offset: 76,002,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1518471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3780413","Offset: 76,006,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1518616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3801324","Offset: 76,010,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1518774 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3809315","Offset: 76,014,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1518906 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3815259","Offset: 76,018,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1519030 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3868059","Offset: 76,022,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1519145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3869151","Offset: 76,026,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1519278 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3872154","Offset: 76,030,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1519410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3873212","Offset: 76,035,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1519538 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3903420","Offset: 76,039,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1519662 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3909470","Offset: 76,043,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1519798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3979120","Offset: 76,047,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1519909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3980144","Offset: 76,051,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1520037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3982593","Offset: 76,055,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1520161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.3983945","Offset: 76,059,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1520310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4018813","Offset: 76,063,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1520468 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4024406","Offset: 76,067,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1520656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4089528","Offset: 76,071,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1520801 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4091094","Offset: 76,076,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1520933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4093552","Offset: 76,080,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1521065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4120855","Offset: 76,084,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1521181 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4121993","Offset: 76,088,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1521347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4129691","Offset: 76,092,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1521484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4200743","Offset: 76,096,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1521612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4201746","Offset: 76,100,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1521740 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4204161","Offset: 76,104,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1521876 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4212507","Offset: 76,108,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1522008 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4237907","Offset: 76,112,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1522141 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4238985","Offset: 76,116,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1522269 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4247386","Offset: 76,121,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1522397 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4311049","Offset: 76,125,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1522529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4312214","Offset: 76,129,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1522648 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4323270","Offset: 76,133,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1522776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4348409","Offset: 76,137,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1522904 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4355692","Offset: 76,141,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1523032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4421757","Offset: 76,145,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1523160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4424480","Offset: 76,149,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1523276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4445966","Offset: 76,153,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1523425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4454414","Offset: 76,157,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1523574 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4462295","Offset: 76,162,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1523702 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4532712","Offset: 76,166,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1523830 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4541297","Offset: 76,170,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1523963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4562058","Offset: 76,174,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1524095 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4570463","Offset: 76,178,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1524219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4578134","Offset: 76,182,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1524347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4643031","Offset: 76,186,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1524475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4652255","Offset: 76,190,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1524620 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4668114","Offset: 76,194,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1524752 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4680748","Offset: 76,198,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1524884 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4753465","Offset: 76,203,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1525033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4774782","Offset: 76,207,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1525174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.4777781","Offset: 76,211,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1525319 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5465023","Offset: 76,215,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1525473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5238816","Offset: 76,219,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1525588 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5415141","Offset: 76,223,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1525733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5413998","Offset: 76,227,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1525861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5417624","Offset: 76,231,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1525993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5417019","Offset: 76,235,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1526117 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5415423","Offset: 76,239,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1526254 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5417850","Offset: 76,243,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1526403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5427339","Offset: 76,248,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1526535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5426691","Offset: 76,252,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1526697 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5425543","Offset: 76,256,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1526847 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5429233","Offset: 76,260,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1526996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5428649","Offset: 76,264,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1527111 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5428086","Offset: 76,268,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1527235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5427489","Offset: 76,272,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1527389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5437566","Offset: 76,276,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1527598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5438027","Offset: 76,280,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1527730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5436235","Offset: 76,284,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1527879 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5439926","Offset: 76,289,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1528012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5439371","Offset: 76,293,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1528140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5438803","Offset: 76,297,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1528276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5438198","Offset: 76,301,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1528391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5448984","Offset: 76,305,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1528532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5448186","Offset: 76,309,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1528677 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5447051","Offset: 76,313,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1528805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5450708","Offset: 76,317,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1528933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5450158","Offset: 76,321,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1529048 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5449599","Offset: 76,325,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1529181 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5449009","Offset: 76,329,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1529309 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5459211","Offset: 76,334,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1529437 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5460363","Offset: 76,338,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1529565 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5470748","Offset: 76,342,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1529701 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5473983","Offset: 76,346,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1529816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5473514","Offset: 76,350,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1529940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5472506","Offset: 76,354,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1530068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5471973","Offset: 76,358,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1530222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5474217","Offset: 76,362,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1530435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5483386","Offset: 76,366,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1530563 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5482755","Offset: 76,370,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1530691 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5481210","Offset: 76,375,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1530815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5485233","Offset: 76,379,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1530947 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5484521","Offset: 76,383,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1531075 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5484022","Offset: 76,387,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1531203 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5483493","Offset: 76,391,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1531331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5493477","Offset: 76,395,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1531455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5492879","Offset: 76,399,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1531583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5491770","Offset: 76,403,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1531698 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5496553","Offset: 76,407,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1531830 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5495935","Offset: 76,411,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1531963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5495367","Offset: 76,416,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1532091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5494761","Offset: 76,420,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1532214 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5493383","Offset: 76,424,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1532351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5506025","Offset: 76,428,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1532466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5505321","Offset: 76,432,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1532594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5504165","Offset: 76,436,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1532722 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5508286","Offset: 76,440,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1532850 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5507732","Offset: 76,444,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1532978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5506857","Offset: 76,448,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1533093 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5506175","Offset: 76,452,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1533225 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5508726","Offset: 76,456,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1533358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5508111","Offset: 76,461,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1533486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5518603","Offset: 76,465,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1533614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5517946","Offset: 76,469,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1533767 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5516803","Offset: 76,473,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1533895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5521923","Offset: 76,477,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1534049 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5521330","Offset: 76,481,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1534181 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5520745","Offset: 76,485,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1534313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5520084","Offset: 76,489,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1534441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5519158","Offset: 76,493,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1534557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5518479","Offset: 76,497,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1534689 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5531356","Offset: 76,502,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1534817 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5530708","Offset: 76,506,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1534971 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5529551","Offset: 76,510,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1535116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5534351","Offset: 76,514,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1535261 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5533754","Offset: 76,518,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1535376 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5533208","Offset: 76,522,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1535504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5532611","Offset: 76,526,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1535636 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5531736","Offset: 76,530,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1535764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5531092","Offset: 76,534,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1535888 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5543913","Offset: 76,538,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1536003 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5543290","Offset: 76,542,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1536135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5542036","Offset: 76,547,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1536263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5546525","Offset: 76,551,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1536387 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5546857","Offset: 76,555,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1536515 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5545833","Offset: 76,559,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1536647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5545219","Offset: 76,563,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1536797 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5544348","Offset: 76,567,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1537023 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5543610","Offset: 76,571,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1537351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5556436","Offset: 76,575,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1537471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5555830","Offset: 76,579,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1537603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5554076","Offset: 76,583,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1537731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5559743","Offset: 76,588,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1537859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5559197","Offset: 76,592,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1537987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5558629","Offset: 76,596,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1538119 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5557981","Offset: 76,600,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1538230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5556483","Offset: 76,604,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1538358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5556850","Offset: 76,608,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1538486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5568801","Offset: 76,612,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1538614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5568178","Offset: 76,616,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1538738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5566437","Offset: 76,620,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1538853 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5572061","Offset: 76,624,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1538981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5571463","Offset: 76,628,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1539109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5570857","Offset: 76,633,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1539237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5569910","Offset: 76,637,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1539365 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5569330","Offset: 76,641,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1539502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5568690","Offset: 76,645,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1539677 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5581583","Offset: 76,649,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1539873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5580811","Offset: 76,653,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1540018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5578904","Offset: 76,657,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1540133 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5584174","Offset: 76,661,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1540265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5583598","Offset: 76,665,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1540393 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5582732","Offset: 76,669,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1540521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5582058","Offset: 76,674,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1540649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5581409","Offset: 76,678,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1540786 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5592971","Offset: 76,682,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1540901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5591547","Offset: 76,686,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1541025 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5590471","Offset: 76,690,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1541153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5594857","Offset: 76,694,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1541281 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5594277","Offset: 76,698,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1541409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5594972","Offset: 76,702,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1541520 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5593658","Offset: 76,706,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1541652 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5592993","Offset: 76,710,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1541784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5601731","Offset: 76,715,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1541912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5603246","Offset: 76,719,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1542036 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5602520","Offset: 76,723,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1542168 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5606450","Offset: 76,727,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1542288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5605801","Offset: 76,731,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1542416 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5604948","Offset: 76,735,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1542582 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5604202","Offset: 76,739,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1542710 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5614134","Offset: 76,743,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1542838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5613546","Offset: 76,747,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1542953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5612087","Offset: 76,751,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1543081 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5616020","Offset: 76,755,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1543227 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5615141","Offset: 76,760,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1543380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5614616","Offset: 76,764,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1543525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5614096","Offset: 76,768,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1543657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5624076","Offset: 76,772,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1543773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5623546","Offset: 76,776,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1543896 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5622642","Offset: 76,780,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1544024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5626764","Offset: 76,784,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1544152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5626188","Offset: 76,788,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1544276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5625539","Offset: 76,792,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1544391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5624968","Offset: 76,796,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1544524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5635147","Offset: 76,801,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1544656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5634520","Offset: 76,805,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1544801 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5632822","Offset: 76,809,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1544929 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5638347","Offset: 76,813,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1545083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5637762","Offset: 76,817,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1545198 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5637199","Offset: 76,821,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1545326 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5636338","Offset: 76,825,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1545458 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5635762","Offset: 76,829,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1545603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5635045","Offset: 76,833,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1545731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5647325","Offset: 76,837,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1545846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5647815","Offset: 76,841,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1545996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5645472","Offset: 76,846,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1546230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5650137","Offset: 76,850,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1546371 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5649569","Offset: 76,854,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1546486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5648763","Offset: 76,858,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1546610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5648182","Offset: 76,862,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1546742 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5647687","Offset: 76,866,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1546866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5657117","Offset: 76,870,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1546994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5659438","Offset: 76,874,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1547126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5657902","Offset: 76,878,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1547259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5662117","Offset: 76,882,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1547387 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5661302","Offset: 76,887,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1547515 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5660798","Offset: 76,891,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1547643 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5660308","Offset: 76,895,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1547796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5659711","Offset: 76,899,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1547916 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5668150","Offset: 76,903,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1548039 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5667161","Offset: 76,907,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1548167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5670587","Offset: 76,911,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1548295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5670130","Offset: 76,915,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1548423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5669576","Offset: 76,919,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1548539 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5668372","Offset: 76,923,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1548671 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5679324","Offset: 76,928,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1548850 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5678079","Offset: 76,932,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1549068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5677059","Offset: 76,936,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1549187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5680869","Offset: 76,940,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1549302 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5680426","Offset: 76,944,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1549409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5679926","Offset: 76,948,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1549533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5679333","Offset: 76,952,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1549648 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5688771","Offset: 76,956,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1549772 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5688207","Offset: 76,960,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1549900 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5687136","Offset: 76,964,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1550015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5690379","Offset: 76,968,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1550143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5689159","Offset: 76,973,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1550271 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5691429","Offset: 76,977,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1550399 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5690964","Offset: 76,981,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1550531 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5690401","Offset: 76,985,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1550642 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5701264","Offset: 76,989,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1550770 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5700329","Offset: 76,993,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1550898 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5704617","Offset: 76,997,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1551026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5704007","Offset: 77,001,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1551158 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5703359","Offset: 77,005,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1551273 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5701567","Offset: 77,009,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1551423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5702185","Offset: 77,014,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1551572 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5701695","Offset: 77,018,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1551726 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5714064","Offset: 77,022,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1551871 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5712750","Offset: 77,026,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1552003 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5711658","Offset: 77,030,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1552114 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5716876","Offset: 77,034,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1552246 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5715993","Offset: 77,038,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1552374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5715404","Offset: 77,042,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1552502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5714794","Offset: 77,046,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1552635 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5714068","Offset: 77,050,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1552750 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5724547","Offset: 77,054,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1552882 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5723916","Offset: 77,059,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1553010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5722836","Offset: 77,063,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1553159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5726826","Offset: 77,067,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1553287 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5726361","Offset: 77,071,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1553420 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5725878","Offset: 77,075,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1553535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5725242","Offset: 77,079,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1553663 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5734215","Offset: 77,083,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1553795 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5736656","Offset: 77,087,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1553919 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5742130","Offset: 77,091,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1554051 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5744379","Offset: 77,095,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1554166 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5743287","Offset: 77,100,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1554307 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5744669","Offset: 77,104,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1554456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5745177","Offset: 77,108,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1554606 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5751427","Offset: 77,112,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1554734 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5753330","Offset: 77,116,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1554866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5752033","Offset: 77,120,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1554985 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5755242","Offset: 77,124,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1555113 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5754721","Offset: 77,128,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1555259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5754209","Offset: 77,132,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1555468 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5753500","Offset: 77,136,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1555630 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5762132","Offset: 77,140,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1555762 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5761087","Offset: 77,145,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1555890 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5764901","Offset: 77,149,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1556035 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5764364","Offset: 77,153,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1556155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5763864","Offset: 77,157,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1556291 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5762845","Offset: 77,161,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1556419 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5762286","Offset: 77,165,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1556547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5773435","Offset: 77,169,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1556675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5772274","Offset: 77,173,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1556807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5771285","Offset: 77,177,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1556927 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5775239","Offset: 77,181,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1557055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5774761","Offset: 77,186,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1557183 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5774313","Offset: 77,190,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1557311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5773729","Offset: 77,194,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1557456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5783017","Offset: 77,198,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1557592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5782489","Offset: 77,202,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1557703 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5781584","Offset: 77,206,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1557836 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5785837","Offset: 77,210,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1557964 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5785283","Offset: 77,214,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1558126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5784617","Offset: 77,218,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1558339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5783999","Offset: 77,222,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1558493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5782847","Offset: 77,227,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1558621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5793001","Offset: 77,231,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1558749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5794768","Offset: 77,235,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1558868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5794196","Offset: 77,239,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1559005 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5796722","Offset: 77,243,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1559133 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5812423","Offset: 77,247,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1559261 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5811160","Offset: 77,251,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1559384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5810184","Offset: 77,255,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1559512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5441650","Offset: 77,259,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1559653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5814356","Offset: 77,263,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1559807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5813469","Offset: 77,267,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1559956 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5812953","Offset: 77,272,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1560084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5812351","Offset: 77,276,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1560229 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5824251","Offset: 77,280,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1560357 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5825667","Offset: 77,284,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1560489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5825109","Offset: 77,288,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1560635 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5828589","Offset: 77,292,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1560767 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5828095","Offset: 77,296,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1560891 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5827591","Offset: 77,300,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1561027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5826973","Offset: 77,304,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1561142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5826320","Offset: 77,308,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1561275 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5842123","Offset: 77,313,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1561403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5841449","Offset: 77,317,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1561531 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5840481","Offset: 77,321,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1561659 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5845127","Offset: 77,325,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1561787 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5844670","Offset: 77,329,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1561902 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5844184","Offset: 77,333,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1562030 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5843578","Offset: 77,337,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1562158 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5842717","Offset: 77,341,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1562286 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5842205","Offset: 77,345,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1562418 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5858312","Offset: 77,349,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1562550 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5857706","Offset: 77,353,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1562683 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5856741","Offset: 77,358,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1562823 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5859434","Offset: 77,362,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1562956 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5858815","Offset: 77,366,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1563084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5860918","Offset: 77,370,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1563212 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5860432","Offset: 77,374,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1563327 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5859881","Offset: 77,378,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1563455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5873697","Offset: 77,382,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1563583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5872494","Offset: 77,386,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1563711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5871559","Offset: 77,390,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1563843 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5875579","Offset: 77,394,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1563958 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5875088","Offset: 77,399,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1564091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5874482","Offset: 77,403,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1564219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5873901","Offset: 77,407,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1564347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5887265","Offset: 77,411,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1564487 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5886741","Offset: 77,415,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1564713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5885704","Offset: 77,419,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1564854 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5889936","Offset: 77,423,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1564982 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5889458","Offset: 77,427,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1565136 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5888950","Offset: 77,431,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1565268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5888383","Offset: 77,435,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1565400 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5887074","Offset: 77,440,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1565528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5902259","Offset: 77,444,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1565656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5901734","Offset: 77,448,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1565784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5900778","Offset: 77,452,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1565921 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5905253","Offset: 77,456,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1566036 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5904797","Offset: 77,460,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1566168 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5904098","Offset: 77,464,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1566296 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5903526","Offset: 77,468,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1566420 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5902775","Offset: 77,472,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1566552 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5902161","Offset: 77,476,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1566668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5918979","Offset: 77,480,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1566804 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5918433","Offset: 77,485,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1566932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5917277","Offset: 77,489,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1567060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5919952","Offset: 77,493,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1567188 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5919415","Offset: 77,497,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1567372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5921394","Offset: 77,501,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1567555 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5920703","Offset: 77,505,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1567692 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5920186","Offset: 77,509,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1567841 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5921428","Offset: 77,513,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1567977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5935355","Offset: 77,517,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1568140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5934791","Offset: 77,521,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1568276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5933264","Offset: 77,526,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1568404 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5937719","Offset: 77,530,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1568532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5937224","Offset: 77,534,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1568660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5936486","Offset: 77,538,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1568775 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5935748","Offset: 77,542,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1568925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5935218","Offset: 77,546,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1569053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5948530","Offset: 77,550,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1569176 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5950856","Offset: 77,554,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1569309 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5949494","Offset: 77,558,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1569424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5953723","Offset: 77,562,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1569573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5952848","Offset: 77,566,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1569705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5952375","Offset: 77,571,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1569829 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5951841","Offset: 77,575,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1569957 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5951031","Offset: 77,579,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1570089 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5965324","Offset: 77,583,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1570200 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5964723","Offset: 77,587,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1570333 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5963604","Offset: 77,591,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1570465 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5968511","Offset: 77,595,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1570589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5967960","Offset: 77,599,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1570725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5967385","Offset: 77,603,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1570840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5966711","Offset: 77,607,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1570973 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5966006","Offset: 77,612,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1571101 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5980598","Offset: 77,616,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1571229 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5979980","Offset: 77,620,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1571357 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5978853","Offset: 77,624,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1571502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5981038","Offset: 77,628,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1571621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5983492","Offset: 77,632,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1571749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5982903","Offset: 77,636,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1571881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5982233","Offset: 77,640,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1572027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5981562","Offset: 77,644,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1572159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5993855","Offset: 77,648,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1572274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5996031","Offset: 77,652,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1572406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5995259","Offset: 77,657,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1572534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5998613","Offset: 77,661,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1572667 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5997921","Offset: 77,665,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1572790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5997094","Offset: 77,669,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1572923 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5996590","Offset: 77,673,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1573038 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.5996095","Offset: 77,677,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1573166 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6011169","Offset: 77,681,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1573298 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6010009","Offset: 77,685,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1573430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6009096","Offset: 77,689,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1573571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6013102","Offset: 77,693,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1573772 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6012368","Offset: 77,698,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1573955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6011792","Offset: 77,702,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1574100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6011233","Offset: 77,706,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1574232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6025105","Offset: 77,710,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1574348 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6024477","Offset: 77,714,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1574476 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6023372","Offset: 77,718,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1574604 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6027954","Offset: 77,722,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1574732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6027399","Offset: 77,726,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1574872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6026816","Offset: 77,730,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1575009 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6026132","Offset: 77,734,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1575146 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6024954","Offset: 77,739,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1575274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6040792","Offset: 77,743,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1575402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6040097","Offset: 77,747,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1575530 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6038382","Offset: 77,751,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1575658 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6041804","Offset: 77,755,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1575773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6041177","Offset: 77,759,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1575901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6043293","Offset: 77,763,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1576029 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6042811","Offset: 77,767,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1576157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6041808","Offset: 77,771,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1576310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6063748","Offset: 77,775,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1576447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6062612","Offset: 77,779,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1576643 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6066854","Offset: 77,784,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1576844 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6066188","Offset: 77,788,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1576989 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6065552","Offset: 77,792,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1577108 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6064981","Offset: 77,796,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1577236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6064285","Offset: 77,800,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1577432 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6076279","Offset: 77,804,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1577560 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6075626","Offset: 77,808,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1577693 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6074499","Offset: 77,812,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1577808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6078736","Offset: 77,816,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1577940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6076616","Offset: 77,820,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1578068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6078007","Offset: 77,825,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1578192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6076931","Offset: 77,829,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1578316 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6087683","Offset: 77,833,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1578448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6086450","Offset: 77,837,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1578559 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6085337","Offset: 77,841,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1578687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6090401","Offset: 77,845,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1578815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6089488","Offset: 77,849,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1578956 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6088895","Offset: 77,853,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1579092 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6088298","Offset: 77,857,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1579207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6087658","Offset: 77,861,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1579335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6100194","Offset: 77,865,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1579468 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6099536","Offset: 77,870,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1579596 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6098768","Offset: 77,874,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1579719 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6097557","Offset: 77,878,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1579864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6102506","Offset: 77,882,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1579980 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6101942","Offset: 77,886,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1580125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6101277","Offset: 77,890,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1580253 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6103542","Offset: 77,894,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1580376 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6102481","Offset: 77,898,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1580509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6109772","Offset: 77,902,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1580624 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6108863","Offset: 77,906,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1580760 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6111599","Offset: 77,911,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1580888 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6111006","Offset: 77,915,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1581016 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6109943","Offset: 77,919,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1581162 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6117878","Offset: 77,923,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1581290 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6119393","Offset: 77,927,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1581405 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6118676","Offset: 77,931,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1581533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6122636","Offset: 77,935,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1581661 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6122073","Offset: 77,939,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1581784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6121493","Offset: 77,943,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1581917 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6120861","Offset: 77,947,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1582032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6120161","Offset: 77,952,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1582164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6132415","Offset: 77,956,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1582288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6130832","Offset: 77,960,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1582420 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6131660","Offset: 77,964,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1582544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6134877","Offset: 77,968,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1582676 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6136529","Offset: 77,972,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1582783 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6146197","Offset: 77,976,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1582911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6145574","Offset: 77,980,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1583039 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6144460","Offset: 77,984,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1583346 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6148125","Offset: 77,988,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1583483 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6147515","Offset: 77,992,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1583602 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6146837","Offset: 77,997,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1583734 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6146116","Offset: 78,001,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1583914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6157878","Offset: 78,005,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1584118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6156531","Offset: 78,009,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1584246 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6155400","Offset: 78,013,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1584391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6158805","Offset: 78,017,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1584549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6158084","Offset: 78,021,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1584694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6160362","Offset: 78,025,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1584818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6159415","Offset: 78,029,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1584938 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6158749","Offset: 78,033,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1585066 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6168408","Offset: 78,038,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1585194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6167764","Offset: 78,042,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1585326 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6166659","Offset: 78,046,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1585479 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6170154","Offset: 78,050,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1585612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6169492","Offset: 78,054,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1585727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6170883","Offset: 78,058,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1585851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6170256","Offset: 78,062,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1585983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6168469","Offset: 78,066,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1586107 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6180654","Offset: 78,070,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1586235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6180031","Offset: 78,074,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1586346 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6178960","Offset: 78,078,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1586474 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6184285","Offset: 78,083,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1586614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6183577","Offset: 78,087,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1586887 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6182724","Offset: 78,091,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1587088 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6180565","Offset: 78,095,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1587203 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6181866","Offset: 78,099,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1587310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6180893","Offset: 78,103,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1587442 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6193390","Offset: 78,107,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1587557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6192780","Offset: 78,111,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1587668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6191040","Offset: 78,115,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1587775 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6196590","Offset: 78,119,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1587886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6196061","Offset: 78,124,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1587997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6195485","Offset: 78,128,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1588120 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6194893","Offset: 78,132,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1588236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6194047","Offset: 78,136,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1588342 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6193391","Offset: 78,140,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1588479 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6205529","Offset: 78,144,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1588607 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6204923","Offset: 78,148,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1588739 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6203238","Offset: 78,152,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1588863 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6208789","Offset: 78,156,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1588974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6208234","Offset: 78,160,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1589106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6207654","Offset: 78,164,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1589234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6206771","Offset: 78,169,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1589358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6206177","Offset: 78,173,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1589482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6205409","Offset: 78,177,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1589597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6218487","Offset: 78,181,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1589725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6217736","Offset: 78,185,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1589857 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6215901","Offset: 78,189,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1589985 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6220582","Offset: 78,193,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1590130 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6220083","Offset: 78,197,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1590284 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6219447","Offset: 78,201,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1590395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6218815","Offset: 78,205,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1590523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6218329","Offset: 78,210,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1590651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6238382","Offset: 78,214,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1590779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6237281","Offset: 78,218,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1590902 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6240657","Offset: 78,222,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1591013 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6239974","Offset: 78,226,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1591146 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6243165","Offset: 78,230,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1591274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6247807","Offset: 78,234,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1591402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6248997","Offset: 78,238,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1591530 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6250324","Offset: 78,242,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1591658 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6258128","Offset: 78,246,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1591773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6257002","Offset: 78,251,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1591896 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6258696","Offset: 78,255,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1592024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6259955","Offset: 78,259,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1592152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6260557","Offset: 78,263,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1592280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6268497","Offset: 78,267,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1592408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6270251","Offset: 78,271,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1592541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6269593","Offset: 78,275,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1592716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6272498","Offset: 78,279,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1592891 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6278455","Offset: 78,283,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1593266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6282854","Offset: 78,287,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1593390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6284091","Offset: 78,291,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1593757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6292701","Offset: 78,296,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1593979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6293947","Offset: 78,300,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1594141 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6294327","Offset: 78,304,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1594260 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6302613","Offset: 78,308,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1594388 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6303479","Offset: 78,312,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1594520 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6305839","Offset: 78,316,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1594644 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6422379","Offset: 78,320,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1594768 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6452492","Offset: 78,324,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1594883 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6451597","Offset: 78,328,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1595015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6454323","Offset: 78,332,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1595165 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6455108","Offset: 78,337,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1595310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6454566","Offset: 78,341,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1595434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6452872","Offset: 78,345,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1595566 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6455398","Offset: 78,349,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1595694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6476454","Offset: 78,353,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1596103 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6487049","Offset: 78,357,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1596231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6490953","Offset: 78,361,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1596359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6491985","Offset: 78,365,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1596492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6498939","Offset: 78,369,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1596615 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6500898","Offset: 78,373,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1596765 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6500121","Offset: 78,377,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1596888 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6501334","Offset: 78,382,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1597008 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6508761","Offset: 78,386,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1597136 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6510545","Offset: 78,390,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1597260 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6511189","Offset: 78,394,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1597383 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6518899","Offset: 78,398,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1597516 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6519974","Offset: 78,402,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1597652 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6522842","Offset: 78,406,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1597797 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6527646","Offset: 78,410,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1597930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6530372","Offset: 78,414,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1598058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6536571","Offset: 78,418,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1598194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6537719","Offset: 78,423,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1598309 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6546658","Offset: 78,427,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1598433 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6547938","Offset: 78,431,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1598561 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6551637","Offset: 78,435,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1598689 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6558647","Offset: 78,439,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1598830 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6560354","Offset: 78,443,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1598945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6569544","Offset: 78,447,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1599077 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6572489","Offset: 78,451,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1599248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6581615","Offset: 78,455,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1599380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6605705","Offset: 78,459,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1599495 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6603721","Offset: 78,464,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1599619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6608188","Offset: 78,468,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1599743 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6607565","Offset: 78,472,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1599871 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6606617","Offset: 78,476,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1600012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6606843","Offset: 78,480,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1600131 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6605892","Offset: 78,484,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1600263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6616939","Offset: 78,488,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1600391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6616414","Offset: 78,492,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1600524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6615483","Offset: 78,496,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1600647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6619047","Offset: 78,500,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1600780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6618449","Offset: 78,504,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1600903 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6617767","Offset: 78,509,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1601036 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6617002","Offset: 78,513,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1601172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6640858","Offset: 78,517,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1601300 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6639932","Offset: 78,521,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1601424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6643110","Offset: 78,525,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1601539 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6642594","Offset: 78,529,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1601667 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6641946","Offset: 78,533,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1601795 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6641144","Offset: 78,537,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1601944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6657929","Offset: 78,541,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1602090 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6656977","Offset: 78,545,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1602452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6660510","Offset: 78,550,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1602597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6659985","Offset: 78,554,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1602717 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6659306","Offset: 78,558,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1602853 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6658757","Offset: 78,562,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1602981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6674829","Offset: 78,566,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1603114 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6673860","Offset: 78,570,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1603242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6677273","Offset: 78,574,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1603374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6676505","Offset: 78,578,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1603493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6675866","Offset: 78,582,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1603617 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6675298","Offset: 78,586,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1603749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6692433","Offset: 78,590,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1603877 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6691495","Offset: 78,595,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1604001 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6693487","Offset: 78,599,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1604116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6692890","Offset: 78,603,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1604248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6694447","Offset: 78,607,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1604372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6695791","Offset: 78,611,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1604500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6712977","Offset: 78,615,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1604628 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6712034","Offset: 78,619,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1604760 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6714817","Offset: 78,623,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1604876 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6714240","Offset: 78,627,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1605187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6715094","Offset: 78,631,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1605311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6728384","Offset: 78,636,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1605464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2198693","Offset: 78,640,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1605592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6861859","Offset: 78,644,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1605716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6863301","Offset: 78,648,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1605853 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6865690","Offset: 78,652,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1605968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6867076","Offset: 78,656,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1606096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6878170","Offset: 78,660,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1606228 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6879156","Offset: 78,664,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1606356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6881869","Offset: 78,668,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1606480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6882863","Offset: 78,672,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1606591 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6893581","Offset: 78,676,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1606723 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6894588","Offset: 78,681,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1606851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6897024","Offset: 78,685,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1606979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6898535","Offset: 78,689,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1607103 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6909346","Offset: 78,693,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1607235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6910362","Offset: 78,697,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1607346 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6912913","Offset: 78,701,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1607474 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6914036","Offset: 78,705,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1607598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6924903","Offset: 78,709,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1607726 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6926106","Offset: 78,713,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1607850 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6928461","Offset: 78,717,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1607960 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6929520","Offset: 78,722,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1608110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6940267","Offset: 78,726,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1608238 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6941329","Offset: 78,730,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1608366 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6944141","Offset: 78,734,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1608490 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6945109","Offset: 78,738,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1608622 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6955883","Offset: 78,742,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1608737 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6956903","Offset: 78,746,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1608861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6959518","Offset: 78,750,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1608989 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6960760","Offset: 78,754,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1609138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6978727","Offset: 78,758,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1609296 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6979785","Offset: 78,763,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1609420 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6982212","Offset: 78,767,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1609552 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6983173","Offset: 78,771,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1609684 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6994492","Offset: 78,775,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1609812 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6996028","Offset: 78,779,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1609940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.6997057","Offset: 78,783,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1610072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7001238","Offset: 78,787,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1610188 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7010773","Offset: 78,791,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1610311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7011824","Offset: 78,795,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1610439 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7014362","Offset: 78,799,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1610589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7015330","Offset: 78,803,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1610712 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7025567","Offset: 78,808,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1610828 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7026846","Offset: 78,812,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1610960 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7028032","Offset: 78,816,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1611088 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7033165","Offset: 78,820,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1611212 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7040632","Offset: 78,824,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1611340 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7041673","Offset: 78,828,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1611489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7043939","Offset: 78,832,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1611608 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7044942","Offset: 78,836,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1611937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7054913","Offset: 78,840,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1612056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7056103","Offset: 78,844,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1612184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7060716","Offset: 78,849,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1612312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7066237","Offset: 78,853,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1612440 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7070162","Offset: 78,857,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1612573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7071429","Offset: 78,861,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1612688 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7080747","Offset: 78,865,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1612812 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7081784","Offset: 78,869,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1612940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7084105","Offset: 78,873,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1613072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7085103","Offset: 78,877,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1613196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7095330","Offset: 78,881,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1613311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7096564","Offset: 78,885,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1613439 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7098816","Offset: 78,889,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1613571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7099943","Offset: 78,894,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1613699 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7110482","Offset: 78,898,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1613840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7111557","Offset: 78,902,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1613976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7114220","Offset: 78,906,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1614096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7115380","Offset: 78,910,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1614220 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7125530","Offset: 78,914,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1614343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7126636","Offset: 78,918,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1614668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7128738","Offset: 78,922,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1614796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7129976","Offset: 78,926,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1614936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7140263","Offset: 78,930,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1615090 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7141206","Offset: 78,935,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1615210 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7142477","Offset: 78,939,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1615333 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7145567","Offset: 78,943,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1615466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7155716","Offset: 78,947,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1615594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7156864","Offset: 78,951,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1615722 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7157884","Offset: 78,955,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1615837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7162104","Offset: 78,959,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1615969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7170326","Offset: 78,963,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1616114 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7171606","Offset: 78,967,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1616276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7173287","Offset: 78,971,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1616404 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7175668","Offset: 78,976,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1616549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7185016","Offset: 78,980,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1616690 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7186117","Offset: 78,984,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1616822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7188490","Offset: 78,988,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1616950 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7189659","Offset: 78,992,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1617078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7200261","Offset: 78,996,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1617206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7201281","Offset: 79,000,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1617339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7203589","Offset: 79,004,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1617492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7204600","Offset: 79,008,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1617633 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7215071","Offset: 79,012,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1617770 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7216581","Offset: 79,016,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1617893 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7217627","Offset: 79,021,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1618026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7220553","Offset: 79,025,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1618141 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7229931","Offset: 79,029,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1618264 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7230917","Offset: 79,033,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1618397 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7233767","Offset: 79,037,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1618525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7234834","Offset: 79,041,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1618648 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7245928","Offset: 79,045,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1618764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7246998","Offset: 79,049,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1618892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7249302","Offset: 79,053,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1619024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7250736","Offset: 79,057,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1619152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7261018","Offset: 79,062,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1619280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7262123","Offset: 79,066,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1619434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7263109","Offset: 79,070,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1619553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7267303","Offset: 79,074,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1619681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7275687","Offset: 79,078,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1619809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7277134","Offset: 79,082,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1619937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7278128","Offset: 79,086,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1620065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7282386","Offset: 79,090,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1620180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7291192","Offset: 79,094,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1620312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7292319","Offset: 79,098,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1620440 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7293979","Offset: 79,102,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1620568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7296270","Offset: 79,107,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1620696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7308426","Offset: 79,111,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1620829 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7306625","Offset: 79,115,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1621162 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7309005","Offset: 79,119,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1621302 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7310273","Offset: 79,123,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1621418 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7320389","Offset: 79,127,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1621546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7321524","Offset: 79,131,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1621678 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7323909","Offset: 79,135,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1621802 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7324869","Offset: 79,139,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1621934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7335945","Offset: 79,143,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1622049 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7336982","Offset: 79,148,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1622177 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7337985","Offset: 79,152,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1622301 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7340762","Offset: 79,156,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1622612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7350107","Offset: 79,160,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1622774 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7351105","Offset: 79,164,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1622890 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7353750","Offset: 79,168,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1623026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7362173","Offset: 79,172,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1623154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7363244","Offset: 79,176,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1623282 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7365522","Offset: 79,180,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1623406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7366512","Offset: 79,184,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1623538 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7377767","Offset: 79,188,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1623875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7378595","Offset: 79,193,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1624020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7380972","Offset: 79,197,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1624157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7381927","Offset: 79,201,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1624285 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7392615","Offset: 79,205,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1624413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7393908","Offset: 79,209,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1624541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7395154","Offset: 79,213,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1624673 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7398435","Offset: 79,217,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1624788 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7407340","Offset: 79,221,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1624912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7408393","Offset: 79,225,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1625066 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7410646","Offset: 79,229,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1625189 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7411786","Offset: 79,234,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1625317 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7422504","Offset: 79,238,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1625432 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7423553","Offset: 79,242,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1625607 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7425823","Offset: 79,246,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1625765 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7426689","Offset: 79,250,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1625915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7437897","Offset: 79,254,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1626043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7438942","Offset: 79,258,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1626175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7439604","Offset: 79,262,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1626290 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7443909","Offset: 79,266,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1626418 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7452037","Offset: 79,270,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1626546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7453633","Offset: 79,275,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1626674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7454273","Offset: 79,279,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1626798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7456393","Offset: 79,283,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1626913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7466459","Offset: 79,287,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1627041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7468929","Offset: 79,291,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1627169 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7470141","Offset: 79,295,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1627301 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7478209","Offset: 79,299,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1627425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7480641","Offset: 79,303,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1627562 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7481592","Offset: 79,307,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1627681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7489900","Offset: 79,311,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1627822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7492306","Offset: 79,315,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1627954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7493373","Offset: 79,320,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1628082 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7501539","Offset: 79,324,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1628206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7503984","Offset: 79,328,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1628321 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7505196","Offset: 79,332,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1628449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7513725","Offset: 79,336,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1628577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7516733","Offset: 79,340,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1628705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7517663","Offset: 79,344,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1628833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7525812","Offset: 79,348,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1628961 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7527980","Offset: 79,352,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1629076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7529678","Offset: 79,356,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1629200 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7540379","Offset: 79,361,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1629324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7541914","Offset: 79,365,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1629452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7541270","Offset: 79,369,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1629575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7543187","Offset: 79,373,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1629686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7554352","Offset: 79,377,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1629836 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7555290","Offset: 79,381,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1629981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7556801","Offset: 79,385,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1630297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7560841","Offset: 79,389,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1630425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7569046","Offset: 79,393,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1630557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7570070","Offset: 79,397,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1630681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7572365","Offset: 79,401,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1630796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7573757","Offset: 79,406,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1630928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7584104","Offset: 79,410,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1631056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7585128","Offset: 79,414,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1631184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7587449","Offset: 79,418,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1631325 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7588455","Offset: 79,422,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1631461 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7599485","Offset: 79,426,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1631577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7600526","Offset: 79,430,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1631705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7602817","Offset: 79,434,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1631833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7603785","Offset: 79,438,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1631961 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7614627","Offset: 79,442,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1632084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7615626","Offset: 79,447,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1632195 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7616466","Offset: 79,451,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1632353 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7620656","Offset: 79,455,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1632481 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7629450","Offset: 79,459,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1632613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7630530","Offset: 79,463,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1632737 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7631532","Offset: 79,467,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1633066 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7635969","Offset: 79,471,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1633189 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7644153","Offset: 79,475,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1633305 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7645330","Offset: 79,479,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1633441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7647587","Offset: 79,483,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1633573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7648514","Offset: 79,488,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1633701 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7659121","Offset: 79,492,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1633834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7660221","Offset: 79,496,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1633979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7661253","Offset: 79,500,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1634111 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7664291","Offset: 79,504,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1634235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7673413","Offset: 79,508,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1634384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7674420","Offset: 79,512,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1634512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7675824","Offset: 79,516,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1634640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7679033","Offset: 79,520,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1634768 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7686977","Offset: 79,524,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1634922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7688927","Offset: 79,528,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1635050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7690996","Offset: 79,533,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1635182 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7699171","Offset: 79,537,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1635310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7701160","Offset: 79,541,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1635438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7703562","Offset: 79,545,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1635553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7712629","Offset: 79,549,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1635677 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7713512","Offset: 79,553,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1635809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7715287","Offset: 79,557,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1635941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7717668","Offset: 79,561,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1636065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7727545","Offset: 79,565,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1636180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7728411","Offset: 79,569,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1636313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7730676","Offset: 79,574,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1636445 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7731577","Offset: 79,578,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1636573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7742896","Offset: 79,582,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1636697 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7743758","Offset: 79,586,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1636846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7745989","Offset: 79,590,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1636978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7747240","Offset: 79,594,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1637102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7758772","Offset: 79,598,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1637238 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7760446","Offset: 79,602,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1637375 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7761422","Offset: 79,606,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1637524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7762208","Offset: 79,610,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1637639 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7771023","Offset: 79,614,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1637776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7773185","Offset: 79,619,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1637908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7775464","Offset: 79,623,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1638036 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7783409","Offset: 79,627,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1638164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7785828","Offset: 79,631,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1638297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7787785","Offset: 79,635,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1638416 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7795142","Offset: 79,639,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1638544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7797736","Offset: 79,643,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1638668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7799583","Offset: 79,647,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1638796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7808270","Offset: 79,651,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1638924 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7809396","Offset: 79,655,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1639056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7813612","Offset: 79,660,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1639188 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7821425","Offset: 79,664,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1639325 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7822585","Offset: 79,668,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1639474 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7823135","Offset: 79,672,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1639598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7827389","Offset: 79,676,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1639922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7835961","Offset: 79,680,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1640054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7837024","Offset: 79,684,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1640170 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7838354","Offset: 79,688,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1640310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7842809","Offset: 79,692,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1640438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7848795","Offset: 79,696,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1640566 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7850959","Offset: 79,700,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1640690 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7854009","Offset: 79,705,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1640822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7862679","Offset: 79,709,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1640938 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7863818","Offset: 79,713,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1641066 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7864867","Offset: 79,717,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1641194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7869040","Offset: 79,721,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1641339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7877697","Offset: 79,725,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1641462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7878927","Offset: 79,729,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1641578 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7880155","Offset: 79,733,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1641710 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7883325","Offset: 79,737,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1641838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7892370","Offset: 79,741,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1641966 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7893403","Offset: 79,746,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1642115 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7895720","Offset: 79,750,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1642269 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7897094","Offset: 79,754,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1642414 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7907082","Offset: 79,758,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1642725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7908473","Offset: 79,762,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1642858 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7909121","Offset: 79,766,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1642986 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7911152","Offset: 79,770,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1643118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7922591","Offset: 79,774,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1643246 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7923667","Offset: 79,778,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1643378 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7925958","Offset: 79,782,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1643493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7927072","Offset: 79,787,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1643638 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7937461","Offset: 79,791,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1643771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7938685","Offset: 79,795,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1643894 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7940990","Offset: 79,799,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1644022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7941933","Offset: 79,803,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1644138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7952705","Offset: 79,807,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1644270 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7953768","Offset: 79,811,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1644398 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7955005","Offset: 79,815,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1644530 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7957787","Offset: 79,819,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1644654 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7967989","Offset: 79,823,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1644790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7969030","Offset: 79,827,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1644910 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7970122","Offset: 79,832,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1645034 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7974393","Offset: 79,836,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1645162 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7982956","Offset: 79,840,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1645290 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7984074","Offset: 79,844,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1645413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7984766","Offset: 79,848,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1645529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7989027","Offset: 79,852,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1645682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7997143","Offset: 79,856,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1645810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7998722","Offset: 79,860,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1645942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.7999810","Offset: 79,864,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1646066 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8002656","Offset: 79,868,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1646198 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8012981","Offset: 79,873,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1646331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8014005","Offset: 79,877,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1646459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8016513","Offset: 79,881,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1646587 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8017627","Offset: 79,885,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1646715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8027654","Offset: 79,889,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1646843 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8028703","Offset: 79,893,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1646954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8031020","Offset: 79,897,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1647086 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8032031","Offset: 79,901,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1647218 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8061536","Offset: 79,905,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1647346 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8071592","Offset: 79,909,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1647474 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8112450","Offset: 79,913,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1647623 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8113432","Offset: 79,918,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1647756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8116588","Offset: 79,922,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1647884 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8117890","Offset: 79,926,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1648012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8129179","Offset: 79,930,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1648140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8130297","Offset: 79,934,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1648268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8132614","Offset: 79,938,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1648383 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8133630","Offset: 79,942,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1648511 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8150837","Offset: 79,946,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1648635 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8152360","Offset: 79,950,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1648767 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8154767","Offset: 79,954,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1648895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8155744","Offset: 79,959,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1649202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8166859","Offset: 79,963,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1649343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8167946","Offset: 79,967,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1649458 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8170549","Offset: 79,971,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1649595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8171577","Offset: 79,975,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1649718 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8182701","Offset: 79,979,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1649851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8183720","Offset: 79,983,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1649974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8186247","Offset: 79,987,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1650107 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8187675","Offset: 79,991,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1650222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8198287","Offset: 79,995,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1650363 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8199353","Offset: 80,000,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1650503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8201782","Offset: 80,004,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1650644 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8202767","Offset: 80,008,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1650768 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8217683","Offset: 80,012,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1650900 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8216220","Offset: 80,016,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1651033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8218928","Offset: 80,020,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1651161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8218207","Offset: 80,024,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1651289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8221279","Offset: 80,028,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1651417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8232607","Offset: 80,032,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1651566 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8234024","Offset: 80,036,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1651856 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8235206","Offset: 80,040,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1652001 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8238445","Offset: 80,045,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1652116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8248391","Offset: 80,049,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1652244 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8249479","Offset: 80,053,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1652377 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8259163","Offset: 80,057,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1652505 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8260452","Offset: 80,061,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1652637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8291266","Offset: 80,065,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1652756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8297799","Offset: 80,069,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1652880 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8337359","Offset: 80,073,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1653012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8338426","Offset: 80,077,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1653162 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8340989","Offset: 80,081,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1653290 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8342329","Offset: 80,086,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1653405 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8359503","Offset: 80,090,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1653537 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8360595","Offset: 80,094,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1653665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8363501","Offset: 80,098,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1653793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8373011","Offset: 80,102,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1653921 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8374074","Offset: 80,106,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1654053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8375277","Offset: 80,110,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1654173 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8378204","Offset: 80,114,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1654297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8388448","Offset: 80,118,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1654442 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8389638","Offset: 80,122,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1654570 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8392070","Offset: 80,126,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1654693 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8393155","Offset: 80,131,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1654809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8404196","Offset: 80,135,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1654941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8405220","Offset: 80,139,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1655069 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8407904","Offset: 80,143,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1655197 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8409406","Offset: 80,147,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1655321 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8419710","Offset: 80,151,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1655453 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8420772","Offset: 80,155,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1655568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8423328","Offset: 80,159,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1655692 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8424365","Offset: 80,163,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1655824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8435975","Offset: 80,167,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1655952 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8436990","Offset: 80,172,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1656076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8439503","Offset: 80,176,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1656191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8440600","Offset: 80,180,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1656319 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8451296","Offset: 80,184,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1656447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8452832","Offset: 80,188,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1656579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8453908","Offset: 80,192,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1656707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8458255","Offset: 80,196,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1656839 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8466644","Offset: 80,200,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1656950 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8475463","Offset: 80,204,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1657078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8497543","Offset: 80,208,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1657228 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8504203","Offset: 80,212,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1657356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8562208","Offset: 80,217,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1657479 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8563305","Offset: 80,221,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1657595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8565869","Offset: 80,225,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1657727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8574867","Offset: 80,229,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1657863 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8586111","Offset: 80,233,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1658017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8587198","Offset: 80,237,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1658149 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8589511","Offset: 80,241,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1658465 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8590309","Offset: 80,245,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1658614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8601151","Offset: 80,249,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1658734 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8602456","Offset: 80,253,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1658870 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8604828","Offset: 80,258,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1658998 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8605835","Offset: 80,262,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1659126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8617070","Offset: 80,266,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1659250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8618132","Offset: 80,270,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1659382 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8620594","Offset: 80,274,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1659498 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8621783","Offset: 80,278,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1659621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8632391","Offset: 80,282,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1659771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8633432","Offset: 80,286,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1659899 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8636068","Offset: 80,290,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1660039 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8645319","Offset: 80,294,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1660155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8646739","Offset: 80,299,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1660287 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8648007","Offset: 80,303,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1660415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8651301","Offset: 80,307,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1660543 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8661080","Offset: 80,311,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1660671 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8662112","Offset: 80,315,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1660803 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8664724","Offset: 80,319,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1660923 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8665730","Offset: 80,323,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1661324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8676265","Offset: 80,327,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1661456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8677404","Offset: 80,331,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1661584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8679640","Offset: 80,335,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1661712 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8688182","Offset: 80,339,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1661840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8718633","Offset: 80,344,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1661972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8724944","Offset: 80,348,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1662087 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8795771","Offset: 80,352,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1662220 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8796909","Offset: 80,356,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1662352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8799559","Offset: 80,360,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1662663 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8800618","Offset: 80,364,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1662809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8812184","Offset: 80,368,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1662924 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8813161","Offset: 80,372,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1663073 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8815883","Offset: 80,376,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1663205 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8816950","Offset: 80,380,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1663333 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8826819","Offset: 80,385,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1663474 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8827843","Offset: 80,389,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1663606 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8831419","Offset: 80,393,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1663730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8839986","Offset: 80,397,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1663854 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8841249","Offset: 80,401,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1663982 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8843518","Offset: 80,405,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1664110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8844781","Offset: 80,409,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1664234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8855827","Offset: 80,413,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1664349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8857129","Offset: 80,417,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1664477 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8859399","Offset: 80,421,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1664605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8860453","Offset: 80,425,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1664733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8871828","Offset: 80,430,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1664874 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8873078","Offset: 80,434,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1665010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8874111","Offset: 80,438,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1665125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8878352","Offset: 80,442,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1665253 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8886928","Offset: 80,446,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1665394 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8888302","Offset: 80,450,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1665543 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8890585","Offset: 80,454,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1665881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8891347","Offset: 80,458,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1666004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8923638","Offset: 80,462,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1666141 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.8930482","Offset: 80,466,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1666269 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9019263","Offset: 80,471,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1666414 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9020807","Offset: 80,475,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1666538 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9022074","Offset: 80,479,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1666670 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9026290","Offset: 80,483,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1666785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9035412","Offset: 80,487,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1666913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9036504","Offset: 80,491,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1667041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9039244","Offset: 80,495,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1667169 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9040285","Offset: 80,499,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1667310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9050798","Offset: 80,503,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1667421 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9051873","Offset: 80,507,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1667788 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9054151","Offset: 80,512,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1667911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9055632","Offset: 80,516,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1668044 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9066610","Offset: 80,520,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1668167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9067630","Offset: 80,524,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1668295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9070250","Offset: 80,528,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1668419 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9071295","Offset: 80,532,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1668534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9081996","Offset: 80,536,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1668667 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9083216","Offset: 80,540,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1668795 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9085660","Offset: 80,544,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1668923 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9086757","Offset: 80,548,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1669051 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9097441","Offset: 80,552,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1669183 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9098525","Offset: 80,557,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1669298 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9101268","Offset: 80,561,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1669443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9102228","Offset: 80,565,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1669571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9113484","Offset: 80,569,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1669716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9122098","Offset: 80,573,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1669844 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9146056","Offset: 80,577,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1669959 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9154244","Offset: 80,581,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1670087 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9160482","Offset: 80,585,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1670215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9243221","Offset: 80,589,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1670553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9244065","Offset: 80,593,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1670689 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9246484","Offset: 80,598,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1670817 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9247846","Offset: 80,602,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1670945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9259626","Offset: 80,606,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1671060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9260637","Offset: 80,610,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1671193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9264852","Offset: 80,614,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1671321 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9272314","Offset: 80,618,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1671449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9273466","Offset: 80,622,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1671577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9276086","Offset: 80,626,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1671705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9277097","Offset: 80,630,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1671820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9286642","Offset: 80,634,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1671943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9289373","Offset: 80,638,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1672089 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9290333","Offset: 80,643,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1672234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9300197","Offset: 80,647,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1672357 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9301209","Offset: 80,651,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1672473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9303499","Offset: 80,655,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1672605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9304451","Offset: 80,659,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1672733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9315852","Offset: 80,663,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1672865 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9316880","Offset: 80,667,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1672989 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9318565","Offset: 80,671,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1673121 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9323050","Offset: 80,675,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1673236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9336593","Offset: 80,679,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1673364 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9337757","Offset: 80,684,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1673497 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9360818","Offset: 80,688,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1673629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9369680","Offset: 80,692,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1673753 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9375820","Offset: 80,696,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1673863 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9466398","Offset: 80,700,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1673996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9467472","Offset: 80,704,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1674145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9470007","Offset: 80,708,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1674286 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9473100","Offset: 80,712,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1674414 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9483212","Offset: 80,716,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1674546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9484249","Offset: 80,720,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1674666 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9486770","Offset: 80,724,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1674789 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9487906","Offset: 80,729,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1674913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9498798","Offset: 80,733,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1675058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9499963","Offset: 80,737,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1675207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9502353","Offset: 80,741,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1675323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9503376","Offset: 80,745,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1675451 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9514154","Offset: 80,749,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1675583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9515246","Offset: 80,753,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1675715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9518092","Offset: 80,757,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1675843 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9519078","Offset: 80,761,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1675975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9530146","Offset: 80,765,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1676095 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9531174","Offset: 80,770,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1676236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9533699","Offset: 80,774,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1676368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9534911","Offset: 80,778,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1676496 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9545463","Offset: 80,782,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1676620 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9553629","Offset: 80,786,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1677038 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9574382","Offset: 80,790,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1677191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9583232","Offset: 80,794,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1677315 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9589261","Offset: 80,798,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1677443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9689497","Offset: 80,802,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1677567 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9690568","Offset: 80,806,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1677695 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9693192","Offset: 80,811,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1677823 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9694203","Offset: 80,815,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1677938 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9705455","Offset: 80,819,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1678066 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9706709","Offset: 80,823,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1678194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9709120","Offset: 80,827,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1678322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9710174","Offset: 80,831,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1678446 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9721348","Offset: 80,835,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1678595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9722385","Offset: 80,839,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1678715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9725124","Offset: 80,843,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1678838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9726080","Offset: 80,847,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1678966 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9737400","Offset: 80,851,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1679090 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9738432","Offset: 80,856,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1679227 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9741060","Offset: 80,860,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1679342 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9742131","Offset: 80,864,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1679500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9752759","Offset: 80,868,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1679862 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9753557","Offset: 80,872,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1679995 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9756108","Offset: 80,876,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1680127 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9757260","Offset: 80,880,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1680255 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9774694","Offset: 80,884,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1680383 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9795712","Offset: 80,888,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1680498 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9796885","Offset: 80,892,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1680630 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9809865","Offset: 80,897,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1680758 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9912299","Offset: 80,901,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1680882 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9914360","Offset: 80,905,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1681010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9915128","Offset: 80,909,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1681142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9926068","Offset: 80,913,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1681262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9927193","Offset: 80,917,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1681386 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9930688","Offset: 80,921,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1681518 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9939093","Offset: 80,925,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1681642 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9940262","Offset: 80,929,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1681770 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9941282","Offset: 80,933,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1681881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9945480","Offset: 80,937,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1682013 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9954137","Offset: 80,942,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1682145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9955234","Offset: 80,946,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1682273 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9957504","Offset: 80,950,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1682401 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9958933","Offset: 80,954,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1682533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9970146","Offset: 80,958,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1682649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9971195","Offset: 80,962,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1682777 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9975334","Offset: 80,966,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1682922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9988808","Offset: 80,970,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1683050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","5.9990101","Offset: 80,974,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1683173 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0012352","Offset: 80,978,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1683289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0023692","Offset: 80,983,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1683442 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0134511","Offset: 80,987,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1683587 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0135919","Offset: 80,991,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1683715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0138714","Offset: 80,995,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1683843 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0149172","Offset: 80,999,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1683976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0150220","Offset: 81,003,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1684091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0152640","Offset: 81,007,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1684214 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0154121","Offset: 81,011,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1684342 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0164937","Offset: 81,015,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1684466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0165914","Offset: 81,019,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1684594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0168295","Offset: 81,024,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1684705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0169434","Offset: 81,028,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1684837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0180429","Offset: 81,032,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1684965 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0181462","Offset: 81,036,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1685102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0183996","Offset: 81,040,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1685238 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0185131","Offset: 81,044,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1685384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0196365","Offset: 81,048,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1685503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0204805","Offset: 81,052,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1685627 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0225685","Offset: 81,056,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1685755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0234825","Offset: 81,060,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1685900 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0240346","Offset: 81,064,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1686028 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0357922","Offset: 81,069,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1686365 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0359074","Offset: 81,073,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1686506 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0362334","Offset: 81,077,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1686625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0369430","Offset: 81,081,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1686749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0371307","Offset: 81,085,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1686881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0374388","Offset: 81,089,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1687005 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0380924","Offset: 81,093,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1687129 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0383411","Offset: 81,097,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1687244 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0390925","Offset: 81,101,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1687372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0394313","Offset: 81,105,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1687500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0395358","Offset: 81,110,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1687628 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0404954","Offset: 81,114,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1687756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0405927","Offset: 81,118,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1687892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0408509","Offset: 81,122,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1688003 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0409746","Offset: 81,126,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1688131 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0440824","Offset: 81,130,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1688259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0446755","Offset: 81,134,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1688383 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0468856","Offset: 81,138,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1688511 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0471672","Offset: 81,142,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1688622 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0474573","Offset: 81,146,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1688754 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0484058","Offset: 81,150,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1689087 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0484890","Offset: 81,155,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1689215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0487454","Offset: 81,159,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1689343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0488538","Offset: 81,163,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1689497 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0499345","Offset: 81,167,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1689625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0500638","Offset: 81,171,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1689740 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0502917","Offset: 81,175,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1689872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0504018","Offset: 81,179,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1689996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0515218","Offset: 81,183,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1690124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0516745","Offset: 81,187,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1690252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0517611","Offset: 81,191,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1690384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0520615","Offset: 81,196,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1690499 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0550542","Offset: 81,200,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1690623 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0556771","Offset: 81,204,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1690751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0582226","Offset: 81,208,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1690879 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0583425","Offset: 81,212,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1691003 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0585993","Offset: 81,216,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1691118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0587201","Offset: 81,220,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1691250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0598409","Offset: 81,224,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1691382 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0599425","Offset: 81,228,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1691510 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0602420","Offset: 81,232,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1691638 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0603589","Offset: 81,236,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1691771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0614187","Offset: 81,241,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1691886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0615220","Offset: 81,245,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1692010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0618304","Offset: 81,249,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1692142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0619512","Offset: 81,253,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1692266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0630354","Offset: 81,257,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1692428 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0639045","Offset: 81,261,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1692543 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0659081","Offset: 81,265,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1692675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0665221","Offset: 81,269,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1692803 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0694661","Offset: 81,273,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1692931 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0696189","Offset: 81,277,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1693059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0697307","Offset: 81,282,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1693196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0701816","Offset: 81,286,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1693324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0711181","Offset: 81,290,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1693452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0712269","Offset: 81,294,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1693610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0714693","Offset: 81,298,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1693738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0715666","Offset: 81,302,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1693866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0727100","Offset: 81,306,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1693981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0728184","Offset: 81,310,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1694113 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0730442","Offset: 81,314,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1694241 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0731333","Offset: 81,318,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1694373 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0765702","Offset: 81,323,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1694501 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0766965","Offset: 81,327,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1694634 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0774716","Offset: 81,331,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1694749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0806414","Offset: 81,335,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1694890 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0807433","Offset: 81,339,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1695022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0810185","Offset: 81,343,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1695150 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0811214","Offset: 81,347,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1695295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0823553","Offset: 81,351,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1695406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0824662","Offset: 81,355,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1695538 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0825678","Offset: 81,359,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1695666 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0830286","Offset: 81,363,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1695794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0838359","Offset: 81,368,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1695922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0839357","Offset: 81,372,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1696234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0843363","Offset: 81,376,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1696379 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0857870","Offset: 81,380,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1696494 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0878009","Offset: 81,384,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1696630 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0886781","Offset: 81,388,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1696763 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0918025","Offset: 81,392,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1696886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0919515","Offset: 81,396,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1697014 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0923897","Offset: 81,400,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1697147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0932229","Offset: 81,404,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1697279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0933245","Offset: 81,409,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1697403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0935771","Offset: 81,413,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1697535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0936756","Offset: 81,417,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1697663 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0947888","Offset: 81,421,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1697787 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0949373","Offset: 81,425,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1697902 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0951310","Offset: 81,429,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1698030 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0985256","Offset: 81,433,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1698158 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0986382","Offset: 81,437,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1698290 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.0993589","Offset: 81,441,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1698418 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1030551","Offset: 81,445,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1698550 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1031660","Offset: 81,449,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1698670 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1032701","Offset: 81,454,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1698798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1036916","Offset: 81,458,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1699118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1046623","Offset: 81,462,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1699242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1047613","Offset: 81,466,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1699370 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1049072","Offset: 81,470,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1699515 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1053535","Offset: 81,474,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1699843 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1062231","Offset: 81,478,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1699963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1070683","Offset: 81,482,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1700099 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1090515","Offset: 81,486,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1700253 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1099948","Offset: 81,490,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1700385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1105742","Offset: 81,495,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1700509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1141215","Offset: 81,499,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1700628 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1142214","Offset: 81,503,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1700756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1145674","Offset: 81,507,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1700884 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1147176","Offset: 81,511,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1701012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1157796","Offset: 81,515,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1701140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1158888","Offset: 81,519,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1701273 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1163154","Offset: 81,523,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1701384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1170732","Offset: 81,527,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1701524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1179206","Offset: 81,531,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1701695 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1204720","Offset: 81,536,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1701832 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1211026","Offset: 81,540,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1701955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1252699","Offset: 81,544,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1702088 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1253714","Offset: 81,548,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1702216 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1256876","Offset: 81,552,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1702348 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1258706","Offset: 81,556,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1702476 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1268690","Offset: 81,560,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1702600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1269689","Offset: 81,564,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1702732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1272633","Offset: 81,568,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1702843 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1273699","Offset: 81,572,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1702966 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1303558","Offset: 81,576,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1703094 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1304604","Offset: 81,581,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1703218 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1311771","Offset: 81,585,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1703346 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1364252","Offset: 81,589,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1703457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1365293","Offset: 81,593,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1703589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1367959","Offset: 81,597,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1703717 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1369478","Offset: 81,601,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1703845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1380512","Offset: 81,605,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1703969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1381625","Offset: 81,609,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1704101 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1384233","Offset: 81,613,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1704234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1416710","Offset: 81,617,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1704357 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1423465","Offset: 81,622,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1704490 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1475714","Offset: 81,626,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1704613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1476674","Offset: 81,630,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1704737 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1479213","Offset: 81,634,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1704852 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1480621","Offset: 81,638,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1704985 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1492738","Offset: 81,642,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1705108 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1493745","Offset: 81,646,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1705241 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1496040","Offset: 81,650,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1705369 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1505452","Offset: 81,654,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1705689 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1532290","Offset: 81,658,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1705825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1538336","Offset: 81,662,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1705945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1586596","Offset: 81,667,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1706077 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1587688","Offset: 81,671,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1706205 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1590291","Offset: 81,675,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1706333 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1591861","Offset: 81,679,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1706457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1600718","Offset: 81,683,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1706593 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1603177","Offset: 81,687,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1706725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1611753","Offset: 81,691,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1706853 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1612935","Offset: 81,695,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1706981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1633752","Offset: 81,699,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1707126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1634669","Offset: 81,703,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1707254 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1641854","Offset: 81,708,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1707370 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1698071","Offset: 81,712,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1707498 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1698728","Offset: 81,716,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1707630 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1701148","Offset: 81,720,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1707758 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1702219","Offset: 81,724,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1707886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1704766","Offset: 81,728,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1708018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1705760","Offset: 81,732,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1708133 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1708227","Offset: 81,736,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1708445 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1709032","Offset: 81,740,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1708569 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1711579","Offset: 81,744,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1708692 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1720020","Offset: 81,748,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1708820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1720702","Offset: 81,753,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1708961 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1723126","Offset: 81,757,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1709093 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1742889","Offset: 81,761,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1709213 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1746481","Offset: 81,765,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1709341 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1809986","Offset: 81,769,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1709469 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1810793","Offset: 81,773,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1709597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1811270","Offset: 81,777,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1709721 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1813916","Offset: 81,781,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1709853 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1814637","Offset: 81,785,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1710002 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1817142","Offset: 81,789,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1710160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1818349","Offset: 81,794,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1710288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1818840","Offset: 81,798,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1710416 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.1827514","Offset: 81,802,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1710553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2101596","Offset: 81,806,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1710668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2112032","Offset: 81,810,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1710813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2117140","Offset: 81,814,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1710984 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2120455","Offset: 81,818,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1711124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2124018","Offset: 81,822,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1711265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2129296","Offset: 81,826,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1711385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2132730","Offset: 81,830,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1711534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2136340","Offset: 81,835,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1711683 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2143090","Offset: 81,839,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1711828 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2145787","Offset: 81,843,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1711961 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2149604","Offset: 81,847,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1712089 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2156623","Offset: 81,851,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1712204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2160928","Offset: 81,855,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1712328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2165997","Offset: 81,859,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1712464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2169914","Offset: 81,863,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1712592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2175871","Offset: 81,867,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1712733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2180210","Offset: 81,871,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1712848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2186763","Offset: 81,875,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1712993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2203860","Offset: 81,880,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1713125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2238437","Offset: 81,884,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1713253 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2239572","Offset: 81,888,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1713381 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2245836","Offset: 81,892,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1713509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2247589","Offset: 81,896,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1713625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2253711","Offset: 81,900,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1713748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2254723","Offset: 81,904,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1713881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2261498","Offset: 81,908,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1714004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2262518","Offset: 81,912,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1714132 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2269866","Offset: 81,916,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1714243 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2270873","Offset: 81,921,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1714376 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2278833","Offset: 81,925,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1714504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2280020","Offset: 81,929,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1714811 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2287649","Offset: 81,933,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1714939 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2288835","Offset: 81,937,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1715071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2312647","Offset: 81,941,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1715199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2325524","Offset: 81,945,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1715314 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2333268","Offset: 81,949,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1715446 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2334514","Offset: 81,953,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1715574 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2335248","Offset: 81,957,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1715702 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4938153","Offset: 81,961,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1715848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4950542","Offset: 81,966,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1715980 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5005361","Offset: 81,970,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1716099 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5013195","Offset: 81,974,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1716223 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5048365","Offset: 81,978,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1716355 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2701653","Offset: 81,982,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1716479 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2657812","Offset: 81,986,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1716607 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2658982","Offset: 81,990,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1716722 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2658363","Offset: 81,994,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1716854 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2659430","Offset: 81,998,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1716978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2669422","Offset: 82,002,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1717106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2670988","Offset: 82,007,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1717230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2670365","Offset: 82,011,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1717362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2800507","Offset: 82,015,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1717657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2935444","Offset: 82,019,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1717797 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2936452","Offset: 82,023,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1717917 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2936938","Offset: 82,027,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1718066 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2942391","Offset: 82,031,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1718211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2943040","Offset: 82,035,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1718378 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2943867","Offset: 82,039,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1718514 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2948911","Offset: 82,043,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1718625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2949499","Offset: 82,048,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1718753 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2950178","Offset: 82,052,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1718898 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2955362","Offset: 82,056,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1719043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2966063","Offset: 82,060,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1719171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2977340","Offset: 82,064,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1719282 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2984021","Offset: 82,068,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1719414 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2985084","Offset: 82,072,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1719542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2986731","Offset: 82,076,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1719670 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2988075","Offset: 82,080,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1719798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2987516","Offset: 82,084,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1719931 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2986892","Offset: 82,088,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1720046 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2995626","Offset: 82,093,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1720170 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2994504","Offset: 82,097,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1720298 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2996808","Offset: 82,101,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1720426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2997576","Offset: 82,105,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1720549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2997005","Offset: 82,109,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1720673 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2995972","Offset: 82,113,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1720831 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3007360","Offset: 82,117,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1720963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3005602","Offset: 82,121,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1721096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3008891","Offset: 82,125,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1721224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3008306","Offset: 82,129,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1721356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3007696","Offset: 82,134,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1721475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3008968","Offset: 82,138,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1721603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3017357","Offset: 82,142,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1721748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3016230","Offset: 82,146,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1721876 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3018786","Offset: 82,150,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1722000 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3019093","Offset: 82,154,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1722115 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3018095","Offset: 82,158,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1722248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3017480","Offset: 82,162,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1722376 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3028180","Offset: 82,166,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1722504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3027088","Offset: 82,170,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1722653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3028689","Offset: 82,174,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1722785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3029568","Offset: 82,179,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1722900 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3028945","Offset: 82,183,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1723028 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3030464","Offset: 82,187,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1723161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3039095","Offset: 82,191,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1723289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3037981","Offset: 82,195,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1723408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3041190","Offset: 82,199,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1723523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3040631","Offset: 82,203,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1723656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3039841","Offset: 82,207,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1723801 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3039218","Offset: 82,211,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1724116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3048640","Offset: 82,215,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1724249 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3049535","Offset: 82,220,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1724398 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3052083","Offset: 82,224,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1724543 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3050585","Offset: 82,228,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1724658 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3049988","Offset: 82,232,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1724790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3051256","Offset: 82,236,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1724918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3060873","Offset: 82,240,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1725051 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3059541","Offset: 82,244,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1725174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3062200","Offset: 82,248,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1725311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3061397","Offset: 82,252,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1725426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3062878","Offset: 82,256,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1725554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3062285","Offset: 82,260,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1725678 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3074675","Offset: 82,265,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1725806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3075460","Offset: 82,269,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1725930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3085503","Offset: 82,273,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1726045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3090163","Offset: 82,277,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1726173 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3090739","Offset: 82,281,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1726322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3091541","Offset: 82,285,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1726472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3096358","Offset: 82,289,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1726792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3097151","Offset: 82,293,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1726920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3097535","Offset: 82,297,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1727056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3103782","Offset: 82,301,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1727193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3106227","Offset: 82,306,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1727342 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3105412","Offset: 82,310,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1727491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3104627","Offset: 82,314,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1727624 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3106538","Offset: 82,318,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1727764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3114116","Offset: 82,322,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1727901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3114905","Offset: 82,326,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1728016 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3116228","Offset: 82,330,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1728144 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3115439","Offset: 82,334,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1728272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3116510","Offset: 82,338,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1728400 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3117043","Offset: 82,342,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1728524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3126003","Offset: 82,347,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1728639 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3124894","Offset: 82,351,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1728771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3127906","Offset: 82,355,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1728899 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3126404","Offset: 82,359,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1729027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3128081","Offset: 82,363,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1729151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3127057","Offset: 82,367,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1729283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3134579","Offset: 82,371,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1729398 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3136167","Offset: 82,375,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1729531 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3135334","Offset: 82,379,776, Length: 2,560, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1729663 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3136456","Offset: 82,382,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1729791 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3144648","Offset: 82,386,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1729915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3143560","Offset: 82,390,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1730030 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3145118","Offset: 82,394,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1730158 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3146197","Offset: 82,398,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1730286 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3145642","Offset: 82,402,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1730465 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3146406","Offset: 82,423,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1730593 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3155930","Offset: 82,427,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1730730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3154700","Offset: 82,431,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1730845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3157516","Offset: 82,435,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1730973 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3156881","Offset: 82,439,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1731101 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3156147","Offset: 82,443,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1731229 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3158353","Offset: 82,447,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1731353 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3157776","Offset: 82,451,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1731468 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3168567","Offset: 82,456,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1731600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3166933","Offset: 82,460,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1731732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3170138","Offset: 82,464,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1731860 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3169502","Offset: 82,468,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1732176 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3168691","Offset: 82,472,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1732313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3179656","Offset: 82,476,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1732428 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3181487","Offset: 82,480,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1732552 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3191129","Offset: 82,484,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1732680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3198775","Offset: 82,488,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1732803 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3197688","Offset: 82,492,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1732927 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3200414","Offset: 82,497,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1733260 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3199654","Offset: 82,501,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1733401 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3198835","Offset: 82,505,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1733524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3200487","Offset: 82,509,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1733674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3210030","Offset: 82,513,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1733802 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3208840","Offset: 82,517,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1733934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3211042","Offset: 82,521,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1734058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3211916","Offset: 82,525,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1734173 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3211341","Offset: 82,529,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1734305 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3212288","Offset: 82,533,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1734429 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3219776","Offset: 82,537,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1734565 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3220822","Offset: 82,542,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1734702 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3221457","Offset: 82,546,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1734856 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3222681","Offset: 82,550,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1734975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3222110","Offset: 82,554,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1735099 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3221551","Offset: 82,558,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1735231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3231693","Offset: 82,562,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1735359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3230430","Offset: 82,566,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1735483 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3233182","Offset: 82,570,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1735598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3232576","Offset: 82,574,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1735730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3231953","Offset: 82,578,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1736042 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3233096","Offset: 82,583,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1736165 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3242518","Offset: 82,587,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1736298 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3241391","Offset: 82,591,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1736430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3243285","Offset: 82,595,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1736575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3244399","Offset: 82,599,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1736690 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3243614","Offset: 82,603,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1736823 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3244693","Offset: 82,607,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1736968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3245107","Offset: 82,611,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1737100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3254071","Offset: 82,615,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1737224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3252949","Offset: 82,619,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1737360 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3255825","Offset: 82,624,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1737484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3255044","Offset: 82,628,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1737608 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3256008","Offset: 82,632,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1737740 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3254319","Offset: 82,636,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1737868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3264576","Offset: 82,640,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1737992 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3263479","Offset: 82,644,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1738107 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3265271","Offset: 82,648,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1738239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3266539","Offset: 82,652,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1738367 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3265903","Offset: 82,656,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1738495 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3266888","Offset: 82,660,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1738623 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3274773","Offset: 82,664,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1738755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3275857","Offset: 82,669,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1738871 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3277068","Offset: 82,673,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1738994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3286131","Offset: 82,677,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1739144 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3295722","Offset: 82,681,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1739272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3297258","Offset: 82,685,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1739400 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3297873","Offset: 82,689,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1739515 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3306014","Offset: 82,693,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1739647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3304943","Offset: 82,697,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1739775 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3308220","Offset: 82,701,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1739903 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3307238","Offset: 82,705,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1740027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3306683","Offset: 82,710,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1740159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3306095","Offset: 82,714,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1740279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3315665","Offset: 82,718,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1740402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3316536","Offset: 82,722,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1740535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3318523","Offset: 82,726,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1740663 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3317550","Offset: 82,730,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1740786 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3316941","Offset: 82,734,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1740901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3318870","Offset: 82,738,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1741029 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3326042","Offset: 82,742,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1741157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3326870","Offset: 82,746,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1741307 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3329190","Offset: 82,750,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1741456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3328597","Offset: 82,755,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1741618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3327791","Offset: 82,759,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1741738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3327172","Offset: 82,763,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1741866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3338585","Offset: 82,767,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1741998 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3337941","Offset: 82,771,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1742122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3336870","Offset: 82,775,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1742250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3340036","Offset: 82,779,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1742557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3339298","Offset: 82,783,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1742702 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3338628","Offset: 82,787,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1742843 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3347921","Offset: 82,791,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1743009 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3346782","Offset: 82,796,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1743137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3349427","Offset: 82,800,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1743265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3348762","Offset: 82,804,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1743389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3350063","Offset: 82,808,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1743504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3349530","Offset: 82,812,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1743653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3357351","Offset: 82,816,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1743786 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3359274","Offset: 82,820,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1743914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3358357","Offset: 82,824,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1744042 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3359654","Offset: 82,828,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1744178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3367049","Offset: 82,832,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1744293 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3368768","Offset: 82,836,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1744421 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3368030","Offset: 82,841,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1744554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3369344","Offset: 82,845,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1744682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3371605","Offset: 82,849,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1744805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3379674","Offset: 82,853,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1744921 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3382741","Offset: 82,857,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1745053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2168715","Offset: 82,861,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1745185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2277708","Offset: 82,865,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1745497 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2389097","Offset: 82,869,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1745633 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2607927","Offset: 82,873,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1745761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2717772","Offset: 82,877,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1745911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2937979","Offset: 82,882,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1746043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3053328","Offset: 82,886,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1746184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3166975","Offset: 82,890,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1746312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3270946","Offset: 82,894,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1746440 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3387268","Offset: 82,898,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1746568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3490598","Offset: 82,902,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1746700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3708186","Offset: 82,906,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1746815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3818411","Offset: 82,910,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1746943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4038674","Offset: 82,914,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1747067 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4148626","Offset: 82,918,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1747195 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4367135","Offset: 82,923,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1747319 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4478614","Offset: 82,927,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1747434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4590576","Offset: 82,931,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1747566 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4699645","Offset: 82,935,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1747694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2499818","Offset: 82,939,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1747822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2579958","Offset: 82,943,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1747946 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2578806","Offset: 82,947,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1748078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2581627","Offset: 82,951,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1748197 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2581055","Offset: 82,955,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1748325 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2580415","Offset: 82,959,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1748471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2592485","Offset: 82,963,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1748599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2593317","Offset: 82,968,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1748727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2593889","Offset: 82,972,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1748837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2606007","Offset: 82,976,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1748970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2615781","Offset: 82,980,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1749102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.2624191","Offset: 82,984,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1749230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3600960","Offset: 82,988,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1749358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3678601","Offset: 82,992,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1749490 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3680380","Offset: 82,996,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1749605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3679604","Offset: 83,000,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1750693 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3679638","Offset: 83,004,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1750962 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3680231","Offset: 83,009,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1751188 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3688564","Offset: 83,013,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1751427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3687365","Offset: 83,017,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1751594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3689391","Offset: 83,021,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1751807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3688670","Offset: 83,025,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1752101 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3696688","Offset: 83,029,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1752669 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3705251","Offset: 83,033,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1752840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3717807","Offset: 83,037,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1752980 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3722996","Offset: 83,041,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1753194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3724331","Offset: 83,045,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1753399 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3726916","Offset: 83,049,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1753595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3727864","Offset: 83,054,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1753778 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3734469","Offset: 83,058,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1753966 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3735629","Offset: 83,062,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1754145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3738062","Offset: 83,066,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1754354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.3931000","Offset: 83,070,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1754546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4009827","Offset: 83,074,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1754738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4008675","Offset: 83,078,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1754930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4011022","Offset: 83,082,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1755412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4009780","Offset: 83,086,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1755621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4011086","Offset: 83,090,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1755788 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4019312","Offset: 83,095,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1755976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4018151","Offset: 83,099,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1756133 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4032483","Offset: 83,103,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1756334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4044340","Offset: 83,107,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1756466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4051188","Offset: 83,111,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1756599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4052766","Offset: 83,115,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1756714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4052131","Offset: 83,119,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1756842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4053603","Offset: 83,123,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1756987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4061223","Offset: 83,127,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1757111 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4062883","Offset: 83,131,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1757243 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4062256","Offset: 83,136,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1757362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4065166","Offset: 83,140,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1757512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4072308","Offset: 83,144,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1757640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4073511","Offset: 83,148,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1757789 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4074177","Offset: 83,152,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1757934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4081874","Offset: 83,156,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1758079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4263063","Offset: 83,160,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1758194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4335827","Offset: 83,164,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1758339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4336650","Offset: 83,168,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1758480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4338194","Offset: 83,172,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1758625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4337593","Offset: 83,176,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1758757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4336987","Offset: 83,181,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1758868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4346792","Offset: 83,185,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1759001 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4345153","Offset: 83,189,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1759129 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4360824","Offset: 83,193,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1759261 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4371700","Offset: 83,197,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1759389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4376829","Offset: 83,201,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1759534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4378130","Offset: 83,205,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1759645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4378779","Offset: 83,209,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1759790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4385926","Offset: 83,213,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1759922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4384710","Offset: 83,217,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1760055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4387333","Offset: 83,222,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1760187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4386322","Offset: 83,226,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1760306 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4393772","Offset: 83,230,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1760434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4395432","Offset: 83,234,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1760562 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4394783","Offset: 83,238,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1760686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4395961","Offset: 83,242,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1760810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4403880","Offset: 83,246,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1760942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4405599","Offset: 83,250,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1761053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4404972","Offset: 83,254,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1761185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4407767","Offset: 83,258,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1761313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4414709","Offset: 83,262,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1761437 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4415762","Offset: 83,267,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1761817 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4417042","Offset: 83,271,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1761953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4419300","Offset: 83,275,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1762085 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4426519","Offset: 83,279,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1762201 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4427568","Offset: 83,283,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1762329 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4484421","Offset: 83,287,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1762461 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4485484","Offset: 83,291,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1762589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4486482","Offset: 83,295,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1762730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4487310","Offset: 83,299,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1762845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4495959","Offset: 83,303,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1762977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4494841","Offset: 83,308,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1763105 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4497465","Offset: 83,312,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1763237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4496791","Offset: 83,316,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1763361 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4497824","Offset: 83,320,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1763493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4505329","Offset: 83,324,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1763613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4506186","Offset: 83,328,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1763741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4507496","Offset: 83,332,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1763869 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4506894","Offset: 83,336,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1763997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4514813","Offset: 83,340,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1764121 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4515892","Offset: 83,344,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1764236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4516452","Offset: 83,348,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1764569 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4518913","Offset: 83,353,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1764705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4524588","Offset: 83,357,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1764837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4526291","Offset: 83,361,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1764965 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4529867","Offset: 83,365,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1765098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4534653","Offset: 83,369,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1765234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4535656","Offset: 83,373,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1765379 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4541770","Offset: 83,377,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1765524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4542739","Offset: 83,381,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1765652 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4591883","Offset: 83,385,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1765797 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4594754","Offset: 83,389,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1765947 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4597757","Offset: 83,394,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1766079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4598662","Offset: 83,398,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1766190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4600983","Offset: 83,402,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1766318 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4605570","Offset: 83,406,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1766446 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4606560","Offset: 83,410,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1766570 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4607434","Offset: 83,414,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1766698 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4614615","Offset: 83,418,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1766813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4613459","Offset: 83,422,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1766945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4615042","Offset: 83,426,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1767073 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4615690","Offset: 83,430,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1767197 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4623690","Offset: 83,435,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1767325 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4625183","Offset: 83,439,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1767483 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4625661","Offset: 83,443,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1767611 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4626365","Offset: 83,447,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1767756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4633977","Offset: 83,451,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1767884 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4635193","Offset: 83,455,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1768012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4636021","Offset: 83,459,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1768136 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4643372","Offset: 83,463,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1768247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4644481","Offset: 83,467,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1768379 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4645429","Offset: 83,471,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1768511 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4652844","Offset: 83,475,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1768639 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4655102","Offset: 83,480,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1768763 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4655899","Offset: 83,484,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1768895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4700000","Offset: 83,488,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1769010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4704804","Offset: 83,492,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1769138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4705888","Offset: 83,496,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1769266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4706242","Offset: 83,500,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1769394 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4706737","Offset: 83,504,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1769518 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4707057","Offset: 83,508,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1769629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4713585","Offset: 83,512,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1769778 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4715066","Offset: 83,516,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1769915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4714455","Offset: 83,521,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1770043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4715850","Offset: 83,525,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1770167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4715282","Offset: 83,529,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1770299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4722446","Offset: 83,533,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1770418 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4723087","Offset: 83,537,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1770542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4724652","Offset: 83,541,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1770883 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4723885","Offset: 83,545,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1771045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4723258","Offset: 83,549,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1771178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4730361","Offset: 83,553,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1771323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4731214","Offset: 83,557,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1771459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4731714","Offset: 83,561,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1771575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4732213","Offset: 83,566,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1771703 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4732520","Offset: 83,570,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1771826 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4739381","Offset: 83,574,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1771954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4738464","Offset: 83,578,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1772078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4740371","Offset: 83,582,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1772193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4739821","Offset: 83,586,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1772325 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4740704","Offset: 83,590,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1772453 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4747420","Offset: 83,594,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1772577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4748064","Offset: 83,598,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1772701 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4748635","Offset: 83,602,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1772837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4749067","Offset: 83,607,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1772953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4749518","Offset: 83,611,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1773076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4755706","Offset: 83,615,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1773209 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4757872","Offset: 83,619,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1773337 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4757181","Offset: 83,623,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1773682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4756077","Offset: 83,627,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1773810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4757839","Offset: 83,631,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1773943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4771133","Offset: 83,635,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1774058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4772524","Offset: 83,639,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1774181 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4771923","Offset: 83,643,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1774314 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4773002","Offset: 83,648,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1774442 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4778728","Offset: 83,652,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1774775 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4779901","Offset: 83,656,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1774894 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4779300","Offset: 83,660,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1775026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4780252","Offset: 83,664,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1775154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4789847","Offset: 83,668,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1775282 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4791230","Offset: 83,672,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1775410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4790641","Offset: 83,676,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1775543 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4791413","Offset: 83,680,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1775658 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4791882","Offset: 83,684,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1775799 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4806670","Offset: 83,688,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1775944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4808880","Offset: 83,693,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1776072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4808266","Offset: 83,697,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1776200 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4807618","Offset: 83,701,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1776311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4809200","Offset: 83,705,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1776443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4823609","Offset: 83,709,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1776571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4824689","Offset: 83,713,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1776703 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4825487","Offset: 83,717,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1776827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4825828","Offset: 83,721,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1776976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4826588","Offset: 83,725,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1777096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4826024","Offset: 83,729,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1777219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4869391","Offset: 83,734,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1777352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4877535","Offset: 83,738,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1777497 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4893070","Offset: 83,742,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1777620 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4950373","Offset: 83,746,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1777736 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4978899","Offset: 83,750,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1777868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.4996311","Offset: 83,754,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1778000 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5009747","Offset: 83,758,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1778128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5018166","Offset: 83,762,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1778256 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5070313","Offset: 83,766,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1778418 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5072992","Offset: 83,770,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1778546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5075813","Offset: 83,774,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1778674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5078373","Offset: 83,779,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1778798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5080877","Offset: 83,783,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1778913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5083360","Offset: 83,787,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1779045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5085771","Offset: 83,791,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1779191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5087003","Offset: 83,795,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1779353 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5089559","Offset: 83,799,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1779485 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5095614","Offset: 83,803,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1779621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5097240","Offset: 83,807,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1779737 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5098131","Offset: 83,811,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1780074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5102376","Offset: 83,815,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1780202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5103934","Offset: 83,820,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1780360 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5106511","Offset: 83,824,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1780505 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5113538","Offset: 83,828,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1780637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5114631","Offset: 83,832,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1780769 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5114917","Offset: 83,836,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1780880 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5116478","Offset: 83,840,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1781008 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5122827","Offset: 83,844,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1781136 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5124619","Offset: 83,848,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1781264 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5125076","Offset: 83,852,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1781388 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5126330","Offset: 83,856,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1781520 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5132273","Offset: 83,860,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1781657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5134027","Offset: 83,865,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1781785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5134726","Offset: 83,869,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1781908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5135896","Offset: 83,873,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1782041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5138332","Offset: 83,877,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1782177 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5139343","Offset: 83,881,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1782292 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5148824","Offset: 83,885,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1782416 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5151525","Offset: 83,889,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1782548 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5153325","Offset: 83,893,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1782676 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5152643","Offset: 83,897,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1782988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5155219","Offset: 83,901,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1783120 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5154644","Offset: 83,906,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1783257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5153444","Offset: 83,910,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1783376 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5157020","Offset: 83,914,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1783517 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5155151","Offset: 83,918,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1783654 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5156277","Offset: 83,922,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1783782 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5155385","Offset: 83,926,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1783914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5164841","Offset: 83,930,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1784050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5163625","Offset: 83,934,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1784217 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5161884","Offset: 83,938,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1784362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5158590","Offset: 83,942,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1784490 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5157190","Offset: 83,947,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1784618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5162430","Offset: 83,951,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1784750 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5161952","Offset: 83,955,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1784865 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5160254","Offset: 83,959,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1784993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5159371","Offset: 83,963,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1785126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5162238","Offset: 83,967,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1785254 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5160531","Offset: 83,971,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1785377 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5160067","Offset: 83,975,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1785492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5158569","Offset: 83,979,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1785620 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5162384","Offset: 83,983,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1785748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5159030","Offset: 83,987,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1785876 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5157869","Offset: 83,992,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1786004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5156393","Offset: 83,996,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1786145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5157208","Offset: 84,000,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1786290 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5155698","Offset: 84,004,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1786440 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5162626","Offset: 84,008,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1786572 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5154780","Offset: 84,012,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1786704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5161628","Offset: 84,016,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1786832 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5169172","Offset: 84,020,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1786947 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5168728","Offset: 84,024,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1787080 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5166863","Offset: 84,028,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1787208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5163769","Offset: 84,033,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1787336 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5162856","Offset: 84,037,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1787464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5162383","Offset: 84,041,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1787596 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5169572","Offset: 84,045,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1787715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5169129","Offset: 84,049,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1787843 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5168489","Offset: 84,053,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1787976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5167358","Offset: 84,057,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1788108 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5166901","Offset: 84,061,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1788232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5166364","Offset: 84,065,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1788343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5165920","Offset: 84,069,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1788475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5165139","Offset: 84,073,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1788603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5164597","Offset: 84,078,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1788731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5164145","Offset: 84,082,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1788859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5163569","Offset: 84,086,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1788995 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5163122","Offset: 84,090,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1789111 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5162677","Offset: 84,094,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1789456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5161888","Offset: 84,098,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1789580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5160937","Offset: 84,102,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1789712 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5319589","Offset: 84,106,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1789840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5322665","Offset: 84,110,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1789968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5321897","Offset: 84,114,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1790100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5323058","Offset: 84,119,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1790220 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5329974","Offset: 84,123,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1790344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5329077","Offset: 84,127,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1790472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5332704","Offset: 84,131,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1790600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5332218","Offset: 84,135,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1790723 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5331578","Offset: 84,139,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1790839 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5330921","Offset: 84,143,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1790988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5341613","Offset: 84,147,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1791120 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5340466","Offset: 84,151,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1791244 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5344523","Offset: 84,155,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1791372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5343926","Offset: 84,160,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1791504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5343098","Offset: 84,164,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1791615 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5342462","Offset: 84,168,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1791743 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5341831","Offset: 84,172,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1791871 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5353095","Offset: 84,176,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1792247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5351733","Offset: 84,180,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1792396 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5356086","Offset: 84,184,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1792537 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5355433","Offset: 84,188,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1792673 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5354785","Offset: 84,192,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1792793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5354012","Offset: 84,196,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1792916 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5361343","Offset: 84,200,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1793049 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5362737","Offset: 84,205,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1793177 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5362038","Offset: 84,209,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1793300 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5363075","Offset: 84,213,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1793416 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5370379","Offset: 84,217,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1793544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5369231","Offset: 84,221,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1793672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5371719","Offset: 84,225,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1793800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5370916","Offset: 84,229,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1793923 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5372039","Offset: 84,233,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1794064 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5380176","Offset: 84,237,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1794179 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5379054","Offset: 84,241,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1794307 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5383077","Offset: 84,246,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1794435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5382424","Offset: 84,250,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1794563 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5381725","Offset: 84,254,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1794696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5380435","Offset: 84,258,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1794807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5390658","Offset: 84,262,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1794939 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5389532","Offset: 84,266,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1795067 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5393530","Offset: 84,270,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1795199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5392941","Offset: 84,274,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1795323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5392361","Offset: 84,278,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1795476 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5391687","Offset: 84,282,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1795596 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5402085","Offset: 84,286,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1795720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5400962","Offset: 84,291,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1795865 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5405165","Offset: 84,295,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1795997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5404504","Offset: 84,299,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1796125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5403557","Offset: 84,303,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1796236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5402947","Offset: 84,307,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1796368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5402277","Offset: 84,311,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1796496 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5411211","Offset: 84,315,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1796641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5413213","Offset: 84,319,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1796765 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5412129","Offset: 84,323,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1796902 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5413754","Offset: 84,327,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1797017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5418251","Offset: 84,332,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1797140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5418922","Offset: 84,336,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1797273 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5419475","Offset: 84,340,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1797396 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5424605","Offset: 84,344,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1797542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5425197","Offset: 84,348,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1797657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5425722","Offset: 84,352,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1797789 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5429865","Offset: 84,356,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1797917 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5431166","Offset: 84,360,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1798045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5431700","Offset: 84,364,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1798173 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5435736","Offset: 84,368,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1798310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5436568","Offset: 84,372,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1798621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5440425","Offset: 84,377,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1798736 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5441454","Offset: 84,381,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1798894 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5444892","Offset: 84,385,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1799026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5445742","Offset: 84,389,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1799159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5449231","Offset: 84,393,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1799282 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5450431","Offset: 84,397,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1799415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5453720","Offset: 84,401,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1799547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5454586","Offset: 84,405,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1799675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5458025","Offset: 84,409,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1799807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5458891","Offset: 84,413,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1799935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5464058","Offset: 84,418,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1800063 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5465919","Offset: 84,422,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1800178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5465381","Offset: 84,426,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1800311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5464698","Offset: 84,430,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1800456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5466144","Offset: 84,434,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1800609 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5473087","Offset: 84,438,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1800759 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5474413","Offset: 84,442,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1800891 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5473782","Offset: 84,446,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1801006 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5474763","Offset: 84,450,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1801322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5480907","Offset: 84,454,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1801446 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5482336","Offset: 84,459,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1801599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5481641","Offset: 84,463,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1801731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5482503","Offset: 84,467,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1801859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5482981","Offset: 84,471,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1801996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5489645","Offset: 84,475,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1802111 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5491109","Offset: 84,479,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1802239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5490486","Offset: 84,483,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1802367 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5491331","Offset: 84,487,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1802495 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5500052","Offset: 84,491,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1802640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5498793","Offset: 84,495,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1802755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5502838","Offset: 84,499,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1802883 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5502245","Offset: 84,504,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1803011 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5501345","Offset: 84,508,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1803139 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5500748","Offset: 84,512,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1803272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5500111","Offset: 84,516,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1803400 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5511738","Offset: 84,520,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1803515 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5510590","Offset: 84,524,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1803664 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5514712","Offset: 84,528,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1803792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5514098","Offset: 84,532,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1803920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5513437","Offset: 84,536,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1804048 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5512110","Offset: 84,540,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1804163 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5518945","Offset: 84,545,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1804300 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5520190","Offset: 84,549,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1804428 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5520754","Offset: 84,553,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1804560 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5524782","Offset: 84,557,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1804688 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5525447","Offset: 84,561,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1804842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5526087","Offset: 84,565,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1804957 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5531403","Offset: 84,569,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1805081 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5532090","Offset: 84,573,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1805230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5532675","Offset: 84,577,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1805358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5537355","Offset: 84,581,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1805486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5538307","Offset: 84,585,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1805601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5539374","Offset: 84,590,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1805738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5543670","Offset: 84,594,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1805870 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5544306","Offset: 84,598,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1806015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5544762","Offset: 84,602,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1806143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5550292","Offset: 84,606,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1806275 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5551244","Offset: 84,610,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1806395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5551623","Offset: 84,614,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1806519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5552553","Offset: 84,618,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1806655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5551982","Offset: 84,622,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1806792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5559448","Offset: 84,626,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1806941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5560822","Offset: 84,631,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1807060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5560161","Offset: 84,635,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1807193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5561189","Offset: 84,639,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1807321 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5567363","Offset: 84,643,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1807453 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5569223","Offset: 84,647,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1807581 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5568660","Offset: 84,651,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1807713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5567982","Offset: 84,655,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1807828 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5569492","Offset: 84,659,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1807961 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5575657","Offset: 84,663,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1808276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5576690","Offset: 84,667,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1808409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5576101","Offset: 84,672,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1808541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5577027","Offset: 84,676,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1808682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5583990","Offset: 84,680,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1808844 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5585893","Offset: 84,684,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1808998 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5585321","Offset: 84,688,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1809121 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5584664","Offset: 84,692,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1809271 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5586063","Offset: 84,696,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1809420 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5593112","Offset: 84,700,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1809731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5594546","Offset: 84,704,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1809847 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5594059","Offset: 84,708,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1809979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5593453","Offset: 84,712,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1810107 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5594691","Offset: 84,717,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1810235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5601658","Offset: 84,721,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1810359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5602895","Offset: 84,725,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1810495 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5602299","Offset: 84,729,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1810610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5603186","Offset: 84,733,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1810734 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5609530","Offset: 84,737,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1811050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5610576","Offset: 84,741,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1811178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5610029","Offset: 84,745,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1811306 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5611245","Offset: 84,749,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1811430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5610742","Offset: 84,753,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1811566 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5618362","Offset: 84,758,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1811681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5619617","Offset: 84,762,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1811809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5619067","Offset: 84,766,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1811942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5619889","Offset: 84,770,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1812087 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5626042","Offset: 84,774,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1812232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5627783","Offset: 84,778,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1812347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5627224","Offset: 84,782,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1812475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5628466","Offset: 84,786,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1812603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5627967","Offset: 84,790,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1812735 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5635203","Offset: 84,794,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1812863 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5636445","Offset: 84,798,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1813000 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5635868","Offset: 84,803,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1813115 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5637110","Offset: 84,807,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1813239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5636615","Offset: 84,811,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1813367 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5644060","Offset: 84,815,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1813495 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5645272","Offset: 84,819,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1813618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5644671","Offset: 84,823,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1813729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5645537","Offset: 84,827,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1813862 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5646484","Offset: 84,831,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1813994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5652995","Offset: 84,835,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1814118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5654185","Offset: 84,839,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1814263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5653566","Offset: 84,844,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1814399 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5654412","Offset: 84,848,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1814514 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5660296","Offset: 84,852,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1814642 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5661473","Offset: 84,856,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1814770 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5660855","Offset: 84,860,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1814898 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5661704","Offset: 84,864,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1815043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5662408","Offset: 84,868,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1815159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5669170","Offset: 84,872,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1815291 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5670040","Offset: 84,876,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1815419 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5670501","Offset: 84,880,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1815547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5675745","Offset: 84,884,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1815675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5677481","Offset: 84,889,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1815811 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5676876","Offset: 84,893,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1815931 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5677771","Offset: 84,897,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1816055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5683062","Offset: 84,901,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1816187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5684645","Offset: 84,905,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1816332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5683642","Offset: 84,909,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1816460 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5684910","Offset: 84,913,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1816575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5691344","Offset: 84,917,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1816707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5693000","Offset: 84,921,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1816835 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5692006","Offset: 84,925,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1816985 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5693302","Offset: 84,930,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1817134 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5698998","Offset: 84,934,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1817279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5700189","Offset: 84,938,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1817394 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5699617","Offset: 84,942,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1817522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5700970","Offset: 84,946,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1817655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5706183","Offset: 84,950,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1817958 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5707237","Offset: 84,954,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1818103 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5706605","Offset: 84,958,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1818226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5707481","Offset: 84,962,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1818380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5713880","Offset: 84,966,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1818495 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5714631","Offset: 84,971,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1818619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5714973","Offset: 84,975,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1818747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5715322","Offset: 84,979,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1818875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5721748","Offset: 84,983,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1819020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5722938","Offset: 84,987,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1819135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5722397","Offset: 84,991,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1819263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5723617","Offset: 84,995,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1819395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5723110","Offset: 84,999,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1819528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5730311","Offset: 85,003,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1819656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5731792","Offset: 85,007,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1819792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5731357","Offset: 85,011,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1819912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5730891","Offset: 85,016,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1820035 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5731852","Offset: 85,020,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1820168 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5739105","Offset: 85,024,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1820296 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5740359","Offset: 85,028,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1820419 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5739754","Offset: 85,032,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1820731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5740483","Offset: 85,036,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1820884 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5746726","Offset: 85,040,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1821008 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5747988","Offset: 85,044,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1821136 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5747447","Offset: 85,048,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1821268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5748283","Offset: 85,052,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1821414 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5753799","Offset: 85,057,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1821542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5755442","Offset: 85,061,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1821652 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5754943","Offset: 85,065,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1821789 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5755728","Offset: 85,069,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1821917 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5761915","Offset: 85,073,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1822049 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5763562","Offset: 85,077,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1822177 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5762905","Offset: 85,081,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1822314 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5763847","Offset: 85,085,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1822425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5769402","Offset: 85,089,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1822553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5771083","Offset: 85,093,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1822681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5770008","Offset: 85,097,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1822809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5771408","Offset: 85,102,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1822937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5777031","Offset: 85,106,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1823052 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5778252","Offset: 85,110,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1823184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5777646","Offset: 85,114,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1823329 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5778952","Offset: 85,118,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1823462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5785010","Offset: 85,122,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1823585 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5786256","Offset: 85,126,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1823722 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5785629","Offset: 85,130,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1823841 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5786922","Offset: 85,134,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1823982 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5792413","Offset: 85,138,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1824110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5793625","Offset: 85,143,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1824238 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5793019","Offset: 85,147,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1824366 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5793915","Offset: 85,151,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1824481 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5799811","Offset: 85,155,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1824614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5800997","Offset: 85,159,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1824742 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5800408","Offset: 85,163,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1824870 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5801261","Offset: 85,167,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1825015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5808003","Offset: 85,171,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1825160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5809227","Offset: 85,175,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1825275 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5808643","Offset: 85,179,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1825399 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5809940","Offset: 85,184,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1825527 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5809419","Offset: 85,188,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1825655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5816229","Offset: 85,192,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1825800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5817402","Offset: 85,196,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1825911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5816839","Offset: 85,200,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1826043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5817693","Offset: 85,204,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1826175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5824737","Offset: 85,208,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1826303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5825996","Offset: 85,212,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1826427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5825441","Offset: 85,216,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1826563 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5826653","Offset: 85,220,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1826674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5826154","Offset: 85,224,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1826802 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5833612","Offset: 85,229,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1826930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5834773","Offset: 85,233,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1827242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5834106","Offset: 85,237,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1827378 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5834756","Offset: 85,241,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1827502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5840643","Offset: 85,245,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1827639 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5842204","Offset: 85,249,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1827796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5841685","Offset: 85,253,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1827942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5842439","Offset: 85,257,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1828134 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5848596","Offset: 85,261,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1828287 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5850162","Offset: 85,265,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1828415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5849629","Offset: 85,270,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1828526 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5850465","Offset: 85,274,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1828663 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5856067","Offset: 85,278,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1828791 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5857744","Offset: 85,282,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1828914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5856737","Offset: 85,286,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1829042 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5858030","Offset: 85,290,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1829175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5863406","Offset: 85,294,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1829294 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5865006","Offset: 85,298,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1829435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5863973","Offset: 85,302,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1829563 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5865279","Offset: 85,306,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1829691 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5871248","Offset: 85,310,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1830011 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5872340","Offset: 85,315,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1830135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5871713","Offset: 85,319,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1830267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5873044","Offset: 85,323,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1830386 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5878463","Offset: 85,327,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1830527 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5879658","Offset: 85,331,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1830659 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5879061","Offset: 85,335,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1830787 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5879952","Offset: 85,339,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1830915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5885939","Offset: 85,343,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1831026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5887137","Offset: 85,347,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1831163 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5886561","Offset: 85,351,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1831295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5887432","Offset: 85,356,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1831423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5894071","Offset: 85,360,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1831551 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5895321","Offset: 85,364,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1831700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5894749","Offset: 85,368,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1831833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5895589","Offset: 85,372,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1831961 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5895879","Offset: 85,376,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1832089 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5902463","Offset: 85,380,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1832217 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5903657","Offset: 85,384,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1832340 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5903086","Offset: 85,388,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1832451 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5903948","Offset: 85,392,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1832584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5910164","Offset: 85,396,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1832712 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5911406","Offset: 85,401,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1832840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5910808","Offset: 85,405,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1832968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5911696","Offset: 85,409,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1833100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5917819","Offset: 85,413,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1833215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5919415","Offset: 85,417,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1833339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5918834","Offset: 85,421,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1833471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5919688","Offset: 85,425,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1833599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5925251","Offset: 85,429,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1833744 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5926873","Offset: 85,433,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1833859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5925875","Offset: 85,437,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1833992 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5927133","Offset: 85,442,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1834124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5932598","Offset: 85,446,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1834252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5934224","Offset: 85,450,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1834410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5933196","Offset: 85,454,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1834542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5934510","Offset: 85,458,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1834657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5940556","Offset: 85,462,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1834781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5941768","Offset: 85,466,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1834909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5941183","Offset: 85,470,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1835037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5942476","Offset: 85,474,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1835165 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5947869","Offset: 85,478,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1835276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5949106","Offset: 85,483,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1835408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5948509","Offset: 85,487,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1835536 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5949388","Offset: 85,491,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1835664 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5955165","Offset: 85,495,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1835792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5955869","Offset: 85,499,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1835925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5956206","Offset: 85,503,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1836044 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5956586","Offset: 85,507,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1836168 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5963438","Offset: 85,511,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1836513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5964373","Offset: 85,515,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1836646 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5963881","Offset: 85,519,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1836778 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5964842","Offset: 85,523,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1836902 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5964440","Offset: 85,528,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1837038 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5971711","Offset: 85,532,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1837153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5972932","Offset: 85,536,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1837294 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5972343","Offset: 85,540,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1837426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5973201","Offset: 85,544,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1837554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5979528","Offset: 85,548,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1837699 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5980718","Offset: 85,552,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1837815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5980180","Offset: 85,556,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1837943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5981409","Offset: 85,560,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1838071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5980901","Offset: 85,564,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1838207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5988513","Offset: 85,569,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1838331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5989832","Offset: 85,573,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1838467 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5989149","Offset: 85,577,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1838578 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5990144","Offset: 85,581,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1838706 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5996313","Offset: 85,585,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1838830 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5997554","Offset: 85,589,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1838958 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5997013","Offset: 85,593,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1839261 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5998049","Offset: 85,597,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1839402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.5997533","Offset: 85,601,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1839538 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6005324","Offset: 85,605,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1839675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6006561","Offset: 85,609,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1839803 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6006015","Offset: 85,614,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1839931 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6007240","Offset: 85,618,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1840059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6006732","Offset: 85,622,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1840187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6013716","Offset: 85,626,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1840298 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6014911","Offset: 85,630,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1840434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6014310","Offset: 85,634,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1840562 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6015142","Offset: 85,638,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1840695 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6021652","Offset: 85,642,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1840823 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6022868","Offset: 85,646,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1840955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6022309","Offset: 85,650,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1841074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6023513","Offset: 85,655,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1841198 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6023005","Offset: 85,659,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1841330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6030429","Offset: 85,663,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1841475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6031611","Offset: 85,667,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1841599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6031027","Offset: 85,671,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1841719 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6031867","Offset: 85,675,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1841868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6038216","Offset: 85,679,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1842000 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6039415","Offset: 85,683,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1842133 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6038864","Offset: 85,687,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1842261 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6040058","Offset: 85,691,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1842397 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6039551","Offset: 85,696,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1842512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6047193","Offset: 85,700,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1842640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6048349","Offset: 85,704,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1842768 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6047743","Offset: 85,708,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1842896 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6048580","Offset: 85,712,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1843024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6049288","Offset: 85,716,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1843135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6056004","Offset: 85,720,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1843267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6056746","Offset: 85,724,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1843417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6057125","Offset: 85,728,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1843771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6057330","Offset: 85,732,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1843907 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6064277","Offset: 85,736,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1844057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6065386","Offset: 85,741,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1844185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6064916","Offset: 85,745,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1844330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6065872","Offset: 85,749,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1844475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6065416","Offset: 85,753,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1844603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6073015","Offset: 85,757,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1844727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6074196","Offset: 85,761,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1844846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6073663","Offset: 85,765,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1844974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6074483","Offset: 85,769,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1845102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6081023","Offset: 85,773,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1845234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6082176","Offset: 85,777,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1845367 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6081701","Offset: 85,782,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1845708 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6082521","Offset: 85,786,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1845845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6082094","Offset: 85,790,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1845960 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6089100","Offset: 85,794,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1846096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6090222","Offset: 85,798,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1846224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6089702","Offset: 85,802,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1846352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6090496","Offset: 85,806,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1846480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6097305","Offset: 85,810,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1846613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6098482","Offset: 85,814,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1846745 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6098017","Offset: 85,818,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1846890 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6099020","Offset: 85,822,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1847022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6098589","Offset: 85,827,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1847150 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6105787","Offset: 85,831,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1847274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6106960","Offset: 85,835,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1847389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6106436","Offset: 85,839,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1847517 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6107255","Offset: 85,843,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1847649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6114005","Offset: 85,847,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1847777 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6115238","Offset: 85,851,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1847905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6114735","Offset: 85,855,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1848042 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6115519","Offset: 85,859,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1848161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6115814","Offset: 85,863,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1848473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6122807","Offset: 85,868,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1848601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6124330","Offset: 85,872,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1848733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6123882","Offset: 85,876,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1848874 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6123331","Offset: 85,880,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1849023 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6124433","Offset: 85,884,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1849343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6130440","Offset: 85,888,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1849463 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6131216","Offset: 85,892,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1849591 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6131600","Offset: 85,896,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1849719 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6131873","Offset: 85,900,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1849847 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6139131","Offset: 85,904,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1849975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6140360","Offset: 85,908,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1850090 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6139762","Offset: 85,913,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1850222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6140612","Offset: 85,917,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1850350 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6146743","Offset: 85,921,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1850478 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6148313","Offset: 85,925,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1850602 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6147856","Offset: 85,929,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1850734 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6148949","Offset: 85,933,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1850849 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6148522","Offset: 85,937,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1850973 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6155908","Offset: 85,941,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1851105 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6157145","Offset: 85,945,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1851233 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6156595","Offset: 85,949,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1851374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6157777","Offset: 85,954,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1851489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6157295","Offset: 85,958,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1851630 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6164838","Offset: 85,962,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1851792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6166003","Offset: 85,966,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1851946 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6165375","Offset: 85,970,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1852078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6166250","Offset: 85,974,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1852215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6172667","Offset: 85,978,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1852330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6173832","Offset: 85,982,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1852458 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6173367","Offset: 85,986,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1852586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6174335","Offset: 85,990,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1852714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6173926","Offset: 85,995,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1852838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6181870","Offset: 85,999,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1852949 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6183146","Offset: 86,003,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1853081 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6182595","Offset: 86,007,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1853209 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6183790","Offset: 86,011,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1853358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6183257","Offset: 86,015,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1853503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6190348","Offset: 86,019,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1853635 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6191552","Offset: 86,023,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1853751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6190962","Offset: 86,027,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1853891 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6191833","Offset: 86,031,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1854024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6198007","Offset: 86,035,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1854152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6199124","Offset: 86,040,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1854275 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6198660","Offset: 86,044,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1854391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6199564","Offset: 86,048,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1854519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6199159","Offset: 86,052,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1854860 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6206596","Offset: 86,056,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1854988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6207786","Offset: 86,060,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1855116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6207184","Offset: 86,064,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1855244 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6208068","Offset: 86,068,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1855372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6208806","Offset: 86,072,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1855487 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6230067","Offset: 86,076,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1855619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6230810","Offset: 86,081,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1855747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6231543","Offset: 86,085,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1855871 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6237457","Offset: 86,089,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1855995 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6238199","Offset: 86,093,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1856131 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6238699","Offset: 86,097,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1856264 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6244821","Offset: 86,101,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1856409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6245567","Offset: 86,105,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1856541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6246613","Offset: 86,109,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1856669 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6252168","Offset: 86,113,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1856793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6266649","Offset: 86,117,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1856912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6288435","Offset: 86,121,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1857045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6289211","Offset: 86,126,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1857168 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6291725","Offset: 86,130,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1857301 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6304383","Offset: 86,134,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1857429 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6305855","Offset: 86,138,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1857766 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6305032","Offset: 86,142,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1857902 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6308062","Offset: 86,146,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1858017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6322436","Offset: 86,150,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1858154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6323447","Offset: 86,154,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1858286 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6324087","Offset: 86,158,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1858414 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6326366","Offset: 86,162,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1858559 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6340906","Offset: 86,167,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1858713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6341926","Offset: 86,171,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1858828 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6342502","Offset: 86,175,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1858956 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6355993","Offset: 86,179,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1859084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6357576","Offset: 86,183,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1859229 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6358178","Offset: 86,187,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1859353 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6372219","Offset: 86,191,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1859468 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6383163","Offset: 86,195,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1859600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6256798","Offset: 86,199,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1859733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1426224","Offset: 86,203,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1859873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1427433","Offset: 86,208,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1860006 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1429958","Offset: 86,212,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1860181 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1430538","Offset: 86,216,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1860317 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1431801","Offset: 86,220,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1860441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1434813","Offset: 86,224,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1860573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1435842","Offset: 86,228,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1860718 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1436230","Offset: 86,232,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1860846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1437169","Offset: 86,236,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1860974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1439174","Offset: 86,240,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1861106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6376913","Offset: 86,244,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1861234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6399407","Offset: 86,248,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1861362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6405696","Offset: 86,253,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1861490 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6408209","Offset: 86,257,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1861623 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6417843","Offset: 86,261,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1861738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6420629","Offset: 86,265,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1861862 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6424434","Offset: 86,269,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1861990 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6433160","Offset: 86,273,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1862118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6434896","Offset: 86,277,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1862258 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6438080","Offset: 86,281,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1862374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6449296","Offset: 86,285,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1862506 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6450589","Offset: 86,289,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1862634 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6455919","Offset: 86,294,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1862762 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6464755","Offset: 86,298,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1862890 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6465988","Offset: 86,302,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1863026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6471138","Offset: 86,306,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1863159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6479500","Offset: 86,310,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1863287 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6482376","Offset: 86,314,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1863419 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6485094","Offset: 86,318,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1863547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6494566","Offset: 86,322,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1863671 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6496247","Offset: 86,326,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1863790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6501163","Offset: 86,330,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1863918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6517133","Offset: 86,334,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1864050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6518340","Offset: 86,339,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1864183 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6523673","Offset: 86,343,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1864328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6532420","Offset: 86,347,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1864464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6534101","Offset: 86,351,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1864579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6539205","Offset: 86,355,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1864887 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6547217","Offset: 86,359,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1865015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6548710","Offset: 86,363,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1865151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6553779","Offset: 86,367,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1865296 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6561963","Offset: 86,371,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1865441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6563064","Offset: 86,375,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1865578 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6568290","Offset: 86,380,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1865697 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6576687","Offset: 86,384,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1865825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6578044","Offset: 86,388,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1865953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6583190","Offset: 86,392,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1866081 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6590289","Offset: 86,396,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1866205 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6595068","Offset: 86,400,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1866320 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6596186","Offset: 86,404,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1866453 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6606314","Offset: 86,408,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1866598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6607837","Offset: 86,412,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1866747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6612821","Offset: 86,416,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1866871 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6620834","Offset: 86,420,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1867003 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6622340","Offset: 86,425,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1867118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6627605","Offset: 86,429,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1867242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6636531","Offset: 86,433,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1867374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6637658","Offset: 86,437,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1867502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6643226","Offset: 86,441,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1867818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6651332","Offset: 86,445,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1867937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6652489","Offset: 86,449,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1868074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6657314","Offset: 86,453,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1868210 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6665596","Offset: 86,457,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1868338 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6667209","Offset: 86,461,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1868479 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6672184","Offset: 86,466,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1868607 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6680504","Offset: 86,470,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1868731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6681638","Offset: 86,474,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1868846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6686985","Offset: 86,478,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1868974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6695778","Offset: 86,482,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1869102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6696939","Offset: 86,486,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1869234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6702089","Offset: 86,490,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1869358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6710375","Offset: 86,494,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1869507 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6711830","Offset: 86,498,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1869640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6716855","Offset: 86,502,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1869776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6724941","Offset: 86,507,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1869934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6726255","Offset: 86,511,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1870066 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6731346","Offset: 86,515,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1870194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6739798","Offset: 86,519,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1870305 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6741462","Offset: 86,523,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1870438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6743919","Offset: 86,527,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1870566 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6755114","Offset: 86,531,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1870694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6756493","Offset: 86,535,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1870817 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6761362","Offset: 86,539,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1870950 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6769634","Offset: 86,543,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1871061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6771187","Offset: 86,547,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1871184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6776094","Offset: 86,552,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1871317 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6784524","Offset: 86,556,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1871445 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6785996","Offset: 86,560,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1871568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6790955","Offset: 86,564,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1871683 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6799186","Offset: 86,568,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1871811 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6800333","Offset: 86,572,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1871939 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6806192","Offset: 86,576,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1872067 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6814435","Offset: 86,580,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1872191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6815578","Offset: 86,584,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1872345 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6820646","Offset: 86,588,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1872456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6828821","Offset: 86,593,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1872584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6830447","Offset: 86,597,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1872716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6835473","Offset: 86,601,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1872844 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6843687","Offset: 86,605,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1872972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6845206","Offset: 86,609,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1873087 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6850198","Offset: 86,613,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1873219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6858424","Offset: 86,617,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1873343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6859977","Offset: 86,621,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1873471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6864896","Offset: 86,625,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1873599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6873908","Offset: 86,629,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1873731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6875423","Offset: 86,633,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1873842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6880376","Offset: 86,638,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1873970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6888854","Offset: 86,642,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1874278 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6889826","Offset: 86,646,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1874410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6894080","Offset: 86,650,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1874538 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6903305","Offset: 86,654,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1874683 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6904342","Offset: 86,658,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1874819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6910520","Offset: 86,662,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1874939 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6916886","Offset: 86,666,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1875063 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6922709","Offset: 86,670,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1875212 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6923810","Offset: 86,674,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1875357 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6934742","Offset: 86,679,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1875485 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6935821","Offset: 86,683,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1875596 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6941052","Offset: 86,687,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1875728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6948472","Offset: 86,691,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1875856 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6952312","Offset: 86,695,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1875989 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6953792","Offset: 86,699,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1876112 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6963849","Offset: 86,703,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1876245 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6965879","Offset: 86,707,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1876381 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6969029","Offset: 86,711,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1876518 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6978300","Offset: 86,715,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1876693 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6979691","Offset: 86,720,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1877008 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6984807","Offset: 86,724,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1877136 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6993417","Offset: 86,728,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1877264 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.6994936","Offset: 86,732,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1877397 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7000107","Offset: 86,736,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1877512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7008342","Offset: 86,740,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1877640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7009438","Offset: 86,744,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1877763 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7014636","Offset: 86,748,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1877891 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7022751","Offset: 86,752,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1878019 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7024551","Offset: 86,756,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1878135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7029389","Offset: 86,760,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1878267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7037645","Offset: 86,765,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1878391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7039155","Offset: 86,769,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1878523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7044024","Offset: 86,773,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1878651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7052694","Offset: 86,777,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1878779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7054144","Offset: 86,781,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1878894 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7058979","Offset: 86,785,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1879018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7067188","Offset: 86,789,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1879146 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7068847","Offset: 86,793,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1879291 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7073844","Offset: 86,797,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1879419 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7082138","Offset: 86,801,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1879534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7083627","Offset: 86,806,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1879666 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7088667","Offset: 86,810,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1879794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7097311","Offset: 86,814,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1879922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7098552","Offset: 86,818,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1880055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7103211","Offset: 86,822,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1880187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7112103","Offset: 86,826,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1880302 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7113763","Offset: 86,830,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1880430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7118734","Offset: 86,834,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1880558 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7126977","Offset: 86,838,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1880686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7128466","Offset: 86,842,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1880814 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7133415","Offset: 86,846,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1880925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7141654","Offset: 86,851,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1881057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7143370","Offset: 86,855,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1881185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7148379","Offset: 86,859,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1881313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7156827","Offset: 86,863,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1881458 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7158303","Offset: 86,867,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1881608 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7163465","Offset: 86,871,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1881727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7171913","Offset: 86,875,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1881855 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7173228","Offset: 86,879,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1881983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7178493","Offset: 86,883,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1882115 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7186732","Offset: 86,887,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1882239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7187871","Offset: 86,892,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1882350 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7192897","Offset: 86,896,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1882482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7201482","Offset: 86,900,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1882610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7202757","Offset: 86,904,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1882738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7207626","Offset: 86,908,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1882862 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7215869","Offset: 86,912,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1882999 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7217353","Offset: 86,916,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1883297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7222081","Offset: 86,920,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1883447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7230942","Offset: 86,924,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1883562 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7232397","Offset: 86,928,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1883694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7237377","Offset: 86,932,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1883843 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7245582","Offset: 86,937,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1883971 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7247084","Offset: 86,941,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1884104 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7252237","Offset: 86,945,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1884219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7260174","Offset: 86,949,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1884343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7261530","Offset: 86,953,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1884471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7266552","Offset: 86,957,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1884616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7275073","Offset: 86,961,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1884739 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7276823","Offset: 86,965,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1884876 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7281477","Offset: 86,969,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1885013 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7290168","Offset: 86,973,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1885141 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7291985","Offset: 86,978,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1885452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7296453","Offset: 86,982,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1885580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7304871","Offset: 86,986,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1885712 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7306386","Offset: 86,990,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1885832 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7311254","Offset: 86,994,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1886147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7319361","Offset: 86,998,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1886293 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7321071","Offset: 87,002,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1886429 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7325829","Offset: 87,006,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1886553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7334298","Offset: 87,010,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1886681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7335433","Offset: 87,014,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1886813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7340733","Offset: 87,019,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1886933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7349816","Offset: 87,023,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1887056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7350986","Offset: 87,027,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1887180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7356323","Offset: 87,031,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1887308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7362625","Offset: 87,035,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1887432 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7363964","Offset: 87,039,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1887547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7374004","Offset: 87,043,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1887679 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7375523","Offset: 87,047,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1887807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7381262","Offset: 87,051,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1887935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7387641","Offset: 87,055,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1888063 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7389057","Offset: 87,059,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1888196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7399343","Offset: 87,064,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1888315 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7400884","Offset: 87,068,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1888460 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7405748","Offset: 87,072,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1888584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7414588","Offset: 87,076,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1888729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7415677","Offset: 87,080,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1888853 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7421010","Offset: 87,084,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1888968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7429180","Offset: 87,088,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1889100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7430904","Offset: 87,092,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1889228 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7436216","Offset: 87,096,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1889356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7442715","Offset: 87,100,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1889480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7448526","Offset: 87,105,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1889616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7449644","Offset: 87,109,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1889736 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7460071","Offset: 87,113,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1889860 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7461880","Offset: 87,117,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1889992 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7466429","Offset: 87,121,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1890120 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7475226","Offset: 87,125,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1890244 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7476745","Offset: 87,129,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1890363 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7481682","Offset: 87,133,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1890521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7489934","Offset: 87,137,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1890653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7491538","Offset: 87,141,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1890785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7496129","Offset: 87,145,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1890948 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7503668","Offset: 87,150,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1891101 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7506531","Offset: 87,154,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1891221 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7510362","Offset: 87,158,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1891344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7519494","Offset: 87,162,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1891477 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7520602","Offset: 87,166,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1891605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7525419","Offset: 87,170,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1891728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7534081","Offset: 87,174,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1891848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7535455","Offset: 87,178,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1891976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7541053","Offset: 87,182,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1892104 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7549048","Offset: 87,186,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1892232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7550738","Offset: 87,191,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1892548 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7555213","Offset: 87,195,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1892680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7563427","Offset: 87,199,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1892808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7564660","Offset: 87,203,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1892932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7569716","Offset: 87,207,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1893085 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7577819","Offset: 87,211,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1893247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7579308","Offset: 87,215,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1893392 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7584215","Offset: 87,219,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1893525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7592743","Offset: 87,223,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1893657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7594053","Offset: 87,227,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1893776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7599118","Offset: 87,232,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1893900 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7607391","Offset: 87,236,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1894032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7608684","Offset: 87,240,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1894160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7613975","Offset: 87,244,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1894284 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7622367","Offset: 87,248,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1894399 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7623553","Offset: 87,252,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1894532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7628754","Offset: 87,256,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1894660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7636933","Offset: 87,260,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1894805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7638606","Offset: 87,264,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1894933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7643499","Offset: 87,268,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1895236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7652331","Offset: 87,272,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1895381 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7653471","Offset: 87,277,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1895496 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7657780","Offset: 87,281,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1895632 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7666941","Offset: 87,285,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1895773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7668409","Offset: 87,289,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1895901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7673636","Offset: 87,293,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1896029 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7680530","Offset: 87,297,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1896161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7685902","Offset: 87,301,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1896277 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7687041","Offset: 87,305,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1896400 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7697849","Offset: 87,309,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1896528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7699219","Offset: 87,313,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1896652 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7704010","Offset: 87,318,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1896780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7712833","Offset: 87,322,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1896891 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7713951","Offset: 87,326,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1897023 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7718961","Offset: 87,330,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1897173 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7727203","Offset: 87,334,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1897301 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7728897","Offset: 87,338,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1897429 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7733565","Offset: 87,342,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1897565 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7741800","Offset: 87,346,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1897680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7743323","Offset: 87,350,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1897804 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7748362","Offset: 87,354,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1897949 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7756729","Offset: 87,358,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1898077 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7757830","Offset: 87,363,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1898205 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7763146","Offset: 87,367,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1898316 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7772025","Offset: 87,371,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1898444 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7773139","Offset: 87,375,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1898572 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7778937","Offset: 87,379,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1898700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7785247","Offset: 87,383,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1898824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7786531","Offset: 87,387,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1898960 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7796738","Offset: 87,391,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1899088 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7798295","Offset: 87,395,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1899216 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7803496","Offset: 87,399,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1899344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7808595","Offset: 87,404,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1899477 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7815481","Offset: 87,408,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1899600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7818745","Offset: 87,412,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1899716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7821740","Offset: 87,416,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1899865 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7830470","Offset: 87,420,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1900010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7834041","Offset: 87,424,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1900155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7836853","Offset: 87,428,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1900279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7845113","Offset: 87,432,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1900411 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7848607","Offset: 87,436,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1900526 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7851863","Offset: 87,440,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1900650 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7860435","Offset: 87,444,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1900778 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7863596","Offset: 87,449,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1900906 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7866625","Offset: 87,453,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1901034 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7874881","Offset: 87,457,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1901170 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7879964","Offset: 87,461,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1901337 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7881000","Offset: 87,465,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1901482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7892187","Offset: 87,469,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1901798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7893074","Offset: 87,473,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1901921 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7898131","Offset: 87,477,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1902058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7906442","Offset: 87,481,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1902182 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7907632","Offset: 87,485,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1902297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7912164","Offset: 87,490,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1902433 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7919853","Offset: 87,494,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1902561 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7922750","Offset: 87,498,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1902685 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7926427","Offset: 87,502,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1902809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7935848","Offset: 87,506,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1902941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7937947","Offset: 87,510,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1903061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7941377","Offset: 87,514,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1903184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7950918","Offset: 87,518,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1903317 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7952586","Offset: 87,522,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1903466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7955914","Offset: 87,526,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1903590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7964439","Offset: 87,531,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1903705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7968121","Offset: 87,535,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1903837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7969721","Offset: 87,539,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1903969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7977909","Offset: 87,543,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1904097 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7981250","Offset: 87,547,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1904272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7988260","Offset: 87,551,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1904592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7991426","Offset: 87,555,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1904716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.7994395","Offset: 87,559,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1904831 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8006069","Offset: 87,563,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1904972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8007434","Offset: 87,567,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1905104 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8011782","Offset: 87,571,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1905228 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8020887","Offset: 87,576,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1905356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8021847","Offset: 87,580,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1905488 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8026797","Offset: 87,584,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1905625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8035005","Offset: 87,588,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1905753 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8041828","Offset: 87,592,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1906039 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8049994","Offset: 87,596,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1906261 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8053232","Offset: 87,600,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1906461 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8057103","Offset: 87,604,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1906790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8067253","Offset: 87,608,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1907161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8068068","Offset: 87,612,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1907408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8072642","Offset: 87,617,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1907605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8080027","Offset: 87,621,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1907788 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8082959","Offset: 87,625,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1907933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8086116","Offset: 87,629,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1908065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8095238","Offset: 87,633,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1908193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8098298","Offset: 87,637,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1908321 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8102065","Offset: 87,641,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1908454 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8110832","Offset: 87,645,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1908577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8113824","Offset: 87,649,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1908693 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8117864","Offset: 87,653,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1908825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8127579","Offset: 87,657,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1908953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8128970","Offset: 87,662,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1909077 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8134470","Offset: 87,666,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1909205 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8141083","Offset: 87,670,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1909350 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8147082","Offset: 87,674,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1909490 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8148448","Offset: 87,678,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1909631 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8159106","Offset: 87,682,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1909793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8160463","Offset: 87,686,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1909926 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8165719","Offset: 87,690,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1910049 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8173933","Offset: 87,694,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1910165 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8175379","Offset: 87,698,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1910310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8180575","Offset: 87,703,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1910442 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8189365","Offset: 87,707,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1910570 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8191981","Offset: 87,711,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1910698 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8194651","Offset: 87,715,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1910830 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8204832","Offset: 87,719,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1911214 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8205587","Offset: 87,723,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1911334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8210937","Offset: 87,727,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1911470 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8219057","Offset: 87,731,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1911598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8221638","Offset: 87,735,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1911730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8224404","Offset: 87,739,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1911858 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8234460","Offset: 87,744,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1911991 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8235517","Offset: 87,748,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1912110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8238863","Offset: 87,752,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1912242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8250964","Offset: 87,756,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1912405 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8252337","Offset: 87,760,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1912537 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8256113","Offset: 87,764,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1912665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8268226","Offset: 87,768,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1912780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8269630","Offset: 87,772,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1912912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8273317","Offset: 87,776,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1913040 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8285421","Offset: 87,780,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1913168 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8286914","Offset: 87,784,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1913296 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8290328","Offset: 87,789,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1913429 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8302636","Offset: 87,793,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1913544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8304411","Offset: 87,797,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1913672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8308025","Offset: 87,801,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1913979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8321222","Offset: 87,805,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1914128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8322174","Offset: 87,809,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1914256 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8327055","Offset: 87,813,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1914384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8344382","Offset: 87,817,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1914517 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8346041","Offset: 87,821,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1914636 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8350027","Offset: 87,825,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1914760 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8362374","Offset: 87,830,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1914892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8363288","Offset: 87,834,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1915020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8547394","Offset: 87,838,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1915186 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8548265","Offset: 87,842,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1915314 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8553163","Offset: 87,846,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1915442 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8561360","Offset: 87,850,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1915566 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8562708","Offset: 87,854,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1915720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8564785","Offset: 87,858,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1915835 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8574210","Offset: 87,862,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1915963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8575380","Offset: 87,866,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1916091 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8577965","Offset: 87,870,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1916223 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8587220","Offset: 87,875,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1916347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8595928","Offset: 87,879,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1916458 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8601811","Offset: 87,883,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1916603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8605950","Offset: 87,887,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1916731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8607298","Offset: 87,891,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1916863 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8617599","Offset: 87,895,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1916987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8618759","Offset: 87,899,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1917124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8621498","Offset: 87,903,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1917239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8623034","Offset: 87,907,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1917384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8634200","Offset: 87,911,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1917725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8634844","Offset: 87,916,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1917866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8639294","Offset: 87,920,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1917994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8646868","Offset: 87,924,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1918105 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8647768","Offset: 87,928,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1918233 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8652529","Offset: 87,932,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1918361 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8658515","Offset: 87,936,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1918493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8662262","Offset: 87,940,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1918634 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8664706","Offset: 87,944,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1918770 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8674141","Offset: 87,948,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1918890 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8675057","Offset: 87,952,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1919014 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8677737","Offset: 87,956,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1919142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8679281","Offset: 87,961,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1919270 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8689961","Offset: 87,965,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1919393 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8690815","Offset: 87,969,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1919509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8693429","Offset: 87,973,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1919637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8695162","Offset: 87,977,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1919786 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8705231","Offset: 87,981,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1919914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8706349","Offset: 87,985,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1920046 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8708675","Offset: 87,989,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1920178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8710207","Offset: 87,993,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1920294 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8721897","Offset: 87,997,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1920422 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8722827","Offset: 88,002,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1920550 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8723360","Offset: 88,006,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1920673 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8725831","Offset: 88,010,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1921015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8736382","Offset: 88,014,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1921143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8737257","Offset: 88,018,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1921279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8740082","Offset: 88,022,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1921394 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8740944","Offset: 88,026,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1921522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8751487","Offset: 88,030,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1921655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8752365","Offset: 88,034,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1921783 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8755228","Offset: 88,038,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1921906 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8764632","Offset: 88,043,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1922039 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8765553","Offset: 88,047,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1922188 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8766531","Offset: 88,051,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1922316 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8769266","Offset: 88,055,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1922444 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8779292","Offset: 88,059,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1922568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8780632","Offset: 88,063,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1922700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8781665","Offset: 88,067,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1922815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8784037","Offset: 88,071,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1922943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8794226","Offset: 88,075,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1923076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8795232","Offset: 88,079,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1923204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8797924","Offset: 88,083,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1923327 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8799022","Offset: 88,088,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1923442 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8815696","Offset: 88,092,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1923575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8816681","Offset: 88,096,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1923895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8821041","Offset: 88,100,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1924023 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8829003","Offset: 88,104,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1924159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8830339","Offset: 88,108,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1924304 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8832583","Offset: 88,112,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1924432 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8833441","Offset: 88,116,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1924552 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8844338","Offset: 88,120,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1924705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8845221","Offset: 88,124,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1924842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8846974","Offset: 88,129,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1924970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8849325","Offset: 88,133,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1925098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8859292","Offset: 88,137,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1925230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8860206","Offset: 88,141,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1925350 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8861788","Offset: 88,145,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1925473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8864464","Offset: 88,149,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1925601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8873518","Offset: 88,153,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1925729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8876389","Offset: 88,157,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1925866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8877656","Offset: 88,161,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1925994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8887004","Offset: 88,165,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1926139 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8887900","Offset: 88,169,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1926271 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8890602","Offset: 88,174,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1926399 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8891498","Offset: 88,178,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1926523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8902143","Offset: 88,182,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1926660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8903025","Offset: 88,186,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1926775 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8905688","Offset: 88,190,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1926920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8906789","Offset: 88,194,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1927048 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8918002","Offset: 88,198,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1927176 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8918910","Offset: 88,202,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1927304 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8920493","Offset: 88,206,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1927415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8922849","Offset: 88,210,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1927547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8933678","Offset: 88,215,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1927675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8934591","Offset: 88,219,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1927807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8936805","Offset: 88,223,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1927931 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8938047","Offset: 88,227,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1928063 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8948722","Offset: 88,231,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1928178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8949640","Offset: 88,235,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1928306 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8952080","Offset: 88,239,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1928456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8953291","Offset: 88,243,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1928584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8964346","Offset: 88,247,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1928708 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8965246","Offset: 88,251,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1928823 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8967755","Offset: 88,256,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1928955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8969044","Offset: 88,260,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1929100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8979429","Offset: 88,264,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1929228 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8980428","Offset: 88,268,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1929360 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8982898","Offset: 88,272,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1929493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8984212","Offset: 88,276,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1929608 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8994635","Offset: 88,280,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1929736 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8995540","Offset: 88,284,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1929868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8997200","Offset: 88,288,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1929992 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.8999738","Offset: 88,292,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1930120 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9010162","Offset: 88,296,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1930235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9011084","Offset: 88,301,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1930564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9013664","Offset: 88,305,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1930687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9014557","Offset: 88,309,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1930824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9025078","Offset: 88,313,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1930956 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9026034","Offset: 88,317,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1931084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9027903","Offset: 88,321,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1931208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9030851","Offset: 88,325,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1931323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9040140","Offset: 88,329,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1931472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9041049","Offset: 88,333,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1931605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9043932","Offset: 88,337,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1931728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9053076","Offset: 88,342,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1931852 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9054194","Offset: 88,346,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1931989 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9056570","Offset: 88,350,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1932104 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9057855","Offset: 88,354,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1932232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9068180","Offset: 88,358,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1932437 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9068999","Offset: 88,362,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1932573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9071892","Offset: 88,366,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1932701 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9072797","Offset: 88,370,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1932812 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9083246","Offset: 88,374,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1932944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9084117","Offset: 88,378,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1933106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9086839","Offset: 88,382,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1933486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9087500","Offset: 88,387,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1933640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9098627","Offset: 88,391,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1933772 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9099545","Offset: 88,395,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1933900 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9102378","Offset: 88,399,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1934037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9110748","Offset: 88,403,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1934203 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9111589","Offset: 88,407,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1934365 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9114939","Offset: 88,411,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1934523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9115805","Offset: 88,415,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1934651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9125934","Offset: 88,419,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1934788 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9126842","Offset: 88,423,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1934903 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9128263","Offset: 88,428,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1935031 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9130960","Offset: 88,432,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1935159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9141413","Offset: 88,436,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1935287 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9142305","Offset: 88,440,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1935415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9143734","Offset: 88,444,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1935530 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9146077","Offset: 88,448,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1935666 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9155955","Offset: 88,452,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1935794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9157610","Offset: 88,456,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1935927 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9158778","Offset: 88,460,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1936072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9161215","Offset: 88,464,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1936225 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9171268","Offset: 88,468,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1936362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9172381","Offset: 88,473,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1936490 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9174228","Offset: 88,477,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1936618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9183397","Offset: 88,481,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1936750 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9184328","Offset: 88,485,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1936874 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9186998","Offset: 88,489,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1936989 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9195967","Offset: 88,493,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1937126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9197481","Offset: 88,497,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1937254 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9198676","Offset: 88,501,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1937390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9201211","Offset: 88,505,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1937518 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9211289","Offset: 88,509,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1937655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9212210","Offset: 88,514,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1937774 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9215312","Offset: 88,518,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1937902 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9216469","Offset: 88,522,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1938039 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9226768","Offset: 88,526,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1938171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9227660","Offset: 88,530,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1938299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9230378","Offset: 88,534,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1938414 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9231265","Offset: 88,538,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1938551 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9242845","Offset: 88,542,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1938679 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9243762","Offset: 88,546,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1938811 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9244953","Offset: 88,550,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1938960 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9247637","Offset: 88,555,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1939097 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9257590","Offset: 88,559,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1939216 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9258704","Offset: 88,563,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1939344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9261111","Offset: 88,567,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1939468 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9269746","Offset: 88,571,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1939856 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9270690","Offset: 88,575,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1939993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9273108","Offset: 88,579,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1940125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9274376","Offset: 88,583,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1940262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9285298","Offset: 88,587,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1940377 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9286450","Offset: 88,591,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1940522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9288848","Offset: 88,595,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1940710 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9290064","Offset: 88,600,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1940906 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9300104","Offset: 88,604,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1941418 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9300884","Offset: 88,608,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1941721 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9303065","Offset: 88,612,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1941917 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9304260","Offset: 88,616,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1942054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9314439","Offset: 88,620,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1942216 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9315297","Offset: 88,624,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1942515 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9318407","Offset: 88,628,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1942796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9319014","Offset: 88,632,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1943014 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9329723","Offset: 88,636,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1943219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9330482","Offset: 88,641,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1943364 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9333260","Offset: 88,645,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1943483 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9334160","Offset: 88,649,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1943624 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9344733","Offset: 88,653,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1943752 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9345586","Offset: 88,657,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1943888 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9348309","Offset: 88,661,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1944016 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9349213","Offset: 88,665,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1944149 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9359777","Offset: 88,669,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1944268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9360861","Offset: 88,673,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1944400 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9363281","Offset: 88,677,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1944533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9364611","Offset: 88,681,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1944661 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9375487","Offset: 88,686,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1944797 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9376405","Offset: 88,690,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1944912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9379498","Offset: 88,694,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1945049 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9380343","Offset: 88,698,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1945181 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9391180","Offset: 88,702,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1945309 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9392093","Offset: 88,706,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1945437 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9393672","Offset: 88,710,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1945569 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9395989","Offset: 88,714,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1945685 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9406476","Offset: 88,718,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1945813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9407338","Offset: 88,722,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1945945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9409731","Offset: 88,727,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1946069 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9410994","Offset: 88,731,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1946205 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9422045","Offset: 88,735,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1946316 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9423440","Offset: 88,739,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1946453 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9424170","Offset: 88,743,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1946576 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9428505","Offset: 88,747,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1946709 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9436675","Offset: 88,751,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1946832 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9437832","Offset: 88,755,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1946965 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9440323","Offset: 88,759,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1947080 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9441254","Offset: 88,763,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1947212 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9451792","Offset: 88,768,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1947340 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9452782","Offset: 88,772,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1947468 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9456012","Offset: 88,776,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1947605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9457087","Offset: 88,780,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1947728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9467780","Offset: 88,784,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1947861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9468795","Offset: 88,788,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1947993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9471351","Offset: 88,792,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1948121 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9472426","Offset: 88,796,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1948249 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9482845","Offset: 88,800,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1948381 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9484053","Offset: 88,804,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1948496 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9486438","Offset: 88,808,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1948624 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9487488","Offset: 88,813,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1948757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9497983","Offset: 88,817,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1948880 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9499097","Offset: 88,821,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1949060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9502156","Offset: 88,825,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1949247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9503146","Offset: 88,829,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1949409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9513792","Offset: 88,833,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1949542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9514879","Offset: 88,837,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1949674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9517286","Offset: 88,841,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1949802 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9518561","Offset: 88,845,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1949917 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9529207","Offset: 88,849,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1950054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9530214","Offset: 88,854,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1950190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9532471","Offset: 88,858,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1950323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9533802","Offset: 88,862,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1950476 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9544256","Offset: 88,866,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1950655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9545664","Offset: 88,870,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1950796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9546359","Offset: 88,874,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1950967 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9550860","Offset: 88,878,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1951103 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9559791","Offset: 88,882,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1951236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9560878","Offset: 88,886,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1951364 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9563361","Offset: 88,890,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1951479 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9564355","Offset: 88,894,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1951611 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9574912","Offset: 88,899,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1951756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9575948","Offset: 88,903,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1951987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9578175","Offset: 88,907,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1952149 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9579105","Offset: 88,911,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1952272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9589440","Offset: 88,915,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1952409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9590643","Offset: 88,919,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1952541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9592891","Offset: 88,923,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1952669 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9593860","Offset: 88,927,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1952797 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9604876","Offset: 88,931,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1952934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9606135","Offset: 88,935,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1953049 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9608563","Offset: 88,940,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1953177 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9609625","Offset: 88,944,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1953309 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9620300","Offset: 88,948,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1953450 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9621316","Offset: 88,952,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1953578 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9624115","Offset: 88,956,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1953693 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9625736","Offset: 88,960,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1953825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9635418","Offset: 88,964,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1953979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9636416","Offset: 88,968,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1954107 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9639816","Offset: 88,972,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1954235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9648085","Offset: 88,976,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1954372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9649510","Offset: 88,980,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1954491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9650534","Offset: 88,985,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1954619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9655031","Offset: 88,989,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1954747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9663317","Offset: 88,993,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1954875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9664337","Offset: 88,997,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1955003 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9666824","Offset: 89,001,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1955118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9667836","Offset: 89,005,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1955272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9678370","Offset: 89,009,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1955434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9679394","Offset: 89,013,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1955583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9681655","Offset: 89,017,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1955716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9683063","Offset: 89,021,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1955852 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9693768","Offset: 89,026,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1955972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9694758","Offset: 89,030,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1956112 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9699076","Offset: 89,034,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1956240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9700109","Offset: 89,038,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1956368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9709355","Offset: 89,042,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1956492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9710583","Offset: 89,046,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1956607 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9713024","Offset: 89,050,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1956761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9714001","Offset: 89,054,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1956893 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9724676","Offset: 89,058,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1957025 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9725671","Offset: 89,062,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1957153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9729673","Offset: 89,067,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1957281 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9730671","Offset: 89,071,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1957397 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9740667","Offset: 89,075,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1957525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9741653","Offset: 89,079,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1957653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9744255","Offset: 89,083,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1957785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9745446","Offset: 89,087,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1957934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9755605","Offset: 89,091,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1958049 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9756664","Offset: 89,095,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1958182 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9759176","Offset: 89,099,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1958378 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9760183","Offset: 89,103,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1958583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9770538","Offset: 89,107,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1958724 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9772100","Offset: 89,112,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1958860 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9773120","Offset: 89,116,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1959018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9775560","Offset: 89,120,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1959180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9785894","Offset: 89,124,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1959308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9786935","Offset: 89,128,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1959436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9789414","Offset: 89,132,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1959577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9790732","Offset: 89,136,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1959696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9801195","Offset: 89,140,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1959824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9802253","Offset: 89,144,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1959957 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9804816","Offset: 89,148,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1960085 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9806062","Offset: 89,153,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1960213 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9816738","Offset: 89,157,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1960328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9817779","Offset: 89,161,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1960456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9820053","Offset: 89,165,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1960588 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9821030","Offset: 89,169,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1960716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9832576","Offset: 89,173,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1960844 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9833681","Offset: 89,177,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1960981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9834649","Offset: 89,181,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1961139 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9839069","Offset: 89,185,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1961352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9847129","Offset: 89,189,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1961493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9848098","Offset: 89,193,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1961621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9850572","Offset: 89,198,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1961749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9851541","Offset: 89,202,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1961864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9861969","Offset: 89,206,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1961992 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9862984","Offset: 89,210,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1962120 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9865467","Offset: 89,214,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1962252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9866987","Offset: 89,218,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1962376 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9877696","Offset: 89,222,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1962491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9878746","Offset: 89,226,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1962623 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9881383","Offset: 89,230,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1962756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9882419","Offset: 89,234,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1962884 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9894165","Offset: 89,239,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1963012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9895820","Offset: 89,243,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1963148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9897156","Offset: 89,247,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1963263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9907716","Offset: 89,251,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1963391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9908740","Offset: 89,255,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1963524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9909866","Offset: 89,259,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1963647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9914142","Offset: 89,263,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1963775 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9923179","Offset: 89,267,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1963891 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9924232","Offset: 89,271,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1964027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9926434","Offset: 89,275,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1964151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9928631","Offset: 89,280,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1964279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9938466","Offset: 89,284,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1964407 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9939588","Offset: 89,288,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1964539 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9942221","Offset: 89,292,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1964650 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9951164","Offset: 89,296,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1964782 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9952572","Offset: 89,300,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1964910 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9954897","Offset: 89,304,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1965038 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9955883","Offset: 89,308,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1965183 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9966972","Offset: 89,312,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1965299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9968072","Offset: 89,316,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1965452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9970470","Offset: 89,320,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1965580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9971951","Offset: 89,325,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1965708 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9983070","Offset: 89,329,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1965836 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9984098","Offset: 89,333,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1965968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9986518","Offset: 89,337,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1966084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9987848","Offset: 89,341,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1966216 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9998937","Offset: 89,345,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1966344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","6.9999949","Offset: 89,349,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1966472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0002304","Offset: 89,353,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1966600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0003324","Offset: 89,357,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1966711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0014007","Offset: 89,361,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1966843 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0015514","Offset: 89,366,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1967201 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0016559","Offset: 89,370,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1967351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0020804","Offset: 89,374,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1967504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0029534","Offset: 89,378,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1967713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0030554","Offset: 89,382,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1967871 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0032965","Offset: 89,386,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1968004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0034334","Offset: 89,390,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1968157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0044497","Offset: 89,394,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1968289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0045487","Offset: 89,398,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1968417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0047937","Offset: 89,402,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1968537 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0049003","Offset: 89,406,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1968665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0059989","Offset: 89,411,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1968793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0061103","Offset: 89,415,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1968921 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0062114","Offset: 89,419,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1969049 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0066539","Offset: 89,423,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1969160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0075358","Offset: 89,427,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1969296 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0076685","Offset: 89,431,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1969424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0080257","Offset: 89,435,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1969552 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0079723","Offset: 89,439,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1969680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0090881","Offset: 89,443,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1969813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0091964","Offset: 89,447,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1969928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0094225","Offset: 89,452,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1970056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0095407","Offset: 89,456,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1970188 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0106330","Offset: 89,460,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1970346 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0107358","Offset: 89,464,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1970551 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0109534","Offset: 89,468,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1970687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0110763","Offset: 89,472,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1970820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0122312","Offset: 89,476,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1970969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0123349","Offset: 89,480,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1971101 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0123998","Offset: 89,484,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1971229 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0128448","Offset: 89,488,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1971340 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0136470","Offset: 89,492,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1971477 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0137903","Offset: 89,497,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1971605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0139106","Offset: 89,501,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1971733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0143326","Offset: 89,505,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1971861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0151492","Offset: 89,509,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1971993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0152538","Offset: 89,513,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1972112 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0155090","Offset: 89,517,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1972257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0156186","Offset: 89,521,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1972385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0167105","Offset: 89,525,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1972518 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0168141","Offset: 89,529,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1972641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0170586","Offset: 89,533,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1972757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0171793","Offset: 89,538,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1972889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0183023","Offset: 89,542,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1973017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0184043","Offset: 89,546,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1973145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0186432","Offset: 89,550,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1973273 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0187439","Offset: 89,554,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1973405 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0197965","Offset: 89,558,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1973520 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0199271","Offset: 89,562,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1973665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0201515","Offset: 89,566,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1973793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0202574","Offset: 89,570,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1973921 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0213385","Offset: 89,574,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1974045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0214405","Offset: 89,579,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1974160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0216854","Offset: 89,583,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1974288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0218322","Offset: 89,587,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1974421 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0228565","Offset: 89,591,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1974553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0230067","Offset: 89,595,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1974685 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0230780","Offset: 89,599,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1974822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0233182","Offset: 89,603,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1974941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0241733","Offset: 89,607,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1975065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0243845","Offset: 89,611,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1975193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0245931","Offset: 89,615,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1975334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0254008","Offset: 89,619,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1975462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0256538","Offset: 89,624,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1975585 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0258992","Offset: 89,628,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1975726 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0266206","Offset: 89,632,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1975871 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0268600","Offset: 89,636,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1976033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0270823","Offset: 89,640,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1976187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0278426","Offset: 89,644,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1976362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0280713","Offset: 89,648,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1976481 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0282915","Offset: 89,652,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1976627 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0290364","Offset: 89,656,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1976763 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0292800","Offset: 89,660,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1976891 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0295015","Offset: 89,665,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1977019 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0304960","Offset: 89,669,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1977134 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0306266","Offset: 89,673,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1977267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0308621","Offset: 89,677,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1977420 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0309637","Offset: 89,681,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1977629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0320013","Offset: 89,685,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1977783 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0321092","Offset: 89,689,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1977902 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0323649","Offset: 89,693,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1978039 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0324638","Offset: 89,697,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1978175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0335135","Offset: 89,701,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1978303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0336270","Offset: 89,705,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1978427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0339013","Offset: 89,710,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1978564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0340275","Offset: 89,714,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1978679 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0349530","Offset: 89,718,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1978807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0351894","Offset: 89,722,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1978939 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0354258","Offset: 89,726,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1979071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0362672","Offset: 89,730,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1979195 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0363661","Offset: 89,734,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1979310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0366499","Offset: 89,738,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1979443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0367334","Offset: 89,742,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1979571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0377609","Offset: 89,746,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1979703 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0378658","Offset: 89,751,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1979827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0380646","Offset: 89,755,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1979963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0383241","Offset: 89,759,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1980074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0393118","Offset: 89,763,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1980223 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0393998","Offset: 89,767,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1980445 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0396622","Offset: 89,771,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1980590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0397454","Offset: 89,775,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1980723 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0407987","Offset: 89,779,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1980833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0416679","Offset: 89,783,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1980970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0417592","Offset: 89,787,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1981098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0428498","Offset: 89,792,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1981247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0429385","Offset: 89,796,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1981375 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0430956","Offset: 89,800,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1981508 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0433686","Offset: 89,804,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1981619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0444463","Offset: 89,808,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1981751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0445368","Offset: 89,812,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1981879 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0446929","Offset: 89,816,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1982003 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0449263","Offset: 89,820,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1982131 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0460083","Offset: 89,824,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1982254 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0461018","Offset: 89,828,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1982391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0462042","Offset: 89,832,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1982519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0464342","Offset: 89,837,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1982651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0474450","Offset: 89,841,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1982779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0475427","Offset: 89,845,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1982911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0477996","Offset: 89,849,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1983027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0479232","Offset: 89,853,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1983155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0490368","Offset: 89,857,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1983283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0491281","Offset: 89,861,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1983432 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0494260","Offset: 89,865,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1983560 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0501377","Offset: 89,869,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1983679 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0502828","Offset: 89,873,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1983820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0504914","Offset: 89,878,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1983944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0512555","Offset: 89,882,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1984072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0514710","Offset: 89,886,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1984200 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0517415","Offset: 89,890,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1984328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0526593","Offset: 89,894,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1984443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0527527","Offset: 89,898,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1984571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0528730","Offset: 89,902,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1984699 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0531175","Offset: 89,906,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1984827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0541936","Offset: 89,910,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1984959 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0542875","Offset: 89,914,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1985079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0544312","Offset: 89,918,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1985207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0546450","Offset: 89,923,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1985335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0554915","Offset: 89,927,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1985463 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0557377","Offset: 89,931,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1985591 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0563700","Offset: 89,935,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1985723 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0566004","Offset: 89,939,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1985838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0574887","Offset: 89,943,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1985971 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0575800","Offset: 89,947,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1986103 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0577178","Offset: 89,951,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1986231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0580156","Offset: 89,955,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1986363 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0590345","Offset: 89,959,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1986474 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0591288","Offset: 89,964,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1986606 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0593772","Offset: 89,968,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1986760 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0594957","Offset: 89,972,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1987003 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0605424","Offset: 89,976,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1987148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0606542","Offset: 89,980,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1987263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0608726","Offset: 89,984,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1987396 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0609993","Offset: 89,988,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1987524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0620135","Offset: 89,992,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1987647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0621177","Offset: 89,996,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1987775 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0623899","Offset: 90,000,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1987925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0624768","Offset: 90,004,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1988040 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0635879","Offset: 90,009,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1988168 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0637006","Offset: 90,013,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1988292 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0639642","Offset: 90,017,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1988420 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0648521","Offset: 90,021,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1988548 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0649383","Offset: 90,025,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1988659 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0652143","Offset: 90,029,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1988791 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0653104","Offset: 90,033,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1988927 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0661932","Offset: 90,037,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1989060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0664303","Offset: 90,041,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1989188 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0666646","Offset: 90,045,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1989320 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0675841","Offset: 90,050,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1989435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0676737","Offset: 90,054,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1989601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0679332","Offset: 90,058,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1989811 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0680163","Offset: 90,062,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1989956 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0691346","Offset: 90,066,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1990084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0692233","Offset: 90,070,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1990199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0694810","Offset: 90,074,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1990327 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0695672","Offset: 90,078,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1990472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0705857","Offset: 90,082,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1990600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0706949","Offset: 90,086,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1990728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0709351","Offset: 90,091,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1990839 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0710371","Offset: 90,095,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1990971 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0720812","Offset: 90,099,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1991099 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0721691","Offset: 90,103,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1991227 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0724822","Offset: 90,107,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1991351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0726145","Offset: 90,111,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1991479 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0736641","Offset: 90,115,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1991594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0737580","Offset: 90,119,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1991718 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0740216","Offset: 90,123,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1991846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0741035","Offset: 90,127,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1991974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0752116","Offset: 90,131,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1992102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0753025","Offset: 90,136,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1992213 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0754258","Offset: 90,140,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1992341 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0756732","Offset: 90,144,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1992473 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0767067","Offset: 90,148,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1992605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0768360","Offset: 90,152,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1992733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0769375","Offset: 90,156,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1992870 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0771935","Offset: 90,160,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1992985 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0782456","Offset: 90,164,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1993113 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0783378","Offset: 90,168,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1993250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0784956","Offset: 90,172,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1993378 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0787337","Offset: 90,177,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1993506 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0797300","Offset: 90,181,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1993616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0798372","Offset: 90,185,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1993749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0801055","Offset: 90,189,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1993877 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0809468","Offset: 90,193,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1994000 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0810856","Offset: 90,197,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1994128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0813198","Offset: 90,201,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1995174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0813185","Offset: 90,205,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1995357 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0823950","Offset: 90,209,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1995545 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0824829","Offset: 90,213,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1995746 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0827457","Offset: 90,217,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1995938 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0828263","Offset: 90,222,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1996757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0837240","Offset: 90,226,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1997128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0838094","Offset: 90,230,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1997358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0842587","Offset: 90,234,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1997683 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0849537","Offset: 90,238,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1997913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0850877","Offset: 90,242,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1998139 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0851867","Offset: 90,246,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1998348 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0856065","Offset: 90,250,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1998532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0864581","Offset: 90,254,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1998741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0865541","Offset: 90,258,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1998971 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0868008","Offset: 90,263,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1999184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0869066","Offset: 90,267,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1999483 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0879587","Offset: 90,271,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.1999769 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0880445","Offset: 90,275,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2000076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0882839","Offset: 90,279,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2000349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0883816","Offset: 90,283,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2000597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0893970","Offset: 90,287,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2000823 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0894887","Offset: 90,291,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2001040 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0897482","Offset: 90,295,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2001284 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0898390","Offset: 90,299,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2001510 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0909390","Offset: 90,304,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2001727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0910363","Offset: 90,308,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2001907 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0912858","Offset: 90,312,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2002120 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0913827","Offset: 90,316,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2002320 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0924836","Offset: 90,320,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2002530 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0925735","Offset: 90,324,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2002747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0926845","Offset: 90,328,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2002931 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0931312","Offset: 90,332,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2003144 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0939402","Offset: 90,336,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2003349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0940327","Offset: 90,340,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2003558 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0942704","Offset: 90,344,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2003788 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0943583","Offset: 90,349,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2003997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0954813","Offset: 90,353,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2004206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0955748","Offset: 90,357,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2004415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0957941","Offset: 90,361,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2004629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0958793","Offset: 90,365,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2004834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0969409","Offset: 90,369,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2005047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0970361","Offset: 90,373,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2005230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0973122","Offset: 90,377,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2005448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0974252","Offset: 90,381,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2005653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0983323","Offset: 90,385,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2005870 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0984919","Offset: 90,390,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2006054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0989159","Offset: 90,394,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2006263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0996797","Offset: 90,398,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2006459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0997719","Offset: 90,402,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2006672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.0999938","Offset: 90,406,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2006877 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1001043","Offset: 90,410,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2007295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1011202","Offset: 90,414,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2007513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1012131","Offset: 90,418,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2007722 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1013228","Offset: 90,422,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2007957 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1017324","Offset: 90,426,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2008170 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1025567","Offset: 90,430,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2008383 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1027296","Offset: 90,435,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2008614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1027858","Offset: 90,439,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2008793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1032082","Offset: 90,443,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2008972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1040898","Offset: 90,447,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2009156 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1042011","Offset: 90,451,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2009360 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1044704","Offset: 90,455,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2009540 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1045642","Offset: 90,459,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2009727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1055844","Offset: 90,463,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2009958 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1056854","Offset: 90,467,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2010171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1059155","Offset: 90,471,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2010410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1060486","Offset: 90,476,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2010619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1070564","Offset: 90,480,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2010828 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1071575","Offset: 90,484,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2011037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1073892","Offset: 90,488,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2011259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1075150","Offset: 90,492,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2011472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1085894","Offset: 90,496,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2011682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1087045","Offset: 90,500,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2011886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1089269","Offset: 90,504,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2012100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1090190","Offset: 90,508,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2012300 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1101122","Offset: 90,512,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2012484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1102085","Offset: 90,516,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2012710 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1106668","Offset: 90,521,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2012919 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1112594","Offset: 90,525,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2013124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1117258","Offset: 90,529,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2013333 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1118162","Offset: 90,533,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2013546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1126892","Offset: 90,537,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2013730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1127813","Offset: 90,541,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2013939 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1129226","Offset: 90,545,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2014148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1131167","Offset: 90,549,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2014352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1133672","Offset: 90,553,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2014566 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1135720","Offset: 90,557,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2014745 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1136484","Offset: 90,562,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2014963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1139338","Offset: 90,566,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2015167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1140375","Offset: 90,570,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2015381 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1142572","Offset: 90,574,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2015568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1144736","Offset: 90,578,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2015778 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1145179","Offset: 90,582,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2015995 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1148179","Offset: 90,586,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2016208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1148836","Offset: 90,590,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2016413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1151383","Offset: 90,594,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2016597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1152052","Offset: 90,598,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2016810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1154579","Offset: 90,603,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2017019 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1155598","Offset: 90,607,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2017228 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1156849","Offset: 90,611,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2017437 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1159153","Offset: 90,615,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2017651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1159745","Offset: 90,619,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2017830 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1162100","Offset: 90,623,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2018035 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1419615","Offset: 90,627,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2018231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1431963","Offset: 90,631,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2018414 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1448211","Offset: 90,635,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2018653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1455917","Offset: 90,639,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2018867 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1468533","Offset: 90,643,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2019076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1480838","Offset: 90,648,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2019280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1492751","Offset: 90,652,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2019494 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1506088","Offset: 90,656,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2019686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1518688","Offset: 90,660,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2019886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1531757","Offset: 90,664,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2020100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1544134","Offset: 90,668,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2020317 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1555825","Offset: 90,672,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2020518 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1569811","Offset: 90,676,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2020701 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1585782","Offset: 90,680,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2020915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1598436","Offset: 90,684,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2021149 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1609956","Offset: 90,689,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2021354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1620004","Offset: 90,693,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2021559 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1631417","Offset: 90,697,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2021772 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1643731","Offset: 90,701,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2021956 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1654897","Offset: 90,705,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2022152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1664629","Offset: 90,709,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2022357 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1677506","Offset: 90,713,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2022566 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1689052","Offset: 90,717,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2022766 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1701391","Offset: 90,721,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2022954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1709267","Offset: 90,725,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2023172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1720471","Offset: 90,729,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2023381 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1733246","Offset: 90,734,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2023590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1741485","Offset: 90,738,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2023790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1756252","Offset: 90,742,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2024004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1767464","Offset: 90,746,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2024191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1777385","Offset: 90,750,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2024396 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1779561","Offset: 90,754,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2024605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1778891","Offset: 90,758,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2024793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1778063","Offset: 90,762,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2025002 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1779667","Offset: 90,766,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2025211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1789417","Offset: 90,770,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2025420 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1788598","Offset: 90,775,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2025625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1786592","Offset: 90,779,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2025834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1791456","Offset: 90,783,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2026018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1790662","Offset: 90,787,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2026218 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1789967","Offset: 90,791,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2026427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1789421","Offset: 90,795,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2026653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1788815","Offset: 90,799,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2026862 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1799124","Offset: 90,803,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2027054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1798330","Offset: 90,807,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2027289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1797250","Offset: 90,811,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2027507 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1801555","Offset: 90,816,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2027724 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1800894","Offset: 90,820,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2027933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1800250","Offset: 90,824,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2028164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1799499","Offset: 90,828,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2028373 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1809406","Offset: 90,832,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2028582 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1808706","Offset: 90,836,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2028787 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1807507","Offset: 90,840,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2029004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1811599","Offset: 90,844,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2029226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1810917","Offset: 90,848,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2029435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1809730","Offset: 90,852,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2029640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1808971","Offset: 90,856,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2029849 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1819027","Offset: 90,861,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2030062 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1817846","Offset: 90,865,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2030246 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1819701","Offset: 90,869,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2030451 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1822867","Offset: 90,873,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2030660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1821830","Offset: 90,877,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2030869 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1821195","Offset: 90,881,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2031074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1820537","Offset: 90,885,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2031257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1819851","Offset: 90,889,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2031470 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1830552","Offset: 90,893,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2031675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1829831","Offset: 90,897,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2031897 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1828619","Offset: 90,902,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2032110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1833278","Offset: 90,906,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2032332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1832613","Offset: 90,910,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2032528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1831973","Offset: 90,914,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2032767 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1831265","Offset: 90,918,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2032981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1829924","Offset: 90,922,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2033211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1841957","Offset: 90,926,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2033420 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1841240","Offset: 90,930,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2033604 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1840058","Offset: 90,934,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2033817 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1845144","Offset: 90,938,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2034022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1844461","Offset: 90,942,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2034235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1843787","Offset: 90,947,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2034423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1843113","Offset: 90,951,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2034628 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1842033","Offset: 90,955,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2034845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1841244","Offset: 90,959,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2035059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1854201","Offset: 90,963,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2035263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1853498","Offset: 90,967,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2035447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1852320","Offset: 90,971,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2035664 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1856950","Offset: 90,975,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2035989 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1856169","Offset: 90,979,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2036232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1855337","Offset: 90,983,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2036437 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1854304","Offset: 90,988,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2036612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1853502","Offset: 90,992,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2036731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1862812","Offset: 90,996,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2036863 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1865206","Offset: 91,000,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2036996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1864446","Offset: 91,004,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2037115 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1867719","Offset: 91,008,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2037247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1866866","Offset: 91,012,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2037397 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1866255","Offset: 91,016,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2037529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1865752","Offset: 91,020,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2037657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1865248","Offset: 91,024,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2037794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1875833","Offset: 91,028,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2037909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1874763","Offset: 91,033,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2038037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1878462","Offset: 91,037,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2038173 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1877861","Offset: 91,041,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2038301 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1877238","Offset: 91,045,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2038425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1876538","Offset: 91,049,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2038540 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1875885","Offset: 91,053,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2038694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1884922","Offset: 91,057,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2038826 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1888254","Offset: 91,061,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2038954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1887755","Offset: 91,065,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2039082 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1887055","Offset: 91,069,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2039219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1886274","Offset: 91,074,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2039347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1888476","Offset: 91,078,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2039475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1896527","Offset: 91,082,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2039603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1896028","Offset: 91,086,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2039731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1895029","Offset: 91,090,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2039859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1899228","Offset: 91,094,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2039974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1898575","Offset: 91,098,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2040127 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1898076","Offset: 91,102,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2040272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1897048","Offset: 91,106,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2040405 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1896446","Offset: 91,110,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2040528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1908718","Offset: 91,115,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2040665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1908120","Offset: 91,119,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2040780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1906435","Offset: 91,123,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2040908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1909357","Offset: 91,127,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2041045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1911256","Offset: 91,131,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2041173 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1910799","Offset: 91,135,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2041301 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1909971","Offset: 91,139,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2041412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1909412","Offset: 91,143,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2041544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1920305","Offset: 91,147,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2041676 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1919077","Offset: 91,151,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2041808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1917951","Offset: 91,155,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2041936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1923054","Offset: 91,160,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2042073 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1922161","Offset: 91,164,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2042197 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1921560","Offset: 91,168,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2042325 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1920975","Offset: 91,172,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2042457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1920318","Offset: 91,176,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2042589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1931152","Offset: 91,180,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2042717 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1930507","Offset: 91,184,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2042850 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1929431","Offset: 91,188,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2042995 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1934300","Offset: 91,192,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2043157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1933621","Offset: 91,196,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2043289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1933054","Offset: 91,201,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2043430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1932444","Offset: 91,205,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2043558 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1931108","Offset: 91,209,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2043694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1943461","Offset: 91,213,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2043822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1942825","Offset: 91,217,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2043950 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1941720","Offset: 91,221,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2044066 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1946733","Offset: 91,225,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2044202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1946132","Offset: 91,229,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2044334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1945560","Offset: 91,233,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2044462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1944963","Offset: 91,237,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2044590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1944063","Offset: 91,241,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2044727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1943320","Offset: 91,246,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2044846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1956060","Offset: 91,250,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2044974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1955365","Offset: 91,254,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2045102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1954226","Offset: 91,258,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2045230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1959243","Offset: 91,262,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2045388 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1958642","Offset: 91,266,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2045503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1958049","Offset: 91,270,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2045636 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1957434","Offset: 91,274,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2045764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1956495","Offset: 91,278,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2045892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1955868","Offset: 91,282,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2046020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1969103","Offset: 91,287,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2046139 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1968459","Offset: 91,291,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2046271 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1966680","Offset: 91,295,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2046399 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1972564","Offset: 91,299,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2046532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1971949","Offset: 91,303,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2046647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1971386","Offset: 91,307,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2046779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1970755","Offset: 91,311,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2046907 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1969709","Offset: 91,315,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2047039 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1968937","Offset: 91,319,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2047172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1982407","Offset: 91,323,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2047304 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1981763","Offset: 91,328,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2047428 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1980013","Offset: 91,332,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2047551 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1985637","Offset: 91,336,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2047679 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1985040","Offset: 91,340,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2047812 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1984399","Offset: 91,344,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2047935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1983448","Offset: 91,348,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2048055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1982885","Offset: 91,352,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2048187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1982198","Offset: 91,356,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2048319 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1995173","Offset: 91,360,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2048469 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1994456","Offset: 91,364,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2048601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1992630","Offset: 91,368,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2048738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1997907","Offset: 91,373,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2048857 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1997323","Offset: 91,377,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2048981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1996414","Offset: 91,381,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2049117 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1995792","Offset: 91,385,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2049245 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1995109","Offset: 91,389,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2049373 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2006117","Offset: 91,393,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2049489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2004904","Offset: 91,397,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2049625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2003821","Offset: 91,401,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2049757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2008348","Offset: 91,405,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2049881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2007730","Offset: 91,409,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2050009 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2007256","Offset: 91,414,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2050146 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2006752","Offset: 91,418,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2050261 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2006146","Offset: 91,422,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2050389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2017692","Offset: 91,426,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2050538 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2017005","Offset: 91,430,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2050670 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2015640","Offset: 91,434,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2050798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2020948","Offset: 91,438,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2050914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2020380","Offset: 91,442,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2051042 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2019748","Offset: 91,446,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2051191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2019092","Offset: 91,450,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2051336 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2017628","Offset: 91,454,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2051464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2030061","Offset: 91,459,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2051609 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2029409","Offset: 91,463,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2051724 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2028304","Offset: 91,467,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2051852 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2033509","Offset: 91,471,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2052006 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2032894","Offset: 91,475,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2052138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2032242","Offset: 91,479,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2052262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2031648","Offset: 91,483,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2052377 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2030612","Offset: 91,487,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2052514 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2029894","Offset: 91,491,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2052646 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2042900","Offset: 91,495,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2052774 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2042264","Offset: 91,500,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2052898 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2041107","Offset: 91,504,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2053021 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2045238","Offset: 91,508,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2053171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2044606","Offset: 91,512,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2053303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2043646","Offset: 91,516,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2053427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2042993","Offset: 91,520,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2053546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2045690","Offset: 91,524,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2053695 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2045076","Offset: 91,528,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2053832 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2055597","Offset: 91,532,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2053981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2054919","Offset: 91,536,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2054114 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2053596","Offset: 91,540,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2054536 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2058422","Offset: 91,545,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2054728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2057756","Offset: 91,549,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2054933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2057112","Offset: 91,553,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2055146 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2056408","Offset: 91,557,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2055355 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2055397","Offset: 91,561,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2055560 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2054667","Offset: 91,565,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2055743 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2067745","Offset: 91,569,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2055944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2067006","Offset: 91,573,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2056174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2065117","Offset: 91,577,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2056418 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2070846","Offset: 91,581,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2056605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2070211","Offset: 91,586,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2056814 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2069533","Offset: 91,590,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2057049 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2068824","Offset: 91,594,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2057262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2067775","Offset: 91,598,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2057463 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2066934","Offset: 91,602,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2057646 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2079935","Offset: 91,606,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2057885 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2079171","Offset: 91,610,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2058116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2077302","Offset: 91,614,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2058346 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2082699","Offset: 91,618,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2058517 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2082072","Offset: 91,622,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2058662 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2081492","Offset: 91,627,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2058781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2080622","Offset: 91,631,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2058909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2080058","Offset: 91,635,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2059042 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2079456","Offset: 91,639,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2059170 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2092235","Offset: 91,643,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2059298 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2091527","Offset: 91,647,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2059409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2089850","Offset: 91,651,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2059566 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2094514","Offset: 91,655,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2059737 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2093481","Offset: 91,659,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2059882 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2092863","Offset: 91,663,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2060010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1366214","Offset: 91,667,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2060147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1387364","Offset: 91,672,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2060266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1393593","Offset: 91,676,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2060390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1407921","Offset: 91,680,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2060522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1423601","Offset: 91,684,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2060650 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1436013","Offset: 91,688,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2060778 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1449171","Offset: 91,692,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2060893 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1461382","Offset: 91,696,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2061026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1474250","Offset: 91,700,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2061154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1487033","Offset: 91,704,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2061303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1499637","Offset: 91,708,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2061431 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1512659","Offset: 91,713,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2061567 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1525344","Offset: 91,717,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2061687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1532072","Offset: 91,721,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2061815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1545956","Offset: 91,725,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2061943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1560083","Offset: 91,729,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2062071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1572550","Offset: 91,733,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2062207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1584101","Offset: 91,737,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2062340 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1596529","Offset: 91,741,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2062498 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1607097","Offset: 91,745,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2062630 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1618498","Offset: 91,749,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2062766 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1631781","Offset: 91,753,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2062882 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1641939","Offset: 91,758,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2063010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1651539","Offset: 91,762,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2063142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1662850","Offset: 91,766,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2063270 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1675531","Offset: 91,770,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2063398 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1687315","Offset: 91,774,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2063513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1699027","Offset: 91,778,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2063645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1710804","Offset: 91,782,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2063773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1717558","Offset: 91,786,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2063906 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.1730447","Offset: 91,790,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2064051 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2088169","Offset: 91,794,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2064191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2096895","Offset: 91,799,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2064311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2095968","Offset: 91,803,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2064439 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2098989","Offset: 91,807,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2064563 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2098392","Offset: 91,811,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2064691 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2097129","Offset: 91,815,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2064814 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2106431","Offset: 91,819,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2064934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2105824","Offset: 91,823,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2065058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2104672","Offset: 91,827,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2065186 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2109276","Offset: 91,831,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2065339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2108675","Offset: 91,835,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2065459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2108124","Offset: 91,840,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2065587 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2107514","Offset: 91,844,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2065715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2106827","Offset: 91,848,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2065847 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2118172","Offset: 91,852,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2065971 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2117498","Offset: 91,856,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2066086 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2116431","Offset: 91,860,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2066222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2121347","Offset: 91,864,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2066355 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2120758","Offset: 91,868,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2066483 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2120139","Offset: 91,872,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2066611 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2119499","Offset: 91,876,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2066743 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2118172","Offset: 91,880,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2066862 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2130380","Offset: 91,885,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2066990 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2129757","Offset: 91,889,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2067114 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2128063","Offset: 91,893,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2067242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2132560","Offset: 91,897,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2067370 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2131954","Offset: 91,901,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2067485 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2131139","Offset: 91,905,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2067618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2130494","Offset: 91,909,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2067771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2133067","Offset: 91,913,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2067946 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2132325","Offset: 91,917,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2068083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2143734","Offset: 91,921,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2068215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2143102","Offset: 91,926,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2068334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2141290","Offset: 91,930,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2068462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2147370","Offset: 91,934,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2068595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2146801","Offset: 91,938,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2068727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2146204","Offset: 91,942,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2068851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2145607","Offset: 91,946,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2068966 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2144715","Offset: 91,950,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2069102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2144135","Offset: 91,954,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2069230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2143517","Offset: 91,958,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2069358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2156462","Offset: 91,962,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2069482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2155813","Offset: 91,966,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2069619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2154567","Offset: 91,971,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2069730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2159303","Offset: 91,975,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2069858 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2158731","Offset: 91,979,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2069986 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2158151","Offset: 91,983,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2070114 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2157075","Offset: 91,987,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2070242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2156414","Offset: 91,991,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2070357 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2165886","Offset: 91,995,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2070485 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2168864","Offset: 91,999,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2070613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2168378","Offset: 92,003,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2070745 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2167849","Offset: 92,007,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2070873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2167252","Offset: 92,012,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2071005 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2168891","Offset: 92,016,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2071125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2177658","Offset: 92,020,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2071249 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2176984","Offset: 92,024,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2071436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2175956","Offset: 92,028,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2071547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2179762","Offset: 92,032,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2071671 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2179126","Offset: 92,036,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2071786 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2177808","Offset: 92,040,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2071893 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2179877","Offset: 92,044,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2072017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2188794","Offset: 92,048,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2072127 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2187621","Offset: 92,052,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2072243 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2186490","Offset: 92,057,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2072366 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2191380","Offset: 92,061,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2072494 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2190599","Offset: 92,065,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2072631 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2190010","Offset: 92,069,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2072746 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2189417","Offset: 92,073,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2072870 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2188790","Offset: 92,077,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2072998 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2199546","Offset: 92,081,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2073126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2198940","Offset: 92,085,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2073254 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2197848","Offset: 92,089,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2073369 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2202836","Offset: 92,093,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2073523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2202255","Offset: 92,098,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2073655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2201658","Offset: 92,102,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2073783 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2201018","Offset: 92,106,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2073911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2200186","Offset: 92,110,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2074047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2210977","Offset: 92,114,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2074163 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2210366","Offset: 92,118,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2074295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2209287","Offset: 92,122,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2074423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2213929","Offset: 92,126,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2074538 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2213353","Offset: 92,130,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2074670 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2212782","Offset: 92,134,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2074798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2212142","Offset: 92,139,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2074926 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2210956","Offset: 92,143,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2075050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2223380","Offset: 92,147,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2075187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2222667","Offset: 92,151,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2075302 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2220875","Offset: 92,155,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2075430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2225236","Offset: 92,159,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2075575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2224515","Offset: 92,163,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2075711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2224016","Offset: 92,167,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2075839 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2223380","Offset: 92,171,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2075967 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2225070","Offset: 92,175,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2076138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2235020","Offset: 92,179,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2076309 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2233594","Offset: 92,184,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2076522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2232549","Offset: 92,188,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2076731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2237362","Offset: 92,192,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2076945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2236453","Offset: 92,196,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2077137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2235885","Offset: 92,200,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2077341 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2235182","Offset: 92,204,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2077546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2234550","Offset: 92,208,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2077755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2244884","Offset: 92,212,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2077960 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2244171","Offset: 92,216,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2078139 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2243152","Offset: 92,220,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2078353 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2247281","Offset: 92,225,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2078553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2246603","Offset: 92,229,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2078788 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2245891","Offset: 92,233,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2078993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2244440","Offset: 92,237,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2079202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2255917","Offset: 92,241,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2079385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2255192","Offset: 92,245,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2079624 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2253191","Offset: 92,249,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2079833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2257991","Offset: 92,253,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2080042 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2257151","Offset: 92,257,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2080247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2256455","Offset: 92,261,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2080430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2255927","Offset: 92,265,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2080618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2255363","Offset: 92,270,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2080759 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2266268","Offset: 92,274,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2080891 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2265637","Offset: 92,278,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2081006 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2264579","Offset: 92,282,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2081134 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2269879","Offset: 92,286,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2081262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2268829","Offset: 92,290,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2081390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2268270","Offset: 92,294,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2081514 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2267689","Offset: 92,298,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2081629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2267041","Offset: 92,302,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2081762 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2277788","Offset: 92,306,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2081894 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2277174","Offset: 92,311,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2082018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2275971","Offset: 92,315,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2082146 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2280305","Offset: 92,319,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2082278 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2279730","Offset: 92,323,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2082393 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2279171","Offset: 92,327,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2082517 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2278531","Offset: 92,331,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2082662 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2277763","Offset: 92,335,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2082794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2290124","Offset: 92,339,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2082922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2289479","Offset: 92,343,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2083037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2288383","Offset: 92,347,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2083174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2293460","Offset: 92,352,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2083302 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2292897","Offset: 92,356,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2083434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2292312","Offset: 92,360,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2083549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2291596","Offset: 92,364,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2083677 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2290640","Offset: 92,368,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2083810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2289957","Offset: 92,372,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2083942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2303167","Offset: 92,376,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2084066 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2302518","Offset: 92,380,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2084177 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2300879","Offset: 92,384,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2084334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2306713","Offset: 92,388,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2084497 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2306093","Offset: 92,392,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2084629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2305505","Offset: 92,397,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2084761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2304822","Offset: 92,401,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2084893 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2303675","Offset: 92,405,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2085009 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2302996","Offset: 92,409,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2085137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2316312","Offset: 92,413,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2085273 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2315625","Offset: 92,417,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2085401 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2313769","Offset: 92,421,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2085542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2317716","Offset: 92,425,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2085661 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2317098","Offset: 92,429,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2085794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2316436","Offset: 92,433,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2085922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2319158","Offset: 92,438,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2086054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2318582","Offset: 92,442,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2086178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2317946","Offset: 92,446,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2086310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2329232","Offset: 92,450,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2086429 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2328503","Offset: 92,454,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2086557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2326561","Offset: 92,458,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2086685 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2331374","Offset: 92,462,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2086813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2330461","Offset: 92,466,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2086941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2329962","Offset: 92,470,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2087057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2329364","Offset: 92,474,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2087189 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2339386","Offset: 92,478,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2087321 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2338747","Offset: 92,483,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2087449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2337629","Offset: 92,487,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2087577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2342335","Offset: 92,491,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2087714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2341771","Offset: 92,495,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2087833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2341208","Offset: 92,499,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2087957 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2340636","Offset: 92,503,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2088102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2339954","Offset: 92,507,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2088230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2384562","Offset: 92,511,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2088358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2397895","Offset: 92,515,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2088469 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2401859","Offset: 92,519,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2088601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2410917","Offset: 92,524,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2088729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2409795","Offset: 92,528,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2088861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2413810","Offset: 92,532,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2088985 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2413247","Offset: 92,536,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2089122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2412670","Offset: 92,540,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2089233 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2412022","Offset: 92,544,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2089361 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2431384","Offset: 92,548,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2089493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2430271","Offset: 92,552,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2089621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2433125","Offset: 92,556,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2089749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2432541","Offset: 92,560,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2089864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2431914","Offset: 92,564,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2089992 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2433505","Offset: 92,569,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2090124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2434162","Offset: 92,573,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2090252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2453550","Offset: 92,577,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2090372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2460133","Offset: 92,581,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2090500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2469332","Offset: 92,585,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2090658 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2473116","Offset: 92,589,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2090790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2481356","Offset: 92,593,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2090914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2491693","Offset: 92,597,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2091029 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2496101","Offset: 92,601,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2091157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2504541","Offset: 92,605,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2091285 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2455465","Offset: 92,610,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2091413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2460927","Offset: 92,614,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2091541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2471265","Offset: 92,618,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2091673 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2479436","Offset: 92,622,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2091788 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2483954","Offset: 92,626,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2091916 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2493776","Offset: 92,630,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2092053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2502650","Offset: 92,634,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2092181 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2512805","Offset: 92,638,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2092305 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2521193","Offset: 92,642,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2092420 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2524137","Offset: 92,646,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2092573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2526553","Offset: 92,651,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2092731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2529010","Offset: 92,655,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2092889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2531933","Offset: 92,659,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2093004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2533277","Offset: 92,663,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2093132 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2535910","Offset: 92,667,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2093265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2542181","Offset: 92,671,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2093410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2543269","Offset: 92,675,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2093533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2544533","Offset: 92,679,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2093649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2547356","Offset: 92,683,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2093798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2553360","Offset: 92,687,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2093926 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2554469","Offset: 92,691,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2094054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2556381","Offset: 92,696,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2094178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2558906","Offset: 92,700,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2094310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2560080","Offset: 92,704,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2094421 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2562644","Offset: 92,708,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2094549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2566983","Offset: 92,712,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2094677 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2568063","Offset: 92,716,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2094805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2570789","Offset: 92,720,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2094933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2573819","Offset: 92,724,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2095048 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2575287","Offset: 92,728,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2095180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2577749","Offset: 92,732,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2095308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2581273","Offset: 92,737,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2095441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2582138","Offset: 92,741,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2095569 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2584553","Offset: 92,745,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2095701 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2587404","Offset: 92,749,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2095816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2588688","Offset: 92,753,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2095944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2590544","Offset: 92,757,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2096076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2593032","Offset: 92,761,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2096204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2593834","Offset: 92,765,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2096345 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2595946","Offset: 92,769,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2096460 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2594956","Offset: 92,773,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2096588 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2599248","Offset: 92,777,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2096721 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2598714","Offset: 92,782,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2096849 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2598147","Offset: 92,786,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2096977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2597323","Offset: 92,790,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2097109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2596778","Offset: 92,794,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2097224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2596249","Offset: 92,798,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2097356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2595694","Offset: 92,802,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2097489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2600993","Offset: 92,806,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2097617 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2600553","Offset: 92,810,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2097749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2600007","Offset: 92,814,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2097915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2599436","Offset: 92,818,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2098129 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2598821","Offset: 92,823,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2098338 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2598292","Offset: 92,827,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2098564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2604197","Offset: 92,831,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2098773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2603681","Offset: 92,835,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2098982 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2603165","Offset: 92,839,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2099165 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2600925","Offset: 92,843,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2099370 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2602444","Offset: 92,847,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2099571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2600178","Offset: 92,851,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2099754 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2601510","Offset: 92,855,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2100202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2598992","Offset: 92,859,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2100420 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2600451","Offset: 92,864,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2100625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2598258","Offset: 92,868,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2100825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2599726","Offset: 92,872,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2101043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2608716","Offset: 92,876,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2101230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2610658","Offset: 92,880,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2101435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2608016","Offset: 92,884,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2101640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2609795","Offset: 92,888,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2101845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2607291","Offset: 92,892,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2102050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2609087","Offset: 92,896,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2102233 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2606600","Offset: 92,900,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2102425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2606024","Offset: 92,904,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2102562 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2605528","Offset: 92,909,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2102711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2604893","Offset: 92,913,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2102826 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2604466","Offset: 92,917,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2102954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2603942","Offset: 92,921,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2103082 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2603511","Offset: 92,925,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2103210 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2602990","Offset: 92,929,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2103334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2602474","Offset: 92,933,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2103449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2601966","Offset: 92,937,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2103577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2601531","Offset: 92,941,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2103726 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2600989","Offset: 92,945,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2103859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2600553","Offset: 92,950,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2103987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2599909","Offset: 92,954,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2104123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2599449","Offset: 92,958,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2104238 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2610039","Offset: 92,962,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2104366 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2609604","Offset: 92,966,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2104499 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2609129","Offset: 92,970,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2104627 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2608549","Offset: 92,974,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2104755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2608110","Offset: 92,978,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2104870 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2607688","Offset: 92,982,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2105002 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2607244","Offset: 92,986,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2105134 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2605700","Offset: 92,990,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2105275 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2605243","Offset: 92,995,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2105420 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2604782","Offset: 92,999,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2105557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2615815","Offset: 93,003,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2105693 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2615359","Offset: 93,007,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2105821 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2614903","Offset: 93,011,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2105954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2614450","Offset: 93,015,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2106103 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2613972","Offset: 93,019,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2106244 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2613507","Offset: 93,023,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2106359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2612974","Offset: 93,027,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2106513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2612491","Offset: 93,031,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2106641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2612026","Offset: 93,036,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2106773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2611562","Offset: 93,040,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2106901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2611079","Offset: 93,044,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2107037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2610453","Offset: 93,048,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2107153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2610013","Offset: 93,052,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2107281 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2609518","Offset: 93,056,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2107409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2609018","Offset: 93,060,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2107541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2608562","Offset: 93,064,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2107669 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2608016","Offset: 93,068,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2107780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2607581","Offset: 93,072,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2107929 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2607082","Offset: 93,076,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2108061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2617604","Offset: 93,081,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2108189 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2617164","Offset: 93,085,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2108322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2616558","Offset: 93,089,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2108437 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2616135","Offset: 93,093,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2108578 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2615683","Offset: 93,097,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2108706 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2615252","Offset: 93,101,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2108834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2614804","Offset: 93,105,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2108962 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2614275","Offset: 93,109,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2109124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2613780","Offset: 93,113,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2109312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2613285","Offset: 93,117,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2109440 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2612841","Offset: 93,122,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2109568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2612380","Offset: 93,126,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2109700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2624332","Offset: 93,130,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2109819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2623812","Offset: 93,134,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2109947 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2623261","Offset: 93,138,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2110071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2622719","Offset: 93,142,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2110220 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2622160","Offset: 93,146,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2110348 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2621542","Offset: 93,150,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2110464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2621025","Offset: 93,154,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2110617 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2620462","Offset: 93,158,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2110745 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2619929","Offset: 93,163,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2110877 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2619370","Offset: 93,167,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2111001 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2618721","Offset: 93,171,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2111150 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2618090","Offset: 93,175,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2111266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2617479","Offset: 93,179,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2111394 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2616865","Offset: 93,183,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2111526 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2616319","Offset: 93,187,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2111645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2615650","Offset: 93,191,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2111790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2615197","Offset: 93,195,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2111918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2614754","Offset: 93,199,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2112051 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2614288","Offset: 93,203,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2112174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2622545","Offset: 93,208,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2112311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2628074","Offset: 93,212,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2112426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2627528","Offset: 93,216,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2112554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2626811","Offset: 93,220,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2112686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2626282","Offset: 93,224,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2112814 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2625749","Offset: 93,228,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2112942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2625211","Offset: 93,232,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2113058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2624690","Offset: 93,236,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2113207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2624046","Offset: 93,240,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2113335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2623508","Offset: 93,244,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2113463 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2622975","Offset: 93,249,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2113595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2622442","Offset: 93,253,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2113728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2621891","Offset: 93,257,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2113843 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2865147","Offset: 93,261,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2114026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2866210","Offset: 93,265,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2114171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2868894","Offset: 93,269,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2114286 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2870178","Offset: 93,273,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2114419 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2882231","Offset: 93,277,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2114564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2883110","Offset: 93,281,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2114692 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2884304","Offset: 93,285,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2114816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2887423","Offset: 93,289,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2114944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2897036","Offset: 93,294,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2115059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2898512","Offset: 93,298,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2115182 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2899695","Offset: 93,302,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2115310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2902963","Offset: 93,306,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2115438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2912316","Offset: 93,310,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2115566 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2913660","Offset: 93,314,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2115677 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2915285","Offset: 93,318,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2115805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2925410","Offset: 93,322,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2115933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2926775","Offset: 93,326,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2116061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2929101","Offset: 93,330,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2116185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2932006","Offset: 93,335,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2116317 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2941282","Offset: 93,339,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2116433 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2942506","Offset: 93,343,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2116573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2943987","Offset: 93,347,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2116701 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2946385","Offset: 93,351,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2116825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2956817","Offset: 93,355,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2116953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2958127","Offset: 93,359,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2117068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2959556","Offset: 93,363,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2117230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2962031","Offset: 93,367,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2117380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2979835","Offset: 93,371,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2117533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2980890","Offset: 93,376,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2117657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2982344","Offset: 93,380,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2117794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2984835","Offset: 93,384,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2117913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2995059","Offset: 93,388,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2118045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2996787","Offset: 93,392,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2118225 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.2997921","Offset: 93,396,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2118340 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3000904","Offset: 93,400,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2118446 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3010718","Offset: 93,404,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2118570 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3012117","Offset: 93,408,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2118681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3013504","Offset: 93,412,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2118809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3015991","Offset: 93,416,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2118920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3026590","Offset: 93,421,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2119048 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3027724","Offset: 93,425,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2119176 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3028885","Offset: 93,429,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2119308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3030630","Offset: 93,433,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2119436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3040017","Offset: 93,437,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2119573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3041864","Offset: 93,441,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2119705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3044480","Offset: 93,445,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2119837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3051772","Offset: 93,449,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2119974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3053866","Offset: 93,453,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2120093 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3056337","Offset: 93,457,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2120221 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3065293","Offset: 93,462,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2120358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3067067","Offset: 93,466,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2120516 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3067622","Offset: 93,470,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2120699 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3070225","Offset: 93,474,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2120934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3080678","Offset: 93,478,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2121152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3082261","Offset: 93,482,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2121356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3082953","Offset: 93,486,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2121565 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3085598","Offset: 93,490,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2121749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3095223","Offset: 93,494,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2121988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3096213","Offset: 93,498,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2122197 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3097241","Offset: 93,502,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2122402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3099118","Offset: 93,507,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2122602 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3109512","Offset: 93,511,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2122811 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3110771","Offset: 93,515,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2122995 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3112413","Offset: 93,519,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2123204 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3114662","Offset: 93,523,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2123409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3124624","Offset: 93,527,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2123613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3125641","Offset: 93,531,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2123818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3127130","Offset: 93,535,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2124002 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3130150","Offset: 93,539,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2124211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3139315","Offset: 93,543,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2124416 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3140317","Offset: 93,548,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2124625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3141644","Offset: 93,552,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2124782 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3144115","Offset: 93,556,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2124936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3154009","Offset: 93,560,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2125056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3155105","Offset: 93,564,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2125201 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3157559","Offset: 93,568,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2125333 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3158570","Offset: 93,572,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2125486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3169954","Offset: 93,576,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2125619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3171067","Offset: 93,580,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2125760 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3171754","Offset: 93,584,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2125892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3174289","Offset: 93,588,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2126020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3184563","Offset: 93,593,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2126148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3186786","Offset: 93,597,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2126276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3187251","Offset: 93,601,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2126412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3188672","Offset: 93,605,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2126528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3198860","Offset: 93,609,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2126720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3200989","Offset: 93,613,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2126852 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3201668","Offset: 93,617,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2126984 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3204250","Offset: 93,621,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2127112 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3214174","Offset: 93,625,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2127232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3215423","Offset: 93,629,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2127360 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3216763","Offset: 93,634,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2127505 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3219191","Offset: 93,638,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2127637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3229111","Offset: 93,642,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2127756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3230166","Offset: 93,646,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2127901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3232329","Offset: 93,650,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2128034 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3233821","Offset: 93,654,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2128162 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3244334","Offset: 93,658,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2128290 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3245504","Offset: 93,662,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2128401 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3246937","Offset: 93,666,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2128533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3250018","Offset: 93,670,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2128665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3259742","Offset: 93,675,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2128793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3260847","Offset: 93,679,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2128921 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3262178","Offset: 93,683,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2129053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3264734","Offset: 93,687,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2129173 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3274440","Offset: 93,691,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2129301 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3275592","Offset: 93,695,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2129433 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3278310","Offset: 93,699,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2129561 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3279471","Offset: 93,703,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2129689 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3290342","Offset: 93,707,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2129804 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3291414","Offset: 93,711,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2129937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3291946","Offset: 93,715,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2130069 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3295697","Offset: 93,720,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2130201 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3305071","Offset: 93,724,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2130321 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3306679","Offset: 93,728,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2130449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3307639","Offset: 93,732,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2130598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3310251","Offset: 93,736,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2130747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3320393","Offset: 93,740,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2130875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3322112","Offset: 93,744,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2130990 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3322876","Offset: 93,748,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2131123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3325448","Offset: 93,752,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2131251 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3335134","Offset: 93,756,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2131383 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3336235","Offset: 93,761,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2131511 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3337353","Offset: 93,765,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2131648 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3339413","Offset: 93,769,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2131758 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3349662","Offset: 93,773,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2131886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3351873","Offset: 93,777,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2132014 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3353635","Offset: 93,781,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2132142 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3362620","Offset: 93,785,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2132266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3363665","Offset: 93,789,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2132381 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3366102","Offset: 93,793,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2132518 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3367181","Offset: 93,797,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2132650 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3378274","Offset: 93,801,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2132778 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3379405","Offset: 93,806,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2132906 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3379823","Offset: 93,810,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2133043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3382784","Offset: 93,814,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2133162 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3393041","Offset: 93,818,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2133307 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3394902","Offset: 93,822,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2133435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3395529","Offset: 93,826,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2133563 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3398196","Offset: 93,830,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2133700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3407654","Offset: 93,834,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2133836 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3409677","Offset: 93,838,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2134007 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3410351","Offset: 93,842,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2134139 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3413009","Offset: 93,847,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2134272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3422263","Offset: 93,851,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2134395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3423373","Offset: 93,855,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2134532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3424858","Offset: 93,859,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2134647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3427358","Offset: 93,863,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2134771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3437453","Offset: 93,867,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2134903 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3438477","Offset: 93,871,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2135031 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3440606","Offset: 93,875,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2135155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3442893","Offset: 93,879,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2135270 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3452318","Offset: 93,883,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2135402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3453385","Offset: 93,888,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2135534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3455932","Offset: 93,892,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2135662 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3457016","Offset: 93,896,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2135808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3467528","Offset: 93,900,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2135944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3468651","Offset: 93,904,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2136059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3471250","Offset: 93,908,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2136187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3472338","Offset: 93,912,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2136320 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3483797","Offset: 93,916,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2136435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3485009","Offset: 93,920,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2136571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3485778","Offset: 93,924,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2136704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3488721","Offset: 93,928,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2136832 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3498090","Offset: 93,933,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2136960 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3499754","Offset: 93,937,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2137096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3500438","Offset: 93,941,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2137216 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3502524","Offset: 93,945,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2137339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3513144","Offset: 93,949,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2137472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3514974","Offset: 93,953,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2137600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3515631","Offset: 93,957,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2137728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3518417","Offset: 93,961,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2137851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3528606","Offset: 93,965,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2137984 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3529941","Offset: 93,969,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2138116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3531021","Offset: 93,974,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2138248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3533581","Offset: 93,978,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2138572 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3543382","Offset: 93,982,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2138709 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3544610","Offset: 93,986,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2138824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3548002","Offset: 93,990,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2138952 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3555866","Offset: 93,994,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2139080 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3556928","Offset: 93,998,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2139212 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3559309","Offset: 94,002,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2139340 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3560308","Offset: 94,006,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2139460 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3571588","Offset: 94,010,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2139588 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3572698","Offset: 94,014,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2139712 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3573495","Offset: 94,019,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2139844 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3576034","Offset: 94,023,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2139959 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3586394","Offset: 94,027,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2140087 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3588280","Offset: 94,031,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2140215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3588962","Offset: 94,035,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2140343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3591527","Offset: 94,039,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2140471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3601315","Offset: 94,043,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2140586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3603043","Offset: 94,047,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2140736 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3603810","Offset: 94,051,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2140868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3606532","Offset: 94,055,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2140996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3617041","Offset: 94,060,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2141141 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3618138","Offset: 94,064,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2141273 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3619486","Offset: 94,068,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2141401 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3621995","Offset: 94,072,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2141529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3631740","Offset: 94,076,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2141661 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3633055","Offset: 94,080,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2141794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3634756","Offset: 94,084,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2141981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3636984","Offset: 94,088,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2142182 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3646353","Offset: 94,092,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2142404 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3647360","Offset: 94,096,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2142613 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3648798","Offset: 94,100,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2142822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3651537","Offset: 94,105,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2143022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3661398","Offset: 94,109,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2143232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3662374","Offset: 94,113,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2143415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3664747","Offset: 94,117,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2143645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3666365","Offset: 94,121,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2143859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3675891","Offset: 94,125,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2144068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3676723","Offset: 94,129,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2144268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3678132","Offset: 94,133,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2144452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3680636","Offset: 94,137,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2144661 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3690688","Offset: 94,141,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2144866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3691533","Offset: 94,146,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2145070 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3694068","Offset: 94,150,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2145275 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3694960","Offset: 94,154,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2145484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3707226","Offset: 94,158,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2145668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3708399","Offset: 94,162,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2145868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3709006","Offset: 94,166,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2146103 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3711425","Offset: 94,170,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2146248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3720841","Offset: 94,174,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2146380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3722330","Offset: 94,178,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2146496 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3723183","Offset: 94,182,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2146628 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3725961","Offset: 94,187,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2146777 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3738134","Offset: 94,191,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2146926 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3739005","Offset: 94,195,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2147046 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3740387","Offset: 94,199,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2147174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3743493","Offset: 94,203,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2147306 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3756596","Offset: 94,207,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2147434 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3757607","Offset: 94,211,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2147558 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3761443","Offset: 94,215,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2147673 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3771862","Offset: 94,219,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2147801 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3772963","Offset: 94,223,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2147929 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3774473","Offset: 94,227,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2148057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3777046","Offset: 94,232,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2148185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3789948","Offset: 94,236,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2148317 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3791015","Offset: 94,240,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2148433 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3792448","Offset: 94,244,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2148561 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3794961","Offset: 94,248,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2148689 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3809434","Offset: 94,252,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2148838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3810966","Offset: 94,256,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2148979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3810411","Offset: 94,260,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2149094 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3813616","Offset: 94,264,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2149231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3826735","Offset: 94,268,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2149359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3828199","Offset: 94,273,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2149491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3829342","Offset: 94,277,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2149610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3831886","Offset: 94,281,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2149734 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3845150","Offset: 94,285,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2149862 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3846298","Offset: 94,289,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2149994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3849520","Offset: 94,293,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2150118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3850663","Offset: 94,297,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2150250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3863711","Offset: 94,301,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2150408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3864769","Offset: 94,305,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2150557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3908963","Offset: 94,309,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2150720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3910059","Offset: 94,313,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2150839 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3911348","Offset: 94,318,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2150967 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3914087","Offset: 94,322,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2151116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3924601","Offset: 94,326,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2151249 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3926324","Offset: 94,330,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2151377 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3927279","Offset: 94,334,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2151492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3930787","Offset: 94,338,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2151641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3940489","Offset: 94,342,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2151769 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3941573","Offset: 94,346,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2151901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3942939","Offset: 94,350,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2152029 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3945512","Offset: 94,354,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2152162 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3956545","Offset: 94,359,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2152277 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3957897","Offset: 94,363,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2152409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3960133","Offset: 94,367,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2152541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3961247","Offset: 94,371,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2152669 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3978996","Offset: 94,375,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2152797 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3980430","Offset: 94,379,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2152913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3983629","Offset: 94,383,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2153041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3984623","Offset: 94,387,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2153190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3994923","Offset: 94,391,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2153335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3995969","Offset: 94,395,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2153463 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.3998580","Offset: 94,400,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2153600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4000214","Offset: 94,404,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2153715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4011452","Offset: 94,408,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2153843 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4012511","Offset: 94,412,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2153988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4015062","Offset: 94,416,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2154116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4016171","Offset: 94,420,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2154257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4026787","Offset: 94,424,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2154368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4027900","Offset: 94,428,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2154500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4029513","Offset: 94,432,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2154632 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4032005","Offset: 94,436,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2154764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4042689","Offset: 94,440,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2154892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4043790","Offset: 94,445,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2155025 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4045005","Offset: 94,449,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2155140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4047587","Offset: 94,453,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2155285 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4058348","Offset: 94,457,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2155413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4060080","Offset: 94,461,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2155545 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4060814","Offset: 94,465,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2155673 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4063818","Offset: 94,469,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2155810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4073144","Offset: 94,473,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2155942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4074719","Offset: 94,477,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2156070 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4075525","Offset: 94,481,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2156202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4078730","Offset: 94,486,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2156322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4088086","Offset: 94,490,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2156454 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4089187","Offset: 94,494,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2156586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4091564","Offset: 94,498,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2156731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4092596","Offset: 94,502,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2156859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4103412","Offset: 94,506,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2156975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4104525","Offset: 94,510,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2157107 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4106646","Offset: 94,514,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2157235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4107747","Offset: 94,518,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2157367 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4118610","Offset: 94,522,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2157495 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4119702","Offset: 94,526,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2157632 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4120828","Offset: 94,531,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2157747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4123888","Offset: 94,535,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2157875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4133398","Offset: 94,539,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2158020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4134508","Offset: 94,543,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2158161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4135591","Offset: 94,547,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2158289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4138006","Offset: 94,551,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2158421 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4148485","Offset: 94,555,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2158557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4149642","Offset: 94,559,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2158681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4151016","Offset: 94,563,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2158813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4153640","Offset: 94,567,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2158929 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4164199","Offset: 94,572,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2159057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4165215","Offset: 94,576,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2159189 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4165957","Offset: 94,580,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2159334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4169110","Offset: 94,584,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2159462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4178719","Offset: 94,588,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2159577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4180400","Offset: 94,592,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2159714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4181163","Offset: 94,596,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2159842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4184487","Offset: 94,600,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2159978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4194122","Offset: 94,604,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2160106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4195880","Offset: 94,608,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2160256 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4196660","Offset: 94,612,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2160375 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4199382","Offset: 94,617,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2160499 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4208824","Offset: 94,621,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2160627 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4209895","Offset: 94,625,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2160759 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4212221","Offset: 94,629,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2160883 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4213206","Offset: 94,633,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2161011 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4223681","Offset: 94,637,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2161169 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4224782","Offset: 94,641,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2161331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4226403","Offset: 94,645,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2161489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4228741","Offset: 94,649,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2161621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4239037","Offset: 94,653,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2161757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4240061","Offset: 94,658,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2161873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4241217","Offset: 94,662,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2162005 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4245377","Offset: 94,666,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2162141 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4254308","Offset: 94,670,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2162278 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4255382","Offset: 94,674,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2162406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4256526","Offset: 94,678,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2162543 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4258748","Offset: 94,682,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2162696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4267709","Offset: 94,686,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2162841 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4269019","Offset: 94,690,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2162982 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4272061","Offset: 94,694,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2163114 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4279950","Offset: 94,699,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2163259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4281508","Offset: 94,703,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2163460 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4284601","Offset: 94,707,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2163699 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4291986","Offset: 94,711,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2163874 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4293701","Offset: 94,715,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2164010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4296957","Offset: 94,719,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2164138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4303767","Offset: 94,723,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2164258 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4305507","Offset: 94,727,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2164394 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4308290","Offset: 94,731,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2164522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4315824","Offset: 94,735,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2164655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4317501","Offset: 94,739,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2164787 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4320330","Offset: 94,744,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2164923 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4328189","Offset: 94,748,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2165068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4329900","Offset: 94,752,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2165213 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4332691","Offset: 94,756,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2165359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4340413","Offset: 94,760,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2165478 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4341531","Offset: 94,764,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2165610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4344603","Offset: 94,768,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2165768 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4351797","Offset: 94,772,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2165905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4353499","Offset: 94,776,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2166037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4356311","Offset: 94,780,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2166178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4363559","Offset: 94,785,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2166336 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4365249","Offset: 94,789,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2166681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4367605","Offset: 94,793,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2166920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4375959","Offset: 94,797,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2167129 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4376761","Offset: 94,801,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2167317 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4379769","Offset: 94,805,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2167441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4387150","Offset: 94,809,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2167577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4389757","Offset: 94,813,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2167722 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4391251","Offset: 94,817,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2167970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4399242","Offset: 94,821,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2168098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4401857","Offset: 94,825,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2168230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4402873","Offset: 94,830,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2168955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4410613","Offset: 95,211,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2169071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4413168","Offset: 95,215,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2169194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4414589","Offset: 95,219,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2169386 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4424044","Offset: 95,223,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2169617 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4424714","Offset: 95,227,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2169796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4428302","Offset: 95,231,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2169967 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4436677","Offset: 95,235,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2170150 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4437945","Offset: 95,239,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2170380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4440616","Offset: 95,243,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2170508 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4450630","Offset: 95,247,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2170624 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4452157","Offset: 95,251,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2170756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4454243","Offset: 95,256,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2170914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4464620","Offset: 95,260,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2171055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4465891","Offset: 95,264,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2171187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4469684","Offset: 95,268,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2171332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4479246","Offset: 95,272,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2171447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4480539","Offset: 95,276,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2171575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4484200","Offset: 95,280,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2171695 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4493454","Offset: 95,284,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2171823 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4495131","Offset: 95,288,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2171955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4497239","Offset: 95,292,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2172074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4511980","Offset: 95,297,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2172207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4515948","Offset: 95,301,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2172335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4517228","Offset: 95,305,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2172458 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4527191","Offset: 95,309,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2172586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4529841","Offset: 95,313,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2172719 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4531781","Offset: 95,317,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2172838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4541966","Offset: 95,321,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2172970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4545017","Offset: 95,325,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2173103 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4552436","Offset: 95,329,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2173226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4554959","Offset: 95,333,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2173354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4562690","Offset: 95,337,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2173474 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4565147","Offset: 95,342,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2173627 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4572857","Offset: 95,346,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2173947 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4574952","Offset: 95,350,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2174075 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4577030","Offset: 95,354,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2174208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4739696","Offset: 95,358,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2174378 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4741182","Offset: 95,362,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2174511 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4743869","Offset: 95,366,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2174647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4753815","Offset: 95,370,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2174767 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4754860","Offset: 95,374,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2174895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4758192","Offset: 95,378,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2175023 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4766649","Offset: 95,383,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2175155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4767613","Offset: 95,387,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2175279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4769938","Offset: 95,391,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2175394 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4771219","Offset: 95,395,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2175526 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4782496","Offset: 95,399,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2175658 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4783473","Offset: 95,403,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2175808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4784641","Offset: 95,407,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2175931 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4787096","Offset: 95,411,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2176068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4797911","Offset: 95,415,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2176187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4799328","Offset: 95,419,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2176311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4801478","Offset: 95,424,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2176448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4802728","Offset: 95,428,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2176593 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4813151","Offset: 95,432,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2176721 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4814154","Offset: 95,436,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2176853 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4815981","Offset: 95,440,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2177002 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4825602","Offset: 95,444,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2177147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4826695","Offset: 95,448,576, Length: 3,072, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2177275 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4828213","Offset: 95,451,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2177395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4831477","Offset: 95,455,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2177523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4848518","Offset: 95,459,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2177651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4849521","Offset: 95,463,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2177779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4852226","Offset: 95,468,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2177907 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4861433","Offset: 95,472,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2178039 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4863153","Offset: 95,476,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2178171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4863998","Offset: 95,480,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2178299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4866234","Offset: 95,484,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2178427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4876986","Offset: 95,488,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2178555 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4878628","Offset: 95,492,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2178688 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4879857","Offset: 95,496,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2178803 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4882425","Offset: 95,500,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2178931 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4892588","Offset: 95,504,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2179059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4893676","Offset: 95,508,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2179187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4896202","Offset: 95,513,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2179332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4897226","Offset: 95,517,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2179447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4908171","Offset: 95,521,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2179575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4909271","Offset: 95,525,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2179703 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4911584","Offset: 95,529,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2179831 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4912523","Offset: 95,533,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2179955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4923091","Offset: 95,537,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2180087 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4924183","Offset: 95,541,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2180219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4926530","Offset: 95,545,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2180347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4928165","Offset: 95,549,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2180480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4938186","Offset: 95,554,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2180608 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4939274","Offset: 95,558,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2180736 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4941920","Offset: 95,562,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2180851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4943102","Offset: 95,566,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2180983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4953879","Offset: 95,570,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2181111 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4954963","Offset: 95,574,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2181243 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4957349","Offset: 95,578,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2181376 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4958291","Offset: 95,582,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2181504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4969303","Offset: 95,586,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2181623 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4970366","Offset: 95,590,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2181751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4971078","Offset: 95,595,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2181900 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4974053","Offset: 95,599,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2182033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4983998","Offset: 95,603,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2182156 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4985982","Offset: 95,607,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2182272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4986604","Offset: 95,611,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2182417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4989173","Offset: 95,615,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2182562 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.4999178","Offset: 95,619,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2182694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5001094","Offset: 95,623,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2182818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5001866","Offset: 95,627,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2182954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5004764","Offset: 95,631,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2183065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5014215","Offset: 95,635,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2183193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5015320","Offset: 95,640,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2183321 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5017419","Offset: 95,644,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2183445 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5018848","Offset: 95,648,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2183573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5029314","Offset: 95,652,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2183688 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5030419","Offset: 95,656,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2183816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5031934","Offset: 95,660,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2183948 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5033833","Offset: 95,664,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2184081 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5046705","Offset: 95,668,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2184196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5047772","Offset: 95,672,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2184324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5049175","Offset: 95,676,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2184456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5052239","Offset: 95,681,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2184601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5062189","Offset: 95,685,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2184725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5063307","Offset: 95,689,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2184840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5064770","Offset: 95,693,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2185007 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5067330","Offset: 95,697,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2185164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5077310","Offset: 95,701,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2185305 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5078407","Offset: 95,705,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2185450 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5080843","Offset: 95,709,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2185583 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5081849","Offset: 95,713,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2185702 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5093954","Offset: 95,717,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2185851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5095000","Offset: 95,721,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2185988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5095763","Offset: 95,726,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2186120 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5098742","Offset: 95,730,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2186248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5108700","Offset: 95,734,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2186397 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5109776","Offset: 95,738,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2186530 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5112177","Offset: 95,742,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2186683 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5113193","Offset: 95,746,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2186922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5124184","Offset: 95,750,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2187114 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5125199","Offset: 95,754,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2187323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5126543","Offset: 95,758,848, Length: 512, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2189004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5127632","Offset: 95,759,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2189226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5137863","Offset: 95,763,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2189431 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5138870","Offset: 95,767,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2189619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5140465","Offset: 95,771,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2189836 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5143188","Offset: 95,775,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2190045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5153402","Offset: 95,779,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2190255 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5154391","Offset: 95,783,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2190459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5155629","Offset: 95,788,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2190677 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5158547","Offset: 95,792,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2190869 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5168386","Offset: 95,796,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2191078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5169893","Offset: 95,800,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2191257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5170652","Offset: 95,804,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2191415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5171979","Offset: 95,808,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2191543 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5181472","Offset: 95,812,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2191658 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5183175","Offset: 95,816,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2191791 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5185785","Offset: 95,820,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2191919 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5192885","Offset: 95,824,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2192051 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5195078","Offset: 95,828,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2192179 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5197395","Offset: 95,833,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2192311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5205848","Offset: 95,837,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2192431 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5207230","Offset: 95,841,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2192554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5208297","Offset: 95,845,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2192687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5211091","Offset: 95,849,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2192815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5221224","Offset: 95,853,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2192943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5222334","Offset: 95,857,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2193058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5223699","Offset: 95,861,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2193224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5226674","Offset: 95,865,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2193382 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5236380","Offset: 95,869,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2193548 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5237490","Offset: 95,874,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2193664 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5238944","Offset: 95,878,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2193792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5241423","Offset: 95,882,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2193924 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5252030","Offset: 95,886,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2194052 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5253050","Offset: 95,890,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2194176 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5253864","Offset: 95,894,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2194291 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5256442","Offset: 95,898,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2194423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5266887","Offset: 95,902,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2194555 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5268807","Offset: 95,906,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2194683 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5269528","Offset: 95,910,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2194816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5272083","Offset: 95,915,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2194952 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5281910","Offset: 95,919,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2195072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5283671","Offset: 95,923,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2195200 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5284418","Offset: 95,927,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2195328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5286918","Offset: 95,931,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2195456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5296646","Offset: 95,935,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2195584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5297803","Offset: 95,939,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2195699 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5299096","Offset: 95,943,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2195831 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5301797","Offset: 95,947,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2195980 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5311837","Offset: 95,951,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2196113 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5313308","Offset: 95,955,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2196245 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5315202","Offset: 95,960,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2196373 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5316009","Offset: 95,964,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2196501 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5325131","Offset: 95,968,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2196629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5327235","Offset: 95,972,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2196757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5329227","Offset: 95,976,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2196872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5336826","Offset: 95,980,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2197004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5339267","Offset: 95,984,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2197137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5341370","Offset: 95,988,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2197265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5348858","Offset: 95,992,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2197393 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5351435","Offset: 95,996,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2197525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5353125","Offset: 96,001,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2197644 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5361181","Offset: 96,005,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2197772 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5363493","Offset: 96,009,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2197905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5365472","Offset: 96,013,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2198033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5373233","Offset: 96,017,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2198156 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5375116","Offset: 96,021,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2198272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5377141","Offset: 96,025,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2198417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5384698","Offset: 96,029,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2198549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5387668","Offset: 96,033,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2198694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5389221","Offset: 96,037,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2198822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5398138","Offset: 96,041,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2198954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5399269","Offset: 96,046,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2199074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5400822","Offset: 96,050,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2199210 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5404052","Offset: 96,054,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2199343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5413724","Offset: 96,058,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2199471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5414816","Offset: 96,062,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2199594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5416255","Offset: 96,066,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2199709 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5418777","Offset: 96,070,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2199846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5428406","Offset: 96,074,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2199974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5429528","Offset: 96,078,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2200106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5430868","Offset: 96,082,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2200230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5433424","Offset: 96,087,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2200367 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5444316","Offset: 96,091,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2200486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5446096","Offset: 96,095,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2200635 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5445396","Offset: 96,099,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2200768 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5447746","Offset: 96,103,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2200896 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5457291","Offset: 96,107,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2201024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5460401","Offset: 96,111,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2201139 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5461635","Offset: 96,115,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2201288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5471435","Offset: 96,119,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2201446 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5472502","Offset: 96,123,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2201591 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5473390","Offset: 96,128,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2201732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5475510","Offset: 96,132,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2201868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5485934","Offset: 96,136,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2201984 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5487047","Offset: 96,140,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2202112 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5489585","Offset: 96,144,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2202240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5491241","Offset: 96,148,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2202368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5501404","Offset: 96,152,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2202491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5502506","Offset: 96,156,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2202607 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5503810","Offset: 96,160,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2202756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5506332","Offset: 96,164,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2202888 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5516218","Offset: 96,168,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2203016 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5517311","Offset: 96,173,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2203140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5518646","Offset: 96,177,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2203264 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5521197","Offset: 96,181,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2203396 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5531685","Offset: 96,185,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2203528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5532794","Offset: 96,189,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2203669 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5533451","Offset: 96,193,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2203784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5536003","Offset: 96,197,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2203916 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5546683","Offset: 96,201,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2204049 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5548500","Offset: 96,205,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2204181 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5549106","Offset: 96,209,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2204309 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5550514","Offset: 96,214,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2204441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5561347","Offset: 96,218,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2204561 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5562865","Offset: 96,222,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2204706 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5563663","Offset: 96,226,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2204834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5566979","Offset: 96,230,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2204966 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5576293","Offset: 96,234,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2205090 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5577377","Offset: 96,238,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2205205 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5579335","Offset: 96,242,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2205359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5580640","Offset: 96,246,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2205487 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5591452","Offset: 96,250,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2205615 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5592544","Offset: 96,254,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2205743 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5593935","Offset: 96,259,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2205866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5595805","Offset: 96,263,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2206016 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5605733","Offset: 96,267,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2206144 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5606987","Offset: 96,271,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2206272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5608736","Offset: 96,275,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2206391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5616780","Offset: 96,279,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2206519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5618264","Offset: 96,283,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2206651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5620240","Offset: 96,287,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2206784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5631909","Offset: 96,291,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2206912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5633816","Offset: 96,295,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2207044 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5635706","Offset: 96,300,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2207159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5648899","Offset: 96,304,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2207287 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5649932","Offset: 96,308,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2207415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5652300","Offset: 96,312,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2207543 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5653887","Offset: 96,316,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2207671 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5668645","Offset: 96,320,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2207782 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5669776","Offset: 96,324,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2207919 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5671136","Offset: 96,328,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2208047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5673637","Offset: 96,332,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2208179 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5687802","Offset: 96,336,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2208315 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5688870","Offset: 96,340,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2208448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5691348","Offset: 96,345,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2208567 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5692385","Offset: 96,349,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2208699 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5708637","Offset: 96,353,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2208874 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5709699","Offset: 96,357,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2209092 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5710386","Offset: 96,361,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2209288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5712793","Offset: 96,365,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2209472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5727282","Offset: 96,369,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2209719 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5728818","Offset: 96,373,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2209941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5729531","Offset: 96,377,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2210171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5732889","Offset: 96,381,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2210372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5746806","Offset: 96,386,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2210581 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5747813","Offset: 96,390,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2210769 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5749187","Offset: 96,394,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2210969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5751632","Offset: 96,398,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2211174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5766591","Offset: 96,402,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2211379 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5852120","Offset: 96,406,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2211614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5853123","Offset: 96,410,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2211823 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5855862","Offset: 96,414,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2212027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5864865","Offset: 96,418,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2212236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5865958","Offset: 96,422,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2212420 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5868658","Offset: 96,427,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2212625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5877874","Offset: 96,431,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2212830 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5879090","Offset: 96,435,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2213043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5879534","Offset: 96,439,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2213188 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5883062","Offset: 96,443,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2213307 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5892782","Offset: 96,447,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2213440 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5894621","Offset: 96,451,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2213572 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5895453","Offset: 96,455,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2213700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5898785","Offset: 96,459,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2213845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5908040","Offset: 96,463,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2213960 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5909631","Offset: 96,467,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2214097 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5910557","Offset: 96,472,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2214229 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5920246","Offset: 96,476,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2214361 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5921194","Offset: 96,480,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2214485 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5923967","Offset: 96,484,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2214622 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5932577","Offset: 96,488,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2214732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5933555","Offset: 96,492,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2214860 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5936435","Offset: 96,496,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2214993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5945586","Offset: 96,500,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2215125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5946495","Offset: 96,504,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2215244 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5949090","Offset: 96,508,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2215372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5957981","Offset: 96,513,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2215505 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5958945","Offset: 96,517,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2215633 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5969087","Offset: 96,521,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2215769 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5978244","Offset: 96,525,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2215884 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5979383","Offset: 96,529,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2216008 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5980223","Offset: 96,533,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2216140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5982839","Offset: 96,537,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2216268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5993625","Offset: 96,541,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2216409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5994687","Offset: 96,545,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2216529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5997072","Offset: 96,549,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2216844 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.5997973","Offset: 96,553,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2216981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6008511","Offset: 96,558,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2217109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6009612","Offset: 96,562,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2217241 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6011391","Offset: 96,566,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2217382 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6012671","Offset: 96,570,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2217497 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6023078","Offset: 96,574,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2217621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6024392","Offset: 96,578,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2217749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6027067","Offset: 96,582,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2217890 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6036035","Offset: 96,586,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2218022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6037106","Offset: 96,590,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2218159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6038420","Offset: 96,594,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2218295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6040942","Offset: 96,599,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2218500 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6051092","Offset: 96,603,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2218658 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6052129","Offset: 96,607,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2218790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6052868","Offset: 96,611,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2218999 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6055415","Offset: 96,615,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2219127 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6064981","Offset: 96,619,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2219259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6066696","Offset: 96,623,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2219409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6067442","Offset: 96,627,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2219541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6070267","Offset: 96,631,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2219686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6079035","Offset: 96,635,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2219801 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6080392","Offset: 96,640,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2219938 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6083438","Offset: 96,644,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2220070 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6091805","Offset: 96,648,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2220198 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6092902","Offset: 96,652,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2220343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6094032","Offset: 96,656,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2220480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6097142","Offset: 96,660,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2220599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6106700","Offset: 96,664,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2220727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6107874","Offset: 96,668,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2220855 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6109388","Offset: 96,672,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2220987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6111846","Offset: 96,676,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2221111 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6122184","Offset: 96,680,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2221226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6123229","Offset: 96,685,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2221359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6124620","Offset: 96,689,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2221487 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6127124","Offset: 96,693,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2221615 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6137838","Offset: 96,697,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2221730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6139660","Offset: 96,701,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2221845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6139012","Offset: 96,705,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2221969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6142075","Offset: 96,709,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2222084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6151594","Offset: 96,713,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2222195 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6152938","Offset: 96,717,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2222314 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6153753","Offset: 96,721,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2222447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6156453","Offset: 96,726,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2222592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6166561","Offset: 96,730,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2222703 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6167679","Offset: 96,734,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2222831 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6169518","Offset: 96,738,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2222980 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6171805","Offset: 96,742,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2223125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6181337","Offset: 96,746,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2223240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6182429","Offset: 96,750,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2223372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6184290","Offset: 96,754,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2223509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6193800","Offset: 96,758,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2223637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6194935","Offset: 96,762,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2223765 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6196031","Offset: 96,766,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2223897 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6198566","Offset: 96,771,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2224012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6208973","Offset: 96,775,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2224136 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6210184","Offset: 96,779,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2224264 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6210909","Offset: 96,783,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2224392 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6213469","Offset: 96,787,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2224524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6223522","Offset: 96,791,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2224652 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6225028","Offset: 96,795,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2224785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6225911","Offset: 96,799,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2224913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6227967","Offset: 96,803,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2225045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6238229","Offset: 96,807,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2225169 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6239240","Offset: 96,812,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2225297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6241565","Offset: 96,816,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2225425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6242653","Offset: 96,820,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2225553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6252885","Offset: 96,824,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2225681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6254101","Offset: 96,828,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2225796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6256319","Offset: 96,832,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2225928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6257651","Offset: 96,836,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2226060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6268424","Offset: 96,840,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2226223 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6269303","Offset: 96,844,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2226372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6271807","Offset: 96,848,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2226513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6273429","Offset: 96,852,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2226649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6283196","Offset: 96,857,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2226790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6284087","Offset: 96,861,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2226918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6285546","Offset: 96,865,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2227050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6288034","Offset: 96,869,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2227174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6298210","Offset: 96,873,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2227294 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6299156","Offset: 96,877,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2227426 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6300360","Offset: 96,881,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2227554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6302856","Offset: 96,885,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2227682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6313868","Offset: 96,889,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2227814 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6314824","Offset: 96,893,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2227946 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6315588","Offset: 96,898,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2228066 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6317555","Offset: 96,902,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2228194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6327782","Offset: 96,906,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2228343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6329578","Offset: 96,910,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2228471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6330419","Offset: 96,914,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2228595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6333491","Offset: 96,918,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2228727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6343065","Offset: 96,922,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2228864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6344870","Offset: 96,926,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2228992 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6345697","Offset: 96,930,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2229124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6348296","Offset: 96,934,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2229252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6358114","Offset: 96,939,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2229388 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6359189","Offset: 96,943,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2229504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6361680","Offset: 96,947,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2229632 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6362756","Offset: 96,951,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2229764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6372885","Offset: 96,955,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2229892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6373969","Offset: 96,959,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2230020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6376038","Offset: 96,963,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2230135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6377788","Offset: 96,967,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2230276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6387690","Offset: 96,971,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2230408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6388744","Offset: 96,975,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2230540 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6390285","Offset: 96,979,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2230668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6393536","Offset: 96,984,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2230835 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6402969","Offset: 96,988,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2230959 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6404057","Offset: 96,992,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2231099 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6405427","Offset: 96,996,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2231300 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6407837","Offset: 97,000,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2231483 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6417348","Offset: 97,004,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2231722 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6418338","Offset: 97,008,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2231931 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6419627","Offset: 97,012,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2232136 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6422054","Offset: 97,016,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2232341 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6432597","Offset: 97,020,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2232554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6433660","Offset: 97,025,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2232734 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6434184","Offset: 97,029,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2232938 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6436890","Offset: 97,033,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2233147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6446733","Offset: 97,037,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2233356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6448184","Offset: 97,041,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2233570 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6448981","Offset: 97,045,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2233749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6451742","Offset: 97,049,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2233958 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6461017","Offset: 97,053,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2234167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6462472","Offset: 97,057,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2234376 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6463215","Offset: 97,061,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2234560 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6466278","Offset: 97,065,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2234777 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6475324","Offset: 97,070,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2235012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6476138","Offset: 97,074,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2235242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6479211","Offset: 97,078,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2235443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6480089","Offset: 97,082,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2235618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6490432","Offset: 97,086,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2235763 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6491345","Offset: 97,090,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2235891 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6493849","Offset: 97,094,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2236019 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6495407","Offset: 97,098,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2236147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6505446","Offset: 97,102,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2236279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6506376","Offset: 97,106,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2236394 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6507708","Offset: 97,111,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2236522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6510827","Offset: 97,115,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2236655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6519820","Offset: 97,119,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2236783 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6520904","Offset: 97,123,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2236911 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6522274","Offset: 97,127,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2237022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6524833","Offset: 97,131,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2237158 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6534925","Offset: 97,135,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2237286 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6536030","Offset: 97,139,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2237414 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6537425","Offset: 97,143,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2237563 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6539887","Offset: 97,147,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2237700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6549986","Offset: 97,152,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2237815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6551125","Offset: 97,156,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2237943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6551846","Offset: 97,160,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2238084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6554325","Offset: 97,164,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2238216 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6564501","Offset: 97,168,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2238340 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6565610","Offset: 97,172,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2238455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6566972","Offset: 97,176,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2238587 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6569950","Offset: 97,180,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2238715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6579883","Offset: 97,184,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2238848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6580949","Offset: 97,188,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2238971 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6584022","Offset: 97,192,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2239108 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6584977","Offset: 97,197,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2239223 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6594718","Offset: 97,201,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2239347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6595865","Offset: 97,205,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2239496 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6596501","Offset: 97,209,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2239641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6599561","Offset: 97,213,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2239769 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6608781","Offset: 97,217,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2239884 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6610083","Offset: 97,221,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2240021 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6611170","Offset: 97,225,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2240153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6614272","Offset: 97,229,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2240281 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6623906","Offset: 97,233,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2240401 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6625096","Offset: 97,238,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2240524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6626450","Offset: 97,242,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2240657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6628898","Offset: 97,246,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2240780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6639284","Offset: 97,250,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2240904 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6640380","Offset: 97,254,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2241019 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6640922","Offset: 97,258,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2241152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6644036","Offset: 97,262,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2241297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6653414","Offset: 97,266,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2241442 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6654989","Offset: 97,270,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2241587 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6655761","Offset: 97,274,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2241723 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6658445","Offset: 97,278,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2241839 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6669132","Offset: 97,283,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2241971 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6670844","Offset: 97,287,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2242099 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6671624","Offset: 97,291,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2242223 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6676100","Offset: 97,295,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2242351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6684070","Offset: 97,299,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2242462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6685248","Offset: 97,303,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2242607 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6686438","Offset: 97,307,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2242786 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6688956","Offset: 97,311,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2242948 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6699349","Offset: 97,315,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2243063 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6700527","Offset: 97,319,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2243191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6700958","Offset: 97,324,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2243323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6702934","Offset: 97,328,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2243456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6714069","Offset: 97,332,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2243579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6715465","Offset: 97,336,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2243690 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6716323","Offset: 97,340,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2243823 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6718366","Offset: 97,344,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2243951 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6731072","Offset: 97,348,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2244096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6732198","Offset: 97,352,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2244219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6735194","Offset: 97,356,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2244356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6743151","Offset: 97,360,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2244471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6744145","Offset: 97,364,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2244599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6745515","Offset: 97,369,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2244731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6748434","Offset: 97,373,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2244864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6757649","Offset: 97,377,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2244987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6759279","Offset: 97,381,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2245103 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6762248","Offset: 97,385,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2245235 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6770615","Offset: 97,389,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2245363 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6772075","Offset: 97,393,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2245491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6776286","Offset: 97,397,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2245619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6782690","Offset: 97,401,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2245751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6787554","Offset: 97,405,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2245871 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6790336","Offset: 97,410,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2245994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6798520","Offset: 97,414,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2246118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6800158","Offset: 97,418,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2246263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6805244","Offset: 97,422,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2246391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6812433","Offset: 97,426,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2246502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6817174","Offset: 97,430,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2246634 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6820630","Offset: 97,434,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2246762 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6829078","Offset: 97,438,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2246895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6830524","Offset: 97,442,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2247027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6836472","Offset: 97,446,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2247159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.6843043","Offset: 97,451,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2247270 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7108246","Offset: 97,455,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2247441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7218556","Offset: 97,459,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2247564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7305409","Offset: 97,463,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2247701 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7304278","Offset: 97,467,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2247816 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7308080","Offset: 97,471,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2247944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7307414","Offset: 97,475,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2248068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7306407","Offset: 97,479,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2248196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7305673","Offset: 97,483,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2248320 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7316186","Offset: 97,487,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2248448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7315559","Offset: 97,491,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2248580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7314458","Offset: 97,496,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2248708 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7319472","Offset: 97,500,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2248836 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7318891","Offset: 97,504,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2248960 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7318307","Offset: 97,508,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2249096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7317723","Offset: 97,512,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2249211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7317070","Offset: 97,516,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2249335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7327852","Offset: 97,520,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2249463 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7327212","Offset: 97,524,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2249595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7326115","Offset: 97,528,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2249732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7330373","Offset: 97,532,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2249860 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7329806","Offset: 97,537,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2249988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7329174","Offset: 97,541,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2250116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7327911","Offset: 97,545,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2250252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7338578","Offset: 97,549,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2250368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7337383","Offset: 97,553,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2250513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7336282","Offset: 97,557,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2250645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7339030","Offset: 97,561,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2250777 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7340895","Offset: 97,565,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2250901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7340182","Offset: 97,569,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2251033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7339594","Offset: 97,573,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2251191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7339013","Offset: 97,577,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2251319 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7348161","Offset: 97,582,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2251451 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7349514","Offset: 97,586,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2251579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7348776","Offset: 97,590,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2251712 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7352551","Offset: 97,594,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2251827 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7351941","Offset: 97,598,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2251951 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7351339","Offset: 97,602,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2252079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7350691","Offset: 97,606,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2252194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7349812","Offset: 97,610,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2252339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7362002","Offset: 97,614,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2252471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7361366","Offset: 97,618,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2252603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7359660","Offset: 97,623,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2252727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7365300","Offset: 97,627,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2252898 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7364686","Offset: 97,631,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2253086 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7364062","Offset: 97,635,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2253286 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7363124","Offset: 97,639,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2253504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7362450","Offset: 97,643,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2253713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7361699","Offset: 97,647,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2253922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7374000","Offset: 97,651,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2254110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7373257","Offset: 97,655,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2254323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7371427","Offset: 97,659,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2254532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7376018","Offset: 97,664,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2254737 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7375455","Offset: 97,668,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2254942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7374674","Offset: 97,672,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2255146 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7373923","Offset: 97,676,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2255338 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7373352","Offset: 97,680,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2255539 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7384957","Offset: 97,684,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2255748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7383506","Offset: 97,688,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2255957 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7382303","Offset: 97,692,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2256158 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7387051","Offset: 97,696,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2256563 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7386283","Offset: 97,700,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2256781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7385502","Offset: 97,704,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2256990 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7384875","Offset: 97,709,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2257143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7384240","Offset: 97,713,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2257271 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7395069","Offset: 97,717,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2257403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7393444","Offset: 97,721,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2257523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7394322","Offset: 97,725,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2257647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7398315","Offset: 97,729,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2257783 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7397731","Offset: 97,733,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2257915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7397113","Offset: 97,737,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2258039 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7396498","Offset: 97,741,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2258159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7394983","Offset: 97,745,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2258291 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7407020","Offset: 97,750,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2258419 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7406380","Offset: 97,754,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2258547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7405262","Offset: 97,758,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2258675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7410471","Offset: 97,762,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2258811 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7409862","Offset: 97,766,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2258944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7409268","Offset: 97,770,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2259093 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7408594","Offset: 97,774,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2259268 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7407677","Offset: 97,778,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2259413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7406977","Offset: 97,782,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2259545 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7419615","Offset: 97,786,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2259673 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7418967","Offset: 97,790,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2259806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7417878","Offset: 97,795,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2259934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7423378","Offset: 97,799,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2260070 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7422798","Offset: 97,803,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2260190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7422187","Offset: 97,807,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2260318 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7421564","Offset: 97,811,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2260450 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7420937","Offset: 97,815,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2260578 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7420020","Offset: 97,819,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2260702 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7419337","Offset: 97,823,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2260821 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7433396","Offset: 97,827,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2260953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7432765","Offset: 97,831,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2261081 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7431643","Offset: 97,836,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2261209 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7436520","Offset: 97,840,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2261354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7435910","Offset: 97,844,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2261491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7435252","Offset: 97,848,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2261606 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7434608","Offset: 97,852,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2261730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7433379","Offset: 97,856,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2261862 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7441550","Offset: 97,860,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2261977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7444605","Offset: 97,864,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2262110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7444041","Offset: 97,868,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2262242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7443448","Offset: 97,872,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2262374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7442723","Offset: 97,876,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2262506 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7444669","Offset: 97,881,088, Length: 3,584, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2262643 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7453398","Offset: 97,884,672, Length: 512, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2262767 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7452673","Offset: 97,885,184, Length: 512, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2262895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7451585","Offset: 97,885,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2263027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7456253","Offset: 97,889,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2263172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7455664","Offset: 97,893,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2263317 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7455058","Offset: 97,897,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2263449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7454427","Offset: 97,902,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2263599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7453279","Offset: 97,906,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2263727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7465404","Offset: 97,910,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2263859 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7464709","Offset: 97,914,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2263987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7463020","Offset: 97,918,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2264123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7468157","Offset: 97,922,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2264239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7467448","Offset: 97,926,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2264362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7466527","Offset: 97,930,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2264490 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7465921","Offset: 97,934,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2264618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7465277","Offset: 97,938,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2264759 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7475905","Offset: 97,943,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2264879 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7474663","Offset: 97,947,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2265011 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7476878","Offset: 97,951,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2265143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7479737","Offset: 97,955,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2265288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7478943","Offset: 97,959,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2265416 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7478376","Offset: 97,963,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2265553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7477799","Offset: 97,967,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2265668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7477185","Offset: 97,971,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2265813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7487476","Offset: 97,975,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2265945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7485868","Offset: 97,979,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2266073 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7486743","Offset: 97,984,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2266201 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7490694","Offset: 97,988,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2266312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7490101","Offset: 97,992,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2266449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7489469","Offset: 97,996,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2266577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7488794","Offset: 98,000,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2266709 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7487429","Offset: 98,004,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2266837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7500259","Offset: 98,008,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2266969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7499628","Offset: 98,012,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2267089 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7498476","Offset: 98,016,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2267213 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7503617","Offset: 98,020,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2267392 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7502960","Offset: 98,024,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2267545 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7502312","Offset: 98,029,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2267690 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7501668","Offset: 98,033,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2267806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7500711","Offset: 98,037,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2267942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7500008","Offset: 98,041,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2268074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7512637","Offset: 98,045,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2268207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7512026","Offset: 98,049,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2268339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7510879","Offset: 98,053,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2268480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7516075","Offset: 98,057,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2268595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7515500","Offset: 98,061,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2268702 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7514945","Offset: 98,065,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2268825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7514340","Offset: 98,070,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2268936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7513439","Offset: 98,074,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2269047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7512782","Offset: 98,078,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2269171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7525189","Offset: 98,082,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2269303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7524532","Offset: 98,086,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2269435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7522775","Offset: 98,090,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2269559 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7528449","Offset: 98,094,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2269691 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7527835","Offset: 98,098,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2269837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7527211","Offset: 98,102,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2269969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7526601","Offset: 98,106,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2270084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7525723","Offset: 98,110,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2270212 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7525049","Offset: 98,115,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2270340 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7538228","Offset: 98,119,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2270468 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7537512","Offset: 98,123,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2270600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7535762","Offset: 98,127,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2270715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7541591","Offset: 98,131,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2270848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7540963","Offset: 98,135,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2270971 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7540366","Offset: 98,139,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2271104 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7539431","Offset: 98,143,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2271219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7538830","Offset: 98,147,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2271343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7538194","Offset: 98,151,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2271475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7550862","Offset: 98,156,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2271603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7550183","Offset: 98,160,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2271731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7548460","Offset: 98,164,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2271842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7553827","Offset: 98,168,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2271978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7553154","Offset: 98,172,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2272111 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7552090","Offset: 98,176,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2272239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7551485","Offset: 98,180,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2272384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7550832","Offset: 98,184,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2272516 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7562676","Offset: 98,188,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2272635 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7561486","Offset: 98,192,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2272763 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7560398","Offset: 98,196,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2272887 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7564230","Offset: 98,201,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2273015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7563637","Offset: 98,205,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2273143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7562962","Offset: 98,209,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2273254 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7564788","Offset: 98,213,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2273386 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7564191","Offset: 98,217,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2273514 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7573237","Offset: 98,221,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2273659 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7572584","Offset: 98,225,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2273792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7571478","Offset: 98,229,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2273933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7575809","Offset: 98,233,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2274048 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7575190","Offset: 98,237,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2274176 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7574473","Offset: 98,242,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2274329 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7573185","Offset: 98,246,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2274530 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7584419","Offset: 98,250,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2274756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7583101","Offset: 98,254,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2274939 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7581804","Offset: 98,258,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2275153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7586924","Offset: 98,262,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2275358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7585887","Offset: 98,266,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2275562 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7585222","Offset: 98,270,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2275780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7584543","Offset: 98,274,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2275993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7583728","Offset: 98,278,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2276181 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7594007","Offset: 98,283,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2276411 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7593303","Offset: 98,287,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2276629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7592121","Offset: 98,291,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2276834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7596771","Offset: 98,295,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2277039 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7596118","Offset: 98,299,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2277218 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7595504","Offset: 98,303,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2277427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7594834","Offset: 98,307,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2277636 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7594092","Offset: 98,311,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2277866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7604857","Offset: 98,315,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2278054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7604114","Offset: 98,319,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2278259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7602920","Offset: 98,323,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2278464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7607237","Offset: 98,328,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2278626 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7606619","Offset: 98,332,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2278758 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7605962","Offset: 98,336,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2278869 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7604712","Offset: 98,340,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2279001 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7607191","Offset: 98,344,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2279134 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7616564","Offset: 98,348,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2279262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7615920","Offset: 98,352,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2279385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7614235","Offset: 98,356,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2279522 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7620037","Offset: 98,360,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2279641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7619470","Offset: 98,364,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2279765 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7618740","Offset: 98,369,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2279914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7618067","Offset: 98,373,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2280042 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7616556","Offset: 98,377,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2280187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7616936","Offset: 98,381,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2280303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7639088","Offset: 98,385,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2280435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7637288","Offset: 98,389,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2280563 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7641964","Offset: 98,393,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2280695 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7641136","Offset: 98,397,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2280810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7640565","Offset: 98,401,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2280934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7639976","Offset: 98,405,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2281066 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7639315","Offset: 98,409,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2281199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7649631","Offset: 98,414,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2281322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7648569","Offset: 98,418,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2281442 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7651692","Offset: 98,422,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2281570 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7650356","Offset: 98,426,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2281698 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7652191","Offset: 98,430,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2281830 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7660247","Offset: 98,434,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2281958 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7659082","Offset: 98,438,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2282090 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7661877","Offset: 98,442,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2282210 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7660643","Offset: 98,446,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2282338 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7668362","Offset: 98,450,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2282466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7670047","Offset: 98,455,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2282611 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7669339","Offset: 98,459,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2282752 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7671532","Offset: 98,463,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2282867 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7678687","Offset: 98,467,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2283003 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7679818","Offset: 98,471,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2283131 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7680505","Offset: 98,475,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2283259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7687887","Offset: 98,479,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2283392 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7702943","Offset: 98,483,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2283524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7716908","Offset: 98,487,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2283643 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7722732","Offset: 98,491,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2283767 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7723854","Offset: 98,496,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2283921 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7734495","Offset: 98,500,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2284066 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7733219","Offset: 98,504,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2284224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7807528","Offset: 98,508,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2284352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7886905","Offset: 98,512,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2284480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7885774","Offset: 98,516,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2284608 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7889618","Offset: 98,520,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2284736 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7889034","Offset: 98,524,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2284851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7888445","Offset: 98,528,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2285000 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7887857","Offset: 98,532,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2285133 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7887225","Offset: 98,536,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2285265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7899176","Offset: 98,541,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2285393 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7898566","Offset: 98,545,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2285525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7897469","Offset: 98,549,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2285640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7901561","Offset: 98,553,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2285768 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7900960","Offset: 98,557,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2285896 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7900375","Offset: 98,561,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2286024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7899739","Offset: 98,565,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2286148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7899086","Offset: 98,569,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2286280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7911225","Offset: 98,573,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2286417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7910487","Offset: 98,577,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2286545 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7908695","Offset: 98,582,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2286681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7913111","Offset: 98,586,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2286809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7912471","Offset: 98,590,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2286942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7911784","Offset: 98,594,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2287074 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7911276","Offset: 98,598,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2287206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7912936","Offset: 98,602,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2287334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7922724","Offset: 98,606,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2287454 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7920466","Offset: 98,610,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2287607 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7921265","Offset: 98,614,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2287735 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7925480","Offset: 98,618,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2287863 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7924567","Offset: 98,622,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2287987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7924012","Offset: 98,627,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2288123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7923394","Offset: 98,631,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2288243 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7922783","Offset: 98,635,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2288371 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7931952","Offset: 98,639,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2288503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7933386","Offset: 98,643,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2288631 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7932695","Offset: 98,647,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2288759 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7936629","Offset: 98,651,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2288870 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7936079","Offset: 98,655,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2289002 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7935490","Offset: 98,659,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2289135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7934862","Offset: 98,663,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2289263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7934107","Offset: 98,668,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2289408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7945542","Offset: 98,672,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2289536 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7944889","Offset: 98,676,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2289655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7943793","Offset: 98,680,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2289783 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7948614","Offset: 98,684,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2289915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7948026","Offset: 98,688,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2290031 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7947479","Offset: 98,692,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2290163 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7946907","Offset: 98,696,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2290291 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7946020","Offset: 98,700,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2290423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7945359","Offset: 98,704,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2290547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7958282","Offset: 98,708,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2290679 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7957549","Offset: 98,713,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2290794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7956478","Offset: 98,717,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2290918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7960104","Offset: 98,721,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2291055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7959174","Offset: 98,725,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2291183 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7958482","Offset: 98,729,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2291306 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7961150","Offset: 98,733,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2291422 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7960547","Offset: 98,737,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2291575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7959921","Offset: 98,741,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2291887 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7969341","Offset: 98,745,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2292027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7970665","Offset: 98,749,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2292168 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7970037","Offset: 98,754,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2292326 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7973548","Offset: 98,758,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2292463 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7972981","Offset: 98,762,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2292586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7972461","Offset: 98,766,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2292719 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7971483","Offset: 98,770,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2292847 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7971009","Offset: 98,774,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2292970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7970421","Offset: 98,778,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2293090 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7983929","Offset: 98,782,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2293222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7983234","Offset: 98,786,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2293350 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7982257","Offset: 98,790,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2293482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7986724","Offset: 98,795,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2293610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7986089","Offset: 98,799,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2293747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7985576","Offset: 98,803,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2293866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7985094","Offset: 98,807,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2294007 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7984322","Offset: 98,811,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2294152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7983767","Offset: 98,815,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2294280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7995705","Offset: 98,819,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2294408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7995023","Offset: 98,823,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2294523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7993491","Offset: 98,827,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2294656 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7998824","Offset: 98,831,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2294784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7998256","Offset: 98,835,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2294920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7997647","Offset: 98,840,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2295048 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7997032","Offset: 98,844,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2295181 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7996157","Offset: 98,848,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2295296 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.7995641","Offset: 98,852,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2295424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8007950","Offset: 98,856,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2295552 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8006218","Offset: 98,860,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2295680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8008228","Offset: 98,864,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2295812 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8011590","Offset: 98,868,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2295927 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8010997","Offset: 98,872,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2296059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8010400","Offset: 98,876,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2296192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8009533","Offset: 98,881,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2296367 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8008897","Offset: 98,885,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2296495 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8008279","Offset: 98,889,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2296635 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8017611","Offset: 98,893,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2296845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8018685","Offset: 98,897,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2297054 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8019538","Offset: 98,901,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2297258 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8018848","Offset: 98,905,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2297446 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8019769","Offset: 98,909,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2297655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8024437","Offset: 98,913,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2297869 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8025183","Offset: 98,917,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2298082 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8025661","Offset: 98,921,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2298287 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8029706","Offset: 98,926,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2298509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8030043","Offset: 98,930,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2298696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8030440","Offset: 98,934,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2298901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8034558","Offset: 98,938,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2299136 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8034975","Offset: 98,942,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2299341 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8035355","Offset: 98,946,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2299520 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8040283","Offset: 98,950,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2299750 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8041905","Offset: 98,954,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2299959 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8041278","Offset: 98,958,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2300168 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8042276","Offset: 98,962,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2300390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8041815","Offset: 98,967,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2300586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8050443","Offset: 98,971,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2300791 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8049884","Offset: 98,975,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2300996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8048646","Offset: 98,979,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2301167 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8051039","Offset: 98,983,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2301295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8050600","Offset: 98,987,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2301410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8050148","Offset: 98,991,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2301546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8051211","Offset: 98,995,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2301674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8059650","Offset: 98,999,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2301807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8059197","Offset: 99,003,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2301956 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8058408","Offset: 99,008,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2302088 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8060909","Offset: 99,012,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2302208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8060447","Offset: 99,016,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2302336 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8059500","Offset: 99,020,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2302477 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8068571","Offset: 99,024,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2302609 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8067786","Offset: 99,028,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2302737 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8068989","Offset: 99,032,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2302852 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8070065","Offset: 99,036,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2302984 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8069647","Offset: 99,040,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2303112 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8069207","Offset: 99,044,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2303240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8078202","Offset: 99,048,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2303364 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8077741","Offset: 99,053,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2303501 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8076464","Offset: 99,057,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2303616 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8079754","Offset: 99,061,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2303744 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8079106","Offset: 99,065,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2303876 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8078658","Offset: 99,069,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2304008 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8078069","Offset: 99,073,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2304132 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8088539","Offset: 99,077,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2304252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8088057","Offset: 99,081,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2304405 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8087268","Offset: 99,085,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2304537 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8090148","Offset: 99,089,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2304682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8089722","Offset: 99,094,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2304810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8089282","Offset: 99,098,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2304947 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8088757","Offset: 99,102,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2305066 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8098635","Offset: 99,106,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2305194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8098136","Offset: 99,110,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2305322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8096932","Offset: 99,114,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2305450 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8099155","Offset: 99,118,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2305578 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8098712","Offset: 99,122,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2305694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8099786","Offset: 99,126,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2305830 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8099095","Offset: 99,130,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2305958 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8109212","Offset: 99,134,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2306095 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8108601","Offset: 99,139,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2306210 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8107829","Offset: 99,143,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2306334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8110461","Offset: 99,147,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2306466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8110018","Offset: 99,151,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2306594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8109501","Offset: 99,155,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2306722 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8117169","Offset: 99,159,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2306854 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8118560","Offset: 99,163,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2306991 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8117616","Offset: 99,167,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2307123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8119592","Offset: 99,171,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2307251 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8119234","Offset: 99,175,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2307379 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8118854","Offset: 99,180,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2307516 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8118474","Offset: 99,184,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2307631 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8128305","Offset: 99,188,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2307759 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8127857","Offset: 99,192,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2307887 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8127050","Offset: 99,196,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2308010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8129538","Offset: 99,200,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2308138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8129065","Offset: 99,204,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2308249 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8128207","Offset: 99,208,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2308382 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8137111","Offset: 99,212,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2308514 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8136676","Offset: 99,216,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2308834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8135695","Offset: 99,220,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2308988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8137926","Offset: 99,225,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2309116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8137563","Offset: 99,229,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2309265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8137158","Offset: 99,233,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2309397 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8146344","Offset: 99,237,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2309521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8145909","Offset: 99,241,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2309636 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8144813","Offset: 99,245,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2309768 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8146955","Offset: 99,249,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2309922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8146494","Offset: 99,253,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2310071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8146891","Offset: 99,257,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2310199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8154903","Offset: 99,261,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2310349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8154476","Offset: 99,266,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2310464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8153597","Offset: 99,270,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2310596 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8156230","Offset: 99,274,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2310720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8155744","Offset: 99,278,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2310848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8154869","Offset: 99,282,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2310972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8163577","Offset: 99,286,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2311087 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8162907","Offset: 99,290,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2311219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8163688","Offset: 99,294,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2311368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8165105","Offset: 99,298,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2311496 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8164683","Offset: 99,302,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2311624 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8164209","Offset: 99,307,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2311761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8170993","Offset: 99,311,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2311876 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8171821","Offset: 99,315,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2312004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8171394","Offset: 99,319,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2312132 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8171987","Offset: 99,323,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2312260 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8179991","Offset: 99,327,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2312388 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8179590","Offset: 99,331,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2312503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8178955","Offset: 99,335,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2312636 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8181505","Offset: 99,339,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2312785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8181028","Offset: 99,343,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2312930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8180627","Offset: 99,347,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2313058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8179846","Offset: 99,352,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2313190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8190295","Offset: 99,356,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2313327 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8189228","Offset: 99,360,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2313455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8188550","Offset: 99,364,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2313587 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8191119","Offset: 99,368,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2313715 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8190760","Offset: 99,372,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2313839 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8190350","Offset: 99,376,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2313954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8198927","Offset: 99,380,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2314086 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8198257","Offset: 99,384,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2314218 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8199059","Offset: 99,388,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2314346 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8200485","Offset: 99,393,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2314487 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8200075","Offset: 99,397,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2314624 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8199511","Offset: 99,401,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2314739 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8199153","Offset: 99,405,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2314867 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8208706","Offset: 99,409,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2314995 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8208330","Offset: 99,413,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2315119 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8207660","Offset: 99,417,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2315247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8209192","Offset: 99,421,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2315379 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8209820","Offset: 99,425,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2315511 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8209304","Offset: 99,429,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2315639 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8228922","Offset: 99,433,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2315767 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8228252","Offset: 99,438,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2315882 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8230018","Offset: 99,442,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2316010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8229186","Offset: 99,446,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2316138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8230249","Offset: 99,450,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2316266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8237579","Offset: 99,454,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2316394 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8236866","Offset: 99,458,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2316505 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8238347","Offset: 99,462,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2316638 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8238696","Offset: 99,466,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2316791 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8245528","Offset: 99,470,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2316945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8246176","Offset: 99,474,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2317094 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8246624","Offset: 99,479,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2317231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8247545","Offset: 99,483,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2317354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8254373","Offset: 99,487,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2317482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8255094","Offset: 99,491,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2317615 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8255460","Offset: 99,495,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2317743 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8262440","Offset: 99,499,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2317866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8263196","Offset: 99,503,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2317999 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8263584","Offset: 99,507,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2318140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8270743","Offset: 99,511,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2318332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8285105","Offset: 99,515,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2318455 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8297270","Offset: 99,520,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2318575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8302393","Offset: 99,524,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2318686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8306442","Offset: 99,528,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2318818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8307125","Offset: 99,532,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2318963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8314003","Offset: 99,536,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2319146 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8314695","Offset: 99,540,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2319351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8317080","Offset: 99,544,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2319556 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8318496","Offset: 99,548,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2319744 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8325642","Offset: 99,552,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2320000 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8389391","Offset: 99,556,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2320209 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8476751","Offset: 99,560,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2320388 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8475966","Offset: 99,565,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2320601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8478117","Offset: 99,569,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2320806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8477652","Offset: 99,573,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2321037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8476618","Offset: 99,577,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2321241 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8477997","Offset: 99,581,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2321459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8486330","Offset: 99,585,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2321642 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8485567","Offset: 99,589,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2321860 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8487593","Offset: 99,593,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2322065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8487000","Offset: 99,597,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2322270 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8486035","Offset: 99,601,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2322474 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8495141","Offset: 99,606,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2322662 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8494351","Offset: 99,610,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2322871 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8493554","Offset: 99,614,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2323055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8495708","Offset: 99,618,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2323191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8495333","Offset: 99,622,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2323319 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8494910","Offset: 99,626,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2323456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8504015","Offset: 99,630,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2323571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8503648","Offset: 99,634,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2323699 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8502441","Offset: 99,638,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2323848 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8504472","Offset: 99,642,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2323976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8504088","Offset: 99,646,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2324100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8505052","Offset: 99,651,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2324215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8504664","Offset: 99,655,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2324348 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8513922","Offset: 99,659,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2324476 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8513546","Offset: 99,663,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2324608 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8512830","Offset: 99,667,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2324723 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8514814","Offset: 99,671,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2324847 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8514366","Offset: 99,675,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2324975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8513841","Offset: 99,679,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2325103 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8521879","Offset: 99,683,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2325231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8522771","Offset: 99,687,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2325342 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8522366","Offset: 99,692,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2325474 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8524320","Offset: 99,696,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2325598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8523868","Offset: 99,700,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2325726 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8523373","Offset: 99,704,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2325849 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8532607","Offset: 99,708,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2325986 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8531855","Offset: 99,712,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2326118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8530844","Offset: 99,716,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2326246 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8533605","Offset: 99,720,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2326374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8533242","Offset: 99,724,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2326506 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8532867","Offset: 99,728,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2326630 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8532419","Offset: 99,732,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2326745 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8542049","Offset: 99,737,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2326878 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8541655","Offset: 99,741,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2327006 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8540947","Offset: 99,745,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2327138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8543213","Offset: 99,749,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2327262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8542837","Offset: 99,753,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2327398 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8541946","Offset: 99,757,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2327513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8551316","Offset: 99,761,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2327710 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8550854","Offset: 99,765,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2327923 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8550099","Offset: 99,769,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2328119 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8551704","Offset: 99,773,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2328316 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8552156","Offset: 99,778,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2328452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8551764","Offset: 99,782,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2328614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8558932","Offset: 99,786,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2328764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8559754","Offset: 99,790,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2328926 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8560975","Offset: 99,794,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2329045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8560617","Offset: 99,798,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2329173 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8560259","Offset: 99,802,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2329314 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8559819","Offset: 99,806,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2329446 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8569044","Offset: 99,810,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2329574 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8568267","Offset: 99,814,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2329694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8569265","Offset: 99,819,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2329839 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8570609","Offset: 99,823,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2329971 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8570208","Offset: 99,827,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2330108 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8569401","Offset: 99,831,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2330240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8578097","Offset: 99,835,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2330372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8577381","Offset: 99,839,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2330496 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8579603","Offset: 99,843,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2330624 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8579245","Offset: 99,847,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2330752 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8578874","Offset: 99,851,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2330901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8578034","Offset: 99,855,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2331213 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8587923","Offset: 99,859,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2331328 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8587497","Offset: 99,864,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2331460 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8586435","Offset: 99,868,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2331592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8588735","Offset: 99,872,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2331720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8588282","Offset: 99,876,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2331865 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8587843","Offset: 99,880,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2332002 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8596299","Offset: 99,884,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2332113 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8595928","Offset: 99,888,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2332241 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8595215","Offset: 99,892,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2332369 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8597459","Offset: 99,896,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2332493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8597071","Offset: 99,900,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2332621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8596218","Offset: 99,905,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2332732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8605463","Offset: 99,909,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2332864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8605071","Offset: 99,913,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2332996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8604372","Offset: 99,917,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2333137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8606347","Offset: 99,921,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2333265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8605895","Offset: 99,925,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2333414 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8605323","Offset: 99,929,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2333534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8614385","Offset: 99,933,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2333657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8613916","Offset: 99,937,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2333794 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8613191","Offset: 99,941,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2333922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8615371","Offset: 99,945,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2334041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8614949","Offset: 99,950,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2334169 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8615508","Offset: 99,954,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2334302 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8624177","Offset: 99,958,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2334430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8623401","Offset: 99,962,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2334579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8622688","Offset: 99,966,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2334694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8625146","Offset: 99,970,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2334818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8624788","Offset: 99,974,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2334950 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8624412","Offset: 99,978,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2335078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8623977","Offset: 99,982,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2335223 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8633692","Offset: 99,986,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2335338 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8633326","Offset: 99,991,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2335471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8632604","Offset: 99,995,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2335620 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8634912","Offset: 99,999,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2335748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8634546","Offset: 100,003,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2335876 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8633632","Offset: 100,007,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2336013 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8641359","Offset: 100,011,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2336128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8642865","Offset: 100,015,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2336256 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8642063","Offset: 100,019,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2336384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8643420","Offset: 100,023,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2336512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8643036","Offset: 100,027,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2336640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8648864","Offset: 100,032,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2336759 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8649556","Offset: 100,036,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2336883 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8649846","Offset: 100,040,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2337011 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8650225","Offset: 100,044,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2337143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8655794","Offset: 100,048,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2337271 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8656745","Offset: 100,052,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2337416 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8656293","Offset: 100,056,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2337549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8657210","Offset: 100,060,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2337677 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8662338","Offset: 100,064,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2337822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8663281","Offset: 100,068,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2337937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8662880","Offset: 100,072,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2338069 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8664139","Offset: 100,077,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2338197 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8663401","Offset: 100,081,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2338329 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8669891","Offset: 100,085,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2338457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8670911","Offset: 100,089,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2338607 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8670479","Offset: 100,093,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2338722 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8671674","Offset: 100,097,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2338850 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8671264","Offset: 100,101,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2338982 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8678010","Offset: 100,105,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2339110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8678979","Offset: 100,109,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2339234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8678531","Offset: 100,113,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2339349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8679209","Offset: 100,118,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2339477 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8684717","Offset: 100,122,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2339605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8685699","Offset: 100,126,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2339750 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8685272","Offset: 100,130,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2339882 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8685874","Offset: 100,134,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2340032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8691420","Offset: 100,138,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2340151 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8692824","Offset: 100,142,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2340292 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8692436","Offset: 100,146,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2340416 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8691949","Offset: 100,150,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2340544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8692854","Offset: 100,154,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2340685 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8699074","Offset: 100,158,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2340830 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8700201","Offset: 100,163,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2341056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8699685","Offset: 100,167,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2341261 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8700201","Offset: 100,171,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2341491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8705603","Offset: 100,175,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2341696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8706511","Offset: 100,179,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2341905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8706029","Offset: 100,183,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2342093 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8707036","Offset: 100,187,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2342297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8706584","Offset: 100,191,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2342506 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8713044","Offset: 100,195,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2342716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8713944","Offset: 100,199,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2342916 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8713462","Offset: 100,204,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2343125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8714324","Offset: 100,208,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2343377 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8713833","Offset: 100,212,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2343594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8720127","Offset: 100,216,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2343808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8721095","Offset: 100,220,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2343991 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8720536","Offset: 100,224,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2344196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8721283","Offset: 100,228,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2344401 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8726501","Offset: 100,232,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2344614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8727627","Offset: 100,236,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2344815 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8727162","Offset: 100,240,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2344990 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8726646","Offset: 100,244,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2345199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8727478","Offset: 100,249,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2345395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8733921","Offset: 100,253,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2345587 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8734774","Offset: 100,257,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2345788 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8734253","Offset: 100,261,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2345997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8734795","Offset: 100,265,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2346176 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8740465","Offset: 100,269,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2346372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8741541","Offset: 100,273,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2346598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8741097","Offset: 100,277,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2346777 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8740628","Offset: 100,281,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2346986 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8741375","Offset: 100,285,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2347191 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8747455","Offset: 100,290,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2347396 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8748299","Offset: 100,294,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2347597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8747783","Offset: 100,298,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2347806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8748303","Offset: 100,302,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2347985 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8754366","Offset: 100,306,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2348181 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8755199","Offset: 100,310,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2348377 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8754738","Offset: 100,314,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2348569 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8755536","Offset: 100,318,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2348774 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8755088","Offset: 100,322,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2348945 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8761440","Offset: 100,326,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2349150 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8762345","Offset: 100,331,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2349359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8761841","Offset: 100,335,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2349564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8762370","Offset: 100,339,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2349764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8768301","Offset: 100,343,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2349973 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8768826","Offset: 100,347,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2350152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8769334","Offset: 100,351,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2350349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8768881","Offset: 100,355,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2350553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8769343","Offset: 100,359,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2350758 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8775563","Offset: 100,363,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2350954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8776315","Offset: 100,367,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2351138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8775879","Offset: 100,371,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2351347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8776741","Offset: 100,376,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2351535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8776284","Offset: 100,380,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2351693 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8782633","Offset: 100,384,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2351872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8783341","Offset: 100,388,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2352004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8782919","Offset: 100,392,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2352124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8783546","Offset: 100,396,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2352252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8790065","Offset: 100,400,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2352380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8791234","Offset: 100,404,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2352520 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8790851","Offset: 100,408,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2352653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8790390","Offset: 100,412,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2352781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8791268","Offset: 100,417,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2352909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8797208","Offset: 100,421,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2353032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8798036","Offset: 100,425,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2353169 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8797579","Offset: 100,429,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2353288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8798318","Offset: 100,433,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2353412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8803975","Offset: 100,437,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2353536 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8805046","Offset: 100,441,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2353681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8804623","Offset: 100,445,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2353805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8805263","Offset: 100,449,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2353920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8810806","Offset: 100,453,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2354052 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8812206","Offset: 100,457,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2354180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8811698","Offset: 100,462,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2354325 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8812385","Offset: 100,466,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2354466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8817180","Offset: 100,470,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2354602 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8818290","Offset: 100,474,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2354718 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8817543","Offset: 100,478,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2354846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8818533","Offset: 100,482,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2354978 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8838275","Offset: 100,486,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2355089 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8838876","Offset: 100,490,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2355234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8839614","Offset: 100,494,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2355362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8849249","Offset: 100,498,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2355490 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8849884","Offset: 100,503,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2355614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8850264","Offset: 100,507,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2355763 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8850550","Offset: 100,511,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2355878 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8861358","Offset: 100,515,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2356006 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8862002","Offset: 100,519,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2356134 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8862339","Offset: 100,523,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2356262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8862689","Offset: 100,527,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2356390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8873932","Offset: 100,531,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2356501 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8874883","Offset: 100,535,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2356638 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8874456","Offset: 100,539,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2356766 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8875390","Offset: 100,544,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2356898 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8886945","Offset: 100,548,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2357026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8887597","Offset: 100,552,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2357175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8888024","Offset: 100,556,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2357291 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8897427","Offset: 100,560,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2357436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8898055","Offset: 100,564,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2357568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8901421","Offset: 100,568,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2357696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8902117","Offset: 100,572,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2357820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8913995","Offset: 100,576,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2357935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8914597","Offset: 100,580,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2358067 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8915335","Offset: 100,584,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2358195 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8925494","Offset: 100,589,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2358319 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8926211","Offset: 100,593,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2358443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8927192","Offset: 100,597,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2358575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8954806","Offset: 100,601,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2358733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8957319","Offset: 100,605,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2358861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8959883","Offset: 100,609,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2358989 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8968370","Offset: 100,613,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2359117 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8971015","Offset: 100,617,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2359232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8973191","Offset: 100,621,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2359377 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8980722","Offset: 100,625,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2359509 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8983393","Offset: 100,630,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2359637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8985514","Offset: 100,634,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2359769 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8993578","Offset: 100,638,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2359919 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8996171","Offset: 100,642,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2360098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.8998625","Offset: 100,646,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2360226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9006010","Offset: 100,650,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2360354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9008575","Offset: 100,654,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2360499 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9010691","Offset: 100,658,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2360631 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9018201","Offset: 100,662,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2360751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9021148","Offset: 100,666,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2360875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9023047","Offset: 100,670,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2361003 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9030654","Offset: 100,675,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2361126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9033211","Offset: 100,679,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2361254 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9035323","Offset: 100,683,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2361365 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9043361","Offset: 100,687,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2361497 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9046126","Offset: 100,691,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2361625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9048413","Offset: 100,695,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2361753 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9061725","Offset: 100,699,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2361864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9065347","Offset: 100,703,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2361988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9067412","Offset: 100,707,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2362116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9076355","Offset: 100,711,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2362240 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9077136","Offset: 100,716,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2362368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9081454","Offset: 100,720,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2362479 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9088852","Offset: 100,724,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2362611 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9089885","Offset: 100,728,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2362756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9092748","Offset: 100,732,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2362880 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9102010","Offset: 100,736,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2363008 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9103214","Offset: 100,740,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2363140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9104993","Offset: 100,744,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2363260 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9113773","Offset: 100,748,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2363388 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9114537","Offset: 100,752,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2363516 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9117221","Offset: 100,756,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2363644 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9125430","Offset: 100,761,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2363784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9126212","Offset: 100,765,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2363900 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9129010","Offset: 100,769,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2364032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9137155","Offset: 100,773,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2364164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9138316","Offset: 100,777,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2364305 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9140645","Offset: 100,781,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2364429 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9149439","Offset: 100,785,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2364578 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9150198","Offset: 100,789,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2364723 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9153010","Offset: 100,793,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2364851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9161932","Offset: 100,797,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2365056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9162525","Offset: 100,802,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2365248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9164893","Offset: 100,806,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2365457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9173136","Offset: 100,810,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2365666 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9173763","Offset: 100,814,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2365871 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9176566","Offset: 100,818,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2366071 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9184661","Offset: 100,822,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2366285 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9185172","Offset: 100,826,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2366468 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9188974","Offset: 100,830,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2366699 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9197148","Offset: 100,834,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2367138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9197554","Offset: 100,838,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2367347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9199854","Offset: 100,843,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2367552 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9208123","Offset: 100,847,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2367735 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9208900","Offset: 100,851,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2367944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9211626","Offset: 100,855,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2368171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9219860","Offset: 100,859,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2368388 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9220535","Offset: 100,863,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2368589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9223461","Offset: 100,867,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2368798 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9231935","Offset: 100,871,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2368985 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9232652","Offset: 100,875,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2369186 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9234998","Offset: 100,879,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2369361 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9243788","Offset: 100,883,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2369502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9244568","Offset: 100,888,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2369625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9247270","Offset: 100,892,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2369741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9255670","Offset: 100,896,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2369873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9256391","Offset: 100,900,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2370018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9259485","Offset: 100,904,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2370150 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9268108","Offset: 100,908,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2370283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9268901","Offset: 100,912,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2370415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9270557","Offset: 100,916,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2370534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9272627","Offset: 100,920,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2370662 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9282197","Offset: 100,924,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2370790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9283233","Offset: 100,929,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2370918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9285755","Offset: 100,933,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2371042 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9294907","Offset: 100,937,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2371157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9295658","Offset: 100,941,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2371289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9298133","Offset: 100,945,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2371417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9306244","Offset: 100,949,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2371550 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9307062","Offset: 100,953,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2371665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9309772","Offset: 100,957,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2371793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9318122","Offset: 100,961,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2371904 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9319521","Offset: 100,965,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2372032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9321791","Offset: 100,969,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2372156 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9330111","Offset: 100,974,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2372284 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9330874","Offset: 100,978,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2372412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9334237","Offset: 100,982,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2372523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9343060","Offset: 100,986,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2372651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9343832","Offset: 100,990,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2372787 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9346286","Offset: 100,994,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2372915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9354589","Offset: 100,998,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2373047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9355857","Offset: 101,002,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2373163 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9357439","Offset: 101,006,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2373291 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9366420","Offset: 101,010,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2373419 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9367461","Offset: 101,015,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2373547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9370072","Offset: 101,019,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2373675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9378508","Offset: 101,023,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2373785 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9379396","Offset: 101,027,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2373918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9381827","Offset: 101,031,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2374067 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9390843","Offset: 101,035,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2374199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9391624","Offset: 101,039,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2374310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9394470","Offset: 101,043,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2374460 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9402380","Offset: 101,047,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2374609 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9403169","Offset: 101,051,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2374814 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9407342","Offset: 101,056,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2374950 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9414732","Offset: 101,060,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2375070 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9415478","Offset: 101,064,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2375219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9417083","Offset: 101,068,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2375356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9419608","Offset: 101,072,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2375496 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9428335","Offset: 101,076,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2375629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9430762","Offset: 101,080,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2375774 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9432541","Offset: 101,084,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2375897 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9441092","Offset: 101,088,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2376025 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9441822","Offset: 101,092,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2376158 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9446207","Offset: 101,096,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2376350 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9453017","Offset: 101,101,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2376486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9453602","Offset: 101,105,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2376610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9457467","Offset: 101,109,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2376742 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9464998","Offset: 101,113,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2376887 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9466009","Offset: 101,117,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2377015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9468501","Offset: 101,121,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2377143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9477209","Offset: 101,125,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2377280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9478011","Offset: 101,129,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2377395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9481962","Offset: 101,133,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2377523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9489126","Offset: 101,137,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2377651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9489919","Offset: 101,142,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2377779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9492479","Offset: 101,146,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2377903 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9500616","Offset: 101,150,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2378022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9501730","Offset: 101,154,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2378155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9504238","Offset: 101,158,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2378283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9511094","Offset: 101,162,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2378415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9513569","Offset: 101,166,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2378543 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9515694","Offset: 101,170,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2378675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9524322","Offset: 101,174,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2378790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9525060","Offset: 101,178,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2378914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9528068","Offset: 101,182,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2379080 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9536789","Offset: 101,187,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2379208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9537941","Offset: 101,191,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2379336 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9539712","Offset: 101,195,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2379452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9548424","Offset: 101,199,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2379584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9549217","Offset: 101,203,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2379720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9552209","Offset: 101,207,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2379844 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9560793","Offset: 101,211,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2379972 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9561612","Offset: 101,215,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2380109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9564151","Offset: 101,219,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2380224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9572855","Offset: 101,223,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2380352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9574045","Offset: 101,228,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2380510 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9576178","Offset: 101,232,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2380633 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9584943","Offset: 101,236,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2380770 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9585608","Offset: 101,240,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2380898 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9588057","Offset: 101,244,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2381026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9596590","Offset: 101,248,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2381154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9597363","Offset: 101,252,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2381303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9599543","Offset: 101,256,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2381419 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9600874","Offset: 101,260,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2381542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9610773","Offset: 101,264,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2381675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9611933","Offset: 101,268,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2381820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9614361","Offset: 101,273,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2381943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9623138","Offset: 101,277,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2382059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9623914","Offset: 101,281,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2382195 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9627656","Offset: 101,285,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2382323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9635123","Offset: 101,289,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2382451 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9635878","Offset: 101,293,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2382575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9638608","Offset: 101,297,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2382707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9646681","Offset: 101,301,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2382822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9647833","Offset: 101,305,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2382950 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9650223","Offset: 101,309,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2383083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9658478","Offset: 101,314,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2383211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9659289","Offset: 101,318,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2383334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9661555","Offset: 101,322,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2383467 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9670856","Offset: 101,326,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2383599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9671645","Offset: 101,330,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2383727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9675733","Offset: 101,334,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2383863 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9682897","Offset: 101,338,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2383979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9683745","Offset: 101,342,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2384102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9686485","Offset: 101,346,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2384247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9694600","Offset: 101,350,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2384375 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9695347","Offset: 101,355,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2384525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9698265","Offset: 101,359,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2384653 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9706969","Offset: 101,363,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2384781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9707745","Offset: 101,367,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2384909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9710105","Offset: 101,371,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2385037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9718805","Offset: 101,375,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2385160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9719633","Offset: 101,379,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2385288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9722304","Offset: 101,383,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2385421 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9730474","Offset: 101,387,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2385544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9731281","Offset: 101,391,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2385672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9735211","Offset: 101,395,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2385796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9742822","Offset: 101,400,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2385924 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9743530","Offset: 101,404,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2386035 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9746005","Offset: 101,408,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2386159 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9754086","Offset: 101,412,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2386287 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9754892","Offset: 101,416,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2386423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9757602","Offset: 101,420,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2386551 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9766447","Offset: 101,424,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2386688 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9767202","Offset: 101,428,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2386807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9769954","Offset: 101,432,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2386961 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9779358","Offset: 101,436,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2387106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9780096","Offset: 101,441,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2387281 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9782238","Offset: 101,445,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2387490 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9784286","Offset: 101,449,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2387678 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9792703","Offset: 101,453,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2387891 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9795955","Offset: 101,457,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2388096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9796663","Offset: 101,461,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2388301 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9804236","Offset: 101,465,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2388510 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9806877","Offset: 101,469,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2388719 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9807820","Offset: 101,473,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2388902 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9816128","Offset: 101,477,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2389107 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9818585","Offset: 101,481,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2389312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9820556","Offset: 101,486,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2389542 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9832922","Offset: 101,490,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2389747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9840273","Offset: 101,494,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2389935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9840832","Offset: 101,498,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2390144 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9844527","Offset: 101,502,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2390357 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9851755","Offset: 101,506,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2390571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9852394","Offset: 101,510,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2390784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9855377","Offset: 101,514,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2390993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9864435","Offset: 101,518,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2391198 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9865122","Offset: 101,522,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2391407 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9869047","Offset: 101,527,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2391612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9876795","Offset: 101,531,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2391787 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9877456","Offset: 101,535,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2391936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9879880","Offset: 101,539,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2392068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9890227","Offset: 101,543,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2392196 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9890931","Offset: 101,547,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2392320 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9893777","Offset: 101,551,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2392456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9906240","Offset: 101,555,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2392572 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9907003","Offset: 101,559,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2392738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9909602","Offset: 101,563,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2392887 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9922855","Offset: 101,568,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2393003 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9923566","Offset: 101,572,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2393160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9926008","Offset: 101,576,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2393293 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9938252","Offset: 101,580,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2393421 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9939123","Offset: 101,584,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2393549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9943300","Offset: 101,588,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2393681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9954001","Offset: 101,592,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2393800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9954641","Offset: 101,596,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2393941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9958639","Offset: 101,600,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2394078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9969958","Offset: 101,604,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2394206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9970611","Offset: 101,608,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2394334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9974605","Offset: 101,613,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2394449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9985869","Offset: 101,617,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2394598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9986573","Offset: 101,621,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2394726 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","7.9990912","Offset: 101,625,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2394863 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0001617","Offset: 101,629,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2394991 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0002270","Offset: 101,633,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2395123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0006264","Offset: 101,637,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2395243 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0018231","Offset: 101,641,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2395371 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0019592","Offset: 101,645,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2395503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0022067","Offset: 101,649,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2395631 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0034091","Offset: 101,654,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2395755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0034773","Offset: 101,658,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2395874 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0039206","Offset: 101,662,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2396006 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0141603","Offset: 101,666,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2396198 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0144436","Offset: 101,670,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2396326 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0147252","Offset: 101,674,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2396441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0153571","Offset: 101,678,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2396574 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0154193","Offset: 101,682,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2396727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0158396","Offset: 101,686,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2396855 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0162919","Offset: 101,690,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2396983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0173236","Offset: 101,694,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2397133 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0174238","Offset: 101,699,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2397252 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0178688","Offset: 101,703,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2397380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0182772","Offset: 101,707,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2397512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0183625","Offset: 101,711,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2397640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0188050","Offset: 101,715,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2397768 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0190879","Offset: 101,719,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2397884 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0193160","Offset: 101,723,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2398012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0195277","Offset: 101,727,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2398144 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0197372","Offset: 101,731,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2398272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0198622","Offset: 101,735,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2398400 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0201195","Offset: 101,740,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2398536 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0205663","Offset: 101,744,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2398652 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0206464","Offset: 101,748,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2398780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0208798","Offset: 101,752,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2398908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0213372","Offset: 101,756,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2399040 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0214067","Offset: 101,760,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2399164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0215778","Offset: 101,764,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2399279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0219669","Offset: 101,768,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2399432 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0221722","Offset: 101,772,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2399560 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0222827","Offset: 101,776,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2399710 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0224610","Offset: 101,780,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2399825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0226142","Offset: 101,785,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2399953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0227734","Offset: 101,789,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2400085 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0229615","Offset: 101,793,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2400217 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0229202","Offset: 101,797,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2400341 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0230068","Offset: 101,801,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2400456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0229731","Offset: 101,805,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2400589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0231164","Offset: 101,809,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2400721 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0230810","Offset: 101,813,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2400853 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0230422","Offset: 101,817,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2400990 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0232811","Offset: 101,821,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2401143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0232444","Offset: 101,826,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2401263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0232107","Offset: 101,830,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2401468 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0231688","Offset: 101,834,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2401604 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0231322","Offset: 101,838,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2401732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0230776","Offset: 101,842,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2401860 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0230418","Offset: 101,846,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2401975 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0233174","Offset: 101,850,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2402108 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0232819","Offset: 101,854,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2402231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0232474","Offset: 101,858,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2402385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0232022","Offset: 101,862,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2402504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0234228","Offset: 101,867,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2402637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0233873","Offset: 101,871,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2402765 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0233532","Offset: 101,875,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2402897 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0233178","Offset: 101,879,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2403042 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0232747","Offset: 101,883,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2403157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0232274","Offset: 101,887,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2403289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0237599","Offset: 101,891,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2403422 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0237265","Offset: 101,895,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2403550 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0236881","Offset: 101,899,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2403678 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0236459","Offset: 101,903,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2403814 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0235981","Offset: 101,907,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2403929 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0235653","Offset: 101,912,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2404053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0235307","Offset: 101,916,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2404185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0233200","Offset: 101,920,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2404313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0234787","Offset: 101,924,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2404441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0234424","Offset: 101,928,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2404557 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0233749","Offset: 101,932,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2404689 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0233421","Offset: 101,936,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2404821 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0233089","Offset: 101,940,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2404949 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0232734","Offset: 101,944,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2405261 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0239185","Offset: 101,948,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2405397 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0238849","Offset: 101,953,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2405517 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0238417","Offset: 101,957,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2405645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0238093","Offset: 101,961,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2405790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0237743","Offset: 101,965,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2405918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0237402","Offset: 101,969,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2406046 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0237009","Offset: 101,973,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2406161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0236472","Offset: 101,977,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2406297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0236131","Offset: 101,981,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2406425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0235794","Offset: 101,985,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2406553 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0235440","Offset: 101,989,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2406681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0234992","Offset: 101,993,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2406818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0240009","Offset: 101,998,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2406933 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0239578","Offset: 102,002,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2407057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0239254","Offset: 102,006,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2407189 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0238913","Offset: 102,010,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2407317 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0238580","Offset: 102,014,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2407441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0238200","Offset: 102,018,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2407560 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0237795","Offset: 102,022,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2407688 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0237035","Offset: 102,026,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2407821 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0244190","Offset: 102,030,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2407949 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0243780","Offset: 102,034,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2408077 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0243460","Offset: 102,039,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2408226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0243111","Offset: 102,043,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2408341 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0242787","Offset: 102,047,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2408465 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0242402","Offset: 102,051,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2408610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0241980","Offset: 102,055,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2408747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0239795","Offset: 102,059,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2408896 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0245376","Offset: 102,063,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2409067 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0245009","Offset: 102,067,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2409293 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0244570","Offset: 102,071,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2409506 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0244152","Offset: 102,075,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2409728 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0243670","Offset: 102,080,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2409916 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0242867","Offset: 102,084,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2410120 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0242433","Offset: 102,088,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2410330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0241954","Offset: 102,092,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2410534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0239749","Offset: 102,096,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2410739 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0239335","Offset: 102,100,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2410918 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0238955","Offset: 102,104,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2411132 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0238536","Offset: 102,108,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2411336 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0238119","Offset: 102,112,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2411546 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0237606","Offset: 102,116,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2411729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0237231","Offset: 102,120,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2411930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0236825","Offset: 102,125,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2412164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0236165","Offset: 102,129,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2412373 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0235538","Offset: 102,133,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2412578 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0235111","Offset: 102,137,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2412766 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0234688","Offset: 102,141,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2412988 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0249015","Offset: 102,145,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2413188 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0248542","Offset: 102,149,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2413384 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0248142","Offset: 102,153,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2413594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0247731","Offset: 102,157,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2413832 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0247292","Offset: 102,161,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2414012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0246903","Offset: 102,166,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2414148 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0246550","Offset: 102,170,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2414280 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0246140","Offset: 102,174,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2414408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0245812","Offset: 102,178,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2414536 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0245488","Offset: 102,182,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2414647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0245176","Offset: 102,186,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2414784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0244826","Offset: 102,190,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2414912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0244438","Offset: 102,194,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2415040 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0244109","Offset: 102,198,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2415168 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0243780","Offset: 102,202,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2415322 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0243430","Offset: 102,206,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2415441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0243085","Offset: 102,211,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2415565 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0242645","Offset: 102,215,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2415697 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0242304","Offset: 102,219,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2415825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0241984","Offset: 102,223,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2415949 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0241660","Offset: 102,227,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2416077 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0241331","Offset: 102,231,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2416213 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0240952","Offset: 102,235,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2416341 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0240513","Offset: 102,239,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2416469 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0240180","Offset: 102,243,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2416597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0239847","Offset: 102,247,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2416734 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0239450","Offset: 102,252,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2416845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0239049","Offset: 102,256,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2416973 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0238276","Offset: 102,260,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2417101 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0237833","Offset: 102,264,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2417229 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0252898","Offset: 102,268,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2417357 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0252565","Offset: 102,272,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2417489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0252152","Offset: 102,276,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2417655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0251785","Offset: 102,280,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2417813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0251431","Offset: 102,284,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2417954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0251077","Offset: 102,288,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2418082 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0250735","Offset: 102,292,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2418197 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0250262","Offset: 102,297,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2418338 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0249822","Offset: 102,301,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2418449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0249511","Offset: 102,305,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2418556 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0249212","Offset: 102,309,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2418684 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0248870","Offset: 102,313,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2418795 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0248491","Offset: 102,317,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2418923 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0248162","Offset: 102,321,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2419034 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0247850","Offset: 102,325,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2419179 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0247505","Offset: 102,329,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2419311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0247177","Offset: 102,333,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2419435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0246827","Offset: 102,338,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2419571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0246430","Offset: 102,342,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2419686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0246110","Offset: 102,346,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2419819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0245756","Offset: 102,350,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2419942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0245338","Offset: 102,354,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2420070 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0244988","Offset: 102,358,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2420198 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0244557","Offset: 102,362,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2420343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0244208","Offset: 102,366,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2420476 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0243861","Offset: 102,370,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2420612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0243512","Offset: 102,374,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2420744 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0243103","Offset: 102,379,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2420855 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0241801","Offset: 102,383,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2420983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0249434","Offset: 102,387,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2421116 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0257408","Offset: 102,391,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2421244 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0257067","Offset: 102,395,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2421367 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0256726","Offset: 102,399,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2421487 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0256384","Offset: 102,403,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2421628 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0255979","Offset: 102,407,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2421756 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0255629","Offset: 102,411,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2421901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0255266","Offset: 102,415,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2422029 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0254921","Offset: 102,419,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2422161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0254571","Offset: 102,424,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2422272 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0254127","Offset: 102,428,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2422408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0253799","Offset: 102,432,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2422554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0253448","Offset: 102,436,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2422682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0253120","Offset: 102,440,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2422805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0252792","Offset: 102,444,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2422938 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0252441","Offset: 102,448,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2423053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0252070","Offset: 102,452,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2423185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0251738","Offset: 102,456,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2423317 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0251405","Offset: 102,460,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2423445 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0251081","Offset: 102,465,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2423578 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0250726","Offset: 102,469,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2423693 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0250342","Offset: 102,473,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2423825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0249972","Offset: 102,477,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2423949 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0249600","Offset: 102,481,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2424077 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0249237","Offset: 102,485,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2424205 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0248845","Offset: 102,489,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2424337 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0248094","Offset: 102,493,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2424452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0247736","Offset: 102,497,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2424602 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0247296","Offset: 102,501,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2424734 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0246844","Offset: 102,505,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2424858 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0246357","Offset: 102,510,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2424994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0254174","Offset: 102,514,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2425109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0259512","Offset: 102,518,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2425242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0259063","Offset: 102,522,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2425370 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0258739","Offset: 102,526,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2425498 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0258411","Offset: 102,530,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2425626 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0258091","Offset: 102,534,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2425779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0257728","Offset: 102,538,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2425899 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0257335","Offset: 102,542,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2426048 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0256973","Offset: 102,546,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2426180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0256623","Offset: 102,551,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2426304 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0256243","Offset: 102,555,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2426436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0255885","Offset: 102,559,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2426556 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0255394","Offset: 102,563,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2426688 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0254925","Offset: 102,567,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2426812 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0254575","Offset: 102,571,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2426940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0254225","Offset: 102,575,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2427068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0253794","Offset: 102,579,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2427217 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0253231","Offset: 102,583,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2427332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0252779","Offset: 102,587,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2427460 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0252340","Offset: 102,592,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2427592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0251905","Offset: 102,596,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2427703 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0259175","Offset: 102,600,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2427836 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0258842","Offset: 102,604,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2427964 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0258513","Offset: 102,608,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2428092 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0258125","Offset: 102,612,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2428220 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0257681","Offset: 102,616,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2428335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0256790","Offset: 102,620,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2428476 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0260151","Offset: 102,624,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2428604 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0259703","Offset: 102,628,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2428736 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0259375","Offset: 102,632,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2428860 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0259046","Offset: 102,637,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2428996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0258701","Offset: 102,641,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2429111 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0258318","Offset: 102,645,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2429265 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0260873","Offset: 102,649,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2429393 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0260237","Offset: 102,653,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2429521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0259887","Offset: 102,657,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2429649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0259542","Offset: 102,661,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2429781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0259149","Offset: 102,665,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2429896 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0262981","Offset: 102,669,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2430024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0262589","Offset: 102,673,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2430157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0262182","Offset: 102,678,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2430285 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0261756","Offset: 102,682,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2430451 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0261146","Offset: 102,686,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2430575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0260728","Offset: 102,690,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2430716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0260305","Offset: 102,694,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2430920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0590644","Offset: 102,698,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2431194 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0706125","Offset: 102,702,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2431398 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0788895","Offset: 102,706,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2431603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0788161","Offset: 102,710,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2431812 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0789603","Offset: 102,714,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2432047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0789087","Offset: 102,718,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2432230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0789642","Offset: 102,723,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2432435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0799058","Offset: 102,727,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2432644 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0797919","Offset: 102,731,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2432875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0797150","Offset: 102,735,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2433088 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0799928","Offset: 102,739,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2433276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0799480","Offset: 102,743,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2433489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0798943","Offset: 102,747,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2433724 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0798443","Offset: 102,751,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2433954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0807839","Offset: 102,755,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2434184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0807349","Offset: 102,759,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2434402 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0806593","Offset: 102,764,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2434590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0808432","Offset: 102,768,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2434795 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0807595","Offset: 102,772,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2435004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0808359","Offset: 102,776,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2435174 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0808680","Offset: 102,780,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2435332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0818041","Offset: 102,784,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2435452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0817221","Offset: 102,788,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2435584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0816568","Offset: 102,792,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2435712 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0818766","Offset: 102,796,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2435840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0818416","Offset: 102,800,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2435968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0818028","Offset: 102,804,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2436100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0826937","Offset: 102,809,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2436215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0826532","Offset: 102,813,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2436343 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0825857","Offset: 102,817,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2436476 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0828421","Offset: 102,821,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2436599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0828025","Offset: 102,825,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2436732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0827248","Offset: 102,829,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2436851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0826817","Offset: 102,833,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2437064 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0837160","Offset: 102,837,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2437312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0836660","Offset: 102,841,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2437431 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0835995","Offset: 102,845,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2437564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0838260","Offset: 102,850,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2437696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0837876","Offset: 102,854,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2437837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0837462","Offset: 102,858,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2437973 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0845996","Offset: 102,862,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2438088 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0845565","Offset: 102,866,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2438234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0844528","Offset: 102,870,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2438362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0846699","Offset: 102,874,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2438485 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0846350","Offset: 102,878,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2438600 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0845971","Offset: 102,882,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2438741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0855199","Offset: 102,886,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2438869 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0854815","Offset: 102,891,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2438997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0854051","Offset: 102,895,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2439121 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0855852","Offset: 102,899,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2439232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0855442","Offset: 102,903,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2439364 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0856394","Offset: 102,907,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2439496 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0863989","Offset: 102,911,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2439620 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0863592","Offset: 102,915,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2439752 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0862922","Offset: 102,919,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2439868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0865268","Offset: 102,923,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2440013 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0864880","Offset: 102,927,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2440324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0864249","Offset: 102,931,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2440444 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0865213","Offset: 102,936,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2440567 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0874583","Offset: 102,940,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2440695 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0874160","Offset: 102,944,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2440819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0873064","Offset: 102,948,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2440934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0875859","Offset: 102,952,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2441067 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0875457","Offset: 102,956,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2441195 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0874859","Offset: 102,960,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2441340 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0874420","Offset: 102,964,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2441463 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0884516","Offset: 102,968,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2441579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0884131","Offset: 102,972,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2441711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0883474","Offset: 102,977,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2441839 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0885543","Offset: 102,981,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2441963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0885095","Offset: 102,985,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2442095 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0884571","Offset: 102,989,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2442248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0885612","Offset: 102,993,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2442423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0895144","Offset: 102,997,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2442568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0894568","Offset: 103,001,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2442692 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0893488","Offset: 103,005,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2442803 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0895852","Offset: 103,009,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2442931 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0895481","Offset: 103,013,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2443055 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0895084","Offset: 103,017,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2443183 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0903882","Offset: 103,022,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2443315 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0903485","Offset: 103,026,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2443430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0902811","Offset: 103,030,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2443558 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0904159","Offset: 103,034,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2443686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0905444","Offset: 103,038,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2443814 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0904944","Offset: 103,042,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2443942 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0912680","Offset: 103,046,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2444087 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0912215","Offset: 103,050,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2444207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0911557","Offset: 103,054,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2444356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0913734","Offset: 103,058,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2444506 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0913268","Offset: 103,063,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2444629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0912748","Offset: 103,067,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2444779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0922689","Offset: 103,071,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2444898 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0921900","Offset: 103,075,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2445026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0921226","Offset: 103,079,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2445154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0923470","Offset: 103,083,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2445282 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0923082","Offset: 103,087,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2445406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0922676","Offset: 103,091,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2445534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0931841","Offset: 103,095,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2445649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0931355","Offset: 103,099,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2445777 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0930233","Offset: 103,104,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2445905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0933189","Offset: 103,108,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2446029 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0932788","Offset: 103,112,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2446161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0932114","Offset: 103,116,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2446276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0931726","Offset: 103,120,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2446408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0941894","Offset: 103,124,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2446558 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0941415","Offset: 103,128,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2446690 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0940588","Offset: 103,132,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2446805 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0943515","Offset: 103,136,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2446950 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0943029","Offset: 103,140,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2447078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0942261","Offset: 103,144,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2447202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0951477","Offset: 103,149,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2447334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0950453","Offset: 103,153,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2447450 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0949599","Offset: 103,157,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2447586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0951993","Offset: 103,161,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2447710 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0951519","Offset: 103,165,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2447838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0952069","Offset: 103,169,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2447966 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0960803","Offset: 103,173,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2448094 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0960364","Offset: 103,177,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2448209 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0959583","Offset: 103,181,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2448337 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0962237","Offset: 103,185,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2448469 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0961751","Offset: 103,190,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2448593 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0961076","Offset: 103,194,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2448725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0960586","Offset: 103,198,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2448845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0970403","Offset: 103,202,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2448977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0969947","Offset: 103,206,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2449122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0969145","Offset: 103,210,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2449250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0971594","Offset: 103,214,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2449365 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0971184","Offset: 103,218,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2449493 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0970741","Offset: 103,222,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2449626 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0980221","Offset: 103,226,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2449754 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0979700","Offset: 103,230,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2449877 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0978498","Offset: 103,235,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2449992 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0980921","Offset: 103,239,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2450125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0980451","Offset: 103,243,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2450253 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0980084","Offset: 103,247,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2450385 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0988511","Offset: 103,251,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2450534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0988034","Offset: 103,255,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2450679 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0987214","Offset: 103,259,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2450799 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0989842","Offset: 103,263,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2450923 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0989377","Offset: 103,267,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2451051 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0988519","Offset: 103,271,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2451179 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0998316","Offset: 103,276,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2451319 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0997757","Offset: 103,280,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2451435 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0996997","Offset: 103,284,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2451567 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0999459","Offset: 103,288,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2451695 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0999084","Offset: 103,292,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2451823 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0998657","Offset: 103,296,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2451976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.0999392","Offset: 103,300,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2452109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1006154","Offset: 103,304,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2452228 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1007110","Offset: 103,308,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2452356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1006658","Offset: 103,312,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2452497 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1007626","Offset: 103,316,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2452621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1007190","Offset: 103,321,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2452749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1016590","Offset: 103,325,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2452864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1016134","Offset: 103,329,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2452996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1015344","Offset: 103,333,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2453124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1017986","Offset: 103,337,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2453274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1017511","Offset: 103,341,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2453483 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1016726","Offset: 103,345,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2453717 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1016142","Offset: 103,349,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2453905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1024065","Offset: 103,353,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2454106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1025891","Offset: 103,357,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2454310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1025290","Offset: 103,362,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2454519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1024313","Offset: 103,366,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2454720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1025704","Offset: 103,370,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2454899 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1033887","Offset: 103,374,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2455112 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1032966","Offset: 103,378,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2455317 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1032087","Offset: 103,382,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2455526 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1034374","Offset: 103,386,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2455706 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1033934","Offset: 103,390,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2455910 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1033422","Offset: 103,394,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2456115 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1042203","Offset: 103,398,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2456320 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1041678","Offset: 103,403,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2456525 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1040803","Offset: 103,407,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2456704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1043624","Offset: 103,411,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2456917 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1043052","Offset: 103,415,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2457143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1042255","Offset: 103,419,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2457348 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1041704","Offset: 103,423,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2457519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1050736","Offset: 103,427,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2457655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1051701","Offset: 103,431,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2457771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1051218","Offset: 103,435,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2457899 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1053142","Offset: 103,439,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2458027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1052716","Offset: 103,443,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2458172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1052229","Offset: 103,448,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2458300 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1060967","Offset: 103,452,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2458415 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1060486","Offset: 103,456,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2458547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1059325","Offset: 103,460,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2458675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1061753","Offset: 103,464,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2458824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1061314","Offset: 103,468,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2458970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1060827","Offset: 103,472,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2459106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1069651","Offset: 103,476,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2459255 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1068853","Offset: 103,480,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2459383 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1071375","Offset: 103,484,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2459507 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1070879","Offset: 103,489,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2459618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1070090","Offset: 103,493,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2459750 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1069595","Offset: 103,497,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2459878 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1079016","Offset: 103,501,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2460006 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1078560","Offset: 103,505,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2460134 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1077762","Offset: 103,509,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2460267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1080466","Offset: 103,513,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2460399 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1080023","Offset: 103,517,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2460527 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1079523","Offset: 103,521,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2460655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1089038","Offset: 103,525,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2460783 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1088172","Offset: 103,529,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2460907 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1087382","Offset: 103,534,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2461022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1089925","Offset: 103,538,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2461154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1089567","Offset: 103,542,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2461282 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1089196","Offset: 103,546,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2461410 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1088791","Offset: 103,550,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2461538 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1098391","Offset: 103,554,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2461670 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1097598","Offset: 103,558,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2461786 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1098480","Offset: 103,562,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2461909 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1100029","Offset: 103,566,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2462037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1099590","Offset: 103,570,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2462165 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1098643","Offset: 103,575,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2462289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1107393","Offset: 103,579,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2462417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1106950","Offset: 103,583,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2462549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1106152","Offset: 103,587,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2462677 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1108571","Offset: 103,591,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2462810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1108131","Offset: 103,595,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2462938 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1107666","Offset: 103,599,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2463070 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1117100","Offset: 103,603,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2463185 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1116609","Offset: 103,607,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2463309 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1115363","Offset: 103,611,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2463437 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1118115","Offset: 103,616,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2463561 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1117659","Offset: 103,620,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2463689 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1117027","Offset: 103,624,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2463799 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1125322","Offset: 103,628,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2463932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1124861","Offset: 103,632,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2464060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1124067","Offset: 103,636,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2464188 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1126683","Offset: 103,640,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2464311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1126197","Offset: 103,644,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2464444 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1125322","Offset: 103,648,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2464563 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1149642","Offset: 103,652,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2464691 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1148622","Offset: 103,656,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2464836 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1150679","Offset: 103,661,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2464964 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1150150","Offset: 103,665,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2465097 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1149637","Offset: 103,669,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2465207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1164226","Offset: 103,673,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2465335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1163441","Offset: 103,677,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2465459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1165928","Offset: 103,681,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2465591 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1165412","Offset: 103,685,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2465711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1164281","Offset: 103,689,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2465835 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1177320","Offset: 103,693,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2465967 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1178438","Offset: 103,697,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2466095 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1177998","Offset: 103,702,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2466219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1179026","Offset: 103,706,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2466334 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1191835","Offset: 103,710,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2466466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1191046","Offset: 103,714,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2466598 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1192988","Offset: 103,718,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2466726 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1192006","Offset: 103,722,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2466850 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1193239","Offset: 103,726,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2466999 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1208834","Offset: 103,730,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2467132 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1207980","Offset: 103,734,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2467277 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1209085","Offset: 103,738,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2467405 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1209507","Offset: 103,742,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2467533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1223088","Offset: 103,747,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2467657 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1221936","Offset: 103,751,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2467772 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1224253","Offset: 103,755,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2467904 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1223280","Offset: 103,759,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2468019 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1224552","Offset: 103,763,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2468143 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1291645","Offset: 103,767,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2468301 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1292336","Offset: 103,771,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2468412 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1295165","Offset: 103,775,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2468523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1305409","Offset: 103,779,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2468646 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1306413","Offset: 103,783,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2468757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1309813","Offset: 103,788,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2468868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1318001","Offset: 103,792,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2468992 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1319123","Offset: 103,796,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2469124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1321709","Offset: 103,800,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2469269 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1330724","Offset: 103,804,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2469397 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1331535","Offset: 103,808,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2469513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1334815","Offset: 103,812,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2469645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1342922","Offset: 103,816,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2469773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1343681","Offset: 103,820,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2469901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1347543","Offset: 103,824,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2470042 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1355086","Offset: 103,828,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2470195 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1356234","Offset: 103,833,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2470310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1358846","Offset: 103,837,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2470438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1367217","Offset: 103,841,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2470566 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1368066","Offset: 103,845,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2470699 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1371197","Offset: 103,849,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2470822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1380183","Offset: 103,853,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2470938 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1381036","Offset: 103,857,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2471066 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1384313","Offset: 103,861,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2471198 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1399063","Offset: 103,865,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2471326 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1400552","Offset: 103,869,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2471454 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1403086","Offset: 103,874,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2471586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1411761","Offset: 103,878,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2471701 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1412614","Offset: 103,882,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2471846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1415887","Offset: 103,886,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2471970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1424045","Offset: 103,890,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2472098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1424774","Offset: 103,894,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2472222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1428674","Offset: 103,898,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2472354 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1436943","Offset: 103,902,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2472482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1438462","Offset: 103,906,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2472610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1440941","Offset: 103,910,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2472755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1448232","Offset: 103,915,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2472883 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1450379","Offset: 103,919,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2473011 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1452883","Offset: 103,923,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2473135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1461420","Offset: 103,927,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2473259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1462141","Offset: 103,931,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2473387 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1466037","Offset: 103,935,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2473515 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1472710","Offset: 103,939,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2473638 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1473517","Offset: 103,943,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2473754 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1475987","Offset: 103,947,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2473894 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1485024","Offset: 103,951,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2474022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1485767","Offset: 103,955,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2474150 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1489901","Offset: 103,960,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2474278 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1497389","Offset: 103,964,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2474441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1498143","Offset: 103,968,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2474586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1500541","Offset: 103,972,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2474765 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1501565","Offset: 103,976,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2474974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1511464","Offset: 103,980,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2475145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1512513","Offset: 103,984,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2475366 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1515040","Offset: 103,988,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2475588 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1522507","Offset: 103,992,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2475793 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1524862","Offset: 103,996,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2475994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1526978","Offset: 104,001,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2476211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1533882","Offset: 104,005,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2476390 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1536331","Offset: 104,009,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2476595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1542304","Offset: 104,013,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2476796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1544603","Offset: 104,017,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2477026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1546643","Offset: 104,021,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2477231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1554148","Offset: 104,025,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2477414 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1556457","Offset: 104,029,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2477619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1558462","Offset: 104,033,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2477824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1565771","Offset: 104,037,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2478059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1567963","Offset: 104,041,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2478242 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1570076","Offset: 104,046,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2478443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1577815","Offset: 104,050,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2478647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1580120","Offset: 104,054,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2478852 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1582253","Offset: 104,058,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2479053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1589399","Offset: 104,062,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2479181 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1591742","Offset: 104,066,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2479313 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1593683","Offset: 104,070,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2479445 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1601197","Offset: 104,074,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2479573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1603185","Offset: 104,078,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2479701 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1605327","Offset: 104,082,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2479834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1613011","Offset: 104,087,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2479953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1615149","Offset: 104,091,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2480081 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1622189","Offset: 104,095,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2480213 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1624165","Offset: 104,099,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2480337 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1626221","Offset: 104,103,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2480482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1633641","Offset: 104,107,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2480597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1635714","Offset: 104,111,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2480747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1637745","Offset: 104,115,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2480879 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1645182","Offset: 104,119,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2481007 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1647277","Offset: 104,123,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2481135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1653655","Offset: 104,128,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2481267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1656007","Offset: 104,132,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2481382 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1662287","Offset: 104,136,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2481506 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1664429","Offset: 104,140,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2481634 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1671490","Offset: 104,144,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2481762 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1673598","Offset: 104,148,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2481890 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1675642","Offset: 104,152,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2482001 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1683488","Offset: 104,156,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2482138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1685595","Offset: 104,160,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2482266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1692153","Offset: 104,164,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2482398 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1694479","Offset: 104,168,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2482705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1700469","Offset: 104,173,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2482842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1702598","Offset: 104,177,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2482957 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1709096","Offset: 104,181,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2483098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1711259","Offset: 104,185,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2483226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1718355","Offset: 104,189,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2483358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1720292","Offset: 104,193,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2483490 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1722323","Offset: 104,197,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2483622 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1729778","Offset: 104,201,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2483772 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1731902","Offset: 104,205,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2483900 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1738417","Offset: 104,209,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2484032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1740559","Offset: 104,214,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2484156 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1750155","Offset: 104,218,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2484292 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1749711","Offset: 104,222,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2484407 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1751346","Offset: 104,226,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2484540 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1753107","Offset: 104,230,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2484663 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1761790","Offset: 104,234,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2484796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1763940","Offset: 104,238,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2484928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1771091","Offset: 104,242,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2485056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1773152","Offset: 104,246,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2485184 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1775264","Offset: 104,250,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2485329 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1782948","Offset: 104,254,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2485466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1785069","Offset: 104,259,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2485581 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1791652","Offset: 104,263,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2485705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1793580","Offset: 104,267,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2485833 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1795603","Offset: 104,271,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2485961 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1803159","Offset: 104,275,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2486101 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1805178","Offset: 104,279,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2486217 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1807238","Offset: 104,283,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2486349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1815319","Offset: 104,287,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2486477 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1817525","Offset: 104,291,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2486605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1823998","Offset: 104,295,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2486729 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1826314","Offset: 104,300,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2486861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1832634","Offset: 104,304,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2486976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1834737","Offset: 104,308,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2487100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1836781","Offset: 104,312,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2487236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1844384","Offset: 104,316,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2487351 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1846693","Offset: 104,320,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2487501 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1852794","Offset: 104,324,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2487629 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1854897","Offset: 104,328,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2487761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1861182","Offset: 104,332,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2487885 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1863320","Offset: 104,336,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2488013 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1870197","Offset: 104,340,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2488128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1872352","Offset: 104,345,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2488256 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1878757","Offset: 104,349,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2488380 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1880911","Offset: 104,353,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2488508 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1887426","Offset: 104,357,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2488631 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1889509","Offset: 104,361,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2488747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1891616","Offset: 104,365,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2488896 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1899015","Offset: 104,369,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2489045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1901426","Offset: 104,373,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2489173 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1907885","Offset: 104,377,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2489297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1910031","Offset: 104,381,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2489429 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1917106","Offset: 104,386,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2489545 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1919328","Offset: 104,390,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2489690 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1926257","Offset: 104,394,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2489822 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1928126","Offset: 104,398,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2489950 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1930136","Offset: 104,402,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2490078 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1937598","Offset: 104,406,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2490189 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1939791","Offset: 104,410,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2490321 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1946234","Offset: 104,414,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2490449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1948431","Offset: 104,418,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2490577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1954831","Offset: 104,422,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2490705 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1956960","Offset: 104,427,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2490837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1963574","Offset: 104,431,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2490953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1965506","Offset: 104,435,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2491081 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1967537","Offset: 104,439,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2491213 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1975631","Offset: 104,443,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2491337 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1977764","Offset: 104,447,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2491486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1984395","Offset: 104,451,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2491597 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1986349","Offset: 104,455,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2491738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1988358","Offset: 104,459,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2491883 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1996021","Offset: 104,463,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2492100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.1998019","Offset: 104,467,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2492233 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2004666","Offset: 104,472,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2492365 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2006769","Offset: 104,476,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2492480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2008916","Offset: 104,480,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2492608 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2017044","Offset: 104,484,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2492736 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2019416","Offset: 104,488,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2492868 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2025761","Offset: 104,492,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2492992 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2027945","Offset: 104,496,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2493107 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2034413","Offset: 104,500,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2493239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2036470","Offset: 104,504,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2493367 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2038612","Offset: 104,508,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2493491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2046079","Offset: 104,513,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2493619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2048182","Offset: 104,517,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2493734 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2050205","Offset: 104,521,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2493858 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2057633","Offset: 104,525,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2493999 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2059787","Offset: 104,529,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2494153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2066362","Offset: 104,533,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2494285 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2068738","Offset: 104,537,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2494464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2074861","Offset: 104,541,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2494669 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2077263","Offset: 104,545,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2494797 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2083241","Offset: 104,549,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2494925 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2085605","Offset: 104,553,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2495061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2091617","Offset: 104,558,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2495177 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2094381","Offset: 104,562,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2495317 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2102262","Offset: 104,566,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2495450 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2102991","Offset: 104,570,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2495578 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2106784","Offset: 104,574,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2495701 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2113650","Offset: 104,578,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2495817 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2114750","Offset: 104,582,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2495953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2117396","Offset: 104,586,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2496081 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2126531","Offset: 104,590,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2496205 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2127264","Offset: 104,594,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2496337 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2130797","Offset: 104,599,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2496499 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2137940","Offset: 104,603,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2496700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2138567","Offset: 104,607,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2496841 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2142471","Offset: 104,611,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2496977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2149759","Offset: 104,615,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2497156 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2150817","Offset: 104,619,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2497374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2153304","Offset: 104,623,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2497574 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2161411","Offset: 104,627,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2497809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2162281","Offset: 104,631,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2498010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2164943","Offset: 104,635,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2498223 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2173652","Offset: 104,640,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2498406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2174326","Offset: 104,644,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2498607 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2178209","Offset: 104,648,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2498812 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2185368","Offset: 104,652,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2499017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2186460","Offset: 104,656,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2499221 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2188338","Offset: 104,660,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2499409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2196846","Offset: 104,664,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2499614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2197498","Offset: 104,668,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2499819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2199947","Offset: 104,672,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2500023 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2209501","Offset: 104,676,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2500228 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2210171","Offset: 104,680,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2500437 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2214173","Offset: 104,685,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2500621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2224690","Offset: 104,689,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2500830 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2225987","Offset: 104,693,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2501035 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2228534","Offset: 104,697,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2501239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2239956","Offset: 104,701,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2501393 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2240741","Offset: 104,705,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2501508 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2243527","Offset: 104,709,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2501645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2255179","Offset: 104,713,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2501790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2255879","Offset: 104,717,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2501922 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2258008","Offset: 104,721,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2502050 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2259736","Offset: 104,726,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2502178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2273151","Offset: 104,730,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2502293 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2274341","Offset: 104,734,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2502417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2276850","Offset: 104,738,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2502545 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2287572","Offset: 104,742,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2502669 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2288361","Offset: 104,746,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2502797 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2292090","Offset: 104,750,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2502921 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2302300","Offset: 104,754,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2503049 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2303081","Offset: 104,758,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2503172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2306371","Offset: 104,762,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2503305 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2317114","Offset: 104,766,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2503420 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2318283","Offset: 104,771,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2503548 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2320758","Offset: 104,775,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2503671 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2332351","Offset: 104,779,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2503799 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2333141","Offset: 104,783,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2503923 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2336519","Offset: 104,787,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2504034 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2347301","Offset: 104,791,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2504166 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2348262","Offset: 104,795,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2504299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2491352","Offset: 104,799,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2504486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2493853","Offset: 104,803,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2504606 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2497735","Offset: 104,807,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2504742 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2502459","Offset: 104,812,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2504866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2505121","Offset: 104,816,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2504994 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2507664","Offset: 104,820,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2505122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2510527","Offset: 104,824,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2505254 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2512375","Offset: 104,828,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2505370 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2514990","Offset: 104,832,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2505502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2517422","Offset: 104,836,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2505630 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2519363","Offset: 104,840,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2505758 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2521360","Offset: 104,844,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2505869 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2523800","Offset: 104,848,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2505997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2525238","Offset: 104,852,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2506125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2527269","Offset: 104,857,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2506253 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2531323","Offset: 104,861,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2506377 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2533383","Offset: 104,865,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2506492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2535380","Offset: 104,869,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2506620 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2539446","Offset: 104,873,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2506748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2541336","Offset: 104,877,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2506893 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2545155","Offset: 104,881,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2507025 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2546845","Offset: 104,885,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2507153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2548808","Offset: 104,889,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2507273 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2552016","Offset: 104,893,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2507396 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2554175","Offset: 104,898,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2507524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2557209","Offset: 104,902,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2507652 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2559180","Offset: 104,906,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2507776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2562350","Offset: 104,910,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2507891 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2564206","Offset: 104,914,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2508019 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2567381","Offset: 104,918,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2508147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2569164","Offset: 104,922,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2508275 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2579477","Offset: 104,926,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2508403 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2579088","Offset: 104,930,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2508535 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2580450","Offset: 104,934,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2508651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2580018","Offset: 104,939,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2508774 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2579609","Offset: 104,943,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2508907 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2581908","Offset: 104,947,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2509052 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2581524","Offset: 104,951,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2509180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2581149","Offset: 104,955,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2509291 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2580777","Offset: 104,959,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2509423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2580253","Offset: 104,963,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2509551 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2579873","Offset: 104,967,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2509696 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2582826","Offset: 104,971,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2509820 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2582463","Offset: 104,975,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2509969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2582071","Offset: 104,979,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2510118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2581674","Offset: 104,984,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2510259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2581281","Offset: 104,988,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2510387 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2580863","Offset: 104,992,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2510515 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2582937","Offset: 104,996,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2510639 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2582617","Offset: 105,000,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2510750 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2582028","Offset: 105,004,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2510882 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2585902","Offset: 105,008,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2511010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2585582","Offset: 105,012,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2511138 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2585249","Offset: 105,016,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2511283 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2584853","Offset: 105,020,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2511428 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2584520","Offset: 105,025,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2511548 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2584093","Offset: 105,029,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2511671 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2583773","Offset: 105,033,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2511808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2583440","Offset: 105,037,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2511936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2583112","Offset: 105,041,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2512060 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2582783","Offset: 105,045,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2512175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2582450","Offset: 105,049,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2512324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2581866","Offset: 105,053,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2512452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2581529","Offset: 105,057,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2512589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2588402","Offset: 105,061,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2512704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2588078","Offset: 105,065,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2512836 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2587660","Offset: 105,070,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2512964 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2587332","Offset: 105,074,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2513092 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2587007","Offset: 105,078,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2513220 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2586675","Offset: 105,082,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2513331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2586363","Offset: 105,086,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2513481 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2585936","Offset: 105,090,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2513609 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2585603","Offset: 105,094,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2513741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2585266","Offset: 105,098,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2513865 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2584950","Offset: 105,102,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2513997 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2584626","Offset: 105,106,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2514108 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2584315","Offset: 105,111,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2514236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2583696","Offset: 105,115,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2514368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2583291","Offset: 105,119,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2514492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2582911","Offset: 105,123,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2514620 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2591832","Offset: 105,127,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2514731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2591534","Offset: 105,131,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2514863 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2591210","Offset: 105,135,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2514987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2590885","Offset: 105,139,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2515115 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2590450","Offset: 105,143,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2515230 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2590083","Offset: 105,147,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2515358 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2589703","Offset: 105,152,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2515503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2589371","Offset: 105,156,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2515631 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2589038","Offset: 105,160,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2515755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2588718","Offset: 105,164,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2515866 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2588355","Offset: 105,168,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2515998 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2588022","Offset: 105,172,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2516126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2587694","Offset: 105,176,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2516271 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2587353","Offset: 105,180,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2516395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2587015","Offset: 105,184,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2516531 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2586576","Offset: 105,188,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2516646 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2586261","Offset: 105,192,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2516774 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2585937","Offset: 105,197,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2516902 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2585604","Offset: 105,201,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2517030 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2585279","Offset: 105,205,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2517158 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2584456","Offset: 105,209,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2517274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2592553","Offset: 105,213,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2517406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2592208","Offset: 105,217,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2517534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2591824","Offset: 105,221,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2517666 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2591487","Offset: 105,225,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2517803 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2591150","Offset: 105,229,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2517939 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2590813","Offset: 105,233,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2518059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2590480","Offset: 105,238,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2518217 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2589690","Offset: 105,242,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2518383 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2589311","Offset: 105,246,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2518554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2588858","Offset: 105,250,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2518682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2588419","Offset: 105,254,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2518818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2594704","Offset: 105,258,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2519032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2594268","Offset: 105,262,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2519236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2593847","Offset: 105,266,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2519445 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2593386","Offset: 105,270,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2519646 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2592989","Offset: 105,274,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2519864 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2592570","Offset: 105,278,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2520047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2592191","Offset: 105,283,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2520248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2591781","Offset: 105,287,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2520474 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2591252","Offset: 105,291,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2520683 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2590847","Offset: 105,295,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2520888 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2590441","Offset: 105,299,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2521109 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2590020","Offset: 105,303,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2521318 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2589606","Offset: 105,307,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2521532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2589149","Offset: 105,311,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2521711 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2588398","Offset: 105,315,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2521886 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2596249","Offset: 105,319,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2522082 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2595660","Offset: 105,324,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2522266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2595280","Offset: 105,328,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2522441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2594896","Offset: 105,332,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2522641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2594495","Offset: 105,336,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2522825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2594106","Offset: 105,340,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2523004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2593620","Offset: 105,344,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2523123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2593301","Offset: 105,348,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2523247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2592976","Offset: 105,352,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2523379 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2592644","Offset: 105,356,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2523507 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2592319","Offset: 105,360,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2523631 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2591986","Offset: 105,364,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2523930 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2591440","Offset: 105,369,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2524079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2591094","Offset: 105,373,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2524207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2590774","Offset: 105,377,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2524339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2590425","Offset: 105,381,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2524454 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2590062","Offset: 105,385,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2524578 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2597290","Offset: 105,389,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2524710 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2596723","Offset: 105,393,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2524838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2596309","Offset: 105,397,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2524962 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2595899","Offset: 105,401,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2525073 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2595536","Offset: 105,405,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2525205 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2595170","Offset: 105,410,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2525338 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2594755","Offset: 105,414,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2525483 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2594405","Offset: 105,418,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2525611 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2594081","Offset: 105,422,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2525747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2593740","Offset: 105,426,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2525880 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2593407","Offset: 105,430,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2526020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2592686","Offset: 105,434,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2526165 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2592264","Offset: 105,438,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2526310 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2602338","Offset: 105,442,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2526443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2601799","Offset: 105,446,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2526588 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2601364","Offset: 105,451,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2526733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2600933","Offset: 105,455,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2526865 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2600520","Offset: 105,459,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2526993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2600085","Offset: 105,463,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2527121 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2599534","Offset: 105,467,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2527253 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2599116","Offset: 105,471,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2527364 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2598719","Offset: 105,475,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2527492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2598301","Offset: 105,479,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2527637 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2597870","Offset: 105,483,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2527782 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2597354","Offset: 105,487,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2527923 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2596927","Offset: 105,491,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2528038 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2596526","Offset: 105,496,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2528171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2596112","Offset: 105,500,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2528316 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2595685","Offset: 105,504,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2528461 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2595216","Offset: 105,508,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2528589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2594354","Offset: 105,512,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2528721 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2593902","Offset: 105,516,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2528841 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2604099","Offset: 105,520,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2528964 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2603703","Offset: 105,524,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2529092 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2603289","Offset: 105,528,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2529220 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2602884","Offset: 105,532,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2529344 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2602470","Offset: 105,537,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2529459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2602005","Offset: 105,541,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2529609 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2601573","Offset: 105,545,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2529737 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2601159","Offset: 105,549,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2529865 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2600745","Offset: 105,553,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2529993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2600323","Offset: 105,557,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2530125 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2599150","Offset: 105,561,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2530244 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2598745","Offset: 105,565,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2530372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2609510","Offset: 105,569,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2530513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2609087","Offset: 105,573,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2530641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2608682","Offset: 105,577,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2530790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2608243","Offset: 105,582,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2530910 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2607845","Offset: 105,586,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2531209 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2607252","Offset: 105,590,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2531371 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2606719","Offset: 105,594,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2531507 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2606301","Offset: 105,598,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2531627 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2605891","Offset: 105,602,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2531750 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2605478","Offset: 105,606,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2531896 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2605016","Offset: 105,610,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2532024 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2604479","Offset: 105,614,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2532147 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2604074","Offset: 105,618,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2532262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2603660","Offset: 105,623,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2532395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2603233","Offset: 105,627,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2532523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2602828","Offset: 105,631,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2532651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2601915","Offset: 105,635,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2532792 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2601500","Offset: 105,639,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2532928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2601083","Offset: 105,643,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2533043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2600648","Offset: 105,647,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2533171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2610837","Offset: 105,651,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2533295 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2610431","Offset: 105,655,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2533423 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2610026","Offset: 105,659,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2533547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2609607","Offset: 105,664,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2533666 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2609134","Offset: 105,668,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2533790 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2608733","Offset: 105,672,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2533931 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2608306","Offset: 105,676,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2534080 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2607875","Offset: 105,680,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2534195 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2607475","Offset: 105,684,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2534323 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2606335","Offset: 105,688,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2534456 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2605908","Offset: 105,692,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2534584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2614945","Offset: 105,696,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2534707 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2614613","Offset: 105,700,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2534831 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2614280","Offset: 105,704,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2534985 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2613908","Offset: 105,709,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2535108 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2613567","Offset: 105,713,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2535241 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2613213","Offset: 105,717,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2535369 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2612811","Offset: 105,721,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2535501 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2612458","Offset: 105,725,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2535612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2612146","Offset: 105,729,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2535740 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2611809","Offset: 105,733,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2535872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2611468","Offset: 105,737,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2536000 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2611041","Offset: 105,741,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2536124 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2610725","Offset: 105,745,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2536239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2610405","Offset: 105,750,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2536371 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2610069","Offset: 105,754,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2536504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2609735","Offset: 105,758,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2536632 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2609249","Offset: 105,762,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2536760 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2608869","Offset: 105,766,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2536892 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2608460","Offset: 105,770,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2537007 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2608050","Offset: 105,774,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2537135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2607611","Offset: 105,778,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2537263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2615316","Offset: 105,782,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2537391 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2614975","Offset: 105,786,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2537515 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2614638","Offset: 105,790,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2537626 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2614258","Offset: 105,795,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2537758 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2613913","Offset: 105,799,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2537890 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2613567","Offset: 105,803,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2538018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2613222","Offset: 105,807,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2538146 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2612868","Offset: 105,811,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2538278 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2611976","Offset: 105,815,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2538394 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2611566","Offset: 105,819,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2538517 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2617621","Offset: 105,823,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2538645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2617190","Offset: 105,827,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2538773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2616853","Offset: 105,831,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2538901 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2616511","Offset: 105,836,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2539017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2616182","Offset: 105,840,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2539145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2615841","Offset: 105,844,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2539273 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2615444","Offset: 105,848,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2539405 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2615099","Offset: 105,852,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2539529 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2614757","Offset: 105,856,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2539669 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2614412","Offset: 105,860,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2539789 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2614075","Offset: 105,864,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2539917 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2613721","Offset: 105,868,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2540053 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2827490","Offset: 105,872,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2540224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2829840","Offset: 105,876,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2540361 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2832839","Offset: 105,881,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2540540 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2839193","Offset: 105,885,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2540757 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2840580","Offset: 105,889,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2540941 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2844752","Offset: 105,893,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2541154 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2847372","Offset: 105,897,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2541355 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2849138","Offset: 105,901,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2541568 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2853064","Offset: 105,905,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2541773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2853665","Offset: 105,909,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2541982 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2856076","Offset: 105,913,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2542170 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2861448","Offset: 105,917,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2542374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2862071","Offset: 105,922,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2542605 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2864490","Offset: 105,926,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2542818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2869435","Offset: 105,930,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2543023 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2877819","Offset: 105,934,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2543202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2879125","Offset: 105,938,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2543416 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2881100","Offset: 105,942,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2543620 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2886080","Offset: 105,946,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2543821 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2887014","Offset: 105,950,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2544004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2888938","Offset: 105,954,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2544209 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2894506","Offset: 105,958,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2544414 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2895210","Offset: 105,963,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2544614 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2896794","Offset: 105,967,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2544806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2898842","Offset: 105,971,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2544926 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2899852","Offset: 105,975,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2545058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2902216","Offset: 105,979,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2545190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2905638","Offset: 105,983,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2545318 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2907601","Offset: 105,987,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2545446 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2908868","Offset: 105,991,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2545596 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2910536","Offset: 105,995,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2545720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2914764","Offset: 105,999,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2545843 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2914376","Offset: 106,003,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2545976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2913795","Offset: 106,008,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2546108 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2916846","Offset: 106,012,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2546232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2916389","Offset: 106,016,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2546342 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2916019","Offset: 106,020,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2546475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2915613","Offset: 106,024,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2546620 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2915165","Offset: 106,028,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2546748 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2914751","Offset: 106,032,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2546872 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2914290","Offset: 106,036,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2547008 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2920256","Offset: 106,040,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2547123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2919872","Offset: 106,044,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2547247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2919470","Offset: 106,049,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2547379 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2919023","Offset: 106,053,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2547503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2918502","Offset: 106,057,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2547627 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2918109","Offset: 106,061,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2547759 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2917721","Offset: 106,065,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2547913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2917290","Offset: 106,069,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2548045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2916851","Offset: 106,073,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2548173 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2916070","Offset: 106,077,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2548297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2915668","Offset: 106,081,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2548429 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2915251","Offset: 106,085,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2548544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2924689","Offset: 106,089,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2548668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2924309","Offset: 106,094,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2548796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2923929","Offset: 106,098,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2548924 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2923541","Offset: 106,102,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2549048 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2923109","Offset: 106,106,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2549163 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2922743","Offset: 106,110,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2549316 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2922329","Offset: 106,114,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2549449 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2921923","Offset: 106,118,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2549577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2921531","Offset: 106,122,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2549700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2921079","Offset: 106,126,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2549837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2920691","Offset: 106,130,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2549969 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2920298","Offset: 106,135,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2550118 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2919868","Offset: 106,139,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2550246 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2919462","Offset: 106,143,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2550362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2918911","Offset: 106,147,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2550490 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2918527","Offset: 106,151,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2550618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2918122","Offset: 106,155,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2550746 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2917729","Offset: 106,159,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2550874 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2917341","Offset: 106,163,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2551006 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2916898","Offset: 106,167,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2551155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2922346","Offset: 106,171,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2551305 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2930495","Offset: 106,176,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2551462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2930039","Offset: 106,180,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2551590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2929715","Offset: 106,184,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2551714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2929395","Offset: 106,188,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2551825 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2929066","Offset: 106,192,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2551957 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2928670","Offset: 106,196,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2552098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2928277","Offset: 106,200,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2552226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2927859","Offset: 106,204,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2552371 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2927522","Offset: 106,208,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2552504 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2927184","Offset: 106,212,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2552619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2926873","Offset: 106,216,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2552747 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2926455","Offset: 106,221,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2552879 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2926067","Offset: 106,225,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2552990 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2925772","Offset: 106,229,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2553122 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2925440","Offset: 106,233,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2553250 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2925051","Offset: 106,237,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2553378 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2924714","Offset: 106,241,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2553502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2924275","Offset: 106,245,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2553634 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2923946","Offset: 106,249,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2553749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2923635","Offset: 106,253,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2553877 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2923247","Offset: 106,257,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2554005 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2922935","Offset: 106,262,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2554155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2922504","Offset: 106,266,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2554278 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2922184","Offset: 106,270,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2554389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2921852","Offset: 106,274,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2554539 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2921501","Offset: 106,278,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2554667 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2921113","Offset: 106,282,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2554812 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2920635","Offset: 106,286,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2554940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2919598","Offset: 106,290,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2555072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2919121","Offset: 106,294,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2555187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2927356","Offset: 106,298,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2555311 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2934336","Offset: 106,302,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2555439 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2933998","Offset: 106,307,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2555567 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2933678","Offset: 106,311,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2555691 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2933277","Offset: 106,315,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2555806 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2932957","Offset: 106,319,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2555934 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2932625","Offset: 106,323,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2556062 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2932296","Offset: 106,327,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2556190 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2931967","Offset: 106,331,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2556318 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2931639","Offset: 106,335,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2556450 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2931213","Offset: 106,339,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2556565 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2930906","Offset: 106,343,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2556873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2930410","Offset: 106,348,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2557005 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2930086","Offset: 106,352,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2557133 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2929753","Offset: 106,356,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2557257 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2929382","Offset: 106,360,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2557372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2929070","Offset: 106,364,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2557517 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2928738","Offset: 106,368,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2557645 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2928409","Offset: 106,372,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2557777 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2928081","Offset: 106,376,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2557905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2927641","Offset: 106,380,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2558037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2927313","Offset: 106,384,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2558157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2926997","Offset: 106,388,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2558281 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2926681","Offset: 106,393,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2558409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2926344","Offset: 106,397,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2558537 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2925994","Offset: 106,401,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2558660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2925363","Offset: 106,405,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2558771 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2925039","Offset: 106,409,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2558904 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2924628","Offset: 106,413,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2559049 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2924180","Offset: 106,417,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2559177 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2923720","Offset: 106,421,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2559288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2931421","Offset: 106,425,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2559428 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2930931","Offset: 106,429,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2559586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2937924","Offset: 106,434,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2559727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2937565","Offset: 106,438,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2559851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2937224","Offset: 106,442,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2559966 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2936883","Offset: 106,446,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2560098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2936495","Offset: 106,450,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2560222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2936157","Offset: 106,454,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2560350 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2935816","Offset: 106,458,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2560478 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2935470","Offset: 106,462,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2560610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2935108","Offset: 106,466,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2560725 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2934690","Offset: 106,470,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2560853 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2934357","Offset: 106,475,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2560981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2934016","Offset: 106,479,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2561126 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2933653","Offset: 106,483,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2561267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2933299","Offset: 106,487,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2561382 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2932915","Offset: 106,491,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2561519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2932561","Offset: 106,495,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2561647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2932219","Offset: 106,499,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2561779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2931870","Offset: 106,503,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2561920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2931515","Offset: 106,507,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2562057 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2931152","Offset: 106,511,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2562193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2930735","Offset: 106,515,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2562368 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2930342","Offset: 106,520,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2562581 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2929916","Offset: 106,524,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2562769 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2929502","Offset: 106,528,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2562982 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2929058","Offset: 106,532,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2563192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2928140","Offset: 106,536,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2563396 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.2927637","Offset: 106,540,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2563601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3078609","Offset: 106,544,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2563814 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3080444","Offset: 106,548,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2564002 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3082475","Offset: 106,552,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2564233 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3091357","Offset: 106,556,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2564442 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3092202","Offset: 106,561,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2564647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3096076","Offset: 106,565,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2564851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3103394","Offset: 106,569,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2565035 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3104460","Offset: 106,573,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2565244 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3106773","Offset: 106,577,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2565453 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3115908","Offset: 106,581,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2565658 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3116671","Offset: 106,585,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2565863 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3119035","Offset: 106,589,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2566106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3127394","Offset: 106,593,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2566289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3128051","Offset: 106,597,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2566490 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3131652","Offset: 106,601,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2566695 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3139276","Offset: 106,606,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2566835 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3140578","Offset: 106,610,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2566963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3142298","Offset: 106,614,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2567096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3150847","Offset: 106,618,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2567236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3151637","Offset: 106,622,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2567364 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3155797","Offset: 106,626,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2567492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3162927","Offset: 106,630,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2567625 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3163938","Offset: 106,634,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2567770 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3167795","Offset: 106,638,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2567919 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3174711","Offset: 106,642,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2568047 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3175876","Offset: 106,647,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2568179 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3178428","Offset: 106,651,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2568346 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3186487","Offset: 106,655,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2568478 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3187469","Offset: 106,659,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2568589 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3190075","Offset: 106,663,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2568700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3198651","Offset: 106,667,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2568824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3199496","Offset: 106,671,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2568935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3203703","Offset: 106,675,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2569058 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3211017","Offset: 106,679,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2569199 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3211968","Offset: 106,683,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2569327 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3214404","Offset: 106,688,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2569438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3222937","Offset: 106,692,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2569566 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3223812","Offset: 106,696,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2569694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3227238","Offset: 106,700,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2569818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3235353","Offset: 106,704,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2569950 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3236083","Offset: 106,708,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2570065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3238396","Offset: 106,712,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2570193 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3239812","Offset: 106,716,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2570321 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3249963","Offset: 106,720,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2570466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3251132","Offset: 106,724,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2570594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3253589","Offset: 106,728,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2570727 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3261968","Offset: 106,733,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2570842 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3262737","Offset: 106,737,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2570974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3265843","Offset: 106,741,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2571102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3273792","Offset: 106,745,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2571221 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3274573","Offset: 106,749,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2571349 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3277594","Offset: 106,753,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2571482 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3285905","Offset: 106,757,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2571610 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3286728","Offset: 106,761,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2571733 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3289178","Offset: 106,765,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2571849 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3297967","Offset: 106,769,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2571989 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3298778","Offset: 106,774,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2572113 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3302712","Offset: 106,778,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2572245 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3312350","Offset: 106,782,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2572369 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3313114","Offset: 106,786,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2572519 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3316130","Offset: 106,790,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2572634 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3323306","Offset: 106,794,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2572766 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3325197","Offset: 106,798,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2572894 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3327718","Offset: 106,802,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2573022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3335215","Offset: 106,806,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2573150 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3337357","Offset: 106,810,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2573282 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3341624","Offset: 106,814,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2573393 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3347704","Offset: 106,819,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2573521 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3352943","Offset: 106,823,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2573649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3355815","Offset: 106,827,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2573773 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3363759","Offset: 106,831,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2573905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3369617","Offset: 106,835,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2574020 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3375471","Offset: 106,839,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2574153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3377600","Offset: 106,843,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2574276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3387021","Offset: 106,847,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2574404 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3391407","Offset: 106,851,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2574532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3396067","Offset: 106,855,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2574665 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3402078","Offset: 106,860,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2574776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3411016","Offset: 106,864,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2574908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3416179","Offset: 106,868,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2575036 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3420996","Offset: 106,872,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2575160 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3430937","Offset: 106,876,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2575296 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3436928","Offset: 106,880,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2575411 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3442390","Offset: 106,884,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2575539 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3452361","Offset: 106,888,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2575667 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3459264","Offset: 106,892,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2575795 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3464803","Offset: 106,896,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2575932 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3554586","Offset: 106,900,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2576188 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3669735","Offset: 106,905,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2576324 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3752155","Offset: 106,909,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2576452 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3751173","Offset: 106,913,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2576576 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3755077","Offset: 106,917,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2576704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3754420","Offset: 106,921,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2576824 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3753557","Offset: 106,925,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2576947 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3752957","Offset: 106,929,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2577075 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3752287","Offset: 106,933,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2577208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3764570","Offset: 106,937,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2577331 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3763952","Offset: 106,941,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2577451 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3762863","Offset: 106,946,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2577604 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3765624","Offset: 106,950,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2577732 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3767719","Offset: 106,954,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2577869 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3766861","Offset: 106,958,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2577984 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3766226","Offset: 106,962,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2578112 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3765641","Offset: 106,966,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2578244 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3775975","Offset: 106,970,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2578389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3775429","Offset: 106,974,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2578513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3774507","Offset: 106,978,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2578633 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3778620","Offset: 106,982,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2578761 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3777950","Offset: 106,987,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2578906 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3777459","Offset: 106,991,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2579038 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3776094","Offset: 106,995,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2579162 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3786744","Offset: 106,999,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2579294 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3786159","Offset: 107,003,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2579409 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3784415","Offset: 107,007,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2579533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3789091","Offset: 107,011,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2579661 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3788600","Offset: 107,015,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2579789 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3787759","Offset: 107,019,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2579913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3787269","Offset: 107,023,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2580028 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3786752","Offset: 107,027,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2580156 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3797786","Offset: 107,032,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2580288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3797142","Offset: 107,036,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2580416 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3796050","Offset: 107,040,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2580548 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3801255","Offset: 107,044,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2580676 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3800236","Offset: 107,048,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2580809 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3799574","Offset: 107,052,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2580937 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3798985","Offset: 107,056,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2581065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3798358","Offset: 107,060,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2581176 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3809630","Offset: 107,064,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2581308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3808982","Offset: 107,068,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2581436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3807855","Offset: 107,073,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2581585 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3810646","Offset: 107,077,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2581709 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3809908","Offset: 107,081,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2581845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3811884","Offset: 107,085,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2581961 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3811328","Offset: 107,089,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2582153 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3810658","Offset: 107,093,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2582289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3821053","Offset: 107,097,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2582417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3820425","Offset: 107,101,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2582541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3818565","Offset: 107,105,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2582652 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3824491","Offset: 107,109,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2582801 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3823890","Offset: 107,113,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2582951 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3823262","Offset: 107,118,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2583079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3822652","Offset: 107,122,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2583207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3821628","Offset: 107,126,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2583339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3820975","Offset: 107,130,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2583454 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3834514","Offset: 107,134,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2583591 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3833651","Offset: 107,138,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2583719 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3831957","Offset: 107,142,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2583851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3837586","Offset: 107,146,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2583979 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3836997","Offset: 107,150,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2584111 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3836357","Offset: 107,154,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2584299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3835712","Offset: 107,159,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2584478 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3835039","Offset: 107,163,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2584632 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3834300","Offset: 107,167,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2584832 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3844694","Offset: 107,171,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2585041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3843683","Offset: 107,175,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2585225 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3846055","Offset: 107,179,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2585451 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3845394","Offset: 107,183,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2585660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3844719","Offset: 107,187,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2585865 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3846038","Offset: 107,191,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2586069 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3852886","Offset: 107,195,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2586253 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3851909","Offset: 107,200,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2586466 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3854034","Offset: 107,204,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2586680 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3853393","Offset: 107,208,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2586880 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3852750","Offset: 107,212,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2587072 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3860664","Offset: 107,216,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2587273 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3859682","Offset: 107,220,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2587486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3861944","Offset: 107,224,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2587695 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3861317","Offset: 107,228,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2587896 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3860681","Offset: 107,232,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2588083 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3867939","Offset: 107,236,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2588318 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3866919","Offset: 107,240,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2588527 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3869074","Offset: 107,245,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2588762 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3868412","Offset: 107,249,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2588971 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3867751","Offset: 107,253,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2589171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3875581","Offset: 107,257,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2589299 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3874655","Offset: 107,261,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2589427 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3876882","Offset: 107,265,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2589560 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3876327","Offset: 107,269,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2589688 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3875751","Offset: 107,273,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2589807 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3883384","Offset: 107,277,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2589935 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3882429","Offset: 107,281,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2590059 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3884873","Offset: 107,286,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2590187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3884310","Offset: 107,290,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2590315 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3883704","Offset: 107,294,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2590430 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3885193","Offset: 107,298,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2590554 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3891917","Offset: 107,302,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2590682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3890996","Offset: 107,306,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2590810 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3893500","Offset: 107,310,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2590955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3892613","Offset: 107,314,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2591066 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3892067","Offset: 107,318,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2591202 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3900191","Offset: 107,322,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2591330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3899295","Offset: 107,326,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2591458 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3901944","Offset: 107,331,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2591586 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3900916","Offset: 107,335,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2591719 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3900344","Offset: 107,339,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2591834 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3907226","Offset: 107,343,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2591962 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3907900","Offset: 107,347,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2592090 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3909824","Offset: 107,351,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2592218 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3909231","Offset: 107,355,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2592350 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3908178","Offset: 107,359,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2592487 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3915960","Offset: 107,363,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2592640 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3914988","Offset: 107,367,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2592772 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3917727","Offset: 107,372,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2592905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3917125","Offset: 107,376,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2593045 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3916097","Offset: 107,380,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2593178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3923666","Offset: 107,384,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2593297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3922757","Offset: 107,388,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2593421 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3925479","Offset: 107,392,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2593549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3924916","Offset: 107,396,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2593677 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3924310","Offset: 107,400,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2593801 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3931853","Offset: 107,404,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2593912 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3930953","Offset: 107,408,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2594044 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3933897","Offset: 107,412,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2594172 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3933180","Offset: 107,417,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2594300 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3932464","Offset: 107,421,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2594607 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3937882","Offset: 107,425,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2594744 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3939853","Offset: 107,429,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2594863 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3939192","Offset: 107,433,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2594987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3940225","Offset: 107,437,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2595119 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3945635","Offset: 107,441,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2595247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3944722","Offset: 107,445,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2595371 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3947388","Offset: 107,449,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2595486 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3946847","Offset: 107,453,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2595618 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3946215","Offset: 107,458,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2595746 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3953785","Offset: 107,462,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2595891 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3952829","Offset: 107,466,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2596019 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3955269","Offset: 107,470,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2596152 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3954671","Offset: 107,474,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2596267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3955478","Offset: 107,478,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2596395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3961818","Offset: 107,482,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2596523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3960474","Offset: 107,486,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2596638 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3963286","Offset: 107,490,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2596770 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3962604","Offset: 107,494,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2596894 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3962040","Offset: 107,499,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2597018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3969921","Offset: 107,503,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2597141 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3969038","Offset: 107,507,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2597274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3971265","Offset: 107,511,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2597389 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3970727","Offset: 107,515,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2597513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3970168","Offset: 107,519,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2597641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3971452","Offset: 107,523,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2597764 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3977785","Offset: 107,527,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2597905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3979952","Offset: 107,531,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2598037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3979321","Offset: 107,535,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2598161 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3978634","Offset: 107,539,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2598289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3980878","Offset: 107,544,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2598413 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3984897","Offset: 107,548,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2598541 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3985558","Offset: 107,552,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2598669 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3986714","Offset: 107,556,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2598780 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3985934","Offset: 107,560,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2598904 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3994804","Offset: 107,564,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2599027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3994271","Offset: 107,568,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2599155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3993345","Offset: 107,572,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2599266 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3997778","Offset: 107,576,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2599399 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3996967","Offset: 107,580,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2599531 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3996511","Offset: 107,585,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2599659 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3996033","Offset: 107,589,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2599791 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.3994834","Offset: 107,593,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2599902 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4006810","Offset: 107,597,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2600043 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4006268","Offset: 107,601,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2600192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4005275","Offset: 107,605,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2600320 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4009780","Offset: 107,609,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2600444 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4009306","Offset: 107,613,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2600572 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4008816","Offset: 107,617,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2600730 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4008227","Offset: 107,621,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2600888 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4007194","Offset: 107,625,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2601016 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4006661","Offset: 107,630,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2601144 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4019294","Offset: 107,634,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2601276 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4018753","Offset: 107,638,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2601408 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4017776","Offset: 107,642,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2601536 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4022520","Offset: 107,646,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2601668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4022022","Offset: 107,650,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2601796 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4021411","Offset: 107,654,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2601920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4020856","Offset: 107,658,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2602031 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4019837","Offset: 107,662,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2602163 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4019240","Offset: 107,666,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2602296 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4032001","Offset: 107,671,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2602441 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4031454","Offset: 107,675,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2602581 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4030465","Offset: 107,679,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2602718 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4034988","Offset: 107,683,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2602829 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4034424","Offset: 107,687,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2602953 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4033797","Offset: 107,691,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2603085 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4033302","Offset: 107,695,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2603209 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4032423","Offset: 107,699,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2603332 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4031869","Offset: 107,703,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2603448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4044579","Offset: 107,707,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2603576 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4044067","Offset: 107,712,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2603704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4042539","Offset: 107,716,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2603832 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4046887","Offset: 107,720,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2603955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4046435","Offset: 107,724,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2604088 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4045953","Offset: 107,728,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2604224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4045211","Offset: 107,732,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2604352 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4044596","Offset: 107,736,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2604484 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4056321","Offset: 107,740,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2604612 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4055007","Offset: 107,744,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2604736 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4053889","Offset: 107,748,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2604847 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4058557","Offset: 107,752,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2604996 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4057947","Offset: 107,757,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2605120 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4057379","Offset: 107,761,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2605248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4056889","Offset: 107,765,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2605376 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4056287","Offset: 107,769,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2605517 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4067226","Offset: 107,773,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2605662 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4066587","Offset: 107,777,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2605799 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4065647","Offset: 107,781,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2605939 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4069774","Offset: 107,785,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2606123 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4069244","Offset: 107,789,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2606340 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4068597","Offset: 107,793,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2606549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4067799","Offset: 107,798,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2606754 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4067009","Offset: 107,802,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2606985 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4079147","Offset: 107,806,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2607211 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4078298","Offset: 107,810,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2607394 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4076648","Offset: 107,814,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2607595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4081281","Offset: 107,818,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2607800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4080709","Offset: 107,822,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2608009 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4079830","Offset: 107,826,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2608213 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4079280","Offset: 107,830,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2608512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4078568","Offset: 107,834,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2609139 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4098979","Offset: 107,838,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2609378 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4097947","Offset: 107,843,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2609549 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4100511","Offset: 107,847,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2609681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4099888","Offset: 107,851,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2609818 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4101018","Offset: 107,855,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2609954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4109407","Offset: 107,859,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2610082 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4108396","Offset: 107,863,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2610210 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4110039","Offset: 107,867,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2610330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4110908","Offset: 107,871,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2610462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4111570","Offset: 107,875,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2610594 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4119528","Offset: 107,879,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2610722 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4122054","Offset: 107,884,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2610850 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4120799","Offset: 107,888,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2610987 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4122540","Offset: 107,892,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2611102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4130395","Offset: 107,896,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2611247 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4131461","Offset: 107,900,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2611379 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4132166","Offset: 107,904,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2611533 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4139103","Offset: 107,908,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2611661 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4150154","Offset: 107,912,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2611776 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4161409","Offset: 107,916,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2611908 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4167212","Offset: 107,920,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2612041 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4168978","Offset: 107,924,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2612169 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4172114","Offset: 107,929,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2612297 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4177989","Offset: 107,933,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2612433 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4180097","Offset: 107,937,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2612595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4254901","Offset: 107,941,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2612723 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4344292","Offset: 107,945,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2612851 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4343328","Offset: 107,949,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2612984 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4346911","Offset: 107,953,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2613099 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4346344","Offset: 107,957,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2613231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4345124","Offset: 107,961,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2613359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4344560","Offset: 107,965,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2613487 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4347159","Offset: 107,970,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2613619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4356371","Offset: 107,974,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2613743 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4355172","Offset: 107,978,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2613875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4354242","Offset: 107,982,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2614025 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4357787","Offset: 107,986,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2614157 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4357309","Offset: 107,990,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2614281 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4356664","Offset: 107,994,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2614417 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4358342","Offset: 107,998,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2614601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4366648","Offset: 108,002,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2614814 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4366022","Offset: 108,006,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2614959 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4365083","Offset: 108,011,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2615079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4368850","Offset: 108,015,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2615207 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4368351","Offset: 108,019,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2615335 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4367788","Offset: 108,023,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2615467 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4366674","Offset: 108,027,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2615595 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4377768","Offset: 108,031,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2615723 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4376364","Offset: 108,035,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2615838 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4375464","Offset: 108,039,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2615970 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4380132","Offset: 108,043,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2616098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4379176","Offset: 108,047,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2616222 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4378719","Offset: 108,051,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2616359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4378113","Offset: 108,056,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2616474 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4377640","Offset: 108,060,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2616606 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4387765","Offset: 108,064,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2616755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4387321","Offset: 108,068,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2616883 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4386536","Offset: 108,072,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2617011 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4389962","Offset: 108,076,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2617165 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4389471","Offset: 108,080,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2617336 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4388972","Offset: 108,084,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2617609 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4387478","Offset: 108,088,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2617750 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4398977","Offset: 108,092,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2617865 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4398572","Offset: 108,097,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2617993 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4397757","Offset: 108,101,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2618104 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4400863","Offset: 108,105,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2618215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4400466","Offset: 108,109,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2618338 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4399912","Offset: 108,113,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2618454 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4408398","Offset: 108,117,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2618577 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4407699","Offset: 108,121,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2618697 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4406887","Offset: 108,125,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2618829 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4409550","Offset: 108,129,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2618974 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4409158","Offset: 108,133,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2619102 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4408769","Offset: 108,137,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2619234 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4408330","Offset: 108,142,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2619362 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4418647","Offset: 108,146,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2619478 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4418258","Offset: 108,150,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2619606 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4417456","Offset: 108,154,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2619751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4419824","Offset: 108,158,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2619879 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4419406","Offset: 108,162,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2620015 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4418643","Offset: 108,166,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2620130 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4425461","Offset: 108,170,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2620267 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4426681","Offset: 108,174,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2620395 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4426160","Offset: 108,178,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2620523 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4426996","Offset: 108,183,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2620668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4435765","Offset: 108,187,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2620800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4435334","Offset: 108,191,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2620920 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4433763","Offset: 108,195,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2621052 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4436968","Offset: 108,199,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2621180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4436550","Offset: 108,203,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2621304 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4435892","Offset: 108,207,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2621440 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4437723","Offset: 108,211,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2621555 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4448842","Offset: 108,215,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2621688 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4448432","Offset: 108,219,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2621811 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4447648","Offset: 108,224,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2621961 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4451052","Offset: 108,228,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2622084 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4450545","Offset: 108,232,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2622221 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4449964","Offset: 108,236,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2622336 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4448727","Offset: 108,240,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2622468 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4459547","Offset: 108,244,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2622601 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4459120","Offset: 108,248,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2622724 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4458331","Offset: 108,252,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2622861 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4461348","Offset: 108,256,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2622976 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4460895","Offset: 108,260,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2623108 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4460495","Offset: 108,264,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2623236 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4460077","Offset: 108,269,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2623382 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4469966","Offset: 108,273,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2623510 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4469531","Offset: 108,277,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2623638 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4468263","Offset: 108,281,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2623753 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4471890","Offset: 108,285,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2623889 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4471165","Offset: 108,289,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2624128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4470594","Offset: 108,293,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2624269 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4469855","Offset: 108,297,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2624406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4470060","Offset: 108,301,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2624551 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4481136","Offset: 108,305,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2624679 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4480726","Offset: 108,310,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2624819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4479656","Offset: 108,314,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2624939 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4482907","Offset: 108,318,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2625075 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4482408","Offset: 108,322,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2625208 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4482028","Offset: 108,326,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2625374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4481072","Offset: 108,330,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2625502 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4491795","Offset: 108,334,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2625647 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4490792","Offset: 108,338,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2625762 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4490003","Offset: 108,342,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2625895 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4493147","Offset: 108,346,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2626027 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4492652","Offset: 108,350,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2626155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4492268","Offset: 108,355,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2626296 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4491777","Offset: 108,359,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2626428 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4500938","Offset: 108,363,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2626543 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4503554","Offset: 108,367,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2626671 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4516243","Offset: 108,371,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2626850 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4515761","Offset: 108,375,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2627034 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4514911","Offset: 108,379,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2627175 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4516409","Offset: 108,383,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2627303 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4518179","Offset: 108,387,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2627431 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4517586","Offset: 108,391,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2627559 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4517074","Offset: 108,396,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2627674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4531235","Offset: 108,400,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2627823 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4530186","Offset: 108,404,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2627955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4529222","Offset: 108,408,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2628088 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4532780","Offset: 108,412,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2628241 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4532294","Offset: 108,416,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2628374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4531764","Offset: 108,420,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2628489 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4531188","Offset: 108,424,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2628621 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4546096","Offset: 108,428,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2628749 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4544684","Offset: 108,432,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2628873 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4545414","Offset: 108,436,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2629018 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4548597","Offset: 108,441,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2629171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4548077","Offset: 108,445,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2629291 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4547543","Offset: 108,449,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2629419 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4546796","Offset: 108,453,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2629547 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4546305","Offset: 108,457,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2629675 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4545755","Offset: 108,461,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2629799 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4561776","Offset: 108,465,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2629914 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4560705","Offset: 108,469,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2630046 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4559746","Offset: 108,473,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2630178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4563326","Offset: 108,477,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2630306 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4562856","Offset: 108,482,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2630439 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4562365","Offset: 108,486,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2630571 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4561810","Offset: 108,490,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2630686 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4575123","Offset: 108,494,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2630814 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4574013","Offset: 108,498,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2630946 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4576591","Offset: 108,502,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2631079 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4576108","Offset: 108,506,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2631219 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4575648","Offset: 108,510,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2631339 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4575238","Offset: 108,514,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2631471 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4576352","Offset: 108,518,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2631599 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4589292","Offset: 108,523,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2631731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4588785","Offset: 108,527,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2631876 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4587825","Offset: 108,531,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2632026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4590500","Offset: 108,535,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2632145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4589805","Offset: 108,539,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2632273 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4589258","Offset: 108,543,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2632406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4602493","Offset: 108,547,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2632534 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4601989","Offset: 108,551,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2632662 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4601042","Offset: 108,555,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2632772 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4604090","Offset: 108,559,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2632905 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4603491","Offset: 108,563,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2633037 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4602911","Offset: 108,568,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2633165 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4602370","Offset: 108,572,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2633289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4616688","Offset: 108,576,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2633438 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4616168","Offset: 108,580,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2633566 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4615225","Offset: 108,584,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2633703 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4618297","Offset: 108,588,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2633839 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4617730","Offset: 108,592,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2633971 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4617163","Offset: 108,596,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2634095 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4616591","Offset: 108,600,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2634215 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4630559","Offset: 108,604,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2634347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4630030","Offset: 108,609,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2634475 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4629100","Offset: 108,613,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2634791 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4631993","Offset: 108,617,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2634927 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4631422","Offset: 108,621,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2635064 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4630781","Offset: 108,625,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2635179 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4630261","Offset: 108,629,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2635307 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4644336","Offset: 108,633,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2635439 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4643782","Offset: 108,637,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2635567 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4642839","Offset: 108,641,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2635751 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4646534","Offset: 108,645,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2635955 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4647443","Offset: 108,649,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2636135 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4646990","Offset: 108,654,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2636292 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4646483","Offset: 108,658,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2636425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4658566","Offset: 108,662,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2636540 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4657491","Offset: 108,666,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2636668 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4656689","Offset: 108,670,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2636800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4659646","Offset: 108,674,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2636928 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4659129","Offset: 108,678,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2637056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4658609","Offset: 108,682,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2637171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4672134","Offset: 108,686,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2637304 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4671677","Offset: 108,690,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2637436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4670197","Offset: 108,695,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2637585 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4672830","Offset: 108,699,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2637713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4672390","Offset: 108,703,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2637846 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4673725","Offset: 108,707,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2637965 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4672855","Offset: 108,711,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2638110 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4684908","Offset: 108,715,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2638259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4684329","Offset: 108,719,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2638387 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4683471","Offset: 108,723,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2638528 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4686671","Offset: 108,727,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2638712 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4686218","Offset: 108,731,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2638899 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4685190","Offset: 108,736,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2639032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4684678","Offset: 108,740,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2639164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4698792","Offset: 108,744,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2639279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4698400","Offset: 108,748,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2639411 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4697581","Offset: 108,752,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2639544 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4700891","Offset: 108,756,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2639672 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4700426","Offset: 108,760,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2639800 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4700042","Offset: 108,764,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2639915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4699547","Offset: 108,768,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2640051 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4712681","Offset: 108,772,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2640205 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4711848","Offset: 108,776,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2640363 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4713542","Offset: 108,781,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2640491 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4715099","Offset: 108,785,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2640623 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4714626","Offset: 108,789,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2640743 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4714216","Offset: 108,793,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2640871 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4713678","Offset: 108,797,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2640999 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4726039","Offset: 108,801,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2641131 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4727955","Offset: 108,805,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2641259 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4727596","Offset: 108,809,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2641374 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4727225","Offset: 108,813,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2641511 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4726815","Offset: 108,817,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2641639 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4726265","Offset: 108,822,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2641779 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4727810","Offset: 108,826,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2641907 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4741203","Offset: 108,830,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2642061 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4740755","Offset: 108,834,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2642180 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4739970","Offset: 108,838,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2642308 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4741442","Offset: 108,842,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2642436 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4743204","Offset: 108,846,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2642564 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4742795","Offset: 108,850,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2642692 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4741562","Offset: 108,854,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2642808 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4761520","Offset: 108,858,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2642936 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4760752","Offset: 108,862,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2643068 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4763709","Offset: 108,867,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2643192 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4763283","Offset: 108,871,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2643320 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4761956","Offset: 108,875,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2643469 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4764418","Offset: 108,879,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2643584 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4763936","Offset: 108,883,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2643712 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4774910","Offset: 108,887,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2643840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4774436","Offset: 108,891,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2643968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4772772","Offset: 108,895,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2644100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4776002","Offset: 108,899,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2644216 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4775583","Offset: 108,903,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2644361 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4775042","Offset: 108,908,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2644561 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4775921","Offset: 108,912,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2644740 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4792583","Offset: 108,916,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2644860 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4791793","Offset: 108,920,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2644984 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4794088","Offset: 108,924,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2645120 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4793632","Offset: 108,928,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2645248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4792983","Offset: 108,932,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2645372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4794984","Offset: 108,936,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2645487 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4809359","Offset: 108,940,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2645619 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4808361","Offset: 108,944,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2645752 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4810596","Offset: 108,948,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2645875 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4810084","Offset: 108,953,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2646003 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4809594","Offset: 108,957,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2646136 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4825695","Offset: 108,961,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2646251 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4826430","Offset: 108,965,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2646400 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4826050","Offset: 108,969,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2646532 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4826874","Offset: 108,973,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2646660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4827608","Offset: 108,977,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2646784 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4828802","Offset: 108,981,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2646899 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4829289","Offset: 108,985,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2647032 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4829668","Offset: 108,989,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2647164 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4830043","Offset: 108,994,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2647292 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4830483","Offset: 108,998,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2647424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4831354","Offset: 109,002,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2647638 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4831494","Offset: 109,006,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2647804 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.4832266","Offset: 109,010,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2647940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.5073257","Offset: 109,014,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2648098 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.5073829","Offset: 109,018,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2648231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.5076294","Offset: 109,022,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2648359 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.5077348","Offset: 109,026,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2648487 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.5079486","Offset: 109,030,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2648615 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.5080450","Offset: 109,035,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2648738 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.5082639","Offset: 109,039,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2648871 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.5083146","Offset: 109,043,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2649007 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.5085344","Offset: 109,047,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2649178 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.5085754","Offset: 109,051,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2649327 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.5087580","Offset: 109,055,488, Length: 3,072, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:11.2649468 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","8.5089547","Offset: 109,058,560, Length: 3,584, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:19.7815320 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000550","","5728"
"10:46:19.7827800 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000798","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.7829225 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000192","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","5728"
"10:46:19.7829916 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000252","","5728"
"10:46:19.7835774 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000662","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.7837216 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000171","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:19.7923907 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000149","SyncType: SyncTypeOther","5728"
"10:46:19.7929577 AM","firefox.exe","7384","Load Image","C:\Program Files\Firefox Nightly\xul.dll","0.0000000","Image Base: 0x7ffb07c80000, Image Size: 0x6988000","5728"
"10:46:19.7931053 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000278","Name: \Program Files\Firefox Nightly\xul.dll","5728"
"10:46:19.7938648 AM","firefox.exe","7384","Load Image","C:\Windows\System32\user32.dll","0.0000000","Image Base: 0x7ffb488d0000, Image Size: 0x190000","5728"
"10:46:19.7939753 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\user32.dll","0.0000256","Name: \Windows\System32\user32.dll","5728"
"10:46:19.7944869 AM","firefox.exe","7384","Load Image","C:\Windows\System32\win32u.dll","0.0000000","Image Base: 0x7ffb45f50000, Image Size: 0x20000","5728"
"10:46:19.7945620 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\win32u.dll","0.0000200","Name: \Windows\System32\win32u.dll","5728"
"10:46:19.7950160 AM","firefox.exe","7384","Load Image","C:\Windows\System32\gdi32.dll","0.0000000","Image Base: 0x7ffb47170000, Image Size: 0x28000","5728"
"10:46:19.7950829 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\gdi32.dll","0.0000188","Name: \Windows\System32\gdi32.dll","5728"
"10:46:19.7955177 AM","firefox.exe","7384","Load Image","C:\Windows\System32\gdi32full.dll","0.0000000","Image Base: 0x7ffb45c00000, Image Size: 0x192000","5728"
"10:46:19.7956094 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\gdi32full.dll","0.0000180","Name: \Windows\System32\gdi32full.dll","5728"
"10:46:19.7960259 AM","firefox.exe","7384","Load Image","C:\Windows\System32\msvcp_win.dll","0.0000000","Image Base: 0x7ffb46680000, Image Size: 0x9f000","5728"
"10:46:19.7960941 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000180","Name: \Windows\System32\msvcp_win.dll","5728"
"10:46:19.7970217 AM","firefox.exe","7384","Load Image","C:\Windows\System32\shell32.dll","0.0000000","Image Base: 0x7ffb472f0000, Image Size: 0x1440000","5728"
"10:46:19.7971066 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\shell32.dll","0.0000179","Name: \Windows\System32\shell32.dll","5728"
"10:46:19.7980060 AM","firefox.exe","7384","Load Image","C:\Windows\System32\SHCore.dll","0.0000000","Image Base: 0x7ffb48b10000, Image Size: 0xa9000","5728"
"10:46:19.7981221 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\SHCore.dll","0.0000090","Name: \Windows\System32\SHCore.dll","5728"
"10:46:19.7985398 AM","firefox.exe","7384","Load Image","C:\Windows\System32\combase.dll","0.0000000","Image Base: 0x7ffb46d80000, Image Size: 0x322000","5728"
"10:46:19.7985893 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\combase.dll","0.0000128","Name: \Windows\System32\combase.dll","5728"
"10:46:19.7989605 AM","firefox.exe","7384","Load Image","C:\Windows\System32\windows.storage.dll","0.0000000","Image Base: 0x7ffb45f70000, Image Size: 0x70d000","5728"
"10:46:19.7990010 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\windows.storage.dll","0.0000090","Name: \Windows\System32\windows.storage.dll","5728"
"10:46:19.7992604 AM","firefox.exe","7384","Load Image","C:\Windows\System32\shlwapi.dll","0.0000000","Image Base: 0x7ffb490e0000, Image Size: 0x51000","5728"
"10:46:19.7992920 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\shlwapi.dll","0.0000090","Name: \Windows\System32\shlwapi.dll","5728"
"10:46:19.7995305 AM","firefox.exe","7384","Load Image","C:\Windows\System32\kernel.appcore.dll","0.0000000","Image Base: 0x7ffb45af0000, Image Size: 0x11000","5728"
"10:46:19.7995595 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000086","Name: \Windows\System32\kernel.appcore.dll","5728"
"10:46:19.7997635 AM","firefox.exe","7384","Load Image","C:\Windows\System32\profapi.dll","0.0000000","Image Base: 0x7ffb45b30000, Image Size: 0x1f000","5728"
"10:46:19.7997912 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\profapi.dll","0.0000081","Name: \Windows\System32\profapi.dll","5728"
"10:46:19.7999913 AM","firefox.exe","7384","Load Image","C:\Windows\System32\powrprof.dll","0.0000000","Image Base: 0x7ffb45aa0000, Image Size: 0x4c000","5728"
"10:46:19.8000186 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\powrprof.dll","0.0000077","Name: \Windows\System32\powrprof.dll","5728"
"10:46:19.8002170 AM","firefox.exe","7384","Load Image","C:\Windows\System32\fltLib.dll","0.0000000","Image Base: 0x7ffb45a90000, Image Size: 0xa000","5728"
"10:46:19.8002431 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\fltLib.dll","0.0000085","Name: \Windows\System32\fltLib.dll","5728"
"10:46:19.8004525 AM","firefox.exe","7384","Load Image","C:\Windows\System32\ole32.dll","0.0000000","Image Base: 0x7ffb491a0000, Image Size: 0x151000","5728"
"10:46:19.8004824 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\ole32.dll","0.0000077","Name: \Windows\System32\ole32.dll","5728"
"10:46:19.8007589 AM","firefox.exe","7384","Load Image","C:\Windows\System32\imm32.dll","0.0000000","Image Base: 0x7ffb48730000, Image Size: 0x2d000","5728"
"10:46:19.8007871 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\imm32.dll","0.0000072","Name: \Windows\System32\imm32.dll","5728"
"10:46:19.8010495 AM","firefox.exe","7384","Load Image","C:\Windows\System32\setupapi.dll","0.0000000","Image Base: 0x7ffb49300000, Image Size: 0x44b000","5728"
"10:46:19.8010832 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\setupapi.dll","0.0000085","Name: \Windows\System32\setupapi.dll","5728"
"10:46:19.8013191 AM","firefox.exe","7384","Load Image","C:\Windows\System32\oleaut32.dll","0.0000000","Image Base: 0x7ffb46c10000, Image Size: 0xc2000","5728"
"10:46:19.8013490 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\oleaut32.dll","0.0000072","Name: \Windows\System32\oleaut32.dll","5728"
"10:46:19.8015687 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000192","","5728"
"10:46:19.8042849 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.8043561 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000069","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","5728"
"10:46:19.8043813 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000090","","5728"
"10:46:19.8045823 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000230","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.8046480 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000098","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:19.8047013 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000030","SyncType: SyncTypeOther","5728"
"10:46:19.8047952 AM","firefox.exe","7384","Load Image","C:\Windows\System32\avrt.dll","0.0000000","Image Base: 0x7ffb415a0000, Image Size: 0xa000","5728"
"10:46:19.8048255 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\avrt.dll","0.0000106","Name: \Windows\System32\avrt.dll","5728"
"10:46:19.8049727 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000132","","5728"
"10:46:19.8053759 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000947","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.8054928 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000059","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","5728"
"10:46:19.8055162 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000090","","5728"
"10:46:19.8057193 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000239","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.8057842 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:19.8058076 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\usp10.dll","0.0000060","AllocationSize: 81,920, EndOfFile: 79,360, NumberOfLinks: 2, DeletePending: False, Directory: False","5728"
"10:46:19.8058418 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\usp10.dll","0.0802301","Offset: 0, Length: 79,360, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:19.8865984 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\usp10.dll","0.0479211","Offset: 78,848, Length: 512, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:19.9345822 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000051","SyncType: SyncTypeOther","5728"
"10:46:19.9347077 AM","firefox.exe","7384","Load Image","C:\Windows\System32\usp10.dll","0.0000000","Image Base: 0x7ffb413c0000, Image Size: 0x19000","5728"
"10:46:19.9347439 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\usp10.dll","0.0000073","Name: \Windows\System32\usp10.dll","5728"
"10:46:19.9348246 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000111","","5728"
"10:46:19.9352482 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9352892 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000034","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","5728"
"10:46:19.9353020 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000047","","5728"
"10:46:19.9354185 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000166","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9354658 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000077","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:19.9354949 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000012","SyncType: SyncTypeOther","5728"
"10:46:19.9355887 AM","firefox.exe","7384","Load Image","C:\Windows\System32\d3d11.dll","0.0000000","Image Base: 0x7ffb428e0000, Image Size: 0x30b000","5728"
"10:46:19.9356135 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\d3d11.dll","0.0000051","Name: \Windows\System32\d3d11.dll","5728"
"10:46:19.9357555 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000073","","5728"
"10:46:19.9360137 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9360487 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000030","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","5728"
"10:46:19.9360602 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000043","","5728"
"10:46:19.9361630 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000115","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9361963 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:19.9362193 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000013","SyncType: SyncTypeOther","5728"
"10:46:19.9362761 AM","firefox.exe","7384","Load Image","C:\Windows\System32\dxgi.dll","0.0000000","Image Base: 0x7ffb44850000, Image Size: 0xbb000","5728"
"10:46:19.9362961 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\dxgi.dll","0.0000047","Name: \Windows\System32\dxgi.dll","5728"
"10:46:19.9364544 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000073","","5728"
"10:46:19.9366511 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9366844 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","5728"
"10:46:19.9366955 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000043","","5728"
"10:46:19.9367953 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000120","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9368286 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:19.9368482 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000017","SyncType: SyncTypeOther","5728"
"10:46:19.9369007 AM","firefox.exe","7384","Load Image","C:\Windows\System32\IPHLPAPI.DLL","0.0000000","Image Base: 0x7ffb45030000, Image Size: 0x38000","5728"
"10:46:19.9369178 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000043","Name: \Windows\System32\IPHLPAPI.DLL","5728"
"10:46:19.9370044 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000060","","5728"
"10:46:19.9372531 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9372864 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","5728"
"10:46:19.9372971 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000043","","5728"
"10:46:19.9373957 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000119","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9374277 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:19.9374490 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000017","SyncType: SyncTypeOther","5728"
"10:46:19.9374998 AM","firefox.exe","7384","Load Image","C:\Windows\System32\dnsapi.dll","0.0000000","Image Base: 0x7ffb45070000, Image Size: 0xbe000","5728"
"10:46:19.9375190 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\dnsapi.dll","0.0000042","Name: \Windows\System32\dnsapi.dll","5728"
"10:46:19.9376585 AM","firefox.exe","7384","Load Image","C:\Windows\System32\nsi.dll","0.0000000","Image Base: 0x7ffb490d0000, Image Size: 0x8000","5728"
"10:46:19.9376811 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\nsi.dll","0.0000072","Name: \Windows\System32\nsi.dll","5728"
"10:46:19.9377754 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000085","","5728"
"10:46:19.9380694 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9381039 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000034","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","5728"
"10:46:19.9381154 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000047","","5728"
"10:46:19.9382498 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000128","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9382853 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:19.9383168 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000022","SyncType: SyncTypeOther","5728"
"10:46:19.9383800 AM","firefox.exe","7384","Load Image","C:\Windows\System32\dwmapi.dll","0.0000000","Image Base: 0x7ffb44200000, Image Size: 0x29000","5728"
"10:46:19.9384043 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\dwmapi.dll","0.0000068","Name: \Windows\System32\dwmapi.dll","5728"
"10:46:19.9385391 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000226","","5728"
"10:46:19.9389854 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9390439 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000047","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","5728"
"10:46:19.9390618 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000072","","5728"
"10:46:19.9392397 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000184","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9392905 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:19.9393221 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000025","SyncType: SyncTypeOther","5728"
"10:46:19.9393972 AM","firefox.exe","7384","Load Image","C:\Windows\System32\uxtheme.dll","0.0000000","Image Base: 0x7ffb43f70000, Image Size: 0x98000","5728"
"10:46:19.9394181 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\uxtheme.dll","0.0000051","Name: \Windows\System32\uxtheme.dll","5728"
"10:46:19.9395337 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000068","","5728"
"10:46:19.9398725 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9399074 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000035","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","5728"
"10:46:19.9399194 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000043","","5728"
"10:46:19.9400218 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000119","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9400555 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:19.9400760 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000013","SyncType: SyncTypeOther","5728"
"10:46:19.9401306 AM","firefox.exe","7384","Load Image","C:\Windows\System32\wtsapi32.dll","0.0000000","Image Base: 0x7ffb42730000, Image Size: 0x13000","5728"
"10:46:19.9401481 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000051","Name: \Windows\System32\wtsapi32.dll","5728"
"10:46:19.9402407 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000064","","5728"
"10:46:19.9404327 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9404711 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","5728"
"10:46:19.9404822 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000038","","5728"
"10:46:19.9405794 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000120","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9406119 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:19.9406341 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000017","SyncType: SyncTypeOther","5728"
"10:46:19.9406934 AM","firefox.exe","7384","Load Image","C:\Windows\System32\dhcpcsvc.dll","0.0000000","Image Base: 0x7ffb3be40000, Image Size: 0x1a000","5728"
"10:46:19.9407100 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000047","Name: \Windows\System32\dhcpcsvc.dll","5728"
"10:46:19.9408030 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000064","","5728"
"10:46:19.9410953 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9411281 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","5728"
"10:46:19.9411388 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000047","","5728"
"10:46:19.9412395 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000119","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9412715 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000077","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:19.9413031 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000017","SyncType: SyncTypeOther","5728"
"10:46:19.9413568 AM","firefox.exe","7384","Load Image","C:\Windows\System32\userenv.dll","0.0000000","Image Base: 0x7ffb459c0000, Image Size: 0x28000","5728"
"10:46:19.9413739 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\userenv.dll","0.0000047","Name: \Windows\System32\userenv.dll","5728"
"10:46:19.9414767 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000064","","5728"
"10:46:19.9416871 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9417105 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000030","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","5728"
"10:46:19.9417212 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000038","","5728"
"10:46:19.9418215 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000115","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9418458 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:19.9418680 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000013","SyncType: SyncTypeOther","5728"
"10:46:19.9419316 AM","firefox.exe","7384","Load Image","C:\Windows\System32\D3DCompiler_47.dll","0.0000000","Image Base: 0x7ffb42bf0000, Image Size: 0x42f000","5728"
"10:46:19.9419478 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000047","Name: \Windows\System32\D3DCompiler_47.dll","5728"
"10:46:19.9420527 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000069","","5728"
"10:46:19.9422938 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9423266 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000035","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","5728"
"10:46:19.9423373 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000043","","5728"
"10:46:19.9433771 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9434134 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","5728"
"10:46:19.9434262 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000047","","5728"
"10:46:19.9435307 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000115","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9435648 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:19.9435862 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000017","SyncType: SyncTypeOther","5728"
"10:46:19.9436408 AM","firefox.exe","7384","Load Image","C:\Windows\System32\cryptsp.dll","0.0000000","Image Base: 0x7ffb45460000, Image Size: 0x17000","5728"
"10:46:19.9436583 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\cryptsp.dll","0.0000047","Name: \Windows\System32\cryptsp.dll","5728"
"10:46:19.9437547 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000064","","5728"
"10:46:19.9444297 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9444664 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000034","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","5728"
"10:46:19.9444796 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000051","","5728"
"10:46:19.9446934 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9447224 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000030","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","5728"
"10:46:19.9447335 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000042","","5728"
"10:46:19.9447761 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Error Message Instrument\","0.0000077","Desired Access: Read","5728"
"10:46:19.9447919 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Error Message Instrument","0.0000069","Desired Access: Read","5728"
"10:46:19.9448355 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options","0.0000076","Desired Access: Query Value, Enumerate Sub Keys","5728"
"10:46:19.9448534 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000034","Desired Access: Query Value, Enumerate Sub Keys","5728"
"10:46:19.9448657 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Display","0.0000060","Desired Access: Read","5728"
"10:46:19.9448862 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Display","0.0000034","Desired Access: Read","5728"
"10:46:19.9448977 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000026","Desired Access: Query Value, Enumerate Sub Keys","5728"
"10:46:19.9449076 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Display","0.0000034","Desired Access: Read","5728"
"10:46:19.9449182 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Display","0.0000030","Desired Access: Read","5728"
"10:46:19.9449434 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\GRE_Initialize","0.0000055","Desired Access: Read","5728"
"10:46:19.9449600 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize\DisableMetaFiles","0.0000030","Length: 20","5728"
"10:46:19.9449737 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize","0.0000013","","5728"
"10:46:19.9450172 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Control Panel\Desktop","0.0000043","Desired Access: Read","5728"
"10:46:19.9450347 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Policies\Microsoft\Windows\Control Panel\Desktop","0.0000073","Desired Access: Read","5728"
"10:46:19.9450526 AM","firefox.exe","7384","RegOpenKey","HKCU\Control Panel\Desktop","0.0000043","Desired Access: Read","5728"
"10:46:19.9450684 AM","firefox.exe","7384","RegQueryValue","HKCU\Control Panel\Desktop\EnablePerProcessSystemDPI","0.0000034","Length: 20","5728"
"10:46:19.9450833 AM","firefox.exe","7384","RegCloseKey","HKCU\Control Panel\Desktop","0.0000013","","5728"
"10:46:19.9451657 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\Compatibility32","0.0000094","Desired Access: Read","5728"
"10:46:19.9451875 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Compatibility32\firefox","0.0000025","Length: 172","5728"
"10:46:19.9452020 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Compatibility32","0.0000012","","5728"
"10:46:19.9452152 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\IME Compatibility","0.0000047","Desired Access: Read","5728"
"10:46:19.9457916 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000060","Desired Access: Query Value, Enumerate Sub Keys","5728"
"10:46:19.9462601 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9463015 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000055","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","5728"
"10:46:19.9463237 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000081","","5728"
"10:46:19.9464611 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9464807 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\OLE","0.0000077","Desired Access: Read","5728"
"10:46:19.9465041 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Ole\PageAllocatorUseSystemHeap","0.0000043","Length: 20","5728"
"10:46:19.9465246 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Ole","0.0000022","","5728"
"10:46:19.9465396 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9465553 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\OLE","0.0000056","Desired Access: Read","5728"
"10:46:19.9465737 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Ole\PageAllocatorSystemHeapIsPrivate","0.0000030","Length: 20","5728"
"10:46:19.9465903 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Ole","0.0000013","","5728"
"10:46:19.9466036 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9466185 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\OLE","0.0000043","Desired Access: Read","5728"
"10:46:19.9466347 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Ole\AggressiveMTATesting","0.0000030","Length: 16","5728"
"10:46:19.9466501 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Ole","0.0000012","","5728"
"10:46:19.9468105 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 8024","36"
"10:46:19.9468907 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9469082 AM","firefox.exe","7384","RegOpenKey","HKLM","0.0000047","Desired Access: Read","5728"
"10:46:19.9469274 AM","firefox.exe","7384","RegSetInfoKey","HKLM","0.0000017","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:19.9469475 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:19.9469632 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Ole\FeatureDevelopmentProperties","0.0000060","Desired Access: Read","5728"
"10:46:19.9469867 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:19.9470016 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Ole\FeatureDevelopmentProperties","0.0000043","Desired Access: Read","5728"
"10:46:19.9470191 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:19.9470341 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Ole","0.0000047","Desired Access: Read","5728"
"10:46:19.9471062 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000059","Desired Access: Read","5728"
"10:46:19.9471271 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9471420 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings","0.0000060","Desired Access: Read","5728"
"10:46:19.9471595 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings","0.0000068","Desired Access: Read","5728"
"10:46:19.9471796 AM","firefox.exe","7384","RegSetInfoKey","HKCU\Software\Classes\Local Settings","0.0000012","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:19.9471962 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000017","","5728"
"10:46:19.9472111 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\Local Settings","0.0000017","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:19.9472256 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Ole\FeatureDevelopmentProperties","0.0000060","Desired Access: Read","5728"
"10:46:19.9472436 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\Local Settings","0.0000012","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:19.9472568 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Ole\FeatureDevelopmentProperties","0.0000038","Desired Access: Read","5728"
"10:46:19.9472734 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\Local Settings","0.0000013","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:19.9472871 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Ole","0.0000038","Desired Access: Read","5728"
"10:46:19.9473029 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\Local Settings","0.0000012","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:19.9473161 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft","0.0000051","Desired Access: Read","5728"
"10:46:19.9473908 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9474040 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\OLE\Tracing","0.0000051","Desired Access: Read","5728"
"10:46:19.9485632 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9486033 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000056","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","5728"
"10:46:19.9486260 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000076","","5728"
"10:46:19.9487173 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9487369 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\OLE\Tracing","0.0000068","Desired Access: Read","5728"
"10:46:19.9490646 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9491171 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000042","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","5728"
"10:46:19.9491367 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000094","","5728"
"10:46:19.9498795 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\setupapi.dll","0.0000098","Name: \Windows\System32\setupapi.dll","5728"
"10:46:19.9502819 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9503190 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000047","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","5728"
"10:46:19.9503390 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000069","","5728"
"10:46:19.9506471 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9506940 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000043","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","5728"
"10:46:19.9507128 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000068","","5728"
"10:46:19.9508331 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9508532 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\OLEAUT","0.0000094","Desired Access: Query Value","5728"
"10:46:19.9526059 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:19.9526460 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000047","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","5728"
"10:46:19.9526674 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000072","","5728"
"10:46:19.9529571 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9529814 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000102","Desired Access: All Access","5728"
"10:46:19.9530112 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000739","Desired Access: All Access","5728"
"10:46:19.9530548 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000047","Information: Owner","5728"
"10:46:19.9530761 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000021","Information: Owner","5728"
"10:46:19.9531021 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9531183 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000060","Desired Access: Read","5728"
"10:46:19.9531375 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000060","Desired Access: Read","5728"
"10:46:19.9531644 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000043","Length: 16","5728"
"10:46:19.9531823 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000035","Type: REG_SZ, Length: 8, Data: 2.0","5728"
"10:46:19.9532084 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9532254 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog","0.0000107","Desired Access: Read","5728"
"10:46:19.9532617 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9532771 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog\3AC7FBD2","0.0000034","Desired Access: Read","5728"
"10:46:19.9532988 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog","0.0000017","","5728"
"10:46:19.9533159 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Callout","0.0000030","Length: 12","5728"
"10:46:19.9533334 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Callout","0.0000034","Type: REG_EXPAND_SZ, Length: 70, Data: %SystemRoot%\System32\fwpuclnt.dll","5728"
"10:46:19.9533556 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9533714 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000051","Desired Access: Maximum Allowed, Granted Access: Read","5728"
"10:46:19.9533910 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","5728"
"10:46:19.9534464 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000030","Type: REG_DWORD, Length: 4, Data: 8","5728"
"10:46:19.9534639 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9534789 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000038","Desired Access: Read","5728"
"10:46:19.9534955 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000030","Type: REG_DWORD, Length: 4, Data: 1015","5728"
"10:46:19.9535096 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000030","Type: REG_DWORD, Length: 4, Data: 14","5728"
"10:46:19.9535254 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9535399 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000085","Desired Access: Maximum Allowed, Granted Access: Read","5728"
"10:46:19.9535659 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9535808 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000073","Desired Access: Read","5728"
"10:46:19.9536047 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000030","Length: 144","5728"
"10:46:19.9536197 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5728"
"10:46:19.9536414 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000022","","5728"
"10:46:19.9536572 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9536713 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000068","Desired Access: Read","5728"
"10:46:19.9537042 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000025","Length: 144","5728"
"10:46:19.9537191 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5728"
"10:46:19.9537383 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","5728"
"10:46:19.9537536 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9537677 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000064","Desired Access: Read","5728"
"10:46:19.9537891 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000029","Length: 144","5728"
"10:46:19.9538031 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5728"
"10:46:19.9538211 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000012","","5728"
"10:46:19.9538351 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9538492 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000073","Desired Access: Read","5728"
"10:46:19.9538710 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000030","Length: 144","5728"
"10:46:19.9538851 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000029","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5728"
"10:46:19.9539021 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","","5728"
"10:46:19.9539171 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9539311 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000060","Desired Access: Read","5728"
"10:46:19.9539520 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000030","Length: 144","5728"
"10:46:19.9539721 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5728"
"10:46:19.9539900 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000013","","5728"
"10:46:19.9540050 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9540195 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000068","Desired Access: Read","5728"
"10:46:19.9540421 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000025","Length: 144","5728"
"10:46:19.9540562 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000029","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5728"
"10:46:19.9540724 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000017","","5728"
"10:46:19.9540869 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9541014 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000060","Desired Access: Read","5728"
"10:46:19.9541223 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000025","Length: 144","5728"
"10:46:19.9541359 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5728"
"10:46:19.9541517 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000013","","5728"
"10:46:19.9541658 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9541812 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000469","Desired Access: Read","5728"
"10:46:19.9542443 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000030","Length: 144","5728"
"10:46:19.9542656 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5728"
"10:46:19.9542836 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000017","","5728"
"10:46:19.9542981 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9543117 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000064","Desired Access: Read","5728"
"10:46:19.9543335 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000025","Length: 144","5728"
"10:46:19.9543476 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5728"
"10:46:19.9543651 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000012","","5728"
"10:46:19.9543796 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9543932 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000073","Desired Access: Read","5728"
"10:46:19.9544154 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000026","Length: 144","5728"
"10:46:19.9544291 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5728"
"10:46:19.9544461 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000013","","5728"
"10:46:19.9544606 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9544751 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000064","Desired Access: Read","5728"
"10:46:19.9544969 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000030","Length: 144","5728"
"10:46:19.9545114 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5728"
"10:46:19.9545281 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000017","","5728"
"10:46:19.9545426 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9545575 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000064","Desired Access: Read","5728"
"10:46:19.9545788 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000030","Length: 144","5728"
"10:46:19.9546002 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000029","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5728"
"10:46:19.9546168 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000013","","5728"
"10:46:19.9546309 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9546450 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000157","Desired Access: Read","5728"
"10:46:19.9546765 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000026","Length: 144","5728"
"10:46:19.9546910 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000035","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5728"
"10:46:19.9547090 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000012","","5728"
"10:46:19.9547235 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9547380 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000064","Desired Access: Read","5728"
"10:46:19.9547602 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000029","Length: 144","5728"
"10:46:19.9547742 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5728"
"10:46:19.9547909 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000013","","5728"
"10:46:19.9548041 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","","5728"
"10:46:19.9548357 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9548510 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5","0.0000052","Desired Access: Maximum Allowed, Granted Access: Read","5728"
"10:46:19.9548707 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 22","5728"
"10:46:19.9549172 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Serial_Access_Num","0.0000030","Type: REG_DWORD, Length: 4, Data: 22","5728"
"10:46:19.9549338 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9549483 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\00000016","0.0000039","Desired Access: Read","5728"
"10:46:19.9549654 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Num_Catalog_Entries64","0.0000030","Type: REG_DWORD, Length: 4, Data: 7","5728"
"10:46:19.9549795 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9549931 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000077","Desired Access: Maximum Allowed, Granted Access: Read","5728"
"10:46:19.9550183 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9550328 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001","0.0000077","Desired Access: Read","5728"
"10:46:19.9550563 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\LibraryPath","0.0000034","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\napinsp.dll","5728"
"10:46:19.9550716 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\LibraryPath","0.0000030","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\napinsp.dll","5728"
"10:46:19.9550874 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\DisplayString","0.0000030","Length: 12","5728"
"10:46:19.9551011 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\DisplayString","0.0000030","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\napinsp.dll,-1000","5728"
"10:46:19.9551164 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\DisplayString","0.0000030","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\napinsp.dll,-1000","5728"
"10:46:19.9551309 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\DisplayString","0.0000030","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\napinsp.dll,-1000","5728"
"10:46:19.9551467 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\ProviderId","0.0000030","Type: REG_BINARY, Length: 16, Data: A2 CB 4A 96 BC B2 EB 40 8C 6A A6 DB 40 16 1C AE","5728"
"10:46:19.9551621 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\AddressFamily","0.0000030","Length: 16","5728"
"10:46:19.9551766 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\SupportedNameSpace","0.0000030","Type: REG_DWORD, Length: 4, Data: 37","5728"
"10:46:19.9551902 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\Enabled","0.0000030","Type: REG_DWORD, Length: 4, Data: 1","5728"
"10:46:19.9552039 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\Version","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:19.9552193 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\StoresServiceClassInfo","0.0000029","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:19.9552342 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\ProviderInfo","0.0000034","Type: REG_BINARY, Length: 0","5728"
"10:46:19.9552500 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","5728"
"10:46:19.9552670 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001","0.0000022","","5728"
"10:46:19.9552850 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9553012 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002","0.0000072","Desired Access: Read","5728"
"10:46:19.9553238 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\LibraryPath","0.0000030","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\pnrpnsp.dll","5728"
"10:46:19.9553387 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\LibraryPath","0.0000030","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\pnrpnsp.dll","5728"
"10:46:19.9553554 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\DisplayString","0.0000029","Length: 12","5728"
"10:46:19.9553716 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\DisplayString","0.0000030","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1000","5728"
"10:46:19.9553899 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\DisplayString","0.0000030","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1000","5728"
"10:46:19.9554040 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\DisplayString","0.0000030","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1000","5728"
"10:46:19.9554189 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\ProviderId","0.0000030","Type: REG_BINARY, Length: 16, Data: CE 89 FE 03 6D 76 76 49 B9 C1 BB 9B C4 2C 7B 4D","5728"
"10:46:19.9554334 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\AddressFamily","0.0000026","Length: 16","5728"
"10:46:19.9554484 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\SupportedNameSpace","0.0000030","Type: REG_DWORD, Length: 4, Data: 39","5728"
"10:46:19.9554637 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\Enabled","0.0000026","Type: REG_DWORD, Length: 4, Data: 1","5728"
"10:46:19.9554782 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\Version","0.0000026","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:19.9554923 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\StoresServiceClassInfo","0.0000039","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:19.9555077 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","5728"
"10:46:19.9555222 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\ProviderInfo","0.0000034","Type: REG_BINARY, Length: 0","5728"
"10:46:19.9555401 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002","0.0000013","","5728"
"10:46:19.9555546 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9555704 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003","0.0000094","Desired Access: Read","5728"
"10:46:19.9555960 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\LibraryPath","0.0000034","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\pnrpnsp.dll","5728"
"10:46:19.9556114 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\LibraryPath","0.0000025","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\pnrpnsp.dll","5728"
"10:46:19.9556267 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\DisplayString","0.0000026","Length: 12","5728"
"10:46:19.9556412 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\DisplayString","0.0000030","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1001","5728"
"10:46:19.9556566 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\DisplayString","0.0000025","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1001","5728"
"10:46:19.9556707 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\DisplayString","0.0000025","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1001","5728"
"10:46:19.9556852 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\ProviderId","0.0000030","Type: REG_BINARY, Length: 16, Data: CD 89 FE 03 6D 76 76 49 B9 C1 BB 9B C4 2C 7B 4D","5728"
"10:46:19.9556993 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\AddressFamily","0.0000025","Length: 16","5728"
"10:46:19.9557138 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\SupportedNameSpace","0.0000029","Type: REG_DWORD, Length: 4, Data: 38","5728"
"10:46:19.9557287 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\Enabled","0.0000034","Type: REG_DWORD, Length: 4, Data: 1","5728"
"10:46:19.9557441 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\Version","0.0000025","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:19.9557590 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\StoresServiceClassInfo","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:19.9557743 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","5728"
"10:46:19.9557893 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","5728"
"10:46:19.9558063 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003","0.0000018","","5728"
"10:46:19.9558213 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9558379 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004","0.0000068","Desired Access: Read","5728"
"10:46:19.9558614 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\LibraryPath","0.0000030","Type: REG_SZ, Length: 66, Data: %SystemRoot%\system32\NLAapi.dll","5728"
"10:46:19.9558763 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\LibraryPath","0.0000034","Type: REG_SZ, Length: 66, Data: %SystemRoot%\system32\NLAapi.dll","5728"
"10:46:19.9558921 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\DisplayString","0.0000030","Length: 12","5728"
"10:46:19.9559058 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\DisplayString","0.0000029","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\system32\nlasvc.dll,-1000","5728"
"10:46:19.9559211 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\DisplayString","0.0000030","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\system32\nlasvc.dll,-1000","5728"
"10:46:19.9559361 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\DisplayString","0.0000025","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\system32\nlasvc.dll,-1000","5728"
"10:46:19.9559510 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\ProviderId","0.0000030","Type: REG_BINARY, Length: 16, Data: 3A 24 42 66 A8 3B A6 4A BA A5 2E 0B D7 1F DD 83","5728"
"10:46:19.9559651 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\AddressFamily","0.0000025","Length: 16","5728"
"10:46:19.9559787 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\SupportedNameSpace","0.0000030","Type: REG_DWORD, Length: 4, Data: 15","5728"
"10:46:19.9559937 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\Enabled","0.0000029","Type: REG_DWORD, Length: 4, Data: 1","5728"
"10:46:19.9560086 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\Version","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:19.9560239 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\StoresServiceClassInfo","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:19.9560385 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\ProviderInfo","0.0000034","Type: REG_BINARY, Length: 0","5728"
"10:46:19.9560534 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","5728"
"10:46:19.9560713 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004","0.0000017","","5728"
"10:46:19.9560965 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9561127 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005","0.0000072","Desired Access: Read","5728"
"10:46:19.9561353 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\LibraryPath","0.0000034","Type: REG_SZ, Length: 68, Data: %SystemRoot%\System32\mswsock.dll","5728"
"10:46:19.9561502 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\LibraryPath","0.0000030","Type: REG_SZ, Length: 68, Data: %SystemRoot%\System32\mswsock.dll","5728"
"10:46:19.9561656 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\DisplayString","0.0000026","Length: 12","5728"
"10:46:19.9561797 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\DisplayString","0.0000034","Type: REG_SZ, Length: 86, Data: @%SystemRoot%\system32\wshtcpip.dll,-60103","5728"
"10:46:19.9561950 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\DisplayString","0.0000030","Type: REG_SZ, Length: 86, Data: @%SystemRoot%\system32\wshtcpip.dll,-60103","5728"
"10:46:19.9562091 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\DisplayString","0.0000030","Type: REG_SZ, Length: 86, Data: @%SystemRoot%\system32\wshtcpip.dll,-60103","5728"
"10:46:19.9562245 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\ProviderId","0.0000030","Type: REG_BINARY, Length: 16, Data: 40 9D 05 22 9E 7E CF 11 AE 5A 00 AA 00 A7 11 2B","5728"
"10:46:19.9562394 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\AddressFamily","0.0000030","Length: 16","5728"
"10:46:19.9562539 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\SupportedNameSpace","0.0000030","Type: REG_DWORD, Length: 4, Data: 12","5728"
"10:46:19.9562684 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\Enabled","0.0000030","Type: REG_DWORD, Length: 4, Data: 1","5728"
"10:46:19.9562829 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\Version","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:19.9562966 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\StoresServiceClassInfo","0.0000055","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:19.9563137 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\ProviderInfo","0.0000038","Type: REG_BINARY, Length: 0","5728"
"10:46:19.9563299 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","5728"
"10:46:19.9563474 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005","0.0000017","","5728"
"10:46:19.9563636 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9563798 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006","0.0000068","Desired Access: Read","5728"
"10:46:19.9564028 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\LibraryPath","0.0000034","Type: REG_SZ, Length: 66, Data: %SystemRoot%\System32\winrnr.dll","5728"
"10:46:19.9564182 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\LibraryPath","0.0000030","Type: REG_SZ, Length: 66, Data: %SystemRoot%\System32\winrnr.dll","5728"
"10:46:19.9564340 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\DisplayString","0.0000030","Length: 12","5728"
"10:46:19.9564481 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\DisplayString","0.0000029","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\System32\winrnr.dll,-1000","5728"
"10:46:19.9564630 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\DisplayString","0.0000030","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\System32\winrnr.dll,-1000","5728"
"10:46:19.9564775 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\DisplayString","0.0000026","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\System32\winrnr.dll,-1000","5728"
"10:46:19.9564924 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\ProviderId","0.0000030","Type: REG_BINARY, Length: 16, Data: EE 37 26 3B 80 E5 CF 11 A5 55 00 C0 4F D8 D4 AC","5728"
"10:46:19.9565074 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\AddressFamily","0.0000025","Length: 16","5728"
"10:46:19.9565219 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\SupportedNameSpace","0.0000025","Type: REG_DWORD, Length: 4, Data: 32","5728"
"10:46:19.9565364 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\Enabled","0.0000025","Type: REG_DWORD, Length: 4, Data: 1","5728"
"10:46:19.9565509 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\Version","0.0000025","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:19.9565654 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\StoresServiceClassInfo","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:19.9565803 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","5728"
"10:46:19.9565953 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\ProviderInfo","0.0000029","Type: REG_BINARY, Length: 0","5728"
"10:46:19.9566132 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006","0.0000013","","5728"
"10:46:19.9566290 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9566447 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007","0.0000064","Desired Access: Read","5728"
"10:46:19.9566657 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\LibraryPath","0.0000029","Type: REG_SZ, Length: 66, Data: %SystemRoot%\System32\wshbth.dll","5728"
"10:46:19.9566810 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\LibraryPath","0.0000026","Type: REG_SZ, Length: 66, Data: %SystemRoot%\System32\wshbth.dll","5728"
"10:46:19.9566964 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\DisplayString","0.0000025","Length: 12","5728"
"10:46:19.9567105 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\DisplayString","0.0000029","Type: REG_SZ, Length: 40, Data: Bluetooth Namespace","5728"
"10:46:19.9567258 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\DisplayString","0.0000026","Type: REG_SZ, Length: 40, Data: Bluetooth Namespace","5728"
"10:46:19.9567399 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\DisplayString","0.0000030","Type: REG_SZ, Length: 40, Data: Bluetooth Namespace","5728"
"10:46:19.9567553 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\ProviderId","0.0000025","Type: REG_BINARY, Length: 16, Data: E0 63 AA 06 60 7D FF 41 AF B2 3E E6 D2 D9 39 2D","5728"
"10:46:19.9567698 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\AddressFamily","0.0000025","Length: 16","5728"
"10:46:19.9567843 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\SupportedNameSpace","0.0000030","Type: REG_DWORD, Length: 4, Data: 16","5728"
"10:46:19.9567992 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\Enabled","0.0000026","Type: REG_DWORD, Length: 4, Data: 1","5728"
"10:46:19.9568137 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\Version","0.0000026","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:19.9568278 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\StoresServiceClassInfo","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:19.9568427 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","5728"
"10:46:19.9568581 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","5728"
"10:46:19.9568760 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007","0.0000017","","5728"
"10:46:19.9568914 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000012","","5728"
"10:46:19.9569071 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","","5728"
"10:46:19.9569268 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:19.9569430 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock2\Parameters","0.0000068","Desired Access: Query Value","5728"
"10:46:19.9569639 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock2\Parameters","0.0000064","Desired Access: Query Value","5728"
"10:46:19.9569844 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Ws2_32NumHandleBuckets","0.0000030","Length: 16","5728"
"10:46:19.9569993 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Ws2_32SpinCount","0.0000026","Length: 16","5728"
"10:46:19.9570151 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","","5728"
"10:46:19.9581641 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\dependentlibs.list","0.0000111","Offset: 476, Length: 4,096","5728"
"10:46:19.9581970 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\dependentlibs.list","0.0000196","","5728"
"10:46:19.9585682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0515478","Offset: 111,616, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:20.0101983 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0416321","Offset: 238,592, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:20.0518897 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0353707","Offset: 168,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:20.0872813 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0221568","Offset: 168,960, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:20.1095145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0102793","Offset: 99,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:20.1198155 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0110067","Offset: 99,328, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:20.1309025 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 3960","5728"
"10:46:20.1309579 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0112090","Offset: 156,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:20.1421887 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0018641","Offset: 144,384, Length: 24,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:20.1441330 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0003204","Offset: 209,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:20.1444649 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0003776","Offset: 205,824, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:20.1451979 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.1452410 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000039","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","5728"
"10:46:20.1452551 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000056","","5728"
"10:46:20.1453665 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000149","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.1454109 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ntmarta.dll","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:20.1454369 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ntmarta.dll","0.0000017","SyncType: SyncTypeOther","5728"
"10:46:20.1455401 AM","firefox.exe","7384","Load Image","C:\Windows\System32\ntmarta.dll","0.0000000","Image Base: 0x7ffb44b80000, Image Size: 0x31000","5728"
"10:46:20.1455730 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\ntmarta.dll","0.0000060","Name: \Windows\System32\ntmarta.dll","5728"
"10:46:20.1456784 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000081","","5728"
"10:46:20.1458776 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000081","Desired Access: Maximum Allowed, Granted Access: All Access","5728"
"10:46:20.1458977 AM","firefox.exe","7384","RegOpenKey","HKCU\Keyboard Layout\Preload","0.0000042","Desired Access: All Access","5728"
"10:46:20.1459126 AM","firefox.exe","7384","RegQueryValue","HKCU\Keyboard Layout\Preload\1","0.0000043","Type: REG_SZ, Length: 18, Data: 00000409","5728"
"10:46:20.1459284 AM","firefox.exe","7384","RegCloseKey","HKCU\Keyboard Layout\Preload","0.0000013","","5728"
"10:46:20.1459369 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000013","","5728"
"10:46:20.1459493 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000409","0.0000064","Desired Access: Read","5728"
"10:46:20.1459621 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000409","0.0000102","Desired Access: Read","5728"
"10:46:20.1459809 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000409\Layout File","0.0000025","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","5728"
"10:46:20.1459894 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000409\Attributes","0.0000021","Length: 20","5728"
"10:46:20.1459984 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000409","0.0000013","","5728"
"10:46:20.1462232 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KBDUS.DLL","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.1462608 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KBDUS.DLL","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","5728"
"10:46:20.1462731 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KBDUS.DLL","0.0000052","","5728"
"10:46:20.1463768 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KBDUS.DLL","0.0000120","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.1464114 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KBDUS.DLL","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:20.1464331 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KBDUS.DLL","0.0000013","SyncType: SyncTypeOther","5728"
"10:46:20.1465317 AM","firefox.exe","7384","Load Image","C:\Windows\System32\KBDUS.DLL","0.0000000","Image Base: 0x7ffb2af30000, Image Size: 0x9000","5728"
"10:46:20.1465565 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\KBDUS.DLL","0.0000059","Name: \Windows\System32\KBDUS.DLL","5728"
"10:46:20.1466209 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KBDUS.DLL","0.0000077","","5728"
"10:46:20.1468342 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KBDUS.DLL","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.1562964 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KBDUS.DLL","0.0000124","","5728"
"10:46:20.1565648 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0005453","Offset: 201,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:20.1571263 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0003737","Offset: 201,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:20.1579779 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\SideBySide","0.0000115","Desired Access: Read","5728"
"10:46:20.1580022 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest","0.0000039","Length: 20","5728"
"10:46:20.1580180 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide","0.0000013","","5728"
"10:46:20.1581729 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000179","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.1588133 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000081","","5728"
"10:46:20.1590770 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcss.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.1591158 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcss.dll","0.0000034","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","5728"
"10:46:20.1591282 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcss.dll","0.0000047","","5728"
"10:46:20.1592293 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcss.dll","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.1592635 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rpcss.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:20.1592758 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rpcss.dll","0.0000030","AllocationSize: 1,163,264, EndOfFile: 1,159,680, NumberOfLinks: 2, DeletePending: False, Directory: False","5728"
"10:46:20.1592950 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rpcss.dll","0.0000017","SyncType: SyncTypeOther","5728"
"10:46:20.1593484 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcss.dll","0.0000055","","5728"
"10:46:20.1602200 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.1602392 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Rpc","0.0000073","Desired Access: Read","5728"
"10:46:20.1602614 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Rpc\MaxRpcSize","0.0000034","Length: 16","5728"
"10:46:20.1602781 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Rpc","0.0000013","","5728"
"10:46:20.1603207 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\ComputerName\ActiveComputerName","0.0000064","Desired Access: Read","5728"
"10:46:20.1603352 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\ComputerName\ActiveComputerName","0.0000056","Desired Access: Read","5728"
"10:46:20.1603493 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\ComputerName\ActiveComputerName\ComputerName","0.0000039","Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","5728"
"10:46:20.1603621 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\ComputerName\ActiveComputerName","0.0000064","","5728"
"10:46:20.1603783 AM","firefox.exe","7384","RegOpenKey","HKLM\System\Setup","0.0000086","Desired Access: Read","5728"
"10:46:20.1603950 AM","firefox.exe","7384","RegQueryValue","HKLM\SYSTEM\Setup\OOBEInProgress","0.0000072","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:20.1604099 AM","firefox.exe","7384","RegCloseKey","HKLM\SYSTEM\Setup","0.0000009","","5728"
"10:46:20.1604189 AM","firefox.exe","7384","RegOpenKey","HKLM\System\Setup","0.0000025","Desired Access: Read","5728"
"10:46:20.1604295 AM","firefox.exe","7384","RegQueryValue","HKLM\SYSTEM\Setup\SystemSetupInProgress","0.0000035","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:20.1604406 AM","firefox.exe","7384","RegCloseKey","HKLM\SYSTEM\Setup","0.0000013","","5728"
"10:46:20.1604551 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000052","Desired Access: Query Value, Enumerate Sub Keys","5728"
"10:46:20.1605268 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.1605418 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\Rpc","0.0000076","Desired Access: Read","5728"
"10:46:20.1606058 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.1606190 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Rpc","0.0000051","Desired Access: Query Value","5728"
"10:46:20.1606369 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Rpc\IdleTimerWindow","0.0000030","Length: 16","5728"
"10:46:20.1606523 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Rpc","0.0000012","","5728"
"10:46:20.1609275 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\Appx","0.0000149","Desired Access: Read","5728"
"10:46:20.1609599 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Windows\Appx\AllowDevelopmentWithoutDevLicense","0.0000038","Type: REG_DWORD, Length: 4, Data: 65535","5728"
"10:46:20.1609808 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\Appx","0.0000021","","5728"
"10:46:20.1609966 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModelUnlock","0.0000132","Desired Access: Read","5728"
"10:46:20.1610218 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModelUnlock\AllowDevelopmentWithoutDevLicense","0.0000025","Length: 24","5728"
"10:46:20.1610371 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModelUnlock","0.0000013","","5728"
"10:46:20.1614693 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes","0.0000094","Desired Access: Maximum Allowed, Granted Access: All Access","5728"
"10:46:20.1614979 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000064","Query: Name","5728"
"10:46:20.1615218 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.1615350 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.1615512 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\AppID\firefox.exe","0.0000120","Desired Access: Read","5728"
"10:46:20.1615790 AM","firefox.exe","7384","RegOpenKey","HKCR\AppID\firefox.exe","0.0000081","Desired Access: Read","5728"
"10:46:20.1616152 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000043","Query: Name","5728"
"10:46:20.1616319 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.1616558 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000038","Query: Name","5728"
"10:46:20.1616818 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\AppID\firefox.exe","0.0000081","Desired Access: Read","5728"
"10:46:20.1617091 AM","firefox.exe","7384","RegOpenKey","HKCR\AppID\firefox.exe","0.0000064","Desired Access: Read","5728"
"10:46:20.1621110 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000069","Desired Access: Query Value","5728"
"10:46:20.1621307 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000055","Desired Access: Query Value","5728"
"10:46:20.1621482 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Lsa\EveryoneIncludesAnonymous","0.0000042","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:20.1621648 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000013","","5728"
"10:46:20.1622284 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Rpc\Extensions","0.0000111","Desired Access: Read","5728"
"10:46:20.1622557 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Rpc\Extensions\NdrOleExtDLL","0.0000042","Type: REG_EXPAND_SZ, Length: 24, Data: combase.dll","5728"
"10:46:20.1622744 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Rpc\Extensions","0.0000018","","5728"
"10:46:20.1623803 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\oleaut32.dll","0.0083652","Offset: 193,536, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:20.1710518 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000103","Name: \Program Files\Firefox Nightly\xul.dll","5728"
"10:46:20.1711048 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ucrtbase.dll","0.0130244","Offset: 517,120, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:20.1842538 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 2556","5728"
"10:46:20.1845392 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000205","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.1845891 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly","0.0000056","Name: \Program Files\Firefox Nightly","5728"
"10:46:20.1846135 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly","0.0000042","Name: \Program Files\Firefox Nightly","5728"
"10:46:20.1846979 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000210","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2556"
"10:46:20.1847197 AM","firefox.exe","7384","QueryNormalizedNameInformationFile","C:\Program Files\Firefox Nightly","0.0000124","","5728"
"10:46:20.1847453 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000047","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2556"
"10:46:20.1847585 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000064","","5728"
"10:46:20.1847624 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000051","","2556"
"10:46:20.1848929 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser","0.0143373","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.1849642 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000226","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2556"
"10:46:20.1850256 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2556"
"10:46:20.1850615 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000025","SyncType: SyncTypeOther","2556"
"10:46:20.1852001 AM","firefox.exe","7384","Load Image","C:\Windows\System32\DWrite.dll","0.0000000","Image Base: 0x7ffb33970000, Image Size: 0x31c000","2556"
"10:46:20.1852287 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\DWrite.dll","0.0000060","Name: \Windows\System32\DWrite.dll","2556"
"10:46:20.1854071 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000094","","2556"
"10:46:20.1855470 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DWrite.dll","0.0253735","Offset: 2,835,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2556"
"10:46:20.1992793 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\browser","0.0000051","Name: \Program Files\Firefox Nightly\browser","5728"
"10:46:20.1993006 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\browser","0.0000030","Name: \Program Files\Firefox Nightly\browser","5728"
"10:46:20.1993685 AM","firefox.exe","7384","QueryNormalizedNameInformationFile","C:\Program Files\Firefox Nightly\browser","0.0000089","","5728"
"10:46:20.1993936 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser","0.0000090","","5728"
"10:46:20.2109546 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\CustomLocale","0.0000111","Desired Access: Read","2556"
"10:46:20.2109913 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\CustomLocale","0.0000085","Desired Access: Read","2556"
"10:46:20.2110182 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\CustomLocale\en-US","0.0000030","Length: 532","2556"
"10:46:20.2110344 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Nls\CustomLocale","0.0000013","","2556"
"10:46:20.2110481 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\ExtendedLocale","0.0000038","Desired Access: Read","2556"
"10:46:20.2110587 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\ExtendedLocale","0.0000073","Desired Access: Read","2556"
"10:46:20.2110762 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\ExtendedLocale\en-US","0.0000022","Length: 532","2556"
"10:46:20.2110869 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Nls\ExtendedLocale","0.0000013","","2556"
"10:46:20.2112396 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","2556"
"10:46:20.2112529 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\DirectWrite","0.0000059","Desired Access: Query Value","2556"
"10:46:20.2113629 AM","firefox.exe","7384","Load Image","C:\Windows\System32\psapi.dll","0.0000000","Image Base: 0x7ffb48c30000, Image Size: 0x8000","5728"
"10:46:20.2114103 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\psapi.dll","0.0000141","Name: \Windows\System32\psapi.dll","5728"
"10:46:20.2114150 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DWrite.dll","0.0089003","Offset: 2,591,232, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2556"
"10:46:20.2120985 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000064","Name: \Program Files\Firefox Nightly\xul.dll","5728"
"10:46:20.2122056 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 8572","5728"
"10:46:20.2125444 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.2125981 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","5728"
"10:46:20.2126186 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000073","","5728"
"10:46:20.2127812 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000179","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.2128392 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dbgcore.dll","0.0000145","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:20.2128857 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dbgcore.dll","0.0000026","SyncType: SyncTypeOther","5728"
"10:46:20.2130035 AM","firefox.exe","7384","Load Image","C:\Windows\System32\dbgcore.dll","0.0000000","Image Base: 0x7ffb36ff0000, Image Size: 0x29000","5728"
"10:46:20.2130299 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\dbgcore.dll","0.0000064","Name: \Windows\System32\dbgcore.dll","5728"
"10:46:20.2131400 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000090","","5728"
"10:46:20.2136025 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000064","Name: \Program Files\Firefox Nightly\xul.dll","5728"
"10:46:20.2144059 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000056","Name: \Program Files\Firefox Nightly\xul.dll","5728"
"10:46:20.2147140 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000038","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.2147396 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000119","Desired Access: Read","5728"
"10:46:20.2147929 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.2148104 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}","0.0000115","Desired Access: Read","5728"
"10:46:20.2148407 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000017","","5728"
"10:46:20.2148608 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Category","0.0000042","Type: REG_DWORD, Length: 4, Data: 4","5728"
"10:46:20.2148761 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Name","0.0000034","Type: REG_SZ, Length: 16, Data: AppData","5728"
"10:46:20.2148915 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\ParentFolder","0.0000030","Length: 90","5728"
"10:46:20.2149056 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Description","0.0000025","Length: 144","5728"
"10:46:20.2149188 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\RelativePath","0.0000030","Type: REG_SZ, Length: 32, Data: AppData\Roaming","5728"
"10:46:20.2149333 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\ParsingName","0.0000026","Length: 144","5728"
"10:46:20.2149461 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\InfoTip","0.0000026","Length: 144","5728"
"10:46:20.2149589 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\LocalizedName","0.0000026","Length: 144","5728"
"10:46:20.2149717 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Icon","0.0000026","Length: 144","5728"
"10:46:20.2149841 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Security","0.0000025","Length: 144","5728"
"10:46:20.2149969 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\StreamResource","0.0000025","Length: 144","5728"
"10:46:20.2150097 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\StreamResourceType","0.0000025","Length: 144","5728"
"10:46:20.2150225 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\LocalRedirectOnly","0.0000021","Length: 16","5728"
"10:46:20.2150348 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Roamable","0.0000026","Length: 16","5728"
"10:46:20.2150476 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\PreCreate","0.0000026","Length: 16","5728"
"10:46:20.2150604 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Stream","0.0000022","Length: 16","5728"
"10:46:20.2150732 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\PublishExpandedPath","0.0000022","Length: 16","5728"
"10:46:20.2150856 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\DefinitionFlags","0.0000026","Length: 16","5728"
"10:46:20.2150984 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\Attributes","0.0000026","Length: 16","5728"
"10:46:20.2151112 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\FolderTypeID","0.0000026","Length: 90","5728"
"10:46:20.2151240 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\InitFolderHandler","0.0000026","Length: 90","5728"
"10:46:20.2151513 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}","0.0000022","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.2151688 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}\PropertyBag","0.0000039","Desired Access: Read","5728"
"10:46:20.2151919 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}","0.0000021","","5728"
"10:46:20.2152379 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000022","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.2152541 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer","0.0000064","Desired Access: Query Value","5728"
"10:46:20.2152729 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.2152870 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000047","Desired Access: Query Value","5728"
"10:46:20.2153143 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.2153284 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\KnownFolders","0.0000047","Desired Access: Query Value","5728"
"10:46:20.2153480 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000017","","5728"
"10:46:20.2153706 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000064","Desired Access: Read","5728"
"10:46:20.2153894 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.2154018 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000106","Desired Access: Read","5728"
"10:46:20.2154261 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000017","","5728"
"10:46:20.2154453 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\AppData","0.0000034","Type: REG_EXPAND_SZ, Length: 60, Data: %USERPROFILE%\AppData\Roaming","5728"
"10:46:20.2155648 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Versions\000602xx","0.0000042","Type: REG_SZ, Length: 26, Data: kernel32.dll","5728"
"10:46:20.2158092 AM","firefox.exe","7384","CreateFile","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000222","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.2158626 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:20.2158843 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000056","AllocationSize: 3,371,008, EndOfFile: 3,368,788, NumberOfLinks: 2, DeletePending: False, Directory: False","5728"
"10:46:20.2159189 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000026","SyncType: SyncTypeOther","5728"
"10:46:20.2159940 AM","firefox.exe","7384","CloseFile","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000085","","5728"
"10:46:20.2160648 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Ids","0.0000085","Desired Access: Read","5728"
"10:46:20.2160861 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Ids","0.0000077","Desired Access: Read","5728"
"10:46:20.2161088 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Ids\en-US","0.0000089","Length: 90","5728"
"10:46:20.2161288 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Ids\en","0.0000064","Length: 90","5728"
"10:46:20.2161988 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000021","","5728"
"10:46:20.2164130 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0001736","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5728"
"10:46:20.2167535 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Crash Reports","0.0142831","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5728"
"10:46:20.2203690 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DWrite.dll","0.0006439","Offset: 2,693,632, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2556"
"10:46:20.2210304 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000042","Query: HandleTags, HandleTags: 0x0","2556"
"10:46:20.2210615 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\FontCache\Parameters","0.0000090","Desired Access: Read","2556"
"10:46:20.2210837 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\FontCache\Parameters","0.0000166","Desired Access: Read","2556"
"10:46:20.2211234 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\FontCache\Parameters\ClientCacheSize","0.0000042","Type: REG_DWORD, Length: 4, Data: 4194304","2556"
"10:46:20.2211430 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\FontCache\Parameters","0.0000021","","2556"
"10:46:20.2213282 AM","firefox.exe","7384","Thread Exit","","0.0000000","Thread ID: 2556, User Time: 0.0000000, Kernel Time: 0.0000000","2556"
"10:46:20.2312179 AM","firefox.exe","7384","ReadFile","C:\$Directory","0.0073233","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:20.2388045 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Crash Reports\events","0.0000874","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5728"
"10:46:20.2389593 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.2389747 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows","0.0000154","Desired Access: Query Value","5728"
"10:46:20.2390071 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\LoadAppInit_DLLs","0.0000034","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:20.2390229 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows","0.0000017","","5728"
"10:46:20.2392363 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Crash Reports","0.0000162","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5728"
"10:46:20.2393557 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Pending Pings","0.0000243","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5728"
"10:46:20.2394812 AM","firefox.exe","7384","ReadFile","C:","0.0004245","Offset: 8,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:20.2401864 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Crash Reports\InstallTime20200325093457","0.0068937","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.2471138 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Crash Reports\InstallTime20200325093457","0.0000064","CreationTime: 3/25/2020 10:26:52 AM, LastAccessTime: 3/25/2020 10:26:52 AM, LastWriteTime: 3/25/2020 10:26:52 AM, ChangeTime: 3/25/2020 10:26:52 AM, AllocationSize: 16, EndOfFile: 10, FileAttributes: A","5728"
"10:46:20.2471339 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Crash Reports\InstallTime20200325093457","0.0000102","","5728"
"10:46:20.2473660 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Crash Reports\InstallTime20200325093457","0.0000166","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.2474223 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Crash Reports\InstallTime20200325093457","0.0000030","AllocationSize: 16, EndOfFile: 10, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:20.2474423 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Crash Reports\InstallTime20200325093457","0.0000645","Offset: 0, Length: 10, Priority: Normal","5728"
"10:46:20.2474829 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Crash Reports\InstallTime20200325093457","0.0000089","Offset: 0, Length: 10, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:20.2475200 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Crash Reports\InstallTime20200325093457","0.0000064","","5728"
"10:46:20.2477274 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Crash Reports\LastCrash","0.0102613","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.2580233 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Crash Reports\LastCrash","0.0000064","CreationTime: 3/28/2019 1:22:10 PM, LastAccessTime: 3/28/2019 1:22:10 PM, LastWriteTime: 8/19/2019 3:37:54 PM, ChangeTime: 8/19/2019 3:37:54 PM, AllocationSize: 16, EndOfFile: 10, FileAttributes: A","5728"
"10:46:20.2580442 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Crash Reports\LastCrash","0.0000106","","5728"
"10:46:20.2582328 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Crash Reports\LastCrash","0.0000166","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.2582724 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Crash Reports\LastCrash","0.0000030","AllocationSize: 16, EndOfFile: 10, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:20.2582895 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Crash Reports\LastCrash","0.0000666","Offset: 0, Length: 10, Priority: Normal","5728"
"10:46:20.2583322 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Crash Reports\LastCrash","0.0000085","Offset: 0, Length: 10, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:20.2583719 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Crash Reports\LastCrash","0.0000072","","5728"
"10:46:20.2585442 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000141","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.2585775 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000034","Name: \Program Files\Firefox Nightly\firefox.exe","5728"
"10:46:20.2585916 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000030","Name: \Program Files\Firefox Nightly\firefox.exe","5728"
"10:46:20.2586479 AM","firefox.exe","7384","QueryNormalizedNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000137","","5728"
"10:46:20.2586748 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000055","","5728"
"10:46:20.2588280 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000119","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.2588578 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000043","","5728"
"10:46:20.2589504 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000103","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.2589709 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000043","","5728"
"10:46:20.2590618 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.2590942 AM","firefox.exe","7384","DeviceIoControl","C:\Program Files\Firefox Nightly\firefox.exe","0.0000017","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","5728"
"10:46:20.2591044 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000043","","5728"
"10:46:20.2592299 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a","5728"
"10:46:20.2593583 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","5728"
"10:46:20.2594782 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000145","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.2595111 AM","firefox.exe","7384","FileSystemControl","C:\Program Files\Firefox Nightly","0.0000213","Control: FSCTL_GET_REPARSE_POINT","5728"
"10:46:20.2595559 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000059","","5728"
"10:46:20.2596519 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000093","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.2596719 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000038","","5728"
"10:46:20.2597564 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000089","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.2597837 AM","firefox.exe","7384","DeviceIoControl","C:\Program Files\Firefox Nightly","0.0000008","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","5728"
"10:46:20.2597931 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000034","","5728"
"10:46:20.2598797 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.2598997 AM","firefox.exe","7384","FileSystemControl","C:\Program Files\Firefox Nightly","0.0000030","Control: FSCTL_GET_REPARSE_POINT","5728"
"10:46:20.2599108 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000039","","5728"
"10:46:20.2600013 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000055","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","5728"
"10:46:20.2600802 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.2601003 AM","firefox.exe","7384","FileSystemControl","C:\Program Files","0.0000030","Control: FSCTL_GET_REPARSE_POINT","5728"
"10:46:20.2601114 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000034","","5728"
"10:46:20.2601924 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.2602104 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000034","","5728"
"10:46:20.2602919 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.2603170 AM","firefox.exe","7384","DeviceIoControl","C:\Program Files","0.0000009","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","5728"
"10:46:20.2603256 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000034","","5728"
"10:46:20.2604147 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.2604335 AM","firefox.exe","7384","FileSystemControl","C:\Program Files","0.0000026","Control: FSCTL_GET_REPARSE_POINT","5728"
"10:46:20.2604437 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000035","","5728"
"10:46:20.2605662 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.2605794 AM","firefox.exe","7384","RegOpenKey","HKLM\HARDWARE\DESCRIPTION\System\CentralProcessor\0","0.0000098","Desired Access: Query Value","5728"
"10:46:20.2606016 AM","firefox.exe","7384","RegQueryValue","HKLM\HARDWARE\DESCRIPTION\System\CentralProcessor\0\Update Signature","0.0000047","Length: 20","5728"
"10:46:20.2606153 AM","firefox.exe","7384","RegQueryValue","HKLM\HARDWARE\DESCRIPTION\System\CentralProcessor\0\Update Revision","0.0000030","Type: REG_BINARY, Length: 8, Data: 00 00 00 00 70 00 00 00","5728"
"10:46:20.2608393 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Temp\firefox","0.0001339","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","5728"
"10:46:20.2609976 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Temp\firefox","0.0000230","","5728"
"10:46:20.2612412 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Temp\firefox","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.2612621 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Temp\firefox","0.0000038","CreationTime: 3/26/2020 10:46:20 AM, LastAccessTime: 3/26/2020 10:46:20 AM, LastWriteTime: 3/26/2020 10:46:20 AM, ChangeTime: 3/26/2020 10:46:20 AM, FileAttributes: D","5728"
"10:46:20.2612732 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Temp\firefox","0.0000038","","5728"
"10:46:20.2614549 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Temp\firefox\parent.lock","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:20.2615488 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Temp\firefox\parent.lock","0.0001046","Desired Access: Generic Read/Write, Disposition: OverwriteIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: None, AllocationSize: 0, OpenResult: Created","5728"
"10:46:20.2616900 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.2617033 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Policies\Mozilla\Firefox","0.0000081","Desired Access: Query Value","5728"
"10:46:20.2617216 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.2617306 AM","firefox.exe","7384","RegOpenKey","HKCU\SOFTWARE\Policies\Mozilla\Firefox","0.0000038","Desired Access: Query Value","5728"
"10:46:20.2617656 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.2617758 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000081","Desired Access: Read","5728"
"10:46:20.2617933 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.2618027 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F1B32785-6FBA-4FCF-9D55-7B8E7F157091}","0.0000094","Desired Access: Read","5728"
"10:46:20.2618249 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000013","","5728"
"10:46:20.2618381 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F1B32785-6FBA-4FCF-9D55-7B8E7F157091}\Category","0.0000030","Type: REG_DWORD, Length: 4, Data: 4","5728"
"10:46:20.2618488 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F1B32785-6FBA-4FCF-9D55-7B8E7F157091}\Name","0.0000030","Type: REG_SZ, Length: 28, Data: Local AppData","5728"
"10:46:20.2618603 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F1B32785-6FBA-4FCF-9D55-7B8E7F157091}\ParentFolder","0.0000021","Length: 90","5728"
"10:46:20.2618697 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F1B32785-6FBA-4FCF-9D55-7B8E7F157091}\Description","0.0000021","Length: 144","5728"
"10:46:20.2618786 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F1B32785-6FBA-4FCF-9D55-7B8E7F157091}\RelativePath","0.0000022","Type: REG_SZ, Length: 28, Data: AppData\Local","5728"
"10:46:20.2618880 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F1B32785-6FBA-4FCF-9D55-7B8E7F157091}\ParsingName","0.0000022","Length: 144","5728"
"10:46:20.2618966 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F1B32785-6FBA-4FCF-9D55-7B8E7F157091}\InfoTip","0.0000021","Length: 144","5728"
"10:46:20.2619051 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F1B32785-6FBA-4FCF-9D55-7B8E7F157091}\LocalizedName","0.0000021","Length: 144","5728"
"10:46:20.2619140 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F1B32785-6FBA-4FCF-9D55-7B8E7F157091}\Icon","0.0000018","Length: 144","5728"
"10:46:20.2619226 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F1B32785-6FBA-4FCF-9D55-7B8E7F157091}\Security","0.0000017","Length: 144","5728"
"10:46:20.2619307 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F1B32785-6FBA-4FCF-9D55-7B8E7F157091}\StreamResource","0.0000021","Length: 144","5728"
"10:46:20.2619396 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F1B32785-6FBA-4FCF-9D55-7B8E7F157091}\StreamResourceType","0.0000018","Length: 144","5728"
"10:46:20.2619482 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F1B32785-6FBA-4FCF-9D55-7B8E7F157091}\LocalRedirectOnly","0.0000021","Type: REG_DWORD, Length: 4, Data: 1","5728"
"10:46:20.2619571 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F1B32785-6FBA-4FCF-9D55-7B8E7F157091}\Roamable","0.0000022","Length: 16","5728"
"10:46:20.2619657 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F1B32785-6FBA-4FCF-9D55-7B8E7F157091}\PreCreate","0.0000021","Length: 16","5728"
"10:46:20.2619742 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F1B32785-6FBA-4FCF-9D55-7B8E7F157091}\Stream","0.0000021","Length: 16","5728"
"10:46:20.2619827 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F1B32785-6FBA-4FCF-9D55-7B8E7F157091}\PublishExpandedPath","0.0000022","Type: REG_DWORD, Length: 4, Data: 1","5728"
"10:46:20.2619917 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F1B32785-6FBA-4FCF-9D55-7B8E7F157091}\DefinitionFlags","0.0000034","Length: 16","5728"
"10:46:20.2620015 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F1B32785-6FBA-4FCF-9D55-7B8E7F157091}\Attributes","0.0000021","Length: 16","5728"
"10:46:20.2620105 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F1B32785-6FBA-4FCF-9D55-7B8E7F157091}\FolderTypeID","0.0000025","Length: 90","5728"
"10:46:20.2620194 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F1B32785-6FBA-4FCF-9D55-7B8E7F157091}\InitFolderHandler","0.0000026","Length: 90","5728"
"10:46:20.2620339 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F1B32785-6FBA-4FCF-9D55-7B8E7F157091}","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.2620438 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F1B32785-6FBA-4FCF-9D55-7B8E7F157091}\PropertyBag","0.0000025","Desired Access: Read","5728"
"10:46:20.2620566 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F1B32785-6FBA-4FCF-9D55-7B8E7F157091}","0.0000017","","5728"
"10:46:20.2620749 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.2620839 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000038","Desired Access: Query Value","5728"
"10:46:20.2620958 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.2621043 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\KnownFolders","0.0000035","Desired Access: Query Value","5728"
"10:46:20.2621163 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000013","","5728"
"10:46:20.2621321 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000047","Desired Access: Read","5728"
"10:46:20.2621462 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.2621547 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000047","Desired Access: Read","5728"
"10:46:20.2621679 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000013","","5728"
"10:46:20.2621777 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Local AppData","0.0000034","Type: REG_EXPAND_SZ, Length: 56, Data: %USERPROFILE%\AppData\Local","5728"
"10:46:20.2622140 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000008","","5728"
"10:46:20.2629611 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox","0.0076407","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5728"
"10:46:20.2708719 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\profiles.ini","0.0009963","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.2718823 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\profiles.ini","0.0000051","CreationTime: 2/16/2018 12:59:38 PM, LastAccessTime: 2/16/2018 12:59:38 PM, LastWriteTime: 8/16/2019 1:34:27 PM, ChangeTime: 8/16/2019 1:34:27 PM, AllocationSize: 8192, EndOfFile: 5639, FileAttributes: A","5728"
"10:46:20.2718959 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\profiles.ini","0.0000064","","5728"
"10:46:20.2721114 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\profiles.ini","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.2721340 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\profiles.ini","0.0000030","CreationTime: 2/16/2018 12:59:38 PM, LastAccessTime: 2/16/2018 12:59:38 PM, LastWriteTime: 8/16/2019 1:34:27 PM, ChangeTime: 8/16/2019 1:34:27 PM, AllocationSize: 8192, EndOfFile: 5639, FileAttributes: A","5728"
"10:46:20.2721442 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\profiles.ini","0.0000043","","5728"
"10:46:20.2722782 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\profiles.ini","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.2723111 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\profiles.ini","0.0000030","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","5728"
"10:46:20.2723247 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\profiles.ini","0.0000047","CreationTime: 2/16/2018 12:59:38 PM, LastAccessTime: 2/16/2018 12:59:38 PM, LastWriteTime: 8/16/2019 1:34:27 PM, ChangeTime: 8/16/2019 1:34:27 PM, FileAttributes: A, AllocationSize: 8,192, EndOfFile: 5,639, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x50000000152a8, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","5728"
"10:46:20.2723525 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\profiles.ini","0.0091072","Offset: 0, Length: 5,639, Priority: Normal","5728"
"10:46:20.2723909 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\profiles.ini","0.0090351","Offset: 0, Length: 5,639, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:20.2815002 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\profiles.ini","0.0000154","","5728"
"10:46:20.2818253 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000150","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.2818637 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly","0.0000039","Name: \Program Files\Firefox Nightly","5728"
"10:46:20.2818795 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly","0.0000026","Name: \Program Files\Firefox Nightly","5728"
"10:46:20.2819563 AM","firefox.exe","7384","QueryNormalizedNameInformationFile","C:\Program Files\Firefox Nightly","0.0000094","","5728"
"10:46:20.2819793 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000064","","5728"
"10:46:20.2822938 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000038","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.2823232 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000107","Desired Access: Read","5728"
"10:46:20.2823497 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.2823642 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}","0.0000124","Desired Access: Read","5728"
"10:46:20.2823949 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000013","","5728"
"10:46:20.2824145 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\Category","0.0000039","Type: REG_DWORD, Length: 4, Data: 2","5728"
"10:46:20.2824299 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\Name","0.0000038","Type: REG_SZ, Length: 30, Data: Common AppData","5728"
"10:46:20.2824470 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\ParentFolder","0.0000030","Length: 90","5728"
"10:46:20.2824611 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\Description","0.0000025","Length: 144","5728"
"10:46:20.2824739 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\RelativePath","0.0000021","Length: 144","5728"
"10:46:20.2824858 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\ParsingName","0.0000026","Length: 144","5728"
"10:46:20.2824982 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\InfoTip","0.0000025","Length: 144","5728"
"10:46:20.2825106 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\LocalizedName","0.0000025","Length: 144","5728"
"10:46:20.2825229 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\Icon","0.0000022","Length: 144","5728"
"10:46:20.2825349 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\Security","0.0000025","Length: 144","5728"
"10:46:20.2825477 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\StreamResource","0.0000021","Length: 144","5728"
"10:46:20.2825605 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\StreamResourceType","0.0000021","Length: 144","5728"
"10:46:20.2825728 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\LocalRedirectOnly","0.0000022","Length: 16","5728"
"10:46:20.2825852 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\Roamable","0.0000022","Length: 16","5728"
"10:46:20.2825972 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\PreCreate","0.0000025","Length: 16","5728"
"10:46:20.2826095 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\Stream","0.0000026","Length: 16","5728"
"10:46:20.2826219 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\PublishExpandedPath","0.0000026","Length: 16","5728"
"10:46:20.2826343 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\DefinitionFlags","0.0000021","Length: 16","5728"
"10:46:20.2826462 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\Attributes","0.0000026","Length: 16","5728"
"10:46:20.2826586 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\FolderTypeID","0.0000026","Length: 90","5728"
"10:46:20.2826714 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\InitFolderHandler","0.0000026","Length: 90","5728"
"10:46:20.2826872 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.2827034 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}\PropertyBag","0.0000034","Desired Access: Read","5728"
"10:46:20.2827239 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{62AB5D82-FDC1-4DC3-A9DD-070D1D495D97}","0.0000021","","5728"
"10:46:20.2827614 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.2827776 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList","0.0000077","Desired Access: Read","5728"
"10:46:20.2827986 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\ProgramData","0.0000029","Length: 12","5728"
"10:46:20.2828131 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\ProgramData","0.0000029","Type: REG_EXPAND_SZ, Length: 52, Data: %SystemDrive%\ProgramData","5728"
"10:46:20.2828310 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList","0.0000013","","5728"
"10:46:20.2830656 AM","firefox.exe","7384","CreateFile","C:\ProgramData","0.0000239","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5728"
"10:46:20.2833191 AM","firefox.exe","7384","CreateFile","C:\ProgramData","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.2833541 AM","firefox.exe","7384","QueryBasicInformationFile","C:\ProgramData","0.0000051","CreationTime: 4/11/2018 4:38:20 PM, LastAccessTime: 5/7/2019 11:35:35 AM, LastWriteTime: 5/7/2019 11:35:35 AM, ChangeTime: 5/7/2019 11:35:35 AM, FileAttributes: HD","5728"
"10:46:20.2833741 AM","firefox.exe","7384","CloseFile","C:\ProgramData","0.0000060","","5728"
"10:46:20.2834211 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.2834381 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\KnownFolderSettings","0.0000077","Desired Access: Query Value","5728"
"10:46:20.2834582 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.2834718 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\KnownFolderSettings","0.0000056","Desired Access: Query Value","5728"
"10:46:20.2835111 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.2835243 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Mozilla\Firefox\TaskBarIDs","0.0000137","Desired Access: Query Value","5728"
"10:46:20.2835520 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Mozilla\Firefox\TaskBarIDs\C:\Program Files\Firefox Nightly","0.0000039","Length: 12","5728"
"10:46:20.2835704 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Mozilla\Firefox\TaskBarIDs","0.0000017","","5728"
"10:46:20.2835866 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.2835990 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Mozilla\Firefox\TaskBarIDs","0.0000051","Desired Access: Query Value","5728"
"10:46:20.2836152 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Mozilla\Firefox\TaskBarIDs\C:\Program Files\Firefox Nightly","0.0000034","Type: REG_SZ, Length: 34, Data: 6F193CCC56814779","5728"
"10:46:20.2836306 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Mozilla\Firefox\TaskBarIDs","0.0000012","","5728"
"10:46:20.2838716 AM","firefox.exe","7384","CreateFile","C:\ProgramData\Mozilla","0.0104376","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.2943437 AM","firefox.exe","7384","QueryBasicInformationFile","C:\ProgramData\Mozilla","0.0000060","CreationTime: 1/10/2019 10:29:55 AM, LastAccessTime: 1/10/2019 10:30:06 AM, LastWriteTime: 1/10/2019 10:30:06 AM, ChangeTime: 3/25/2020 10:26:40 AM, FileAttributes: DNCI","5728"
"10:46:20.2943642 AM","firefox.exe","7384","CloseFile","C:\ProgramData\Mozilla","0.0000094","","5728"
"10:46:20.2945417 AM","firefox.exe","7384","CreateFile","C:\ProgramData\Mozilla","0.0000128","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.2945741 AM","firefox.exe","7384","QueryInformationVolume","C:\ProgramData\Mozilla","0.0000030","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","5728"
"10:46:20.2945882 AM","firefox.exe","7384","QueryAllInformationFile","C:\ProgramData\Mozilla","0.0000051","CreationTime: 1/10/2019 10:29:55 AM, LastAccessTime: 1/10/2019 10:30:06 AM, LastWriteTime: 1/10/2019 10:30:06 AM, ChangeTime: 3/25/2020 10:26:40 AM, FileAttributes: DNCI, AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: True, IndexNumber: 0x80000000145e6, EaSize: 0, Access: Read Attributes, Synchronize, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","5728"
"10:46:20.2946036 AM","firefox.exe","7384","CloseFile","C:\ProgramData\Mozilla","0.0000038","","5728"
"10:46:20.2988242 AM","firefox.exe","7384","ReadFile","C:\$Directory","0.0119296","Offset: 12,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:20.3246000 AM","firefox.exe","7384","ReadFile","C:\$Directory","0.0055612","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:20.3371811 AM","firefox.exe","7384","CreateFile","C:\ProgramData\Mozilla\updates\6F193CCC56814779\updates\0\update.version","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","5728"
"10:46:20.3375195 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000533","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.3375848 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000038","CreationTime: 6/19/2019 4:53:26 PM, LastAccessTime: 3/26/2020 10:35:42 AM, LastWriteTime: 3/26/2020 10:35:42 AM, ChangeTime: 3/26/2020 10:35:42 AM, FileAttributes: D","5728"
"10:46:20.3375976 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000042","","5728"
"10:46:20.3377102 AM","firefox.exe","7384","ReadFile","C:\$Directory","0.0108864","Offset: 8,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:20.3486798 AM","firefox.exe","7384","ReadFile","C:\$Directory","0.0008508","Offset: 4,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:20.3498723 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\parent.lock","0.0157112","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.3656159 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\parent.lock","0.0000064","CreationTime: 6/19/2019 4:53:26 PM, LastAccessTime: 6/19/2019 4:53:26 PM, LastWriteTime: 3/26/2020 10:34:50 AM, ChangeTime: 3/26/2020 10:34:50 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5728"
"10:46:20.3656364 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\parent.lock","0.0000098","","5728"
"10:46:20.3658323 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\parent.lock","0.0000879","Desired Access: Generic Read/Write, Disposition: OverwriteIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: None, AllocationSize: 0, OpenResult: Overwritten","5728"
"10:46:20.3660106 AM","firefox.exe","7384","ReadFile","C:","0.0003635","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:20.3664851 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\compatibility.ini","0.0034359","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.3699667 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\compatibility.ini","0.0000047","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","5728"
"10:46:20.3699863 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\compatibility.ini","0.0000068","CreationTime: 6/19/2019 4:53:34 PM, LastAccessTime: 6/19/2019 4:53:34 PM, LastWriteTime: 3/25/2020 10:26:52 AM, ChangeTime: 3/25/2020 10:26:52 AM, FileAttributes: A, AllocationSize: 200, EndOfFile: 199, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x1e000000002c4a, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","5728"
"10:46:20.3700085 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\compatibility.ini","0.0000618","Offset: 0, Length: 199, Priority: Normal","5728"
"10:46:20.3700486 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\compatibility.ini","0.0000077","Offset: 0, Length: 199, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:20.3700891 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\compatibility.ini","0.0000098","","5728"
"10:46:20.3703408 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.3703643 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly","0.0000034","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:29:06 AM, LastWriteTime: 3/25/2020 10:29:06 AM, ChangeTime: 3/25/2020 10:29:06 AM, FileAttributes: D","5728"
"10:46:20.3703754 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000038","","5728"
"10:46:20.3704360 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.3704573 AM","firefox.exe","7384","QueryDirectory","C:\Program Files","0.0000145","Filter: Program Files, 1: Program Files","5728"
"10:46:20.3704829 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","5728"
"10:46:20.3705776 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.3705986 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000102","Filter: Firefox Nightly, 1: Firefox Nightly","5728"
"10:46:20.3706190 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000039","","5728"
"10:46:20.3707935 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.3708144 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly","0.0000030","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:29:06 AM, LastWriteTime: 3/25/2020 10:29:06 AM, ChangeTime: 3/25/2020 10:29:06 AM, FileAttributes: D","5728"
"10:46:20.3708255 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000052","","5728"
"10:46:20.3708627 AM","firefox.exe","7384","CreateFile","C:\","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.3708887 AM","firefox.exe","7384","QueryDirectory","C:\Program Files","0.0000136","Filter: Program Files, 1: Program Files","5728"
"10:46:20.3709168 AM","firefox.exe","7384","CloseFile","C:\","0.0000052","","5728"
"10:46:20.3710500 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.3710794 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000132","Filter: Firefox Nightly, 1: Firefox Nightly","5728"
"10:46:20.3711076 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000055","","5728"
"10:46:20.3713081 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.3713282 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser","0.0000029","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:30 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: D","5728"
"10:46:20.3713380 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser","0.0000038","","5728"
"10:46:20.3713691 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.3713866 AM","firefox.exe","7384","QueryDirectory","C:\Program Files","0.0000111","Filter: Program Files, 1: Program Files","5728"
"10:46:20.3714075 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","5728"
"10:46:20.3714958 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.3715155 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000098","Filter: Firefox Nightly, 1: Firefox Nightly","5728"
"10:46:20.3715351 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000034","","5728"
"10:46:20.3717117 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.3717301 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser","0.0000025","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:30 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: D","5728"
"10:46:20.3717395 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser","0.0000034","","5728"
"10:46:20.3717689 AM","firefox.exe","7384","CreateFile","C:\","0.0000073","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.3717855 AM","firefox.exe","7384","QueryDirectory","C:\Program Files","0.0000099","Filter: Program Files, 1: Program Files","5728"
"10:46:20.3718047 AM","firefox.exe","7384","CloseFile","C:\","0.0000035","","5728"
"10:46:20.3718922 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.3719114 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000094","Filter: Firefox Nightly, 1: Firefox Nightly","5728"
"10:46:20.3719302 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000034","","5728"
"10:46:20.3720415 AM","firefox.exe","7384","ReadFile","C:\$Directory","0.0087164","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:20.3810489 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\.purgecaches","0.0000465","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:20.3812354 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000179","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5728"
"10:46:20.3821817 AM","firefox.exe","7384","ReadFile","C:\$Directory","0.0109556","Offset: 4,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:20.3933305 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0156195","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5728"
"10:46:20.4073581 AM","firefox.exe","2652","RegCloseKey","HKCU\Software\Mozilla\Firefox\Launcher","0.0000030","","7980"
"10:46:20.4075292 AM","firefox.exe","2652","Load Image","C:\Windows\System32\kernel.appcore.dll","0.0000000","Image Base: 0x7ffb45af0000, Image Size: 0x11000","7980"
"10:46:20.4077779 AM","firefox.exe","2652","Thread Exit","","0.0000000","Thread ID: 6560, User Time: 0.0000000, Kernel Time: 0.0156250","6560"
"10:46:20.4077980 AM","firefox.exe","2652","Thread Exit","","0.0000000","Thread ID: 5724, User Time: 0.0000000, Kernel Time: 0.0000000","5724"
"10:46:20.4077984 AM","firefox.exe","2652","Thread Exit","","0.0000000","Thread ID: 7096, User Time: 0.0000000, Kernel Time: 0.0000000","7096"
"10:46:20.4078018 AM","firefox.exe","2652","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\GRE_Initialize","0.0000230","Desired Access: Read","7980"
"10:46:20.4078645 AM","firefox.exe","2652","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize\DisableMetaFiles","0.0000056","Length: 20","7980"
"10:46:20.4078824 AM","firefox.exe","2652","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize","0.0000018","","7980"
"10:46:20.4081073 AM","firefox.exe","2652","Thread Exit","","0.0000000","Thread ID: 7980, User Time: 0.0156250, Kernel Time: 0.0312500","7980"
"10:46:20.4088203 AM","firefox.exe","2652","QueryNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000111","Name: \Program Files\Firefox Nightly\firefox.exe","7980"
"10:46:20.4088467 AM","firefox.exe","2652","QueryNameInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000081","Name: \Program Files\Firefox Nightly\msvcp140.dll","7980"
"10:46:20.4088659 AM","firefox.exe","2652","QueryNameInformationFile","C:\Windows\System32\dbghelp.dll","0.0000034","Name: \Windows\System32\dbghelp.dll","7980"
"10:46:20.4088774 AM","firefox.exe","2652","QueryNameInformationFile","C:\Windows\System32\version.dll","0.0000030","Name: \Windows\System32\version.dll","7980"
"10:46:20.4088890 AM","firefox.exe","2652","QueryNameInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000029","Name: \Program Files\Firefox Nightly\vcruntime140.dll","7980"
"10:46:20.4089022 AM","firefox.exe","2652","QueryNameInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000030","Name: \Program Files\Firefox Nightly\mozglue.dll","7980"
"10:46:20.4089141 AM","firefox.exe","2652","QueryNameInformationFile","C:\Windows\System32\cryptbase.dll","0.0000030","Name: \Windows\System32\cryptbase.dll","7980"
"10:46:20.4089244 AM","firefox.exe","2652","QueryNameInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000030","Name: \Windows\System32\kernel.appcore.dll","7980"
"10:46:20.4089397 AM","firefox.exe","2652","QueryNameInformationFile","C:\Windows\System32\msasn1.dll","0.0000073","Name: \Windows\System32\msasn1.dll","7980"
"10:46:20.4089589 AM","firefox.exe","2652","QueryNameInformationFile","C:\Windows\System32\gdi32full.dll","0.0000047","Name: \Windows\System32\gdi32full.dll","7980"
"10:46:20.4089773 AM","firefox.exe","2652","QueryNameInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000047","Name: \Windows\System32\ucrtbase.dll","7980"
"10:46:20.4089956 AM","firefox.exe","2652","QueryNameInformationFile","C:\Windows\System32\wintrust.dll","0.0000043","Name: \Windows\System32\wintrust.dll","7980"
"10:46:20.4090080 AM","firefox.exe","2652","QueryNameInformationFile","C:\Windows\System32\win32u.dll","0.0000026","Name: \Windows\System32\win32u.dll","7980"
"10:46:20.4090178 AM","firefox.exe","2652","QueryNameInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000026","Name: \Windows\System32\msvcp_win.dll","7980"
"10:46:20.4090280 AM","firefox.exe","2652","QueryNameInformationFile","C:\Windows\System32\KernelBase.dll","0.0000030","Name: \Windows\System32\KernelBase.dll","7980"
"10:46:20.4090387 AM","firefox.exe","2652","QueryNameInformationFile","C:\Windows\System32\crypt32.dll","0.0000030","Name: \Windows\System32\crypt32.dll","7980"
"10:46:20.4090532 AM","firefox.exe","2652","QueryNameInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000056","Name: \Windows\System32\bcryptprimitives.dll","7980"
"10:46:20.4090716 AM","firefox.exe","2652","QueryNameInformationFile","C:\Windows\System32\kernel32.dll","0.0000042","Name: \Windows\System32\kernel32.dll","7980"
"10:46:20.4090874 AM","firefox.exe","2652","QueryNameInformationFile","C:\Windows\System32\gdi32.dll","0.0000042","Name: \Windows\System32\gdi32.dll","7980"
"10:46:20.4091057 AM","firefox.exe","2652","QueryNameInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000043","Name: \Windows\System32\rpcrt4.dll","7980"
"10:46:20.4091176 AM","firefox.exe","2652","QueryNameInformationFile","C:\Windows\System32\imm32.dll","0.0000030","Name: \Windows\System32\imm32.dll","7980"
"10:46:20.4091279 AM","firefox.exe","2652","QueryNameInformationFile","C:\Windows\System32\user32.dll","0.0000025","Name: \Windows\System32\user32.dll","7980"
"10:46:20.4091300 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000196","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.4091373 AM","firefox.exe","2652","QueryNameInformationFile","C:\Windows\System32\advapi32.dll","0.0000030","Name: \Windows\System32\advapi32.dll","7980"
"10:46:20.4091475 AM","firefox.exe","2652","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000030","Name: \Windows\System32\sechost.dll","7980"
"10:46:20.4091654 AM","firefox.exe","2652","QueryNameInformationFile","C:\Windows\System32\msvcrt.dll","0.0000056","Name: \Windows\System32\msvcrt.dll","7980"
"10:46:20.4091778 AM","firefox.exe","7384","QueryNameInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000038","Name: \Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","5728"
"10:46:20.4091834 AM","firefox.exe","2652","QueryNameInformationFile","C:\Windows\System32\ntdll.dll","0.0000046","Name: \Windows\System32\ntdll.dll","7980"
"10:46:20.4091991 AM","firefox.exe","7384","QueryNameInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000039","Name: \Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","5728"
"10:46:20.4092495 AM","firefox.exe","2652","Process Exit","","0.0000000","Exit Status: 0, User Time: 0.0156250 seconds, Kernel Time: 0.0468750 seconds, Private Bytes: 1,560,576, Peak Private Bytes: 3,313,664, Working Set: 5,656,576, Peak Working Set: 5,656,576","7980"
"10:46:20.4092695 AM","firefox.exe","2652","RegOpenKey","HKLM\System\CurrentControlSet\Services\bam\UserSettings\S-1-5-21-429253301-29906273-2566354956-1001","0.0000094","Desired Access: All Access","7980"
"10:46:20.4092875 AM","firefox.exe","2652","RegQueryValue","HKLM\System\CurrentControlSet\Services\bam\UserSettings\S-1-5-21-429253301-29906273-2566354956-1001\\Device\HarddiskVolume3\Program Files\Firefox Nightly\firefox.exe","0.0000038","Type: REG_BINARY, Length: 24, Data: C0 C1 23 6F 96 03 D6 01 00 00 00 00 00 00 00 00","7980"
"10:46:20.4092973 AM","firefox.exe","2652","RegSetValue","HKLM\System\CurrentControlSet\Services\bam\UserSettings\S-1-5-21-429253301-29906273-2566354956-1001\\Device\HarddiskVolume3\Program Files\Firefox Nightly\firefox.exe","0.0000362","Type: REG_BINARY, Length: 24, Data: 3A 16 6F 75 96 03 D6 01 00 00 00 00 00 00 00 00","7980"
"10:46:20.4093075 AM","firefox.exe","7384","QueryNormalizedNameInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000201","","5728"
"10:46:20.4093421 AM","firefox.exe","2652","RegCloseKey","HKLM\System\CurrentControlSet\Services\bam\UserSettings\S-1-5-21-429253301-29906273-2566354956-1001","0.0000013","","7980"
"10:46:20.4093506 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000060","","5728"
"10:46:20.4093788 AM","firefox.exe","2652","CloseFile","C:\Program Files\Firefox Nightly","0.0000098","","7980"
"10:46:20.4094453 AM","firefox.exe","2652","CloseFile","C:\Program Files\Firefox Nightly","0.0000069","","7980"
"10:46:20.4094743 AM","firefox.exe","2652","RegCloseKey","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Versions","0.0000039","","7980"
"10:46:20.4094931 AM","firefox.exe","2652","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000060","","7980"
"10:46:20.4095085 AM","firefox.exe","2652","RegCloseKey","HKCU","0.0000034","","7980"
"10:46:20.4095251 AM","firefox.exe","2652","RegCloseKey","HKLM","0.0000013","","7980"
"10:46:20.4095336 AM","firefox.exe","2652","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options","0.0000013","","7980"
"10:46:20.4095469 AM","firefox.exe","2652","RegCloseKey","HKCU\Software\Microsoft\Windows NT\CurrentVersion","0.0000013","","7980"
"10:46:20.4097594 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\minidumps","0.2434268","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.6533001 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\minidumps","0.0000239","CreationTime: 6/19/2019 4:53:34 PM, LastAccessTime: 3/26/2020 10:26:34 AM, LastWriteTime: 3/26/2020 10:26:34 AM, ChangeTime: 3/26/2020 10:26:34 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: D","5728"
"10:46:20.6533885 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\minidumps","0.0000388","","5728"
"10:46:20.6544159 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\crashes","0.0009711","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5728"
"10:46:20.6561912 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\crashes\events","0.0013095","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5728"
"10:46:20.6581829 AM","firefox.exe","7384","ReadFile","C:\$Directory","0.0126989","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:20.6716818 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\.startup-incomplete","0.0071109","Desired Access: Generic Write, Read Attributes, Disposition: Create, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","5728"
"10:46:20.6788861 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\.startup-incomplete","0.0000734","","5728"
"10:46:20.6797800 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\.purgecaches","0.0001169","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:20.6807417 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 5140","5728"
"10:46:20.6821074 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser","0.0000367","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.6821736 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser","0.0000098","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:30 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: D","5728"
"10:46:20.6822060 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser","0.0000119","","5728"
"10:46:20.6827325 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\omni.ja","0.0009041","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.6837279 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000137","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","5728"
"10:46:20.6837770 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000235","","5728"
"10:46:20.6842386 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000397","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.6843406 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000094","AllocationSize: 23,359,488, EndOfFile: 23,355,435, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:20.6843914 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\omni.ja","0.0000081","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:20.6844268 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000055","AllocationSize: 23,359,488, EndOfFile: 23,355,435, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:20.6844797 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\omni.ja","0.0000043","SyncType: SyncTypeOther","5728"
"10:46:20.6849631 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0222162","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:20.7074980 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0725517","Offset: 32,768, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:20.7078393 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0642979","Offset: 1,081,344, Length: 290,816, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:20.7812393 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000555","","5728"
"10:46:20.7828871 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0053555","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.7883646 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000248","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: A","5728"
"10:46:20.7884572 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000444","","5728"
"10:46:20.7896489 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000649","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.7897594 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000145","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","5728"
"10:46:20.7898119 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000209","","5728"
"10:46:20.7899945 AM","firefox.exe","7384","CreateFile","C:\","0.0000444","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.7900973 AM","firefox.exe","7384","QueryDirectory","C:\Program Files","0.0000657","Filter: Program Files, 1: Program Files","5728"
"10:46:20.7902172 AM","firefox.exe","7384","CloseFile","C:\","0.0000197","","5728"
"10:46:20.7906883 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000503","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.7907945 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000529","Filter: Firefox Nightly, 1: Firefox Nightly","5728"
"10:46:20.7908956 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000188","","5728"
"10:46:20.7917417 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000542","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.7918364 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000128","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: A","5728"
"10:46:20.7918821 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000192","","5728"
"10:46:20.7920378 AM","firefox.exe","7384","CreateFile","C:\","0.0000384","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.7921261 AM","firefox.exe","7384","QueryDirectory","C:\Program Files","0.0000491","Filter: Program Files, 1: Program Files","5728"
"10:46:20.7922213 AM","firefox.exe","7384","CloseFile","C:\","0.0000175","","5728"
"10:46:20.7926573 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000457","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.7927533 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000478","Filter: Firefox Nightly, 1: Firefox Nightly","5728"
"10:46:20.7928476 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000179","","5728"
"10:46:20.7933848 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000538","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.7935209 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000145","AllocationSize: 48,279,552, EndOfFile: 48,278,560, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:20.7936186 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000128","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:20.7936762 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000098","AllocationSize: 48,279,552, EndOfFile: 48,278,560, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:20.7937671 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000073","SyncType: SyncTypeOther","5728"
"10:46:20.7950774 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0080785","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:20.8036278 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0838128","Offset: 32,768, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:20.8040929 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0867615","Offset: 1,081,344, Length: 503,808, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:20.8942314 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000576","","5728"
"10:46:20.8967142 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\JitPI.dll","0.0000777","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:20.8975530 AM","firefox.exe","7384","CreateFile","C:\Windows\System\JitPI.dll","0.0000431","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:20.8983240 AM","firefox.exe","7384","CreateFile","C:\Windows\JitPI.dll","0.0000508","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:20.8991151 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\JitPI.dll","0.0000516","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:20.8998669 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\JitPI.dll","0.0000460","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:20.9006472 AM","firefox.exe","7384","CreateFile","C:\Program Files (x86)\Intel\iCLS Client\JitPI.dll","0.0000508","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:20.9014148 AM","firefox.exe","7384","CreateFile","C:\Program Files\Intel\iCLS Client\JitPI.dll","0.0000516","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:20.9022225 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\JitPI.dll","0.0000589","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:20.9030169 AM","firefox.exe","7384","CreateFile","C:\Windows\JitPI.dll","0.0001024","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:20.9044766 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\JitPI.dll","0.0000998","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:20.9056930 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WindowsPowerShell\v1.0\JitPI.dll","0.0000849","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:20.9066244 AM","firefox.exe","7384","CreateFile","C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\JitPI.dll","0.0000525","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:20.9077427 AM","firefox.exe","7384","CreateFile","C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\JitPI.dll","0.0000508","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:20.9086703 AM","firefox.exe","7384","CreateFile","C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\JitPI.dll","0.0000456","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:20.9094396 AM","firefox.exe","7384","CreateFile","C:\Program Files\Intel\Intel(R) Management Engine Components\IPT\JitPI.dll","0.0000401","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:20.9107426 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OpenSSH\JitPI.dll","0.0002901","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:20.9126225 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\WindowsApps\JitPI.dll","0.0003000","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:20.9275051 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\defaults\pref","0.0001160","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.9277013 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\defaults\pref\*","0.0000350","Filter: *, 1: .","5728"
"10:46:20.9277931 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\defaults\pref","0.0000234","0: .., 1: channel-prefs.js","5728"
"10:46:20.9278891 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\defaults\pref","0.0000089","","5728"
"10:46:20.9279488 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\defaults\pref","0.0000158","","5728"
"10:46:20.9283409 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\defaults\pref\channel-prefs.js","0.0000913","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.9284928 AM","firefox.exe","7384","QueryInformationVolume","C:\Program Files\Firefox Nightly\defaults\pref\channel-prefs.js","0.0000128","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","5728"
"10:46:20.9285457 AM","firefox.exe","7384","QueryAllInformationFile","C:\Program Files\Firefox Nightly\defaults\pref\channel-prefs.js","0.0000141","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:15 AM, LastWriteTime: 2/16/2018 5:46:11 AM, ChangeTime: 2/16/2018 12:58:49 PM, FileAttributes: A, AllocationSize: 248, EndOfFile: 245, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0xc00000002c570, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","5728"
"10:46:20.9285999 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\defaults\pref\channel-prefs.js","0.0001545","Offset: 0, Length: 245, Priority: Normal","5728"
"10:46:20.9286998 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\defaults\pref\channel-prefs.js","0.0000209","Offset: 0, Length: 245, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:20.9287983 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\defaults\pref\channel-prefs.js","0.0000201","","5728"
"10:46:20.9354611 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\defaults\preferences","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:20.9372019 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 2676","5728"
"10:46:20.9379490 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 4060","5728"
"10:46:20.9384845 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 2884","5728"
"10:46:20.9385374 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes","0.0000145","Desired Access: Maximum Allowed, Granted Access: All Access","4060"
"10:46:20.9386885 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000038","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9387209 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\COM3","0.0000111","Desired Access: Read","4060"
"10:46:20.9387606 AM","firefox.exe","7384","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\COM3","0.0000021","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","4060"
"10:46:20.9387883 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\COM3\Com+Enabled","0.0000077","Type: REG_DWORD, Length: 4, Data: 1","4060"
"10:46:20.9388246 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\COM3","0.0000025","","4060"
"10:46:20.9393161 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000384","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2884"
"10:46:20.9394978 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000090","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","2884"
"10:46:20.9395371 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000132","","2884"
"10:46:20.9398362 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000303","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2884"
"10:46:20.9399275 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000124","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2884"
"10:46:20.9399949 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000043","SyncType: SyncTypeOther","2884"
"10:46:20.9401238 AM","firefox.exe","7384","Load Image","C:\Windows\System32\NapiNSP.dll","0.0000000","Image Base: 0x7ffb3cce0000, Image Size: 0x16000","2884"
"10:46:20.9401720 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000115","Name: \Windows\System32\NapiNSP.dll","2884"
"10:46:20.9401967 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000043","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:20.9402518 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Parental Controls\Users\S-1-5-21-429253301-29906273-2566354956-1001\Web","0.0000341","Desired Access: Read","5728"
"10:46:20.9404540 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 3544","5728"
"10:46:20.9404625 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000154","","2884"
"10:46:20.9407062 AM","firefox.exe","7384","Load Image","C:\Windows\System32\clbcatq.dll","0.0000000","Image Base: 0x7ffb46ce0000, Image Size: 0xa0000","4060"
"10:46:20.9407557 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\clbcatq.dll","0.0000111","Name: \Windows\System32\clbcatq.dll","4060"
"10:46:20.9416730 AM","firefox.exe","7384","CreateFile","C:\Windows\Registration\R00000000000d.clb","0.0000358","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","4060"
"10:46:20.9417639 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\Registration\R00000000000d.clb","0.0000077","AllocationSize: 24,576, EndOfFile: 23,144, NumberOfLinks: 1, DeletePending: False, Directory: False","4060"
"10:46:20.9418181 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\Registration\R00000000000d.clb","0.0000064","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","4060"
"10:46:20.9418535 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\Registration\R00000000000d.clb","0.0000162","AllocationSize: 24,576, EndOfFile: 23,144, NumberOfLinks: 1, DeletePending: False, Directory: False","4060"
"10:46:20.9418582 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000516","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2884"
"10:46:20.9419217 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\Registration\R00000000000d.clb","0.0000043","SyncType: SyncTypeOther","4060"
"10:46:20.9419653 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000051","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","2884"
"10:46:20.9419960 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000085","","2884"
"10:46:20.9422213 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000106","Query: Name","4060"
"10:46:20.9422605 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9422840 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000025","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9423147 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000119","Desired Access: Read","4060"
"10:46:20.9423330 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000355","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2884"
"10:46:20.9423561 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000281","Desired Access: Read","4060"
"10:46:20.9424150 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000081","Query: Name","4060"
"10:46:20.9424278 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000111","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2884"
"10:46:20.9424461 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000047","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9424845 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\TreatAs","0.0000115","Desired Access: Query Value","4060"
"10:46:20.9424952 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000034","SyncType: SyncTypeOther","2884"
"10:46:20.9425174 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000030","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9425468 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\TreatAs","0.0000073","Desired Access: Query Value","4060"
"10:46:20.9425745 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000073","Query: Name","4060"
"10:46:20.9426228 AM","firefox.exe","7384","Load Image","C:\Windows\System32\pnrpnsp.dll","0.0000000","Image Base: 0x7ffb3ca40000, Image Size: 0x1a000","2884"
"10:46:20.9426257 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000069","Query: Name","4060"
"10:46:20.9426548 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000021","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9426697 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000149","Name: \Windows\System32\pnrpnsp.dll","2884"
"10:46:20.9426902 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000115","Desired Access: Maximum Allowed","4060"
"10:46:20.9427217 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\(Default)","0.0000060","Length: 12","4060"
"10:46:20.9427516 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000085","Query: Name","4060"
"10:46:20.9427866 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9428233 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000098","Desired Access: Maximum Allowed","4060"
"10:46:20.9428544 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\(Default)","0.0000056","Type: REG_SZ, Length: 38, Data: NetworkListManager","4060"
"10:46:20.9428813 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000068","Query: Name","4060"
"10:46:20.9429090 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000022","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9429423 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InprocServer32","0.0000098","Desired Access: Read","4060"
"10:46:20.9429730 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000022","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9429769 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000145","","2884"
"10:46:20.9429978 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InprocServer32","0.0000154","Desired Access: Read","4060"
"10:46:20.9430392 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000068","Query: Name","4060"
"10:46:20.9430673 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000022","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9431087 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000098","Desired Access: Maximum Allowed","4060"
"10:46:20.9431420 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32\InprocServer32","0.0000051","Length: 12","4060"
"10:46:20.9431680 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000069","Query: Name","4060"
"10:46:20.9431958 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000025","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9432290 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000090","Desired Access: Maximum Allowed","4060"
"10:46:20.9432593 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32\(Default)","0.0000052","Length: 12","4060"
"10:46:20.9432841 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000072","Query: Name","4060"
"10:46:20.9433135 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000056","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9433430 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000076","Desired Access: Maximum Allowed","4060"
"10:46:20.9433643 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32\(Default)","0.0000047","Type: REG_EXPAND_SZ, Length: 70, Data: %SystemRoot%\System32\netprofm.dll","4060"
"10:46:20.9433839 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000047","Query: Name","4060"
"10:46:20.9434206 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000022","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9434488 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000094","Desired Access: Maximum Allowed","4060"
"10:46:20.9434778 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32\(Default)","0.0000055","Type: REG_EXPAND_SZ, Length: 70, Data: %SystemRoot%\System32\netprofm.dll","4060"
"10:46:20.9435106 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000444","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.9435209 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000072","Query: Name","4060"
"10:46:20.9435486 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000022","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9435776 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000094","Desired Access: Maximum Allowed","4060"
"10:46:20.9435998 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000068","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","5728"
"10:46:20.9436084 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32\ThreadingModel","0.0000059","Type: REG_SZ, Length: 10, Data: Both","4060"
"10:46:20.9436241 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000090","","5728"
"10:46:20.9436468 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000089","","4060"
"10:46:20.9436770 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000073","Query: Name","4060"
"10:46:20.9437048 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000025","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9437355 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InprocHandler32","0.0000098","Desired Access: Query Value","4060"
"10:46:20.9437662 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9437910 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InprocHandler32","0.0000064","Desired Access: Query Value","4060"
"10:46:20.9438183 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000068","Query: Name","4060"
"10:46:20.9438452 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000021","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9438725 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InprocHandler","0.0000089","Desired Access: Query Value","4060"
"10:46:20.9438993 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000022","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9439237 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InprocHandler","0.0000064","Desired Access: Query Value","4060"
"10:46:20.9439633 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000077","Desired Access: Read","4060"
"10:46:20.9439881 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9440107 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes","0.0000090","Desired Access: Notify","4060"
"10:46:20.9440389 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes","0.0000081","Desired Access: Notify","4060"
"10:46:20.9440760 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000030","","4060"
"10:46:20.9441152 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000022","","4060"
"10:46:20.9441583 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9441664 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000346","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.9441831 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\OLE","0.0000098","Desired Access: Read","4060"
"10:46:20.9442151 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Ole\MaxSxSHashCount","0.0000060","Length: 16","4060"
"10:46:20.9442445 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Ole","0.0000026","","4060"
"10:46:20.9442659 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000110","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:20.9443290 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000038","SyncType: SyncTypeOther","5728"
"10:46:20.9444267 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000077","Query: Name","4060"
"10:46:20.9444502 AM","firefox.exe","7384","Load Image","C:\Windows\System32\webauthn.dll","0.0000000","Image Base: 0x7ffb38050000, Image Size: 0x4b000","5728"
"10:46:20.9444762 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9444950 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\webauthn.dll","0.0000102","Name: \Windows\System32\webauthn.dll","5728"
"10:46:20.9445014 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000102","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9445513 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000094","Desired Access: Read","4060"
"10:46:20.9446016 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000137","Desired Access: Read","4060"
"10:46:20.9446486 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000089","Query: Name","4060"
"10:46:20.9446844 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9447211 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\TreatAs","0.0000102","Desired Access: Query Value","4060"
"10:46:20.9447399 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000115","","5728"
"10:46:20.9447565 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000030","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9447860 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\TreatAs","0.0000068","Desired Access: Query Value","4060"
"10:46:20.9448180 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000076","Query: Name","4060"
"10:46:20.9448555 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000132","Query: Name","4060"
"10:46:20.9448879 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000022","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9449225 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000102","Desired Access: Maximum Allowed","4060"
"10:46:20.9449579 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\(Default)","0.0000056","Length: 12","4060"
"10:46:20.9449891 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000068","Query: Name","4060"
"10:46:20.9450193 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9450543 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000098","Desired Access: Maximum Allowed","4060"
"10:46:20.9450872 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\(Default)","0.0000064","Type: REG_SZ, Length: 38, Data: NetworkListManager","4060"
"10:46:20.9451188 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000068","Query: Name","4060"
"10:46:20.9451491 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000025","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9451879 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InprocServer32","0.0000098","Desired Access: Read","4060"
"10:46:20.9452207 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000030","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9452502 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InprocServer32","0.0000081","Desired Access: Read","4060"
"10:46:20.9452852 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000076","Query: Name","4060"
"10:46:20.9452963 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000315","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.9453189 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000047","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9453573 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000145","Desired Access: Maximum Allowed","4060"
"10:46:20.9453726 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000073","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","5728"
"10:46:20.9453995 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32\InprocServer32","0.0000064","Length: 12","4060"
"10:46:20.9454025 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000107","","5728"
"10:46:20.9454302 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000073","Query: Name","4060"
"10:46:20.9454627 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000025","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9454964 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000098","Desired Access: Maximum Allowed","4060"
"10:46:20.9455301 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32\(Default)","0.0000055","Length: 12","4060"
"10:46:20.9455604 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000076","Query: Name","4060"
"10:46:20.9455924 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000021","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9456248 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000089","Desired Access: Maximum Allowed","4060"
"10:46:20.9456397 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000218","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.9456568 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32\(Default)","0.0000064","Type: REG_EXPAND_SZ, Length: 70, Data: %SystemRoot%\System32\netprofm.dll","4060"
"10:46:20.9456901 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000068","Query: Name","4060"
"10:46:20.9456995 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcrypt.dll","0.0000046","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:20.9457204 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000025","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9457361 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcrypt.dll","0.0000026","SyncType: SyncTypeOther","5728"
"10:46:20.9457528 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000094","Desired Access: Maximum Allowed","4060"
"10:46:20.9457865 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32\(Default)","0.0000060","Type: REG_EXPAND_SZ, Length: 70, Data: %SystemRoot%\System32\netprofm.dll","4060"
"10:46:20.9458189 AM","firefox.exe","7384","Load Image","C:\Windows\System32\bcrypt.dll","0.0000000","Image Base: 0x7ffb455f0000, Image Size: 0x25000","5728"
"10:46:20.9458211 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000072","Query: Name","4060"
"10:46:20.9458479 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\bcrypt.dll","0.0000081","Name: \Windows\System32\bcrypt.dll","5728"
"10:46:20.9458522 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9458872 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000124","Desired Access: Maximum Allowed","4060"
"10:46:20.9459303 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32\ThreadingModel","0.0000085","Type: REG_SZ, Length: 10, Data: Both","4060"
"10:46:20.9459849 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InProcServer32","0.0000030","","4060"
"10:46:20.9460173 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000077","Query: Name","4060"
"10:46:20.9460506 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9460621 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000115","","5728"
"10:46:20.9460860 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InprocHandler32","0.0000098","Desired Access: Query Value","4060"
"10:46:20.9461236 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000029","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9461539 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InprocHandler32","0.0000068","Desired Access: Query Value","4060"
"10:46:20.9461859 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000072","Query: Name","4060"
"10:46:20.9462161 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000060","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9462533 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InprocHandler","0.0000115","Desired Access: Query Value","4060"
"10:46:20.9462895 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9463190 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\InprocHandler","0.0000068","Desired Access: Query Value","4060"
"10:46:20.9463510 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000077","Query: Name","4060"
"10:46:20.9463834 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9464180 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\LocalServer32","0.0000093","Desired Access: Read","4060"
"10:46:20.9464512 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9464811 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\LocalServer32","0.0000064","Desired Access: Read","4060"
"10:46:20.9465127 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000068","Query: Name","4060"
"10:46:20.9465430 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000025","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9465728 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000090","Desired Access: Maximum Allowed","4060"
"10:46:20.9466065 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\AppID","0.0000060","Length: 112","4060"
"10:46:20.9466373 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000072","Query: Name","4060"
"10:46:20.9466688 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9467055 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\LocalServer","0.0000094","Desired Access: Query Value","4060"
"10:46:20.9467388 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9467687 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\LocalServer","0.0000064","Desired Access: Query Value","4060"
"10:46:20.9468003 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000089","Query: Name","4060"
"10:46:20.9468361 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000021","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9468600 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000021","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9468873 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000077","Desired Access: Read","4060"
"10:46:20.9469219 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000119","Desired Access: Read","4060"
"10:46:20.9469615 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000069","Query: Name","4060"
"10:46:20.9469935 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000022","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9470260 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000341","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2884"
"10:46:20.9470319 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\Elevation","0.0000094","Desired Access: Read","4060"
"10:46:20.9470648 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000030","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9470891 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\Elevation","0.0000068","Desired Access: Read","4060"
"10:46:20.9471156 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000076","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","2884"
"10:46:20.9471301 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000030","","4060"
"10:46:20.9471531 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000124","","2884"
"10:46:20.9471715 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000025","","4060"
"10:46:20.9472103 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000072","Query: Name","4060"
"10:46:20.9472423 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000025","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9472649 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9472926 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000077","Desired Access: Read","4060"
"10:46:20.9473276 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000111","Desired Access: Read","4060"
"10:46:20.9473626 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000077","Query: Name","4060"
"10:46:20.9473946 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000021","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9474266 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\TreatAs","0.0000098","Desired Access: Read","4060"
"10:46:20.9474577 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9474915 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}\TreatAs","0.0000064","Desired Access: Read","4060"
"10:46:20.9475068 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000324","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2884"
"10:46:20.9475269 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{DCB00C01-570F-4A9B-8D69-199FDBA5723B}","0.0000025","","4060"
"10:46:20.9476024 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000119","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2884"
"10:46:20.9476736 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000052","SyncType: SyncTypeOther","2884"
"10:46:20.9477923 AM","firefox.exe","7384","Load Image","C:\Windows\System32\nlaapi.dll","0.0000000","Image Base: 0x7ffb423c0000, Image Size: 0x19000","2884"
"10:46:20.9478371 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\nlaapi.dll","0.0000115","Name: \Windows\System32\nlaapi.dll","2884"
"10:46:20.9481204 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000166","","2884"
"10:46:20.9487066 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4060"
"10:46:20.9487971 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000192","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","4060"
"10:46:20.9488704 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000163","","4060"
"10:46:20.9492216 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000346","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","4060"
"10:46:20.9493632 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\netprofm.dll","0.0000141","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","4060"
"10:46:20.9494464 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\netprofm.dll","0.0000047","SyncType: SyncTypeOther","4060"
"10:46:20.9495015 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache","0.0189606","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5728"
"10:46:20.9495779 AM","firefox.exe","7384","Load Image","C:\Windows\System32\netprofm.dll","0.0000000","Image Base: 0x7ffb41e80000, Image Size: 0x36000","4060"
"10:46:20.9496269 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\netprofm.dll","0.0000107","Name: \Windows\System32\netprofm.dll","4060"
"10:46:20.9498650 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000124","","4060"
"10:46:20.9501944 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000107","Query: Name","4060"
"10:46:20.9502349 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000030","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9502622 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000022","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9502964 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}","0.0000256","Desired Access: Read","4060"
"10:46:20.9503510 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}","0.0000252","Desired Access: Read","4060"
"10:46:20.9504052 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}","0.0000076","Query: Name","4060"
"10:46:20.9504350 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9504687 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}\TreatAs","0.0000111","Desired Access: Query Value","4060"
"10:46:20.9505016 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9505246 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000312","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2884"
"10:46:20.9505272 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}\TreatAs","0.0000064","Desired Access: Query Value","4060"
"10:46:20.9505549 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}","0.0000077","Query: Name","4060"
"10:46:20.9505925 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}","0.0000068","Query: Name","4060"
"10:46:20.9506074 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000077","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2884"
"10:46:20.9506202 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9506411 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000111","","2884"
"10:46:20.9506535 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}","0.0000102","Desired Access: Maximum Allowed","4060"
"10:46:20.9506868 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}\(Default)","0.0000059","Length: 12","4060"
"10:46:20.9507149 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}","0.0000073","Query: Name","4060"
"10:46:20.9507422 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}","0.0000022","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9507742 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}","0.0000094","Desired Access: Maximum Allowed","4060"
"10:46:20.9508050 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}\(Default)","0.0000064","Type: REG_SZ, Length: 42, Data: Network List Manager","4060"
"10:46:20.9508348 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}","0.0000068","Query: Name","4060"
"10:46:20.9508634 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9508958 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}\InprocServer32","0.0000098","Desired Access: Read","4060"
"10:46:20.9509078 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000281","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2884"
"10:46:20.9509257 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9509504 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}\InprocServer32","0.0000064","Desired Access: Read","4060"
"10:46:20.9509807 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}","0.0000064","Query: Name","4060"
"10:46:20.9509897 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000064","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2884"
"10:46:20.9510089 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}","0.0000021","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9510396 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}\InprocHandler32","0.0000098","Desired Access: Query Value","4060"
"10:46:20.9510494 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000043","SyncType: SyncTypeOther","2884"
"10:46:20.9510703 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}","0.0000022","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9510959 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}\InprocHandler32","0.0000081","Desired Access: Query Value","4060"
"10:46:20.9511232 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}","0.0000064","Query: Name","4060"
"10:46:20.9511493 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}","0.0000025","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9511757 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}\InprocHandler","0.0000094","Desired Access: Query Value","4060"
"10:46:20.9511898 AM","firefox.exe","7384","Load Image","C:\Windows\System32\mswsock.dll","0.0000000","Image Base: 0x7ffb452b0000, Image Size: 0x66000","2884"
"10:46:20.9512043 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9512299 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}\InprocHandler","0.0000056","Desired Access: Query Value","4060"
"10:46:20.9512389 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\mswsock.dll","0.0000106","Name: \Windows\System32\mswsock.dll","2884"
"10:46:20.9512670 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{A47979D2-C419-11D9-A5B4-001185AD2B89}","0.0000158","","4060"
"10:46:20.9515213 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000115","","2884"
"10:46:20.9517330 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","2884"
"10:46:20.9517568 AM","firefox.exe","7384","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000086","Desired Access: Read","2884"
"10:46:20.9517799 AM","firefox.exe","7384","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000089","Desired Access: Read, Disposition: REG_OPENED_EXISTING_KEY","2884"
"10:46:20.9518264 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000060","Desired Access: Read","2884"
"10:46:20.9518447 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000073","Desired Access: Read","2884"
"10:46:20.9518674 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","2884"
"10:46:20.9518844 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters","0.0000051","Desired Access: Read","2884"
"10:46:20.9518942 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcss.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4060"
"10:46:20.9519015 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000068","Desired Access: Read","2884"
"10:46:20.9519224 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","2884"
"10:46:20.9519369 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\DnsClient","0.0000201","Desired Access: Read","2884"
"10:46:20.9519808 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000056","Length: 12","2884"
"10:46:20.9519928 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcss.dll","0.0000102","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","4060"
"10:46:20.9520064 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000060","Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","2884"
"10:46:20.9520397 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000086","","2884"
"10:46:20.9520406 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcss.dll","0.0000567","","4060"
"10:46:20.9520683 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000026","","2884"
"10:46:20.9521007 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","2884"
"10:46:20.9521289 AM","firefox.exe","7384","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000090","Desired Access: Read","2884"
"10:46:20.9521579 AM","firefox.exe","7384","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000090","Desired Access: Read, Disposition: REG_OPENED_EXISTING_KEY","2884"
"10:46:20.9521861 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000055","Desired Access: Read","2884"
"10:46:20.9522031 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000052","Desired Access: Read","2884"
"10:46:20.9522223 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","2884"
"10:46:20.9522377 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters","0.0000047","Desired Access: Read","2884"
"10:46:20.9522539 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000047","Desired Access: Read","2884"
"10:46:20.9522727 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","2884"
"10:46:20.9522868 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\DnsClient","0.0000068","Desired Access: Read","2884"
"10:46:20.9523085 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000039","Length: 12","2884"
"10:46:20.9523256 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000038","Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","2884"
"10:46:20.9523456 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000022","","2884"
"10:46:20.9523610 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000111","","2884"
"10:46:20.9523619 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcss.dll","0.0000307","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","4060"
"10:46:20.9523917 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","2884"
"10:46:20.9524088 AM","firefox.exe","7384","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000051","Desired Access: Read","2884"
"10:46:20.9524259 AM","firefox.exe","7384","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000051","Desired Access: Read, Disposition: REG_OPENED_EXISTING_KEY","2884"
"10:46:20.9524480 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000047","Desired Access: Read","2884"
"10:46:20.9524519 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rpcss.dll","0.0000060","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","4060"
"10:46:20.9524647 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000051","Desired Access: Read","2884"
"10:46:20.9524830 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","2884"
"10:46:20.9524869 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rpcss.dll","0.0000068","AllocationSize: 1,163,264, EndOfFile: 1,159,680, NumberOfLinks: 2, DeletePending: False, Directory: False","4060"
"10:46:20.9524975 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters","0.0000047","Desired Access: Read","2884"
"10:46:20.9525133 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000047","Desired Access: Read","2884"
"10:46:20.9525317 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","2884"
"10:46:20.9525462 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\DnsClient","0.0000064","Desired Access: Read","2884"
"10:46:20.9525475 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rpcss.dll","0.0000042","SyncType: SyncTypeOther","4060"
"10:46:20.9525662 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","2884"
"10:46:20.9525812 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\System\DNSClient","0.0000055","Desired Access: Query Value","2884"
"10:46:20.9526008 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Domain","0.0000038","Length: 12","2884"
"10:46:20.9526174 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Domain","0.0000034","Type: REG_SZ, Length: 2, Data: ","2884"
"10:46:20.9526396 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000022","","2884"
"10:46:20.9526580 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000017","","2884"
"10:46:20.9527006 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcss.dll","0.0000111","","4060"
"10:46:20.9530364 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000094","Query: Name","4060"
"10:46:20.9530770 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000029","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9531047 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000038","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9531175 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2884"
"10:46:20.9531397 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{00000134-0000-0000-C000-000000000046}","0.0000192","Desired Access: Read","4060"
"10:46:20.9531772 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000056","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","2884"
"10:46:20.9531917 AM","firefox.exe","7384","RegOpenKey","HKCR\Interface\{00000134-0000-0000-C000-000000000046}","0.0000359","Desired Access: Read","4060"
"10:46:20.9532045 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000081","","2884"
"10:46:20.9532596 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{00000134-0000-0000-C000-000000000046}","0.0000089","Query: Name","4060"
"10:46:20.9532946 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{00000134-0000-0000-C000-000000000046}","0.0000025","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9533308 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32","0.0000158","Desired Access: Read","4060"
"10:46:20.9533705 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{00000134-0000-0000-C000-000000000046}","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9533999 AM","firefox.exe","7384","RegOpenKey","HKCR\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32","0.0000137","Desired Access: Read","4060"
"10:46:20.9534435 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32","0.0000081","Query: Name","4060"
"10:46:20.9534708 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000222","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2884"
"10:46:20.9534767 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9535126 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32","0.0000145","Desired Access: Maximum Allowed","4060"
"10:46:20.9535527 AM","firefox.exe","7384","RegQueryValue","HKCR\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)","0.0000132","Type: REG_SZ, Length: 78, Data: {00000320-0000-0000-C000-000000000046}","4060"
"10:46:20.9535599 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000184","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2884"
"10:46:20.9536005 AM","firefox.exe","7384","RegCloseKey","HKCR\Interface\{00000134-0000-0000-C000-000000000046}\ProxyStubClsid32","0.0000047","","4060"
"10:46:20.9536227 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000051","SyncType: SyncTypeOther","2884"
"10:46:20.9536333 AM","firefox.exe","7384","RegCloseKey","HKCR\Interface\{00000134-0000-0000-C000-000000000046}","0.0000030","","4060"
"10:46:20.9537289 AM","firefox.exe","7384","Load Image","C:\Windows\System32\winrnr.dll","0.0000000","Image Base: 0x7ffb41370000, Image Size: 0xe000","2884"
"10:46:20.9537716 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\winrnr.dll","0.0000089","Name: \Windows\System32\winrnr.dll","2884"
"10:46:20.9540178 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000128","","2884"
"10:46:20.9544867 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 3660","8024"
"10:46:20.9545938 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2884"
"10:46:20.9546821 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000077","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2884"
"10:46:20.9547282 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 7912","4060"
"10:46:20.9547320 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000183","","2884"
"10:46:20.9550883 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000328","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2884"
"10:46:20.9551796 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000111","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2884"
"10:46:20.9552636 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000043","SyncType: SyncTypeOther","2884"
"10:46:20.9554036 AM","firefox.exe","7384","Load Image","C:\Windows\System32\wshbth.dll","0.0000000","Image Base: 0x7ffb3bf70000, Image Size: 0x15000","2884"
"10:46:20.9554509 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\wshbth.dll","0.0000090","Name: \Windows\System32\wshbth.dll","2884"
"10:46:20.9557048 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000137","","2884"
"10:46:20.9559625 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000047","Query: HandleTags, HandleTags: 0x0","2884"
"10:46:20.9560022 AM","firefox.exe","7384","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000128","Desired Access: Read","2884"
"10:46:20.9560402 AM","firefox.exe","7384","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000311","Desired Access: Read, Disposition: REG_OPENED_EXISTING_KEY","2884"
"10:46:20.9561071 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000090","Desired Access: Read","2884"
"10:46:20.9561366 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000098","Desired Access: Read","2884"
"10:46:20.9561716 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","2884"
"10:46:20.9561993 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters","0.0000081","Desired Access: Read","2884"
"10:46:20.9562279 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000107","Desired Access: Read","2884"
"10:46:20.9562625 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000029","Query: HandleTags, HandleTags: 0x0","2884"
"10:46:20.9562991 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\DnsClient","0.0000175","Desired Access: Read","2884"
"10:46:20.9563593 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000077","Length: 12","2884"
"10:46:20.9563956 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000064","Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","2884"
"10:46:20.9564348 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000034","","2884"
"10:46:20.9564638 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000022","","2884"
"10:46:20.9565223 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000038","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9565569 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Ole","0.0000136","Desired Access: Read","4060"
"10:46:20.9565965 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Ole\MaximumAllowedAllocationSize","0.0000073","Length: 16","4060"
"10:46:20.9566315 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","2884"
"10:46:20.9566418 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Ole","0.0000042","","4060"
"10:46:20.9566558 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Winsock\Parameters","0.0000077","Desired Access: Read","2884"
"10:46:20.9566785 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock\Parameters","0.0000166","Desired Access: Read","2884"
"10:46:20.9567083 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000098","Query: Name","4060"
"10:46:20.9567143 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Winsock\Parameters\Transports","0.0000145","Length: 12","2884"
"10:46:20.9567442 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Winsock\Parameters\Transports","0.0000047","Type: REG_MULTI_SZ, Length: 92, Data: afunix, Tcpip, Tcpip6, Psched, vmbus, irda, RFCOMM","2884"
"10:46:20.9567548 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000030","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9567719 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Winsock\Parameters","0.0000026","","2884"
"10:46:20.9567817 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9568030 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","2884"
"10:46:20.9568056 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{D0074FFD-570F-4A9B-8D69-199FDBA5723B}","0.0000132","Desired Access: Read","4060"
"10:46:20.9568316 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock","0.0000094","Desired Access: Read","2884"
"10:46:20.9568402 AM","firefox.exe","7384","RegOpenKey","HKCR\Interface\{D0074FFD-570F-4A9B-8D69-199FDBA5723B}","0.0000281","Desired Access: Read","4060"
"10:46:20.9568611 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock","0.0000315","Desired Access: Read","2884"
"10:46:20.9569029 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{D0074FFD-570F-4A9B-8D69-199FDBA5723B}","0.0000102","Query: Name","4060"
"10:46:20.9569165 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock\Mapping","0.0000069","Length: 12","2884"
"10:46:20.9569374 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{D0074FFD-570F-4A9B-8D69-199FDBA5723B}","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9569434 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock\Mapping","0.0000060","Type: REG_BINARY, Length: 20, Data: 01 00 00 00 03 00 00 00 01 00 00 00 01 00 00 00","2884"
"10:46:20.9569733 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock","0.0000106","","2884"
"10:46:20.9569886 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{D0074FFD-570F-4A9B-8D69-199FDBA5723B}\ProxyStubClsid32","0.0000184","Desired Access: Read","4060"
"10:46:20.9570083 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","2884"
"10:46:20.9570309 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{D0074FFD-570F-4A9B-8D69-199FDBA5723B}","0.0000025","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9570351 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000086","Desired Access: Read","2884"
"10:46:20.9570595 AM","firefox.exe","7384","RegOpenKey","HKCR\Interface\{D0074FFD-570F-4A9B-8D69-199FDBA5723B}\ProxyStubClsid32","0.0000158","Desired Access: Read","4060"
"10:46:20.9570650 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000167","Desired Access: Read","2884"
"10:46:20.9571085 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock\Mapping","0.0000056","Length: 12","2884"
"10:46:20.9571124 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{D0074FFD-570F-4A9B-8D69-199FDBA5723B}\ProxyStubClsid32","0.0000119","Query: Name","4060"
"10:46:20.9571397 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock\Mapping","0.0000064","Type: REG_BINARY, Length: 104, Data: 08 00 00 00 03 00 00 00 02 00 00 00 01 00 00 00","2884"
"10:46:20.9571503 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{D0074FFD-570F-4A9B-8D69-199FDBA5723B}\ProxyStubClsid32","0.0000030","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9571695 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000026","","2884"
"10:46:20.9571849 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{D0074FFD-570F-4A9B-8D69-199FDBA5723B}\ProxyStubClsid32","0.0000154","Desired Access: Maximum Allowed","4060"
"10:46:20.9571981 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","2884"
"10:46:20.9572263 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Winsock\Setup Migration\Providers","0.0000094","Desired Access: Read","2884"
"10:46:20.9572280 AM","firefox.exe","7384","RegQueryValue","HKCR\Interface\{D0074FFD-570F-4A9B-8D69-199FDBA5723B}\ProxyStubClsid32\(Default)","0.0000081","Type: REG_SZ, Length: 78, Data: {1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","4060"
"10:46:20.9572566 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers","0.0000188","Desired Access: Read","2884"
"10:46:20.9572685 AM","firefox.exe","7384","RegCloseKey","HKCR\Interface\{D0074FFD-570F-4A9B-8D69-199FDBA5723B}\ProxyStubClsid32","0.0000039","","4060"
"10:46:20.9572984 AM","firefox.exe","7384","RegCloseKey","HKCR\Interface\{D0074FFD-570F-4A9B-8D69-199FDBA5723B}","0.0000077","","4060"
"10:46:20.9573018 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers","0.0000068","Query: HandleTags, HandleTags: 0x0","2884"
"10:46:20.9573355 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers\Tcpip","0.0000256","Desired Access: Read","2884"
"10:46:20.9573458 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000140","Query: Name","4060"
"10:46:20.9573876 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000025","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9573893 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers\Tcpip\WinSock 2.0 Provider ID","0.0000064","Type: REG_BINARY, Length: 16, Data: A0 1A 0F E7 8B AB CF 11 8C A3 00 80 5F 48 A1 92","2884"
"10:46:20.9574136 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000021","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9574204 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers\Tcpip","0.0000034","","2884"
"10:46:20.9574435 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000098","Desired Access: Read","4060"
"10:46:20.9574465 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers","0.0000025","","2884"
"10:46:20.9574738 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","2884"
"10:46:20.9574819 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000251","Desired Access: Read","4060"
"10:46:20.9574985 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000090","Desired Access: Read","2884"
"10:46:20.9575284 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000115","Desired Access: Read","2884"
"10:46:20.9575373 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000086","Query: Name","4060"
"10:46:20.9575629 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock\MinSockaddrLength","0.0000056","Type: REG_DWORD, Length: 4, Data: 16","2884"
"10:46:20.9575698 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000025","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9575868 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock\MaxSockaddrLength","0.0000047","Type: REG_DWORD, Length: 4, Data: 16","2884"
"10:46:20.9576043 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\TreatAs","0.0000115","Desired Access: Query Value","4060"
"10:46:20.9576082 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock\UseDelayedAcceptance","0.0000055","Type: REG_DWORD, Length: 4, Data: 0","2884"
"10:46:20.9576393 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000026","","2884"
"10:46:20.9576410 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9576679 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\TreatAs","0.0000068","Desired Access: Query Value","4060"
"10:46:20.9576973 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000073","Query: Name","4060"
"10:46:20.9577460 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000068","Query: Name","4060"
"10:46:20.9577758 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000022","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9578095 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000094","Desired Access: Maximum Allowed","4060"
"10:46:20.9578420 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\(Default)","0.0000059","Length: 12","4060"
"10:46:20.9578710 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000064","Query: Name","4060"
"10:46:20.9578987 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000022","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9579303 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000094","Desired Access: Maximum Allowed","4060"
"10:46:20.9579623 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\(Default)","0.0000064","Type: REG_SZ, Length: 32, Data: PSFactoryBuffer","4060"
"10:46:20.9579943 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000072","Query: Name","4060"
"10:46:20.9580263 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9580600 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InprocServer32","0.0000102","Desired Access: Read","4060"
"10:46:20.9580937 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000060","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9581261 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InprocServer32","0.0000150","Desired Access: Read","4060"
"10:46:20.9581714 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000076","Query: Name","4060"
"10:46:20.9582034 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000025","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9582383 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000107","Desired Access: Maximum Allowed","4060"
"10:46:20.9582575 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 4564","2884"
"10:46:20.9582746 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32\InprocServer32","0.0000056","Length: 12","4060"
"10:46:20.9583053 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000081","Query: Name","4060"
"10:46:20.9583373 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9583710 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000094","Desired Access: Maximum Allowed","4060"
"10:46:20.9584043 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32\(Default)","0.0000056","Length: 12","4060"
"10:46:20.9584355 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000102","Query: Name","4060"
"10:46:20.9584632 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000021","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9584675 AM","firefox.exe","7384","TCP Connect","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65535, rcvwinscale: 0, sndwinscale: 0, seqnum: 0, connid: 0","0"
"10:46:20.9584858 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000068","Desired Access: Maximum Allowed","4060"
"10:46:20.9585131 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32\(Default)","0.0000077","Type: REG_EXPAND_SZ, Length: 70, Data: %SystemRoot%\System32\npmproxy.dll","4060"
"10:46:20.9585541 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000064","Query: Name","4060"
"10:46:20.9585763 AM","firefox.exe","7384","TCP Accept","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65535, rcvwinscale: 0, sndwinscale: 0, seqnum: 0, connid: 0","0"
"10:46:20.9585839 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9586181 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000094","Desired Access: Maximum Allowed","4060"
"10:46:20.9586501 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32\(Default)","0.0000055","Type: REG_EXPAND_SZ, Length: 70, Data: %SystemRoot%\System32\npmproxy.dll","4060"
"10:46:20.9586834 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000068","Query: Name","4060"
"10:46:20.9587132 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000022","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9587444 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000094","Desired Access: Maximum Allowed","4060"
"10:46:20.9587610 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:20.9587759 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32\ThreadingModel","0.0000060","Type: REG_SZ, Length: 10, Data: Both","4060"
"10:46:20.9587951 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 39594, endtime: 39594, seqnum: 0, connid: 0","0"
"10:46:20.9588161 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000034","","4060"
"10:46:20.9588455 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000072","Query: Name","4060"
"10:46:20.9588788 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000102","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9589206 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InprocHandler32","0.0000098","Desired Access: Query Value","4060"
"10:46:20.9589522 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:20.9589543 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9589778 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 39594, endtime: 39594, seqnum: 0, connid: 0","0"
"10:46:20.9589829 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InprocHandler32","0.0000068","Desired Access: Query Value","4060"
"10:46:20.9590145 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000068","Query: Name","4060"
"10:46:20.9590452 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000025","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9590785 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InprocHandler","0.0000098","Desired Access: Query Value","4060"
"10:46:20.9591122 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000025","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9591407 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InprocHandler","0.0000069","Desired Access: Query Value","4060"
"10:46:20.9591821 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000056","","4060"
"10:46:20.9592858 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000060","Query: Name","4060"
"10:46:20.9593101 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9593255 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9593438 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000069","Desired Access: Read","4060"
"10:46:20.9593677 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000158","Desired Access: Read","4060"
"10:46:20.9593997 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000056","Query: Name","4060"
"10:46:20.9594202 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000017","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9594411 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\TreatAs","0.0000068","Desired Access: Query Value","4060"
"10:46:20.9594616 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000017","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9594782 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\TreatAs","0.0000047","Desired Access: Query Value","4060"
"10:46:20.9594974 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000047","Query: Name","4060"
"10:46:20.9595213 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000043","Query: Name","4060"
"10:46:20.9595405 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000013","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9595602 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000064","Desired Access: Maximum Allowed","4060"
"10:46:20.9595815 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\(Default)","0.0000047","Length: 12","4060"
"10:46:20.9596011 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000047","Query: Name","4060"
"10:46:20.9596195 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000017","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9596391 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000060","Desired Access: Maximum Allowed","4060"
"10:46:20.9596587 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\(Default)","0.0000034","Type: REG_SZ, Length: 32, Data: PSFactoryBuffer","4060"
"10:46:20.9596775 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000047","Query: Name","4060"
"10:46:20.9596971 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000017","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9597168 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InprocServer32","0.0000059","Desired Access: Read","4060"
"10:46:20.9597368 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000017","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9597530 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InprocServer32","0.0000047","Desired Access: Read","4060"
"10:46:20.9597739 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000051","Query: Name","4060"
"10:46:20.9597940 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9598136 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000060","Desired Access: Maximum Allowed","4060"
"10:46:20.9598345 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32\InprocServer32","0.0000039","Length: 12","4060"
"10:46:20.9598537 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000043","Query: Name","4060"
"10:46:20.9598725 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9598921 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000060","Desired Access: Maximum Allowed","4060"
"10:46:20.9599126 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32\(Default)","0.0000034","Length: 12","4060"
"10:46:20.9599314 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000042","Query: Name","4060"
"10:46:20.9599501 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9599702 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000060","Desired Access: Maximum Allowed","4060"
"10:46:20.9599911 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32\(Default)","0.0000038","Type: REG_EXPAND_SZ, Length: 70, Data: %SystemRoot%\System32\npmproxy.dll","4060"
"10:46:20.9600120 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000047","Query: Name","4060"
"10:46:20.9600321 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000132","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9600995 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000128","Desired Access: Maximum Allowed","4060"
"10:46:20.9601477 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32\(Default)","0.0000077","Type: REG_EXPAND_SZ, Length: 70, Data: %SystemRoot%\System32\npmproxy.dll","4060"
"10:46:20.9601938 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000115","Query: Name","4060"
"10:46:20.9602369 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000051","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9602808 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000120","Desired Access: Maximum Allowed","4060"
"10:46:20.9603213 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32\ThreadingModel","0.0000073","Type: REG_SZ, Length: 10, Data: Both","4060"
"10:46:20.9603657 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InProcServer32","0.0000034","","4060"
"10:46:20.9603981 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000086","Query: Name","4060"
"10:46:20.9604340 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000030","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9604737 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InprocHandler32","0.0000106","Desired Access: Query Value","4060"
"10:46:20.9605112 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000030","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9605428 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InprocHandler32","0.0000068","Desired Access: Query Value","4060"
"10:46:20.9605761 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000076","Query: Name","4060"
"10:46:20.9606089 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9606456 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InprocHandler","0.0000098","Desired Access: Query Value","4060"
"10:46:20.9606797 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9607100 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\InprocHandler","0.0000064","Desired Access: Query Value","4060"
"10:46:20.9607429 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000077","Query: Name","4060"
"10:46:20.9607753 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000021","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9608107 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\LocalServer32","0.0000103","Desired Access: Read","4060"
"10:46:20.9608457 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000030","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9608769 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\LocalServer32","0.0000068","Desired Access: Read","4060"
"10:46:20.9609101 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000077","Query: Name","4060"
"10:46:20.9609421 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9609763 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000098","Desired Access: Maximum Allowed","4060"
"10:46:20.9610791 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\AppID","0.0000060","Length: 112","4060"
"10:46:20.9611154 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000072","Query: Name","4060"
"10:46:20.9611448 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000021","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9611794 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\LocalServer","0.0000098","Desired Access: Query Value","4060"
"10:46:20.9612071 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000017","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9612272 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\LocalServer","0.0000046","Desired Access: Query Value","4060"
"10:46:20.9612493 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000047","Query: Name","4060"
"10:46:20.9612702 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000018","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9612856 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9613035 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000051","Desired Access: Read","4060"
"10:46:20.9613266 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000085","Desired Access: Read","4060"
"10:46:20.9613522 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000051","Query: Name","4060"
"10:46:20.9613722 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000013","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9613927 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\Elevation","0.0000068","Desired Access: Read","4060"
"10:46:20.9614132 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000017","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9614298 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\Elevation","0.0000047","Desired Access: Read","4060"
"10:46:20.9614558 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000047","","4060"
"10:46:20.9614819 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000017","","4060"
"10:46:20.9615066 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000043","Query: Name","4060"
"10:46:20.9615258 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9615937 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000025","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9616222 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000073","Desired Access: Read","4060"
"10:46:20.9616564 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000102","Desired Access: Read","4060"
"10:46:20.9616922 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000068","Query: Name","4060"
"10:46:20.9617208 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9617524 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\TreatAs","0.0000098","Desired Access: Read","4060"
"10:46:20.9617840 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000021","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9618104 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}\TreatAs","0.0000064","Desired Access: Read","4060"
"10:46:20.9618428 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","0.0000026","","4060"
"10:46:20.9623740 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4060"
"10:46:20.9624560 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000059","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","4060"
"10:46:20.9624926 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000111","","4060"
"10:46:20.9627947 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000239","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","4060"
"10:46:20.9628715 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\npmproxy.dll","0.0000086","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","4060"
"10:46:20.9629261 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\npmproxy.dll","0.0000026","SyncType: SyncTypeOther","4060"
"10:46:20.9630989 AM","firefox.exe","7384","Load Image","C:\Windows\System32\npmproxy.dll","0.0000000","Image Base: 0x7ffb3bb20000, Image Size: 0xf000","4060"
"10:46:20.9631472 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\npmproxy.dll","0.0000102","Name: \Windows\System32\npmproxy.dll","4060"
"10:46:20.9633259 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000137","","4060"
"10:46:20.9640995 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000085","Query: Name","4060"
"10:46:20.9641374 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000018","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9641575 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9641835 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{26656EAA-54EB-4E6F-8F85-4F0EF901A406}","0.0000145","Desired Access: Read","4060"
"10:46:20.9642215 AM","firefox.exe","7384","RegOpenKey","HKCR\Interface\{26656EAA-54EB-4E6F-8F85-4F0EF901A406}","0.0000218","Desired Access: Read","4060"
"10:46:20.9642646 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{26656EAA-54EB-4E6F-8F85-4F0EF901A406}","0.0000072","Query: Name","4060"
"10:46:20.9642876 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{26656EAA-54EB-4E6F-8F85-4F0EF901A406}","0.0000017","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9643124 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{26656EAA-54EB-4E6F-8F85-4F0EF901A406}\ProxyStubClsid32","0.0000106","Desired Access: Read","4060"
"10:46:20.9643388 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{26656EAA-54EB-4E6F-8F85-4F0EF901A406}","0.0000017","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9643563 AM","firefox.exe","7384","RegOpenKey","HKCR\Interface\{26656EAA-54EB-4E6F-8F85-4F0EF901A406}\ProxyStubClsid32","0.0000103","Desired Access: Read","4060"
"10:46:20.9643934 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{26656EAA-54EB-4E6F-8F85-4F0EF901A406}\ProxyStubClsid32","0.0000077","Query: Name","4060"
"10:46:20.9644250 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{26656EAA-54EB-4E6F-8F85-4F0EF901A406}\ProxyStubClsid32","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9644566 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{26656EAA-54EB-4E6F-8F85-4F0EF901A406}\ProxyStubClsid32","0.0000136","Desired Access: Maximum Allowed","4060"
"10:46:20.9644941 AM","firefox.exe","7384","RegQueryValue","HKCR\Interface\{26656EAA-54EB-4E6F-8F85-4F0EF901A406}\ProxyStubClsid32\(Default)","0.0000073","Type: REG_SZ, Length: 78, Data: {1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","4060"
"10:46:20.9645330 AM","firefox.exe","7384","RegCloseKey","HKCR\Interface\{26656EAA-54EB-4E6F-8F85-4F0EF901A406}\ProxyStubClsid32","0.0000034","","4060"
"10:46:20.9645616 AM","firefox.exe","7384","RegCloseKey","HKCR\Interface\{26656EAA-54EB-4E6F-8F85-4F0EF901A406}","0.0000025","","4060"
"10:46:20.9653628 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000069","Query: Name","4060"
"10:46:20.9653919 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9654098 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9654315 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{8A40A45D-055C-4B62-ABD7-6D613E2CEAEC}","0.0000120","Desired Access: Read","4060"
"10:46:20.9654640 AM","firefox.exe","7384","RegOpenKey","HKCR\Interface\{8A40A45D-055C-4B62-ABD7-6D613E2CEAEC}","0.0000204","Desired Access: Read","4060"
"10:46:20.9655058 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{8A40A45D-055C-4B62-ABD7-6D613E2CEAEC}","0.0000059","Query: Name","4060"
"10:46:20.9655271 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{8A40A45D-055C-4B62-ABD7-6D613E2CEAEC}","0.0000017","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9655519 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{8A40A45D-055C-4B62-ABD7-6D613E2CEAEC}\ProxyStubClsid32","0.0000106","Desired Access: Read","4060"
"10:46:20.9655779 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{8A40A45D-055C-4B62-ABD7-6D613E2CEAEC}","0.0000021","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9655958 AM","firefox.exe","7384","RegOpenKey","HKCR\Interface\{8A40A45D-055C-4B62-ABD7-6D613E2CEAEC}\ProxyStubClsid32","0.0000085","Desired Access: Read","4060"
"10:46:20.9656240 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{8A40A45D-055C-4B62-ABD7-6D613E2CEAEC}\ProxyStubClsid32","0.0000059","Query: Name","4060"
"10:46:20.9656457 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{8A40A45D-055C-4B62-ABD7-6D613E2CEAEC}\ProxyStubClsid32","0.0000034","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9656679 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{8A40A45D-055C-4B62-ABD7-6D613E2CEAEC}\ProxyStubClsid32","0.0000098","Desired Access: Maximum Allowed","4060"
"10:46:20.9656935 AM","firefox.exe","7384","RegQueryValue","HKCR\Interface\{8A40A45D-055C-4B62-ABD7-6D613E2CEAEC}\ProxyStubClsid32\(Default)","0.0000051","Type: REG_SZ, Length: 78, Data: {1299CF18-C4F5-4B6A-BB0F-2299F0398E27}","4060"
"10:46:20.9657191 AM","firefox.exe","7384","RegCloseKey","HKCR\Interface\{8A40A45D-055C-4B62-ABD7-6D613E2CEAEC}\ProxyStubClsid32","0.0000017","","4060"
"10:46:20.9657357 AM","firefox.exe","7384","RegCloseKey","HKCR\Interface\{8A40A45D-055C-4B62-ABD7-6D613E2CEAEC}","0.0000018","","4060"
"10:46:20.9672402 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4060"
"10:46:20.9673037 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000056","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","4060"
"10:46:20.9673281 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000085","","4060"
"10:46:20.9675085 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000201","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","4060"
"10:46:20.9675674 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winnsi.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","4060"
"10:46:20.9676041 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winnsi.dll","0.0000026","SyncType: SyncTypeOther","4060"
"10:46:20.9678012 AM","firefox.exe","7384","Load Image","C:\Windows\System32\winnsi.dll","0.0000000","Image Base: 0x7ffb3bf10000, Image Size: 0xb000","4060"
"10:46:20.9678452 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\winnsi.dll","0.0000094","Name: \Windows\System32\winnsi.dll","4060"
"10:46:20.9679800 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000137","","4060"
"10:46:20.9687873 AM","firefox.exe","7384","ReadFile","C:\$Directory","0.0199172","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:20.9698795 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4060"
"10:46:20.9699107 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","4060"
"10:46:20.9699265 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000059","","4060"
"10:46:20.9700400 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000119","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","4060"
"10:46:20.9700686 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dhcpcsvc6.dll","0.0000145","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","4060"
"10:46:20.9701070 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dhcpcsvc6.dll","0.0000017","SyncType: SyncTypeOther","4060"
"10:46:20.9702431 AM","firefox.exe","7384","Load Image","C:\Windows\System32\dhcpcsvc6.dll","0.0000000","Image Base: 0x7ffb3bd90000, Image Size: 0x16000","4060"
"10:46:20.9702857 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000060","Name: \Windows\System32\dhcpcsvc6.dll","4060"
"10:46:20.9703813 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000081","","4060"
"10:46:20.9709701 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9709884 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000064","Desired Access: Read","4060"
"10:46:20.9710059 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000064","Desired Access: Read","4060"
"10:46:20.9710512 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000012","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9710631 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{a07eb9e3-959e-407f-9a91-dd5544973916}","0.0000064","Desired Access: Query Value","4060"
"10:46:20.9710827 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{a07eb9e3-959e-407f-9a91-dd5544973916}\EnableDhcp","0.0000056","Type: REG_DWORD, Length: 4, Data: 1","4060"
"10:46:20.9711036 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000013","","4060"
"10:46:20.9711139 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{a07eb9e3-959e-407f-9a91-dd5544973916}","0.0000008","","4060"
"10:46:20.9711275 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9711374 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000038","Desired Access: Read","4060"
"10:46:20.9711489 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000038","Desired Access: Read","4060"
"10:46:20.9711758 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000012","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9711856 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{18c39297-c55d-40a7-a0d6-6f8c7e22894e}","0.0000030","Desired Access: Query Value","4060"
"10:46:20.9711971 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{18c39297-c55d-40a7-a0d6-6f8c7e22894e}\EnableDhcp","0.0000025","Type: REG_DWORD, Length: 4, Data: 1","4060"
"10:46:20.9712090 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000009","","4060"
"10:46:20.9712180 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{18c39297-c55d-40a7-a0d6-6f8c7e22894e}","0.0000008","","4060"
"10:46:20.9712278 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9712372 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000030","Desired Access: Read","4060"
"10:46:20.9712479 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000029","Desired Access: Read","4060"
"10:46:20.9712688 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000012","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9712794 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{df547340-134f-11e8-9ee0-806e6f6e6963}","0.0000034","Desired Access: Query Value","4060"
"10:46:20.9712910 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{df547340-134f-11e8-9ee0-806e6f6e6963}\EnableDhcp","0.0000017","Length: 16","4060"
"10:46:20.9713016 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000013","","4060"
"10:46:20.9713106 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{df547340-134f-11e8-9ee0-806e6f6e6963}","0.0000013","","4060"
"10:46:20.9713208 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9713298 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000030","Desired Access: Read","4060"
"10:46:20.9713400 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000034","Desired Access: Read","4060"
"10:46:20.9713660 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000013","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9713788 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c1f9b16a-dcc4-426b-8178-e7de614c417c}","0.0000043","Desired Access: Query Value","4060"
"10:46:20.9713951 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c1f9b16a-dcc4-426b-8178-e7de614c417c}\EnableDhcp","0.0000029","Type: REG_DWORD, Length: 4, Data: 1","4060"
"10:46:20.9714117 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000017","","4060"
"10:46:20.9714258 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c1f9b16a-dcc4-426b-8178-e7de614c417c}","0.0000013","","4060"
"10:46:20.9714407 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9714552 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000043","Desired Access: Read","4060"
"10:46:20.9714714 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000052","Desired Access: Read","4060"
"10:46:20.9715060 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000017","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9715209 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c377682c-b43e-4a04-87e6-c1695d3b44f5}","0.0000047","Desired Access: Query Value","4060"
"10:46:20.9715380 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c377682c-b43e-4a04-87e6-c1695d3b44f5}\EnableDhcp","0.0000026","Type: REG_DWORD, Length: 4, Data: 1","4060"
"10:46:20.9715542 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000013","","4060"
"10:46:20.9715679 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c377682c-b43e-4a04-87e6-c1695d3b44f5}","0.0000012","","4060"
"10:46:20.9715849 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9715982 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{A07EB9E3-959E-407F-9A91-DD5544973916}","0.0000051","Desired Access: Read","4060"
"10:46:20.9716144 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{A07EB9E3-959E-407F-9A91-DD5544973916}","0.0000055","Desired Access: Read","4060"
"10:46:20.9716340 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{a07eb9e3-959e-407f-9a91-dd5544973916}\RegistrationEnabled","0.0000034","Length: 16","4060"
"10:46:20.9716494 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{a07eb9e3-959e-407f-9a91-dd5544973916}\RegisterAdapterName","0.0000025","Length: 16","4060"
"10:46:20.9716634 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{a07eb9e3-959e-407f-9a91-dd5544973916}\Domain","0.0000034","Type: REG_SZ, Length: 2, Data: ","4060"
"10:46:20.9716779 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{a07eb9e3-959e-407f-9a91-dd5544973916}\DhcpDomain","0.0000026","Length: 144","4060"
"10:46:20.9716942 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{a07eb9e3-959e-407f-9a91-dd5544973916}","0.0000017","","4060"
"10:46:20.9717095 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9717253 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{A07EB9E3-959E-407F-9A91-DD5544973916}","0.0000051","Desired Access: Read","4060"
"10:46:20.9717428 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{A07EB9E3-959E-407F-9A91-DD5544973916}","0.0000119","Desired Access: Read","4060"
"10:46:20.9717761 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{a07eb9e3-959e-407f-9a91-dd5544973916}\Dhcpv6Domain","0.0000030","Length: 144","4060"
"10:46:20.9717931 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{a07eb9e3-959e-407f-9a91-dd5544973916}","0.0000017","","4060"
"10:46:20.9718725 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9718891 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{18C39297-C55D-40A7-A0D6-6F8C7E22894E}","0.0000052","Desired Access: Read","4060"
"10:46:20.9719062 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{18C39297-C55D-40A7-A0D6-6F8C7E22894E}","0.0000068","Desired Access: Read","4060"
"10:46:20.9719280 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{18c39297-c55d-40a7-a0d6-6f8c7e22894e}\RegistrationEnabled","0.0000030","Length: 16","4060"
"10:46:20.9719433 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{18c39297-c55d-40a7-a0d6-6f8c7e22894e}\RegisterAdapterName","0.0000026","Length: 16","4060"
"10:46:20.9719578 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{18c39297-c55d-40a7-a0d6-6f8c7e22894e}\Domain","0.0000034","Type: REG_SZ, Length: 2, Data: ","4060"
"10:46:20.9719732 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{18c39297-c55d-40a7-a0d6-6f8c7e22894e}\DhcpDomain","0.0000026","Length: 144","4060"
"10:46:20.9719911 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{18c39297-c55d-40a7-a0d6-6f8c7e22894e}","0.0000034","","4060"
"10:46:20.9720052 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9720154 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{18C39297-C55D-40A7-A0D6-6F8C7E22894E}","0.0000039","Desired Access: Read","4060"
"10:46:20.9720270 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{18C39297-C55D-40A7-A0D6-6F8C7E22894E}","0.0000068","Desired Access: Read","4060"
"10:46:20.9720449 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{18c39297-c55d-40a7-a0d6-6f8c7e22894e}\Dhcpv6Domain","0.0000025","Length: 144","4060"
"10:46:20.9720568 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{18c39297-c55d-40a7-a0d6-6f8c7e22894e}","0.0000013","","4060"
"10:46:20.9721029 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9721123 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{DF547340-134F-11E8-9EE0-806E6F6E6963}","0.0000038","Desired Access: Read","4060"
"10:46:20.9721230 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{DF547340-134F-11E8-9EE0-806E6F6E6963}","0.0000042","Desired Access: Read","4060"
"10:46:20.9721358 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{df547340-134f-11e8-9ee0-806e6f6e6963}\RegistrationEnabled","0.0000021","Length: 16","4060"
"10:46:20.9721451 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{df547340-134f-11e8-9ee0-806e6f6e6963}\RegisterAdapterName","0.0000017","Length: 16","4060"
"10:46:20.9721537 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{df547340-134f-11e8-9ee0-806e6f6e6963}\Domain","0.0000017","Length: 144","4060"
"10:46:20.9721622 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{df547340-134f-11e8-9ee0-806e6f6e6963}\DhcpDomain","0.0000017","Length: 144","4060"
"10:46:20.9721724 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{df547340-134f-11e8-9ee0-806e6f6e6963}","0.0000013","","4060"
"10:46:20.9721818 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9721912 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{DF547340-134F-11E8-9EE0-806E6F6E6963}","0.0000034","Desired Access: Read","4060"
"10:46:20.9722015 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{DF547340-134F-11E8-9EE0-806E6F6E6963}","0.0000042","Desired Access: Read","4060"
"10:46:20.9722377 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9722471 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{E5B59EB6-059B-4D5B-83F1-2F764F71CD1B}","0.0000030","Desired Access: Read","4060"
"10:46:20.9722578 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{E5B59EB6-059B-4D5B-83F1-2F764F71CD1B}","0.0000038","Desired Access: Read","4060"
"10:46:20.9722706 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{e5b59eb6-059b-4d5b-83f1-2f764f71cd1b}\RegistrationEnabled","0.0000021","Length: 16","4060"
"10:46:20.9722800 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{e5b59eb6-059b-4d5b-83f1-2f764f71cd1b}\RegisterAdapterName","0.0000025","Length: 16","4060"
"10:46:20.9722902 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{e5b59eb6-059b-4d5b-83f1-2f764f71cd1b}\Domain","0.0000026","Type: REG_SZ, Length: 2, Data: ","4060"
"10:46:20.9723000 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{e5b59eb6-059b-4d5b-83f1-2f764f71cd1b}\DhcpDomain","0.0000030","Type: REG_SZ, Length: 10, Data: lan1","4060"
"10:46:20.9723124 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{e5b59eb6-059b-4d5b-83f1-2f764f71cd1b}","0.0000013","","4060"
"10:46:20.9723491 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9723580 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{C1F9B16A-DCC4-426B-8178-E7DE614C417C}","0.0000035","Desired Access: Read","4060"
"10:46:20.9723683 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{C1F9B16A-DCC4-426B-8178-E7DE614C417C}","0.0000034","Desired Access: Read","4060"
"10:46:20.9723798 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c1f9b16a-dcc4-426b-8178-e7de614c417c}\RegistrationEnabled","0.0000021","Length: 16","4060"
"10:46:20.9723892 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c1f9b16a-dcc4-426b-8178-e7de614c417c}\RegisterAdapterName","0.0000021","Length: 16","4060"
"10:46:20.9723982 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c1f9b16a-dcc4-426b-8178-e7de614c417c}\Domain","0.0000021","Type: REG_SZ, Length: 2, Data: ","4060"
"10:46:20.9724071 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c1f9b16a-dcc4-426b-8178-e7de614c417c}\DhcpDomain","0.0000021","Length: 144","4060"
"10:46:20.9724178 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c1f9b16a-dcc4-426b-8178-e7de614c417c}","0.0000008","","4060"
"10:46:20.9724267 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9724361 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{C1F9B16A-DCC4-426B-8178-E7DE614C417C}","0.0000030","Desired Access: Read","4060"
"10:46:20.9724459 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{C1F9B16A-DCC4-426B-8178-E7DE614C417C}","0.0000060","Desired Access: Read","4060"
"10:46:20.9724613 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{c1f9b16a-dcc4-426b-8178-e7de614c417c}\Dhcpv6Domain","0.0000017","Length: 144","4060"
"10:46:20.9724715 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{c1f9b16a-dcc4-426b-8178-e7de614c417c}","0.0000009","","4060"
"10:46:20.9725082 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9725172 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{C377682C-B43E-4A04-87E6-C1695D3B44F5}","0.0000034","Desired Access: Read","4060"
"10:46:20.9725274 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{C377682C-B43E-4A04-87E6-C1695D3B44F5}","0.0000039","Desired Access: Read","4060"
"10:46:20.9725398 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c377682c-b43e-4a04-87e6-c1695d3b44f5}\RegistrationEnabled","0.0000021","Length: 16","4060"
"10:46:20.9725496 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c377682c-b43e-4a04-87e6-c1695d3b44f5}\RegisterAdapterName","0.0000111","Length: 16","4060"
"10:46:20.9725692 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c377682c-b43e-4a04-87e6-c1695d3b44f5}\Domain","0.0000022","Type: REG_SZ, Length: 2, Data: ","4060"
"10:46:20.9725786 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c377682c-b43e-4a04-87e6-c1695d3b44f5}\DhcpDomain","0.0000017","Length: 144","4060"
"10:46:20.9725884 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c377682c-b43e-4a04-87e6-c1695d3b44f5}","0.0000009","","4060"
"10:46:20.9725974 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9726064 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{C377682C-B43E-4A04-87E6-C1695D3B44F5}","0.0000030","Desired Access: Read","4060"
"10:46:20.9726162 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{C377682C-B43E-4A04-87E6-C1695D3B44F5}","0.0000055","Desired Access: Read","4060"
"10:46:20.9726311 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{c377682c-b43e-4a04-87e6-c1695d3b44f5}\Dhcpv6Domain","0.0000021","Length: 144","4060"
"10:46:20.9726409 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{c377682c-b43e-4a04-87e6-c1695d3b44f5}","0.0000013","","4060"
"10:46:20.9728321 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9728436 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Policies\Microsoft\Windows NT\DNSClient","0.0000077","Desired Access: Read","4060"
"10:46:20.9728615 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9728705 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters","0.0000034","Desired Access: Read","4060"
"10:46:20.9728811 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000035","Desired Access: Read","4060"
"10:46:20.9728944 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\SearchList","0.0000025","Length: 12","4060"
"10:46:20.9729072 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000008","","4060"
"10:46:20.9729174 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9729328 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters\DnsConnections","0.0000064","Desired Access: Read","4060"
"10:46:20.9729520 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DnsConnections","0.0000102","Desired Access: Read","4060"
"10:46:20.9729784 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DnsConnections","0.0000034","Query: Cached, SubKeys: 0, Values: 0","4060"
"10:46:20.9729959 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DnsConnections","0.0000009","","4060"
"10:46:20.9730074 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9730164 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters\DnsConnectionsProxies","0.0000038","Desired Access: Read","4060"
"10:46:20.9730275 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DnsConnectionsProxies","0.0000060","Desired Access: Read","4060"
"10:46:20.9730433 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DnsConnectionsProxies","0.0000017","Query: Cached, SubKeys: 0, Values: 0","4060"
"10:46:20.9730539 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DnsConnectionsProxies","0.0000013","","4060"
"10:46:20.9730642 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9730736 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters\DnsPolicyConfig","0.0000034","Desired Access: Read","4060"
"10:46:20.9730834 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DnsPolicyConfig","0.0000034","Desired Access: Read","4060"
"10:46:20.9730958 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9731043 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Policies\Microsoft\Windows NT\DNSClient\DnsPolicyConfig","0.0000060","Desired Access: Read","4060"
"10:46:20.9759028 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9759237 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000068","Desired Access: Read","4060"
"10:46:20.9759425 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000068","Desired Access: Read","4060"
"10:46:20.9759822 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000012","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9759937 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{a07eb9e3-959e-407f-9a91-dd5544973916}","0.0000038","Desired Access: Query Value","4060"
"10:46:20.9760086 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{a07eb9e3-959e-407f-9a91-dd5544973916}\EnableDhcp","0.0000085","Type: REG_DWORD, Length: 4, Data: 1","4060"
"10:46:20.9760351 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000017","","4060"
"10:46:20.9760470 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{a07eb9e3-959e-407f-9a91-dd5544973916}","0.0000009","","4060"
"10:46:20.9760585 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9760688 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000034","Desired Access: Read","4060"
"10:46:20.9760803 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000034","Desired Access: Read","4060"
"10:46:20.9761067 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000009","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9761161 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{18c39297-c55d-40a7-a0d6-6f8c7e22894e}","0.0000034","Desired Access: Query Value","4060"
"10:46:20.9761281 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{18c39297-c55d-40a7-a0d6-6f8c7e22894e}\EnableDhcp","0.0000025","Type: REG_DWORD, Length: 4, Data: 1","4060"
"10:46:20.9761405 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000008","","4060"
"10:46:20.9761494 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{18c39297-c55d-40a7-a0d6-6f8c7e22894e}","0.0000009","","4060"
"10:46:20.9761592 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9761686 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000030","Desired Access: Read","4060"
"10:46:20.9761789 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000034","Desired Access: Read","4060"
"10:46:20.9761993 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000013","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9762087 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{df547340-134f-11e8-9ee0-806e6f6e6963}","0.0000030","Desired Access: Query Value","4060"
"10:46:20.9762198 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{df547340-134f-11e8-9ee0-806e6f6e6963}\EnableDhcp","0.0000021","Length: 16","4060"
"10:46:20.9762305 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000008","","4060"
"10:46:20.9762390 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{df547340-134f-11e8-9ee0-806e6f6e6963}","0.0000009","","4060"
"10:46:20.9762488 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9762578 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000030","Desired Access: Read","4060"
"10:46:20.9762676 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000034","Desired Access: Read","4060"
"10:46:20.9762923 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000009","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9763013 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c1f9b16a-dcc4-426b-8178-e7de614c417c}","0.0000030","Desired Access: Query Value","4060"
"10:46:20.9763120 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c1f9b16a-dcc4-426b-8178-e7de614c417c}\EnableDhcp","0.0000021","Type: REG_DWORD, Length: 4, Data: 1","4060"
"10:46:20.9763226 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000009","","4060"
"10:46:20.9763307 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c1f9b16a-dcc4-426b-8178-e7de614c417c}","0.0000013","","4060"
"10:46:20.9763406 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9763495 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000030","Desired Access: Read","4060"
"10:46:20.9763593 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000030","Desired Access: Read","4060"
"10:46:20.9763824 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000008","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9763913 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c377682c-b43e-4a04-87e6-c1695d3b44f5}","0.0000030","Desired Access: Query Value","4060"
"10:46:20.9764020 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c377682c-b43e-4a04-87e6-c1695d3b44f5}\EnableDhcp","0.0000021","Type: REG_DWORD, Length: 4, Data: 1","4060"
"10:46:20.9764127 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces","0.0000008","","4060"
"10:46:20.9764212 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c377682c-b43e-4a04-87e6-c1695d3b44f5}","0.0000009","","4060"
"10:46:20.9764323 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9764413 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{A07EB9E3-959E-407F-9A91-DD5544973916}","0.0000034","Desired Access: Read","4060"
"10:46:20.9764515 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{A07EB9E3-959E-407F-9A91-DD5544973916}","0.0000034","Desired Access: Read","4060"
"10:46:20.9764639 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{a07eb9e3-959e-407f-9a91-dd5544973916}\RegistrationEnabled","0.0000025","Length: 16","4060"
"10:46:20.9764737 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{a07eb9e3-959e-407f-9a91-dd5544973916}\RegisterAdapterName","0.0000021","Length: 16","4060"
"10:46:20.9764831 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{a07eb9e3-959e-407f-9a91-dd5544973916}\Domain","0.0000025","Type: REG_SZ, Length: 2, Data: ","4060"
"10:46:20.9764925 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{a07eb9e3-959e-407f-9a91-dd5544973916}\DhcpDomain","0.0000021","Length: 144","4060"
"10:46:20.9765023 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{a07eb9e3-959e-407f-9a91-dd5544973916}","0.0000012","","4060"
"10:46:20.9765117 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9765202 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{A07EB9E3-959E-407F-9A91-DD5544973916}","0.0000034","Desired Access: Read","4060"
"10:46:20.9765300 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{A07EB9E3-959E-407F-9A91-DD5544973916}","0.0000043","Desired Access: Read","4060"
"10:46:20.9765432 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{a07eb9e3-959e-407f-9a91-dd5544973916}\Dhcpv6Domain","0.0000022","Length: 144","4060"
"10:46:20.9765535 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{a07eb9e3-959e-407f-9a91-dd5544973916}","0.0000008","","4060"
"10:46:20.9766132 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9766222 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{18C39297-C55D-40A7-A0D6-6F8C7E22894E}","0.0000047","Desired Access: Read","4060"
"10:46:20.9766341 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{18C39297-C55D-40A7-A0D6-6F8C7E22894E}","0.0000038","Desired Access: Read","4060"
"10:46:20.9766465 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{18c39297-c55d-40a7-a0d6-6f8c7e22894e}\RegistrationEnabled","0.0000021","Length: 16","4060"
"10:46:20.9766563 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{18c39297-c55d-40a7-a0d6-6f8c7e22894e}\RegisterAdapterName","0.0000021","Length: 16","4060"
"10:46:20.9766657 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{18c39297-c55d-40a7-a0d6-6f8c7e22894e}\Domain","0.0000021","Type: REG_SZ, Length: 2, Data: ","4060"
"10:46:20.9766751 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{18c39297-c55d-40a7-a0d6-6f8c7e22894e}\DhcpDomain","0.0000021","Length: 144","4060"
"10:46:20.9766849 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{18c39297-c55d-40a7-a0d6-6f8c7e22894e}","0.0000013","","4060"
"10:46:20.9766955 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9767083 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{18C39297-C55D-40A7-A0D6-6F8C7E22894E}","0.0000043","Desired Access: Read","4060"
"10:46:20.9767241 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{18C39297-C55D-40A7-A0D6-6F8C7E22894E}","0.0000052","Desired Access: Read","4060"
"10:46:20.9767421 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{18c39297-c55d-40a7-a0d6-6f8c7e22894e}\Dhcpv6Domain","0.0000029","Length: 144","4060"
"10:46:20.9767578 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{18c39297-c55d-40a7-a0d6-6f8c7e22894e}","0.0000013","","4060"
"10:46:20.9768133 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9768274 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{DF547340-134F-11E8-9EE0-806E6F6E6963}","0.0000047","Desired Access: Read","4060"
"10:46:20.9768432 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{DF547340-134F-11E8-9EE0-806E6F6E6963}","0.0000068","Desired Access: Read","4060"
"10:46:20.9768619 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{df547340-134f-11e8-9ee0-806e6f6e6963}\RegistrationEnabled","0.0000026","Length: 16","4060"
"10:46:20.9768760 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{df547340-134f-11e8-9ee0-806e6f6e6963}\RegisterAdapterName","0.0000022","Length: 16","4060"
"10:46:20.9768893 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{df547340-134f-11e8-9ee0-806e6f6e6963}\Domain","0.0000025","Length: 144","4060"
"10:46:20.9769025 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{df547340-134f-11e8-9ee0-806e6f6e6963}\DhcpDomain","0.0000025","Length: 144","4060"
"10:46:20.9769178 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{df547340-134f-11e8-9ee0-806e6f6e6963}","0.0000013","","4060"
"10:46:20.9769315 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9769460 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{DF547340-134F-11E8-9EE0-806E6F6E6963}","0.0000043","Desired Access: Read","4060"
"10:46:20.9769618 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{DF547340-134F-11E8-9EE0-806E6F6E6963}","0.0000051","Desired Access: Read","4060"
"10:46:20.9770096 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9770237 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{E5B59EB6-059B-4D5B-83F1-2F764F71CD1B}","0.0000042","Desired Access: Read","4060"
"10:46:20.9770394 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{E5B59EB6-059B-4D5B-83F1-2F764F71CD1B}","0.0000056","Desired Access: Read","4060"
"10:46:20.9770574 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{e5b59eb6-059b-4d5b-83f1-2f764f71cd1b}\RegistrationEnabled","0.0000034","Length: 16","4060"
"10:46:20.9770710 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{e5b59eb6-059b-4d5b-83f1-2f764f71cd1b}\RegisterAdapterName","0.0000030","Length: 16","4060"
"10:46:20.9770834 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{e5b59eb6-059b-4d5b-83f1-2f764f71cd1b}\Domain","0.0000021","Type: REG_SZ, Length: 2, Data: ","4060"
"10:46:20.9770928 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{e5b59eb6-059b-4d5b-83f1-2f764f71cd1b}\DhcpDomain","0.0000030","Type: REG_SZ, Length: 10, Data: lan1","4060"
"10:46:20.9771047 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{e5b59eb6-059b-4d5b-83f1-2f764f71cd1b}","0.0000013","","4060"
"10:46:20.9771423 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9771517 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{C1F9B16A-DCC4-426B-8178-E7DE614C417C}","0.0000034","Desired Access: Read","4060"
"10:46:20.9771619 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{C1F9B16A-DCC4-426B-8178-E7DE614C417C}","0.0000034","Desired Access: Read","4060"
"10:46:20.9771738 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c1f9b16a-dcc4-426b-8178-e7de614c417c}\RegistrationEnabled","0.0000022","Length: 16","4060"
"10:46:20.9771828 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c1f9b16a-dcc4-426b-8178-e7de614c417c}\RegisterAdapterName","0.0000021","Length: 16","4060"
"10:46:20.9771918 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c1f9b16a-dcc4-426b-8178-e7de614c417c}\Domain","0.0000021","Type: REG_SZ, Length: 2, Data: ","4060"
"10:46:20.9772007 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c1f9b16a-dcc4-426b-8178-e7de614c417c}\DhcpDomain","0.0000022","Length: 144","4060"
"10:46:20.9772110 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c1f9b16a-dcc4-426b-8178-e7de614c417c}","0.0000012","","4060"
"10:46:20.9772199 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9772289 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{C1F9B16A-DCC4-426B-8178-E7DE614C417C}","0.0000030","Desired Access: Read","4060"
"10:46:20.9772383 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{C1F9B16A-DCC4-426B-8178-E7DE614C417C}","0.0000034","Desired Access: Read","4060"
"10:46:20.9772502 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{c1f9b16a-dcc4-426b-8178-e7de614c417c}\Dhcpv6Domain","0.0000021","Length: 144","4060"
"10:46:20.9772605 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{c1f9b16a-dcc4-426b-8178-e7de614c417c}","0.0000012","","4060"
"10:46:20.9772954 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9773044 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{C377682C-B43E-4A04-87E6-C1695D3B44F5}","0.0000034","Desired Access: Read","4060"
"10:46:20.9773142 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{C377682C-B43E-4A04-87E6-C1695D3B44F5}","0.0000039","Desired Access: Read","4060"
"10:46:20.9773262 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c377682c-b43e-4a04-87e6-c1695d3b44f5}\RegistrationEnabled","0.0000021","Length: 16","4060"
"10:46:20.9773355 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c377682c-b43e-4a04-87e6-c1695d3b44f5}\RegisterAdapterName","0.0000018","Length: 16","4060"
"10:46:20.9773441 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c377682c-b43e-4a04-87e6-c1695d3b44f5}\Domain","0.0000021","Type: REG_SZ, Length: 2, Data: ","4060"
"10:46:20.9773530 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c377682c-b43e-4a04-87e6-c1695d3b44f5}\DhcpDomain","0.0000022","Length: 144","4060"
"10:46:20.9773629 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c377682c-b43e-4a04-87e6-c1695d3b44f5}","0.0000012","","4060"
"10:46:20.9773718 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9773803 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{C377682C-B43E-4A04-87E6-C1695D3B44F5}","0.0000035","Desired Access: Read","4060"
"10:46:20.9773902 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{C377682C-B43E-4A04-87E6-C1695D3B44F5}","0.0000034","Desired Access: Read","4060"
"10:46:20.9774017 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{c377682c-b43e-4a04-87e6-c1695d3b44f5}\Dhcpv6Domain","0.0000021","Length: 144","4060"
"10:46:20.9774115 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{c377682c-b43e-4a04-87e6-c1695d3b44f5}","0.0000013","","4060"
"10:46:20.9775651 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9775753 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Policies\Microsoft\Windows NT\DNSClient","0.0000073","Desired Access: Read","4060"
"10:46:20.9775928 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9776014 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters","0.0000034","Desired Access: Read","4060"
"10:46:20.9776116 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000034","Desired Access: Read","4060"
"10:46:20.9776248 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\SearchList","0.0000026","Length: 12","4060"
"10:46:20.9776368 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000008","","4060"
"10:46:20.9776466 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9776555 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters\DnsConnections","0.0000039","Desired Access: Read","4060"
"10:46:20.9776675 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DnsConnections","0.0000119","Desired Access: Read","4060"
"10:46:20.9776927 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DnsConnections","0.0000030","Query: Cached, SubKeys: 0, Values: 0","4060"
"10:46:20.9777042 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DnsConnections","0.0000013","","4060"
"10:46:20.9777140 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9777225 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters\DnsConnectionsProxies","0.0000030","Desired Access: Read","4060"
"10:46:20.9777323 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DnsConnectionsProxies","0.0000035","Desired Access: Read","4060"
"10:46:20.9777439 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DnsConnectionsProxies","0.0000021","Query: Cached, SubKeys: 0, Values: 0","4060"
"10:46:20.9777537 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DnsConnectionsProxies","0.0000013","","4060"
"10:46:20.9777635 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9777720 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters\DnsPolicyConfig","0.0000026","Desired Access: Read","4060"
"10:46:20.9777810 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DnsPolicyConfig","0.0000038","Desired Access: Read","4060"
"10:46:20.9777942 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","4060"
"10:46:20.9778023 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Policies\Microsoft\Windows NT\DNSClient\DnsPolicyConfig","0.0000047","Desired Access: Read","4060"
"10:46:20.9889592 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\startupCache.8.little","0.0082526","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:20.9972630 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\startupCache.8.little","0.0000060","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","5728"
"10:46:20.9972865 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\startupCache.8.little","0.0000064","CreationTime: 3/25/2020 10:27:11 AM, LastAccessTime: 3/25/2020 10:27:11 AM, LastWriteTime: 3/25/2020 10:34:50 AM, ChangeTime: 3/25/2020 10:34:50 AM, FileAttributes: A, AllocationSize: 1,871,872, EndOfFile: 1,870,629, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x17000000025834, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","5728"
"10:46:20.9973249 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\startupCache.8.little","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:20.9973415 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\startupCache.8.little","0.0000035","AllocationSize: 1,871,872, EndOfFile: 1,870,629, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:20.9973646 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\startupCache.8.little","0.0000017","SyncType: SyncTypeOther","5728"
"10:46:20.9974585 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 7916","5728"
"10:46:20.9974909 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\startupCache.8.little","0.0371891","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:20.9977183 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\startupCache.8.little","0.5472583","Offset: 32,768, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7916"
"10:46:20.9978855 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\startupCache.8.little","0.0976881","Offset: 1,081,344, Length: 789,285, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7916"
"10:46:21.0445911 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 7260","5728"
"10:46:21.0447886 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 740","5728"
"10:46:21.0457913 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 6932","5728"
"10:46:21.0474476 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000692","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6932"
"10:46:21.0476200 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000158","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","6932"
"10:46:21.0476823 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000431","","6932"
"10:46:21.0479767 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Policies\Microsoft\WindowsStore","0.0000320","Desired Access: Read","6932"
"10:46:21.0480684 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000401","Desired Access: Read","6932"
"10:46:21.0485924 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000849","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","6932"
"10:46:21.0486342 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\WMI\Security\509962e0-406b-46f4-99ba-5a009f8d2225","0.0001156","Length: 524","5728"
"10:46:21.0487635 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000132","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","6932"
"10:46:21.0488198 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000141","AllocationSize: 12,288, EndOfFile: 11,776, NumberOfLinks: 4, DeletePending: False, Directory: False","6932"
"10:46:21.0489068 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000069","SyncType: SyncTypeOther","6932"
"10:46:21.0491645 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 8008","5728"
"10:46:21.0494423 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 6848","5728"
"10:46:21.0502432 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0001058","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6932"
"10:46:21.0504864 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000204","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","6932"
"10:46:21.0505802 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000342","","6932"
"10:46:21.0507338 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000866","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","6848"
"10:46:21.0507795 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0003456","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.0509288 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DataExchange.dll","0.0000171","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","6848"
"10:46:21.0510700 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DataExchange.dll","0.0000116","SyncType: SyncTypeOther","6848"
"10:46:21.0512889 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000179","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","5728"
"10:46:21.0513802 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000248","CreationTime: 3/26/2020 10:35:25 AM, LastAccessTime: 3/26/2020 10:35:40 AM, LastWriteTime: 3/26/2020 10:35:40 AM, ChangeTime: 3/26/2020 10:35:41 AM, FileAttributes: A, AllocationSize: 16,384, EndOfFile: 13,482, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0xf000000013760, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","5728"
"10:46:21.0514280 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000248","Query: Name","8008"
"10:46:21.0515185 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000076","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0515304 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0698160","Offset: 0, Length: 13,482, Priority: Normal","5728"
"10:46:21.0515744 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000059","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0516465 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000277","Desired Access: Read","8008"
"10:46:21.0517207 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0695570","Offset: 0, Length: 13,482, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:21.0517442 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000653","Desired Access: Read","8008"
"10:46:21.0518807 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000218","Query: Name","8008"
"10:46:21.0519473 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000751","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6932"
"10:46:21.0519507 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000064","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0520330 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\TreatAs","0.0000286","Desired Access: Query Value","8008"
"10:46:21.0521405 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000188","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","6932"
"10:46:21.0522191 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000307","","6932"
"10:46:21.0522340 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000072","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0522515 AM","firefox.exe","7384","Load Image","C:\Windows\System32\DataExchange.dll","0.0000000","Image Base: 0x7ffb29d40000, Image Size: 0x58000","6848"
"10:46:21.0523018 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\TreatAs","0.0000171","Desired Access: Query Value","8008"
"10:46:21.0523616 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\DataExchange.dll","0.0000290","Name: \Windows\System32\DataExchange.dll","6848"
"10:46:21.0523663 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000187","Query: Name","8008"
"10:46:21.0524524 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000180","Query: Name","8008"
"10:46:21.0525211 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000064","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0525514 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0737985","Offset: 62,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0526035 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000281","Desired Access: Maximum Allowed","8008"
"10:46:21.0526858 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\(Default)","0.0000158","Length: 12","8008"
"10:46:21.0527140 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0738945","Offset: 66,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0527558 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000183","Query: Name","8008"
"10:46:21.0528224 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000064","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0528381 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0740490","Offset: 70,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0528996 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000252","Desired Access: Maximum Allowed","8008"
"10:46:21.0529849 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0751063","Offset: 74,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0530225 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\(Default)","0.0000175","Type: REG_SZ, Length: 26, Data: WBEM Locator","8008"
"10:46:21.0530976 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000192","Query: Name","8008"
"10:46:21.0531104 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0752474","Offset: 78,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0531675 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000069","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0532149 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0763871","Offset: 82,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0532486 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000265","Desired Access: Read","8008"
"10:46:21.0533301 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0765582","Offset: 87,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0533335 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000077","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0533979 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000372","Desired Access: Read","8008"
"10:46:21.0534402 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0771337","Offset: 91,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0534986 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000802","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6932"
"10:46:21.0535072 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000196","Query: Name","8008"
"10:46:21.0535473 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0773641","Offset: 95,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0535852 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000064","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0536552 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0780165","Offset: 99,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0536992 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000200","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","6932"
"10:46:21.0537068 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000265","Desired Access: Maximum Allowed","8008"
"10:46:21.0537627 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0782145","Offset: 103,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0537828 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000294","","6932"
"10:46:21.0537854 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32\InprocServer32","0.0000140","Length: 12","8008"
"10:46:21.0538626 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000196","Query: Name","8008"
"10:46:21.0538784 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0782554","Offset: 107,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0539326 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000064","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0539863 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0789736","Offset: 111,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0540081 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000269","Desired Access: Maximum Allowed","8008"
"10:46:21.0540857 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32\(Default)","0.0000222","Length: 12","8008"
"10:46:21.0540951 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0791429","Offset: 115,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0541608 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000196","Query: Name","8008"
"10:46:21.0542048 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0792299","Offset: 119,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0542321 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000072","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0542948 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0799950","Offset: 123,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0543114 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000256","Desired Access: Maximum Allowed","8008"
"10:46:21.0543810 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0801865","Offset: 128,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0543874 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32\(Default)","0.0000175","Type: REG_EXPAND_SZ, Length: 80, Data: %systemroot%\system32\wbem\wbemprox.dll","8008"
"10:46:21.0544646 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000188","Query: Name","8008"
"10:46:21.0544710 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0802860","Offset: 132,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0545303 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000064","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0545559 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0810698","Offset: 136,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0546046 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000247","Desired Access: Maximum Allowed","8008"
"10:46:21.0546421 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0811615","Offset: 140,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0546788 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32\(Default)","0.0000154","Type: REG_EXPAND_SZ, Length: 80, Data: %systemroot%\system32\wbem\wbemprox.dll","8008"
"10:46:21.0547266 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0814209","Offset: 144,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0547564 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000184","Query: Name","8008"
"10:46:21.0548136 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0825256","Offset: 148,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0548243 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000072","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0549015 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000248","Desired Access: Maximum Allowed","8008"
"10:46:21.0549049 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0825857","Offset: 152,576, Length: 512, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0549783 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32\ThreadingModel","0.0000158","Type: REG_SZ, Length: 10, Data: Both","8008"
"10:46:21.0550265 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000730","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6932"
"10:46:21.0550312 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0832552","Offset: 206,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0550679 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000085","","8008"
"10:46:21.0551183 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0835393","Offset: 210,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0551294 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000183","Query: Name","8008"
"10:46:21.0552006 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0007330","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0552066 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0836067","Offset: 215,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0552134 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000192","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","6932"
"10:46:21.0552992 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000345","","6932"
"10:46:21.0553312 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0836988","Offset: 236,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0554216 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0837719","Offset: 240,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0555078 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0838806","Offset: 244,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0555927 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0839600","Offset: 248,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0556768 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0840671","Offset: 252,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0557600 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0841554","Offset: 256,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0558444 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0842391","Offset: 260,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0559306 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0843393","Offset: 264,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0560168 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0850728","Offset: 268,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0560236 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocHandler32","0.0000278","Desired Access: Query Value","8008"
"10:46:21.0561064 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000073","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0561103 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0851619","Offset: 272,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0561726 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocHandler32","0.0000187","Desired Access: Query Value","8008"
"10:46:21.0561973 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0852895","Offset: 276,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0562459 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000184","Query: Name","8008"
"10:46:21.0562843 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0853843","Offset: 281,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0563159 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000068","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0563731 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0854853","Offset: 285,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0563931 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocHandler","0.0000252","Desired Access: Query Value","8008"
"10:46:21.0564358 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000704","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6932"
"10:46:21.0564606 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0855548","Offset: 289,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0564631 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000064","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0565241 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocHandler","0.0000162","Desired Access: Query Value","8008"
"10:46:21.0565484 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0856313","Offset: 293,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0566274 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000072","","8008"
"10:46:21.0566632 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0856880","Offset: 297,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0566683 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000222","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","6932"
"10:46:21.0567579 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000333","","6932"
"10:46:21.0567631 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0857447","Offset: 301,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0568548 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0858198","Offset: 305,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0569214 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000200","Query: Name","8008"
"10:46:21.0569435 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0858809","Offset: 309,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0570092 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000073","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0570314 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0859338","Offset: 313,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0570715 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000060","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0571189 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0860063","Offset: 317,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0571458 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000209","Desired Access: Read","8008"
"10:46:21.0572094 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0860617","Offset: 322,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.0572379 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000299","Desired Access: Read","8008"
"10:46:21.0573348 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000200","Query: Name","8008"
"10:46:21.0574133 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000068","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0574995 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\TreatAs","0.0000252","Desired Access: Query Value","8008"
"10:46:21.0575793 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000072","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0576475 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\TreatAs","0.0000171","Desired Access: Query Value","8008"
"10:46:21.0577188 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000188","Query: Name","8008"
"10:46:21.0578084 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000175","Query: Name","8008"
"10:46:21.0578848 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000072","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0579735 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000427","Desired Access: Maximum Allowed","8008"
"10:46:21.0579983 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshqos.dll","0.0000904","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6932"
"10:46:21.0580780 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\(Default)","0.0000158","Length: 12","8008"
"10:46:21.0581544 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000184","Query: Name","8008"
"10:46:21.0582129 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshqos.dll","0.0000192","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:11:07 PM, FileAttributes: A","6932"
"10:46:21.0582270 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000196","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0583046 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshqos.dll","0.0000294","","6932"
"10:46:21.0583255 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000248","Desired Access: Maximum Allowed","8008"
"10:46:21.0584057 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\(Default)","0.0000145","Type: REG_SZ, Length: 26, Data: WBEM Locator","8008"
"10:46:21.0584744 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000141","Query: Name","8008"
"10:46:21.0585243 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000039","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0585777 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000175","Desired Access: Read","8008"
"10:46:21.0586285 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000042","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0586694 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000141","Desired Access: Read","8008"
"10:46:21.0587240 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000133","Query: Name","8008"
"10:46:21.0587727 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000042","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0588230 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000162","Desired Access: Maximum Allowed","8008"
"10:46:21.0588751 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32\InprocServer32","0.0000094","Length: 12","8008"
"10:46:21.0589182 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000119","Query: Name","8008"
"10:46:21.0589634 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000043","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0590107 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000150","Desired Access: Maximum Allowed","8008"
"10:46:21.0590590 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32\(Default)","0.0000089","Length: 12","8008"
"10:46:21.0591033 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000124","Query: Name","8008"
"10:46:21.0591511 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000043","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0591998 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000153","Desired Access: Maximum Allowed","8008"
"10:46:21.0592083 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshqos.dll","0.0000819","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","6932"
"10:46:21.0592497 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32\(Default)","0.0000102","Type: REG_EXPAND_SZ, Length: 80, Data: %systemroot%\system32\wbem\wbemprox.dll","8008"
"10:46:21.0593005 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000119","Query: Name","8008"
"10:46:21.0593465 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000039","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0593939 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000149","Desired Access: Maximum Allowed","8008"
"10:46:21.0594421 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32\(Default)","0.0000090","Type: REG_EXPAND_SZ, Length: 80, Data: %systemroot%\system32\wbem\wbemprox.dll","8008"
"10:46:21.0594647 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000167","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","6932"
"10:46:21.0594925 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000123","Query: Name","8008"
"10:46:21.0595398 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000043","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0595885 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000149","Desired Access: Maximum Allowed","8008"
"10:46:21.0596439 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32\ThreadingModel","0.0000103","Type: REG_SZ, Length: 10, Data: Both","8008"
"10:46:21.0597088 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocServer32","0.0000051","","8008"
"10:46:21.0597318 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000120","SyncType: SyncTypeOther","6932"
"10:46:21.0597519 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000119","Query: Name","8008"
"10:46:21.0598009 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000107","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0598773 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocHandler32","0.0000230","Desired Access: Query Value","8008"
"10:46:21.0599567 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000064","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0599695 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\wshqos.dll","0.0000273","Name: \Windows\System32\wshqos.dll","6932"
"10:46:21.0600232 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocHandler32","0.0000171","Desired Access: Query Value","8008"
"10:46:21.0600992 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000179","Query: Name","8008"
"10:46:21.0601098 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshqos.dll","0.0000308","","6932"
"10:46:21.0601755 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000064","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0602566 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocHandler","0.0000235","Desired Access: Query Value","8008"
"10:46:21.0603373 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000059","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0603513 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000410","Desired Access: Read","6932"
"10:46:21.0604025 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\InprocHandler","0.0000141","Desired Access: Query Value","8008"
"10:46:21.0604734 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000175","Query: Name","8008"
"10:46:21.0605463 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000060","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0606270 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\LocalServer32","0.0000307","Desired Access: Read","8008"
"10:46:21.0607161 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000231","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0608463 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\LocalServer32","0.0000222","Desired Access: Read","8008"
"10:46:21.0609559 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000248","Query: Name","8008"
"10:46:21.0609956 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000627","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","6932"
"10:46:21.0610472 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000064","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0611402 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000120","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","6932"
"10:46:21.0611441 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000307","Desired Access: Maximum Allowed","8008"
"10:46:21.0611987 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000136","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","6932"
"10:46:21.0612367 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\AppID","0.0000452","Length: 112","8008"
"10:46:21.0613263 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000102","SyncType: SyncTypeOther","6932"
"10:46:21.0613561 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000197","Query: Name","8008"
"10:46:21.0614376 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000060","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0615319 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\LocalServer","0.0000273","Desired Access: Query Value","8008"
"10:46:21.0616019 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000328","","6932"
"10:46:21.0616177 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000064","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0616919 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\LocalServer","0.0000167","Desired Access: Query Value","8008"
"10:46:21.0617777 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000179","Query: Name","8008"
"10:46:21.0618566 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000060","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0619125 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000060","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0619808 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000205","Desired Access: Read","8008"
"10:46:21.0620695 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000286","Desired Access: Read","8008"
"10:46:21.0621668 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000188","Query: Name","8008"
"10:46:21.0622427 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000069","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0623281 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\Elevation","0.0000252","Desired Access: Read","8008"
"10:46:21.0624258 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000072","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0624872 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\Elevation","0.0000120","Desired Access: Read","8008"
"10:46:21.0625512 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000056","","8008"
"10:46:21.0626046 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000042","","8008"
"10:46:21.0626703 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000119","Query: Name","8008"
"10:46:21.0627193 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000034","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0627518 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000038","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0627910 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000132","Desired Access: Read","8008"
"10:46:21.0628422 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000188","Desired Access: Read","8008"
"10:46:21.0629007 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000123","Query: Name","8008"
"10:46:21.0629450 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000039","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0629937 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\TreatAs","0.0000166","Desired Access: Read","8008"
"10:46:21.0630415 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000042","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0630773 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshqos.dll","0.0000960","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6932"
"10:46:21.0631123 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}\TreatAs","0.0000128","Desired Access: Read","8008"
"10:46:21.0631656 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{4590F811-1D3A-11D0-891F-00AA004B2E24}","0.0000043","","8008"
"10:46:21.0633073 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshqos.dll","0.0000196","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:11:07 PM, FileAttributes: A","6932"
"10:46:21.0634238 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshqos.dll","0.0000204","","6932"
"10:46:21.0638282 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshqos.dll","0.0000389","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","6932"
"10:46:21.0638402 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000328","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8008"
"10:46:21.0639242 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000077","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","8008"
"10:46:21.0639477 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000081","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","6932"
"10:46:21.0639609 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000116","","8008"
"10:46:21.0640646 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000056","SyncType: SyncTypeOther","6932"
"10:46:21.0641649 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\wshqos.dll","0.0000124","Name: \Windows\System32\wshqos.dll","6932"
"10:46:21.0642076 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000281","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8008"
"10:46:21.0642366 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshqos.dll","0.0000170","","6932"
"10:46:21.0642916 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\wbemprox.dll","0.0000111","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8008"
"10:46:21.0643496 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\wbemprox.dll","0.0000039","SyncType: SyncTypeOther","8008"
"10:46:21.0643748 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000248","Desired Access: Read","6932"
"10:46:21.0644947 AM","firefox.exe","7384","Load Image","C:\Windows\System32\wbem\wbemprox.dll","0.0000000","Image Base: 0x7ffb36180000, Image Size: 0x11000","8008"
"10:46:21.0645395 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000098","Name: \Windows\System32\wbem\wbemprox.dll","8008"
"10:46:21.0647524 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000444","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","6932"
"10:46:21.0647558 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000162","","8008"
"10:46:21.0648505 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000081","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","6932"
"10:46:21.0648924 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000089","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","6932"
"10:46:21.0649632 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000051","SyncType: SyncTypeOther","6932"
"10:46:21.0651087 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000170","","6932"
"10:46:21.0652401 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000324","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8008"
"10:46:21.0653194 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000069","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","8008"
"10:46:21.0653472 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000106","","8008"
"10:46:21.0657030 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000312","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8008"
"10:46:21.0657879 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbemcomn.dll","0.0000107","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8008"
"10:46:21.0658447 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbemcomn.dll","0.0000034","SyncType: SyncTypeOther","8008"
"10:46:21.0658903 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshqos.dll","0.0000389","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6932"
"10:46:21.0659786 AM","firefox.exe","7384","Load Image","C:\Windows\System32\wbemcomn.dll","0.0000000","Image Base: 0x7ffb37c30000, Image Size: 0x83000","8008"
"10:46:21.0659927 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshqos.dll","0.0000094","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:11:07 PM, FileAttributes: A","6932"
"10:46:21.0660243 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000098","Name: \Windows\System32\wbemcomn.dll","8008"
"10:46:21.0660367 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshqos.dll","0.0000141","","6932"
"10:46:21.0664036 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000166","","8008"
"10:46:21.0664185 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshqos.dll","0.0000367","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","6932"
"10:46:21.0665333 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000081","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","6932"
"10:46:21.0666485 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000094","SyncType: SyncTypeOther","6932"
"10:46:21.0667535 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\wshqos.dll","0.0000136","Name: \Windows\System32\wshqos.dll","6932"
"10:46:21.0668256 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshqos.dll","0.0000158","","6932"
"10:46:21.0668857 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000039","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0669271 AM","firefox.exe","7384","RegCreateKey","HKLM\Software\Microsoft\WBEM\CIMOM","0.0000947","Desired Access: Query Value, Set Value","8008"
"10:46:21.0669689 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000256","Desired Access: Read","6932"
"10:46:21.0669886 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000072","Information: Owner","8008"
"10:46:21.0670086 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000030","Information: Owner","8008"
"10:46:21.0670658 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0670961 AM","firefox.exe","7384","RegCreateKey","HKLM\Software","0.0000098","Desired Access: Maximum Allowed, Granted Access: Read, Disposition: REG_OPENED_EXISTING_KEY","8008"
"10:46:21.0671306 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE","0.0000030","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0671562 AM","firefox.exe","7384","RegCreateKey","HKLM\SOFTWARE\Microsoft","0.0000069","Desired Access: Maximum Allowed, Granted Access: Read, Disposition: REG_OPENED_EXISTING_KEY","8008"
"10:46:21.0671904 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE","0.0000025","","8008"
"10:46:21.0672143 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0672390 AM","firefox.exe","7384","RegCreateKey","HKLM\SOFTWARE\Microsoft\WBEM","0.0000056","Desired Access: Maximum Allowed, Granted Access: Read, Disposition: REG_OPENED_EXISTING_KEY","8008"
"10:46:21.0672680 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft","0.0000026","","8008"
"10:46:21.0672932 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Wbem","0.0000026","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0673175 AM","firefox.exe","7384","RegCreateKey","HKLM\SOFTWARE\Microsoft\Wbem\CIMOM","0.0000674","Desired Access: Query Value, Set Value","8008"
"10:46:21.0673197 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000418","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","6932"
"10:46:21.0673495 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000043","Information: Owner","8008"
"10:46:21.0673773 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000025","Information: Owner","8008"
"10:46:21.0674144 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000081","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","6932"
"10:46:21.0674204 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Wbem","0.0000029","","8008"
"10:46:21.0674566 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000094","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","6932"
"10:46:21.0675219 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000051","SyncType: SyncTypeOther","6932"
"10:46:21.0676687 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000187","","6932"
"10:46:21.0684094 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\Logs","0.0000559","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8008"
"10:46:21.0685156 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\Logs","0.0000115","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 3/29/2019 7:19:02 AM, LastWriteTime: 3/29/2019 7:19:02 AM, ChangeTime: 3/29/2019 7:19:02 AM, FileAttributes: D","8008"
"10:46:21.0685685 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\Logs","0.0000154","","8008"
"10:46:21.0686120 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshqos.dll","0.0000393","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6932"
"10:46:21.0686978 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000051","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0687264 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshqos.dll","0.0000119","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:11:07 PM, FileAttributes: A","6932"
"10:46:21.0687814 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshqos.dll","0.0000175","","6932"
"10:46:21.0688134 AM","firefox.exe","7384","RegCreateKey","HKLM\Software\Microsoft\WBEM\CIMOM","0.0000969","Desired Access: Read/Write","8008"
"10:46:21.0688646 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000060","Information: Owner","8008"
"10:46:21.0688996 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000030","Information: Owner","8008"
"10:46:21.0689542 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0689871 AM","firefox.exe","7384","RegCreateKey","HKLM\Software","0.0000094","Desired Access: Maximum Allowed, Granted Access: Read, Disposition: REG_OPENED_EXISTING_KEY","8008"
"10:46:21.0690221 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE","0.0000025","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0690489 AM","firefox.exe","7384","RegCreateKey","HKLM\SOFTWARE\Microsoft","0.0000069","Desired Access: Maximum Allowed, Granted Access: Read, Disposition: REG_OPENED_EXISTING_KEY","8008"
"10:46:21.0690844 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE","0.0000025","","8008"
"10:46:21.0691083 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft","0.0000025","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0691313 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshqos.dll","0.0000307","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","6932"
"10:46:21.0691347 AM","firefox.exe","7384","RegCreateKey","HKLM\SOFTWARE\Microsoft\WBEM","0.0000056","Desired Access: Maximum Allowed, Granted Access: Read, Disposition: REG_OPENED_EXISTING_KEY","8008"
"10:46:21.0691641 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft","0.0000026","","8008"
"10:46:21.0691872 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Wbem","0.0000025","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0692128 AM","firefox.exe","7384","RegCreateKey","HKLM\SOFTWARE\Microsoft\Wbem\CIMOM","0.0000674","Desired Access: Read/Write","8008"
"10:46:21.0692230 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000060","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","6932"
"10:46:21.0692448 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000038","Information: Owner","8008"
"10:46:21.0692725 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000026","Information: Owner","8008"
"10:46:21.0693203 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Wbem","0.0000034","","8008"
"10:46:21.0693395 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000060","SyncType: SyncTypeOther","6932"
"10:46:21.0694210 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\wshqos.dll","0.0000107","Name: \Windows\System32\wshqos.dll","6932"
"10:46:21.0694765 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshqos.dll","0.0000128","","6932"
"10:46:21.0695772 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000196","Desired Access: Read","6932"
"10:46:21.0696646 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000124","Desired Access: Read","8008"
"10:46:21.0696949 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000098","Desired Access: Read","8008"
"10:46:21.0697248 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000081","Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","8008"
"10:46:21.0697512 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000026","","8008"
"10:46:21.0697803 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\System\DNSclient","0.0000106","Desired Access: Read","8008"
"10:46:21.0698076 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000068","Desired Access: Read","8008"
"10:46:21.0698276 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000060","Desired Access: Read","8008"
"10:46:21.0698387 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000316","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","6932"
"10:46:21.0698507 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Domain","0.0000059","Type: REG_SZ, Length: 2, Data: ","8008"
"10:46:21.0698728 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000022","","8008"
"10:46:21.0699070 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","6932"
"10:46:21.0699108 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000064","Desired Access: Read","8008"
"10:46:21.0699309 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000064","Desired Access: Read","8008"
"10:46:21.0699347 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000068","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","6932"
"10:46:21.0699535 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000051","Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","8008"
"10:46:21.0699842 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000021","","8008"
"10:46:21.0699906 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000038","SyncType: SyncTypeOther","6932"
"10:46:21.0700098 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\System\DNSclient","0.0000085","Desired Access: Read","8008"
"10:46:21.0700337 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000064","Desired Access: Read","8008"
"10:46:21.0700520 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000060","Desired Access: Read","8008"
"10:46:21.0700755 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Domain","0.0000051","Type: REG_SZ, Length: 2, Data: ","8008"
"10:46:21.0700998 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000137","","6932"
"10:46:21.0701105 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000034","","8008"
"10:46:21.0701984 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000098","Query: Name","8008"
"10:46:21.0702325 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000026","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0702517 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0702581 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000047","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.0702760 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}","0.0000107","Desired Access: Read","8008"
"10:46:21.0702888 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000107","Desired Access: All Access","6932"
"10:46:21.0703085 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}","0.0000273","Desired Access: Read","8008"
"10:46:21.0703183 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000742","Desired Access: All Access","6932"
"10:46:21.0703563 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000064","Information: Owner","6932"
"10:46:21.0703601 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}","0.0000085","Query: Name","8008"
"10:46:21.0703827 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000030","Information: Owner","6932"
"10:46:21.0703874 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}","0.0000030","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0704207 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000106","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.0704292 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\TreatAs","0.0000145","Desired Access: Query Value","8008"
"10:46:21.0704523 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000085","Desired Access: Read","6932"
"10:46:21.0704732 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}","0.0000042","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0704855 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000094","Desired Access: Read","6932"
"10:46:21.0705137 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\TreatAs","0.0000239","Desired Access: Query Value","8008"
"10:46:21.0705248 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000115","Length: 16","6932"
"10:46:21.0705628 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000081","Type: REG_SZ, Length: 8, Data: 2.0","6932"
"10:46:21.0705692 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}","0.0000115","Query: Name","8008"
"10:46:21.0706067 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000068","Length: 44","6932"
"10:46:21.0706169 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}","0.0000090","Query: Name","8008"
"10:46:21.0706366 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000068","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","6932"
"10:46:21.0706519 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}","0.0000034","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0706967 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}","0.0000158","Desired Access: Maximum Allowed","8008"
"10:46:21.0707083 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ws2_32.dll","0.0817195","Offset: 238,592, Length: 26,624, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6932"
"10:46:21.0707364 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\(Default)","0.0000073","Length: 12","8008"
"10:46:21.0707697 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}","0.0000094","Query: Name","8008"
"10:46:21.0707966 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}","0.0000025","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0708239 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}","0.0000094","Desired Access: Maximum Allowed","8008"
"10:46:21.0708482 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\(Default)","0.0000055","Type: REG_SZ, Length: 78, Data: Windows Management and Instrumentation","8008"
"10:46:21.0708721 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}","0.0000068","Query: Name","8008"
"10:46:21.0708956 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0709190 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\InprocServer32","0.0000086","Desired Access: Read","8008"
"10:46:21.0709442 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0709638 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\InprocServer32","0.0000056","Desired Access: Read","8008"
"10:46:21.0709869 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}","0.0000059","Query: Name","8008"
"10:46:21.0710091 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0710321 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\InprocHandler32","0.0000085","Desired Access: Query Value","8008"
"10:46:21.0710568 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0710756 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\InprocHandler32","0.0000060","Desired Access: Query Value","8008"
"10:46:21.0710974 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}","0.0000064","Query: Name","8008"
"10:46:21.0711200 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0711417 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\InprocHandler","0.0000082","Desired Access: Query Value","8008"
"10:46:21.0711648 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0711831 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}\InprocHandler","0.0000060","Desired Access: Query Value","8008"
"10:46:21.0712190 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{8BC3F05E-D86B-11D0-A075-00C04FB68820}","0.0000038","","8008"
"10:46:21.0789638 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000128","Query: Name","8008"
"10:46:21.0790159 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000034","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0790496 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000030","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0790901 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{F309AD18-D86A-11D0-A075-00C04FB68820}","0.0000179","Desired Access: Read","8008"
"10:46:21.0791362 AM","firefox.exe","7384","RegOpenKey","HKCR\Interface\{F309AD18-D86A-11D0-A075-00C04FB68820}","0.0000265","Desired Access: Read","8008"
"10:46:21.0791895 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{F309AD18-D86A-11D0-A075-00C04FB68820}","0.0000086","Query: Name","8008"
"10:46:21.0792173 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{F309AD18-D86A-11D0-A075-00C04FB68820}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0792488 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{F309AD18-D86A-11D0-A075-00C04FB68820}\ProxyStubClsid32","0.0000141","Desired Access: Read","8008"
"10:46:21.0792808 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{F309AD18-D86A-11D0-A075-00C04FB68820}","0.0000026","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0793030 AM","firefox.exe","7384","RegOpenKey","HKCR\Interface\{F309AD18-D86A-11D0-A075-00C04FB68820}\ProxyStubClsid32","0.0000150","Desired Access: Read","8008"
"10:46:21.0793406 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{F309AD18-D86A-11D0-A075-00C04FB68820}\ProxyStubClsid32","0.0000064","Query: Name","8008"
"10:46:21.0793653 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{F309AD18-D86A-11D0-A075-00C04FB68820}\ProxyStubClsid32","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0793909 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{F309AD18-D86A-11D0-A075-00C04FB68820}\ProxyStubClsid32","0.0000128","Desired Access: Maximum Allowed","8008"
"10:46:21.0794234 AM","firefox.exe","7384","RegQueryValue","HKCR\Interface\{F309AD18-D86A-11D0-A075-00C04FB68820}\ProxyStubClsid32\(Default)","0.0000068","Type: REG_SZ, Length: 78, Data: {7C857801-7381-11CF-884D-00AA004B2E24}","8008"
"10:46:21.0794579 AM","firefox.exe","7384","RegCloseKey","HKCR\Interface\{F309AD18-D86A-11D0-A075-00C04FB68820}\ProxyStubClsid32","0.0000034","","8008"
"10:46:21.0794810 AM","firefox.exe","7384","RegCloseKey","HKCR\Interface\{F309AD18-D86A-11D0-A075-00C04FB68820}","0.0000021","","8008"
"10:46:21.0795142 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000069","Query: Name","8008"
"10:46:21.0795403 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0795578 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0795791 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000077","Desired Access: Read","8008"
"10:46:21.0796077 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000209","Desired Access: Read","8008"
"10:46:21.0796508 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000059","Query: Name","8008"
"10:46:21.0796751 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0797003 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\TreatAs","0.0000089","Desired Access: Query Value","8008"
"10:46:21.0797259 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0797468 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\TreatAs","0.0000055","Desired Access: Query Value","8008"
"10:46:21.0797698 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000060","Query: Name","8008"
"10:46:21.0797993 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000064","Query: Name","8008"
"10:46:21.0798236 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0798487 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000082","Desired Access: Maximum Allowed","8008"
"10:46:21.0798748 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\(Default)","0.0000051","Length: 12","8008"
"10:46:21.0798978 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000064","Query: Name","8008"
"10:46:21.0799209 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0799460 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000077","Desired Access: Maximum Allowed","8008"
"10:46:21.0799708 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\(Default)","0.0000051","Type: REG_SZ, Length: 32, Data: PSFactoryBuffer","8008"
"10:46:21.0799947 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000059","Query: Name","8008"
"10:46:21.0800186 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0800429 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InprocServer32","0.0000085","Desired Access: Read","8008"
"10:46:21.0800681 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0800881 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InprocServer32","0.0000111","Desired Access: Read","8008"
"10:46:21.0801231 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000064","Query: Name","8008"
"10:46:21.0801474 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0801726 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000085","Desired Access: Maximum Allowed","8008"
"10:46:21.0801990 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32\InprocServer32","0.0000047","Length: 12","8008"
"10:46:21.0802217 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000059","Query: Name","8008"
"10:46:21.0802451 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0802699 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000081","Desired Access: Maximum Allowed","8008"
"10:46:21.0802946 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32\(Default)","0.0000043","Length: 12","8008"
"10:46:21.0803172 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000064","Query: Name","8008"
"10:46:21.0803415 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0803659 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000085","Desired Access: Maximum Allowed","8008"
"10:46:21.0803915 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32\(Default)","0.0000051","Type: REG_EXPAND_SZ, Length: 78, Data: %systemroot%\system32\wbem\wbemsvc.dll","8008"
"10:46:21.0804188 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000064","Query: Name","8008"
"10:46:21.0804431 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0804674 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000081","Desired Access: Maximum Allowed","8008"
"10:46:21.0804930 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32\(Default)","0.0000051","Type: REG_EXPAND_SZ, Length: 78, Data: %systemroot%\system32\wbem\wbemsvc.dll","8008"
"10:46:21.0805190 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000064","Query: Name","8008"
"10:46:21.0805429 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000026","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0805907 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000150","Desired Access: Maximum Allowed","8008"
"10:46:21.0806368 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32\ThreadingModel","0.0000085","Type: REG_SZ, Length: 10, Data: Both","8008"
"10:46:21.0806859 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000034","","8008"
"10:46:21.0807106 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000077","Query: Name","8008"
"10:46:21.0807379 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000026","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0807716 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InprocHandler32","0.0000090","Desired Access: Query Value","8008"
"10:46:21.0807985 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0808203 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InprocHandler32","0.0000059","Desired Access: Query Value","8008"
"10:46:21.0808446 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000060","Query: Name","8008"
"10:46:21.0808681 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0808928 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InprocHandler","0.0000081","Desired Access: Query Value","8008"
"10:46:21.0809188 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000026","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0809410 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InprocHandler","0.0000064","Desired Access: Query Value","8008"
"10:46:21.0809751 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000026","","8008"
"10:46:21.0810630 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000064","Query: Name","8008"
"10:46:21.0810908 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0811095 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0811313 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000073","Desired Access: Read","8008"
"10:46:21.0811599 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000102","Desired Access: Read","8008"
"10:46:21.0811910 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000069","Query: Name","8008"
"10:46:21.0812166 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0812422 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\TreatAs","0.0000086","Desired Access: Query Value","8008"
"10:46:21.0812683 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0812892 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\TreatAs","0.0000059","Desired Access: Query Value","8008"
"10:46:21.0813126 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000060","Query: Name","8008"
"10:46:21.0813425 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000064","Query: Name","8008"
"10:46:21.0813668 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0813920 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000081","Desired Access: Maximum Allowed","8008"
"10:46:21.0814176 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\(Default)","0.0000051","Length: 12","8008"
"10:46:21.0814419 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000060","Query: Name","8008"
"10:46:21.0814654 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0814906 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000081","Desired Access: Maximum Allowed","8008"
"10:46:21.0815162 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\(Default)","0.0000055","Type: REG_SZ, Length: 32, Data: PSFactoryBuffer","8008"
"10:46:21.0815409 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000064","Query: Name","8008"
"10:46:21.0815661 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0815917 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InprocServer32","0.0000085","Desired Access: Read","8008"
"10:46:21.0816181 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0816395 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InprocServer32","0.0000055","Desired Access: Read","8008"
"10:46:21.0816655 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000072","Query: Name","8008"
"10:46:21.0816915 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0817436 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000085","Desired Access: Maximum Allowed","8008"
"10:46:21.0817713 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32\InprocServer32","0.0000051","Length: 12","8008"
"10:46:21.0817952 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000064","Query: Name","8008"
"10:46:21.0818204 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000051","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0818494 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000081","Desired Access: Maximum Allowed","8008"
"10:46:21.0818767 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32\(Default)","0.0000055","Length: 12","8008"
"10:46:21.0819019 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000068","Query: Name","8008"
"10:46:21.0819279 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0819543 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000082","Desired Access: Maximum Allowed","8008"
"10:46:21.0819808 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32\(Default)","0.0000055","Type: REG_EXPAND_SZ, Length: 78, Data: %systemroot%\system32\wbem\wbemsvc.dll","8008"
"10:46:21.0820081 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000064","Query: Name","8008"
"10:46:21.0820329 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0820580 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000081","Desired Access: Maximum Allowed","8008"
"10:46:21.0820841 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32\(Default)","0.0000046","Type: REG_EXPAND_SZ, Length: 78, Data: %systemroot%\system32\wbem\wbemsvc.dll","8008"
"10:46:21.0821097 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000064","Query: Name","8008"
"10:46:21.0821348 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0821600 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000081","Desired Access: Maximum Allowed","8008"
"10:46:21.0821860 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32\ThreadingModel","0.0000051","Type: REG_SZ, Length: 10, Data: Both","8008"
"10:46:21.0822185 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InProcServer32","0.0000021","","8008"
"10:46:21.0822389 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000069","Query: Name","8008"
"10:46:21.0822645 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0822901 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InprocHandler32","0.0000086","Desired Access: Query Value","8008"
"10:46:21.0823166 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0823383 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InprocHandler32","0.0000056","Desired Access: Query Value","8008"
"10:46:21.0823622 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000060","Query: Name","8008"
"10:46:21.0823866 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0824117 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InprocHandler","0.0000086","Desired Access: Query Value","8008"
"10:46:21.0824378 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0824595 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\InprocHandler","0.0000056","Desired Access: Query Value","8008"
"10:46:21.0824847 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000060","Query: Name","8008"
"10:46:21.0825090 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0825342 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\LocalServer32","0.0000081","Desired Access: Read","8008"
"10:46:21.0825606 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0825820 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\LocalServer32","0.0000059","Desired Access: Read","8008"
"10:46:21.0826067 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000064","Query: Name","8008"
"10:46:21.0826310 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0826566 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000077","Desired Access: Maximum Allowed","8008"
"10:46:21.0826818 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\AppID","0.0000047","Length: 112","8008"
"10:46:21.0827044 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000064","Query: Name","8008"
"10:46:21.0827292 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0827543 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\LocalServer","0.0000082","Desired Access: Query Value","8008"
"10:46:21.0827799 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0828013 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\LocalServer","0.0000060","Desired Access: Query Value","8008"
"10:46:21.0828265 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000055","Query: Name","8008"
"10:46:21.0828521 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0828704 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000026","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0828913 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000064","Desired Access: Read","8008"
"10:46:21.0829186 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000090","Desired Access: Read","8008"
"10:46:21.0829476 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000060","Query: Name","8008"
"10:46:21.0829715 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0829963 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\Elevation","0.0000085","Desired Access: Read","8008"
"10:46:21.0830219 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0830428 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\Elevation","0.0000059","Desired Access: Read","8008"
"10:46:21.0830722 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000021","","8008"
"10:46:21.0830974 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000021","","8008"
"10:46:21.0831255 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000056","Query: Name","8008"
"10:46:21.0831499 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0831682 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0831887 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000064","Desired Access: Read","8008"
"10:46:21.0832151 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000077","Desired Access: Read","8008"
"10:46:21.0832425 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000059","Query: Name","8008"
"10:46:21.0832663 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0832902 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\TreatAs","0.0000086","Desired Access: Read","8008"
"10:46:21.0833150 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0833350 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}\TreatAs","0.0000052","Desired Access: Read","8008"
"10:46:21.0833606 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{7C857801-7381-11CF-884D-00AA004B2E24}","0.0000022","","8008"
"10:46:21.0839132 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000367","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8008"
"10:46:21.0840070 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000086","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","8008"
"10:46:21.0840407 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000120","","8008"
"10:46:21.0842852 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000282","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8008"
"10:46:21.0843718 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\wbemsvc.dll","0.0000120","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8008"
"10:46:21.0844431 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\wbemsvc.dll","0.0000034","SyncType: SyncTypeOther","8008"
"10:46:21.0846662 AM","firefox.exe","7384","Load Image","C:\Windows\System32\wbem\wbemsvc.dll","0.0000000","Image Base: 0x7ffb35e00000, Image Size: 0x14000","8008"
"10:46:21.0847281 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000141","Name: \Windows\System32\wbem\wbemsvc.dll","8008"
"10:46:21.0849649 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000179","","8008"
"10:46:21.0857222 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000099","Query: Name","8008"
"10:46:21.0857611 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000025","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0857820 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000025","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0858118 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}","0.0000188","Desired Access: Read","8008"
"10:46:21.0858579 AM","firefox.exe","7384","RegOpenKey","HKCR\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}","0.0000231","Desired Access: Read","8008"
"10:46:21.0859070 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}","0.0000072","Query: Name","8008"
"10:46:21.0859330 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0859629 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}\ProxyStubClsid32","0.0000153","Desired Access: Read","8008"
"10:46:21.0859962 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0860166 AM","firefox.exe","7384","RegOpenKey","HKCR\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}\ProxyStubClsid32","0.0000120","Desired Access: Read","8008"
"10:46:21.0860521 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}\ProxyStubClsid32","0.0000106","Query: Name","8008"
"10:46:21.0860806 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}\ProxyStubClsid32","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0861058 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}\ProxyStubClsid32","0.0000124","Desired Access: Maximum Allowed","8008"
"10:46:21.0861378 AM","firefox.exe","7384","RegQueryValue","HKCR\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}\ProxyStubClsid32\(Default)","0.0000068","Type: REG_SZ, Length: 78, Data: {7C857801-7381-11CF-884D-00AA004B2E24}","8008"
"10:46:21.0861720 AM","firefox.exe","7384","RegCloseKey","HKCR\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}\ProxyStubClsid32","0.0000029","","8008"
"10:46:21.0861946 AM","firefox.exe","7384","RegCloseKey","HKCR\Interface\{D4781CD6-E5D3-44DF-AD94-930EFE48A887}","0.0000021","","8008"
"10:46:21.0863861 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000073","Query: Name","8008"
"10:46:21.0864134 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000018","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0864309 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0864527 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{9F6C78EF-FCE5-42FA-ABEA-3E7DF91921DC}","0.0000119","Desired Access: Read","8008"
"10:46:21.0864856 AM","firefox.exe","7384","RegOpenKey","HKCR\Interface\{9F6C78EF-FCE5-42FA-ABEA-3E7DF91921DC}","0.0000247","Desired Access: Read","8008"
"10:46:21.0865321 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{9F6C78EF-FCE5-42FA-ABEA-3E7DF91921DC}","0.0000068","Query: Name","8008"
"10:46:21.0865560 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{9F6C78EF-FCE5-42FA-ABEA-3E7DF91921DC}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0865816 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{9F6C78EF-FCE5-42FA-ABEA-3E7DF91921DC}\ProxyStubClsid32","0.0000128","Desired Access: Read","8008"
"10:46:21.0866106 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{9F6C78EF-FCE5-42FA-ABEA-3E7DF91921DC}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0866302 AM","firefox.exe","7384","RegOpenKey","HKCR\Interface\{9F6C78EF-FCE5-42FA-ABEA-3E7DF91921DC}\ProxyStubClsid32","0.0000128","Desired Access: Read","8008"
"10:46:21.0866639 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{9F6C78EF-FCE5-42FA-ABEA-3E7DF91921DC}\ProxyStubClsid32","0.0000081","Query: Name","8008"
"10:46:21.0866899 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{9F6C78EF-FCE5-42FA-ABEA-3E7DF91921DC}\ProxyStubClsid32","0.0000026","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0867147 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{9F6C78EF-FCE5-42FA-ABEA-3E7DF91921DC}\ProxyStubClsid32","0.0000119","Desired Access: Maximum Allowed","8008"
"10:46:21.0867458 AM","firefox.exe","7384","RegQueryValue","HKCR\Interface\{9F6C78EF-FCE5-42FA-ABEA-3E7DF91921DC}\ProxyStubClsid32\(Default)","0.0000060","Type: REG_SZ, Length: 78, Data: {7C857801-7381-11CF-884D-00AA004B2E24}","8008"
"10:46:21.0867748 AM","firefox.exe","7384","RegCloseKey","HKCR\Interface\{9F6C78EF-FCE5-42FA-ABEA-3E7DF91921DC}\ProxyStubClsid32","0.0000026","","8008"
"10:46:21.0867957 AM","firefox.exe","7384","RegCloseKey","HKCR\Interface\{9F6C78EF-FCE5-42FA-ABEA-3E7DF91921DC}","0.0000022","","8008"
"10:46:21.0870769 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000111","Desired Access: Read","8008"
"10:46:21.0871034 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000102","Desired Access: Read","8008"
"10:46:21.0871324 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000077","Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","8008"
"10:46:21.0871580 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000025","","8008"
"10:46:21.0871853 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\System\DNSclient","0.0000107","Desired Access: Read","8008"
"10:46:21.0872113 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000064","Desired Access: Read","8008"
"10:46:21.0872301 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000064","Desired Access: Read","8008"
"10:46:21.0872510 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Domain","0.0000055","Type: REG_SZ, Length: 2, Data: ","8008"
"10:46:21.0872723 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000022","","8008"
"10:46:21.0878189 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\CustomLocale","0.0000256","Desired Access: Read","8008"
"10:46:21.0878701 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\CustomLocale","0.0000111","Desired Access: Read","8008"
"10:46:21.0879059 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\CustomLocale\en","0.0000056","Length: 532","8008"
"10:46:21.0879349 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Nls\CustomLocale","0.0000030","","8008"
"10:46:21.0879593 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\ExtendedLocale","0.0000072","Desired Access: Read","8008"
"10:46:21.0879802 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\ExtendedLocale","0.0000140","Desired Access: Read","8008"
"10:46:21.0880139 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\ExtendedLocale\en","0.0000042","Length: 532","8008"
"10:46:21.0880352 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Nls\ExtendedLocale","0.0000026","","8008"
"10:46:21.0907480 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000098","Query: Name","8008"
"10:46:21.0907906 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0908137 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0908457 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}","0.0000162","Desired Access: Read","8008"
"10:46:21.0908896 AM","firefox.exe","7384","RegOpenKey","HKCR\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}","0.0000277","Desired Access: Read","8008"
"10:46:21.0909455 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}","0.0000090","Query: Name","8008"
"10:46:21.0909749 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}","0.0000026","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0910069 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}\ProxyStubClsid32","0.0000163","Desired Access: Read","8008"
"10:46:21.0910424 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}","0.0000025","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0910645 AM","firefox.exe","7384","RegOpenKey","HKCR\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}\ProxyStubClsid32","0.0000120","Desired Access: Read","8008"
"10:46:21.0911000 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}\ProxyStubClsid32","0.0000072","Query: Name","8008"
"10:46:21.0911256 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}\ProxyStubClsid32","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0911516 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}\ProxyStubClsid32","0.0000124","Desired Access: Maximum Allowed","8008"
"10:46:21.0911840 AM","firefox.exe","7384","RegQueryValue","HKCR\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}\ProxyStubClsid32\(Default)","0.0000073","Type: REG_SZ, Length: 78, Data: {D68AF00A-29CB-43FA-8504-CE99A996D9EA}","8008"
"10:46:21.0912194 AM","firefox.exe","7384","RegCloseKey","HKCR\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}\ProxyStubClsid32","0.0000030","","8008"
"10:46:21.0912425 AM","firefox.exe","7384","RegCloseKey","HKCR\Interface\{9556DC99-828C-11CF-A37E-00AA003240C7}","0.0000025","","8008"
"10:46:21.0912757 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000060","Query: Name","8008"
"10:46:21.0913022 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0913210 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0913432 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000081","Desired Access: Read","8008"
"10:46:21.0913794 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000252","Desired Access: Read","8008"
"10:46:21.0914353 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000077","Query: Name","8008"
"10:46:21.0914622 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0914891 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\TreatAs","0.0000094","Desired Access: Query Value","8008"
"10:46:21.0915160 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0915373 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\TreatAs","0.0000060","Desired Access: Query Value","8008"
"10:46:21.0915608 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000064","Query: Name","8008"
"10:46:21.0915915 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000060","Query: Name","8008"
"10:46:21.0916154 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0916414 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000085","Desired Access: Maximum Allowed","8008"
"10:46:21.0916687 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\(Default)","0.0000051","Length: 12","8008"
"10:46:21.0916926 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000060","Query: Name","8008"
"10:46:21.0917156 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0917408 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000077","Desired Access: Maximum Allowed","8008"
"10:46:21.0917660 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\(Default)","0.0000051","Type: REG_SZ, Length: 116, Data: Microsoft WBEM (non)Standard Marshaling for IWbemServices","8008"
"10:46:21.0917903 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000060","Query: Name","8008"
"10:46:21.0918146 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0918402 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000086","Desired Access: Read","8008"
"10:46:21.0918663 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000025","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0918876 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000111","Desired Access: Read","8008"
"10:46:21.0919213 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000064","Query: Name","8008"
"10:46:21.0919465 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0919716 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000086","Desired Access: Maximum Allowed","8008"
"10:46:21.0919989 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\InprocServer32","0.0000047","Length: 12","8008"
"10:46:21.0920216 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000064","Query: Name","8008"
"10:46:21.0920501 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000026","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0920868 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000124","Desired Access: Maximum Allowed","8008"
"10:46:21.0921197 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\(Default)","0.0000051","Length: 12","8008"
"10:46:21.0921440 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000068","Query: Name","8008"
"10:46:21.0921692 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0921952 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000081","Desired Access: Maximum Allowed","8008"
"10:46:21.0922208 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\(Default)","0.0000056","Type: REG_EXPAND_SZ, Length: 80, Data: %systemroot%\system32\wbem\fastprox.dll","8008"
"10:46:21.0922477 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000064","Query: Name","8008"
"10:46:21.0922716 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0922963 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000081","Desired Access: Maximum Allowed","8008"
"10:46:21.0923215 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\(Default)","0.0000051","Type: REG_EXPAND_SZ, Length: 80, Data: %systemroot%\system32\wbem\fastprox.dll","8008"
"10:46:21.0923471 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000064","Query: Name","8008"
"10:46:21.0923719 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0923962 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000077","Desired Access: Maximum Allowed","8008"
"10:46:21.0924213 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\ThreadingModel","0.0000052","Type: REG_SZ, Length: 10, Data: Both","8008"
"10:46:21.0924533 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000026","","8008"
"10:46:21.0924747 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000064","Query: Name","8008"
"10:46:21.0924999 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0925250 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocHandler32","0.0000111","Desired Access: Query Value","8008"
"10:46:21.0925545 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0925767 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocHandler32","0.0000068","Desired Access: Query Value","8008"
"10:46:21.0926040 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000081","Query: Name","8008"
"10:46:21.0926313 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0926637 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocHandler","0.0000107","Desired Access: Query Value","8008"
"10:46:21.0927012 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000039","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0927260 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocHandler","0.0000060","Desired Access: Query Value","8008"
"10:46:21.0927588 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000026","","8008"
"10:46:21.0928412 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000068","Query: Name","8008"
"10:46:21.0928698 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0928894 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0929116 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000068","Desired Access: Read","8008"
"10:46:21.0929402 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000094","Desired Access: Read","8008"
"10:46:21.0929705 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000064","Query: Name","8008"
"10:46:21.0929965 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0930225 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\TreatAs","0.0000086","Desired Access: Query Value","8008"
"10:46:21.0930490 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000025","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0930707 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\TreatAs","0.0000056","Desired Access: Query Value","8008"
"10:46:21.0930942 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000060","Query: Name","8008"
"10:46:21.0931228 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000060","Query: Name","8008"
"10:46:21.0931475 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0931731 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000081","Desired Access: Maximum Allowed","8008"
"10:46:21.0932000 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\(Default)","0.0000051","Length: 12","8008"
"10:46:21.0932239 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000060","Query: Name","8008"
"10:46:21.0932478 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0932730 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000077","Desired Access: Maximum Allowed","8008"
"10:46:21.0932981 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\(Default)","0.0000052","Type: REG_SZ, Length: 116, Data: Microsoft WBEM (non)Standard Marshaling for IWbemServices","8008"
"10:46:21.0933233 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000060","Query: Name","8008"
"10:46:21.0933476 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0933732 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000086","Desired Access: Read","8008"
"10:46:21.0934001 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0934215 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000059","Desired Access: Read","8008"
"10:46:21.0934479 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000064","Query: Name","8008"
"10:46:21.0934739 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0935000 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000089","Desired Access: Maximum Allowed","8008"
"10:46:21.0935277 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\InprocServer32","0.0000047","Length: 12","8008"
"10:46:21.0935512 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000059","Query: Name","8008"
"10:46:21.0935763 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0936019 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000077","Desired Access: Maximum Allowed","8008"
"10:46:21.0936280 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\(Default)","0.0000047","Length: 12","8008"
"10:46:21.0936514 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000073","Query: Name","8008"
"10:46:21.0936877 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000030","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0937210 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000085","Desired Access: Maximum Allowed","8008"
"10:46:21.0937487 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\(Default)","0.0000056","Type: REG_EXPAND_SZ, Length: 80, Data: %systemroot%\system32\wbem\fastprox.dll","8008"
"10:46:21.0937760 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000064","Query: Name","8008"
"10:46:21.0938016 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0938272 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000085","Desired Access: Maximum Allowed","8008"
"10:46:21.0938532 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\(Default)","0.0000052","Type: REG_EXPAND_SZ, Length: 80, Data: %systemroot%\system32\wbem\fastprox.dll","8008"
"10:46:21.0938793 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000059","Query: Name","8008"
"10:46:21.0939044 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0939300 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000081","Desired Access: Maximum Allowed","8008"
"10:46:21.0939565 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32\ThreadingModel","0.0000051","Type: REG_SZ, Length: 10, Data: Both","8008"
"10:46:21.0939876 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocServer32","0.0000026","","8008"
"10:46:21.0940094 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000060","Query: Name","8008"
"10:46:21.0940346 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0940602 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocHandler32","0.0000085","Desired Access: Query Value","8008"
"10:46:21.0940871 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0941092 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocHandler32","0.0000060","Desired Access: Query Value","8008"
"10:46:21.0941348 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000060","Query: Name","8008"
"10:46:21.0941600 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0941852 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocHandler","0.0000085","Desired Access: Query Value","8008"
"10:46:21.0942172 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000034","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0942492 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\InprocHandler","0.0000068","Desired Access: Query Value","8008"
"10:46:21.0942769 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000064","Query: Name","8008"
"10:46:21.0943021 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0943281 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\LocalServer32","0.0000086","Desired Access: Read","8008"
"10:46:21.0943550 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0943763 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\LocalServer32","0.0000056","Desired Access: Read","8008"
"10:46:21.0944015 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000060","Query: Name","8008"
"10:46:21.0944258 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0944514 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000077","Desired Access: Maximum Allowed","8008"
"10:46:21.0944775 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\AppID","0.0000046","Length: 112","8008"
"10:46:21.0945009 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000060","Query: Name","8008"
"10:46:21.0945269 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000030","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0945931 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\LocalServer","0.0000124","Desired Access: Query Value","8008"
"10:46:21.0946379 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000042","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0946827 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\LocalServer","0.0000111","Desired Access: Query Value","8008"
"10:46:21.0947296 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000090","Query: Name","8008"
"10:46:21.0947701 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000030","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0948000 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000026","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0948235 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000072","Desired Access: Read","8008"
"10:46:21.0948521 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000098","Desired Access: Read","8008"
"10:46:21.0948832 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000064","Query: Name","8008"
"10:46:21.0949088 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0949353 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\Elevation","0.0000081","Desired Access: Read","8008"
"10:46:21.0949613 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0949831 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\Elevation","0.0000055","Desired Access: Read","8008"
"10:46:21.0950134 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000025","","8008"
"10:46:21.0950411 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000025","","8008"
"10:46:21.0950714 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000055","Query: Name","8008"
"10:46:21.0950970 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0951158 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0951375 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000064","Desired Access: Read","8008"
"10:46:21.0951648 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000077","Desired Access: Read","8008"
"10:46:21.0951934 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000085","Query: Name","8008"
"10:46:21.0952288 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000030","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0952625 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\TreatAs","0.0000111","Desired Access: Read","8008"
"10:46:21.0952920 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000025","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0953142 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}\TreatAs","0.0000059","Desired Access: Read","8008"
"10:46:21.0953474 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{D68AF00A-29CB-43FA-8504-CE99A996D9EA}","0.0000026","","8008"
"10:46:21.0959311 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000499","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8008"
"10:46:21.0960382 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000085","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","8008"
"10:46:21.0960723 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000124","","8008"
"10:46:21.0963177 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000286","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8008"
"10:46:21.0964043 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\fastprox.dll","0.0000124","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8008"
"10:46:21.0964670 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\fastprox.dll","0.0000043","SyncType: SyncTypeOther","8008"
"10:46:21.0966940 AM","firefox.exe","7384","Load Image","C:\Windows\System32\wbem\fastprox.dll","0.0000000","Image Base: 0x7ffb35ea0000, Image Size: 0xf2000","8008"
"10:46:21.0967644 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000145","Name: \Windows\System32\wbem\fastprox.dll","8008"
"10:46:21.0972721 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000235","","8008"
"10:46:21.0974914 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000056","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0975507 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\WBEM\CIMOM","0.0000184","Desired Access: Read","8008"
"10:46:21.0976147 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Wbem\CIMOM\ProcessID","0.0000133","Type: REG_DWORD, Length: 4, Data: 2624","8008"
"10:46:21.0976638 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Wbem\CIMOM\EnablePrivateObjectHeap","0.0000102","Length: 16","8008"
"10:46:21.0977065 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Wbem\CIMOM\ContextLimit","0.0000098","Length: 16","8008"
"10:46:21.0977470 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Wbem\CIMOM\ObjectLimit","0.0000094","Length: 16","8008"
"10:46:21.0977888 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Wbem\CIMOM\IdentifierLimit","0.0000094","Length: 16","8008"
"10:46:21.0978417 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Wbem\CIMOM","0.0000039","","8008"
"10:46:21.0982296 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000102","Query: Name","8008"
"10:46:21.0982671 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000030","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0982923 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000030","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0983294 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000154","Desired Access: Read","8008"
"10:46:21.0985154 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000299","Desired Access: Read","8008"
"10:46:21.0985782 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000089","Query: Name","8008"
"10:46:21.0986157 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0986537 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\TreatAs","0.0000106","Desired Access: Query Value","8008"
"10:46:21.0986835 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000026","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0987074 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\TreatAs","0.0000064","Desired Access: Query Value","8008"
"10:46:21.0987322 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000068","Query: Name","8008"
"10:46:21.0987667 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000064","Query: Name","8008"
"10:46:21.0987923 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0988205 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000090","Desired Access: Maximum Allowed","8008"
"10:46:21.0988504 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\(Default)","0.0000059","Length: 12","8008"
"10:46:21.0988764 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000068","Query: Name","8008"
"10:46:21.0989016 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0989276 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000081","Desired Access: Maximum Allowed","8008"
"10:46:21.0989536 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\(Default)","0.0000056","Type: REG_SZ, Length: 32, Data: PSFactoryBuffer","8008"
"10:46:21.0989805 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000064","Query: Name","8008"
"10:46:21.0990061 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0990321 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InprocServer32","0.0000086","Desired Access: Read","8008"
"10:46:21.0990594 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0990820 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InprocServer32","0.0000124","Desired Access: Read","8008"
"10:46:21.0991179 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000064","Query: Name","8008"
"10:46:21.0991443 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0991699 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000086","Desired Access: Maximum Allowed","8008"
"10:46:21.0991981 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32\InprocServer32","0.0000047","Length: 12","8008"
"10:46:21.0992216 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000068","Query: Name","8008"
"10:46:21.0992467 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0992723 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000081","Desired Access: Maximum Allowed","8008"
"10:46:21.0992988 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32\(Default)","0.0000047","Length: 12","8008"
"10:46:21.0993231 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000064","Query: Name","8008"
"10:46:21.0993487 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0993743 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000081","Desired Access: Maximum Allowed","8008"
"10:46:21.0994008 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32\(Default)","0.0000055","Type: REG_EXPAND_SZ, Length: 78, Data: %systemroot%\system32\wbem\wbemsvc.dll","8008"
"10:46:21.0994285 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000068","Query: Name","8008"
"10:46:21.0994541 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0994801 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000077","Desired Access: Maximum Allowed","8008"
"10:46:21.0995057 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32\(Default)","0.0000051","Type: REG_EXPAND_SZ, Length: 78, Data: %systemroot%\system32\wbem\wbemsvc.dll","8008"
"10:46:21.0995326 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000068","Query: Name","8008"
"10:46:21.0995582 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0995838 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000081","Desired Access: Maximum Allowed","8008"
"10:46:21.0996103 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32\ThreadingModel","0.0000051","Type: REG_SZ, Length: 10, Data: Both","8008"
"10:46:21.0996457 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000030","","8008"
"10:46:21.0996691 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000064","Query: Name","8008"
"10:46:21.0996947 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0997203 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InprocHandler32","0.0000086","Desired Access: Query Value","8008"
"10:46:21.0997472 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0997698 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InprocHandler32","0.0000056","Desired Access: Query Value","8008"
"10:46:21.0997950 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000060","Query: Name","8008"
"10:46:21.0998202 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0998449 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InprocHandler","0.0000081","Desired Access: Query Value","8008"
"10:46:21.0998714 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000025","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.0998931 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InprocHandler","0.0000060","Desired Access: Query Value","8008"
"10:46:21.0999281 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000026","","8008"
"10:46:21.1000024 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000064","Query: Name","8008"
"10:46:21.1000310 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1000510 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1000740 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000073","Desired Access: Read","8008"
"10:46:21.1001039 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000094","Desired Access: Read","8008"
"10:46:21.1001355 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000064","Query: Name","8008"
"10:46:21.1001619 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1001888 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\TreatAs","0.0000086","Desired Access: Query Value","8008"
"10:46:21.1002166 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1002387 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\TreatAs","0.0000056","Desired Access: Query Value","8008"
"10:46:21.1002639 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000068","Query: Name","8008"
"10:46:21.1002942 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000060","Query: Name","8008"
"10:46:21.1003202 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1003471 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000086","Desired Access: Maximum Allowed","8008"
"10:46:21.1003753 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\(Default)","0.0000047","Length: 12","8008"
"10:46:21.1004000 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000064","Query: Name","8008"
"10:46:21.1004286 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1004559 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000086","Desired Access: Maximum Allowed","8008"
"10:46:21.1004837 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\(Default)","0.0000046","Type: REG_SZ, Length: 32, Data: PSFactoryBuffer","8008"
"10:46:21.1005144 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000068","Query: Name","8008"
"10:46:21.1005417 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1005694 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InprocServer32","0.0000081","Desired Access: Read","8008"
"10:46:21.1005976 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000025","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1006206 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InprocServer32","0.0000060","Desired Access: Read","8008"
"10:46:21.1006488 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000064","Query: Name","8008"
"10:46:21.1006752 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1007025 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000081","Desired Access: Maximum Allowed","8008"
"10:46:21.1007307 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32\InprocServer32","0.0000051","Length: 12","8008"
"10:46:21.1007550 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000064","Query: Name","8008"
"10:46:21.1007815 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1008079 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000081","Desired Access: Maximum Allowed","8008"
"10:46:21.1008357 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32\(Default)","0.0000042","Length: 12","8008"
"10:46:21.1008604 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000068","Query: Name","8008"
"10:46:21.1008873 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1009142 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000076","Desired Access: Maximum Allowed","8008"
"10:46:21.1009415 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32\(Default)","0.0000051","Type: REG_EXPAND_SZ, Length: 78, Data: %systemroot%\system32\wbem\wbemsvc.dll","8008"
"10:46:21.1009688 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000064","Query: Name","8008"
"10:46:21.1009948 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1010217 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000081","Desired Access: Maximum Allowed","8008"
"10:46:21.1010486 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32\(Default)","0.0000051","Type: REG_EXPAND_SZ, Length: 78, Data: %systemroot%\system32\wbem\wbemsvc.dll","8008"
"10:46:21.1010754 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000064","Query: Name","8008"
"10:46:21.1011015 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1011279 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000081","Desired Access: Maximum Allowed","8008"
"10:46:21.1011557 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32\ThreadingModel","0.0000051","Type: REG_SZ, Length: 10, Data: Both","8008"
"10:46:21.1011877 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InProcServer32","0.0000025","","8008"
"10:46:21.1012103 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000064","Query: Name","8008"
"10:46:21.1012367 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1012632 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InprocHandler32","0.0000081","Desired Access: Query Value","8008"
"10:46:21.1012905 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1013139 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InprocHandler32","0.0000056","Desired Access: Query Value","8008"
"10:46:21.1013395 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000060","Query: Name","8008"
"10:46:21.1013651 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1013912 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InprocHandler","0.0000081","Desired Access: Query Value","8008"
"10:46:21.1014185 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1014411 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\InprocHandler","0.0000055","Desired Access: Query Value","8008"
"10:46:21.1014675 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000064","Query: Name","8008"
"10:46:21.1014940 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1015200 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\LocalServer32","0.0000081","Desired Access: Read","8008"
"10:46:21.1015478 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1015704 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\LocalServer32","0.0000059","Desired Access: Read","8008"
"10:46:21.1015960 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000064","Query: Name","8008"
"10:46:21.1016216 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1016476 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000081","Desired Access: Maximum Allowed","8008"
"10:46:21.1016745 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\AppID","0.0000047","Length: 112","8008"
"10:46:21.1016979 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000064","Query: Name","8008"
"10:46:21.1017244 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1017504 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\LocalServer","0.0000086","Desired Access: Query Value","8008"
"10:46:21.1017777 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1018008 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\LocalServer","0.0000059","Desired Access: Query Value","8008"
"10:46:21.1018268 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000060","Query: Name","8008"
"10:46:21.1018541 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1018742 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1018963 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000064","Desired Access: Read","8008"
"10:46:21.1019254 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000085","Desired Access: Read","8008"
"10:46:21.1019557 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000064","Query: Name","8008"
"10:46:21.1019817 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1020086 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\Elevation","0.0000081","Desired Access: Read","8008"
"10:46:21.1020359 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1020585 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\Elevation","0.0000060","Desired Access: Read","8008"
"10:46:21.1020888 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000021","","8008"
"10:46:21.1021152 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000022","","8008"
"10:46:21.1021451 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000055","Query: Name","8008"
"10:46:21.1021711 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1021912 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1022129 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000069","Desired Access: Read","8008"
"10:46:21.1022415 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000081","Desired Access: Read","8008"
"10:46:21.1022710 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000059","Query: Name","8008"
"10:46:21.1022961 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1023217 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\TreatAs","0.0000081","Desired Access: Read","8008"
"10:46:21.1023478 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1023695 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}\TreatAs","0.0000056","Desired Access: Read","8008"
"10:46:21.1023968 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{E7D35CFA-348B-485E-B524-252725D697CA}","0.0000022","","8008"
"10:46:21.1027518 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\oleaut32.dll","0.0344210","Offset: 136,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8008"
"10:46:21.1214501 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000128","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:21.1214979 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000098","AllocationSize: 16,384, EndOfFile: 13,482, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:21.1215559 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000038","SyncType: SyncTypeOther","5728"
"10:46:21.1216707 AM","firefox.exe","7384","QueryNameInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000115","Name: \Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","5728"
"10:46:21.1223162 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000418","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.1223845 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000072","CreationTime: 3/26/2020 10:35:25 AM, LastAccessTime: 3/26/2020 10:35:40 AM, LastWriteTime: 3/26/2020 10:35:40 AM, ChangeTime: 3/26/2020 10:35:41 AM, FileAttributes: A","5728"
"10:46:21.1224139 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000120","","5728"
"10:46:21.1225155 AM","firefox.exe","7384","CreateFile","C:\","0.0000217","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.1225671 AM","firefox.exe","7384","QueryDirectory","C:\Users","0.0000299","Filter: Users, 1: Users","5728"
"10:46:21.1226268 AM","firefox.exe","7384","CloseFile","C:\","0.0000090","","5728"
"10:46:21.1228598 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000230","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.1229118 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles","0.0000248","Filter: diggles, 1: diggles","5728"
"10:46:21.1229626 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000098","","5728"
"10:46:21.1231887 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000222","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.1232387 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData","0.0000217","Filter: AppData, 1: AppData","5728"
"10:46:21.1232852 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000085","","5728"
"10:46:21.1235006 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000256","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.1235527 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming","0.0000162","Filter: Roaming, 1: Roaming","5728"
"10:46:21.1235924 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000081","","5728"
"10:46:21.1237993 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000218","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.1238462 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000192","Filter: Mozilla, 1: Mozilla","5728"
"10:46:21.1238991 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000086","","5728"
"10:46:21.1241142 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000235","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.1241654 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000162","Filter: Firefox, 1: Firefox","5728"
"10:46:21.1242055 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000081","","5728"
"10:46:21.1244210 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000243","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.1244734 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000184","Filter: Profiles, 1: Profiles","5728"
"10:46:21.1245157 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000081","","5728"
"10:46:21.1247478 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000273","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.1248011 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000196","Filter: prefs.js, 1: prefs.js","5728"
"10:46:21.1248446 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000081","","5728"
"10:46:21.1252611 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.1253144 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000064","CreationTime: 3/26/2020 10:35:25 AM, LastAccessTime: 3/26/2020 10:35:40 AM, LastWriteTime: 3/26/2020 10:35:40 AM, ChangeTime: 3/26/2020 10:35:41 AM, FileAttributes: A","5728"
"10:46:21.1253383 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000090","","5728"
"10:46:21.1254155 AM","firefox.exe","7384","CreateFile","C:\","0.0000175","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.1254578 AM","firefox.exe","7384","QueryDirectory","C:\Users","0.0000204","Filter: Users, 1: Users","5728"
"10:46:21.1255021 AM","firefox.exe","7384","CloseFile","C:\","0.0000081","","5728"
"10:46:21.1257082 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000209","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.1257560 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles","0.0000192","Filter: diggles, 1: diggles","5728"
"10:46:21.1258430 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000133","","5728"
"10:46:21.1260769 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000213","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.1261246 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData","0.0000201","Filter: AppData, 1: AppData","5728"
"10:46:21.1261690 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000081","","5728"
"10:46:21.1264272 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000243","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.1264792 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming","0.0000184","Filter: Roaming, 1: Roaming","5728"
"10:46:21.1265223 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000085","","5728"
"10:46:21.1267642 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000235","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.1268141 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000192","Filter: Mozilla, 1: Mozilla","5728"
"10:46:21.1268619 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000115","","5728"
"10:46:21.1271064 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000248","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.1271563 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000171","Filter: Firefox, 1: Firefox","5728"
"10:46:21.1271981 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000081","","5728"
"10:46:21.1274128 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000247","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.1274622 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000180","Filter: Profiles, 1: Profiles","5728"
"10:46:21.1275036 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000086","","5728"
"10:46:21.1277357 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000265","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.1277882 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000192","Filter: prefs.js, 1: prefs.js","5728"
"10:46:21.1278313 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000081","","5728"
"10:46:21.1279290 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000115","","5728"
"10:46:21.1311956 AM","firefox.exe","7384","ReadFile","C:","0.0069423","Offset: 12,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:21.1372747 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\oleaut32.dll","0.0011734","Offset: 136,192, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8008"
"10:46:21.1385065 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\user.js","0.0000734","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","5728"
"10:46:21.1388956 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 7964","5728"
"10:46:21.1394597 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 6840","5728"
"10:46:21.1395762 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 1824","5728"
"10:46:21.1397102 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 5948","5728"
"10:46:21.1397870 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 2000","5728"
"10:46:21.1408242 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000158","Query: Name","8008"
"10:46:21.1408920 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000034","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1409300 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000030","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1409833 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{027947E1-D731-11CE-A357-000000000001}","0.0000585","Desired Access: Read","8008"
"10:46:21.1410883 AM","firefox.exe","7384","RegOpenKey","HKCR\Interface\{027947E1-D731-11CE-A357-000000000001}","0.0000960","Desired Access: Read","8008"
"10:46:21.1412978 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{027947E1-D731-11CE-A357-000000000001}","0.0000153","Query: Name","8008"
"10:46:21.1413515 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{027947E1-D731-11CE-A357-000000000001}","0.0000035","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1414108 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{027947E1-D731-11CE-A357-000000000001}\ProxyStubClsid32","0.0003354","Desired Access: Read","8008"
"10:46:21.1417987 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{027947E1-D731-11CE-A357-000000000001}","0.0000060","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1419216 AM","firefox.exe","7384","RegOpenKey","HKCR\Interface\{027947E1-D731-11CE-A357-000000000001}\ProxyStubClsid32","0.0000226","Desired Access: Read","8008"
"10:46:21.1420325 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{027947E1-D731-11CE-A357-000000000001}\ProxyStubClsid32","0.0000124","Query: Name","8008"
"10:46:21.1420833 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{027947E1-D731-11CE-A357-000000000001}\ProxyStubClsid32","0.0000034","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1421362 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{027947E1-D731-11CE-A357-000000000001}\ProxyStubClsid32","0.0000704","Desired Access: Maximum Allowed","8008"
"10:46:21.1422539 AM","firefox.exe","7384","RegQueryValue","HKCR\Interface\{027947E1-D731-11CE-A357-000000000001}\ProxyStubClsid32\(Default)","0.0000111","Type: REG_SZ, Length: 78, Data: {1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","8008"
"10:46:21.1423158 AM","firefox.exe","7384","RegCloseKey","HKCR\Interface\{027947E1-D731-11CE-A357-000000000001}\ProxyStubClsid32","0.0000056","","8008"
"10:46:21.1424289 AM","firefox.exe","7384","RegCloseKey","HKCR\Interface\{027947E1-D731-11CE-A357-000000000001}","0.0000042","","8008"
"10:46:21.1424818 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000085","Query: Name","8008"
"10:46:21.1425274 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000026","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1425496 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1425791 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000098","Desired Access: Read","8008"
"10:46:21.1426158 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000362","Desired Access: Read","8008"
"10:46:21.1426968 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000094","Query: Name","8008"
"10:46:21.1427293 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1427638 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\TreatAs","0.0000115","Desired Access: Query Value","8008"
"10:46:21.1427950 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1428270 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\TreatAs","0.0000209","Desired Access: Query Value","8008"
"10:46:21.1428713 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000086","Query: Name","8008"
"10:46:21.1429106 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000068","Query: Name","8008"
"10:46:21.1429375 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000025","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1429690 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000470","Desired Access: Maximum Allowed","8008"
"10:46:21.1430475 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\(Default)","0.0000111","Length: 12","8008"
"10:46:21.1430919 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000090","Query: Name","8008"
"10:46:21.1431555 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000038","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1432024 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000133","Desired Access: Maximum Allowed","8008"
"10:46:21.1432455 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\(Default)","0.0000086","Type: REG_SZ, Length: 130, Data: Microsoft WBEM (non)Standard Marshaling for IEnumWbemClassObject","8008"
"10:46:21.1434256 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000269","","6848"
"10:46:21.1436163 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0006336","Query: Name","8008"
"10:46:21.1440511 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000516","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","6848"
"10:46:21.1441611 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\twinapi.appcore.dll","0.0000090","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","6848"
"10:46:21.1442315 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\twinapi.appcore.dll","0.0000056","SyncType: SyncTypeOther","6848"
"10:46:21.1444342 AM","firefox.exe","7384","Load Image","C:\Windows\System32\twinapi.appcore.dll","0.0000000","Image Base: 0x7ffb44310000, Image Size: 0x1b8000","6848"
"10:46:21.1445187 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000136","Name: \Windows\System32\twinapi.appcore.dll","6848"
"10:46:21.1446164 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0172100","Offset: 33,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1447627 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0174179","Offset: 70,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1448489 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0176427","Offset: 74,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1451702 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0215766","Offset: 615,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1452543 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0217003","Offset: 619,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1453648 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0220254","Offset: 705,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1454313 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0230409","Offset: 709,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1454915 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0232627","Offset: 713,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1455487 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0240713","Offset: 717,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1456063 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0242961","Offset: 721,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1456634 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0251849","Offset: 726,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1457714 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0253974","Offset: 828,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1458294 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0262093","Offset: 832,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1458836 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0264337","Offset: 836,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1459625 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0270413","Offset: 873,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1460193 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0272670","Offset: 877,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1460756 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0278605","Offset: 881,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1461328 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0280836","Offset: 885,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1461899 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0286764","Offset: 889,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1462518 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0294814","Offset: 893,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1463086 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0301295","Offset: 898,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1463640 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0303775","Offset: 902,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1464199 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0310038","Offset: 906,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1464771 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0312107","Offset: 910,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1465326 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0318195","Offset: 914,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1465885 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0320341","Offset: 918,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1466473 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0326589","Offset: 922,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1467066 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0328423","Offset: 926,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1467834 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0334465","Offset: 963,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1468295 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0336649","Offset: 967,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1468747 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0342640","Offset: 971,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1470173 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0344555","Offset: 1,161,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1470966 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0350524","Offset: 1,231,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1471423 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0352725","Offset: 1,235,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1471986 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0359335","Offset: 1,272,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1473548 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0360730","Offset: 1,366,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1474627 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0365061","Offset: 1,370,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1475442 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0366366","Offset: 1,374,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1475788 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000072","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1476223 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0368320","Offset: 1,378,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1476590 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0015569","Desired Access: Read","8008"
"10:46:21.1476777 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0369929","Offset: 1,382,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1477507 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0371337","Offset: 1,387,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1478164 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0372515","Offset: 1,423,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1478646 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0374034","Offset: 1,427,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1479137 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0375586","Offset: 1,432,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1479982 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0377165","Offset: 1,530,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1480451 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0378624","Offset: 1,534,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1480946 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0380220","Offset: 1,542,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1481441 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0382294","Offset: 1,546,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1481936 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0393263","Offset: 1,550,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1482418 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0395226","Offset: 1,554,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1482917 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0396728","Offset: 1,559,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1483408 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0398085","Offset: 1,563,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1483886 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0399117","Offset: 1,567,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1484351 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0400150","Offset: 1,571,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1484850 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0402578","Offset: 1,575,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1485341 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0402394","Offset: 1,579,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1485827 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0403798","Offset: 1,583,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1486352 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0404600","Offset: 1,587,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1486821 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0405991","Offset: 1,591,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1487303 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0407118","Offset: 1,595,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1487764 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0408210","Offset: 1,600,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1488558 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0408994","Offset: 1,680,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1489134 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0410185","Offset: 1,700,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1489620 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.appcore.dll","0.0411162","Offset: 1,709,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1492765 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000064","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1493324 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000243","Desired Access: Read","8008"
"10:46:21.1494083 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000166","Query: Name","8008"
"10:46:21.1494676 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000034","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1495231 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000183","Desired Access: Maximum Allowed","8008"
"10:46:21.1495768 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\InprocServer32","0.0000081","Length: 12","8008"
"10:46:21.1496186 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000107","Query: Name","8008"
"10:46:21.1496630 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000427","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1497565 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000153","Desired Access: Maximum Allowed","8008"
"10:46:21.1498051 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\(Default)","0.0000077","Length: 12","8008"
"10:46:21.1498456 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000094","Query: Name","8008"
"10:46:21.1498866 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000030","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1499314 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000136","Desired Access: Maximum Allowed","8008"
"10:46:21.1499741 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\(Default)","0.0000076","Type: REG_EXPAND_SZ, Length: 80, Data: %systemroot%\system32\wbem\fastprox.dll","8008"
"10:46:21.1500180 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000090","Query: Name","8008"
"10:46:21.1500568 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000030","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1500991 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000123","Desired Access: Maximum Allowed","8008"
"10:46:21.1501383 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\(Default)","0.0000069","Type: REG_EXPAND_SZ, Length: 80, Data: %systemroot%\system32\wbem\fastprox.dll","8008"
"10:46:21.1501814 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000090","Query: Name","8008"
"10:46:21.1502194 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000034","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1502633 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000116","Desired Access: Maximum Allowed","8008"
"10:46:21.1503034 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\ThreadingModel","0.0000073","Type: REG_SZ, Length: 10, Data: Both","8008"
"10:46:21.1503542 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000043","","8008"
"10:46:21.1503884 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000102","Query: Name","8008"
"10:46:21.1504289 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000030","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1504694 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocHandler32","0.0000111","Desired Access: Query Value","8008"
"10:46:21.1505095 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000034","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1505458 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocHandler32","0.0000077","Desired Access: Query Value","8008"
"10:46:21.1505842 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000094","Query: Name","8008"
"10:46:21.1506239 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000034","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1506678 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocHandler","0.0000132","Desired Access: Query Value","8008"
"10:46:21.1507101 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000038","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1507472 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocHandler","0.0000094","Desired Access: Query Value","8008"
"10:46:21.1508018 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000043","","8008"
"10:46:21.1509358 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000106","Query: Name","8008"
"10:46:21.1509840 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000038","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1510173 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000029","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1510565 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000115","Desired Access: Read","8008"
"10:46:21.1511086 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000162","Desired Access: Read","8008"
"10:46:21.1511640 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000248","Query: Name","8008"
"10:46:21.1512242 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000034","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1512707 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\TreatAs","0.0000137","Desired Access: Query Value","8008"
"10:46:21.1513159 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000030","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1513646 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\TreatAs","0.0000094","Desired Access: Query Value","8008"
"10:46:21.1514068 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000098","Query: Name","8008"
"10:46:21.1514567 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000090","Query: Name","8008"
"10:46:21.1514977 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000034","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1515455 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000136","Desired Access: Maximum Allowed","8008"
"10:46:21.1516688 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\(Default)","0.0000124","Length: 12","8008"
"10:46:21.1517336 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000137","Query: Name","8008"
"10:46:21.1517887 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000034","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1518548 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000175","Desired Access: Maximum Allowed","8008"
"10:46:21.1519120 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\(Default)","0.0000089","Type: REG_SZ, Length: 130, Data: Microsoft WBEM (non)Standard Marshaling for IEnumWbemClassObject","8008"
"10:46:21.1519606 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000107","Query: Name","8008"
"10:46:21.1520058 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000035","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1520592 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000149","Desired Access: Read","8008"
"10:46:21.1521070 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000034","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1521462 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000128","Desired Access: Read","8008"
"10:46:21.1521991 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000115","Query: Name","8008"
"10:46:21.1522465 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000030","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1522930 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000141","Desired Access: Maximum Allowed","8008"
"10:46:21.1524999 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000043","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1525396 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000128","Desired Access: Maximum Allowed, Granted Access: Read","6932"
"10:46:21.1525874 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000094","Type: REG_DWORD, Length: 4, Data: 8","6932"
"10:46:21.1527000 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000081","Type: REG_DWORD, Length: 4, Data: 8","6932"
"10:46:21.1527474 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000034","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1527824 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000085","Desired Access: Read","6932"
"10:46:21.1528221 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000072","Type: REG_DWORD, Length: 4, Data: 1015","6932"
"10:46:21.1528558 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000068","Type: REG_DWORD, Length: 4, Data: 14","6932"
"10:46:21.1528899 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000034","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1529249 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000209","Desired Access: Maximum Allowed, Granted Access: Read","6932"
"10:46:21.1529855 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000030","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1530153 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000163","Desired Access: Read","6932"
"10:46:21.1530683 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000072","Length: 144","6932"
"10:46:21.1531024 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000081","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1531532 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000076","","6932"
"10:46:21.1531916 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000029","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1532240 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000145","Desired Access: Read","6932"
"10:46:21.1532718 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000064","Length: 144","6932"
"10:46:21.1533029 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000073","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1533452 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000034","","6932"
"10:46:21.1533784 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000026","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1534092 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000145","Desired Access: Read","6932"
"10:46:21.1534569 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000064","Length: 144","6932"
"10:46:21.1534868 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000068","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1535265 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000038","","6932"
"10:46:21.1536097 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000038","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1536430 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000153","Desired Access: Read","6932"
"10:46:21.1536989 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000072","Length: 144","6932"
"10:46:21.1537309 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000076","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1537714 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000038","","6932"
"10:46:21.1538047 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000034","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1538367 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000141","Desired Access: Read","6932"
"10:46:21.1538840 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000069","Length: 144","6932"
"10:46:21.1539152 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000072","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1539553 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000034","","6932"
"10:46:21.1539869 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000030","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1540172 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000132","Desired Access: Read","6932"
"10:46:21.1540624 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000068","Length: 144","6932"
"10:46:21.1540935 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000073","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1541315 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000034","","6932"
"10:46:21.1541631 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000030","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1541938 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000141","Desired Access: Read","6932"
"10:46:21.1542416 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000081","Length: 144","6932"
"10:46:21.1542744 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000073","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1543137 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000038","","6932"
"10:46:21.1543470 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000034","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1543794 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000145","Desired Access: Read","6932"
"10:46:21.1544255 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000072","Length: 144","6932"
"10:46:21.1544575 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000072","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1544946 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000034","","6932"
"10:46:21.1545253 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000034","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1545552 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000136","Desired Access: Read","6932"
"10:46:21.1546025 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000069","Length: 144","6932"
"10:46:21.1546345 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000086","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1546759 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000039","","6932"
"10:46:21.1547092 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000030","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1547425 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000158","Desired Access: Read","6932"
"10:46:21.1547920 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000068","Length: 144","6932"
"10:46:21.1548261 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000077","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1548658 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000038","","6932"
"10:46:21.1548974 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000034","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1549298 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000149","Desired Access: Read","6932"
"10:46:21.1549784 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000090","Length: 144","6932"
"10:46:21.1550134 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000098","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1550561 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000068","","6932"
"10:46:21.1550915 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000034","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1551244 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000145","Desired Access: Read","6932"
"10:46:21.1551721 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000069","Length: 144","6932"
"10:46:21.1552041 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000094","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1552468 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000039","","6932"
"10:46:21.1555361 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000141","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1555873 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000175","Desired Access: Read","6932"
"10:46:21.1556428 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000068","Length: 144","6932"
"10:46:21.1556756 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000077","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1557183 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000042","","6932"
"10:46:21.1557537 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000030","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1557870 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000166","Desired Access: Read","6932"
"10:46:21.1558390 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000069","Length: 144","6932"
"10:46:21.1558719 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000077","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1559116 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000042","","6932"
"10:46:21.1559423 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000030","","6932"
"10:46:21.1560101 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000073","","6932"
"10:46:21.1560511 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000034","","6932"
"10:46:21.1561287 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000039","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1561637 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000132","Desired Access: All Access","6932"
"10:46:21.1562038 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0001605","Desired Access: All Access","6932"
"10:46:21.1562674 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000132","Information: Owner","6932"
"10:46:21.1563186 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000055","Information: Owner","6932"
"10:46:21.1563971 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000038","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1564304 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000115","Desired Access: Read","6932"
"10:46:21.1564675 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000115","Desired Access: Read","6932"
"10:46:21.1565119 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000077","Length: 16","6932"
"10:46:21.1565460 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000073","Type: REG_SZ, Length: 8, Data: 2.0","6932"
"10:46:21.1565827 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000068","Length: 44","6932"
"10:46:21.1566134 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000073","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","6932"
"10:46:21.1566565 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000034","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1566889 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000120","Desired Access: Maximum Allowed, Granted Access: Read","6932"
"10:46:21.1567291 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000076","Type: REG_DWORD, Length: 4, Data: 8","6932"
"10:46:21.1568199 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000077","Type: REG_DWORD, Length: 4, Data: 8","6932"
"10:46:21.1568690 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000034","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1569031 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000086","Desired Access: Read","6932"
"10:46:21.1569394 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000068","Type: REG_DWORD, Length: 4, Data: 1015","6932"
"10:46:21.1569723 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000064","Type: REG_DWORD, Length: 4, Data: 14","6932"
"10:46:21.1570038 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000030","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1571643 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000064","Desired Access: Maximum Allowed, Granted Access: Read","6932"
"10:46:21.1571937 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1572103 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000047","Desired Access: Read","6932"
"10:46:21.1572317 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000038","Length: 144","6932"
"10:46:21.1572487 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1572735 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000021","","6932"
"10:46:21.1572910 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1573076 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000043","Desired Access: Read","6932"
"10:46:21.1573277 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000038","Length: 144","6932"
"10:46:21.1573439 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1573648 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","6932"
"10:46:21.1573806 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1573972 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000039","Desired Access: Read","6932"
"10:46:21.1574160 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1574318 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1574527 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000017","","6932"
"10:46:21.1574685 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1574843 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000038","Desired Access: Read","6932"
"10:46:21.1575039 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1575205 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1575402 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","","6932"
"10:46:21.1575564 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1575726 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000042","Desired Access: Read","6932"
"10:46:21.1575914 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000038","Length: 144","6932"
"10:46:21.1576076 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1576272 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000017","","6932"
"10:46:21.1576434 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000107","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1576690 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000056","Desired Access: Read","6932"
"10:46:21.1576912 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1577070 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1577270 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000017","","6932"
"10:46:21.1577428 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1577595 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000042","Desired Access: Read","6932"
"10:46:21.1577787 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1577940 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1578132 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000017","","6932"
"10:46:21.1578286 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1578444 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000038","Desired Access: Read","6932"
"10:46:21.1578627 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1578785 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1578981 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000013","","6932"
"10:46:21.1579139 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1579288 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000039","Desired Access: Read","6932"
"10:46:21.1579463 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000030","Length: 144","6932"
"10:46:21.1579608 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1579847 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","","6932"
"10:46:21.1580010 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1580176 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000038","Desired Access: Read","6932"
"10:46:21.1580359 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000035","Length: 144","6932"
"10:46:21.1580526 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1580722 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000021","","6932"
"10:46:21.1580893 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1581055 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000085","Desired Access: Read","6932"
"10:46:21.1581597 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000055","Length: 144","6932"
"10:46:21.1581827 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000120","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1581874 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\InprocServer32","0.0041613","Length: 12","8008"
"10:46:21.1582207 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000034","","6932"
"10:46:21.1582454 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000026","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1582672 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000060","Desired Access: Read","6932"
"10:46:21.1582907 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000042","Length: 144","6932"
"10:46:21.1583086 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1583312 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000017","","6932"
"10:46:21.1583474 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1583636 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000047","Desired Access: Read","6932"
"10:46:21.1583828 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1583973 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1584157 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000013","","6932"
"10:46:21.1584583 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1584737 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000055","Desired Access: Read","6932"
"10:46:21.1584959 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1585095 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1585287 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000022","","6932"
"10:46:21.1585432 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000018","","6932"
"10:46:21.1585731 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000073","","6932"
"10:46:21.1585962 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000068","","6932"
"10:46:21.1586397 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1586559 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000055","Desired Access: All Access","6932"
"10:46:21.1586738 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000602","Desired Access: All Access","6932"
"10:46:21.1587045 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000056","Information: Owner","6932"
"10:46:21.1587271 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000026","Information: Owner","6932"
"10:46:21.1587574 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1587847 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000069","Desired Access: Read","6932"
"10:46:21.1588078 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000068","Desired Access: Read","6932"
"10:46:21.1588342 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000047","Length: 16","6932"
"10:46:21.1588530 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000043","Type: REG_SZ, Length: 8, Data: 2.0","6932"
"10:46:21.1588718 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000038","Length: 44","6932"
"10:46:21.1588876 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000034","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","6932"
"10:46:21.1589102 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000021","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1589281 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000060","Desired Access: Maximum Allowed, Granted Access: Read","6932"
"10:46:21.1589482 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000038","Type: REG_DWORD, Length: 4, Data: 8","6932"
"10:46:21.1590062 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","6932"
"10:46:21.1590254 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1590424 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000047","Desired Access: Read","6932"
"10:46:21.1590621 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000038","Type: REG_DWORD, Length: 4, Data: 1015","6932"
"10:46:21.1590791 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000035","Type: REG_DWORD, Length: 4, Data: 14","6932"
"10:46:21.1590949 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1591107 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000047","Desired Access: Maximum Allowed, Granted Access: Read","6932"
"10:46:21.1591308 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1591457 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000047","Desired Access: Read","6932"
"10:46:21.1591666 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000038","Length: 144","6932"
"10:46:21.1591832 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1592063 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000017","","6932"
"10:46:21.1592221 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1592366 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000042","Desired Access: Read","6932"
"10:46:21.1592549 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1592703 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1592912 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","6932"
"10:46:21.1593083 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1593215 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000068","Desired Access: Read","6932"
"10:46:21.1593420 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000038","Length: 144","6932"
"10:46:21.1593573 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1593782 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000022","","6932"
"10:46:21.1593944 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1594111 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000047","Desired Access: Read","6932"
"10:46:21.1594311 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000035","Length: 144","6932"
"10:46:21.1594482 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1594712 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000026","","6932"
"10:46:21.1594887 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000090","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1595143 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000047","Desired Access: Read","6932"
"10:46:21.1595378 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000038","Length: 144","6932"
"10:46:21.1595553 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1595775 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000021","","6932"
"10:46:21.1595958 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000077","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1596202 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000046","Desired Access: Read","6932"
"10:46:21.1596411 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000042","Length: 144","6932"
"10:46:21.1596581 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1596795 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000021","","6932"
"10:46:21.1597055 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000025","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1597251 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000051","Desired Access: Read","6932"
"10:46:21.1597477 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000039","Length: 144","6932"
"10:46:21.1597648 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1597878 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000022","","6932"
"10:46:21.1598058 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1598232 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000047","Desired Access: Read","6932"
"10:46:21.1598442 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000038","Length: 144","6932"
"10:46:21.1598608 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1598826 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000021","","6932"
"10:46:21.1599124 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1599359 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000047","Desired Access: Read","6932"
"10:46:21.1599572 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000039","Length: 144","6932"
"10:46:21.1599747 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1599965 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","","6932"
"10:46:21.1600135 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000035","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1600323 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000043","Desired Access: Read","6932"
"10:46:21.1600588 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000051","Length: 144","6932"
"10:46:21.1600771 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1600980 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000022","","6932"
"10:46:21.1601219 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1601381 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000073","Desired Access: Read","6932"
"10:46:21.1601620 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1601782 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1601987 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000017","","6932"
"10:46:21.1602149 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1602299 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000042","Desired Access: Read","6932"
"10:46:21.1602495 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1602657 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1602866 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000017","","6932"
"10:46:21.1603032 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000018","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1603203 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000047","Desired Access: Read","6932"
"10:46:21.1603408 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1603579 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1603796 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000017","","6932"
"10:46:21.1603963 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1604125 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000042","Desired Access: Read","6932"
"10:46:21.1604317 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000038","Length: 144","6932"
"10:46:21.1604483 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1604701 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000017","","6932"
"10:46:21.1604867 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","","6932"
"10:46:21.1605234 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000030","","6932"
"10:46:21.1605413 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","","6932"
"10:46:21.1605840 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1606028 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000072","Desired Access: All Access","6932"
"10:46:21.1606250 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000712","Desired Access: All Access","6932"
"10:46:21.1606514 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000051","Information: Owner","6932"
"10:46:21.1606727 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000026","Information: Owner","6932"
"10:46:21.1607137 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1607299 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000064","Desired Access: Read","6932"
"10:46:21.1607491 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000064","Desired Access: Read","6932"
"10:46:21.1607722 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000042","Length: 16","6932"
"10:46:21.1607901 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0001079","Type: REG_SZ, Length: 8, Data: 2.0","6932"
"10:46:21.1609253 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000047","Length: 44","6932"
"10:46:21.1609479 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000043","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","6932"
"10:46:21.1609893 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000026","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1610119 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000073","Desired Access: Maximum Allowed, Granted Access: Read","6932"
"10:46:21.1610371 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000043","Type: REG_DWORD, Length: 4, Data: 8","6932"
"10:46:21.1610968 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000039","Type: REG_DWORD, Length: 4, Data: 8","6932"
"10:46:21.1611182 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1611370 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000046","Desired Access: Read","6932"
"10:46:21.1611570 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000038","Type: REG_DWORD, Length: 4, Data: 1015","6932"
"10:46:21.1611745 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000034","Type: REG_DWORD, Length: 4, Data: 14","6932"
"10:46:21.1611924 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1612095 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000060","Desired Access: Maximum Allowed, Granted Access: Read","6932"
"10:46:21.1612312 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1612483 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000047","Desired Access: Read","6932"
"10:46:21.1612696 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000043","Length: 144","6932"
"10:46:21.1612871 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1613132 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000025","","6932"
"10:46:21.1613311 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1613482 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000042","Desired Access: Read","6932"
"10:46:21.1613682 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1613848 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1614075 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000021","","6932"
"10:46:21.1614241 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1614412 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000106","Desired Access: Read","6932"
"10:46:21.1614685 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000038","Length: 144","6932"
"10:46:21.1614855 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1615073 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000021","","6932"
"10:46:21.1615244 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1615419 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000042","Desired Access: Read","6932"
"10:46:21.1615619 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000039","Length: 144","6932"
"10:46:21.1615781 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1615986 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","","6932"
"10:46:21.1616148 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1616323 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000039","Desired Access: Read","6932"
"10:46:21.1616515 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000043","Length: 144","6932"
"10:46:21.1616690 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1616912 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000021","","6932"
"10:46:21.1617083 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1617334 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000047","Desired Access: Read","6932"
"10:46:21.1617543 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000035","Length: 144","6932"
"10:46:21.1617706 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1617910 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000017","","6932"
"10:46:21.1618102 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1618273 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000043","Desired Access: Read","6932"
"10:46:21.1618465 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1618623 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000060","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1618845 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000021","","6932"
"10:46:21.1619015 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1619182 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000042","Desired Access: Read","6932"
"10:46:21.1619382 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000039","Length: 144","6932"
"10:46:21.1619553 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1619758 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000017","","6932"
"10:46:21.1619916 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1620074 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000042","Desired Access: Read","6932"
"10:46:21.1620270 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000141","Length: 144","6932"
"10:46:21.1620547 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1620756 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","","6932"
"10:46:21.1620923 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1621085 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000042","Desired Access: Read","6932"
"10:46:21.1621281 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1621443 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1621669 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000017","","6932"
"10:46:21.1621831 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1621994 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000042","Desired Access: Read","6932"
"10:46:21.1622190 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000038","Length: 144","6932"
"10:46:21.1622356 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000090","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1622629 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000022","","6932"
"10:46:21.1622791 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1622966 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000047","Desired Access: Read","6932"
"10:46:21.1623197 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000038","Length: 144","6932"
"10:46:21.1623363 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1623589 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000022","","6932"
"10:46:21.1623764 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1623858 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000090","Query: Name","8008"
"10:46:21.1623939 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000047","Desired Access: Read","6932"
"10:46:21.1624144 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000043","Length: 144","6932"
"10:46:21.1624208 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1624323 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1624519 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000611","Desired Access: Maximum Allowed","8008"
"10:46:21.1624532 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000017","","6932"
"10:46:21.1624703 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1624869 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000047","Desired Access: Read","6932"
"10:46:21.1625151 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000038","Length: 144","6932"
"10:46:21.1625317 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1625351 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\(Default)","0.0000047","Length: 12","8008"
"10:46:21.1625539 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000017","","6932"
"10:46:21.1625616 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000064","Query: Name","8008"
"10:46:21.1625706 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","","6932"
"10:46:21.1625979 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000025","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1626034 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000056","","6932"
"10:46:21.1626286 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000098","Desired Access: Maximum Allowed","8008"
"10:46:21.1626341 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000022","","6932"
"10:46:21.1626563 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\(Default)","0.0000051","Type: REG_EXPAND_SZ, Length: 80, Data: %systemroot%\system32\wbem\fastprox.dll","8008"
"10:46:21.1626781 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1626840 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000060","Query: Name","8008"
"10:46:21.1626973 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000081","Desired Access: All Access","6932"
"10:46:21.1627084 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1627195 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000661","Desired Access: All Access","6932"
"10:46:21.1627348 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000077","Desired Access: Maximum Allowed","8008"
"10:46:21.1627532 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000051","Information: Owner","6932"
"10:46:21.1627609 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\(Default)","0.0000042","Type: REG_EXPAND_SZ, Length: 80, Data: %systemroot%\system32\wbem\fastprox.dll","8008"
"10:46:21.1627783 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000026","Information: Owner","6932"
"10:46:21.1628018 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000077","Query: Name","8008"
"10:46:21.1628146 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1628355 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000077","Desired Access: Read","6932"
"10:46:21.1628368 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000316","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1628573 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000081","Desired Access: Read","6932"
"10:46:21.1628833 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000043","Length: 16","6932"
"10:46:21.1628923 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000076","Desired Access: Maximum Allowed","8008"
"10:46:21.1629017 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000034","Type: REG_SZ, Length: 8, Data: 2.0","6932"
"10:46:21.1629170 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32\ThreadingModel","0.0000043","Type: REG_SZ, Length: 10, Data: Both","8008"
"10:46:21.1629187 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000034","Length: 44","6932"
"10:46:21.1629345 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000034","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","6932"
"10:46:21.1629473 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocServer32","0.0000017","","8008"
"10:46:21.1629601 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1629686 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000056","Query: Name","8008"
"10:46:21.1629763 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000060","Desired Access: Maximum Allowed, Granted Access: Read","6932"
"10:46:21.1629917 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1629968 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","6932"
"10:46:21.1630156 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocHandler32","0.0000077","Desired Access: Query Value","8008"
"10:46:21.1630416 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1630548 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","6932"
"10:46:21.1630604 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocHandler32","0.0000047","Desired Access: Query Value","8008"
"10:46:21.1630740 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1630817 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000047","Query: Name","8008"
"10:46:21.1630890 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000038","Desired Access: Read","6932"
"10:46:21.1631116 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1631150 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000034","Type: REG_DWORD, Length: 4, Data: 1015","6932"
"10:46:21.1631312 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000043","Type: REG_DWORD, Length: 4, Data: 14","6932"
"10:46:21.1631333 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocHandler","0.0000235","Desired Access: Query Value","8008"
"10:46:21.1631483 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000055","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1631683 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000051","Desired Access: Maximum Allowed, Granted Access: Read","6932"
"10:46:21.1631730 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1631892 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1631918 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\InprocHandler","0.0000047","Desired Access: Query Value","8008"
"10:46:21.1632046 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000047","Desired Access: Read","6932"
"10:46:21.1632131 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000060","Query: Name","8008"
"10:46:21.1632251 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000038","Length: 144","6932"
"10:46:21.1632349 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1632417 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1632575 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\LocalServer32","0.0000068","Desired Access: Read","8008"
"10:46:21.1632652 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000017","","6932"
"10:46:21.1632810 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000759","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1632852 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1633010 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000043","Desired Access: Read","6932"
"10:46:21.1633198 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1633351 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000035","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1633561 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000012","","6932"
"10:46:21.1633710 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1633757 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\LocalServer32","0.0000042","Desired Access: Read","8008"
"10:46:21.1633859 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000043","Desired Access: Read","6932"
"10:46:21.1634038 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000035","Length: 144","6932"
"10:46:21.1634196 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000051","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1634414 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000060","","6932"
"10:46:21.1634512 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000051","Query: Name","8008"
"10:46:21.1634631 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000018","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1634734 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1634789 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000039","Desired Access: Read","6932"
"10:46:21.1634960 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1635109 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000077","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1635361 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","","6932"
"10:46:21.1635540 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1635724 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000042","Desired Access: Read","6932"
"10:46:21.1635732 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000077","Desired Access: Maximum Allowed","8008"
"10:46:21.1635920 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1635967 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\AppID","0.0000034","Length: 112","8008"
"10:46:21.1636082 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1636163 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000047","Query: Name","8008"
"10:46:21.1636278 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000017","","6932"
"10:46:21.1636372 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1636423 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000018","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1636564 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000039","Desired Access: Read","6932"
"10:46:21.1636735 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000030","Length: 144","6932"
"10:46:21.1636884 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1637055 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000013","","6932"
"10:46:21.1637209 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1637345 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000034","Desired Access: Read","6932"
"10:46:21.1637520 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1637661 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1637840 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000017","","6932"
"10:46:21.1637968 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1638288 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000047","Desired Access: Read","6932"
"10:46:21.1638668 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000051","Length: 144","6932"
"10:46:21.1638881 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1639137 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000021","","6932"
"10:46:21.1639333 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1639551 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000128","Desired Access: Read","6932"
"10:46:21.1639850 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000038","Length: 144","6932"
"10:46:21.1640020 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1640234 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","","6932"
"10:46:21.1640409 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1640583 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000052","Desired Access: Read","6932"
"10:46:21.1640793 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1640942 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1641151 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000021","","6932"
"10:46:21.1641309 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1641458 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000043","Desired Access: Read","6932"
"10:46:21.1641650 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000039","Length: 144","6932"
"10:46:21.1641795 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1641991 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000082","","6932"
"10:46:21.1642226 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1642384 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000064","Desired Access: Read","6932"
"10:46:21.1642610 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1642768 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1642956 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000017","","6932"
"10:46:21.1643109 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1643263 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000043","Desired Access: Read","6932"
"10:46:21.1643510 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000035","Length: 144","6932"
"10:46:21.1643664 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1643843 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000017","","6932"
"10:46:21.1643988 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1644129 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000043","Desired Access: Read","6932"
"10:46:21.1644308 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1644466 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1644581 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\LocalServer","0.0000116","Desired Access: Query Value","8008"
"10:46:21.1644658 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000021","","6932"
"10:46:21.1644816 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","","6932"
"10:46:21.1644944 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000055","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1645354 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000047","","6932"
"10:46:21.1645366 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\LocalServer","0.0000073","Desired Access: Query Value","8008"
"10:46:21.1645652 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000026","","6932"
"10:46:21.1645716 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000060","Query: Name","8008"
"10:46:21.1645964 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1646062 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1646130 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1646220 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000081","Desired Access: All Access","6932"
"10:46:21.1646318 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000060","Desired Access: Read","8008"
"10:46:21.1646433 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000772","Desired Access: All Access","6932"
"10:46:21.1646561 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000098","Desired Access: Read","8008"
"10:46:21.1646817 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000094","Information: Owner","6932"
"10:46:21.1646843 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000059","Query: Name","8008"
"10:46:21.1647090 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000077","Information: Owner","6932"
"10:46:21.1647158 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1647355 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1647508 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000060","Desired Access: Read","6932"
"10:46:21.1647559 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\Elevation","0.0000073","Desired Access: Read","8008"
"10:46:21.1647692 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000059","Desired Access: Read","6932"
"10:46:21.1647786 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1647909 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000043","Length: 16","6932"
"10:46:21.1648084 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000073","Type: REG_SZ, Length: 8, Data: 2.0","6932"
"10:46:21.1648127 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\Elevation","0.0000043","Desired Access: Read","8008"
"10:46:21.1648315 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000038","Length: 44","6932"
"10:46:21.1648481 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000038","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","6932"
"10:46:21.1648690 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000026","","8008"
"10:46:21.1648703 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1648857 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000059","Desired Access: Maximum Allowed, Granted Access: Read","6932"
"10:46:21.1648933 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000017","","8008"
"10:46:21.1649049 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000038","Type: REG_DWORD, Length: 4, Data: 8","6932"
"10:46:21.1649211 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000055","Query: Name","8008"
"10:46:21.1649454 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1649612 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000034","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1649629 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000038","Type: REG_DWORD, Length: 4, Data: 8","6932"
"10:46:21.1649817 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000064","Desired Access: Read","8008"
"10:46:21.1649859 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1650017 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000043","Desired Access: Read","6932"
"10:46:21.1650051 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000064","Desired Access: Read","8008"
"10:46:21.1650201 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000034","Type: REG_DWORD, Length: 4, Data: 1015","6932"
"10:46:21.1650277 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000052","Query: Name","8008"
"10:46:21.1650358 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000035","Type: REG_DWORD, Length: 4, Data: 14","6932"
"10:46:21.1650482 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1650516 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1650670 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000055","Desired Access: Maximum Allowed, Granted Access: Read","6932"
"10:46:21.1650691 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\TreatAs","0.0000068","Desired Access: Read","8008"
"10:46:21.1650875 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1650892 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1651024 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000047","Desired Access: Read","6932"
"10:46:21.1651058 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}\TreatAs","0.0000043","Desired Access: Read","8008"
"10:46:21.1651225 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1651276 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{1B1CAD8C-2DAB-11D2-B604-00104B703EFD}","0.0000013","","8008"
"10:46:21.1651387 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1651574 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000030","","6932"
"10:46:21.1651745 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1651899 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000042","Desired Access: Read","6932"
"10:46:21.1652103 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000039","Length: 144","6932"
"10:46:21.1652266 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1652466 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000034","","6932"
"10:46:21.1652633 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1652837 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000034","Desired Access: Read","6932"
"10:46:21.1653012 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1653174 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000035","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1653366 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000017","","6932"
"10:46:21.1653516 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1653674 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000042","Desired Access: Read","6932"
"10:46:21.1653857 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000043","Length: 144","6932"
"10:46:21.1654015 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1654207 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000013","","6932"
"10:46:21.1654356 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1654510 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000043","Desired Access: Read","6932"
"10:46:21.1654702 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000038","Length: 144","6932"
"10:46:21.1654860 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1655060 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000069","","6932"
"10:46:21.1655073 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000132","Query: Name","8008"
"10:46:21.1655359 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000030","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1655410 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1655585 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1655611 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000064","Desired Access: Read","6932"
"10:46:21.1655769 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}","0.0000128","Desired Access: Read","8008"
"10:46:21.1655884 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000051","Length: 144","6932"
"10:46:21.1656084 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1656093 AM","firefox.exe","7384","RegOpenKey","HKCR\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}","0.0000213","Desired Access: Read","8008"
"10:46:21.1656349 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000021","","6932"
"10:46:21.1656498 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}","0.0000060","Query: Name","8008"
"10:46:21.1656528 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1656711 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000047","Desired Access: Read","6932"
"10:46:21.1656724 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1656921 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1656963 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}\ProxyStubClsid32","0.0000115","Desired Access: Read","8008"
"10:46:21.1657091 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1657232 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1657309 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000017","","6932"
"10:46:21.1657433 AM","firefox.exe","7384","RegOpenKey","HKCR\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}\ProxyStubClsid32","0.0000102","Desired Access: Read","8008"
"10:46:21.1657514 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000025","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1657706 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000047","Desired Access: Read","6932"
"10:46:21.1657735 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}\ProxyStubClsid32","0.0000060","Query: Name","8008"
"10:46:21.1657910 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000035","Length: 144","6932"
"10:46:21.1657957 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}\ProxyStubClsid32","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1658073 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1658175 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}\ProxyStubClsid32","0.0000107","Desired Access: Maximum Allowed","8008"
"10:46:21.1658307 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000017","","6932"
"10:46:21.1658465 AM","firefox.exe","7384","RegQueryValue","HKCR\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}\ProxyStubClsid32\(Default)","0.0000047","Type: REG_SZ, Length: 78, Data: {7C857801-7381-11CF-884D-00AA004B2E24}","8008"
"10:46:21.1658478 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1658653 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000042","Desired Access: Read","6932"
"10:46:21.1658700 AM","firefox.exe","7384","RegCloseKey","HKCR\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}\ProxyStubClsid32","0.0000025","","8008"
"10:46:21.1658849 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000030","Length: 144","6932"
"10:46:21.1658892 AM","firefox.exe","7384","RegCloseKey","HKCR\Interface\{1C1C45EE-4395-11D2-B60B-00104B703EFD}","0.0000021","","8008"
"10:46:21.1659011 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1659207 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000013","","6932"
"10:46:21.1659361 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1659523 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000039","Desired Access: Read","6932"
"10:46:21.1659707 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000030","Length: 144","6932"
"10:46:21.1659856 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1660052 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000013","","6932"
"10:46:21.1660202 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1660359 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000039","Desired Access: Read","6932"
"10:46:21.1660534 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000035","Length: 144","6932"
"10:46:21.1660684 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1660901 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000013","","6932"
"10:46:21.1661055 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1661209 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000042","Desired Access: Read","6932"
"10:46:21.1661396 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000030","Length: 144","6932"
"10:46:21.1661550 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1661755 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000017","","6932"
"10:46:21.1661878 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000069","Query: Name","8008"
"10:46:21.1661913 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1662070 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000043","Desired Access: Read","6932"
"10:46:21.1662160 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000021","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1662262 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000035","Length: 144","6932"
"10:46:21.1662343 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000022","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1662412 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1662582 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}","0.0000111","Desired Access: Read","8008"
"10:46:21.1662608 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000021","","6932"
"10:46:21.1662770 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1662915 AM","firefox.exe","7384","RegOpenKey","HKCR\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}","0.0000269","Desired Access: Read","8008"
"10:46:21.1662932 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000047","Desired Access: Read","6932"
"10:46:21.1663133 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1663286 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000035","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1663436 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}","0.0000055","Query: Name","8008"
"10:46:21.1663483 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000017","","6932"
"10:46:21.1663641 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","","6932"
"10:46:21.1663666 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1663918 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000030","","6932"
"10:46:21.1664016 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}\ProxyStubClsid32","0.0000119","Desired Access: Read","8008"
"10:46:21.1664093 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","","6932"
"10:46:21.1664289 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1664460 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1664468 AM","firefox.exe","7384","RegOpenKey","HKCR\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}\ProxyStubClsid32","0.0000094","Desired Access: Read","8008"
"10:46:21.1664622 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000068","Desired Access: All Access","6932"
"10:46:21.1664746 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}\ProxyStubClsid32","0.0000055","Query: Name","8008"
"10:46:21.1664814 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000653","Desired Access: All Access","6932"
"10:46:21.1664955 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}\ProxyStubClsid32","0.0000017","Query: HandleTags, HandleTags: 0x0","8008"
"10:46:21.1665142 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000081","Information: Owner","6932"
"10:46:21.1665181 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}\ProxyStubClsid32","0.0000098","Desired Access: Maximum Allowed","8008"
"10:46:21.1665394 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000026","Information: Owner","6932"
"10:46:21.1665437 AM","firefox.exe","7384","RegQueryValue","HKCR\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}\ProxyStubClsid32\(Default)","0.0002184","Type: REG_SZ, Length: 78, Data: {7C857801-7381-11CF-884D-00AA004B2E24}","8008"
"10:46:21.1665616 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1665757 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000042","Desired Access: Read","6932"
"10:46:21.1665881 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000042","Desired Access: Read","6932"
"10:46:21.1666030 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000030","Length: 16","6932"
"10:46:21.1666154 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000025","Type: REG_SZ, Length: 8, Data: 2.0","6932"
"10:46:21.1666273 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000030","Length: 44","6932"
"10:46:21.1666375 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000030","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","6932"
"10:46:21.1666525 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1666627 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000043","Desired Access: Maximum Allowed, Granted Access: Read","6932"
"10:46:21.1666759 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000026","Type: REG_DWORD, Length: 4, Data: 8","6932"
"10:46:21.1667284 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","6932"
"10:46:21.1667459 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000201","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1667839 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000047","Desired Access: Read","6932"
"10:46:21.1668039 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000039","Type: REG_DWORD, Length: 4, Data: 1015","6932"
"10:46:21.1668219 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000038","Type: REG_DWORD, Length: 4, Data: 14","6932"
"10:46:21.1668389 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000052","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1668406 AM","firefox.exe","7384","RegCloseKey","HKCR\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}\ProxyStubClsid32","0.0000060","","8008"
"10:46:21.1668603 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000055","Desired Access: Maximum Allowed, Granted Access: Read","6932"
"10:46:21.1668645 AM","firefox.exe","7384","RegCloseKey","HKCR\Interface\{423EC01E-2E35-11D2-B604-00104B703EFD}","0.0000030","","8008"
"10:46:21.1668816 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1668957 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000128","Desired Access: Read","6932"
"10:46:21.1669255 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000043","Length: 144","6932"
"10:46:21.1669413 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000052","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1669639 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000039","","6932"
"10:46:21.1669819 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1669968 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000047","Desired Access: Read","6932"
"10:46:21.1670160 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000043","Length: 144","6932"
"10:46:21.1670331 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1670608 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000021","","6932"
"10:46:21.1670783 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1670941 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000047","Desired Access: Read","6932"
"10:46:21.1671129 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000038","Length: 144","6932"
"10:46:21.1671278 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1671470 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000017","","6932"
"10:46:21.1671628 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1671794 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000043","Desired Access: Read","6932"
"10:46:21.1671982 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000038","Length: 144","6932"
"10:46:21.1672148 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1672345 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","","6932"
"10:46:21.1672494 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1672643 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000043","Desired Access: Read","6932"
"10:46:21.1672831 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1672989 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1673172 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000017","","6932"
"10:46:21.1673326 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1673484 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000038","Desired Access: Read","6932"
"10:46:21.1673671 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000035","Length: 144","6932"
"10:46:21.1673825 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1674017 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000034","","6932"
"10:46:21.1674192 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000094","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1674555 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000059","Desired Access: Read","6932"
"10:46:21.1674836 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000043","Length: 144","6932"
"10:46:21.1675024 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1675271 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000018","","6932"
"10:46:21.1675472 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000038","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1675677 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000047","Desired Access: Read","6932"
"10:46:21.1675877 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000039","Length: 144","6932"
"10:46:21.1676121 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000046","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1676364 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000021","","6932"
"10:46:21.1676543 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000064","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1676825 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000051","Desired Access: Read","6932"
"10:46:21.1677038 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1677196 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1677383 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000013","","6932"
"10:46:21.1677520 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1677669 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000039","Desired Access: Read","6932"
"10:46:21.1677853 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000030","Length: 144","6932"
"10:46:21.1677998 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1678181 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000013","","6932"
"10:46:21.1678331 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1678476 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000042","Desired Access: Read","6932"
"10:46:21.1678659 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000039","Length: 144","6932"
"10:46:21.1678813 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1679009 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000017","","6932"
"10:46:21.1679167 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1679325 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000047","Desired Access: Read","6932"
"10:46:21.1679521 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000039","Length: 144","6932"
"10:46:21.1679679 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1679871 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000017","","6932"
"10:46:21.1680033 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1680195 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000047","Desired Access: Read","6932"
"10:46:21.1680387 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000030","Length: 144","6932"
"10:46:21.1680532 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1680724 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000017","","6932"
"10:46:21.1680891 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000068","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1681202 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000068","Desired Access: Read","6932"
"10:46:21.1681475 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000047","Length: 144","6932"
"10:46:21.1681667 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1681932 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000021","","6932"
"10:46:21.1682120 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","","6932"
"10:46:21.1682486 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000026","","6932"
"10:46:21.1682674 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","","6932"
"10:46:21.1683118 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1683327 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000068","Desired Access: All Access","6932"
"10:46:21.1683549 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000764","Desired Access: All Access","6932"
"10:46:21.1683869 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000051","Information: Owner","6932"
"10:46:21.1684091 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000025","Information: Owner","6932"
"10:46:21.1684483 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1684662 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000060","Desired Access: Read","6932"
"10:46:21.1684906 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000068","Desired Access: Read","6932"
"10:46:21.1685153 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000047","Length: 16","6932"
"10:46:21.1685345 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000056","Type: REG_SZ, Length: 8, Data: 2.0","6932"
"10:46:21.1685657 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000051","Length: 44","6932"
"10:46:21.1685823 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000038","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","6932"
"10:46:21.1686053 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000022","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1686237 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000367","Desired Access: Maximum Allowed, Granted Access: Read","6932"
"10:46:21.1686766 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000043","Type: REG_DWORD, Length: 4, Data: 8","6932"
"10:46:21.1687449 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000047","Type: REG_DWORD, Length: 4, Data: 8","6932"
"10:46:21.1687769 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000064","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1688008 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000051","Desired Access: Read","6932"
"10:46:21.1688221 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000038","Type: REG_DWORD, Length: 4, Data: 1015","6932"
"10:46:21.1688396 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000034","Type: REG_DWORD, Length: 4, Data: 14","6932"
"10:46:21.1688566 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000022","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1688729 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000055","Desired Access: Maximum Allowed, Granted Access: Read","6932"
"10:46:21.1688946 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1689104 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000051","Desired Access: Read","6932"
"10:46:21.1689309 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000038","Length: 144","6932"
"10:46:21.1689471 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1689714 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000022","","6932"
"10:46:21.1689885 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1690077 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000089","Desired Access: Read","6932"
"10:46:21.1690427 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000047","Length: 144","6932"
"10:46:21.1690636 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1690896 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000021","","6932"
"10:46:21.1691101 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1691348 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000056","Desired Access: Read","6932"
"10:46:21.1691574 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000039","Length: 144","6932"
"10:46:21.1691745 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000094","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1692082 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000022","","6932"
"10:46:21.1692266 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1692449 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000043","Desired Access: Read","6932"
"10:46:21.1692662 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000039","Length: 144","6932"
"10:46:21.1692825 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1693025 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","","6932"
"10:46:21.1693174 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000018","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1693332 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000043","Desired Access: Read","6932"
"10:46:21.1693516 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1693661 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000051","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1693878 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000018","","6932"
"10:46:21.1694049 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1694207 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000043","Desired Access: Read","6932"
"10:46:21.1694390 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000035","Length: 144","6932"
"10:46:21.1694540 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1694736 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000021","","6932"
"10:46:21.1694894 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1695052 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000042","Desired Access: Read","6932"
"10:46:21.1695214 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000030","Length: 144","6932"
"10:46:21.1695368 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1695568 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000021","","6932"
"10:46:21.1695734 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1695884 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000042","Desired Access: Read","6932"
"10:46:21.1696072 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000029","Length: 144","6932"
"10:46:21.1696217 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1696404 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000017","","6932"
"10:46:21.1696554 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1696703 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000043","Desired Access: Read","6932"
"10:46:21.1696882 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000030","Length: 144","6932"
"10:46:21.1697010 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1697185 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","","6932"
"10:46:21.1697343 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1697497 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000042","Desired Access: Read","6932"
"10:46:21.1697672 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1697825 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1698017 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000017","","6932"
"10:46:21.1698171 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1698333 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000043","Desired Access: Read","6932"
"10:46:21.1698525 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000038","Length: 144","6932"
"10:46:21.1698696 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1698905 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000017","","6932"
"10:46:21.1699071 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000064","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1699289 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000042","Desired Access: Read","6932"
"10:46:21.1699489 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1699656 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1699860 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000017","","6932"
"10:46:21.1700031 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1700197 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000043","Desired Access: Read","6932"
"10:46:21.1700398 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1700564 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1700765 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000017","","6932"
"10:46:21.1700927 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1701093 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000043","Desired Access: Read","6932"
"10:46:21.1701285 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000035","Length: 144","6932"
"10:46:21.1701443 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1701640 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000017","","6932"
"10:46:21.1701797 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","","6932"
"10:46:21.1702309 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000035","","6932"
"10:46:21.1702497 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","","6932"
"10:46:21.1702890 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1703073 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000081","Desired Access: All Access","6932"
"10:46:21.1703312 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000572","Desired Access: All Access","6932"
"10:46:21.1703589 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000052","Information: Owner","6932"
"10:46:21.1703811 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000026","Information: Owner","6932"
"10:46:21.1704059 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1704234 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000064","Desired Access: Read","6932"
"10:46:21.1704430 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000064","Desired Access: Read","6932"
"10:46:21.1704660 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000043","Length: 16","6932"
"10:46:21.1704840 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000038","Type: REG_SZ, Length: 8, Data: 2.0","6932"
"10:46:21.1705023 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000060","Length: 44","6932"
"10:46:21.1705211 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000038","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","6932"
"10:46:21.1705445 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000022","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1705616 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000056","Desired Access: Maximum Allowed, Granted Access: Read","6932"
"10:46:21.1705817 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000038","Type: REG_DWORD, Length: 4, Data: 8","6932"
"10:46:21.1706393 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000038","Type: REG_DWORD, Length: 4, Data: 8","6932"
"10:46:21.1706597 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1706768 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000047","Desired Access: Read","6932"
"10:46:21.1706973 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000038","Type: REG_DWORD, Length: 4, Data: 1015","6932"
"10:46:21.1707148 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000034","Type: REG_DWORD, Length: 4, Data: 14","6932"
"10:46:21.1707314 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1707476 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000052","Desired Access: Maximum Allowed, Granted Access: Read","6932"
"10:46:21.1707694 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1707848 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000046","Desired Access: Read","6932"
"10:46:21.1708044 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000038","Length: 144","6932"
"10:46:21.1708210 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000094","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1708513 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000026","","6932"
"10:46:21.1708761 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000029","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1709072 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000107","Desired Access: Read","6932"
"10:46:21.1709422 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000047","Length: 144","6932"
"10:46:21.1709627 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000055","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1709891 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000022","","6932"
"10:46:21.1710092 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1710267 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000089","Desired Access: Read","6932"
"10:46:21.1710518 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000039","Length: 144","6932"
"10:46:21.1710689 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1710945 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000021","","6932"
"10:46:21.1711133 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1711321 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000047","Desired Access: Read","6932"
"10:46:21.1711525 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000035","Length: 144","6932"
"10:46:21.1711683 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1711922 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","","6932"
"10:46:21.1712084 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1712246 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000047","Desired Access: Read","6932"
"10:46:21.1712438 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000035","Length: 144","6932"
"10:46:21.1712596 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1712793 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000017","","6932"
"10:46:21.1712950 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000018","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1713108 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000043","Desired Access: Read","6932"
"10:46:21.1713283 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000030","Length: 144","6932"
"10:46:21.1713428 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1713608 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000012","","6932"
"10:46:21.1713761 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1713915 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000038","Desired Access: Read","6932"
"10:46:21.1714068 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000026","Length: 144","6932"
"10:46:21.1714171 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1714290 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000013","","6932"
"10:46:21.1714393 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1714491 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000025","Desired Access: Read","6932"
"10:46:21.1714610 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000022","Length: 144","6932"
"10:46:21.1714708 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1714828 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000013","","6932"
"10:46:21.1714926 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1715020 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000030","Desired Access: Read","6932"
"10:46:21.1715139 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000022","Length: 144","6932"
"10:46:21.1715237 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1715353 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000012","","6932"
"10:46:21.1715451 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1715545 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000025","Desired Access: Read","6932"
"10:46:21.1715660 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000025","Length: 144","6932"
"10:46:21.1715762 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1715877 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000013","","6932"
"10:46:21.1715971 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1716065 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000026","Desired Access: Read","6932"
"10:46:21.1716180 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000022","Length: 144","6932"
"10:46:21.1716278 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1716394 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000012","","6932"
"10:46:21.1716488 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1716581 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000035","Desired Access: Read","6932"
"10:46:21.1716709 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000022","Length: 144","6932"
"10:46:21.1716808 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000029","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1716927 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000013","","6932"
"10:46:21.1717025 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1717128 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000029","Desired Access: Read","6932"
"10:46:21.1717251 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000022","Length: 144","6932"
"10:46:21.1717354 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1717477 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000013","","6932"
"10:46:21.1717580 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1717678 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000026","Desired Access: Read","6932"
"10:46:21.1717793 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000026","Length: 144","6932"
"10:46:21.1717891 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1718011 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000013","","6932"
"10:46:21.1718109 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","","6932"
"10:46:21.1718339 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000047","","6932"
"10:46:21.1718531 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","","6932"
"10:46:21.1719013 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1719124 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000052","Desired Access: All Access","6932"
"10:46:21.1719269 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000517","Desired Access: All Access","6932"
"10:46:21.1719487 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000043","Information: Owner","6932"
"10:46:21.1719641 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000093","Information: Owner","6932"
"10:46:21.1719952 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1720067 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000043","Desired Access: Read","6932"
"10:46:21.1720639 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000060","Desired Access: Read","6932"
"10:46:21.1720818 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000034","Length: 16","6932"
"10:46:21.1720938 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000025","Type: REG_SZ, Length: 8, Data: 2.0","6932"
"10:46:21.1721061 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000026","Length: 44","6932"
"10:46:21.1721164 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000025","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","6932"
"10:46:21.1721313 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1721420 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000038","Desired Access: Maximum Allowed, Granted Access: Read","6932"
"10:46:21.1721548 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000030","Type: REG_DWORD, Length: 4, Data: 8","6932"
"10:46:21.1722021 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000022","Type: REG_DWORD, Length: 4, Data: 8","6932"
"10:46:21.1722201 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1722879 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000038","Desired Access: Read","6932"
"10:46:21.1723382 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000035","Type: REG_DWORD, Length: 4, Data: 1015","6932"
"10:46:21.1723519 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000026","Type: REG_DWORD, Length: 4, Data: 14","6932"
"10:46:21.1723634 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1723745 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000043","Desired Access: Maximum Allowed, Granted Access: Read","6932"
"10:46:21.1723894 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1724121 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000047","Desired Access: Read","6932"
"10:46:21.1724317 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1724475 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1724671 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000017","","6932"
"10:46:21.1724825 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1724974 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000038","Desired Access: Read","6932"
"10:46:21.1725153 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1725307 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1725490 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","6932"
"10:46:21.1725640 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1725785 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000038","Desired Access: Read","6932"
"10:46:21.1725960 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1726109 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1726292 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000017","","6932"
"10:46:21.1726958 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1727133 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000043","Desired Access: Read","6932"
"10:46:21.1727325 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1727487 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1727692 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","","6932"
"10:46:21.1727858 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1728016 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000038","Desired Access: Read","6932"
"10:46:21.1728208 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000038","Length: 144","6932"
"10:46:21.1728370 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1728562 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000017","","6932"
"10:46:21.1728720 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1728882 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000043","Desired Access: Read","6932"
"10:46:21.1729074 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1729236 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1729441 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000017","","6932"
"10:46:21.1729599 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1729765 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000440","Desired Access: Read","6932"
"10:46:21.1730380 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1730542 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1730755 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000013","","6932"
"10:46:21.1730913 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1731080 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000042","Desired Access: Read","6932"
"10:46:21.1731263 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000030","Length: 144","6932"
"10:46:21.1731421 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1731613 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000017","","6932"
"10:46:21.1731767 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1731920 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000039","Desired Access: Read","6932"
"10:46:21.1732099 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000030","Length: 144","6932"
"10:46:21.1732249 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1732432 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","","6932"
"10:46:21.1732586 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1733102 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000043","Desired Access: Read","6932"
"10:46:21.1733294 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1733448 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1733635 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000013","","6932"
"10:46:21.1733785 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1733930 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000038","Desired Access: Read","6932"
"10:46:21.1734100 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000035","Length: 144","6932"
"10:46:21.1734258 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1734519 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000038","","6932"
"10:46:21.1734856 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000029","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1735150 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000081","Desired Access: Read","6932"
"10:46:21.1735457 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000047","Length: 144","6932"
"10:46:21.1735658 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1735927 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000017","","6932"
"10:46:21.1736106 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1736302 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000051","Desired Access: Read","6932"
"10:46:21.1736511 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000038","Length: 144","6932"
"10:46:21.1736686 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1736904 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000017","","6932"
"10:46:21.1737079 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1737258 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000064","Desired Access: Read","6932"
"10:46:21.1737488 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000039","Length: 144","6932"
"10:46:21.1737659 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000055","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1737893 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000022","","6932"
"10:46:21.1738068 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000107","","6932"
"10:46:21.1738478 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000030","","6932"
"10:46:21.1738661 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000018","","6932"
"10:46:21.1739011 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1739169 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000060","Desired Access: All Access","6932"
"10:46:21.1739348 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000615","Desired Access: All Access","6932"
"10:46:21.1739673 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000059","Information: Owner","6932"
"10:46:21.1739895 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000021","Information: Owner","6932"
"10:46:21.1740125 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1740283 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000055","Desired Access: Read","6932"
"10:46:21.1740458 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000055","Desired Access: Read","6932"
"10:46:21.1740671 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000047","Length: 16","6932"
"10:46:21.1740842 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000038","Type: REG_SZ, Length: 8, Data: 2.0","6932"
"10:46:21.1741021 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000038","Length: 44","6932"
"10:46:21.1741204 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000035","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","6932"
"10:46:21.1741422 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1741576 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000055","Desired Access: Maximum Allowed, Granted Access: Read","6932"
"10:46:21.1741772 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000038","Type: REG_DWORD, Length: 4, Data: 8","6932"
"10:46:21.1742318 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000038","Type: REG_DWORD, Length: 4, Data: 8","6932"
"10:46:21.1742506 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1742664 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000042","Desired Access: Read","6932"
"10:46:21.1742847 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000038","Type: REG_DWORD, Length: 4, Data: 1015","6932"
"10:46:21.1743013 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000035","Type: REG_DWORD, Length: 4, Data: 14","6932"
"10:46:21.1743167 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1743316 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000064","Desired Access: Maximum Allowed, Granted Access: Read","6932"
"10:46:21.1743521 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1743671 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000042","Desired Access: Read","6932"
"10:46:21.1743858 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000039","Length: 144","6932"
"10:46:21.1744025 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1744247 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000021","","6932"
"10:46:21.1744404 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1744545 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000039","Desired Access: Read","6932"
"10:46:21.1744724 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000039","Length: 144","6932"
"10:46:21.1744882 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1745079 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","6932"
"10:46:21.1745232 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1745381 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000043","Desired Access: Read","6932"
"10:46:21.1745561 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1745714 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1745902 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000013","","6932"
"10:46:21.1746060 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1746218 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000038","Desired Access: Read","6932"
"10:46:21.1746397 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000030","Length: 144","6932"
"10:46:21.1746551 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1746760 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000068","","6932"
"10:46:21.1746964 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1747118 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000038","Desired Access: Read","6932"
"10:46:21.1747289 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1747447 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000046","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1747609 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000012","","6932"
"10:46:21.1747715 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1747809 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000030","Desired Access: Read","6932"
"10:46:21.1747967 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000026","Length: 144","6932"
"10:46:21.1748074 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1748206 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000013","","6932"
"10:46:21.1748308 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1748415 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000068","Desired Access: Read","6932"
"10:46:21.1748616 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000038","Length: 144","6932"
"10:46:21.1748791 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000085","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1748995 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000013","","6932"
"10:46:21.1749106 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1749200 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000030","Desired Access: Read","6932"
"10:46:21.1749320 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000025","Length: 144","6932"
"10:46:21.1749422 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1749541 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000009","","6932"
"10:46:21.1749635 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1749729 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000026","Desired Access: Read","6932"
"10:46:21.1749844 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000022","Length: 144","6932"
"10:46:21.1749943 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1750062 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000009","","6932"
"10:46:21.1750156 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1750250 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000025","Desired Access: Read","6932"
"10:46:21.1750365 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000021","Length: 144","6932"
"10:46:21.1750463 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1750578 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000009","","6932"
"10:46:21.1750672 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1750766 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000026","Desired Access: Read","6932"
"10:46:21.1750881 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000026","Length: 144","6932"
"10:46:21.1750979 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1751095 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000012","","6932"
"10:46:21.1751193 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1751287 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000051","Desired Access: Read","6932"
"10:46:21.1751436 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000030","Length: 144","6932"
"10:46:21.1751547 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1751671 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000008","","6932"
"10:46:21.1751764 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1751858 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000022","Desired Access: Read","6932"
"10:46:21.1751969 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000022","Length: 144","6932"
"10:46:21.1752067 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1752183 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000008","","6932"
"10:46:21.1752276 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1752370 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000022","Desired Access: Read","6932"
"10:46:21.1752481 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000022","Length: 144","6932"
"10:46:21.1752579 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1752695 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000012","","6932"
"10:46:21.1752793 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","","6932"
"10:46:21.1753015 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","","6932"
"10:46:21.1753130 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","","6932"
"10:46:21.1753394 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1753501 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000051","Desired Access: All Access","6932"
"10:46:21.1753642 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000490","Desired Access: All Access","6932"
"10:46:21.1753847 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000059","Information: Owner","6932"
"10:46:21.1754068 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000026","Information: Owner","6932"
"10:46:21.1754324 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1754495 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000068","Desired Access: Read","6932"
"10:46:21.1754700 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000085","Desired Access: Read","6932"
"10:46:21.1754905 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000034","Length: 16","6932"
"10:46:21.1755028 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000030","Type: REG_SZ, Length: 8, Data: 2.0","6932"
"10:46:21.1755156 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000047","Length: 44","6932"
"10:46:21.1755327 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000051","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","6932"
"10:46:21.1755566 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1755737 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000064","Desired Access: Maximum Allowed, Granted Access: Read","6932"
"10:46:21.1755954 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000039","Type: REG_DWORD, Length: 4, Data: 8","6932"
"10:46:21.1756428 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000030","Type: REG_DWORD, Length: 4, Data: 8","6932"
"10:46:21.1756607 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000137","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1756846 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000034","Desired Access: Read","6932"
"10:46:21.1756974 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000026","Type: REG_DWORD, Length: 4, Data: 1015","6932"
"10:46:21.1757106 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000030","Type: REG_DWORD, Length: 4, Data: 14","6932"
"10:46:21.1757260 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1757405 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000047","Desired Access: Maximum Allowed, Granted Access: Read","6932"
"10:46:21.1757597 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1757695 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000030","Desired Access: Read","6932"
"10:46:21.1757819 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000030","Length: 144","6932"
"10:46:21.1757930 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1758083 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000013","","6932"
"10:46:21.1758186 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1758314 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000068","Desired Access: Read","6932"
"10:46:21.1758476 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000030","Length: 144","6932"
"10:46:21.1758587 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1758719 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000013","","6932"
"10:46:21.1758821 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1758924 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000025","Desired Access: Read","6932"
"10:46:21.1759043 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000026","Length: 144","6932"
"10:46:21.1759150 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1759278 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000013","","6932"
"10:46:21.1759385 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1759483 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000025","Desired Access: Read","6932"
"10:46:21.1759611 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000025","Length: 144","6932"
"10:46:21.1759717 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1759901 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000013","","6932"
"10:46:21.1760046 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1760195 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000039","Desired Access: Read","6932"
"10:46:21.1760375 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1760532 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000035","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1760716 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000017","","6932"
"10:46:21.1760869 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000018","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1761010 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000039","Desired Access: Read","6932"
"10:46:21.1761189 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000030","Length: 144","6932"
"10:46:21.1761339 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1761531 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000017","","6932"
"10:46:21.1761672 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1761817 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000038","Desired Access: Read","6932"
"10:46:21.1761987 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000030","Length: 144","6932"
"10:46:21.1762132 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1762324 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000017","","6932"
"10:46:21.1762478 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1762619 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000038","Desired Access: Read","6932"
"10:46:21.1762798 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1762947 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1763127 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000017","","6932"
"10:46:21.1763276 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1763434 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000042","Desired Access: Read","6932"
"10:46:21.1763621 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000030","Length: 144","6932"
"10:46:21.1763775 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1763963 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","","6932"
"10:46:21.1764116 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1764253 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000038","Desired Access: Read","6932"
"10:46:21.1764432 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000039","Length: 144","6932"
"10:46:21.1764616 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1764808 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000017","","6932"
"10:46:21.1764961 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1765115 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000034","Desired Access: Read","6932"
"10:46:21.1765277 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1765426 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1765605 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000013","","6932"
"10:46:21.1765746 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1765900 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000034","Desired Access: Read","6932"
"10:46:21.1766075 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1766228 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000035","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1766412 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000013","","6932"
"10:46:21.1766557 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1766711 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000034","Desired Access: Read","6932"
"10:46:21.1766877 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1767026 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1767201 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000017","","6932"
"10:46:21.1767368 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1767530 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000042","Desired Access: Read","6932"
"10:46:21.1767717 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000035","Length: 144","6932"
"10:46:21.1767854 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1768046 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000013","","6932"
"10:46:21.1768178 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","","6932"
"10:46:21.1768451 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000026","","6932"
"10:46:21.1768626 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","","6932"
"10:46:21.1768976 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1769125 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000064","Desired Access: All Access","6932"
"10:46:21.1769326 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000585","Desired Access: All Access","6932"
"10:46:21.1769612 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000060","Information: Owner","6932"
"10:46:21.1769847 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000025","Information: Owner","6932"
"10:46:21.1770192 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1770324 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000043","Desired Access: Read","6932"
"10:46:21.1770444 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000047","Desired Access: Read","6932"
"10:46:21.1770602 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000034","Length: 16","6932"
"10:46:21.1770725 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000026","Type: REG_SZ, Length: 8, Data: 2.0","6932"
"10:46:21.1770845 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000026","Length: 44","6932"
"10:46:21.1770943 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000030","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","6932"
"10:46:21.1771097 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000008","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1771195 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000060","Desired Access: Maximum Allowed, Granted Access: Read","6932"
"10:46:21.1771395 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000056","Type: REG_DWORD, Length: 4, Data: 8","6932"
"10:46:21.1772031 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000038","Type: REG_DWORD, Length: 4, Data: 8","6932"
"10:46:21.1772210 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1772317 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000034","Desired Access: Read","6932"
"10:46:21.1772445 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000026","Type: REG_DWORD, Length: 4, Data: 1015","6932"
"10:46:21.1772552 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000021","Type: REG_DWORD, Length: 4, Data: 14","6932"
"10:46:21.1772658 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000009","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1772752 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000034","Desired Access: Maximum Allowed, Granted Access: Read","6932"
"10:46:21.1772880 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1772974 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000030","Desired Access: Read","6932"
"10:46:21.1773106 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000026","Length: 144","6932"
"10:46:21.1773213 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1773354 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000013","","6932"
"10:46:21.1773456 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1773550 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000026","Desired Access: Read","6932"
"10:46:21.1773669 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000026","Length: 144","6932"
"10:46:21.1773772 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000111","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1774019 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","6932"
"10:46:21.1774164 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1774314 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000059","Desired Access: Read","6932"
"10:46:21.1774497 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000030","Length: 144","6932"
"10:46:21.1774612 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1774804 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000017","","6932"
"10:46:21.1774954 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1775107 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000039","Desired Access: Read","6932"
"10:46:21.1775291 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1775449 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1775632 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000009","","6932"
"10:46:21.1775735 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1775841 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000039","Desired Access: Read","6932"
"10:46:21.1775991 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000021","Length: 144","6932"
"10:46:21.1776093 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1776229 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000013","","6932"
"10:46:21.1776332 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1776430 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000030","Desired Access: Read","6932"
"10:46:21.1776554 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000025","Length: 144","6932"
"10:46:21.1776660 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1776818 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000017","","6932"
"10:46:21.1776963 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000034","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1777108 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000026","Desired Access: Read","6932"
"10:46:21.1777228 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000025","Length: 144","6932"
"10:46:21.1777330 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1777471 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000013","","6932"
"10:46:21.1777599 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1777753 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000034","Desired Access: Read","6932"
"10:46:21.1777928 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1778085 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1778273 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000017","","6932"
"10:46:21.1778418 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1778580 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000043","Desired Access: Read","6932"
"10:46:21.1778764 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000030","Length: 144","6932"
"10:46:21.1778917 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000035","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1779109 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000018","","6932"
"10:46:21.1779237 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1779340 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000030","Desired Access: Read","6932"
"10:46:21.1779464 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000025","Length: 144","6932"
"10:46:21.1779566 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1779685 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000009","","6932"
"10:46:21.1779779 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1779873 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000022","Desired Access: Read","6932"
"10:46:21.1779984 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000026","Length: 144","6932"
"10:46:21.1780087 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1780202 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000013","","6932"
"10:46:21.1780300 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1780394 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000021","Desired Access: Read","6932"
"10:46:21.1780505 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000025","Length: 144","6932"
"10:46:21.1780603 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1780722 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000009","","6932"
"10:46:21.1780846 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1781004 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000034","Desired Access: Read","6932"
"10:46:21.1781179 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1781332 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1781520 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000013","","6932"
"10:46:21.1781669 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1781823 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000038","Desired Access: Read","6932"
"10:46:21.1782002 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000034","Length: 144","6932"
"10:46:21.1782156 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1782352 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000017","","6932"
"10:46:21.1782459 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","","6932"
"10:46:21.1782676 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000022","","6932"
"10:46:21.1782796 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000008","","6932"
"10:46:21.1783073 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1783180 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000047","Desired Access: All Access","6932"
"10:46:21.1783329 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000542","Desired Access: All Access","6932"
"10:46:21.1783594 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000060","Information: Owner","6932"
"10:46:21.1783807 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000026","Information: Owner","6932"
"10:46:21.1784038 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1784153 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000038","Desired Access: Read","6932"
"10:46:21.1784268 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000055","Desired Access: Read","6932"
"10:46:21.1784447 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000051","Length: 16","6932"
"10:46:21.1784614 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000029","Type: REG_SZ, Length: 8, Data: 2.0","6932"
"10:46:21.1784759 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000025","Length: 44","6932"
"10:46:21.1784861 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000026","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","6932"
"10:46:21.1785006 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1785104 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000039","Desired Access: Maximum Allowed, Granted Access: Read","6932"
"10:46:21.1785232 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000026","Type: REG_DWORD, Length: 4, Data: 8","6932"
"10:46:21.1785778 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","6932"
"10:46:21.1785953 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1786098 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000043","Desired Access: Read","6932"
"10:46:21.1786282 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000034","Type: REG_DWORD, Length: 4, Data: 1015","6932"
"10:46:21.1786448 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000034","Type: REG_DWORD, Length: 4, Data: 14","6932"
"10:46:21.1786610 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1786764 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000047","Desired Access: Maximum Allowed, Granted Access: Read","6932"
"10:46:21.1786960 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1787114 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000042","Desired Access: Read","6932"
"10:46:21.1787302 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000038","Length: 144","6932"
"10:46:21.1787464 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000051","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1787715 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000017","","6932"
"10:46:21.1787886 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1788048 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000043","Desired Access: Read","6932"
"10:46:21.1788232 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000030","Length: 144","6932"
"10:46:21.1788381 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1788569 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","6932"
"10:46:21.1788722 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1788876 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000043","Desired Access: Read","6932"
"10:46:21.1789059 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000035","Length: 144","6932"
"10:46:21.1789213 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1789396 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000018","","6932"
"10:46:21.1789550 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1789708 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000038","Desired Access: Read","6932"
"10:46:21.1789887 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000030","Length: 144","6932"
"10:46:21.1790041 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1790228 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000018","","6932"
"10:46:21.1790365 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1790467 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000030","Desired Access: Read","6932"
"10:46:21.1790591 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000026","Length: 144","6932"
"10:46:21.1790694 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000029","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1790822 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000012","","6932"
"10:46:21.1790920 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1791018 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000021","Desired Access: Read","6932"
"10:46:21.1791129 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000025","Length: 144","6932"
"10:46:21.1791231 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1791351 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000012","","6932"
"10:46:21.1791449 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1791543 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000025","Desired Access: Read","6932"
"10:46:21.1791658 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Length: 144","6932"
"10:46:21.1791756 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1791875 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000013","","6932"
"10:46:21.1791974 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1792063 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000026","Desired Access: Read","6932"
"10:46:21.1792178 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000026","Length: 144","6932"
"10:46:21.1792281 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1792396 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000013","","6932"
"10:46:21.1792494 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1792609 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000056","Desired Access: Read","6932"
"10:46:21.1792806 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000038","Length: 144","6932"
"10:46:21.1792938 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1793117 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","","6932"
"10:46:21.1793283 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1793386 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000030","Desired Access: Read","6932"
"10:46:21.1793514 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000025","Length: 144","6932"
"10:46:21.1793612 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1793736 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000012","","6932"
"10:46:21.1793838 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1793928 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000025","Desired Access: Read","6932"
"10:46:21.1794043 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000025","Length: 144","6932"
"10:46:21.1794141 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1794260 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000013","","6932"
"10:46:21.1794363 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1794452 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000030","Desired Access: Read","6932"
"10:46:21.1794572 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000026","Length: 144","6932"
"10:46:21.1794674 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1794807 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000012","","6932"
"10:46:21.1794909 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1795007 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000026","Desired Access: Read","6932"
"10:46:21.1795127 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Length: 144","6932"
"10:46:21.1795225 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1795374 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000026","","6932"
"10:46:21.1795536 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","6932"
"10:46:21.1795694 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000030","Desired Access: Read","6932"
"10:46:21.1795826 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000030","Length: 144","6932"
"10:46:21.1795937 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","6932"
"10:46:21.1796065 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000017","","6932"
"10:46:21.1796168 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","","6932"
"10:46:21.1796398 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000038","","6932"
"10:46:21.1796577 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","","6932"
"10:46:21.1849941 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 6488","5728"
"10:46:21.1855564 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache","0.0000286","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5728"
"10:46:21.1855961 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache","0.0000234","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","6488"
"10:46:21.1859993 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child.bin","0.0217549","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.1902160 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000098","","6848"
"10:46:21.1908057 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000384","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","6848"
"10:46:21.1909153 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\twinapi.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","6848"
"10:46:21.1909422 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\twinapi.dll","0.0000017","SyncType: SyncTypeOther","6848"
"10:46:21.1910258 AM","firefox.exe","7384","Load Image","C:\Windows\System32\twinapi.dll","0.0000000","Image Base: 0x7ffb2c2b0000, Image Size: 0x9b000","6848"
"10:46:21.1910506 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\twinapi.dll","0.0000064","Name: \Windows\System32\twinapi.dll","6848"
"10:46:21.1911056 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0244515","Offset: 95,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1911726 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0246507","Offset: 99,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1912093 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0249234","Offset: 103,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1912409 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0260868","Offset: 107,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1912699 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0263770","Offset: 111,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1912985 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0270532","Offset: 115,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1913249 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0273234","Offset: 119,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1913761 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0279698","Offset: 238,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1914052 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0282257","Offset: 242,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1914397 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0293325","Offset: 246,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1914994 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0296300","Offset: 250,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1915361 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0302789","Offset: 254,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1915660 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0305212","Offset: 259,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1915954 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0311429","Offset: 263,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1916219 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0314249","Offset: 267,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1916543 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0320419","Offset: 271,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1916855 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0322488","Offset: 275,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1917124 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0329468","Offset: 279,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1917384 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0331840","Offset: 283,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1917648 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0337895","Offset: 287,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1917917 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0340758","Offset: 291,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1918276 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0346611","Offset: 295,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1918583 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0349099","Offset: 300,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1918843 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0355405","Offset: 304,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1919099 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0357906","Offset: 308,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1919364 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0365589","Offset: 312,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1919637 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0367808","Offset: 316,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1919905 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0369784","Offset: 320,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1920170 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0371623","Offset: 324,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1920379 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0373513","Offset: 328,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1920588 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0375254","Offset: 332,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1920857 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0376905","Offset: 336,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1921275 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0378347","Offset: 340,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1921531 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0379956","Offset: 345,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1921744 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0382230","Offset: 349,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1921949 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0383314","Offset: 353,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1922171 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0384897","Offset: 357,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1922380 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0386462","Offset: 361,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1922602 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0388020","Offset: 365,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1922802 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0390094","Offset: 369,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1923007 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0391570","Offset: 373,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1923204 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0393011","Offset: 377,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1923421 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0394177","Offset: 381,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1923626 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0395768","Offset: 386,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1924091 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0403405","Offset: 543,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1924347 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0405765","Offset: 565,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1924522 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0407139","Offset: 569,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1924654 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0408811","Offset: 573,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1924786 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0410424","Offset: 577,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1924927 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0411802","Offset: 581,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1925132 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0413150","Offset: 585,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1925358 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0414469","Offset: 589,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.1925503 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0415796","Offset: 593,920, Length: 3,072, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2077670 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache.bin","0.0000870","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6488"
"10:46:21.2077802 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child.bin","0.0000064","CreationTime: 3/26/2020 10:35:21 AM, LastAccessTime: 3/26/2020 10:35:21 AM, LastWriteTime: 3/26/2020 10:35:21 AM, ChangeTime: 3/26/2020 10:35:21 AM, AllocationSize: 667648, EndOfFile: 667473, FileAttributes: A","5728"
"10:46:21.2078041 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child.bin","0.0000102","","5728"
"10:46:21.2078805 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache.bin","0.0000047","CreationTime: 3/26/2020 10:35:20 AM, LastAccessTime: 3/26/2020 10:35:20 AM, LastWriteTime: 3/26/2020 10:35:20 AM, ChangeTime: 3/26/2020 10:35:20 AM, AllocationSize: 4096, EndOfFile: 2607, FileAttributes: A","6488"
"10:46:21.2079005 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache.bin","0.0000064","","6488"
"10:46:21.2082248 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache.bin","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6488"
"10:46:21.2082449 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child.bin","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.2082662 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache.bin","0.0000107","CreationTime: 3/26/2020 10:35:20 AM, LastAccessTime: 3/26/2020 10:35:20 AM, LastWriteTime: 3/26/2020 10:35:20 AM, ChangeTime: 3/26/2020 10:35:20 AM, FileAttributes: A","6488"
"10:46:21.2082841 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child.bin","0.0000047","CreationTime: 3/26/2020 10:35:21 AM, LastAccessTime: 3/26/2020 10:35:21 AM, LastWriteTime: 3/26/2020 10:35:21 AM, ChangeTime: 3/26/2020 10:35:21 AM, FileAttributes: A","5728"
"10:46:21.2082935 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache.bin","0.0000068","","6488"
"10:46:21.2083029 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child.bin","0.0000077","","5728"
"10:46:21.2085026 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache.bin","0.0000298","Desired Access: Read Attributes, Delete, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6488"
"10:46:21.2085047 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child.bin","0.0000337","Desired Access: Read Attributes, Delete, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.2085555 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache.bin","0.0000059","Attributes: A, ReparseTag: 0x0","6488"
"10:46:21.2085597 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child.bin","0.0000056","Attributes: A, ReparseTag: 0x0","5728"
"10:46:21.2085853 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache.bin","0.0000039","CreationTime: 3/26/2020 10:35:20 AM, LastAccessTime: 3/26/2020 10:35:20 AM, LastWriteTime: 3/26/2020 10:35:20 AM, ChangeTime: 3/26/2020 10:35:20 AM, FileAttributes: A","6488"
"10:46:21.2085858 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child.bin","0.0000038","CreationTime: 3/26/2020 10:35:21 AM, LastAccessTime: 3/26/2020 10:35:21 AM, LastWriteTime: 3/26/2020 10:35:21 AM, ChangeTime: 3/26/2020 10:35:21 AM, FileAttributes: A","5728"
"10:46:21.2087539 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache","0.0000187","Desired Access: Write Data/Add File, Synchronize, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6488"
"10:46:21.2087684 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache","0.0000213","Desired Access: Write Data/Add File, Synchronize, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.2093644 AM","firefox.exe","7384","SetRenameInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache.bin","0.4313567","ReplaceIfExists: True, FileName: C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache-current.bin","6488"
"10:46:21.2093862 AM","firefox.exe","7384","SetRenameInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child.bin","0.4313456","ReplaceIfExists: True, FileName: C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","5728"
"10:46:21.2342174 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000128","","6848"
"10:46:21.2345118 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000239","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","6848"
"10:46:21.2345625 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ExplorerFrame.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","6848"
"10:46:21.2345933 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ExplorerFrame.dll","0.0000029","SyncType: SyncTypeOther","6848"
"10:46:21.2347059 AM","firefox.exe","7384","Load Image","C:\Windows\System32\ExplorerFrame.dll","0.0000000","Image Base: 0x7ffb298a0000, Image Size: 0x495000","6848"
"10:46:21.2347341 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000059","Name: \Windows\System32\ExplorerFrame.dll","6848"
"10:46:21.2347708 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0246144","Offset: 33,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2348249 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0248444","Offset: 37,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2348493 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0251115","Offset: 41,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2348693 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0260352","Offset: 46,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2348894 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0262626","Offset: 50,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2349086 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0265267","Offset: 54,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2349278 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0272538","Offset: 58,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2349465 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0275188","Offset: 62,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2349653 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0276664","Offset: 66,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2349845 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0284583","Offset: 70,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2350033 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0287104","Offset: 74,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2350199 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0293402","Offset: 78,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2350366 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0296004","Offset: 82,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2350553 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0302311","Offset: 87,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2350728 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0304944","Offset: 91,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2350916 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0311292","Offset: 95,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2351104 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0313647","Offset: 99,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2351356 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0320474","Offset: 103,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2351616 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0323187","Offset: 140,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2351816 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0329601","Offset: 144,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2352106 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0332020","Offset: 148,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2352367 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0338833","Offset: 152,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2352559 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0341372","Offset: 156,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2352840 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0353315","Offset: 160,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2353126 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0356016","Offset: 164,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2353335 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0362928","Offset: 168,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2353549 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0365577","Offset: 173,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2353741 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0372058","Offset: 177,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2353924 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0374627","Offset: 181,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2354082 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0381001","Offset: 185,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2354218 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0383583","Offset: 189,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2354355 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0389974","Offset: 193,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2354492 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0392696","Offset: 197,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2354632 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0399608","Offset: 201,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2354773 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0402305","Offset: 205,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2354914 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0408619","Offset: 209,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2355046 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0411051","Offset: 214,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2355183 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0417148","Offset: 218,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2355324 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0419669","Offset: 222,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2355460 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0425784","Offset: 226,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2355592 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0428233","Offset: 230,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2355733 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0434347","Offset: 234,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2355968 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0436796","Offset: 238,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2356228 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0442791","Offset: 242,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2356369 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0445364","Offset: 246,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2356548 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0452191","Offset: 283,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2356710 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0454699","Offset: 287,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2356868 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0460852","Offset: 291,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2357009 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0462836","Offset: 295,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2357137 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0469854","Offset: 300,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2357269 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0472154","Offset: 304,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2357401 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0474335","Offset: 308,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2357534 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0481536","Offset: 312,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2357692 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0484092","Offset: 316,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2357824 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0486366","Offset: 320,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2357965 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0493615","Offset: 324,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2358097 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0495937","Offset: 328,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2358229 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0498023","Offset: 332,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2358434 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0506066","Offset: 402,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2358566 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0508673","Offset: 406,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2358699 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0510857","Offset: 410,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2358835 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0518452","Offset: 414,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2358972 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0521011","Offset: 418,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2359104 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0522893","Offset: 422,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2359283 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0530467","Offset: 427,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2359467 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0532647","Offset: 431,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2359727 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0534806","Offset: 467,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2359957 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0542414","Offset: 472,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2360166 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0544692","Offset: 476,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2360516 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0546727","Offset: 480,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2360764 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0554748","Offset: 484,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2360977 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0557351","Offset: 488,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2361182 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0563576","Offset: 492,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2361369 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0565770","Offset: 496,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2361574 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0572144","Offset: 500,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2361766 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0574243","Offset: 504,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2361967 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0576338","Offset: 508,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2362308 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0583519","Offset: 578,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2362526 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0586036","Offset: 582,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2362731 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0592414","Offset: 586,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2362876 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0594607","Offset: 590,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2363004 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0596702","Offset: 594,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2363132 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0604911","Offset: 599,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2363260 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0607113","Offset: 603,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2363392 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0609242","Offset: 607,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2363524 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0616701","Offset: 611,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2363652 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0619325","Offset: 615,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2363780 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0621339","Offset: 619,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2363912 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0628976","Offset: 623,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2364134 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0631527","Offset: 693,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2364267 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0638413","Offset: 697,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2364403 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0640632","Offset: 701,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2364535 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0642868","Offset: 705,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2364672 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0651120","Offset: 709,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2364894 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0653261","Offset: 713,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2365192 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0659675","Offset: 717,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2365436 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0661893","Offset: 721,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2365619 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0668413","Offset: 726,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2365794 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0670742","Offset: 730,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2365952 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0672807","Offset: 734,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2366084 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0680436","Offset: 738,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2366212 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0682625","Offset: 742,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2366344 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0684746","Offset: 746,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2366472 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0692332","Offset: 750,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2366600 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0694598","Offset: 754,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2366728 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0696722","Offset: 758,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2366865 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0705166","Offset: 762,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2367023 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0707316","Offset: 766,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2367181 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0709415","Offset: 771,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2367317 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0716912","Offset: 775,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2367454 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0719139","Offset: 779,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2367659 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0725560","Offset: 783,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2367821 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0727702","Offset: 787,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2367957 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0729849","Offset: 791,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2368089 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0737537","Offset: 795,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2368222 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0739644","Offset: 799,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2368422 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0741881","Offset: 836,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2368619 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0749982","Offset: 840,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2368819 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0752150","Offset: 844,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2368951 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0754352","Offset: 848,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2369088 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0762275","Offset: 852,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2369224 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0764686","Offset: 857,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2369357 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0771205","Offset: 861,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2369489 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0773385","Offset: 865,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2369617 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0775660","Offset: 869,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2369749 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0783178","Offset: 873,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2369881 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0785465","Offset: 877,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2370009 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0791929","Offset: 881,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2370189 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0794189","Offset: 918,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2370321 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0796728","Offset: 922,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2370457 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0804955","Offset: 926,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2370594 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0807131","Offset: 930,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2370726 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0809234","Offset: 934,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2370927 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0816773","Offset: 939,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2371127 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0818920","Offset: 943,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2371324 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0821040","Offset: 947,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2371464 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0828635","Offset: 951,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2371665 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0830964","Offset: 988,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2371797 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0837403","Offset: 992,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2371929 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0839639","Offset: 996,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2372066 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0846192","Offset: 1,000,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2372198 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0848321","Offset: 1,004,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2372335 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0850505","Offset: 1,008,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2372467 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0858719","Offset: 1,012,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2372599 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0861164","Offset: 1,016,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2372732 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0867542","Offset: 1,020,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2372868 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0869731","Offset: 1,025,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2373005 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0871928","Offset: 1,029,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2373141 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0879826","Offset: 1,033,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2373273 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0882131","Offset: 1,037,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2373410 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0888573","Offset: 1,041,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2373542 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0890800","Offset: 1,045,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2373675 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0892980","Offset: 1,049,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2373807 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0901147","Offset: 1,053,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2373960 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0903387","Offset: 1,057,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2374165 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0909800","Offset: 1,061,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2374387 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0911895","Offset: 1,065,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2374613 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0914096","Offset: 1,070,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2374839 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0921546","Offset: 1,074,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2375078 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0923628","Offset: 1,078,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2375309 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0925671","Offset: 1,082,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2375543 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0933476","Offset: 1,086,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2375769 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0935626","Offset: 1,090,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2375991 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0937853","Offset: 1,094,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2376205 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0945247","Offset: 1,098,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2376431 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0947338","Offset: 1,102,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2376653 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0949360","Offset: 1,106,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2376930 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0957266","Offset: 1,111,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2377173 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0959413","Offset: 1,115,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2377391 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0961447","Offset: 1,119,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2377621 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0968974","Offset: 1,123,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2377856 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0971005","Offset: 1,127,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2378086 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0973006","Offset: 1,131,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2378308 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0980486","Offset: 1,135,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2378539 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0982670","Offset: 1,139,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2378777 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0984757","Offset: 1,143,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2378995 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0999297","Offset: 1,147,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2379225 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1001576","Offset: 1,152,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2379447 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1003778","Offset: 1,156,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2379661 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1012204","Offset: 1,160,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2379870 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1014444","Offset: 1,164,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2380066 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1020780","Offset: 1,168,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2380275 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1022922","Offset: 1,172,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2380753 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1029190","Offset: 1,209,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2381184 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1031118","Offset: 1,213,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2381448 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1033103","Offset: 1,217,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2381670 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1040846","Offset: 1,221,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2381888 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1043060","Offset: 1,225,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2382097 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1049490","Offset: 1,229,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2382306 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1051564","Offset: 1,233,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2382519 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1053651","Offset: 1,238,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2382728 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1061591","Offset: 1,242,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2382942 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1063877","Offset: 1,246,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2383168 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1065755","Offset: 1,250,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2383390 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1073238","Offset: 1,254,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2383599 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1075658","Offset: 1,258,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2383816 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1077510","Offset: 1,262,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2384055 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1085105","Offset: 1,266,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2384277 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1087285","Offset: 1,270,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2384491 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1093612","Offset: 1,274,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2384704 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1095750","Offset: 1,278,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2384909 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1097827","Offset: 1,283,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2385173 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1105879","Offset: 1,287,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2385416 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1108217","Offset: 1,291,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2385630 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1110154","Offset: 1,295,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2385894 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1117898","Offset: 1,299,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2386197 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1120002","Offset: 1,303,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2386603 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1126290","Offset: 1,307,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2386837 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1128424","Offset: 1,311,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2387068 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1134875","Offset: 1,315,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2387298 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1136961","Offset: 1,319,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2387524 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1139039","Offset: 1,324,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2387742 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1146565","Offset: 1,328,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2387951 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1148729","Offset: 1,332,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2388173 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1150909","Offset: 1,336,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2388403 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1158922","Offset: 1,340,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2388633 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1160983","Offset: 1,344,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2388851 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1163044","Offset: 1,348,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2389081 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1170447","Offset: 1,352,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2389303 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1172627","Offset: 1,356,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2389538 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1174649","Offset: 1,360,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2389751 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1182142","Offset: 1,364,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2389969 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1184257","Offset: 1,369,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2390199 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1186319","Offset: 1,373,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2390421 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1193841","Offset: 1,377,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2390652 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1196067","Offset: 1,381,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2390878 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1198047","Offset: 1,385,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2391100 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1205949","Offset: 1,389,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2391309 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1208163","Offset: 1,393,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2391531 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1214474","Offset: 1,397,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2391757 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1216761","Offset: 1,401,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2391979 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1218851","Offset: 1,405,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2392205 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1226595","Offset: 1,410,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2392427 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1228733","Offset: 1,414,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2392653 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1230824","Offset: 1,418,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2392870 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1238483","Offset: 1,422,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2393088 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1240676","Offset: 1,426,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2393395 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1242651","Offset: 1,430,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2393647 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1250681","Offset: 1,434,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2393903 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1252806","Offset: 1,438,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2394137 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1259125","Offset: 1,442,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2394355 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1261352","Offset: 1,446,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2394590 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1263255","Offset: 1,451,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2394816 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1270739","Offset: 1,455,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2395029 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1273175","Offset: 1,459,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2395243 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1279639","Offset: 1,463,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2395464 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1281931","Offset: 1,467,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2395691 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1283833","Offset: 1,471,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2395938 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1291321","Offset: 1,475,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2396173 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1293403","Offset: 1,479,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2396403 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1295460","Offset: 1,483,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2396629 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1303575","Offset: 1,487,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2396791 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1305871","Offset: 1,491,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2396928 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1308038","Offset: 1,496,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2397052 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1315816","Offset: 1,500,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2397180 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1318090","Offset: 1,504,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2397295 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1324674","Offset: 1,508,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2397423 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1326995","Offset: 1,512,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2397542 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1329090","Offset: 1,516,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2397662 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1336718","Offset: 1,520,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2397781 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1338984","Offset: 1,524,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2397905 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1341216","Offset: 1,528,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2398024 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1349361","Offset: 1,532,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2398161 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1351528","Offset: 1,537,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2398306 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1353627","Offset: 1,541,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2398425 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1360902","Offset: 1,545,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2398549 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1363274","Offset: 1,549,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2398809 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1369602","Offset: 1,553,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2398950 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1371782","Offset: 1,557,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2399070 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1373894","Offset: 1,561,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2399189 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1381429","Offset: 1,565,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2399309 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1383571","Offset: 1,569,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2399428 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1385692","Offset: 1,573,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2399548 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1394079","Offset: 1,577,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2399667 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1396337","Offset: 1,582,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2399782 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1398534","Offset: 1,586,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2399897 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1406172","Offset: 1,590,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2400068 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1408360","Offset: 1,594,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2400256 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1410510","Offset: 1,598,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2400491 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1417836","Offset: 1,602,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2400665 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1420004","Offset: 1,606,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2400785 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1422142","Offset: 1,610,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2400900 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1429728","Offset: 1,614,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2401015 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1431964","Offset: 1,618,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2401131 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1434199","Offset: 1,623,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2401280 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1442370","Offset: 1,643,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2401510 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1444649","Offset: 1,664,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2401732 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1451304","Offset: 1,684,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2401903 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1453693","Offset: 1,704,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2402022 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1460461","Offset: 1,709,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2402159 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1462598","Offset: 1,713,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2402585 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1464945","Offset: 1,811,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2402841 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1472531","Offset: 1,831,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2403029 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1475309","Offset: 1,836,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2403179 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1481921","Offset: 1,840,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2403324 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1484059","Offset: 1,860,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2403447 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1486287","Offset: 1,864,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2403567 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1494487","Offset: 1,868,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2403712 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1496753","Offset: 1,872,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2403878 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1503243","Offset: 1,876,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2404002 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1505478","Offset: 1,881,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2404117 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1507569","Offset: 1,885,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2404241 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1515415","Offset: 1,889,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2404369 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1517715","Offset: 1,893,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2404488 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1519840","Offset: 1,897,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2404608 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1527439","Offset: 1,901,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2404727 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1529628","Offset: 1,905,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2404843 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1531722","Offset: 1,909,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2404962 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1539228","Offset: 1,913,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2405086 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1541570","Offset: 1,917,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2405218 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1543844","Offset: 1,922,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2405346 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1551678","Offset: 1,926,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2405465 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1553999","Offset: 1,930,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2405598 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1560433","Offset: 1,934,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2405743 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1562698","Offset: 1,954,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2405858 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1564909","Offset: 1,958,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2405986 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1572747","Offset: 1,963,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2406101 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1575089","Offset: 1,967,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2406225 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1581852","Offset: 1,971,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2406344 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1584130","Offset: 1,975,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2406464 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1590573","Offset: 1,979,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2406635 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1592957","Offset: 2,009,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2406797 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1595065","Offset: 2,013,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2406967 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1603121","Offset: 2,017,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2407142 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1605229","Offset: 2,021,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2407309 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1607396","Offset: 2,025,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2407437 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1614897","Offset: 2,030,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2407556 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1617060","Offset: 2,034,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2407667 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1619403","Offset: 2,038,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2407778 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1627014","Offset: 2,042,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2407893 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1629255","Offset: 2,046,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2408008 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1631384","Offset: 2,050,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2408128 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1640156","Offset: 2,054,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2408247 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1642277","Offset: 2,058,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2408363 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1649491","Offset: 2,062,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2408478 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1651590","Offset: 2,066,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2408602 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1653617","Offset: 2,071,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2408721 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1661937","Offset: 2,075,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2408853 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1663631","Offset: 2,079,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2408981 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1665508","Offset: 2,083,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2409101 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1673243","Offset: 2,087,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2409224 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1675339","Offset: 2,091,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2409348 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1677430","Offset: 2,095,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2409472 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1685088","Offset: 2,099,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2409591 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1687320","Offset: 2,103,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2409758 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1694628","Offset: 2,107,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2410027 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1697115","Offset: 2,134,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2410180 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1704096","Offset: 2,154,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2410304 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1706408","Offset: 2,158,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2410432 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1708584","Offset: 2,162,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2410598 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1716397","Offset: 2,166,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2410795 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1718491","Offset: 2,170,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2410991 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1720570","Offset: 2,174,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2411183 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1728463","Offset: 2,179,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2411371 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1730540","Offset: 2,183,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2411550 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1732644","Offset: 2,187,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2411720 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1740440","Offset: 2,191,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2411904 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1742513","Offset: 2,195,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2412079 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1744680","Offset: 2,199,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2412262 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1752881","Offset: 2,203,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2412454 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1755326","Offset: 2,207,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2412634 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1757493","Offset: 2,211,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2412783 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1765391","Offset: 2,215,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2412907 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1767656","Offset: 2,220,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2413035 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1769871","Offset: 2,224,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2413175 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1777761","Offset: 2,228,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2413303 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1780090","Offset: 2,232,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2413423 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1786605","Offset: 2,236,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2413542 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1788858","Offset: 2,240,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2413662 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1796034","Offset: 2,244,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2413777 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1798087","Offset: 2,248,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2413896 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1800289","Offset: 2,252,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2414016 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1807968","Offset: 2,256,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2414140 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1810293","Offset: 2,260,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2414259 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1817095","Offset: 2,265,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2414379 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1819095","Offset: 2,269,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2414502 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1821268","Offset: 2,273,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2414622 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1828819","Offset: 2,277,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2414746 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1831089","Offset: 2,281,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2414865 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1833235","Offset: 2,285,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2414997 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1840805","Offset: 2,289,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2415117 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1843074","Offset: 2,293,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2415292 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1849990","Offset: 2,297,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2415458 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1852371","Offset: 2,301,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2415582 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1858831","Offset: 2,306,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2415710 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1861190","Offset: 2,310,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2415855 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1863243","Offset: 2,314,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2415979 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1870765","Offset: 2,318,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2416102 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1873040","Offset: 2,322,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2416256 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1875258","Offset: 2,326,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2416388 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1882853","Offset: 2,330,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2416538 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1884896","Offset: 2,334,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2416661 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1887051","Offset: 2,338,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2416785 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1895260","Offset: 2,342,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2416904 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1897552","Offset: 2,347,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2417024 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1903981","Offset: 2,351,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2417139 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1906140","Offset: 2,355,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2417263 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1908269","Offset: 2,359,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2417378 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1915787","Offset: 2,363,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2417502 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1917959","Offset: 2,367,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2417621 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1920126","Offset: 2,371,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2417736 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1927994","Offset: 2,375,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2417856 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1930213","Offset: 2,379,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2418027 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1932358","Offset: 2,383,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2418167 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1940086","Offset: 2,387,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2418304 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1942437","Offset: 2,392,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2418423 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1949554","Offset: 2,396,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2418543 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1951721","Offset: 2,400,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2418662 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1953893","Offset: 2,404,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2418782 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1961474","Offset: 2,408,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2418901 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1963928","Offset: 2,412,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2419025 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1966117","Offset: 2,416,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2419140 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1973532","Offset: 2,420,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2419260 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1975669","Offset: 2,424,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2419383 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1977833","Offset: 2,428,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2419499 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1985457","Offset: 2,433,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2419614 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1987684","Offset: 2,437,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2419729 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1989946","Offset: 2,441,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2419844 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.1998044","Offset: 2,445,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2419959 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2000366","Offset: 2,449,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2420075 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2006850","Offset: 2,453,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2420190 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2009159","Offset: 2,457,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2420305 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2015853","Offset: 2,461,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2420420 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2018021","Offset: 2,465,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2420540 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2020226","Offset: 2,469,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2420655 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2027834","Offset: 2,473,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2420774 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2030049","Offset: 2,478,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2420894 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2032156","Offset: 2,482,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2421022 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2039853","Offset: 2,486,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2421141 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2042209","Offset: 2,490,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2421256 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2049198","Offset: 2,494,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2421384 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2051404","Offset: 2,498,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2421508 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2053579","Offset: 2,502,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2421645 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2061340","Offset: 2,506,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2421764 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2063563","Offset: 2,510,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2421879 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2065667","Offset: 2,514,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2421999 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2073317","Offset: 2,519,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2422118 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2075583","Offset: 2,523,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2422238 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2082187","Offset: 2,527,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2422357 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2084295","Offset: 2,531,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2422481 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2086642","Offset: 2,535,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2422605 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2094752","Offset: 2,539,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2422724 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2097040","Offset: 2,543,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2422844 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2103533","Offset: 2,547,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2422984 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2105684","Offset: 2,551,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2423117 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2107877","Offset: 2,555,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2423258 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2115851","Offset: 2,560,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2423381 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2117635","Offset: 2,564,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2423501 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2119917","Offset: 2,568,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2423624 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2127120","Offset: 2,572,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2423757 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2129509","Offset: 2,576,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2423876 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2135896","Offset: 2,580,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2423996 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2139224","Offset: 2,584,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2424115 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2145876","Offset: 2,588,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2424235 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2148589","Offset: 2,592,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2424358 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2150757","Offset: 2,596,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2424478 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2158257","Offset: 2,600,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2424623 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2160775","Offset: 2,605,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2424747 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2162938","Offset: 2,609,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2424870 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2170414","Offset: 2,613,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2424994 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2172632","Offset: 2,617,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2425118 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2174697","Offset: 2,621,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2425246 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2183968","Offset: 2,625,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2425365 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2184758","Offset: 2,629,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2425489 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2187664","Offset: 2,633,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2425604 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2188666","Offset: 2,637,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2425728 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2199256","Offset: 2,641,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2425847 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2200289","Offset: 2,646,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2425971 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2202482","Offset: 2,650,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2426091 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2204679","Offset: 2,654,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2426253 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2214484","Offset: 2,658,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2426398 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2215260","Offset: 2,662,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2426551 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2218239","Offset: 2,666,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2426671 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2219105","Offset: 2,670,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2426795 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2229400","Offset: 2,674,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2426914 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2230185","Offset: 2,678,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2427038 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2233658","Offset: 2,682,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2427162 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2242558","Offset: 2,686,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2427285 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2243327","Offset: 2,691,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2427409 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2247504","Offset: 2,695,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2427541 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2254655","Offset: 2,699,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2427661 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2255602","Offset: 2,703,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2427780 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2259587","Offset: 2,707,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2427895 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2267092","Offset: 2,711,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2428011 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2275117","Offset: 2,715,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2428130 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2276154","Offset: 2,719,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2428250 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2286530","Offset: 2,723,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2428365 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2287469","Offset: 2,727,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2428480 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2289065","Offset: 2,732,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2428595 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2291408","Offset: 2,736,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2428710 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2301883","Offset: 2,740,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2428826 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2302791","Offset: 2,744,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2428945 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2305402","Offset: 2,748,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2429060 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2306286","Offset: 2,752,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2429184 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2316803","Offset: 2,756,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2429299 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2317686","Offset: 2,760,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2429423 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2321057","Offset: 2,764,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2429542 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2322444","Offset: 2,768,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2429662 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2333682","Offset: 2,772,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2429786 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2334590","Offset: 2,777,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2429909 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2336976","Offset: 2,781,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2430024 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2337872","Offset: 2,785,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2430148 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2349273","Offset: 2,789,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2430268 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2350206","Offset: 2,793,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2430404 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2351436","Offset: 2,797,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2430524 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2353876","Offset: 2,801,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2430647 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2363942","Offset: 2,805,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2430767 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2364858","Offset: 2,809,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2430891 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2367482","Offset: 2,813,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2431006 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2368425","Offset: 2,818,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2431125 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2379323","Offset: 2,822,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2431240 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2380257","Offset: 2,826,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2431377 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2382915","Offset: 2,830,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2431509 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2392421","Offset: 2,834,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2431654 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2393326","Offset: 2,838,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2431774 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2396026","Offset: 2,842,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2431902 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2397567","Offset: 2,846,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2432021 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2408191","Offset: 2,850,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2432171 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2409244","Offset: 2,854,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2432862 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2411190","Offset: 2,859,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2433092 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2421652","Offset: 2,863,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2433276 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2420892","Offset: 2,867,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2433451 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2422343","Offset: 2,871,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2433617 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2425206","Offset: 2,875,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2433796 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2435045","Offset: 2,879,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2433937 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2435647","Offset: 2,883,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2434052 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2439397","Offset: 2,887,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2434176 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2447589","Offset: 2,891,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2434300 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2448476","Offset: 2,895,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2434500 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2451822","Offset: 2,899,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2434658 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2459783","Offset: 2,904,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2434867 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2460624","Offset: 2,908,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2434999 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2463743","Offset: 2,912,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2435119 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2471538","Offset: 2,916,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2435234 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2472528","Offset: 2,920,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2435358 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2476637","Offset: 2,924,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2435482 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2483915","Offset: 2,928,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2435601 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2484799","Offset: 2,932,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2435720 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2488904","Offset: 2,936,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2435840 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2496344","Offset: 2,940,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2435959 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2497083","Offset: 2,945,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2436079 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2501379","Offset: 2,949,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2436203 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2508645","Offset: 2,953,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2436322 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2509533","Offset: 2,957,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2436437 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2513689","Offset: 2,961,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2436565 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2520887","Offset: 2,965,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2436685 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2521488","Offset: 2,969,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2436804 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2525473","Offset: 2,973,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2436924 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2532969","Offset: 2,977,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2437060 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2533580","Offset: 2,981,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2437184 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2537407","Offset: 2,985,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2437308 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2545027","Offset: 2,990,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2437436 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2545893","Offset: 2,994,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2437585 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2549981","Offset: 2,998,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2437730 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2557025","Offset: 3,002,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2437850 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2557874","Offset: 3,006,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2437965 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2562072","Offset: 3,010,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2438123 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2569108","Offset: 3,014,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2438263 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2569988","Offset: 3,018,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2438383 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2572871","Offset: 3,022,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2438502 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2574835","Offset: 3,026,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2438622 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2576438","Offset: 3,031,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2438746 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2578128","Offset: 3,035,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2438874 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2579898","Offset: 3,039,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2438993 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2581768","Offset: 3,043,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2439112 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2583552","Offset: 3,047,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2439232 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2585433","Offset: 3,051,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2439351 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2587268","Offset: 3,055,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2439475 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2588880","Offset: 3,059,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2439590 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2590690","Offset: 3,063,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2439723 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2592464","Offset: 3,067,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2439842 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2594295","Offset: 3,072,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2439974 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2595903","Offset: 3,076,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2440102 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2597495","Offset: 3,080,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2440226 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2599124","Offset: 3,084,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2440350 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2600737","Offset: 3,088,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2440491 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2602520","Offset: 3,092,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2440610 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2604099","Offset: 3,096,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2440738 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2605563","Offset: 3,100,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2440858 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2607094","Offset: 3,104,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2440977 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2608665","Offset: 3,108,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2441096 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2610257","Offset: 3,112,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2441212 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2611741","Offset: 3,117,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2441327 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2613260","Offset: 3,121,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2441446 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.2614736","Offset: 3,125,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2441574 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3017045","Offset: 3,129,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2441694 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3021584","Offset: 3,133,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2441818 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3025766","Offset: 3,137,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2441954 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3029896","Offset: 3,141,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2442082 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3034555","Offset: 3,145,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2442210 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3036979","Offset: 3,149,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2442325 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3041182","Offset: 3,153,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2442445 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3045516","Offset: 3,158,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2442568 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3049630","Offset: 3,162,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2442731 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3053883","Offset: 3,166,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2442884 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3057988","Offset: 3,170,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2443038 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3061329","Offset: 3,174,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2443187 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3064098","Offset: 3,178,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2443307 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3066956","Offset: 3,182,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2443430 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3069423","Offset: 3,186,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2443550 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3071778","Offset: 3,190,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2443669 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3074304","Offset: 3,194,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2443789 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3076684","Offset: 3,198,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2443904 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3078916","Offset: 3,203,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2444019 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3081758","Offset: 3,207,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2444134 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3084271","Offset: 3,211,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2444254 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3086771","Offset: 3,215,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2444373 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3089293","Offset: 3,219,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2444493 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3091665","Offset: 3,223,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2444608 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3094152","Offset: 3,227,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2444723 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3097062","Offset: 3,231,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2444843 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3099553","Offset: 3,235,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2444983 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3101991","Offset: 3,239,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2445111 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3104640","Offset: 3,244,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2445235 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3107042","Offset: 3,248,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2445359 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3109474","Offset: 3,252,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2445478 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3112401","Offset: 3,256,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2445594 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3114879","Offset: 3,260,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2445717 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3117325","Offset: 3,264,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2445832 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3119812","Offset: 3,268,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2445969 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3122248","Offset: 3,272,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2446088 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3124745","Offset: 3,276,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2446221 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3127620","Offset: 3,280,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2446396 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3130035","Offset: 3,284,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2446545 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3132450","Offset: 3,289,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2446673 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3134916","Offset: 3,293,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2446797 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3137471","Offset: 3,297,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2446916 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3139857","Offset: 3,301,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2447040 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3142720","Offset: 3,305,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2447159 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3145250","Offset: 3,309,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2447279 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3147695","Offset: 3,313,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2447398 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3150140","Offset: 3,317,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2447526 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3152615","Offset: 3,321,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2447646 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3155033","Offset: 3,325,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2447770 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3157930","Offset: 3,330,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2447906 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3160427","Offset: 3,334,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2448026 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3162905","Offset: 3,338,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2448145 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3165376","Offset: 3,342,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2448264 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3167864","Offset: 3,346,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2448388 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3170368","Offset: 3,350,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2448508 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3173179","Offset: 3,354,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2448627 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3175616","Offset: 3,358,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2448759 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3178065","Offset: 3,362,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2448879 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3180702","Offset: 3,366,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2448994 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3183334","Offset: 3,371,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2449109 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3185805","Offset: 3,375,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2449224 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3188583","Offset: 3,379,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2449352 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3191036","Offset: 3,383,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2449485 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3193510","Offset: 3,387,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2449638 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3195921","Offset: 3,391,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2449783 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3198323","Offset: 3,395,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2449916 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3200716","Offset: 3,399,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2450035 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3203601","Offset: 3,403,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2450150 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3206110","Offset: 3,407,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2450270 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3208661","Offset: 3,411,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2450389 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3211072","Offset: 3,416,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2450509 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3213508","Offset: 3,420,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2450632 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3215932","Offset: 3,424,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2450752 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3219490","Offset: 3,428,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2450931 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3221402","Offset: 3,432,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2451068 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3223850","Offset: 3,436,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2451213 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3226252","Offset: 3,440,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2451328 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3235200","Offset: 3,444,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2451447 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3238217","Offset: 3,448,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2451575 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3240781","Offset: 3,452,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2451695 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3243204","Offset: 3,457,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2451810 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3245692","Offset: 3,461,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2451942 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3248103","Offset: 3,465,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2452062 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3250538","Offset: 3,469,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2452190 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3253350","Offset: 3,473,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2452309 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3255889","Offset: 3,477,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2452433 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3258428","Offset: 3,481,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2452557 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3260898","Offset: 3,485,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2452672 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3263403","Offset: 3,489,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2452787 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3265848","Offset: 3,493,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2452907 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3268753","Offset: 3,497,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2453026 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3271266","Offset: 3,502,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2453141 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3273715","Offset: 3,506,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2453261 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3276177","Offset: 3,510,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2453380 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3278588","Offset: 3,514,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2453521 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3281011","Offset: 3,518,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2453640 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3283909","Offset: 3,522,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2453764 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3286379","Offset: 3,526,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2453884 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3288934","Offset: 3,530,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2454007 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3291294","Offset: 3,534,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2454131 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3293709","Offset: 3,538,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2454251 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3296111","Offset: 3,543,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2454379 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3298927","Offset: 3,547,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2454498 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3301423","Offset: 3,551,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2454613 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3303825","Offset: 3,555,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2454728 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3306334","Offset: 3,559,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2454848 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3308762","Offset: 3,563,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2454967 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3311198","Offset: 3,567,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2455091 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3314010","Offset: 3,571,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2455215 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3316505","Offset: 3,575,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2455334 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3318900","Offset: 3,579,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2455454 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3321382","Offset: 3,584,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2455573 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3323759","Offset: 3,588,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2455693 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3326208","Offset: 3,592,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2455821 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3328990","Offset: 3,596,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2455940 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3331414","Offset: 3,600,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2456060 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3334092","Offset: 3,604,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2456179 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3345255","Offset: 3,608,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2456299 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3351091","Offset: 3,612,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2456422 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3357018","Offset: 3,616,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2456538 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3363404","Offset: 3,620,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2456661 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3369212","Offset: 3,624,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2456789 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3375070","Offset: 3,629,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2456909 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3381034","Offset: 3,633,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2457028 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3386825","Offset: 3,637,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2457148 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3392712","Offset: 3,641,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2457276 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3399031","Offset: 3,645,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2457408 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3404894","Offset: 3,649,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2457532 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3410807","Offset: 3,653,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2457677 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3417190","Offset: 3,657,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2457805 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3423215","Offset: 3,661,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2457920 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3429077","Offset: 3,665,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2458039 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3435388","Offset: 3,670,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2458176 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3441310","Offset: 3,674,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2458295 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3447203","Offset: 3,678,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2458428 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3453056","Offset: 3,682,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2458564 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3458855","Offset: 3,686,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2458688 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3464841","Offset: 3,690,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2458807 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3471169","Offset: 3,694,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2458957 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3477035","Offset: 3,698,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2459080 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3482898","Offset: 3,702,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2459243 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3488405","Offset: 3,706,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2459413 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3495548","Offset: 3,710,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2459546 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3501640","Offset: 3,715,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2459665 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3507926","Offset: 3,719,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2459789 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3513890","Offset: 3,723,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2459930 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3519791","Offset: 3,727,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2460053 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3525897","Offset: 3,731,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2460177 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3531653","Offset: 3,735,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2460292 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3537771","Offset: 3,739,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2460416 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3544047","Offset: 3,743,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2460535 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3552474","Offset: 3,747,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2460672 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3563503","Offset: 3,751,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2460791 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3567672","Offset: 3,756,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2460911 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3571746","Offset: 3,760,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2461030 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3575911","Offset: 3,764,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2461150 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3580455","Offset: 3,768,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2461269 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3584619","Offset: 3,772,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2461393 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3587495","Offset: 3,776,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2461513 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3589909","Offset: 3,780,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2461636 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3592303","Offset: 3,784,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2461756 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3594761","Offset: 3,788,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2461875 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3597833","Offset: 3,792,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2461999 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3600124","Offset: 3,796,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2462123 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3602594","Offset: 3,801,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2462246 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3604788","Offset: 3,805,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2462374 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3607224","Offset: 3,809,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2462532 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3609699","Offset: 3,813,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2462682 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3612561","Offset: 3,817,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2462801 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3615066","Offset: 3,821,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2462925 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3617523","Offset: 3,825,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2463044 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3620016","Offset: 3,829,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2463172 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3622469","Offset: 3,833,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2463300 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3624905","Offset: 3,837,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2463450 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3628774","Offset: 3,842,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2463582 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3631245","Offset: 3,846,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2463710 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3639245","Offset: 3,850,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2463838 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3642142","Offset: 3,854,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2463957 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3644899","Offset: 3,858,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2464085 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3647480","Offset: 3,862,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2464209 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3650415","Offset: 3,866,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2464333 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3653014","Offset: 3,870,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2464452 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3655412","Offset: 3,874,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2464572 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3657959","Offset: 3,878,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2464695 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3660442","Offset: 3,883,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2464819 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3662866","Offset: 3,887,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2464934 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3665806","Offset: 3,891,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2465054 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3668314","Offset: 3,895,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2465173 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3670810","Offset: 3,899,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2465293 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3673272","Offset: 3,903,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2465412 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3675713","Offset: 3,907,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2465532 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3678148","Offset: 3,911,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2465647 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3681046","Offset: 3,915,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2465766 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3683542","Offset: 3,919,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2465890 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3686089","Offset: 3,923,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2466010 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3688448","Offset: 3,928,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2466129 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3690885","Offset: 3,932,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2466249 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3693393","Offset: 3,936,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2466368 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3696192","Offset: 3,940,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2466487 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3698697","Offset: 3,944,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2466603 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3701355","Offset: 3,948,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2466726 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3703770","Offset: 3,952,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2466842 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3706240","Offset: 3,956,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2466965 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3708728","Offset: 3,960,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2467085 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3711612","Offset: 3,964,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2467209 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3714125","Offset: 3,969,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2467337 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3716561","Offset: 3,973,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2467465 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3719091","Offset: 3,977,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2467584 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3721592","Offset: 3,981,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2467699 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3724084","Offset: 3,985,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2467814 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3726968","Offset: 3,989,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2467934 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3729455","Offset: 3,993,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2468045 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3731930","Offset: 3,997,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2468164 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3734418","Offset: 4,001,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2468279 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3736807","Offset: 4,005,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2468395 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3739230","Offset: 4,009,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2468510 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3742080","Offset: 4,014,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2468629 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3744551","Offset: 4,018,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2468749 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3747068","Offset: 4,022,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2468864 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3749534","Offset: 4,026,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2468983 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3752005","Offset: 4,030,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2469103 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3754445","Offset: 4,034,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2469222 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3757334","Offset: 4,038,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2469338 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3759864","Offset: 4,042,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2469453 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3762330","Offset: 4,046,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2469572 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3764797","Offset: 4,050,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2469692 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3767318","Offset: 4,055,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2470660 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3768880","Offset: 4,059,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2470793 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3771768","Offset: 4,063,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2470933 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3774217","Offset: 4,067,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2471061 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3776696","Offset: 4,071,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2471185 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3779175","Offset: 4,075,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2471305 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3781568","Offset: 4,079,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2471441 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3784018","Offset: 4,083,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2471556 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3787047","Offset: 4,087,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2471680 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3789436","Offset: 4,091,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2471804 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3791889","Offset: 4,096,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2471953 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3794275","Offset: 4,100,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2472098 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3796754","Offset: 4,104,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.2472226 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.3811307","Offset: 4,108,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6270938 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0021526","Offset: 4,112,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6271843 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0025429","Offset: 4,116,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6272478 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0025323","Offset: 4,120,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6273046 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0025468","Offset: 4,124,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6273605 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0025502","Offset: 4,128,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6274185 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0025455","Offset: 4,132,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6274736 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0025437","Offset: 4,136,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6275299 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0025408","Offset: 4,141,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6275858 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0025395","Offset: 4,145,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6276391 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0028855","Offset: 4,149,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6303318 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0005167","Offset: 4,153,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6306654 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0033916","Offset: 4,157,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6309517 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0032167","Offset: 4,161,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6310076 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0035712","Offset: 4,165,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6310588 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0035691","Offset: 4,169,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6311100 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0035951","Offset: 4,173,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6311617 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0038037","Offset: 4,177,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6312116 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0038809","Offset: 4,182,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6312624 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0038617","Offset: 4,186,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6313131 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0038392","Offset: 4,190,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6313643 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0038439","Offset: 4,194,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6314160 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0039300","Offset: 4,198,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6314676 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0038643","Offset: 4,202,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6315196 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0038460","Offset: 4,206,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6315725 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0038584","Offset: 4,210,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6316365 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0039284","Offset: 4,214,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6317040 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0038464","Offset: 4,218,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6317560 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0038366","Offset: 4,222,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6318085 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0039223","Offset: 4,227,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6318657 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0038502","Offset: 4,231,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6319169 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0038408","Offset: 4,235,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6319681 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0039279","Offset: 4,239,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6320188 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0038627","Offset: 4,243,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6320700 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0038588","Offset: 4,247,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6321234 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0038745","Offset: 4,251,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6321776 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0038579","Offset: 4,255,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6322292 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0038626","Offset: 4,259,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6322859 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0038656","Offset: 4,263,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6323371 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0038558","Offset: 4,268,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6323888 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0038604","Offset: 4,272,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6324408 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0038669","Offset: 4,276,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6324937 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0038571","Offset: 4,280,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6325355 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0038729","Offset: 4,284,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6325791 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0038916","Offset: 4,288,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6326209 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0207023","Offset: 4,292,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6366298 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0168756","Offset: 4,296,704, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6367199 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0169817","Offset: 4,300,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6367890 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0170803","Offset: 4,304,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6368479 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0171857","Offset: 4,308,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6369072 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0198366","Offset: 4,313,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6407847 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache","0.0000819","","5728"
"10:46:21.6408321 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache","0.0000580","","6488"
"10:46:21.6410032 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0000934","","5728"
"10:46:21.6411973 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache-current.bin","0.0002253","","6488"
"10:46:21.6419593 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0000811","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.6421313 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0000098","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","5728"
"10:46:21.6421803 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0000146","CreationTime: 3/26/2020 10:35:21 AM, LastAccessTime: 3/26/2020 10:35:21 AM, LastWriteTime: 3/26/2020 10:35:21 AM, ChangeTime: 3/26/2020 10:46:21 AM, FileAttributes: A, AllocationSize: 667,648, EndOfFile: 667,473, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x58000000014bf7, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","5728"
"10:46:21.6421825 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache-current.bin","0.0000943","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6488"
"10:46:21.6422448 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0000077","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:21.6422849 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0000077","AllocationSize: 667,648, EndOfFile: 667,473, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:21.6423472 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0000051","SyncType: SyncTypeOther","5728"
"10:46:21.6423638 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache-current.bin","0.0000111","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","6488"
"10:46:21.6424248 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache-current.bin","0.0000175","CreationTime: 3/26/2020 10:35:20 AM, LastAccessTime: 3/26/2020 10:35:20 AM, LastWriteTime: 3/26/2020 10:35:20 AM, ChangeTime: 3/26/2020 10:46:21 AM, FileAttributes: A, AllocationSize: 4,096, EndOfFile: 2,607, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x1f000000000d01, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","6488"
"10:46:21.6424952 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0488833","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:21.6425021 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache-current.bin","0.0000119","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","6488"
"10:46:21.6425584 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache-current.bin","0.0000106","AllocationSize: 4,096, EndOfFile: 2,607, NumberOfLinks: 1, DeletePending: False, Directory: False","6488"
"10:46:21.6426493 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache-current.bin","0.0000072","SyncType: SyncTypeOther","6488"
"10:46:21.6427930 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache-current.bin","0.0618800","Offset: 0, Length: 2,607, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6488"
"10:46:21.6543741 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0032849","Offset: 4,317,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6570015 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0015104","Offset: 4,321,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6578506 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0032947","Offset: 4,325,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6579734 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0034569","Offset: 4,329,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6580711 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0048184","Offset: 4,333,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6581642 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0053973","Offset: 4,337,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6582563 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0053636","Offset: 4,341,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6583451 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0054519","Offset: 4,345,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6584389 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0060758","Offset: 4,349,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6585247 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0066428","Offset: 4,354,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6586113 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0071433","Offset: 4,358,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6586962 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0071168","Offset: 4,362,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6587832 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0081729","Offset: 4,366,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6588669 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0081386","Offset: 4,370,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6589488 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0081852","Offset: 4,374,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6590286 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0081399","Offset: 4,378,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6591173 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0080747","Offset: 4,382,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6592082 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0080521","Offset: 4,386,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6592987 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0086191","Offset: 4,390,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6593827 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0087872","Offset: 4,395,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6594608 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0087420","Offset: 4,399,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6595453 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0088038","Offset: 4,403,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6596302 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0087031","Offset: 4,407,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6597172 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0086661","Offset: 4,411,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6598051 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0086507","Offset: 4,415,488, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6598930 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0086311","Offset: 4,419,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6599830 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0085675","Offset: 4,423,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6600965 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0085841","Offset: 4,427,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6602885 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0098518","Offset: 4,431,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6689819 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0137920","Offset: 4,435,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6704065 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0198887","Offset: 4,440,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6829945 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0080418","Offset: 4,444,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6830905 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0094370","Offset: 4,448,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6831562 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0219806","Offset: 4,452,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6832065 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0220822","Offset: 4,456,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6832577 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0245069","Offset: 4,460,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6833068 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0247595","Offset: 4,464,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6833546 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0248555","Offset: 4,468,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6834011 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0260979","Offset: 4,472,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6834553 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0262763","Offset: 4,476,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6835056 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0264786","Offset: 4,481,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6835504 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0273682","Offset: 4,485,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6835961 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0276036","Offset: 4,489,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6836426 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0288316","Offset: 4,493,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6836887 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0290812","Offset: 4,497,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6837339 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0297660","Offset: 4,501,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6837813 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0300002","Offset: 4,505,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6838329 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0306014","Offset: 4,509,696, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6838807 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0308262","Offset: 4,513,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6839285 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0314458","Offset: 4,517,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6839745 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0316826","Offset: 4,521,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6840210 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0322800","Offset: 4,526,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6840667 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0325061","Offset: 4,530,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6841132 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0331491","Offset: 4,534,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6841571 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0333791","Offset: 4,538,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6842041 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0339772","Offset: 4,542,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6842497 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0342025","Offset: 4,546,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6843090 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0348494","Offset: 4,550,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6843551 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0351006","Offset: 4,554,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6844008 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0356706","Offset: 4,558,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6844379 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0358981","Offset: 4,562,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6844742 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0365077","Offset: 4,567,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6845100 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0367450","Offset: 4,571,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6845463 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0373722","Offset: 4,575,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6845821 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0376193","Offset: 4,579,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6846192 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0382798","Offset: 4,583,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6846563 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0385332","Offset: 4,587,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6846943 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0397692","Offset: 4,591,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6847306 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0400103","Offset: 4,595,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6847673 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0407296","Offset: 4,599,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6848040 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0409758","Offset: 4,603,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6848407 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0416004","Offset: 4,608,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6848774 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0418300","Offset: 4,612,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6849141 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0424124","Offset: 4,616,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6849512 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0426236","Offset: 4,620,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6849870 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0436818","Offset: 4,624,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6850237 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0441925","Offset: 4,628,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6850604 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0444050","Offset: 4,632,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6850971 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0453189","Offset: 4,636,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6851385 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0454383","Offset: 4,640,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6851747 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0456103","Offset: 4,644,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6852110 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0457707","Offset: 4,648,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6852477 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0459862","Offset: 4,653,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6852848 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0461155","Offset: 4,657,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6853219 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0462806","Offset: 4,661,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6853595 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0464380","Offset: 4,665,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6853962 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0465682","Offset: 4,669,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6854333 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0467081","Offset: 4,673,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6854700 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0468694","Offset: 4,677,632, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6855063 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0469496","Offset: 4,681,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6855438 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0471250","Offset: 4,685,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6855814 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0471996","Offset: 4,689,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6856181 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0473681","Offset: 4,694,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6856560 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0474352","Offset: 4,698,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6856936 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0475913","Offset: 4,702,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6857303 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0476677","Offset: 4,706,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6857678 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0477893","Offset: 4,710,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6858054 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0479036","Offset: 4,714,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6858425 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0480171","Offset: 4,718,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6858792 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0481272","Offset: 4,722,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6859150 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0482424","Offset: 4,726,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6859547 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0483516","Offset: 4,730,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6859914 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0484604","Offset: 4,734,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6860289 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0485705","Offset: 4,739,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.6933407 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0351335","Offset: 32,768, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6840"
"10:46:21.7049828 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache-current.bin","0.0000341","","6488"
"10:46:21.7061919 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\distribution\policies.json","0.0000303","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","6488"
"10:46:21.7063908 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache","0.0000729","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5728"
"10:46:21.7066271 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\addonStartup.json.lz4","0.0414627","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6488"
"10:46:21.7072949 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache.bin","0.0837885","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.7291462 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0167804","Offset: 65,536, Length: 65,536, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6840"
"10:46:21.7347475 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000171","","6848"
"10:46:21.7349668 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000213","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","6848"
"10:46:21.7350504 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\WinTypes.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","6848"
"10:46:21.7351076 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\WinTypes.dll","0.0000017","SyncType: SyncTypeOther","6848"
"10:46:21.7351904 AM","firefox.exe","7384","Load Image","C:\Windows\System32\WinTypes.dll","0.0000000","Image Base: 0x7ffb41af0000, Image Size: 0x14d000","6848"
"10:46:21.7352168 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\WinTypes.dll","0.0000060","Name: \Windows\System32\WinTypes.dll","6848"
"10:46:21.7353137 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\WinTypes.dll","0.0777695","Offset: 406,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.7353687 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\WinTypes.dll","0.0778762","Offset: 410,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.7353965 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\WinTypes.dll","0.0780562","Offset: 414,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.7354195 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\WinTypes.dll","0.0782226","Offset: 418,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.7354408 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\WinTypes.dll","0.0783818","Offset: 422,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.7354622 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\WinTypes.dll","0.0785340","Offset: 427,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.7355193 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\WinTypes.dll","0.0793759","Offset: 690,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.7355398 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\WinTypes.dll","0.0794664","Offset: 694,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.7355603 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\WinTypes.dll","0.0796310","Offset: 698,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.7355808 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\WinTypes.dll","0.0798064","Offset: 702,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.7356013 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\WinTypes.dll","0.0799600","Offset: 706,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.7356239 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\WinTypes.dll","0.0801012","Offset: 727,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.7356700 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\WinTypes.dll","0.0808752","Offset: 915,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.7356909 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\WinTypes.dll","0.0808909","Offset: 919,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.7357148 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\WinTypes.dll","0.0810825","Offset: 940,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.7357433 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\WinTypes.dll","0.0814692","Offset: 993,280, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.7357792 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\WinTypes.dll","0.0820792","Offset: 1,103,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.7358027 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\WinTypes.dll","0.0820353","Offset: 1,107,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.7358236 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\WinTypes.dll","0.0822349","Offset: 1,112,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.7358449 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\WinTypes.dll","0.0823694","Offset: 1,116,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.7358654 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\WinTypes.dll","0.0825067","Offset: 1,120,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.7358859 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\WinTypes.dll","0.0825754","Offset: 1,124,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6848"
"10:46:21.7467390 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0216303","Offset: 131,072, Length: 131,072, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6840"
"10:46:21.7481431 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\addonStartup.json.lz4","0.0000060","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","6488"
"10:46:21.7481683 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\addonStartup.json.lz4","0.0000073","CreationTime: 3/26/2020 10:35:12 AM, LastAccessTime: 3/26/2020 10:35:12 AM, LastWriteTime: 3/26/2020 10:35:12 AM, ChangeTime: 3/26/2020 10:35:12 AM, FileAttributes: A, AllocationSize: 4,096, EndOfFile: 1,988, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x900000002924d, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","6488"
"10:46:21.7481943 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\addonStartup.json.lz4","0.0128282","Offset: 0, Length: 1,988, Priority: Normal","6488"
"10:46:21.7482430 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\addonStartup.json.lz4","0.0127398","Offset: 0, Length: 1,988, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6488"
"10:46:21.7610788 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\addonStartup.json.lz4","0.0000180","","6488"
"10:46:21.7912011 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache.bin","0.0000239","CreationTime: 3/26/2020 10:35:20 AM, LastAccessTime: 3/26/2020 10:35:20 AM, LastWriteTime: 3/26/2020 10:35:21 AM, ChangeTime: 3/26/2020 10:35:21 AM, AllocationSize: 7053312, EndOfFile: 7053163, FileAttributes: A","5728"
"10:46:21.7912933 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache.bin","0.0000405","","5728"
"10:46:21.7925780 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache.bin","0.0000772","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.7927043 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache.bin","0.0000158","CreationTime: 3/26/2020 10:35:20 AM, LastAccessTime: 3/26/2020 10:35:20 AM, LastWriteTime: 3/26/2020 10:35:21 AM, ChangeTime: 3/26/2020 10:35:21 AM, FileAttributes: A","5728"
"10:46:21.7927602 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache.bin","0.0000256","","5728"
"10:46:21.7933225 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache.bin","0.0000964","Desired Access: Read Attributes, Delete, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.7934791 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache.bin","0.0000166","Attributes: A, ReparseTag: 0x0","5728"
"10:46:21.7935597 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache.bin","0.0000103","CreationTime: 3/26/2020 10:35:20 AM, LastAccessTime: 3/26/2020 10:35:20 AM, LastWriteTime: 3/26/2020 10:35:21 AM, ChangeTime: 3/26/2020 10:35:21 AM, FileAttributes: A","5728"
"10:46:21.7939966 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache","0.0000645","Desired Access: Write Data/Add File, Synchronize, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.7956461 AM","firefox.exe","7384","SetRenameInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache.bin","0.0497895","ReplaceIfExists: True, FileName: C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-current.bin","5728"
"10:46:21.8186785 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000375","","6848"
"10:46:21.8190130 AM","firefox.exe","7384","Thread Exit","","0.0000000","Thread ID: 6848, User Time: 0.0000000, Kernel Time: 0.0625000","6848"
"10:46:21.8353147 AM","firefox.exe","7384","Thread Exit","","0.0000000","Thread ID: 8008, User Time: 0.0000000, Kernel Time: 0.0625000","8008"
"10:46:21.8455146 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache","0.0001113","","5728"
"10:46:21.8458708 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-current.bin","0.0001430","","5728"
"10:46:21.8467852 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-current.bin","0.0003332","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.8472456 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-current.bin","0.0000200","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","5728"
"10:46:21.8473441 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-current.bin","0.0000307","CreationTime: 3/26/2020 10:35:20 AM, LastAccessTime: 3/26/2020 10:35:20 AM, LastWriteTime: 3/26/2020 10:35:21 AM, ChangeTime: 3/26/2020 10:46:21 AM, FileAttributes: A, AllocationSize: 7,053,312, EndOfFile: 7,053,163, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x1300000000bfa1, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","5728"
"10:46:21.8474764 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-current.bin","0.0000196","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:21.8475639 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-current.bin","0.0000187","AllocationSize: 7,053,312, EndOfFile: 7,053,163, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:21.8477051 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-current.bin","0.0000124","SyncType: SyncTypeOther","5728"
"10:46:21.8481326 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-current.bin","0.0138415","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:21.8637559 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-current.bin","0.0149274","Offset: 32,768, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5948"
"10:46:21.8791432 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 3240","5728"
"10:46:21.8798139 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\crashes","0.0000589","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5728"
"10:46:21.8801450 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-current.bin","0.0080930","Offset: 65,536, Length: 65,536, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5948"
"10:46:21.8803345 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\crashes\events","0.0001053","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5728"
"10:46:21.8806711 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 3800","5728"
"10:46:21.8820032 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000477","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:21.8821243 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000128","Name: \Program Files\Firefox Nightly\firefox.exe","3800"
"10:46:21.8821781 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000085","Name: \Program Files\Firefox Nightly\firefox.exe","3800"
"10:46:21.8823863 AM","firefox.exe","7384","QueryNormalizedNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000367","","3800"
"10:46:21.8824640 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000183","","3800"
"10:46:21.8874453 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000154","Desired Access: Query Value, Enumerate Sub Keys","3800"
"10:46:21.8875089 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Wow64\x86\xtajit","0.0000473","Desired Access: Query Value","3800"
"10:46:21.8879569 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000478","Desired Access: Read Data/List Directory, Execute/Traverse, Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:21.8880584 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\firefox.exe","0.0000107","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE","3800"
"10:46:21.8881352 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\firefox.exe","0.0000892","SyncType: SyncTypeOther","3800"
"10:46:21.8883251 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000158","Desired Access: Query Value, Enumerate Sub Keys","3800"
"10:46:21.8884676 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000102","Information: Label","3800"
"10:46:21.8885964 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000133","Name: \Program Files\Firefox Nightly\firefox.exe","3800"
"10:46:21.8893068 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\bam\UserSettings\S-1-5-21-429253301-29906273-2566354956-1001","0.0000227","Desired Access: All Access","3800"
"10:46:21.8893717 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\bam\UserSettings\S-1-5-21-429253301-29906273-2566354956-1001\\Device\HarddiskVolume3\Program Files\Firefox Nightly\firefox.exe","0.0000128","Type: REG_BINARY, Length: 24, Data: 3A 16 6F 75 96 03 D6 01 00 00 00 00 00 00 00 00","3800"
"10:46:21.8894319 AM","firefox.exe","7384","RegSetValue","HKLM\System\CurrentControlSet\Services\bam\UserSettings\S-1-5-21-429253301-29906273-2566354956-1001\\Device\HarddiskVolume3\Program Files\Firefox Nightly\firefox.exe","0.0000742","Type: REG_BINARY, Length: 24, Data: 73 23 4F 76 96 03 D6 01 00 00 00 00 00 00 00 00","3800"
"10:46:21.8895488 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\bam\UserSettings\S-1-5-21-429253301-29906273-2566354956-1001","0.0000042","","3800"
"10:46:21.8895893 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\BAM","0.0000141","Desired Access: Query Value","3800"
"10:46:21.8896303 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager\BAM","0.0000123","Desired Access: Query Value","3800"
"10:46:21.8897109 AM","firefox.exe","7384","Process Create","C:\Program Files\Firefox Nightly\firefox.exe","0.0000000","PID: 8864, Command line: ""C:\Program Files\Firefox Nightly\firefox.exe"" -contentproc --channel=""7384.0.85714627\1571834715"" -parentBuildID 20200325093457 -prefsHandle 1496 -prefMapHandle 1484 -prefsLen 1 -prefMapSize 227134 -appdir ""C:\Program Files\Firefox Nightly\browser"" - 7384 ""\\.\pipe\gecko-crash-server-pipe.7384"" 1492 socket","3800"
"10:46:21.8897327 AM","firefox.exe","8864","Process Start","","0.0000000","Parent PID: 7384, Command line: ""C:\Program Files\Firefox Nightly\firefox.exe"" -contentproc --channel=""7384.0.85714627\1571834715"" -parentBuildID 20200325093457 -prefsHandle 1496 -prefMapHandle 1484 -prefsLen 1 -prefMapSize 227134 -appdir ""C:\Program Files\Firefox Nightly\browser"" - 7384 ""\\.\pipe\gecko-crash-server-pipe.7384"" 1492 socket, Current directory: C:\Program Files\Firefox Nightly\, Environment: ;	=::=::\;	ALLUSERSPROFILE=C:\ProgramData;	APPDATA=C:\Users\diggles\AppData\Roaming;	CommonProgramFiles=C:\Program Files\Common Files;	CommonProgramFiles(x86)=C:\Program Files (x86)\Common Files;	CommonProgramW6432=C:\Program Files\Common Files;	COMPUTERNAME=LAPTOP-49TAGD3F;	ComSpec=C:\WINDOWS\system32\cmd.exe;	DriverData=C:\Windows\System32\Drivers\DriverData;	HOMEDRIVE=C:;	HOMEPATH=\Users\diggles;	LOCALAPPDATA=C:\Users\diggles\AppData\Local;	LOGONSERVER=\\LAPTOP-49TAGD3F;	MOZ_CRASHREPORTER_DATA_DIRECTORY=C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Crash Reports;	MOZ_CRASHREPORTER_EVENTS_DIRECTORY=C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\crashes\events;	MOZ_CRASHREPORTER_PING_DIRECTORY=C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Pending Pings;	MOZ_CRASHREPORTER_RESTART_ARG_0=C:\Program Files\Firefox Nightly\firefox.exe;	MOZ_CRASHREPORTER_STRINGS_OVERRIDE=C:\Program Files\Firefox Nightly\browser\crashreporter-override.ini;	NUMBER_OF_PROCESSORS=4;	OneDrive=C:\Users\diggles\OneDrive;	OS=Windows_NT;	Path=C:\Program Files\Firefox Nightly;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\WINDOWS\System32\OpenSSH\;C:\Users\diggles\AppData\Local\Microsoft\WindowsApps;;	PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC;	PROCESSOR_ARCHITECTURE=AMD64;	PROCESSOR_IDENTIFIER=Intel64 Family 6 Model 142 Stepping 9, GenuineIntel;	PROCESSOR_LEVEL=6;	PROCESSOR_REVISION=8e09;	ProgramData=C:\ProgramData;	ProgramFiles=C:\Program Files;	ProgramFiles(x86)=C:\Program Files (x86);	ProgramW6432=C:\Program Files;	PSModulePath=C:\Program Files\WindowsPowerShell\Modules;C:\WINDOWS\system32\WindowsPowerShell\v1.0\Modules;	PUBLIC=C:\Users\Public;	SESSIONNAME=Console;	SystemDrive=C:;	SystemRoot=C:\WINDOWS;	TEMP=C:\Users\diggles\AppData\Local\Temp;	TMP=C:\Users\diggles\AppData\Local\Temp;	USERDOMAIN=LAPTOP-49TAGD3F;	USERDOMAIN_ROAMINGPROFILE=LAPTOP-49TAGD3F;	USERNAME=diggles;	USERPROFILE=C:\Users\diggles;	windir=C:\WINDOWS","3800"
"10:46:21.8897514 AM","firefox.exe","8864","Thread Create","","0.0000000","Thread ID: 296","3800"
"10:46:21.8898287 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager\AppCertDlls","0.0000128","Desired Access: Query Value","3800"
"10:46:21.8898636 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager\AppCertDlls","0.0000111","Desired Access: Query Value","3800"
"10:46:21.8899063 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\SafeBoot\Option","0.0000098","Desired Access: Query Value, Set Value","3800"
"10:46:21.8899358 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\SafeBoot\Option","0.0000174","Desired Access: Query Value, Set Value","3800"
"10:46:21.8899767 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers","0.0000435","Desired Access: Query Value","3800"
"10:46:21.8900527 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Windows\safer\codeidentifiers\TransparentEnabled","0.0000085","Length: 80","3800"
"10:46:21.8900821 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Windows\safer\codeidentifiers\AuthenticodeEnabled","0.0000077","Type: REG_DWORD, Length: 4, Data: 0","3800"
"10:46:21.8901188 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\safer\codeidentifiers","0.0000038","","3800"
"10:46:21.8901602 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers","0.0000170","Desired Access: Query Value","3800"
"10:46:21.8903948 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders","0.0000274","Desired Access: Query Value","3800"
"10:46:21.8904542 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Cache","0.0000123","Type: REG_SZ, Length: 118, Data: C:\Users\diggles\AppData\Local\Microsoft\Windows\INetCache","3800"
"10:46:21.8904972 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders","0.0000035","","3800"
"10:46:21.8905348 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows NT\CurrentVersion","0.0000136","Desired Access: Enumerate Sub Keys","3800"
"10:46:21.8905745 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Layers","0.0000158","Desired Access: Query Value","3800"
"10:46:21.8906543 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000119","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","3800"
"10:46:21.8909644 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-current.bin","0.0091879","Offset: 131,072, Length: 131,072, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5948"
"10:46:21.8910404 AM","firefox.exe","7384","CreateFile","C:\Windows\apppatch\sysmain.sdb","0.0000439","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:21.8911611 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\apppatch\sysmain.sdb","0.0000111","CreationTime: 4/25/2019 5:35:45 PM, LastAccessTime: 4/25/2019 5:35:45 PM, LastWriteTime: 2/16/2019 1:02:22 AM, ChangeTime: 4/25/2019 8:14:04 PM, FileAttributes: A","3800"
"10:46:21.8911966 AM","firefox.exe","7384","CloseFile","C:\Windows\apppatch\sysmain.sdb","0.0000448","","3800"
"10:46:21.8913834 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000150","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","3800"
"10:46:21.8916296 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\SideBySide","0.0000376","Desired Access: Read","3800"
"10:46:21.8916966 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest","0.0000090","Length: 20","3800"
"10:46:21.8917359 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide","0.0000038","","3800"
"10:46:21.8936162 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000243","","3800"
"10:46:21.8987302 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000499","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:21.8988548 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000482","Offset: 264, Length: 8, Priority: Normal","3800"
"10:46:21.8990306 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000226","","3800"
"10:46:21.8993540 AM","firefox.exe","8864","Load Image","C:\Program Files\Firefox Nightly\firefox.exe","0.0000000","Image Base: 0x7ff7bb360000, Image Size: 0x93000","296"
"10:46:21.8994393 AM","firefox.exe","8864","Load Image","C:\Windows\System32\ntdll.dll","0.0000000","Image Base: 0x7ffb49780000, Image Size: 0x1e1000","296"
"10:46:21.8998963 AM","firefox.exe","8864","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\Segment Heap","0.0000218","Desired Access: Query Value","296"
"10:46:21.8999432 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager\Segment Heap","0.0000145","Desired Access: Query Value","296"
"10:46:21.9001276 AM","firefox.exe","8864","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager","0.0000110","Desired Access: Query Value, Enumerate Sub Keys","296"
"10:46:21.9001591 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000167","Desired Access: Query Value, Enumerate Sub Keys","296"
"10:46:21.9002031 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\ResourcePolicies","0.0000094","Length: 24","296"
"10:46:21.9002398 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000038","","296"
"10:46:21.9013824 AM","firefox.exe","8864","CreateFile","C:\Program Files\Firefox Nightly","0.0000473","Desired Access: Execute/Traverse, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9017429 AM","firefox.exe","8864","Load Image","C:\Windows\System32\kernel32.dll","0.0000000","Image Base: 0x7ffb470b0000, Image Size: 0xb1000","296"
"10:46:21.9019306 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\kernel32.dll","0.0000167","Name: \Windows\System32\kernel32.dll","296"
"10:46:21.9020109 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\kernel32.dll","0.0000089","Name: \Windows\System32\kernel32.dll","296"
"10:46:21.9023757 AM","firefox.exe","8864","Load Image","C:\Windows\System32\KernelBase.dll","0.0000000","Image Base: 0x7ffb46720000, Image Size: 0x273000","296"
"10:46:21.9024486 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\KernelBase.dll","0.0000128","Name: \Windows\System32\KernelBase.dll","296"
"10:46:21.9025160 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\KernelBase.dll","0.0000090","Name: \Windows\System32\KernelBase.dll","296"
"10:46:21.9050389 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-current.bin","0.0056802","Offset: 262,144, Length: 262,144, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5948"
"10:46:21.9050952 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\SafeBoot\Option","0.0000218","Desired Access: Query Value, Set Value","296"
"10:46:21.9051443 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\SafeBoot\Option","0.0000226","Desired Access: Query Value, Set Value","296"
"10:46:21.9051998 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\Srp\GP\DLL","0.0000106","Desired Access: Read","296"
"10:46:21.9052267 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\Srp\GP\DLL","0.0000204","Desired Access: Read","296"
"10:46:21.9052668 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers","0.0000285","Desired Access: Query Value","296"
"10:46:21.9053547 AM","firefox.exe","8864","RegOpenKey","HKCU\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers","0.0000183","Desired Access: Query Value","296"
"10:46:21.9054494 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\FileSystem\","0.0000106","Desired Access: Read","296"
"10:46:21.9054767 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\FileSystem","0.0000141","Desired Access: Read","296"
"10:46:21.9055164 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Control\FileSystem\LongPathsEnabled","0.0000102","Type: REG_DWORD, Length: 4, Data: 0","296"
"10:46:21.9055531 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Control\FileSystem","0.0000034","","296"
"10:46:21.9060040 AM","firefox.exe","8864","CreateFile","C:\Program Files\Firefox Nightly","0.0000478","Desired Access: Execute/Traverse, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9062669 AM","firefox.exe","8864","Load Image","C:\Windows\System32\advapi32.dll","0.0000000","Image Base: 0x7ffb48a60000, Image Size: 0xa1000","296"
"10:46:21.9063897 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\advapi32.dll","0.0000244","Name: \Windows\System32\advapi32.dll","296"
"10:46:21.9065020 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\advapi32.dll","0.0000157","Name: \Windows\System32\advapi32.dll","296"
"10:46:21.9070259 AM","firefox.exe","8864","Load Image","C:\Windows\System32\msvcrt.dll","0.0000000","Image Base: 0x7ffb48e80000, Image Size: 0x9e000","296"
"10:46:21.9070780 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\msvcrt.dll","0.0000111","Name: \Windows\System32\msvcrt.dll","296"
"10:46:21.9071330 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\msvcrt.dll","0.0000073","Name: \Windows\System32\msvcrt.dll","296"
"10:46:21.9074304 AM","firefox.exe","8864","Load Image","C:\Windows\System32\sechost.dll","0.0000000","Image Base: 0x7ffb48e20000, Image Size: 0x5b000","296"
"10:46:21.9074782 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000102","Name: \Windows\System32\sechost.dll","296"
"10:46:21.9075221 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000081","Name: \Windows\System32\sechost.dll","296"
"10:46:21.9077628 AM","firefox.exe","8864","Load Image","C:\Windows\System32\rpcrt4.dll","0.0000000","Image Base: 0x7ffb471a0000, Image Size: 0x124000","296"
"10:46:21.9078152 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000094","Name: \Windows\System32\rpcrt4.dll","296"
"10:46:21.9078618 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000068","Name: \Windows\System32\rpcrt4.dll","296"
"10:46:21.9082824 AM","firefox.exe","8864","Load Image","C:\Windows\System32\ucrtbase.dll","0.0000000","Image Base: 0x7ffb45da0000, Image Size: 0xf8000","296"
"10:46:21.9083452 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000102","Name: \Windows\System32\ucrtbase.dll","296"
"10:46:21.9083942 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000073","Name: \Windows\System32\ucrtbase.dll","296"
"10:46:21.9090871 AM","firefox.exe","8864","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000529","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9091656 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000086","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","296"
"10:46:21.9091921 AM","firefox.exe","8864","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000128","","296"
"10:46:21.9094677 AM","firefox.exe","8864","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000303","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9095334 AM","firefox.exe","8864","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000077","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:21.9095851 AM","firefox.exe","8864","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000038","SyncType: SyncTypeOther","296"
"10:46:21.9097271 AM","firefox.exe","8864","Load Image","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000000","Image Base: 0x7ffb3c6d0000, Image Size: 0x8f000","296"
"10:46:21.9097762 AM","firefox.exe","8864","QueryNameInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000102","Name: \Program Files\Firefox Nightly\mozglue.dll","296"
"10:46:21.9098283 AM","firefox.exe","8864","QueryNameInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000081","Name: \Program Files\Firefox Nightly\mozglue.dll","296"
"10:46:21.9100804 AM","firefox.exe","8864","RegOpenKey","HKCU","0.0000188","Desired Access: Maximum Allowed, Granted Access: Read","296"
"10:46:21.9101291 AM","firefox.exe","8864","RegOpenKey","HKCU\Control Panel\Desktop\MuiCached\MachineLanguageConfiguration","0.0000187","Desired Access: Read","296"
"10:46:21.9101747 AM","firefox.exe","8864","RegCloseKey","HKCU","0.0000030","","296"
"10:46:21.9102033 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Policies\Microsoft\MUI\Settings","0.0000132","Desired Access: Read","296"
"10:46:21.9102430 AM","firefox.exe","8864","RegOpenKey","HKCU","0.0000119","Desired Access: Maximum Allowed, Granted Access: Read","296"
"10:46:21.9102784 AM","firefox.exe","8864","RegOpenKey","HKCU\Software\Policies\Microsoft\Control Panel\Desktop","0.0000098","Desired Access: Read","296"
"10:46:21.9103548 AM","firefox.exe","8864","RegOpenKey","HKCU\Control Panel\Desktop\LanguageConfiguration","0.0000183","Desired Access: Read","296"
"10:46:21.9103987 AM","firefox.exe","8864","RegEnumValue","HKCU\Control Panel\Desktop\LanguageConfiguration","0.0000051","Index: 0, Length: 512","296"
"10:46:21.9104273 AM","firefox.exe","8864","RegCloseKey","HKCU\Control Panel\Desktop\LanguageConfiguration","0.0000030","","296"
"10:46:21.9104486 AM","firefox.exe","8864","RegCloseKey","HKCU","0.0000052","","296"
"10:46:21.9104772 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Policies\Microsoft\MUI\Settings","0.0000107","Desired Access: Read","296"
"10:46:21.9105126 AM","firefox.exe","8864","RegOpenKey","HKCU","0.0000120","Desired Access: Maximum Allowed, Granted Access: Read","296"
"10:46:21.9105468 AM","firefox.exe","8864","RegOpenKey","HKCU\Software\Policies\Microsoft\Control Panel\Desktop","0.0000081","Desired Access: Read","296"
"10:46:21.9105736 AM","firefox.exe","8864","RegOpenKey","HKCU\Control Panel\Desktop","0.0000094","Desired Access: Read","296"
"10:46:21.9106039 AM","firefox.exe","8864","RegQueryValue","HKCU\Control Panel\Desktop\PreferredUILanguages","0.0000086","Length: 12","296"
"10:46:21.9106351 AM","firefox.exe","8864","RegCloseKey","HKCU\Control Panel\Desktop","0.0000025","","296"
"10:46:21.9106564 AM","firefox.exe","8864","RegCloseKey","HKCU","0.0000022","","296"
"10:46:21.9107383 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Policies\Microsoft\MUI\Settings","0.0000111","Desired Access: Read","296"
"10:46:21.9107793 AM","firefox.exe","8864","RegOpenKey","HKCU","0.0000128","Desired Access: Maximum Allowed, Granted Access: Read","296"
"10:46:21.9108168 AM","firefox.exe","8864","RegOpenKey","HKCU\Control Panel\Desktop\MuiCached","0.0000163","Desired Access: Read","296"
"10:46:21.9108582 AM","firefox.exe","8864","RegQueryValue","HKCU\Control Panel\Desktop\MuiCached\MachinePreferredUILanguages","0.0000060","Length: 12","296"
"10:46:21.9108821 AM","firefox.exe","8864","RegQueryValue","HKCU\Control Panel\Desktop\MuiCached\MachinePreferredUILanguages","0.0000056","Type: REG_MULTI_SZ, Length: 12, Data: en-US","296"
"10:46:21.9109137 AM","firefox.exe","8864","RegCloseKey","HKCU\Control Panel\Desktop\MuiCached","0.0000030","","296"
"10:46:21.9109355 AM","firefox.exe","8864","RegCloseKey","HKCU","0.0000021","","296"
"10:46:21.9110426 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\SideBySide","0.0000213","Desired Access: Read","296"
"10:46:21.9110984 AM","firefox.exe","8864","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest","0.0000069","Length: 20","296"
"10:46:21.9111334 AM","firefox.exe","8864","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide","0.0000030","","296"
"10:46:21.9113536 AM","firefox.exe","8864","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000269","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9120448 AM","firefox.exe","8864","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000124","","296"
"10:46:21.9122662 AM","firefox.exe","8864","Load Image","C:\Windows\System32\crypt32.dll","0.0000000","Image Base: 0x7ffb469a0000, Image Size: 0x1e2000","296"
"10:46:21.9123298 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\crypt32.dll","0.0000107","Name: \Windows\System32\crypt32.dll","296"
"10:46:21.9123836 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\crypt32.dll","0.0000072","Name: \Windows\System32\crypt32.dll","296"
"10:46:21.9126571 AM","firefox.exe","8864","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager","0.0000119","Desired Access: Query Value, Enumerate Sub Keys","296"
"10:46:21.9126848 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000115","Desired Access: Query Value, Enumerate Sub Keys","296"
"10:46:21.9127130 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\ResourcePolicies","0.0000059","Length: 24","296"
"10:46:21.9127364 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000022","","296"
"10:46:21.9128474 AM","firefox.exe","8864","Load Image","C:\Windows\System32\msasn1.dll","0.0000000","Image Base: 0x7ffb45b10000, Image Size: 0x12000","296"
"10:46:21.9128879 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\msasn1.dll","0.0000081","Name: \Windows\System32\msasn1.dll","296"
"10:46:21.9129203 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\msasn1.dll","0.0000039","Name: \Windows\System32\msasn1.dll","296"
"10:46:21.9131396 AM","firefox.exe","8864","Load Image","C:\Windows\System32\wintrust.dll","0.0000000","Image Base: 0x7ffb45ea0000, Image Size: 0x57000","296"
"10:46:21.9131827 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\wintrust.dll","0.0000179","Name: \Windows\System32\wintrust.dll","296"
"10:46:21.9132403 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\wintrust.dll","0.0000081","Name: \Windows\System32\wintrust.dll","296"
"10:46:21.9134157 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0095701","Offset: 262,144, Length: 262,144, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2000"
"10:46:21.9135552 AM","firefox.exe","8864","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000171","","296"
"10:46:21.9143962 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000140","Desired Access: Query Value","296"
"10:46:21.9144320 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000149","Desired Access: Query Value","296"
"10:46:21.9144755 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\SafeDllSearchMode","0.0000077","Length: 16","296"
"10:46:21.9150549 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000555","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9151296 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000068","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","296"
"10:46:21.9151531 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000123","","296"
"10:46:21.9154334 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000341","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9155076 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000077","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:21.9155631 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000038","SyncType: SyncTypeOther","296"
"10:46:21.9156727 AM","firefox.exe","8864","Load Image","C:\Windows\System32\msvcp140.dll","0.0000000","Image Base: 0x7ffb1dfe0000, Image Size: 0xa7000","296"
"10:46:21.9157346 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\msvcp140.dll","0.0000103","Name: \Windows\System32\msvcp140.dll","296"
"10:46:21.9157811 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\msvcp140.dll","0.0000077","Name: \Windows\System32\msvcp140.dll","296"
"10:46:21.9159027 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000888","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5728"
"10:46:21.9160077 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000153","","296"
"10:46:21.9162714 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000972","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.9164314 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000059","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","5728"
"10:46:21.9164706 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000120","CreationTime: 6/19/2019 4:53:34 PM, LastAccessTime: 6/19/2019 4:53:34 PM, LastWriteTime: 6/19/2019 4:53:34 PM, ChangeTime: 6/19/2019 4:53:34 PM, FileAttributes: D, AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: True, IndexNumber: 0x21000000002d58, EaSize: 0, Access: Read Attributes, Synchronize, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","5728"
"10:46:21.9165171 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000086","","5728"
"10:46:21.9166660 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000371","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9167266 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000077","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","296"
"10:46:21.9167548 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000119","","296"
"10:46:21.9168205 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000311","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.9168922 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000059","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","5728"
"10:46:21.9170219 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000123","CreationTime: 6/19/2019 4:53:34 PM, LastAccessTime: 6/19/2019 4:53:34 PM, LastWriteTime: 6/19/2019 4:53:34 PM, ChangeTime: 6/19/2019 4:53:34 PM, FileAttributes: D, AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: True, IndexNumber: 0x21000000002d58, EaSize: 0, Access: Read Attributes, Synchronize, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","5728"
"10:46:21.9170739 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000098","","5728"
"10:46:21.9171157 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000363","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9171900 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000059","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:21.9172412 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000042","SyncType: SyncTypeOther","296"
"10:46:21.9173338 AM","firefox.exe","8864","Load Image","C:\Windows\System32\vcruntime140.dll","0.0000000","Image Base: 0x7ffb3c690000, Image Size: 0x16000","296"
"10:46:21.9173760 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000316","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.9173854 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000102","Name: \Windows\System32\vcruntime140.dll","296"
"10:46:21.9174315 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000064","Name: \Windows\System32\vcruntime140.dll","296"
"10:46:21.9174490 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000055","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","5728"
"10:46:21.9174831 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000111","CreationTime: 6/19/2019 4:53:34 PM, LastAccessTime: 6/19/2019 4:53:34 PM, LastWriteTime: 6/19/2019 4:53:34 PM, ChangeTime: 6/19/2019 4:53:34 PM, FileAttributes: D, AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: True, IndexNumber: 0x21000000002d58, EaSize: 0, Access: Read Attributes, Synchronize, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","5728"
"10:46:21.9175245 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000094","","5728"
"10:46:21.9176021 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000145","","296"
"10:46:21.9178564 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0155209","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5728"
"10:46:21.9187093 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\version.dll","0.0000359","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9188164 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000086","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","296"
"10:46:21.9188454 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\version.dll","0.0000124","","296"
"10:46:21.9190046 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-current.bin","0.0047902","Offset: 524,288, Length: 524,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1824"
"10:46:21.9191765 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\version.dll","0.0000299","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9192525 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\version.dll","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:21.9192875 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\version.dll","0.0000021","SyncType: SyncTypeOther","296"
"10:46:21.9194296 AM","firefox.exe","8864","Load Image","C:\Windows\System32\version.dll","0.0000000","Image Base: 0x7ffb39300000, Image Size: 0xa000","296"
"10:46:21.9194829 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\version.dll","0.0000098","Name: \Windows\System32\version.dll","296"
"10:46:21.9195217 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\version.dll","0.0000051","Name: \Windows\System32\version.dll","296"
"10:46:21.9196523 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\version.dll","0.0000132","","296"
"10:46:21.9203413 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000295","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9204011 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000055","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","296"
"10:46:21.9204177 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000077","","296"
"10:46:21.9205969 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000265","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9206652 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:21.9206989 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000021","SyncType: SyncTypeOther","296"
"10:46:21.9208508 AM","firefox.exe","8864","Load Image","C:\Windows\System32\dbghelp.dll","0.0000000","Image Base: 0x7ffb37030000, Image Size: 0x1c9000","296"
"10:46:21.9209045 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\dbghelp.dll","0.0000094","Name: \Windows\System32\dbghelp.dll","296"
"10:46:21.9209536 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\dbghelp.dll","0.0000047","Name: \Windows\System32\dbghelp.dll","296"
"10:46:21.9211106 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000128","","296"
"10:46:21.9217041 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9217459 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000051","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","296"
"10:46:21.9217638 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000077","","296"
"10:46:21.9225071 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000329","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9225570 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000051","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","296"
"10:46:21.9225745 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000090","","296"
"10:46:21.9229218 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9229871 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000047","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","296"
"10:46:21.9230016 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000077","","296"
"10:46:21.9238281 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000320","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9238776 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000051","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","296"
"10:46:21.9238972 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000102","","296"
"10:46:21.9241498 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000354","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9242210 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000060","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:21.9242709 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000035","SyncType: SyncTypeOther","296"
"10:46:21.9243618 AM","firefox.exe","8864","Load Image","C:\Windows\System32\cryptbase.dll","0.0000000","Image Base: 0x7ffb45480000, Image Size: 0xb000","296"
"10:46:21.9244130 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\cryptbase.dll","0.0000103","Name: \Windows\System32\cryptbase.dll","296"
"10:46:21.9244570 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\cryptbase.dll","0.0000077","Name: \Windows\System32\cryptbase.dll","296"
"10:46:21.9246481 AM","firefox.exe","8864","Load Image","C:\Windows\System32\bcryptprimitives.dll","0.0000000","Image Base: 0x7ffb46b90000, Image Size: 0x7a000","296"
"10:46:21.9247019 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000094","Name: \Windows\System32\bcryptprimitives.dll","296"
"10:46:21.9247505 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000073","Name: \Windows\System32\bcryptprimitives.dll","296"
"10:46:21.9249114 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000153","","296"
"10:46:21.9254878 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000350","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9255407 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000064","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","296"
"10:46:21.9255633 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000111","","296"
"10:46:21.9262609 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0189406","Offset: 524,288, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2000"
"10:46:21.9264589 AM","firefox.exe","8864","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager","0.0000132","Desired Access: Query Value, Enumerate Sub Keys","296"
"10:46:21.9264994 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000145","Desired Access: Query Value, Enumerate Sub Keys","296"
"10:46:21.9265400 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\ResourcePolicies","0.0000076","Length: 24","296"
"10:46:21.9265737 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000034","","296"
"10:46:21.9266940 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Versions","0.0000239","Desired Access: Read","296"
"10:46:21.9267477 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Versions","0.0000167","Desired Access: Read","296"
"10:46:21.9267972 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Versions\(Default)","0.0000081","Type: REG_SZ, Length: 18, Data: 0006020E","296"
"10:46:21.9277811 AM","firefox.exe","8864","RegOpenKey","HKLM","0.0000124","Desired Access: Maximum Allowed, Granted Access: Read","296"
"10:46:21.9278225 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9278494 AM","firefox.exe","8864","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\msasn1","0.0000141","Desired Access: Read","296"
"10:46:21.9278933 AM","firefox.exe","8864","RegOpenKey","HKLM\SOFTWARE\Microsoft\AppModel\Lookaside\Packages","0.0000086","Desired Access: Read","296"
"10:46:21.9286724 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy","0.0000099","Desired Access: Query Value","296"
"10:46:21.9286963 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy","0.0000111","Desired Access: Query Value","296"
"10:46:21.9287228 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy\Enabled","0.0000055","Type: REG_DWORD, Length: 4, Data: 0","296"
"10:46:21.9287420 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000055","Desired Access: Query Value","296"
"10:46:21.9287565 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000068","Desired Access: Query Value","296"
"10:46:21.9287744 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy","0.0000043","Length: 20","296"
"10:46:21.9287872 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy\MDMEnabled","0.0000034","Type: REG_DWORD, Length: 4, Data: 0","296"
"10:46:21.9288073 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy","0.0000021","","296"
"10:46:21.9288222 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000017","","296"
"10:46:21.9288376 AM","firefox.exe","8864","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Policies\Microsoft\Cryptography\Configuration","0.0000055","Desired Access: Query Value","296"
"10:46:21.9288516 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Policies\Microsoft\Cryptography\Configuration","0.0000056","Desired Access: Query Value","296"
"10:46:21.9294110 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9294503 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000051","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","296"
"10:46:21.9294669 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000081","","296"
"10:46:21.9300536 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000251","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9300928 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000077","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","296"
"10:46:21.9301167 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000132","","296"
"10:46:21.9302383 AM","firefox.exe","8864","QueryNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000077","Name: \Program Files\Firefox Nightly\firefox.exe","296"
"10:46:21.9306355 AM","firefox.exe","8864","RegOpenKey","HKCU","0.0000128","Desired Access: Maximum Allowed, Granted Access: Read","296"
"10:46:21.9306688 AM","firefox.exe","8864","RegQueryKey","HKCU","0.0000026","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9306884 AM","firefox.exe","8864","RegCreateKey","HKCU\SOFTWARE\Mozilla\Firefox\Launcher","0.0000551","Desired Access: All Access","296"
"10:46:21.9307179 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000060","Information: Owner","296"
"10:46:21.9307341 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000021","Information: Owner","296"
"10:46:21.9307802 AM","firefox.exe","8864","RegQueryKey","HKCU","0.0000042","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9308105 AM","firefox.exe","8864","RegCreateKey","HKCU\SOFTWARE","0.0000132","Desired Access: Maximum Allowed, Granted Access: Read, Disposition: REG_OPENED_EXISTING_KEY","296"
"10:46:21.9308446 AM","firefox.exe","8864","RegQueryKey","HKCU\Software","0.0000030","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9308681 AM","firefox.exe","8864","RegCreateKey","HKCU\Software\Mozilla","0.0000098","Desired Access: Maximum Allowed, Granted Access: Read, Disposition: REG_OPENED_EXISTING_KEY","296"
"10:46:21.9309014 AM","firefox.exe","8864","RegCloseKey","HKCU\Software","0.0000034","","296"
"10:46:21.9309240 AM","firefox.exe","8864","RegQueryKey","HKCU\Software\Mozilla","0.0000025","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9309466 AM","firefox.exe","8864","RegCreateKey","HKCU\Software\Mozilla\Firefox","0.0000085","Desired Access: Maximum Allowed, Granted Access: Read, Disposition: REG_OPENED_EXISTING_KEY","296"
"10:46:21.9309752 AM","firefox.exe","8864","RegCloseKey","HKCU\Software\Mozilla","0.0000025","","296"
"10:46:21.9309961 AM","firefox.exe","8864","RegQueryKey","HKCU\Software\Mozilla\Firefox","0.0000025","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9310170 AM","firefox.exe","8864","RegCreateKey","HKCU\Software\Mozilla\Firefox\Launcher","0.0000640","Desired Access: All Access","296"
"10:46:21.9310447 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000056","Information: Owner","296"
"10:46:21.9310716 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000030","Information: Owner","296"
"10:46:21.9311019 AM","firefox.exe","8864","RegCloseKey","HKCU\Software\Mozilla\Firefox","0.0000025","","296"
"10:46:21.9311313 AM","firefox.exe","8864","RegQueryKey","HKCU","0.0000026","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9311539 AM","firefox.exe","8864","RegCreateKey","HKCU\SOFTWARE\Mozilla\Firefox\Launcher","0.0000564","Desired Access: All Access","296"
"10:46:21.9311804 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000038","Information: Owner","296"
"10:46:21.9312026 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000025","Information: Owner","296"
"10:46:21.9312282 AM","firefox.exe","8864","RegQueryKey","HKCU","0.0000025","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9312491 AM","firefox.exe","8864","RegCreateKey","HKCU\SOFTWARE","0.0000094","Desired Access: Maximum Allowed, Granted Access: Read, Disposition: REG_OPENED_EXISTING_KEY","296"
"10:46:21.9312764 AM","firefox.exe","8864","RegQueryKey","HKCU\Software","0.0000021","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9312964 AM","firefox.exe","8864","RegCreateKey","HKCU\Software\Mozilla","0.0000086","Desired Access: Maximum Allowed, Granted Access: Read, Disposition: REG_OPENED_EXISTING_KEY","296"
"10:46:21.9313250 AM","firefox.exe","8864","RegCloseKey","HKCU\Software","0.0000030","","296"
"10:46:21.9313430 AM","firefox.exe","8864","RegQueryKey","HKCU\Software\Mozilla","0.0000021","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9313634 AM","firefox.exe","8864","RegCreateKey","HKCU\Software\Mozilla\Firefox","0.0000081","Desired Access: Maximum Allowed, Granted Access: Read, Disposition: REG_OPENED_EXISTING_KEY","296"
"10:46:21.9313903 AM","firefox.exe","8864","RegCloseKey","HKCU\Software\Mozilla","0.0000026","","296"
"10:46:21.9314082 AM","firefox.exe","8864","RegQueryKey","HKCU\Software\Mozilla\Firefox","0.0000026","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9314291 AM","firefox.exe","8864","RegCreateKey","HKCU\Software\Mozilla\Firefox\Launcher","0.0000572","Desired Access: All Access","296"
"10:46:21.9314547 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000047","Information: Owner","296"
"10:46:21.9314782 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000030","Information: Owner","296"
"10:46:21.9315059 AM","firefox.exe","8864","RegCloseKey","HKCU\Software\Mozilla\Firefox","0.0000026","","296"
"10:46:21.9315414 AM","firefox.exe","8864","RegQueryKey","HKCU","0.0000025","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9315635 AM","firefox.exe","8864","RegCreateKey","HKCU\SOFTWARE\Mozilla\Firefox\Launcher","0.0000572","Desired Access: All Access","296"
"10:46:21.9315900 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000038","Information: Owner","296"
"10:46:21.9316126 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000030","Information: Owner","296"
"10:46:21.9316378 AM","firefox.exe","8864","RegQueryKey","HKCU","0.0000025","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9316587 AM","firefox.exe","8864","RegCreateKey","HKCU\SOFTWARE","0.0000102","Desired Access: Maximum Allowed, Granted Access: Read, Disposition: REG_OPENED_EXISTING_KEY","296"
"10:46:21.9316868 AM","firefox.exe","8864","RegQueryKey","HKCU\Software","0.0000022","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9317065 AM","firefox.exe","8864","RegCreateKey","HKCU\Software\Mozilla","0.0000094","Desired Access: Maximum Allowed, Granted Access: Read, Disposition: REG_OPENED_EXISTING_KEY","296"
"10:46:21.9317355 AM","firefox.exe","8864","RegCloseKey","HKCU\Software","0.0000030","","296"
"10:46:21.9317538 AM","firefox.exe","8864","RegQueryKey","HKCU\Software\Mozilla","0.0000022","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9317735 AM","firefox.exe","8864","RegCreateKey","HKCU\Software\Mozilla\Firefox","0.0000076","Desired Access: Maximum Allowed, Granted Access: Read, Disposition: REG_OPENED_EXISTING_KEY","296"
"10:46:21.9317991 AM","firefox.exe","8864","RegCloseKey","HKCU\Software\Mozilla","0.0000025","","296"
"10:46:21.9318161 AM","firefox.exe","8864","RegQueryKey","HKCU\Software\Mozilla\Firefox","0.0000022","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9318362 AM","firefox.exe","8864","RegCreateKey","HKCU\Software\Mozilla\Firefox\Launcher","0.0000537","Desired Access: All Access","296"
"10:46:21.9318601 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000042","Information: Owner","296"
"10:46:21.9318823 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000025","Information: Owner","296"
"10:46:21.9319096 AM","firefox.exe","8864","RegCloseKey","HKCU\Software\Mozilla\Firefox","0.0000025","","296"
"10:46:21.9320883 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000047","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9321139 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Microsoft\Rpc","0.0000107","Desired Access: Read","296"
"10:46:21.9321481 AM","firefox.exe","8864","RegQueryValue","HKLM\SOFTWARE\Microsoft\Rpc\MaxRpcSize","0.0000047","Length: 16","296"
"10:46:21.9321732 AM","firefox.exe","8864","RegCloseKey","HKLM\SOFTWARE\Microsoft\Rpc","0.0000018","","296"
"10:46:21.9322394 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\ComputerName\ActiveComputerName","0.0000085","Desired Access: Read","296"
"10:46:21.9322607 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\ComputerName\ActiveComputerName","0.0000094","Desired Access: Read","296"
"10:46:21.9322846 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Control\ComputerName\ActiveComputerName\ComputerName","0.0000056","Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","296"
"10:46:21.9323034 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Control\ComputerName\ActiveComputerName","0.0000017","","296"
"10:46:21.9323183 AM","firefox.exe","8864","RegOpenKey","HKLM\System\Setup","0.0000064","Desired Access: Read","296"
"10:46:21.9323367 AM","firefox.exe","8864","RegQueryValue","HKLM\SYSTEM\Setup\OOBEInProgress","0.0000047","Type: REG_DWORD, Length: 4, Data: 0","296"
"10:46:21.9323529 AM","firefox.exe","8864","RegCloseKey","HKLM\SYSTEM\Setup","0.0000017","","296"
"10:46:21.9323665 AM","firefox.exe","8864","RegOpenKey","HKLM\System\Setup","0.0000051","Desired Access: Read","296"
"10:46:21.9323823 AM","firefox.exe","8864","RegQueryValue","HKLM\SYSTEM\Setup\SystemSetupInProgress","0.0000043","Type: REG_DWORD, Length: 4, Data: 0","296"
"10:46:21.9323977 AM","firefox.exe","8864","RegCloseKey","HKLM\SYSTEM\Setup","0.0000017","","296"
"10:46:21.9324211 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options","0.0000099","Desired Access: Query Value, Enumerate Sub Keys","296"
"10:46:21.9324446 AM","firefox.exe","8864","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000051","Desired Access: Query Value, Enumerate Sub Keys","296"
"10:46:21.9325410 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9325564 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\Rpc","0.0000141","Desired Access: Read","296"
"10:46:21.9326413 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9326562 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Microsoft\Rpc","0.0000073","Desired Access: Query Value","296"
"10:46:21.9326767 AM","firefox.exe","8864","RegQueryValue","HKLM\SOFTWARE\Microsoft\Rpc\IdleTimerWindow","0.0000043","Length: 16","296"
"10:46:21.9326942 AM","firefox.exe","8864","RegCloseKey","HKLM\SOFTWARE\Microsoft\Rpc","0.0000017","","296"
"10:46:21.9334806 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000089","Exclusive: True, Offset: 0, Length: 1, Fail Immediately: True","5728"
"10:46:21.9335266 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000077","AllocationSize: 8,192, EndOfFile: 8,192, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:21.9335761 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000069","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:21.9336154 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000055","AllocationSize: 8,192, EndOfFile: 8,192, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:21.9336862 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000043","SyncType: SyncTypeOther","5728"
"10:46:21.9337818 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000068","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","5728"
"10:46:21.9338189 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000094","CreationTime: 6/19/2019 4:53:34 PM, LastAccessTime: 6/19/2019 4:53:34 PM, LastWriteTime: 6/19/2019 4:53:34 PM, ChangeTime: 6/19/2019 4:53:34 PM, FileAttributes: A, AllocationSize: 8,192, EndOfFile: 8,192, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x16000000002d6d, EaSize: 0, Access: Generic Read/Write, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","5728"
"10:46:21.9338906 AM","firefox.exe","8864","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9339311 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","296"
"10:46:21.9339379 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0228114","Offset: 0, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:21.9339465 AM","firefox.exe","8864","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000077","","296"
"10:46:21.9344209 AM","firefox.exe","8864","CreateFile","C:\Program Files\Firefox Nightly\dependentlibs.list","0.0000244","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9344922 AM","firefox.exe","8864","ReadFile","C:\Program Files\Firefox Nightly\dependentlibs.list","0.0000149","Offset: 0, Length: 476, Priority: Normal","296"
"10:46:21.9347921 AM","firefox.exe","8864","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9348267 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","296"
"10:46:21.9348412 AM","firefox.exe","8864","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000073","","296"
"10:46:21.9349982 AM","firefox.exe","8864","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000192","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9350507 AM","firefox.exe","8864","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:21.9350887 AM","firefox.exe","8864","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000025","SyncType: SyncTypeOther","296"
"10:46:21.9352133 AM","firefox.exe","8864","Load Image","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000000","Image Base: 0x7ffb3c6b0000, Image Size: 0x16000","296"
"10:46:21.9352666 AM","firefox.exe","8864","QueryNameInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000094","Name: \Program Files\Firefox Nightly\vcruntime140.dll","296"
"10:46:21.9353097 AM","firefox.exe","8864","QueryNameInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000051","Name: \Program Files\Firefox Nightly\vcruntime140.dll","296"
"10:46:21.9354646 AM","firefox.exe","8864","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000132","","296"
"10:46:21.9358929 AM","firefox.exe","8864","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000244","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9359343 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000051","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","296"
"10:46:21.9359510 AM","firefox.exe","8864","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000072","","296"
"10:46:21.9361246 AM","firefox.exe","8864","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000243","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9361754 AM","firefox.exe","8864","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:21.9362117 AM","firefox.exe","8864","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000025","SyncType: SyncTypeOther","296"
"10:46:21.9363614 AM","firefox.exe","8864","Load Image","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000000","Image Base: 0x7ffb32080000, Image Size: 0x9b000","296"
"10:46:21.9364203 AM","firefox.exe","8864","QueryNameInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000102","Name: \Program Files\Firefox Nightly\msvcp140.dll","296"
"10:46:21.9364634 AM","firefox.exe","8864","QueryNameInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000047","Name: \Program Files\Firefox Nightly\msvcp140.dll","296"
"10:46:21.9366562 AM","firefox.exe","8864","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000141","","296"
"10:46:21.9373163 AM","firefox.exe","8864","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9373551 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000051","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","296"
"10:46:21.9373713 AM","firefox.exe","8864","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000180","","296"
"10:46:21.9375659 AM","firefox.exe","8864","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000205","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9376128 AM","firefox.exe","8864","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:21.9376487 AM","firefox.exe","8864","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000025","SyncType: SyncTypeOther","296"
"10:46:21.9377912 AM","firefox.exe","8864","Load Image","C:\Program Files\Firefox Nightly\nss3.dll","0.0000000","Image Base: 0x7ffb1da70000, Image Size: 0x21d000","296"
"10:46:21.9378479 AM","firefox.exe","8864","QueryNameInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000098","Name: \Program Files\Firefox Nightly\nss3.dll","296"
"10:46:21.9379021 AM","firefox.exe","8864","QueryNameInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000051","Name: \Program Files\Firefox Nightly\nss3.dll","296"
"10:46:21.9380711 AM","firefox.exe","8864","Load Image","C:\Windows\System32\ws2_32.dll","0.0000000","Image Base: 0x7ffb48bc0000, Image Size: 0x6c000","296"
"10:46:21.9382161 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\ws2_32.dll","0.0000060","Name: \Windows\System32\ws2_32.dll","296"
"10:46:21.9382494 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\ws2_32.dll","0.0000047","Name: \Windows\System32\ws2_32.dll","296"
"10:46:21.9384286 AM","firefox.exe","8864","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000085","","296"
"10:46:21.9394402 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\winmm.dll","0.0000210","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9394838 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000034","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","296"
"10:46:21.9394966 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\winmm.dll","0.0000051","","296"
"10:46:21.9396194 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\winmm.dll","0.0000141","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9396604 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:21.9396843 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000017","SyncType: SyncTypeOther","296"
"10:46:21.9397436 AM","firefox.exe","8864","Load Image","C:\Windows\System32\winmm.dll","0.0000000","Image Base: 0x7ffb437c0000, Image Size: 0x23000","296"
"10:46:21.9397803 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\winmm.dll","0.0000055","Name: \Windows\System32\winmm.dll","296"
"10:46:21.9398106 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\winmm.dll","0.0000043","Name: \Windows\System32\winmm.dll","296"
"10:46:21.9400056 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\winmm.dll","0.0000111","","296"
"10:46:21.9405197 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\wsock32.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9405573 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000034","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","296"
"10:46:21.9405688 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\wsock32.dll","0.0000047","","296"
"10:46:21.9406780 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\wsock32.dll","0.0000137","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9407168 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000056","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:21.9407437 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000017","SyncType: SyncTypeOther","296"
"10:46:21.9408214 AM","firefox.exe","8864","Load Image","C:\Windows\System32\wsock32.dll","0.0000000","Image Base: 0x7ffb3c880000, Image Size: 0x9000","296"
"10:46:21.9408602 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\wsock32.dll","0.0000060","Name: \Windows\System32\wsock32.dll","296"
"10:46:21.9408879 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\wsock32.dll","0.0000043","Name: \Windows\System32\wsock32.dll","296"
"10:46:21.9409844 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\wsock32.dll","0.0000085","","296"
"10:46:21.9413871 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9414183 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000042","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","296"
"10:46:21.9414332 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000064","","296"
"10:46:21.9415821 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000167","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9416209 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:21.9416589 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000026","SyncType: SyncTypeOther","296"
"10:46:21.9417340 AM","firefox.exe","8864","Load Image","C:\Windows\System32\winmmbase.dll","0.0000000","Image Base: 0x7ffb43790000, Image Size: 0x2a000","296"
"10:46:21.9417652 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\winmmbase.dll","0.0000055","Name: \Windows\System32\winmmbase.dll","296"
"10:46:21.9417933 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\winmmbase.dll","0.0000039","Name: \Windows\System32\winmmbase.dll","296"
"10:46:21.9419597 AM","firefox.exe","8864","Load Image","C:\Windows\System32\cfgmgr32.dll","0.0000000","Image Base: 0x7ffb45f00000, Image Size: 0x49000","296"
"10:46:21.9419926 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000051","Name: \Windows\System32\cfgmgr32.dll","296"
"10:46:21.9420216 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000038","Name: \Windows\System32\cfgmgr32.dll","296"
"10:46:21.9421628 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000068","","296"
"10:46:21.9424000 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9424209 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","296"
"10:46:21.9424295 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000034","","296"
"10:46:21.9426134 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9426326 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000025","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","296"
"10:46:21.9426415 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000039","","296"
"10:46:21.9433605 AM","firefox.exe","8864","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9433848 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000030","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","296"
"10:46:21.9433946 AM","firefox.exe","8864","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000047","","296"
"10:46:21.9434932 AM","firefox.exe","8864","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000123","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9435230 AM","firefox.exe","8864","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:21.9435465 AM","firefox.exe","8864","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000013","SyncType: SyncTypeOther","296"
"10:46:21.9436280 AM","firefox.exe","8864","Load Image","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000000","Image Base: 0x7ffb3c680000, Image Size: 0xd000","296"
"10:46:21.9436608 AM","firefox.exe","8864","QueryNameInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000060","Name: \Program Files\Firefox Nightly\lgpllibs.dll","296"
"10:46:21.9436860 AM","firefox.exe","8864","QueryNameInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000030","Name: \Program Files\Firefox Nightly\lgpllibs.dll","296"
"10:46:21.9437684 AM","firefox.exe","8864","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000076","","296"
"10:46:21.9440291 AM","firefox.exe","8864","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9440653 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","296"
"10:46:21.9440747 AM","firefox.exe","8864","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000051","","296"
"10:46:21.9441869 AM","firefox.exe","8864","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000154","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9442185 AM","firefox.exe","8864","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:21.9442415 AM","firefox.exe","8864","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000013","SyncType: SyncTypeOther","296"
"10:46:21.9443576 AM","firefox.exe","8864","Load Image","C:\Program Files\Firefox Nightly\xul.dll","0.0000000","Image Base: 0x7ffb07c80000, Image Size: 0x6988000","296"
"10:46:21.9443930 AM","firefox.exe","8864","QueryNameInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000060","Name: \Program Files\Firefox Nightly\xul.dll","296"
"10:46:21.9444267 AM","firefox.exe","8864","QueryNameInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000030","Name: \Program Files\Firefox Nightly\xul.dll","296"
"10:46:21.9445940 AM","firefox.exe","8864","Load Image","C:\Windows\System32\user32.dll","0.0000000","Image Base: 0x7ffb488d0000, Image Size: 0x190000","296"
"10:46:21.9446272 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\user32.dll","0.0000060","Name: \Windows\System32\user32.dll","296"
"10:46:21.9447275 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\user32.dll","0.0000038","Name: \Windows\System32\user32.dll","296"
"10:46:21.9448841 AM","firefox.exe","8864","Load Image","C:\Windows\System32\win32u.dll","0.0000000","Image Base: 0x7ffb45f50000, Image Size: 0x20000","296"
"10:46:21.9449191 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\win32u.dll","0.0000089","Name: \Windows\System32\win32u.dll","296"
"10:46:21.9449489 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\win32u.dll","0.0000030","Name: \Windows\System32\win32u.dll","296"
"10:46:21.9451030 AM","firefox.exe","8864","Load Image","C:\Windows\System32\gdi32.dll","0.0000000","Image Base: 0x7ffb47170000, Image Size: 0x28000","296"
"10:46:21.9451397 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\gdi32.dll","0.0000059","Name: \Windows\System32\gdi32.dll","296"
"10:46:21.9452621 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\gdi32.dll","0.0000043","Name: \Windows\System32\gdi32.dll","296"
"10:46:21.9453816 AM","firefox.exe","8864","Load Image","C:\Windows\System32\gdi32full.dll","0.0000000","Image Base: 0x7ffb45c00000, Image Size: 0x192000","296"
"10:46:21.9454076 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\gdi32full.dll","0.0000043","Name: \Windows\System32\gdi32full.dll","296"
"10:46:21.9454319 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\gdi32full.dll","0.0000026","Name: \Windows\System32\gdi32full.dll","296"
"10:46:21.9455373 AM","firefox.exe","8864","Load Image","C:\Windows\System32\msvcp_win.dll","0.0000000","Image Base: 0x7ffb46680000, Image Size: 0x9f000","296"
"10:46:21.9455830 AM","firefox.exe","8864","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager","0.0000072","Desired Access: Query Value, Enumerate Sub Keys","296"
"10:46:21.9456035 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000068","Desired Access: Query Value, Enumerate Sub Keys","296"
"10:46:21.9456222 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\ResourcePolicies","0.0000039","Length: 24","296"
"10:46:21.9456389 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000012","","296"
"10:46:21.9456640 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000043","Name: \Windows\System32\msvcp_win.dll","296"
"10:46:21.9456849 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000030","Name: \Windows\System32\msvcp_win.dll","296"
"10:46:21.9459904 AM","firefox.exe","8864","Load Image","C:\Windows\System32\shell32.dll","0.0000000","Image Base: 0x7ffb472f0000, Image Size: 0x1440000","296"
"10:46:21.9460391 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\shell32.dll","0.0000064","Name: \Windows\System32\shell32.dll","296"
"10:46:21.9460711 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\shell32.dll","0.0000034","Name: \Windows\System32\shell32.dll","296"
"10:46:21.9464009 AM","firefox.exe","8864","Load Image","C:\Windows\System32\SHCore.dll","0.0000000","Image Base: 0x2ee001c0000, Image Size: 0xa9000","296"
"10:46:21.9464359 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\SHCore.dll","0.0000060","Name: \Windows\System32\SHCore.dll","296"
"10:46:21.9464632 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\SHCore.dll","0.0000030","Name: \Windows\System32\SHCore.dll","296"
"10:46:21.9466616 AM","firefox.exe","8864","Load Image","C:\Windows\System32\combase.dll","0.0000000","Image Base: 0x7ffb46d80000, Image Size: 0x322000","296"
"10:46:21.9466961 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\combase.dll","0.0000060","Name: \Windows\System32\combase.dll","296"
"10:46:21.9467247 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\combase.dll","0.0000034","Name: \Windows\System32\combase.dll","296"
"10:46:21.9469603 AM","firefox.exe","8864","Load Image","C:\Windows\System32\windows.storage.dll","0.0000000","Image Base: 0x7ffb45f70000, Image Size: 0x70d000","296"
"10:46:21.9469978 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\windows.storage.dll","0.0000060","Name: \Windows\System32\windows.storage.dll","296"
"10:46:21.9470264 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\windows.storage.dll","0.0000030","Name: \Windows\System32\windows.storage.dll","296"
"10:46:21.9472116 AM","firefox.exe","8864","Load Image","C:\Windows\System32\shlwapi.dll","0.0000000","Image Base: 0x7ffb490e0000, Image Size: 0x51000","296"
"10:46:21.9472465 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\shlwapi.dll","0.0000060","Name: \Windows\System32\shlwapi.dll","296"
"10:46:21.9472730 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\shlwapi.dll","0.0000030","Name: \Windows\System32\shlwapi.dll","296"
"10:46:21.9474577 AM","firefox.exe","8864","Load Image","C:\Windows\System32\kernel.appcore.dll","0.0000000","Image Base: 0x7ffb45af0000, Image Size: 0x11000","296"
"10:46:21.9474902 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000059","Name: \Windows\System32\kernel.appcore.dll","296"
"10:46:21.9475153 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000035","Name: \Windows\System32\kernel.appcore.dll","296"
"10:46:21.9476788 AM","firefox.exe","8864","Load Image","C:\Windows\System32\profapi.dll","0.0000000","Image Base: 0x7ffb45b30000, Image Size: 0x1f000","296"
"10:46:21.9477125 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\profapi.dll","0.0000055","Name: \Windows\System32\profapi.dll","296"
"10:46:21.9477372 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\profapi.dll","0.0000030","Name: \Windows\System32\profapi.dll","296"
"10:46:21.9479062 AM","firefox.exe","8864","Load Image","C:\Windows\System32\powrprof.dll","0.0000000","Image Base: 0x7ffb45aa0000, Image Size: 0x4c000","296"
"10:46:21.9479424 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\powrprof.dll","0.0000060","Name: \Windows\System32\powrprof.dll","296"
"10:46:21.9479680 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\powrprof.dll","0.0000030","Name: \Windows\System32\powrprof.dll","296"
"10:46:21.9481302 AM","firefox.exe","8864","Load Image","C:\Windows\System32\fltLib.dll","0.0000000","Image Base: 0x7ffb45a90000, Image Size: 0xa000","296"
"10:46:21.9481647 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\fltLib.dll","0.0000056","Name: \Windows\System32\fltLib.dll","296"
"10:46:21.9481903 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\fltLib.dll","0.0000034","Name: \Windows\System32\fltLib.dll","296"
"10:46:21.9483636 AM","firefox.exe","8864","Load Image","C:\Windows\System32\ole32.dll","0.0000000","Image Base: 0x7ffb491a0000, Image Size: 0x151000","296"
"10:46:21.9484024 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\ole32.dll","0.0000072","Name: \Windows\System32\ole32.dll","296"
"10:46:21.9484314 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\ole32.dll","0.0000034","Name: \Windows\System32\ole32.dll","296"
"10:46:21.9486473 AM","firefox.exe","8864","Load Image","C:\Windows\System32\imm32.dll","0.0000000","Image Base: 0x7ffb48730000, Image Size: 0x2d000","296"
"10:46:21.9486806 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\imm32.dll","0.0000059","Name: \Windows\System32\imm32.dll","296"
"10:46:21.9487075 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\imm32.dll","0.0000029","Name: \Windows\System32\imm32.dll","296"
"10:46:21.9489029 AM","firefox.exe","8864","Load Image","C:\Windows\System32\setupapi.dll","0.0000000","Image Base: 0x7ffb49300000, Image Size: 0x44b000","296"
"10:46:21.9489374 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\setupapi.dll","0.0000060","Name: \Windows\System32\setupapi.dll","296"
"10:46:21.9489664 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\setupapi.dll","0.0000035","Name: \Windows\System32\setupapi.dll","296"
"10:46:21.9491610 AM","firefox.exe","8864","Load Image","C:\Windows\System32\oleaut32.dll","0.0000000","Image Base: 0x7ffb46c10000, Image Size: 0xc2000","296"
"10:46:21.9491956 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\oleaut32.dll","0.0000059","Name: \Windows\System32\oleaut32.dll","296"
"10:46:21.9492250 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\oleaut32.dll","0.0000034","Name: \Windows\System32\oleaut32.dll","296"
"10:46:21.9493620 AM","firefox.exe","8864","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000094","","296"
"10:46:21.9508523 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\avrt.dll","0.0000316","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9509095 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000034","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","296"
"10:46:21.9509227 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\avrt.dll","0.0000051","","296"
"10:46:21.9510413 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\avrt.dll","0.0000137","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9510827 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:21.9511130 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000017","SyncType: SyncTypeOther","296"
"10:46:21.9512069 AM","firefox.exe","8864","Load Image","C:\Windows\System32\avrt.dll","0.0000000","Image Base: 0x7ffb415a0000, Image Size: 0xa000","296"
"10:46:21.9512431 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\avrt.dll","0.0000056","Name: \Windows\System32\avrt.dll","296"
"10:46:21.9512683 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\avrt.dll","0.0000030","Name: \Windows\System32\avrt.dll","296"
"10:46:21.9513404 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\avrt.dll","0.0000077","","296"
"10:46:21.9515751 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\usp10.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9516096 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000035","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","296"
"10:46:21.9516203 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\usp10.dll","0.0000047","","296"
"10:46:21.9517312 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\usp10.dll","0.0000163","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9517735 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:21.9518098 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000038","SyncType: SyncTypeOther","296"
"10:46:21.9518720 AM","firefox.exe","8864","Load Image","C:\Windows\System32\usp10.dll","0.0000000","Image Base: 0x7ffb413c0000, Image Size: 0x19000","296"
"10:46:21.9519087 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\usp10.dll","0.0000064","Name: \Windows\System32\usp10.dll","296"
"10:46:21.9519390 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\usp10.dll","0.0000047","Name: \Windows\System32\usp10.dll","296"
"10:46:21.9520163 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\usp10.dll","0.0000081","","296"
"10:46:21.9530159 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\d3d11.dll","0.0000747","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9531704 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000047","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","296"
"10:46:21.9531853 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\d3d11.dll","0.0000073","","296"
"10:46:21.9534750 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\d3d11.dll","0.0000162","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9535224 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:21.9535471 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000017","SyncType: SyncTypeOther","296"
"10:46:21.9536103 AM","firefox.exe","8864","Load Image","C:\Windows\System32\d3d11.dll","0.0000000","Image Base: 0x7ffb428e0000, Image Size: 0x30b000","296"
"10:46:21.9536380 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\d3d11.dll","0.0000047","Name: \Windows\System32\d3d11.dll","296"
"10:46:21.9536653 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\d3d11.dll","0.0000030","Name: \Windows\System32\d3d11.dll","296"
"10:46:21.9538842 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\d3d11.dll","0.0000077","","296"
"10:46:21.9541509 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\dxgi.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9541957 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000030","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","296"
"10:46:21.9542055 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\dxgi.dll","0.0000047","","296"
"10:46:21.9543497 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\dxgi.dll","0.0000158","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9543928 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:21.9544171 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000013","SyncType: SyncTypeOther","296"
"10:46:21.9544675 AM","firefox.exe","8864","Load Image","C:\Windows\System32\dxgi.dll","0.0000000","Image Base: 0x7ffb44850000, Image Size: 0xbb000","296"
"10:46:21.9544918 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\dxgi.dll","0.0000043","Name: \Windows\System32\dxgi.dll","296"
"10:46:21.9545131 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\dxgi.dll","0.0000026","Name: \Windows\System32\dxgi.dll","296"
"10:46:21.9546650 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\dxgi.dll","0.0000081","","296"
"10:46:21.9549846 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9550379 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000039","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","296"
"10:46:21.9550499 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000055","","296"
"10:46:21.9552086 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000141","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9552495 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:21.9552717 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000013","SyncType: SyncTypeOther","296"
"10:46:21.9553191 AM","firefox.exe","8864","Load Image","C:\Windows\System32\IPHLPAPI.DLL","0.0000000","Image Base: 0x7ffb45030000, Image Size: 0x38000","296"
"10:46:21.9553434 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000047","Name: \Windows\System32\IPHLPAPI.DLL","296"
"10:46:21.9553639 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000026","Name: \Windows\System32\IPHLPAPI.DLL","296"
"10:46:21.9554539 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000064","","296"
"10:46:21.9557334 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9557782 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000034","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","296"
"10:46:21.9557880 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000051","","296"
"10:46:21.9559015 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000136","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9559386 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:21.9559612 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000017","SyncType: SyncTypeOther","296"
"10:46:21.9560065 AM","firefox.exe","8864","Load Image","C:\Windows\System32\dnsapi.dll","0.0000000","Image Base: 0x7ffb45070000, Image Size: 0xbe000","296"
"10:46:21.9560286 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\dnsapi.dll","0.0000039","Name: \Windows\System32\dnsapi.dll","296"
"10:46:21.9560521 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\dnsapi.dll","0.0000038","Name: \Windows\System32\dnsapi.dll","296"
"10:46:21.9561690 AM","firefox.exe","8864","Load Image","C:\Windows\System32\nsi.dll","0.0000000","Image Base: 0x7ffb490d0000, Image Size: 0x8000","296"
"10:46:21.9561916 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\nsi.dll","0.0000043","Name: \Windows\System32\nsi.dll","296"
"10:46:21.9562087 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\nsi.dll","0.0000026","Name: \Windows\System32\nsi.dll","296"
"10:46:21.9562731 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000068","","296"
"10:46:21.9565031 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9565389 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","296"
"10:46:21.9565483 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000047","","296"
"10:46:21.9566644 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000136","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9567019 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:21.9567676 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000030","SyncType: SyncTypeOther","296"
"10:46:21.9568248 AM","firefox.exe","8864","Load Image","C:\Windows\System32\dwmapi.dll","0.0000000","Image Base: 0x7ffb44200000, Image Size: 0x29000","296"
"10:46:21.9568534 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\dwmapi.dll","0.0000051","Name: \Windows\System32\dwmapi.dll","296"
"10:46:21.9568803 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\dwmapi.dll","0.0000042","Name: \Windows\System32\dwmapi.dll","296"
"10:46:21.9570053 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000209","","296"
"10:46:21.9570138 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0006443","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5728"
"10:46:21.9573159 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9573509 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000030","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","296"
"10:46:21.9573611 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000047","","296"
"10:46:21.9574900 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000141","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9575292 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:21.9575514 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000017","SyncType: SyncTypeOther","296"
"10:46:21.9576265 AM","firefox.exe","8864","Load Image","C:\Windows\System32\uxtheme.dll","0.0000000","Image Base: 0x7ffb43f70000, Image Size: 0x98000","296"
"10:46:21.9576615 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\uxtheme.dll","0.0000060","Name: \Windows\System32\uxtheme.dll","296"
"10:46:21.9576926 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\uxtheme.dll","0.0000043","Name: \Windows\System32\uxtheme.dll","296"
"10:46:21.9577097 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0004646","Offset: 0, Length: 152, Priority: Normal","5728"
"10:46:21.9577677 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0003866","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:21.9578373 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000072","","296"
"10:46:21.9582059 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0067175","Offset: 4,096, Length: 152","5728"
"10:46:21.9582277 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9582648 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000030","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","296"
"10:46:21.9582746 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000043","","296"
"10:46:21.9583966 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000163","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9584393 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:21.9584628 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000017","SyncType: SyncTypeOther","296"
"10:46:21.9585135 AM","firefox.exe","8864","Load Image","C:\Windows\System32\wtsapi32.dll","0.0000000","Image Base: 0x7ffb42730000, Image Size: 0x13000","296"
"10:46:21.9585374 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000043","Name: \Windows\System32\wtsapi32.dll","296"
"10:46:21.9585562 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000026","Name: \Windows\System32\wtsapi32.dll","296"
"10:46:21.9586407 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000064","","296"
"10:46:21.9588941 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9589287 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","296"
"10:46:21.9589385 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000047","","296"
"10:46:21.9590866 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000162","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9591356 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:21.9591578 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000039","SyncType: SyncTypeOther","296"
"10:46:21.9592137 AM","firefox.exe","8864","Load Image","C:\Windows\System32\dhcpcsvc.dll","0.0000000","Image Base: 0x7ffb3be40000, Image Size: 0x1a000","296"
"10:46:21.9592372 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000047","Name: \Windows\System32\dhcpcsvc.dll","296"
"10:46:21.9592568 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000026","Name: \Windows\System32\dhcpcsvc.dll","296"
"10:46:21.9593460 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000064","","296"
"10:46:21.9597172 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\userenv.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9597500 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","296"
"10:46:21.9597594 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\userenv.dll","0.0000047","","296"
"10:46:21.9598896 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\userenv.dll","0.0000162","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9599369 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:21.9599676 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000017","SyncType: SyncTypeOther","296"
"10:46:21.9600154 AM","firefox.exe","8864","Load Image","C:\Windows\System32\userenv.dll","0.0000000","Image Base: 0x7ffb459c0000, Image Size: 0x28000","296"
"10:46:21.9600406 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\userenv.dll","0.0000047","Name: \Windows\System32\userenv.dll","296"
"10:46:21.9600611 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\userenv.dll","0.0000030","Name: \Windows\System32\userenv.dll","296"
"10:46:21.9601584 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\userenv.dll","0.0000064","","296"
"10:46:21.9603866 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9604203 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000030","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","296"
"10:46:21.9604306 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000047","","296"
"10:46:21.9605778 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000145","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9606076 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:21.9606298 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000017","SyncType: SyncTypeOther","296"
"10:46:21.9606874 AM","firefox.exe","8864","Load Image","C:\Windows\System32\D3DCompiler_47.dll","0.0000000","Image Base: 0x7ffb42bf0000, Image Size: 0x42f000","296"
"10:46:21.9607117 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000043","Name: \Windows\System32\D3DCompiler_47.dll","296"
"10:46:21.9607305 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000030","Name: \Windows\System32\D3DCompiler_47.dll","296"
"10:46:21.9608321 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000068","","296"
"10:46:21.9611068 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\dxgi.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9611418 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000030","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","296"
"10:46:21.9611508 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\dxgi.dll","0.0000047","","296"
"10:46:21.9621654 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9622000 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000029","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","296"
"10:46:21.9622102 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000047","","296"
"10:46:21.9623267 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000162","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9623693 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:21.9624112 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000025","SyncType: SyncTypeOther","296"
"10:46:21.9624670 AM","firefox.exe","8864","Load Image","C:\Windows\System32\cryptsp.dll","0.0000000","Image Base: 0x7ffb45460000, Image Size: 0x17000","296"
"10:46:21.9624939 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\cryptsp.dll","0.0000043","Name: \Windows\System32\cryptsp.dll","296"
"10:46:21.9625140 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\cryptsp.dll","0.0000021","Name: \Windows\System32\cryptsp.dll","296"
"10:46:21.9625916 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000064","","296"
"10:46:21.9632696 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\imm32.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9633037 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000035","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","296"
"10:46:21.9633136 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\imm32.dll","0.0000046","","296"
"10:46:21.9635269 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\imm32.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9635555 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000030","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","296"
"10:46:21.9635644 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\imm32.dll","0.0000043","","296"
"10:46:21.9636144 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\Error Message Instrument\","0.0000064","Desired Access: Read","296"
"10:46:21.9636310 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\Error Message Instrument","0.0000051","Desired Access: Read","296"
"10:46:21.9636737 AM","firefox.exe","8864","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000038","Desired Access: Query Value, Enumerate Sub Keys","296"
"10:46:21.9636886 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Display","0.0000060","Desired Access: Read","296"
"10:46:21.9637099 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Display","0.0000039","Desired Access: Read","296"
"10:46:21.9637227 AM","firefox.exe","8864","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000026","Desired Access: Query Value, Enumerate Sub Keys","296"
"10:46:21.9637338 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Display","0.0000034","Desired Access: Read","296"
"10:46:21.9637449 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Display","0.0000034","Desired Access: Read","296"
"10:46:21.9637594 AM","firefox.exe","8864","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000026","Desired Access: Query Value, Enumerate Sub Keys","296"
"10:46:21.9640329 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9640568 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","296"
"10:46:21.9640662 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000043","","296"
"10:46:21.9641712 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9641861 AM","firefox.exe","8864","RegOpenKey","HKLM\SOFTWARE\Microsoft\OLE","0.0000068","Desired Access: Read","296"
"10:46:21.9642044 AM","firefox.exe","8864","RegQueryValue","HKLM\SOFTWARE\Microsoft\Ole\PageAllocatorUseSystemHeap","0.0000030","Length: 20","296"
"10:46:21.9642206 AM","firefox.exe","8864","RegCloseKey","HKLM\SOFTWARE\Microsoft\Ole","0.0000013","","296"
"10:46:21.9642313 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9642416 AM","firefox.exe","8864","RegOpenKey","HKLM\SOFTWARE\Microsoft\OLE","0.0000042","Desired Access: Read","296"
"10:46:21.9642548 AM","firefox.exe","8864","RegQueryValue","HKLM\SOFTWARE\Microsoft\Ole\PageAllocatorSystemHeapIsPrivate","0.0000025","Length: 20","296"
"10:46:21.9642663 AM","firefox.exe","8864","RegCloseKey","HKLM\SOFTWARE\Microsoft\Ole","0.0000009","","296"
"10:46:21.9642753 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9642842 AM","firefox.exe","8864","RegOpenKey","HKLM\SOFTWARE\Microsoft\OLE","0.0000034","Desired Access: Read","296"
"10:46:21.9642962 AM","firefox.exe","8864","RegQueryValue","HKLM\SOFTWARE\Microsoft\Ole\AggressiveMTATesting","0.0000021","Length: 16","296"
"10:46:21.9643073 AM","firefox.exe","8864","RegCloseKey","HKLM\SOFTWARE\Microsoft\Ole","0.0000012","","296"
"10:46:21.9645031 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9645150 AM","firefox.exe","8864","RegOpenKey","HKLM","0.0000039","Desired Access: Read","296"
"10:46:21.9645291 AM","firefox.exe","8864","RegSetInfoKey","HKLM","0.0000013","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","296"
"10:46:21.9645428 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x100","296"
"10:46:21.9645530 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Microsoft\Ole\FeatureDevelopmentProperties","0.0000043","Desired Access: Read","296"
"10:46:21.9645697 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x100","296"
"10:46:21.9645795 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Microsoft\Ole\FeatureDevelopmentProperties","0.0000030","Desired Access: Read","296"
"10:46:21.9645910 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x100","296"
"10:46:21.9646000 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Microsoft\Ole","0.0000038","Desired Access: Read","296"
"10:46:21.9646580 AM","firefox.exe","8864","RegOpenKey","HKCU","0.0000055","Desired Access: Read","296"
"10:46:21.9646733 AM","firefox.exe","8864","RegQueryKey","HKCU","0.0000009","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9646823 AM","firefox.exe","8864","RegOpenKey","HKCU\Software\Classes\Local Settings","0.0000047","Desired Access: Read","296"
"10:46:21.9646938 AM","firefox.exe","8864","RegOpenKey","HKCU\Software\Classes\Local Settings","0.0000047","Desired Access: Read","296"
"10:46:21.9647075 AM","firefox.exe","8864","RegSetInfoKey","HKCU\Software\Classes\Local Settings","0.0000008","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","296"
"10:46:21.9647181 AM","firefox.exe","8864","RegCloseKey","HKCU","0.0000013","","296"
"10:46:21.9647314 AM","firefox.exe","8864","RegQueryKey","HKCU\Software\Classes\Local Settings","0.0000008","Query: HandleTags, HandleTags: 0x100","296"
"10:46:21.9647403 AM","firefox.exe","8864","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Ole\FeatureDevelopmentProperties","0.0000043","Desired Access: Read","296"
"10:46:21.9647523 AM","firefox.exe","8864","RegQueryKey","HKCU\Software\Classes\Local Settings","0.0000013","Query: HandleTags, HandleTags: 0x100","296"
"10:46:21.9647612 AM","firefox.exe","8864","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Ole\FeatureDevelopmentProperties","0.0000030","Desired Access: Read","296"
"10:46:21.9647723 AM","firefox.exe","8864","RegQueryKey","HKCU\Software\Classes\Local Settings","0.0000009","Query: HandleTags, HandleTags: 0x100","296"
"10:46:21.9647809 AM","firefox.exe","8864","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Ole","0.0000025","Desired Access: Read","296"
"10:46:21.9647915 AM","firefox.exe","8864","RegQueryKey","HKCU\Software\Classes\Local Settings","0.0000009","Query: HandleTags, HandleTags: 0x100","296"
"10:46:21.9648001 AM","firefox.exe","8864","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft","0.0000034","Desired Access: Read","296"
"10:46:21.9648402 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9648837 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Microsoft\OLE\Tracing","0.0000055","Desired Access: Read","296"
"10:46:21.9649729 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000439","EndOfFile: 1,048,576","5728"
"10:46:21.9650736 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000384","AllocationSize: 1,048,576","5728"
"10:46:21.9651410 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:21.9651632 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000042","AllocationSize: 1,048,576, EndOfFile: 1,048,576, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:21.9652033 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000021","SyncType: SyncTypeOther","5728"
"10:46:21.9654072 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000316","Desired Access: Generic Write, Read Attributes, Disposition: Open, Options: Write Through, Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.9654746 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000047","Exclusive: False, Offset: 0, Length: 1, Fail Immediately: False","5728"
"10:46:21.9654994 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000025","Offset: 0, Length: 1","5728"
"10:46:21.9657050 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore.json","0.0000218","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:21.9658599 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000081","","5728"
"10:46:21.9659094 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000055","","5728"
"10:46:21.9659504 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000034","Offset: 0, Length: 1","5728"
"10:46:21.9659708 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000064","","5728"
"10:46:21.9660080 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9660408 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000047","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","296"
"10:46:21.9660549 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000060","","296"
"10:46:21.9661419 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9661594 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Microsoft\OLE\Tracing","0.0000073","Desired Access: Read","296"
"10:46:21.9663979 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9664338 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000030","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","296"
"10:46:21.9664436 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000047","","296"
"10:46:21.9664816 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:21.9665055 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000055","Query: Name","5728"
"10:46:21.9665421 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\WOW6432Node\Mozilla\Firefox\TaskBarIDs","0.0000184","Desired Access: Read","5728"
"10:46:21.9665835 AM","firefox.exe","7384","RegSetInfoKey","HKLM\SOFTWARE\WOW6432Node\Mozilla\Firefox\TaskBarIDs","0.0000017","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:21.9666036 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\WOW6432Node\Mozilla\Firefox\TaskBarIDs\C:\Program Files\Firefox Nightly","0.0000051","Type: REG_SZ, Length: 34, Data: 6F193CCC56814779","5728"
"10:46:21.9666296 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\WOW6432Node\Mozilla\Firefox\TaskBarIDs","0.0000039","","5728"
"10:46:21.9671647 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\setupapi.dll","0.0000068","Name: \Windows\System32\setupapi.dll","296"
"10:46:21.9675188 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000303","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9675568 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000029","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","296"
"10:46:21.9675657 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000047","","296"
"10:46:21.9679318 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\ole32.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9679681 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000034","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","296"
"10:46:21.9679796 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\ole32.dll","0.0000055","","296"
"10:46:21.9680811 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9680973 AM","firefox.exe","8864","RegOpenKey","HKLM\SOFTWARE\Microsoft\OLEAUT","0.0000069","Desired Access: Query Value","296"
"10:46:21.9694401 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9694751 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000042","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","296"
"10:46:21.9694900 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000068","","296"
"10:46:21.9697673 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9697912 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000085","Desired Access: All Access","296"
"10:46:21.9698155 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000534","Desired Access: All Access","296"
"10:46:21.9698420 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000043","Information: Owner","296"
"10:46:21.9698620 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000017","Information: Owner","296"
"10:46:21.9698847 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9699009 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000047","Desired Access: Read","296"
"10:46:21.9699175 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000060","Desired Access: Read","296"
"10:46:21.9699461 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000043","Length: 16","296"
"10:46:21.9699623 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000034","Type: REG_SZ, Length: 8, Data: 2.0","296"
"10:46:21.9699832 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9699982 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog","0.0000200","Desired Access: Read","296"
"10:46:21.9700651 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog","0.0000013","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9700796 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog\3AC7FBD2-278F73D9","0.0000035","Desired Access: Read","296"
"10:46:21.9700967 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog","0.0000026","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9701116 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog\3AC7FBD2","0.0000039","Desired Access: Read","296"
"10:46:21.9701330 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog","0.0000021","","296"
"10:46:21.9701526 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Callout","0.0000030","Length: 12","296"
"10:46:21.9701710 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Callout","0.0000029","Type: REG_EXPAND_SZ, Length: 70, Data: %SystemRoot%\System32\fwpuclnt.dll","296"
"10:46:21.9701923 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9702068 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000068","Desired Access: Maximum Allowed, Granted Access: Read","296"
"10:46:21.9702268 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000030","Type: REG_DWORD, Length: 4, Data: 8","296"
"10:46:21.9702772 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","296"
"10:46:21.9702947 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9703088 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000034","Desired Access: Read","296"
"10:46:21.9703267 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000034","Type: REG_DWORD, Length: 4, Data: 1015","296"
"10:46:21.9703446 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000030","Type: REG_DWORD, Length: 4, Data: 14","296"
"10:46:21.9703604 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9703753 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000103","Desired Access: Maximum Allowed, Granted Access: Read","296"
"10:46:21.9704026 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9704180 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000090","Desired Access: Read","296"
"10:46:21.9704240 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:21.9704440 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Length: 144","296"
"10:46:21.9704462 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000046","Query: Name","5728"
"10:46:21.9704594 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","296"
"10:46:21.9704790 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\WOW6432Node\Synaptics\SynTP\Install","0.0000081","Desired Access: Read","5728"
"10:46:21.9704820 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000021","","296"
"10:46:21.9704982 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9705042 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:21.9705136 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000158","Desired Access: Read","296"
"10:46:21.9705217 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Synaptics\SynTP\Install","0.0000064","Desired Access: Read","5728"
"10:46:21.9705439 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:21.9705558 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000034","Query: Name","5728"
"10:46:21.9705614 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000051","Length: 144","296"
"10:46:21.9705737 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Elantech\MainOption","0.0000047","Desired Access: Read","5728"
"10:46:21.9705844 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000111","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","296"
"10:46:21.9705887 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000021","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:21.9706062 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Elantech\MainOption","0.0000038","Desired Access: Read","5728"
"10:46:21.9706130 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","296"
"10:46:21.9706245 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:21.9706283 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9706403 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000034","Query: Name","5728"
"10:46:21.9706433 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000081","Desired Access: Read","296"
"10:46:21.9706625 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Elantech","0.0000042","Desired Access: Read","5728"
"10:46:21.9706804 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000030","Length: 144","296"
"10:46:21.9706821 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:21.9706970 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","296"
"10:46:21.9707034 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Elantech","0.0000039","Desired Access: Read","5728"
"10:46:21.9707184 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000017","","296"
"10:46:21.9707342 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9707371 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:21.9707499 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000073","Desired Access: Read","296"
"10:46:21.9707529 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000034","Query: Name","5728"
"10:46:21.9707738 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000030","Length: 144","296"
"10:46:21.9707772 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\WOW6432Node\Alps\Apoint","0.0000060","Desired Access: Read","5728"
"10:46:21.9707892 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","296"
"10:46:21.9707986 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:21.9708075 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","","296"
"10:46:21.9708152 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Alps\Apoint","0.0000081","Desired Access: Read","5728"
"10:46:21.9708216 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9708374 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000098","Desired Access: Read","296"
"10:46:21.9708387 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:21.9708549 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000034","Query: Name","5728"
"10:46:21.9708647 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000026","Length: 144","296"
"10:46:21.9708771 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Lenovo\TrackPoint","0.0000043","Desired Access: Read","5728"
"10:46:21.9708792 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","296"
"10:46:21.9708967 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:21.9708976 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000012","","296"
"10:46:21.9709121 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9709138 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Lenovo\TrackPoint","0.0000038","Desired Access: Read","5728"
"10:46:21.9709266 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000077","Desired Access: Read","296"
"10:46:21.9709317 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:21.9709492 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000038","Query: Name","5728"
"10:46:21.9709496 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000030","Length: 144","296"
"10:46:21.9709714 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","296"
"10:46:21.9709722 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Alps\Apoint\TrackPoint","0.0000039","Desired Access: Read","5728"
"10:46:21.9709893 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000017","","296"
"10:46:21.9709906 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:21.9710047 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9710068 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Alps\Apoint\TrackPoint","0.0000038","Desired Access: Read","5728"
"10:46:21.9710192 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000072","Desired Access: Read","296"
"10:46:21.9710247 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:21.9710401 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000034","Query: Name","5728"
"10:46:21.9710422 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000026","Length: 144","296"
"10:46:21.9710567 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","296"
"10:46:21.9710618 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Lenovo\UltraNav","0.0000034","Desired Access: Read","5728"
"10:46:21.9710746 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000017","","296"
"10:46:21.9710798 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:21.9710891 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9710960 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Lenovo\UltraNav","0.0000034","Desired Access: Read","5728"
"10:46:21.9711032 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000073","Desired Access: Read","296"
"10:46:21.9711139 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:21.9711263 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000098","Length: 144","296"
"10:46:21.9711292 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000043","Query: Name","5728"
"10:46:21.9711463 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Synaptics\SynTPEnh\UltraNavUSB","0.0000039","Desired Access: Read","5728"
"10:46:21.9711583 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000051","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","296"
"10:46:21.9711655 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:21.9711847 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Synaptics\SynTPEnh\UltraNavUSB","0.0000047","Desired Access: Read","5728"
"10:46:21.9711877 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000026","","296"
"10:46:21.9712026 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000043","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:21.9712095 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9712167 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000030","Query: Name","5728"
"10:46:21.9712304 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000111","Desired Access: Read","296"
"10:46:21.9712321 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Synaptics\SynTPEnh\UltraNavPS2","0.0000030","Desired Access: Read","5728"
"10:46:21.9712444 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:21.9712581 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Synaptics\SynTPEnh\UltraNavPS2","0.0000030","Desired Access: Read","5728"
"10:46:21.9712632 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000039","Length: 144","296"
"10:46:21.9712901 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","296"
"10:46:21.9713119 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000021","","296"
"10:46:21.9713306 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9713490 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000098","Desired Access: Read","296"
"10:46:21.9713780 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000034","Length: 144","296"
"10:46:21.9713942 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","296"
"10:46:21.9714147 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000021","","296"
"10:46:21.9714322 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9714492 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000086","Desired Access: Read","296"
"10:46:21.9714731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0063348","Offset: 544,768, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:21.9714761 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000034","Length: 144","296"
"10:46:21.9714923 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000035","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","296"
"10:46:21.9715124 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000017","","296"
"10:46:21.9715290 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9715461 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000085","Desired Access: Read","296"
"10:46:21.9715721 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000030","Length: 144","296"
"10:46:21.9715875 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","296"
"10:46:21.9716075 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000017","","296"
"10:46:21.9716238 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9716395 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000116","Desired Access: Read","296"
"10:46:21.9716694 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000030","Length: 144","296"
"10:46:21.9716950 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","296"
"10:46:21.9717142 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000017","","296"
"10:46:21.9717304 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9717466 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000077","Desired Access: Read","296"
"10:46:21.9717701 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000030","Length: 144","296"
"10:46:21.9717850 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","296"
"10:46:21.9718042 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000013","","296"
"10:46:21.9718192 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","","296"
"10:46:21.9718571 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9718742 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5","0.0000073","Desired Access: Maximum Allowed, Granted Access: Read","296"
"10:46:21.9718968 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Serial_Access_Num","0.0000039","Type: REG_DWORD, Length: 4, Data: 22","296"
"10:46:21.9719459 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 22","296"
"10:46:21.9719651 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5","0.0000017","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9719817 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\00000016","0.0000043","Desired Access: Read","296"
"10:46:21.9720018 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Num_Catalog_Entries64","0.0000034","Type: REG_DWORD, Length: 4, Data: 7","296"
"10:46:21.9720193 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5","0.0000017","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9720351 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000102","Desired Access: Maximum Allowed, Granted Access: Read","296"
"10:46:21.9720641 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000030","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9720777 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001","0.0000060","Desired Access: Read","296"
"10:46:21.9720952 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\LibraryPath","0.0000030","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\napinsp.dll","296"
"10:46:21.9721063 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\LibraryPath","0.0000090","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\napinsp.dll","296"
"10:46:21.9721268 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\DisplayString","0.0000026","Length: 12","296"
"10:46:21.9721370 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\DisplayString","0.0000026","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\napinsp.dll,-1000","296"
"10:46:21.9721473 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\DisplayString","0.0000021","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\napinsp.dll,-1000","296"
"10:46:21.9721575 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\DisplayString","0.0000017","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\napinsp.dll,-1000","296"
"10:46:21.9721678 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\ProviderId","0.0000021","Type: REG_BINARY, Length: 16, Data: A2 CB 4A 96 BC B2 EB 40 8C 6A A6 DB 40 16 1C AE","296"
"10:46:21.9721771 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\AddressFamily","0.0000022","Length: 16","296"
"10:46:21.9721870 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\SupportedNameSpace","0.0000021","Type: REG_DWORD, Length: 4, Data: 37","296"
"10:46:21.9721968 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\Enabled","0.0000021","Type: REG_DWORD, Length: 4, Data: 1","296"
"10:46:21.9722062 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\Version","0.0000021","Type: REG_DWORD, Length: 4, Data: 0","296"
"10:46:21.9722168 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\StoresServiceClassInfo","0.0000026","Type: REG_DWORD, Length: 4, Data: 0","296"
"10:46:21.9722271 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\ProviderInfo","0.0000021","Type: REG_BINARY, Length: 0","296"
"10:46:21.9722369 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\ProviderInfo","0.0000025","Type: REG_BINARY, Length: 0","296"
"10:46:21.9722501 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001","0.0000013","","296"
"10:46:21.9722616 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9722723 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002","0.0000060","Desired Access: Read","296"
"10:46:21.9722894 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\LibraryPath","0.0000046","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\pnrpnsp.dll","296"
"10:46:21.9723060 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\LibraryPath","0.0000026","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\pnrpnsp.dll","296"
"10:46:21.9723218 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\DisplayString","0.0000030","Length: 12","296"
"10:46:21.9723367 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\DisplayString","0.0000030","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1000","296"
"10:46:21.9723529 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\DisplayString","0.0000030","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1000","296"
"10:46:21.9723679 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\DisplayString","0.0000029","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1000","296"
"10:46:21.9723845 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\ProviderId","0.0000030","Type: REG_BINARY, Length: 16, Data: CE 89 FE 03 6D 76 76 49 B9 C1 BB 9B C4 2C 7B 4D","296"
"10:46:21.9724003 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\AddressFamily","0.0000030","Length: 16","296"
"10:46:21.9724161 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\SupportedNameSpace","0.0000030","Type: REG_DWORD, Length: 4, Data: 39","296"
"10:46:21.9724319 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\Enabled","0.0000029","Type: REG_DWORD, Length: 4, Data: 1","296"
"10:46:21.9724468 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\Version","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","296"
"10:46:21.9724643 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\StoresServiceClassInfo","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","296"
"10:46:21.9724796 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\ProviderInfo","0.0000035","Type: REG_BINARY, Length: 0","296"
"10:46:21.9724954 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","296"
"10:46:21.9725142 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002","0.0000017","","296"
"10:46:21.9725313 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9725483 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003","0.0000081","Desired Access: Read","296"
"10:46:21.9725731 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\LibraryPath","0.0000047","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\pnrpnsp.dll","296"
"10:46:21.9725902 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\LibraryPath","0.0000029","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\pnrpnsp.dll","296"
"10:46:21.9726059 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\DisplayString","0.0000026","Length: 12","296"
"10:46:21.9726200 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\DisplayString","0.0000039","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1001","296"
"10:46:21.9726362 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\DisplayString","0.0000030","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1001","296"
"10:46:21.9726512 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\DisplayString","0.0000030","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1001","296"
"10:46:21.9726674 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\ProviderId","0.0000030","Type: REG_BINARY, Length: 16, Data: CD 89 FE 03 6D 76 76 49 B9 C1 BB 9B C4 2C 7B 4D","296"
"10:46:21.9726832 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\AddressFamily","0.0000030","Length: 16","296"
"10:46:21.9726985 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\SupportedNameSpace","0.0000030","Type: REG_DWORD, Length: 4, Data: 38","296"
"10:46:21.9727139 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\Enabled","0.0000030","Type: REG_DWORD, Length: 4, Data: 1","296"
"10:46:21.9727292 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\Version","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","296"
"10:46:21.9727463 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\StoresServiceClassInfo","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","296"
"10:46:21.9727630 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\ProviderInfo","0.0000029","Type: REG_BINARY, Length: 0","296"
"10:46:21.9727787 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","296"
"10:46:21.9727979 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003","0.0000022","","296"
"10:46:21.9728159 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9728338 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004","0.0000085","Desired Access: Read","296"
"10:46:21.9728590 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\LibraryPath","0.0000038","Type: REG_SZ, Length: 66, Data: %SystemRoot%\system32\NLAapi.dll","296"
"10:46:21.9728752 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\LibraryPath","0.0000034","Type: REG_SZ, Length: 66, Data: %SystemRoot%\system32\NLAapi.dll","296"
"10:46:21.9728922 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\DisplayString","0.0000030","Length: 12","296"
"10:46:21.9729063 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\DisplayString","0.0000030","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\system32\nlasvc.dll,-1000","296"
"10:46:21.9729221 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\DisplayString","0.0000030","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\system32\nlasvc.dll,-1000","296"
"10:46:21.9729375 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\DisplayString","0.0000029","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\system32\nlasvc.dll,-1000","296"
"10:46:21.9729541 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\ProviderId","0.0000030","Type: REG_BINARY, Length: 16, Data: 3A 24 42 66 A8 3B A6 4A BA A5 2E 0B D7 1F DD 83","296"
"10:46:21.9729699 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\AddressFamily","0.0000030","Length: 16","296"
"10:46:21.9729848 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\SupportedNameSpace","0.0000034","Type: REG_DWORD, Length: 4, Data: 15","296"
"10:46:21.9730002 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\Enabled","0.0000034","Type: REG_DWORD, Length: 4, Data: 1","296"
"10:46:21.9730160 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\Version","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","296"
"10:46:21.9730326 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\StoresServiceClassInfo","0.0000034","Type: REG_DWORD, Length: 4, Data: 0","296"
"10:46:21.9730488 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\ProviderInfo","0.0000034","Type: REG_BINARY, Length: 0","296"
"10:46:21.9730650 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\ProviderInfo","0.0000034","Type: REG_BINARY, Length: 0","296"
"10:46:21.9730847 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004","0.0000021","","296"
"10:46:21.9731026 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9731201 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005","0.0000089","Desired Access: Read","296"
"10:46:21.9731461 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\LibraryPath","0.0000034","Type: REG_SZ, Length: 68, Data: %SystemRoot%\System32\mswsock.dll","296"
"10:46:21.9731615 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\LibraryPath","0.0000029","Type: REG_SZ, Length: 68, Data: %SystemRoot%\System32\mswsock.dll","296"
"10:46:21.9731777 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\DisplayString","0.0000030","Length: 12","296"
"10:46:21.9731926 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\DisplayString","0.0000034","Type: REG_SZ, Length: 86, Data: @%SystemRoot%\system32\wshtcpip.dll,-60103","296"
"10:46:21.9732092 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\DisplayString","0.0000030","Type: REG_SZ, Length: 86, Data: @%SystemRoot%\system32\wshtcpip.dll,-60103","296"
"10:46:21.9732242 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\DisplayString","0.0000030","Type: REG_SZ, Length: 86, Data: @%SystemRoot%\system32\wshtcpip.dll,-60103","296"
"10:46:21.9732408 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\ProviderId","0.0000030","Type: REG_BINARY, Length: 16, Data: 40 9D 05 22 9E 7E CF 11 AE 5A 00 AA 00 A7 11 2B","296"
"10:46:21.9732562 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\AddressFamily","0.0000030","Length: 16","296"
"10:46:21.9732715 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\SupportedNameSpace","0.0000035","Type: REG_DWORD, Length: 4, Data: 12","296"
"10:46:21.9732878 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\Enabled","0.0000038","Type: REG_DWORD, Length: 4, Data: 1","296"
"10:46:21.9733040 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\Version","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","296"
"10:46:21.9733215 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\StoresServiceClassInfo","0.0000029","Type: REG_DWORD, Length: 4, Data: 0","296"
"10:46:21.9733372 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","296"
"10:46:21.9733522 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","296"
"10:46:21.9733714 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005","0.0000017","","296"
"10:46:21.9733889 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9734059 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006","0.0000090","Desired Access: Read","296"
"10:46:21.9734307 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\LibraryPath","0.0000030","Type: REG_SZ, Length: 66, Data: %SystemRoot%\System32\winrnr.dll","296"
"10:46:21.9734460 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\LibraryPath","0.0000030","Type: REG_SZ, Length: 66, Data: %SystemRoot%\System32\winrnr.dll","296"
"10:46:21.9734614 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\DisplayString","0.0000030","Length: 12","296"
"10:46:21.9734759 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\DisplayString","0.0000034","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\System32\winrnr.dll,-1000","296"
"10:46:21.9734921 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\DisplayString","0.0000026","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\System32\winrnr.dll,-1000","296"
"10:46:21.9735066 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\DisplayString","0.0000030","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\System32\winrnr.dll,-1000","296"
"10:46:21.9735224 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\ProviderId","0.0000030","Type: REG_BINARY, Length: 16, Data: EE 37 26 3B 80 E5 CF 11 A5 55 00 C0 4F D8 D4 AC","296"
"10:46:21.9735382 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\AddressFamily","0.0000030","Length: 16","296"
"10:46:21.9735540 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\SupportedNameSpace","0.0000030","Type: REG_DWORD, Length: 4, Data: 32","296"
"10:46:21.9735694 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\Enabled","0.0000034","Type: REG_DWORD, Length: 4, Data: 1","296"
"10:46:21.9735847 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\Version","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","296"
"10:46:21.9736022 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\StoresServiceClassInfo","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","296"
"10:46:21.9736184 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","296"
"10:46:21.9736338 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\ProviderInfo","0.0000034","Type: REG_BINARY, Length: 0","296"
"10:46:21.9736534 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006","0.0000017","","296"
"10:46:21.9736816 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9736991 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007","0.0000089","Desired Access: Read","296"
"10:46:21.9737242 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\LibraryPath","0.0000034","Type: REG_SZ, Length: 66, Data: %SystemRoot%\System32\wshbth.dll","296"
"10:46:21.9737400 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\LibraryPath","0.0000030","Type: REG_SZ, Length: 66, Data: %SystemRoot%\System32\wshbth.dll","296"
"10:46:21.9737562 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\DisplayString","0.0000026","Length: 12","296"
"10:46:21.9738096 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\DisplayString","0.0000051","Type: REG_SZ, Length: 40, Data: Bluetooth Namespace","296"
"10:46:21.9738382 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\DisplayString","0.0000025","Type: REG_SZ, Length: 40, Data: Bluetooth Namespace","296"
"10:46:21.9738531 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\DisplayString","0.0000021","Type: REG_SZ, Length: 40, Data: Bluetooth Namespace","296"
"10:46:21.9738655 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\ProviderId","0.0000021","Type: REG_BINARY, Length: 16, Data: E0 63 AA 06 60 7D FF 41 AF B2 3E E6 D2 D9 39 2D","296"
"10:46:21.9738761 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\AddressFamily","0.0000022","Length: 16","296"
"10:46:21.9738872 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\SupportedNameSpace","0.0000026","Type: REG_DWORD, Length: 4, Data: 16","296"
"10:46:21.9738979 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\Enabled","0.0000021","Type: REG_DWORD, Length: 4, Data: 1","296"
"10:46:21.9739077 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\Version","0.0000021","Type: REG_DWORD, Length: 4, Data: 0","296"
"10:46:21.9739188 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\StoresServiceClassInfo","0.0000021","Type: REG_DWORD, Length: 4, Data: 0","296"
"10:46:21.9739295 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\ProviderInfo","0.0000021","Type: REG_BINARY, Length: 0","296"
"10:46:21.9739397 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\ProviderInfo","0.0000021","Type: REG_BINARY, Length: 0","296"
"10:46:21.9739542 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007","0.0000013","","296"
"10:46:21.9739653 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000009","","296"
"10:46:21.9739768 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000034","","296"
"10:46:21.9740041 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","296"
"10:46:21.9740195 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock2\Parameters","0.0000055","Desired Access: Query Value","296"
"10:46:21.9740348 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock2\Parameters","0.0000064","Desired Access: Query Value","296"
"10:46:21.9740528 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Ws2_32NumHandleBuckets","0.0000021","Length: 16","296"
"10:46:21.9740630 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Ws2_32SpinCount","0.0000017","Length: 16","296"
"10:46:21.9740737 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000008","","296"
"10:46:21.9748357 AM","firefox.exe","8864","ReadFile","C:\Program Files\Firefox Nightly\dependentlibs.list","0.0000055","Offset: 476, Length: 4,096","296"
"10:46:21.9748562 AM","firefox.exe","8864","CloseFile","C:\Program Files\Firefox Nightly\dependentlibs.list","0.0000102","","296"
"10:46:21.9754898 AM","firefox.exe","8864","QueryNameInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000055","Name: \Program Files\Firefox Nightly\xul.dll","296"
"10:46:21.9759327 AM","firefox.exe","8864","QueryNameInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000064","Name: \Program Files\Firefox Nightly\xul.dll","296"
"10:46:21.9763696 AM","firefox.exe","8864","QueryNameInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000030","Name: \Program Files\Firefox Nightly\xul.dll","296"
"10:46:21.9765475 AM","firefox.exe","8864","Thread Create","","0.0000000","Thread ID: 4784","296"
"10:46:21.9777562 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\softokn3.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","296"
"10:46:21.9778719 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0106679","Offset: 487,424, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:21.9779342 AM","firefox.exe","8864","CreateFile","C:\Windows\System\softokn3.dll","0.0000085","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","296"
"10:46:21.9781023 AM","firefox.exe","8864","CreateFile","C:\Windows\softokn3.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","296"
"10:46:21.9782806 AM","firefox.exe","8864","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0014217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9797193 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","296"
"10:46:21.9797334 AM","firefox.exe","8864","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000073","","296"
"10:46:21.9798738 AM","firefox.exe","8864","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000175","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:21.9799182 AM","firefox.exe","8864","CreateFileMapping","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:21.9799391 AM","firefox.exe","8864","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000038","AllocationSize: 249,856, EndOfFile: 247,496, NumberOfLinks: 1, DeletePending: False, Directory: False","296"
"10:46:21.9799604 AM","firefox.exe","8864","ReadFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0221790","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","296"
"10:46:21.9893467 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:21.9893915 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000051","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","5728"
"10:46:21.9894141 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000072","","5728"
"10:46:21.9894968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0319241","Offset: 471,040, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.0022248 AM","firefox.exe","8864","ReadFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0014178","Offset: 202,240, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","296"
"10:46:22.0037462 AM","firefox.exe","8864","ReadFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0440573","Offset: 237,568, Length: 1,024, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","296"
"10:46:22.0218647 AM","firefox.exe","7384","Load Image","C:\Windows\System32\msctf.dll","0.0000000","Image Base: 0x7ffb48ca0000, Image Size: 0x173000","5728"
"10:46:22.0219125 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\msctf.dll","0.0000106","Name: \Windows\System32\msctf.dll","5728"
"10:46:22.0237966 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.0238431 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000047","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","5728"
"10:46:22.0238628 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000059","","5728"
"10:46:22.0239831 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000132","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.0240245 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winsta.dll","0.0000059","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:22.0240586 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winsta.dll","0.0000017","SyncType: SyncTypeOther","5728"
"10:46:22.0241909 AM","firefox.exe","7384","Load Image","C:\Windows\System32\winsta.dll","0.0000000","Image Base: 0x7ffb45500000, Image Size: 0x56000","5728"
"10:46:22.0242216 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\winsta.dll","0.0000064","Name: \Windows\System32\winsta.dll","5728"
"10:46:22.0243304 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000081","","5728"
"10:46:22.0481670 AM","firefox.exe","8864","CreateFileMapping","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000367","SyncType: SyncTypeOther","296"
"10:46:22.0485792 AM","firefox.exe","8864","Load Image","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000000","Image Base: 0x7ffb3c840000, Image Size: 0x40000","296"
"10:46:22.0487682 AM","firefox.exe","8864","QueryNameInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000324","Name: \Program Files\Firefox Nightly\softokn3.dll","296"
"10:46:22.0488992 AM","firefox.exe","8864","QueryNameInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000149","Name: \Program Files\Firefox Nightly\softokn3.dll","296"
"10:46:22.0490365 AM","firefox.exe","8864","ReadFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0070140","Offset: 226,304, Length: 3,584, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","296"
"10:46:22.0562319 AM","firefox.exe","8864","ReadFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0004881","Offset: 236,032, Length: 512, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","296"
"10:46:22.0569760 AM","firefox.exe","8864","ReadFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0004808","Offset: 236,544, Length: 1,024, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","296"
"10:46:22.0576552 AM","firefox.exe","8864","ReadFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0005508","Offset: 218,624, Length: 7,680, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","296"
"10:46:22.0586511 AM","firefox.exe","8864","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000490","","296"
"10:46:22.0588759 AM","firefox.exe","8864","ReadFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0004574","Offset: 229,888, Length: 6,144, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","296"
"10:46:22.0594447 AM","firefox.exe","8864","ReadFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0005243","Offset: 193,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","296"
"10:46:22.0600237 AM","firefox.exe","8864","ReadFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0008375","Offset: 173,056, Length: 29,184, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","296"
"10:46:22.0610899 AM","firefox.exe","8864","ReadFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0005244","Offset: 70,656, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","296"
"10:46:22.0630875 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\freebl3.dll","0.0000956","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","296"
"10:46:22.0631166 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000256","Query: Name","5728"
"10:46:22.0632548 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000077","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0633440 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000072","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0634468 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000465","Desired Access: Read","5728"
"10:46:22.0635902 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000806","Desired Access: Read","5728"
"10:46:22.0637681 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000243","Query: Name","5728"
"10:46:22.0638713 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000073","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0639801 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\TreatAs","0.0000282","Desired Access: Query Value","5728"
"10:46:22.0640800 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000072","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0641692 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\TreatAs","0.0000170","Desired Access: Query Value","5728"
"10:46:22.0642541 AM","firefox.exe","8864","CreateFile","C:\Windows\System\freebl3.dll","0.0000588","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","296"
"10:46:22.0642579 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000196","Query: Name","5728"
"10:46:22.0643829 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000196","Query: Name","5728"
"10:46:22.0644755 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000068","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0645809 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000277","Desired Access: Maximum Allowed","5728"
"10:46:22.0646837 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\(Default)","0.0000171","Length: 12","5728"
"10:46:22.0647763 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000196","Query: Name","5728"
"10:46:22.0648633 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000069","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0649649 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000269","Desired Access: Maximum Allowed","5728"
"10:46:22.0650626 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\(Default)","0.0000162","Type: REG_SZ, Length: 26, Data: TF_ThreadMgr","5728"
"10:46:22.0651573 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000188","Query: Name","5728"
"10:46:22.0652473 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000064","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0653271 AM","firefox.exe","8864","CreateFile","C:\Windows\freebl3.dll","0.0000653","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","296"
"10:46:22.0653463 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InprocServer32","0.0000265","Desired Access: Read","5728"
"10:46:22.0654423 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000073","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0655251 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InprocServer32","0.0000380","Desired Access: Read","5728"
"10:46:22.0656501 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000205","Query: Name","5728"
"10:46:22.0657440 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000068","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0658438 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000273","Desired Access: Maximum Allowed","5728"
"10:46:22.0659454 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32\InprocServer32","0.0000140","Length: 12","5728"
"10:46:22.0660320 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000192","Query: Name","5728"
"10:46:22.0661207 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000069","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0662193 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000269","Desired Access: Maximum Allowed","5728"
"10:46:22.0663178 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32\(Default)","0.0000154","Length: 12","5728"
"10:46:22.0664092 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000200","Query: Name","5728"
"10:46:22.0664202 AM","firefox.exe","8864","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000867","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:22.0665005 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000358","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0665551 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000162","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","296"
"10:46:22.0666012 AM","firefox.exe","8864","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000230","","296"
"10:46:22.0667257 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000372","Desired Access: Maximum Allowed","5728"
"10:46:22.0668678 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32\(Default)","0.0000201","Type: REG_EXPAND_SZ, Length: 64, Data: %Systemroot%\System32\msctf.dll","5728"
"10:46:22.0669894 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000248","Query: Name","5728"
"10:46:22.0670487 AM","firefox.exe","8864","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000542","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","296"
"10:46:22.0670982 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000064","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0671784 AM","firefox.exe","8864","CreateFileMapping","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000145","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","296"
"10:46:22.0672083 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000269","Desired Access: Maximum Allowed","5728"
"10:46:22.0673145 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32\(Default)","0.0000141","Type: REG_EXPAND_SZ, Length: 64, Data: %Systemroot%\System32\msctf.dll","5728"
"10:46:22.0674186 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000192","Query: Name","5728"
"10:46:22.0674754 AM","firefox.exe","8864","CreateFileMapping","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000119","SyncType: SyncTypeOther","296"
"10:46:22.0675074 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000064","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0676038 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000235","Desired Access: Maximum Allowed","5728"
"10:46:22.0676896 AM","firefox.exe","8864","Load Image","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000000","Image Base: 0x7ffb1de70000, Image Size: 0x95000","296"
"10:46:22.0676960 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32\ThreadingModel","0.0000141","Type: REG_SZ, Length: 20, Data: Apartment","5728"
"10:46:22.0678001 AM","firefox.exe","8864","QueryNameInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000205","Name: \Program Files\Firefox Nightly\freebl3.dll","296"
"10:46:22.0678078 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000089","","5728"
"10:46:22.0678914 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000196","Query: Name","5728"
"10:46:22.0679008 AM","firefox.exe","8864","QueryNameInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000124","Name: \Program Files\Firefox Nightly\freebl3.dll","296"
"10:46:22.0679793 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000064","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0680100 AM","firefox.exe","8864","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0104470","Offset: 565,760, Length: 512, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","296"
"10:46:22.0680714 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InprocHandler32","0.0000239","Desired Access: Query Value","5728"
"10:46:22.0681615 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000059","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0682425 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InprocHandler32","0.0000158","Desired Access: Query Value","5728"
"10:46:22.0683236 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000179","Query: Name","5728"
"10:46:22.0684055 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000056","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0684913 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InprocHandler","0.0000230","Desired Access: Query Value","5728"
"10:46:22.0685766 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000060","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0686504 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InprocHandler","0.0000150","Desired Access: Query Value","5728"
"10:46:22.0687516 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000059","","5728"
"10:46:22.0690208 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000183","Query: Name","5728"
"10:46:22.0691245 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000055","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0692021 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000056","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0692896 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000196","Desired Access: Read","5728"
"10:46:22.0693928 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000291","Desired Access: Read","5728"
"10:46:22.0695025 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000171","Query: Name","5728"
"10:46:22.0695925 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000056","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0696872 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\TreatAs","0.0000235","Desired Access: Query Value","5728"
"10:46:22.0697790 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000059","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0698579 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\TreatAs","0.0000149","Desired Access: Query Value","5728"
"10:46:22.0699394 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000158","Query: Name","5728"
"10:46:22.0700333 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000162","Query: Name","5728"
"10:46:22.0701177 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000056","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0702091 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000217","Desired Access: Maximum Allowed","5728"
"10:46:22.0702995 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\(Default)","0.0000141","Length: 12","5728"
"10:46:22.0703844 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000162","Query: Name","5728"
"10:46:22.0704676 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000064","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0705581 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000209","Desired Access: Maximum Allowed","5728"
"10:46:22.0706455 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\(Default)","0.0000133","Type: REG_SZ, Length: 26, Data: TF_ThreadMgr","5728"
"10:46:22.0707309 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000162","Query: Name","5728"
"10:46:22.0708145 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000060","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0709028 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InprocServer32","0.0000218","Desired Access: Read","5728"
"10:46:22.0709911 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000064","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0710705 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InprocServer32","0.0000243","Desired Access: Read","5728"
"10:46:22.0711725 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000196","Query: Name","5728"
"10:46:22.0712646 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000064","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0713572 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000226","Desired Access: Maximum Allowed","5728"
"10:46:22.0714494 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32\InprocServer32","0.0000128","Length: 12","5728"
"10:46:22.0715326 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000166","Query: Name","5728"
"10:46:22.0716188 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000055","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0717075 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000205","Desired Access: Maximum Allowed","5728"
"10:46:22.0717950 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32\(Default)","0.0000115","Length: 12","5728"
"10:46:22.0718773 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000171","Query: Name","5728"
"10:46:22.0719639 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000060","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0720548 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000209","Desired Access: Maximum Allowed","5728"
"10:46:22.0721436 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32\(Default)","0.0000136","Type: REG_EXPAND_SZ, Length: 64, Data: %Systemroot%\System32\msctf.dll","5728"
"10:46:22.0722344 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000163","Query: Name","5728"
"10:46:22.0723206 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000056","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0724102 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000214","Desired Access: Maximum Allowed","5728"
"10:46:22.0724960 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32\(Default)","0.0000124","Type: REG_EXPAND_SZ, Length: 64, Data: %Systemroot%\System32\msctf.dll","5728"
"10:46:22.0725843 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000158","Query: Name","5728"
"10:46:22.0726684 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000055","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0727580 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000204","Desired Access: Maximum Allowed","5728"
"10:46:22.0728463 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32\ThreadingModel","0.0000132","Type: REG_SZ, Length: 20, Data: Apartment","5728"
"10:46:22.0729436 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InProcServer32","0.0000068","","5728"
"10:46:22.0730216 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000163","Query: Name","5728"
"10:46:22.0731083 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000064","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0731983 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InprocHandler32","0.0000213","Desired Access: Query Value","5728"
"10:46:22.0732866 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000060","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0733664 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InprocHandler32","0.0000149","Desired Access: Query Value","5728"
"10:46:22.0734509 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000153","Query: Name","5728"
"10:46:22.0735345 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000055","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0736228 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InprocHandler","0.0000209","Desired Access: Query Value","5728"
"10:46:22.0737111 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000056","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0737888 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\InprocHandler","0.0000149","Desired Access: Query Value","5728"
"10:46:22.0738733 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000158","Query: Name","5728"
"10:46:22.0739569 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000060","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0740444 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\LocalServer32","0.0000209","Desired Access: Read","5728"
"10:46:22.0741323 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000055","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0742095 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\LocalServer32","0.0000141","Desired Access: Read","5728"
"10:46:22.0742931 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000162","Query: Name","5728"
"10:46:22.0743755 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000059","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0744646 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000209","Desired Access: Maximum Allowed","5728"
"10:46:22.0745530 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\AppID","0.0000115","Length: 112","5728"
"10:46:22.0746332 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000153","Query: Name","5728"
"10:46:22.0747176 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000052","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0748060 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\LocalServer","0.0000209","Desired Access: Query Value","5728"
"10:46:22.0748943 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000060","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0749694 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\LocalServer","0.0000145","Desired Access: Query Value","5728"
"10:46:22.0750526 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000145","Query: Name","5728"
"10:46:22.0751396 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000051","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0752075 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000059","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0752881 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000179","Desired Access: Read","5728"
"10:46:22.0753875 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000252","Desired Access: Read","5728"
"10:46:22.0754903 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000167","Query: Name","5728"
"10:46:22.0755812 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000060","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0756738 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\Elevation","0.0000222","Desired Access: Read","5728"
"10:46:22.0757647 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000064","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0758483 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\Elevation","0.0000149","Desired Access: Read","5728"
"10:46:22.0759452 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000064","","5728"
"10:46:22.0760356 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000060","","5728"
"10:46:22.0761316 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000150","Query: Name","5728"
"10:46:22.0762195 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000056","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0762912 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000055","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0763710 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000175","Desired Access: Read","5728"
"10:46:22.0764657 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000235","Desired Access: Read","5728"
"10:46:22.0765647 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000162","Query: Name","5728"
"10:46:22.0766496 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000060","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0767383 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\TreatAs","0.0000231","Desired Access: Read","5728"
"10:46:22.0768275 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000056","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0769047 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}\TreatAs","0.0000145","Desired Access: Read","5728"
"10:46:22.0769960 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{529A9E6B-6587-4F23-AB9E-9C7D683E3C50}","0.0000060","","5728"
"10:46:22.0773724 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000072","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0774598 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\CTF\Compatibility\firefox.exe","0.0000261","Desired Access: Read","5728"
"10:46:22.0782880 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000085","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.0783733 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\CTF\Compatibility\firefox.exe","0.0000243","Desired Access: Read","5728"
"10:46:22.0786280 AM","firefox.exe","8864","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0005590","Offset: 571,904, Length: 512, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","296"
"10:46:22.0793222 AM","firefox.exe","8864","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0004579","Offset: 572,416, Length: 1,024, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","296"
"10:46:22.0799639 AM","firefox.exe","8864","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000291","","296"
"10:46:22.0800902 AM","firefox.exe","8864","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0008538","Offset: 566,272, Length: 5,632, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","296"
"10:46:22.0810050 AM","firefox.exe","8864","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0407681","Offset: 455,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","296"
"10:46:22.1079017 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 7276","5728"
"10:46:22.1085869 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\Tablet PC\","0.0000235","Desired Access: Read","5728"
"10:46:22.1086458 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\Tablet PC\IsTabletPC","0.0000060","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:22.1086816 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\Tablet PC","0.0000030","","5728"
"10:46:22.1088587 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.1088890 AM","firefox.exe","7384","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows\DWM","0.0000090","Desired Access: Query Value","5728"
"10:46:22.1089223 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\DWM\AccentColor","0.0000055","Type: REG_DWORD, Length: 4, Data: 4292311040","5728"
"10:46:22.1089530 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\DWM","0.0000021","","5728"
"10:46:22.1089799 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.1090033 AM","firefox.exe","7384","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows\DWM","0.0000052","Desired Access: Query Value","5728"
"10:46:22.1090281 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\DWM\AccentColor","0.0000043","Type: REG_DWORD, Length: 4, Data: 4292311040","5728"
"10:46:22.1090537 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\DWM","0.0000017","","5728"
"10:46:22.1091949 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000021","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.1092180 AM","firefox.exe","7384","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Themes\Personalize","0.0000081","Desired Access: Query Value","5728"
"10:46:22.1092495 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Themes\Personalize\AppsUseLightTheme","0.0000043","Length: 16","5728"
"10:46:22.1092747 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Themes\Personalize","0.0000021","","5728"
"10:46:22.1127708 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\Tablet PC\","0.0000286","Desired Access: Read","5728"
"10:46:22.1128809 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\Tablet PC\IsTabletPC","0.0000124","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:22.1129637 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\Tablet PC","0.0000047","","5728"
"10:46:22.1218494 AM","firefox.exe","8864","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0109313","Offset: 431,104, Length: 32,256, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","296"
"10:46:22.1331706 AM","firefox.exe","8864","RegCloseKey","HKLM","0.0000090","","296"
"10:46:22.1332530 AM","firefox.exe","8864","RegOpenKey","HKLM","0.0000239","Desired Access: Maximum Allowed, Granted Access: Read","296"
"10:46:22.1333281 AM","firefox.exe","8864","RegCloseKey","HKLM","0.0000047","","296"
"10:46:22.1333793 AM","firefox.exe","8864","RegOpenKey","HKU","0.0000128","Desired Access: Maximum Allowed, Granted Access: Read","296"
"10:46:22.1334484 AM","firefox.exe","8864","RegCloseKey","HKU","0.0000094","","296"
"10:46:22.1335644 AM","firefox.exe","8864","RegCloseKey","HKCU","0.0000077","","296"
"10:46:22.1338179 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\CustomLocale","0.0000226","Desired Access: Read","296"
"10:46:22.1338704 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\CustomLocale","0.0000234","Desired Access: Read","296"
"10:46:22.1339339 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\CustomLocale\en-US","0.0000098","Length: 532","296"
"10:46:22.1339749 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Control\Nls\CustomLocale","0.0000047","","296"
"10:46:22.1340129 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\ExtendedLocale","0.0000123","Desired Access: Read","296"
"10:46:22.1340496 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\ExtendedLocale","0.0000281","Desired Access: Read","296"
"10:46:22.1341131 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\ExtendedLocale\en-US","0.0000081","Length: 532","296"
"10:46:22.1341481 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Control\Nls\ExtendedLocale","0.0000056","","296"
"10:46:22.1430360 AM","firefox.exe","8864","Thread Create","","0.0000000","Thread ID: 5984","296"
"10:46:22.1431226 AM","firefox.exe","8864","Thread Create","","0.0000000","Thread ID: 8348","296"
"10:46:22.1436240 AM","firefox.exe","7384","RegOpenKey","HKLM","0.0000106","Desired Access: Maximum Allowed, Granted Access: Read","5728"
"10:46:22.1436752 AM","firefox.exe","7384","RegOpenKey","HKLM\System\Setup","0.0000089","Desired Access: Read","5728"
"10:46:22.1437046 AM","firefox.exe","8864","Thread Create","","0.0000000","Thread ID: 3780","296"
"10:46:22.1437230 AM","firefox.exe","7384","RegCloseKey","HKLM","0.0000038","","5728"
"10:46:22.1437656 AM","firefox.exe","7384","RegQueryValue","HKLM\SYSTEM\Setup\SystemSetupInProgress","0.0000103","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:22.1438138 AM","firefox.exe","7384","RegCloseKey","HKLM\SYSTEM\Setup","0.0000030","","5728"
"10:46:22.1452594 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\mswsock.dll","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1453336 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000064","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","3780"
"10:46:22.1453541 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\mswsock.dll","0.0000094","","3780"
"10:46:22.1453789 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.1454800 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000068","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","5728"
"10:46:22.1455175 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000103","","5728"
"10:46:22.1455760 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\mswsock.dll","0.0000234","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1456984 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000077","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","3780"
"10:46:22.1457505 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000030","SyncType: SyncTypeOther","3780"
"10:46:22.1457757 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000238","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.1458234 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\mswsock.dll","0.0000069","Name: \Windows\System32\mswsock.dll","3780"
"10:46:22.1458525 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\devobj.dll","0.0000093","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:22.1458635 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\mswsock.dll","0.0000052","Name: \Windows\System32\mswsock.dll","3780"
"10:46:22.1458951 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\mswsock.dll","0.0000094","","3780"
"10:46:22.1459177 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\devobj.dll","0.0000030","SyncType: SyncTypeOther","5728"
"10:46:22.1460129 AM","firefox.exe","8864","RegOpenKey","HKLM\SOFTWARE\Policies\Microsoft\WindowsStore","0.0000132","Desired Access: Read","3780"
"10:46:22.1460479 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000140","Desired Access: Read","3780"
"10:46:22.1460961 AM","firefox.exe","7384","Load Image","C:\Windows\System32\devobj.dll","0.0000000","Image Base: 0x7ffb458a0000, Image Size: 0x27000","5728"
"10:46:22.1461537 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\devobj.dll","0.0000106","Name: \Windows\System32\devobj.dll","5728"
"10:46:22.1462347 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000269","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1462902 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","3780"
"10:46:22.1463124 AM","firefox.exe","8864","QueryStandardInformationFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000055","AllocationSize: 12,288, EndOfFile: 11,776, NumberOfLinks: 4, DeletePending: False, Directory: False","3780"
"10:46:22.1463444 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000145","","5728"
"10:46:22.1463495 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000026","SyncType: SyncTypeOther","3780"
"10:46:22.1464267 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000099","","3780"
"10:46:22.1466985 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}","0.0000162","Desired Access: All Access","5728"
"10:46:22.1467638 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}\Properties","0.0000051","Desired Access: Query Value","5728"
"10:46:22.1468688 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}","0.0000034","","5728"
"10:46:22.1468820 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\mswsock.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1469375 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000055","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","3780"
"10:46:22.1469541 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\mswsock.dll","0.0000077","","3780"
"10:46:22.1469643 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}","0.0000060","Desired Access: Query Value","5728"
"10:46:22.1470023 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}\Properties","0.0000047","Desired Access: Query Value","5728"
"10:46:22.1470382 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}","0.0000021","","5728"
"10:46:22.1471320 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\mswsock.dll","0.0000218","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1471977 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000060","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","3780"
"10:46:22.1472447 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000034","SyncType: SyncTypeOther","3780"
"10:46:22.1473206 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\mswsock.dll","0.0000090","Name: \Windows\System32\mswsock.dll","3780"
"10:46:22.1473740 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\mswsock.dll","0.0000076","Name: \Windows\System32\mswsock.dll","3780"
"10:46:22.1474162 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\mswsock.dll","0.0000128","","3780"
"10:46:22.1474572 AM","firefox.exe","7384","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000200","Desired Access: Read, Maximum Allowed","5728"
"10:46:22.1475276 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000183","Desired Access: Read","3780"
"10:46:22.1475305 AM","firefox.exe","7384","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000094","Type: REG_DWORD, Length: 4, Data: 3","5728"
"10:46:22.1475907 AM","firefox.exe","7384","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000038","","5728"
"10:46:22.1476479 AM","firefox.exe","7384","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000094","Desired Access: Read","5728"
"10:46:22.1476999 AM","firefox.exe","7384","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000081","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","5728"
"10:46:22.1477575 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000137","Desired Access: Read","5728"
"10:46:22.1477921 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000367","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1478092 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000145","Desired Access: Read","5728"
"10:46:22.1478621 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000068","Desired Access: Read","5728"
"10:46:22.1478719 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000059","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","3780"
"10:46:22.1479069 AM","firefox.exe","8864","QueryStandardInformationFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000209","AllocationSize: 12,288, EndOfFile: 11,776, NumberOfLinks: 4, DeletePending: False, Directory: False","3780"
"10:46:22.1479141 AM","firefox.exe","7384","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000060","","5728"
"10:46:22.1479474 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000136","Length: 52","5728"
"10:46:22.1479862 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000064","","5728"
"10:46:22.1480255 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000077","SyncType: SyncTypeOther","3780"
"10:46:22.1480387 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000171","Desired Access: Query Value, Maximum Allowed","5728"
"10:46:22.1480848 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000047","Length: 268","5728"
"10:46:22.1481151 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000017","","5728"
"10:46:22.1481505 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000051","Desired Access: Query Value, Maximum Allowed","5728"
"10:46:22.1481629 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000294","","3780"
"10:46:22.1481795 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000166","Type: REG_MULTI_SZ, Length: 292, Data: PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02, PCI\VEN_8086&DEV_5916&SUBSYS_10941025, PCI\VEN_8086&DEV_5916&CC_030000, PCI\VEN_8086&DEV_5916&CC_0300","5728"
"10:46:22.1482358 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000030","","5728"
"10:46:22.1482798 AM","firefox.exe","7384","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000085","Desired Access: Read","5728"
"10:46:22.1483241 AM","firefox.exe","7384","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000073","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","5728"
"10:46:22.1483677 AM","firefox.exe","7384","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000021","","5728"
"10:46:22.1488263 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\mswsock.dll","0.0000350","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1489053 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000072","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","3780"
"10:46:22.1489343 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\mswsock.dll","0.0000123","","3780"
"10:46:22.1489761 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000094","Desired Access: Query Value, Maximum Allowed","5728"
"10:46:22.1490414 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\Driver","0.0000089","Type: REG_SZ, Length: 88, Data: {4d36e968-e325-11ce-bfc1-08002be10318}\0001","5728"
"10:46:22.1491015 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000039","","5728"
"10:46:22.1491570 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000060","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.1492048 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000115","Desired Access: Query Value","5728"
"10:46:22.1492351 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\mswsock.dll","0.0000358","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1492500 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000124","Desired Access: Query Value","5728"
"10:46:22.1492982 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\DriverVersion","0.0000145","Type: REG_SZ, Length: 28, Data: 23.20.16.5038","5728"
"10:46:22.1493396 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000068","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","3780"
"10:46:22.1493494 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\DriverDate","0.0000137","Type: REG_SZ, Length: 20, Data: 4-18-2018","5728"
"10:46:22.1494023 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000043","SyncType: SyncTypeOther","3780"
"10:46:22.1494032 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000030","","5728"
"10:46:22.1494945 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\mswsock.dll","0.0000098","Name: \Windows\System32\mswsock.dll","3780"
"10:46:22.1495529 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}","0.0000180","Desired Access: All Access","5728"
"10:46:22.1495546 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\mswsock.dll","0.0000082","Name: \Windows\System32\mswsock.dll","3780"
"10:46:22.1496037 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\mswsock.dll","0.0000145","","3780"
"10:46:22.1496349 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}\Properties","0.0000068","Desired Access: Query Value","5728"
"10:46:22.1497172 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000192","Desired Access: Read","3780"
"10:46:22.1497368 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}","0.0000030","","5728"
"10:46:22.1498273 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}","0.0000085","Desired Access: Query Value","5728"
"10:46:22.1498840 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}\Properties","0.0000077","Desired Access: Query Value","5728"
"10:46:22.1499408 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}","0.0000106","","5728"
"10:46:22.1500090 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000389","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1500910 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000068","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","3780"
"10:46:22.1501136 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Enum\ROOT\BASICRENDER\0000","0.0000222","Desired Access: Query Value, Maximum Allowed","5728"
"10:46:22.1501272 AM","firefox.exe","8864","QueryStandardInformationFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000077","AllocationSize: 12,288, EndOfFile: 11,776, NumberOfLinks: 4, DeletePending: False, Directory: False","3780"
"10:46:22.1501861 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Enum\ROOT\BasicRender\0000\Driver","0.0000081","Type: REG_SZ, Length: 88, Data: {4d36e97d-e325-11ce-bfc1-08002be10318}\0039","5728"
"10:46:22.1501882 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000043","SyncType: SyncTypeOther","3780"
"10:46:22.1502377 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Enum\ROOT\BasicRender\0000","0.0000026","","5728"
"10:46:22.1502749 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.1503030 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000077","Desired Access: Query Value","5728"
"10:46:22.1503218 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000124","","3780"
"10:46:22.1503628 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000213","Desired Access: Query Value","5728"
"10:46:22.1504238 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039\MatchingDeviceId","0.0000076","Type: REG_SZ, Length: 34, Data: ROOT\BasicRender","5728"
"10:46:22.1504835 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.1505236 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000124","Desired Access: Query Value","5728"
"10:46:22.1505684 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000115","Desired Access: Query Value","5728"
"10:46:22.1506149 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039\InstalledDisplayDrivers","0.0000064","Length: 144","5728"
"10:46:22.1506648 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000030","","5728"
"10:46:22.1507007 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000030","","5728"
"10:46:22.1507331 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\mswsock.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1507775 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000085","Desired Access: Query Value, Maximum Allowed","5728"
"10:46:22.1507967 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000077","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","3780"
"10:46:22.1508201 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\mswsock.dll","0.0000120","","3780"
"10:46:22.1508351 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\Driver","0.0000077","Type: REG_SZ, Length: 88, Data: {4d36e968-e325-11ce-bfc1-08002be10318}\0001","5728"
"10:46:22.1508846 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000030","","5728"
"10:46:22.1509302 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.1509669 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000094","Desired Access: Query Value","5728"
"10:46:22.1510053 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\mswsock.dll","0.0000324","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1510185 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000252","Desired Access: Query Value","5728"
"10:46:22.1511009 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000064","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","3780"
"10:46:22.1511043 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\MatchingDeviceId","0.0000158","Type: REG_SZ, Length: 76, Data: pci\ven_8086&dev_5916&subsys_10941025","5728"
"10:46:22.1511628 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000038","SyncType: SyncTypeOther","3780"
"10:46:22.1511768 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000030","","5728"
"10:46:22.1512532 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\mswsock.dll","0.0000098","Name: \Windows\System32\mswsock.dll","3780"
"10:46:22.1512929 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000038","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.1513129 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\mswsock.dll","0.0000073","Name: \Windows\System32\mswsock.dll","3780"
"10:46:22.1513420 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000115","Desired Access: Query Value","5728"
"10:46:22.1513560 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\mswsock.dll","0.0000128","","3780"
"10:46:22.1513927 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000111","Desired Access: Query Value","5728"
"10:46:22.1514397 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000081","Desired Access: Query Value","5728"
"10:46:22.1514614 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000188","Desired Access: Read","3780"
"10:46:22.1514853 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\InstalledDisplayDrivers","0.0000068","Length: 144","5728"
"10:46:22.1515254 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\InstalledDisplayDrivers","0.0000068","Type: REG_MULTI_SZ, Length: 186, Data: igdumdim64, igd10iumd64, igd10iumd64, igd12umd64, igdumdim32, igd10iumd32, igd10iumd32, igd12umd32","5728"
"10:46:22.1515749 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000034","","5728"
"10:46:22.1517191 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000282","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1517806 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","3780"
"10:46:22.1518040 AM","firefox.exe","8864","QueryStandardInformationFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000052","AllocationSize: 12,288, EndOfFile: 11,776, NumberOfLinks: 4, DeletePending: False, Directory: False","3780"
"10:46:22.1518407 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000030","SyncType: SyncTypeOther","3780"
"10:46:22.1519171 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000098","","3780"
"10:46:22.1522422 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\igd10iumd64.dll","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.1524176 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\mswsock.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1524726 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000064","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","3780"
"10:46:22.1524940 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\mswsock.dll","0.0000076","","3780"
"10:46:22.1525900 AM","firefox.exe","7384","CreateFile","C:\Windows\System\igd10iumd64.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.1526804 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\mswsock.dll","0.0000393","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1527662 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","3780"
"10:46:22.1528169 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000035","SyncType: SyncTypeOther","3780"
"10:46:22.1528822 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\mswsock.dll","0.0000069","Name: \Windows\System32\mswsock.dll","3780"
"10:46:22.1529309 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\mswsock.dll","0.0000047","Name: \Windows\System32\mswsock.dll","3780"
"10:46:22.1529595 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\mswsock.dll","0.0000093","","3780"
"10:46:22.1529616 AM","firefox.exe","7384","CreateFile","C:\Windows\igd10iumd64.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.1530337 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000149","Desired Access: Read","3780"
"10:46:22.1532206 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000256","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1532735 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","3780"
"10:46:22.1532833 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\igd10iumd64.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.1532957 AM","firefox.exe","8864","QueryStandardInformationFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000064","AllocationSize: 12,288, EndOfFile: 11,776, NumberOfLinks: 4, DeletePending: False, Directory: False","3780"
"10:46:22.1533302 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000030","SyncType: SyncTypeOther","3780"
"10:46:22.1534032 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000094","","3780"
"10:46:22.1535896 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\igd10iumd64.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.1537769 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\mswsock.dll","0.0000342","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1538550 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000073","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","3780"
"10:46:22.1538823 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\mswsock.dll","0.0000111","","3780"
"10:46:22.1539711 AM","firefox.exe","7384","CreateFile","C:\Program Files (x86)\Intel\iCLS Client\igd10iumd64.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.1541341 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\mswsock.dll","0.0000290","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1542262 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000064","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","3780"
"10:46:22.1542907 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000046","SyncType: SyncTypeOther","3780"
"10:46:22.1543854 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\mswsock.dll","0.0000085","Name: \Windows\System32\mswsock.dll","3780"
"10:46:22.1544293 AM","firefox.exe","7384","CreateFile","C:\Program Files\Intel\iCLS Client\igd10iumd64.dll","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.1544434 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\mswsock.dll","0.0000068","Name: \Windows\System32\mswsock.dll","3780"
"10:46:22.1544856 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\mswsock.dll","0.0000120","","3780"
"10:46:22.1545910 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000179","Desired Access: Read","3780"
"10:46:22.1548201 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000807","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1549537 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000132","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","3780"
"10:46:22.1549989 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\igd10iumd64.dll","0.0000393","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.1550040 AM","firefox.exe","8864","QueryStandardInformationFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000099","AllocationSize: 12,288, EndOfFile: 11,776, NumberOfLinks: 4, DeletePending: False, Directory: False","3780"
"10:46:22.1550633 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000039","SyncType: SyncTypeOther","3780"
"10:46:22.1551534 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000132","","3780"
"10:46:22.1555566 AM","firefox.exe","7384","CreateFile","C:\Windows\igd10iumd64.dll","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.1555758 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\wshqos.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1556398 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\wshqos.dll","0.0000051","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:11:07 PM, FileAttributes: A","3780"
"10:46:22.1556568 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\wshqos.dll","0.0000081","","3780"
"10:46:22.1558484 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\wshqos.dll","0.0000316","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1559414 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000060","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","3780"
"10:46:22.1560370 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000051","SyncType: SyncTypeOther","3780"
"10:46:22.1561155 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\igd10iumd64.dll","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.1561368 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\wshqos.dll","0.0000090","Name: \Windows\System32\wshqos.dll","3780"
"10:46:22.1561855 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\wshqos.dll","0.0000077","Name: \Windows\System32\wshqos.dll","3780"
"10:46:22.1562281 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\wshqos.dll","0.0000120","","3780"
"10:46:22.1563348 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000201","Desired Access: Read","3780"
"10:46:22.1565720 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000453","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1566092 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WindowsPowerShell\v1.0\igd10iumd64.dll","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.1566578 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000064","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","3780"
"10:46:22.1566915 AM","firefox.exe","8864","QueryStandardInformationFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000073","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","3780"
"10:46:22.1567491 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000047","SyncType: SyncTypeOther","3780"
"10:46:22.1568647 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000128","","3780"
"10:46:22.1571126 AM","firefox.exe","7384","CreateFile","C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\igd10iumd64.dll","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.1574181 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\wshqos.dll","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1574629 AM","firefox.exe","7384","CreateFile","C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\igd10iumd64.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.1574834 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\wshqos.dll","0.0000060","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:11:07 PM, FileAttributes: A","3780"
"10:46:22.1575035 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\wshqos.dll","0.0000089","","3780"
"10:46:22.1577053 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\wshqos.dll","0.0000222","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1577723 AM","firefox.exe","7384","CreateFile","C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\igd10iumd64.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.1577791 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","3780"
"10:46:22.1578516 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000034","SyncType: SyncTypeOther","3780"
"10:46:22.1579254 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\wshqos.dll","0.0000073","Name: \Windows\System32\wshqos.dll","3780"
"10:46:22.1579626 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\wshqos.dll","0.0000046","Name: \Windows\System32\wshqos.dll","3780"
"10:46:22.1579928 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\wshqos.dll","0.0000094","","3780"
"10:46:22.1580675 AM","firefox.exe","7384","CreateFile","C:\Program Files\Intel\Intel(R) Management Engine Components\IPT\igd10iumd64.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.1580735 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000158","Desired Access: Read","3780"
"10:46:22.1582698 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000273","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1583261 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","3780"
"10:46:22.1583483 AM","firefox.exe","8864","QueryStandardInformationFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000051","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","3780"
"10:46:22.1583832 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000026","SyncType: SyncTypeOther","3780"
"10:46:22.1584622 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000102","","3780"
"10:46:22.1585228 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OpenSSH\igd10iumd64.dll","0.0000844","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.1588295 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\wshqos.dll","0.0000227","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1588799 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\wshqos.dll","0.0000051","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:11:07 PM, FileAttributes: A","3780"
"10:46:22.1588991 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\wshqos.dll","0.0000072","","3780"
"10:46:22.1590429 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\WindowsApps\igd10iumd64.dll","0.0000840","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.1590783 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\wshqos.dll","0.0000213","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1591419 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","3780"
"10:46:22.1591935 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000038","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.1592037 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000030","SyncType: SyncTypeOther","3780"
"10:46:22.1592272 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000098","Desired Access: Query Value","5728"
"10:46:22.1592605 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000098","Desired Access: Query Value","5728"
"10:46:22.1592831 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\wshqos.dll","0.0000098","Name: \Windows\System32\wshqos.dll","3780"
"10:46:22.1592955 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000064","Desired Access: Query Value","5728"
"10:46:22.1593258 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\wshqos.dll","0.0000051","Name: \Windows\System32\wshqos.dll","3780"
"10:46:22.1593287 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\UserModeDriverName","0.0000064","Length: 12","5728"
"10:46:22.1593565 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\wshqos.dll","0.0000098","","3780"
"10:46:22.1593629 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000025","","5728"
"10:46:22.1593906 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000043","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.1594294 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000111","Desired Access: Query Value","5728"
"10:46:22.1594375 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000180","Desired Access: Read","3780"
"10:46:22.1594738 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000090","Desired Access: Query Value","5728"
"10:46:22.1595020 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000051","Desired Access: Query Value","5728"
"10:46:22.1595293 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\UserModeDriverName","0.0000047","Length: 144","5728"
"10:46:22.1595536 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\UserModeDriverName","0.0000055","Type: REG_MULTI_SZ, Length: 782, Data: C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igdumdim64.dll, C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll, C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll, C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd12umd64.dll","5728"
"10:46:22.1595852 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000021","","5728"
"10:46:22.1596167 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.1596389 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000064","Desired Access: Query Value","5728"
"10:46:22.1596628 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000056","Desired Access: Query Value","5728"
"10:46:22.1596850 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000043","Desired Access: Query Value","5728"
"10:46:22.1596948 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000346","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1597098 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\UserModeDriverNameWow","0.0000042","Length: 12","5728"
"10:46:22.1597349 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000017","","5728"
"10:46:22.1597567 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.1597708 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000059","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","3780"
"10:46:22.1597895 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000081","Desired Access: Query Value","5728"
"10:46:22.1598143 AM","firefox.exe","8864","QueryStandardInformationFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000077","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","3780"
"10:46:22.1598186 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000064","Desired Access: Query Value","5728"
"10:46:22.1598424 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000056","Desired Access: Query Value","5728"
"10:46:22.1598693 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\UserModeDriverNameWow","0.0000047","Length: 144","5728"
"10:46:22.1598719 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000038","SyncType: SyncTypeOther","3780"
"10:46:22.1598941 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\UserModeDriverNameWow","0.0000077","Type: REG_MULTI_SZ, Length: 782, Data: C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igdumdim32.dll, C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd32.dll, C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd32.dll, C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd12umd32.dll","5728"
"10:46:22.1599252 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000017","","5728"
"10:46:22.1599585 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000111","","3780"
"10:46:22.1603280 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.1603340 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\wshqos.dll","0.0000251","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1603813 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000060","CreationTime: 5/9/2018 4:39:34 AM, LastAccessTime: 3/20/2019 7:14:15 PM, LastWriteTime: 5/9/2018 4:39:34 AM, ChangeTime: 3/20/2019 7:51:25 PM, FileAttributes: A","5728"
"10:46:22.1603882 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\wshqos.dll","0.0000055","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:11:07 PM, FileAttributes: A","3780"
"10:46:22.1604052 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\wshqos.dll","0.0000081","","3780"
"10:46:22.1604103 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000090","","5728"
"10:46:22.1605874 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\wshqos.dll","0.0000218","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1606352 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000239","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.1606518 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","3780"
"10:46:22.1606996 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:22.1607175 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000035","SyncType: SyncTypeOther","3780"
"10:46:22.1607530 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000029","SyncType: SyncTypeOther","5728"
"10:46:22.1607845 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\wshqos.dll","0.0000069","Name: \Windows\System32\wshqos.dll","3780"
"10:46:22.1608165 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\wshqos.dll","0.0000047","Name: \Windows\System32\wshqos.dll","3780"
"10:46:22.1608438 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\wshqos.dll","0.0000090","","3780"
"10:46:22.1609168 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000145","Desired Access: Read","3780"
"10:46:22.1610456 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000077","Name: \Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","5728"
"10:46:22.1610951 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000099","","5728"
"10:46:22.1610960 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000252","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1611480 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","3780"
"10:46:22.1611685 AM","firefox.exe","8864","QueryStandardInformationFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000047","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","3780"
"10:46:22.1612010 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000025","SyncType: SyncTypeOther","3780"
"10:46:22.1612735 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000094","","3780"
"10:46:22.1614011 AM","firefox.exe","8864","RegOpenKey","HKLM","0.0000102","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1614326 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1614518 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000073","Desired Access: All Access","3780"
"10:46:22.1614723 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000644","Desired Access: All Access","3780"
"10:46:22.1614992 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000055","Information: Owner","3780"
"10:46:22.1615197 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000021","Information: Owner","3780"
"10:46:22.1615589 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.1615640 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1615862 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000060","Desired Access: Read","3780"
"10:46:22.1616046 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000085","Desired Access: Read","3780"
"10:46:22.1616088 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000052","CreationTime: 5/9/2018 4:39:34 AM, LastAccessTime: 3/20/2019 7:14:15 PM, LastWriteTime: 5/9/2018 4:39:34 AM, ChangeTime: 3/20/2019 7:51:25 PM, FileAttributes: A","5728"
"10:46:22.1616357 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000081","","5728"
"10:46:22.1616374 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000060","Length: 16","3780"
"10:46:22.1616575 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000043","Type: REG_SZ, Length: 8, Data: 2.0","3780"
"10:46:22.1616852 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000043","Length: 44","3780"
"10:46:22.1617006 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000042","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","3780"
"10:46:22.1617287 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Versions\000602xx","0.0000052","Type: REG_SZ, Length: 26, Data: kernel32.dll","3780"
"10:46:22.1618427 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000217","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.1618998 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:22.1619480 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000026","SyncType: SyncTypeOther","5728"
"10:46:22.1620069 AM","firefox.exe","8864","CreateFile","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000295","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","3780"
"10:46:22.1620842 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000068","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","3780"
"10:46:22.1621174 AM","firefox.exe","8864","QueryStandardInformationFile","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000073","AllocationSize: 3,371,008, EndOfFile: 3,368,788, NumberOfLinks: 2, DeletePending: False, Directory: False","3780"
"10:46:22.1621729 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000043","SyncType: SyncTypeOther","3780"
"10:46:22.1622698 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000089","Name: \Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","5728"
"10:46:22.1623005 AM","firefox.exe","8864","CloseFile","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000128","","3780"
"10:46:22.1623188 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000103","","5728"
"10:46:22.1624263 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Ids","0.0000107","Desired Access: Read","3780"
"10:46:22.1624575 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Ids","0.0000149","Desired Access: Read","3780"
"10:46:22.1624972 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Ids\en-US","0.0000119","Length: 90","3780"
"10:46:22.1625236 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Ids\en","0.0000068","Length: 90","3780"
"10:46:22.1625356 AM","firefox.exe","7384","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000098","Desired Access: Read, Maximum Allowed","5728"
"10:46:22.1625693 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000021","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1625744 AM","firefox.exe","7384","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000072","Type: REG_DWORD, Length: 4, Data: 3","5728"
"10:46:22.1625880 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000099","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1626115 AM","firefox.exe","7384","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000026","","5728"
"10:46:22.1626149 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000056","Type: REG_DWORD, Length: 4, Data: 8","3780"
"10:46:22.1626478 AM","firefox.exe","7384","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000064","Desired Access: Read","5728"
"10:46:22.1626776 AM","firefox.exe","7384","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000052","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","5728"
"10:46:22.1626840 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000047","Type: REG_DWORD, Length: 4, Data: 8","3780"
"10:46:22.1627062 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1627118 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000085","Desired Access: Read","5728"
"10:46:22.1627229 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000055","Desired Access: Read","3780"
"10:46:22.1627417 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000076","Desired Access: Read","5728"
"10:46:22.1627502 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000051","Type: REG_DWORD, Length: 4, Data: 1015","3780"
"10:46:22.1627698 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000043","Desired Access: Read","5728"
"10:46:22.1627758 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000060","Type: REG_DWORD, Length: 4, Data: 14","3780"
"10:46:22.1628048 AM","firefox.exe","7384","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000026","","5728"
"10:46:22.1628150 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000043","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1628406 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000167","Length: 52","5728"
"10:46:22.1628526 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000115","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1628965 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000030","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1628982 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000026","","5728"
"10:46:22.1629238 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000090","Desired Access: Read","3780"
"10:46:22.1629558 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000086","Desired Access: Query Value, Maximum Allowed","5728"
"10:46:22.1629597 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000060","Length: 144","3780"
"10:46:22.1629866 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000059","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1630023 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000056","Length: 268","5728"
"10:46:22.1630224 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000021","","3780"
"10:46:22.1630442 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000021","","5728"
"10:46:22.1630489 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000025","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1630740 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000077","Desired Access: Read","3780"
"10:46:22.1630924 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000068","Desired Access: Query Value, Maximum Allowed","5728"
"10:46:22.1631039 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000051","Length: 144","3780"
"10:46:22.1631282 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000051","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1631346 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000056","Type: REG_MULTI_SZ, Length: 292, Data: PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02, PCI\VEN_8086&DEV_5916&SUBSYS_10941025, PCI\VEN_8086&DEV_5916&CC_030000, PCI\VEN_8086&DEV_5916&CC_0300","5728"
"10:46:22.1631585 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000021","","3780"
"10:46:22.1631764 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000026","","5728"
"10:46:22.1631841 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000026","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1632080 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000077","Desired Access: Read","3780"
"10:46:22.1632187 AM","firefox.exe","7384","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000081","Desired Access: Read","5728"
"10:46:22.1632379 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000051","Length: 144","3780"
"10:46:22.1632601 AM","firefox.exe","7384","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000064","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","5728"
"10:46:22.1632613 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000060","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1632903 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000026","","3780"
"10:46:22.1633027 AM","firefox.exe","7384","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000022","","5728"
"10:46:22.1633445 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000026","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1633697 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000077","Desired Access: Read","3780"
"10:46:22.1633748 AM","firefox.exe","7384","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000069","Desired Access: Read, Maximum Allowed","5728"
"10:46:22.1634000 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000051","Length: 144","3780"
"10:46:22.1634137 AM","firefox.exe","7384","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000055","Type: REG_DWORD, Length: 4, Data: 3","5728"
"10:46:22.1634230 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000052","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1634516 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000022","","3780"
"10:46:22.1634550 AM","firefox.exe","7384","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000026","","5728"
"10:46:22.1634759 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1634998 AM","firefox.exe","7384","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000128","Desired Access: Read","5728"
"10:46:22.1635233 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000124","Desired Access: Read","3780"
"10:46:22.1635417 AM","firefox.exe","7384","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video1","0.0000055","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0001","5728"
"10:46:22.1635741 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0001","0.0000077","Desired Access: Read","5728"
"10:46:22.1635771 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000072","Length: 144","3780"
"10:46:22.1636027 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0001","0.0000094","Desired Access: Read","5728"
"10:46:22.1636061 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000094","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1636325 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000043","Desired Access: Read","5728"
"10:46:22.1636432 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000026","","3780"
"10:46:22.1636611 AM","firefox.exe","7384","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000022","","5728"
"10:46:22.1636658 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000026","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1636846 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000119","Length: 52","5728"
"10:46:22.1636893 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000183","Desired Access: Read","3780"
"10:46:22.1637209 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000025","","5728"
"10:46:22.1637311 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000051","Length: 144","3780"
"10:46:22.1637499 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1637558 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000052","Desired Access: Query Value, Maximum Allowed","5728"
"10:46:22.1637738 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000021","","3780"
"10:46:22.1637849 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000042","Length: 268","5728"
"10:46:22.1637921 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1638105 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000068","Desired Access: Read","3780"
"10:46:22.1638130 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000021","","5728"
"10:46:22.1638326 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000039","Length: 144","3780"
"10:46:22.1638454 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000052","Desired Access: Query Value, Maximum Allowed","5728"
"10:46:22.1638484 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1638689 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000038","","3780"
"10:46:22.1638740 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000069","Type: REG_MULTI_SZ, Length: 292, Data: PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02, PCI\VEN_8086&DEV_5916&SUBSYS_10941025, PCI\VEN_8086&DEV_5916&CC_030000, PCI\VEN_8086&DEV_5916&CC_0300","5728"
"10:46:22.1638877 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1639039 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000055","Desired Access: Read","3780"
"10:46:22.1639184 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000034","","5728"
"10:46:22.1639261 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000042","Length: 144","3780"
"10:46:22.1639427 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1639615 AM","firefox.exe","7384","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000124","Desired Access: Read","5728"
"10:46:22.1639705 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000064","","3780"
"10:46:22.1639939 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1640097 AM","firefox.exe","7384","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video1","0.0000060","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0001","5728"
"10:46:22.1640165 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000086","Desired Access: Read","3780"
"10:46:22.1640391 AM","firefox.exe","7384","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000022","","5728"
"10:46:22.1640473 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000051","Length: 144","3780"
"10:46:22.1640716 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000059","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1640733 AM","firefox.exe","7384","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000055","Desired Access: Read, Maximum Allowed","5728"
"10:46:22.1641002 AM","firefox.exe","7384","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000047","Type: REG_DWORD, Length: 4, Data: 3","5728"
"10:46:22.1641023 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000060","","3780"
"10:46:22.1641309 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000051","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1641369 AM","firefox.exe","7384","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000021","","5728"
"10:46:22.1641582 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000124","Desired Access: Read","3780"
"10:46:22.1641650 AM","firefox.exe","7384","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000068","Desired Access: Read","5728"
"10:46:22.1641927 AM","firefox.exe","7384","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video2","0.0000086","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0002","5728"
"10:46:22.1642043 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000059","Length: 144","3780"
"10:46:22.1642354 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000149","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1642410 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0002","0.0000102","Desired Access: Read","5728"
"10:46:22.1642721 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0002","0.0000098","Desired Access: Read","5728"
"10:46:22.1642768 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000047","","3780"
"10:46:22.1643020 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000051","Desired Access: Read","5728"
"10:46:22.1643033 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000046","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1643297 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000077","Desired Access: Read","3780"
"10:46:22.1643310 AM","firefox.exe","7384","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000025","","5728"
"10:46:22.1643545 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000102","Length: 52","5728"
"10:46:22.1643596 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000059","Length: 144","3780"
"10:46:22.1643852 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000068","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1643869 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000034","","5728"
"10:46:22.1644112 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000017","","3780"
"10:46:22.1644219 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000051","Desired Access: Query Value, Maximum Allowed","5728"
"10:46:22.1644317 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1644479 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000085","Desired Access: Read","3780"
"10:46:22.1644526 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000055","Length: 268","5728"
"10:46:22.1644709 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000039","Length: 144","3780"
"10:46:22.1644812 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000021","","5728"
"10:46:22.1644867 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1645055 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000017","","3780"
"10:46:22.1645119 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000051","Desired Access: Query Value, Maximum Allowed","5728"
"10:46:22.1645200 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1645349 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000090","Desired Access: Read","3780"
"10:46:22.1645392 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000064","Type: REG_MULTI_SZ, Length: 292, Data: PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02, PCI\VEN_8086&DEV_5916&SUBSYS_10941025, PCI\VEN_8086&DEV_5916&CC_030000, PCI\VEN_8086&DEV_5916&CC_0300","5728"
"10:46:22.1645584 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000038","Length: 144","3780"
"10:46:22.1645708 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000017","","5728"
"10:46:22.1645776 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1645964 AM","firefox.exe","7384","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000077","Desired Access: Read","5728"
"10:46:22.1646006 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000022","","3780"
"10:46:22.1646164 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1646245 AM","firefox.exe","7384","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video2","0.0000052","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0002","5728"
"10:46:22.1646318 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000051","Desired Access: Read","3780"
"10:46:22.1646506 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000038","Length: 144","3780"
"10:46:22.1646518 AM","firefox.exe","7384","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000022","","5728"
"10:46:22.1646663 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1646830 AM","firefox.exe","7384","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000055","Desired Access: Read, Maximum Allowed","5728"
"10:46:22.1646851 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000017","","3780"
"10:46:22.1647001 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","","3780"
"10:46:22.1647099 AM","firefox.exe","7384","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000051","Type: REG_DWORD, Length: 4, Data: 3","5728"
"10:46:22.1647350 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000039","","3780"
"10:46:22.1647372 AM","firefox.exe","7384","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000021","","5728"
"10:46:22.1647547 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","","3780"
"10:46:22.1647931 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.1648157 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1648195 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Cisco Systems\VPN Client","0.0000086","Desired Access: Query Value","5728"
"10:46:22.1648327 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000077","Desired Access: All Access","3780"
"10:46:22.1648537 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000648","Desired Access: All Access","3780"
"10:46:22.1648861 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000081","Information: Owner","3780"
"10:46:22.1649113 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000025","Information: Owner","3780"
"10:46:22.1649407 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1649573 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000056","Desired Access: Read","3780"
"10:46:22.1649744 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000073","Desired Access: Read","3780"
"10:46:22.1649996 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000064","Length: 16","3780"
"10:46:22.1650213 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000034","Type: REG_SZ, Length: 8, Data: 2.0","3780"
"10:46:22.1650422 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000039","Length: 44","3780"
"10:46:22.1650572 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000034","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","3780"
"10:46:22.1650777 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1650926 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000072","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1651135 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000043","Type: REG_DWORD, Length: 4, Data: 8","3780"
"10:46:22.1651732 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000039","Type: REG_DWORD, Length: 4, Data: 8","3780"
"10:46:22.1651916 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1652065 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000043","Desired Access: Read","3780"
"10:46:22.1652266 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000038","Type: REG_DWORD, Length: 4, Data: 1015","3780"
"10:46:22.1652436 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000034","Type: REG_DWORD, Length: 4, Data: 14","3780"
"10:46:22.1652594 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1652735 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000060","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1652935 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000018","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1653076 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000047","Desired Access: Read","3780"
"10:46:22.1653260 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000038","Length: 144","3780"
"10:46:22.1653413 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1653614 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000017","","3780"
"10:46:22.1653772 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1653921 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000043","Desired Access: Read","3780"
"10:46:22.1654019 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.1654100 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000047","Length: 144","3780"
"10:46:22.1654262 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1654331 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Avalon.Graphics","0.0000170","Desired Access: Read","5728"
"10:46:22.1654446 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000021","","3780"
"10:46:22.1654599 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000018","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1654749 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000042","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.1654800 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000068","Desired Access: Read","3780"
"10:46:22.1655018 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000038","Length: 144","3780"
"10:46:22.1655111 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Avalon.Graphics","0.0000235","Desired Access: Read","5728"
"10:46:22.1655175 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000060","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1655534 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000021","","3780"
"10:46:22.1655751 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000026","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1655969 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000073","Desired Access: Read","3780"
"10:46:22.1656268 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000051","Length: 144","3780"
"10:46:22.1656511 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000055","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1656554 AM","firefox.exe","7384","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000085","Desired Access: Read, Maximum Allowed","5728"
"10:46:22.1656801 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000026","","3780"
"10:46:22.1657044 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000026","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1657100 AM","firefox.exe","7384","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000064","Type: REG_DWORD, Length: 4, Data: 3","5728"
"10:46:22.1657292 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000068","Desired Access: Read","3780"
"10:46:22.1657569 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000064","Length: 144","3780"
"10:46:22.1657590 AM","firefox.exe","7384","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000069","","5728"
"10:46:22.1657821 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000051","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1658102 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000026","","3780"
"10:46:22.1658149 AM","firefox.exe","7384","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000077","Desired Access: Read","5728"
"10:46:22.1658341 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000026","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1658580 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000077","Desired Access: Read","3780"
"10:46:22.1658631 AM","firefox.exe","7384","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000064","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","5728"
"10:46:22.1658870 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000047","Length: 144","3780"
"10:46:22.1659101 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000051","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1659143 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000103","Desired Access: Read","5728"
"10:46:22.1659382 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000022","","3780"
"10:46:22.1659609 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000123","Desired Access: Read","5728"
"10:46:22.1659980 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000047","Desired Access: Read","5728"
"10:46:22.1660138 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000051","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1660295 AM","firefox.exe","7384","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000022","","5728"
"10:46:22.1660547 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000107","Length: 52","5728"
"10:46:22.1660594 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000094","Desired Access: Read","3780"
"10:46:22.1660897 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000021","","5728"
"10:46:22.1660970 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000055","Length: 144","3780"
"10:46:22.1661196 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1661302 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000060","Desired Access: Query Value, Maximum Allowed","5728"
"10:46:22.1661503 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000026","","3780"
"10:46:22.1661631 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000047","Length: 268","5728"
"10:46:22.1661721 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1661921 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000064","Desired Access: Read","3780"
"10:46:22.1661930 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000025","","5728"
"10:46:22.1662143 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000043","Length: 144","3780"
"10:46:22.1662288 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000051","Desired Access: Query Value, Maximum Allowed","5728"
"10:46:22.1662309 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000052","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1662535 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000018","","3780"
"10:46:22.1662591 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000047","Type: REG_MULTI_SZ, Length: 292, Data: PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02, PCI\VEN_8086&DEV_5916&SUBSYS_10941025, PCI\VEN_8086&DEV_5916&CC_030000, PCI\VEN_8086&DEV_5916&CC_0300","5728"
"10:46:22.1662698 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1662864 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000051","Desired Access: Read","3780"
"10:46:22.1662890 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000021","","5728"
"10:46:22.1663065 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000038","Length: 144","3780"
"10:46:22.1663184 AM","firefox.exe","7384","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000060","Desired Access: Read","5728"
"10:46:22.1663222 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1663427 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000022","","3780"
"10:46:22.1663466 AM","firefox.exe","7384","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000051","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","5728"
"10:46:22.1663585 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1663747 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000081","Desired Access: Read","3780"
"10:46:22.1663803 AM","firefox.exe","7384","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000030","","5728"
"10:46:22.1663969 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000043","Length: 144","3780"
"10:46:22.1664127 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1664131 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Avalon.Graphics","0.0000026","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.1664327 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000018","","3780"
"10:46:22.1664391 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Avalon.Graphics\DISPLAY1","0.0000052","Desired Access: Read","5728"
"10:46:22.1664477 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1664635 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000102","Desired Access: Read","3780"
"10:46:22.1664677 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Avalon.Graphics","0.0000086","","5728"
"10:46:22.1664886 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000039","Length: 144","3780"
"10:46:22.1665036 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1665211 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000017","","3780"
"10:46:22.1665356 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1665501 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000047","Desired Access: Read","3780"
"10:46:22.1665676 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000042","Length: 144","3780"
"10:46:22.1665825 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000026","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.1665838 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1666030 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000017","","3780"
"10:46:22.1666068 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Avalon.Graphics\DISPLAY1","0.0000073","Desired Access: Read","5728"
"10:46:22.1666320 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1666461 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000060","Desired Access: Read","3780"
"10:46:22.1666657 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000043","Length: 144","3780"
"10:46:22.1666806 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1666986 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000017","","3780"
"10:46:22.1667489 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1667634 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000047","Desired Access: Read","3780"
"10:46:22.1667818 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000038","Length: 144","3780"
"10:46:22.1667971 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1668146 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000017","","3780"
"10:46:22.1668283 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","","3780"
"10:46:22.1668581 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000030","","3780"
"10:46:22.1668752 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","","3780"
"10:46:22.1669149 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1669302 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000077","Desired Access: All Access","3780"
"10:46:22.1669511 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000623","Desired Access: All Access","3780"
"10:46:22.1669827 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000064","Information: Owner","3780"
"10:46:22.1670062 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000025","Information: Owner","3780"
"10:46:22.1670301 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1670484 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000056","Desired Access: Read","3780"
"10:46:22.1670655 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000072","Desired Access: Read","3780"
"10:46:22.1670663 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000316","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.1670907 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000047","Length: 16","3780"
"10:46:22.1671082 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000038","Type: REG_SZ, Length: 8, Data: 2.0","3780"
"10:46:22.1671282 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000039","Length: 44","3780"
"10:46:22.1671393 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000064","AllocationSize: 581,632, EndOfFile: 579,272, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:22.1671436 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000042","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","3780"
"10:46:22.1671645 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1671743 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000107","","5728"
"10:46:22.1671794 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000120","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1672153 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000064","Type: REG_DWORD, Length: 4, Data: 8","3780"
"10:46:22.1672596 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.1672895 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000043","Type: REG_DWORD, Length: 4, Data: 8","3780"
"10:46:22.1673010 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Direct3D","0.0000128","Desired Access: Read","5728"
"10:46:22.1673100 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000149","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1673394 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000051","Desired Access: Read","3780"
"10:46:22.1673509 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.1673603 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000043","Type: REG_DWORD, Length: 4, Data: 1015","3780"
"10:46:22.1673791 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000034","Type: REG_DWORD, Length: 4, Data: 14","3780"
"10:46:22.1673898 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Direct3D","0.0000111","Desired Access: Read","5728"
"10:46:22.1673949 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1674102 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000069","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1674316 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1674457 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000055","Desired Access: Read","3780"
"10:46:22.1674649 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000038","Length: 144","3780"
"10:46:22.1674815 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1675045 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000017","","3780"
"10:46:22.1675190 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1675331 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000051","Desired Access: Read","3780"
"10:46:22.1675515 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Length: 144","3780"
"10:46:22.1675664 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1675843 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","3780"
"10:46:22.1675984 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1676125 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000042","Desired Access: Read","3780"
"10:46:22.1676300 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000034","Length: 144","3780"
"10:46:22.1676441 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1676615 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000018","","3780"
"10:46:22.1676765 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1676906 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000042","Desired Access: Read","3780"
"10:46:22.1677081 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000034","Length: 144","3780"
"10:46:22.1677230 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1677405 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","","3780"
"10:46:22.1677554 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1677703 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000043","Desired Access: Read","3780"
"10:46:22.1677874 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Length: 144","3780"
"10:46:22.1678019 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1678194 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000017","","3780"
"10:46:22.1678339 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1678480 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000043","Desired Access: Read","3780"
"10:46:22.1678651 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000034","Length: 144","3780"
"10:46:22.1678796 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1678971 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000017","","3780"
"10:46:22.1679120 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1679261 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000043","Desired Access: Read","3780"
"10:46:22.1679321 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.1679440 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000038","Length: 144","3780"
"10:46:22.1679628 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1679816 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000017","","3780"
"10:46:22.1679948 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000064","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 3/20/2019 7:51:16 PM, FileAttributes: A","5728"
"10:46:22.1679965 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1680110 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000043","Desired Access: Read","3780"
"10:46:22.1680293 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000064","Length: 144","3780"
"10:46:22.1680404 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000141","","5728"
"10:46:22.1680473 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1680656 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000013","","3780"
"10:46:22.1680801 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1680946 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000047","Desired Access: Read","3780"
"10:46:22.1681130 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000034","Length: 144","3780"
"10:46:22.1681275 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1681450 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000012","","3780"
"10:46:22.1681595 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1681731 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000043","Desired Access: Read","3780"
"10:46:22.1681906 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000034","Length: 144","3780"
"10:46:22.1682051 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1682222 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000017","","3780"
"10:46:22.1682363 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1682504 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000042","Desired Access: Read","3780"
"10:46:22.1682678 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000039","Length: 144","3780"
"10:46:22.1682755 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000235","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.1682832 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1683007 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000017","","3780"
"10:46:22.1683156 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1683306 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000059","Desired Access: Read","3780"
"10:46:22.1683442 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ResourcePolicyClient.dll","0.0000175","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:22.1683502 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000034","Length: 144","3780"
"10:46:22.1683651 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1683835 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000017","","3780"
"10:46:22.1683984 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1684125 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000047","Desired Access: Read","3780"
"10:46:22.1684163 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ResourcePolicyClient.dll","0.0000030","SyncType: SyncTypeOther","5728"
"10:46:22.1684308 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000039","Length: 144","3780"
"10:46:22.1684462 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1684641 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000013","","3780"
"10:46:22.1684786 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1684927 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000043","Desired Access: Read","3780"
"10:46:22.1685102 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000038","Length: 144","3780"
"10:46:22.1685230 AM","firefox.exe","7384","Load Image","C:\Windows\System32\ResourcePolicyClient.dll","0.0000000","Image Base: 0x7ffb442e0000, Image Size: 0x24000","5728"
"10:46:22.1685256 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1685435 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000017","","3780"
"10:46:22.1685580 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","","3780"
"10:46:22.1685657 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000093","Name: \Windows\System32\ResourcePolicyClient.dll","5728"
"10:46:22.1685844 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000030","","3780"
"10:46:22.1686011 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","","3780"
"10:46:22.1686386 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1686531 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000064","Desired Access: All Access","3780"
"10:46:22.1686710 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000512","Desired Access: All Access","3780"
"10:46:22.1686966 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000047","Information: Owner","3780"
"10:46:22.1687163 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000021","Information: Owner","3780"
"10:46:22.1687376 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1687534 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000055","Desired Access: Read","3780"
"10:46:22.1687696 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000102","Desired Access: Read","3780"
"10:46:22.1688063 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000064","Length: 16","3780"
"10:46:22.1688225 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000128","","5728"
"10:46:22.1688332 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000055","Type: REG_SZ, Length: 8, Data: 2.0","3780"
"10:46:22.1688630 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000056","Length: 44","3780"
"10:46:22.1688865 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000056","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","3780"
"10:46:22.1689134 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1689296 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000073","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1689509 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000039","Type: REG_DWORD, Length: 4, Data: 8","3780"
"10:46:22.1690098 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000039","Type: REG_DWORD, Length: 4, Data: 8","3780"
"10:46:22.1690303 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1690448 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000043","Desired Access: Read","3780"
"10:46:22.1690636 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000038","Type: REG_DWORD, Length: 4, Data: 1015","3780"
"10:46:22.1690696 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0146884","Offset: 119,808, Length: 7,168, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.1690811 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000034","Type: REG_DWORD, Length: 4, Data: 14","3780"
"10:46:22.1690964 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1691101 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000060","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1691340 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1691489 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000077","Desired Access: Read","3780"
"10:46:22.1691720 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000038","Length: 144","3780"
"10:46:22.1691873 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1692074 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000021","","3780"
"10:46:22.1692223 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1692364 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000042","Desired Access: Read","3780"
"10:46:22.1692539 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Length: 144","3780"
"10:46:22.1692684 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1692867 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","3780"
"10:46:22.1693012 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1693153 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000043","Desired Access: Read","3780"
"10:46:22.1693332 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000034","Length: 144","3780"
"10:46:22.1693477 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1693652 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000017","","3780"
"10:46:22.1693797 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1693934 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000043","Desired Access: Read","3780"
"10:46:22.1694109 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000038","Length: 144","3780"
"10:46:22.1694258 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1694429 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","","3780"
"10:46:22.1694578 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1694732 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000042","Desired Access: Read","3780"
"10:46:22.1694902 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000039","Length: 144","3780"
"10:46:22.1695052 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1695227 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000017","","3780"
"10:46:22.1695372 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1695508 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000043","Desired Access: Read","3780"
"10:46:22.1695683 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000034","Length: 144","3780"
"10:46:22.1695828 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1696003 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000017","","3780"
"10:46:22.1696157 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1696298 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000042","Desired Access: Read","3780"
"10:46:22.1696477 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000038","Length: 144","3780"
"10:46:22.1696635 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1696818 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000017","","3780"
"10:46:22.1696959 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1697100 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000038","Desired Access: Read","3780"
"10:46:22.1697270 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000035","Length: 144","3780"
"10:46:22.1697416 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1697590 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000018","","3780"
"10:46:22.1697731 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1697868 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000047","Desired Access: Read","3780"
"10:46:22.1698047 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000034","Length: 144","3780"
"10:46:22.1698192 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1698363 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","","3780"
"10:46:22.1698508 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1698644 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000043","Desired Access: Read","3780"
"10:46:22.1698815 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000038","Length: 144","3780"
"10:46:22.1698964 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1699139 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000017","","3780"
"10:46:22.1699280 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1699417 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000059","Desired Access: Read","3780"
"10:46:22.1699613 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000034","Length: 144","3780"
"10:46:22.1699762 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1699933 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000017","","3780"
"10:46:22.1700074 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1700210 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000043","Desired Access: Read","3780"
"10:46:22.1700385 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000034","Length: 144","3780"
"10:46:22.1700530 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1700701 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000017","","3780"
"10:46:22.1700846 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1700982 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000043","Desired Access: Read","3780"
"10:46:22.1701153 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000034","Length: 144","3780"
"10:46:22.1701298 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1701473 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000013","","3780"
"10:46:22.1701610 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1701750 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000043","Desired Access: Read","3780"
"10:46:22.1701925 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000035","Length: 144","3780"
"10:46:22.1702070 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1702241 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000017","","3780"
"10:46:22.1702378 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","","3780"
"10:46:22.1702629 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000026","","3780"
"10:46:22.1702787 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","","3780"
"10:46:22.1703158 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000018","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1703308 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000064","Desired Access: All Access","3780"
"10:46:22.1703487 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000478","Desired Access: All Access","3780"
"10:46:22.1703726 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000043","Information: Owner","3780"
"10:46:22.1703909 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000022","Information: Owner","3780"
"10:46:22.1704106 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1704251 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000047","Desired Access: Read","3780"
"10:46:22.1704409 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000064","Desired Access: Read","3780"
"10:46:22.1704643 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000039","Length: 16","3780"
"10:46:22.1704797 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000043","Type: REG_SZ, Length: 8, Data: 2.0","3780"
"10:46:22.1704985 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000038","Length: 44","3780"
"10:46:22.1705134 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000038","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","3780"
"10:46:22.1705317 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1705458 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000060","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1705646 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000038","Type: REG_DWORD, Length: 4, Data: 8","3780"
"10:46:22.1706102 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000039","Type: REG_DWORD, Length: 4, Data: 8","3780"
"10:46:22.1706282 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1706422 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000047","Desired Access: Read","3780"
"10:46:22.1706610 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000039","Type: REG_DWORD, Length: 4, Data: 1015","3780"
"10:46:22.1706781 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000034","Type: REG_DWORD, Length: 4, Data: 14","3780"
"10:46:22.1706930 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1707067 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000055","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1707254 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000018","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1707391 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000047","Desired Access: Read","3780"
"10:46:22.1707570 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000039","Length: 144","3780"
"10:46:22.1707720 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000068","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1707941 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000017","","3780"
"10:46:22.1708091 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1708232 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000051","Desired Access: Read","3780"
"10:46:22.1708419 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Length: 144","3780"
"10:46:22.1708564 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1708739 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","3780"
"10:46:22.1708880 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1709021 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000043","Desired Access: Read","3780"
"10:46:22.1709192 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000034","Length: 144","3780"
"10:46:22.1709337 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1709507 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000017","","3780"
"10:46:22.1709648 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1709785 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000042","Desired Access: Read","3780"
"10:46:22.1709955 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000034","Length: 144","3780"
"10:46:22.1710100 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1710271 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","","3780"
"10:46:22.1710408 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1710548 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000043","Desired Access: Read","3780"
"10:46:22.1710719 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Length: 144","3780"
"10:46:22.1710864 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1711039 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000017","","3780"
"10:46:22.1711180 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1711316 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000043","Desired Access: Read","3780"
"10:46:22.1711487 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000034","Length: 144","3780"
"10:46:22.1711628 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1711798 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000018","","3780"
"10:46:22.1711935 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1712076 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000042","Desired Access: Read","3780"
"10:46:22.1712246 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000035","Length: 144","3780"
"10:46:22.1712392 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1712562 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000017","","3780"
"10:46:22.1712703 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1712840 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000042","Desired Access: Read","3780"
"10:46:22.1713010 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000034","Length: 144","3780"
"10:46:22.1713155 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1713326 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000017","","3780"
"10:46:22.1713467 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1713603 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000043","Desired Access: Read","3780"
"10:46:22.1713778 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000034","Length: 144","3780"
"10:46:22.1713923 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1714094 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000013","","3780"
"10:46:22.1714230 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000018","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1714367 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000043","Desired Access: Read","3780"
"10:46:22.1714538 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000038","Length: 144","3780"
"10:46:22.1714687 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1714862 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000013","","3780"
"10:46:22.1715003 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1715139 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000043","Desired Access: Read","3780"
"10:46:22.1715314 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000034","Length: 144","3780"
"10:46:22.1715459 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1715630 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000017","","3780"
"10:46:22.1715771 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1715907 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000043","Desired Access: Read","3780"
"10:46:22.1716086 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000039","Length: 144","3780"
"10:46:22.1716236 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1716406 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000018","","3780"
"10:46:22.1716547 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1716684 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000042","Desired Access: Read","3780"
"10:46:22.1716854 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000035","Length: 144","3780"
"10:46:22.1717000 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1717170 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000017","","3780"
"10:46:22.1717311 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1717448 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000042","Desired Access: Read","3780"
"10:46:22.1717618 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000034","Length: 144","3780"
"10:46:22.1717763 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1717934 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000017","","3780"
"10:46:22.1718070 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000018","","3780"
"10:46:22.1718301 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000025","","3780"
"10:46:22.1718454 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000018","","3780"
"10:46:22.1718740 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1718885 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000052","Desired Access: All Access","3780"
"10:46:22.1719048 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000430","Desired Access: All Access","3780"
"10:46:22.1719252 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000039","Information: Owner","3780"
"10:46:22.1719427 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000017","Information: Owner","3780"
"10:46:22.1719615 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1719756 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000051","Desired Access: Read","3780"
"10:46:22.1719914 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000068","Desired Access: Read","3780"
"10:46:22.1720148 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000043","Length: 16","3780"
"10:46:22.1720306 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000034","Type: REG_SZ, Length: 8, Data: 2.0","3780"
"10:46:22.1720481 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000039","Length: 44","3780"
"10:46:22.1720630 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000039","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","3780"
"10:46:22.1720814 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1720950 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000060","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1721138 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000039","Type: REG_DWORD, Length: 4, Data: 8","3780"
"10:46:22.1721492 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000039","Type: REG_DWORD, Length: 4, Data: 8","3780"
"10:46:22.1721667 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1721808 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000043","Desired Access: Read","3780"
"10:46:22.1721992 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000038","Type: REG_DWORD, Length: 4, Data: 1015","3780"
"10:46:22.1722158 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000034","Type: REG_DWORD, Length: 4, Data: 14","3780"
"10:46:22.1722307 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1722444 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000051","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1722627 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1722764 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000042","Desired Access: Read","3780"
"10:46:22.1722947 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Length: 144","3780"
"10:46:22.1723092 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1723280 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000017","","3780"
"10:46:22.1723421 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1723562 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000038","Desired Access: Read","3780"
"10:46:22.1723732 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Length: 144","3780"
"10:46:22.1723877 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1724057 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","3780"
"10:46:22.1724197 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1724342 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000043","Desired Access: Read","3780"
"10:46:22.1724603 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000038","Length: 144","3780"
"10:46:22.1725004 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000055","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1725384 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000012","","3780"
"10:46:22.1725469 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1725550 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000030","Desired Access: Read","3780"
"10:46:22.1725652 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1725738 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1725840 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000009","","3780"
"10:46:22.1725921 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1726002 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000022","Desired Access: Read","3780"
"10:46:22.1726100 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1726186 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1726288 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000009","","3780"
"10:46:22.1726365 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1726446 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000026","Desired Access: Read","3780"
"10:46:22.1726548 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1726634 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1726732 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000021","","3780"
"10:46:22.1726821 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1726902 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000026","Desired Access: Read","3780"
"10:46:22.1727005 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1727090 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1727197 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000008","","3780"
"10:46:22.1727278 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1727359 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000021","Desired Access: Read","3780"
"10:46:22.1727457 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000026","Length: 144","3780"
"10:46:22.1727547 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1727645 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000013","","3780"
"10:46:22.1727726 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1727807 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000026","Desired Access: Read","3780"
"10:46:22.1727909 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000017","Length: 144","3780"
"10:46:22.1727990 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1728093 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000008","","3780"
"10:46:22.1728174 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1728251 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000025","Desired Access: Read","3780"
"10:46:22.1728349 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1728434 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1728537 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000008","","3780"
"10:46:22.1728618 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1728694 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000026","Desired Access: Read","3780"
"10:46:22.1728793 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1728878 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1728976 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000013","","3780"
"10:46:22.1729057 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1729138 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000026","Desired Access: Read","3780"
"10:46:22.1729236 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1729322 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1729420 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000013","","3780"
"10:46:22.1729505 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1729582 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000026","Desired Access: Read","3780"
"10:46:22.1729684 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000017","Length: 144","3780"
"10:46:22.1729765 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1729864 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000012","","3780"
"10:46:22.1729949 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1730026 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000025","Desired Access: Read","3780"
"10:46:22.1730124 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1730209 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1730312 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000008","","3780"
"10:46:22.1730388 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","","3780"
"10:46:22.1730525 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","","3780"
"10:46:22.1730610 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","","3780"
"10:46:22.1730781 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1730866 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000030","Desired Access: All Access","3780"
"10:46:22.1730960 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000265","Desired Access: All Access","3780"
"10:46:22.1731088 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000026","Information: Owner","3780"
"10:46:22.1731191 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000012","Information: Owner","3780"
"10:46:22.1731301 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1731387 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000025","Desired Access: Read","3780"
"10:46:22.1731476 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000035","Desired Access: Read","3780"
"10:46:22.1731609 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000055","Length: 16","3780"
"10:46:22.1731737 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000025","Type: REG_SZ, Length: 8, Data: 2.0","3780"
"10:46:22.1731848 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000021","Length: 44","3780"
"10:46:22.1731933 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000021","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","3780"
"10:46:22.1732040 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1732125 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000034","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1732232 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000021","Type: REG_DWORD, Length: 4, Data: 8","3780"
"10:46:22.1732436 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000022","Type: REG_DWORD, Length: 4, Data: 8","3780"
"10:46:22.1732535 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000012","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1732620 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000021","Desired Access: Read","3780"
"10:46:22.1732722 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000026","Type: REG_DWORD, Length: 4, Data: 1015","3780"
"10:46:22.1732825 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000017","Type: REG_DWORD, Length: 4, Data: 14","3780"
"10:46:22.1732910 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1732991 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000034","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1733102 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1733179 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000025","Desired Access: Read","3780"
"10:46:22.1733281 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1733367 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1733473 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000009","","3780"
"10:46:22.1733559 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1733635 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000026","Desired Access: Read","3780"
"10:46:22.1733733 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1733819 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1733917 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000013","","3780"
"10:46:22.1733998 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1734079 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000021","Desired Access: Read","3780"
"10:46:22.1734177 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1734263 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1734361 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000012","","3780"
"10:46:22.1734442 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1734523 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000025","Desired Access: Read","3780"
"10:46:22.1734625 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000017","Length: 144","3780"
"10:46:22.1734706 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1734809 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000008","","3780"
"10:46:22.1734890 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1734971 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000021","Desired Access: Read","3780"
"10:46:22.1735069 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1735154 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1735252 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000009","","3780"
"10:46:22.1735333 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1735415 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000021","Desired Access: Read","3780"
"10:46:22.1735513 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1735598 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1735696 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000013","","3780"
"10:46:22.1735777 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1735858 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000026","Desired Access: Read","3780"
"10:46:22.1735961 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000017","Length: 144","3780"
"10:46:22.1736042 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1736144 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000009","","3780"
"10:46:22.1736225 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1736306 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000026","Desired Access: Read","3780"
"10:46:22.1736404 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1736490 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1736588 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000013","","3780"
"10:46:22.1736669 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1736750 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000026","Desired Access: Read","3780"
"10:46:22.1736848 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1736933 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1737032 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000008","","3780"
"10:46:22.1737113 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1737194 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000025","Desired Access: Read","3780"
"10:46:22.1737296 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000017","Length: 144","3780"
"10:46:22.1737377 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1737480 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000008","","3780"
"10:46:22.1737561 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1737637 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000026","Desired Access: Read","3780"
"10:46:22.1737740 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000017","Length: 144","3780"
"10:46:22.1737825 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1737923 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000009","","3780"
"10:46:22.1738004 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1738085 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000030","Desired Access: Read","3780"
"10:46:22.1738192 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1738277 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1738380 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000008","","3780"
"10:46:22.1738465 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1738551 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000021","Desired Access: Read","3780"
"10:46:22.1738649 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1738734 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1738832 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000013","","3780"
"10:46:22.1738917 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1738999 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000021","Desired Access: Read","3780"
"10:46:22.1739097 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1739182 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1739280 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000009","","3780"
"10:46:22.1739357 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","","3780"
"10:46:22.1739489 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","","3780"
"10:46:22.1739575 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000012","","3780"
"10:46:22.1739788 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1739873 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000030","Desired Access: All Access","3780"
"10:46:22.1739967 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000252","Desired Access: All Access","3780"
"10:46:22.1740087 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000025","Information: Owner","3780"
"10:46:22.1740189 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000008","Information: Owner","3780"
"10:46:22.1740296 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1740381 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000026","Desired Access: Read","3780"
"10:46:22.1740466 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000039","Desired Access: Read","3780"
"10:46:22.1740637 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000026","Length: 16","3780"
"10:46:22.1740731 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000025","Type: REG_SZ, Length: 8, Data: 2.0","3780"
"10:46:22.1740837 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000022","Length: 44","3780"
"10:46:22.1740923 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000025","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","3780"
"10:46:22.1741029 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1741111 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000034","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1741217 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000026","Type: REG_DWORD, Length: 4, Data: 8","3780"
"10:46:22.1741422 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000021","Type: REG_DWORD, Length: 4, Data: 8","3780"
"10:46:22.1741524 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1741605 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000026","Desired Access: Read","3780"
"10:46:22.1741712 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000021","Type: REG_DWORD, Length: 4, Data: 1015","3780"
"10:46:22.1741806 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000026","Type: REG_DWORD, Length: 4, Data: 14","3780"
"10:46:22.1741900 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1741977 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000030","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1742083 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1742164 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000026","Desired Access: Read","3780"
"10:46:22.1742267 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1742352 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1742459 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000013","","3780"
"10:46:22.1742540 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1742621 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000026","Desired Access: Read","3780"
"10:46:22.1742723 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1742809 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1742911 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000009","","3780"
"10:46:22.1742992 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1743073 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000026","Desired Access: Read","3780"
"10:46:22.1743171 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1743257 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1743359 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000009","","3780"
"10:46:22.1743440 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1743521 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000026","Desired Access: Read","3780"
"10:46:22.1743619 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1743705 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1743803 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000008","","3780"
"10:46:22.1743884 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1743965 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000026","Desired Access: Read","3780"
"10:46:22.1744063 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1744148 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1744251 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000008","","3780"
"10:46:22.1744332 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1744413 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000021","Desired Access: Read","3780"
"10:46:22.1744511 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1744596 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1744695 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000008","","3780"
"10:46:22.1744776 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1744857 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000025","Desired Access: Read","3780"
"10:46:22.1744955 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1745040 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1745143 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000008","","3780"
"10:46:22.1745219 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1745300 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000026","Desired Access: Read","3780"
"10:46:22.1745399 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1745484 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1745582 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000009","","3780"
"10:46:22.1745663 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1745744 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000021","Desired Access: Read","3780"
"10:46:22.1745842 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1745928 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1746026 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000008","","3780"
"10:46:22.1746107 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1746188 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000021","Desired Access: Read","3780"
"10:46:22.1746286 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1746371 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1746469 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000009","","3780"
"10:46:22.1746551 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1746627 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000026","Desired Access: Read","3780"
"10:46:22.1746725 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1746811 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1746909 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000013","","3780"
"10:46:22.1746990 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1747071 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000026","Desired Access: Read","3780"
"10:46:22.1747173 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1747259 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1747357 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000008","","3780"
"10:46:22.1747438 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1747519 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000026","Desired Access: Read","3780"
"10:46:22.1747617 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1747703 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1747805 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000008","","3780"
"10:46:22.1747886 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1747963 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000025","Desired Access: Read","3780"
"10:46:22.1748065 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1748151 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1748249 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000008","","3780"
"10:46:22.1748325 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","","3780"
"10:46:22.1748458 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","","3780"
"10:46:22.1748543 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","","3780"
"10:46:22.1748705 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1748791 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000029","Desired Access: All Access","3780"
"10:46:22.1748880 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000248","Desired Access: All Access","3780"
"10:46:22.1749000 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000021","Information: Owner","3780"
"10:46:22.1749098 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000008","Information: Owner","3780"
"10:46:22.1749204 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1749285 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000026","Desired Access: Read","3780"
"10:46:22.1749375 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000034","Desired Access: Read","3780"
"10:46:22.1749507 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000056","Length: 16","3780"
"10:46:22.1749640 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000021","Type: REG_SZ, Length: 8, Data: 2.0","3780"
"10:46:22.1749746 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000022","Length: 44","3780"
"10:46:22.1749832 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000021","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","3780"
"10:46:22.1749947 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1750028 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000034","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1750139 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000021","Type: REG_DWORD, Length: 4, Data: 8","3780"
"10:46:22.1750344 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000021","Type: REG_DWORD, Length: 4, Data: 8","3780"
"10:46:22.1750442 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1750527 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000021","Desired Access: Read","3780"
"10:46:22.1750629 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000022","Type: REG_DWORD, Length: 4, Data: 1015","3780"
"10:46:22.1750728 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000021","Type: REG_DWORD, Length: 4, Data: 14","3780"
"10:46:22.1750817 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1750898 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000030","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1751005 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1751086 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000026","Desired Access: Read","3780"
"10:46:22.1751188 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1751274 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1751380 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000013","","3780"
"10:46:22.1751466 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1751547 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000021","Desired Access: Read","3780"
"10:46:22.1751649 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1751730 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1751833 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000008","","3780"
"10:46:22.1751914 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1751995 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000021","Desired Access: Read","3780"
"10:46:22.1752093 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1752178 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1752276 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000009","","3780"
"10:46:22.1752357 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1752439 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000025","Desired Access: Read","3780"
"10:46:22.1752537 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1752622 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1752724 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000009","","3780"
"10:46:22.1752805 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1752882 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000026","Desired Access: Read","3780"
"10:46:22.1752980 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1753066 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1753168 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000009","","3780"
"10:46:22.1753249 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1753326 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000026","Desired Access: Read","3780"
"10:46:22.1753428 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1753514 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1753612 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000008","","3780"
"10:46:22.1753693 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1753774 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000021","Desired Access: Read","3780"
"10:46:22.1753872 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1753957 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1754056 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000008","","3780"
"10:46:22.1754137 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1754218 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000025","Desired Access: Read","3780"
"10:46:22.1754316 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1754401 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1754499 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000013","","3780"
"10:46:22.1754580 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1754661 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000026","Desired Access: Read","3780"
"10:46:22.1754760 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1754845 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1754947 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000009","","3780"
"10:46:22.1755028 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1755109 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000026","Desired Access: Read","3780"
"10:46:22.1755212 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1755297 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1755400 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000008","","3780"
"10:46:22.1755481 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1755566 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000021","Desired Access: Read","3780"
"10:46:22.1755664 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000026","Length: 144","3780"
"10:46:22.1755754 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1755856 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000013","","3780"
"10:46:22.1755941 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1756023 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000025","Desired Access: Read","3780"
"10:46:22.1756125 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1756210 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1756308 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000013","","3780"
"10:46:22.1756394 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1756471 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000025","Desired Access: Read","3780"
"10:46:22.1756573 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1756658 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1756756 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000009","","3780"
"10:46:22.1756837 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1756919 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000025","Desired Access: Read","3780"
"10:46:22.1757021 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000017","Length: 144","3780"
"10:46:22.1757102 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1757204 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000009","","3780"
"10:46:22.1757285 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","","3780"
"10:46:22.1757439 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","","3780"
"10:46:22.1757533 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","","3780"
"10:46:22.1757695 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1757780 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000030","Desired Access: All Access","3780"
"10:46:22.1757874 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000243","Desired Access: All Access","3780"
"10:46:22.1757989 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000022","Information: Owner","3780"
"10:46:22.1758083 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000013","Information: Owner","3780"
"10:46:22.1758194 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1758275 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000030","Desired Access: Read","3780"
"10:46:22.1758365 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000034","Desired Access: Read","3780"
"10:46:22.1758493 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000026","Length: 16","3780"
"10:46:22.1758591 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000021","Type: REG_SZ, Length: 8, Data: 2.0","3780"
"10:46:22.1758693 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000022","Length: 44","3780"
"10:46:22.1758779 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000021","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","3780"
"10:46:22.1758885 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1758967 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000029","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1759073 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000022","Type: REG_DWORD, Length: 4, Data: 8","3780"
"10:46:22.1759287 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000025","Type: REG_DWORD, Length: 4, Data: 8","3780"
"10:46:22.1759389 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1759470 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000026","Desired Access: Read","3780"
"10:46:22.1759572 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000022","Type: REG_DWORD, Length: 4, Data: 1015","3780"
"10:46:22.1759671 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000021","Type: REG_DWORD, Length: 4, Data: 14","3780"
"10:46:22.1759756 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1759837 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000030","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1759956 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1760033 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000026","Desired Access: Read","3780"
"10:46:22.1760136 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1760221 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1760328 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000012","","3780"
"10:46:22.1760413 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1760490 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000025","Desired Access: Read","3780"
"10:46:22.1760592 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000017","Length: 144","3780"
"10:46:22.1760673 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1760776 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000008","","3780"
"10:46:22.1760857 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1760933 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000026","Desired Access: Read","3780"
"10:46:22.1761036 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1761121 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1761224 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000008","","3780"
"10:46:22.1761305 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1761390 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000026","Desired Access: Read","3780"
"10:46:22.1761492 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1761578 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1761684 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000009","","3780"
"10:46:22.1761770 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1761847 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000025","Desired Access: Read","3780"
"10:46:22.1761949 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000017","Length: 144","3780"
"10:46:22.1762034 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1762137 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000008","","3780"
"10:46:22.1762218 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1762295 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000025","Desired Access: Read","3780"
"10:46:22.1762397 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000017","Length: 144","3780"
"10:46:22.1762478 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1762576 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000013","","3780"
"10:46:22.1762657 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1762738 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000022","Desired Access: Read","3780"
"10:46:22.1762836 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1762922 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1763020 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000008","","3780"
"10:46:22.1763101 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1763182 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000021","Desired Access: Read","3780"
"10:46:22.1763280 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1763365 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1763468 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000008","","3780"
"10:46:22.1763549 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1763626 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000025","Desired Access: Read","3780"
"10:46:22.1763724 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1763809 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1763912 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000008","","3780"
"10:46:22.1763993 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1764074 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000021","Desired Access: Read","3780"
"10:46:22.1764172 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000017","Length: 144","3780"
"10:46:22.1764253 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1764351 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000013","","3780"
"10:46:22.1764432 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1764513 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000022","Desired Access: Read","3780"
"10:46:22.1764611 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1764697 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1764795 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000008","","3780"
"10:46:22.1764876 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1764957 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000026","Desired Access: Read","3780"
"10:46:22.1765055 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1765140 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1765239 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000008","","3780"
"10:46:22.1765320 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1765401 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000025","Desired Access: Read","3780"
"10:46:22.1765499 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1765584 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1765682 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000013","","3780"
"10:46:22.1765780 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1765861 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000026","Desired Access: Read","3780"
"10:46:22.1765964 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000017","Length: 144","3780"
"10:46:22.1766045 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1766147 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000009","","3780"
"10:46:22.1766224 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","","3780"
"10:46:22.1766361 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000012","","3780"
"10:46:22.1766450 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000009","","3780"
"10:46:22.1766608 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1766693 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000030","Desired Access: All Access","3780"
"10:46:22.1766783 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000248","Desired Access: All Access","3780"
"10:46:22.1766903 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000021","Information: Owner","3780"
"10:46:22.1767001 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000012","Information: Owner","3780"
"10:46:22.1767112 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1767193 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000025","Desired Access: Read","3780"
"10:46:22.1767278 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000034","Desired Access: Read","3780"
"10:46:22.1767444 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000030","Length: 16","3780"
"10:46:22.1767547 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000021","Type: REG_SZ, Length: 8, Data: 2.0","3780"
"10:46:22.1767653 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000022","Length: 44","3780"
"10:46:22.1767739 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000021","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","3780"
"10:46:22.1767841 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1767922 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000034","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1768029 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000021","Type: REG_DWORD, Length: 4, Data: 8","3780"
"10:46:22.1768238 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000021","Type: REG_DWORD, Length: 4, Data: 8","3780"
"10:46:22.1768336 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1768417 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000026","Desired Access: Read","3780"
"10:46:22.1768520 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000025","Type: REG_DWORD, Length: 4, Data: 1015","3780"
"10:46:22.1768618 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000021","Type: REG_DWORD, Length: 4, Data: 14","3780"
"10:46:22.1768707 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1768784 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000030","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1768895 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1768976 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000021","Desired Access: Read","3780"
"10:46:22.1769074 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1769160 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1769271 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000008","","3780"
"10:46:22.1769352 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1769433 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000025","Desired Access: Read","3780"
"10:46:22.1769535 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1769620 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1769719 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000008","","3780"
"10:46:22.1769800 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1769881 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000025","Desired Access: Read","3780"
"10:46:22.1769983 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1770064 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1770167 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000008","","3780"
"10:46:22.1770248 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1770329 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000021","Desired Access: Read","3780"
"10:46:22.1770427 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1770512 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1770610 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000013","","3780"
"10:46:22.1770691 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1770772 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000022","Desired Access: Read","3780"
"10:46:22.1770871 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1770956 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1771054 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000013","","3780"
"10:46:22.1771135 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1771216 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000021","Desired Access: Read","3780"
"10:46:22.1771314 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1771400 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1771498 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000008","","3780"
"10:46:22.1771579 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1771656 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000025","Desired Access: Read","3780"
"10:46:22.1771758 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1771843 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1771941 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000009","","3780"
"10:46:22.1772027 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1772104 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000025","Desired Access: Read","3780"
"10:46:22.1772206 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1772291 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1772389 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000009","","3780"
"10:46:22.1772471 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1772552 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000021","Desired Access: Read","3780"
"10:46:22.1772650 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000025","Length: 144","3780"
"10:46:22.1772739 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1772842 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000008","","3780"
"10:46:22.1772923 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1773008 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000026","Desired Access: Read","3780"
"10:46:22.1773111 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1773192 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1773294 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000009","","3780"
"10:46:22.1773375 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1773460 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000022","Desired Access: Read","3780"
"10:46:22.1773559 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1773644 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1773746 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000009","","3780"
"10:46:22.1773827 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1773908 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000026","Desired Access: Read","3780"
"10:46:22.1774007 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1774092 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1774190 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000009","","3780"
"10:46:22.1774275 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1774352 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000026","Desired Access: Read","3780"
"10:46:22.1774455 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1774540 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1774638 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000013","","3780"
"10:46:22.1774719 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1774800 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000026","Desired Access: Read","3780"
"10:46:22.1774898 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1774984 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1775086 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000009","","3780"
"10:46:22.1775163 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","","3780"
"10:46:22.1775295 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","","3780"
"10:46:22.1775385 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000008","","3780"
"10:46:22.1775543 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1775624 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000029","Desired Access: All Access","3780"
"10:46:22.1775717 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000248","Desired Access: All Access","3780"
"10:46:22.1775837 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000021","Information: Owner","3780"
"10:46:22.1775935 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000013","Information: Owner","3780"
"10:46:22.1776042 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1776127 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000026","Desired Access: Read","3780"
"10:46:22.1776212 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000035","Desired Access: Read","3780"
"10:46:22.1776340 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000026","Length: 16","3780"
"10:46:22.1776439 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000021","Type: REG_SZ, Length: 8, Data: 2.0","3780"
"10:46:22.1776541 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000021","Length: 44","3780"
"10:46:22.1776626 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000022","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","3780"
"10:46:22.1776729 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1776810 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000030","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1776916 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000022","Type: REG_DWORD, Length: 4, Data: 8","3780"
"10:46:22.1777113 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000021","Type: REG_DWORD, Length: 4, Data: 8","3780"
"10:46:22.1777211 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1777292 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000025","Desired Access: Read","3780"
"10:46:22.1777394 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000026","Type: REG_DWORD, Length: 4, Data: 1015","3780"
"10:46:22.1777492 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000022","Type: REG_DWORD, Length: 4, Data: 14","3780"
"10:46:22.1777582 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1777663 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000030","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1777770 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1777847 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000025","Desired Access: Read","3780"
"10:46:22.1777949 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1778034 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1778141 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000008","","3780"
"10:46:22.1778222 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1778303 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000021","Desired Access: Read","3780"
"10:46:22.1778401 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1778487 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1778585 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000012","","3780"
"10:46:22.1778666 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1778747 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000025","Desired Access: Read","3780"
"10:46:22.1778849 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000017","Length: 144","3780"
"10:46:22.1778930 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1779033 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000008","","3780"
"10:46:22.1779114 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1779195 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000021","Desired Access: Read","3780"
"10:46:22.1779293 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1779378 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1779476 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000009","","3780"
"10:46:22.1779557 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1779634 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000026","Desired Access: Read","3780"
"10:46:22.1779732 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1779818 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1779920 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000009","","3780"
"10:46:22.1780001 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1780082 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000026","Desired Access: Read","3780"
"10:46:22.1780180 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1780266 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1780364 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000013","","3780"
"10:46:22.1780449 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1780530 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000022","Desired Access: Read","3780"
"10:46:22.1780628 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1780714 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1780812 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000008","","3780"
"10:46:22.1780893 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1780974 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000026","Desired Access: Read","3780"
"10:46:22.1781072 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1781157 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1781256 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000008","","3780"
"10:46:22.1781337 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1781418 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000025","Desired Access: Read","3780"
"10:46:22.1781516 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1781601 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1781699 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000009","","3780"
"10:46:22.1781780 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1781857 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000026","Desired Access: Read","3780"
"10:46:22.1781960 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1782045 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1782143 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000009","","3780"
"10:46:22.1782224 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1782305 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000026","Desired Access: Read","3780"
"10:46:22.1782403 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1782489 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1782587 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000013","","3780"
"10:46:22.1782672 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1782749 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000026","Desired Access: Read","3780"
"10:46:22.1782851 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000017","Length: 144","3780"
"10:46:22.1782937 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1783035 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000008","","3780"
"10:46:22.1783116 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1783197 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000026","Desired Access: Read","3780"
"10:46:22.1783295 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1783380 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1783479 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000008","","3780"
"10:46:22.1783560 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1783641 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000025","Desired Access: Read","3780"
"10:46:22.1783739 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1783824 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1783922 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000017","","3780"
"10:46:22.1784012 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","","3780"
"10:46:22.1784140 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","","3780"
"10:46:22.1784230 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000012","","3780"
"10:46:22.1784387 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1784473 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000030","Desired Access: All Access","3780"
"10:46:22.1784562 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000239","Desired Access: All Access","3780"
"10:46:22.1784678 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000017","Information: Owner","3780"
"10:46:22.1784771 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000013","Information: Owner","3780"
"10:46:22.1784878 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1784963 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000026","Desired Access: Read","3780"
"10:46:22.1785049 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000034","Desired Access: Read","3780"
"10:46:22.1785172 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000026","Length: 16","3780"
"10:46:22.1785266 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000026","Type: REG_SZ, Length: 8, Data: 2.0","3780"
"10:46:22.1785373 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000021","Length: 44","3780"
"10:46:22.1785458 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000022","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","3780"
"10:46:22.1785561 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1785642 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000030","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1785748 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000022","Type: REG_DWORD, Length: 4, Data: 8","3780"
"10:46:22.1785949 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000021","Type: REG_DWORD, Length: 4, Data: 8","3780"
"10:46:22.1786047 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1786128 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000022","Desired Access: Read","3780"
"10:46:22.1786231 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000021","Type: REG_DWORD, Length: 4, Data: 1015","3780"
"10:46:22.1786329 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000021","Type: REG_DWORD, Length: 4, Data: 14","3780"
"10:46:22.1786418 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1786495 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000030","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1786602 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1786683 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000025","Desired Access: Read","3780"
"10:46:22.1786785 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1786871 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1786977 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000009","","3780"
"10:46:22.1787063 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1787139 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000026","Desired Access: Read","3780"
"10:46:22.1787242 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1787327 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1787425 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000013","","3780"
"10:46:22.1787506 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1787587 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000026","Desired Access: Read","3780"
"10:46:22.1787690 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1787775 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1787873 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000009","","3780"
"10:46:22.1787954 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1788031 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000026","Desired Access: Read","3780"
"10:46:22.1788129 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1788215 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1788313 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000013","","3780"
"10:46:22.1788398 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1788475 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000025","Desired Access: Read","3780"
"10:46:22.1788573 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1788658 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1788761 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000008","","3780"
"10:46:22.1788838 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1788919 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000025","Desired Access: Read","3780"
"10:46:22.1789017 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1789102 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1789200 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000013","","3780"
"10:46:22.1789286 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1789367 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000021","Desired Access: Read","3780"
"10:46:22.1789465 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1789550 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1789648 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000009","","3780"
"10:46:22.1789729 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1789810 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000026","Desired Access: Read","3780"
"10:46:22.1789908 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1789994 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1790092 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000013","","3780"
"10:46:22.1790173 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1790254 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000026","Desired Access: Read","3780"
"10:46:22.1790352 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1790442 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1790540 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000008","","3780"
"10:46:22.1790625 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1790702 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000026","Desired Access: Read","3780"
"10:46:22.1790800 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1790886 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1790984 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000012","","3780"
"10:46:22.1791065 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1791146 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000025","Desired Access: Read","3780"
"10:46:22.1791248 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000017","Length: 144","3780"
"10:46:22.1791329 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1791432 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000008","","3780"
"10:46:22.1791513 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1791594 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000025","Desired Access: Read","3780"
"10:46:22.1791692 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1791777 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1791875 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000009","","3780"
"10:46:22.1791956 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1792038 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000021","Desired Access: Read","3780"
"10:46:22.1792136 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1792217 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1792319 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000009","","3780"
"10:46:22.1792400 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1792477 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000026","Desired Access: Read","3780"
"10:46:22.1792579 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1792665 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1792763 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000008","","3780"
"10:46:22.1792844 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","","3780"
"10:46:22.1792972 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","","3780"
"10:46:22.1793062 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000008","","3780"
"10:46:22.1793219 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1793300 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000030","Desired Access: All Access","3780"
"10:46:22.1793394 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000235","Desired Access: All Access","3780"
"10:46:22.1793505 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000022","Information: Owner","3780"
"10:46:22.1793603 AM","firefox.exe","8864","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000009","Information: Owner","3780"
"10:46:22.1793710 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1793791 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000026","Desired Access: Read","3780"
"10:46:22.1793881 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000030","Desired Access: Read","3780"
"10:46:22.1794004 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000026","Length: 16","3780"
"10:46:22.1794103 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000021","Type: REG_SZ, Length: 8, Data: 2.0","3780"
"10:46:22.1794205 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000021","Length: 44","3780"
"10:46:22.1794290 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000022","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","3780"
"10:46:22.1794393 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1794474 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000034","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1794580 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000026","Type: REG_DWORD, Length: 4, Data: 8","3780"
"10:46:22.1794781 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000021","Type: REG_DWORD, Length: 4, Data: 8","3780"
"10:46:22.1794879 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1794960 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000026","Desired Access: Read","3780"
"10:46:22.1795063 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000021","Type: REG_DWORD, Length: 4, Data: 1015","3780"
"10:46:22.1795161 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000021","Type: REG_DWORD, Length: 4, Data: 14","3780"
"10:46:22.1795250 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1795331 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000026","Desired Access: Maximum Allowed, Granted Access: Read","3780"
"10:46:22.1795434 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1795515 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000025","Desired Access: Read","3780"
"10:46:22.1795617 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000030","Length: 144","3780"
"10:46:22.1795711 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1795818 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000008","","3780"
"10:46:22.1795899 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1795984 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000026","Desired Access: Read","3780"
"10:46:22.1796087 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1796172 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1796274 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000009","","3780"
"10:46:22.1796355 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1796436 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000026","Desired Access: Read","3780"
"10:46:22.1796539 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000017","Length: 144","3780"
"10:46:22.1796620 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1796718 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000013","","3780"
"10:46:22.1796799 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1796880 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000026","Desired Access: Read","3780"
"10:46:22.1796978 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1797064 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1797166 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000009","","3780"
"10:46:22.1797247 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1797328 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000022","Desired Access: Read","3780"
"10:46:22.1797426 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000017","Length: 144","3780"
"10:46:22.1797507 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1797610 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000008","","3780"
"10:46:22.1797691 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1797772 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000021","Desired Access: Read","3780"
"10:46:22.1797870 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000017","Length: 144","3780"
"10:46:22.1797951 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1798054 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000008","","3780"
"10:46:22.1798135 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1798211 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000026","Desired Access: Read","3780"
"10:46:22.1798314 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1798399 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1798497 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000009","","3780"
"10:46:22.1798578 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1798659 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000026","Desired Access: Read","3780"
"10:46:22.1798762 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000017","Length: 144","3780"
"10:46:22.1798843 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1798945 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000009","","3780"
"10:46:22.1799026 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1799103 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000026","Desired Access: Read","3780"
"10:46:22.1799206 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000017","Length: 144","3780"
"10:46:22.1799287 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1799385 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000008","","3780"
"10:46:22.1799466 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1799547 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000025","Desired Access: Read","3780"
"10:46:22.1799645 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1799730 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000017","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1799828 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000009","","3780"
"10:46:22.1799910 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1799986 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000026","Desired Access: Read","3780"
"10:46:22.1800084 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1800170 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1800268 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000008","","3780"
"10:46:22.1800349 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1800430 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000021","Desired Access: Read","3780"
"10:46:22.1800528 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000022","Length: 144","3780"
"10:46:22.1800614 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1800712 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000012","","3780"
"10:46:22.1800797 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1800874 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000025","Desired Access: Read","3780"
"10:46:22.1800972 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Length: 144","3780"
"10:46:22.1801057 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1801160 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000012","","3780"
"10:46:22.1801241 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","3780"
"10:46:22.1801322 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000025","Desired Access: Read","3780"
"10:46:22.1801424 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000017","Length: 144","3780"
"10:46:22.1801510 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","3780"
"10:46:22.1801608 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000008","","3780"
"10:46:22.1801684 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","","3780"
"10:46:22.1801859 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","","3780"
"10:46:22.1801949 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","","3780"
"10:46:22.1837990 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\SecurityManager\TransientObjects\%5C%5C.%5CRpc%5CAllowLpacAppExperience%5CInterface","0.0000196","Desired Access: Read","5728"
"10:46:22.1838489 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\SecurityManager\TransientObjects\%5C%5C.%5CRpc%5CAllowLpacAppExperience%5CInterface\SecurityDescriptor","0.0000038","Length: 16","5728"
"10:46:22.1838711 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\SecurityManager\TransientObjects\%5C%5C.%5CRpc%5CAllowLpacAppExperience%5CInterface\SecurityDescriptor","0.0000030","Type: REG_BINARY, Length: 264, Data: 01 00 04 80 00 00 00 00 00 00 00 00 00 00 00 00","5728"
"10:46:22.1838928 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\SecurityManager\TransientObjects\%5C%5C.%5CRpc%5CAllowLpacAppExperience%5CInterface","0.0000017","","5728"
"10:46:22.1923413 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.1923647 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\DirectX\UserGpuPreferences","0.0000056","Desired Access: Read","5728"
"10:46:22.1927146 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 1436","5728"
"10:46:22.1930248 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 7552","5728"
"10:46:22.1933563 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000188","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:22.1933644 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\dwmapi.dll","0.0084365","Offset: 112,128, Length: 6,144, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.1934032 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000056","Name: \Program Files\Firefox Nightly\firefox.exe","3800"
"10:46:22.1934216 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000025","Name: \Program Files\Firefox Nightly\firefox.exe","3800"
"10:46:22.1934967 AM","firefox.exe","7384","QueryNormalizedNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000141","","3800"
"10:46:22.1935244 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000064","","3800"
"10:46:22.1938333 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:22.1938572 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000034","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","3800"
"10:46:22.1938696 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000047","","3800"
"10:46:22.1940407 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:22.1940607 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","3800"
"10:46:22.1940710 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000038","","3800"
"10:46:22.1941098 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000051","Desired Access: Query Value, Enumerate Sub Keys","3800"
"10:46:22.1941264 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Wow64\x86\xtajit","0.0000099","Desired Access: Query Value","3800"
"10:46:22.1942233 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000119","Desired Access: Read Data/List Directory, Execute/Traverse, Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:22.1942497 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\firefox.exe","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE","3800"
"10:46:22.1942715 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\firefox.exe","0.0000017","SyncType: SyncTypeOther","3800"
"10:46:22.1943027 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000034","Desired Access: Query Value, Enumerate Sub Keys","3800"
"10:46:22.1943283 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000029","Information: Label","3800"
"10:46:22.1943713 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000039","Name: \Program Files\Firefox Nightly\firefox.exe","3800"
"10:46:22.1946209 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\bam\UserSettings\S-1-5-21-429253301-29906273-2566354956-1001","0.0000039","Desired Access: All Access","3800"
"10:46:22.1946363 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\bam\UserSettings\S-1-5-21-429253301-29906273-2566354956-1001\\Device\HarddiskVolume3\Program Files\Firefox Nightly\firefox.exe","0.0000051","Type: REG_BINARY, Length: 24, Data: 73 23 4F 76 96 03 D6 01 00 00 00 00 00 00 00 00","3800"
"10:46:22.1946521 AM","firefox.exe","7384","RegSetValue","HKLM\System\CurrentControlSet\Services\bam\UserSettings\S-1-5-21-429253301-29906273-2566354956-1001\\Device\HarddiskVolume3\Program Files\Firefox Nightly\firefox.exe","0.0000388","Type: REG_BINARY, Length: 24, Data: 5E D3 7E 76 96 03 D6 01 00 00 00 00 00 00 00 00","3800"
"10:46:22.1947041 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\bam\UserSettings\S-1-5-21-429253301-29906273-2566354956-1001","0.0000013","","3800"
"10:46:22.1947169 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\BAM","0.0000052","Desired Access: Query Value","3800"
"10:46:22.1947306 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager\BAM","0.0000047","Desired Access: Query Value","3800"
"10:46:22.1947571 AM","firefox.exe","7384","Process Create","C:\Program Files\Firefox Nightly\firefox.exe","0.0000000","PID: 1008, Command line: ""C:\Program Files\Firefox Nightly\firefox.exe"" -contentproc --channel=""7384.1.1224613405\483374873"" -parentBuildID 20200325093457 -prefsHandle 1764 -prefMapHandle 1760 -prefsLen 41 -prefMapSize 227134 -appdir ""C:\Program Files\Firefox Nightly\browser"" - 7384 ""\\.\pipe\gecko-crash-server-pipe.7384"" 1808 gpu","3800"
"10:46:22.1947635 AM","firefox.exe","1008","Process Start","","0.0000000","Parent PID: 7384, Command line: ""C:\Program Files\Firefox Nightly\firefox.exe"" -contentproc --channel=""7384.1.1224613405\483374873"" -parentBuildID 20200325093457 -prefsHandle 1764 -prefMapHandle 1760 -prefsLen 41 -prefMapSize 227134 -appdir ""C:\Program Files\Firefox Nightly\browser"" - 7384 ""\\.\pipe\gecko-crash-server-pipe.7384"" 1808 gpu, Current directory: C:\Program Files\Firefox Nightly\, Environment: ;	=::=::\;	ALLUSERSPROFILE=C:\ProgramData;	APPDATA=C:\Users\diggles\AppData\Roaming;	CommonProgramFiles=C:\Program Files\Common Files;	CommonProgramFiles(x86)=C:\Program Files (x86)\Common Files;	CommonProgramW6432=C:\Program Files\Common Files;	COMPUTERNAME=LAPTOP-49TAGD3F;	ComSpec=C:\WINDOWS\system32\cmd.exe;	DriverData=C:\Windows\System32\Drivers\DriverData;	HOMEDRIVE=C:;	HOMEPATH=\Users\diggles;	LOCALAPPDATA=C:\Users\diggles\AppData\Local;	LOGONSERVER=\\LAPTOP-49TAGD3F;	MOZ_CRASHREPORTER_DATA_DIRECTORY=C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Crash Reports;	MOZ_CRASHREPORTER_EVENTS_DIRECTORY=C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\crashes\events;	MOZ_CRASHREPORTER_PING_DIRECTORY=C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Pending Pings;	MOZ_CRASHREPORTER_RESTART_ARG_0=C:\Program Files\Firefox Nightly\firefox.exe;	MOZ_CRASHREPORTER_STRINGS_OVERRIDE=C:\Program Files\Firefox Nightly\browser\crashreporter-override.ini;	NUMBER_OF_PROCESSORS=4;	OneDrive=C:\Users\diggles\OneDrive;	OS=Windows_NT;	Path=C:\Program Files\Firefox Nightly;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\WINDOWS\System32\OpenSSH\;C:\Users\diggles\AppData\Local\Microsoft\WindowsApps;;	PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC;	PROCESSOR_ARCHITECTURE=AMD64;	PROCESSOR_IDENTIFIER=Intel64 Family 6 Model 142 Stepping 9, GenuineIntel;	PROCESSOR_LEVEL=6;	PROCESSOR_REVISION=8e09;	ProgramData=C:\ProgramData;	ProgramFiles=C:\Program Files;	ProgramFiles(x86)=C:\Program Files (x86);	ProgramW6432=C:\Program Files;	PSModulePath=C:\Program Files\WindowsPowerShell\Modules;C:\WINDOWS\system32\WindowsPowerShell\v1.0\Modules;	PUBLIC=C:\Users\Public;	SESSIONNAME=Console;	SystemDrive=C:;	SystemRoot=C:\WINDOWS;	TEMP=C:\Users\diggles\AppData\Local\Temp;	TMP=C:\Users\diggles\AppData\Local\Temp;	USERDOMAIN=LAPTOP-49TAGD3F;	USERDOMAIN_ROAMINGPROFILE=LAPTOP-49TAGD3F;	USERNAME=diggles;	USERPROFILE=C:\Users\diggles;	windir=C:\WINDOWS","3800"
"10:46:22.1947694 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 1120","3800"
"10:46:22.1948083 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders","0.0000076","Desired Access: Query Value","3800"
"10:46:22.1948262 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Cache","0.0000051","Type: REG_SZ, Length: 118, Data: C:\Users\diggles\AppData\Local\Microsoft\Windows\INetCache","3800"
"10:46:22.1948420 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders","0.0000012","","3800"
"10:46:22.1948556 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Layers","0.0000137","Desired Access: Query Value","3800"
"10:46:22.1949025 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000035","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","3800"
"10:46:22.1950177 AM","firefox.exe","7384","CreateFile","C:\Windows\apppatch\sysmain.sdb","0.0000133","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:22.1950561 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\apppatch\sysmain.sdb","0.0000039","CreationTime: 4/25/2019 5:35:45 PM, LastAccessTime: 4/25/2019 5:35:45 PM, LastWriteTime: 2/16/2019 1:02:22 AM, ChangeTime: 4/25/2019 8:14:04 PM, FileAttributes: A","3800"
"10:46:22.1950677 AM","firefox.exe","7384","CloseFile","C:\Windows\apppatch\sysmain.sdb","0.0000051","","3800"
"10:46:22.1951009 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000022","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","3800"
"10:46:22.1951577 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\SideBySide","0.0000077","Desired Access: Read","3800"
"10:46:22.1951743 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest","0.0000034","Length: 20","3800"
"10:46:22.1951871 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide","0.0000013","","3800"
"10:46:22.1956906 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000081","","3800"
"10:46:22.1957815 AM","firefox.exe","1008","Load Image","C:\Program Files\Firefox Nightly\firefox.exe","0.0000000","Image Base: 0x7ff7bb360000, Image Size: 0x93000","1120"
"10:46:22.1958442 AM","firefox.exe","1008","Load Image","C:\Windows\System32\ntdll.dll","0.0000000","Image Base: 0x7ffb49780000, Image Size: 0x1e1000","1120"
"10:46:22.1959948 AM","firefox.exe","1008","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\Segment Heap","0.0000056","Desired Access: Query Value","1120"
"10:46:22.1960076 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager\Segment Heap","0.0000047","Desired Access: Query Value","1120"
"10:46:22.1960652 AM","firefox.exe","1008","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager","0.0000034","Desired Access: Query Value, Enumerate Sub Keys","1120"
"10:46:22.1960746 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000038","Desired Access: Query Value, Enumerate Sub Keys","1120"
"10:46:22.1960861 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\ResourcePolicies","0.0000030","Length: 24","1120"
"10:46:22.1960976 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000013","","1120"
"10:46:22.1964548 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly","0.0000128","Desired Access: Execute/Traverse, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.1966212 AM","firefox.exe","1008","Load Image","C:\Windows\System32\kernel32.dll","0.0000000","Image Base: 0x7ffb470b0000, Image Size: 0xb1000","1120"
"10:46:22.1968042 AM","firefox.exe","1008","Load Image","C:\Windows\System32\KernelBase.dll","0.0000000","Image Base: 0x7ffb46720000, Image Size: 0x273000","1120"
"10:46:22.1976622 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\SafeBoot\Option","0.0000060","Desired Access: Query Value, Set Value","1120"
"10:46:22.1976767 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\SafeBoot\Option","0.0000077","Desired Access: Query Value, Set Value","1120"
"10:46:22.1976929 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Srp\GP\DLL","0.0000039","Desired Access: Read","1120"
"10:46:22.1977019 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Srp\GP\DLL","0.0000060","Desired Access: Read","1120"
"10:46:22.1977147 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers","0.0000068","Desired Access: Query Value","1120"
"10:46:22.1977296 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Windows\safer\codeidentifiers\TransparentEnabled","0.0000039","Length: 80","1120"
"10:46:22.1977429 AM","firefox.exe","1008","RegCloseKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\safer\codeidentifiers","0.0000008","","1120"
"10:46:22.1977578 AM","firefox.exe","1008","RegOpenKey","HKCU\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers","0.0000068","Desired Access: Query Value","1120"
"10:46:22.1977898 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\FileSystem\","0.0000034","Desired Access: Read","1120"
"10:46:22.1977988 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\FileSystem","0.0000038","Desired Access: Read","1120"
"10:46:22.1978099 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\FileSystem\LongPathsEnabled","0.0000029","Type: REG_DWORD, Length: 4, Data: 0","1120"
"10:46:22.1978205 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Control\FileSystem","0.0000009","","1120"
"10:46:22.1979869 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly","0.0000141","Desired Access: Execute/Traverse, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.1980539 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 8584","1120"
"10:46:22.1981469 AM","firefox.exe","1008","Load Image","C:\Windows\System32\advapi32.dll","0.0000000","Image Base: 0x7ffb48a60000, Image Size: 0xa1000","1120"
"10:46:22.1983236 AM","firefox.exe","1008","Load Image","C:\Windows\System32\msvcrt.dll","0.0000000","Image Base: 0x7ffb48e80000, Image Size: 0x9e000","1120"
"10:46:22.1983624 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8584"
"10:46:22.1983931 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8584"
"10:46:22.1984059 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000056","","8584"
"10:46:22.1984447 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 6852","1120"
"10:46:22.1985045 AM","firefox.exe","1008","Load Image","C:\Windows\System32\sechost.dll","0.0000000","Image Base: 0x7ffb48e20000, Image Size: 0x5b000","1120"
"10:46:22.1985160 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000145","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8584"
"10:46:22.1985484 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8584"
"10:46:22.1985715 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000029","SyncType: SyncTypeOther","8584"
"10:46:22.1986273 AM","firefox.exe","1008","Load Image","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000000","Image Base: 0x7ffb3c6d0000, Image Size: 0x8f000","8584"
"10:46:22.1986308 AM","firefox.exe","1008","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager","0.0000068","Desired Access: Query Value, Enumerate Sub Keys","1120"
"10:46:22.1986500 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000072","Desired Access: Query Value, Enumerate Sub Keys","1120"
"10:46:22.1986709 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\ResourcePolicies","0.0000034","Length: 24","1120"
"10:46:22.1986862 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000026","","1120"
"10:46:22.1987643 AM","firefox.exe","1008","RegOpenKey","HKCU","0.0000073","Desired Access: Maximum Allowed, Granted Access: All Access","8584"
"10:46:22.1987686 AM","firefox.exe","1008","Load Image","C:\Windows\System32\rpcrt4.dll","0.0000000","Image Base: 0x7ffb471a0000, Image Size: 0x124000","1120"
"10:46:22.1987852 AM","firefox.exe","1008","RegOpenKey","HKCU\Control Panel\Desktop\MuiCached\MachineLanguageConfiguration","0.0000064","Desired Access: Read","8584"
"10:46:22.1988053 AM","firefox.exe","1008","RegCloseKey","HKCU","0.0000025","","8584"
"10:46:22.1988219 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Policies\Microsoft\MUI\Settings","0.0000064","Desired Access: Read","8584"
"10:46:22.1988403 AM","firefox.exe","1008","RegOpenKey","HKCU","0.0000038","Desired Access: Maximum Allowed, Granted Access: All Access","8584"
"10:46:22.1988526 AM","firefox.exe","1008","RegOpenKey","HKCU\Software\Policies\Microsoft\Control Panel\Desktop","0.0000047","Desired Access: Read","8584"
"10:46:22.1988646 AM","firefox.exe","1008","RegOpenKey","HKCU\Control Panel\Desktop\LanguageConfiguration","0.0000034","Desired Access: Read","8584"
"10:46:22.1988765 AM","firefox.exe","1008","RegEnumValue","HKCU\Control Panel\Desktop\LanguageConfiguration","0.0000026","Index: 0, Length: 512","8584"
"10:46:22.1988919 AM","firefox.exe","1008","RegCloseKey","HKCU\Control Panel\Desktop\LanguageConfiguration","0.0000017","","8584"
"10:46:22.1989043 AM","firefox.exe","1008","RegCloseKey","HKCU","0.0000017","","8584"
"10:46:22.1989188 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Policies\Microsoft\MUI\Settings","0.0000055","Desired Access: Read","8584"
"10:46:22.1989397 AM","firefox.exe","1008","RegOpenKey","HKCU","0.0000047","Desired Access: Maximum Allowed, Granted Access: All Access","8584"
"10:46:22.1989465 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 800","1120"
"10:46:22.1989572 AM","firefox.exe","1008","RegOpenKey","HKCU\Software\Policies\Microsoft\Control Panel\Desktop","0.0000051","Desired Access: Read","8584"
"10:46:22.1989742 AM","firefox.exe","1008","RegOpenKey","HKCU\Control Panel\Desktop","0.0000039","Desired Access: Read","8584"
"10:46:22.1990079 AM","firefox.exe","1008","RegQueryValue","HKCU\Control Panel\Desktop\PreferredUILanguages","0.0000060","Length: 12","8584"
"10:46:22.1990280 AM","firefox.exe","1008","RegCloseKey","HKCU\Control Panel\Desktop","0.0000013","","8584"
"10:46:22.1990408 AM","firefox.exe","1008","RegCloseKey","HKCU","0.0000013","","8584"
"10:46:22.1990549 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Policies\Microsoft\MUI\Settings","0.0000051","Desired Access: Read","8584"
"10:46:22.1990745 AM","firefox.exe","1008","RegOpenKey","HKCU","0.0000247","Desired Access: Maximum Allowed, Granted Access: All Access","8584"
"10:46:22.1990975 AM","firefox.exe","1008","Load Image","C:\Windows\System32\ucrtbase.dll","0.0000000","Image Base: 0x7ffb45da0000, Image Size: 0xf8000","1120"
"10:46:22.1991129 AM","firefox.exe","1008","RegOpenKey","HKCU\Control Panel\Desktop\MuiCached","0.0000047","Desired Access: Read","8584"
"10:46:22.1991274 AM","firefox.exe","1008","RegQueryValue","HKCU\Control Panel\Desktop\MuiCached\MachinePreferredUILanguages","0.0000030","Length: 12","8584"
"10:46:22.1991381 AM","firefox.exe","1008","RegQueryValue","HKCU\Control Panel\Desktop\MuiCached\MachinePreferredUILanguages","0.0000025","Type: REG_MULTI_SZ, Length: 12, Data: en-US","8584"
"10:46:22.1991526 AM","firefox.exe","1008","RegCloseKey","HKCU\Control Panel\Desktop\MuiCached","0.0000013","","8584"
"10:46:22.1991624 AM","firefox.exe","1008","RegCloseKey","HKCU","0.0000013","","8584"
"10:46:22.1992324 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000068","Desired Access: Query Value","6852"
"10:46:22.1992511 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000069","Desired Access: Query Value","6852"
"10:46:22.1992695 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\SafeDllSearchMode","0.0000034","Length: 16","6852"
"10:46:22.1994363 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\SideBySide","0.0000107","Desired Access: Read","8584"
"10:46:22.1994623 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest","0.0000043","Length: 20","8584"
"10:46:22.1994820 AM","firefox.exe","1008","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide","0.0000017","","8584"
"10:46:22.1996403 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000179","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8584"
"10:46:22.1996432 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000274","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6852"
"10:46:22.1996462 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.1996855 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000055","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","6852"
"10:46:22.1996893 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000056","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","1120"
"10:46:22.1997026 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000068","","6852"
"10:46:22.1997115 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000068","","1120"
"10:46:22.1998796 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000145","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","6852"
"10:46:22.1999001 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000205","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.1999116 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","6852"
"10:46:22.1999406 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:22.1999415 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000030","SyncType: SyncTypeOther","6852"
"10:46:22.1999782 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000034","SyncType: SyncTypeOther","1120"
"10:46:22.2000294 AM","firefox.exe","1008","Load Image","C:\Windows\System32\msvcp140.dll","0.0000000","Image Base: 0x7ffb1dfe0000, Image Size: 0xa7000","6852"
"10:46:22.2000366 AM","firefox.exe","1008","Load Image","C:\Windows\System32\vcruntime140.dll","0.0000000","Image Base: 0x7ffb3c690000, Image Size: 0x16000","1120"
"10:46:22.2000580 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000085","","8584"
"10:46:22.2001424 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000077","","1120"
"10:46:22.2001689 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000081","","6852"
"10:46:22.2001872 AM","firefox.exe","1008","Load Image","C:\Windows\System32\crypt32.dll","0.0000000","Image Base: 0x7ffb469a0000, Image Size: 0x1e2000","8584"
"10:46:22.2003583 AM","firefox.exe","1008","Load Image","C:\Windows\System32\msasn1.dll","0.0000000","Image Base: 0x7ffb45b10000, Image Size: 0x12000","8584"
"10:46:22.2004957 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6852"
"10:46:22.2005000 AM","firefox.exe","1008","Load Image","C:\Windows\System32\wintrust.dll","0.0000000","Image Base: 0x7ffb45ea0000, Image Size: 0x57000","8584"
"10:46:22.2005213 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000043","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","6852"
"10:46:22.2005354 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000064","","6852"
"10:46:22.2006468 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000119","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","6852"
"10:46:22.2006523 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000077","","8584"
"10:46:22.2006749 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","6852"
"10:46:22.2006937 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000013","SyncType: SyncTypeOther","6852"
"10:46:22.2007406 AM","firefox.exe","1008","Load Image","C:\Windows\System32\cryptbase.dll","0.0000000","Image Base: 0x7ffb45480000, Image Size: 0xb000","6852"
"10:46:22.2008460 AM","firefox.exe","1008","Load Image","C:\Windows\System32\bcryptprimitives.dll","0.0000000","Image Base: 0x7ffb46b90000, Image Size: 0x7a000","6852"
"10:46:22.2009092 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000072","","6852"
"10:46:22.2012654 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\version.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","800"
"10:46:22.2013192 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8584"
"10:46:22.2013230 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000116","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","800"
"10:46:22.2013503 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\version.dll","0.0000073","","800"
"10:46:22.2013589 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","8584"
"10:46:22.2013738 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000051","","8584"
"10:46:22.2015419 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\version.dll","0.0000158","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","800"
"10:46:22.2015462 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000192","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8584"
"10:46:22.2015816 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\version.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","800"
"10:46:22.2015970 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8584"
"10:46:22.2016021 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\version.dll","0.0000013","SyncType: SyncTypeOther","800"
"10:46:22.2016226 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000025","SyncType: SyncTypeOther","8584"
"10:46:22.2016789 AM","firefox.exe","1008","Load Image","C:\Windows\System32\version.dll","0.0000000","Image Base: 0x7ffb39300000, Image Size: 0xa000","800"
"10:46:22.2017036 AM","firefox.exe","1008","Load Image","C:\Windows\System32\dbghelp.dll","0.0000000","Image Base: 0x7ffb37030000, Image Size: 0x1c9000","8584"
"10:46:22.2018137 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\version.dll","0.0000085","","800"
"10:46:22.2019379 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000089","","8584"
"10:46:22.2019950 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.2020526 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000043","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","5728"
"10:46:22.2020816 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000056","","5728"
"10:46:22.2022062 AM","firefox.exe","1008","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager","0.0000077","Desired Access: Query Value, Enumerate Sub Keys","1120"
"10:46:22.2022250 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000051","Desired Access: Query Value, Enumerate Sub Keys","1120"
"10:46:22.2022408 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\ResourcePolicies","0.0000034","Length: 24","1120"
"10:46:22.2022549 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000013","","1120"
"10:46:22.2022574 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000180","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.2023099 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Versions","0.0000051","Desired Access: Read","1120"
"10:46:22.2023167 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dcomp.dll","0.0000073","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:22.2023227 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Versions","0.0000043","Desired Access: Read","1120"
"10:46:22.2023381 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Versions\(Default)","0.0000038","Type: REG_SZ, Length: 18, Data: 0006020E","1120"
"10:46:22.2023726 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dcomp.dll","0.0000026","SyncType: SyncTypeOther","5728"
"10:46:22.2024784 AM","firefox.exe","7384","Load Image","C:\Windows\System32\dcomp.dll","0.0000000","Image Base: 0x7ffb435f0000, Image Size: 0x19c000","5728"
"10:46:22.2025186 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\dcomp.dll","0.0000059","Name: \Windows\System32\dcomp.dll","5728"
"10:46:22.2026935 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000072","","5728"
"10:46:22.2027524 AM","firefox.exe","1008","RegOpenKey","HKLM","0.0000042","Desired Access: Maximum Allowed, Granted Access: Read","1120"
"10:46:22.2027686 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2027792 AM","firefox.exe","1008","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\msasn1","0.0000077","Desired Access: Read","1120"
"10:46:22.2028014 AM","firefox.exe","1008","RegOpenKey","HKLM\SOFTWARE\Microsoft\AppModel\Lookaside\Packages","0.0000052","Desired Access: Read","1120"
"10:46:22.2032208 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy","0.0000077","Desired Access: Query Value","1120"
"10:46:22.2032418 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy","0.0000072","Desired Access: Query Value","1120"
"10:46:22.2032618 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy\Enabled","0.0000060","Type: REG_DWORD, Length: 4, Data: 0","1120"
"10:46:22.2032810 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000064","Desired Access: Query Value","1120"
"10:46:22.2032968 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000098","Desired Access: Query Value","1120"
"10:46:22.2033190 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy","0.0000042","Length: 20","1120"
"10:46:22.2033318 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.2033335 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy\MDMEnabled","0.0000034","Type: REG_DWORD, Length: 4, Data: 0","1120"
"10:46:22.2033506 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy","0.0000017","","1120"
"10:46:22.2033638 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000017","","1120"
"10:46:22.2033791 AM","firefox.exe","1008","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Policies\Microsoft\Cryptography\Configuration","0.0000056","Desired Access: Query Value","1120"
"10:46:22.2033851 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000047","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","5728"
"10:46:22.2033945 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Policies\Microsoft\Cryptography\Configuration","0.0000051","Desired Access: Query Value","1120"
"10:46:22.2034175 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000077","","5728"
"10:46:22.2035682 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.2035878 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\Dwm","0.0000060","Desired Access: Read","5728"
"10:46:22.2036130 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\Dwm\DebugFailFast","0.0000034","Length: 16","5728"
"10:46:22.2036428 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\Dwm","0.0000022","","5728"
"10:46:22.2037273 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\WMI\Security\504665a2-31f7-4b2f-bf1b-9635312e8088","0.0000337","Length: 524","5728"
"10:46:22.2037563 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2037870 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000043","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","1120"
"10:46:22.2038054 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000060","","1120"
"10:46:22.2038779 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 1360","5728"
"10:46:22.2042901 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2043234 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000038","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","1120"
"10:46:22.2043379 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000059","","1120"
"10:46:22.2044130 AM","firefox.exe","1008","QueryNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000055","Name: \Program Files\Firefox Nightly\firefox.exe","1120"
"10:46:22.2046954 AM","firefox.exe","1008","RegOpenKey","HKCU","0.0000081","Desired Access: Maximum Allowed, Granted Access: All Access","1120"
"10:46:22.2047185 AM","firefox.exe","1008","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2047334 AM","firefox.exe","1008","RegCreateKey","HKCU\SOFTWARE\Mozilla\Firefox\Launcher","0.0000060","Desired Access: All Access, Disposition: REG_OPENED_EXISTING_KEY","1120"
"10:46:22.2047577 AM","firefox.exe","1008","RegCloseKey","HKCU\Software\Mozilla\Firefox\Launcher","0.0000017","","1120"
"10:46:22.2051165 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000261","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2051601 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000029","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","1120"
"10:46:22.2051754 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000068","","1120"
"10:46:22.2053640 AM","firefox.exe","1008","Load Image","C:\Windows\System32\user32.dll","0.0000000","Image Base: 0x7ffb488d0000, Image Size: 0x190000","1120"
"10:46:22.2054579 AM","firefox.exe","1008","Load Image","C:\Windows\System32\win32u.dll","0.0000000","Image Base: 0x7ffb45f50000, Image Size: 0x20000","1120"
"10:46:22.2055462 AM","firefox.exe","1008","Load Image","C:\Windows\System32\gdi32.dll","0.0000000","Image Base: 0x7ffb47170000, Image Size: 0x28000","1120"
"10:46:22.2056337 AM","firefox.exe","1008","Load Image","C:\Windows\System32\gdi32full.dll","0.0000000","Image Base: 0x7ffb45c00000, Image Size: 0x192000","1120"
"10:46:22.2057151 AM","firefox.exe","1008","Load Image","C:\Windows\System32\msvcp_win.dll","0.0000000","Image Base: 0x7ffb46680000, Image Size: 0x9f000","1120"
"10:46:22.2066649 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\imm32.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2067251 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000042","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","1120"
"10:46:22.2067417 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\imm32.dll","0.0000060","","1120"
"10:46:22.2068791 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\imm32.dll","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2069175 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\imm32.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:22.2069320 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\System32\imm32.dll","0.0000034","AllocationSize: 176,128, EndOfFile: 173,648, NumberOfLinks: 2, DeletePending: False, Directory: False","1120"
"10:46:22.2069533 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\imm32.dll","0.0000017","SyncType: SyncTypeOther","1120"
"10:46:22.2070041 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\imm32.dll","0.0000056","","1120"
"10:46:22.2071193 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\fonts","0.0000819","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.2072324 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\fonts","0.0000047","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: D","5728"
"10:46:22.2072605 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\fonts","0.0000060","","5728"
"10:46:22.2072938 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\imm32.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2073369 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000043","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","1120"
"10:46:22.2073553 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\imm32.dll","0.0000068","","1120"
"10:46:22.2075080 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\imm32.dll","0.0000175","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2075579 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\imm32.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:22.2075639 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DWrite.dll","0.0139059","Offset: 2,607,616, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.2075750 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\System32\imm32.dll","0.0000034","AllocationSize: 176,128, EndOfFile: 173,648, NumberOfLinks: 2, DeletePending: False, Directory: False","1120"
"10:46:22.2076049 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\imm32.dll","0.0000025","SyncType: SyncTypeOther","1120"
"10:46:22.2076535 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\imm32.dll","0.0000060","","1120"
"10:46:22.2077764 AM","firefox.exe","1008","Load Image","C:\Windows\System32\imm32.dll","0.0000000","Image Base: 0x7ffb48730000, Image Size: 0x2d000","1120"
"10:46:22.2081467 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\imm32.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2081860 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000034","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","1120"
"10:46:22.2082009 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\imm32.dll","0.0000060","","1120"
"10:46:22.2082845 AM","firefox.exe","1008","QueryNameInformationFile","C:\Windows\System32\imm32.dll","0.0000034","Name: \Windows\System32\imm32.dll","1120"
"10:46:22.2085713 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\imm32.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2086220 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000034","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","1120"
"10:46:22.2086344 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\imm32.dll","0.0000051","","1120"
"10:46:22.2086711 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Error Message Instrument\","0.0000072","Desired Access: Read","1120"
"10:46:22.2086860 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Error Message Instrument","0.0000056","Desired Access: Read","1120"
"10:46:22.2087287 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options","0.0000077","Desired Access: Query Value, Enumerate Sub Keys","1120"
"10:46:22.2087462 AM","firefox.exe","1008","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000038","Desired Access: Query Value, Enumerate Sub Keys","1120"
"10:46:22.2087594 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Display","0.0000051","Desired Access: Read","1120"
"10:46:22.2087790 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Display","0.0000035","Desired Access: Read","1120"
"10:46:22.2087910 AM","firefox.exe","1008","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000025","Desired Access: Query Value, Enumerate Sub Keys","1120"
"10:46:22.2088012 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Display","0.0000030","Desired Access: Read","1120"
"10:46:22.2088209 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Display","0.0000034","Desired Access: Read","1120"
"10:46:22.2088460 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\GRE_Initialize","0.0000047","Desired Access: Read","1120"
"10:46:22.2088618 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize\DisableMetaFiles","0.0000030","Length: 20","1120"
"10:46:22.2088750 AM","firefox.exe","1008","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize","0.0000013","","1120"
"10:46:22.2089169 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Control Panel\Desktop","0.0000042","Desired Access: Read","1120"
"10:46:22.2089343 AM","firefox.exe","1008","RegOpenKey","HKCU\Software\Policies\Microsoft\Windows\Control Panel\Desktop","0.0000064","Desired Access: Read","1120"
"10:46:22.2089514 AM","firefox.exe","1008","RegOpenKey","HKCU\Control Panel\Desktop","0.0000039","Desired Access: Read","1120"
"10:46:22.2089663 AM","firefox.exe","1008","RegQueryValue","HKCU\Control Panel\Desktop\EnablePerProcessSystemDPI","0.0000039","Length: 20","1120"
"10:46:22.2089817 AM","firefox.exe","1008","RegCloseKey","HKCU\Control Panel\Desktop","0.0000013","","1120"
"10:46:22.2090431 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\Compatibility32","0.0000184","Desired Access: Read","1120"
"10:46:22.2090781 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Compatibility32\firefox","0.0000030","Length: 172","1120"
"10:46:22.2090935 AM","firefox.exe","1008","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Compatibility32","0.0000013","","1120"
"10:46:22.2091067 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\IME Compatibility","0.0000047","Desired Access: Read","1120"
"10:46:22.2095112 AM","firefox.exe","1008","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000055","Desired Access: Query Value, Enumerate Sub Keys","1120"
"10:46:22.2096166 AM","firefox.exe","1008","QueryNameInformationFile","C:\Windows\System32\user32.dll","0.0000081","Name: \Windows\System32\user32.dll","1120"
"10:46:22.2099259 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\dependentlibs.list","0.0000201","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2099780 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\dependentlibs.list","0.0000111","Offset: 0, Length: 476, Priority: Normal","1120"
"10:46:22.2101888 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2102126 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000035","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","1120"
"10:46:22.2102246 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000051","","1120"
"10:46:22.2103321 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2103581 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:22.2103701 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000030","AllocationSize: 90,112, EndOfFile: 87,200, NumberOfLinks: 1, DeletePending: False, Directory: False","1120"
"10:46:22.2103910 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000017","SyncType: SyncTypeOther","1120"
"10:46:22.2104307 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000055","","1120"
"10:46:22.2106274 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2106478 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","1120"
"10:46:22.2106585 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000043","","1120"
"10:46:22.2107575 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000107","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2107805 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:22.2108010 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000017","SyncType: SyncTypeOther","1120"
"10:46:22.2108953 AM","firefox.exe","1008","Load Image","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000000","Image Base: 0x7ffb3c6b0000, Image Size: 0x16000","1120"
"10:46:22.2109917 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000094","","1120"
"10:46:22.2113092 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2113437 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000039","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","1120"
"10:46:22.2113587 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000051","","1120"
"10:46:22.2116996 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2117273 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000034","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","1120"
"10:46:22.2117410 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000047","","1120"
"10:46:22.2117960 AM","firefox.exe","1008","QueryNameInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000038","Name: \Program Files\Firefox Nightly\vcruntime140.dll","1120"
"10:46:22.2120004 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2120238 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","1120"
"10:46:22.2120349 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000043","","1120"
"10:46:22.2121339 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000120","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2121591 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:22.2121702 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000026","AllocationSize: 626,688, EndOfFile: 625,808, NumberOfLinks: 1, DeletePending: False, Directory: False","1120"
"10:46:22.2121881 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000017","SyncType: SyncTypeOther","1120"
"10:46:22.2122291 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000055","","1120"
"10:46:22.2124189 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2124398 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","1120"
"10:46:22.2124501 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000038","","1120"
"10:46:22.2125512 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000107","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2125742 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:22.2125939 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000017","SyncType: SyncTypeOther","1120"
"10:46:22.2126890 AM","firefox.exe","1008","Load Image","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000000","Image Base: 0x7ffb32080000, Image Size: 0x9b000","1120"
"10:46:22.2128251 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000094","","1120"
"10:46:22.2130201 AM","firefox.exe","1008","QueryNameInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000056","Name: \Program Files\Firefox Nightly\msvcp140.dll","1120"
"10:46:22.2132467 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2132727 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000051","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","1120"
"10:46:22.2132868 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000051","","1120"
"10:46:22.2134865 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2135082 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","1120"
"10:46:22.2135180 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000043","","1120"
"10:46:22.2136209 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2136452 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:22.2136558 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000030","AllocationSize: 2,195,456, EndOfFile: 2,193,608, NumberOfLinks: 1, DeletePending: False, Directory: False","1120"
"10:46:22.2136750 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000018","SyncType: SyncTypeOther","1120"
"10:46:22.2137250 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000059","","1120"
"10:46:22.2139865 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2140155 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","1120"
"10:46:22.2140317 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000047","","1120"
"10:46:22.2141742 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000158","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2142088 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:22.2142404 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000025","SyncType: SyncTypeOther","1120"
"10:46:22.2143509 AM","firefox.exe","1008","Load Image","C:\Program Files\Firefox Nightly\nss3.dll","0.0000000","Image Base: 0x7ffb1da70000, Image Size: 0x21d000","1120"
"10:46:22.2144951 AM","firefox.exe","1008","Load Image","C:\Windows\System32\ws2_32.dll","0.0000000","Image Base: 0x7ffb48bc0000, Image Size: 0x6c000","1120"
"10:46:22.2146402 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000098","","1120"
"10:46:22.2155554 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\winmm.dll","0.0000763","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8584"
"10:46:22.2156876 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000107","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","8584"
"10:46:22.2156919 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\wsock32.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","800"
"10:46:22.2157154 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\winmm.dll","0.0000085","","8584"
"10:46:22.2157350 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000043","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","800"
"10:46:22.2157525 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\wsock32.dll","0.0000064","","800"
"10:46:22.2161002 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\winmm.dll","0.0000239","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8584"
"10:46:22.2161036 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\wsock32.dll","0.0000227","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","800"
"10:46:22.2161519 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","800"
"10:46:22.2161612 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8584"
"10:46:22.2161804 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000026","SyncType: SyncTypeOther","800"
"10:46:22.2161890 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000017","SyncType: SyncTypeOther","8584"
"10:46:22.2162568 AM","firefox.exe","1008","Load Image","C:\Windows\System32\wsock32.dll","0.0000000","Image Base: 0x7ffb3c880000, Image Size: 0x9000","800"
"10:46:22.2162611 AM","firefox.exe","1008","Load Image","C:\Windows\System32\winmm.dll","0.0000000","Image Base: 0x7ffb437c0000, Image Size: 0x23000","8584"
"10:46:22.2163494 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\wsock32.dll","0.0000085","","800"
"10:46:22.2163997 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\winmm.dll","0.0000086","","8584"
"10:46:22.2171276 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","800"
"10:46:22.2171665 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8584"
"10:46:22.2171695 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000038","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","800"
"10:46:22.2171874 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000064","","800"
"10:46:22.2172044 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000035","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","8584"
"10:46:22.2172117 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6852"
"10:46:22.2172241 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000128","","8584"
"10:46:22.2172552 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000051","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","6852"
"10:46:22.2172740 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000072","","6852"
"10:46:22.2174280 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000218","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","800"
"10:46:22.2174664 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","800"
"10:46:22.2174993 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000025","SyncType: SyncTypeOther","800"
"10:46:22.2175035 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000312","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8584"
"10:46:22.2175505 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8584"
"10:46:22.2175509 AM","firefox.exe","1008","Load Image","C:\Windows\System32\winmmbase.dll","0.0000000","Image Base: 0x7ffb43790000, Image Size: 0x2a000","800"
"10:46:22.2175569 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000226","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","6852"
"10:46:22.2175786 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000026","SyncType: SyncTypeOther","8584"
"10:46:22.2176000 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","6852"
"10:46:22.2176268 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000017","SyncType: SyncTypeOther","6852"
"10:46:22.2176657 AM","firefox.exe","1008","Load Image","C:\Windows\System32\winmmbase.dll","0.0000000","Image Base: 0x20f60db0000, Image Size: 0x2a000","8584"
"10:46:22.2177049 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000086","","8584"
"10:46:22.2177190 AM","firefox.exe","1008","Load Image","C:\Windows\System32\cfgmgr32.dll","0.0000000","Image Base: 0x7ffb45f00000, Image Size: 0x49000","800"
"10:46:22.2177386 AM","firefox.exe","1008","Load Image","C:\Windows\System32\winmmbase.dll","0.0000000","Image Base: 0x20f60e30000, Image Size: 0x2a000","6852"
"10:46:22.2177629 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000043","","6852"
"10:46:22.2178880 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000081","","800"
"10:46:22.2183108 AM","firefox.exe","1008","QueryNameInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000089","Name: \Program Files\Firefox Nightly\nss3.dll","1120"
"10:46:22.2185911 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2186240 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000042","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","1120"
"10:46:22.2186415 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000059","","1120"
"10:46:22.2187558 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2187805 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:22.2187929 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000030","AllocationSize: 40,960, EndOfFile: 39,112, NumberOfLinks: 1, DeletePending: False, Directory: False","1120"
"10:46:22.2188125 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000013","SyncType: SyncTypeOther","1120"
"10:46:22.2188505 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000056","","1120"
"10:46:22.2190434 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2190634 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","1120"
"10:46:22.2190728 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000043","","1120"
"10:46:22.2191718 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000107","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2191953 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:22.2192153 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000013","SyncType: SyncTypeOther","1120"
"10:46:22.2192576 AM","firefox.exe","1008","Load Image","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000000","Image Base: 0x7ffb3c680000, Image Size: 0xd000","1120"
"10:46:22.2193493 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000068","","1120"
"10:46:22.2193984 AM","firefox.exe","1008","QueryNameInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000038","Name: \Program Files\Firefox Nightly\lgpllibs.dll","1120"
"10:46:22.2196023 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2196245 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","1120"
"10:46:22.2196347 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000043","","1120"
"10:46:22.2197354 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2197649 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:22.2197802 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000034","AllocationSize: 109,776,896, EndOfFile: 109,775,560, NumberOfLinks: 1, DeletePending: False, Directory: False","1120"
"10:46:22.2198080 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000021","SyncType: SyncTypeOther","1120"
"10:46:22.2198779 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000406","","1120"
"10:46:22.2201659 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2201903 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","1120"
"10:46:22.2202022 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000051","","1120"
"10:46:22.2203038 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000115","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2203298 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:22.2203554 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000021","SyncType: SyncTypeOther","1120"
"10:46:22.2204778 AM","firefox.exe","1008","Load Image","C:\Program Files\Firefox Nightly\xul.dll","0.0000000","Image Base: 0x7ffb07c80000, Image Size: 0x6988000","1120"
"10:46:22.2207313 AM","firefox.exe","1008","Load Image","C:\Windows\System32\shell32.dll","0.0000000","Image Base: 0x7ffb472f0000, Image Size: 0x1440000","1120"
"10:46:22.2209634 AM","firefox.exe","1008","Load Image","C:\Windows\System32\SHCore.dll","0.0000000","Image Base: 0x7ffb48b10000, Image Size: 0xa9000","1120"
"10:46:22.2211460 AM","firefox.exe","1008","Load Image","C:\Windows\System32\combase.dll","0.0000000","Image Base: 0x7ffb46d80000, Image Size: 0x322000","1120"
"10:46:22.2213495 AM","firefox.exe","1008","Load Image","C:\Windows\System32\windows.storage.dll","0.0000000","Image Base: 0x7ffb45f70000, Image Size: 0x70d000","1120"
"10:46:22.2215082 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DWrite.dll","0.0004997","Offset: 2,652,672, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.2215684 AM","firefox.exe","1008","Load Image","C:\Windows\System32\shlwapi.dll","0.0000000","Image Base: 0x7ffb490e0000, Image Size: 0x51000","1120"
"10:46:22.2217169 AM","firefox.exe","1008","Load Image","C:\Windows\System32\kernel.appcore.dll","0.0000000","Image Base: 0x7ffb45af0000, Image Size: 0x11000","1120"
"10:46:22.2218393 AM","firefox.exe","1008","Load Image","C:\Windows\System32\profapi.dll","0.0000000","Image Base: 0x7ffb45b30000, Image Size: 0x1f000","1120"
"10:46:22.2219754 AM","firefox.exe","1008","Load Image","C:\Windows\System32\powrprof.dll","0.0000000","Image Base: 0x7ffb45aa0000, Image Size: 0x4c000","1120"
"10:46:22.2220441 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\fonts","0.0000278","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.2221171 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\fonts\*","0.0000171","Filter: *, 1: .","5728"
"10:46:22.2221290 AM","firefox.exe","1008","Load Image","C:\Windows\System32\fltLib.dll","0.0000000","Image Base: 0x7ffb45a90000, Image Size: 0xa000","1120"
"10:46:22.2221790 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\fonts","0.0000140","0: .., 1: TwemojiMozilla.ttf","5728"
"10:46:22.2222831 AM","firefox.exe","1008","Load Image","C:\Windows\System32\ole32.dll","0.0000000","Image Base: 0x7ffb491a0000, Image Size: 0x151000","1120"
"10:46:22.2224068 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0004314","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.2225472 AM","firefox.exe","1008","Load Image","C:\Windows\System32\setupapi.dll","0.0000000","Image Base: 0x7ffb49300000, Image Size: 0x44b000","1120"
"10:46:22.2227515 AM","firefox.exe","1008","Load Image","C:\Windows\System32\oleaut32.dll","0.0000000","Image Base: 0x7ffb46c10000, Image Size: 0xc2000","1120"
"10:46:22.2228919 AM","firefox.exe","7384","QueryInformationVolume","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000051","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","5728"
"10:46:22.2229286 AM","firefox.exe","7384","QueryAllInformationFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000073","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A, AllocationSize: 1,245,184, EndOfFile: 1,244,336, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0xd00000002c564, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","5728"
"10:46:22.2229627 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000090","","1120"
"10:46:22.2229674 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000052","","5728"
"10:46:22.2231697 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\avrt.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8584"
"10:46:22.2231957 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DWrite.dll","0.0005939","Offset: 2,566,656, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.2232469 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000064","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","8584"
"10:46:22.2232665 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\avrt.dll","0.0000077","","8584"
"10:46:22.2238242 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DWrite.dll","0.0003733","Offset: 2,677,248, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.2242363 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000312","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.2242841 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\avrt.dll","0.0000209","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8584"
"10:46:22.2242974 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\dxgi.dll","0.0003310","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","800"
"10:46:22.2243183 AM","firefox.exe","7384","QueryInformationVolume","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000064","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","5728"
"10:46:22.2243447 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8584"
"10:46:22.2243520 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\d3d11.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2243609 AM","firefox.exe","7384","QueryAllInformationFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000069","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A, AllocationSize: 1,245,184, EndOfFile: 1,244,336, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0xd00000002c564, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","5728"
"10:46:22.2243784 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000026","SyncType: SyncTypeOther","8584"
"10:46:22.2243998 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000046","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","1120"
"10:46:22.2244096 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:22.2244194 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\d3d11.dll","0.0000111","","1120"
"10:46:22.2244399 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000038","AllocationSize: 1,245,184, EndOfFile: 1,244,336, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:22.2244463 AM","firefox.exe","1008","Load Image","C:\Windows\System32\avrt.dll","0.0000000","Image Base: 0x7ffb415a0000, Image Size: 0xa000","8584"
"10:46:22.2244932 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000026","SyncType: SyncTypeOther","5728"
"10:46:22.2245393 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\avrt.dll","0.0000064","","8584"
"10:46:22.2245952 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0118699","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.2246506 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\d3d11.dll","0.0000295","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2247159 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000414","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","800"
"10:46:22.2247198 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:22.2247522 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000021","SyncType: SyncTypeOther","1120"
"10:46:22.2247923 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\dxgi.dll","0.0000064","","800"
"10:46:22.2248311 AM","firefox.exe","1008","Load Image","C:\Windows\System32\d3d11.dll","0.0000000","Image Base: 0x7ffb428e0000, Image Size: 0x30b000","1120"
"10:46:22.2249937 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\d3d11.dll","0.0000072","","1120"
"10:46:22.2249962 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\usp10.dll","0.0000312","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6852"
"10:46:22.2250794 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000060","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","6852"
"10:46:22.2251003 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\usp10.dll","0.0000090","","6852"
"10:46:22.2253256 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000342","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8584"
"10:46:22.2255206 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000047","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","8584"
"10:46:22.2255377 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000077","","8584"
"10:46:22.2255735 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\dxgi.dll","0.0000316","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","800"
"10:46:22.2256554 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","800"
"10:46:22.2256840 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000022","SyncType: SyncTypeOther","800"
"10:46:22.2257600 AM","firefox.exe","1008","Load Image","C:\Windows\System32\dxgi.dll","0.0000000","Image Base: 0x7ffb44850000, Image Size: 0xbb000","800"
"10:46:22.2257766 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\usp10.dll","0.0000431","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","6852"
"10:46:22.2258747 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","6852"
"10:46:22.2259102 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000025","SyncType: SyncTypeOther","6852"
"10:46:22.2259106 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\dxgi.dll","0.0000081","","800"
"10:46:22.2259707 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000261","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2259806 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000460","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8584"
"10:46:22.2259865 AM","firefox.exe","1008","Load Image","C:\Windows\System32\usp10.dll","0.0000000","Image Base: 0x7ffb413c0000, Image Size: 0x19000","6852"
"10:46:22.2260446 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\usp10.dll","0.0000081","","6852"
"10:46:22.2260463 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000055","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","1120"
"10:46:22.2260595 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8584"
"10:46:22.2260697 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000077","","1120"
"10:46:22.2260877 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000021","SyncType: SyncTypeOther","8584"
"10:46:22.2261581 AM","firefox.exe","1008","Load Image","C:\Windows\System32\IPHLPAPI.DLL","0.0000000","Image Base: 0x7ffb45030000, Image Size: 0x38000","8584"
"10:46:22.2262609 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000085","","8584"
"10:46:22.2264529 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000316","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2267085 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000046","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:22.2267430 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000026","SyncType: SyncTypeOther","1120"
"10:46:22.2268049 AM","firefox.exe","1008","Load Image","C:\Windows\System32\dnsapi.dll","0.0000000","Image Base: 0x7ffb45070000, Image Size: 0xbe000","1120"
"10:46:22.2269679 AM","firefox.exe","1008","Load Image","C:\Windows\System32\nsi.dll","0.0000000","Image Base: 0x7ffb490d0000, Image Size: 0x8000","1120"
"10:46:22.2269828 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","800"
"10:46:22.2269977 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6852"
"10:46:22.2270468 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000115","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","800"
"10:46:22.2270647 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000081","","1120"
"10:46:22.2270750 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000025","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","6852"
"10:46:22.2270890 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000056","","6852"
"10:46:22.2271082 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000052","","800"
"10:46:22.2274099 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8584"
"10:46:22.2274952 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000034","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","8584"
"10:46:22.2275076 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000047","","8584"
"10:46:22.2275938 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000964","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","6852"
"10:46:22.2279471 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","6852"
"10:46:22.2279765 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000021","SyncType: SyncTypeOther","6852"
"10:46:22.2280004 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000367","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","800"
"10:46:22.2280512 AM","firefox.exe","1008","Load Image","C:\Windows\System32\uxtheme.dll","0.0000000","Image Base: 0x7ffb43f70000, Image Size: 0x98000","6852"
"10:46:22.2281019 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000060","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","800"
"10:46:22.2281429 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000030","SyncType: SyncTypeOther","800"
"10:46:22.2282065 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000222","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8584"
"10:46:22.2282150 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000350","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2282291 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\uxtheme.dll","0.0001109","","6852"
"10:46:22.2282325 AM","firefox.exe","1008","Load Image","C:\Windows\System32\dwmapi.dll","0.0000000","Image Base: 0x7ffb44200000, Image Size: 0x29000","800"
"10:46:22.2282615 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8584"
"10:46:22.2282910 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000047","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","1120"
"10:46:22.2282948 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000030","SyncType: SyncTypeOther","8584"
"10:46:22.2283136 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000064","","1120"
"10:46:22.2283597 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000072","","800"
"10:46:22.2284241 AM","firefox.exe","1008","Load Image","C:\Windows\System32\wtsapi32.dll","0.0000000","Image Base: 0x7ffb42730000, Image Size: 0x13000","8584"
"10:46:22.2285354 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000081","","8584"
"10:46:22.2289160 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000619","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2291285 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:22.2291763 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000043","SyncType: SyncTypeOther","1120"
"10:46:22.2292919 AM","firefox.exe","1008","Load Image","C:\Windows\System32\dhcpcsvc.dll","0.0000000","Image Base: 0x7ffb3be40000, Image Size: 0x1a000","1120"
"10:46:22.2293956 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000081","","1120"
"10:46:22.2295978 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\userenv.dll","0.0000325","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","800"
"10:46:22.2296478 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6852"
"10:46:22.2296746 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000052","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","800"
"10:46:22.2296947 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\userenv.dll","0.0000068","","800"
"10:46:22.2297147 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\dxgi.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8584"
"10:46:22.2297557 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000038","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","8584"
"10:46:22.2297706 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\dxgi.dll","0.0000077","","8584"
"10:46:22.2298671 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000042","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","6852"
"10:46:22.2298701 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\userenv.dll","0.0000183","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","800"
"10:46:22.2298833 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000064","","6852"
"10:46:22.2299213 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","800"
"10:46:22.2299426 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000017","SyncType: SyncTypeOther","800"
"10:46:22.2299887 AM","firefox.exe","1008","Load Image","C:\Windows\System32\userenv.dll","0.0000000","Image Base: 0x7ffb459c0000, Image Size: 0x28000","800"
"10:46:22.2300586 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000175","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","6852"
"10:46:22.2300936 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\userenv.dll","0.0000086","","800"
"10:46:22.2300962 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","6852"
"10:46:22.2301269 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000021","SyncType: SyncTypeOther","6852"
"10:46:22.2302267 AM","firefox.exe","1008","Load Image","C:\Windows\System32\D3DCompiler_47.dll","0.0000000","Image Base: 0x7ffb42bf0000, Image Size: 0x42f000","6852"
"10:46:22.2303099 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000086","","6852"
"10:46:22.2305079 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","800"
"10:46:22.2305404 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","800"
"10:46:22.2305510 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000043","","800"
"10:46:22.2306564 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000128","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","800"
"10:46:22.2306897 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","800"
"10:46:22.2307132 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000017","SyncType: SyncTypeOther","800"
"10:46:22.2307588 AM","firefox.exe","1008","Load Image","C:\Windows\System32\cryptsp.dll","0.0000000","Image Base: 0x7ffb45460000, Image Size: 0x17000","800"
"10:46:22.2308569 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000090","","800"
"10:46:22.2312034 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2312362 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000043","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","1120"
"10:46:22.2312563 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000068","","1120"
"10:46:22.2313852 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2314069 AM","firefox.exe","1008","RegOpenKey","HKLM\SOFTWARE\Microsoft\OLE","0.0000090","Desired Access: Read","1120"
"10:46:22.2314329 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\Ole\PageAllocatorUseSystemHeap","0.0000047","Length: 20","1120"
"10:46:22.2314551 AM","firefox.exe","1008","RegCloseKey","HKLM\SOFTWARE\Microsoft\Ole","0.0000022","","1120"
"10:46:22.2314705 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2314858 AM","firefox.exe","1008","RegOpenKey","HKLM\SOFTWARE\Microsoft\OLE","0.0000052","Desired Access: Read","1120"
"10:46:22.2315038 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\Ole\PageAllocatorSystemHeapIsPrivate","0.0000030","Length: 20","1120"
"10:46:22.2315200 AM","firefox.exe","1008","RegCloseKey","HKLM\SOFTWARE\Microsoft\Ole","0.0000017","","1120"
"10:46:22.2315336 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2315490 AM","firefox.exe","1008","RegOpenKey","HKLM\SOFTWARE\Microsoft\OLE","0.0000051","Desired Access: Read","1120"
"10:46:22.2315669 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\Ole\AggressiveMTATesting","0.0000034","Length: 16","1120"
"10:46:22.2315844 AM","firefox.exe","1008","RegCloseKey","HKLM\SOFTWARE\Microsoft\Ole","0.0000017","","1120"
"10:46:22.2317589 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 372","36"
"10:46:22.2318549 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2318737 AM","firefox.exe","1008","RegOpenKey","HKLM","0.0000051","Desired Access: Read","1120"
"10:46:22.2318946 AM","firefox.exe","1008","RegSetInfoKey","HKLM","0.0000013","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","1120"
"10:46:22.2319151 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x100","1120"
"10:46:22.2319321 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\Ole\FeatureDevelopmentProperties","0.0000073","Desired Access: Read","1120"
"10:46:22.2319582 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x100","1120"
"10:46:22.2319748 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\Ole\FeatureDevelopmentProperties","0.0000056","Desired Access: Read","1120"
"10:46:22.2319953 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x100","1120"
"10:46:22.2320081 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\Ole","0.0000038","Desired Access: Read","1120"
"10:46:22.2320661 AM","firefox.exe","1008","RegOpenKey","HKCU","0.0000047","Desired Access: Read","1120"
"10:46:22.2320819 AM","firefox.exe","1008","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2320917 AM","firefox.exe","1008","RegOpenKey","HKCU\Software\Classes\Local Settings","0.0000043","Desired Access: Read","1120"
"10:46:22.2321041 AM","firefox.exe","1008","RegOpenKey","HKCU\Software\Classes\Local Settings","0.0000047","Desired Access: Read","1120"
"10:46:22.2321182 AM","firefox.exe","1008","RegSetInfoKey","HKCU\Software\Classes\Local Settings","0.0000012","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","1120"
"10:46:22.2321301 AM","firefox.exe","1008","RegCloseKey","HKCU","0.0000017","","1120"
"10:46:22.2321404 AM","firefox.exe","1008","RegQueryKey","HKCU\Software\Classes\Local Settings","0.0000012","Query: HandleTags, HandleTags: 0x100","1120"
"10:46:22.2321497 AM","firefox.exe","1008","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Ole\FeatureDevelopmentProperties","0.0000047","Desired Access: Read","1120"
"10:46:22.2321625 AM","firefox.exe","1008","RegQueryKey","HKCU\Software\Classes\Local Settings","0.0000009","Query: HandleTags, HandleTags: 0x100","1120"
"10:46:22.2321711 AM","firefox.exe","1008","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Ole\FeatureDevelopmentProperties","0.0000030","Desired Access: Read","1120"
"10:46:22.2321822 AM","firefox.exe","1008","RegQueryKey","HKCU\Software\Classes\Local Settings","0.0000008","Query: HandleTags, HandleTags: 0x100","1120"
"10:46:22.2321911 AM","firefox.exe","1008","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Ole","0.0000026","Desired Access: Read","1120"
"10:46:22.2322009 AM","firefox.exe","1008","RegQueryKey","HKCU\Software\Classes\Local Settings","0.0000013","Query: HandleTags, HandleTags: 0x100","1120"
"10:46:22.2322099 AM","firefox.exe","1008","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft","0.0000026","Desired Access: Read","1120"
"10:46:22.2322517 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2322611 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\OLE\Tracing","0.0000038","Desired Access: Read","1120"
"10:46:22.2331063 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2331341 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000034","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","1120"
"10:46:22.2331473 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000047","","1120"
"10:46:22.2332121 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2332258 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\OLE\Tracing","0.0000060","Desired Access: Read","1120"
"10:46:22.2334600 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2334963 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000030","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","1120"
"10:46:22.2335087 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000047","","1120"
"10:46:22.2340382 AM","firefox.exe","1008","QueryNameInformationFile","C:\Windows\System32\setupapi.dll","0.0000059","Name: \Windows\System32\setupapi.dll","1120"
"10:46:22.2347844 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2348254 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000047","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","1120"
"10:46:22.2348463 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000077","","1120"
"10:46:22.2353446 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\ole32.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2353805 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000029","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","1120"
"10:46:22.2353928 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\ole32.dll","0.0000047","","1120"
"10:46:22.2354858 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2355004 AM","firefox.exe","1008","RegOpenKey","HKLM\SOFTWARE\Microsoft\OLEAUT","0.0000055","Desired Access: Query Value","1120"
"10:46:22.2368772 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2369126 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000043","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","1120"
"10:46:22.2369323 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000068","","1120"
"10:46:22.2370236 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000093","","5728"
"10:46:22.2370713 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\fonts","0.0000073","","5728"
"10:46:22.2371051 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\fonts","0.0000059","","5728"
"10:46:22.2372006 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2372241 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000072","Desired Access: All Access","1120"
"10:46:22.2372471 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000756","Desired Access: All Access","1120"
"10:46:22.2372732 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000042","Information: Owner","1120"
"10:46:22.2372941 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000025","Information: Owner","1120"
"10:46:22.2373017 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000035","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.2373239 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000162","Desired Access: Read","5728"
"10:46:22.2373478 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2373615 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000115","Index: 0, Name: Arabic Transparent, Type: REG_SZ, Length: 12, Data: Arial","5728"
"10:46:22.2373709 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000068","Desired Access: Read","1120"
"10:46:22.2373918 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000030","Index: 1, Name: Arabic Transparent Bold, Type: REG_SZ, Length: 22, Data: Arial Bold","5728"
"10:46:22.2373935 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000077","Desired Access: Read","1120"
"10:46:22.2374169 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000064","Index: 2, Name: Arabic Transparent Bold,0, Type: REG_SZ, Length: 30, Data: Arial Bold,178","5728"
"10:46:22.2374225 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000098","Length: 16","1120"
"10:46:22.2374443 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000042","Type: REG_SZ, Length: 8, Data: 2.0","1120"
"10:46:22.2374494 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000047","Index: 3, Name: Arabic Transparent,0, Type: REG_SZ, Length: 20, Data: Arial,178","5728"
"10:46:22.2374720 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2374745 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000043","Index: 4, Name: Arial Baltic,186, Type: REG_SZ, Length: 20, Data: Arial,186","5728"
"10:46:22.2374848 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog","0.0000034","Desired Access: Read","1120"
"10:46:22.2374984 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000035","Index: 5, Name: Arial CE,238, Type: REG_SZ, Length: 20, Data: Arial,238","5728"
"10:46:22.2375172 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog","0.0000017","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2375240 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000035","Index: 6, Name: Arial CYR,204, Type: REG_SZ, Length: 20, Data: Arial,204","5728"
"10:46:22.2375296 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog\3AC7FBD2-0B80C8AB","0.0000038","Desired Access: Read","1120"
"10:46:22.2375445 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog","0.0000009","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2375484 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000051","Index: 7, Name: Arial Greek,161, Type: REG_SZ, Length: 20, Data: Arial,161","5728"
"10:46:22.2375560 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog\3AC7FBD2","0.0000043","Desired Access: Read","1120"
"10:46:22.2375740 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000038","Index: 8, Name: Arial TUR,162, Type: REG_SZ, Length: 20, Data: Arial,162","5728"
"10:46:22.2375787 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog","0.0000021","","1120"
"10:46:22.2375974 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000064","Index: 9, Name: Courier New Baltic,186, Type: REG_SZ, Length: 32, Data: Courier New,186","5728"
"10:46:22.2376025 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Callout","0.0000039","Length: 12","1120"
"10:46:22.2376235 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Callout","0.0000034","Type: REG_EXPAND_SZ, Length: 70, Data: %SystemRoot%\System32\fwpuclnt.dll","1120"
"10:46:22.2376277 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000043","Index: 10, Name: Courier New CE,238, Type: REG_SZ, Length: 32, Data: Courier New,238","5728"
"10:46:22.2376439 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000009","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2376520 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000039","Index: 11, Name: Courier New CYR,204, Type: REG_SZ, Length: 32, Data: Courier New,204","5728"
"10:46:22.2376537 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000043","Desired Access: Maximum Allowed, Granted Access: Read","1120"
"10:46:22.2376674 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000026","Type: REG_DWORD, Length: 4, Data: 8","1120"
"10:46:22.2376845 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000042","Index: 12, Name: Courier New Greek,161, Type: REG_SZ, Length: 32, Data: Courier New,161","5728"
"10:46:22.2377075 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000038","Index: 13, Name: Courier New TUR,162, Type: REG_SZ, Length: 32, Data: Courier New,162","5728"
"10:46:22.2377105 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000026","Type: REG_DWORD, Length: 4, Data: 8","1120"
"10:46:22.2377233 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000008","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2377310 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000038","Index: 14, Name: Helv, Type: REG_SZ, Length: 28, Data: MS Sans Serif","5728"
"10:46:22.2377327 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000030","Desired Access: Read","1120"
"10:46:22.2377451 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000025","Type: REG_DWORD, Length: 4, Data: 1015","1120"
"10:46:22.2377540 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000051","Index: 15, Name: Helvetica, Type: REG_SZ, Length: 12, Data: Arial","5728"
"10:46:22.2377553 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000051","Type: REG_DWORD, Length: 4, Data: 14","1120"
"10:46:22.2377685 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2377779 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000030","Desired Access: Maximum Allowed, Granted Access: Read","1120"
"10:46:22.2377788 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000042","Index: 16, Name: MS Shell Dlg 2, Type: REG_SZ, Length: 14, Data: Tahoma","5728"
"10:46:22.2377911 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2378039 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000052","Desired Access: Read","1120"
"10:46:22.2378099 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000047","Index: 17, Name: Tahoma Armenian, Type: REG_SZ, Length: 14, Data: Tahoma","5728"
"10:46:22.2378231 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Length: 144","1120"
"10:46:22.2378393 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000035","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","1120"
"10:46:22.2378496 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000034","Index: 18, Name: Times, Type: REG_SZ, Length: 32, Data: Times New Roman","5728"
"10:46:22.2378607 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000017","","1120"
"10:46:22.2378773 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2378777 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000060","Index: 19, Name: Times New Roman Baltic,186, Type: REG_SZ, Length: 40, Data: Times New Roman,186","5728"
"10:46:22.2378935 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000034","Desired Access: Read","1120"
"10:46:22.2379076 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000107","Index: 20, Name: Times New Roman CE,238, Type: REG_SZ, Length: 40, Data: Times New Roman,238","5728"
"10:46:22.2379110 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000043","Length: 144","1120"
"10:46:22.2379319 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","1120"
"10:46:22.2379426 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000043","Index: 21, Name: Times New Roman CYR,204, Type: REG_SZ, Length: 40, Data: Times New Roman,204","5728"
"10:46:22.2379464 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000009","","1120"
"10:46:22.2379567 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2379665 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000060","Index: 22, Name: Times New Roman Greek,161, Type: REG_SZ, Length: 40, Data: Times New Roman,161","5728"
"10:46:22.2379699 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000051","Desired Access: Read","1120"
"10:46:22.2379844 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000021","Length: 144","1120"
"10:46:22.2379942 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000051","Index: 23, Name: Times New Roman TUR,162, Type: REG_SZ, Length: 40, Data: Times New Roman,162","5728"
"10:46:22.2379972 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","1120"
"10:46:22.2380121 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000013","","1120"
"10:46:22.2380203 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000042","Index: 24, Name: Tms Rmn, Type: REG_SZ, Length: 18, Data: MS Serif","5728"
"10:46:22.2380220 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2380313 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000026","Desired Access: Read","1120"
"10:46:22.2380424 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000022","Length: 144","1120"
"10:46:22.2380454 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000039","Index: 25, Name: MS Shell Dlg, Type: REG_SZ, Length: 42, Data: Microsoft Sans Serif","5728"
"10:46:22.2380518 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","1120"
"10:46:22.2380638 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000013","","1120"
"10:46:22.2380693 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000030","Index: 26, Length: 2,048","5728"
"10:46:22.2380732 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2380825 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000022","Desired Access: Read","1120"
"10:46:22.2380936 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000022","Length: 144","1120"
"10:46:22.2381086 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","1120"
"10:46:22.2381201 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000008","","1120"
"10:46:22.2381295 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2381380 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000026","Desired Access: Read","1120"
"10:46:22.2381487 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Length: 144","1120"
"10:46:22.2381581 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","1120"
"10:46:22.2381721 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000013","","1120"
"10:46:22.2381858 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2381969 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000021","Desired Access: Read","1120"
"10:46:22.2382080 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Length: 144","1120"
"10:46:22.2382174 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","1120"
"10:46:22.2382323 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000013","","1120"
"10:46:22.2382443 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2382532 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000034","Desired Access: Read","1120"
"10:46:22.2382660 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000021","Length: 144","1120"
"10:46:22.2382763 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000029","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","1120"
"10:46:22.2382886 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000009","","1120"
"10:46:22.2382980 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2383070 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000025","Desired Access: Read","1120"
"10:46:22.2383181 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000025","Length: 144","1120"
"10:46:22.2383321 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","1120"
"10:46:22.2383432 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000009","","1120"
"10:46:22.2383522 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2383612 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000021","Desired Access: Read","1120"
"10:46:22.2383714 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000021","Length: 144","1120"
"10:46:22.2383808 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","1120"
"10:46:22.2383919 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000008","","1120"
"10:46:22.2384008 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2384085 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DWrite.dll","0.0003691","Offset: 2,583,040, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.2384149 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000034","Desired Access: Read","1120"
"10:46:22.2384303 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000025","Length: 144","1120"
"10:46:22.2384435 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","1120"
"10:46:22.2384601 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000026","","1120"
"10:46:22.2384729 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2384832 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000030","Desired Access: Read","1120"
"10:46:22.2384960 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000021","Length: 144","1120"
"10:46:22.2385135 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","1120"
"10:46:22.2385254 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000013","","1120"
"10:46:22.2385348 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2385442 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000026","Desired Access: Read","1120"
"10:46:22.2385553 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Length: 144","1120"
"10:46:22.2385647 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","1120"
"10:46:22.2385758 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000008","","1120"
"10:46:22.2385856 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2385941 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000030","Desired Access: Read","1120"
"10:46:22.2386061 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000025","Length: 144","1120"
"10:46:22.2386155 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","1120"
"10:46:22.2386261 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000013","","1120"
"10:46:22.2386351 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","","1120"
"10:46:22.2386585 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000009","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2386675 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5","0.0000038","Desired Access: Maximum Allowed, Granted Access: Read","1120"
"10:46:22.2386795 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Serial_Access_Num","0.0000025","Type: REG_DWORD, Length: 4, Data: 22","1120"
"10:46:22.2387204 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Serial_Access_Num","0.0000021","Type: REG_DWORD, Length: 4, Data: 22","1120"
"10:46:22.2387315 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5","0.0000013","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2387716 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\00000016","0.0000051","Desired Access: Read","1120"
"10:46:22.2387874 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Num_Catalog_Entries64","0.0000026","Type: REG_DWORD, Length: 4, Data: 7","1120"
"10:46:22.2387981 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5","0.0000008","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2388075 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000029","Desired Access: Maximum Allowed, Granted Access: Read","1120"
"10:46:22.2388207 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2388232 AM","firefox.exe","7384","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0179947","Offset: 15,220,736, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.2388301 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001","0.0000025","Desired Access: Read","1120"
"10:46:22.2388416 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\LibraryPath","0.0000025","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\napinsp.dll","1120"
"10:46:22.2388518 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\LibraryPath","0.0000022","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\napinsp.dll","1120"
"10:46:22.2388625 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\DisplayString","0.0000021","Length: 12","1120"
"10:46:22.2388719 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\DisplayString","0.0000021","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\napinsp.dll,-1000","1120"
"10:46:22.2388813 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\DisplayString","0.0000021","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\napinsp.dll,-1000","1120"
"10:46:22.2388907 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\DisplayString","0.0000021","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\napinsp.dll,-1000","1120"
"10:46:22.2389009 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\ProviderId","0.0000021","Type: REG_BINARY, Length: 16, Data: A2 CB 4A 96 BC B2 EB 40 8C 6A A6 DB 40 16 1C AE","1120"
"10:46:22.2389103 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\AddressFamily","0.0000021","Length: 16","1120"
"10:46:22.2389201 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\SupportedNameSpace","0.0000021","Type: REG_DWORD, Length: 4, Data: 37","1120"
"10:46:22.2389295 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\Enabled","0.0000021","Type: REG_DWORD, Length: 4, Data: 1","1120"
"10:46:22.2389389 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\Version","0.0000021","Type: REG_DWORD, Length: 4, Data: 0","1120"
"10:46:22.2389487 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\StoresServiceClassInfo","0.0000021","Type: REG_DWORD, Length: 4, Data: 0","1120"
"10:46:22.2389581 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\ProviderInfo","0.0000025","Type: REG_BINARY, Length: 0","1120"
"10:46:22.2389687 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\ProviderInfo","0.0000022","Type: REG_BINARY, Length: 0","1120"
"10:46:22.2389803 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001","0.0000008","","1120"
"10:46:22.2389896 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2389986 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002","0.0000021","Desired Access: Read","1120"
"10:46:22.2390088 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\LibraryPath","0.0000026","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\pnrpnsp.dll","1120"
"10:46:22.2390182 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\LibraryPath","0.0000022","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\pnrpnsp.dll","1120"
"10:46:22.2390280 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\DisplayString","0.0000022","Length: 12","1120"
"10:46:22.2390370 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\DisplayString","0.0000021","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1000","1120"
"10:46:22.2390477 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\DisplayString","0.0000021","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1000","1120"
"10:46:22.2390571 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\DisplayString","0.0000021","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1000","1120"
"10:46:22.2390673 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\ProviderId","0.0000026","Type: REG_BINARY, Length: 16, Data: CE 89 FE 03 6D 76 76 49 B9 C1 BB 9B C4 2C 7B 4D","1120"
"10:46:22.2390775 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\AddressFamily","0.0000022","Length: 16","1120"
"10:46:22.2390873 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\SupportedNameSpace","0.0000022","Type: REG_DWORD, Length: 4, Data: 39","1120"
"10:46:22.2390976 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\Enabled","0.0000025","Type: REG_DWORD, Length: 4, Data: 1","1120"
"10:46:22.2391078 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\Version","0.0000022","Type: REG_DWORD, Length: 4, Data: 0","1120"
"10:46:22.2391172 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\StoresServiceClassInfo","0.0000021","Type: REG_DWORD, Length: 4, Data: 0","1120"
"10:46:22.2391270 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\ProviderInfo","0.0000022","Type: REG_BINARY, Length: 0","1120"
"10:46:22.2391368 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\ProviderInfo","0.0000022","Type: REG_BINARY, Length: 0","1120"
"10:46:22.2391471 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002","0.0000013","","1120"
"10:46:22.2391565 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2391659 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003","0.0000025","Desired Access: Read","1120"
"10:46:22.2391761 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\LibraryPath","0.0000021","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\pnrpnsp.dll","1120"
"10:46:22.2391859 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\LibraryPath","0.0000017","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\pnrpnsp.dll","1120"
"10:46:22.2391957 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\DisplayString","0.0000022","Length: 12","1120"
"10:46:22.2392051 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\DisplayString","0.0000017","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1001","1120"
"10:46:22.2392145 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\DisplayString","0.0000021","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1001","1120"
"10:46:22.2392247 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\DisplayString","0.0000077","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1001","1120"
"10:46:22.2392563 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\ProviderId","0.0000043","Type: REG_BINARY, Length: 16, Data: CD 89 FE 03 6D 76 76 49 B9 C1 BB 9B C4 2C 7B 4D","1120"
"10:46:22.2392785 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\AddressFamily","0.0000030","Length: 16","1120"
"10:46:22.2392977 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\SupportedNameSpace","0.0000034","Type: REG_DWORD, Length: 4, Data: 38","1120"
"10:46:22.2393156 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\Enabled","0.0000034","Type: REG_DWORD, Length: 4, Data: 1","1120"
"10:46:22.2393331 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\Version","0.0000043","Type: REG_DWORD, Length: 4, Data: 0","1120"
"10:46:22.2393472 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\StoresServiceClassInfo","0.0000021","Type: REG_DWORD, Length: 4, Data: 0","1120"
"10:46:22.2393579 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\ProviderInfo","0.0000025","Type: REG_BINARY, Length: 0","1120"
"10:46:22.2393685 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","1120"
"10:46:22.2393835 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003","0.0000012","","1120"
"10:46:22.2393967 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2394142 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004","0.0000059","Desired Access: Read","1120"
"10:46:22.2394355 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\LibraryPath","0.0000038","Type: REG_SZ, Length: 66, Data: %SystemRoot%\system32\NLAapi.dll","1120"
"10:46:22.2394517 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\LibraryPath","0.0000030","Type: REG_SZ, Length: 66, Data: %SystemRoot%\system32\NLAapi.dll","1120"
"10:46:22.2394671 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\DisplayString","0.0000030","Length: 12","1120"
"10:46:22.2394786 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\DisplayString","0.0000021","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\system32\nlasvc.dll,-1000","1120"
"10:46:22.2394893 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\DisplayString","0.0000021","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\system32\nlasvc.dll,-1000","1120"
"10:46:22.2394991 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\DisplayString","0.0000017","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\system32\nlasvc.dll,-1000","1120"
"10:46:22.2395093 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\ProviderId","0.0000022","Type: REG_BINARY, Length: 16, Data: 3A 24 42 66 A8 3B A6 4A BA A5 2E 0B D7 1F DD 83","1120"
"10:46:22.2395191 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\AddressFamily","0.0000022","Length: 16","1120"
"10:46:22.2395289 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\SupportedNameSpace","0.0000022","Type: REG_DWORD, Length: 4, Data: 15","1120"
"10:46:22.2395392 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\Enabled","0.0000021","Type: REG_DWORD, Length: 4, Data: 1","1120"
"10:46:22.2395490 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\Version","0.0000021","Type: REG_DWORD, Length: 4, Data: 0","1120"
"10:46:22.2395592 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\StoresServiceClassInfo","0.0000086","Type: REG_DWORD, Length: 4, Data: 0","1120"
"10:46:22.2395767 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\ProviderInfo","0.0000022","Type: REG_BINARY, Length: 0","1120"
"10:46:22.2395870 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\ProviderInfo","0.0000021","Type: REG_BINARY, Length: 0","1120"
"10:46:22.2395998 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004","0.0000013","","1120"
"10:46:22.2396109 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2396215 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005","0.0000030","Desired Access: Read","1120"
"10:46:22.2396335 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\LibraryPath","0.0000025","Type: REG_SZ, Length: 68, Data: %SystemRoot%\System32\mswsock.dll","1120"
"10:46:22.2396437 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\LibraryPath","0.0000022","Type: REG_SZ, Length: 68, Data: %SystemRoot%\System32\mswsock.dll","1120"
"10:46:22.2396540 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\DisplayString","0.0000021","Length: 12","1120"
"10:46:22.2396633 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\DisplayString","0.0000026","Type: REG_SZ, Length: 86, Data: @%SystemRoot%\system32\wshtcpip.dll,-60103","1120"
"10:46:22.2396770 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\DisplayString","0.0000026","Type: REG_SZ, Length: 86, Data: @%SystemRoot%\system32\wshtcpip.dll,-60103","1120"
"10:46:22.2396894 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\DisplayString","0.0000021","Type: REG_SZ, Length: 86, Data: @%SystemRoot%\system32\wshtcpip.dll,-60103","1120"
"10:46:22.2396996 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\ProviderId","0.0000021","Type: REG_BINARY, Length: 16, Data: 40 9D 05 22 9E 7E CF 11 AE 5A 00 AA 00 A7 11 2B","1120"
"10:46:22.2397090 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\AddressFamily","0.0000017","Length: 16","1120"
"10:46:22.2397184 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\SupportedNameSpace","0.0000021","Type: REG_DWORD, Length: 4, Data: 12","1120"
"10:46:22.2397278 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\Enabled","0.0000021","Type: REG_DWORD, Length: 4, Data: 1","1120"
"10:46:22.2397372 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\Version","0.0000021","Type: REG_DWORD, Length: 4, Data: 0","1120"
"10:46:22.2397470 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\StoresServiceClassInfo","0.0000021","Type: REG_DWORD, Length: 4, Data: 0","1120"
"10:46:22.2397568 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\ProviderInfo","0.0000021","Type: REG_BINARY, Length: 0","1120"
"10:46:22.2397662 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\ProviderInfo","0.0000021","Type: REG_BINARY, Length: 0","1120"
"10:46:22.2397777 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005","0.0000008","","1120"
"10:46:22.2397875 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2397977 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006","0.0000022","Desired Access: Read","1120"
"10:46:22.2398084 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\LibraryPath","0.0000021","Type: REG_SZ, Length: 66, Data: %SystemRoot%\System32\winrnr.dll","1120"
"10:46:22.2398178 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\LibraryPath","0.0000021","Type: REG_SZ, Length: 66, Data: %SystemRoot%\System32\winrnr.dll","1120"
"10:46:22.2398276 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\DisplayString","0.0000021","Length: 12","1120"
"10:46:22.2398370 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\DisplayString","0.0000021","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\System32\winrnr.dll,-1000","1120"
"10:46:22.2398472 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\DisplayString","0.0000022","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\System32\winrnr.dll,-1000","1120"
"10:46:22.2398566 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\DisplayString","0.0000022","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\System32\winrnr.dll,-1000","1120"
"10:46:22.2398664 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\ProviderId","0.0000022","Type: REG_BINARY, Length: 16, Data: EE 37 26 3B 80 E5 CF 11 A5 55 00 C0 4F D8 D4 AC","1120"
"10:46:22.2398758 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\AddressFamily","0.0000022","Length: 16","1120"
"10:46:22.2398852 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\SupportedNameSpace","0.0000021","Type: REG_DWORD, Length: 4, Data: 32","1120"
"10:46:22.2398950 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\Enabled","0.0000017","Type: REG_DWORD, Length: 4, Data: 1","1120"
"10:46:22.2399044 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\Version","0.0000021","Type: REG_DWORD, Length: 4, Data: 0","1120"
"10:46:22.2399147 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\StoresServiceClassInfo","0.0000021","Type: REG_DWORD, Length: 4, Data: 0","1120"
"10:46:22.2399249 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\ProviderInfo","0.0000021","Type: REG_BINARY, Length: 0","1120"
"10:46:22.2399343 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\ProviderInfo","0.0000021","Type: REG_BINARY, Length: 0","1120"
"10:46:22.2399454 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006","0.0000013","","1120"
"10:46:22.2399646 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2399748 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007","0.0000030","Desired Access: Read","1120"
"10:46:22.2399859 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\LibraryPath","0.0000021","Type: REG_SZ, Length: 66, Data: %SystemRoot%\System32\wshbth.dll","1120"
"10:46:22.2399957 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\LibraryPath","0.0000017","Type: REG_SZ, Length: 66, Data: %SystemRoot%\System32\wshbth.dll","1120"
"10:46:22.2400051 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\DisplayString","0.0000021","Length: 12","1120"
"10:46:22.2400141 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\DisplayString","0.0000025","Type: REG_SZ, Length: 40, Data: Bluetooth Namespace","1120"
"10:46:22.2400243 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\DisplayString","0.0000017","Type: REG_SZ, Length: 40, Data: Bluetooth Namespace","1120"
"10:46:22.2400333 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\DisplayString","0.0000021","Type: REG_SZ, Length: 40, Data: Bluetooth Namespace","1120"
"10:46:22.2400431 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\ProviderId","0.0000017","Type: REG_BINARY, Length: 16, Data: E0 63 AA 06 60 7D FF 41 AF B2 3E E6 D2 D9 39 2D","1120"
"10:46:22.2400525 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\AddressFamily","0.0000017","Length: 16","1120"
"10:46:22.2400623 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\SupportedNameSpace","0.0000021","Type: REG_DWORD, Length: 4, Data: 16","1120"
"10:46:22.2400717 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\Enabled","0.0000021","Type: REG_DWORD, Length: 4, Data: 1","1120"
"10:46:22.2400815 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\Version","0.0000021","Type: REG_DWORD, Length: 4, Data: 0","1120"
"10:46:22.2400913 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\StoresServiceClassInfo","0.0000021","Type: REG_DWORD, Length: 4, Data: 0","1120"
"10:46:22.2401015 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\ProviderInfo","0.0000017","Type: REG_BINARY, Length: 0","1120"
"10:46:22.2401113 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\ProviderInfo","0.0000026","Type: REG_BINARY, Length: 0","1120"
"10:46:22.2401224 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007","0.0000013","","1120"
"10:46:22.2401323 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000008","","1120"
"10:46:22.2401433 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000009","","1120"
"10:46:22.2401583 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2401685 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock2\Parameters","0.0000051","Desired Access: Query Value","1120"
"10:46:22.2401822 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock2\Parameters","0.0000047","Desired Access: Query Value","1120"
"10:46:22.2401967 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Ws2_32NumHandleBuckets","0.0000025","Length: 16","1120"
"10:46:22.2402065 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Ws2_32SpinCount","0.0000021","Length: 16","1120"
"10:46:22.2402167 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000009","","1120"
"10:46:22.2410001 AM","firefox.exe","1008","QueryNameInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000077","Name: \Program Files\Firefox Nightly\xul.dll","1120"
"10:46:22.2410385 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\dependentlibs.list","0.0000055","Offset: 476, Length: 4,096","1120"
"10:46:22.2410611 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\dependentlibs.list","0.0000103","","1120"
"10:46:22.2416828 AM","firefox.exe","1008","QueryNameInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000055","Name: \Program Files\Firefox Nightly\xul.dll","1120"
"10:46:22.2420023 AM","firefox.exe","1008","QueryNameInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000052","Name: \Program Files\Firefox Nightly\xul.dll","1120"
"10:46:22.2424320 AM","firefox.exe","1008","QueryNameInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000026","Name: \Program Files\Firefox Nightly\xul.dll","1120"
"10:46:22.2426099 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 4648","1120"
"10:46:22.2436429 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\SideBySide","0.0000094","Desired Access: Read","1120"
"10:46:22.2436638 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest","0.0000034","Length: 20","1120"
"10:46:22.2436779 AM","firefox.exe","1008","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide","0.0000012","","1120"
"10:46:22.2438332 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000153","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2441583 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000051","","1120"
"10:46:22.2444331 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\rpcss.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2444698 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\rpcss.dll","0.0000034","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","1120"
"10:46:22.2444821 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\rpcss.dll","0.0000043","","1120"
"10:46:22.2446114 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\rpcss.dll","0.0000162","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2446519 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\rpcss.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:22.2446647 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\System32\rpcss.dll","0.0000030","AllocationSize: 1,163,264, EndOfFile: 1,159,680, NumberOfLinks: 2, DeletePending: False, Directory: False","1120"
"10:46:22.2446844 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\rpcss.dll","0.0000012","SyncType: SyncTypeOther","1120"
"10:46:22.2447428 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\rpcss.dll","0.0000060","","1120"
"10:46:22.2452668 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2453082 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000034","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","1120"
"10:46:22.2453235 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000051","","1120"
"10:46:22.2460412 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2460796 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000034","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","1120"
"10:46:22.2460928 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000051","","1120"
"10:46:22.2462221 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000128","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2462626 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\ntmarta.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:22.2462865 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\ntmarta.dll","0.0000017","SyncType: SyncTypeOther","1120"
"10:46:22.2463403 AM","firefox.exe","1008","Load Image","C:\Windows\System32\ntmarta.dll","0.0000000","Image Base: 0x7ffb44b80000, Image Size: 0x31000","1120"
"10:46:22.2464329 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000072","","1120"
"10:46:22.2466987 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2467149 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\Rpc","0.0000077","Desired Access: Read","1120"
"10:46:22.2467358 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\Rpc\MaxRpcSize","0.0000034","Length: 16","1120"
"10:46:22.2467537 AM","firefox.exe","1008","RegCloseKey","HKLM\SOFTWARE\Microsoft\Rpc","0.0000021","","1120"
"10:46:22.2468130 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\ComputerName\ActiveComputerName","0.0000060","Desired Access: Read","1120"
"10:46:22.2468279 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\ComputerName\ActiveComputerName","0.0000056","Desired Access: Read","1120"
"10:46:22.2468433 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\ComputerName\ActiveComputerName\ComputerName","0.0000038","Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","1120"
"10:46:22.2468570 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Control\ComputerName\ActiveComputerName","0.0000012","","1120"
"10:46:22.2468672 AM","firefox.exe","1008","RegOpenKey","HKLM\System\Setup","0.0000038","Desired Access: Read","1120"
"10:46:22.2468787 AM","firefox.exe","1008","RegQueryValue","HKLM\SYSTEM\Setup\OOBEInProgress","0.0000026","Type: REG_DWORD, Length: 4, Data: 0","1120"
"10:46:22.2468894 AM","firefox.exe","1008","RegCloseKey","HKLM\SYSTEM\Setup","0.0000013","","1120"
"10:46:22.2468983 AM","firefox.exe","1008","RegOpenKey","HKLM\System\Setup","0.0000026","Desired Access: Read","1120"
"10:46:22.2469077 AM","firefox.exe","1008","RegQueryValue","HKLM\SYSTEM\Setup\SystemSetupInProgress","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","1120"
"10:46:22.2469180 AM","firefox.exe","1008","RegCloseKey","HKLM\SYSTEM\Setup","0.0000008","","1120"
"10:46:22.2469295 AM","firefox.exe","1008","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000034","Desired Access: Query Value, Enumerate Sub Keys","1120"
"10:46:22.2469837 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2469939 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\Rpc","0.0000056","Desired Access: Read","1120"
"10:46:22.2470421 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2470519 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\Rpc","0.0000039","Desired Access: Query Value","1120"
"10:46:22.2470643 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\Rpc\IdleTimerWindow","0.0000043","Length: 16","1120"
"10:46:22.2470814 AM","firefox.exe","1008","RegCloseKey","HKLM\SOFTWARE\Microsoft\Rpc","0.0000017","","1120"
"10:46:22.2473463 AM","firefox.exe","1008","RegOpenKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\Appx","0.0000128","Desired Access: Read","1120"
"10:46:22.2473754 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Windows\Appx\AllowDevelopmentWithoutDevLicense","0.0000034","Type: REG_DWORD, Length: 4, Data: 65535","1120"
"10:46:22.2473941 AM","firefox.exe","1008","RegCloseKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\Appx","0.0000013","","1120"
"10:46:22.2474155 AM","firefox.exe","1008","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModelUnlock","0.0000111","Desired Access: Read","1120"
"10:46:22.2474377 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModelUnlock\AllowDevelopmentWithoutDevLicense","0.0000029","Length: 24","1120"
"10:46:22.2474500 AM","firefox.exe","1008","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModelUnlock","0.0000013","","1120"
"10:46:22.2477461 AM","firefox.exe","1008","RegOpenKey","HKCU\Software\Classes","0.0000064","Desired Access: Maximum Allowed, Granted Access: All Access","1120"
"10:46:22.2477670 AM","firefox.exe","1008","RegQueryKey","HKCU\Software\Classes","0.0000039","Query: Name","1120"
"10:46:22.2477841 AM","firefox.exe","1008","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2477922 AM","firefox.exe","1008","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2478020 AM","firefox.exe","1008","RegOpenKey","HKCU\Software\Classes\AppID\firefox.exe","0.0000077","Desired Access: Read","1120"
"10:46:22.2478199 AM","firefox.exe","1008","RegOpenKey","HKCR\AppID\firefox.exe","0.0000056","Desired Access: Read","1120"
"10:46:22.2478434 AM","firefox.exe","1008","RegQueryKey","HKCU\Software\Classes","0.0000030","Query: Name","1120"
"10:46:22.2478545 AM","firefox.exe","1008","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2478626 AM","firefox.exe","1008","RegQueryKey","HKCU\Software\Classes","0.0000026","Query: Name","1120"
"10:46:22.2478788 AM","firefox.exe","1008","RegOpenKey","HKCU\Software\Classes\AppID\firefox.exe","0.0000047","Desired Access: Read","1120"
"10:46:22.2478946 AM","firefox.exe","1008","RegOpenKey","HKCR\AppID\firefox.exe","0.0000039","Desired Access: Read","1120"
"10:46:22.2482406 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000064","Desired Access: Query Value","1120"
"10:46:22.2482560 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000051","Desired Access: Query Value","1120"
"10:46:22.2482714 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Lsa\EveryoneIncludesAnonymous","0.0000042","Type: REG_DWORD, Length: 4, Data: 0","1120"
"10:46:22.2482871 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000013","","1120"
"10:46:22.2483716 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\Rpc\Extensions","0.0000094","Desired Access: Read","1120"
"10:46:22.2483917 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\Rpc\Extensions\NdrOleExtDLL","0.0000030","Type: REG_EXPAND_SZ, Length: 24, Data: combase.dll","1120"
"10:46:22.2484036 AM","firefox.exe","1008","RegCloseKey","HKLM\SOFTWARE\Microsoft\Rpc\Extensions","0.0000013","","1120"
"10:46:22.2513540 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 5412","1120"
"10:46:22.2514048 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 8","1120"
"10:46:22.2518238 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5412"
"10:46:22.2518502 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","5412"
"10:46:22.2518660 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8"
"10:46:22.2518669 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000068","","5412"
"10:46:22.2518912 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000038","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","8"
"10:46:22.2519053 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000051","","8"
"10:46:22.2522176 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 8768","1120"
"10:46:22.2538402 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\mfplat.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2538825 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\mfplat.dll","0.0000034","CreationTime: 3/20/2019 7:41:36 PM, LastAccessTime: 3/20/2019 7:41:46 PM, LastWriteTime: 3/20/2019 7:41:36 PM, ChangeTime: 4/25/2019 8:10:48 PM, FileAttributes: A","1120"
"10:46:22.2538974 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\mfplat.dll","0.0000055","","1120"
"10:46:22.2540335 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\mfplat.dll","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2540715 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\mfplat.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:22.2540864 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\System32\mfplat.dll","0.0000047","AllocationSize: 1,949,696, EndOfFile: 1,946,752, NumberOfLinks: 2, DeletePending: False, Directory: False","1120"
"10:46:22.2541141 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\mfplat.dll","0.0000013","SyncType: SyncTypeOther","1120"
"10:46:22.2541726 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\mfplat.dll","0.0000060","","1120"
"10:46:22.2543753 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\mfplat.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2544073 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\mfplat.dll","0.0000029","CreationTime: 3/20/2019 7:41:36 PM, LastAccessTime: 3/20/2019 7:41:46 PM, LastWriteTime: 3/20/2019 7:41:36 PM, ChangeTime: 4/25/2019 8:10:48 PM, FileAttributes: A","1120"
"10:46:22.2544192 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\mfplat.dll","0.0000043","","1120"
"10:46:22.2545600 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\mfplat.dll","0.0000137","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2545971 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\mfplat.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:22.2546223 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\mfplat.dll","0.0000017","SyncType: SyncTypeOther","1120"
"10:46:22.2547273 AM","firefox.exe","1008","Load Image","C:\Windows\System32\mfplat.dll","0.0000000","Image Base: 0x7ffb40bf0000, Image Size: 0x1db000","1120"
"10:46:22.2549875 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\mfplat.dll","0.0000098","","1120"
"10:46:22.2550827 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\mfplat.dll","0.0188727","Offset: 1,771,520, Length: 13,312, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.2570505 AM","firefox.exe","7384","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0440162","Offset: 15,253,504, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.2739845 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\mfplat.dll","0.0108723","Offset: 1,755,136, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.2848730 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\mfplat.dll","0.0103151","Offset: 1,738,752, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.2952030 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\mfplat.dll","0.0005603","Offset: 1,734,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.2958204 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\mfplat.dll","0.0003985","Offset: 1,682,944, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.2962505 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000051","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.2962910 AM","firefox.exe","1008","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows Media Foundation\Platform","0.0000188","Desired Access: Read","1120"
"10:46:22.2963358 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows Media Foundation\Platform\CallStackTracingNoisy","0.0000026","Length: 16","1120"
"10:46:22.2963572 AM","firefox.exe","1008","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows Media Foundation\Platform","0.0000021","","1120"
"10:46:22.2969609 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\RTWorkQ.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2970032 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\RTWorkQ.dll","0.0000038","CreationTime: 4/25/2019 5:32:37 PM, LastAccessTime: 4/25/2019 5:32:37 PM, LastWriteTime: 2/16/2019 1:01:48 AM, ChangeTime: 4/25/2019 8:15:28 PM, FileAttributes: A","1120"
"10:46:22.2970198 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\RTWorkQ.dll","0.0000055","","1120"
"10:46:22.2971380 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\RTWorkQ.dll","0.0000128","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2971785 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\RTWorkQ.dll","0.0000056","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:22.2972067 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\RTWorkQ.dll","0.0000013","SyncType: SyncTypeOther","1120"
"10:46:22.2972634 AM","firefox.exe","1008","Load Image","C:\Windows\System32\RTWorkQ.dll","0.0000000","Image Base: 0x7ffb40aa0000, Image Size: 0x2e000","1120"
"10:46:22.2973611 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\RTWorkQ.dll","0.0000090","","1120"
"10:46:22.2982068 AM","firefox.exe","1008","QueryNameInformationFile","C:\Windows\System32\mfplat.dll","0.0000192","Name: \Windows\System32\mfplat.dll","1120"
"10:46:22.2991425 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\mf.dll","0.0001868","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.2993857 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\mf.dll","0.0000149","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:47 PM, FileAttributes: A","1120"
"10:46:22.2994428 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\mf.dll","0.0000222","","1120"
"10:46:22.2999442 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\mf.dll","0.0000516","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.3000901 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\mf.dll","0.0000111","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:22.3001460 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\System32\mf.dll","0.0000124","AllocationSize: 491,520, EndOfFile: 491,416, NumberOfLinks: 2, DeletePending: False, Directory: False","1120"
"10:46:22.3002424 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\mf.dll","0.0000073","SyncType: SyncTypeOther","1120"
"10:46:22.3003819 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\mf.dll","0.0112252","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.3017059 AM","firefox.exe","7384","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0005807","Offset: 15,286,272, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.3028421 AM","firefox.exe","7384","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0206460","Offset: 15,319,040, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.3117876 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\mf.dll","0.0000371","","1120"
"10:46:22.3125910 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\mf.dll","0.0000499","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.3127088 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\mf.dll","0.0000119","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:47 PM, FileAttributes: A","1120"
"10:46:22.3127514 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\mf.dll","0.0000154","","1120"
"10:46:22.3130936 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\mf.dll","0.0000538","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.3132455 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\mf.dll","0.0000218","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:22.3133142 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\System32\mf.dll","0.0000124","AllocationSize: 491,520, EndOfFile: 491,416, NumberOfLinks: 2, DeletePending: False, Directory: False","1120"
"10:46:22.3136026 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\System32\mf.dll","0.0000107","AllocationSize: 491,520, EndOfFile: 491,416, NumberOfLinks: 2, DeletePending: False, Directory: False","1120"
"10:46:22.3136799 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\mf.dll","0.0000094","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE|PAGE_NOCACHE","1120"
"10:46:22.3137392 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\System32\mf.dll","0.0000085","AllocationSize: 491,520, EndOfFile: 491,416, NumberOfLinks: 2, DeletePending: False, Directory: False","1120"
"10:46:22.3138476 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\mf.dll","0.0000076","SyncType: SyncTypeOther","1120"
"10:46:22.3140186 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\mf.dll","0.0008875","Offset: 458,752, Length: 32,664, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.3159544 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\mf.dll","0.0015855","Offset: 327,680, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.3182341 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\mf.dll","0.0000137","SyncType: SyncTypeOther","1120"
"10:46:22.3184982 AM","firefox.exe","1008","Load Image","C:\Windows\System32\mf.dll","0.0000000","Image Base: 0x7ffb21cd0000, Image Size: 0x7b000","1120"
"10:46:22.3185981 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\mf.dll","0.0004027","Offset: 411,136, Length: 2,048, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.3192069 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\mf.dll","0.0005018","Offset: 393,216, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.3199438 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\mf.dll","0.0003562","Offset: 428,544, Length: 1,536, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.3205731 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\mf.dll","0.0004216","Offset: 430,080, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.3213147 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\mf.dll","0.0005862","Offset: 409,600, Length: 1,536, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.3223122 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\mf.dll","0.0013623","Offset: 376,832, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.3239775 AM","firefox.exe","7384","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0005837","Offset: 15,351,808, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.3240389 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\mf.dll","0.0000452","","1120"
"10:46:22.3242198 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\mf.dll","0.0005551","Offset: 413,184, Length: 15,360, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.3250868 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\mf.dll","0.0003286","Offset: 41,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.3254311 AM","firefox.exe","7384","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0005240","Offset: 15,384,576, Length: 20,480, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.3256074 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\mf.dll","0.0005930","Offset: 41,984, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.3270013 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\gdi32full.dll","0.0089003","Offset: 320,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.3270939 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\mf.dll","0.0009476","Offset: 82,944, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.3283163 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\mf.dll","0.0012603","Offset: 37,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.3297162 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\mf.dll","0.0005973","Offset: 9,216, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.3306049 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\mf.dll","0.0004331","Offset: 152,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.3311724 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\mf.dll","0.0004096","Offset: 152,576, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.3318329 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\mf.dll","0.0004377","Offset: 344,064, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.3326384 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\mf.dll","0.0003746","Offset: 360,448, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.3334047 AM","firefox.exe","1008","QueryNameInformationFile","C:\Windows\System32\mf.dll","0.0000252","Name: \Windows\System32\mf.dll","1120"
"10:46:22.3342188 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\dxva2.dll","0.0000516","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.3343472 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\dxva2.dll","0.0000111","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","1120"
"10:46:22.3343886 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\dxva2.dll","0.0000166","","1120"
"10:46:22.3347227 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\dxva2.dll","0.0000379","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.3348293 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\dxva2.dll","0.0000086","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:22.3348686 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\System32\dxva2.dll","0.0000094","AllocationSize: 126,976, EndOfFile: 126,152, NumberOfLinks: 2, DeletePending: False, Directory: False","1120"
"10:46:22.3349322 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\dxva2.dll","0.0000047","SyncType: SyncTypeOther","1120"
"10:46:22.3350337 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\dxva2.dll","0.0072525","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.3360880 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\gdi32full.dll","0.0109214","Offset: 308,224, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.3424193 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\dxva2.dll","0.0000273","","1120"
"10:46:22.3431011 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\dxva2.dll","0.0000427","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.3432116 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\dxva2.dll","0.0000103","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","1120"
"10:46:22.3432517 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\dxva2.dll","0.0000150","","1120"
"10:46:22.3435760 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\dxva2.dll","0.0000376","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.3436823 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\dxva2.dll","0.0000157","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:22.3438755 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\dxva2.dll","0.0000064","SyncType: SyncTypeOther","1120"
"10:46:22.3441354 AM","firefox.exe","1008","Load Image","C:\Windows\System32\dxva2.dll","0.0000000","Image Base: 0x7ffb41390000, Image Size: 0x22000","1120"
"10:46:22.3445181 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\dxva2.dll","0.0000294","","1120"
"10:46:22.3447796 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\WMI\Security\a0386e75-f70c-464c-a9ce-33c44e091623","0.0000837","Length: 524","1120"
"10:46:22.3449546 AM","firefox.exe","1008","QueryNameInformationFile","C:\Windows\System32\dxva2.dll","0.0000158","Name: \Windows\System32\dxva2.dll","1120"
"10:46:22.3456650 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\evr.dll","0.0157069","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.3614163 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\evr.dll","0.0000076","CreationTime: 3/20/2019 7:41:13 PM, LastAccessTime: 3/20/2019 7:41:32 PM, LastWriteTime: 3/20/2019 7:41:13 PM, ChangeTime: 4/25/2019 8:10:47 PM, FileAttributes: A","1120"
"10:46:22.3614495 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\evr.dll","0.0000107","","1120"
"10:46:22.3621339 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\evr.dll","0.0000819","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.3623775 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\evr.dll","0.0000060","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:22.3624065 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\System32\evr.dll","0.0000060","AllocationSize: 753,664, EndOfFile: 753,056, NumberOfLinks: 2, DeletePending: False, Directory: False","1120"
"10:46:22.3624518 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\evr.dll","0.0000034","SyncType: SyncTypeOther","1120"
"10:46:22.3625205 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\evr.dll","0.0156139","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.3625286 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.3626062 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000047","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","5728"
"10:46:22.3626335 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000077","","5728"
"10:46:22.3628520 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000171","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.3629062 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000068","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:22.3629493 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000025","SyncType: SyncTypeOther","5728"
"10:46:22.3630990 AM","firefox.exe","7384","Load Image","C:\Windows\System32\mscms.dll","0.0000000","Image Base: 0x7ffb2dad0000, Image Size: 0xa8000","5728"
"10:46:22.3631481 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\mscms.dll","0.0000081","Name: \Windows\System32\mscms.dll","5728"
"10:46:22.3633124 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000098","","5728"
"10:46:22.3637527 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.3637962 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000047","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","5728"
"10:46:22.3638192 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000064","","5728"
"10:46:22.3640006 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000166","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.3640432 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000128","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:22.3640940 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000021","SyncType: SyncTypeOther","5728"
"10:46:22.3642587 AM","firefox.exe","7384","Load Image","C:\Windows\System32\coloradapterclient.dll","0.0000000","Image Base: 0x7ffb2dac0000, Image Size: 0x10000","5728"
"10:46:22.3643001 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000072","Name: \Windows\System32\coloradapterclient.dll","5728"
"10:46:22.3644507 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000102","","5728"
"10:46:22.3648560 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\mscms.dll","0.0353580","Offset: 580,608, Length: 15,360, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.3782577 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\evr.dll","0.0000179","","1120"
"10:46:22.3786152 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\evr.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.3786728 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\evr.dll","0.0000051","CreationTime: 3/20/2019 7:41:13 PM, LastAccessTime: 3/20/2019 7:41:32 PM, LastWriteTime: 3/20/2019 7:41:13 PM, ChangeTime: 4/25/2019 8:10:47 PM, FileAttributes: A","1120"
"10:46:22.3786920 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\evr.dll","0.0000068","","1120"
"10:46:22.3788405 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\evr.dll","0.0000175","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:22.3788917 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\evr.dll","0.0000068","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:22.3789126 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\System32\evr.dll","0.0000043","AllocationSize: 753,664, EndOfFile: 753,056, NumberOfLinks: 2, DeletePending: False, Directory: False","1120"
"10:46:22.3790828 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\evr.dll","0.0027751","Offset: 555,008, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.3819453 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\evr.dll","0.0020233","Offset: 571,392, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.3842421 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\evr.dll","0.0097826","Offset: 730,624, Length: 7,168, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.3941659 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\evr.dll","0.0000073","SyncType: SyncTypeOther","1120"
"10:46:22.3943456 AM","firefox.exe","1008","Load Image","C:\Windows\System32\evr.dll","0.0000000","Image Base: 0x7ffb1d7d0000, Image Size: 0xba000","1120"
"10:46:22.3943985 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\evr.dll","0.0023437","Offset: 691,200, Length: 5,120, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.3968433 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\evr.dll","0.0005026","Offset: 677,888, Length: 13,312, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.3974154 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\evr.dll","0.0004617","Offset: 728,064, Length: 1,024, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.3979859 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\evr.dll","0.0004190","Offset: 729,088, Length: 1,536, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.3985423 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\evr.dll","0.0000205","","1120"
"10:46:22.3988550 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8584"
"10:46:22.3989062 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000051","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","8584"
"10:46:22.3989229 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000076","","8584"
"10:46:22.3990713 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000171","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8584"
"10:46:22.3991456 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\bcrypt.dll","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8584"
"10:46:22.3991729 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\bcrypt.dll","0.0000021","SyncType: SyncTypeOther","8584"
"10:46:22.3993261 AM","firefox.exe","1008","Load Image","C:\Windows\System32\bcrypt.dll","0.0000000","Image Base: 0x7ffb455f0000, Image Size: 0x25000","8584"
"10:46:22.3994562 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000162","","8584"
"10:46:22.3995722 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\evr.dll","0.0007023","Offset: 628,736, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","800"
"10:46:22.4002805 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\mscms.dll","0.0108096","Offset: 576,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.4004964 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\evr.dll","0.0006217","Offset: 712,704, Length: 15,360, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.4011688 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\evr.dll","0.0005082","Offset: 696,320, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.4017337 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\evr.dll","0.0004540","Offset: 140,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.4022210 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\evr.dll","0.0004578","Offset: 140,288, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.4027637 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\evr.dll","0.0004514","Offset: 136,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.4033039 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\evr.dll","0.0004360","Offset: 653,312, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.4037736 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\evr.dll","0.0004933","Offset: 107,520, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.4043607 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\evr.dll","0.0004237","Offset: 645,120, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.4048313 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\evr.dll","0.0004579","Offset: 95,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.4053237 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\evr.dll","0.0004118","Offset: 74,752, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.4058852 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\evr.dll","0.0092339","Offset: 595,968, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:22.4113734 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.4114315 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000059","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","5728"
"10:46:22.4114626 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000265","","5728"
"10:46:22.4117114 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000029","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.4117468 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\ClusSvc","0.0000085","Desired Access: Query Value","5728"
"10:46:22.4117818 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\ClusSvc","0.0000072","Desired Access: Query Value","5728"
"10:46:22.4118330 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.4118560 AM","firefox.exe","7384","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000119","Desired Access: Read","5728"
"10:46:22.4118876 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.4119059 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000149","Desired Access: Read","5728"
"10:46:22.4119418 AM","firefox.exe","7384","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000017","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:22.4119601 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\ri","0.0000034","Length: 12","5728"
"10:46:22.4119767 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\ri","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:22.4120006 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000022","","5728"
"10:46:22.4120429 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\gdi32full.dll","0.0007279","Offset: 377,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.4128523 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\gdi32full.dll","0.0004885","Offset: 373,760, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.4140073 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000166","Desired Access: Query Value, Maximum Allowed","5728"
"10:46:22.4140627 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\DeviceDesc","0.0000051","Type: REG_SZ, Length: 114, Data: @monitor.inf,%pnpmonitor.devicedesc%;Generic PnP Monitor","5728"
"10:46:22.4140969 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000017","","5728"
"10:46:22.4141314 AM","firefox.exe","7384","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000060","Desired Access: Read","5728"
"10:46:22.4141579 AM","firefox.exe","7384","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000047","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","5728"
"10:46:22.4141869 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000068","Desired Access: Read","5728"
"10:46:22.4142116 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000069","Desired Access: Read","5728"
"10:46:22.4142347 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000030","Desired Access: Read","5728"
"10:46:22.4142577 AM","firefox.exe","7384","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","5728"
"10:46:22.4142761 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000081","Length: 52","5728"
"10:46:22.4143012 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000013","","5728"
"10:46:22.4143273 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000042","Desired Access: Query Value, Maximum Allowed","5728"
"10:46:22.4143486 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\HardwareID","0.0000034","Type: REG_MULTI_SZ, Length: 34, Data: MONITOR\CMN15D2","5728"
"10:46:22.4143695 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000013","","5728"
"10:46:22.4143921 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000034","Desired Access: Query Value, Maximum Allowed","5728"
"10:46:22.4144113 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\Driver","0.0000034","Type: REG_SZ, Length: 88, Data: {4d36e96e-e325-11ce-bfc1-08002be10318}\0001","5728"
"10:46:22.4144309 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000013","","5728"
"10:46:22.4144510 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000030","Desired Access: Query Value, Maximum Allowed","5728"
"10:46:22.4144689 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\Driver","0.0000030","Type: REG_SZ, Length: 88, Data: {4d36e96e-e325-11ce-bfc1-08002be10318}\0001","5728"
"10:46:22.4144881 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000009","","5728"
"10:46:22.4145406 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\mscms.dll","0.0364340","Offset: 95,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.4152139 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\WMI\Security\209814d7-1019-4651-9aaf-794b1bca59d2","0.0000337","Length: 524","1120"
"10:46:22.4153090 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:22.4153299 AM","firefox.exe","1008","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows Media Foundation\Platform","0.0000094","Desired Access: Query Value","1120"
"10:46:22.4153538 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows Media Foundation\Platform\FreeWppTrace","0.0000026","Length: 16","1120"
"10:46:22.4153734 AM","firefox.exe","1008","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows Media Foundation\Platform","0.0000017","","1120"
"10:46:22.4154195 AM","firefox.exe","1008","QueryNameInformationFile","C:\Windows\System32\evr.dll","0.0000120","Name: \Windows\System32\evr.dll","1120"
"10:46:22.4155522 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 6896","1120"
"10:46:22.4159106 AM","firefox.exe","1008","RegOpenKey","HKCU\Software\Classes","0.0000098","Desired Access: Maximum Allowed, Granted Access: All Access","6896"
"10:46:22.4159447 AM","firefox.exe","1008","RegQueryKey","HKCU\Software\Classes","0.0000060","Query: Name","6896"
"10:46:22.4159644 AM","firefox.exe","1008","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","6896"
"10:46:22.4159746 AM","firefox.exe","1008","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","6896"
"10:46:22.4159891 AM","firefox.exe","1008","RegOpenKey","HKCU\Software\Classes\CLSID\{e79167d7-1b85-4d78-b603-798e0e1a4c67}","0.0000064","Desired Access: Query Value","6896"
"10:46:22.4160079 AM","firefox.exe","1008","RegOpenKey","HKCR\CLSID\{e79167d7-1b85-4d78-b603-798e0e1a4c67}","0.0000175","Desired Access: Query Value","6896"
"10:46:22.4160463 AM","firefox.exe","1008","RegCloseKey","HKCR\CLSID\{e79167d7-1b85-4d78-b603-798e0e1a4c67}","0.0000021","","6896"
"10:46:22.4160932 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\RTWorkQ.dll","0.0485535","Offset: 112,128, Length: 7,168, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6896"
"10:46:22.4511205 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\mscms.dll","0.0219008","Offset: 95,232, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.4647678 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\SafeBoot\Option","0.0000376","Desired Access: Query Value","6896"
"10:46:22.4649014 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\SafeBoot\Option","0.0000508","Desired Access: Query Value","6896"
"10:46:22.4651058 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000085","Query: HandleTags, HandleTags: 0x0","6896"
"10:46:22.4651783 AM","firefox.exe","1008","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows Media Foundation\Platform","0.0000273","Desired Access: Read","6896"
"10:46:22.4652662 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows Media Foundation\Platform\CallStackTracingEnabled","0.0000115","Length: 16","6896"
"10:46:22.4653379 AM","firefox.exe","1008","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows Media Foundation\Platform","0.0000060","","6896"
"10:46:22.4657650 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Notifications\02821B2CA3BC08B5","0.0000251","Length: 0","6896"
"10:46:22.4658239 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Notifications\02821B2CA3BC08B5","0.0000128","Type: REG_BINARY, Length: 152, Data: 01 00 04 80 00 00 00 00 00 00 00 00 00 00 00 00","6896"
"10:46:22.4658994 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Notifications\02821B2CA3BC08B5","0.0000115","Length: 0","6896"
"10:46:22.4659437 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Notifications\02821B2CA3BC08B5","0.0000111","Type: REG_BINARY, Length: 152, Data: 01 00 04 80 00 00 00 00 00 00 00 00 00 00 00 00","6896"
"10:46:22.4669016 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 2632","1120"
"10:46:22.4696924 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\mswsock.dll","0.0000913","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.4699160 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000179","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2632"
"10:46:22.4699928 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\mswsock.dll","0.0000303","","2632"
"10:46:22.4706055 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\mswsock.dll","0.0000644","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.4707941 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000137","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2632"
"10:46:22.4709020 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000082","SyncType: SyncTypeOther","2632"
"10:46:22.4711538 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\mswsock.dll","0.0000422","","2632"
"10:46:22.4715514 AM","firefox.exe","1008","RegOpenKey","HKLM\SOFTWARE\Policies\Microsoft\WindowsStore","0.0000359","Desired Access: Read","2632"
"10:46:22.4716769 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000422","Desired Access: Read","2632"
"10:46:22.4724884 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0001212","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.4727273 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000162","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2632"
"10:46:22.4728063 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000166","AllocationSize: 12,288, EndOfFile: 11,776, NumberOfLinks: 4, DeletePending: False, Directory: False","2632"
"10:46:22.4730610 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000141","SyncType: SyncTypeOther","2632"
"10:46:22.4732722 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\mscms.dll","0.0011183","Offset: 74,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.4733665 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000448","","2632"
"10:46:22.4745539 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\mscms.dll","0.0004646","Offset: 66,560, Length: 28,672, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.4747851 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\mswsock.dll","0.0000747","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.4750642 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000217","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2632"
"10:46:22.4751606 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\mswsock.dll","0.0000367","","2632"
"10:46:22.4752306 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\mscms.dll","0.0099046","Offset: 287,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.4757925 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\mswsock.dll","0.0000619","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.4759909 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000145","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2632"
"10:46:22.4761061 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000081","SyncType: SyncTypeOther","2632"
"10:46:22.4762827 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\mswsock.dll","0.0000350","","2632"
"10:46:22.4765865 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000555","Desired Access: Read","2632"
"10:46:22.4775653 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0001677","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.4778768 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000222","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2632"
"10:46:22.4779898 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000239","AllocationSize: 12,288, EndOfFile: 11,776, NumberOfLinks: 4, DeletePending: False, Directory: False","2632"
"10:46:22.4781601 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000136","SyncType: SyncTypeOther","2632"
"10:46:22.4784754 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000465","","2632"
"10:46:22.4808080 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\mswsock.dll","0.0001028","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.4811429 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000162","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2632"
"10:46:22.4812304 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\mswsock.dll","0.0000277","","2632"
"10:46:22.4827045 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\mswsock.dll","0.0000849","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.4829669 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000162","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2632"
"10:46:22.4830988 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000076","SyncType: SyncTypeOther","2632"
"10:46:22.4832643 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\mswsock.dll","0.0000329","","2632"
"10:46:22.4835092 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000448","Desired Access: Read","2632"
"10:46:22.4841249 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000759","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.4842764 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000123","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2632"
"10:46:22.4843391 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000158","AllocationSize: 12,288, EndOfFile: 11,776, NumberOfLinks: 4, DeletePending: False, Directory: False","2632"
"10:46:22.4844406 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000081","SyncType: SyncTypeOther","2632"
"10:46:22.4846621 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000281","","2632"
"10:46:22.4852944 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\mscms.dll","0.0110635","Offset: 287,744, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.4870053 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\mswsock.dll","0.0000819","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.4872199 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000184","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2632"
"10:46:22.4873019 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\mswsock.dll","0.0000277","","2632"
"10:46:22.4879090 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\mswsock.dll","0.0000631","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.4880920 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000137","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2632"
"10:46:22.4881953 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000072","SyncType: SyncTypeOther","2632"
"10:46:22.4883395 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\mswsock.dll","0.0000256","","2632"
"10:46:22.4885511 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000418","Desired Access: Read","2632"
"10:46:22.4890802 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000661","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.4892150 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000115","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2632"
"10:46:22.4892718 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000145","AllocationSize: 12,288, EndOfFile: 11,776, NumberOfLinks: 4, DeletePending: False, Directory: False","2632"
"10:46:22.4893652 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000073","SyncType: SyncTypeOther","2632"
"10:46:22.4895670 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000273","","2632"
"10:46:22.4905603 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\mswsock.dll","0.0000602","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.4907096 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000145","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2632"
"10:46:22.4907655 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\mswsock.dll","0.0000214","","2632"
"10:46:22.4912554 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\mswsock.dll","0.0000571","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.4914171 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000115","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2632"
"10:46:22.4915088 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000064","SyncType: SyncTypeOther","2632"
"10:46:22.4916389 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\mswsock.dll","0.0000231","","2632"
"10:46:22.4918314 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000349","Desired Access: Read","2632"
"10:46:22.4923143 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000551","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.4924248 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000099","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2632"
"10:46:22.4924714 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000119","AllocationSize: 12,288, EndOfFile: 11,776, NumberOfLinks: 4, DeletePending: False, Directory: False","2632"
"10:46:22.4925482 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000055","SyncType: SyncTypeOther","2632"
"10:46:22.4927073 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000226","","2632"
"10:46:22.4935355 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\mswsock.dll","0.0000516","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.4936626 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000120","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2632"
"10:46:22.4937100 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\mswsock.dll","0.0000183","","2632"
"10:46:22.4941272 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\mswsock.dll","0.0000478","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.4942642 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000098","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2632"
"10:46:22.4943431 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000052","SyncType: SyncTypeOther","2632"
"10:46:22.4944507 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\mswsock.dll","0.0000192","","2632"
"10:46:22.4946132 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000303","Desired Access: Read","2632"
"10:46:22.4950301 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000529","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.4951384 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000094","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2632"
"10:46:22.4951841 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000115","AllocationSize: 12,288, EndOfFile: 11,776, NumberOfLinks: 4, DeletePending: False, Directory: False","2632"
"10:46:22.4952592 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000055","SyncType: SyncTypeOther","2632"
"10:46:22.4954154 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000213","","2632"
"10:46:22.4963254 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\wshqos.dll","0.0000589","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.4964650 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\wshqos.dll","0.0000128","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:11:07 PM, FileAttributes: A","2632"
"10:46:22.4965140 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\wshqos.dll","0.0000197","","2632"
"10:46:22.4970439 AM","firefox.exe","7384","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000265","Desired Access: Read, Maximum Allowed","5728"
"10:46:22.4971715 AM","firefox.exe","7384","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000171","Type: REG_DWORD, Length: 4, Data: 3","5728"
"10:46:22.4972786 AM","firefox.exe","7384","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000060","","5728"
"10:46:22.4989652 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\wshqos.dll","0.0000918","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.4992554 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000285","Desired Access: Query Value, Maximum Allowed","5728"
"10:46:22.4992643 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000184","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2632"
"10:46:22.4994222 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\DeviceDesc","0.0000192","Type: REG_SZ, Length: 114, Data: @monitor.inf,%pnpmonitor.devicedesc%;Generic PnP Monitor","5728"
"10:46:22.4995796 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000090","","5728"
"10:46:22.4996057 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000153","SyncType: SyncTypeOther","2632"
"10:46:22.4997311 AM","firefox.exe","7384","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000256","Desired Access: Read","5728"
"10:46:22.4998262 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\wshqos.dll","0.0000397","","2632"
"10:46:22.4998693 AM","firefox.exe","7384","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000201","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","5728"
"10:46:22.5000161 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000294","Desired Access: Read","5728"
"10:46:22.5001108 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000431","Desired Access: Read","2632"
"10:46:22.5001390 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000260","Desired Access: Read","5728"
"10:46:22.5002555 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000170","Desired Access: Read","5728"
"10:46:22.5003809 AM","firefox.exe","7384","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000081","","5728"
"10:46:22.5004906 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0001314","Length: 52","5728"
"10:46:22.5007129 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000055","","5728"
"10:46:22.5007781 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000474","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.5008421 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000141","Desired Access: Query Value, Maximum Allowed","5728"
"10:46:22.5008775 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000086","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2632"
"10:46:22.5009219 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000098","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","2632"
"10:46:22.5009283 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\HardwareID","0.0000265","Type: REG_MULTI_SZ, Length: 34, Data: MONITOR\CMN15D2","5728"
"10:46:22.5009974 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000060","SyncType: SyncTypeOther","2632"
"10:46:22.5010239 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000043","","5728"
"10:46:22.5011114 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000123","Desired Access: Query Value, Maximum Allowed","5728"
"10:46:22.5011468 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000192","","2632"
"10:46:22.5011869 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\Driver","0.0000089","Type: REG_SZ, Length: 88, Data: {4d36e96e-e325-11ce-bfc1-08002be10318}\0001","5728"
"10:46:22.5012543 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000043","","5728"
"10:46:22.5013285 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000107","Desired Access: Query Value, Maximum Allowed","5728"
"10:46:22.5013942 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\Driver","0.0000094","Type: REG_SZ, Length: 88, Data: {4d36e96e-e325-11ce-bfc1-08002be10318}\0001","5728"
"10:46:22.5014638 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000047","","5728"
"10:46:22.5016515 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000056","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.5017104 AM","firefox.exe","7384","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM","0.0000248","Desired Access: Enumerate Sub Keys","5728"
"10:46:22.5017902 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows NT\CurrentVersion\ICM","0.0000043","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.5018440 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows NT\CurrentVersion\ICM\ProfileAssociations\Display","0.0000093","Desired Access: Enumerate Sub Keys","5728"
"10:46:22.5019080 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows NT\CurrentVersion\ICM","0.0000046","","5728"
"10:46:22.5019203 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\wshqos.dll","0.0000418","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.5019899 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000042","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.5020300 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\wshqos.dll","0.0000102","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:11:07 PM, FileAttributes: A","2632"
"10:46:22.5020441 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Class\{4D36E96E-E325-11CE-BFC1-08002BE10318}\0001","0.0000136","Desired Access: Query Value","5728"
"10:46:22.5020748 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\wshqos.dll","0.0000158","","2632"
"10:46:22.5021017 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4D36E96E-E325-11CE-BFC1-08002BE10318}\0001","0.0000162","Desired Access: Query Value","5728"
"10:46:22.5021733 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e96e-e325-11ce-bfc1-08002be10318}\0001\ProfileEnumMode","0.0000086","Length: 16","5728"
"10:46:22.5022331 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e96e-e325-11ce-bfc1-08002be10318}\0001","0.0000042","","5728"
"10:46:22.5022945 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000043","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.5023478 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Class\{4D36E96E-E325-11CE-BFC1-08002BE10318}\0001","0.0000124","Desired Access: Query Value","5728"
"10:46:22.5024016 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4D36E96E-E325-11CE-BFC1-08002BE10318}\0001","0.0000149","Desired Access: Query Value","5728"
"10:46:22.5024630 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e96e-e325-11ce-bfc1-08002be10318}\0001\ICMProfile","0.0000077","Length: 12","5728"
"10:46:22.5025078 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\wshqos.dll","0.0000448","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.5025283 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e96e-e325-11ce-bfc1-08002be10318}\0001","0.0000039","","5728"
"10:46:22.5026256 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\mscms.dll","0.0007915","Offset: 544,256, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.5026610 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000103","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2632"
"10:46:22.5027843 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000064","SyncType: SyncTypeOther","2632"
"10:46:22.5028854 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\wshqos.dll","0.0000171","","2632"
"10:46:22.5030224 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000243","Desired Access: Read","2632"
"10:46:22.5033667 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000418","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.5034841 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000055","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.5035532 AM","firefox.exe","7384","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000141","Desired Access: Read","5728"
"10:46:22.5035711 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000077","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2632"
"10:46:22.5036138 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000089","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","2632"
"10:46:22.5036206 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000158","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.5036795 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000158","Desired Access: Read","5728"
"10:46:22.5036893 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000051","SyncType: SyncTypeOther","2632"
"10:46:22.5037405 AM","firefox.exe","7384","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000034","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:22.5037772 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\sRGB","0.0000068","Length: 12","5728"
"10:46:22.5038216 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000166","","2632"
"10:46:22.5038233 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000029","","5728"
"10:46:22.5038719 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.5039052 AM","firefox.exe","7384","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000102","Desired Access: Read","5728"
"10:46:22.5039453 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.5039756 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000115","Desired Access: Read","5728"
"10:46:22.5040276 AM","firefox.exe","7384","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000030","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:22.5040699 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\sRGB","0.0000077","Length: 12","5728"
"10:46:22.5041377 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000039","","5728"
"10:46:22.5042252 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\mscms.dll","0.0016789","Offset: 173,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.5046988 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\wshqos.dll","0.0000341","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.5047841 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\wshqos.dll","0.0000081","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:11:07 PM, FileAttributes: A","2632"
"10:46:22.5048187 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\wshqos.dll","0.0000115","","2632"
"10:46:22.5050866 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\wshqos.dll","0.0000278","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.5051698 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000064","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2632"
"10:46:22.5052543 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000038","SyncType: SyncTypeOther","2632"
"10:46:22.5053273 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\wshqos.dll","0.0000128","","2632"
"10:46:22.5054309 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000201","Desired Access: Read","2632"
"10:46:22.5056776 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000384","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.5057492 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000052","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2632"
"10:46:22.5057757 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000068","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","2632"
"10:46:22.5058235 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000034","SyncType: SyncTypeOther","2632"
"10:46:22.5059199 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000128","","2632"
"10:46:22.5059728 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\mscms.dll","0.0003772","Offset: 156,672, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.5064823 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000068","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.5065475 AM","firefox.exe","7384","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000137","Desired Access: Read","5728"
"10:46:22.5066064 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.5066440 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000145","Desired Access: Read","5728"
"10:46:22.5066930 AM","firefox.exe","7384","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000026","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:22.5067267 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\camp","0.0000077","Length: 12","5728"
"10:46:22.5067604 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\camp","0.0000056","Type: REG_SZ, Length: 18, Data: D65.camp","5728"
"10:46:22.5069349 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\wshqos.dll","0.0000380","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.5070365 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\wshqos.dll","0.0000256","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:11:07 PM, FileAttributes: A","2632"
"10:46:22.5070476 AM","firefox.exe","7384","ReadFile","C:\$Directory","0.0044612","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.5071146 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\wshqos.dll","0.0000251","","2632"
"10:46:22.5077405 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\wshqos.dll","0.0000401","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.5078553 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000076","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2632"
"10:46:22.5079696 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000060","SyncType: SyncTypeOther","2632"
"10:46:22.5080673 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\wshqos.dll","0.0000154","","2632"
"10:46:22.5082145 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000214","Desired Access: Read","2632"
"10:46:22.5087197 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000375","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.5088037 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000064","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2632"
"10:46:22.5088375 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000068","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","2632"
"10:46:22.5088878 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000034","SyncType: SyncTypeOther","2632"
"10:46:22.5089957 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000141","","2632"
"10:46:22.5091587 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000039","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5091890 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000111","Desired Access: All Access","2632"
"10:46:22.5092193 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000755","Desired Access: All Access","2632"
"10:46:22.5092564 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000077","Information: Owner","2632"
"10:46:22.5092842 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000030","Information: Owner","2632"
"10:46:22.5093179 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5093384 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000076","Desired Access: Read","2632"
"10:46:22.5093618 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000184","Desired Access: Read","2632"
"10:46:22.5094049 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000064","Length: 16","2632"
"10:46:22.5094284 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000055","Type: REG_SZ, Length: 8, Data: 2.0","2632"
"10:46:22.5094604 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000055","Length: 44","2632"
"10:46:22.5094809 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000047","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","2632"
"10:46:22.5096127 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\CustomLocale","0.0000090","Desired Access: Read","2632"
"10:46:22.5096387 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\CustomLocale","0.0000090","Desired Access: Read","2632"
"10:46:22.5096673 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\CustomLocale\en-US","0.0000047","Length: 532","2632"
"10:46:22.5096938 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Control\Nls\CustomLocale","0.0000025","","2632"
"10:46:22.5097160 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\ExtendedLocale","0.0000068","Desired Access: Read","2632"
"10:46:22.5097373 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\ExtendedLocale","0.0000064","Desired Access: Read","2632"
"10:46:22.5097608 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\ExtendedLocale\en-US","0.0000038","Length: 532","2632"
"10:46:22.5097829 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Control\Nls\ExtendedLocale","0.0000022","","2632"
"10:46:22.5098120 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Versions\000602xx","0.0000089","Type: REG_SZ, Length: 26, Data: kernel32.dll","2632"
"10:46:22.5101593 AM","firefox.exe","1008","CreateFile","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000307","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2632"
"10:46:22.5102331 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000064","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2632"
"10:46:22.5102617 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000068","AllocationSize: 3,371,008, EndOfFile: 3,368,788, NumberOfLinks: 2, DeletePending: False, Directory: False","2632"
"10:46:22.5103060 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000035","SyncType: SyncTypeOther","2632"
"10:46:22.5103649 AM","firefox.exe","1008","CloseFile","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000120","","2632"
"10:46:22.5104677 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Ids","0.0000099","Desired Access: Read","2632"
"10:46:22.5104946 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Ids","0.0000094","Desired Access: Read","2632"
"10:46:22.5105232 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Ids\en-US","0.0000103","Length: 90","2632"
"10:46:22.5105488 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Ids\en","0.0000085","Length: 90","2632"
"10:46:22.5106034 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000026","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5106265 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000128","Desired Access: Maximum Allowed, Granted Access: Read","2632"
"10:46:22.5106619 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000055","Type: REG_DWORD, Length: 4, Data: 8","2632"
"10:46:22.5107400 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000051","Type: REG_DWORD, Length: 4, Data: 8","2632"
"10:46:22.5107660 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5107860 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000060","Desired Access: Read","2632"
"10:46:22.5108099 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000052","Type: REG_DWORD, Length: 4, Data: 1015","2632"
"10:46:22.5108300 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000047","Type: REG_DWORD, Length: 4, Data: 14","2632"
"10:46:22.5108505 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5108692 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000073","Desired Access: Maximum Allowed, Granted Access: Read","2632"
"10:46:22.5108965 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5109149 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000051","Desired Access: Read","2632"
"10:46:22.5109392 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000051","Length: 144","2632"
"10:46:22.5109593 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000051","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5109904 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000026","","2632"
"10:46:22.5110109 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5110297 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000051","Desired Access: Read","2632"
"10:46:22.5110523 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000047","Length: 144","2632"
"10:46:22.5110719 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5110962 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000022","","2632"
"10:46:22.5111159 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5111342 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000043","Desired Access: Read","2632"
"10:46:22.5111560 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5111747 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5111978 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000021","","2632"
"10:46:22.5112430 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5112613 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000047","Desired Access: Read","2632"
"10:46:22.5112869 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5113057 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5113292 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","","2632"
"10:46:22.5113471 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5113646 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000047","Desired Access: Read","2632"
"10:46:22.5113864 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5114743 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000064","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5115011 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000022","","2632"
"10:46:22.5115208 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5115395 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000056","Desired Access: Read","2632"
"10:46:22.5115626 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000047","Length: 144","2632"
"10:46:22.5115860 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000060","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5116202 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000030","","2632"
"10:46:22.5116500 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000030","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5116799 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000081","Desired Access: Read","2632"
"10:46:22.5117162 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000064","Length: 144","2632"
"10:46:22.5117456 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000068","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5117844 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000035","","2632"
"10:46:22.5118152 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000034","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5118459 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000081","Desired Access: Read","2632"
"10:46:22.5118839 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000064","Length: 144","2632"
"10:46:22.5119163 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000068","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5119547 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000034","","2632"
"10:46:22.5119854 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000034","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5120174 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000077","Desired Access: Read","2632"
"10:46:22.5120550 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000068","Length: 144","2632"
"10:46:22.5120861 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000073","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5121254 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000029","","2632"
"10:46:22.5121552 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000034","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5121868 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000081","Desired Access: Read","2632"
"10:46:22.5122248 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000064","Length: 144","2632"
"10:46:22.5122551 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000072","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5122935 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000034","","2632"
"10:46:22.5123246 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000030","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5123570 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000077","Desired Access: Read","2632"
"10:46:22.5123818 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\spool\drivers\color\D65.camp","0.0258394","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.5123933 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000068","Length: 144","2632"
"10:46:22.5124232 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000068","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5124603 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000034","","2632"
"10:46:22.5124923 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000030","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5125251 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000081","Desired Access: Read","2632"
"10:46:22.5125618 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000064","Length: 144","2632"
"10:46:22.5125900 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000072","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5126280 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000059","","2632"
"10:46:22.5126540 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5126745 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000059","Desired Access: Read","2632"
"10:46:22.5126984 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000059","Length: 144","2632"
"10:46:22.5127214 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5127453 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000021","","2632"
"10:46:22.5127641 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5127828 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000047","Desired Access: Read","2632"
"10:46:22.5128046 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5128230 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000046","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5128451 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000022","","2632"
"10:46:22.5128631 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","","2632"
"10:46:22.5129006 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000030","","2632"
"10:46:22.5129219 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000022","","2632"
"10:46:22.5129830 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5130030 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000085","Desired Access: All Access","2632"
"10:46:22.5130269 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000725","Desired Access: All Access","2632"
"10:46:22.5130627 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000081","Information: Owner","2632"
"10:46:22.5130909 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000030","Information: Owner","2632"
"10:46:22.5131199 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5131383 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000072","Desired Access: Read","2632"
"10:46:22.5131604 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000077","Desired Access: Read","2632"
"10:46:22.5131878 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000055","Length: 16","2632"
"10:46:22.5132087 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000047","Type: REG_SZ, Length: 8, Data: 2.0","2632"
"10:46:22.5132304 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000051","Length: 44","2632"
"10:46:22.5132496 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000051","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","2632"
"10:46:22.5132752 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5132936 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000068","Desired Access: Maximum Allowed, Granted Access: Read","2632"
"10:46:22.5133170 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000052","Type: REG_DWORD, Length: 4, Data: 8","2632"
"10:46:22.5135124 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000069","Type: REG_DWORD, Length: 4, Data: 8","2632"
"10:46:22.5135470 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000030","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5135752 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000081","Desired Access: Read","2632"
"10:46:22.5136089 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000059","Type: REG_DWORD, Length: 4, Data: 1015","2632"
"10:46:22.5136366 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000060","Type: REG_DWORD, Length: 4, Data: 14","2632"
"10:46:22.5136660 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000026","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5136925 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000094","Desired Access: Maximum Allowed, Granted Access: Read","2632"
"10:46:22.5137292 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000026","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5137561 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000077","Desired Access: Read","2632"
"10:46:22.5137919 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000064","Length: 144","2632"
"10:46:22.5138196 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000073","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5138542 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000030","","2632"
"10:46:22.5138751 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5138939 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000051","Desired Access: Read","2632"
"10:46:22.5139165 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5139353 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5139600 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000022","","2632"
"10:46:22.5139779 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5139959 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000047","Desired Access: Read","2632"
"10:46:22.5140176 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5140364 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5140599 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000021","","2632"
"10:46:22.5140786 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5140966 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000046","Desired Access: Read","2632"
"10:46:22.5141183 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5141371 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5141597 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000021","","2632"
"10:46:22.5141776 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5141951 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000043","Desired Access: Read","2632"
"10:46:22.5142160 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000047","Length: 144","2632"
"10:46:22.5142352 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5142583 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000017","","2632"
"10:46:22.5142758 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5142937 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000047","Desired Access: Read","2632"
"10:46:22.5143150 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5143338 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5143560 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000021","","2632"
"10:46:22.5143739 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5143914 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000047","Desired Access: Read","2632"
"10:46:22.5144127 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5144311 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5144537 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000021","","2632"
"10:46:22.5144716 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5144895 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000043","Desired Access: Read","2632"
"10:46:22.5145108 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5145296 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5145522 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000022","","2632"
"10:46:22.5145697 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5145876 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000043","Desired Access: Read","2632"
"10:46:22.5146090 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000047","Length: 144","2632"
"10:46:22.5146278 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000046","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5146499 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000022","","2632"
"10:46:22.5146679 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5146854 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000046","Desired Access: Read","2632"
"10:46:22.5147067 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5147255 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5147481 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000017","","2632"
"10:46:22.5147660 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5147839 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000047","Desired Access: Read","2632"
"10:46:22.5148052 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000047","Length: 144","2632"
"10:46:22.5148240 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5148462 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000021","","2632"
"10:46:22.5148641 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5148820 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000047","Desired Access: Read","2632"
"10:46:22.5149030 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5149217 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5149443 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000022","","2632"
"10:46:22.5149627 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5149802 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000047","Desired Access: Read","2632"
"10:46:22.5150015 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5150203 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5150429 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000017","","2632"
"10:46:22.5151069 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5151257 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000047","Desired Access: Read","2632"
"10:46:22.5151483 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5151675 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5151905 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000022","","2632"
"10:46:22.5152080 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","","2632"
"10:46:22.5152417 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000034","","2632"
"10:46:22.5152626 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000022","","2632"
"10:46:22.5153044 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5153232 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000081","Desired Access: All Access","2632"
"10:46:22.5153463 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000687","Desired Access: All Access","2632"
"10:46:22.5153804 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000072","Information: Owner","2632"
"10:46:22.5154073 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000025","Information: Owner","2632"
"10:46:22.5154342 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5154529 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000086","Desired Access: Read","2632"
"10:46:22.5154764 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000077","Desired Access: Read","2632"
"10:46:22.5155037 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000051","Length: 16","2632"
"10:46:22.5155242 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000051","Type: REG_SZ, Length: 8, Data: 2.0","2632"
"10:46:22.5155455 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000051","Length: 44","2632"
"10:46:22.5155643 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000068","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","2632"
"10:46:22.5155907 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5156099 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000073","Desired Access: Maximum Allowed, Granted Access: Read","2632"
"10:46:22.5156338 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000056","Type: REG_DWORD, Length: 4, Data: 8","2632"
"10:46:22.5156987 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000051","Type: REG_DWORD, Length: 4, Data: 8","2632"
"10:46:22.5157217 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5157401 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000055","Desired Access: Read","2632"
"10:46:22.5157627 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000047","Type: REG_DWORD, Length: 4, Data: 1015","2632"
"10:46:22.5157823 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000043","Type: REG_DWORD, Length: 4, Data: 14","2632"
"10:46:22.5158015 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5158194 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000060","Desired Access: Maximum Allowed, Granted Access: Read","2632"
"10:46:22.5158438 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5158617 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000055","Desired Access: Read","2632"
"10:46:22.5158851 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5159043 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5159299 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000022","","2632"
"10:46:22.5159487 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5159662 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000047","Desired Access: Read","2632"
"10:46:22.5159880 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5160063 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5160294 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","2632"
"10:46:22.5160468 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5160652 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000260","Desired Access: Read","2632"
"10:46:22.5161190 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000064","Length: 144","2632"
"10:46:22.5161463 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000064","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5161787 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000021","","2632"
"10:46:22.5161979 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5162171 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000047","Desired Access: Read","2632"
"10:46:22.5162393 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5162576 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5162807 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000021","","2632"
"10:46:22.5162986 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5163165 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000047","Desired Access: Read","2632"
"10:46:22.5163378 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000047","Length: 144","2632"
"10:46:22.5163566 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5163796 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000018","","2632"
"10:46:22.5163971 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5164151 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000047","Desired Access: Read","2632"
"10:46:22.5164364 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5164547 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5164774 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000021","","2632"
"10:46:22.5164957 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5165136 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000043","Desired Access: Read","2632"
"10:46:22.5165345 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5165533 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5165759 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000017","","2632"
"10:46:22.5165943 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5166122 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000042","Desired Access: Read","2632"
"10:46:22.5166331 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5166519 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5166740 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000022","","2632"
"10:46:22.5166924 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5167103 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000043","Desired Access: Read","2632"
"10:46:22.5167316 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000039","Length: 144","2632"
"10:46:22.5167500 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5167722 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000021","","2632"
"10:46:22.5167905 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5168084 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000043","Desired Access: Read","2632"
"10:46:22.5168294 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5168477 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5168703 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000017","","2632"
"10:46:22.5168882 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5169062 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000047","Desired Access: Read","2632"
"10:46:22.5169279 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5169463 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5169689 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000017","","2632"
"10:46:22.5169872 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5170056 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000042","Desired Access: Read","2632"
"10:46:22.5170269 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5170453 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000046","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5170679 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000021","","2632"
"10:46:22.5170858 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5171037 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000047","Desired Access: Read","2632"
"10:46:22.5171255 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5171442 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5171664 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000022","","2632"
"10:46:22.5171843 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5172023 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000042","Desired Access: Read","2632"
"10:46:22.5172236 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5172419 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5172646 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000017","","2632"
"10:46:22.5172821 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","","2632"
"10:46:22.5173123 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000030","","2632"
"10:46:22.5173315 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000022","","2632"
"10:46:22.5173738 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5173938 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000077","Desired Access: All Access","2632"
"10:46:22.5174156 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000631","Desired Access: All Access","2632"
"10:46:22.5174476 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000055","Information: Owner","2632"
"10:46:22.5174719 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000022","Information: Owner","2632"
"10:46:22.5174979 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000018","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5175163 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000060","Desired Access: Read","2632"
"10:46:22.5175381 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000085","Desired Access: Read","2632"
"10:46:22.5175662 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000051","Length: 16","2632"
"10:46:22.5175867 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000047","Type: REG_SZ, Length: 8, Data: 2.0","2632"
"10:46:22.5176072 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000051","Length: 44","2632"
"10:46:22.5176264 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000047","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","2632"
"10:46:22.5176503 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5176690 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000060","Desired Access: Maximum Allowed, Granted Access: Read","2632"
"10:46:22.5177463 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000051","Type: REG_DWORD, Length: 4, Data: 8","2632"
"10:46:22.5177970 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000047","Type: REG_DWORD, Length: 4, Data: 8","2632"
"10:46:22.5178201 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5178389 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000051","Desired Access: Read","2632"
"10:46:22.5178615 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000047","Type: REG_DWORD, Length: 4, Data: 1015","2632"
"10:46:22.5178824 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000042","Type: REG_DWORD, Length: 4, Data: 14","2632"
"10:46:22.5179024 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5179208 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000059","Desired Access: Maximum Allowed, Granted Access: Read","2632"
"10:46:22.5179447 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5179626 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000047","Desired Access: Read","2632"
"10:46:22.5179852 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5180044 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5180291 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000022","","2632"
"10:46:22.5180479 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5180654 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000047","Desired Access: Read","2632"
"10:46:22.5180867 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000047","Length: 144","2632"
"10:46:22.5181059 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5181286 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000021","","2632"
"10:46:22.5181469 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5181648 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000043","Desired Access: Read","2632"
"10:46:22.5181862 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000064","Length: 144","2632"
"10:46:22.5182075 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000064","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5182339 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000022","","2632"
"10:46:22.5182540 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5182783 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000047","Desired Access: Read","2632"
"10:46:22.5183009 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5183197 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5183427 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000022","","2632"
"10:46:22.5183611 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5183794 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000043","Desired Access: Read","2632"
"10:46:22.5184008 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5184195 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5184422 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000021","","2632"
"10:46:22.5184601 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5184784 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000047","Desired Access: Read","2632"
"10:46:22.5185006 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5185194 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5185416 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000021","","2632"
"10:46:22.5185612 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5185800 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000047","Desired Access: Read","2632"
"10:46:22.5186022 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000136","Length: 144","2632"
"10:46:22.5186325 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000051","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5186568 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000021","","2632"
"10:46:22.5186751 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5186930 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000043","Desired Access: Read","2632"
"10:46:22.5187144 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000047","Length: 144","2632"
"10:46:22.5187336 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5187558 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000021","","2632"
"10:46:22.5187737 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5187916 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000047","Desired Access: Read","2632"
"10:46:22.5188129 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5188321 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5188556 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000021","","2632"
"10:46:22.5188739 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5188919 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000047","Desired Access: Read","2632"
"10:46:22.5189141 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5189345 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000052","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5189589 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000021","","2632"
"10:46:22.5189973 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000025","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5190173 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000047","Desired Access: Read","2632"
"10:46:22.5190403 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000052","Length: 144","2632"
"10:46:22.5190608 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000056","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5190860 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000021","","2632"
"10:46:22.5191048 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5191223 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000047","Desired Access: Read","2632"
"10:46:22.5191457 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000047","Length: 144","2632"
"10:46:22.5191654 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000055","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5191897 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000021","","2632"
"10:46:22.5192080 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5192259 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000052","Desired Access: Read","2632"
"10:46:22.5192477 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5192665 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5192891 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000021","","2632"
"10:46:22.5193070 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5193245 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000047","Desired Access: Read","2632"
"10:46:22.5193463 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5193646 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5193881 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000077","","2632"
"10:46:22.5194124 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","","2632"
"10:46:22.5194440 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000034","","2632"
"10:46:22.5194704 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000022","","2632"
"10:46:22.5195139 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5195344 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000077","Desired Access: All Access","2632"
"10:46:22.5195575 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000652","Desired Access: All Access","2632"
"10:46:22.5195895 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000064","Information: Owner","2632"
"10:46:22.5196155 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000026","Information: Owner","2632"
"10:46:22.5196428 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5196629 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000064","Desired Access: Read","2632"
"10:46:22.5196846 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000068","Desired Access: Read","2632"
"10:46:22.5197098 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000055","Length: 16","2632"
"10:46:22.5197307 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000047","Type: REG_SZ, Length: 8, Data: 2.0","2632"
"10:46:22.5197516 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000047","Length: 44","2632"
"10:46:22.5197704 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000051","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","2632"
"10:46:22.5197947 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5198130 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000064","Desired Access: Maximum Allowed, Granted Access: Read","2632"
"10:46:22.5198365 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000051","Type: REG_DWORD, Length: 4, Data: 8","2632"
"10:46:22.5199227 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000043","Type: REG_DWORD, Length: 4, Data: 8","2632"
"10:46:22.5199449 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5199645 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000056","Desired Access: Read","2632"
"10:46:22.5199867 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000051","Type: REG_DWORD, Length: 4, Data: 1015","2632"
"10:46:22.5200072 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000042","Type: REG_DWORD, Length: 4, Data: 14","2632"
"10:46:22.5200268 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5200460 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000055","Desired Access: Maximum Allowed, Granted Access: Read","2632"
"10:46:22.5200712 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5200899 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000047","Desired Access: Read","2632"
"10:46:22.5201134 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000047","Length: 144","2632"
"10:46:22.5201335 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000051","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5201586 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000022","","2632"
"10:46:22.5201770 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5201958 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000047","Desired Access: Read","2632"
"10:46:22.5202184 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000047","Length: 144","2632"
"10:46:22.5202384 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5202615 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000042","","2632"
"10:46:22.5202832 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000026","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5203016 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000047","Desired Access: Read","2632"
"10:46:22.5203285 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000046","Length: 144","2632"
"10:46:22.5203481 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5203707 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000021","","2632"
"10:46:22.5203890 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5204070 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000047","Desired Access: Read","2632"
"10:46:22.5204287 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000047","Length: 144","2632"
"10:46:22.5204479 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5204701 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000021","","2632"
"10:46:22.5204885 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5205064 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000047","Desired Access: Read","2632"
"10:46:22.5205277 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5205465 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5205695 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000022","","2632"
"10:46:22.5205874 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5206066 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000047","Desired Access: Read","2632"
"10:46:22.5206327 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5206519 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5206741 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000021","","2632"
"10:46:22.5206928 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5207103 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000047","Desired Access: Read","2632"
"10:46:22.5207321 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5207509 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000046","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5207730 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000022","","2632"
"10:46:22.5207910 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5208089 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000047","Desired Access: Read","2632"
"10:46:22.5208315 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000107","Length: 144","2632"
"10:46:22.5208575 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5208801 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000022","","2632"
"10:46:22.5208985 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5209177 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000047","Desired Access: Read","2632"
"10:46:22.5209407 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5209629 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5209868 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","","2632"
"10:46:22.5210047 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5210226 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000047","Desired Access: Read","2632"
"10:46:22.5210444 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5210632 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5210854 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000021","","2632"
"10:46:22.5211033 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5211212 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000047","Desired Access: Read","2632"
"10:46:22.5211425 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5211609 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000051","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5211835 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000021","","2632"
"10:46:22.5212023 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5212210 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000047","Desired Access: Read","2632"
"10:46:22.5212424 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5212611 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5212833 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000022","","2632"
"10:46:22.5213017 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5213200 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000047","Desired Access: Read","2632"
"10:46:22.5213414 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5213601 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5213836 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000017","","2632"
"10:46:22.5214019 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5214199 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000047","Desired Access: Read","2632"
"10:46:22.5214459 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000047","Length: 144","2632"
"10:46:22.5214659 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5214894 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000021","","2632"
"10:46:22.5215078 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","","2632"
"10:46:22.5215432 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000030","","2632"
"10:46:22.5215628 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000026","","2632"
"10:46:22.5216008 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5216195 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000073","Desired Access: All Access","2632"
"10:46:22.5216413 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000602","Desired Access: All Access","2632"
"10:46:22.5216707 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000056","Information: Owner","2632"
"10:46:22.5216942 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000026","Information: Owner","2632"
"10:46:22.5217194 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5217394 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000064","Desired Access: Read","2632"
"10:46:22.5217595 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000068","Desired Access: Read","2632"
"10:46:22.5217842 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000052","Length: 16","2632"
"10:46:22.5218043 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000047","Type: REG_SZ, Length: 8, Data: 2.0","2632"
"10:46:22.5218252 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000047","Length: 44","2632"
"10:46:22.5218435 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000047","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","2632"
"10:46:22.5218670 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5218854 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000064","Desired Access: Maximum Allowed, Granted Access: Read","2632"
"10:46:22.5219084 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000047","Type: REG_DWORD, Length: 4, Data: 8","2632"
"10:46:22.5219622 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000047","Type: REG_DWORD, Length: 4, Data: 8","2632"
"10:46:22.5219843 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5220027 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000051","Desired Access: Read","2632"
"10:46:22.5220245 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000046","Type: REG_DWORD, Length: 4, Data: 1015","2632"
"10:46:22.5220441 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000047","Type: REG_DWORD, Length: 4, Data: 14","2632"
"10:46:22.5220641 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5220821 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000051","Desired Access: Maximum Allowed, Granted Access: Read","2632"
"10:46:22.5221047 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5221222 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000047","Desired Access: Read","2632"
"10:46:22.5221439 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000047","Length: 144","2632"
"10:46:22.5221631 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5221874 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000022","","2632"
"10:46:22.5222062 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5222237 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000047","Desired Access: Read","2632"
"10:46:22.5222450 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000047","Length: 144","2632"
"10:46:22.5222638 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5222869 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","2632"
"10:46:22.5223048 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5223223 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000047","Desired Access: Read","2632"
"10:46:22.5223453 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5223645 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5223871 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000017","","2632"
"10:46:22.5224050 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000018","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5224225 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000047","Desired Access: Read","2632"
"10:46:22.5224439 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000047","Length: 144","2632"
"10:46:22.5224626 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5224853 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000021","","2632"
"10:46:22.5225032 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5225215 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000043","Desired Access: Read","2632"
"10:46:22.5225429 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000076","Length: 144","2632"
"10:46:22.5225744 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000090","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5226128 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000030","","2632"
"10:46:22.5226431 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000030","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5226717 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000073","Desired Access: Read","2632"
"10:46:22.5227067 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000060","Length: 144","2632"
"10:46:22.5227293 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5227528 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000021","","2632"
"10:46:22.5227716 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5227895 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000047","Desired Access: Read","2632"
"10:46:22.5228112 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5228296 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5228522 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000017","","2632"
"10:46:22.5228701 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5228876 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000047","Desired Access: Read","2632"
"10:46:22.5229089 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5229277 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5229503 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000017","","2632"
"10:46:22.5229682 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5229862 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000047","Desired Access: Read","2632"
"10:46:22.5230075 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5230263 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5230485 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","","2632"
"10:46:22.5230664 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5230834 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000047","Desired Access: Read","2632"
"10:46:22.5231048 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5231231 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5231457 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000017","","2632"
"10:46:22.5231637 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5231812 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000042","Desired Access: Read","2632"
"10:46:22.5232025 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5232213 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5232434 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000022","","2632"
"10:46:22.5232609 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5232789 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000042","Desired Access: Read","2632"
"10:46:22.5232998 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5233181 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5233403 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000017","","2632"
"10:46:22.5233582 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5233757 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000051","Desired Access: Read","2632"
"10:46:22.5233975 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5234158 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5234384 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000017","","2632"
"10:46:22.5234564 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5234743 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000042","Desired Access: Read","2632"
"10:46:22.5234956 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5235140 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000046","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5235361 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000022","","2632"
"10:46:22.5235536 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","","2632"
"10:46:22.5235839 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000034","","2632"
"10:46:22.5236036 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000021","","2632"
"10:46:22.5236411 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5236599 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000072","Desired Access: All Access","2632"
"10:46:22.5236812 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000610","Desired Access: All Access","2632"
"10:46:22.5237111 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000059","Information: Owner","2632"
"10:46:22.5237345 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000026","Information: Owner","2632"
"10:46:22.5237606 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5237806 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000064","Desired Access: Read","2632"
"10:46:22.5238007 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000064","Desired Access: Read","2632"
"10:46:22.5238250 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000051","Length: 16","2632"
"10:46:22.5238450 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000047","Type: REG_SZ, Length: 8, Data: 2.0","2632"
"10:46:22.5238660 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000042","Length: 44","2632"
"10:46:22.5238839 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000047","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","2632"
"10:46:22.5239073 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5239257 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000060","Desired Access: Maximum Allowed, Granted Access: Read","2632"
"10:46:22.5239479 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000047","Type: REG_DWORD, Length: 4, Data: 8","2632"
"10:46:22.5240187 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000047","Type: REG_DWORD, Length: 4, Data: 8","2632"
"10:46:22.5240409 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5240592 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000052","Desired Access: Read","2632"
"10:46:22.5240806 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000047","Type: REG_DWORD, Length: 4, Data: 1015","2632"
"10:46:22.5241002 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000047","Type: REG_DWORD, Length: 4, Data: 14","2632"
"10:46:22.5241198 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5241373 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000056","Desired Access: Maximum Allowed, Granted Access: Read","2632"
"10:46:22.5241604 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5241778 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000047","Desired Access: Read","2632"
"10:46:22.5241996 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5242188 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5242427 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000017","","2632"
"10:46:22.5242606 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5242781 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000043","Desired Access: Read","2632"
"10:46:22.5242994 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5243182 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5243404 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000021","","2632"
"10:46:22.5243588 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5243762 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000043","Desired Access: Read","2632"
"10:46:22.5243976 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5244159 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5244381 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000021","","2632"
"10:46:22.5244560 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5244735 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000047","Desired Access: Read","2632"
"10:46:22.5244949 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5245132 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5245358 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","","2632"
"10:46:22.5245533 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5245712 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000039","Desired Access: Read","2632"
"10:46:22.5245917 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000047","Length: 144","2632"
"10:46:22.5246105 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5246331 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000021","","2632"
"10:46:22.5246510 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5246685 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000043","Desired Access: Read","2632"
"10:46:22.5246898 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5247082 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5247304 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000021","","2632"
"10:46:22.5247483 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5247662 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000043","Desired Access: Read","2632"
"10:46:22.5247871 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5248055 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5248277 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000021","","2632"
"10:46:22.5248456 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5248635 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000043","Desired Access: Read","2632"
"10:46:22.5248844 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5249032 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5249254 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000021","","2632"
"10:46:22.5249433 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5249608 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000042","Desired Access: Read","2632"
"10:46:22.5249817 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5250000 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5250226 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000035","","2632"
"10:46:22.5250427 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000026","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5250615 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000042","Desired Access: Read","2632"
"10:46:22.5250884 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5251071 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5251297 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000022","","2632"
"10:46:22.5251477 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5251656 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000042","Desired Access: Read","2632"
"10:46:22.5251869 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000047","Length: 144","2632"
"10:46:22.5252057 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5252279 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000021","","2632"
"10:46:22.5252458 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5252637 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000043","Desired Access: Read","2632"
"10:46:22.5252846 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5253034 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5253256 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000021","","2632"
"10:46:22.5253439 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5253614 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000047","Desired Access: Read","2632"
"10:46:22.5253828 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5254011 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5254233 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000021","","2632"
"10:46:22.5254412 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5254591 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000043","Desired Access: Read","2632"
"10:46:22.5254800 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5254984 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5255206 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000021","","2632"
"10:46:22.5255381 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","","2632"
"10:46:22.5255671 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000025","","2632"
"10:46:22.5255858 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000022","","2632"
"10:46:22.5256302 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5256490 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000090","Desired Access: All Access","2632"
"10:46:22.5256716 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000580","Desired Access: All Access","2632"
"10:46:22.5256993 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000052","Information: Owner","2632"
"10:46:22.5257224 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000021","Information: Owner","2632"
"10:46:22.5257476 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5257672 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000060","Desired Access: Read","2632"
"10:46:22.5257868 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000064","Desired Access: Read","2632"
"10:46:22.5258116 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000046","Length: 16","2632"
"10:46:22.5258312 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000042","Type: REG_SZ, Length: 8, Data: 2.0","2632"
"10:46:22.5258517 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000042","Length: 44","2632"
"10:46:22.5258704 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000047","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","2632"
"10:46:22.5258930 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5259114 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000055","Desired Access: Maximum Allowed, Granted Access: Read","2632"
"10:46:22.5259332 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000046","Type: REG_DWORD, Length: 4, Data: 8","2632"
"10:46:22.5259792 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000043","Type: REG_DWORD, Length: 4, Data: 8","2632"
"10:46:22.5260010 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5260193 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000056","Desired Access: Read","2632"
"10:46:22.5260407 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000047","Type: REG_DWORD, Length: 4, Data: 1015","2632"
"10:46:22.5260603 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000043","Type: REG_DWORD, Length: 4, Data: 14","2632"
"10:46:22.5260795 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5260974 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000051","Desired Access: Maximum Allowed, Granted Access: Read","2632"
"10:46:22.5261200 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5261375 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000051","Desired Access: Read","2632"
"10:46:22.5261601 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000047","Length: 144","2632"
"10:46:22.5261793 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5262032 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000022","","2632"
"10:46:22.5262212 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5262391 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000042","Desired Access: Read","2632"
"10:46:22.5262600 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5262788 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000046","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5263014 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","2632"
"10:46:22.5263193 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5263368 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000042","Desired Access: Read","2632"
"10:46:22.5263577 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000047","Length: 144","2632"
"10:46:22.5263765 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5263986 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000022","","2632"
"10:46:22.5264166 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5264345 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000043","Desired Access: Read","2632"
"10:46:22.5264554 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5264737 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000052","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5264964 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","","2632"
"10:46:22.5265143 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5265318 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000042","Desired Access: Read","2632"
"10:46:22.5265531 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5265719 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5265945 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000021","","2632"
"10:46:22.5266124 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5266299 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000043","Desired Access: Read","2632"
"10:46:22.5266508 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5266696 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5266918 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000021","","2632"
"10:46:22.5267097 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5267276 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000043","Desired Access: Read","2632"
"10:46:22.5267489 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5267677 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5267899 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000021","","2632"
"10:46:22.5268078 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5268257 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000043","Desired Access: Read","2632"
"10:46:22.5268471 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5268654 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5268876 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000017","","2632"
"10:46:22.5269051 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5269226 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000047","Desired Access: Read","2632"
"10:46:22.5269439 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5269623 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5269845 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000021","","2632"
"10:46:22.5270028 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5270203 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000043","Desired Access: Read","2632"
"10:46:22.5270412 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5270596 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000046","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5270817 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000017","","2632"
"10:46:22.5270997 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5271172 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000046","Desired Access: Read","2632"
"10:46:22.5271385 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5271573 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5271799 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000017","","2632"
"10:46:22.5271978 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5272153 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000047","Desired Access: Read","2632"
"10:46:22.5272366 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5272554 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5272776 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000017","","2632"
"10:46:22.5272951 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5273130 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000043","Desired Access: Read","2632"
"10:46:22.5273339 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5273527 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5273744 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000022","","2632"
"10:46:22.5273924 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5274103 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000060","Desired Access: Read","2632"
"10:46:22.5274333 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5274525 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000128","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5274841 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000026","","2632"
"10:46:22.5275067 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000030","","2632"
"10:46:22.5275370 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000030","","2632"
"10:46:22.5275562 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","","2632"
"10:46:22.5275903 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5276087 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000068","Desired Access: All Access","2632"
"10:46:22.5276296 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000567","Desired Access: All Access","2632"
"10:46:22.5276565 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000055","Information: Owner","2632"
"10:46:22.5276791 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000025","Information: Owner","2632"
"10:46:22.5277038 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5277235 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000064","Desired Access: Read","2632"
"10:46:22.5277439 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000073","Desired Access: Read","2632"
"10:46:22.5277691 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000047","Length: 16","2632"
"10:46:22.5277883 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000047","Type: REG_SZ, Length: 8, Data: 2.0","2632"
"10:46:22.5278092 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000047","Length: 44","2632"
"10:46:22.5278276 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000047","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","2632"
"10:46:22.5278506 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5278689 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000056","Desired Access: Maximum Allowed, Granted Access: Read","2632"
"10:46:22.5278907 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000047","Type: REG_DWORD, Length: 4, Data: 8","2632"
"10:46:22.5279359 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000047","Type: REG_DWORD, Length: 4, Data: 8","2632"
"10:46:22.5279581 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5279760 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000052","Desired Access: Read","2632"
"10:46:22.5279978 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000043","Type: REG_DWORD, Length: 4, Data: 1015","2632"
"10:46:22.5280170 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000043","Type: REG_DWORD, Length: 4, Data: 14","2632"
"10:46:22.5280362 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5280541 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000051","Desired Access: Maximum Allowed, Granted Access: Read","2632"
"10:46:22.5280759 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5280934 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000051","Desired Access: Read","2632"
"10:46:22.5281168 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5281356 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000051","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5281595 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000021","","2632"
"10:46:22.5281774 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5281949 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000047","Desired Access: Read","2632"
"10:46:22.5282167 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5282350 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5282576 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","2632"
"10:46:22.5282751 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5282931 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000042","Desired Access: Read","2632"
"10:46:22.5283140 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5283327 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5283549 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000022","","2632"
"10:46:22.5283728 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5283903 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000047","Desired Access: Read","2632"
"10:46:22.5284121 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5284309 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5284531 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000021","","2632"
"10:46:22.5284705 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5284880 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000043","Desired Access: Read","2632"
"10:46:22.5285094 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5285281 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5285508 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000017","","2632"
"10:46:22.5285687 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5285862 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000042","Desired Access: Read","2632"
"10:46:22.5286075 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5286267 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5286489 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000021","","2632"
"10:46:22.5286668 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5286843 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000043","Desired Access: Read","2632"
"10:46:22.5287052 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000047","Length: 144","2632"
"10:46:22.5287244 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5287462 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000021","","2632"
"10:46:22.5287645 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5287820 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000043","Desired Access: Read","2632"
"10:46:22.5288033 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5288221 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5288443 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000021","","2632"
"10:46:22.5288622 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5288797 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000047","Desired Access: Read","2632"
"10:46:22.5289011 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5289198 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5289420 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","","2632"
"10:46:22.5289599 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5289774 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000047","Desired Access: Read","2632"
"10:46:22.5289988 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5290175 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5290401 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000018","","2632"
"10:46:22.5290581 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5290756 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000042","Desired Access: Read","2632"
"10:46:22.5290969 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5291152 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5291379 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000021","","2632"
"10:46:22.5291558 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5291733 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000047","Desired Access: Read","2632"
"10:46:22.5291946 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5292134 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5292356 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000021","","2632"
"10:46:22.5292535 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5292714 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000047","Desired Access: Read","2632"
"10:46:22.5292927 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5293111 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5293333 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000021","","2632"
"10:46:22.5293512 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5293687 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000047","Desired Access: Read","2632"
"10:46:22.5293900 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5294088 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5294305 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000022","","2632"
"10:46:22.5294476 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","","2632"
"10:46:22.5294762 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000030","","2632"
"10:46:22.5294954 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","","2632"
"10:46:22.5295291 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5295475 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000068","Desired Access: All Access","2632"
"10:46:22.5295684 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000541","Desired Access: All Access","2632"
"10:46:22.5295948 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000043","Information: Owner","2632"
"10:46:22.5296161 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000022","Information: Owner","2632"
"10:46:22.5296400 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5296588 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000060","Desired Access: Read","2632"
"10:46:22.5296810 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000149","Desired Access: Read","2632"
"10:46:22.5297151 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000052","Length: 16","2632"
"10:46:22.5297348 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000047","Type: REG_SZ, Length: 8, Data: 2.0","2632"
"10:46:22.5297557 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000047","Length: 44","2632"
"10:46:22.5297744 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000043","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","2632"
"10:46:22.5297971 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5298150 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000059","Desired Access: Maximum Allowed, Granted Access: Read","2632"
"10:46:22.5298372 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000047","Type: REG_DWORD, Length: 4, Data: 8","2632"
"10:46:22.5298820 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000047","Type: REG_DWORD, Length: 4, Data: 8","2632"
"10:46:22.5299037 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5299221 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000051","Desired Access: Read","2632"
"10:46:22.5299430 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000051","Type: REG_DWORD, Length: 4, Data: 1015","2632"
"10:46:22.5299630 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000043","Type: REG_DWORD, Length: 4, Data: 14","2632"
"10:46:22.5299822 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000039","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5301008 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000073","Desired Access: Maximum Allowed, Granted Access: Read","2632"
"10:46:22.5301286 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5301473 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000047","Desired Access: Read","2632"
"10:46:22.5301704 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000047","Length: 144","2632"
"10:46:22.5301900 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5302152 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000025","","2632"
"10:46:22.5302340 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5302519 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000047","Desired Access: Read","2632"
"10:46:22.5302736 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5302924 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5303150 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000022","","2632"
"10:46:22.5303334 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5303509 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000047","Desired Access: Read","2632"
"10:46:22.5303722 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000038","Length: 144","2632"
"10:46:22.5303905 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5304132 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000017","","2632"
"10:46:22.5304307 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5304486 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000042","Desired Access: Read","2632"
"10:46:22.5304699 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5304887 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5305109 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000021","","2632"
"10:46:22.5305288 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5305467 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000043","Desired Access: Read","2632"
"10:46:22.5305676 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5305864 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5306086 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000021","","2632"
"10:46:22.5306265 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5306444 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000043","Desired Access: Read","2632"
"10:46:22.5306653 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000047","Length: 144","2632"
"10:46:22.5306841 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5307063 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000021","","2632"
"10:46:22.5307242 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5307417 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000047","Desired Access: Read","2632"
"10:46:22.5307630 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000047","Length: 144","2632"
"10:46:22.5307822 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5308044 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000017","","2632"
"10:46:22.5308219 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5308394 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000047","Desired Access: Read","2632"
"10:46:22.5308607 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5308791 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5309013 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000021","","2632"
"10:46:22.5309192 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5309367 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000042","Desired Access: Read","2632"
"10:46:22.5309580 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5309764 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5309985 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000022","","2632"
"10:46:22.5310169 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5310344 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000047","Desired Access: Read","2632"
"10:46:22.5310557 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5310745 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5310963 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000021","","2632"
"10:46:22.5311142 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5311321 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000043","Desired Access: Read","2632"
"10:46:22.5311534 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5311718 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5311940 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000021","","2632"
"10:46:22.5312115 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5312294 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000042","Desired Access: Read","2632"
"10:46:22.5312503 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000042","Length: 144","2632"
"10:46:22.5312691 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000046","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5312912 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000022","","2632"
"10:46:22.5313092 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5313267 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000046","Desired Access: Read","2632"
"10:46:22.5313480 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5313668 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5313889 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000018","","2632"
"10:46:22.5314064 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5314239 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000043","Desired Access: Read","2632"
"10:46:22.5314448 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000043","Length: 144","2632"
"10:46:22.5314632 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5314854 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000021","","2632"
"10:46:22.5315029 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","","2632"
"10:46:22.5315332 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000029","","2632"
"10:46:22.5315519 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000022","","2632"
"10:46:22.5315886 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5316065 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000073","Desired Access: All Access","2632"
"10:46:22.5316279 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000589","Desired Access: All Access","2632"
"10:46:22.5316565 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000059","Information: Owner","2632"
"10:46:22.5316799 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000026","Information: Owner","2632"
"10:46:22.5317870 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000184","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5318160 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000035","Desired Access: Read","2632"
"10:46:22.5318263 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000034","Desired Access: Read","2632"
"10:46:22.5318387 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000025","Length: 16","2632"
"10:46:22.5318480 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000022","Type: REG_SZ, Length: 8, Data: 2.0","2632"
"10:46:22.5318579 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000021","Length: 44","2632"
"10:46:22.5318668 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000021","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","2632"
"10:46:22.5318779 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5318864 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000030","Desired Access: Maximum Allowed, Granted Access: Read","2632"
"10:46:22.5318971 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000021","Type: REG_DWORD, Length: 4, Data: 8","2632"
"10:46:22.5319201 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000022","Type: REG_DWORD, Length: 4, Data: 8","2632"
"10:46:22.5319304 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5319389 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000026","Desired Access: Read","2632"
"10:46:22.5319487 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000022","Type: REG_DWORD, Length: 4, Data: 1015","2632"
"10:46:22.5319577 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000021","Type: REG_DWORD, Length: 4, Data: 14","2632"
"10:46:22.5319667 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5319748 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000059","Desired Access: Maximum Allowed, Granted Access: Read","2632"
"10:46:22.5319910 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5319991 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000051","Desired Access: Read","2632"
"10:46:22.5320140 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000021","Length: 144","2632"
"10:46:22.5320230 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5320349 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000022","","2632"
"10:46:22.5320447 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5320528 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000047","Desired Access: Read","2632"
"10:46:22.5320665 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000021","Length: 144","2632"
"10:46:22.5320750 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5320857 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000008","","2632"
"10:46:22.5320938 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5321023 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000043","Desired Access: Read","2632"
"10:46:22.5321151 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000022","Length: 144","2632"
"10:46:22.5321241 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5321343 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000009","","2632"
"10:46:22.5321424 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5321505 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000043","Desired Access: Read","2632"
"10:46:22.5321638 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000021","Length: 144","2632"
"10:46:22.5321723 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5321825 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000022","","2632"
"10:46:22.5321919 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5322000 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000039","Desired Access: Read","2632"
"10:46:22.5322128 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000022","Length: 144","2632"
"10:46:22.5322218 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5322350 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000009","","2632"
"10:46:22.5322436 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5322521 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000043","Desired Access: Read","2632"
"10:46:22.5322653 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000022","Length: 144","2632"
"10:46:22.5322743 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5322845 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000009","","2632"
"10:46:22.5322926 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5323012 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000042","Desired Access: Read","2632"
"10:46:22.5323144 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000017","Length: 144","2632"
"10:46:22.5323229 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5323332 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000008","","2632"
"10:46:22.5323413 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5323494 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000042","Desired Access: Read","2632"
"10:46:22.5323626 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000017","Length: 144","2632"
"10:46:22.5323711 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5323809 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000013","","2632"
"10:46:22.5323895 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5323976 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000051","Desired Access: Read","2632"
"10:46:22.5324117 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000021","Length: 144","2632"
"10:46:22.5324206 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5324304 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000013","","2632"
"10:46:22.5324394 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5324475 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000051","Desired Access: Read","2632"
"10:46:22.5324616 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000017","Length: 144","2632"
"10:46:22.5324701 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000017","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5324799 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000009","","2632"
"10:46:22.5324885 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5324966 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000038","Desired Access: Read","2632"
"10:46:22.5325094 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000017","Length: 144","2632"
"10:46:22.5325179 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5325282 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000008","","2632"
"10:46:22.5325363 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5325444 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000042","Desired Access: Read","2632"
"10:46:22.5325580 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000017","Length: 144","2632"
"10:46:22.5325666 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5325768 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000008","","2632"
"10:46:22.5325849 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5325930 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000047","Desired Access: Read","2632"
"10:46:22.5326062 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000022","Length: 144","2632"
"10:46:22.5326148 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5326250 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000013","","2632"
"10:46:22.5326331 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5326412 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000047","Desired Access: Read","2632"
"10:46:22.5326544 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000022","Length: 144","2632"
"10:46:22.5326630 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5326732 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000013","","2632"
"10:46:22.5326818 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","","2632"
"10:46:22.5326958 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","","2632"
"10:46:22.5327048 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000008","","2632"
"10:46:22.5327223 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5327308 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000030","Desired Access: All Access","2632"
"10:46:22.5327402 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000282","Desired Access: All Access","2632"
"10:46:22.5327534 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000030","Information: Owner","2632"
"10:46:22.5327654 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000008","Information: Owner","2632"
"10:46:22.5327769 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5327850 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000030","Desired Access: Read","2632"
"10:46:22.5327944 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000030","Desired Access: Read","2632"
"10:46:22.5328055 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000025","Length: 16","2632"
"10:46:22.5328153 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000026","Type: REG_SZ, Length: 8, Data: 2.0","2632"
"10:46:22.5328251 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000021","Length: 44","2632"
"10:46:22.5328336 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000022","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","2632"
"10:46:22.5328443 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5328528 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000026","Desired Access: Maximum Allowed, Granted Access: Read","2632"
"10:46:22.5328631 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000021","Type: REG_DWORD, Length: 4, Data: 8","2632"
"10:46:22.5328844 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000022","Type: REG_DWORD, Length: 4, Data: 8","2632"
"10:46:22.5328947 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5329028 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000025","Desired Access: Read","2632"
"10:46:22.5329130 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000021","Type: REG_DWORD, Length: 4, Data: 1015","2632"
"10:46:22.5329220 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000017","Type: REG_DWORD, Length: 4, Data: 14","2632"
"10:46:22.5329309 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5329390 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000026","Desired Access: Maximum Allowed, Granted Access: Read","2632"
"10:46:22.5329493 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5329574 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000021","Desired Access: Read","2632"
"10:46:22.5329676 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000022","Length: 144","2632"
"10:46:22.5329766 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5329877 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000008","","2632"
"10:46:22.5329962 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5330039 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000025","Desired Access: Read","2632"
"10:46:22.5330141 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000022","Length: 144","2632"
"10:46:22.5330227 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5330329 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000009","","2632"
"10:46:22.5330410 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5330491 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000021","Desired Access: Read","2632"
"10:46:22.5330589 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000022","Length: 144","2632"
"10:46:22.5330675 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5330777 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000009","","2632"
"10:46:22.5330858 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5330939 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000021","Desired Access: Read","2632"
"10:46:22.5331037 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000022","Length: 144","2632"
"10:46:22.5331123 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5331225 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000009","","2632"
"10:46:22.5331306 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5331387 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000021","Desired Access: Read","2632"
"10:46:22.5331485 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000017","Length: 144","2632"
"10:46:22.5331571 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5331673 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000009","","2632"
"10:46:22.5331754 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5331831 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000021","Desired Access: Read","2632"
"10:46:22.5331929 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Length: 144","2632"
"10:46:22.5332014 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5332117 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000008","","2632"
"10:46:22.5332198 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5332279 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000030","Desired Access: Read","2632"
"10:46:22.5332394 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Length: 144","2632"
"10:46:22.5332479 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5332582 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000008","","2632"
"10:46:22.5332663 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5332744 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000021","Desired Access: Read","2632"
"10:46:22.5332842 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000021","Length: 144","2632"
"10:46:22.5332927 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5333030 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000008","","2632"
"10:46:22.5333111 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5333192 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","Desired Access: Read","2632"
"10:46:22.5333290 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000017","Length: 144","2632"
"10:46:22.5333371 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5333474 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","","2632"
"10:46:22.5333572 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5333653 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000017","Desired Access: Read","2632"
"10:46:22.5333751 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000017","Length: 144","2632"
"10:46:22.5333836 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5333964 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000009","","2632"
"10:46:22.5334050 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5334131 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000021","Desired Access: Read","2632"
"10:46:22.5334229 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000021","Length: 144","2632"
"10:46:22.5334314 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5334416 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000009","","2632"
"10:46:22.5334498 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5334579 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000021","Desired Access: Read","2632"
"10:46:22.5334677 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000021","Length: 144","2632"
"10:46:22.5334762 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5334864 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000009","","2632"
"10:46:22.5334946 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5335027 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000017","Desired Access: Read","2632"
"10:46:22.5335120 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000022","Length: 144","2632"
"10:46:22.5335206 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5335308 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000009","","2632"
"10:46:22.5335389 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5335470 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000017","Desired Access: Read","2632"
"10:46:22.5335564 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000022","Length: 144","2632"
"10:46:22.5335650 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5335748 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000012","","2632"
"10:46:22.5335829 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","","2632"
"10:46:22.5335987 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","","2632"
"10:46:22.5336076 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","","2632"
"10:46:22.5336234 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5336319 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000030","Desired Access: All Access","2632"
"10:46:22.5336413 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000261","Desired Access: All Access","2632"
"10:46:22.5336537 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000026","Information: Owner","2632"
"10:46:22.5336644 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000008","Information: Owner","2632"
"10:46:22.5336755 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5336840 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000030","Desired Access: Read","2632"
"10:46:22.5336930 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000029","Desired Access: Read","2632"
"10:46:22.5337045 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000021","Length: 16","2632"
"10:46:22.5337143 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000021","Type: REG_SZ, Length: 8, Data: 2.0","2632"
"10:46:22.5337237 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000021","Length: 44","2632"
"10:46:22.5337322 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000021","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","2632"
"10:46:22.5337429 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5337510 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000025","Desired Access: Maximum Allowed, Granted Access: Read","2632"
"10:46:22.5337612 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000022","Type: REG_DWORD, Length: 4, Data: 8","2632"
"10:46:22.5337817 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000021","Type: REG_DWORD, Length: 4, Data: 8","2632"
"10:46:22.5337919 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5338000 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000026","Desired Access: Read","2632"
"10:46:22.5338099 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000021","Type: REG_DWORD, Length: 4, Data: 1015","2632"
"10:46:22.5338188 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000017","Type: REG_DWORD, Length: 4, Data: 14","2632"
"10:46:22.5338278 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5338359 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000025","Desired Access: Maximum Allowed, Granted Access: Read","2632"
"10:46:22.5338457 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5338538 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000021","Desired Access: Read","2632"
"10:46:22.5338640 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000022","Length: 144","2632"
"10:46:22.5338726 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5338837 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000008","","2632"
"10:46:22.5338918 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5338999 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000021","Desired Access: Read","2632"
"10:46:22.5339097 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000017","Length: 144","2632"
"10:46:22.5339182 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5339285 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000008","","2632"
"10:46:22.5339366 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5339443 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000021","Desired Access: Read","2632"
"10:46:22.5339541 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000021","Length: 144","2632"
"10:46:22.5339626 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5339728 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000009","","2632"
"10:46:22.5339810 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5339891 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000021","Desired Access: Read","2632"
"10:46:22.5339989 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000017","Length: 144","2632"
"10:46:22.5340074 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000017","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5340176 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000009","","2632"
"10:46:22.5340258 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5340339 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000017","Desired Access: Read","2632"
"10:46:22.5340432 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000022","Length: 144","2632"
"10:46:22.5340518 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5340624 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000009","","2632"
"10:46:22.5340706 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5340782 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000022","Desired Access: Read","2632"
"10:46:22.5340880 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000022","Length: 144","2632"
"10:46:22.5340966 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5341068 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000009","","2632"
"10:46:22.5341149 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5341226 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000021","Desired Access: Read","2632"
"10:46:22.5341324 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000022","Length: 144","2632"
"10:46:22.5341410 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5341512 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000008","","2632"
"10:46:22.5341593 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5341674 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000017","Desired Access: Read","2632"
"10:46:22.5341768 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000021","Length: 144","2632"
"10:46:22.5341853 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5341956 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000008","","2632"
"10:46:22.5342037 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5342118 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000021","Desired Access: Read","2632"
"10:46:22.5342216 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000017","Length: 144","2632"
"10:46:22.5342301 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5342404 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000008","","2632"
"10:46:22.5342485 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5342566 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000017","Desired Access: Read","2632"
"10:46:22.5342660 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000021","Length: 144","2632"
"10:46:22.5342745 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5342847 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000009","","2632"
"10:46:22.5342928 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5343010 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000017","Desired Access: Read","2632"
"10:46:22.5343103 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000022","Length: 144","2632"
"10:46:22.5343189 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5343291 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000009","","2632"
"10:46:22.5343372 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5343453 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000022","Desired Access: Read","2632"
"10:46:22.5343551 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000017","Length: 144","2632"
"10:46:22.5343637 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5343739 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000009","","2632"
"10:46:22.5343820 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5343901 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000017","Desired Access: Read","2632"
"10:46:22.5343995 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Length: 144","2632"
"10:46:22.5344080 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5344183 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000008","","2632"
"10:46:22.5344264 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5344345 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000021","Desired Access: Read","2632"
"10:46:22.5344443 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000017","Length: 144","2632"
"10:46:22.5344528 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5344631 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000013","","2632"
"10:46:22.5344716 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","","2632"
"10:46:22.5344870 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","","2632"
"10:46:22.5344964 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000012","","2632"
"10:46:22.5345143 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5345228 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000030","Desired Access: All Access","2632"
"10:46:22.5345322 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000252","Desired Access: All Access","2632"
"10:46:22.5345442 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000021","Information: Owner","2632"
"10:46:22.5345540 AM","firefox.exe","1008","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000012","Information: Owner","2632"
"10:46:22.5345689 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5345791 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000026","Desired Access: Read","2632"
"10:46:22.5345881 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000030","Desired Access: Read","2632"
"10:46:22.5345992 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000021","Length: 16","2632"
"10:46:22.5346082 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000021","Type: REG_SZ, Length: 8, Data: 2.0","2632"
"10:46:22.5346180 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000017","Length: 44","2632"
"10:46:22.5346261 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000021","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","2632"
"10:46:22.5346367 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5346448 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000026","Desired Access: Maximum Allowed, Granted Access: Read","2632"
"10:46:22.5346551 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000021","Type: REG_DWORD, Length: 4, Data: 8","2632"
"10:46:22.5346751 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000022","Type: REG_DWORD, Length: 4, Data: 8","2632"
"10:46:22.5346854 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5346935 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000025","Desired Access: Read","2632"
"10:46:22.5347037 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000022","Type: REG_DWORD, Length: 4, Data: 1015","2632"
"10:46:22.5347127 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000017","Type: REG_DWORD, Length: 4, Data: 14","2632"
"10:46:22.5347216 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5347298 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Desired Access: Maximum Allowed, Granted Access: Read","2632"
"10:46:22.5347400 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5347481 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000021","Desired Access: Read","2632"
"10:46:22.5347583 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000022","Length: 144","2632"
"10:46:22.5347673 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5347780 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000012","","2632"
"10:46:22.5347865 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5347946 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","Desired Access: Read","2632"
"10:46:22.5348040 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000021","Length: 144","2632"
"10:46:22.5348125 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5348228 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000012","","2632"
"10:46:22.5348313 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5348394 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000021","Desired Access: Read","2632"
"10:46:22.5348492 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000017","Length: 144","2632"
"10:46:22.5348573 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5348676 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000012","","2632"
"10:46:22.5348761 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5348842 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","Desired Access: Read","2632"
"10:46:22.5348936 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000021","Length: 144","2632"
"10:46:22.5349021 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5349124 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000008","","2632"
"10:46:22.5349205 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5349286 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000017","Desired Access: Read","2632"
"10:46:22.5349384 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000017","Length: 144","2632"
"10:46:22.5349469 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000017","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5349567 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000013","","2632"
"10:46:22.5349653 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5349734 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000017","Desired Access: Read","2632"
"10:46:22.5349828 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Length: 144","2632"
"10:46:22.5349913 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5350015 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000009","","2632"
"10:46:22.5350096 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5350178 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000021","Desired Access: Read","2632"
"10:46:22.5350271 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000022","Length: 144","2632"
"10:46:22.5350357 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5350459 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000009","","2632"
"10:46:22.5350544 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5350621 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000022","Desired Access: Read","2632"
"10:46:22.5350719 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000022","Length: 144","2632"
"10:46:22.5350805 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5350903 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000013","","2632"
"10:46:22.5350988 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5351069 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","Desired Access: Read","2632"
"10:46:22.5351163 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000021","Length: 144","2632"
"10:46:22.5351248 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5351351 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000008","","2632"
"10:46:22.5351436 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5351517 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000017","Desired Access: Read","2632"
"10:46:22.5351611 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000021","Length: 144","2632"
"10:46:22.5351696 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5351799 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000008","","2632"
"10:46:22.5351880 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5351965 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000017","Desired Access: Read","2632"
"10:46:22.5352059 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000021","Length: 144","2632"
"10:46:22.5352144 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5352247 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000008","","2632"
"10:46:22.5352328 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5352409 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000021","Desired Access: Read","2632"
"10:46:22.5352507 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000017","Length: 144","2632"
"10:46:22.5352592 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5352695 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000008","","2632"
"10:46:22.5352776 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5352857 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000021","Desired Access: Read","2632"
"10:46:22.5352955 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000017","Length: 144","2632"
"10:46:22.5353036 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5353139 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000008","","2632"
"10:46:22.5353224 AM","firefox.exe","1008","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","2632"
"10:46:22.5353305 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000017","Desired Access: Read","2632"
"10:46:22.5353399 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000021","Length: 144","2632"
"10:46:22.5353484 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","2632"
"10:46:22.5353587 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000008","","2632"
"10:46:22.5353668 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","","2632"
"10:46:22.5353800 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","","2632"
"10:46:22.5353885 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000009","","2632"
"10:46:22.5356629 AM","firefox.exe","1008","Load Image","C:\Windows\System32\msctf.dll","0.0000000","Image Base: 0x7ffb48ca0000, Image Size: 0x173000","1120"
"10:46:22.5382741 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\spool\drivers\color\D65.camp","0.0000068","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 8:09:14 PM, FileAttributes: A","5728"
"10:46:22.5383052 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\spool\drivers\color\D65.camp","0.0000120","","5728"
"10:46:22.5383790 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000026","","5728"
"10:46:22.5384115 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000021","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.5384341 AM","firefox.exe","7384","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000119","Desired Access: Read","5728"
"10:46:22.5384661 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.5384831 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000077","Desired Access: Read","5728"
"10:46:22.5385070 AM","firefox.exe","7384","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000013","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:22.5385224 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\camp","0.0000034","Length: 12","5728"
"10:46:22.5385373 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\camp","0.0000026","Type: REG_SZ, Length: 18, Data: D65.camp","5728"
"10:46:22.5388211 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\spool\drivers\color\D65.camp","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.5388573 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\spool\drivers\color\D65.camp","0.0000069","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 8:09:14 PM, FileAttributes: A","5728"
"10:46:22.5388782 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\spool\drivers\color\D65.camp","0.0000060","","5728"
"10:46:22.5389512 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000030","","5728"
"10:46:22.5390024 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000183","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.5390587 AM","firefox.exe","7384","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000120","Desired Access: Read","5728"
"10:46:22.5390924 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.5391103 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000086","Desired Access: Read","5728"
"10:46:22.5391355 AM","firefox.exe","7384","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000009","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:22.5391500 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\rip","0.0000043","Length: 12","5728"
"10:46:22.5391658 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\rip","0.0000030","Type: REG_SZ, Length: 22, Data: Photo.gmmp","5728"
"10:46:22.5394094 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\spool\drivers\color\Photo.gmmp","0.0000444","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.5394687 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\spool\drivers\color\Photo.gmmp","0.0000035","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 8:09:14 PM, FileAttributes: A","5728"
"10:46:22.5394850 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\spool\drivers\color\Photo.gmmp","0.0000055","","5728"
"10:46:22.5395263 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000018","","5728"
"10:46:22.5395460 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.5395613 AM","firefox.exe","7384","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000073","Desired Access: Read","5728"
"10:46:22.5395831 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.5395963 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000051","Desired Access: Read","5728"
"10:46:22.5396147 AM","firefox.exe","7384","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000012","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:22.5396279 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\rip","0.0000047","Length: 12","5728"
"10:46:22.5396445 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\rip","0.0000026","Type: REG_SZ, Length: 22, Data: Photo.gmmp","5728"
"10:46:22.5398357 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\spool\drivers\color\Photo.gmmp","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.5398617 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\spool\drivers\color\Photo.gmmp","0.0000030","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 8:09:14 PM, FileAttributes: A","5728"
"10:46:22.5398762 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\spool\drivers\color\Photo.gmmp","0.0000047","","5728"
"10:46:22.5399150 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000013","","5728"
"10:46:22.5400499 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0073851","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.5474990 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000069","AllocationSize: 4,096, EndOfFile: 3,144, NumberOfLinks: 2, DeletePending: False, Directory: False","5728"
"10:46:22.5475362 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:22.5475622 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000026","AllocationSize: 4,096, EndOfFile: 3,144, NumberOfLinks: 2, DeletePending: False, Directory: False","5728"
"10:46:22.5475985 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000021","SyncType: SyncTypeOther","5728"
"10:46:22.5476578 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0186769","Offset: 0, Length: 3,144, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.5664170 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\mscms.dll","0.0004988","Offset: 226,304, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.5670250 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000167","","5728"
"10:46:22.5673408 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000230","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.5674449 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000299","Offset: 0, Length: 3,144, Priority: Normal","5728"
"10:46:22.5675149 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000093","","5728"
"10:46:22.5683405 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 1088","5728"
"10:46:22.5685589 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 1168","5728"
"10:46:22.5687885 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000029","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.5688141 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000076","Desired Access: Query Value","5728"
"10:46:22.5688384 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000060","Desired Access: Query Value","5728"
"10:46:22.5688567 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000039","Desired Access: Query Value","5728"
"10:46:22.5688755 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\HardwareInformation.qwMemorySize","0.0000073","Length: 20","5728"
"10:46:22.5688990 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000017","","5728"
"10:46:22.5689126 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.5689263 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000034","Desired Access: Query Value","5728"
"10:46:22.5689399 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000034","Desired Access: Query Value","5728"
"10:46:22.5689527 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000026","Desired Access: Query Value","5728"
"10:46:22.5689668 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\HardwareInformation.MemorySize","0.0000056","Type: REG_BINARY, Length: 4, Data: 00 00 00 40","5728"
"10:46:22.5689852 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000008","","5728"
"10:46:22.5689980 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.5690099 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000034","Desired Access: Query Value","5728"
"10:46:22.5690227 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000038","Desired Access: Query Value","5728"
"10:46:22.5690355 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000021","Desired Access: Query Value","5728"
"10:46:22.5690500 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\InstalledDisplayDrivers","0.0000039","Length: 144","5728"
"10:46:22.5690662 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\InstalledDisplayDrivers","0.0000026","Type: REG_MULTI_SZ, Length: 186, Data: igdumdim64, igd10iumd64, igd10iumd64, igd12umd64, igdumdim32, igd10iumd32, igd10iumd32, igd12umd32","5728"
"10:46:22.5690824 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000013","","5728"
"10:46:22.5703125 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.5703364 AM","firefox.exe","7384","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows\DWM","0.0000064","Desired Access: Query Value","5728"
"10:46:22.5703577 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\DWM\AccentColor","0.0000039","Type: REG_DWORD, Length: 4, Data: 4292311040","5728"
"10:46:22.5703769 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\DWM","0.0000013","","5728"
"10:46:22.5703889 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.5704008 AM","firefox.exe","7384","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows\DWM","0.0000035","Desired Access: Query Value","5728"
"10:46:22.5704141 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\DWM\ColorPrevalence","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:22.5704281 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\DWM","0.0000013","","5728"
"10:46:22.5704580 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\Tablet PC\","0.0000120","Desired Access: Read","5728"
"10:46:22.5704815 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\Tablet PC\IsTabletPC","0.0000021","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:22.5704934 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\Tablet PC","0.0000013","","5728"
"10:46:22.5705101 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000038","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.5705237 AM","firefox.exe","7384","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Themes\Personalize","0.0000051","Desired Access: Query Value","5728"
"10:46:22.5705387 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Themes\Personalize\AppsUseLightTheme","0.0000029","Length: 16","5728"
"10:46:22.5705532 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Themes\Personalize","0.0000017","","5728"
"10:46:22.5710677 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager","0.0000068","Desired Access: Query Value, Enumerate Sub Keys","5728"
"10:46:22.5710950 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000047","Desired Access: Query Value, Enumerate Sub Keys","5728"
"10:46:22.5711181 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\ResourcePolicies","0.0000034","Length: 24","5728"
"10:46:22.5711385 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000013","","5728"
"10:46:22.5758178 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.5758639 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\CTF\","0.0000094","Desired Access: Read","5728"
"10:46:22.5759066 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\CTF\EnableAnchorContext","0.0000029","Length: 16","5728"
"10:46:22.5759403 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\CTF","0.0000017","","5728"
"10:46:22.5782251 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.5782780 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000059","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","5728"
"10:46:22.5783108 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000073","","5728"
"10:46:22.5785242 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000243","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.5786163 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\TextInputFramework.dll","0.0000188","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:22.5786854 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\TextInputFramework.dll","0.0000026","SyncType: SyncTypeOther","5728"
"10:46:22.5787934 AM","firefox.exe","7384","Load Image","C:\Windows\System32\TextInputFramework.dll","0.0000000","Image Base: 0x7ffb35120000, Image Size: 0x96000","5728"
"10:46:22.5788279 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000064","Name: \Windows\System32\TextInputFramework.dll","5728"
"10:46:22.5790148 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000120","","5728"
"10:46:22.5793899 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.5794415 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000051","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","5728"
"10:46:22.5794722 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000068","","5728"
"10:46:22.5796570 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000179","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.5797103 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CoreUIComponents.dll","0.0000235","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:22.5798268 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CoreUIComponents.dll","0.0000042","SyncType: SyncTypeOther","5728"
"10:46:22.5799479 AM","firefox.exe","7384","Load Image","C:\Windows\System32\CoreUIComponents.dll","0.0000000","Image Base: 0x7ffb41010000, Image Size: 0x31e000","5728"
"10:46:22.5804979 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000107","Name: \Windows\System32\CoreUIComponents.dll","5728"
"10:46:22.5807684 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000201","","5728"
"10:46:22.5812425 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000251","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.5813056 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000060","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","5728"
"10:46:22.5813461 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000077","","5728"
"10:46:22.5815846 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000308","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.5816546 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CoreMessaging.dll","0.0000111","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:22.5817515 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CoreMessaging.dll","0.0000034","SyncType: SyncTypeOther","5728"
"10:46:22.5818833 AM","firefox.exe","7384","Load Image","C:\Windows\System32\CoreMessaging.dll","0.0000000","Image Base: 0x7ffb43bf0000, Image Size: 0xda000","5728"
"10:46:22.5819298 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000068","Name: \Windows\System32\CoreMessaging.dll","5728"
"10:46:22.5821090 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000098","","5728"
"10:46:22.5825344 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.5825899 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000051","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","5728"
"10:46:22.5826244 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000103","","5728"
"10:46:22.5829875 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.5830626 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000077","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","5728"
"10:46:22.5845653 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0001455","","5728"
"10:46:22.5853854 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000286","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.5854776 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\WinTypes.dll","0.0000089","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:22.5855505 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\WinTypes.dll","0.0000026","SyncType: SyncTypeOther","5728"
"10:46:22.5859162 AM","firefox.exe","7384","Load Image","C:\Windows\System32\WinTypes.dll","0.0000000","Image Base: 0x7ffb41af0000, Image Size: 0x14d000","5728"
"10:46:22.5861158 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\WinTypes.dll","0.0000687","Name: \Windows\System32\WinTypes.dll","5728"
"10:46:22.5871309 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000691","","5728"
"10:46:22.5885201 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.5886003 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000056","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","5728"
"10:46:22.5886387 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000133","","5728"
"10:46:22.5890253 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.5890884 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000047","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","5728"
"10:46:22.5891209 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000068","","5728"
"10:46:22.5900531 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.5901099 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000051","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","5728"
"10:46:22.5901461 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000073","","5728"
"10:46:22.5905084 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000089","Desired Access: Read","5728"
"10:46:22.5905523 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000026","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.5905856 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\CTF\DirectSwitchHotkeys","0.0000077","Desired Access: Read","5728"
"10:46:22.5906257 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000039","","5728"
"10:46:22.5906769 AM","firefox.exe","7384","RegEnumKey","HKCU\Software\Microsoft\CTF\DirectSwitchHotkeys","0.0000039","Index: 0, Length: 288","5728"
"10:46:22.5907068 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\CTF\DirectSwitchHotkeys","0.0000064","","5728"
"10:46:22.5923827 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ucrtbase.dll","0.0111314","Offset: 586,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.5961664 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-current.bin","0.0696377","Offset: 1,048,576, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6840"
"10:46:22.6035682 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ucrtbase.dll","0.0020732","Offset: 586,752, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.6112273 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 6572","5728"
"10:46:22.6118208 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.6118575 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000043","CreationTime: 6/19/2019 4:53:26 PM, LastAccessTime: 3/26/2020 10:46:20 AM, LastWriteTime: 3/26/2020 10:46:20 AM, ChangeTime: 3/26/2020 10:46:20 AM, AllocationSize: 4096, EndOfFile: 4096, FileAttributes: D","6572"
"10:46:22.6118767 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000064","","6572"
"10:46:22.6119326 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0004433","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.6121737 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.6122048 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000043","CreationTime: 6/19/2019 4:53:26 PM, LastAccessTime: 3/26/2020 10:46:20 AM, LastWriteTime: 3/26/2020 10:46:20 AM, ChangeTime: 3/26/2020 10:46:20 AM, FileAttributes: D","6572"
"10:46:22.6122223 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000107","","6572"
"10:46:22.6123994 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000051","CreationTime: 6/19/2019 4:53:35 PM, LastAccessTime: 6/19/2019 4:53:35 PM, LastWriteTime: 3/26/2020 10:26:46 AM, ChangeTime: 3/26/2020 10:26:46 AM, AllocationSize: 98304, EndOfFile: 98304, FileAttributes: A","5728"
"10:46:22.6124216 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000077","","5728"
"10:46:22.6125632 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0009063","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.6126033 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000338","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5728"
"10:46:22.6127309 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0210313","Offset: 0, Length: 100, Priority: Normal","5728"
"10:46:22.6127843 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0208281","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:22.6135019 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000068","CreationTime: 6/19/2019 4:53:35 PM, LastAccessTime: 3/26/2020 10:35:40 AM, LastWriteTime: 3/26/2020 10:35:40 AM, ChangeTime: 3/26/2020 10:35:40 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: D","6572"
"10:46:22.6135382 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000119","","6572"
"10:46:22.6139503 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.6140071 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000717","CreationTime: 6/19/2019 4:53:35 PM, LastAccessTime: 3/26/2020 10:35:40 AM, LastWriteTime: 3/26/2020 10:35:40 AM, ChangeTime: 3/26/2020 10:35:40 AM, FileAttributes: D","6572"
"10:46:22.6140963 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000085","","6572"
"10:46:22.6142981 AM","firefox.exe","7384","ReadFile","C:\$Directory","0.0238908","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:22.6343796 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000081","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:22.6344052 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000025","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:22.6344248 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000026","Offset: 1,073,741,824, Length: 1","5728"
"10:46:22.6347917 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite-journal","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.6350145 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.6350486 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000051","AllocationSize: 98,304, EndOfFile: 98,304, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:22.6350853 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.1086785","Offset: 0, Length: 32,768","5728"
"10:46:22.6385353 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries","0.0014533","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.6400231 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries","0.0000064","CreationTime: 6/19/2019 4:53:35 PM, LastAccessTime: 3/26/2020 10:35:30 AM, LastWriteTime: 3/26/2020 10:35:30 AM, ChangeTime: 3/26/2020 10:35:30 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: D","6572"
"10:46:22.6400436 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries","0.0000098","","6572"
"10:46:22.6403307 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.6403572 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries","0.0000034","CreationTime: 6/19/2019 4:53:35 PM, LastAccessTime: 3/26/2020 10:35:30 AM, LastWriteTime: 3/26/2020 10:35:30 AM, ChangeTime: 3/26/2020 10:35:30 AM, FileAttributes: D","6572"
"10:46:22.6403687 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries","0.0000068","","6572"
"10:46:22.6406670 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0460591","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.6867615 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000064","CreationTime: 8/19/2019 3:31:30 PM, LastAccessTime: 3/26/2020 10:35:31 AM, LastWriteTime: 3/26/2020 10:35:31 AM, ChangeTime: 3/26/2020 10:35:31 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: D","6572"
"10:46:22.6867837 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000098","","6572"
"10:46:22.6870726 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.6871011 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000035","CreationTime: 8/19/2019 3:31:30 PM, LastAccessTime: 3/26/2020 10:35:31 AM, LastWriteTime: 3/26/2020 10:35:31 AM, ChangeTime: 3/26/2020 10:35:31 AM, FileAttributes: D","6572"
"10:46:22.6871122 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000043","","6572"
"10:46:22.6872415 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.6872714 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\*","0.0000136","Filter: *, 1: .","6572"
"10:46:22.6873025 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000226","0: .., 1: 1342","6572"
"10:46:22.6873614 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000056","","6572"
"10:46:22.6875214 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000167","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.6875534 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\*","0.0000107","Filter: *, 1: .","6572"
"10:46:22.6875794 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000064","0: .., 1: 1342","6572"
"10:46:22.6876025 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000055","","6572"
"10:46:22.6878179 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\trash2567","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:22.6882514 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000739","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.6883692 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000145","CreationTime: 8/19/2019 3:31:30 PM, LastAccessTime: 3/26/2020 10:35:31 AM, LastWriteTime: 3/26/2020 10:35:31 AM, ChangeTime: 3/26/2020 10:35:31 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: D","6572"
"10:46:22.6884178 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000167","","6572"
"10:46:22.6891871 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000499","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.6892729 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000115","CreationTime: 8/19/2019 3:31:30 PM, LastAccessTime: 3/26/2020 10:35:31 AM, LastWriteTime: 3/26/2020 10:35:31 AM, ChangeTime: 3/26/2020 10:35:31 AM, FileAttributes: D","6572"
"10:46:22.6893151 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000137","","6572"
"10:46:22.6897589 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000853","Desired Access: Read Attributes, Delete, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.6898950 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000136","Attributes: D, ReparseTag: 0x0","6572"
"10:46:22.6899624 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000089","CreationTime: 8/19/2019 3:31:30 PM, LastAccessTime: 3/26/2020 10:35:31 AM, LastWriteTime: 3/26/2020 10:35:31 AM, ChangeTime: 3/26/2020 10:35:31 AM, FileAttributes: D","6572"
"10:46:22.6903327 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000529","Desired Access: Append Data/Add Subdirectory/Create Pipe Instance, Synchronize, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.6918192 AM","firefox.exe","7384","SetRenameInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0459926","ReplaceIfExists: True, FileName: C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\trash2567","6572"
"10:46:22.7379974 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0001267","","6572"
"10:46:22.7383900 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\trash2567","0.0002457","","6572"
"10:46:22.7397305 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0001148","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7399520 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\*","0.0000657","Filter: *, 1: .","6572"
"10:46:22.7401218 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000887","0: .., 1: entries, 2: index, 3: index.log, 4: trash2567","6572"
"10:46:22.7416215 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries","0.0000935","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7418848 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries","0.0000226","CreationTime: 6/19/2019 4:53:35 PM, LastAccessTime: 3/26/2020 10:35:30 AM, LastWriteTime: 3/26/2020 10:35:30 AM, ChangeTime: 3/26/2020 10:35:30 AM, FileAttributes: D","6572"
"10:46:22.7419740 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries","0.0000268","","6572"
"10:46:22.7433461 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index","0.0003695","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7437967 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index","0.0000209","CreationTime: 3/25/2020 10:46:02 AM, LastAccessTime: 3/25/2020 10:46:02 AM, LastWriteTime: 3/26/2020 10:35:40 AM, ChangeTime: 3/26/2020 10:35:40 AM, FileAttributes: A","6572"
"10:46:22.7438820 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index","0.0000346","","6572"
"10:46:22.7440484 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000201","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:22.7441743 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000213","AllocationSize: 98,304, EndOfFile: 98,304, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:22.7443787 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000132","SyncType: SyncTypeOther","5728"
"10:46:22.7446714 AM","firefox.exe","7384","QueryNameInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000217","Name: \Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","5728"
"10:46:22.7453920 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.log","0.0144034","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7464497 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0001050","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.7468751 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000252","CreationTime: 6/19/2019 4:53:35 PM, LastAccessTime: 6/19/2019 4:53:35 PM, LastWriteTime: 3/26/2020 10:26:46 AM, ChangeTime: 3/26/2020 10:26:46 AM, FileAttributes: A","5728"
"10:46:22.7470044 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000409","","5728"
"10:46:22.7473666 AM","firefox.exe","7384","CreateFile","C:\","0.0000819","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.7476158 AM","firefox.exe","7384","QueryDirectory","C:\Users","0.0000828","Filter: Users, 1: Users","5728"
"10:46:22.7478086 AM","firefox.exe","7384","CloseFile","C:\","0.0000282","","5728"
"10:46:22.7485894 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000726","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.7488117 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles","0.0000657","Filter: diggles, 1: diggles","5728"
"10:46:22.7489969 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000316","","5728"
"10:46:22.7497483 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000746","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.7499778 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData","0.0000653","Filter: AppData, 1: AppData","5728"
"10:46:22.7501481 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000298","","5728"
"10:46:22.7512190 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0001028","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.7515497 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming","0.0000768","Filter: Roaming, 1: Roaming","5728"
"10:46:22.7517668 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000414","","5728"
"10:46:22.7528689 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0003166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.7536228 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla","0.0001485","Filter: Mozilla, 1: Mozilla","5728"
"10:46:22.7539531 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000973","","5728"
"10:46:22.7556550 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0001997","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.7562200 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0001395","Filter: Firefox, 1: Firefox","5728"
"10:46:22.7565344 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000508","","5728"
"10:46:22.7574535 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000908","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.7577316 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000615","Filter: Profiles, 1: Profiles","5728"
"10:46:22.7579245 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000303","","5728"
"10:46:22.7594545 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0001058","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.7596593 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000491","CreationTime: 6/19/2019 4:53:35 PM, LastAccessTime: 6/19/2019 4:53:35 PM, LastWriteTime: 3/26/2020 10:26:46 AM, ChangeTime: 3/26/2020 10:26:46 AM, FileAttributes: A","5728"
"10:46:22.7598492 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000405","","5728"
"10:46:22.7598859 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.log","0.0000205","CreationTime: 3/26/2020 10:35:40 AM, LastAccessTime: 3/26/2020 10:35:40 AM, LastWriteTime: 3/26/2020 10:35:40 AM, ChangeTime: 3/26/2020 10:35:40 AM, FileAttributes: A","6572"
"10:46:22.7599648 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.log","0.0000299","","6572"
"10:46:22.7601961 AM","firefox.exe","7384","CreateFile","C:\","0.0000682","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.7603812 AM","firefox.exe","7384","QueryDirectory","C:\Users","0.0000965","Filter: Users, 1: Users","5728"
"10:46:22.7605929 AM","firefox.exe","7384","CloseFile","C:\","0.0000281","","5728"
"10:46:22.7613297 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000734","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.7613694 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\trash2567","0.0001289","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7615157 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles","0.0000589","Filter: diggles, 1: diggles","5728"
"10:46:22.7615631 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\trash2567","0.0000196","CreationTime: 8/19/2019 3:31:30 PM, LastAccessTime: 3/26/2020 10:35:31 AM, LastWriteTime: 3/26/2020 10:35:31 AM, ChangeTime: 3/26/2020 10:46:22 AM, FileAttributes: D","6572"
"10:46:22.7616425 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\trash2567","0.0000273","","6572"
"10:46:22.7616770 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000222","","5728"
"10:46:22.7618511 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000248","","6572"
"10:46:22.7619510 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000243","","6572"
"10:46:22.7624664 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000729","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.7626503 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData","0.0000661","Filter: AppData, 1: AppData","5728"
"10:46:22.7628363 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000269","","5728"
"10:46:22.7628700 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000597","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","6572"
"10:46:22.7636248 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000742","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.7638048 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming","0.0000751","Filter: Roaming, 1: Roaming","5728"
"10:46:22.7639789 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000273","","5728"
"10:46:22.7640429 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000951","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7642827 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000273","Control: FSCTL_GET_REPARSE_POINT","6572"
"10:46:22.7643932 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000337","","6572"
"10:46:22.7647751 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000785","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.7649636 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000653","Filter: Mozilla, 1: Mozilla","5728"
"10:46:22.7651347 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000273","","5728"
"10:46:22.7652879 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0001041","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7654850 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000350","","6572"
"10:46:22.7659335 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000819","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.7661506 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000632","Filter: Firefox, 1: Firefox","5728"
"10:46:22.7663294 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000824","","5728"
"10:46:22.7668512 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0001788","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7673103 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000239","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","6572"
"10:46:22.7674737 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000662","","6572"
"10:46:22.7675429 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0002321","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.7680037 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000942","Filter: Profiles, 1: Profiles","5728"
"10:46:22.7683027 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000850","","5728"
"10:46:22.7688425 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0002654","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7693203 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000559","Control: FSCTL_GET_REPARSE_POINT","6572"
"10:46:22.7694953 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000653","","6572"
"10:46:22.7705824 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000376","Offset: 1,073,741,826, Length: 510","5728"
"10:46:22.7710082 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000606","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","6572"
"10:46:22.7715450 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000252","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:22.7716406 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000123","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:22.7717161 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000098","Offset: 1,073,741,824, Length: 1","5728"
"10:46:22.7718283 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000896","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7720237 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000235","Control: FSCTL_GET_REPARSE_POINT","6572"
"10:46:22.7721236 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000281","","6572"
"10:46:22.7728463 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000811","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7730114 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000248","","6572"
"10:46:22.7730703 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite-journal","0.0001225","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.7733216 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000354","Offset: 24, Length: 16","5728"
"10:46:22.7737112 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000755","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7739275 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000085","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","6572"
"10:46:22.7740363 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000482","","6572"
"10:46:22.7746605 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite-wal","0.0000986","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.7748913 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000227","AllocationSize: 98,304, EndOfFile: 98,304, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:22.7749814 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000883","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7751862 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000256","Control: FSCTL_GET_REPARSE_POINT","6572"
"10:46:22.7752045 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000205","Offset: 1,073,741,826, Length: 510","5728"
"10:46:22.7752907 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000282","","6572"
"10:46:22.7754174 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000158","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:22.7754934 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000106","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:22.7755621 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000085","Offset: 1,073,741,824, Length: 1","5728"
"10:46:22.7761133 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles","0.0000572","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","6572"
"10:46:22.7767998 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles","0.0000862","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7770063 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles","0.0000231","Control: FSCTL_GET_REPARSE_POINT","6572"
"10:46:22.7770673 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite-journal","0.0001135","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.7771057 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles","0.0000282","","6572"
"10:46:22.7773140 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000367","Offset: 24, Length: 16","5728"
"10:46:22.7778106 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles","0.0000789","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7779740 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles","0.0000252","","6572"
"10:46:22.7787045 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles","0.0000832","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7787228 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite-wal","0.0000956","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.7789404 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles","0.0000090","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","6572"
"10:46:22.7789438 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000226","AllocationSize: 98,304, EndOfFile: 98,304, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:22.7790164 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles","0.0000277","","6572"
"10:46:22.7790761 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000158","Offset: 1,073,741,826, Length: 510","5728"
"10:46:22.7797733 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles","0.0000810","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7799691 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles","0.0000218","Control: FSCTL_GET_REPARSE_POINT","6572"
"10:46:22.7800532 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles","0.0000273","","6572"
"10:46:22.7809184 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox","0.0000589","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","6572"
"10:46:22.7810029 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000960","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.7812662 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000243","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: A","5728"
"10:46:22.7813673 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000350","","5728"
"10:46:22.7816412 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox","0.0000981","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7816873 AM","firefox.exe","7384","CreateFile","C:\","0.0000725","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.7818631 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local\Mozilla\Firefox","0.0000273","Control: FSCTL_GET_REPARSE_POINT","6572"
"10:46:22.7818789 AM","firefox.exe","7384","QueryDirectory","C:\Program Files","0.0000904","Filter: Program Files, 1: Program Files","5728"
"10:46:22.7821592 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox","0.0000175","","6572"
"10:46:22.7821754 AM","firefox.exe","7384","CloseFile","C:\","0.0000175","","5728"
"10:46:22.7825385 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox","0.0000393","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7825492 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000358","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.7826179 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox","0.0000311","","6572"
"10:46:22.7826298 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly","0.0002334","Filter: Firefox Nightly, 1: Firefox Nightly","5728"
"10:46:22.7829187 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000183","","5728"
"10:46:22.7829980 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox","0.0000380","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7830974 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Local\Mozilla\Firefox","0.0000039","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","6572"
"10:46:22.7831277 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox","0.0000120","","6572"
"10:46:22.7834861 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox","0.0000371","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7835663 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local\Mozilla\Firefox","0.0000111","Control: FSCTL_GET_REPARSE_POINT","6572"
"10:46:22.7836082 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox","0.0000119","","6572"
"10:46:22.7836214 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:22.7836850 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 39776, endtime: 39776, seqnum: 0, connid: 0","0"
"10:46:22.7838697 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000060","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.7838710 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:22.7839196 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Parental Controls\Users\S-1-5-21-429253301-29906273-2566354956-1001\Web","0.0000542","Desired Access: Read","5728"
"10:46:22.7839218 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 39776, endtime: 39776, seqnum: 0, connid: 0","0"
"10:46:22.7841189 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla","0.0000640","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","6572"
"10:46:22.7851258 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla","0.0002197","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7855828 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local\Mozilla","0.0000345","Control: FSCTL_GET_REPARSE_POINT","6572"
"10:46:22.7857453 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla","0.0000662","","6572"
"10:46:22.7862693 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000277","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:22.7863589 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000089","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:22.7864160 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000090","Offset: 1,073,741,824, Length: 1","5728"
"10:46:22.7867369 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla","0.0001348","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7869754 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla","0.0000324","","6572"
"10:46:22.7878509 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla","0.0000969","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7880890 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Local\Mozilla","0.0000073","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","6572"
"10:46:22.7881906 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla","0.0000324","","6572"
"10:46:22.7884713 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite-journal","0.0000512","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.7886701 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000529","Offset: 24, Length: 16","5728"
"10:46:22.7888237 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla","0.0000337","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7888997 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local\Mozilla","0.0000106","Control: FSCTL_GET_REPARSE_POINT","6572"
"10:46:22.7889863 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla","0.0000102","","6572"
"10:46:22.7893025 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local","0.0000217","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","6572"
"10:46:22.7895508 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite-wal","0.0000397","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.7895951 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local","0.0000295","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7896472 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000111","AllocationSize: 98,304, EndOfFile: 98,304, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:22.7896690 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local","0.0000098","Control: FSCTL_GET_REPARSE_POINT","6572"
"10:46:22.7897082 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local","0.0000124","","6572"
"10:46:22.7897509 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000537","Offset: 32,768, Length: 32,768","5728"
"10:46:22.7900380 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local","0.0000350","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7900568 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\permissions.sqlite","0.0000077","Offset: 1,073,741,826, Length: 510","5728"
"10:46:22.7901076 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local","0.0000123","","6572"
"10:46:22.7902727 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 3376","5728"
"10:46:22.7904054 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local","0.0000303","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7904950 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Local","0.0000034","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","6572"
"10:46:22.7905210 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local","0.0000098","","6572"
"10:46:22.7908282 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local","0.0000324","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7909016 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local","0.0000115","Control: FSCTL_GET_REPARSE_POINT","6572"
"10:46:22.7909101 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0113123","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","3376"
"10:46:22.7909421 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local","0.0000116","","6572"
"10:46:22.7912417 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000213","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","6572"
"10:46:22.7915279 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000338","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7916069 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000106","Control: FSCTL_GET_REPARSE_POINT","6572"
"10:46:22.7916500 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000123","","6572"
"10:46:22.7919572 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000341","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7920284 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000124","","6572"
"10:46:22.7923198 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000329","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7924146 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData","0.0000034","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","6572"
"10:46:22.7924444 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000124","","6572"
"10:46:22.7927631 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000342","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7928374 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000107","Control: FSCTL_GET_REPARSE_POINT","6572"
"10:46:22.7928801 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000119","","6572"
"10:46:22.7932086 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000213","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","6572"
"10:46:22.7935060 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000337","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7935836 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000107","Control: FSCTL_GET_REPARSE_POINT","6572"
"10:46:22.7936289 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000123","","6572"
"10:46:22.7939429 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000333","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7940112 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000123","","6572"
"10:46:22.7943196 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000316","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7944122 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles","0.0000034","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","6572"
"10:46:22.7944412 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000128","","6572"
"10:46:22.7947540 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000316","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7948261 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000102","Control: FSCTL_GET_REPARSE_POINT","6572"
"10:46:22.7948641 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000123","","6572"
"10:46:22.7950693 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000055","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.7951171 AM","firefox.exe","7384","RegOpenKey","HKCU\SOFTWARE\Policies","0.0000158","Desired Access: Read","5728"
"10:46:22.7951623 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000192","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","6572"
"10:46:22.7951986 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Policies","0.0000038","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.7952336 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Policies\Mozilla\Firefox","0.0000098","Desired Access: Read Control","5728"
"10:46:22.7952933 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Policies","0.0000043","","5728"
"10:46:22.7954477 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000350","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7955262 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000120","Control: FSCTL_GET_REPARSE_POINT","6572"
"10:46:22.7955702 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000128","","6572"
"10:46:22.7955736 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000043","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.7956107 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Policies","0.0000141","Desired Access: Read","5728"
"10:46:22.7956717 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Policies","0.0000039","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.7957050 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Policies\Mozilla\Firefox","0.0000094","Desired Access: Read Control","5728"
"10:46:22.7957558 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Policies","0.0000043","","5728"
"10:46:22.7958573 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000303","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7959226 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000120","","6572"
"10:46:22.7962115 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000303","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7963041 AM","firefox.exe","7384","DeviceIoControl","C:\Users","0.0000034","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","6572"
"10:46:22.7963331 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000119","","6572"
"10:46:22.7965827 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000051","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.7966347 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000325","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7967132 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000103","Control: FSCTL_GET_REPARSE_POINT","6572"
"10:46:22.7967499 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000120","","6572"
"10:46:22.7969445 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000222","Desired Access: Read","5728"
"10:46:22.7970046 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000043","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.7970418 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}","0.0000222","Desired Access: Read","5728"
"10:46:22.7971011 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000038","","5728"
"10:46:22.7971433 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Category","0.0000094","Type: REG_DWORD, Length: 4, Data: 4","5728"
"10:46:22.7971629 AM","firefox.exe","7384","CreateFile","C:\","0.0000461","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7972073 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Name","0.0000090","Type: REG_SZ, Length: 32, Data: LocalAppDataLow","5728"
"10:46:22.7972470 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\ParentFolder","0.0000107","Length: 90","5728"
"10:46:22.7972692 AM","firefox.exe","7384","QueryNameInformationFile","C:\","0.0000153","Name: \","6572"
"10:46:22.7973238 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Description","0.0000077","Length: 144","5728"
"10:46:22.7973575 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\RelativePath","0.0000077","Type: REG_SZ, Length: 34, Data: AppData\LocalLow","5728"
"10:46:22.7973925 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\ParsingName","0.0000060","Length: 144","5728"
"10:46:22.7974241 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\InfoTip","0.0000064","Length: 144","5728"
"10:46:22.7974539 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\LocalizedName","0.0000064","Length: 144","5728"
"10:46:22.7974697 AM","firefox.exe","7384","QueryAttributeInformationVolume","C:\","0.0000111","FileSystemAttributes: Case Preserved, Case Sensitive, Unicode, ACLs, Compression, Named Streams, EFS, Object IDs, Reparse Points, Sparse Files, Quotas, Transactions, 0x3c00600, MaximumComponentNameLength: 255, FileSystemName: NTFS","6572"
"10:46:22.7974953 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Icon","0.0000064","Length: 144","5728"
"10:46:22.7975149 AM","firefox.exe","7384","CloseFile","C:\","0.0000184","","6572"
"10:46:22.7975260 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Security","0.0000197","Type: REG_SZ, Length: 40, Data: S:(ML;OICI;NW;;;LW)","5728"
"10:46:22.7975755 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\StreamResource","0.0000069","Length: 144","5728"
"10:46:22.7976075 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\StreamResourceType","0.0000060","Length: 144","5728"
"10:46:22.7976391 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\LocalRedirectOnly","0.0000068","Type: REG_DWORD, Length: 4, Data: 1","5728"
"10:46:22.7976720 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Roamable","0.0000064","Length: 16","5728"
"10:46:22.7977014 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\PreCreate","0.0000060","Type: REG_DWORD, Length: 4, Data: 1","5728"
"10:46:22.7977308 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Stream","0.0000060","Length: 16","5728"
"10:46:22.7977611 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\PublishExpandedPath","0.0000069","Type: REG_DWORD, Length: 4, Data: 1","5728"
"10:46:22.7977910 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\DefinitionFlags","0.0000060","Length: 16","5728"
"10:46:22.7978196 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Attributes","0.0000060","Type: REG_DWORD, Length: 4, Data: 8192","5728"
"10:46:22.7978477 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\FolderTypeID","0.0000064","Length: 90","5728"
"10:46:22.7978785 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\InitFolderHandler","0.0000064","Length: 90","5728"
"10:46:22.7979186 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}","0.0000042","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.7979595 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\PropertyBag","0.0000103","Desired Access: Read","5728"
"10:46:22.7980112 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}","0.0000051","","5728"
"10:46:22.7980649 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer","0.0000039","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.7981025 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000119","Desired Access: Query Value","5728"
"10:46:22.7981430 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000038","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.7981737 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\KnownFolders","0.0000154","Desired Access: Query Value","5728"
"10:46:22.7982207 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000029","","5728"
"10:46:22.7982898 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index","0.0000486","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.7983794 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index","0.0000166","CreationTime: 3/25/2020 10:46:02 AM, LastAccessTime: 3/25/2020 10:46:02 AM, LastWriteTime: 3/26/2020 10:35:40 AM, ChangeTime: 3/26/2020 10:35:40 AM, AllocationSize: 102400, EndOfFile: 98539, FileAttributes: A","6572"
"10:46:22.7985236 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index","0.0000320","","6572"
"10:46:22.7986985 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000551","Desired Access: Read","5728"
"10:46:22.7988777 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000154","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.7989912 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0001199","Desired Access: Read","5728"
"10:46:22.7992259 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000388","","5728"
"10:46:22.7994495 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\{A520A1A4-1780-4FF6-BD18-167343C5AF16}","0.0000371","Length: 142","5728"
"10:46:22.7997144 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000107","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.7998134 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000922","Desired Access: Read","5728"
"10:46:22.7999653 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000068","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.8000220 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}","0.0000448","Desired Access: Read","5728"
"10:46:22.8001671 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000098","","5728"
"10:46:22.8002763 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Category","0.0000162","Type: REG_DWORD, Length: 4, Data: 2","5728"
"10:46:22.8003378 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Name","0.0000123","Type: REG_SZ, Length: 16, Data: Profile","5728"
"10:46:22.8004043 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\ParentFolder","0.0000116","Length: 90","5728"
"10:46:22.8004572 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Description","0.0000094","Length: 144","5728"
"10:46:22.8005059 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\RelativePath","0.0000098","Length: 144","5728"
"10:46:22.8005584 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\ParsingName","0.0000098","Length: 144","5728"
"10:46:22.8006079 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\InfoTip","0.0000089","Length: 144","5728"
"10:46:22.8006714 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\LocalizedName","0.0000303","Length: 144","5728"
"10:46:22.8007448 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Icon","0.0000158","Length: 144","5728"
"10:46:22.8008451 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Security","0.0000132","Length: 144","5728"
"10:46:22.8009240 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\StreamResource","0.0000188","Length: 144","5728"
"10:46:22.8009761 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.log","0.0002304","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.8009936 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\StreamResourceType","0.0000111","Length: 144","5728"
"10:46:22.8010516 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\LocalRedirectOnly","0.0000153","Length: 16","5728"
"10:46:22.8011156 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Roamable","0.0000081","Length: 16","5728"
"10:46:22.8011625 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\PreCreate","0.0000098","Length: 16","5728"
"10:46:22.8012116 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Stream","0.0000124","Length: 16","5728"
"10:46:22.8012726 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\PublishExpandedPath","0.0000158","Length: 16","5728"
"10:46:22.8013084 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.log","0.0000337","CreationTime: 3/26/2020 10:35:40 AM, LastAccessTime: 3/26/2020 10:35:40 AM, LastWriteTime: 3/26/2020 10:35:40 AM, ChangeTime: 3/26/2020 10:35:40 AM, AllocationSize: 8192, EndOfFile: 5908, FileAttributes: A","6572"
"10:46:22.8014582 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.log","0.0001079","","6572"
"10:46:22.8015708 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\DefinitionFlags","0.0000265","Length: 16","5728"
"10:46:22.8016899 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Attributes","0.0000145","Length: 16","5728"
"10:46:22.8017564 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\FolderTypeID","0.0001413","Length: 90","5728"
"10:46:22.8019664 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\InitFolderHandler","0.0000179","Length: 90","5728"
"10:46:22.8020619 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}","0.0000094","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.8021507 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\PropertyBag","0.0000247","Desired Access: Read","5728"
"10:46:22.8022748 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}","0.0000094","","5728"
"10:46:22.8026623 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000110","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.8027271 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0217332","Offset: 0, Length: 65,536, Priority: Normal","3376"
"10:46:22.8027352 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001","0.0000346","Desired Access: Read","5728"
"10:46:22.8028082 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001\ProfileImagePath","0.0000072","Length: 12","5728"
"10:46:22.8028444 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001\ProfileImagePath","0.0000094","Type: REG_EXPAND_SZ, Length: 34, Data: C:\Users\diggles","5728"
"10:46:22.8028607 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0215462","Offset: 0, Length: 65,536, I/O Flags: Non-cached, Paging I/O, Priority: Normal","3376"
"10:46:22.8028999 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001","0.0000051","","5728"
"10:46:22.8029716 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000043","","5728"
"10:46:22.8032003 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.tmp","0.0000431","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:22.8037268 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow","0.0000358","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.8038288 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\LocalLow","0.0000089","CreationTime: 2/16/2018 12:54:36 PM, LastAccessTime: 2/16/2018 12:59:41 PM, LastWriteTime: 2/16/2018 12:59:41 PM, ChangeTime: 3/20/2019 7:53:52 PM, FileAttributes: DNCI","5728"
"10:46:22.8038710 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow","0.0000120","","5728"
"10:46:22.8039098 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.tmp","0.0000397","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:22.8045387 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.log","0.0000465","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.8046232 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.log","0.0000098","CreationTime: 3/26/2020 10:35:40 AM, LastAccessTime: 3/26/2020 10:35:40 AM, LastWriteTime: 3/26/2020 10:35:40 AM, ChangeTime: 3/26/2020 10:35:40 AM, FileAttributes: A","6572"
"10:46:22.8046616 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.log","0.0000154","","6572"
"10:46:22.8050286 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.log","0.0000584","Desired Access: Read Attributes, Delete, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.8051305 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.log","0.0000120","Attributes: A, ReparseTag: 0x0","6572"
"10:46:22.8051843 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.log","0.0000077","CreationTime: 3/26/2020 10:35:40 AM, LastAccessTime: 3/26/2020 10:35:40 AM, LastWriteTime: 3/26/2020 10:35:40 AM, ChangeTime: 3/26/2020 10:35:40 AM, FileAttributes: A","6572"
"10:46:22.8054953 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000406","Desired Access: Write Data/Add File, Synchronize, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.8067834 AM","firefox.exe","7384","SetRenameInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.log","0.0002496","ReplaceIfExists: True, FileName: C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.tmp","6572"
"10:46:22.8070663 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000478","","6572"
"10:46:22.8072250 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.tmp","0.0000747","","6572"
"10:46:22.8077443 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index","0.0000614","Desired Access: Generic Read/Write, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.8078881 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index","0.0433750","Offset: 0, Length: 16,384, Priority: Normal","6572"
"10:46:22.8079918 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index","0.0430221","Offset: 0, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:22.8245170 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.1175886","Offset: 65,536, Length: 65,536","3376"
"10:46:22.8280758 AM","firefox.exe","7384","ReadFile","C:\$Directory","0.0108284","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.8393219 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000504","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.8395186 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0012877","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","5728"
"10:46:22.8396180 AM","firefox.exe","7384","ReadFile","C:","0.0011183","Offset: 4,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.8408370 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000751","","5728"
"10:46:22.8410738 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000150","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.8411109 AM","firefox.exe","7384","QueryNameInformationFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000039","Name: \Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","5728"
"10:46:22.8411272 AM","firefox.exe","7384","QueryNameInformationFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000025","Name: \Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","5728"
"10:46:22.8412023 AM","firefox.exe","7384","QueryNormalizedNameInformationFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000123","","5728"
"10:46:22.8412351 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000102","","5728"
"10:46:22.8415048 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{e70f652e-493f-4501-b411-d825b0b8c873}","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.8416080 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{e70f652e-493f-4501-b411-d825b0b8c873}","0.0000956","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","5728"
"10:46:22.8417211 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{e70f652e-493f-4501-b411-d825b0b8c873}","0.0000209","","5728"
"10:46:22.8418661 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{e70f652e-493f-4501-b411-d825b0b8c873}","0.0000128","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.8418977 AM","firefox.exe","7384","QueryNameInformationFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{e70f652e-493f-4501-b411-d825b0b8c873}","0.0000030","Name: \Users\diggles\AppData\LocalLow\Mozilla\Temp-{e70f652e-493f-4501-b411-d825b0b8c873}","5728"
"10:46:22.8419118 AM","firefox.exe","7384","QueryNameInformationFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{e70f652e-493f-4501-b411-d825b0b8c873}","0.0000021","Name: \Users\diggles\AppData\LocalLow\Mozilla\Temp-{e70f652e-493f-4501-b411-d825b0b8c873}","5728"
"10:46:22.8419775 AM","firefox.exe","7384","QueryNormalizedNameInformationFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{e70f652e-493f-4501-b411-d825b0b8c873}","0.0000115","","5728"
"10:46:22.8420014 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{e70f652e-493f-4501-b411-d825b0b8c873}","0.0000047","","5728"
"10:46:22.8420884 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.8421055 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Explorer","0.0000085","Desired Access: Query Value","5728"
"10:46:22.8421256 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.8421367 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Policies\Microsoft\Windows\Explorer","0.0000055","Desired Access: Query Value","5728"
"10:46:22.8423082 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.8423214 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001","0.0000073","Desired Access: Read","5728"
"10:46:22.8423470 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001\ProfileImagePath","0.0000034","Length: 12","5728"
"10:46:22.8423598 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001\ProfileImagePath","0.0000026","Type: REG_EXPAND_SZ, Length: 34, Data: C:\Users\diggles","5728"
"10:46:22.8423752 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001","0.0000012","","5728"
"10:46:22.8424912 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5728"
"10:46:22.8426619 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.8426841 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles","0.0000034","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 5/9/2019 3:17:34 PM, LastWriteTime: 5/9/2019 3:17:34 PM, ChangeTime: 5/9/2019 3:17:34 PM, FileAttributes: D","5728"
"10:46:22.8426964 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000039","","5728"
"10:46:22.8428018 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000120","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5728"
"10:46:22.8429597 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.8429793 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming","0.0000030","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 10/22/2019 8:25:35 PM, LastWriteTime: 10/22/2019 8:25:35 PM, ChangeTime: 10/22/2019 8:25:35 PM, FileAttributes: D","5728"
"10:46:22.8429900 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000034","","5728"
"10:46:22.8431022 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5728"
"10:46:22.8432549 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000099","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.8432737 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles","0.0000026","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 5/9/2019 3:17:34 PM, LastWriteTime: 5/9/2019 3:17:34 PM, ChangeTime: 5/9/2019 3:17:34 PM, FileAttributes: D","5728"
"10:46:22.8432848 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000030","","5728"
"10:46:22.8433821 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5728"
"10:46:22.8435370 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.8435562 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local","0.0000021","CreationTime: 3/20/2019 7:21:23 PM, LastAccessTime: 3/26/2020 10:43:56 AM, LastWriteTime: 3/26/2020 10:43:56 AM, ChangeTime: 3/26/2020 10:43:56 AM, FileAttributes: D","5728"
"10:46:22.8435660 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local","0.0000034","","5728"
"10:46:22.8436846 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0006063","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5728"
"10:46:22.8444778 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000414","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.8445512 AM","firefox.exe","7384","QueryNameInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000051","Name: \Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","5728"
"10:46:22.8445785 AM","firefox.exe","7384","QueryNameInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000038","Name: \Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","5728"
"10:46:22.8446800 AM","firefox.exe","7384","QueryNormalizedNameInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000154","","5728"
"10:46:22.8447346 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000120","","5728"
"10:46:22.8449347 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0473738","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5728"
"10:46:22.8521906 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index","0.0153438","Offset: 16,384, Length: 16,371","6572"
"10:46:22.8678894 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index","0.0000128","Offset: 32,755, Length: 16,359","6572"
"10:46:22.8681779 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index","0.0000089","Offset: 49,114, Length: 16,359","6572"
"10:46:22.8685107 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index","0.0000059","Offset: 65,473, Length: 16,359","6572"
"10:46:22.8687718 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index","0.0000055","Offset: 81,832, Length: 16,359","6572"
"10:46:22.8690547 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index","0.0000038","Offset: 98,191, Length: 348","6572"
"10:46:22.8692983 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.tmp","0.0000461","Desired Access: Generic Read/Write, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.8693747 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.tmp","0.0180676","Offset: 0, Length: 5,908, Priority: Normal","6572"
"10:46:22.8694331 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.tmp","0.0179729","Offset: 0, Length: 5,908, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:22.8879688 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.tmp","0.0000184","","6572"
"10:46:22.8882120 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\10120","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:22.8885226 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.tmp","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.8885598 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.tmp","0.0000055","CreationTime: 3/26/2020 10:35:40 AM, LastAccessTime: 3/26/2020 10:35:40 AM, LastWriteTime: 3/26/2020 10:35:40 AM, ChangeTime: 3/26/2020 10:46:22 AM, AllocationSize: 8192, EndOfFile: 5908, FileAttributes: A","6572"
"10:46:22.8885785 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.tmp","0.0000064","","6572"
"10:46:22.8888456 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:22.8889856 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0001689","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","6572"
"10:46:22.8891823 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000298","","6572"
"10:46:22.8895057 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.tmp","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.8895407 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.tmp","0.0000047","CreationTime: 3/26/2020 10:35:40 AM, LastAccessTime: 3/26/2020 10:35:40 AM, LastWriteTime: 3/26/2020 10:35:40 AM, ChangeTime: 3/26/2020 10:46:22 AM, FileAttributes: A","6572"
"10:46:22.8895582 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.tmp","0.0000059","","6572"
"10:46:22.8897083 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.tmp","0.0000252","Desired Access: Read Attributes, Delete, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.8897553 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.tmp","0.0000068","Attributes: A, ReparseTag: 0x0","6572"
"10:46:22.8897873 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.tmp","0.0000030","CreationTime: 3/26/2020 10:35:40 AM, LastAccessTime: 3/26/2020 10:35:40 AM, LastWriteTime: 3/26/2020 10:35:40 AM, ChangeTime: 3/26/2020 10:46:22 AM, FileAttributes: A","6572"
"10:46:22.8899080 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000179","Desired Access: Write Data/Add File, Synchronize, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.8904900 AM","firefox.exe","7384","SetRenameInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index.tmp","0.0001254","ReplaceIfExists: True, FileName: C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\10120","6572"
"10:46:22.8906308 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000222","","6572"
"10:46:22.8906991 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\10120","0.0000345","","6572"
"10:46:22.8909243 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\10120","0.0000299","Desired Access: Read Attributes, Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.8909798 AM","firefox.exe","7384","QueryRemoteProtocolInformation","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\10120","0.0000051","","6572"
"10:46:22.8910084 AM","firefox.exe","7384","QuerySecurityFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\10120","0.0000077","Information: DACL","6572"
"10:46:22.8910378 AM","firefox.exe","7384","QueryNameInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\10120","0.0000056","Name: \Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\10120","6572"
"10:46:22.8911970 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000179","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.8912324 AM","firefox.exe","7384","QueryRemoteProtocolInformation","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000038","","6572"
"10:46:22.8912516 AM","firefox.exe","7384","QuerySecurityFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000026","Information: DACL","6572"
"10:46:22.8912678 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000051","","6572"
"10:46:22.8913109 AM","firefox.exe","7384","QueryRemoteProtocolInformation","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\10120","0.0000034","","6572"
"10:46:22.8913280 AM","firefox.exe","7384","QuerySecurityFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\10120","0.0000021","Information: Owner, Group, DACL","6572"
"10:46:22.8913416 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\10120","0.0000043","CreationTime: 3/26/2020 10:35:40 AM, LastAccessTime: 3/26/2020 10:35:40 AM, LastWriteTime: 3/26/2020 10:35:40 AM, ChangeTime: 3/26/2020 10:46:22 AM, FileAttributes: A","6572"
"10:46:22.8913783 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\10120","0.0000081","","6572"
"10:46:22.8915392 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\10120","0.0000260","Desired Access: Read Attributes, Read Control, Write DAC, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.8915861 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\10120","0.0000043","CreationTime: 3/26/2020 10:35:40 AM, LastAccessTime: 3/26/2020 10:35:40 AM, LastWriteTime: 3/26/2020 10:35:40 AM, ChangeTime: 3/26/2020 10:46:22 AM, FileAttributes: A","6572"
"10:46:22.8916117 AM","firefox.exe","7384","QueryNameInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\10120","0.0000047","Name: \Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\10120","6572"
"10:46:22.8917359 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000166","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.8917687 AM","firefox.exe","7384","QueryRemoteProtocolInformation","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000034","","6572"
"10:46:22.8917875 AM","firefox.exe","7384","QuerySecurityFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000025","Information: DACL, DACL Unprotected","6572"
"10:46:22.8918033 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed","0.0000055","","6572"
"10:46:22.8918404 AM","firefox.exe","7384","QueryRemoteProtocolInformation","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\10120","0.0000034","","6572"
"10:46:22.8918579 AM","firefox.exe","7384","QuerySecurityFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\10120","0.0000021","Information: Owner, Group, DACL, DACL Unprotected","6572"
"10:46:22.8918869 AM","firefox.exe","7384","SetSecurityFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\10120","0.0000516","Information: DACL, DACL Unprotected","6572"
"10:46:22.8919573 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\10120","0.0000354","","6572"
"10:46:22.8922794 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\10120","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.8923144 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\10120","0.0000043","CreationTime: 3/26/2020 10:35:40 AM, LastAccessTime: 3/26/2020 10:35:40 AM, LastWriteTime: 3/26/2020 10:35:40 AM, ChangeTime: 3/26/2020 10:46:22 AM, FileAttributes: A","6572"
"10:46:22.8923319 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\10120","0.0000064","","6572"
"10:46:22.8924616 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000342","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.8924851 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\10120","0.0000269","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.8925201 AM","firefox.exe","7384","QueryNameInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000038","Name: \Users\diggles\AppData\Roaming\Mozilla\Extensions","5728"
"10:46:22.8925299 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\10120","0.0000051","Attributes: A, ReparseTag: 0x0","6572"
"10:46:22.8925376 AM","firefox.exe","7384","QueryNameInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000025","Name: \Users\diggles\AppData\Roaming\Mozilla\Extensions","5728"
"10:46:22.8925508 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\10120","0.0000098","Delete: True","6572"
"10:46:22.8925743 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\doomed\10120","0.0001638","","6572"
"10:46:22.8926169 AM","firefox.exe","7384","QueryNormalizedNameInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000133","","5728"
"10:46:22.8926442 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000064","","5728"
"10:46:22.8928013 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index","0.0000332","Offset: 8, Length: 4, Priority: Normal","6572"
"10:46:22.8928571 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\index","0.0000448","","6572"
"10:46:22.8931114 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000222","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:22.8931515 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000043","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,886, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:22.8931686 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000056","","6572"
"10:46:22.8984179 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-current.bin","0.0824505","Offset: 2,097,152, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1824"
"10:46:22.9055582 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 8260","5728"
"10:46:22.9061670 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\persdict.dat","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8260"
"10:46:22.9098078 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\distribution\extensions\","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.9100296 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\distribution\extensions","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.9182302 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 4920","5728"
"10:46:22.9184371 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8260"
"10:46:22.9184977 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000060","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8260"
"10:46:22.9185208 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000085","","8260"
"10:46:22.9185472 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 4952","5728"
"10:46:22.9186330 AM","firefox.exe","7384","CreateFile","C:\","0.0000226","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8260"
"10:46:22.9186816 AM","firefox.exe","7384","QueryDirectory","C:\Program Files","0.0000235","Filter: Program Files, 1: Program Files","8260"
"10:46:22.9187277 AM","firefox.exe","7384","CloseFile","C:\","0.0000085","","8260"
"10:46:22.9189107 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000171","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8260"
"10:46:22.9189534 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000328","Filter: Firefox Nightly, 1: Firefox Nightly","8260"
"10:46:22.9190042 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000064","","8260"
"10:46:22.9271458 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000243","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5728"
"10:46:22.9273173 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000163","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.9273715 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000034","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","5728"
"10:46:22.9273882 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000059","CreationTime: 6/19/2019 4:53:34 PM, LastAccessTime: 6/19/2019 4:53:34 PM, LastWriteTime: 6/19/2019 4:53:34 PM, ChangeTime: 6/19/2019 4:53:34 PM, FileAttributes: D, AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: True, IndexNumber: 0x21000000002d58, EaSize: 0, Access: Read Attributes, Synchronize, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","5728"
"10:46:22.9274057 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000042","","5728"
"10:46:22.9275247 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000145","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.9275537 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000022","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","5728"
"10:46:22.9275652 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000043","CreationTime: 6/19/2019 4:53:34 PM, LastAccessTime: 6/19/2019 4:53:34 PM, LastWriteTime: 6/19/2019 4:53:34 PM, ChangeTime: 6/19/2019 4:53:34 PM, FileAttributes: D, AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: True, IndexNumber: 0x21000000002d58, EaSize: 0, Access: Read Attributes, Synchronize, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","5728"
"10:46:22.9275789 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000038","","5728"
"10:46:22.9276877 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000128","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.9277141 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000022","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","5728"
"10:46:22.9277248 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000043","CreationTime: 6/19/2019 4:53:34 PM, LastAccessTime: 6/19/2019 4:53:34 PM, LastWriteTime: 6/19/2019 4:53:34 PM, ChangeTime: 6/19/2019 4:53:34 PM, FileAttributes: D, AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: True, IndexNumber: 0x21000000002d58, EaSize: 0, Access: Read Attributes, Synchronize, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","5728"
"10:46:22.9277376 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000034","","5728"
"10:46:22.9278677 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000210","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5728"
"10:46:22.9279253 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000035","Exclusive: True, Offset: 0, Length: 1, Fail Immediately: True","5728"
"10:46:22.9279386 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000030","AllocationSize: 8,192, EndOfFile: 8,192, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:22.9279561 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:22.9279693 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000021","AllocationSize: 8,192, EndOfFile: 8,192, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:22.9279889 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000017","SyncType: SyncTypeOther","5728"
"10:46:22.9280350 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000026","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","5728"
"10:46:22.9280461 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000077","CreationTime: 6/19/2019 4:53:34 PM, LastAccessTime: 6/19/2019 4:53:34 PM, LastWriteTime: 6/19/2019 4:53:34 PM, ChangeTime: 6/19/2019 4:53:34 PM, FileAttributes: A, AllocationSize: 8,192, EndOfFile: 8,192, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x16000000002d6d, EaSize: 0, Access: Generic Read/Write, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","5728"
"10:46:22.9282283 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000222","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5728"
"10:46:22.9282842 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000115","Offset: 0, Length: 152, Priority: Normal","5728"
"10:46:22.9283068 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000030","Offset: 4,096, Length: 152","5728"
"10:46:22.9283217 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000261","EndOfFile: 1,048,576","5728"
"10:46:22.9283576 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000123","AllocationSize: 1,048,576","5728"
"10:46:22.9283832 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:22.9283951 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000026","AllocationSize: 1,048,576, EndOfFile: 1,048,576, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:22.9284143 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000013","SyncType: SyncTypeOther","5728"
"10:46:22.9285526 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000204","Desired Access: Generic Write, Read Attributes, Disposition: Open, Options: Write Through, Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.9285969 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000034","Exclusive: False, Offset: 0, Length: 1, Fail Immediately: False","5728"
"10:46:22.9286097 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000017","Offset: 0, Length: 1","5728"
"10:46:22.9287330 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore.json","0.0000145","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:22.9288674 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000077","","5728"
"10:46:22.9288982 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000038","","5728"
"10:46:22.9289357 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000030","Offset: 0, Length: 1","5728"
"10:46:22.9289464 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000038","","5728"
"10:46:22.9290291 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 5780","5728"
"10:46:22.9301423 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\serviceworker.txt","0.0009809","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8260"
"10:46:22.9311569 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\serviceworker.txt","0.0000064","CreationTime: 3/25/2020 10:32:21 AM, LastAccessTime: 3/25/2020 10:32:21 AM, LastWriteTime: 3/25/2020 10:32:21 AM, ChangeTime: 3/25/2020 10:32:22 AM, AllocationSize: 4096, EndOfFile: 678, FileAttributes: A","8260"
"10:46:22.9311778 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\serviceworker.txt","0.0000111","","8260"
"10:46:22.9313920 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\serviceworker.txt","0.0000214","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","8260"
"10:46:22.9314428 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\serviceworker.txt","0.0209314","Offset: 0, Length: 678, Priority: Normal","8260"
"10:46:22.9314957 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\serviceworker.txt","0.0208465","Offset: 0, Length: 678, I/O Flags: Non-cached, Paging I/O, Priority: Normal","8260"
"10:46:22.9325513 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000230","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:22.9326102 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly","0.0000055","Name: \Program Files\Firefox Nightly","5728"
"10:46:22.9326447 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly","0.0000039","Name: \Program Files\Firefox Nightly","5728"
"10:46:22.9327484 AM","firefox.exe","7384","QueryNormalizedNameInformationFile","C:\Program Files\Firefox Nightly","0.0000128","","5728"
"10:46:22.9327800 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000072","","5728"
"10:46:22.9329101 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:22.9329348 AM","firefox.exe","7384","RegCreateKey","HKCU\Software\Mozilla\firefox\Installer\6F193CCC56814779","0.0000218","Desired Access: Read/Write, Disposition: REG_OPENED_EXISTING_KEY","5728"
"10:46:22.9329745 AM","firefox.exe","7384","RegSetInfoKey","HKCU\Software\Mozilla\Firefox\Installer\6F193CCC56814779","0.0000013","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:22.9330065 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Mozilla\Firefox\Installer\6F193CCC56814779","0.0000043","Query: Cached, SubKeys: 0, Values: 0","5728"
"10:46:22.9330684 AM","firefox.exe","7384","RegDeleteValue","HKCU\Software\Mozilla\Firefox\Installer\6F193CCC56814779\installer.taskbarpin.win10.enabled","0.0000034","","5728"
"10:46:22.9331776 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Mozilla\Firefox\Installer\6F193CCC56814779","0.0000022","","5728"
"10:46:22.9369029 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0260488","Offset: 9,060,352, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.9421423 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000201","Offset: 131,072, Length: 65,536","3376"
"10:46:22.9421756 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000120","Offset: 196,608, Length: 65,536","3376"
"10:46:22.9421969 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000470","Offset: 262,144, Length: 65,536","3376"
"10:46:22.9422516 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0001156","Offset: 327,680, Length: 65,536","3376"
"10:46:22.9423906 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000124","Offset: 393,216, Length: 65,536","3376"
"10:46:22.9424158 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000068","Offset: 458,752, Length: 65,536","3376"
"10:46:22.9424316 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000021","Offset: 524,288, Length: 65,536","3376"
"10:46:22.9424491 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000128","","3376"
"10:46:22.9427512 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3376"
"10:46:22.9427802 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000038","CreationTime: 6/19/2019 4:53:35 PM, LastAccessTime: 6/19/2019 4:53:35 PM, LastWriteTime: 3/26/2020 10:29:03 AM, ChangeTime: 3/26/2020 10:29:03 AM, AllocationSize: 524288, EndOfFile: 524288, FileAttributes: A","3376"
"10:46:22.9427934 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000043","","3376"
"10:46:22.9429116 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000230","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","3376"
"10:46:22.9429662 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000090","Offset: 0, Length: 100, Priority: Normal","3376"
"10:46:22.9431036 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000051","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","3376"
"10:46:22.9431190 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","3376"
"10:46:22.9431318 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000017","Offset: 1,073,741,824, Length: 1","3376"
"10:46:22.9433216 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-journal","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3376"
"10:46:22.9435094 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3376"
"10:46:22.9435405 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000034","AllocationSize: 524,288, EndOfFile: 524,288, NumberOfLinks: 1, DeletePending: False, Directory: False","3376"
"10:46:22.9435712 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000111","Offset: 0, Length: 32,768","3376"
"10:46:22.9437556 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-wal","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3376"
"10:46:22.9438584 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-wal","0.0001212","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","3376"
"10:46:22.9442108 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3376"
"10:46:22.9443171 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0433114","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","3376"
"10:46:22.9526255 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\serviceworker.txt","0.0000094","Offset: 678, Length: 4,096","8260"
"10:46:22.9526618 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\serviceworker.txt","0.0000166","","8260"
"10:46:22.9641788 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0377981","Offset: 13,037,568, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:22.9876814 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000064","Exclusive: True, Offset: 128, Length: 1, Fail Immediately: True","3376"
"10:46:22.9877095 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000295","EndOfFile: 0","3376"
"10:46:22.9877543 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000158","AllocationSize: 0","3376"
"10:46:22.9877842 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000021","Offset: 128, Length: 1","3376"
"10:46:22.9877966 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000021","Exclusive: False, Offset: 128, Length: 1, Fail Immediately: True","3376"
"10:46:22.9878094 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000038","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","3376"
"10:46:22.9878230 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000013","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","3376"
"10:46:22.9878324 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000017","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","3376"
"10:46:22.9878444 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000631","EndOfFile: 32,768","3376"
"10:46:22.9879190 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000145","AllocationSize: 32,768","3376"
"10:46:22.9879523 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","3376"
"10:46:22.9879681 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000021","AllocationSize: 32,768, EndOfFile: 32,768, NumberOfLinks: 1, DeletePending: False, Directory: False","3376"
"10:46:22.9879916 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000017","SyncType: SyncTypeOther","3376"
"10:46:22.9880355 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000094","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","3376"
"10:46:22.9880641 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000021","Exclusive: True, Offset: 121, Length: 2, Fail Immediately: True","3376"
"10:46:22.9880739 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000026","Exclusive: True, Offset: 124, Length: 4, Fail Immediately: True","3376"
"10:46:22.9880965 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-wal","0.0000043","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","3376"
"10:46:22.9881127 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000017","Offset: 121, Length: 2","3376"
"10:46:22.9881217 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000013","Offset: 124, Length: 4","3376"
"10:46:22.9881298 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000013","Offset: 120, Length: 1","3376"
"10:46:22.9881383 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000017","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","3376"
"10:46:22.9881537 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000026","AllocationSize: 524,288, EndOfFile: 524,288, NumberOfLinks: 1, DeletePending: False, Directory: False","3376"
"10:46:22.9881772 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000089","Offset: 0, Length: 32,768","3376"
"10:46:22.9882757 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000022","Offset: 123, Length: 1","3376"
"10:46:22.9883683 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000026","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","3376"
"10:46:22.9883798 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000026","AllocationSize: 524,288, EndOfFile: 524,288, NumberOfLinks: 1, DeletePending: False, Directory: False","3376"
"10:46:22.9884148 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000013","Offset: 123, Length: 1","3376"
"10:46:22.9884306 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000009","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","3376"
"10:46:22.9884391 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000017","AllocationSize: 524,288, EndOfFile: 524,288, NumberOfLinks: 1, DeletePending: False, Directory: False","3376"
"10:46:22.9884502 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000013","Offset: 123, Length: 1","3376"
"10:46:22.9884856 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000017","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","3376"
"10:46:22.9884946 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000017","AllocationSize: 524,288, EndOfFile: 524,288, NumberOfLinks: 1, DeletePending: False, Directory: False","3376"
"10:46:22.9885189 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000103","Offset: 131,072, Length: 32,768","3376"
"10:46:22.9887950 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000017","Offset: 123, Length: 1","3376"
"10:46:22.9888133 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","3376"
"10:46:22.9888227 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000013","Offset: 1,073,741,826, Length: 510","3376"
"10:46:22.9888308 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000013","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","3376"
"10:46:22.9888654 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000128","","3376"
"10:46:22.9891790 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3376"
"10:46:22.9892076 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000029","CreationTime: 3/26/2020 10:46:22 AM, LastAccessTime: 3/26/2020 10:46:22 AM, LastWriteTime: 3/26/2020 10:46:22 AM, ChangeTime: 3/26/2020 10:46:22 AM, FileAttributes: A","3376"
"10:46:22.9892195 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000051","","3376"
"10:46:22.9893637 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000231","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3376"
"10:46:22.9894000 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000038","Attributes: A, ReparseTag: 0x0","3376"
"10:46:22.9894153 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000082","Delete: True","3376"
"10:46:22.9894333 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000721","","3376"
"10:46:22.9895365 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-wal","0.0000201","","3376"
"10:46:22.9897750 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-wal","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3376"
"10:46:22.9897998 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-wal","0.0000025","CreationTime: 3/26/2020 10:46:22 AM, LastAccessTime: 3/26/2020 10:46:22 AM, LastWriteTime: 3/26/2020 10:46:22 AM, ChangeTime: 3/26/2020 10:46:22 AM, FileAttributes: A","3376"
"10:46:22.9898104 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-wal","0.0000047","","3376"
"10:46:22.9899180 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-wal","0.0000187","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3376"
"10:46:22.9899491 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-wal","0.0000034","Attributes: A, ReparseTag: 0x0","3376"
"10:46:22.9899632 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-wal","0.0000064","Delete: True","3376"
"10:46:22.9899790 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-wal","0.0000657","","3376"
"10:46:22.9900784 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000025","Offset: 1,073,741,826, Length: 510","3376"
"10:46:22.9900882 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000013","Offset: 1,073,741,825, Length: 1","3376"
"10:46:22.9900972 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000012","Offset: 1,073,741,826, Length: 510","3376"
"10:46:22.9901048 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000013","Offset: 1,073,741,824, Length: 1","3376"
"10:46:22.9901159 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000158","","3376"
"10:46:23.0033055 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\tzres.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.0033558 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\tzres.dll","0.0000043","CreationTime: 4/25/2019 5:31:57 PM, LastAccessTime: 4/25/2019 5:31:57 PM, LastWriteTime: 3/14/2019 12:56:17 AM, ChangeTime: 4/25/2019 8:15:35 PM, FileAttributes: A","5728"
"10:46:23.0033733 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\tzres.dll","0.0000090","","5728"
"10:46:23.0035432 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\tzres.dll","0.0000187","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.0036050 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\tzres.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:23.0036456 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\tzres.dll","0.0000025","SyncType: SyncTypeOther","5728"
"10:46:23.0037010 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\tzres.dll","0.0000064","Name: \Windows\System32\tzres.dll","5728"
"10:46:23.0037364 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\tzres.dll","0.0000073","","5728"
"10:46:23.0037979 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000132","Desired Access: Read","5728"
"10:46:23.0039314 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\tzres.dll.mui","0.0000184","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.0039681 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\tzres.dll.mui","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:23.0039822 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\tzres.dll.mui","0.0000034","AllocationSize: 45,056, EndOfFile: 44,544, NumberOfLinks: 4, DeletePending: False, Directory: False","5728"
"10:46:23.0040057 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\tzres.dll.mui","0.0000012","SyncType: SyncTypeOther","5728"
"10:46:23.0040654 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\en-US\tzres.dll.mui","0.0000055","","5728"
"10:46:23.0042796 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\tzres.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.0043129 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\tzres.dll","0.0000034","CreationTime: 4/25/2019 5:31:57 PM, LastAccessTime: 4/25/2019 5:31:57 PM, LastWriteTime: 3/14/2019 12:56:17 AM, ChangeTime: 4/25/2019 8:15:35 PM, FileAttributes: A","5728"
"10:46:23.0043261 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\tzres.dll","0.0000047","","5728"
"10:46:23.0044366 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\tzres.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.0044737 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\tzres.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:23.0044968 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\tzres.dll","0.0000017","SyncType: SyncTypeOther","5728"
"10:46:23.0045275 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\tzres.dll","0.0000047","Name: \Windows\System32\tzres.dll","5728"
"10:46:23.0045514 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\tzres.dll","0.0000047","","5728"
"10:46:23.0045957 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000090","Desired Access: Read","5728"
"10:46:23.0047041 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\tzres.dll.mui","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.0047353 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\tzres.dll.mui","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:23.0047498 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\tzres.dll.mui","0.0000034","AllocationSize: 45,056, EndOfFile: 44,544, NumberOfLinks: 4, DeletePending: False, Directory: False","5728"
"10:46:23.0047720 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\tzres.dll.mui","0.0000012","SyncType: SyncTypeOther","5728"
"10:46:23.0048240 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\en-US\tzres.dll.mui","0.0000051","","5728"
"10:46:23.0049115 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000068","Desired Access: Maximum Allowed, Granted Access: All Access","5728"
"10:46:23.0049324 AM","firefox.exe","7384","RegOpenKey","HKCU\Control Panel\International\Geo","0.0000085","Desired Access: Read","5728"
"10:46:23.0049546 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000012","","5728"
"10:46:23.0049682 AM","firefox.exe","7384","RegQueryValue","HKCU\Control Panel\International\Geo\Nation","0.0000034","Type: REG_SZ, Length: 8, Data: 244","5728"
"10:46:23.0049827 AM","firefox.exe","7384","RegCloseKey","HKCU\Control Panel\International\Geo","0.0000013","","5728"
"10:46:23.0064368 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000068","Query: Name","5728"
"10:46:23.0064603 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0064709 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0064880 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000068","Desired Access: Read","5728"
"10:46:23.0065085 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000171","Desired Access: Read","5728"
"10:46:23.0065392 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000043","Query: Name","5728"
"10:46:23.0065533 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0065687 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\TreatAs","0.0000046","Desired Access: Query Value","5728"
"10:46:23.0065815 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0065913 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\TreatAs","0.0000030","Desired Access: Query Value","5728"
"10:46:23.0066024 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000029","Query: Name","5728"
"10:46:23.0066181 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000030","Query: Name","5728"
"10:46:23.0066292 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0066416 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000039","Desired Access: Maximum Allowed","5728"
"10:46:23.0066544 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\(Default)","0.0000030","Length: 12","5728"
"10:46:23.0066659 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000030","Query: Name","5728"
"10:46:23.0066766 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0066877 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000038","Desired Access: Maximum Allowed","5728"
"10:46:23.0066992 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\(Default)","0.0000026","Type: REG_SZ, Length: 42, Data: WSCProductList Class","5728"
"10:46:23.0067107 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000030","Query: Name","5728"
"10:46:23.0067218 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0067329 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000039","Desired Access: Read","5728"
"10:46:23.0067444 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0067538 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000064","Desired Access: Read","5728"
"10:46:23.0067717 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000035","Query: Name","5728"
"10:46:23.0067837 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0067948 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000034","Desired Access: Maximum Allowed","5728"
"10:46:23.0068063 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32\InprocServer32","0.0000026","Length: 12","5728"
"10:46:23.0068165 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000030","Query: Name","5728"
"10:46:23.0068272 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0068383 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000034","Desired Access: Maximum Allowed","5728"
"10:46:23.0068494 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32\(Default)","0.0000021","Length: 12","5728"
"10:46:23.0068596 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000030","Query: Name","5728"
"10:46:23.0068707 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0068814 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000038","Desired Access: Maximum Allowed","5728"
"10:46:23.0068925 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32\(Default)","0.0000030","Type: REG_SZ, Length: 62, Data: C:\Windows\System32\wscapi.dll","5728"
"10:46:23.0069040 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000030","Query: Name","5728"
"10:46:23.0069147 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0069258 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000038","Desired Access: Maximum Allowed","5728"
"10:46:23.0069373 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32\ThreadingModel","0.0000026","Type: REG_SZ, Length: 20, Data: Apartment","5728"
"10:46:23.0069544 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000017","","5728"
"10:46:23.0069646 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000030","Query: Name","5728"
"10:46:23.0069757 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0069872 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocHandler32","0.0000034","Desired Access: Query Value","5728"
"10:46:23.0069987 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0070081 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocHandler32","0.0000026","Desired Access: Query Value","5728"
"10:46:23.0070188 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000025","Query: Name","5728"
"10:46:23.0070295 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0070401 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocHandler","0.0000039","Desired Access: Query Value","5728"
"10:46:23.0070516 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0070610 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocHandler","0.0000026","Desired Access: Query Value","5728"
"10:46:23.0070772 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000013","","5728"
"10:46:23.0071331 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000034","Query: Name","5728"
"10:46:23.0071472 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0071566 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0071677 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000068","Desired Access: Read","5728"
"10:46:23.0071890 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000167","Desired Access: Read","5728"
"10:46:23.0072330 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000072","Query: Name","5728"
"10:46:23.0072543 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0072684 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\TreatAs","0.0000038","Desired Access: Query Value","5728"
"10:46:23.0072812 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0072914 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\TreatAs","0.0000026","Desired Access: Query Value","5728"
"10:46:23.0073029 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000030","Query: Name","5728"
"10:46:23.0073209 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000038","Query: Name","5728"
"10:46:23.0073388 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0073580 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000055","Desired Access: Maximum Allowed","5728"
"10:46:23.0073785 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\(Default)","0.0000030","Length: 12","5728"
"10:46:23.0073964 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000038","Query: Name","5728"
"10:46:23.0074139 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0074339 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000052","Desired Access: Maximum Allowed","5728"
"10:46:23.0074531 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\(Default)","0.0000030","Type: REG_SZ, Length: 42, Data: WSCProductList Class","5728"
"10:46:23.0074715 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000038","Query: Name","5728"
"10:46:23.0074903 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0075095 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000051","Desired Access: Read","5728"
"10:46:23.0075287 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0075457 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000043","Desired Access: Read","5728"
"10:46:23.0075658 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000042","Query: Name","5728"
"10:46:23.0075820 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0075952 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000039","Desired Access: Maximum Allowed","5728"
"10:46:23.0076089 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32\InprocServer32","0.0000021","Length: 12","5728"
"10:46:23.0076204 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000030","Query: Name","5728"
"10:46:23.0076328 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0076451 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000034","Desired Access: Maximum Allowed","5728"
"10:46:23.0076575 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32\(Default)","0.0000021","Length: 12","5728"
"10:46:23.0076690 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000030","Query: Name","5728"
"10:46:23.0076810 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0076933 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000039","Desired Access: Maximum Allowed","5728"
"10:46:23.0077061 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32\(Default)","0.0000022","Type: REG_SZ, Length: 62, Data: C:\Windows\System32\wscapi.dll","5728"
"10:46:23.0077181 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000030","Query: Name","5728"
"10:46:23.0077309 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0077428 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000039","Desired Access: Maximum Allowed","5728"
"10:46:23.0077556 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32\ThreadingModel","0.0000026","Type: REG_SZ, Length: 20, Data: Apartment","5728"
"10:46:23.0077714 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocServer32","0.0000009","","5728"
"10:46:23.0077821 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000030","Query: Name","5728"
"10:46:23.0077949 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0078073 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocHandler32","0.0000038","Desired Access: Query Value","5728"
"10:46:23.0078201 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0078307 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocHandler32","0.0000026","Desired Access: Query Value","5728"
"10:46:23.0078427 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000030","Query: Name","5728"
"10:46:23.0078546 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0078670 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocHandler","0.0000034","Desired Access: Query Value","5728"
"10:46:23.0078794 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0078900 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\InprocHandler","0.0000026","Desired Access: Query Value","5728"
"10:46:23.0079024 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000026","Query: Name","5728"
"10:46:23.0079139 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0079263 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\LocalServer32","0.0000038","Desired Access: Read","5728"
"10:46:23.0079387 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0079489 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\LocalServer32","0.0000026","Desired Access: Read","5728"
"10:46:23.0079609 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000025","Query: Name","5728"
"10:46:23.0079724 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0079843 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000039","Desired Access: Maximum Allowed","5728"
"10:46:23.0079967 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\AppID","0.0000021","Length: 112","5728"
"10:46:23.0080078 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000030","Query: Name","5728"
"10:46:23.0080202 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0080321 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\LocalServer","0.0000039","Desired Access: Query Value","5728"
"10:46:23.0080445 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0080556 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\LocalServer","0.0000025","Desired Access: Query Value","5728"
"10:46:23.0080684 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000025","Query: Name","5728"
"10:46:23.0080808 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0080897 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0081000 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000029","Desired Access: Read","5728"
"10:46:23.0081132 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000038","Desired Access: Read","5728"
"10:46:23.0081273 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000025","Query: Name","5728"
"10:46:23.0081392 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0081512 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\Elevation","0.0000038","Desired Access: Read","5728"
"10:46:23.0081635 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0081738 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\Elevation","0.0000025","Desired Access: Read","5728"
"10:46:23.0081874 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000013","","5728"
"10:46:23.0082002 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000013","","5728"
"10:46:23.0082147 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000026","Query: Name","5728"
"10:46:23.0082267 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0082352 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0082455 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000029","Desired Access: Read","5728"
"10:46:23.0082578 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000034","Desired Access: Read","5728"
"10:46:23.0082711 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000029","Query: Name","5728"
"10:46:23.0082826 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0082945 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\TreatAs","0.0000039","Desired Access: Read","5728"
"10:46:23.0083065 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0083163 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}\TreatAs","0.0000025","Desired Access: Read","5728"
"10:46:23.0083291 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{17072F7B-9ABE-4A74-A261-1EB76B55107A}","0.0000008","","5728"
"10:46:23.0086167 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.0086606 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","5728"
"10:46:23.0086764 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000060","","5728"
"10:46:23.0088005 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000128","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.0088398 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wscapi.dll","0.0000085","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:23.0088944 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wscapi.dll","0.0000017","SyncType: SyncTypeOther","5728"
"10:46:23.0090152 AM","firefox.exe","7384","Load Image","C:\Windows\System32\wscapi.dll","0.0000000","Image Base: 0x7ffb17be0000, Image Size: 0x4b000","5728"
"10:46:23.0090600 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\wscapi.dll","0.0000093","Name: \Windows\System32\wscapi.dll","5728"
"10:46:23.0092055 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\SideBySide","0.0000140","Desired Access: Read","5728"
"10:46:23.0092443 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest","0.0000047","Length: 20","5728"
"10:46:23.0092716 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide","0.0000021","","5728"
"10:46:23.0094679 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000234","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.0098941 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000077","","5728"
"10:46:23.0100575 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000081","","5728"
"10:46:23.0104065 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.0104645 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000047","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","5728"
"10:46:23.0104884 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000094","","5728"
"10:46:23.0106753 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000188","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.0107338 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\urlmon.dll","0.0000081","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:23.0107841 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\urlmon.dll","0.0000030","SyncType: SyncTypeOther","5728"
"10:46:23.0108985 AM","firefox.exe","7384","Load Image","C:\Windows\System32\urlmon.dll","0.0000000","Image Base: 0x7ffb38e80000, Image Size: 0x1c8000","5728"
"10:46:23.0109420 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\urlmon.dll","0.0000068","Name: \Windows\System32\urlmon.dll","5728"
"10:46:23.0111933 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000107","","5728"
"10:46:23.0117399 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000221","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.0118000 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000056","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","5728"
"10:46:23.0118260 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000073","","5728"
"10:46:23.0119600 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000137","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.0120001 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\iertutil.dll","0.0000060","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:23.0120321 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\iertutil.dll","0.0000017","SyncType: SyncTypeOther","5728"
"10:46:23.0121298 AM","firefox.exe","7384","Load Image","C:\Windows\System32\iertutil.dll","0.0000000","Image Base: 0x7ffb38bd0000, Image Size: 0x2a6000","5728"
"10:46:23.0121870 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\iertutil.dll","0.0000073","Name: \Windows\System32\iertutil.dll","5728"
"10:46:23.0123918 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000090","","5728"
"10:46:23.0144436 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\WindowsRuntime","0.0000103","Desired Access: Read","5728"
"10:46:23.0144739 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId","0.0000039","Desired Access: Read","5728"
"10:46:23.0144919 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.UserProfile.GlobalizationPreferences","0.0000111","Desired Access: Read","5728"
"10:46:23.0145166 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.UserProfile.GlobalizationPreferences","0.0000034","Query: Basic, Name: Windows.System.UserProfile.GlobalizationPreferences","5728"
"10:46:23.0145443 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.UserProfile.GlobalizationPreferences\ActivationType","0.0000035","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:23.0145601 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.UserProfile.GlobalizationPreferences\Server","0.0000022","Length: 144","5728"
"10:46:23.0145729 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.UserProfile.GlobalizationPreferences\DllPath","0.0000026","Type: REG_SZ, Length: 92, Data: C:\Windows\System32\Windows.Globalization.dll","5728"
"10:46:23.0145857 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.UserProfile.GlobalizationPreferences\Threading","0.0000022","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:23.0145968 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.UserProfile.GlobalizationPreferences\TrustLevel","0.0000026","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:23.0146096 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.UserProfile.GlobalizationPreferences","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0146220 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.UserProfile.GlobalizationPreferences\CustomAttributes","0.0000030","Desired Access: Read","5728"
"10:46:23.0146361 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.UserProfile.GlobalizationPreferences\RemoteServer","0.0000021","Length: 144","5728"
"10:46:23.0146472 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.UserProfile.GlobalizationPreferences\ActivateAsUser","0.0000021","Length: 16","5728"
"10:46:23.0146578 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.UserProfile.GlobalizationPreferences\ActivateInSharedBroker","0.0000022","Length: 16","5728"
"10:46:23.0146689 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.UserProfile.GlobalizationPreferences\Permissions","0.0000017","Length: 140","5728"
"10:46:23.0146830 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0146945 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\OLE\Diagnosis","0.0000047","Desired Access: Read","5728"
"10:46:23.0147295 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.System.UserProfile.GlobalizationPreferences","0.0000017","","5728"
"10:46:23.0150525 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.0150849 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000043","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","5728"
"10:46:23.0151011 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000060","","5728"
"10:46:23.0152159 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000128","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.0152471 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\Windows.Globalization.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:23.0152756 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\Windows.Globalization.dll","0.0000013","SyncType: SyncTypeOther","5728"
"10:46:23.0153802 AM","firefox.exe","7384","Load Image","C:\Windows\System32\Windows.Globalization.dll","0.0000000","Image Base: 0x7ffb33130000, Image Size: 0x189000","5728"
"10:46:23.0154314 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000085","Name: \Windows\System32\Windows.Globalization.dll","5728"
"10:46:23.0156426 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000145","","5728"
"10:46:23.0160313 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.0160829 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000068","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","5728"
"10:46:23.0161098 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000089","","5728"
"10:46:23.0163035 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000149","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.0163385 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\BCP47Langs.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:23.0163666 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\BCP47Langs.dll","0.0000017","SyncType: SyncTypeOther","5728"
"10:46:23.0164870 AM","firefox.exe","7384","Load Image","C:\Windows\System32\BCP47Langs.dll","0.0000000","Image Base: 0x7ffb35310000, Image Size: 0x50000","5728"
"10:46:23.0165177 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000072","Name: \Windows\System32\BCP47Langs.dll","5728"
"10:46:23.0166380 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000081","","5728"
"10:46:23.0168833 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.0169251 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000035","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","5728"
"10:46:23.0169414 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000055","","5728"
"10:46:23.0170958 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000141","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.0171363 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\BCP47mrm.dll","0.0000056","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:23.0171662 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\BCP47mrm.dll","0.0000017","SyncType: SyncTypeOther","5728"
"10:46:23.0172703 AM","firefox.exe","7384","Load Image","C:\Windows\System32\BCP47mrm.dll","0.0000000","Image Base: 0x7ffb37650000, Image Size: 0x29000","5728"
"10:46:23.0173032 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000064","Name: \Windows\System32\BCP47mrm.dll","5728"
"10:46:23.0174167 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000085","","5728"
"10:46:23.0181134 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.0181552 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000039","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","5728"
"10:46:23.0181731 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000052","","5728"
"10:46:23.0184014 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000064","Desired Access: Read","5728"
"10:46:23.0184232 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0184381 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000064","Desired Access: Read","5728"
"10:46:23.0184710 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000025","","5728"
"10:46:23.0184893 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000021","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0185166 AM","firefox.exe","7384","RegOpenKey","HKCU\Control Panel\International\User Profile","0.0000081","Desired Access: Read","5728"
"10:46:23.0185640 AM","firefox.exe","7384","RegQueryValue","HKCU\Control Panel\International\User Profile\Languages","0.0000051","Length: 12","5728"
"10:46:23.0185887 AM","firefox.exe","7384","RegQueryValue","HKCU\Control Panel\International\User Profile\Languages","0.0000039","Type: REG_MULTI_SZ, Length: 12, Data: en-US","5728"
"10:46:23.0186681 AM","firefox.exe","7384","RegCloseKey","HKCU\Control Panel\International\User Profile","0.0000021","","5728"
"10:46:23.0186898 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000017","","5728"
"10:46:23.0195189 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000029","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0195453 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion","0.0000115","Desired Access: Read","5728"
"10:46:23.0195794 AM","firefox.exe","7384","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion","0.0000017","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:23.0196085 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\UBR","0.0000046","Length: 12","5728"
"10:46:23.0196336 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\UBR","0.0000039","Length: 12","5728"
"10:46:23.0196797 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\UBR","0.0000060","Type: REG_DWORD, Length: 4, Data: 706","5728"
"10:46:23.0197194 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion","0.0000021","","5728"
"10:46:23.0199541 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000046","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0199814 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000085","Desired Access: Query Value","5728"
"10:46:23.0200065 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000086","Desired Access: Query Value","5728"
"10:46:23.0200291 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000060","Desired Access: Query Value","5728"
"10:46:23.0200530 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\HardwareInformation.qwMemorySize","0.0000120","Length: 20","5728"
"10:46:23.0200842 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000021","","5728"
"10:46:23.0201025 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0201209 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000064","Desired Access: Query Value","5728"
"10:46:23.0201409 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000060","Desired Access: Query Value","5728"
"10:46:23.0201601 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000043","Desired Access: Query Value","5728"
"10:46:23.0201793 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\HardwareInformation.MemorySize","0.0000103","Type: REG_BINARY, Length: 4, Data: 00 00 00 40","5728"
"10:46:23.0202066 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000035","","5728"
"10:46:23.0202898 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0203078 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000059","Desired Access: Query Value","5728"
"10:46:23.0203270 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000055","Desired Access: Query Value","5728"
"10:46:23.0203449 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000042","Desired Access: Query Value","5728"
"10:46:23.0203641 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\InstalledDisplayDrivers","0.0000047","Length: 144","5728"
"10:46:23.0203824 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\InstalledDisplayDrivers","0.0000034","Type: REG_MULTI_SZ, Length: 186, Data: igdumdim64, igd10iumd64, igd10iumd64, igd12umd64, igdumdim32, igd10iumd32, igd10iumd32, igd12umd32","5728"
"10:46:23.0204042 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000013","","5728"
"10:46:23.0221309 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0221616 AM","firefox.exe","7384","RegCreateKey","HKCU\SOFTWARE\Mozilla\Firefox\Launcher","0.0000154","Desired Access: All Access, Disposition: REG_OPENED_EXISTING_KEY","5728"
"10:46:23.0222086 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Mozilla\Firefox\Launcher\C:\Program Files\Firefox Nightly\firefox.exe|Launcher","0.0000550","Type: REG_QWORD, Length: 8, Data: ","5728"
"10:46:23.0222824 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Mozilla\Firefox\Launcher\C:\Program Files\Firefox Nightly\firefox.exe|Browser","0.0000111","Type: REG_QWORD, Length: 8, Data: ","5728"
"10:46:23.0223225 AM","firefox.exe","7384","RegSetValue","HKCU\Software\Mozilla\Firefox\Launcher\C:\Program Files\Firefox Nightly\firefox.exe|Telemetry","0.0000072","Type: REG_DWORD, Length: 4, Data: 1","5728"
"10:46:23.0223545 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Mozilla\Firefox\Launcher","0.0000021","","5728"
"10:46:23.0260174 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-current.bin","0.0994886","Offset: 3,145,728, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5948"
"10:46:23.0296121 AM","firefox.exe","7384","CreateFile","C:\ProgramData","0.0000290","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5728"
"10:46:23.0298126 AM","firefox.exe","7384","CreateFile","C:\ProgramData","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.0298378 AM","firefox.exe","7384","QueryBasicInformationFile","C:\ProgramData","0.0000038","CreationTime: 4/11/2018 4:38:20 PM, LastAccessTime: 5/7/2019 11:35:35 AM, LastWriteTime: 5/7/2019 11:35:35 AM, ChangeTime: 5/7/2019 11:35:35 AM, FileAttributes: HD","5728"
"10:46:23.0298510 AM","firefox.exe","7384","CloseFile","C:\ProgramData","0.0000047","","5728"
"10:46:23.0299492 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000029","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0299667 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Mozilla\Firefox\TaskBarIDs","0.0000170","Desired Access: Query Value","5728"
"10:46:23.0299965 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Mozilla\Firefox\TaskBarIDs\C:\Program Files\Firefox Nightly","0.0000030","Length: 12","5728"
"10:46:23.0300123 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Mozilla\Firefox\TaskBarIDs","0.0000017","","5728"
"10:46:23.0300243 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.0300388 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Mozilla\Firefox\TaskBarIDs","0.0000051","Desired Access: Query Value","5728"
"10:46:23.0300550 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Mozilla\Firefox\TaskBarIDs\C:\Program Files\Firefox Nightly","0.0000034","Type: REG_SZ, Length: 34, Data: 6F193CCC56814779","5728"
"10:46:23.0300708 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Mozilla\Firefox\TaskBarIDs","0.0000012","","5728"
"10:46:23.0302589 AM","firefox.exe","7384","CreateFile","C:\ProgramData\Mozilla","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.0302884 AM","firefox.exe","7384","QueryBasicInformationFile","C:\ProgramData\Mozilla","0.0000034","CreationTime: 1/10/2019 10:29:55 AM, LastAccessTime: 1/10/2019 10:30:06 AM, LastWriteTime: 1/10/2019 10:30:06 AM, ChangeTime: 3/25/2020 10:26:40 AM, FileAttributes: DNCI","5728"
"10:46:23.0302999 AM","firefox.exe","7384","CloseFile","C:\ProgramData\Mozilla","0.0000042","","5728"
"10:46:23.0304010 AM","firefox.exe","7384","CreateFile","C:\ProgramData\Mozilla","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.0304262 AM","firefox.exe","7384","QueryInformationVolume","C:\ProgramData\Mozilla","0.0000025","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","5728"
"10:46:23.0304390 AM","firefox.exe","7384","QueryAllInformationFile","C:\ProgramData\Mozilla","0.0000051","CreationTime: 1/10/2019 10:29:55 AM, LastAccessTime: 1/10/2019 10:30:06 AM, LastWriteTime: 1/10/2019 10:30:06 AM, ChangeTime: 3/25/2020 10:26:40 AM, FileAttributes: DNCI, AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: True, IndexNumber: 0x80000000145e6, EaSize: 0, Access: Read Attributes, Synchronize, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","5728"
"10:46:23.0304531 AM","firefox.exe","7384","CloseFile","C:\ProgramData\Mozilla","0.0000038","","5728"
"10:46:23.0307210 AM","firefox.exe","7384","CreateFile","C:\ProgramData\Mozilla\updates\6F193CCC56814779\updates\0\update.status","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:23.0309040 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ucrtbase.dll","0.0574576","Offset: 713,728, Length: 3,584, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:23.0885779 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ucrtbase.dll","0.0107124","Offset: 705,536, Length: 11,776, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:23.1486676 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Temp\firefox\parent.lock","0.0001020","","5728"
"10:46:23.1495406 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Temp\firefox\parent.lock","0.0000448","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.1496182 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Temp\firefox\parent.lock","0.0000098","CreationTime: 3/26/2020 10:46:20 AM, LastAccessTime: 3/26/2020 10:46:20 AM, LastWriteTime: 3/26/2020 10:46:20 AM, ChangeTime: 3/26/2020 10:46:20 AM, FileAttributes: A","5728"
"10:46:23.1496549 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Temp\firefox\parent.lock","0.0000137","","5728"
"10:46:23.1499642 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Temp\firefox\parent.lock","0.0000530","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.1500526 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Local\Temp\firefox\parent.lock","0.0000098","Attributes: A, ReparseTag: 0x0","5728"
"10:46:23.1500940 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Local\Temp\firefox\parent.lock","0.0000200","Delete: True","5728"
"10:46:23.1501409 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Temp\firefox\parent.lock","0.0001476","","5728"
"10:46:23.1508927 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Temp\firefox","0.0000358","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.1509597 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Temp\firefox","0.0000081","CreationTime: 3/26/2020 10:46:20 AM, LastAccessTime: 3/26/2020 10:46:23 AM, LastWriteTime: 3/26/2020 10:46:23 AM, ChangeTime: 3/26/2020 10:46:23 AM, FileAttributes: D","5728"
"10:46:23.1509912 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Temp\firefox","0.0000384","","5728"
"10:46:23.1513181 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Temp\firefox","0.0000452","Desired Access: Read Attributes, Delete, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.1513953 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Local\Temp\firefox","0.0000089","Attributes: D, ReparseTag: 0x0","5728"
"10:46:23.1514320 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Local\Temp\firefox","0.0000179","Delete: True","5728"
"10:46:23.1514751 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Temp\firefox","0.0001207","","5728"
"10:46:23.1521744 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000128","Query: Name","5728"
"10:46:23.1522209 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000025","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1522482 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000026","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1522840 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000137","Desired Access: Read","5728"
"10:46:23.1523305 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000338","Desired Access: Read","5728"
"10:46:23.1523963 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000089","Query: Name","5728"
"10:46:23.1524291 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000026","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1524675 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\TreatAs","0.0000120","Desired Access: Query Value","5728"
"10:46:23.1525008 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000021","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1525260 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\TreatAs","0.0000064","Desired Access: Query Value","5728"
"10:46:23.1525520 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000072","Query: Name","5728"
"10:46:23.1525895 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000077","Query: Name","5728"
"10:46:23.1526198 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1526557 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000106","Desired Access: Maximum Allowed","5728"
"10:46:23.1526907 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\(Default)","0.0000076","Length: 12","5728"
"10:46:23.1527218 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000077","Query: Name","5728"
"10:46:23.1527517 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000025","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1527854 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000106","Desired Access: Maximum Allowed","5728"
"10:46:23.1528178 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\(Default)","0.0000068","Type: REG_SZ, Length: 50, Data: MMDeviceEnumerator class","5728"
"10:46:23.1528489 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000073","Query: Name","5728"
"10:46:23.1528788 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000026","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1529121 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000107","Desired Access: Read","5728"
"10:46:23.1529441 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1529718 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000150","Desired Access: Read","5728"
"10:46:23.1530153 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000086","Query: Name","5728"
"10:46:23.1530473 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1530815 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000111","Desired Access: Maximum Allowed","5728"
"10:46:23.1531169 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32\InprocServer32","0.0000064","Length: 12","5728"
"10:46:23.1531459 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000081","Query: Name","5728"
"10:46:23.1531771 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000025","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1532099 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000107","Desired Access: Maximum Allowed","5728"
"10:46:23.1532432 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32\(Default)","0.0000055","Length: 12","5728"
"10:46:23.1532731 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000081","Query: Name","5728"
"10:46:23.1533042 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1533379 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000102","Desired Access: Maximum Allowed","5728"
"10:46:23.1533708 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32\(Default)","0.0000068","Type: REG_EXPAND_SZ, Length: 70, Data: %SystemRoot%\System32\MMDevApi.dll","5728"
"10:46:23.1534053 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000077","Query: Name","5728"
"10:46:23.1534360 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000026","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1534689 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000102","Desired Access: Maximum Allowed","5728"
"10:46:23.1535009 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32\(Default)","0.0000064","Type: REG_EXPAND_SZ, Length: 70, Data: %SystemRoot%\System32\MMDevApi.dll","5728"
"10:46:23.1535333 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000077","Query: Name","5728"
"10:46:23.1535640 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000026","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1535973 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000098","Desired Access: Maximum Allowed","5728"
"10:46:23.1536293 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32\ThreadingModel","0.0000068","Type: REG_SZ, Length: 10, Data: both","5728"
"10:46:23.1536711 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000039","","5728"
"10:46:23.1536989 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000072","Query: Name","5728"
"10:46:23.1537279 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1537582 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocHandler32","0.0000102","Desired Access: Query Value","5728"
"10:46:23.1537897 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000026","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1538175 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocHandler32","0.0000072","Desired Access: Query Value","5728"
"10:46:23.1538478 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000068","Query: Name","5728"
"10:46:23.1538768 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1539084 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocHandler","0.0000102","Desired Access: Query Value","5728"
"10:46:23.1539408 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1539681 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocHandler","0.0000077","Desired Access: Query Value","5728"
"10:46:23.1540103 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000030","","5728"
"10:46:23.1541217 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000081","Query: Name","5728"
"10:46:23.1541605 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000026","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1541878 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000069","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1542254 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000111","Desired Access: Read","5728"
"10:46:23.1542676 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000132","Desired Access: Read","5728"
"10:46:23.1543107 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000085","Query: Name","5728"
"10:46:23.1543453 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000025","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1543824 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\TreatAs","0.0000111","Desired Access: Query Value","5728"
"10:46:23.1544191 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000025","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1544502 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\TreatAs","0.0000069","Desired Access: Query Value","5728"
"10:46:23.1544814 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000077","Query: Name","5728"
"10:46:23.1545198 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000077","Query: Name","5728"
"10:46:23.1545543 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000026","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1545919 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000106","Desired Access: Maximum Allowed","5728"
"10:46:23.1546299 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\(Default)","0.0000064","Length: 12","5728"
"10:46:23.1546623 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000077","Query: Name","5728"
"10:46:23.1546943 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1547293 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000102","Desired Access: Maximum Allowed","5728"
"10:46:23.1547647 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\(Default)","0.0000064","Type: REG_SZ, Length: 50, Data: MMDeviceEnumerator class","5728"
"10:46:23.1547988 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000081","Query: Name","5728"
"10:46:23.1548329 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1548701 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000111","Desired Access: Read","5728"
"10:46:23.1549072 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1549388 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000089","Desired Access: Read","5728"
"10:46:23.1549780 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000081","Query: Name","5728"
"10:46:23.1550130 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1550505 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000107","Desired Access: Maximum Allowed","5728"
"10:46:23.1550885 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32\InprocServer32","0.0000064","Length: 12","5728"
"10:46:23.1551222 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000081","Query: Name","5728"
"10:46:23.1551568 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000025","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1551926 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000107","Desired Access: Maximum Allowed","5728"
"10:46:23.1552297 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32\(Default)","0.0000060","Length: 12","5728"
"10:46:23.1552617 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000082","Query: Name","5728"
"10:46:23.1552959 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000025","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1553326 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000106","Desired Access: Maximum Allowed","5728"
"10:46:23.1553693 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32\(Default)","0.0000068","Type: REG_EXPAND_SZ, Length: 70, Data: %SystemRoot%\System32\MMDevApi.dll","5728"
"10:46:23.1554068 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000081","Query: Name","5728"
"10:46:23.1554414 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000025","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1554781 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000106","Desired Access: Maximum Allowed","5728"
"10:46:23.1555143 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32\(Default)","0.0000077","Type: REG_EXPAND_SZ, Length: 70, Data: %SystemRoot%\System32\MMDevApi.dll","5728"
"10:46:23.1555523 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000081","Query: Name","5728"
"10:46:23.1555860 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1556236 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000102","Desired Access: Maximum Allowed","5728"
"10:46:23.1556603 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32\ThreadingModel","0.0000072","Type: REG_SZ, Length: 10, Data: both","5728"
"10:46:23.1557016 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocServer32","0.0000026","","5728"
"10:46:23.1557251 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000068","Query: Name","5728"
"10:46:23.1557520 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000021","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1557789 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocHandler32","0.0000085","Desired Access: Query Value","5728"
"10:46:23.1558062 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000021","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1558305 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocHandler32","0.0000055","Desired Access: Query Value","5728"
"10:46:23.1558527 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000055","Query: Name","5728"
"10:46:23.1558744 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1558962 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocHandler","0.0000073","Desired Access: Query Value","5728"
"10:46:23.1559188 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000021","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1559376 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\InprocHandler","0.0000051","Desired Access: Query Value","5728"
"10:46:23.1559593 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000052","Query: Name","5728"
"10:46:23.1559807 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1560020 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\LocalServer32","0.0000068","Desired Access: Read","5728"
"10:46:23.1560242 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1560421 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\LocalServer32","0.0000051","Desired Access: Read","5728"
"10:46:23.1560639 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000051","Query: Name","5728"
"10:46:23.1560848 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1561065 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000069","Desired Access: Maximum Allowed","5728"
"10:46:23.1561292 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\AppID","0.0000042","Length: 112","5728"
"10:46:23.1561496 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000047","Query: Name","5728"
"10:46:23.1561705 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000018","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1561919 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\LocalServer","0.0000072","Desired Access: Query Value","5728"
"10:46:23.1562145 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1562328 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\LocalServer","0.0000047","Desired Access: Query Value","5728"
"10:46:23.1562542 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000047","Query: Name","5728"
"10:46:23.1562768 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1562930 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1563105 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000060","Desired Access: Read","5728"
"10:46:23.1563344 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000089","Desired Access: Read","5728"
"10:46:23.1563613 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000055","Query: Name","5728"
"10:46:23.1563830 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1564044 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\Elevation","0.0000068","Desired Access: Read","5728"
"10:46:23.1564261 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000022","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1564440 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\Elevation","0.0000052","Desired Access: Read","5728"
"10:46:23.1564696 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000017","","5728"
"10:46:23.1564927 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000017","","5728"
"10:46:23.1565179 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000046","Query: Name","5728"
"10:46:23.1565388 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1565631 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000025","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1565900 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000072","Desired Access: Read","5728"
"10:46:23.1566245 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000107","Desired Access: Read","5728"
"10:46:23.1566621 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000081","Query: Name","5728"
"10:46:23.1566877 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1567094 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\TreatAs","0.0000077","Desired Access: Read","5728"
"10:46:23.1567312 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1567483 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}\TreatAs","0.0000046","Desired Access: Read","5728"
"10:46:23.1567721 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{BCDE0395-E52F-467C-8E3D-C4579291692E}","0.0000022","","5728"
"10:46:23.1572987 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000388","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.1573853 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000076","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","5728"
"10:46:23.1574262 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000141","","5728"
"10:46:23.1576707 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000256","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.1577450 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\MMDevAPI.dll","0.0000106","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:23.1577983 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\MMDevAPI.dll","0.0000030","SyncType: SyncTypeOther","5728"
"10:46:23.1579766 AM","firefox.exe","7384","Load Image","C:\Windows\System32\MMDevAPI.dll","0.0000000","Image Base: 0x7ffb3bb60000, Image Size: 0x76000","5728"
"10:46:23.1580458 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000119","Name: \Windows\System32\MMDevAPI.dll","5728"
"10:46:23.1582689 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000154","","5728"
"10:46:23.1587118 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.1587830 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000064","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","5728"
"10:46:23.1588095 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000089","","5728"
"10:46:23.1590122 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000230","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.1590791 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\propsys.dll","0.0000052","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:23.1591244 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\propsys.dll","0.0000030","SyncType: SyncTypeOther","5728"
"10:46:23.1592822 AM","firefox.exe","7384","Load Image","C:\Windows\System32\propsys.dll","0.0000000","Image Base: 0x7ffb42540000, Image Size: 0x1b4000","5728"
"10:46:23.1593407 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\propsys.dll","0.0000111","Name: \Windows\System32\propsys.dll","5728"
"10:46:23.1596039 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000150","","5728"
"10:46:23.1838800 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1839031 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Render\{831645a2-8559-4547-a2e1-37d786bd1bf4}","0.0000115","Desired Access: Read","5728"
"10:46:23.1839321 AM","firefox.exe","7384","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Render\{831645a2-8559-4547-a2e1-37d786bd1bf4}","0.0000013","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:23.1839547 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Render\{831645a2-8559-4547-a2e1-37d786bd1bf4}","0.0000021","","5728"
"10:46:23.1840187 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.1840370 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Render\{831645a2-8559-4547-a2e1-37d786bd1bf4}\Properties","0.0000111","Desired Access: Read","5728"
"10:46:23.1840622 AM","firefox.exe","7384","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Render\{831645a2-8559-4547-a2e1-37d786bd1bf4}\Properties","0.0000017","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:23.1840853 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Render\{831645a2-8559-4547-a2e1-37d786bd1bf4}\Properties\{12d83bd7-cf12-46be-8540-812710d3021c},1","0.0000072","Length: 12","5728"
"10:46:23.1845486 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000329","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.1846224 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000077","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","5728"
"10:46:23.1846480 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000098","","5728"
"10:46:23.1848511 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000239","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.1849190 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\AudioSes.dll","0.0000102","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:23.1849655 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\AudioSes.dll","0.0000025","SyncType: SyncTypeOther","5728"
"10:46:23.1851306 AM","firefox.exe","7384","Load Image","C:\Windows\System32\AudioSes.dll","0.0000000","Image Base: 0x7ffb39a10000, Image Size: 0x12c000","5728"
"10:46:23.1851869 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\AudioSes.dll","0.0000115","Name: \Windows\System32\AudioSes.dll","5728"
"10:46:23.1857258 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000162","","5728"
"10:46:23.1862216 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\AudioSes.dll","0.0063825","Offset: 1,109,504, Length: 14,336, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:23.1926625 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\AudioSes.dll","0.0029850","Offset: 1,093,120, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:23.1957008 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\AudioSes.dll","0.0005193","Offset: 1,080,832, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:23.1963140 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\AudioSes.dll","0.0004032","Offset: 1,000,448, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:23.1972475 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000384","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.1973166 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000073","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","5728"
"10:46:23.1973469 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000103","","5728"
"10:46:23.1975214 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{825e8fd3-6467-4a5b-abfb-bb010734ff4d}","0.0000115","Desired Access: All Access","5728"
"10:46:23.1975756 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{825e8fd3-6467-4a5b-abfb-bb010734ff4d}","0.0000060","Desired Access: All Access","5728"
"10:46:23.1979148 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\AudioSes.dll","0.0004015","Offset: 996,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:23.1983389 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Render\{831645a2-8559-4547-a2e1-37d786bd1bf4}\Properties\{b3f8fa53-0004-438e-9003-51a46e139bfc},22","0.0000132","Length: 12","5728"
"10:46:23.2368768 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.Core.CoreWindow","0.0000200","Desired Access: Read","5728"
"10:46:23.2369195 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.Core.CoreWindow","0.0000051","Query: Basic, Name: Windows.UI.Core.CoreWindow","5728"
"10:46:23.2369527 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.Core.CoreWindow\ActivationType","0.0000052","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:23.2369766 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.Core.CoreWindow\Server","0.0000047","Length: 144","5728"
"10:46:23.2369967 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.Core.CoreWindow\DllPath","0.0000047","Type: REG_SZ, Length: 70, Data: C:\Windows\System32\Windows.UI.dll","5728"
"10:46:23.2370176 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.Core.CoreWindow\Threading","0.0000043","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:23.2370355 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.Core.CoreWindow\TrustLevel","0.0000043","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:23.2370551 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.Core.CoreWindow","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.2370735 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.Core.CoreWindow\CustomAttributes","0.0000051","Desired Access: Read","5728"
"10:46:23.2370961 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.Core.CoreWindow\RemoteServer","0.0000038","Length: 144","5728"
"10:46:23.2371136 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.Core.CoreWindow\ActivateAsUser","0.0000038","Length: 16","5728"
"10:46:23.2371311 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.Core.CoreWindow\ActivateInSharedBroker","0.0000038","Length: 16","5728"
"10:46:23.2371486 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.Core.CoreWindow\Permissions","0.0000038","Length: 140","5728"
"10:46:23.2371789 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.Core.CoreWindow","0.0000021","","5728"
"10:46:23.2376691 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000312","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.2377233 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000068","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","5728"
"10:46:23.2377493 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000107","","5728"
"10:46:23.2379520 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000226","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.2380049 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\Windows.UI.dll","0.0000307","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:23.2380774 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\Windows.UI.dll","0.0000034","SyncType: SyncTypeOther","5728"
"10:46:23.2382673 AM","firefox.exe","7384","Load Image","C:\Windows\System32\Windows.UI.dll","0.0000000","Image Base: 0x7ffb351c0000, Image Size: 0x114000","5728"
"10:46:23.2383202 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000115","Name: \Windows\System32\Windows.UI.dll","5728"
"10:46:23.2385404 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000157","","5728"
"10:46:23.2389726 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.2390216 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000060","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","5728"
"10:46:23.2390460 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000081","","5728"
"10:46:23.2392392 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000218","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.2392887 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\InputHost.dll","0.0000154","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:23.2393433 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\InputHost.dll","0.0000035","SyncType: SyncTypeOther","5728"
"10:46:23.2395170 AM","firefox.exe","7384","Load Image","C:\Windows\System32\InputHost.dll","0.0000000","Image Base: 0x7ffb350a0000, Image Size: 0x79000","5728"
"10:46:23.2395678 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\InputHost.dll","0.0000119","Name: \Windows\System32\InputHost.dll","5728"
"10:46:23.2398208 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000149","","5728"
"10:46:23.2405427 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\InputHost.dll","0.0094144","Offset: 454,656, Length: 15,360, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:23.2504320 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0001378","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.2507063 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000214","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","5728"
"10:46:23.2508143 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000367","","5728"
"10:46:23.2522701 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}","0.0000444","Desired Access: All Access","5728"
"10:46:23.2524198 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\Properties","0.0000141","Desired Access: Query Value","5728"
"10:46:23.2612711 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}","0.0000085","","5728"
"10:46:23.2614652 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}","0.0000149","Desired Access: Query Value","5728"
"10:46:23.2615381 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\Properties","0.0000116","Desired Access: Query Value","5728"
"10:46:23.2616047 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}","0.0000047","","5728"
"10:46:23.2619179 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Enum\HDAUDIO\FUNC_01&VEN_10EC&DEV_0255&SUBSYS_10251094&REV_1000\4&37380CD4&0&0001","0.0000363","Desired Access: Query Value, Maximum Allowed","5728"
"10:46:23.2620096 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Enum\HDAUDIO\FUNC_01&VEN_10EC&DEV_0255&SUBSYS_10251094&REV_1000\4&37380cd4&0&0001\ConfigFlags","0.0000141","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:23.2620689 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Enum\HDAUDIO\FUNC_01&VEN_10EC&DEV_0255&SUBSYS_10251094&REV_1000\4&37380cd4&0&0001","0.0000047","","5728"
"10:46:23.2622362 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}","0.0000124","Desired Access: All Access","5728"
"10:46:23.2623096 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\Properties","0.0000106","Desired Access: Query Value","5728"
"10:46:23.2696064 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}","0.0000073","","5728"
"10:46:23.2698027 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}","0.0000162","Desired Access: Query Value","5728"
"10:46:23.2698761 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}\Properties","0.0000119","Desired Access: Query Value","5728"
"10:46:23.2699388 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{6994ad04-93ef-11d0-a3cc-00a0c9223196}","0.0000038","","5728"
"10:46:23.2715691 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000094","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.2716442 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\SQMServiceList","0.0000209","Desired Access: Query Value","5728"
"10:46:23.2717073 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\SQMServiceList","0.0000329","Desired Access: Query Value","5728"
"10:46:23.2717918 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\SQMServiceList\SQMServiceList","0.0000128","Type: REG_SZ, Length: 54, Data: netprofm,netman,dcomlaunch","5728"
"10:46:23.2718597 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\SQMServiceList","0.0000059","","5728"
"10:46:23.2726119 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\WMI\Security\6e7b1892-5288-5fe5-8f34-e3b0dc671fd2","0.0000746","Length: 524","5728"
"10:46:23.2728670 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Render\{831645a2-8559-4547-a2e1-37d786bd1bf4}\Properties","0.0000068","","5728"
"10:46:23.2753041 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000666","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.2754786 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000175","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:23.2755422 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000303","","740"
"10:46:23.2765108 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000635","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.2766196 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000145","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:23.2766729 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000213","","740"
"10:46:23.2779409 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000879","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.2780928 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000320","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:23.2782076 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000376","","740"
"10:46:23.2801374 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0001144","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.2804092 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000260","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:23.2808538 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000508","","740"
"10:46:23.2821713 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000393","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.2823198 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000107","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:23.2823629 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000154","","740"
"10:46:23.2825485 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000299","Desired Access: Read","740"
"10:46:23.2829078 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\ntdll.dll.mui","0.0000418","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.2830021 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\ntdll.dll.mui","0.0000077","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.2830405 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\ntdll.dll.mui","0.0000145","AllocationSize: 442,368, EndOfFile: 440,320, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.2831109 AM","firefox.exe","7384","CreateFile","C:\ProgramData\Mozilla\updates\6F193CCC56814779","0.0000405","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5728"
"10:46:23.2831156 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\ntdll.dll.mui","0.0000051","SyncType: SyncTypeOther","740"
"10:46:23.2839211 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000376","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.2840180 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000089","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:23.2840568 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000132","","740"
"10:46:23.2844754 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 4904","5728"
"10:46:23.2847104 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000406","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.2848047 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000077","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:23.2848384 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000133","","740"
"10:46:23.2854354 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000324","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.2855279 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000094","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:23.2855642 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000141","","740"
"10:46:23.2857016 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000222","Desired Access: Read","740"
"10:46:23.2860374 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\kernel32.dll.mui","0.0000405","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.2861287 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\kernel32.dll.mui","0.0000072","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.2861654 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\kernel32.dll.mui","0.0000085","AllocationSize: 974,848, EndOfFile: 971,264, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.2862272 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\kernel32.dll.mui","0.0000052","SyncType: SyncTypeOther","740"
"10:46:23.2869180 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.2870136 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000094","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:23.2870486 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000098","","740"
"10:46:23.2876399 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.2876852 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000059","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:23.2877065 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000085","","740"
"10:46:23.2881490 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.2881895 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000055","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:23.2882104 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000081","","740"
"10:46:23.2883098 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000213","Desired Access: Read","740"
"10:46:23.2885598 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\KernelBase.dll.mui","0.0000406","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.2886469 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\KernelBase.dll.mui","0.0000077","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.2886819 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\KernelBase.dll.mui","0.0000098","AllocationSize: 1,269,760, EndOfFile: 1,269,248, NumberOfLinks: 2, DeletePending: False, Directory: False","740"
"10:46:23.2887442 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\KernelBase.dll.mui","0.0000047","SyncType: SyncTypeOther","740"
"10:46:23.2894081 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000320","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.2894627 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000094","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:23.2894917 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000119","","740"
"10:46:23.2901752 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000414","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.2902729 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000098","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:23.2903075 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000145","","740"
"10:46:23.2909133 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000367","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.2910046 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000099","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:23.2910405 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000145","","740"
"10:46:23.2911698 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000281","Desired Access: Read","740"
"10:46:23.2915265 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\advapi32.dll.mui","0.0000456","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.2916143 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\advapi32.dll.mui","0.0000069","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.2916438 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\advapi32.dll.mui","0.0000072","AllocationSize: 4,096, EndOfFile: 4,096, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.2916894 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\advapi32.dll.mui","0.0000039","SyncType: SyncTypeOther","740"
"10:46:23.2922275 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000320","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.2922612 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000520","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.2923068 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000094","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:23.2923469 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000128","","740"
"10:46:23.2923713 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000110","CreationTime: 6/19/2019 4:53:35 PM, LastAccessTime: 6/19/2019 4:53:35 PM, LastWriteTime: 3/26/2020 10:29:03 AM, ChangeTime: 3/26/2020 10:29:03 AM, AllocationSize: 524288, EndOfFile: 524288, FileAttributes: A","5728"
"10:46:23.2924276 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000170","","5728"
"10:46:23.2928538 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000640","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5728"
"10:46:23.2930305 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000260","Offset: 0, Length: 100, Priority: Normal","5728"
"10:46:23.2932766 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000393","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.2932916 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000102","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:23.2933449 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000056","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:23.2933739 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000086","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:23.2933893 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000051","Offset: 1,073,741,824, Length: 1","5728"
"10:46:23.2934093 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000137","","740"
"10:46:23.2936013 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\d3d11.dll","0.0000372","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.2936982 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000085","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","1120"
"10:46:23.2937400 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\d3d11.dll","0.0000120","","1120"
"10:46:23.2937541 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-current.bin","0.0856475","Offset: 4,194,304, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5948"
"10:46:23.2940609 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-journal","0.0000413","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:23.2941624 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000380","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.2942610 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000094","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:23.2943024 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000136","","740"
"10:46:23.2945025 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\dxgi.dll","0.0000388","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.2946053 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000094","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","1120"
"10:46:23.2946467 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\dxgi.dll","0.0000132","","1120"
"10:46:23.2946740 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-wal","0.0000388","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:23.2947747 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000098","AllocationSize: 524,288, EndOfFile: 524,288, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:23.2948766 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000201","Offset: 0, Length: 32,768","5728"
"10:46:23.2948958 AM","firefox.exe","8864","Thread Create","","0.0000000","Thread ID: 4840","296"
"10:46:23.2949022 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000363","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.2949953 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000085","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:23.2950379 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000137","","740"
"10:46:23.2951681 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000401","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.2952589 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000094","AllocationSize: 581,632, EndOfFile: 579,272, NumberOfLinks: 1, DeletePending: False, Directory: False","1120"
"10:46:23.2953037 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000141","","1120"
"10:46:23.2954108 AM","firefox.exe","1008","RegQueryKey","HKCU","0.0000107","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:23.2954616 AM","firefox.exe","1008","RegOpenKey","HKCU\Software\Microsoft\Direct3D","0.0000141","Desired Access: Read","1120"
"10:46:23.2954680 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-wal","0.0000384","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:23.2955081 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:23.2955422 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\Direct3D","0.0000137","Desired Access: Read","1120"
"10:46:23.2956412 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000350","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.2956506 AM","firefox.exe","8864","Thread Create","","0.0000000","Thread ID: 8696","296"
"10:46:23.2957338 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000086","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:23.2957701 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000132","","740"
"10:46:23.2957893 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-wal","0.0002406","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","5728"
"10:46:23.2963333 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000431","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.2964084 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000085","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 3/20/2019 7:51:16 PM, FileAttributes: A","1120"
"10:46:23.2964464 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000145","","1120"
"10:46:23.2964621 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0001485","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.2966669 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000675","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:23.2967186 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000106","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:23.2967612 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000158","","740"
"10:46:23.2969089 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000268","Desired Access: Read","740"
"10:46:23.2971184 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0002440","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","5728"
"10:46:23.2973172 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000384","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.2973266 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\sechost.dll.mui","0.0000422","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.2974123 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\ResourcePolicyClient.dll","0.0000086","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:23.2974170 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\sechost.dll.mui","0.0000064","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.2974362 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000107","Exclusive: True, Offset: 128, Length: 1, Fail Immediately: True","5728"
"10:46:23.2974477 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\sechost.dll.mui","0.0000077","AllocationSize: 4,096, EndOfFile: 2,560, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.2974601 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000085","AllocationSize: 143,360, EndOfFile: 140,048, NumberOfLinks: 2, DeletePending: False, Directory: False","1120"
"10:46:23.2975049 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000696","EndOfFile: 0","5728"
"10:46:23.2975126 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\sechost.dll.mui","0.0000055","SyncType: SyncTypeOther","740"
"10:46:23.2975433 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\ResourcePolicyClient.dll","0.0000056","SyncType: SyncTypeOther","1120"
"10:46:23.2976214 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000546","AllocationSize: 0","5728"
"10:46:23.2976747 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000167","","1120"
"10:46:23.2977217 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000064","Offset: 128, Length: 1","5728"
"10:46:23.2977635 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000055","Exclusive: False, Offset: 128, Length: 1, Fail Immediately: True","5728"
"10:46:23.2978074 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000081","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:23.2978531 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000055","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","5728"
"10:46:23.2978915 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000072","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:23.2979388 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0001617","EndOfFile: 32,768","5728"
"10:46:23.2981739 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000559","AllocationSize: 32,768","5728"
"10:46:23.2982891 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000086","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:23.2983361 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000081","AllocationSize: 32,768, EndOfFile: 32,768, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:23.2983890 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000431","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.2984231 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000060","SyncType: SyncTypeOther","5728"
"10:46:23.2984922 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000086","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:23.2985281 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000482","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.2985323 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000158","","740"
"10:46:23.2985460 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000209","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:23.2986236 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000099","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 3/20/2019 7:51:16 PM, FileAttributes: A","1120"
"10:46:23.2986271 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000076","Exclusive: True, Offset: 121, Length: 2, Fail Immediately: True","5728"
"10:46:23.2986706 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000042","Exclusive: True, Offset: 124, Length: 4, Fail Immediately: True","5728"
"10:46:23.2986770 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000149","","1120"
"10:46:23.2987132 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-wal","0.0000077","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:23.2987265 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000405","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8696"
"10:46:23.2987636 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000060","Offset: 121, Length: 2","5728"
"10:46:23.2988041 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000039","Offset: 124, Length: 4","5728"
"10:46:23.2988395 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000043","Offset: 120, Length: 1","5728"
"10:46:23.2988417 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000076","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","8696"
"10:46:23.2988711 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000149","","8696"
"10:46:23.2988771 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000068","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5728"
"10:46:23.2989466 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000069","AllocationSize: 524,288, EndOfFile: 524,288, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:23.2990025 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000188","Offset: 0, Length: 32,768","5728"
"10:46:23.2990840 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000337","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.2991685 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\ResourcePolicyClient.dll","0.0000077","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:23.2992287 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000328","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.2992389 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite-shm","0.0000064","Offset: 123, Length: 1","5728"
"10:46:23.2992534 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\ResourcePolicyClient.dll","0.0000051","SyncType: SyncTypeOther","1120"
"10:46:23.2993144 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000085","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:23.2993494 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000141","","740"
"10:46:23.2994531 AM","firefox.exe","1008","Load Image","C:\Windows\System32\ResourcePolicyClient.dll","0.0000000","Image Base: 0x7ffb442e0000, Image Size: 0x24000","1120"
"10:46:23.2997398 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000474","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8696"
"10:46:23.2998367 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000162","","1120"
"10:46:23.2998802 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000081","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8696"
"10:46:23.3000112 AM","firefox.exe","1008","QueryNameInformationFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000115","Name: \Windows\System32\ResourcePolicyClient.dll","1120"
"10:46:23.3000240 AM","firefox.exe","8864","QueryEAFile","C:\Windows\System32\NapiNSP.dll","0.0000157","","8696"
"10:46:23.3000321 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000448","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.3000581 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000388","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3000897 AM","firefox.exe","8864","FileSystemControl","C:\Windows\System32\NapiNSP.dll","0.0000102","Control: FSCTL_GET_EXTERNAL_BACKING","8696"
"10:46:23.3001153 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000089","CreationTime: 6/19/2019 4:53:35 PM, LastAccessTime: 6/19/2019 4:53:35 PM, LastWriteTime: 3/26/2020 10:29:03 AM, ChangeTime: 3/26/2020 10:29:03 AM, AllocationSize: 524288, EndOfFile: 524288, FileAttributes: A","5728"
"10:46:23.3001434 AM","firefox.exe","8864","FileSystemControl","C:\Windows\System32\NapiNSP.dll","0.0000094","Control: FSCTL_QUERY_USN_JOURNAL","8696"
"10:46:23.3001558 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000090","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:23.3001601 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cookies.sqlite","0.0000145","","5728"
"10:46:23.3001989 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000145","","740"
"10:46:23.3002096 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\SecurityManager\TransientObjects\%5C%5C.%5CRpc%5CAllowLpacAppExperience%5CInterface","0.0000392","Desired Access: Read","1120"
"10:46:23.3002147 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000072","SyncType: SyncTypeOther","8696"
"10:46:23.3002906 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\SecurityManager\TransientObjects\%5C%5C.%5CRpc%5CAllowLpacAppExperience%5CInterface\SecurityDescriptor","0.0000090","Length: 16","1120"
"10:46:23.3003299 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\SecurityManager\TransientObjects\%5C%5C.%5CRpc%5CAllowLpacAppExperience%5CInterface\SecurityDescriptor","0.0000081","Type: REG_BINARY, Length: 264, Data: 01 00 04 80 00 00 00 00 00 00 00 00 00 00 00 00","1120"
"10:46:23.3003324 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000197","Desired Access: Read","740"
"10:46:23.3003696 AM","firefox.exe","8864","Load Image","C:\Windows\System32\NapiNSP.dll","0.0000000","Image Base: 0x7ffb3cce0000, Image Size: 0x16000","8696"
"10:46:23.3003738 AM","firefox.exe","1008","RegCloseKey","HKLM\SOFTWARE\Microsoft\SecurityManager\TransientObjects\%5C%5C.%5CRpc%5CAllowLpacAppExperience%5CInterface","0.0000043","","1120"
"10:46:23.3004549 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000107","Name: \Windows\System32\NapiNSP.dll","8696"
"10:46:23.3005159 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000081","Name: \Windows\System32\NapiNSP.dll","8696"
"10:46:23.3006614 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\rpcrt4.dll.mui","0.0000431","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3007540 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\rpcrt4.dll.mui","0.0000085","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.3007907 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\rpcrt4.dll.mui","0.0000089","AllocationSize: 24,576, EndOfFile: 22,016, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.3008547 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\rpcrt4.dll.mui","0.0000055","SyncType: SyncTypeOther","740"
"10:46:23.3008743 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000422","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.3009601 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000094","CreationTime: 6/19/2019 4:53:26 PM, LastAccessTime: 3/26/2020 10:46:23 AM, LastWriteTime: 3/26/2020 10:46:23 AM, ChangeTime: 3/26/2020 10:46:23 AM, AllocationSize: 16384, EndOfFile: 16384, FileAttributes: D","5728"
"10:46:23.3009793 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000290","","8696"
"10:46:23.3010125 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000141","","5728"
"10:46:23.3013965 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000436","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.3014849 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000076","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,878, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5728"
"10:46:23.3015254 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000350","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3015301 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000154","","5728"
"10:46:23.3016099 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000077","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:23.3016487 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000184","","740"
"10:46:23.3026620 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 5068","7276"
"10:46:23.3029577 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000162","Query: Name","5728"
"10:46:23.3029680 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000729","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3030328 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000039","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3030729 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3031071 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000089","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:23.3031199 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{00000160-0000-0000-C000-000000000046}","0.0000221","Desired Access: Read","5728"
"10:46:23.3031429 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000145","","740"
"10:46:23.3031907 AM","firefox.exe","7384","RegOpenKey","HKCR\Interface\{00000160-0000-0000-C000-000000000046}","0.0000354","Desired Access: Read","5728"
"10:46:23.3032739 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{00000160-0000-0000-C000-000000000046}","0.0000106","Query: Name","5728"
"10:46:23.3033208 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{00000160-0000-0000-C000-000000000046}","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3033729 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{00000160-0000-0000-C000-000000000046}\ProxyStubClsid32","0.0000196","Desired Access: Read","5728"
"10:46:23.3034279 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{00000160-0000-0000-C000-000000000046}","0.0000039","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3034842 AM","firefox.exe","7384","RegOpenKey","HKCR\Interface\{00000160-0000-0000-C000-000000000046}\ProxyStubClsid32","0.0000192","Desired Access: Read","5728"
"10:46:23.3035470 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{00000160-0000-0000-C000-000000000046}\ProxyStubClsid32","0.0000098","Query: Name","5728"
"10:46:23.3035939 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{00000160-0000-0000-C000-000000000046}\ProxyStubClsid32","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3036442 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{00000160-0000-0000-C000-000000000046}\ProxyStubClsid32","0.0000184","Desired Access: Maximum Allowed","5728"
"10:46:23.3036997 AM","firefox.exe","7384","RegQueryValue","HKCR\Interface\{00000160-0000-0000-C000-000000000046}\ProxyStubClsid32\(Default)","0.0000090","Type: REG_SZ, Length: 78, Data: {00000320-0000-0000-C000-000000000046}","5728"
"10:46:23.3037543 AM","firefox.exe","7384","RegCloseKey","HKCR\Interface\{00000160-0000-0000-C000-000000000046}\ProxyStubClsid32","0.0000047","","5728"
"10:46:23.3037577 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0149347","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.3037961 AM","firefox.exe","7384","RegCloseKey","HKCR\Interface\{00000160-0000-0000-C000-000000000046}","0.0000034","","5728"
"10:46:23.3038277 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000538","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3039438 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000089","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:23.3039787 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000145","","740"
"10:46:23.3041456 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000042","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3041882 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Ole\Extensions","0.0000226","Desired Access: Query Value","5728"
"10:46:23.3042492 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Ole\Extensions\DragDropExtension","0.0000086","Type: REG_SZ, Length: 78, Data: {9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","5728"
"10:46:23.3043427 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000478","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8696"
"10:46:23.3043555 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000102","Query: Name","5728"
"10:46:23.3044024 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3044374 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3044442 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000094","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","8696"
"10:46:23.3044775 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000141","","8696"
"10:46:23.3044788 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000119","Desired Access: Read","5728"
"10:46:23.3045044 AM","firefox.exe","1008","RegQueryKey","HKCU","0.0000051","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:23.3045321 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000295","Desired Access: Read","5728"
"10:46:23.3045547 AM","firefox.exe","1008","RegOpenKey","HKCU\Software\Microsoft\DirectX\UserGpuPreferences","0.0000137","Desired Access: Read","1120"
"10:46:23.3046042 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000116","Query: Name","5728"
"10:46:23.3046495 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000029","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3046990 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\TreatAs","0.0000140","Desired Access: Query Value","5728"
"10:46:23.3047203 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000414","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3047455 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000038","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3047856 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\TreatAs","0.0000089","Desired Access: Query Value","5728"
"10:46:23.3048261 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000094","Query: Name","5728"
"10:46:23.3048389 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000102","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:23.3048521 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000410","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8696"
"10:46:23.3048764 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000090","Query: Name","5728"
"10:46:23.3048803 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000166","","740"
"10:46:23.3049183 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3049682 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000132","Desired Access: Maximum Allowed","5728"
"10:46:23.3049771 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000090","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8696"
"10:46:23.3050177 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\(Default)","0.0000064","Length: 12","5728"
"10:46:23.3050599 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000090","Query: Name","5728"
"10:46:23.3051043 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3051162 AM","firefox.exe","8864","QueryEAFile","C:\Windows\System32\pnrpnsp.dll","0.0000154","","8696"
"10:46:23.3051508 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InprocServer32","0.0000128","Desired Access: Read","5728"
"10:46:23.3051798 AM","firefox.exe","8864","FileSystemControl","C:\Windows\System32\pnrpnsp.dll","0.0000107","Control: FSCTL_GET_EXTERNAL_BACKING","8696"
"10:46:23.3051960 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3052310 AM","firefox.exe","8864","FileSystemControl","C:\Windows\System32\pnrpnsp.dll","0.0000094","Control: FSCTL_QUERY_USN_JOURNAL","8696"
"10:46:23.3052370 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InprocServer32","0.0000179","Desired Access: Read","5728"
"10:46:23.3053074 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000102","SyncType: SyncTypeOther","8696"
"10:46:23.3053198 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000115","Query: Name","5728"
"10:46:23.3053569 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d11.dll","0.0274569","Offset: 3,042,304, Length: 14,336, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.3053697 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3054396 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000146","Desired Access: Maximum Allowed","5728"
"10:46:23.3054879 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32\InprocServer32","0.0000115","Length: 12","5728"
"10:46:23.3055310 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000128","Query: Name","5728"
"10:46:23.3055476 AM","firefox.exe","8864","Load Image","C:\Windows\System32\pnrpnsp.dll","0.0000000","Image Base: 0x7ffb3ca40000, Image Size: 0x1a000","8696"
"10:46:23.3055775 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3056244 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000124","Desired Access: Maximum Allowed","5728"
"10:46:23.3056380 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000116","Name: \Windows\System32\pnrpnsp.dll","8696"
"10:46:23.3056470 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000474","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3056683 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32\(Default)","0.0000073","Length: 12","5728"
"10:46:23.3057106 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000141","Query: Name","5728"
"10:46:23.3057200 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000115","Name: \Windows\System32\pnrpnsp.dll","8696"
"10:46:23.3057596 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3057682 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000098","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:23.3058083 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000162","","740"
"10:46:23.3058096 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000123","Desired Access: Maximum Allowed","5728"
"10:46:23.3058569 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32\(Default)","0.0000081","Type: REG_EXPAND_SZ, Length: 78, Data: %SystemRoot%\system32\dataexchange.dll","5728"
"10:46:23.3059401 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000150","Query: Name","5728"
"10:46:23.3060033 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000038","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3060476 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000197","","8696"
"10:46:23.3060660 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000166","Desired Access: Maximum Allowed","5728"
"10:46:23.3061236 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32\(Default)","0.0000090","Type: REG_EXPAND_SZ, Length: 78, Data: %SystemRoot%\system32\dataexchange.dll","5728"
"10:46:23.3061761 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000111","Query: Name","5728"
"10:46:23.3063911 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000039","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3064444 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000150","Desired Access: Maximum Allowed","5728"
"10:46:23.3064858 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000406","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3065609 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000094","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:23.3065925 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32\ThreadingModel","0.0000098","Type: REG_SZ, Length: 10, Data: Both","5728"
"10:46:23.3066002 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000141","","740"
"10:46:23.3066569 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000043","","5728"
"10:46:23.3067009 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000111","Query: Name","5728"
"10:46:23.3067491 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3068041 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InprocHandler32","0.0000145","Desired Access: Query Value","5728"
"10:46:23.3068553 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000039","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3069006 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InprocHandler32","0.0000093","Desired Access: Query Value","5728"
"10:46:23.3069466 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000094","Query: Name","5728"
"10:46:23.3069902 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3070294 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000384","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8696"
"10:46:23.3070384 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InprocHandler","0.0000132","Desired Access: Query Value","5728"
"10:46:23.3070853 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3071173 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000094","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","8696"
"10:46:23.3071416 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InprocHandler","0.0000103","Desired Access: Query Value","5728"
"10:46:23.3071702 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000124","","8696"
"10:46:23.3072048 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000042","","5728"
"10:46:23.3072103 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000333","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3072730 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000086","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:23.3073076 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000149","","740"
"10:46:23.3073524 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000098","Query: Name","5728"
"10:46:23.3074049 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000038","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3074424 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000026","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3074868 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000111","Desired Access: Read","5728"
"10:46:23.3074898 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000614","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8696"
"10:46:23.3075414 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000158","Desired Access: Read","5728"
"10:46:23.3075994 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000098","Query: Name","5728"
"10:46:23.3076374 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000077","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8696"
"10:46:23.3076476 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000035","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3076993 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\TreatAs","0.0000115","Desired Access: Query Value","5728"
"10:46:23.3077129 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000047","SyncType: SyncTypeOther","8696"
"10:46:23.3077471 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3077884 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\TreatAs","0.0000077","Desired Access: Query Value","5728"
"10:46:23.3078286 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000098","Query: Name","5728"
"10:46:23.3078734 AM","firefox.exe","8864","Load Image","C:\Windows\System32\nlaapi.dll","0.0000000","Image Base: 0x7ffb423c0000, Image Size: 0x19000","8696"
"10:46:23.3078819 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000094","Query: Name","5728"
"10:46:23.3079288 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000068","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3079608 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\nlaapi.dll","0.0000128","Name: \Windows\System32\nlaapi.dll","8696"
"10:46:23.3079864 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000124","Desired Access: Maximum Allowed","5728"
"10:46:23.3080316 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\nlaapi.dll","0.0000090","Name: \Windows\System32\nlaapi.dll","8696"
"10:46:23.3080393 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\(Default)","0.0000064","Length: 12","5728"
"10:46:23.3080828 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000099","Query: Name","5728"
"10:46:23.3081298 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3081801 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InprocServer32","0.0000133","Desired Access: Read","5728"
"10:46:23.3081818 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000384","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3082394 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3082766 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000136","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:23.3082847 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InprocServer32","0.0000140","Desired Access: Read","5728"
"10:46:23.3083175 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000132","","740"
"10:46:23.3083435 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000099","Query: Name","5728"
"10:46:23.3083448 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000179","","8696"
"10:46:23.3084058 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3084579 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000128","Desired Access: Maximum Allowed","5728"
"10:46:23.3085095 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32\InprocServer32","0.0000073","Length: 12","5728"
"10:46:23.3085539 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000098","Query: Name","5728"
"10:46:23.3085995 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000035","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3086507 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000133","Desired Access: Maximum Allowed","5728"
"10:46:23.3087002 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32\(Default)","0.0000077","Length: 12","5728"
"10:46:23.3087463 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000103","Query: Name","5728"
"10:46:23.3087941 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3088432 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000123","Desired Access: Maximum Allowed","5728"
"10:46:23.3088905 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32\(Default)","0.0000086","Type: REG_EXPAND_SZ, Length: 78, Data: %SystemRoot%\system32\dataexchange.dll","5728"
"10:46:23.3089413 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000098","Query: Name","5728"
"10:46:23.3089878 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3090394 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000128","Desired Access: Maximum Allowed","5728"
"10:46:23.3090902 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32\(Default)","0.0000077","Type: REG_EXPAND_SZ, Length: 78, Data: %SystemRoot%\system32\dataexchange.dll","5728"
"10:46:23.3091414 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000090","Query: Name","5728"
"10:46:23.3091875 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3092374 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000132","Desired Access: Maximum Allowed","5728"
"10:46:23.3092656 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000465","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3092895 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32\ThreadingModel","0.0000081","Type: REG_SZ, Length: 10, Data: Both","5728"
"10:46:23.3093501 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InProcServer32","0.0000038","","5728"
"10:46:23.3093675 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\mswsock.dll","0.0000431","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8696"
"10:46:23.3093752 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000094","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:23.3093927 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000103","Query: Name","5728"
"10:46:23.3094128 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000141","","740"
"10:46:23.3094409 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3094614 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000098","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","8696"
"10:46:23.3094926 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InprocHandler32","0.0000132","Desired Access: Query Value","5728"
"10:46:23.3094934 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\mswsock.dll","0.0000137","","8696"
"10:46:23.3095442 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3095489 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000252","Desired Access: Read","740"
"10:46:23.3095898 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InprocHandler32","0.0000111","Desired Access: Query Value","5728"
"10:46:23.3096385 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000098","Query: Name","5728"
"10:46:23.3096846 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3097319 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InprocHandler","0.0000124","Desired Access: Query Value","5728"
"10:46:23.3097797 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3098232 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\InprocHandler","0.0000090","Desired Access: Query Value","5728"
"10:46:23.3098719 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000098","Query: Name","5728"
"10:46:23.3099133 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\crypt32.dll.mui","0.0000379","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3099184 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3099363 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\mswsock.dll","0.0000431","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8696"
"10:46:23.3099666 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\LocalServer32","0.0000124","Desired Access: Read","5728"
"10:46:23.3100003 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\crypt32.dll.mui","0.0000072","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.3100148 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3100353 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\crypt32.dll.mui","0.0000085","AllocationSize: 40,960, EndOfFile: 40,448, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.3100656 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\LocalServer32","0.0000085","Desired Access: Read","5728"
"10:46:23.3100801 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000230","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8696"
"10:46:23.3101163 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000094","Query: Name","5728"
"10:46:23.3101317 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\crypt32.dll.mui","0.0000090","SyncType: SyncTypeOther","740"
"10:46:23.3101641 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000060","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3102128 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000132","SyncType: SyncTypeOther","8696"
"10:46:23.3102187 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000154","Desired Access: Maximum Allowed","5728"
"10:46:23.3102725 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\AppID","0.0000068","Length: 112","5728"
"10:46:23.3103173 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000098","Query: Name","5728"
"10:46:23.3103638 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3103864 AM","firefox.exe","8864","Load Image","C:\Windows\System32\mswsock.dll","0.0000000","Image Base: 0x7ffb452b0000, Image Size: 0x66000","8696"
"10:46:23.3104154 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\LocalServer","0.0000128","Desired Access: Query Value","5728"
"10:46:23.3104624 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000038","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3104683 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\mswsock.dll","0.0000103","Name: \Windows\System32\mswsock.dll","8696"
"10:46:23.3105063 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\LocalServer","0.0000094","Desired Access: Query Value","5728"
"10:46:23.3105341 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\mswsock.dll","0.0000089","Name: \Windows\System32\mswsock.dll","8696"
"10:46:23.3105528 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000086","Query: Name","5728"
"10:46:23.3105976 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3106420 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3106838 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000098","Desired Access: Read","5728"
"10:46:23.3107359 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000149","Desired Access: Read","5728"
"10:46:23.3107901 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000098","Query: Name","5728"
"10:46:23.3108319 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3108797 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\Elevation","0.0000128","Desired Access: Read","5728"
"10:46:23.3109206 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\mswsock.dll","0.0000158","","8696"
"10:46:23.3109283 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000038","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3109710 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\Elevation","0.0000119","Desired Access: Read","5728"
"10:46:23.3109872 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000478","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3110290 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000064","","5728"
"10:46:23.3110836 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000030","","5728"
"10:46:23.3110973 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000093","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:23.3111386 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000227","Query: Name","5728"
"10:46:23.3111553 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000217","","740"
"10:46:23.3112035 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3112406 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000068","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3112807 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000103","Desired Access: Read","5728"
"10:46:23.3113289 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000141","Desired Access: Read","5728"
"10:46:23.3113341 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000055","Query: HandleTags, HandleTags: 0x0","8696"
"10:46:23.3113827 AM","firefox.exe","8864","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000149","Desired Access: Read","8696"
"10:46:23.3113848 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000107","Query: Name","5728"
"10:46:23.3114279 AM","firefox.exe","8864","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000184","Desired Access: Read, Disposition: REG_OPENED_EXISTING_KEY","8696"
"10:46:23.3114326 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3114821 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\TreatAs","0.0000137","Desired Access: Read","5728"
"10:46:23.3115098 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000124","Desired Access: Read","8696"
"10:46:23.3115303 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000043","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3115478 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000120","Desired Access: Read","8696"
"10:46:23.3115734 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}\TreatAs","0.0000090","Desired Access: Read","5728"
"10:46:23.3115909 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000038","Query: HandleTags, HandleTags: 0x0","8696"
"10:46:23.3116523 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{9FC8E510-A27C-4B3B-B9A3-BF65F00256A8}","0.0000043","","5728"
"10:46:23.3117769 AM","firefox.exe","8864","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters","0.0000128","Desired Access: Read","8696"
"10:46:23.3118209 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000166","Desired Access: Read","8696"
"10:46:23.3118704 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","8696"
"10:46:23.3119041 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\DnsClient","0.0000141","Desired Access: Read","8696"
"10:46:23.3119096 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000406","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3119566 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000085","Length: 12","8696"
"10:46:23.3119937 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000072","Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","8696"
"10:46:23.3120056 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000094","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:23.3120351 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000038","","8696"
"10:46:23.3120449 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000128","","740"
"10:46:23.3120675 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000026","","8696"
"10:46:23.3121149 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000029","Query: HandleTags, HandleTags: 0x0","8696"
"10:46:23.3121498 AM","firefox.exe","8864","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000107","Desired Access: Read","8696"
"10:46:23.3121861 AM","firefox.exe","8864","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000158","Desired Access: Read, Disposition: REG_OPENED_EXISTING_KEY","8696"
"10:46:23.3122386 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000107","Desired Access: Read","8696"
"10:46:23.3122731 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000103","Desired Access: Read","8696"
"10:46:23.3123107 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","8696"
"10:46:23.3123431 AM","firefox.exe","8864","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters","0.0000098","Desired Access: Read","8696"
"10:46:23.3123610 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000593","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.3123862 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000277","Desired Access: Read","8696"
"10:46:23.3124472 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000039","Query: HandleTags, HandleTags: 0x0","8696"
"10:46:23.3124750 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000098","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","5728"
"10:46:23.3124809 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\DnsClient","0.0000124","Desired Access: Read","8696"
"10:46:23.3125257 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000222","Length: 12","8696"
"10:46:23.3125321 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000141","","5728"
"10:46:23.3125795 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000077","Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","8696"
"10:46:23.3126222 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000038","","8696"
"10:46:23.3126554 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000035","","8696"
"10:46:23.3126943 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","8696"
"10:46:23.3127280 AM","firefox.exe","8864","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000102","Desired Access: Read","8696"
"10:46:23.3127634 AM","firefox.exe","8864","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000166","Desired Access: Read, Disposition: REG_OPENED_EXISTING_KEY","8696"
"10:46:23.3129366 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000060","Desired Access: Read","8696"
"10:46:23.3129451 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3129558 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000051","Desired Access: Read","8696"
"10:46:23.3129571 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000235","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.3129759 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8696"
"10:46:23.3129925 AM","firefox.exe","8864","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters","0.0000047","Desired Access: Read","8696"
"10:46:23.3130057 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000052","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:23.3130096 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000068","Desired Access: Read","8696"
"10:46:23.3130121 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DataExchange.dll","0.0000086","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:23.3130313 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8696"
"10:46:23.3130335 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000068","","740"
"10:46:23.3130454 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\DnsClient","0.0000056","Desired Access: Read","8696"
"10:46:23.3130621 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","8696"
"10:46:23.3130697 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DataExchange.dll","0.0000026","SyncType: SyncTypeOther","5728"
"10:46:23.3130731 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Policies\Microsoft\System\DNSClient","0.0000043","Desired Access: Query Value","8696"
"10:46:23.3130881 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Domain","0.0000030","Length: 12","8696"
"10:46:23.3131009 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Domain","0.0000025","Type: REG_SZ, Length: 2, Data: ","8696"
"10:46:23.3131226 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000022","","8696"
"10:46:23.3131389 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000017","","8696"
"10:46:23.3131662 AM","firefox.exe","7384","Load Image","C:\Windows\System32\DataExchange.dll","0.0000000","Image Base: 0x7ffb29d40000, Image Size: 0x58000","5728"
"10:46:23.3132169 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\DataExchange.dll","0.0000069","Name: \Windows\System32\DataExchange.dll","5728"
"10:46:23.3135224 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000094","","5728"
"10:46:23.3135557 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3136065 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000042","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:23.3136253 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000064","","740"
"10:46:23.3137127 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\winrnr.dll","0.0000261","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8696"
"10:46:23.3137349 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Ole\Extensions","0.0000030","","5728"
"10:46:23.3138173 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000341","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","8696"
"10:46:23.3139342 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\winrnr.dll","0.0000106","","8696"
"10:46:23.3152112 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0001502","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3154911 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\winrnr.dll","0.0002338","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8696"
"10:46:23.3155039 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000072","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:23.3155162 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000619","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.3155363 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000073","","740"
"10:46:23.3156024 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000039","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","5728"
"10:46:23.3156255 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000059","","5728"
"10:46:23.3157735 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8696"
"10:46:23.3158478 AM","firefox.exe","8864","QueryEAFile","C:\Windows\System32\winrnr.dll","0.0000076","","8696"
"10:46:23.3158682 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000197","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.3158793 AM","firefox.exe","8864","FileSystemControl","C:\Windows\System32\winrnr.dll","0.0000047","Control: FSCTL_GET_EXTERNAL_BACKING","8696"
"10:46:23.3159037 AM","firefox.exe","8864","FileSystemControl","C:\Windows\System32\winrnr.dll","0.0000047","Control: FSCTL_QUERY_USN_JOURNAL","8696"
"10:46:23.3159143 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\twinapi.appcore.dll","0.0000128","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:23.3159416 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000030","SyncType: SyncTypeOther","8696"
"10:46:23.3159638 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\twinapi.appcore.dll","0.0000026","SyncType: SyncTypeOther","5728"
"10:46:23.3159681 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3160154 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000043","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:23.3160334 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000072","","740"
"10:46:23.3160419 AM","firefox.exe","7384","Load Image","C:\Windows\System32\twinapi.appcore.dll","0.0000000","Image Base: 0x7ffb44310000, Image Size: 0x1b8000","5728"
"10:46:23.3160709 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000047","Name: \Windows\System32\twinapi.appcore.dll","5728"
"10:46:23.3161289 AM","firefox.exe","8864","Load Image","C:\Windows\System32\winrnr.dll","0.0000000","Image Base: 0x7ffb41370000, Image Size: 0xe000","8696"
"10:46:23.3161720 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\winrnr.dll","0.0000056","Name: \Windows\System32\winrnr.dll","8696"
"10:46:23.3162053 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\winrnr.dll","0.0000047","Name: \Windows\System32\winrnr.dll","8696"
"10:46:23.3162488 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000081","","5728"
"10:46:23.3163384 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\winrnr.dll","0.0000145","","8696"
"10:46:23.3164165 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3164703 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:23.3164899 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000073","","740"
"10:46:23.3165855 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.3166836 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000047","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","5728"
"10:46:23.3167101 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000068","","5728"
"10:46:23.3170535 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000205","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.3170646 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\wshbth.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8696"
"10:46:23.3170719 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3171056 AM","firefox.exe","8864","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","8696"
"10:46:23.3171201 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rmclient.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:23.3171231 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000047","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:23.3171239 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\wshbth.dll","0.0000073","","8696"
"10:46:23.3171418 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000069","","740"
"10:46:23.3171721 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rmclient.dll","0.0000030","SyncType: SyncTypeOther","5728"
"10:46:23.3172430 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\msvcp140.dll","0.0050952","Offset: 414,208, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","740"
"10:46:23.3172839 AM","firefox.exe","7384","Load Image","C:\Windows\System32\rmclient.dll","0.0000000","Image Base: 0x7ffb44520000, Image Size: 0x29000","5728"
"10:46:23.3173078 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\rmclient.dll","0.0000047","Name: \Windows\System32\rmclient.dll","5728"
"10:46:23.3173727 AM","firefox.exe","8864","CreateFile","C:\Windows\System32\wshbth.dll","0.0000243","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8696"
"10:46:23.3174371 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000094","","5728"
"10:46:23.3174448 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8696"
"10:46:23.3174926 AM","firefox.exe","8864","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000025","SyncType: SyncTypeOther","8696"
"10:46:23.3175702 AM","firefox.exe","8864","Load Image","C:\Windows\System32\wshbth.dll","0.0000000","Image Base: 0x7ffb3bf70000, Image Size: 0x15000","8696"
"10:46:23.3176069 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\wshbth.dll","0.0000056","Name: \Windows\System32\wshbth.dll","8696"
"10:46:23.3176381 AM","firefox.exe","8864","QueryNameInformationFile","C:\Windows\System32\wshbth.dll","0.0000047","Name: \Windows\System32\wshbth.dll","8696"
"10:46:23.3177895 AM","firefox.exe","8864","CloseFile","C:\Windows\System32\wshbth.dll","0.0000077","","8696"
"10:46:23.3179687 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","8696"
"10:46:23.3179943 AM","firefox.exe","8864","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000090","Desired Access: Read","8696"
"10:46:23.3180204 AM","firefox.exe","8864","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000366","Desired Access: Read, Disposition: REG_OPENED_EXISTING_KEY","8696"
"10:46:23.3180835 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000064","Desired Access: Read","8696"
"10:46:23.3181048 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000073","Desired Access: Read","8696"
"10:46:23.3181274 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","8696"
"10:46:23.3181449 AM","firefox.exe","8864","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters","0.0000047","Desired Access: Read","8696"
"10:46:23.3181616 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000077","Desired Access: Read","8696"
"10:46:23.3181829 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8696"
"10:46:23.3181974 AM","firefox.exe","8864","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\DnsClient","0.0000094","Desired Access: Read","8696"
"10:46:23.3182226 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000043","Length: 12","8696"
"10:46:23.3182388 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000034","Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","8696"
"10:46:23.3182597 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000021","","8696"
"10:46:23.3182759 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000013","","8696"
"10:46:23.3183971 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","8696"
"10:46:23.3184159 AM","firefox.exe","8864","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Winsock\Parameters","0.0000059","Desired Access: Read","8696"
"10:46:23.3184342 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock\Parameters","0.0000158","Desired Access: Read","8696"
"10:46:23.3184671 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\Winsock\Parameters\Transports","0.0000038","Length: 12","8696"
"10:46:23.3184944 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\Winsock\Parameters\Transports","0.0000047","Type: REG_MULTI_SZ, Length: 92, Data: afunix, Tcpip, Tcpip6, Psched, vmbus, irda, RFCOMM","8696"
"10:46:23.3185157 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\Winsock\Parameters","0.0000021","","8696"
"10:46:23.3185370 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","8696"
"10:46:23.3185541 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock","0.0001148","Desired Access: Read","8696"
"10:46:23.3186761 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\AudioSes.dll","0.0025327","Offset: 1,041,408, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:23.3186932 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock","0.0000184","Desired Access: Read","8696"
"10:46:23.3187205 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0000167","CreationTime: 6/19/2019 4:53:45 PM, LastAccessTime: 6/19/2019 4:53:45 PM, LastWriteTime: 3/26/2020 10:35:41 AM, ChangeTime: 3/26/2020 10:35:41 AM, AllocationSize: 8192, EndOfFile: 7168, FileAttributes: A","5068"
"10:46:23.3187312 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock\Mapping","0.0000038","Length: 12","8696"
"10:46:23.3187444 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock\Mapping","0.0000030","Type: REG_BINARY, Length: 20, Data: 01 00 00 00 03 00 00 00 01 00 00 00 01 00 00 00","8696"
"10:46:23.3187593 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock","0.0000013","","8696"
"10:46:23.3187636 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0000094","","5068"
"10:46:23.3187785 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8696"
"10:46:23.3187913 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000043","Desired Access: Read","8696"
"10:46:23.3188046 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000089","Desired Access: Read","8696"
"10:46:23.3188246 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock\Mapping","0.0000026","Length: 12","8696"
"10:46:23.3188344 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock\Mapping","0.0000039","Type: REG_BINARY, Length: 104, Data: 08 00 00 00 03 00 00 00 02 00 00 00 01 00 00 00","8696"
"10:46:23.3188498 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000013","","8696"
"10:46:23.3188600 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","8696"
"10:46:23.3188703 AM","firefox.exe","8864","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Winsock\Setup Migration\Providers","0.0000051","Desired Access: Read","8696"
"10:46:23.3188869 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers","0.0000085","Desired Access: Read","8696"
"10:46:23.3189044 AM","firefox.exe","8864","RegQueryKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers","0.0000013","Query: HandleTags, HandleTags: 0x0","8696"
"10:46:23.3189138 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers\Tcpip","0.0000051","Desired Access: Read","8696"
"10:46:23.3189283 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers\Tcpip\WinSock 2.0 Provider ID","0.0000026","Type: REG_BINARY, Length: 16, Data: A0 1A 0F E7 8B AB CF 11 8C A3 00 80 5F 48 A1 92","8696"
"10:46:23.3189394 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers\Tcpip","0.0000013","","8696"
"10:46:23.3189484 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers","0.0000012","","8696"
"10:46:23.3189586 AM","firefox.exe","8864","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8696"
"10:46:23.3189676 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000034","Desired Access: Read","8696"
"10:46:23.3189778 AM","firefox.exe","8864","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000038","Desired Access: Read","8696"
"10:46:23.3189897 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock\MinSockaddrLength","0.0000026","Type: REG_DWORD, Length: 4, Data: 16","8696"
"10:46:23.3189991 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock\MaxSockaddrLength","0.0000022","Type: REG_DWORD, Length: 4, Data: 16","8696"
"10:46:23.3190085 AM","firefox.exe","8864","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock\UseDelayedAcceptance","0.0000017","Type: REG_DWORD, Length: 4, Data: 0","8696"
"10:46:23.3190188 AM","firefox.exe","8864","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000012","","8696"
"10:46:23.3191604 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.3191992 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0000039","CreationTime: 6/19/2019 4:53:45 PM, LastAccessTime: 6/19/2019 4:53:45 PM, LastWriteTime: 3/26/2020 10:35:41 AM, ChangeTime: 3/26/2020 10:35:41 AM, AllocationSize: 8192, EndOfFile: 7168, FileAttributes: A","5068"
"10:46:23.3192172 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0000055","","5068"
"10:46:23.3192880 AM","firefox.exe","8864","Thread Create","","0.0000000","Thread ID: 8516","8696"
"10:46:23.3193972 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0000324","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:23.3194390 AM","firefox.exe","8864","TCP Connect","LAPTOP-49TAGD3F:49746 -> LAPTOP-49TAGD3F:49745","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65535, rcvwinscale: 0, sndwinscale: 0, seqnum: 0, connid: 0","0"
"10:46:23.3194740 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0772601","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:23.3194813 AM","firefox.exe","8864","TCP Accept","LAPTOP-49TAGD3F:49745 -> LAPTOP-49TAGD3F:49746","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65535, rcvwinscale: 0, sndwinscale: 0, seqnum: 0, connid: 0","0"
"10:46:23.3195308 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0771674","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5068"
"10:46:23.3195901 AM","firefox.exe","8864","TCP Receive","LAPTOP-49TAGD3F:49745 -> LAPTOP-49TAGD3F:49746","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:23.3196110 AM","firefox.exe","8864","TCP Send","LAPTOP-49TAGD3F:49746 -> LAPTOP-49TAGD3F:49745","0.0000000","Length: 1, startime: 39830, endtime: 39830, seqnum: 0, connid: 0","0"
"10:46:23.3197283 AM","firefox.exe","8864","TCP Receive","LAPTOP-49TAGD3F:49745 -> LAPTOP-49TAGD3F:49746","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:23.3197441 AM","firefox.exe","8864","TCP Send","LAPTOP-49TAGD3F:49746 -> LAPTOP-49TAGD3F:49745","0.0000000","Length: 1, startime: 39830, endtime: 39830, seqnum: 0, connid: 0","0"
"10:46:23.3212421 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\AudioSes.dll","0.0084753","Offset: 283,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:23.3226621 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3226962 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000038","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:23.3227107 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000056","","740"
"10:46:23.3229543 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000440","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3230094 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000034","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:23.3230213 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000051","","740"
"10:46:23.3232786 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3233051 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000034","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:23.3233161 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000052","","740"
"10:46:23.3235137 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3235333 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000026","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:23.3235431 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000039","","740"
"10:46:23.3237287 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3237479 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000022","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:23.3237577 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000035","","740"
"10:46:23.3239762 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3240078 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000025","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:23.3240180 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000043","","740"
"10:46:23.3241959 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3242228 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000022","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:23.3242326 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000039","","740"
"10:46:23.3244148 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3244413 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000021","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:23.3244511 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000034","","740"
"10:46:23.3246512 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3246802 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:23.3246900 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000039","","740"
"10:46:23.3248769 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3249029 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000022","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:23.3249123 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000039","","740"
"10:46:23.3250877 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3251133 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:23.3251231 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000038","","740"
"10:46:23.3253296 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3253496 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:23.3253595 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000034","","740"
"10:46:23.3255361 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3255540 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000022","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:23.3255634 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000034","","740"
"10:46:23.3257366 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3257546 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000021","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:23.3257639 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000039","","740"
"10:46:23.3259760 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3259952 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:23.3260046 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000072","","740"
"10:46:23.3262563 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3262840 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000035","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:23.3262990 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000055","","740"
"10:46:23.3265362 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3265554 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:23.3265656 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000039","","740"
"10:46:23.3267726 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3267931 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:23.3268024 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000043","","740"
"10:46:23.3269778 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3269957 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:23.3270051 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000039","","740"
"10:46:23.3271749 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000094","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3271920 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:23.3272014 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000038","","740"
"10:46:23.3274036 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3274343 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:23.3274446 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000038","","740"
"10:46:23.3276289 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3276481 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000021","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:23.3276575 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000038","","740"
"10:46:23.3278273 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3278448 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:23.3278542 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000034","","740"
"10:46:23.3280526 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3280812 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:23.3280914 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000034","","740"
"10:46:23.3282821 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3283000 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000022","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:23.3283094 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000034","","740"
"10:46:23.3284805 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3284980 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:23.3285074 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000034","","740"
"10:46:23.3287135 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3287510 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:23.3287613 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000042","","740"
"10:46:23.3289460 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3289725 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:23.3289827 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000043","","740"
"10:46:23.3290322 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000120","Desired Access: Read","740"
"10:46:23.3291431 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\ws2_32.dll.mui","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3291768 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\ws2_32.dll.mui","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.3291892 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\ws2_32.dll.mui","0.0000030","AllocationSize: 24,576, EndOfFile: 21,504, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.3292093 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\ws2_32.dll.mui","0.0000017","SyncType: SyncTypeOther","740"
"10:46:23.3294064 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3294350 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:23.3294457 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000046","","740"
"10:46:23.3296628 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3296923 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000025","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:23.3297025 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000043","","740"
"10:46:23.3297418 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\AudioSes.dll","0.0110856","Offset: 283,648, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:23.3298945 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3299227 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000025","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:23.3299329 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000043","","740"
"10:46:23.3299811 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000115","Desired Access: Read","740"
"10:46:23.3300959 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\winmm.dll.mui","0.0000158","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3301292 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\winmm.dll.mui","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.3301411 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\winmm.dll.mui","0.0000026","AllocationSize: 24,576, EndOfFile: 23,552, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.3301603 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\winmm.dll.mui","0.0000013","SyncType: SyncTypeOther","740"
"10:46:23.3303596 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3303890 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000026","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:23.3304001 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000043","","740"
"10:46:23.3306237 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3306523 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:23.3306629 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000039","","740"
"10:46:23.3308434 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3308703 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:23.3308801 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000038","","740"
"10:46:23.3309194 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000085","Desired Access: Read","740"
"10:46:23.3310201 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\wsock32.dll.mui","0.0000136","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3310491 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\wsock32.dll.mui","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.3310606 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\wsock32.dll.mui","0.0000030","AllocationSize: 12,288, EndOfFile: 11,264, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.3310794 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\SysWOW64\en-US\wsock32.dll.mui","0.0000012","SyncType: SyncTypeOther","740"
"10:46:23.3312722 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3312999 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:23.3313110 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000060","","740"
"10:46:23.3315999 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3316289 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000038","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:23.3316451 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000060","","740"
"10:46:23.3318759 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3318951 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000026","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:23.3319050 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000042","","740"
"10:46:23.3319451 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000076","Desired Access: Read","740"
"10:46:23.3320458 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\winmmbase.dll.mui","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3320748 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\winmmbase.dll.mui","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.3320859 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\winmmbase.dll.mui","0.0000030","AllocationSize: 8,192, EndOfFile: 8,192, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.3321051 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\winmmbase.dll.mui","0.0000012","SyncType: SyncTypeOther","740"
"10:46:23.3323005 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3323205 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000026","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:23.3323308 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000047","","740"
"10:46:23.3325471 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3325770 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:23.3325872 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000043","","740"
"10:46:23.3327758 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3328027 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:23.3328125 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000038","","740"
"10:46:23.3328496 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d11.dll","0.0107537","Offset: 2,997,248, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.3330011 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3330271 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:23.3330373 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000039","","740"
"10:46:23.3332498 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3332814 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000025","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:23.3332912 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000043","","740"
"10:46:23.3334674 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3334862 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000021","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:23.3334956 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000038","","740"
"10:46:23.3336718 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3336901 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000022","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:23.3336995 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000039","","740"
"10:46:23.3339030 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3339321 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:23.3339423 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000038","","740"
"10:46:23.3341407 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3341590 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000022","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:23.3341680 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000038","","740"
"10:46:23.3343357 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3343532 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:23.3343626 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000034","","740"
"10:46:23.3345896 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3346190 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000026","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:23.3346288 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000038","","740"
"10:46:23.3348140 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3348400 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000026","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:23.3348498 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000043","","740"
"10:46:23.3348886 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000090","Desired Access: Read","740"
"10:46:23.3349902 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\user32.dll.mui","0.0000136","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3350196 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\user32.dll.mui","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.3350316 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\user32.dll.mui","0.0000030","AllocationSize: 20,480, EndOfFile: 17,408, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.3350508 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\user32.dll.mui","0.0000013","SyncType: SyncTypeOther","740"
"10:46:23.3352526 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3352812 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000025","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:23.3352918 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000043","","740"
"10:46:23.3355112 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3355513 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000029","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:23.3355615 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000043","","740"
"10:46:23.3357411 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3357672 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000021","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:23.3357770 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000038","","740"
"10:46:23.3359519 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3359771 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:23.3359873 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000034","","740"
"10:46:23.3361955 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3362233 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000025","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:23.3362331 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000038","","740"
"10:46:23.3364106 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3364362 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000025","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:23.3364460 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000038","","740"
"10:46:23.3366196 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3366448 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000026","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:23.3366542 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000038","","740"
"10:46:23.3368633 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3368825 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000042","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:23.3368940 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000038","","740"
"10:46:23.3371466 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3371743 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000034","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:23.3371892 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000060","","740"
"10:46:23.3374230 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3374422 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000026","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:23.3374521 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000038","","740"
"10:46:23.3376658 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3376854 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000022","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:23.3376948 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000039","","740"
"10:46:23.3377362 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\msvcp_win.dll","0.0467124","Offset: 389,120, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","740"
"10:46:23.3410245 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\AudioSes.dll","0.0018488","Offset: 193,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:23.3429036 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\AudioSes.dll","0.0012800","Offset: 189,440, Length: 28,672, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:23.3436524 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d11.dll","0.0436335","Offset: 2,968,576, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.3444404 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 2956","8024"
"10:46:23.3446943 AM","firefox.exe","7384","Thread Exit","","0.0000000","Thread ID: 6488, User Time: 0.0000000, Kernel Time: 0.0156250","6488"
"10:46:23.3447340 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000111","Query: Name","5728"
"10:46:23.3447843 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000026","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3448104 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000021","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3448624 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209C7-767B-42B2-9FBA-44EE4615F2C7}","0.0000111","Desired Access: Read","5728"
"10:46:23.3449068 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{591209C7-767B-42B2-9FBA-44EE4615F2C7}","0.0000260","Desired Access: Read","5728"
"10:46:23.3449704 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000123","Query: Name","5728"
"10:46:23.3450071 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3450348 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\TreatAs","0.0000090","Desired Access: Query Value","5728"
"10:46:23.3450600 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3450762 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\TreatAs","0.0000047","Desired Access: Query Value","5728"
"10:46:23.3450958 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000056","Query: Name","5728"
"10:46:23.3451231 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000047","Query: Name","5728"
"10:46:23.3451419 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3451602 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000060","Desired Access: Maximum Allowed","5728"
"10:46:23.3451777 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\(Default)","0.0000026","Length: 12","5728"
"10:46:23.3451914 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000034","Query: Name","5728"
"10:46:23.3452046 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3452183 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000034","Desired Access: Maximum Allowed","5728"
"10:46:23.3452315 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\(Default)","0.0000025","Type: REG_SZ, Length: 50, Data: Application Registration","5728"
"10:46:23.3452451 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000030","Query: Name","5728"
"10:46:23.3452584 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3452716 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocServer32","0.0000038","Desired Access: Read","5728"
"10:46:23.3452852 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3452963 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocServer32","0.0000081","Desired Access: Read","5728"
"10:46:23.3453172 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000030","Query: Name","5728"
"10:46:23.3453300 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3453433 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000042","Desired Access: Maximum Allowed","5728"
"10:46:23.3453578 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\InprocServer32","0.0000021","Length: 12","5728"
"10:46:23.3453697 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000030","Query: Name","5728"
"10:46:23.3453825 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3453958 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000038","Desired Access: Maximum Allowed","5728"
"10:46:23.3454094 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\(Default)","0.0000017","Length: 12","5728"
"10:46:23.3454312 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000030","Query: Name","5728"
"10:46:23.3454440 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3454572 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000034","Desired Access: Maximum Allowed","5728"
"10:46:23.3454704 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\(Default)","0.0000026","Type: REG_EXPAND_SZ, Length: 68, Data: %SystemRoot%\System32\shell32.dll","5728"
"10:46:23.3454849 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000030","Query: Name","5728"
"10:46:23.3454977 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3455105 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000034","Desired Access: Maximum Allowed","5728"
"10:46:23.3455238 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\(Default)","0.0000021","Type: REG_EXPAND_SZ, Length: 68, Data: %SystemRoot%\System32\shell32.dll","5728"
"10:46:23.3455370 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000030","Query: Name","5728"
"10:46:23.3455498 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3455626 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000038","Desired Access: Maximum Allowed","5728"
"10:46:23.3455758 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\ThreadingModel","0.0000026","Type: REG_SZ, Length: 10, Data: Both","5728"
"10:46:23.3455954 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000017","","5728"
"10:46:23.3456078 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000034","Query: Name","5728"
"10:46:23.3456215 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3456355 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocHandler32","0.0000039","Desired Access: Query Value","5728"
"10:46:23.3456492 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3456611 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocHandler32","0.0000030","Desired Access: Query Value","5728"
"10:46:23.3456739 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000030","Query: Name","5728"
"10:46:23.3456872 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3457004 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocHandler","0.0000038","Desired Access: Query Value","5728"
"10:46:23.3457136 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3457247 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocHandler","0.0000026","Desired Access: Query Value","5728"
"10:46:23.3457431 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000008","","5728"
"10:46:23.3458109 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000038","Query: Name","5728"
"10:46:23.3458284 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3458399 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3458540 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209C7-767B-42B2-9FBA-44EE4615F2C7}","0.0000034","Desired Access: Read","5728"
"10:46:23.3458723 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{591209C7-767B-42B2-9FBA-44EE4615F2C7}","0.0000064","Desired Access: Read","5728"
"10:46:23.3458911 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000034","Query: Name","5728"
"10:46:23.3459060 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3459210 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\TreatAs","0.0000038","Desired Access: Query Value","5728"
"10:46:23.3459355 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3459479 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\TreatAs","0.0000025","Desired Access: Query Value","5728"
"10:46:23.3459611 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000030","Query: Name","5728"
"10:46:23.3459807 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000034","Query: Name","5728"
"10:46:23.3459956 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000039","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3460195 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000120","Desired Access: Maximum Allowed","5728"
"10:46:23.3460537 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\(Default)","0.0000034","Length: 12","5728"
"10:46:23.3460716 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000034","Query: Name","5728"
"10:46:23.3460951 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3461190 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000059","Desired Access: Maximum Allowed","5728"
"10:46:23.3461411 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\(Default)","0.0000035","Type: REG_SZ, Length: 50, Data: Application Registration","5728"
"10:46:23.3461620 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000039","Query: Name","5728"
"10:46:23.3461825 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3462051 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocServer32","0.0000060","Desired Access: Read","5728"
"10:46:23.3462248 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000025","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3462414 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocServer32","0.0000043","Desired Access: Read","5728"
"10:46:23.3462606 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000038","Query: Name","5728"
"10:46:23.3462790 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3462977 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000047","Desired Access: Maximum Allowed","5728"
"10:46:23.3463156 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\InprocServer32","0.0000026","Length: 12","5728"
"10:46:23.3463319 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000034","Query: Name","5728"
"10:46:23.3463481 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3463656 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000042","Desired Access: Maximum Allowed","5728"
"10:46:23.3463826 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\(Default)","0.0000026","Length: 12","5728"
"10:46:23.3463993 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000030","Query: Name","5728"
"10:46:23.3464163 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3464317 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000038","Desired Access: Maximum Allowed","5728"
"10:46:23.3464462 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\(Default)","0.0000026","Type: REG_EXPAND_SZ, Length: 68, Data: %SystemRoot%\System32\shell32.dll","5728"
"10:46:23.3465473 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000039","Query: Name","5728"
"10:46:23.3465648 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3465798 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000042","Desired Access: Maximum Allowed","5728"
"10:46:23.3465947 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\(Default)","0.0000025","Type: REG_EXPAND_SZ, Length: 68, Data: %SystemRoot%\System32\shell32.dll","5728"
"10:46:23.3466105 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000030","Query: Name","5728"
"10:46:23.3466246 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3466391 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000034","Desired Access: Maximum Allowed","5728"
"10:46:23.3466536 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\ThreadingModel","0.0000021","Type: REG_SZ, Length: 10, Data: Both","5728"
"10:46:23.3466728 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000012","","5728"
"10:46:23.3466856 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000034","Query: Name","5728"
"10:46:23.3467001 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3467150 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocHandler32","0.0000038","Desired Access: Query Value","5728"
"10:46:23.3467295 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3467423 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocHandler32","0.0000030","Desired Access: Query Value","5728"
"10:46:23.3467568 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000030","Query: Name","5728"
"10:46:23.3467705 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3467846 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocHandler","0.0000038","Desired Access: Query Value","5728"
"10:46:23.3467995 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3468119 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocHandler","0.0000025","Desired Access: Query Value","5728"
"10:46:23.3468259 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000030","Query: Name","5728"
"10:46:23.3468400 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3468545 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\LocalServer32","0.0000034","Desired Access: Read","5728"
"10:46:23.3468686 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3468810 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\LocalServer32","0.0000025","Desired Access: Read","5728"
"10:46:23.3468951 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000029","Query: Name","5728"
"10:46:23.3469087 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3469228 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000038","Desired Access: Maximum Allowed","5728"
"10:46:23.3469377 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\AppID","0.0000022","Length: 112","5728"
"10:46:23.3469510 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000029","Query: Name","5728"
"10:46:23.3469650 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3469791 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\LocalServer","0.0000039","Desired Access: Query Value","5728"
"10:46:23.3469936 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3470060 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\LocalServer","0.0000030","Desired Access: Query Value","5728"
"10:46:23.3470205 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000026","Query: Name","5728"
"10:46:23.3470350 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3470461 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3470580 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209C7-767B-42B2-9FBA-44EE4615F2C7}","0.0000035","Desired Access: Read","5728"
"10:46:23.3470734 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{591209C7-767B-42B2-9FBA-44EE4615F2C7}","0.0000047","Desired Access: Read","5728"
"10:46:23.3470900 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000030","Query: Name","5728"
"10:46:23.3471041 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3471178 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\Elevation","0.0000038","Desired Access: Read","5728"
"10:46:23.3471323 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3471442 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\Elevation","0.0000030","Desired Access: Read","5728"
"10:46:23.3471604 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","","5728"
"10:46:23.3471762 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000009","","5728"
"10:46:23.3471933 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000026","Query: Name","5728"
"10:46:23.3472070 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3472176 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3472296 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209C7-767B-42B2-9FBA-44EE4615F2C7}","0.0000042","Desired Access: Read","5728"
"10:46:23.3472458 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{591209C7-767B-42B2-9FBA-44EE4615F2C7}","0.0000042","Desired Access: Read","5728"
"10:46:23.3472641 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000030","Query: Name","5728"
"10:46:23.3472782 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3472919 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\TreatAs","0.0000042","Desired Access: Read","5728"
"10:46:23.3473064 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.3473179 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\TreatAs","0.0000025","Desired Access: Read","5728"
"10:46:23.3473324 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000008","","5728"
"10:46:23.3718039 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0489306","Offset: 19,697,664, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:23.3848215 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3848522 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000034","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:23.3848659 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000060","","740"
"10:46:23.3850741 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3850954 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000026","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:23.3851061 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000043","","740"
"10:46:23.3853339 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3853676 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000030","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:23.3853783 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000038","","740"
"10:46:23.3855767 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3856053 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000026","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:23.3856155 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000039","","740"
"10:46:23.3856684 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000137","Desired Access: Read","740"
"10:46:23.3857841 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\shell32.dll.mui","0.0000153","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3858182 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\shell32.dll.mui","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.3858310 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\shell32.dll.mui","0.0000030","AllocationSize: 393,216, EndOfFile: 393,216, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.3858511 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\shell32.dll.mui","0.0000017","SyncType: SyncTypeOther","740"
"10:46:23.3860537 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3860832 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000029","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:23.3860947 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000047","","740"
"10:46:23.3863195 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3863575 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:23.3863677 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000043","","740"
"10:46:23.3865529 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3865789 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:23.3865888 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000042","","740"
"10:46:23.3866284 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000081","Desired Access: Read","740"
"10:46:23.3867296 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\SHCore.dll.mui","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3867586 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\SHCore.dll.mui","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.3867701 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\SHCore.dll.mui","0.0000030","AllocationSize: 4,096, EndOfFile: 2,560, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.3867897 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\SHCore.dll.mui","0.0000017","SyncType: SyncTypeOther","740"
"10:46:23.3869783 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3870069 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:23.3870176 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000047","","740"
"10:46:23.3872407 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3872702 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000025","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:23.3872804 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000043","","740"
"10:46:23.3873214 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d11.dll","0.0219494","Offset: 2,952,192, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.3874703 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3874967 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000026","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:23.3875065 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000039","","740"
"10:46:23.3875500 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000086","Desired Access: Read","740"
"10:46:23.3876529 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\combase.dll.mui","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3876827 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\combase.dll.mui","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.3876943 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\combase.dll.mui","0.0000025","AllocationSize: 40,960, EndOfFile: 38,400, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.3877130 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\combase.dll.mui","0.0000017","SyncType: SyncTypeOther","740"
"10:46:23.3879114 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3879396 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000030","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:23.3879507 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000043","","740"
"10:46:23.3881973 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3882182 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000026","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:23.3882284 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000039","","740"
"10:46:23.3884209 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3884396 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000022","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:23.3884490 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000039","","740"
"10:46:23.3884913 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000081","Desired Access: Read","740"
"10:46:23.3885928 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\windows.storage.dll.mui","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3886231 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\windows.storage.dll.mui","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.3886342 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\windows.storage.dll.mui","0.0000030","AllocationSize: 32,768, EndOfFile: 29,184, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.3886530 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\windows.storage.dll.mui","0.0000013","SyncType: SyncTypeOther","740"
"10:46:23.3888467 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3888667 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000026","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:23.3888770 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000042","","740"
"10:46:23.3891074 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3891364 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:23.3891471 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000038","","740"
"10:46:23.3893280 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3893548 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:23.3893672 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000039","","740"
"10:46:23.3894056 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000081","Desired Access: Read","740"
"10:46:23.3895370 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\shlwapi.dll.mui","0.0000188","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3895771 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\shlwapi.dll.mui","0.0000035","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.3895938 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\shlwapi.dll.mui","0.0000038","AllocationSize: 8,192, EndOfFile: 4,608, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.3896262 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\shlwapi.dll.mui","0.0000026","SyncType: SyncTypeOther","740"
"10:46:23.3898839 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3899142 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:23.3899253 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000047","","740"
"10:46:23.3901659 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3901868 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:23.3901967 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000042","","740"
"10:46:23.3903818 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3904006 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:23.3904104 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000039","","740"
"10:46:23.3905896 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3906080 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000025","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:23.3906178 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000038","","740"
"10:46:23.3908362 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3908652 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:23.3908755 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000038","","740"
"10:46:23.3910683 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3910956 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:23.3911059 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000038","","740"
"10:46:23.3912817 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3913077 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000021","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:23.3913171 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000038","","740"
"10:46:23.3915360 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3915650 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:23.3915748 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000038","","740"
"10:46:23.3917566 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3917826 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:23.3917920 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000038","","740"
"10:46:23.3918351 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000085","Desired Access: Read","740"
"10:46:23.3919379 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\powrprof.dll.mui","0.0000154","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3919690 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\powrprof.dll.mui","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.3919810 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\powrprof.dll.mui","0.0000030","AllocationSize: 57,344, EndOfFile: 55,808, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.3920006 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\powrprof.dll.mui","0.0000013","SyncType: SyncTypeOther","740"
"10:46:23.3921939 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3922233 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:23.3922344 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000043","","740"
"10:46:23.3924631 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3924917 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:23.3925019 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000043","","740"
"10:46:23.3926841 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3927102 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:23.3927204 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000043","","740"
"10:46:23.3927592 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000073","Desired Access: Read","740"
"10:46:23.3928599 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\fltlib.dll.mui","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3928894 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\fltlib.dll.mui","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.3929009 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\fltlib.dll.mui","0.0000030","AllocationSize: 8,192, EndOfFile: 7,168, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.3929214 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\fltlib.dll.mui","0.0000017","SyncType: SyncTypeOther","740"
"10:46:23.3931142 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3931432 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:23.3931539 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000047","","740"
"10:46:23.3934018 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3934312 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000026","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:23.3934415 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000042","","740"
"10:46:23.3936292 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3936561 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000025","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:23.3936663 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000039","","740"
"10:46:23.3937081 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000073","Desired Access: Read","740"
"10:46:23.3938144 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\ole32.dll.mui","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3938434 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\ole32.dll.mui","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.3938545 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\ole32.dll.mui","0.0000030","AllocationSize: 32,768, EndOfFile: 30,208, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.3938733 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\ole32.dll.mui","0.0000017","SyncType: SyncTypeOther","740"
"10:46:23.3940644 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3940921 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000026","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:23.3941028 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000043","","740"
"10:46:23.3943285 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3943558 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000026","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:23.3943661 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000038","","740"
"10:46:23.3945457 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3945713 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000025","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:23.3945811 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000038","","740"
"10:46:23.3947586 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3947838 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000025","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:23.3947940 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000038","","740"
"10:46:23.3950846 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3951255 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000039","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:23.3951417 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000056","","740"
"10:46:23.3953627 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3953913 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:23.3954016 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000038","","740"
"10:46:23.3954502 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000081","Desired Access: Read","740"
"10:46:23.3955539 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\setupapi.dll.mui","0.0000136","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3955833 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\setupapi.dll.mui","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.3955953 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\setupapi.dll.mui","0.0000030","AllocationSize: 49,152, EndOfFile: 48,640, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.3956145 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\setupapi.dll.mui","0.0000013","SyncType: SyncTypeOther","740"
"10:46:23.3958154 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3958440 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:23.3958547 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000047","","740"
"10:46:23.3960911 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3961197 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000025","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:23.3961299 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000038","","740"
"10:46:23.3963142 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3963407 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000021","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:23.3963505 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000038","","740"
"10:46:23.3963889 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000081","Desired Access: Read","740"
"10:46:23.3964913 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\OLEAUT32.dll.mui","0.0000217","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a","740"
"10:46:23.3965348 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en","0.0000137","Desired Access: Read","740"
"10:46:23.3966415 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en\OLEAUT32.dll.mui","0.0000094","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a","740"
"10:46:23.3968787 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3969162 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0000064","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:23.3969243 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000039","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:23.3969401 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:23.3969418 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000069","","740"
"10:46:23.3969593 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0000026","Offset: 1,073,741,824, Length: 1","5068"
"10:46:23.3972145 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3972362 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite-journal","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:23.3972576 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000038","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:23.3972751 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000068","","740"
"10:46:23.3975238 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite-wal","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:23.3975272 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000538","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3975652 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0000034","AllocationSize: 8,192, EndOfFile: 7,168, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:23.3975844 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0000077","Offset: 0, Length: 512","5068"
"10:46:23.3976224 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000051","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:23.3976390 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0000030","Offset: 3,072, Length: 512","5068"
"10:46:23.3976463 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000081","","740"
"10:46:23.3976894 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0000025","Offset: 3,584, Length: 512","5068"
"10:46:23.3977278 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0000025","Offset: 1,073,741,826, Length: 510","5068"
"10:46:23.3977854 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:23.3977960 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:23.3978058 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0000013","Offset: 1,073,741,824, Length: 1","5068"
"10:46:23.3979445 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3979799 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000034","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:23.3979923 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000047","","740"
"10:46:23.3980077 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite-journal","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:23.3980409 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0000052","Offset: 24, Length: 16","5068"
"10:46:23.3982065 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3982385 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:23.3982406 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000034","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:23.3982538 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000043","","740"
"10:46:23.3982705 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0000034","AllocationSize: 8,192, EndOfFile: 7,168, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:23.3982888 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0000022","Offset: 1,073,741,826, Length: 510","5068"
"10:46:23.3983085 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000115","Desired Access: Read","740"
"10:46:23.3984211 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\avrt.dll.mui","0.0000154","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3984548 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\avrt.dll.mui","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.3984672 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\avrt.dll.mui","0.0000025","AllocationSize: 8,192, EndOfFile: 4,608, NumberOfLinks: 2, DeletePending: False, Directory: False","740"
"10:46:23.3984872 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\avrt.dll.mui","0.0000017","SyncType: SyncTypeOther","740"
"10:46:23.3986852 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3987146 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:23.3987262 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000042","","740"
"10:46:23.3989689 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3989997 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000029","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:23.3990103 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000043","","740"
"10:46:23.3991921 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3992190 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000025","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:23.3992292 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000038","","740"
"10:46:23.3994067 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3994327 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000026","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:23.3994425 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000043","","740"
"10:46:23.3996721 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.3997135 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000025","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:23.3997263 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0095910","","740"
"10:46:23.4093216 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d11.dll","0.0058150","Offset: 2,939,904, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.4097231 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4097692 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000047","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:23.4097841 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0053952","","740"
"10:46:23.4151934 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d11.dll","0.0128085","Offset: 2,626,560, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.4155561 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4156055 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000043","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:23.4156213 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0123947","","740"
"10:46:23.4208651 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0023885","Offset: 19,730,432, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:23.4283172 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000274","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.4283719 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000055","CreationTime: 5/9/2018 4:39:34 AM, LastAccessTime: 3/20/2019 7:14:15 PM, LastWriteTime: 5/9/2018 4:39:34 AM, ChangeTime: 3/20/2019 7:51:25 PM, FileAttributes: A","1120"
"10:46:23.4283992 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000081","","1120"
"10:46:23.4285340 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4285924 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000052","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:23.4286023 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000221","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.4286138 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000077","","740"
"10:46:23.4286539 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:23.4286778 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000051","AllocationSize: 22,347,776, EndOfFile: 22,347,760, NumberOfLinks: 1, DeletePending: False, Directory: False","1120"
"10:46:23.4287166 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000038","SyncType: SyncTypeOther","1120"
"10:46:23.4288024 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000089","","1120"
"10:46:23.4289099 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4289462 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000034","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:23.4289590 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000051","","740"
"10:46:23.4291642 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.4291663 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4291970 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000026","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:23.4292068 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000047","CreationTime: 5/9/2018 4:39:34 AM, LastAccessTime: 3/20/2019 7:14:15 PM, LastWriteTime: 5/9/2018 4:39:34 AM, ChangeTime: 3/20/2019 7:51:25 PM, FileAttributes: A","1120"
"10:46:23.4292086 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000042","","740"
"10:46:23.4292324 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000073","","1120"
"10:46:23.4294163 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000209","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.4294628 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000090","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:23.4294983 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4295187 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000030","SyncType: SyncTypeOther","1120"
"10:46:23.4295341 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:23.4295456 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000047","","740"
"10:46:23.4297231 AM","firefox.exe","1008","Load Image","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000000","Image Base: 0x7ffb3ed90000, Image Size: 0x147a000","1120"
"10:46:23.4297444 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4297726 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000870","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:23.4298733 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000068","","740"
"10:46:23.4299407 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000167","Desired Access: Read","740"
"10:46:23.4299407 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000090","","1120"
"10:46:23.4301161 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\iphlpapi.dll.mui","0.0000234","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4301668 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\iphlpapi.dll.mui","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.4301865 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\iphlpapi.dll.mui","0.0000047","AllocationSize: 4,096, EndOfFile: 4,096, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.4302189 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\iphlpapi.dll.mui","0.0000030","SyncType: SyncTypeOther","740"
"10:46:23.4305014 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\ncrypt.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.4305526 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\ncrypt.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:15:01 PM, FileAttributes: A","1120"
"10:46:23.4305718 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\ncrypt.dll","0.0000064","","1120"
"10:46:23.4307424 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4307629 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\ncrypt.dll","0.0000137","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.4307987 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000052","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:23.4308124 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\ncrypt.dll","0.0000072","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:23.4308239 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000077","","740"
"10:46:23.4308555 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\ncrypt.dll","0.0000030","SyncType: SyncTypeOther","1120"
"10:46:23.4309229 AM","firefox.exe","1008","Load Image","C:\Windows\System32\ncrypt.dll","0.0000000","Image Base: 0x7ffb455c0000, Image Size: 0x26000","1120"
"10:46:23.4310407 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\ncrypt.dll","0.0000098","","1120"
"10:46:23.4313312 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4314221 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000055","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:23.4314434 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000081","","740"
"10:46:23.4314776 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\ntasn1.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.4315198 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\ntasn1.dll","0.0000038","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:15:01 PM, FileAttributes: A","1120"
"10:46:23.4315377 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\ntasn1.dll","0.0000056","","1120"
"10:46:23.4316947 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\ntasn1.dll","0.0000209","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.4317536 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\ntasn1.dll","0.0000081","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:23.4318014 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\ntasn1.dll","0.0000026","SyncType: SyncTypeOther","1120"
"10:46:23.4318219 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4318739 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:23.4318846 AM","firefox.exe","1008","Load Image","C:\Windows\System32\ntasn1.dll","0.0000000","Image Base: 0x7ffb45580000, Image Size: 0x36000","1120"
"10:46:23.4318944 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000073","","740"
"10:46:23.4319712 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000171","Desired Access: Read","740"
"10:46:23.4319862 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\ntasn1.dll","0.0000093","","1120"
"10:46:23.4321483 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\dnsapi.dll.mui","0.0000217","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4321969 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\dnsapi.dll.mui","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.4322153 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\dnsapi.dll.mui","0.0000068","AllocationSize: 73,728, EndOfFile: 72,704, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.4322456 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\dnsapi.dll.mui","0.0000021","SyncType: SyncTypeOther","740"
"10:46:23.4325865 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4326326 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000042","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:23.4326509 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000073","","740"
"10:46:23.4327375 AM","firefox.exe","7384","ReadFile","C:\$Directory","0.0052536","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5068"
"10:46:23.4330818 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4331318 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000046","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:23.4331501 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000068","","740"
"10:46:23.4333174 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0094967","Offset: 19,154,432, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.4334509 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4334842 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:23.4334948 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000047","","740"
"10:46:23.4336954 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4337240 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:23.4337338 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000038","","740"
"10:46:23.4340205 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4340517 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:23.4340615 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000047","","740"
"10:46:23.4342496 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4342774 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000029","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:23.4342876 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000038","","740"
"10:46:23.4343401 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000141","Desired Access: Read","740"
"10:46:23.4344595 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\dwmapi.dll.mui","0.0000150","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4344945 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\dwmapi.dll.mui","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.4345073 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\dwmapi.dll.mui","0.0000030","AllocationSize: 4,096, EndOfFile: 3,584, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.4345278 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\dwmapi.dll.mui","0.0000013","SyncType: SyncTypeOther","740"
"10:46:23.4347548 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4347851 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:23.4347962 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000051","","740"
"10:46:23.4350577 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4350893 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000030","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:23.4351004 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000043","","740"
"10:46:23.4352928 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4353206 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000025","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:23.4353308 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000038","","740"
"10:46:23.4353773 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000124","Desired Access: Read","740"
"10:46:23.4355207 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\uxtheme.dll.mui","0.0000162","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4355552 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\uxtheme.dll.mui","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.4355680 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\uxtheme.dll.mui","0.0000026","AllocationSize: 8,192, EndOfFile: 7,680, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.4355881 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\uxtheme.dll.mui","0.0000013","SyncType: SyncTypeOther","740"
"10:46:23.4358014 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4358338 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000026","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:23.4358445 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000064","","740"
"10:46:23.4361018 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4361342 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000030","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:23.4361449 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000042","","740"
"10:46:23.4363394 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4363719 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000025","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:23.4363770 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-current.bin","0.0049425","Offset: 5,242,880, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2000"
"10:46:23.4363821 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000043","","740"
"10:46:23.4365673 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4365942 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000025","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:23.4366044 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000038","","740"
"10:46:23.4368903 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4369235 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:23.4369342 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000043","","740"
"10:46:23.4371224 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4371586 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000035","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:23.4371697 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000043","","740"
"10:46:23.4372137 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000132","Desired Access: Read","740"
"10:46:23.4373566 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\dhcpcsvc.dll.mui","0.0000239","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4374061 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\dhcpcsvc.dll.mui","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.4374245 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\dhcpcsvc.dll.mui","0.0000042","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.4374509 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\dhcpcsvc.dll.mui","0.0000021","SyncType: SyncTypeOther","740"
"10:46:23.4377214 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4377765 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000046","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:23.4377948 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000077","","740"
"10:46:23.4381246 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4381677 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:23.4381848 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000064","","740"
"10:46:23.4384258 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive-tmp.sqlite","0.0000683","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:23.4384753 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4385180 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:23.4385355 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000064","","740"
"10:46:23.4386106 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000171","Desired Access: Read","740"
"10:46:23.4387655 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\userenv.dll.mui","0.0000456","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4388337 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\userenv.dll.mui","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.4388457 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\userenv.dll.mui","0.0000034","AllocationSize: 8,192, EndOfFile: 4,608, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.4388679 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\userenv.dll.mui","0.0000017","SyncType: SyncTypeOther","740"
"10:46:23.4389430 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0024699","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.4390782 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4391115 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:23.4391230 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000047","","740"
"10:46:23.4393901 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4394123 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000026","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:23.4394225 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000043","","740"
"10:46:23.4396269 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4396568 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000038","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:23.4396692 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000051","","740"
"10:46:23.4398816 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4399017 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000025","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:23.4399115 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000043","","740"
"10:46:23.4401637 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4401944 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:23.4402063 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000051","","740"
"10:46:23.4403953 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4404226 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:23.4404329 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000038","","740"
"10:46:23.4406181 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4406441 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:23.4406539 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000038","","740"
"10:46:23.4409018 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4409312 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:23.4409415 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000038","","740"
"10:46:23.4411271 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4411527 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000025","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:23.4411629 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000039","","740"
"10:46:23.4412171 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000145","Desired Access: Read","740"
"10:46:23.4413792 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\ntmarta.dll.mui","0.0000282","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4414356 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\ntmarta.dll.mui","0.0000046","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.4414471 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000064","CreationTime: 6/19/2019 4:53:46 PM, LastAccessTime: 6/19/2019 4:53:46 PM, LastWriteTime: 6/19/2019 4:53:46 PM, ChangeTime: 6/19/2019 4:53:46 PM, AllocationSize: 131072, EndOfFile: 131072, FileAttributes: A","5068"
"10:46:23.4414552 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\ntmarta.dll.mui","0.0000047","AllocationSize: 8,192, EndOfFile: 6,656, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.4414808 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000098","","5068"
"10:46:23.4414970 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\ntmarta.dll.mui","0.0000034","SyncType: SyncTypeOther","740"
"10:46:23.4418383 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4418772 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.4418900 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000051","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:23.4419100 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000077","","740"
"10:46:23.4419198 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000051","CreationTime: 6/19/2019 4:53:46 PM, LastAccessTime: 6/19/2019 4:53:46 PM, LastWriteTime: 6/19/2019 4:53:46 PM, ChangeTime: 6/19/2019 4:53:46 PM, FileAttributes: A","5068"
"10:46:23.4419412 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000072","","5068"
"10:46:23.4423311 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4423392 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.4423828 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000046","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:23.4423857 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000056","CreationTime: 6/19/2019 4:53:46 PM, LastAccessTime: 6/19/2019 4:53:46 PM, LastWriteTime: 6/19/2019 4:53:46 PM, ChangeTime: 6/19/2019 4:53:46 PM, AllocationSize: 131072, EndOfFile: 131072, FileAttributes: A","5068"
"10:46:23.4424028 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000077","","740"
"10:46:23.4424084 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000072","","5068"
"10:46:23.4424822 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DWrite.dll","0.0004859","Offset: 2,517,504, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","740"
"10:46:23.4425957 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000345","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:23.4426797 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0101184","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:23.4427412 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0100236","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5068"
"10:46:23.4428500 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0213350","Offset: 19,064,320, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.4433048 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4433624 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000055","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:23.4433841 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000077","","740"
"10:46:23.4434635 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000166","Desired Access: Read","740"
"10:46:23.4436444 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\DWrite.dll.mui","0.0000209","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4436935 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\DWrite.dll.mui","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.4437131 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\DWrite.dll.mui","0.0000047","AllocationSize: 4,096, EndOfFile: 2,560, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.4437617 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\DWrite.dll.mui","0.0000030","SyncType: SyncTypeOther","740"
"10:46:23.4441005 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4441556 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000047","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:23.4441756 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000081","","740"
"10:46:23.4445899 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4446411 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000051","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:23.4446586 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000068","","740"
"10:46:23.4449931 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4450460 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000051","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:23.4450648 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000081","","740"
"10:46:23.4453997 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000278","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4454565 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:23.4454740 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000068","","740"
"10:46:23.4458443 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4458789 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:23.4458904 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000047","","740"
"10:46:23.4460939 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4461242 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:23.4461349 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000042","","740"
"10:46:23.4463307 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4463584 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:23.4463687 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000042","","740"
"10:46:23.4466563 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4466887 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:23.4466989 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000043","","740"
"10:46:23.4469383 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4469694 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:23.4469801 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000043","","740"
"10:46:23.4470330 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000128","Desired Access: Read","740"
"10:46:23.4471516 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\napinsp.dll.mui","0.0000154","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4471866 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\napinsp.dll.mui","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.4471994 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\napinsp.dll.mui","0.0000034","AllocationSize: 4,096, EndOfFile: 2,560, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.4472199 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\napinsp.dll.mui","0.0000013","SyncType: SyncTypeOther","740"
"10:46:23.4474213 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4474520 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:23.4474631 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000047","","740"
"10:46:23.4477216 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4477515 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:23.4477617 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000043","","740"
"10:46:23.4479491 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4479751 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:23.4479853 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000039","","740"
"10:46:23.4481752 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4482008 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:23.4482110 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000039","","740"
"10:46:23.4484764 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4485063 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000025","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:23.4485165 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000039","","740"
"10:46:23.4487072 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4487337 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000026","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:23.4487439 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000039","","740"
"10:46:23.4487866 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000119","Desired Access: Read","740"
"10:46:23.4488992 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\pnrpnsp.dll.mui","0.0000150","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4489321 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\pnrpnsp.dll.mui","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.4489440 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\pnrpnsp.dll.mui","0.0000030","AllocationSize: 4,096, EndOfFile: 2,560, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.4489641 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\pnrpnsp.dll.mui","0.0000017","SyncType: SyncTypeOther","740"
"10:46:23.4491642 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4491941 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000030","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:23.4492052 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000047","","740"
"10:46:23.4494620 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4494936 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:23.4495043 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000038","","740"
"10:46:23.4496963 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4497300 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:23.4497402 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000077","","740"
"10:46:23.4498132 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000149","Desired Access: Read","740"
"10:46:23.4499420 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\webauthn.dll.mui","0.0000162","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4499779 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\webauthn.dll.mui","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.4499902 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\webauthn.dll.mui","0.0000030","AllocationSize: 20,480, EndOfFile: 18,944, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.4500103 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\webauthn.dll.mui","0.0000017","SyncType: SyncTypeOther","740"
"10:46:23.4502245 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4502569 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000030","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:23.4502680 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000055","","740"
"10:46:23.4505359 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4505667 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000025","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:23.4505769 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000043","","740"
"10:46:23.4507710 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4507992 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:23.4508090 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000043","","740"
"10:46:23.4508534 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000119","Desired Access: Read","740"
"10:46:23.4509694 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\bcrypt.dll.mui","0.0000162","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4510040 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\bcrypt.dll.mui","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.4510164 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\bcrypt.dll.mui","0.0000030","AllocationSize: 4,096, EndOfFile: 3,584, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.4510356 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\bcrypt.dll.mui","0.0000017","SyncType: SyncTypeOther","740"
"10:46:23.4512344 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4512647 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000025","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:23.4512749 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000047","","740"
"10:46:23.4515493 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4515787 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:23.4515890 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000038","","740"
"10:46:23.4517728 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4517989 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:23.4518087 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000038","","740"
"10:46:23.4519879 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4520135 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000021","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:23.4520233 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000038","","740"
"10:46:23.4522767 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4523100 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:23.4523194 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000038","","740"
"10:46:23.4525024 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4525285 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000021","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:23.4525383 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000038","","740"
"10:46:23.4527243 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4527503 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000022","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:23.4527597 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000039","","740"
"10:46:23.4529590 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000239","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:23.4530085 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:23.4530290 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000025","Offset: 1,073,741,824, Length: 1","5068"
"10:46:23.4531331 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4531804 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:23.4531983 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000064","","740"
"10:46:23.4533263 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite-journal","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:23.4534910 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4535392 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:23.4535576 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000064","","740"
"10:46:23.4536195 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite-wal","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:23.4536702 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000064","AllocationSize: 131,072, EndOfFile: 131,072, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:23.4537236 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0240704","Offset: 0, Length: 32,768","5068"
"10:46:23.4538319 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4538648 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:23.4538755 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000051","","740"
"10:46:23.4541618 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4541938 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000029","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:23.4542044 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000043","","740"
"10:46:23.4543905 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4544195 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000025","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:23.4544297 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000047","","740"
"10:46:23.4544988 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000162","Desired Access: Read","740"
"10:46:23.4546584 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\winrnr.dll.mui","0.0000171","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4546972 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\winrnr.dll.mui","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.4547100 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\winrnr.dll.mui","0.0000034","AllocationSize: 4,096, EndOfFile: 2,560, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.4547314 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\winrnr.dll.mui","0.0000021","SyncType: SyncTypeOther","740"
"10:46:23.4549438 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4549780 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000034","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:23.4549891 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000055","","740"
"10:46:23.4552613 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4552920 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:23.4553022 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000043","","740"
"10:46:23.4555041 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4555314 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000068","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:23.4555489 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000072","","740"
"10:46:23.4557477 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4557754 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:23.4557857 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000038","","740"
"10:46:23.4560545 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4560856 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000030","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:23.4561185 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000051","","740"
"10:46:23.4563331 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4563612 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000030","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:23.4563715 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000038","","740"
"10:46:23.4565541 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4565805 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000026","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:23.4565908 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000034","","740"
"10:46:23.4568545 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4568835 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:23.4568933 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000042","","740"
"10:46:23.4570814 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4571194 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000034","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:23.4571297 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000042","","740"
"10:46:23.4573127 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4573383 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:23.4573485 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000034","","740"
"10:46:23.4576024 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4576225 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000021","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:23.4576318 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000035","","740"
"10:46:23.4578264 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4578452 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:23.4578550 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000034","","740"
"10:46:23.4579053 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000440","Desired Access: Read","740"
"10:46:23.4580542 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\dhcpcsvc6.dll.mui","0.0000150","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4580884 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\dhcpcsvc6.dll.mui","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.4581012 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\dhcpcsvc6.dll.mui","0.0000034","AllocationSize: 28,672, EndOfFile: 27,136, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.4581208 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\dhcpcsvc6.dll.mui","0.0000017","SyncType: SyncTypeOther","740"
"10:46:23.4583196 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4583401 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:23.4583508 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000047","","740"
"10:46:23.4586255 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4586588 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:23.4586695 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000043","","740"
"10:46:23.4588538 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4588820 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:23.4588918 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000043","","740"
"10:46:23.4590718 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4590996 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:23.4591098 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000034","","740"
"10:46:23.4593701 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4593995 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:23.4594093 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000043","","740"
"10:46:23.4595996 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4596269 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:23.4596368 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000038","","740"
"10:46:23.4598142 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4598398 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:23.4598497 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000038","","740"
"10:46:23.4601057 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4601360 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000029","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:23.4601462 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000038","","740"
"10:46:23.4603318 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4603646 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000022","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:23.4603745 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000038","","740"
"10:46:23.4605835 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4606360 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000038","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:23.4606514 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000064","","740"
"10:46:23.4609342 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4609654 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:23.4609748 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000047","","740"
"10:46:23.4611612 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4611881 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:23.4611979 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000039","","740"
"10:46:23.4613801 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4614066 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:23.4614164 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000034","","740"
"10:46:23.4616766 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4617065 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000026","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:23.4617163 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000039","","740"
"10:46:23.4619079 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4619344 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000025","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:23.4619442 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000038","","740"
"10:46:23.4619988 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000128","Desired Access: Read","740"
"10:46:23.4621409 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\msctf.dll.mui","0.0000149","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4621754 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\msctf.dll.mui","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.4621882 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\msctf.dll.mui","0.0000030","AllocationSize: 8,192, EndOfFile: 4,608, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.4622091 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\msctf.dll.mui","0.0000013","SyncType: SyncTypeOther","740"
"10:46:23.4624037 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4624336 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000025","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:23.4624442 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000047","","740"
"10:46:23.4627164 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4627489 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000029","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:23.4627595 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000043","","740"
"10:46:23.4629477 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4629763 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000030","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:23.4629869 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000039","","740"
"10:46:23.4631789 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4632067 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000025","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:23.4632169 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000039","","740"
"10:46:23.4635365 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4635698 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:23.4635804 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000047","","740"
"10:46:23.4637737 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4638014 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:23.4638117 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000043","","740"
"10:46:23.4639981 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4640242 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:23.4640344 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000038","","740"
"10:46:23.4642281 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0005299","Offset: 19,117,568, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.4643540 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4643856 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000034","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:23.4643966 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000047","","740"
"10:46:23.4645895 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4646172 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:23.4646275 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000042","","740"
"10:46:23.4646898 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000392","Desired Access: Read","740"
"10:46:23.4647917 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0046268","Offset: 19,092,992, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.4648630 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\dcomp.dll.mui","0.0000158","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4648971 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\dcomp.dll.mui","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.4649095 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\dcomp.dll.mui","0.0000030","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.4649291 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\dcomp.dll.mui","0.0000013","SyncType: SyncTypeOther","740"
"10:46:23.4651408 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4651757 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000035","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:23.4651873 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000051","","740"
"10:46:23.4654680 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4654987 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:23.4655094 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000051","","740"
"10:46:23.4657232 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4657505 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:23.4657611 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000039","","740"
"10:46:23.4658111 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000119","Desired Access: Read","740"
"10:46:23.4659228 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\mscms.dll.mui","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4659553 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\mscms.dll.mui","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.4659681 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\mscms.dll.mui","0.0000030","AllocationSize: 20,480, EndOfFile: 17,408, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.4659873 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\mscms.dll.mui","0.0000012","SyncType: SyncTypeOther","740"
"10:46:23.4661968 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4662266 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:23.4662377 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000047","","740"
"10:46:23.4665445 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4665671 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000056","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:23.4665837 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000073","","740"
"10:46:23.4668154 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4668389 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:23.4668491 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000043","","740"
"10:46:23.4670381 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4670573 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:23.4670672 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000034","","740"
"10:46:23.4673509 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4673718 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000026","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:23.4673816 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000034","","740"
"10:46:23.4675702 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4675885 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000026","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:23.4675979 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000039","","740"
"10:46:23.4677767 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4677951 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000021","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:23.4678044 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000035","","740"
"10:46:23.4680805 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4681040 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000025","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:23.4681138 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000034","","740"
"10:46:23.4683177 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4683373 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000030","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:23.4683472 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000038","","740"
"10:46:23.4685434 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4685631 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000025","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:23.4685724 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000039","","740"
"10:46:23.4688502 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4688711 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000026","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:23.4688805 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000034","","740"
"10:46:23.4691002 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4691194 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000026","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:23.4691288 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000039","","740"
"10:46:23.4691775 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000128","Desired Access: Read","740"
"10:46:23.4692909 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\CoreMessaging.dll.mui","0.0000163","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4693259 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\CoreMessaging.dll.mui","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.4693387 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\CoreMessaging.dll.mui","0.0000030","AllocationSize: 16,384, EndOfFile: 14,336, NumberOfLinks: 2, DeletePending: False, Directory: False","740"
"10:46:23.4693588 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\CoreMessaging.dll.mui","0.0000017","SyncType: SyncTypeOther","740"
"10:46:23.4694552 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0004804","Offset: 19,080,704, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.4696045 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4696365 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000064","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:23.4696523 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000056","","740"
"10:46:23.4699544 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4699766 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0197001","Offset: 18,104,320, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.4700043 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000064","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:23.4700214 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000051","","740"
"10:46:23.4702322 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4702642 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000034","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:23.4702778 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000060","","740"
"10:46:23.4703448 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000171","Desired Access: Read","740"
"10:46:23.4705134 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\wintypes.dll.mui","0.0000213","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4705594 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\wintypes.dll.mui","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.4705782 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\wintypes.dll.mui","0.0000043","AllocationSize: 4,096, EndOfFile: 2,560, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.4706089 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\wintypes.dll.mui","0.0000026","SyncType: SyncTypeOther","740"
"10:46:23.4709306 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4709840 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000047","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:23.4710036 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000081","","740"
"10:46:23.4714593 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4715143 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000056","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:23.4715348 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000072","","740"
"10:46:23.4715839 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 8268","5728"
"10:46:23.4718492 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000210","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4718881 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 8996","5728"
"10:46:23.4718992 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:23.4719179 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000069","","740"
"10:46:23.4719969 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000166","Desired Access: Read","740"
"10:46:23.4721718 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\wscapi.dll.mui","0.0000230","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4722213 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\wscapi.dll.mui","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.4722426 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\wscapi.dll.mui","0.0000052","AllocationSize: 12,288, EndOfFile: 12,288, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.4722759 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\wscapi.dll.mui","0.0000026","SyncType: SyncTypeOther","740"
"10:46:23.4725976 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4726488 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:23.4726680 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000073","","740"
"10:46:23.4731186 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4731758 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000051","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:23.4731962 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000073","","740"
"10:46:23.4732227 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 7572","5728"
"10:46:23.4735461 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4735969 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000051","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:23.4736165 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000064","","740"
"10:46:23.4736459 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 7508","5728"
"10:46:23.4737078 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000175","Desired Access: Read","740"
"10:46:23.4739211 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\urlmon.dll.mui","0.0000235","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4739719 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\urlmon.dll.mui","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.4739915 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\urlmon.dll.mui","0.0000052","AllocationSize: 57,344, EndOfFile: 54,272, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.4740252 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\SysWOW64\en-US\urlmon.dll.mui","0.0000026","SyncType: SyncTypeOther","740"
"10:46:23.4743512 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4744028 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000047","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:23.4744220 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000073","","740"
"10:46:23.4748880 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4749400 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000051","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:23.4749596 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000073","","740"
"10:46:23.4752843 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4753334 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000047","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:23.4753518 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000068","","740"
"10:46:23.4754576 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000166","Desired Access: Read","740"
"10:46:23.4756325 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\iertutil.dll.mui","0.0000218","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4756816 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\iertutil.dll.mui","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.4757016 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\iertutil.dll.mui","0.0000043","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.4757328 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\iertutil.dll.mui","0.0000030","SyncType: SyncTypeOther","740"
"10:46:23.4760583 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4761078 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000056","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:23.4761287 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000073","","740"
"10:46:23.4766347 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4766731 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000052","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:23.4766932 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000073","","740"
"10:46:23.4770200 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4770529 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000042","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:23.4770708 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000068","","740"
"10:46:23.4771476 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000158","Desired Access: Read","740"
"10:46:23.4773174 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\Windows.Globalization.dll.mui","0.0000226","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4773665 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\Windows.Globalization.dll.mui","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.4773865 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\Windows.Globalization.dll.mui","0.0000043","AllocationSize: 12,288, EndOfFile: 11,264, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.4774190 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\Windows.Globalization.dll.mui","0.0000025","SyncType: SyncTypeOther","740"
"10:46:23.4777117 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000157","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4777407 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000034","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:23.4777530 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000064","","740"
"10:46:23.4779745 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000047","Offset: 1,073,741,826, Length: 510","5068"
"10:46:23.4780662 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000039","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:23.4780850 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000025","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:23.4781008 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000021","Offset: 1,073,741,824, Length: 1","5068"
"10:46:23.4781827 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4782160 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000042","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:23.4782343 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000060","","740"
"10:46:23.4784139 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite-journal","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:23.4784647 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000081","Offset: 24, Length: 16","5068"
"10:46:23.4785117 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000157","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4785411 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000043","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:23.4785586 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000060","","740"
"10:46:23.4787595 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite-wal","0.0000325","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:23.4788112 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4788291 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000055","AllocationSize: 131,072, EndOfFile: 131,072, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:23.4788325 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:23.4788432 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000042","","740"
"10:46:23.4789827 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000043","Offset: 1,073,741,826, Length: 510","5068"
"10:46:23.4790518 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000060","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:23.4790740 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:23.4790911 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000017","Offset: 1,073,741,824, Length: 1","5068"
"10:46:23.4791478 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4791837 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000034","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:23.4791956 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000047","","740"
"10:46:23.4793974 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4794269 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000025","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:23.4794371 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000043","","740"
"10:46:23.4794379 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite-journal","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:23.4794934 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000081","Offset: 24, Length: 16","5068"
"10:46:23.4796317 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4796598 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000021","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:23.4796701 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000038","","740"
"10:46:23.4799009 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite-wal","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:23.4799542 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000051","AllocationSize: 131,072, EndOfFile: 131,072, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:23.4799892 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000034","Offset: 1,073,741,826, Length: 510","5068"
"10:46:23.4800105 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4800558 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000042","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:23.4800711 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000060","","740"
"10:46:23.4801462 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000047","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:23.4801705 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000052","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:23.4801897 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000022","Offset: 1,073,741,824, Length: 1","5068"
"10:46:23.4803536 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4803941 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000043","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:23.4804078 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000055","","740"
"10:46:23.4804675 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000154","Desired Access: Read","740"
"10:46:23.4805955 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\MMDevAPI.dll.mui","0.0000158","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4806313 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\MMDevAPI.dll.mui","0.0000035","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.4806446 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\MMDevAPI.dll.mui","0.0000034","AllocationSize: 4,096, EndOfFile: 2,560, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.4806655 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\MMDevAPI.dll.mui","0.0000017","SyncType: SyncTypeOther","740"
"10:46:23.4808413 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite-journal","0.0000221","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:23.4808818 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4808972 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000149","Offset: 24, Length: 16","5068"
"10:46:23.4809164 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000042","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:23.4809321 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000052","","740"
"10:46:23.4812287 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4812300 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite-wal","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:23.4812611 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000026","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:23.4812722 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000047","","740"
"10:46:23.4812816 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000051","AllocationSize: 131,072, EndOfFile: 131,072, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:23.4813136 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000115","Offset: 98,304, Length: 32,768","5068"
"10:46:23.4813562 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000069","Offset: 1,073,741,826, Length: 510","5068"
"10:46:23.4814160 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\ls-archive.sqlite","0.0000094","","5068"
"10:46:23.4815137 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4815410 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0000043","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:23.4815427 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000128","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:23.4815640 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0000022","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:23.4815674 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000064","","740"
"10:46:23.4815802 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0000022","Offset: 1,073,741,824, Length: 1","5068"
"10:46:23.4816233 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000124","Desired Access: Read","740"
"10:46:23.4817454 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\propsys.dll.mui","0.0000158","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4817791 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\propsys.dll.mui","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.4817910 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\propsys.dll.mui","0.0000030","AllocationSize: 69,632, EndOfFile: 67,072, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.4818115 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\propsys.dll.mui","0.0000017","SyncType: SyncTypeOther","740"
"10:46:23.4818994 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite-journal","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:23.4819532 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0000064","Offset: 24, Length: 16","5068"
"10:46:23.4820270 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4820585 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000030","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:23.4820696 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000052","","740"
"10:46:23.4822548 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite-wal","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:23.4823030 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0000051","AllocationSize: 8,192, EndOfFile: 7,168, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:23.4823299 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0000064","Offset: 512, Length: 512","5068"
"10:46:23.4823628 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage.sqlite","0.0000034","Offset: 1,073,741,826, Length: 510","5068"
"10:46:23.4823666 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4823986 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000030","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:23.4824097 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000038","","740"
"10:46:23.4826008 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4826290 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000030","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:23.4826392 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000043","","740"
"10:46:23.4826883 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000115","Desired Access: Read","740"
"10:46:23.4827988 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\AudioSes.dll.mui","0.0000154","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4828308 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\AudioSes.dll.mui","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.4828423 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\AudioSes.dll.mui","0.0000030","AllocationSize: 24,576, EndOfFile: 20,992, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.4828611 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\AudioSes.dll.mui","0.0000017","SyncType: SyncTypeOther","740"
"10:46:23.4830650 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4830949 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000030","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:23.4831056 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000042","","740"
"10:46:23.4833914 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4834128 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000025","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:23.4834226 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000043","","740"
"10:46:23.4836108 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4836300 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000025","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:23.4836393 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000039","","740"
"10:46:23.4836790 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000103","Desired Access: Read","740"
"10:46:23.4837908 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\Windows.UI.dll.mui","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4838237 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\Windows.UI.dll.mui","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:23.4838377 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\Windows.UI.dll.mui","0.0000026","AllocationSize: 8,192, EndOfFile: 6,656, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:23.4838578 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\Windows.UI.dll.mui","0.0000017","SyncType: SyncTypeOther","740"
"10:46:23.4840506 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4840707 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000026","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:23.4840809 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000043","","740"
"10:46:23.4843536 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4843741 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:23.4843834 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000039","","740"
"10:46:23.4845750 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:23.4845938 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000021","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:23.4846062 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000047","","740"
"10:46:23.4897253 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0133756","Offset: 18,448,384, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.4944899 AM","firefox.exe","7384","Thread Exit","","0.0000000","Thread ID: 8268, User Time: 0.0000000, Kernel Time: 0.0000000","8268"
"10:46:23.4950442 AM","firefox.exe","7384","Thread Exit","","0.0000000","Thread ID: 8996, User Time: 0.0000000, Kernel Time: 0.0000000","8996"
"10:46:23.4966459 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 8204","5728"
"10:46:23.4980231 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-current.bin","0.0380835","Offset: 6,291,456, Length: 761,707, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2000"
"10:46:23.4988735 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome","0.0000806","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.4989785 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome","0.0000068","CreationTime: 6/19/2019 4:53:46 PM, LastAccessTime: 6/19/2019 4:53:48 PM, LastWriteTime: 6/19/2019 4:53:48 PM, ChangeTime: 6/19/2019 4:53:48 PM, AllocationSize: 0, EndOfFile: 0, FileAttributes: D","5068"
"10:46:23.4990036 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome","0.0000073","","5068"
"10:46:23.4992255 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome","0.0000316","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5068"
"10:46:23.4995549 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.4995950 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome","0.0000047","CreationTime: 6/19/2019 4:53:46 PM, LastAccessTime: 6/19/2019 4:53:48 PM, LastWriteTime: 6/19/2019 4:53:48 PM, ChangeTime: 6/19/2019 4:53:48 PM, FileAttributes: D","5068"
"10:46:23.4996095 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome","0.0000047","","5068"
"10:46:23.4997665 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000038","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.4997844 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\.metadata-v2","0.0074245","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.4997977 AM","firefox.exe","7384","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Themes\Personalize","0.0000106","Desired Access: Query Value","5728"
"10:46:23.4998322 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Themes\Personalize\AppsUseLightTheme","0.0000047","Length: 16","5728"
"10:46:23.4998604 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Themes\Personalize","0.0000051","","5728"
"10:46:23.5004159 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000026","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.5004406 AM","firefox.exe","7384","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Themes\Personalize","0.0000077","Desired Access: Query Value","5728"
"10:46:23.5004692 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Themes\Personalize\AppsUseLightTheme","0.0000034","Length: 16","5728"
"10:46:23.5004965 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Themes\Personalize","0.0000022","","5728"
"10:46:23.5022604 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 120","5728"
"10:46:23.5033275 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.5033659 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000038","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","1120"
"10:46:23.5033876 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000056","","1120"
"10:46:23.5038207 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.5038497 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","1120"
"10:46:23.5039594 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000081","","1120"
"10:46:23.5044680 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.5045093 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000035","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","1120"
"10:46:23.5045332 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000081","","1120"
"10:46:23.5048114 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0090471","Offset: 18,427,904, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.5072609 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\.metadata-v2","0.0000866","Offset: 0, Length: 42, Priority: Normal","5068"
"10:46:23.5073207 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\.metadata-v2","0.0000098","Offset: 0, Length: 42, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5068"
"10:46:23.5073800 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\.metadata-v2","0.0000102","","5068"
"10:46:23.5074743 AM","firefox.exe","7384","Thread Exit","","0.0000000","Thread ID: 8204, User Time: 0.0000000, Kernel Time: 0.0000000","8204"
"10:46:23.5076112 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome","0.0000256","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.5076471 AM","firefox.exe","7384","Thread Exit","","0.0000000","Thread ID: 4952, User Time: 0.0000000, Kernel Time: 0.0000000","4952"
"10:46:23.5076616 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\*","0.0000183","Filter: *, 1: .","5068"
"10:46:23.5077029 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome","0.0000163","0: .., 1: .metadata, 2: .metadata-v2, 3: idb","5068"
"10:46:23.5080895 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\.metadata","0.0307444","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.5139084 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0030511","Offset: 19,015,168, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.5147924 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.5148185 AM","firefox.exe","7384","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Themes\Personalize","0.0000085","Desired Access: Query Value","5728"
"10:46:23.5148445 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Themes\Personalize\AppsUseLightTheme","0.0000034","Length: 16","5728"
"10:46:23.5148654 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Themes\Personalize","0.0000013","","5728"
"10:46:23.5149704 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:23.5149849 AM","firefox.exe","7384","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Themes\Personalize","0.0000042","Desired Access: Query Value","5728"
"10:46:23.5150002 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Themes\Personalize\AppsUseLightTheme","0.0000022","Length: 16","5728"
"10:46:23.5150152 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Themes\Personalize","0.0000012","","5728"
"10:46:23.5170030 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0005077","Offset: 18,990,592, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.5175466 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0004493","Offset: 18,974,208, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.5180398 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0003853","Offset: 18,966,016, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.5184609 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0260408","Offset: 18,087,936, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.5193002 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 8480","5728"
"10:46:23.5193411 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 8588","5728"
"10:46:23.5193800 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 7340","5728"
"10:46:23.5226261 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0676186","Offset: 18,956,288, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8260"
"10:46:23.5226913 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0671959","Offset: 18,923,520, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","4920"
"10:46:23.5388714 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\.metadata","0.0000064","CreationTime: 6/19/2019 4:53:46 PM, LastAccessTime: 6/19/2019 4:53:46 PM, LastWriteTime: 6/19/2019 4:53:46 PM, ChangeTime: 6/19/2019 4:53:47 PM, FileAttributes: A","5068"
"10:46:23.5388936 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\.metadata","0.0000107","","5068"
"10:46:23.5391999 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\.metadata-v2","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.5392302 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\.metadata-v2","0.0000030","CreationTime: 6/19/2019 4:53:47 PM, LastAccessTime: 6/19/2019 4:53:47 PM, LastWriteTime: 6/19/2019 4:53:47 PM, ChangeTime: 6/19/2019 4:53:48 PM, FileAttributes: A","5068"
"10:46:23.5392426 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\.metadata-v2","0.0000056","","5068"
"10:46:23.5394483 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0156663","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.5445772 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000043","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:23.5446173 AM","firefox.exe","1008","RegOpenKey","HKLM\SOFTWARE\Intel\IGFX\INSTR\UMD","0.0000120","Desired Access: Read","1120"
"10:46:23.5446523 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:23.5446681 AM","firefox.exe","1008","RegOpenKey","HKLM\SOFTWARE\Intel\IGFX\INSTR\UMD","0.0000051","Desired Access: Read","1120"
"10:46:23.5446856 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:23.5446988 AM","firefox.exe","1008","RegOpenKey","HKLM\SOFTWARE\Intel\IGFX\INSTR\UMD","0.0000047","Desired Access: Read","1120"
"10:46:23.5448221 AM","firefox.exe","1008","QueryNameInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000111","Name: \Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","1120"
"10:46:23.5449233 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000128","Desired Access: Query Value, Maximum Allowed","1120"
"10:46:23.5449591 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\Properties\{83da6326-97a6-4088-9453-a1923f573b29}\0009","0.0000111","Desired Access: Query Value","1120"
"10:46:23.5449864 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\Properties\{83da6326-97a6-4088-9453-a1923f573b29}\0009\(Default)","0.0000026","Length: 140","1120"
"10:46:23.5450060 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\Properties\{83da6326-97a6-4088-9453-a1923f573b29}\0009","0.0000013","","1120"
"10:46:23.5450197 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000008","","1120"
"10:46:23.5451114 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:23.5451246 AM","firefox.exe","1008","RegOpenKey","HKLM\SOFTWARE\Intel\EventTrace","0.0000090","Desired Access: Query Value","1120"
"10:46:23.5451473 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Intel\EventTrace\UmdEnableAll","0.0000025","Length: 16","1120"
"10:46:23.5451596 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Intel\EventTrace\UmdEnableApiAdapter","0.0000017","Length: 16","1120"
"10:46:23.5451699 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Intel\EventTrace\UmdEnableApiRender","0.0000017","Length: 16","1120"
"10:46:23.5451801 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Intel\EventTrace\UmdEnableApiResource","0.0000021","Length: 16","1120"
"10:46:23.5451899 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Intel\EventTrace\UmdEnableApiState","0.0000022","Length: 16","1120"
"10:46:23.5452006 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Intel\EventTrace\UmdEnableApiQuery","0.0000017","Length: 16","1120"
"10:46:23.5452104 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Intel\EventTrace\UmdEnableD3d","0.0000021","Length: 16","1120"
"10:46:23.5452206 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Intel\EventTrace\UmdEnableGhal3d","0.0000022","Length: 16","1120"
"10:46:23.5452305 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Intel\EventTrace\UmdEnableDxva","0.0000021","Length: 16","1120"
"10:46:23.5452407 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Intel\EventTrace\UmdEnableOGL","0.0000021","Length: 16","1120"
"10:46:23.5452518 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Intel\EventTrace\(Default)","0.0000021","Length: 16","1120"
"10:46:23.5452659 AM","firefox.exe","1008","RegCloseKey","HKLM\SOFTWARE\Intel\EventTrace","0.0000017","","1120"
"10:46:23.5453329 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0017787","Offset: 18,464,768, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.5471466 AM","firefox.exe","1008","RegQueryKey","HKCU","0.0000047","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:23.5471872 AM","firefox.exe","1008","RegOpenKey","HKCU\Software\Intel\Display\igfxcui\3D","0.0000187","Desired Access: Read","1120"
"10:46:23.5472285 AM","firefox.exe","1008","RegQueryValue","HKCU\Software\Intel\Display\igfxcui\3D\global","0.0000039","Type: REG_BINARY, Length: 8, Data: 00 00 00 00 00 00 00 00","1120"
"10:46:23.5472499 AM","firefox.exe","1008","RegCloseKey","HKCU\Software\Intel\Display\igfxcui\3D","0.0000013","","1120"
"10:46:23.5474274 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0013188","Offset: 19,138,048, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.5487927 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0003849","Offset: 18,546,688, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.5492079 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000046","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:23.5492441 AM","firefox.exe","1008","RegOpenKey","HKLM\SOFTWARE\INTEL\IGFX\DPP","0.0000154","Desired Access: Read","1120"
"10:46:23.5492778 AM","firefox.exe","1008","RegSetInfoKey","HKLM\SOFTWARE\Intel\IGFX\DPP","0.0000013","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","1120"
"10:46:23.5492966 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Intel\IGFX\DPP\SupportedDPP","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","1120"
"10:46:23.5493175 AM","firefox.exe","1008","RegCloseKey","HKLM\SOFTWARE\Intel\IGFX\DPP","0.0000030","","1120"
"10:46:23.5493525 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:23.5493674 AM","firefox.exe","1008","RegOpenKey","HKLM\SOFTWARE\INTEL\IGFX\DPP","0.0000039","Desired Access: Read","1120"
"10:46:23.5493824 AM","firefox.exe","1008","RegSetInfoKey","HKLM\SOFTWARE\Intel\IGFX\DPP","0.0000008","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","1120"
"10:46:23.5493935 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Intel\IGFX\DPP\SupportedDPP","0.0000025","Type: REG_DWORD, Length: 4, Data: 0","1120"
"10:46:23.5494075 AM","firefox.exe","1008","RegCloseKey","HKLM\SOFTWARE\Intel\IGFX\DPP","0.0000009","","1120"
"10:46:23.5495471 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d11.dll","0.0003310","Offset: 2,642,944, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.5499204 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d11.dll","0.0106880","Offset: 2,724,864, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.5514922 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\Tablet PC\","0.0000175","Desired Access: Read","5728"
"10:46:23.5515289 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\Tablet PC\IsTabletPC","0.0000043","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:23.5515481 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\Tablet PC","0.0000017","","5728"
"10:46:23.5523993 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000188","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5524458 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000047","Name: \Program Files\Firefox Nightly\firefox.exe","3800"
"10:46:23.5524646 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000030","Name: \Program Files\Firefox Nightly\firefox.exe","3800"
"10:46:23.5525444 AM","firefox.exe","7384","QueryNormalizedNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000141","","3800"
"10:46:23.5525730 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000064","","3800"
"10:46:23.5534878 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}\.","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:23.5536840 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5537088 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000042","CreationTime: 3/26/2020 10:46:22 AM, LastAccessTime: 3/26/2020 10:46:22 AM, LastWriteTime: 3/26/2020 10:46:22 AM, ChangeTime: 3/26/2020 10:46:22 AM, FileAttributes: DNCI","3800"
"10:46:23.5537224 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000043","","3800"
"10:46:23.5537698 AM","firefox.exe","7384","CreateFile","C:\","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5538039 AM","firefox.exe","7384","QueryDirectory","C:\Users","0.0000158","Filter: Users, 1: Users","3800"
"10:46:23.5538338 AM","firefox.exe","7384","CloseFile","C:\","0.0000042","","3800"
"10:46:23.5539336 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5539579 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles","0.0000099","Filter: diggles, 1: diggles","3800"
"10:46:23.5539797 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000038","","3800"
"10:46:23.5540757 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5540979 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData","0.0000098","Filter: AppData, 1: AppData","3800"
"10:46:23.5541188 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:23.5542148 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5542370 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\LocalLow","0.0000081","Filter: LocalLow, 1: LocalLow","3800"
"10:46:23.5542558 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:23.5543496 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5543714 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000072","Filter: Mozilla, 1: Mozilla","3800"
"10:46:23.5543893 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow","0.0000034","","3800"
"10:46:23.5545015 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}\.","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5545890 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}\.","0.0000068","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5546760 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}\.","0.0000073","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5547678 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}\.","0.0000068","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5548608 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000064","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5549504 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000111","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5549781 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000051","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5549943 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000039","","3800"
"10:46:23.5551441 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000170","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5551505 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000064","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:35:41 AM, LastWriteTime: 3/26/2020 10:35:41 AM, ChangeTime: 3/26/2020 10:35:41 AM, FileAttributes: D","5068"
"10:46:23.5551782 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000098","","5068"
"10:46:23.5551808 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000059","","3800"
"10:46:23.5553335 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000162","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5553860 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000017","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.5554048 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000059","","3800"
"10:46:23.5554491 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000256","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.5554991 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\*","0.0089118","Filter: *, 1: .","5068"
"10:46:23.5555507 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000111","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5555605 AM","firefox.exe","7384","ReadFile","C:\$Directory","0.0088307","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5068"
"10:46:23.5555776 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000038","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5555916 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000039","","3800"
"10:46:23.5556881 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000072","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5557755 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000107","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5558003 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000025","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5558127 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000034","","3800"
"10:46:23.5559006 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5559219 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000034","","3800"
"10:46:23.5560089 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5560388 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000008","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.5560486 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000034","","3800"
"10:46:23.5561403 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000099","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5561630 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000029","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5561749 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000034","","3800"
"10:46:23.5562675 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow","0.0000072","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5563537 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5563767 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\LocalLow","0.0000026","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5563887 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow","0.0000034","","3800"
"10:46:23.5564753 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5564953 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow","0.0000034","","3800"
"10:46:23.5566186 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow","0.0000150","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5566617 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\LocalLow","0.0000022","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.5566771 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow","0.0000055","","3800"
"10:46:23.5568158 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow","0.0000153","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5568507 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\LocalLow","0.0000047","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5568708 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow","0.0000047","","3800"
"10:46:23.5569958 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000073","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5570901 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000124","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5571170 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5571294 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:23.5572181 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5572386 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:23.5573252 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5573538 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData","0.0000008","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.5573632 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:23.5574549 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5574762 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000026","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5574882 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000030","","3800"
"10:46:23.5575855 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000055","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5576746 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5576968 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000026","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5577088 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:23.5577941 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5578133 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:23.5578965 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5579242 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles","0.0000009","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.5579336 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000030","","3800"
"10:46:23.5580215 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5580424 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5580544 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:23.5581440 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000055","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5582250 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5582468 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5582587 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000035","","3800"
"10:46:23.5583424 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5583611 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000035","","3800"
"10:46:23.5584435 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5584708 AM","firefox.exe","7384","DeviceIoControl","C:\Users","0.0000008","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.5584802 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000034","","3800"
"10:46:23.5585664 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5585873 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5585992 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000034","","3800"
"10:46:23.5588766 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}\.","0.0000081","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:23.5590421 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5590630 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000043","CreationTime: 3/26/2020 10:46:22 AM, LastAccessTime: 3/26/2020 10:46:22 AM, LastWriteTime: 3/26/2020 10:46:22 AM, ChangeTime: 3/26/2020 10:46:22 AM, FileAttributes: DNCI","3800"
"10:46:23.5590750 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000034","","3800"
"10:46:23.5592354 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5592542 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000025","CreationTime: 2/16/2018 12:59:41 PM, LastAccessTime: 3/26/2020 10:46:22 AM, LastWriteTime: 3/26/2020 10:46:22 AM, ChangeTime: 3/26/2020 10:46:22 AM, FileAttributes: DNCI","3800"
"10:46:23.5592640 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000030","","3800"
"10:46:23.5594555 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow","0.0000146","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5594833 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\LocalLow","0.0000038","CreationTime: 2/16/2018 12:54:36 PM, LastAccessTime: 2/16/2018 12:59:41 PM, LastWriteTime: 2/16/2018 12:59:41 PM, ChangeTime: 3/20/2019 7:53:52 PM, FileAttributes: DNCI","3800"
"10:46:23.5594995 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow","0.0000047","","3800"
"10:46:23.5597269 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5597453 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData","0.0000025","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 3/20/2019 7:22:57 PM, LastWriteTime: 3/20/2019 7:22:57 PM, ChangeTime: 3/20/2019 7:22:57 PM, FileAttributes: HD","3800"
"10:46:23.5597551 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000030","","3800"
"10:46:23.5599087 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000094","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5599257 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles","0.0000026","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 5/9/2019 3:17:34 PM, LastWriteTime: 5/9/2019 3:17:34 PM, ChangeTime: 5/9/2019 3:17:34 PM, FileAttributes: D","3800"
"10:46:23.5599355 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000030","","3800"
"10:46:23.5600870 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000090","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5601041 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users","0.0000025","CreationTime: 4/11/2018 2:04:33 PM, LastAccessTime: 3/20/2019 7:21:22 PM, LastWriteTime: 3/20/2019 7:21:22 PM, ChangeTime: 3/20/2019 7:21:22 PM, FileAttributes: RD","3800"
"10:46:23.5601135 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000034","","3800"
"10:46:23.5602957 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts\*","0.0000081","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:23.5604646 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:23.5606327 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5606506 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d11.dll","0.0101607","Offset: 2,622,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.5606536 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000030","CreationTime: 3/20/2019 7:21:23 PM, LastAccessTime: 4/30/2019 6:29:16 PM, LastWriteTime: 4/30/2019 6:29:16 PM, ChangeTime: 4/30/2019 6:29:16 PM, FileAttributes: D","3800"
"10:46:23.5606647 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000034","","3800"
"10:46:23.5606997 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5607206 AM","firefox.exe","7384","QueryDirectory","C:\Users","0.0000111","Filter: Users, 1: Users","3800"
"10:46:23.5607437 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","3800"
"10:46:23.5608354 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5608567 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles","0.0000077","Filter: diggles, 1: diggles","3800"
"10:46:23.5608751 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000038","","3800"
"10:46:23.5609655 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5609860 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData","0.0000085","Filter: AppData, 1: AppData","3800"
"10:46:23.5610052 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:23.5610961 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5611170 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Local","0.0000072","Filter: Local, 1: Local","3800"
"10:46:23.5611345 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:23.5612313 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5612527 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000085","Filter: Windows, 1: Windows","3800"
"10:46:23.5612714 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000039","","3800"
"10:46:23.5613499 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts\*","0.0000077","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5613994 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts\*","0.0000069","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5614459 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts\*","0.0000064","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5614980 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts\*\","0.0000068","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5615872 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts","0.0000089","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5616734 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts","0.0000089","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5617583 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts","0.0000089","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5618466 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5619349 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000064","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5620198 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000103","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5620454 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000039","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5620603 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000035","","3800"
"10:46:23.5621504 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5621721 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000030","","3800"
"10:46:23.5622605 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5622907 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000013","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.5623010 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000034","","3800"
"10:46:23.5623940 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5624175 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5624298 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000035","","3800"
"10:46:23.5625220 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000064","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5626078 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5626308 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local\Microsoft","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5626432 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000030","","3800"
"10:46:23.5627302 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000120","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5627699 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000038","","3800"
"10:46:23.5628612 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5628898 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Local\Microsoft","0.0000013","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.5628996 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000030","","3800"
"10:46:23.5629930 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5630152 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local\Microsoft","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5630272 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000030","","3800"
"10:46:23.5631163 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local","0.0000064","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5632017 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5632239 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5632358 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local","0.0000034","","3800"
"10:46:23.5633220 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5633425 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local","0.0000034","","3800"
"10:46:23.5634829 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local","0.0000106","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5635144 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Local","0.0000013","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.5635247 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local","0.0000038","","3800"
"10:46:23.5636177 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5636403 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local","0.0000034","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5636531 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local","0.0000034","","3800"
"10:46:23.5637440 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000072","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5638366 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000145","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5638711 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000043","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5638903 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000051","","3800"
"10:46:23.5640230 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000132","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5640533 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000051","","3800"
"10:46:23.5641809 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5642116 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData","0.0000009","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.5642214 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:23.5643153 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5643379 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5643503 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:23.5644412 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000055","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5644518 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0005159","0: .., 1: 1451318868ntouromlalnodry--epcr.files, 2: 1451318868ntouromlalnodry--epcr.sqlite, 3: 1657114595AmcateirvtiSty.files, 4: 1657114595AmcateirvtiSty.sqlite, 5: 2823318777ntouromlalnodry--naod.files, 6: 2823318777ntouromlalnodry--naod.sqlite, 7: 2918063365piupsah.files, 8: 2918063365piupsah.sqlite, 9: 3561288849sdhlie.files, 10: 3561288849sdhlie.sqlite, 11: 3870112724rsegmnoittet-es.files, 12: 3870112724rsegmnoittet-es.sqlite","5068"
"10:46:23.5644958 AM","firefox.exe","7384","ReadFile","C:\$Directory","0.0004522","Offset: 4,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5068"
"10:46:23.5645342 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5645564 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000029","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5645687 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:23.5646528 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5646724 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:23.5647560 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5647833 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles","0.0000009","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.5647932 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000029","","3800"
"10:46:23.5648802 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5649015 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000026","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5649130 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000035","","3800"
"10:46:23.5650026 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000060","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5650893 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000111","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5651136 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5651260 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000038","","3800"
"10:46:23.5652160 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5652373 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000039","","3800"
"10:46:23.5652612 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.files","0.0007932","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.5653226 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000086","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5653504 AM","firefox.exe","7384","DeviceIoControl","C:\Users","0.0000008","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.5653598 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000034","","3800"
"10:46:23.5654460 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5654669 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000029","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5654784 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000034","","3800"
"10:46:23.5656866 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts\*","0.0000077","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:23.5658504 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:23.5660117 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5660313 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000035","CreationTime: 3/20/2019 7:21:23 PM, LastAccessTime: 4/30/2019 6:29:16 PM, LastWriteTime: 4/30/2019 6:29:16 PM, ChangeTime: 4/30/2019 6:29:16 PM, FileAttributes: D","3800"
"10:46:23.5660424 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000039","","3800"
"10:46:23.5660787 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.files","0.0000043","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 6/19/2019 4:53:49 PM, ChangeTime: 6/19/2019 4:53:49 PM, FileAttributes: D","5068"
"10:46:23.5660988 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.files","0.0000072","","5068"
"10:46:23.5662182 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5662387 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000026","CreationTime: 3/20/2019 7:21:23 PM, LastAccessTime: 3/20/2019 7:53:30 PM, LastWriteTime: 3/20/2019 7:53:30 PM, ChangeTime: 3/20/2019 7:53:30 PM, FileAttributes: D","3800"
"10:46:23.5662489 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000035","","3800"
"10:46:23.5663957 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0089967","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.5664529 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5664717 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local","0.0000025","CreationTime: 3/20/2019 7:21:23 PM, LastAccessTime: 3/26/2020 10:43:56 AM, LastWriteTime: 3/26/2020 10:43:56 AM, ChangeTime: 3/26/2020 10:43:56 AM, FileAttributes: D","3800"
"10:46:23.5664815 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local","0.0000034","","3800"
"10:46:23.5666393 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000099","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5666577 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData","0.0000025","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 3/20/2019 7:22:57 PM, LastWriteTime: 3/20/2019 7:22:57 PM, ChangeTime: 3/20/2019 7:22:57 PM, FileAttributes: HD","3800"
"10:46:23.5666671 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:23.5668190 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000089","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5668360 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles","0.0000026","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 5/9/2019 3:17:34 PM, LastWriteTime: 5/9/2019 3:17:34 PM, ChangeTime: 5/9/2019 3:17:34 PM, FileAttributes: D","3800"
"10:46:23.5668454 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000030","","3800"
"10:46:23.5669982 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000094","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5670157 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users","0.0000021","CreationTime: 4/11/2018 2:04:33 PM, LastAccessTime: 3/20/2019 7:21:22 PM, LastWriteTime: 3/20/2019 7:21:22 PM, ChangeTime: 3/20/2019 7:21:22 PM, FileAttributes: RD","3800"
"10:46:23.5670250 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000035","","3800"
"10:46:23.5672508 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\.","0.0000072","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:23.5674095 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5674287 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly","0.0000025","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:29:06 AM, LastWriteTime: 3/25/2020 10:29:06 AM, ChangeTime: 3/25/2020 10:29:06 AM, FileAttributes: D","3800"
"10:46:23.5674389 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000034","","3800"
"10:46:23.5675422 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\.","0.0000068","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5676241 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\.","0.0000055","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5677030 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\.","0.0000056","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5677866 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\.","0.0000060","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5678686 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000051","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5679484 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000093","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5679761 AM","firefox.exe","7384","FileSystemControl","C:\Program Files\Firefox Nightly","0.0000085","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5679966 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000034","","3800"
"10:46:23.5681655 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000133","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5681984 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000047","","3800"
"10:46:23.5683038 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000106","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5683388 AM","firefox.exe","7384","DeviceIoControl","C:\Program Files\Firefox Nightly","0.0000012","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.5683507 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000038","","3800"
"10:46:23.5684501 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5684753 AM","firefox.exe","7384","FileSystemControl","C:\Program Files\Firefox Nightly","0.0000034","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5684889 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000039","","3800"
"10:46:23.5685849 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000064","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5686698 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5686937 AM","firefox.exe","7384","FileSystemControl","C:\Program Files","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5687070 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000034","","3800"
"10:46:23.5687932 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000089","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5688132 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000034","","3800"
"10:46:23.5688973 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5689254 AM","firefox.exe","7384","DeviceIoControl","C:\Program Files","0.0000009","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.5689352 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000034","","3800"
"10:46:23.5690240 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5690457 AM","firefox.exe","7384","FileSystemControl","C:\Program Files","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5690577 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000034","","3800"
"10:46:23.5693120 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\.","0.0000072","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:23.5694669 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5694861 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly","0.0000030","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:29:06 AM, LastWriteTime: 3/25/2020 10:29:06 AM, ChangeTime: 3/25/2020 10:29:06 AM, FileAttributes: D","3800"
"10:46:23.5694976 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000034","","3800"
"10:46:23.5696533 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000094","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5696712 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files","0.0000026","CreationTime: 4/11/2018 4:38:20 PM, LastAccessTime: 3/26/2020 10:29:39 AM, LastWriteTime: 3/26/2020 10:29:39 AM, ChangeTime: 3/26/2020 10:29:39 AM, FileAttributes: RD","3800"
"10:46:23.5696815 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000034","","3800"
"10:46:23.5698457 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome\*","0.0000094","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:23.5700339 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:23.5702293 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5702515 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000030","CreationTime: 6/19/2019 4:53:26 PM, LastAccessTime: 3/26/2020 10:46:23 AM, LastWriteTime: 3/26/2020 10:46:23 AM, ChangeTime: 3/26/2020 10:46:23 AM, FileAttributes: D","3800"
"10:46:23.5702630 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000039","","3800"
"10:46:23.5702993 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5703206 AM","firefox.exe","7384","QueryDirectory","C:\Users","0.0000111","Filter: Users, 1: Users","3800"
"10:46:23.5703441 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","3800"
"10:46:23.5704392 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000116","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5704631 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles","0.0000086","Filter: diggles, 1: diggles","3800"
"10:46:23.5704828 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000038","","3800"
"10:46:23.5705749 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5705958 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData","0.0000094","Filter: AppData, 1: AppData","3800"
"10:46:23.5706155 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000038","","3800"
"10:46:23.5707080 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5707289 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming","0.0000073","Filter: Roaming, 1: Roaming","3800"
"10:46:23.5707490 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000055","","3800"
"10:46:23.5708343 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:23.5708523 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5708676 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\GraphicsDrivers","0.0000068","Desired Access: Read","1120"
"10:46:23.5708740 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000085","Filter: Mozilla, 1: Mozilla","3800"
"10:46:23.5708894 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\GraphicsDrivers","0.0000094","Desired Access: Read","1120"
"10:46:23.5708932 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000043","","3800"
"10:46:23.5709197 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Control\GraphicsDrivers","0.0000017","","1120"
"10:46:23.5709901 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5710131 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000073","Filter: Firefox, 1: Firefox","3800"
"10:46:23.5710306 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000038","","3800"
"10:46:23.5710912 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d11.dll","0.0112346","Offset: 2,671,616, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.5711296 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5711522 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000085","Filter: Profiles, 1: Profiles","3800"
"10:46:23.5711710 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000034","","3800"
"10:46:23.5712636 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome\*","0.0000093","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5713203 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome\*","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5713728 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome\*","0.0000077","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5714304 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome\*\","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5715289 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome","0.0000111","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5716224 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5717167 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5718140 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome","0.0000106","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5719117 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000076","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5720034 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000119","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5720311 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000034","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5720456 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000043","","3800"
"10:46:23.5721446 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000115","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5721685 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000034","","3800"
"10:46:23.5722632 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000111","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5722952 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000013","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.5723051 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000034","","3800"
"10:46:23.5724045 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000123","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5724305 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5724433 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000038","","3800"
"10:46:23.5725427 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000077","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5726332 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000111","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5726592 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5726720 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000034","","3800"
"10:46:23.5727633 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000111","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5727855 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000034","","3800"
"10:46:23.5728759 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000107","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5729058 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000009","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.5729156 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000034","","3800"
"10:46:23.5730108 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000106","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5730342 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5730462 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000034","","3800"
"10:46:23.5731379 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000073","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5732245 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000107","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5732484 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5732604 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000038","","3800"
"10:46:23.5733487 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5733700 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000034","","3800"
"10:46:23.5734579 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5734873 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000009","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.5734967 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000034","","3800"
"10:46:23.5735970 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5736209 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000026","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5736324 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000039","","3800"
"10:46:23.5737224 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000073","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5738091 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5738321 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000026","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5738436 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000039","","3800"
"10:46:23.5739302 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5739516 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000029","","3800"
"10:46:23.5740377 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000099","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5740668 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000008","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.5740757 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000034","","3800"
"10:46:23.5741662 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5741888 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5742003 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000030","","3800"
"10:46:23.5742865 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000060","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5743676 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000089","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5743898 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming","0.0000025","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5744013 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000034","","3800"
"10:46:23.5744853 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5745054 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000030","","3800"
"10:46:23.5745886 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000089","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5746163 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming","0.0000009","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.5746253 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000034","","3800"
"10:46:23.5747136 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5747349 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming","0.0000026","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5747464 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000035","","3800"
"10:46:23.5748352 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000064","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5749227 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000093","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5749453 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5749572 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:23.5750421 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5750622 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:23.5751462 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000086","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5751740 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData","0.0000008","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.5751834 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000029","","3800"
"10:46:23.5752742 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000124","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5753028 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5753152 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000038","","3800"
"10:46:23.5754112 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000060","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5754283 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000047","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 6/19/2019 4:53:48 PM, LastWriteTime: 3/25/2020 10:46:19 AM, ChangeTime: 3/25/2020 10:46:19 AM, FileAttributes: A","5068"
"10:46:23.5754500 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000077","","5068"
"10:46:23.5754944 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5755174 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000026","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5755294 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:23.5756181 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5756390 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000107","","3800"
"10:46:23.5757504 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.files","0.0014673","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.5757585 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5757888 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles","0.0000013","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.5757986 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:23.5758886 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5759104 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5759228 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:23.5760111 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000055","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.5760917 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000086","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5761139 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000026","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5761259 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000047","","3800"
"10:46:23.5762138 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000089","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5762338 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000034","","3800"
"10:46:23.5763166 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000077","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5763439 AM","firefox.exe","7384","DeviceIoControl","C:\Users","0.0000008","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.5763528 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000035","","3800"
"10:46:23.5764395 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5764608 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000026","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.5764736 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000034","","3800"
"10:46:23.5766882 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome\*","0.0000090","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:23.5768678 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:23.5770436 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5770654 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000034","CreationTime: 6/19/2019 4:53:26 PM, LastAccessTime: 3/26/2020 10:46:23 AM, LastWriteTime: 3/26/2020 10:46:23 AM, ChangeTime: 3/26/2020 10:46:23 AM, FileAttributes: D","3800"
"10:46:23.5770765 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000034","","3800"
"10:46:23.5772429 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.files","0.0000047","CreationTime: 6/19/2019 4:53:52 PM, LastAccessTime: 6/19/2019 4:53:52 PM, LastWriteTime: 6/19/2019 4:53:52 PM, ChangeTime: 6/19/2019 4:53:52 PM, FileAttributes: D","5068"
"10:46:23.5772706 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.files","0.0000068","","5068"
"10:46:23.5772744 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5772958 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000030","CreationTime: 2/16/2018 12:59:38 PM, LastAccessTime: 8/16/2019 1:34:27 PM, LastWriteTime: 8/16/2019 1:34:27 PM, ChangeTime: 8/16/2019 1:34:27 PM, FileAttributes: D","3800"
"10:46:23.5773064 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000039","","3800"
"10:46:23.5774827 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5775023 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000030","CreationTime: 2/16/2018 12:59:38 PM, LastAccessTime: 3/21/2019 3:00:59 PM, LastWriteTime: 3/21/2019 3:00:59 PM, ChangeTime: 3/21/2019 3:00:59 PM, FileAttributes: D","3800"
"10:46:23.5775125 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000039","","3800"
"10:46:23.5775437 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0267593","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.5776892 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5777075 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000026","CreationTime: 2/16/2018 12:59:38 PM, LastAccessTime: 2/16/2018 12:59:42 PM, LastWriteTime: 2/16/2018 12:59:42 PM, ChangeTime: 3/20/2019 7:22:59 PM, FileAttributes: D","3800"
"10:46:23.5777178 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000029","","3800"
"10:46:23.5778701 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000094","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5778871 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming","0.0000026","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 10/22/2019 8:25:35 PM, LastWriteTime: 10/22/2019 8:25:35 PM, ChangeTime: 10/22/2019 8:25:35 PM, FileAttributes: D","3800"
"10:46:23.5778965 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000034","","3800"
"10:46:23.5780523 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000089","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5780698 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData","0.0000021","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 3/20/2019 7:22:57 PM, LastWriteTime: 3/20/2019 7:22:57 PM, ChangeTime: 3/20/2019 7:22:57 PM, FileAttributes: HD","3800"
"10:46:23.5780791 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000030","","3800"
"10:46:23.5782298 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000089","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5782468 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles","0.0000026","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 5/9/2019 3:17:34 PM, LastWriteTime: 5/9/2019 3:17:34 PM, ChangeTime: 5/9/2019 3:17:34 PM, FileAttributes: D","3800"
"10:46:23.5782562 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:23.5784559 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.5784742 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users","0.0000026","CreationTime: 4/11/2018 2:04:33 PM, LastAccessTime: 3/20/2019 7:21:22 PM, LastWriteTime: 3/20/2019 7:21:22 PM, ChangeTime: 3/20/2019 7:21:22 PM, FileAttributes: RD","3800"
"10:46:23.5784840 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000039","","3800"
"10:46:23.5823612 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000375","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.5824371 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000047","AllocationSize: 581,632, EndOfFile: 579,272, NumberOfLinks: 1, DeletePending: False, Directory: False","1120"
"10:46:23.5824627 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000098","","1120"
"10:46:23.5825195 AM","firefox.exe","1008","RegQueryKey","HKCU","0.0000021","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:23.5825399 AM","firefox.exe","1008","RegOpenKey","HKCU\Software\Microsoft\Direct3D","0.0000056","Desired Access: Read","1120"
"10:46:23.5825604 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:23.5825732 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\Direct3D","0.0000060","Desired Access: Read","1120"
"10:46:23.5830630 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d11.dll","0.0008606","Offset: 2,659,328, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.5839659 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\GraphicsDrivers\Scheduler","0.0000106","Desired Access: Read, Maximum Allowed","1120"
"10:46:23.5840149 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\GraphicsDrivers\Scheduler","0.0000060","Desired Access: Read, Maximum Allowed","1120"
"10:46:23.5850291 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0007949","Offset: 19,109,376, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.5858739 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0005675","Offset: 18,489,344, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.5866709 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0000227","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.5867384 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0000055","CreationTime: 5/9/2018 4:39:30 AM, LastAccessTime: 3/20/2019 7:14:15 PM, LastWriteTime: 5/9/2018 4:39:30 AM, ChangeTime: 3/20/2019 7:51:29 PM, FileAttributes: A","1120"
"10:46:23.5867610 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0000072","","1120"
"10:46:23.5869193 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0000187","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.5869679 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:23.5869931 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0000034","AllocationSize: 32,526,336, EndOfFile: 32,525,408, NumberOfLinks: 1, DeletePending: False, Directory: False","1120"
"10:46:23.5870362 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0000025","SyncType: SyncTypeOther","1120"
"10:46:23.5871475 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0000086","","1120"
"10:46:23.5874308 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.5874637 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0000038","CreationTime: 5/9/2018 4:39:30 AM, LastAccessTime: 3/20/2019 7:14:15 PM, LastWriteTime: 5/9/2018 4:39:30 AM, ChangeTime: 3/20/2019 7:51:29 PM, FileAttributes: A","1120"
"10:46:23.5874799 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0000047","","1120"
"10:46:23.5875930 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0000158","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.5876275 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0000064","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:23.5876634 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0000017","SyncType: SyncTypeOther","1120"
"10:46:23.5879347 AM","firefox.exe","1008","Load Image","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0000000","Image Base: 0x7ffb3ce70000, Image Size: 0x1de0000","1120"
"10:46:23.5881382 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0000082","","1120"
"10:46:23.5883507 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0300540","Offset: 15,328,256, Length: 15,872, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.6019499 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions\.","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:23.6021641 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6021978 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000034","CreationTime: 6/19/2019 4:53:36 PM, LastAccessTime: 6/19/2019 4:53:36 PM, LastWriteTime: 6/19/2019 4:53:36 PM, ChangeTime: 6/19/2019 4:53:36 PM, FileAttributes: D","3800"
"10:46:23.6022119 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000042","","3800"
"10:46:23.6022558 AM","firefox.exe","7384","CreateFile","C:\","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6022797 AM","firefox.exe","7384","QueryDirectory","C:\Users","0.0000141","Filter: Users, 1: Users","3800"
"10:46:23.6023074 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","3800"
"10:46:23.6024056 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6024290 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles","0.0000090","Filter: diggles, 1: diggles","3800"
"10:46:23.6024491 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000038","","3800"
"10:46:23.6025434 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6025651 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData","0.0000103","Filter: AppData, 1: AppData","3800"
"10:46:23.6025856 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:23.6026863 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6027081 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming","0.0000072","Filter: Roaming, 1: Roaming","3800"
"10:46:23.6027260 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:23.6028160 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6028369 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000086","Filter: Mozilla, 1: Mozilla","3800"
"10:46:23.6028553 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000034","","3800"
"10:46:23.6029470 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6029718 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000072","Filter: Firefox, 1: Firefox","3800"
"10:46:23.6029893 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000034","","3800"
"10:46:23.6030823 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6031040 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000081","Filter: Profiles, 1: Profiles","3800"
"10:46:23.6031219 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000035","","3800"
"10:46:23.6032380 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions\.","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6033289 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions\.","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6034176 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions\.","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6035145 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions\.","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6036113 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6037056 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000128","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6037346 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000043","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6037500 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000038","","3800"
"10:46:23.6038469 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000123","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6038707 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000035","","3800"
"10:46:23.6039659 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000119","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6039987 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000009","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.6040086 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000034","","3800"
"10:46:23.6041084 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000119","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6041336 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6041459 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000030","","3800"
"10:46:23.6042748 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6043294 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000047","CreationTime: 6/19/2019 4:53:51 PM, LastAccessTime: 6/19/2019 4:53:51 PM, LastWriteTime: 3/26/2020 10:35:41 AM, ChangeTime: 3/26/2020 10:35:41 AM, FileAttributes: A","5068"
"10:46:23.6043503 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000081","","5068"
"10:46:23.6043708 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000119","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6043977 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6044105 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000038","","3800"
"10:46:23.6045193 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000128","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6045449 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000034","","3800"
"10:46:23.6046537 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000115","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6046579 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.files","0.0214055","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.6046857 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000008","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.6046955 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000038","","3800"
"10:46:23.6047966 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000111","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6048214 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000025","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6048333 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000034","","3800"
"10:46:23.6049285 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000076","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6050181 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000110","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6050428 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6050552 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000034","","3800"
"10:46:23.6051529 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000111","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6051751 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000034","","3800"
"10:46:23.6052655 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000124","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6052971 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000013","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.6053078 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000034","","3800"
"10:46:23.6054106 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000124","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6054362 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6054486 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000034","","3800"
"10:46:23.6055467 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000077","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6056423 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000123","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6056683 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6056815 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000039","","3800"
"10:46:23.6057741 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000103","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6057959 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000030","","3800"
"10:46:23.6058838 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6059124 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000012","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.6059222 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000034","","3800"
"10:46:23.6060143 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6060374 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000025","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6060493 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000034","","3800"
"10:46:23.6061398 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000068","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6062238 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000103","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6062473 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6062592 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000034","","3800"
"10:46:23.6063458 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000099","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6063668 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000029","","3800"
"10:46:23.6064525 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6064811 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000009","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.6064909 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000030","","3800"
"10:46:23.6065809 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6066031 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000026","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6066146 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000030","","3800"
"10:46:23.6067064 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000060","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6067879 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6068096 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming","0.0000026","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6068216 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000034","","3800"
"10:46:23.6069052 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6069248 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000030","","3800"
"10:46:23.6070085 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6070353 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming","0.0000009","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.6070447 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000034","","3800"
"10:46:23.6071335 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6071544 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming","0.0000025","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6071659 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000030","","3800"
"10:46:23.6072542 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000060","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6073370 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6073592 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000025","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6073707 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000030","","3800"
"10:46:23.6074552 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000089","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6074752 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:23.6075597 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6075866 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData","0.0000013","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.6075964 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:23.6076856 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6077069 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000026","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6077184 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000030","","3800"
"10:46:23.6078042 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000051","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6078836 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6079045 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000025","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6079160 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:23.6080154 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6080350 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:23.6081178 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6081447 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles","0.0000008","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.6081541 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:23.6082420 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6082624 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6082744 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:23.6083610 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000051","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6084412 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6084630 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000025","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6084749 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000034","","3800"
"10:46:23.6085581 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6085773 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000030","","3800"
"10:46:23.6086592 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000077","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6086853 AM","firefox.exe","7384","DeviceIoControl","C:\Users","0.0000012","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.6086946 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000030","","3800"
"10:46:23.6087808 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6088013 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6088133 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000029","","3800"
"10:46:23.6090855 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions\.","0.0000094","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:23.6092625 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6092847 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000043","CreationTime: 6/19/2019 4:53:36 PM, LastAccessTime: 6/19/2019 4:53:36 PM, LastWriteTime: 6/19/2019 4:53:36 PM, ChangeTime: 6/19/2019 4:53:36 PM, FileAttributes: D","3800"
"10:46:23.6092971 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000038","","3800"
"10:46:23.6094789 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6095002 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000026","CreationTime: 6/19/2019 4:53:26 PM, LastAccessTime: 3/26/2020 10:46:23 AM, LastWriteTime: 3/26/2020 10:46:23 AM, ChangeTime: 3/26/2020 10:46:23 AM, FileAttributes: D","3800"
"10:46:23.6095104 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000034","","3800"
"10:46:23.6097280 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6097485 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000026","CreationTime: 2/16/2018 12:59:38 PM, LastAccessTime: 8/16/2019 1:34:27 PM, LastWriteTime: 8/16/2019 1:34:27 PM, ChangeTime: 8/16/2019 1:34:27 PM, FileAttributes: D","3800"
"10:46:23.6097588 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000034","","3800"
"10:46:23.6099303 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6099495 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000025","CreationTime: 2/16/2018 12:59:38 PM, LastAccessTime: 3/21/2019 3:00:59 PM, LastWriteTime: 3/21/2019 3:00:59 PM, ChangeTime: 3/21/2019 3:00:59 PM, FileAttributes: D","3800"
"10:46:23.6099593 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000034","","3800"
"10:46:23.6101193 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6101372 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000026","CreationTime: 2/16/2018 12:59:38 PM, LastAccessTime: 2/16/2018 12:59:42 PM, LastWriteTime: 2/16/2018 12:59:42 PM, ChangeTime: 3/20/2019 7:22:59 PM, FileAttributes: D","3800"
"10:46:23.6101470 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000030","","3800"
"10:46:23.6103002 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000094","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6103177 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming","0.0000021","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 10/22/2019 8:25:35 PM, LastWriteTime: 10/22/2019 8:25:35 PM, ChangeTime: 10/22/2019 8:25:35 PM, FileAttributes: D","3800"
"10:46:23.6103266 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000035","","3800"
"10:46:23.6104879 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000090","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6105050 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData","0.0000021","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 3/20/2019 7:22:57 PM, LastWriteTime: 3/20/2019 7:22:57 PM, ChangeTime: 3/20/2019 7:22:57 PM, FileAttributes: HD","3800"
"10:46:23.6105140 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:23.6106659 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000089","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6106829 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles","0.0000022","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 5/9/2019 3:17:34 PM, LastWriteTime: 5/9/2019 3:17:34 PM, ChangeTime: 5/9/2019 3:17:34 PM, FileAttributes: D","3800"
"10:46:23.6106919 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:23.6108455 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000089","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6108625 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users","0.0000022","CreationTime: 4/11/2018 2:04:33 PM, LastAccessTime: 3/20/2019 7:21:22 PM, LastWriteTime: 3/20/2019 7:21:22 PM, ChangeTime: 3/20/2019 7:21:22 PM, FileAttributes: RD","3800"
"10:46:23.6108715 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000034","","3800"
"10:46:23.6111006 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev\.","0.0000086","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:23.6112675 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6112875 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000026","CreationTime: 2/16/2018 12:59:42 PM, LastAccessTime: 2/16/2018 12:59:42 PM, LastWriteTime: 2/16/2018 12:59:42 PM, ChangeTime: 2/16/2018 12:59:42 PM, FileAttributes: D","3800"
"10:46:23.6112982 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000030","","3800"
"10:46:23.6113319 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6113524 AM","firefox.exe","7384","QueryDirectory","C:\Users","0.0000102","Filter: Users, 1: Users","3800"
"10:46:23.6113741 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","3800"
"10:46:23.6114654 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6114863 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles","0.0000086","Filter: diggles, 1: diggles","3800"
"10:46:23.6115060 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000034","","3800"
"10:46:23.6115968 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6116173 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData","0.0000090","Filter: AppData, 1: AppData","3800"
"10:46:23.6116404 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000038","","3800"
"10:46:23.6117317 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6117521 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming","0.0000073","Filter: Roaming, 1: Roaming","3800"
"10:46:23.6117692 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000039","","3800"
"10:46:23.6118580 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6118780 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000081","Filter: Mozilla, 1: Mozilla","3800"
"10:46:23.6118959 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000034","","3800"
"10:46:23.6120026 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev\.","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6120892 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev\.","0.0000073","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6121720 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev\.","0.0000072","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6122607 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev\.","0.0000069","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6123469 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000068","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6124323 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000106","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6124583 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000038","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6124724 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000038","","3800"
"10:46:23.6125624 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6125841 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000035","","3800"
"10:46:23.6126729 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6127032 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000008","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.6127130 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000034","","3800"
"10:46:23.6128056 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6128286 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000034","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6128410 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000034","","3800"
"10:46:23.6129315 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000068","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6130168 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6130403 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000025","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6130522 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000034","","3800"
"10:46:23.6132903 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000290","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6133436 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000073","","3800"
"10:46:23.6134870 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000128","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6135271 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000013","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.6135395 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000038","","3800"
"10:46:23.6136901 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000123","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6137199 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000043","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6137344 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000039","","3800"
"10:46:23.6138326 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000072","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6139196 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6139435 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6139563 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000051","","3800"
"10:46:23.6140476 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6140689 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000035","","3800"
"10:46:23.6141547 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6141837 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming","0.0000009","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.6141935 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000034","","3800"
"10:46:23.6142840 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000089","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6143057 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6143181 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000034","","3800"
"10:46:23.6144107 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000060","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6144969 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6145191 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6145315 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:23.6146198 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6146394 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:23.6147264 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000086","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6147546 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData","0.0000009","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.6147640 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:23.6148544 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6148762 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000026","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6148877 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000030","","3800"
"10:46:23.6149773 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000051","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6150661 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6150874 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6150993 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000035","","3800"
"10:46:23.6151843 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6152035 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:23.6152875 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6153144 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles","0.0000008","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.6153238 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:23.6154117 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6154326 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000025","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6154441 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:23.6155435 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000056","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6156246 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6156468 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000029","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6156583 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000038","","3800"
"10:46:23.6157428 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6157615 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000034","","3800"
"10:46:23.6158447 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000077","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6158712 AM","firefox.exe","7384","DeviceIoControl","C:\Users","0.0000008","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.6158806 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000034","","3800"
"10:46:23.6159668 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6159877 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6159996 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000034","","3800"
"10:46:23.6162676 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev\.","0.0000089","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:23.6164672 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6164882 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000034","CreationTime: 2/16/2018 12:59:42 PM, LastAccessTime: 2/16/2018 12:59:42 PM, LastWriteTime: 2/16/2018 12:59:42 PM, ChangeTime: 2/16/2018 12:59:42 PM, FileAttributes: D","3800"
"10:46:23.6164997 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000034","","3800"
"10:46:23.6166639 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6166827 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000030","CreationTime: 2/16/2018 12:59:38 PM, LastAccessTime: 2/16/2018 12:59:42 PM, LastWriteTime: 2/16/2018 12:59:42 PM, ChangeTime: 3/20/2019 7:22:59 PM, FileAttributes: D","3800"
"10:46:23.6166930 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000029","","3800"
"10:46:23.6168483 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000093","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6168658 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming","0.0000025","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 10/22/2019 8:25:35 PM, LastWriteTime: 10/22/2019 8:25:35 PM, ChangeTime: 10/22/2019 8:25:35 PM, FileAttributes: D","3800"
"10:46:23.6168756 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000034","","3800"
"10:46:23.6170334 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000090","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6170509 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData","0.0000022","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 3/20/2019 7:22:57 PM, LastWriteTime: 3/20/2019 7:22:57 PM, ChangeTime: 3/20/2019 7:22:57 PM, FileAttributes: HD","3800"
"10:46:23.6170603 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000030","","3800"
"10:46:23.6172237 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000090","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6172412 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles","0.0000026","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 5/9/2019 3:17:34 PM, LastWriteTime: 5/9/2019 3:17:34 PM, ChangeTime: 5/9/2019 3:17:34 PM, FileAttributes: D","3800"
"10:46:23.6172510 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000030","","3800"
"10:46:23.6174025 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000090","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6174196 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users","0.0000025","CreationTime: 4/11/2018 2:04:33 PM, LastAccessTime: 3/20/2019 7:21:22 PM, LastWriteTime: 3/20/2019 7:21:22 PM, ChangeTime: 3/20/2019 7:21:22 PM, FileAttributes: RD","3800"
"10:46:23.6174290 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000034","","3800"
"10:46:23.6176568 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions\.","0.0000085","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:23.6178232 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6178437 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000025","CreationTime: 2/16/2018 12:59:40 PM, LastAccessTime: 2/16/2018 12:59:40 PM, LastWriteTime: 2/16/2018 12:59:40 PM, ChangeTime: 2/16/2018 12:59:40 PM, FileAttributes: D","3800"
"10:46:23.6178539 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000039","","3800"
"10:46:23.6178876 AM","firefox.exe","7384","CreateFile","C:\","0.0000086","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6179085 AM","firefox.exe","7384","QueryDirectory","C:\Users","0.0000120","Filter: Users, 1: Users","3800"
"10:46:23.6179324 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","3800"
"10:46:23.6180246 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6180459 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles","0.0000085","Filter: diggles, 1: diggles","3800"
"10:46:23.6180651 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000039","","3800"
"10:46:23.6181560 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6181765 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData","0.0000089","Filter: AppData, 1: AppData","3800"
"10:46:23.6181957 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000038","","3800"
"10:46:23.6182878 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6183083 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming","0.0000068","Filter: Roaming, 1: Roaming","3800"
"10:46:23.6183254 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000047","","3800"
"10:46:23.6184265 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6184444 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0316417","Offset: 15,127,552, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.6184581 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000111","Filter: Mozilla, 1: Mozilla","3800"
"10:46:23.6184867 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000064","","3800"
"10:46:23.6186147 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions\.","0.0000128","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6187256 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions\.","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6188131 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions\.","0.0000072","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6189035 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions\.","0.0000073","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6189923 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000072","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6190793 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000115","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6191066 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000034","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6191211 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000034","","3800"
"10:46:23.6192124 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000107","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6192350 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000034","","3800"
"10:46:23.6193246 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000103","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6193558 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000008","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.6193656 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000034","","3800"
"10:46:23.6194595 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6194825 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6194949 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000030","","3800"
"10:46:23.6195866 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000068","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6196839 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6197078 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6197202 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000034","","3800"
"10:46:23.6198089 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6198298 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000034","","3800"
"10:46:23.6199173 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6199463 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000008","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.6199561 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000030","","3800"
"10:46:23.6200474 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6200700 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6200815 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000035","","3800"
"10:46:23.6201690 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000060","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6202514 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000089","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6202735 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6202855 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000034","","3800"
"10:46:23.6203704 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6203900 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000034","","3800"
"10:46:23.6204754 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000089","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6205031 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming","0.0000008","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.6205125 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000034","","3800"
"10:46:23.6206008 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6206226 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming","0.0000025","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6206341 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000034","","3800"
"10:46:23.6207237 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000059","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6208082 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000089","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6208303 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000026","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6208423 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:23.6209285 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6209485 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000030","","3800"
"10:46:23.6210386 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000089","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6210663 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData","0.0000008","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.6210757 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:23.6211670 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000089","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6211887 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6212003 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:23.6212882 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000055","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6213692 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6213910 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6214029 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:23.6214866 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6215062 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:23.6215894 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6216163 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles","0.0000008","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.6216257 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:23.6217131 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000086","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6217340 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000026","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6217455 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000035","","3800"
"10:46:23.6218339 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000059","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:23.6219252 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000089","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6219478 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000025","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6219597 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000034","","3800"
"10:46:23.6220429 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000086","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6220626 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000029","","3800"
"10:46:23.6221458 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6221726 AM","firefox.exe","7384","DeviceIoControl","C:\Users","0.0000009","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:23.6221825 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000029","","3800"
"10:46:23.6222695 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6222904 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000026","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:23.6223015 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000034","","3800"
"10:46:23.6225528 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions\.","0.0000085","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:23.6227154 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6227371 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000030","CreationTime: 2/16/2018 12:59:40 PM, LastAccessTime: 2/16/2018 12:59:40 PM, LastWriteTime: 2/16/2018 12:59:40 PM, ChangeTime: 2/16/2018 12:59:40 PM, FileAttributes: D","3800"
"10:46:23.6227478 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000034","","3800"
"10:46:23.6229125 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6229321 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000026","CreationTime: 2/16/2018 12:59:38 PM, LastAccessTime: 2/16/2018 12:59:42 PM, LastWriteTime: 2/16/2018 12:59:42 PM, ChangeTime: 3/20/2019 7:22:59 PM, FileAttributes: D","3800"
"10:46:23.6229419 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000030","","3800"
"10:46:23.6230968 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000094","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6231143 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming","0.0000026","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 10/22/2019 8:25:35 PM, LastWriteTime: 10/22/2019 8:25:35 PM, ChangeTime: 10/22/2019 8:25:35 PM, FileAttributes: D","3800"
"10:46:23.6231237 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000034","","3800"
"10:46:23.6232828 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000094","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6233003 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData","0.0000026","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 3/20/2019 7:22:57 PM, LastWriteTime: 3/20/2019 7:22:57 PM, ChangeTime: 3/20/2019 7:22:57 PM, FileAttributes: HD","3800"
"10:46:23.6233097 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:23.6234625 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000089","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6234795 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles","0.0000022","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 5/9/2019 3:17:34 PM, LastWriteTime: 5/9/2019 3:17:34 PM, ChangeTime: 5/9/2019 3:17:34 PM, FileAttributes: D","3800"
"10:46:23.6234889 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000030","","3800"
"10:46:23.6236412 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000090","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6236583 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users","0.0000021","CreationTime: 4/11/2018 2:04:33 PM, LastAccessTime: 3/20/2019 7:21:22 PM, LastWriteTime: 3/20/2019 7:21:22 PM, ChangeTime: 3/20/2019 7:21:22 PM, FileAttributes: RD","3800"
"10:46:23.6236677 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000030","","3800"
"10:46:23.6247134 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000064","Desired Access: Query Value, Enumerate Sub Keys","3800"
"10:46:23.6247365 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Wow64\x86\xtajit","0.0000124","Desired Access: Query Value","3800"
"10:46:23.6248905 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000171","Desired Access: Read Data/List Directory, Execute/Traverse, Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6249255 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\firefox.exe","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE","3800"
"10:46:23.6249515 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\firefox.exe","0.0000013","SyncType: SyncTypeOther","3800"
"10:46:23.6249865 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000034","Desired Access: Query Value, Enumerate Sub Keys","3800"
"10:46:23.6250347 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000030","Information: Label","3800"
"10:46:23.6250808 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000047","Name: \Program Files\Firefox Nightly\firefox.exe","3800"
"10:46:23.6251128 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000021","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","3800"
"10:46:23.6251337 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\ntdll.dll","0.0000017","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","3800"
"10:46:23.6254925 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\bam\UserSettings\S-1-5-21-429253301-29906273-2566354956-1001","0.0000098","Desired Access: All Access","3800"
"10:46:23.6255173 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\bam\UserSettings\S-1-5-21-429253301-29906273-2566354956-1001\\Device\HarddiskVolume3\Program Files\Firefox Nightly\firefox.exe","0.0000042","Type: REG_BINARY, Length: 24, Data: 27 07 B8 76 96 03 D6 01 00 00 00 00 00 00 00 00","3800"
"10:46:23.6255322 AM","firefox.exe","7384","RegSetValue","HKLM\System\CurrentControlSet\Services\bam\UserSettings\S-1-5-21-429253301-29906273-2566354956-1001\\Device\HarddiskVolume3\Program Files\Firefox Nightly\firefox.exe","0.0000354","Type: REG_BINARY, Length: 24, Data: 5B 1A 5A 77 96 03 D6 01 00 00 00 00 00 00 00 00","3800"
"10:46:23.6255817 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\bam\UserSettings\S-1-5-21-429253301-29906273-2566354956-1001","0.0000013","","3800"
"10:46:23.6255962 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\BAM","0.0000051","Desired Access: Query Value","3800"
"10:46:23.6256103 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager\BAM","0.0000047","Desired Access: Query Value","3800"
"10:46:23.6256367 AM","firefox.exe","7384","Process Create","C:\Program Files\Firefox Nightly\firefox.exe","0.0000000","PID: 7336, Command line: ""C:\Program Files\Firefox Nightly\firefox.exe"" -contentproc --channel=""7384.5.1544045388\2035934590"" -childID 1 -isForBrowser -prefsHandle 2728 -prefMapHandle 2572 -prefsLen 157 -prefMapSize 227134 -parentBuildID 20200325093457 -appdir ""C:\Program Files\Firefox Nightly\browser"" - 7384 ""\\.\pipe\gecko-crash-server-pipe.7384"" 2740 tab","3800"
"10:46:23.6256436 AM","firefox.exe","7336","Process Start","","0.0000000","Parent PID: 7384, Command line: ""C:\Program Files\Firefox Nightly\firefox.exe"" -contentproc --channel=""7384.5.1544045388\2035934590"" -childID 1 -isForBrowser -prefsHandle 2728 -prefMapHandle 2572 -prefsLen 157 -prefMapSize 227134 -parentBuildID 20200325093457 -appdir ""C:\Program Files\Firefox Nightly\browser"" - 7384 ""\\.\pipe\gecko-crash-server-pipe.7384"" 2740 tab, Current directory: C:\Program Files\Firefox Nightly\, Environment: ;	=::=::\;	ALLUSERSPROFILE=C:\ProgramData;	APPDATA=C:\Users\diggles\AppData\Roaming;	CommonProgramFiles=C:\Program Files\Common Files;	CommonProgramFiles(x86)=C:\Program Files (x86)\Common Files;	CommonProgramW6432=C:\Program Files\Common Files;	COMPUTERNAME=LAPTOP-49TAGD3F;	ComSpec=C:\WINDOWS\system32\cmd.exe;	DriverData=C:\Windows\System32\Drivers\DriverData;	HOMEDRIVE=C:;	HOMEPATH=\Users\diggles;	LOCALAPPDATA=C:\Users\diggles\AppData\Local;	LOGONSERVER=\\LAPTOP-49TAGD3F;	MOZ_CRASHREPORTER_DATA_DIRECTORY=C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Crash Reports;	MOZ_CRASHREPORTER_EVENTS_DIRECTORY=C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\crashes\events;	MOZ_CRASHREPORTER_PING_DIRECTORY=C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Pending Pings;	MOZ_CRASHREPORTER_RESTART_ARG_0=C:\Program Files\Firefox Nightly\firefox.exe;	MOZ_CRASHREPORTER_STRINGS_OVERRIDE=C:\Program Files\Firefox Nightly\browser\crashreporter-override.ini;	NUMBER_OF_PROCESSORS=4;	OneDrive=C:\Users\diggles\OneDrive;	OS=Windows_NT;	Path=C:\Program Files\Firefox Nightly;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\WINDOWS\System32\OpenSSH\;C:\Users\diggles\AppData\Local\Microsoft\WindowsApps;;	PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC;	PROCESSOR_ARCHITECTURE=AMD64;	PROCESSOR_IDENTIFIER=Intel64 Family 6 Model 142 Stepping 9, GenuineIntel;	PROCESSOR_LEVEL=6;	PROCESSOR_REVISION=8e09;	ProgramData=C:\ProgramData;	ProgramFiles=C:\Program Files;	ProgramFiles(x86)=C:\Program Files (x86);	ProgramW6432=C:\Program Files;	PSModulePath=C:\Program Files\WindowsPowerShell\Modules;C:\WINDOWS\system32\WindowsPowerShell\v1.0\Modules;	PUBLIC=C:\Users\Public;	SESSIONNAME=Console;	SystemDrive=C:;	SystemRoot=C:\WINDOWS;	TEMP=C:\Users\diggles\AppData\Local\Temp;	TMP=C:\Users\diggles\AppData\Local\Temp;	USERDOMAIN=LAPTOP-49TAGD3F;	USERDOMAIN_ROAMINGPROFILE=LAPTOP-49TAGD3F;	USERNAME=diggles;	USERPROFILE=C:\Users\diggles;	windir=C:\WINDOWS","3800"
"10:46:23.6256500 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 7392","3800"
"10:46:23.6256892 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders","0.0000111","Desired Access: Query Value","3800"
"10:46:23.6257118 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Cache","0.0000047","Type: REG_SZ, Length: 118, Data: C:\Users\diggles\AppData\Local\Microsoft\Windows\INetCache","3800"
"10:46:23.6257281 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders","0.0000012","","3800"
"10:46:23.6257391 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Layers","0.0000064","Desired Access: Query Value","3800"
"10:46:23.6257682 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","3800"
"10:46:23.6259017 AM","firefox.exe","7384","CreateFile","C:\Windows\apppatch\sysmain.sdb","0.0000154","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6259414 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\apppatch\sysmain.sdb","0.0000043","CreationTime: 4/25/2019 5:35:45 PM, LastAccessTime: 4/25/2019 5:35:45 PM, LastWriteTime: 2/16/2019 1:02:22 AM, ChangeTime: 4/25/2019 8:14:04 PM, FileAttributes: A","3800"
"10:46:23.6259802 AM","firefox.exe","7384","CloseFile","C:\Windows\apppatch\sysmain.sdb","0.0000068","","3800"
"10:46:23.6260178 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000029","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","3800"
"10:46:23.6260801 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\SideBySide","0.0000089","Desired Access: Read","3800"
"10:46:23.6260911 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.files","0.0000047","CreationTime: 3/25/2020 10:27:12 AM, LastAccessTime: 3/25/2020 10:27:12 AM, LastWriteTime: 3/25/2020 10:27:12 AM, ChangeTime: 3/25/2020 10:27:12 AM, FileAttributes: D","5068"
"10:46:23.6260993 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest","0.0000029","Length: 20","3800"
"10:46:23.6261116 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.files","0.0000073","","5068"
"10:46:23.6261125 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide","0.0000013","","3800"
"10:46:23.6264286 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000517","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.6264935 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000034","CreationTime: 3/25/2020 10:27:09 AM, LastAccessTime: 3/25/2020 10:27:09 AM, LastWriteTime: 3/25/2020 10:27:15 AM, ChangeTime: 3/25/2020 10:27:15 AM, FileAttributes: A","5068"
"10:46:23.6265080 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000051","","5068"
"10:46:23.6266497 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000068","","3800"
"10:46:23.6267384 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.files","0.0004949","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.6272572 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.files","0.0000047","CreationTime: 6/19/2019 4:53:51 PM, LastAccessTime: 6/19/2019 4:53:51 PM, LastWriteTime: 6/19/2019 4:53:51 PM, ChangeTime: 6/19/2019 4:53:51 PM, FileAttributes: D","5068"
"10:46:23.6272769 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.files","0.0000068","","5068"
"10:46:23.6275465 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0004915","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.6278179 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000192","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:23.6278716 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000180","Offset: 264, Length: 8, Priority: Normal","3800"
"10:46:23.6279228 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000073","","3800"
"10:46:23.6280491 AM","firefox.exe","7336","Load Image","C:\Program Files\Firefox Nightly\firefox.exe","0.0000000","Image Base: 0x7ff7bb360000, Image Size: 0x93000","7392"
"10:46:23.6280653 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000056","CreationTime: 6/19/2019 4:53:50 PM, LastAccessTime: 6/19/2019 4:53:50 PM, LastWriteTime: 6/19/2019 4:53:53 PM, ChangeTime: 6/19/2019 4:53:53 PM, FileAttributes: A","5068"
"10:46:23.6280931 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000094","","5068"
"10:46:23.6280935 AM","firefox.exe","7336","Load Image","C:\Windows\System32\ntdll.dll","0.0000000","Image Base: 0x7ffb49780000, Image Size: 0x1e1000","7392"
"10:46:23.6283000 AM","firefox.exe","7336","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\Segment Heap","0.0000107","Desired Access: Query Value","7392"
"10:46:23.6283243 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager\Segment Heap","0.0000103","Desired Access: Query Value","7392"
"10:46:23.6284092 AM","firefox.exe","7336","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager","0.0000064","Desired Access: Query Value, Enumerate Sub Keys","7392"
"10:46:23.6284272 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000089","Desired Access: Query Value, Enumerate Sub Keys","7392"
"10:46:23.6284502 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\ResourcePolicies","0.0000051","Length: 24","7392"
"10:46:23.6284690 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000025","","7392"
"10:46:23.6285232 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.files","0.0080145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.6289507 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly","0.0000175","Desired Access: Execute/Traverse, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6290590 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\kernel32.dll","0.0000039","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6291653 AM","firefox.exe","7336","Load Image","C:\Windows\System32\kernel32.dll","0.0000000","Image Base: 0x7ffb470b0000, Image Size: 0xb1000","7392"
"10:46:23.6291939 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\kernel32.dll","0.0000068","Name: \Windows\System32\kernel32.dll","7392"
"10:46:23.6293040 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\KernelBase.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6294085 AM","firefox.exe","7336","Load Image","C:\Windows\System32\KernelBase.dll","0.0000000","Image Base: 0x7ffb46720000, Image Size: 0x273000","7392"
"10:46:23.6294371 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\KernelBase.dll","0.0000068","Name: \Windows\System32\KernelBase.dll","7392"
"10:46:23.6304457 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\SafeBoot\Option","0.0000090","Desired Access: Query Value, Set Value","7392"
"10:46:23.6304632 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\SafeBoot\Option","0.0000090","Desired Access: Query Value, Set Value","7392"
"10:46:23.6304811 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Srp\GP\DLL","0.0000034","Desired Access: Read","7392"
"10:46:23.6304897 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Srp\GP\DLL","0.0000076","Desired Access: Read","7392"
"10:46:23.6305042 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers","0.0000132","Desired Access: Query Value","7392"
"10:46:23.6305272 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Windows\safer\codeidentifiers\TransparentEnabled","0.0000034","Length: 80","7392"
"10:46:23.6305396 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\safer\codeidentifiers","0.0000013","","7392"
"10:46:23.6305571 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers","0.0000064","Desired Access: Query Value","7392"
"10:46:23.6305925 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\FileSystem\","0.0000034","Desired Access: Read","7392"
"10:46:23.6306014 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\FileSystem","0.0000052","Desired Access: Read","7392"
"10:46:23.6306138 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\FileSystem\LongPathsEnabled","0.0000034","Type: REG_DWORD, Length: 4, Data: 0","7392"
"10:46:23.6306245 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\FileSystem","0.0000008","","7392"
"10:46:23.6307107 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-gmpopenh264\1.8.1.1\gmpopenh264.dll","0.0000456","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.6307713 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-gmpopenh264\1.8.1.1\gmpopenh264.dll","0.0000047","CreationTime: 3/25/2020 10:32:05 AM, LastAccessTime: 3/25/2020 10:32:05 AM, LastWriteTime: 3/25/2020 10:32:05 AM, ChangeTime: 3/25/2020 10:32:05 AM, AllocationSize: 1024000, EndOfFile: 1021904, FileAttributes: A","5728"
"10:46:23.6307768 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly","0.0000175","Desired Access: Execute/Traverse, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6308050 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-gmpopenh264\1.8.1.1\gmpopenh264.dll","0.0000064","","5728"
"10:46:23.6308348 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\advapi32.dll","0.0000039","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6309360 AM","firefox.exe","7336","Load Image","C:\Windows\System32\advapi32.dll","0.0000000","Image Base: 0x7ffb48a60000, Image Size: 0xa1000","7392"
"10:46:23.6309616 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\advapi32.dll","0.0000064","Name: \Windows\System32\advapi32.dll","7392"
"10:46:23.6310853 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\msvcrt.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6311728 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-gmpopenh264\1.8.1.1\gmpopenh264.info","0.0106893","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.6311792 AM","firefox.exe","7336","Load Image","C:\Windows\System32\msvcrt.dll","0.0000000","Image Base: 0x7ffb48e80000, Image Size: 0x9e000","7392"
"10:46:23.6312043 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\msvcrt.dll","0.0000069","Name: \Windows\System32\msvcrt.dll","7392"
"10:46:23.6313315 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\sechost.dll","0.0000042","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6314428 AM","firefox.exe","7336","Load Image","C:\Windows\System32\sechost.dll","0.0000000","Image Base: 0x7ffb48e20000, Image Size: 0x5b000","7392"
"10:46:23.6314659 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000060","Name: \Windows\System32\sechost.dll","7392"
"10:46:23.6315597 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\rpcrt4.dll","0.0000035","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6316741 AM","firefox.exe","7336","Load Image","C:\Windows\System32\rpcrt4.dll","0.0000000","Image Base: 0x7ffb471a0000, Image Size: 0x124000","7392"
"10:46:23.6316980 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000060","Name: \Windows\System32\rpcrt4.dll","7392"
"10:46:23.6318695 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\ucrtbase.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6319843 AM","firefox.exe","7336","Load Image","C:\Windows\System32\ucrtbase.dll","0.0000000","Image Base: 0x7ffb45da0000, Image Size: 0xf8000","7392"
"10:46:23.6320077 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000064","Name: \Windows\System32\ucrtbase.dll","7392"
"10:46:23.6323188 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6323435 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7392"
"10:46:23.6323538 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000051","","7392"
"10:46:23.6324545 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000123","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6324818 AM","firefox.exe","7336","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6325035 AM","firefox.exe","7336","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000017","SyncType: SyncTypeOther","7392"
"10:46:23.6325227 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000026","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6326320 AM","firefox.exe","7336","Load Image","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000000","Image Base: 0x7ffb3c6d0000, Image Size: 0x8f000","7392"
"10:46:23.6326559 AM","firefox.exe","7336","QueryNameInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000055","Name: \Program Files\Firefox Nightly\mozglue.dll","7392"
"10:46:23.6327745 AM","firefox.exe","7336","RegOpenKey","HKCU","0.0000085","Desired Access: Maximum Allowed, Granted Access: Read, Create Link","7392"
"10:46:23.6327971 AM","firefox.exe","7336","RegOpenKey","HKCU\Control Panel\Desktop\MuiCached\MachineLanguageConfiguration","0.0000089","Desired Access: Read","7392"
"10:46:23.6328180 AM","firefox.exe","7336","RegCloseKey","HKCU","0.0000013","","7392"
"10:46:23.6328291 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Policies\Microsoft\MUI\Settings","0.0000068","Desired Access: Read","7392"
"10:46:23.6328461 AM","firefox.exe","7336","RegOpenKey","HKCU","0.0000043","Desired Access: Maximum Allowed, Granted Access: Read, Create Link","7392"
"10:46:23.6328594 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Policies\Microsoft\Control Panel\Desktop","0.0000051","Desired Access: Read","7392"
"10:46:23.6328717 AM","firefox.exe","7336","RegOpenKey","HKCU\Control Panel\Desktop\LanguageConfiguration","0.0000069","Desired Access: Read","7392"
"10:46:23.6328888 AM","firefox.exe","7336","RegEnumValue","HKCU\Control Panel\Desktop\LanguageConfiguration","0.0000026","Index: 0, Length: 512","7392"
"10:46:23.6329008 AM","firefox.exe","7336","RegCloseKey","HKCU\Control Panel\Desktop\LanguageConfiguration","0.0000012","","7392"
"10:46:23.6329097 AM","firefox.exe","7336","RegCloseKey","HKCU","0.0000009","","7392"
"10:46:23.6329191 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Policies\Microsoft\MUI\Settings","0.0000038","Desired Access: Read","7392"
"10:46:23.6329323 AM","firefox.exe","7336","RegOpenKey","HKCU","0.0000039","Desired Access: Maximum Allowed, Granted Access: Read, Create Link","7392"
"10:46:23.6329447 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Policies\Microsoft\Control Panel\Desktop","0.0000034","Desired Access: Read","7392"
"10:46:23.6329554 AM","firefox.exe","7336","RegOpenKey","HKCU\Control Panel\Desktop","0.0000034","Desired Access: Read","7392"
"10:46:23.6329699 AM","firefox.exe","7336","RegQueryValue","HKCU\Control Panel\Desktop\PreferredUILanguages","0.0000081","Length: 12","7392"
"10:46:23.6329865 AM","firefox.exe","7336","RegCloseKey","HKCU\Control Panel\Desktop","0.0000013","","7392"
"10:46:23.6329946 AM","firefox.exe","7336","RegCloseKey","HKCU","0.0000009","","7392"
"10:46:23.6330040 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Policies\Microsoft\MUI\Settings","0.0000030","Desired Access: Read","7392"
"10:46:23.6330164 AM","firefox.exe","7336","RegOpenKey","HKCU","0.0000038","Desired Access: Maximum Allowed, Granted Access: Read, Create Link","7392"
"10:46:23.6330283 AM","firefox.exe","7336","RegOpenKey","HKCU\Control Panel\Desktop\MuiCached","0.0000064","Desired Access: Read","7392"
"10:46:23.6330437 AM","firefox.exe","7336","RegQueryValue","HKCU\Control Panel\Desktop\MuiCached\MachinePreferredUILanguages","0.0000026","Length: 12","7392"
"10:46:23.6330531 AM","firefox.exe","7336","RegQueryValue","HKCU\Control Panel\Desktop\MuiCached\MachinePreferredUILanguages","0.0000021","Type: REG_MULTI_SZ, Length: 12, Data: en-US","7392"
"10:46:23.6330646 AM","firefox.exe","7336","RegCloseKey","HKCU\Control Panel\Desktop\MuiCached","0.0000013","","7392"
"10:46:23.6330727 AM","firefox.exe","7336","RegCloseKey","HKCU","0.0000009","","7392"
"10:46:23.6331128 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\SideBySide","0.0000073","Desired Access: Read","7392"
"10:46:23.6331273 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest","0.0000026","Length: 20","7392"
"10:46:23.6331367 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide","0.0000013","","7392"
"10:46:23.6332536 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000154","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6334998 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000051","","7392"
"10:46:23.6335642 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\crypt32.dll","0.0000030","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6336807 AM","firefox.exe","7336","Load Image","C:\Windows\System32\crypt32.dll","0.0000000","Image Base: 0x7ffb469a0000, Image Size: 0x1e2000","7392"
"10:46:23.6337050 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\crypt32.dll","0.0000056","Name: \Windows\System32\crypt32.dll","7392"
"10:46:23.6338599 AM","firefox.exe","7336","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager","0.0000064","Desired Access: Query Value, Enumerate Sub Keys","7392"
"10:46:23.6338757 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000064","Desired Access: Query Value, Enumerate Sub Keys","7392"
"10:46:23.6338923 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\ResourcePolicies","0.0000034","Length: 24","7392"
"10:46:23.6339064 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000013","","7392"
"10:46:23.6339495 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\msasn1.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6340634 AM","firefox.exe","7336","Load Image","C:\Windows\System32\msasn1.dll","0.0000000","Image Base: 0x7ffb45b10000, Image Size: 0x12000","7392"
"10:46:23.6340856 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\msasn1.dll","0.0000060","Name: \Windows\System32\msasn1.dll","7392"
"10:46:23.6342025 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\wintrust.dll","0.0000039","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6343117 AM","firefox.exe","7336","Load Image","C:\Windows\System32\wintrust.dll","0.0000000","Image Base: 0x7ffb45ea0000, Image Size: 0x57000","7392"
"10:46:23.6343344 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\wintrust.dll","0.0000059","Name: \Windows\System32\wintrust.dll","7392"
"10:46:23.6344790 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000081","","7392"
"10:46:23.6349001 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000073","Desired Access: Query Value","7392"
"10:46:23.6349159 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000056","Desired Access: Query Value","7392"
"10:46:23.6349308 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\SafeDllSearchMode","0.0000030","Length: 16","7392"
"10:46:23.6351523 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6351779 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000030","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","7392"
"10:46:23.6351873 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000047","","7392"
"10:46:23.6352986 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000137","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6353272 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6353485 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000018","SyncType: SyncTypeOther","7392"
"10:46:23.6353677 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\msvcp140.dll","0.0000026","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6354800 AM","firefox.exe","7336","Load Image","C:\Windows\System32\msvcp140.dll","0.0000000","Image Base: 0x7ffb1dfe0000, Image Size: 0xa7000","7392"
"10:46:23.6355021 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\msvcp140.dll","0.0000056","Name: \Windows\System32\msvcp140.dll","7392"
"10:46:23.6356054 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000077","","7392"
"10:46:23.6358209 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6358452 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000030","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","7392"
"10:46:23.6358550 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000043","","7392"
"10:46:23.6359570 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000132","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6359839 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6360035 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000017","SyncType: SyncTypeOther","7392"
"10:46:23.6360231 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\vcruntime140.dll","0.0000021","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6361234 AM","firefox.exe","7336","Load Image","C:\Windows\System32\vcruntime140.dll","0.0000000","Image Base: 0x7ffb3c690000, Image Size: 0x16000","7392"
"10:46:23.6361451 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000060","Name: \Windows\System32\vcruntime140.dll","7392"
"10:46:23.6362202 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000077","","7392"
"10:46:23.6365675 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.files","0.0000047","CreationTime: 6/19/2019 4:53:54 PM, LastAccessTime: 6/19/2019 4:53:54 PM, LastWriteTime: 6/19/2019 4:53:54 PM, ChangeTime: 6/19/2019 4:53:54 PM, FileAttributes: D","5068"
"10:46:23.6365880 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.files","0.0000073","","5068"
"10:46:23.6366832 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\version.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6367194 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000034","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","7392"
"10:46:23.6367297 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\version.dll","0.0000051","","7392"
"10:46:23.6368410 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\version.dll","0.0000158","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6368811 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\version.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6368875 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0070848","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.6369020 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\version.dll","0.0000018","SyncType: SyncTypeOther","7392"
"10:46:23.6369225 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\version.dll","0.0000026","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6370160 AM","firefox.exe","7336","Load Image","C:\Windows\System32\version.dll","0.0000000","Image Base: 0x7ffb39300000, Image Size: 0xa000","7392"
"10:46:23.6370377 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\version.dll","0.0000060","Name: \Windows\System32\version.dll","7392"
"10:46:23.6371423 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\version.dll","0.0000076","","7392"
"10:46:23.6374776 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6375118 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","7392"
"10:46:23.6375220 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000047","","7392"
"10:46:23.6376282 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000137","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6376641 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6376837 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000017","SyncType: SyncTypeOther","7392"
"10:46:23.6377029 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\dbghelp.dll","0.0000026","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6378241 AM","firefox.exe","7336","Load Image","C:\Windows\System32\dbghelp.dll","0.0000000","Image Base: 0x7ffb37030000, Image Size: 0x1c9000","7392"
"10:46:23.6378531 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\dbghelp.dll","0.0000055","Name: \Windows\System32\dbghelp.dll","7392"
"10:46:23.6379755 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000081","","7392"
"10:46:23.6381991 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6382230 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000030","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","7392"
"10:46:23.6382324 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000047","","7392"
"10:46:23.6384120 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6384329 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000026","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","7392"
"10:46:23.6384410 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000043","","7392"
"10:46:23.6386087 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6386275 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000025","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","7392"
"10:46:23.6386352 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000038","","7392"
"10:46:23.6390789 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6390998 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","7392"
"10:46:23.6391088 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000038","","7392"
"10:46:23.6392060 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000124","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6392329 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6392526 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000017","SyncType: SyncTypeOther","7392"
"10:46:23.6392722 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\cryptbase.dll","0.0000025","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6393874 AM","firefox.exe","7336","Load Image","C:\Windows\System32\cryptbase.dll","0.0000000","Image Base: 0x7ffb45480000, Image Size: 0xb000","7392"
"10:46:23.6394083 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\cryptbase.dll","0.0000060","Name: \Windows\System32\cryptbase.dll","7392"
"10:46:23.6394940 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\bcryptprimitives.dll","0.0000039","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6396344 AM","firefox.exe","7336","Load Image","C:\Windows\System32\bcryptprimitives.dll","0.0000000","Image Base: 0x7ffb46b90000, Image Size: 0x7a000","7392"
"10:46:23.6396587 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000060","Name: \Windows\System32\bcryptprimitives.dll","7392"
"10:46:23.6397496 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000081","","7392"
"10:46:23.6399770 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6399996 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","7392"
"10:46:23.6400090 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000043","","7392"
"10:46:23.6404408 AM","firefox.exe","7336","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager","0.0000068","Desired Access: Query Value, Enumerate Sub Keys","7392"
"10:46:23.6404587 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000060","Desired Access: Query Value, Enumerate Sub Keys","7392"
"10:46:23.6404754 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\ResourcePolicies","0.0000038","Length: 24","7392"
"10:46:23.6404895 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000017","","7392"
"10:46:23.6405381 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Versions","0.0000034","Desired Access: Read","7392"
"10:46:23.6405492 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Versions","0.0000051","Desired Access: Read","7392"
"10:46:23.6405650 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Versions\(Default)","0.0000038","Type: REG_SZ, Length: 18, Data: 0006020E","7392"
"10:46:23.6410258 AM","firefox.exe","7336","RegOpenKey","HKLM","0.0000055","Desired Access: Maximum Allowed, Granted Access: Read","7392"
"10:46:23.6410441 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6410552 AM","firefox.exe","7336","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\msasn1","0.0000081","Desired Access: Read","7392"
"10:46:23.6410774 AM","firefox.exe","7336","RegOpenKey","HKLM\SOFTWARE\Microsoft\AppModel\Lookaside\Packages","0.0000051","Desired Access: Read","7392"
"10:46:23.6415770 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy","0.0000052","Desired Access: Query Value","7392"
"10:46:23.6415907 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy","0.0000064","Desired Access: Query Value","7392"
"10:46:23.6416060 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy\Enabled","0.0000035","Type: REG_DWORD, Length: 4, Data: 0","7392"
"10:46:23.6416180 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000030","Desired Access: Query Value","7392"
"10:46:23.6416274 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000042","Desired Access: Query Value","7392"
"10:46:23.6416385 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy","0.0000030","Length: 20","7392"
"10:46:23.6416470 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy\MDMEnabled","0.0000021","Type: REG_DWORD, Length: 4, Data: 0","7392"
"10:46:23.6416581 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy","0.0000013","","7392"
"10:46:23.6416666 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000013","","7392"
"10:46:23.6416756 AM","firefox.exe","7336","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Policies\Microsoft\Cryptography\Configuration","0.0000034","Desired Access: Query Value","7392"
"10:46:23.6416846 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Policies\Microsoft\Cryptography\Configuration","0.0000038","Desired Access: Query Value","7392"
"10:46:23.6418962 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-gmpopenh264\1.8.1.1\gmpopenh264.info","0.0000064","CreationTime: 3/25/2020 10:32:05 AM, LastAccessTime: 3/25/2020 10:32:05 AM, LastWriteTime: 3/25/2020 10:32:05 AM, ChangeTime: 3/25/2020 10:32:05 AM, AllocationSize: 120, EndOfFile: 116, FileAttributes: A","5728"
"10:46:23.6419248 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-gmpopenh264\1.8.1.1\gmpopenh264.info","0.0000102","","5728"
"10:46:23.6419764 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6420020 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7392"
"10:46:23.6420118 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000047","","7392"
"10:46:23.6422328 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 7608","5728"
"10:46:23.6423847 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6424167 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000056","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7392"
"10:46:23.6424308 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000060","","7392"
"10:46:23.6424991 AM","firefox.exe","7336","QueryNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000051","Name: \Program Files\Firefox Nightly\firefox.exe","7392"
"10:46:23.6428144 AM","firefox.exe","7336","RegOpenKey","HKCU","0.0000123","Desired Access: Maximum Allowed, Granted Access: Read, Create Link","7392"
"10:46:23.6428442 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000069","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6428626 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-gmpopenh264\1.8.1.1\gmpopenh264.info","0.0000392","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7608"
"10:46:23.6428818 AM","firefox.exe","7336","RegCreateKey","HKCU\SOFTWARE\Mozilla\Firefox\Launcher","0.0000798","Desired Access: All Access","7392"
"10:46:23.6429151 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000042","Information: Owner","7392"
"10:46:23.6429210 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-gmpopenh264\1.8.1.1\gmpopenh264.info","0.0000047","CreationTime: 3/25/2020 10:32:05 AM, LastAccessTime: 3/25/2020 10:32:05 AM, LastWriteTime: 3/25/2020 10:32:05 AM, ChangeTime: 3/25/2020 10:32:05 AM, AllocationSize: 120, EndOfFile: 116, FileAttributes: A","7608"
"10:46:23.6429287 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000017","Information: Owner","7392"
"10:46:23.6429428 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-gmpopenh264\1.8.1.1\gmpopenh264.info","0.0000085","","7608"
"10:46:23.6429748 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000021","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6429897 AM","firefox.exe","7336","RegCreateKey","HKCU\SOFTWARE","0.0000073","Desired Access: Maximum Allowed, Granted Access: Read, Create Link, Disposition: REG_OPENED_EXISTING_KEY","7392"
"10:46:23.6430081 AM","firefox.exe","7336","RegQueryKey","HKCU\Software","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6430222 AM","firefox.exe","7336","RegCreateKey","HKCU\Software\Mozilla","0.0000064","Desired Access: Maximum Allowed, Granted Access: Read, Create Link, Disposition: REG_OPENED_EXISTING_KEY","7392"
"10:46:23.6430431 AM","firefox.exe","7336","RegCloseKey","HKCU\Software","0.0000017","","7392"
"10:46:23.6430563 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Mozilla","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6430699 AM","firefox.exe","7336","RegCreateKey","HKCU\Software\Mozilla\Firefox","0.0000056","Desired Access: Maximum Allowed, Granted Access: Read, Create Link, Disposition: REG_OPENED_EXISTING_KEY","7392"
"10:46:23.6430883 AM","firefox.exe","7336","RegCloseKey","HKCU\Software\Mozilla","0.0000017","","7392"
"10:46:23.6431015 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Mozilla\Firefox","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6431143 AM","firefox.exe","7336","RegCreateKey","HKCU\Software\Mozilla\Firefox\Launcher","0.0000542","Desired Access: All Access","7392"
"10:46:23.6431310 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000051","Information: Owner","7392"
"10:46:23.6431455 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000017","Information: Owner","7392"
"10:46:23.6431809 AM","firefox.exe","7336","RegCloseKey","HKCU\Software\Mozilla\Firefox","0.0000017","","7392"
"10:46:23.6432009 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6432129 AM","firefox.exe","7336","RegCreateKey","HKCU\SOFTWARE\Mozilla\Firefox\Launcher","0.0000234","Desired Access: All Access","7392"
"10:46:23.6432257 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000021","Information: Owner","7392"
"10:46:23.6432321 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000008","Information: Owner","7392"
"10:46:23.6432466 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6432573 AM","firefox.exe","7336","RegCreateKey","HKCU\SOFTWARE","0.0000042","Desired Access: Maximum Allowed, Granted Access: Read, Create Link, Disposition: REG_OPENED_EXISTING_KEY","7392"
"10:46:23.6432683 AM","firefox.exe","7336","RegQueryKey","HKCU\Software","0.0000009","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6432760 AM","firefox.exe","7336","RegCreateKey","HKCU\Software\Mozilla","0.0000034","Desired Access: Maximum Allowed, Granted Access: Read, Create Link, Disposition: REG_OPENED_EXISTING_KEY","7392"
"10:46:23.6432871 AM","firefox.exe","7336","RegCloseKey","HKCU\Software","0.0000013","","7392"
"10:46:23.6432939 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Mozilla","0.0000009","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6433012 AM","firefox.exe","7336","RegCreateKey","HKCU\Software\Mozilla\Firefox","0.0000030","Desired Access: Maximum Allowed, Granted Access: Read, Create Link, Disposition: REG_OPENED_EXISTING_KEY","7392"
"10:46:23.6433110 AM","firefox.exe","7336","RegCloseKey","HKCU\Software\Mozilla","0.0000013","","7392"
"10:46:23.6433178 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Mozilla\Firefox","0.0000009","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6433251 AM","firefox.exe","7336","RegCreateKey","HKCU\Software\Mozilla\Firefox\Launcher","0.0000209","Desired Access: All Access","7392"
"10:46:23.6433345 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000017","Information: Owner","7392"
"10:46:23.6433430 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000009","Information: Owner","7392"
"10:46:23.6433528 AM","firefox.exe","7336","RegCloseKey","HKCU\Software\Mozilla\Firefox","0.0000009","","7392"
"10:46:23.6433678 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000008","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6433754 AM","firefox.exe","7336","RegCreateKey","HKCU\SOFTWARE\Mozilla\Firefox\Launcher","0.0000214","Desired Access: All Access","7392"
"10:46:23.6433857 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000013","Information: Owner","7392"
"10:46:23.6433934 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000012","Information: Owner","7392"
"10:46:23.6434032 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000008","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6434109 AM","firefox.exe","7336","RegCreateKey","HKCU\SOFTWARE","0.0000042","Desired Access: Maximum Allowed, Granted Access: Read, Create Link, Disposition: REG_OPENED_EXISTING_KEY","7392"
"10:46:23.6434215 AM","firefox.exe","7336","RegQueryKey","HKCU\Software","0.0000009","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6434288 AM","firefox.exe","7336","RegCreateKey","HKCU\Software\Mozilla","0.0000034","Desired Access: Maximum Allowed, Granted Access: Read, Create Link, Disposition: REG_OPENED_EXISTING_KEY","7392"
"10:46:23.6434386 AM","firefox.exe","7336","RegCloseKey","HKCU\Software","0.0000013","","7392"
"10:46:23.6434454 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Mozilla","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6434531 AM","firefox.exe","7336","RegCreateKey","HKCU\Software\Mozilla\Firefox","0.0000026","Desired Access: Maximum Allowed, Granted Access: Read, Create Link, Disposition: REG_OPENED_EXISTING_KEY","7392"
"10:46:23.6434625 AM","firefox.exe","7336","RegCloseKey","HKCU\Software\Mozilla","0.0000008","","7392"
"10:46:23.6434689 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Mozilla\Firefox","0.0000008","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6434761 AM","firefox.exe","7336","RegCreateKey","HKCU\Software\Mozilla\Firefox\Launcher","0.0000188","Desired Access: All Access","7392"
"10:46:23.6434847 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000012","Information: Owner","7392"
"10:46:23.6434919 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000009","Information: Owner","7392"
"10:46:23.6435017 AM","firefox.exe","7336","RegCloseKey","HKCU\Software\Mozilla\Firefox","0.0000009","","7392"
"10:46:23.6435943 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6436063 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\Rpc","0.0000068","Desired Access: Read","7392"
"10:46:23.6436276 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Rpc\MaxRpcSize","0.0000030","Length: 16","7392"
"10:46:23.6436417 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Rpc","0.0000008","","7392"
"10:46:23.6436912 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\ComputerName\ActiveComputerName","0.0000153","Desired Access: Read","7392"
"10:46:23.6437142 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\ComputerName\ActiveComputerName","0.0000060","Desired Access: Read","7392"
"10:46:23.6437283 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\ComputerName\ActiveComputerName\ComputerName","0.0000038","Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","7392"
"10:46:23.6437398 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\ComputerName\ActiveComputerName","0.0000009","","7392"
"10:46:23.6437492 AM","firefox.exe","7336","RegOpenKey","HKLM\System\Setup","0.0000038","Desired Access: Read","7392"
"10:46:23.6437599 AM","firefox.exe","7336","RegQueryValue","HKLM\SYSTEM\Setup\OOBEInProgress","0.0000034","Type: REG_DWORD, Length: 4, Data: 0","7392"
"10:46:23.6437701 AM","firefox.exe","7336","RegCloseKey","HKLM\SYSTEM\Setup","0.0000013","","7392"
"10:46:23.6437786 AM","firefox.exe","7336","RegOpenKey","HKLM\System\Setup","0.0000030","Desired Access: Read","7392"
"10:46:23.6437885 AM","firefox.exe","7336","RegQueryValue","HKLM\SYSTEM\Setup\SystemSetupInProgress","0.0000029","Type: REG_DWORD, Length: 4, Data: 0","7392"
"10:46:23.6437978 AM","firefox.exe","7336","RegCloseKey","HKLM\SYSTEM\Setup","0.0000013","","7392"
"10:46:23.6438136 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options","0.0000064","Desired Access: Query Value, Enumerate Sub Keys","7392"
"10:46:23.6438290 AM","firefox.exe","7336","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000034","Desired Access: Query Value, Enumerate Sub Keys","7392"
"10:46:23.6438964 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6439062 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\Rpc","0.0000051","Desired Access: Read","7392"
"10:46:23.6439630 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6439796 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\Rpc","0.0000060","Desired Access: Query Value","7392"
"10:46:23.6439962 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Rpc\IdleTimerWindow","0.0000026","Length: 16","7392"
"10:46:23.6440052 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000060","CreationTime: 6/19/2019 4:53:53 PM, LastAccessTime: 6/19/2019 4:53:53 PM, LastWriteTime: 3/25/2020 10:25:13 AM, ChangeTime: 3/25/2020 10:25:13 AM, FileAttributes: A","5068"
"10:46:23.6440073 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Rpc","0.0000013","","7392"
"10:46:23.6440304 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000098","","5068"
"10:46:23.6443141 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-gmpopenh264\1.8.1.1\gmpopenh264.info","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7608"
"10:46:23.6443606 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-gmpopenh264\1.8.1.1\gmpopenh264.info","0.0000051","CreationTime: 3/25/2020 10:32:05 AM, LastAccessTime: 3/25/2020 10:32:05 AM, LastWriteTime: 3/25/2020 10:32:05 AM, ChangeTime: 3/25/2020 10:32:05 AM, AllocationSize: 120, EndOfFile: 116, FileAttributes: A","7608"
"10:46:23.6443819 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-gmpopenh264\1.8.1.1\gmpopenh264.info","0.0000077","","7608"
"10:46:23.6444502 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.files","0.0009984","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.6445906 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-gmpopenh264\1.8.1.1\gmpopenh264.info","0.0000226","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7608"
"10:46:23.6446473 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-gmpopenh264\1.8.1.1\gmpopenh264.info","0.0000060","AllocationSize: 120, EndOfFile: 116, NumberOfLinks: 1, DeletePending: False, Directory: False","7608"
"10:46:23.6446836 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-gmpopenh264\1.8.1.1\gmpopenh264.info","0.0000764","Offset: 0, Length: 116, Priority: Normal","7608"
"10:46:23.6447344 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-gmpopenh264\1.8.1.1\gmpopenh264.info","0.0000089","Offset: 0, Length: 116, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7608"
"10:46:23.6447834 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-gmpopenh264\1.8.1.1\gmpopenh264.info","0.0000090","","7608"
"10:46:23.6452319 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6452558 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7392"
"10:46:23.6452656 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000047","","7392"
"10:46:23.6454746 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.files","0.0000120","CreationTime: 6/19/2019 4:53:50 PM, LastAccessTime: 6/19/2019 4:53:50 PM, LastWriteTime: 6/19/2019 4:53:50 PM, ChangeTime: 6/19/2019 4:53:50 PM, FileAttributes: D","5068"
"10:46:23.6454789 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\dependentlibs.list","0.0000209","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6455113 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.files","0.0000077","","5068"
"10:46:23.6455382 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\dependentlibs.list","0.0000115","Offset: 0, Length: 476, Priority: Normal","7392"
"10:46:23.6457998 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6458296 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000039","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7392"
"10:46:23.6458433 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000072","","7392"
"10:46:23.6458488 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0167220","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.6459854 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000140","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6460186 AM","firefox.exe","7336","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000056","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6460575 AM","firefox.exe","7336","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000025","SyncType: SyncTypeOther","7392"
"10:46:23.6460907 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000039","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6461867 AM","firefox.exe","7336","Load Image","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000000","Image Base: 0x7ffb3c6b0000, Image Size: 0x16000","7392"
"10:46:23.6462123 AM","firefox.exe","7336","QueryNameInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000056","Name: \Program Files\Firefox Nightly\vcruntime140.dll","7392"
"10:46:23.6463305 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000086","","7392"
"10:46:23.6466599 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000333","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6467086 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000055","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7392"
"10:46:23.6467299 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000085","","7392"
"10:46:23.6468605 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000157","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6468984 AM","firefox.exe","7336","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6469283 AM","firefox.exe","7336","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000017","SyncType: SyncTypeOther","7392"
"10:46:23.6469526 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6470554 AM","firefox.exe","7336","Load Image","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000000","Image Base: 0x7ffb32080000, Image Size: 0x9b000","7392"
"10:46:23.6470810 AM","firefox.exe","7336","QueryNameInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000069","Name: \Program Files\Firefox Nightly\msvcp140.dll","7392"
"10:46:23.6472321 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000094","","7392"
"10:46:23.6477304 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6477620 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7392"
"10:46:23.6477735 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000056","","7392"
"10:46:23.6478998 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000154","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6479386 AM","firefox.exe","7336","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6479758 AM","firefox.exe","7336","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000034","SyncType: SyncTypeOther","7392"
"10:46:23.6480214 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000030","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6480837 AM","firefox.exe","7336","Load Image","C:\Program Files\Firefox Nightly\nss3.dll","0.0000000","Image Base: 0x7ffb1da70000, Image Size: 0x21d000","7392"
"10:46:23.6481110 AM","firefox.exe","7336","QueryNameInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000051","Name: \Program Files\Firefox Nightly\nss3.dll","7392"
"10:46:23.6482010 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\ws2_32.dll","0.0000030","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6482958 AM","firefox.exe","7336","Load Image","C:\Windows\System32\ws2_32.dll","0.0000000","Image Base: 0x7ffb48bc0000, Image Size: 0x6c000","7392"
"10:46:23.6483209 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\ws2_32.dll","0.0000064","Name: \Windows\System32\ws2_32.dll","7392"
"10:46:23.6484583 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000086","","7392"
"10:46:23.6486879 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmm.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6487237 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7392"
"10:46:23.6487335 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmm.dll","0.0000047","","7392"
"10:46:23.6488381 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmm.dll","0.0000132","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6488756 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6488982 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000017","SyncType: SyncTypeOther","7392"
"10:46:23.6489196 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\winmm.dll","0.0000029","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6490032 AM","firefox.exe","7336","Load Image","C:\Windows\System32\winmm.dll","0.0000000","Image Base: 0x7ffb437c0000, Image Size: 0x23000","7392"
"10:46:23.6490266 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\winmm.dll","0.0000060","Name: \Windows\System32\winmm.dll","7392"
"10:46:23.6491517 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmm.dll","0.0000085","","7392"
"10:46:23.6493744 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wsock32.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6494094 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000034","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7392"
"10:46:23.6494196 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wsock32.dll","0.0000047","","7392"
"10:46:23.6495229 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wsock32.dll","0.0000132","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6495604 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6495834 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000022","SyncType: SyncTypeOther","7392"
"10:46:23.6496048 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\wsock32.dll","0.0000025","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6497127 AM","firefox.exe","7336","Load Image","C:\Windows\System32\wsock32.dll","0.0000000","Image Base: 0x7ffb3c880000, Image Size: 0x9000","7392"
"10:46:23.6497366 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\wsock32.dll","0.0000068","Name: \Windows\System32\wsock32.dll","7392"
"10:46:23.6498173 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wsock32.dll","0.0000081","","7392"
"10:46:23.6501232 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0006404","Offset: 15,234,048, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.6501607 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6501910 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000034","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7392"
"10:46:23.6502008 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000047","","7392"
"10:46:23.6503088 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000132","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6503386 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6503600 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000017","SyncType: SyncTypeOther","7392"
"10:46:23.6503809 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\winmmbase.dll","0.0000030","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6504645 AM","firefox.exe","7336","Load Image","C:\Windows\System32\winmmbase.dll","0.0000000","Image Base: 0x7ffb43790000, Image Size: 0x2a000","7392"
"10:46:23.6504918 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\winmmbase.dll","0.0000064","Name: \Windows\System32\winmmbase.dll","7392"
"10:46:23.6505998 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\cfgmgr32.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6506842 AM","firefox.exe","7336","Load Image","C:\Windows\System32\cfgmgr32.dll","0.0000000","Image Base: 0x7ffb45f00000, Image Size: 0x49000","7392"
"10:46:23.6507086 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000059","Name: \Windows\System32\cfgmgr32.dll","7392"
"10:46:23.6507965 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0019443","Offset: 15,287,296, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.6508698 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000107","","7392"
"10:46:23.6511890 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6512218 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7392"
"10:46:23.6512372 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000068","","7392"
"10:46:23.6515171 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6515465 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000039","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7392"
"10:46:23.6515602 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000064","","7392"
"10:46:23.6525053 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6525407 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000042","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7392"
"10:46:23.6525560 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000064","","7392"
"10:46:23.6527037 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000187","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6527485 AM","firefox.exe","7336","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6527796 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0003776","Offset: 15,262,720, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.6527839 AM","firefox.exe","7336","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000025","SyncType: SyncTypeOther","7392"
"10:46:23.6528180 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000039","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6531013 AM","firefox.exe","7336","Load Image","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000000","Image Base: 0x7ffb3c680000, Image Size: 0xd000","7392"
"10:46:23.6531367 AM","firefox.exe","7336","QueryNameInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000064","Name: \Program Files\Firefox Nightly\lgpllibs.dll","7392"
"10:46:23.6531956 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0003362","Offset: 15,279,104, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.6532673 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000081","","7392"
"10:46:23.6535655 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0331303","Offset: 14,206,464, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.6535860 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6536184 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7392"
"10:46:23.6536325 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000064","","7392"
"10:46:23.6537695 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000183","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6538070 AM","firefox.exe","7336","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6538288 AM","firefox.exe","7336","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000017","SyncType: SyncTypeOther","7392"
"10:46:23.6538514 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000021","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6539611 AM","firefox.exe","7336","Load Image","C:\Program Files\Firefox Nightly\xul.dll","0.0000000","Image Base: 0x7ffb07c80000, Image Size: 0x6988000","7392"
"10:46:23.6539948 AM","firefox.exe","7336","QueryNameInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000059","Name: \Program Files\Firefox Nightly\xul.dll","7392"
"10:46:23.6541223 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\user32.dll","0.0000039","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6542141 AM","firefox.exe","7336","Load Image","C:\Windows\System32\user32.dll","0.0000000","Image Base: 0x7ffb488d0000, Image Size: 0x190000","7392"
"10:46:23.6542418 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\user32.dll","0.0000060","Name: \Windows\System32\user32.dll","7392"
"10:46:23.6543536 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\win32u.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6544120 AM","firefox.exe","7336","Load Image","C:\Windows\System32\win32u.dll","0.0000000","Image Base: 0x7ffb45f50000, Image Size: 0x20000","7392"
"10:46:23.6544432 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\win32u.dll","0.0000068","Name: \Windows\System32\win32u.dll","7392"
"10:46:23.6545938 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\gdi32.dll","0.0000064","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6546587 AM","firefox.exe","7336","Load Image","C:\Windows\System32\gdi32.dll","0.0000000","Image Base: 0x7ffb47170000, Image Size: 0x28000","7392"
"10:46:23.6546834 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\gdi32.dll","0.0000055","Name: \Windows\System32\gdi32.dll","7392"
"10:46:23.6547901 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\gdi32full.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6548434 AM","firefox.exe","7336","Load Image","C:\Windows\System32\gdi32full.dll","0.0000000","Image Base: 0x7ffb45c00000, Image Size: 0x192000","7392"
"10:46:23.6548720 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\gdi32full.dll","0.0000060","Name: \Windows\System32\gdi32full.dll","7392"
"10:46:23.6549838 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\msvcp_win.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6550439 AM","firefox.exe","7336","Load Image","C:\Windows\System32\msvcp_win.dll","0.0000000","Image Base: 0x7ffb46680000, Image Size: 0x9f000","7392"
"10:46:23.6550670 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000051","Name: \Windows\System32\msvcp_win.dll","7392"
"10:46:23.6552287 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\shell32.dll","0.0000030","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6553823 AM","firefox.exe","7336","Load Image","C:\Windows\System32\shell32.dll","0.0000000","Image Base: 0x7ffb472f0000, Image Size: 0x1440000","7392"
"10:46:23.6554190 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\shell32.dll","0.0000094","Name: \Windows\System32\shell32.dll","7392"
"10:46:23.6556195 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\SHCore.dll","0.0000043","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6556792 AM","firefox.exe","7336","Load Image","C:\Windows\System32\SHCore.dll","0.0000000","Image Base: 0x7ffb48b10000, Image Size: 0xa9000","7392"
"10:46:23.6557138 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\SHCore.dll","0.0000068","Name: \Windows\System32\SHCore.dll","7392"
"10:46:23.6558857 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\combase.dll","0.0000039","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6559557 AM","firefox.exe","7336","Load Image","C:\Windows\System32\combase.dll","0.0000000","Image Base: 0x7ffb46d80000, Image Size: 0x322000","7392"
"10:46:23.6559826 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\combase.dll","0.0000051","Name: \Windows\System32\combase.dll","7392"
"10:46:23.6561349 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\windows.storage.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6562467 AM","firefox.exe","7336","Load Image","C:\Windows\System32\windows.storage.dll","0.0000000","Image Base: 0x7ffb45f70000, Image Size: 0x70d000","7392"
"10:46:23.6562796 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\windows.storage.dll","0.0000064","Name: \Windows\System32\windows.storage.dll","7392"
"10:46:23.6564366 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\shlwapi.dll","0.0000042","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6564839 AM","firefox.exe","7384","ReadFile","C:\$Directory","0.0179964","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:23.6565014 AM","firefox.exe","7336","Load Image","C:\Windows\System32\shlwapi.dll","0.0000000","Image Base: 0x7ffb490e0000, Image Size: 0x51000","7392"
"10:46:23.6565275 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\shlwapi.dll","0.0000072","Name: \Windows\System32\shlwapi.dll","7392"
"10:46:23.6567020 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\kernel.appcore.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6567813 AM","firefox.exe","7336","Load Image","C:\Windows\System32\kernel.appcore.dll","0.0000000","Image Base: 0x7ffb45af0000, Image Size: 0x11000","7392"
"10:46:23.6568061 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000055","Name: \Windows\System32\kernel.appcore.dll","7392"
"10:46:23.6569417 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\profapi.dll","0.0000035","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6570053 AM","firefox.exe","7336","Load Image","C:\Windows\System32\profapi.dll","0.0000000","Image Base: 0x7ffb45b30000, Image Size: 0x1f000","7392"
"10:46:23.6570348 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\profapi.dll","0.0000076","Name: \Windows\System32\profapi.dll","7392"
"10:46:23.6571896 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\powrprof.dll","0.0000039","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6572481 AM","firefox.exe","7336","Load Image","C:\Windows\System32\powrprof.dll","0.0000000","Image Base: 0x7ffb45aa0000, Image Size: 0x4c000","7392"
"10:46:23.6572699 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\powrprof.dll","0.0000059","Name: \Windows\System32\powrprof.dll","7392"
"10:46:23.6573996 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\fltLib.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6574473 AM","firefox.exe","7336","Load Image","C:\Windows\System32\fltLib.dll","0.0000000","Image Base: 0x7ffb45a90000, Image Size: 0xa000","7392"
"10:46:23.6574687 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\fltLib.dll","0.0000051","Name: \Windows\System32\fltLib.dll","7392"
"10:46:23.6575937 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\ole32.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6576534 AM","firefox.exe","7336","Load Image","C:\Windows\System32\ole32.dll","0.0000000","Image Base: 0x7ffb491a0000, Image Size: 0x151000","7392"
"10:46:23.6576824 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\ole32.dll","0.0000056","Name: \Windows\System32\ole32.dll","7392"
"10:46:23.6578680 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\imm32.dll","0.0000043","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6579756 AM","firefox.exe","7336","Load Image","C:\Windows\System32\imm32.dll","0.0000000","Image Base: 0x7ffb48730000, Image Size: 0x2d000","7392"
"10:46:23.6580054 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\imm32.dll","0.0000069","Name: \Windows\System32\imm32.dll","7392"
"10:46:23.6581723 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\setupapi.dll","0.0000042","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6582832 AM","firefox.exe","7336","Load Image","C:\Windows\System32\setupapi.dll","0.0000000","Image Base: 0x7ffb49300000, Image Size: 0x44b000","7392"
"10:46:23.6583190 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\setupapi.dll","0.0000077","Name: \Windows\System32\setupapi.dll","7392"
"10:46:23.6585063 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\oleaut32.dll","0.0000039","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6585597 AM","firefox.exe","7336","Load Image","C:\Windows\System32\oleaut32.dll","0.0000000","Image Base: 0x7ffb46c10000, Image Size: 0xc2000","7392"
"10:46:23.6585802 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\oleaut32.dll","0.0000046","Name: \Windows\System32\oleaut32.dll","7392"
"10:46:23.6587440 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000132","","7392"
"10:46:23.6605616 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\avrt.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6606115 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000051","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","7392"
"10:46:23.6606269 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\avrt.dll","0.0000064","","7392"
"10:46:23.6607788 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\avrt.dll","0.0000179","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6608342 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6608709 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000043","SyncType: SyncTypeOther","7392"
"10:46:23.6609072 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\avrt.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6609720 AM","firefox.exe","7336","Load Image","C:\Windows\System32\avrt.dll","0.0000000","Image Base: 0x7ffb415a0000, Image Size: 0xa000","7392"
"10:46:23.6609947 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\avrt.dll","0.0000059","Name: \Windows\System32\avrt.dll","7392"
"10:46:23.6610868 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\avrt.dll","0.0000081","","7392"
"10:46:23.6613723 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\usp10.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6614154 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000034","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","7392"
"10:46:23.6614286 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\usp10.dll","0.0000051","","7392"
"10:46:23.6615685 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\usp10.dll","0.0000175","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6616159 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6616445 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000025","SyncType: SyncTypeOther","7392"
"10:46:23.6616718 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\usp10.dll","0.0000030","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6617806 AM","firefox.exe","7336","Load Image","C:\Windows\System32\usp10.dll","0.0000000","Image Base: 0x7ffb413c0000, Image Size: 0x19000","7392"
"10:46:23.6618083 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\usp10.dll","0.0000081","Name: \Windows\System32\usp10.dll","7392"
"10:46:23.6619009 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\usp10.dll","0.0000107","","7392"
"10:46:23.6624176 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\d3d11.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6624632 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000069","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7392"
"10:46:23.6624799 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\d3d11.dll","0.0000094","","7392"
"10:46:23.6626066 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","5068"
"10:46:23.6626228 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\d3d11.dll","0.0000171","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6626356 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000094","","5068"
"10:46:23.6626736 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6627060 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000022","SyncType: SyncTypeOther","7392"
"10:46:23.6627146 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000076","","5068"
"10:46:23.6627342 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\d3d11.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6627440 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000068","","5068"
"10:46:23.6628131 AM","firefox.exe","7336","Load Image","C:\Windows\System32\d3d11.dll","0.0000000","Image Base: 0x7ffb428e0000, Image Size: 0x30b000","7392"
"10:46:23.6628421 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\d3d11.dll","0.0000047","Name: \Windows\System32\d3d11.dll","7392"
"10:46:23.6629923 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\d3d11.dll","0.0000073","","7392"
"10:46:23.6631741 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.files","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.6632210 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.files","0.0000051","CreationTime: 6/19/2019 4:53:51 PM, LastAccessTime: 6/19/2019 4:53:51 PM, LastWriteTime: 6/19/2019 4:53:51 PM, ChangeTime: 6/19/2019 4:53:51 PM, AllocationSize: 0, EndOfFile: 0, FileAttributes: D","5068"
"10:46:23.6632419 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.files","0.0000064","","5068"
"10:46:23.6632871 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dxgi.dll","0.0000227","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6633456 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000064","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7392"
"10:46:23.6633639 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dxgi.dll","0.0000090","","7392"
"10:46:23.6635321 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dxgi.dll","0.0000204","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6635888 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.files","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.6635905 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6636251 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.files","0.0000042","CreationTime: 6/19/2019 4:53:51 PM, LastAccessTime: 6/19/2019 4:53:51 PM, LastWriteTime: 6/19/2019 4:53:51 PM, ChangeTime: 6/19/2019 4:53:51 PM, FileAttributes: D","5068"
"10:46:23.6636285 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000025","SyncType: SyncTypeOther","7392"
"10:46:23.6636426 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.files","0.0000055","","5068"
"10:46:23.6636643 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\dxgi.dll","0.0000039","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6637420 AM","firefox.exe","7336","Load Image","C:\Windows\System32\dxgi.dll","0.0000000","Image Base: 0x7ffb44850000, Image Size: 0xbb000","7392"
"10:46:23.6637731 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\dxgi.dll","0.0000064","Name: \Windows\System32\dxgi.dll","7392"
"10:46:23.6639318 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.files\journals","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:23.6639532 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dxgi.dll","0.0000085","","7392"
"10:46:23.6642399 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.files","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.6642710 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6642800 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.files","0.0000043","CreationTime: 6/19/2019 4:53:54 PM, LastAccessTime: 6/19/2019 4:53:54 PM, LastWriteTime: 6/19/2019 4:53:54 PM, ChangeTime: 6/19/2019 4:53:54 PM, AllocationSize: 0, EndOfFile: 0, FileAttributes: D","5068"
"10:46:23.6642983 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.files","0.0000052","","5068"
"10:46:23.6643201 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000047","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","7392"
"10:46:23.6643363 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000068","","7392"
"10:46:23.6644950 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000197","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6645518 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6645693 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.files","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.6645868 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000025","SyncType: SyncTypeOther","7392"
"10:46:23.6646064 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.files","0.0000043","CreationTime: 6/19/2019 4:53:54 PM, LastAccessTime: 6/19/2019 4:53:54 PM, LastWriteTime: 6/19/2019 4:53:54 PM, ChangeTime: 6/19/2019 4:53:54 PM, FileAttributes: D","5068"
"10:46:23.6646213 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000154","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6646269 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.files","0.0000196","","5068"
"10:46:23.6647476 AM","firefox.exe","7336","Load Image","C:\Windows\System32\IPHLPAPI.DLL","0.0000000","Image Base: 0x7ffb45030000, Image Size: 0x38000","7392"
"10:46:23.6647766 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000081","Name: \Windows\System32\IPHLPAPI.DLL","7392"
"10:46:23.6648953 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000098","","7392"
"10:46:23.6650173 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.files\journals","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:23.6652340 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6652720 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7392"
"10:46:23.6652878 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000072","","7392"
"10:46:23.6653714 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.files","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.6654188 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.files","0.0000051","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 6/19/2019 4:53:49 PM, ChangeTime: 6/19/2019 4:53:49 PM, AllocationSize: 0, EndOfFile: 0, FileAttributes: D","5068"
"10:46:23.6654427 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000192","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6654435 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.files","0.0000064","","5068"
"10:46:23.6655028 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6655348 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000022","SyncType: SyncTypeOther","7392"
"10:46:23.6655668 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\dnsapi.dll","0.0000056","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6656381 AM","firefox.exe","7336","Load Image","C:\Windows\System32\dnsapi.dll","0.0000000","Image Base: 0x7ffb45070000, Image Size: 0xbe000","7392"
"10:46:23.6656697 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\dnsapi.dll","0.0000059","Name: \Windows\System32\dnsapi.dll","7392"
"10:46:23.6658139 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\nsi.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6658190 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.files","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.6658629 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.files","0.0000047","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 6/19/2019 4:53:49 PM, ChangeTime: 6/19/2019 4:53:49 PM, FileAttributes: D","5068"
"10:46:23.6658706 AM","firefox.exe","7336","Load Image","C:\Windows\System32\nsi.dll","0.0000000","Image Base: 0x7ffb490d0000, Image Size: 0x8000","7392"
"10:46:23.6658843 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.files","0.0000064","","5068"
"10:46:23.6658941 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\nsi.dll","0.0000051","Name: \Windows\System32\nsi.dll","7392"
"10:46:23.6659926 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000077","","7392"
"10:46:23.6662350 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.files\journals","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:23.6662670 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6663203 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","7392"
"10:46:23.6663353 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000055","","7392"
"10:46:23.6664846 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000188","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6665379 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6665686 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.files","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.6665729 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000026","SyncType: SyncTypeOther","7392"
"10:46:23.6666075 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\dwmapi.dll","0.0000030","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6666096 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.files","0.0000043","CreationTime: 6/19/2019 4:53:50 PM, LastAccessTime: 6/19/2019 4:53:50 PM, LastWriteTime: 6/19/2019 4:53:50 PM, ChangeTime: 6/19/2019 4:53:50 PM, AllocationSize: 0, EndOfFile: 0, FileAttributes: D","5068"
"10:46:23.6666301 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.files","0.0000060","","5068"
"10:46:23.6666732 AM","firefox.exe","7336","Load Image","C:\Windows\System32\dwmapi.dll","0.0000000","Image Base: 0x7ffb44200000, Image Size: 0x29000","7392"
"10:46:23.6666996 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\dwmapi.dll","0.0000056","Name: \Windows\System32\dwmapi.dll","7392"
"10:46:23.6668165 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000081","","7392"
"10:46:23.6669586 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.files","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.6669996 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.files","0.0000051","CreationTime: 6/19/2019 4:53:50 PM, LastAccessTime: 6/19/2019 4:53:50 PM, LastWriteTime: 6/19/2019 4:53:50 PM, ChangeTime: 6/19/2019 4:53:50 PM, FileAttributes: D","5068"
"10:46:23.6670213 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.files","0.0000056","","5068"
"10:46:23.6670870 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000227","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6671361 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000043","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","7392"
"10:46:23.6671498 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000047","","7392"
"10:46:23.6672837 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000171","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6673311 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6673614 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000021","SyncType: SyncTypeOther","7392"
"10:46:23.6673657 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.files\journals","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:23.6673874 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\uxtheme.dll","0.0000030","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6674527 AM","firefox.exe","7336","Load Image","C:\Windows\System32\uxtheme.dll","0.0000000","Image Base: 0x7ffb43f70000, Image Size: 0x98000","7392"
"10:46:23.6674736 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\uxtheme.dll","0.0000055","Name: \Windows\System32\uxtheme.dll","7392"
"10:46:23.6675943 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000069","","7392"
"10:46:23.6676955 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.files","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.6677394 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.files","0.0000047","CreationTime: 6/19/2019 4:53:52 PM, LastAccessTime: 6/19/2019 4:53:52 PM, LastWriteTime: 6/19/2019 4:53:52 PM, ChangeTime: 6/19/2019 4:53:52 PM, AllocationSize: 0, EndOfFile: 0, FileAttributes: D","5068"
"10:46:23.6677629 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.files","0.0000055","","5068"
"10:46:23.6679583 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6680027 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000042","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","7392"
"10:46:23.6680155 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000051","","7392"
"10:46:23.6680880 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.files","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.6681345 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.files","0.0000043","CreationTime: 6/19/2019 4:53:52 PM, LastAccessTime: 6/19/2019 4:53:52 PM, LastWriteTime: 6/19/2019 4:53:52 PM, ChangeTime: 6/19/2019 4:53:52 PM, FileAttributes: D","5068"
"10:46:23.6681460 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000175","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6681567 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.files","0.0000060","","5068"
"10:46:23.6681930 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6682207 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000026","SyncType: SyncTypeOther","7392"
"10:46:23.6682497 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\wtsapi32.dll","0.0000030","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6683090 AM","firefox.exe","7336","Load Image","C:\Windows\System32\wtsapi32.dll","0.0000000","Image Base: 0x7ffb42730000, Image Size: 0x13000","7392"
"10:46:23.6683286 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000056","Name: \Windows\System32\wtsapi32.dll","7392"
"10:46:23.6684268 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000085","","7392"
"10:46:23.6685019 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.files\journals","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:23.6686794 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6687182 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000038","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7392"
"10:46:23.6687310 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000047","","7392"
"10:46:23.6688453 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.files","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.6688603 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000162","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6688897 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.files","0.0000043","CreationTime: 3/25/2020 10:27:12 AM, LastAccessTime: 3/25/2020 10:27:12 AM, LastWriteTime: 3/25/2020 10:27:12 AM, ChangeTime: 3/25/2020 10:27:12 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: D","5068"
"10:46:23.6689089 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6689145 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.files","0.0000055","","5068"
"10:46:23.6689413 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000026","SyncType: SyncTypeOther","7392"
"10:46:23.6689729 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\dhcpcsvc.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6690408 AM","firefox.exe","7336","Load Image","C:\Windows\System32\dhcpcsvc.dll","0.0000000","Image Base: 0x7ffb3be40000, Image Size: 0x1a000","7392"
"10:46:23.6690646 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000064","Name: \Windows\System32\dhcpcsvc.dll","7392"
"10:46:23.6691918 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000085","","7392"
"10:46:23.6692033 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.files","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.6692392 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.files","0.0000055","CreationTime: 3/25/2020 10:27:12 AM, LastAccessTime: 3/25/2020 10:27:12 AM, LastWriteTime: 3/25/2020 10:27:12 AM, ChangeTime: 3/25/2020 10:27:12 AM, FileAttributes: D","5068"
"10:46:23.6692622 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.files","0.0000068","","5068"
"10:46:23.6695916 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\userenv.dll","0.0000324","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6696214 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.files\journals","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:23.6696458 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","7392"
"10:46:23.6696586 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\userenv.dll","0.0000055","","7392"
"10:46:23.6696808 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome","0.0000064","","5068"
"10:46:23.6697076 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome","0.0000056","","5068"
"10:46:23.6697913 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\userenv.dll","0.0000183","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6698395 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6698668 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000017","SyncType: SyncTypeOther","7392"
"10:46:23.6698920 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\userenv.dll","0.0000029","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6699500 AM","firefox.exe","7336","Load Image","C:\Windows\System32\userenv.dll","0.0000000","Image Base: 0x7ffb459c0000, Image Size: 0x28000","7392"
"10:46:23.6699709 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\userenv.dll","0.0000055","Name: \Windows\System32\userenv.dll","7392"
"10:46:23.6700242 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.6700626 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000047","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:35:41 AM, LastWriteTime: 3/26/2020 10:35:41 AM, ChangeTime: 3/26/2020 10:35:41 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:23.6700814 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000051","","5068"
"10:46:23.6701066 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\userenv.dll","0.0000072","","7392"
"10:46:23.6703775 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6704112 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000043","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","7392"
"10:46:23.6704210 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\idb-deleting-3870112724rsegmnoittet-es","0.0000295","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:23.6704253 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000064","","7392"
"10:46:23.6705755 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000183","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6706130 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6706433 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000021","SyncType: SyncTypeOther","7392"
"10:46:23.6706710 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000035","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6707470 AM","firefox.exe","7336","Load Image","C:\Windows\System32\D3DCompiler_47.dll","0.0000000","Image Base: 0x7ffb42bf0000, Image Size: 0x42f000","7392"
"10:46:23.6707641 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000042","Name: \Windows\System32\D3DCompiler_47.dll","7392"
"10:46:23.6707888 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.6708387 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","5068"
"10:46:23.6708592 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000068","","7392"
"10:46:23.6708613 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000073","","5068"
"10:46:23.6710764 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dxgi.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6711212 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000038","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7392"
"10:46:23.6711353 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dxgi.dll","0.0000068","","7392"
"10:46:23.6712769 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.6713221 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:23.6713452 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000068","","5068"
"10:46:23.6715368 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000328","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:23.6716238 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0259909","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:23.6716916 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0258979","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5068"
"10:46:23.6724494 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6724959 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","7392"
"10:46:23.6725104 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000064","","7392"
"10:46:23.6726504 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000174","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6727011 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6727310 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000026","SyncType: SyncTypeOther","7392"
"10:46:23.6727600 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\cryptsp.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6728543 AM","firefox.exe","7336","Load Image","C:\Windows\System32\cryptsp.dll","0.0000000","Image Base: 0x7ffb45460000, Image Size: 0x17000","7392"
"10:46:23.6728846 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\cryptsp.dll","0.0000090","Name: \Windows\System32\cryptsp.dll","7392"
"10:46:23.6730198 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000094","","7392"
"10:46:23.6738237 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\imm32.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6738698 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000042","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","7392"
"10:46:23.6738847 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\imm32.dll","0.0000060","","7392"
"10:46:23.6741761 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\imm32.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6742145 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000039","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","7392"
"10:46:23.6742277 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\imm32.dll","0.0000056","","7392"
"10:46:23.6742930 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Error Message Instrument\","0.0000090","Desired Access: Read","7392"
"10:46:23.6743156 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Error Message Instrument","0.0000069","Desired Access: Read","7392"
"10:46:23.6743690 AM","firefox.exe","7336","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000051","Desired Access: Query Value, Enumerate Sub Keys","7392"
"10:46:23.6743886 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Display","0.0000073","Desired Access: Read","7392"
"10:46:23.6744151 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Display","0.0000042","Desired Access: Read","7392"
"10:46:23.6744325 AM","firefox.exe","7336","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000035","Desired Access: Query Value, Enumerate Sub Keys","7392"
"10:46:23.6744475 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Display","0.0000042","Desired Access: Read","7392"
"10:46:23.6744628 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Display","0.0000047","Desired Access: Read","7392"
"10:46:23.6744987 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\GRE_Initialize","0.0000106","Desired Access: Read","7392"
"10:46:23.6745251 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize\DisableMetaFiles","0.0000098","Length: 20","7392"
"10:46:23.6745563 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize","0.0000021","","7392"
"10:46:23.6746190 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Control Panel\Desktop","0.0000060","Desired Access: Read","7392"
"10:46:23.6746467 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Policies\Microsoft\Windows\Control Panel\Desktop","0.0000090","Desired Access: Read","7392"
"10:46:23.6746749 AM","firefox.exe","7336","RegOpenKey","HKCU\Control Panel\Desktop","0.0000060","Desired Access: Read","7392"
"10:46:23.6746996 AM","firefox.exe","7336","RegQueryValue","HKCU\Control Panel\Desktop\EnablePerProcessSystemDPI","0.0000052","Length: 20","7392"
"10:46:23.6747240 AM","firefox.exe","7336","RegCloseKey","HKCU\Control Panel\Desktop","0.0000017","","7392"
"10:46:23.6748089 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\Compatibility32","0.0000119","Desired Access: Read","7392"
"10:46:23.6748426 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Compatibility32\firefox","0.0000038","Length: 172","7392"
"10:46:23.6748665 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Compatibility32","0.0000021","","7392"
"10:46:23.6748891 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\IME Compatibility","0.0000072","Desired Access: Read","7392"
"10:46:23.6749309 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-widevinecdm\4.10.1582.2\widevinecdm.dll","0.0083418","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.6754207 AM","firefox.exe","7336","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000064","Desired Access: Query Value, Enumerate Sub Keys","7392"
"10:46:23.6758196 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6758533 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000056","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7392"
"10:46:23.6758683 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000072","","7392"
"10:46:23.6760001 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6760197 AM","firefox.exe","7336","RegOpenKey","HKLM\SOFTWARE\Microsoft\OLE","0.0000090","Desired Access: Read","7392"
"10:46:23.6760449 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Ole\PageAllocatorUseSystemHeap","0.0000039","Length: 20","7392"
"10:46:23.6760658 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Ole","0.0000017","","7392"
"10:46:23.6760808 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6760961 AM","firefox.exe","7336","RegOpenKey","HKLM\SOFTWARE\Microsoft\OLE","0.0000056","Desired Access: Read","7392"
"10:46:23.6761140 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Ole\PageAllocatorSystemHeapIsPrivate","0.0000026","Length: 20","7392"
"10:46:23.6761298 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Ole","0.0000013","","7392"
"10:46:23.6761422 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6761559 AM","firefox.exe","7336","RegOpenKey","HKLM\SOFTWARE\Microsoft\OLE","0.0000042","Desired Access: Read","7392"
"10:46:23.6761721 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Ole\AggressiveMTATesting","0.0000030","Length: 16","7392"
"10:46:23.6761870 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Ole","0.0000013","","7392"
"10:46:23.6763351 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 8744","36"
"10:46:23.6764447 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6764605 AM","firefox.exe","7336","RegOpenKey","HKLM","0.0000051","Desired Access: Read","7392"
"10:46:23.6764793 AM","firefox.exe","7336","RegSetInfoKey","HKLM","0.0000012","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","7392"
"10:46:23.6764972 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x100","7392"
"10:46:23.6765104 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\Ole\FeatureDevelopmentProperties","0.0000060","Desired Access: Read","7392"
"10:46:23.6765322 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x100","7392"
"10:46:23.6765458 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\Ole\FeatureDevelopmentProperties","0.0000039","Desired Access: Read","7392"
"10:46:23.6765612 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x100","7392"
"10:46:23.6765744 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\Ole","0.0000047","Desired Access: Read","7392"
"10:46:23.6766427 AM","firefox.exe","7336","RegOpenKey","HKCU","0.0000060","Desired Access: Read","7392"
"10:46:23.6766623 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6766747 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\Local Settings","0.0000060","Desired Access: Read","7392"
"10:46:23.6766896 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\Local Settings","0.0000064","Desired Access: Read","7392"
"10:46:23.6767080 AM","firefox.exe","7336","RegSetInfoKey","HKCU\Software\Classes\Local Settings","0.0000012","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","7392"
"10:46:23.6767225 AM","firefox.exe","7336","RegCloseKey","HKCU","0.0000017","","7392"
"10:46:23.6767404 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Classes\Local Settings","0.0000013","Query: HandleTags, HandleTags: 0x100","7392"
"10:46:23.6767540 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Ole\FeatureDevelopmentProperties","0.0000052","Desired Access: Read","7392"
"10:46:23.6767707 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Classes\Local Settings","0.0000008","Query: HandleTags, HandleTags: 0x100","7392"
"10:46:23.6767839 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Ole\FeatureDevelopmentProperties","0.0000034","Desired Access: Read","7392"
"10:46:23.6767980 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Classes\Local Settings","0.0000013","Query: HandleTags, HandleTags: 0x100","7392"
"10:46:23.6768112 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Ole","0.0000034","Desired Access: Read","7392"
"10:46:23.6768253 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Classes\Local Settings","0.0000013","Query: HandleTags, HandleTags: 0x100","7392"
"10:46:23.6768385 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft","0.0000034","Desired Access: Read","7392"
"10:46:23.6768872 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6768991 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\OLE\Tracing","0.0000051","Desired Access: Read","7392"
"10:46:23.6780477 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6780788 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000056","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7392"
"10:46:23.6780933 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000073","","7392"
"10:46:23.6781847 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6782039 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\OLE\Tracing","0.0000068","Desired Access: Read","7392"
"10:46:23.6784876 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6785350 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000042","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7392"
"10:46:23.6785499 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000064","","7392"
"10:46:23.6792650 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\setupapi.dll","0.0000072","Name: \Windows\System32\setupapi.dll","7392"
"10:46:23.6796183 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6796477 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000043","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7392"
"10:46:23.6796605 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000068","","7392"
"10:46:23.6799583 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ole32.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6800052 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000039","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","7392"
"10:46:23.6800180 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ole32.dll","0.0000069","","7392"
"10:46:23.6801384 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6801593 AM","firefox.exe","7336","RegOpenKey","HKLM\SOFTWARE\Microsoft\OLEAUT","0.0000089","Desired Access: Query Value","7392"
"10:46:23.6817047 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6817362 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000043","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7392"
"10:46:23.6817499 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000072","","7392"
"10:46:23.6820102 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000029","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6820328 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000076","Desired Access: All Access","7392"
"10:46:23.6820554 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000512","Desired Access: All Access","7392"
"10:46:23.6820793 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000042","Information: Owner","7392"
"10:46:23.6820998 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000021","Information: Owner","7392"
"10:46:23.6821232 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6821403 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000072","Desired Access: Read","7392"
"10:46:23.6821603 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000073","Desired Access: Read","7392"
"10:46:23.6822013 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000043","Length: 16","7392"
"10:46:23.6822150 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000025","Type: REG_SZ, Length: 8, Data: 2.0","7392"
"10:46:23.6822359 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6822525 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog","0.0000111","Desired Access: Read","7392"
"10:46:23.6822935 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog","0.0000012","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6823080 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog\3AC7FBD2-025027F7","0.0000030","Desired Access: Read","7392"
"10:46:23.6823242 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6823353 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog\3AC7FBD2","0.0000034","Desired Access: Read","7392"
"10:46:23.6823528 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog","0.0000017","","7392"
"10:46:23.6823677 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Callout","0.0000026","Length: 12","7392"
"10:46:23.6823831 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Callout","0.0000025","Type: REG_EXPAND_SZ, Length: 70, Data: %SystemRoot%\System32\fwpuclnt.dll","7392"
"10:46:23.6824018 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6824155 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000051","Desired Access: Maximum Allowed, Granted Access: Read","7392"
"10:46:23.6824338 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000026","Type: REG_DWORD, Length: 4, Data: 8","7392"
"10:46:23.6824940 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000026","Type: REG_DWORD, Length: 4, Data: 8","7392"
"10:46:23.6825136 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000022","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6825350 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000034","Desired Access: Read","7392"
"10:46:23.6825563 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000030","Type: REG_DWORD, Length: 4, Data: 1015","7392"
"10:46:23.6825763 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000047","Type: REG_DWORD, Length: 4, Data: 14","7392"
"10:46:23.6825985 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6826147 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000116","Desired Access: Maximum Allowed, Granted Access: Read","7392"
"10:46:23.6826450 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6826617 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000115","Desired Access: Read","7392"
"10:46:23.6826928 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000047","Length: 144","7392"
"10:46:23.6827112 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","7392"
"10:46:23.6827355 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000021","","7392"
"10:46:23.6827543 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6827739 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000072","Desired Access: Read","7392"
"10:46:23.6828055 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000038","Length: 144","7392"
"10:46:23.6828217 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","7392"
"10:46:23.6828400 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","7392"
"10:46:23.6828618 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6828810 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000094","Desired Access: Read","7392"
"10:46:23.6829087 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000034","Length: 144","7392"
"10:46:23.6829245 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","7392"
"10:46:23.6829501 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000013","","7392"
"10:46:23.6829672 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000076","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6829906 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000094","Desired Access: Read","7392"
"10:46:23.6830167 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000029","Length: 144","7392"
"10:46:23.6830312 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","7392"
"10:46:23.6830474 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","","7392"
"10:46:23.6830623 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6830777 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000111","Desired Access: Read","7392"
"10:46:23.6831075 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000039","Length: 144","7392"
"10:46:23.6831374 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","7392"
"10:46:23.6831583 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000013","","7392"
"10:46:23.6831801 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6832065 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000111","Desired Access: Read","7392"
"10:46:23.6832338 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000030","Length: 144","7392"
"10:46:23.6832479 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","7392"
"10:46:23.6832646 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000017","","7392"
"10:46:23.6832791 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6832931 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000073","Desired Access: Read","7392"
"10:46:23.6833098 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-widevinecdm\4.10.1582.2\widevinecdm.dll","0.0000072","CreationTime: 3/25/2020 10:32:07 AM, LastAccessTime: 3/25/2020 10:32:07 AM, LastWriteTime: 3/25/2020 10:32:07 AM, ChangeTime: 3/25/2020 10:32:07 AM, AllocationSize: 8658944, EndOfFile: 8655344, FileAttributes: A","5728"
"10:46:23.6833162 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000034","Length: 144","7392"
"10:46:23.6833286 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","7392"
"10:46:23.6833396 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-widevinecdm\4.10.1582.2\widevinecdm.dll","0.0000107","","5728"
"10:46:23.6833443 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000013","","7392"
"10:46:23.6833563 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6833682 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000060","Desired Access: Read","7392"
"10:46:23.6833870 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000026","Length: 144","7392"
"10:46:23.6834049 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","7392"
"10:46:23.6834203 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000013","","7392"
"10:46:23.6834331 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6834455 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000072","Desired Access: Read","7392"
"10:46:23.6834668 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000026","Length: 144","7392"
"10:46:23.6834783 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","7392"
"10:46:23.6834924 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000008","","7392"
"10:46:23.6835056 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6835180 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000068","Desired Access: Read","7392"
"10:46:23.6835393 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000026","Length: 144","7392"
"10:46:23.6835496 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","7392"
"10:46:23.6835637 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000012","","7392"
"10:46:23.6835773 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6835884 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000068","Desired Access: Read","7392"
"10:46:23.6836089 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000030","Length: 144","7392"
"10:46:23.6836200 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","7392"
"10:46:23.6836336 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000013","","7392"
"10:46:23.6836469 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6836588 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000064","Desired Access: Read","7392"
"10:46:23.6836840 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000025","Length: 144","7392"
"10:46:23.6836946 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","7392"
"10:46:23.6837091 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000009","","7392"
"10:46:23.6837219 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000018","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6837326 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000077","Desired Access: Read","7392"
"10:46:23.6837522 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000026","Length: 144","7392"
"10:46:23.6837650 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","7392"
"10:46:23.6837795 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000013","","7392"
"10:46:23.6837911 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6838047 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000077","Desired Access: Read","7392"
"10:46:23.6838269 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000021","Length: 144","7392"
"10:46:23.6838380 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","7392"
"10:46:23.6838512 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000013","","7392"
"10:46:23.6838636 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","","7392"
"10:46:23.6838965 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6838986 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-widevinecdm\4.10.1582.2\manifest.json","0.0385660","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:23.6839093 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5","0.0000055","Desired Access: Maximum Allowed, Granted Access: Read","7392"
"10:46:23.6839259 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Serial_Access_Num","0.0000026","Type: REG_DWORD, Length: 4, Data: 22","7392"
"10:46:23.6839750 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 22","7392"
"10:46:23.6839882 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6840014 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\00000016","0.0000026","Desired Access: Read","7392"
"10:46:23.6840189 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Num_Catalog_Entries64","0.0000026","Type: REG_DWORD, Length: 4, Data: 7","7392"
"10:46:23.6840326 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5","0.0000012","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6840445 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000081","Desired Access: Maximum Allowed, Granted Access: Read","7392"
"10:46:23.6840671 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6840803 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001","0.0000069","Desired Access: Read","7392"
"10:46:23.6841017 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\LibraryPath","0.0000034","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\napinsp.dll","7392"
"10:46:23.6841166 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\LibraryPath","0.0000026","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\napinsp.dll","7392"
"10:46:23.6841311 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\DisplayString","0.0000026","Length: 12","7392"
"10:46:23.6841443 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\DisplayString","0.0000030","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\napinsp.dll,-1000","7392"
"10:46:23.6841593 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\DisplayString","0.0000025","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\napinsp.dll,-1000","7392"
"10:46:23.6841729 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\DisplayString","0.0000026","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\napinsp.dll,-1000","7392"
"10:46:23.6841870 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\ProviderId","0.0000030","Type: REG_BINARY, Length: 16, Data: A2 CB 4A 96 BC B2 EB 40 8C 6A A6 DB 40 16 1C AE","7392"
"10:46:23.6842011 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\AddressFamily","0.0000026","Length: 16","7392"
"10:46:23.6842152 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\SupportedNameSpace","0.0000025","Type: REG_DWORD, Length: 4, Data: 37","7392"
"10:46:23.6842293 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\Enabled","0.0000025","Type: REG_DWORD, Length: 4, Data: 1","7392"
"10:46:23.6842433 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\Version","0.0000022","Type: REG_DWORD, Length: 4, Data: 0","7392"
"10:46:23.6842591 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\StoresServiceClassInfo","0.0000034","Type: REG_DWORD, Length: 4, Data: 0","7392"
"10:46:23.6842745 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","7392"
"10:46:23.6842894 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\ProviderInfo","0.0000026","Type: REG_BINARY, Length: 0","7392"
"10:46:23.6843061 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001","0.0000012","","7392"
"10:46:23.6843206 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6843355 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002","0.0000077","Desired Access: Read","7392"
"10:46:23.6843581 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\LibraryPath","0.0000030","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\pnrpnsp.dll","7392"
"10:46:23.6843696 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\LibraryPath","0.0000022","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\pnrpnsp.dll","7392"
"10:46:23.6843803 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\DisplayString","0.0000021","Length: 12","7392"
"10:46:23.6843893 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\DisplayString","0.0000059","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1000","7392"
"10:46:23.6844072 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\DisplayString","0.0000030","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1000","7392"
"10:46:23.6844225 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\DisplayString","0.0000030","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1000","7392"
"10:46:23.6844366 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\ProviderId","0.0000030","Type: REG_BINARY, Length: 16, Data: CE 89 FE 03 6D 76 76 49 B9 C1 BB 9B C4 2C 7B 4D","7392"
"10:46:23.6844498 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\AddressFamily","0.0000026","Length: 16","7392"
"10:46:23.6844631 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\SupportedNameSpace","0.0000025","Type: REG_DWORD, Length: 4, Data: 39","7392"
"10:46:23.6844767 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\Enabled","0.0000026","Type: REG_DWORD, Length: 4, Data: 1","7392"
"10:46:23.6844899 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\Version","0.0000026","Type: REG_DWORD, Length: 4, Data: 0","7392"
"10:46:23.6845045 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\StoresServiceClassInfo","0.0000029","Type: REG_DWORD, Length: 4, Data: 0","7392"
"10:46:23.6845181 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\ProviderInfo","0.0000043","Type: REG_BINARY, Length: 0","7392"
"10:46:23.6845356 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\ProviderInfo","0.0000034","Type: REG_BINARY, Length: 0","7392"
"10:46:23.6845527 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002","0.0000017","","7392"
"10:46:23.6845672 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6845813 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003","0.0000059","Desired Access: Read","7392"
"10:46:23.6846056 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\LibraryPath","0.0000025","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\pnrpnsp.dll","7392"
"10:46:23.6846184 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\LibraryPath","0.0000030","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\pnrpnsp.dll","7392"
"10:46:23.6846307 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\DisplayString","0.0000026","Length: 12","7392"
"10:46:23.6846444 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\DisplayString","0.0000021","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1001","7392"
"10:46:23.6846581 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\DisplayString","0.0000029","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1001","7392"
"10:46:23.6846717 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\DisplayString","0.0000026","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1001","7392"
"10:46:23.6846854 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\ProviderId","0.0000025","Type: REG_BINARY, Length: 16, Data: CD 89 FE 03 6D 76 76 49 B9 C1 BB 9B C4 2C 7B 4D","7392"
"10:46:23.6846986 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\AddressFamily","0.0000030","Length: 16","7392"
"10:46:23.6847122 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\SupportedNameSpace","0.0000030","Type: REG_DWORD, Length: 4, Data: 38","7392"
"10:46:23.6847259 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\Enabled","0.0000030","Type: REG_DWORD, Length: 4, Data: 1","7392"
"10:46:23.6847387 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\Version","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","7392"
"10:46:23.6847528 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\StoresServiceClassInfo","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","7392"
"10:46:23.6847656 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","7392"
"10:46:23.6847779 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","7392"
"10:46:23.6847929 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003","0.0000021","","7392"
"10:46:23.6848070 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6848206 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004","0.0000064","Desired Access: Read","7392"
"10:46:23.6848407 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\LibraryPath","0.0000030","Type: REG_SZ, Length: 66, Data: %SystemRoot%\system32\NLAapi.dll","7392"
"10:46:23.6848530 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\LibraryPath","0.0000026","Type: REG_SZ, Length: 66, Data: %SystemRoot%\system32\NLAapi.dll","7392"
"10:46:23.6848663 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\DisplayString","0.0000025","Length: 12","7392"
"10:46:23.6848791 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\DisplayString","0.0000030","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\system32\nlasvc.dll,-1000","7392"
"10:46:23.6848931 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\DisplayString","0.0000030","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\system32\nlasvc.dll,-1000","7392"
"10:46:23.6849068 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\DisplayString","0.0000026","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\system32\nlasvc.dll,-1000","7392"
"10:46:23.6849205 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\ProviderId","0.0000029","Type: REG_BINARY, Length: 16, Data: 3A 24 42 66 A8 3B A6 4A BA A5 2E 0B D7 1F DD 83","7392"
"10:46:23.6849345 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\AddressFamily","0.0000026","Length: 16","7392"
"10:46:23.6849482 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\SupportedNameSpace","0.0000030","Type: REG_DWORD, Length: 4, Data: 15","7392"
"10:46:23.6849618 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\Enabled","0.0000030","Type: REG_DWORD, Length: 4, Data: 1","7392"
"10:46:23.6849759 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\Version","0.0000026","Type: REG_DWORD, Length: 4, Data: 0","7392"
"10:46:23.6849909 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\StoresServiceClassInfo","0.0000029","Type: REG_DWORD, Length: 4, Data: 0","7392"
"10:46:23.6850045 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","7392"
"10:46:23.6850177 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","7392"
"10:46:23.6850322 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004","0.0000013","","7392"
"10:46:23.6850557 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6850698 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005","0.0000064","Desired Access: Read","7392"
"10:46:23.6850898 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\LibraryPath","0.0000030","Type: REG_SZ, Length: 68, Data: %SystemRoot%\System32\mswsock.dll","7392"
"10:46:23.6851018 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\LibraryPath","0.0000025","Type: REG_SZ, Length: 68, Data: %SystemRoot%\System32\mswsock.dll","7392"
"10:46:23.6851150 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\DisplayString","0.0000026","Length: 12","7392"
"10:46:23.6851278 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\DisplayString","0.0000026","Type: REG_SZ, Length: 86, Data: @%SystemRoot%\system32\wshtcpip.dll,-60103","7392"
"10:46:23.6851423 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\DisplayString","0.0000026","Type: REG_SZ, Length: 86, Data: @%SystemRoot%\system32\wshtcpip.dll,-60103","7392"
"10:46:23.6851555 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\DisplayString","0.0000022","Type: REG_SZ, Length: 86, Data: @%SystemRoot%\system32\wshtcpip.dll,-60103","7392"
"10:46:23.6851692 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\ProviderId","0.0000026","Type: REG_BINARY, Length: 16, Data: 40 9D 05 22 9E 7E CF 11 AE 5A 00 AA 00 A7 11 2B","7392"
"10:46:23.6851829 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\AddressFamily","0.0000021","Length: 16","7392"
"10:46:23.6851961 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\SupportedNameSpace","0.0000021","Type: REG_DWORD, Length: 4, Data: 12","7392"
"10:46:23.6852097 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\Enabled","0.0000022","Type: REG_DWORD, Length: 4, Data: 1","7392"
"10:46:23.6852234 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\Version","0.0000021","Type: REG_DWORD, Length: 4, Data: 0","7392"
"10:46:23.6852379 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\StoresServiceClassInfo","0.0000026","Type: REG_DWORD, Length: 4, Data: 0","7392"
"10:46:23.6852520 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\ProviderInfo","0.0000021","Type: REG_BINARY, Length: 0","7392"
"10:46:23.6852656 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\ProviderInfo","0.0000026","Type: REG_BINARY, Length: 0","7392"
"10:46:23.6852806 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005","0.0000012","","7392"
"10:46:23.6852942 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6853079 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006","0.0000064","Desired Access: Read","7392"
"10:46:23.6853271 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\LibraryPath","0.0000030","Type: REG_SZ, Length: 66, Data: %SystemRoot%\System32\winrnr.dll","7392"
"10:46:23.6853411 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\LibraryPath","0.0000030","Type: REG_SZ, Length: 66, Data: %SystemRoot%\System32\winrnr.dll","7392"
"10:46:23.6853548 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\DisplayString","0.0000030","Length: 12","7392"
"10:46:23.6853672 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\DisplayString","0.0000030","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\System32\winrnr.dll,-1000","7392"
"10:46:23.6853804 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\DisplayString","0.0000030","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\System32\winrnr.dll,-1000","7392"
"10:46:23.6853919 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\DisplayString","0.0000026","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\System32\winrnr.dll,-1000","7392"
"10:46:23.6854051 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\ProviderId","0.0000026","Type: REG_BINARY, Length: 16, Data: EE 37 26 3B 80 E5 CF 11 A5 55 00 C0 4F D8 D4 AC","7392"
"10:46:23.6854188 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\AddressFamily","0.0000021","Length: 16","7392"
"10:46:23.6854320 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\SupportedNameSpace","0.0000030","Type: REG_DWORD, Length: 4, Data: 32","7392"
"10:46:23.6854448 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\Enabled","0.0000030","Type: REG_DWORD, Length: 4, Data: 1","7392"
"10:46:23.6854563 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\Version","0.0000026","Type: REG_DWORD, Length: 4, Data: 0","7392"
"10:46:23.6854700 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\StoresServiceClassInfo","0.0000026","Type: REG_DWORD, Length: 4, Data: 0","7392"
"10:46:23.6854841 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\ProviderInfo","0.0000021","Type: REG_BINARY, Length: 0","7392"
"10:46:23.6854973 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\ProviderInfo","0.0000026","Type: REG_BINARY, Length: 0","7392"
"10:46:23.6855122 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006","0.0000017","","7392"
"10:46:23.6855259 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6855395 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007","0.0000069","Desired Access: Read","7392"
"10:46:23.6855600 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\LibraryPath","0.0000034","Type: REG_SZ, Length: 66, Data: %SystemRoot%\System32\wshbth.dll","7392"
"10:46:23.6855737 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\LibraryPath","0.0000030","Type: REG_SZ, Length: 66, Data: %SystemRoot%\System32\wshbth.dll","7392"
"10:46:23.6855873 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\DisplayString","0.0000030","Length: 12","7392"
"10:46:23.6855993 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\DisplayString","0.0000030","Type: REG_SZ, Length: 40, Data: Bluetooth Namespace","7392"
"10:46:23.6856117 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\DisplayString","0.0000025","Type: REG_SZ, Length: 40, Data: Bluetooth Namespace","7392"
"10:46:23.6856240 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\DisplayString","0.0000026","Type: REG_SZ, Length: 40, Data: Bluetooth Namespace","7392"
"10:46:23.6856368 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\ProviderId","0.0000026","Type: REG_BINARY, Length: 16, Data: E0 63 AA 06 60 7D FF 41 AF B2 3E E6 D2 D9 39 2D","7392"
"10:46:23.6856501 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\AddressFamily","0.0000025","Length: 16","7392"
"10:46:23.6856633 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\SupportedNameSpace","0.0000025","Type: REG_DWORD, Length: 4, Data: 16","7392"
"10:46:23.6856761 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\Enabled","0.0000025","Type: REG_DWORD, Length: 4, Data: 1","7392"
"10:46:23.6856897 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\Version","0.0000026","Type: REG_DWORD, Length: 4, Data: 0","7392"
"10:46:23.6857042 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\StoresServiceClassInfo","0.0000026","Type: REG_DWORD, Length: 4, Data: 0","7392"
"10:46:23.6857179 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\ProviderInfo","0.0000026","Type: REG_BINARY, Length: 0","7392"
"10:46:23.6857315 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\ProviderInfo","0.0000022","Type: REG_BINARY, Length: 0","7392"
"10:46:23.6857461 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007","0.0000012","","7392"
"10:46:23.6857593 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000008","","7392"
"10:46:23.6857738 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000008","","7392"
"10:46:23.6857913 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6858054 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock2\Parameters","0.0000059","Desired Access: Query Value","7392"
"10:46:23.6858237 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock2\Parameters","0.0000064","Desired Access: Query Value","7392"
"10:46:23.6858433 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Ws2_32NumHandleBuckets","0.0000030","Length: 16","7392"
"10:46:23.6858566 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Ws2_32SpinCount","0.0000025","Length: 16","7392"
"10:46:23.6858698 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","","7392"
"10:46:23.6867500 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0027857","Offset: 14,620,160, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.6868225 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\dependentlibs.list","0.0000077","Offset: 476, Length: 4,096","7392"
"10:46:23.6868494 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\dependentlibs.list","0.0000145","","7392"
"10:46:23.6879873 AM","firefox.exe","7336","QueryNameInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000098","Name: \Program Files\Firefox Nightly\xul.dll","7392"
"10:46:23.6886098 AM","firefox.exe","7336","QueryNameInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000073","Name: \Program Files\Firefox Nightly\xul.dll","7392"
"10:46:23.6894354 AM","firefox.exe","7336","QueryNameInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000047","Name: \Program Files\Firefox Nightly\xul.dll","7392"
"10:46:23.6896833 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 8748","7392"
"10:46:23.6898728 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.6899359 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000051","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","1120"
"10:46:23.6899701 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000081","","1120"
"10:46:23.6901015 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\SideBySide","0.0000166","Desired Access: Read","7392"
"10:46:23.6901348 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest","0.0000051","Length: 20","7392"
"10:46:23.6901548 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide","0.0000017","","7392"
"10:46:23.6903144 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000213","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6904334 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.6904889 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000047","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","1120"
"10:46:23.6905281 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000128","","1120"
"10:46:23.6907009 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000073","","7392"
"10:46:23.6909100 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0008781","Offset: 14,329,344, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.6910393 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\rpcss.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6910892 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\rpcss.dll","0.0000047","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7392"
"10:46:23.6911041 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\rpcss.dll","0.0000064","","7392"
"10:46:23.6912530 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\rpcss.dll","0.0000188","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6913153 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\rpcss.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6913358 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\rpcss.dll","0.0000039","AllocationSize: 1,163,264, EndOfFile: 1,159,680, NumberOfLinks: 2, DeletePending: False, Directory: False","7392"
"10:46:23.6913674 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\rpcss.dll","0.0000026","SyncType: SyncTypeOther","7392"
"10:46:23.6914741 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\rpcss.dll","0.0000076","","7392"
"10:46:23.6920603 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.6921166 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000051","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","1120"
"10:46:23.6921486 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000081","","1120"
"10:46:23.6924204 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0107836","Offset: 15,021,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.6925595 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6926060 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000043","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","7392"
"10:46:23.6926197 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000059","","7392"
"10:46:23.6927707 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000188","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6928334 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\ntmarta.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.6928859 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\ntmarta.dll","0.0000026","SyncType: SyncTypeOther","7392"
"10:46:23.6929209 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\ntmarta.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.6929887 AM","firefox.exe","7336","Load Image","C:\Windows\System32\ntmarta.dll","0.0000000","Image Base: 0x7ffb44b80000, Image Size: 0x31000","7392"
"10:46:23.6930156 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\ntmarta.dll","0.0000060","Name: \Windows\System32\ntmarta.dll","7392"
"10:46:23.6931419 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000081","","7392"
"10:46:23.6936309 AM","firefox.exe","7336","RegOpenKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\Appx","0.0000200","Desired Access: Read","7392"
"10:46:23.6936825 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Windows\Appx\AllowDevelopmentWithoutDevLicense","0.0000158","Type: REG_DWORD, Length: 4, Data: 65535","7392"
"10:46:23.6937205 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\Appx","0.0000025","","7392"
"10:46:23.6937397 AM","firefox.exe","7336","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModelUnlock","0.0000149","Desired Access: Read","7392"
"10:46:23.6937687 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModelUnlock\AllowDevelopmentWithoutDevLicense","0.0000042","Length: 24","7392"
"10:46:23.6937866 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModelUnlock","0.0000017","","7392"
"10:46:23.6942410 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes","0.0000111","Desired Access: Maximum Allowed, Granted Access: Read, Create Link","7392"
"10:46:23.6942747 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Classes","0.0000064","Query: Name","7392"
"10:46:23.6942990 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6943127 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6943297 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\AppID\firefox.exe","0.0000111","Desired Access: Read","7392"
"10:46:23.6943571 AM","firefox.exe","7336","RegOpenKey","HKCR\AppID\firefox.exe","0.0000085","Desired Access: Read","7392"
"10:46:23.6943920 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Classes","0.0000047","Query: Name","7392"
"10:46:23.6944100 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:23.6944232 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Classes","0.0000034","Query: Name","7392"
"10:46:23.6944582 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\AppID\firefox.exe","0.0000081","Desired Access: Read","7392"
"10:46:23.6944863 AM","firefox.exe","7336","RegOpenKey","HKCR\AppID\firefox.exe","0.0000094","Desired Access: Read","7392"
"10:46:23.6949032 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000077","Desired Access: Query Value","7392"
"10:46:23.6949262 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000069","Desired Access: Query Value","7392"
"10:46:23.6949501 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Lsa\EveryoneIncludesAnonymous","0.0000047","Type: REG_DWORD, Length: 4, Data: 0","7392"
"10:46:23.6949719 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000017","","7392"
"10:46:23.6950227 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\Rpc\Extensions","0.0000132","Desired Access: Read","7392"
"10:46:23.6950508 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Rpc\Extensions\NdrOleExtDLL","0.0000039","Type: REG_EXPAND_SZ, Length: 24, Data: combase.dll","7392"
"10:46:23.6950666 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Rpc\Extensions","0.0000017","","7392"
"10:46:23.6954988 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\browser","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6955317 AM","firefox.exe","7336","QueryNetworkOpenInformationFile","C:\Program Files\Firefox Nightly\browser","0.0000047","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:30 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, AllocationSize: 4096, EndOfFile: 4096, FileAttributes: D","7392"
"10:46:23.6955479 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\browser","0.0000064","","7392"
"10:46:23.6973680 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly","0.0000201","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6974244 AM","firefox.exe","7336","QueryNameInformationFile","C:\Program Files\Firefox Nightly","0.0000047","Name: \Program Files\Firefox Nightly","7392"
"10:46:23.6974483 AM","firefox.exe","7336","QueryNameInformationFile","C:\Program Files\Firefox Nightly","0.0000034","Name: \Program Files\Firefox Nightly","7392"
"10:46:23.6975242 AM","firefox.exe","7336","QueryNormalizedNameInformationFile","C:\Program Files\Firefox Nightly","0.0000107","","7392"
"10:46:23.6976078 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly","0.0000047","","7392"
"10:46:23.6977823 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000073","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:23.6978143 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:23.6978365 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","Offset: 1,073,741,824, Length: 1","5068"
"10:46:23.6979014 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\browser","0.0000213","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6979534 AM","firefox.exe","7336","QueryNameInformationFile","C:\Program Files\Firefox Nightly\browser","0.0000064","Name: \Program Files\Firefox Nightly\browser","7392"
"10:46:23.6979850 AM","firefox.exe","7336","QueryNameInformationFile","C:\Program Files\Firefox Nightly\browser","0.0000081","Name: \Program Files\Firefox Nightly\browser","7392"
"10:46:23.6980605 AM","firefox.exe","7336","QueryNormalizedNameInformationFile","C:\Program Files\Firefox Nightly\browser","0.0000137","","7392"
"10:46:23.6980934 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\browser","0.0000064","","7392"
"10:46:23.6981855 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:23.6985183 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:23.6985563 AM","firefox.exe","7336","RegOpenKey","HKCU","0.0000132","Desired Access: Maximum Allowed, Granted Access: Read, Create Link","7392"
"10:46:23.6985747 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000059","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:23.6985917 AM","firefox.exe","7336","RegOpenKey","HKCU\Control Panel\International","0.0000077","Desired Access: Read","7392"
"10:46:23.6986062 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000098","Offset: 0, Length: 4,096","5068"
"10:46:23.6986195 AM","firefox.exe","7336","RegCloseKey","HKCU","0.0000021","","7392"
"10:46:23.6986387 AM","firefox.exe","7336","RegQueryValue","HKCU\Control Panel\International\LocaleName","0.0000064","Type: REG_SZ, Length: 12, Data: en-US","7392"
"10:46:23.6986617 AM","firefox.exe","7336","RegCloseKey","HKCU\Control Panel\International","0.0000021","","7392"
"10:46:23.6986916 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\CustomLocale","0.0000081","Desired Access: Read","7392"
"10:46:23.6987133 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\CustomLocale","0.0000120","Desired Access: Read","7392"
"10:46:23.6987419 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\CustomLocale\en-US","0.0000034","Length: 532","7392"
"10:46:23.6987603 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\Nls\CustomLocale","0.0000021","","7392"
"10:46:23.6987795 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\ExtendedLocale","0.0000076","Desired Access: Read","7392"
"10:46:23.6988016 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\ExtendedLocale","0.0000291","Desired Access: Read","7392"
"10:46:23.6988481 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\ExtendedLocale\en-US","0.0000035","Length: 532","7392"
"10:46:23.6988669 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\Nls\ExtendedLocale","0.0000022","","7392"
"10:46:23.6989360 AM","firefox.exe","7336","RegOpenKey","HKCU","0.0000081","Desired Access: Maximum Allowed, Granted Access: Read, Create Link","7392"
"10:46:23.6989629 AM","firefox.exe","7336","RegOpenKey","HKCU\Control Panel\International","0.0000068","Desired Access: Read","7392"
"10:46:23.6989685 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:23.6989872 AM","firefox.exe","7336","RegCloseKey","HKCU","0.0000013","","7392"
"10:46:23.6990039 AM","firefox.exe","7336","RegOpenKey","HKCU\Control Panel\International\🌎🌏🌍","0.0000102","Desired Access: Query Value","7392"
"10:46:23.6990312 AM","firefox.exe","7336","RegQueryValue","HKCU\Control Panel\International\🌎🌏🌍\Currencies","0.0000030","Length: 182","7392"
"10:46:23.6990465 AM","firefox.exe","7336","RegQueryValue","HKCU\Control Panel\International\🌎🌏🌍\NLS Currency Data","0.0000026","Length: 182","7392"
"10:46:23.6990606 AM","firefox.exe","7336","RegQueryValue","HKCU\Control Panel\International\🌎🌏🌍\Clock","0.0000026","Length: 182","7392"
"10:46:23.6990777 AM","firefox.exe","7336","RegOpenKey","HKCU\Control Panel\International\🌎🌏🌍\Gregorian","0.0000038","Desired Access: Query Value","7392"
"10:46:23.6990973 AM","firefox.exe","7336","RegCloseKey","HKCU\Control Panel\International\🌎🌏🌍","0.0000017","","7392"
"10:46:23.6991157 AM","firefox.exe","7336","RegQueryMultipleValueKey","HKCU\Control Panel\International","0.0000337","","7392"
"10:46:23.6991652 AM","firefox.exe","7336","RegQueryValue","HKCU\Control Panel\International\sCurrencyOverride","0.0000047","Length: 182","7392"
"10:46:23.6991673 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0001493","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","5068"
"10:46:23.6991844 AM","firefox.exe","7336","RegCloseKey","HKCU\Control Panel\International","0.0000017","","7392"
"10:46:23.6995423 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\browser","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6995756 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser","0.0000047","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:30 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: D","7392"
"10:46:23.6995991 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\browser","0.0000064","","7392"
"10:46:23.6996729 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:23.6998470 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0001186","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","5068"
"10:46:23.6999110 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.6999421 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7392"
"10:46:23.6999571 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000064","","7392"
"10:46:23.6999955 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000059","Exclusive: True, Offset: 128, Length: 1, Fail Immediately: True","5068"
"10:46:23.7000270 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000354","EndOfFile: 0","5068"
"10:46:23.7000842 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000256","AllocationSize: 0","5068"
"10:46:23.7001235 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000187","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.7001299 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000029","Offset: 128, Length: 1","5068"
"10:46:23.7001503 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","Exclusive: False, Offset: 128, Length: 1, Fail Immediately: True","5068"
"10:46:23.7001700 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000042","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:23.7001836 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000039","AllocationSize: 23,359,488, EndOfFile: 23,355,435, NumberOfLinks: 1, DeletePending: False, Directory: False","7392"
"10:46:23.7001913 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000021","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","5068"
"10:46:23.7002105 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:23.7002143 AM","firefox.exe","7336","CreateFileMapping","C:\Program Files\Firefox Nightly\omni.ja","0.0000035","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.7002323 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000029","AllocationSize: 23,359,488, EndOfFile: 23,355,435, NumberOfLinks: 1, DeletePending: False, Directory: False","7392"
"10:46:23.7002331 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000900","EndOfFile: 32,768","5068"
"10:46:23.7002604 AM","firefox.exe","7336","CreateFileMapping","C:\Program Files\Firefox Nightly\omni.ja","0.0000030","SyncType: SyncTypeOther","7392"
"10:46:23.7003436 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000235","AllocationSize: 32,768","5068"
"10:46:23.7003897 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5068"
"10:46:23.7004102 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","AllocationSize: 32,768, EndOfFile: 32,768, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:23.7004464 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000022","SyncType: SyncTypeOther","5068"
"10:46:23.7005126 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000145","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5068"
"10:46:23.7005262 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0169144","Offset: 23,326,720, Length: 28,715, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:23.7005540 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000034","Exclusive: True, Offset: 121, Length: 2, Fail Immediately: True","5068"
"10:46:23.7005710 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000043","Exclusive: True, Offset: 124, Length: 4, Fail Immediately: True","5068"
"10:46:23.7005928 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000043","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:23.7006167 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000025","Offset: 121, Length: 2","5068"
"10:46:23.7006346 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000021","Offset: 124, Length: 4","5068"
"10:46:23.7006500 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000012","Offset: 120, Length: 1","5068"
"10:46:23.7006658 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:23.7006832 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000022","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:23.7007050 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000085","Offset: 0, Length: 4,096","5068"
"10:46:23.7010259 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000034","Offset: 123, Length: 1","5068"
"10:46:23.7014572 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.7015020 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:23.7015298 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0098624","","5068"
"10:46:23.7032407 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0033805","Offset: 14,967,808, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.7066609 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0003571","Offset: 14,943,232, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.7070572 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0002808","Offset: 14,926,848, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.7073610 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0002466","Offset: 14,918,656, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.7076524 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0002803","Offset: 15,021,056, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.7083799 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.7084341 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000051","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","1120"
"10:46:23.7084695 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000072","","1120"
"10:46:23.7089175 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.7089691 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000047","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","1120"
"10:46:23.7090024 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000068","","1120"
"10:46:23.7094598 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.7095106 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000047","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","1120"
"10:46:23.7095434 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000068","","1120"
"10:46:23.7103963 AM","firefox.exe","1008","QueryNameInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","0.0000081","Name: \Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igc64.dll","1120"
"10:46:23.7111170 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.7111571 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000051","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","1120"
"10:46:23.7111810 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000085","","1120"
"10:46:23.7116136 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.7116665 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000043","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","1120"
"10:46:23.7116942 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000064","","1120"
"10:46:23.7117557 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.7117971 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000047","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:23 AM, LastWriteTime: 3/26/2020 10:46:23 AM, ChangeTime: 3/26/2020 10:46:23 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:23.7118180 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000060","","5068"
"10:46:23.7120014 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000282","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.7120381 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.7120526 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000047","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,870, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5068"
"10:46:23.7120744 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000060","","5068"
"10:46:23.7120778 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000043","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","1120"
"10:46:23.7121051 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000064","","1120"
"10:46:23.7121538 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000051","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:23.7121785 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:23.7122080 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000029","Offset: 123, Length: 1","5068"
"10:46:23.7122946 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:23.7123150 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000039","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:23.7123436 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000090","Offset: 8,192, Length: 4,096","5068"
"10:46:23.7123846 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000026","Offset: 123, Length: 1","5068"
"10:46:23.7124247 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000026","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:23.7124443 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:23.7124768 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.7124836 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000068","Offset: 12,288, Length: 4,096","5068"
"10:46:23.7125152 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Program Files\Firefox Nightly","0.0000038","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:29:06 AM, LastWriteTime: 3/25/2020 10:29:06 AM, ChangeTime: 3/25/2020 10:29:06 AM, FileAttributes: D","1120"
"10:46:23.7125373 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly","0.0000052","","1120"
"10:46:23.7125416 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","Offset: 123, Length: 1","5068"
"10:46:23.7125907 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000025","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:23.7126090 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:23.7126376 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000085","Offset: 16,384, Length: 4,096","5068"
"10:46:23.7126845 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","Offset: 123, Length: 1","5068"
"10:46:23.7128091 AM","firefox.exe","1008","CreateFile","C:\ProgramData","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.7128454 AM","firefox.exe","1008","QueryBasicInformationFile","C:\ProgramData","0.0000038","CreationTime: 4/11/2018 4:38:20 PM, LastAccessTime: 5/7/2019 11:35:35 AM, LastWriteTime: 5/7/2019 11:35:35 AM, ChangeTime: 5/7/2019 11:35:35 AM, FileAttributes: HD","1120"
"10:46:23.7128676 AM","firefox.exe","1008","CloseFile","C:\ProgramData","0.0000055","","1120"
"10:46:23.7130690 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.files","0.0000392","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.7131270 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.files","0.0000043","CreationTime: 6/19/2019 4:53:50 PM, LastAccessTime: 6/19/2019 4:53:50 PM, LastWriteTime: 6/19/2019 4:53:50 PM, ChangeTime: 6/19/2019 4:53:50 PM, AllocationSize: 0, EndOfFile: 0, FileAttributes: D","5068"
"10:46:23.7131458 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.files","0.0000064","","5068"
"10:46:23.7132230 AM","firefox.exe","1008","CreateFile","C:\ProgramData\Intel","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.7132789 AM","firefox.exe","1008","QueryBasicInformationFile","C:\ProgramData\Intel","0.0000043","CreationTime: 2/15/2017 3:57:02 PM, LastAccessTime: 5/7/2019 10:51:29 AM, LastWriteTime: 5/7/2019 10:51:29 AM, ChangeTime: 5/7/2019 10:51:29 AM, FileAttributes: D","1120"
"10:46:23.7133971 AM","firefox.exe","1008","CloseFile","C:\ProgramData\Intel","0.0000085","","1120"
"10:46:23.7135097 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.files","0.0000290","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.7135554 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.files","0.0000038","CreationTime: 6/19/2019 4:53:50 PM, LastAccessTime: 6/19/2019 4:53:50 PM, LastWriteTime: 6/19/2019 4:53:50 PM, ChangeTime: 6/19/2019 4:53:50 PM, FileAttributes: D","5068"
"10:46:23.7135737 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.files","0.0000060","","5068"
"10:46:23.7137350 AM","firefox.exe","1008","CreateFile","C:\ProgramData\Intel\ShaderCache","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.7137794 AM","firefox.exe","1008","QueryBasicInformationFile","C:\ProgramData\Intel\ShaderCache","0.0000047","CreationTime: 3/20/2019 7:19:13 PM, LastAccessTime: 10/22/2019 8:25:39 PM, LastWriteTime: 10/22/2019 8:25:39 PM, ChangeTime: 10/22/2019 8:25:39 PM, FileAttributes: D","1120"
"10:46:23.7138075 AM","firefox.exe","1008","CloseFile","C:\ProgramData\Intel\ShaderCache","0.0000056","","1120"
"10:46:23.7139197 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.files\journals","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:23.7140025 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000043","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:23.7140093 AM","firefox.exe","1008","CreateFile","C:\ProgramData\Intel\ShaderCache\firefox_1","0.0000820","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, AllocationSize: 0, OpenResult: Opened","1120"
"10:46:23.7140256 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000042","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:23.7140678 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000085","Offset: 40,960, Length: 4,096","5068"
"10:46:23.7140998 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000034","Offset: 123, Length: 1","5068"
"10:46:23.7141322 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:23.7141484 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000022","Offset: 1,073,741,826, Length: 510","5068"
"10:46:23.7141642 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000022","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:23.7142082 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000102","","5068"
"10:46:23.7142338 AM","firefox.exe","1008","CreateFile","C:\ProgramData\Intel\ShaderCache","0.0000162","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.7142803 AM","firefox.exe","1008","QueryDirectory","C:\ProgramData\Intel\ShaderCache\*","0.0000213","Filter: *, 1: .","1120"
"10:46:23.7144057 AM","firefox.exe","1008","QueryDirectory","C:\ProgramData\Intel\ShaderCache","0.0000213","0: .., 1: consent_1, 2: DataExchangeHost_1, 3: dwm_1, 4: Explorer_1, 5: firefox_1, 6: FirstLogonAnim_1, 7: LogonUI_1, 8: mighost_1, 9: mrt_1, 10: MsMpEng_1, 11: SystemSettings_1, 12: vlc_1","1120"
"10:46:23.7145265 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000311","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.7145755 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000043","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:23 AM, LastWriteTime: 3/26/2020 10:46:23 AM, ChangeTime: 3/26/2020 10:46:23 AM, FileAttributes: A","5068"
"10:46:23.7145849 AM","firefox.exe","1008","CreateFile","C:\ProgramData\Intel\ShaderCache\consent_1","0.0000201","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.7145956 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000068","","5068"
"10:46:23.7146365 AM","firefox.exe","1008","QueryStandardInformationFile","C:\ProgramData\Intel\ShaderCache\consent_1","0.0000069","AllocationSize: 4,096, EndOfFile: 1,552, NumberOfLinks: 1, DeletePending: False, Directory: False","1120"
"10:46:23.7146651 AM","firefox.exe","1008","QueryBasicInformationFile","C:\ProgramData\Intel\ShaderCache\consent_1","0.0000039","CreationTime: 4/1/2019 9:29:41 AM, LastAccessTime: 4/1/2019 9:29:41 AM, LastWriteTime: 4/1/2019 9:29:46 AM, ChangeTime: 4/1/2019 9:29:46 AM, FileAttributes: A","1120"
"10:46:23.7146920 AM","firefox.exe","1008","CloseFile","C:\ProgramData\Intel\ShaderCache\consent_1","0.0000068","","1120"
"10:46:23.7148486 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000375","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.7148733 AM","firefox.exe","1008","CreateFile","C:\ProgramData\Intel\ShaderCache\DataExchangeHost_1","0.0000466","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.7149079 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000056","Attributes: A, ReparseTag: 0x0","5068"
"10:46:23.7149331 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000119","Delete: True","5068"
"10:46:23.7149467 AM","firefox.exe","1008","QueryStandardInformationFile","C:\ProgramData\Intel\ShaderCache\DataExchangeHost_1","0.0000043","AllocationSize: 4,096, EndOfFile: 2,743, NumberOfLinks: 1, DeletePending: False, Directory: False","1120"
"10:46:23.7149629 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0001042","","5068"
"10:46:23.7149706 AM","firefox.exe","1008","QueryBasicInformationFile","C:\ProgramData\Intel\ShaderCache\DataExchangeHost_1","0.0000034","CreationTime: 5/9/2019 9:04:44 AM, LastAccessTime: 5/9/2019 9:04:44 AM, LastWriteTime: 5/9/2019 9:04:49 AM, ChangeTime: 5/9/2019 9:04:49 AM, FileAttributes: A","1120"
"10:46:23.7149962 AM","firefox.exe","1008","CloseFile","C:\ProgramData\Intel\ShaderCache\DataExchangeHost_1","0.0000073","","1120"
"10:46:23.7151131 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000295","","5068"
"10:46:23.7151729 AM","firefox.exe","1008","CreateFile","C:\ProgramData\Intel\ShaderCache\dwm_1","0.0000183","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.7152343 AM","firefox.exe","1008","QueryStandardInformationFile","C:\ProgramData\Intel\ShaderCache\dwm_1","0.0000043","AllocationSize: 69,632, EndOfFile: 67,235, NumberOfLinks: 1, DeletePending: False, Directory: False","1120"
"10:46:23.7152573 AM","firefox.exe","1008","QueryBasicInformationFile","C:\ProgramData\Intel\ShaderCache\dwm_1","0.0000030","CreationTime: 3/20/2019 7:19:13 PM, LastAccessTime: 3/20/2019 7:19:13 PM, LastWriteTime: 6/19/2019 5:35:58 PM, ChangeTime: 6/19/2019 5:35:58 PM, FileAttributes: A","1120"
"10:46:23.7152821 AM","firefox.exe","1008","CloseFile","C:\ProgramData\Intel\ShaderCache\dwm_1","0.0000072","","1120"
"10:46:23.7154711 AM","firefox.exe","1008","CreateFile","C:\ProgramData\Intel\ShaderCache\Explorer_1","0.0000230","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.7154963 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.7155185 AM","firefox.exe","1008","QueryStandardInformationFile","C:\ProgramData\Intel\ShaderCache\Explorer_1","0.0000038","AllocationSize: 4,096, EndOfFile: 3,536, NumberOfLinks: 1, DeletePending: False, Directory: False","1120"
"10:46:23.7155364 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000043","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:23 AM, LastWriteTime: 3/26/2020 10:46:23 AM, ChangeTime: 3/26/2020 10:46:23 AM, FileAttributes: A","5068"
"10:46:23.7155415 AM","firefox.exe","1008","QueryBasicInformationFile","C:\ProgramData\Intel\ShaderCache\Explorer_1","0.0000034","CreationTime: 3/20/2019 7:59:49 PM, LastAccessTime: 3/20/2019 7:59:49 PM, LastWriteTime: 4/2/2019 4:24:51 PM, ChangeTime: 4/2/2019 4:24:51 PM, FileAttributes: A","1120"
"10:46:23.7155560 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000056","","5068"
"10:46:23.7155680 AM","firefox.exe","1008","CloseFile","C:\ProgramData\Intel\ShaderCache\Explorer_1","0.0000064","","1120"
"10:46:23.7157284 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000328","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:23.7157459 AM","firefox.exe","1008","CreateFile","C:\ProgramData\Intel\ShaderCache\firefox_1","0.0000188","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.7157813 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000051","Attributes: A, ReparseTag: 0x0","5068"
"10:46:23.7157894 AM","firefox.exe","1008","QueryStandardInformationFile","C:\ProgramData\Intel\ShaderCache\firefox_1","0.0000038","AllocationSize: 208,896, EndOfFile: 206,902, NumberOfLinks: 1, DeletePending: False, Directory: False","1120"
"10:46:23.7158035 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000115","Delete: True","5068"
"10:46:23.7158129 AM","firefox.exe","1008","QueryBasicInformationFile","C:\ProgramData\Intel\ShaderCache\firefox_1","0.0000034","CreationTime: 3/20/2019 8:41:40 PM, LastAccessTime: 3/20/2019 8:41:40 PM, LastWriteTime: 3/26/2020 10:27:34 AM, ChangeTime: 3/26/2020 10:27:34 AM, FileAttributes: A","1120"
"10:46:23.7158316 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000875","","5068"
"10:46:23.7158393 AM","firefox.exe","1008","CloseFile","C:\ProgramData\Intel\ShaderCache\firefox_1","0.0000068","","1120"
"10:46:23.7159797 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","Offset: 1,073,741,826, Length: 510","5068"
"10:46:23.7159972 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Offset: 1,073,741,825, Length: 1","5068"
"10:46:23.7160117 AM","firefox.exe","1008","CreateFile","C:\ProgramData\Intel\ShaderCache\FirstLogonAnim_1","0.0000418","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.7160130 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Offset: 1,073,741,826, Length: 510","5068"
"10:46:23.7160279 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Offset: 1,073,741,824, Length: 1","5068"
"10:46:23.7160463 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000136","","5068"
"10:46:23.7160868 AM","firefox.exe","1008","QueryStandardInformationFile","C:\ProgramData\Intel\ShaderCache\FirstLogonAnim_1","0.0000043","AllocationSize: 4,096, EndOfFile: 2,753, NumberOfLinks: 1, DeletePending: False, Directory: False","1120"
"10:46:23.7161094 AM","firefox.exe","1008","QueryBasicInformationFile","C:\ProgramData\Intel\ShaderCache\FirstLogonAnim_1","0.0000030","CreationTime: 3/20/2019 7:53:43 PM, LastAccessTime: 3/20/2019 7:53:43 PM, LastWriteTime: 3/20/2019 7:56:27 PM, ChangeTime: 3/20/2019 7:56:27 PM, FileAttributes: A","1120"
"10:46:23.7161333 AM","firefox.exe","1008","CloseFile","C:\ProgramData\Intel\ShaderCache\FirstLogonAnim_1","0.0000077","","1120"
"10:46:23.7162959 AM","firefox.exe","1008","CreateFile","C:\ProgramData\Intel\ShaderCache\LogonUI_1","0.0000230","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.7163424 AM","firefox.exe","1008","QueryStandardInformationFile","C:\ProgramData\Intel\ShaderCache\LogonUI_1","0.0000059","AllocationSize: 4,096, EndOfFile: 3,098, NumberOfLinks: 1, DeletePending: False, Directory: False","1120"
"10:46:23.7163637 AM","firefox.exe","1008","QueryBasicInformationFile","C:\ProgramData\Intel\ShaderCache\LogonUI_1","0.0000026","CreationTime: 3/20/2019 7:53:17 PM, LastAccessTime: 3/20/2019 7:53:17 PM, LastWriteTime: 3/20/2019 7:53:42 PM, ChangeTime: 3/20/2019 7:53:42 PM, FileAttributes: A","1120"
"10:46:23.7163867 AM","firefox.exe","1008","CloseFile","C:\ProgramData\Intel\ShaderCache\LogonUI_1","0.0000077","","1120"
"10:46:23.7165514 AM","firefox.exe","1008","CreateFile","C:\ProgramData\Intel\ShaderCache\mighost_1","0.0000563","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.7166304 AM","firefox.exe","1008","QueryStandardInformationFile","C:\ProgramData\Intel\ShaderCache\mighost_1","0.0000042","AllocationSize: 24, EndOfFile: 24, NumberOfLinks: 1, DeletePending: False, Directory: False","1120"
"10:46:23.7166496 AM","firefox.exe","1008","QueryBasicInformationFile","C:\ProgramData\Intel\ShaderCache\mighost_1","0.0000029","CreationTime: 3/20/2019 7:23:42 PM, LastAccessTime: 3/20/2019 7:23:42 PM, LastWriteTime: 3/20/2019 7:23:42 PM, ChangeTime: 3/20/2019 7:23:42 PM, FileAttributes: A","1120"
"10:46:23.7166709 AM","firefox.exe","1008","CloseFile","C:\ProgramData\Intel\ShaderCache\mighost_1","0.0000068","","1120"
"10:46:23.7168288 AM","firefox.exe","1008","CreateFile","C:\ProgramData\Intel\ShaderCache\mrt_1","0.0000746","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.7169312 AM","firefox.exe","1008","QueryStandardInformationFile","C:\ProgramData\Intel\ShaderCache\mrt_1","0.0000038","AllocationSize: 4,096, EndOfFile: 3,082, NumberOfLinks: 1, DeletePending: False, Directory: False","1120"
"10:46:23.7169529 AM","firefox.exe","1008","QueryBasicInformationFile","C:\ProgramData\Intel\ShaderCache\mrt_1","0.0000030","CreationTime: 3/28/2019 1:29:36 PM, LastAccessTime: 3/28/2019 1:29:36 PM, LastWriteTime: 3/28/2019 1:30:24 PM, ChangeTime: 3/28/2019 1:30:24 PM, FileAttributes: A","1120"
"10:46:23.7169751 AM","firefox.exe","1008","CloseFile","C:\ProgramData\Intel\ShaderCache\mrt_1","0.0000068","","1120"
"10:46:23.7171394 AM","firefox.exe","1008","CreateFile","C:\ProgramData\Intel\ShaderCache\MsMpEng_1","0.0000469","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.7172093 AM","firefox.exe","1008","QueryStandardInformationFile","C:\ProgramData\Intel\ShaderCache\MsMpEng_1","0.0000039","AllocationSize: 4,096, EndOfFile: 3,092, NumberOfLinks: 1, DeletePending: False, Directory: False","1120"
"10:46:23.7172298 AM","firefox.exe","1008","QueryBasicInformationFile","C:\ProgramData\Intel\ShaderCache\MsMpEng_1","0.0000030","CreationTime: 3/20/2019 7:51:29 PM, LastAccessTime: 3/20/2019 7:51:29 PM, LastWriteTime: 3/20/2019 7:51:29 PM, ChangeTime: 3/20/2019 7:51:29 PM, FileAttributes: A","1120"
"10:46:23.7172541 AM","firefox.exe","1008","CloseFile","C:\ProgramData\Intel\ShaderCache\MsMpEng_1","0.0000064","","1120"
"10:46:23.7174257 AM","firefox.exe","1008","CreateFile","C:\ProgramData\Intel\ShaderCache\SystemSettings_1","0.0000452","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.7175020 AM","firefox.exe","1008","QueryStandardInformationFile","C:\ProgramData\Intel\ShaderCache\SystemSettings_1","0.0000039","AllocationSize: 4,096, EndOfFile: 1,554, NumberOfLinks: 1, DeletePending: False, Directory: False","1120"
"10:46:23.7175302 AM","firefox.exe","1008","QueryBasicInformationFile","C:\ProgramData\Intel\ShaderCache\SystemSettings_1","0.0000034","CreationTime: 3/20/2019 8:27:55 PM, LastAccessTime: 3/20/2019 8:27:55 PM, LastWriteTime: 3/21/2019 2:55:20 PM, ChangeTime: 3/21/2019 2:55:20 PM, FileAttributes: A","1120"
"10:46:23.7175613 AM","firefox.exe","1008","CloseFile","C:\ProgramData\Intel\ShaderCache\SystemSettings_1","0.0000073","","1120"
"10:46:23.7176962 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000089","","7392"
"10:46:23.7177563 AM","firefox.exe","1008","CreateFile","C:\ProgramData\Intel\ShaderCache\vlc_1","0.0000568","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.7178464 AM","firefox.exe","1008","QueryStandardInformationFile","C:\ProgramData\Intel\ShaderCache\vlc_1","0.0000042","AllocationSize: 4,096, EndOfFile: 2,984, NumberOfLinks: 1, DeletePending: False, Directory: False","1120"
"10:46:23.7178762 AM","firefox.exe","1008","QueryBasicInformationFile","C:\ProgramData\Intel\ShaderCache\vlc_1","0.0000039","CreationTime: 10/22/2019 8:25:39 PM, LastAccessTime: 10/22/2019 8:25:39 PM, LastWriteTime: 3/25/2020 10:23:15 AM, ChangeTime: 3/25/2020 10:23:15 AM, FileAttributes: A","1120"
"10:46:23.7179082 AM","firefox.exe","1008","CloseFile","C:\ProgramData\Intel\ShaderCache\vlc_1","0.0000077","","1120"
"10:46:23.7179837 AM","firefox.exe","1008","QueryDirectory","C:\ProgramData\Intel\ShaderCache","0.0000069","","1120"
"10:46:23.7180187 AM","firefox.exe","1008","CloseFile","C:\ProgramData\Intel\ShaderCache","0.0000056","","1120"
"10:46:23.7180285 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.7180597 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000043","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: A","7392"
"10:46:23.7180742 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000055","","7392"
"10:46:23.7180853 AM","firefox.exe","1008","QueryStandardInformationFile","C:\ProgramData\Intel\ShaderCache\firefox_1","0.0000038","AllocationSize: 208,896, EndOfFile: 206,902, NumberOfLinks: 1, DeletePending: False, Directory: False","1120"
"10:46:23.7182018 AM","firefox.exe","1008","ReadFile","C:\ProgramData\Intel\ShaderCache\firefox_1","0.1295366","Offset: 0, Length: 206,902, Priority: Normal","1120"
"10:46:23.7182909 AM","firefox.exe","1008","ReadFile","C:\ProgramData\Intel\ShaderCache\firefox_1","0.1293442","Offset: 0, Length: 206,902, I/O Flags: Non-cached, Paging I/O, Priority: Normal","1120"
"10:46:23.7183456 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.7183724 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000035","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7392"
"10:46:23.7183848 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000051","","7392"
"10:46:23.7184347 AM","firefox.exe","7336","CreateFile","C:\","0.0000120","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.7184693 AM","firefox.exe","7336","QueryDirectory","C:\Program Files","0.0000171","Filter: Program Files, 1: Program Files","7392"
"10:46:23.7185090 AM","firefox.exe","7336","CloseFile","C:\","0.0000055","","7392"
"10:46:23.7186540 AM","firefox.exe","7336","CreateFile","C:\Program Files","0.0000167","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.7186903 AM","firefox.exe","7336","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000158","Filter: Firefox Nightly, 1: Firefox Nightly","7392"
"10:46:23.7187232 AM","firefox.exe","7336","CloseFile","C:\Program Files","0.0000059","","7392"
"10:46:23.7190107 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.7190385 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000030","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: A","7392"
"10:46:23.7190504 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000047","","7392"
"10:46:23.7190965 AM","firefox.exe","7336","CreateFile","C:\","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.7191272 AM","firefox.exe","7336","QueryDirectory","C:\Program Files","0.0000145","Filter: Program Files, 1: Program Files","7392"
"10:46:23.7191588 AM","firefox.exe","7336","CloseFile","C:\","0.0000072","","7392"
"10:46:23.7192953 AM","firefox.exe","7336","CreateFile","C:\Program Files","0.0000150","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.7193295 AM","firefox.exe","7336","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000140","Filter: Firefox Nightly, 1: Firefox Nightly","7392"
"10:46:23.7193593 AM","firefox.exe","7336","CloseFile","C:\Program Files","0.0000056","","7392"
"10:46:23.7195287 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000184","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.7195808 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000064","AllocationSize: 48,279,552, EndOfFile: 48,278,560, NumberOfLinks: 1, DeletePending: False, Directory: False","7392"
"10:46:23.7196183 AM","firefox.exe","7336","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.7196358 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000034","AllocationSize: 48,279,552, EndOfFile: 48,278,560, NumberOfLinks: 1, DeletePending: False, Directory: False","7392"
"10:46:23.7196657 AM","firefox.exe","7336","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000025","SyncType: SyncTypeOther","7392"
"10:46:23.7201248 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0470413","Offset: 48,246,784, Length: 31,776, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:23.7224992 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-widevinecdm\4.10.1582.2\manifest.json","0.0000055","CreationTime: 3/25/2020 10:32:07 AM, LastAccessTime: 3/25/2020 10:32:07 AM, LastWriteTime: 3/25/2020 10:32:07 AM, ChangeTime: 3/25/2020 10:32:07 AM, AllocationSize: 376, EndOfFile: 373, FileAttributes: A","5728"
"10:46:23.7225269 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-widevinecdm\4.10.1582.2\manifest.json","0.0000090","","5728"
"10:46:23.7230466 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-widevinecdm\4.10.1582.2\widevinecdm.info","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7608"
"10:46:23.7233627 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-widevinecdm\4.10.1582.2\manifest.json","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7608"
"10:46:23.7234041 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-widevinecdm\4.10.1582.2\manifest.json","0.0000051","CreationTime: 3/25/2020 10:32:07 AM, LastAccessTime: 3/25/2020 10:32:07 AM, LastWriteTime: 3/25/2020 10:32:07 AM, ChangeTime: 3/25/2020 10:32:07 AM, AllocationSize: 376, EndOfFile: 373, FileAttributes: A","7608"
"10:46:23.7234246 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-widevinecdm\4.10.1582.2\manifest.json","0.0000060","","7608"
"10:46:23.7235966 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-widevinecdm\4.10.1582.2\manifest.json","0.0000196","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7608"
"10:46:23.7236396 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-widevinecdm\4.10.1582.2\manifest.json","0.0000039","AllocationSize: 376, EndOfFile: 373, NumberOfLinks: 1, DeletePending: False, Directory: False","7608"
"10:46:23.7236665 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-widevinecdm\4.10.1582.2\manifest.json","0.0001186","Offset: 0, Length: 373, Priority: Normal","7608"
"10:46:23.7237566 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-widevinecdm\4.10.1582.2\manifest.json","0.0000093","Offset: 0, Length: 373, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7608"
"10:46:23.7238056 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\gmp-widevinecdm\4.10.1582.2\manifest.json","0.0000090","","7608"
"10:46:23.7679550 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000192","","7392"
"10:46:23.7680762 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Versions\000602xx","0.0000077","Type: REG_SZ, Length: 26, Data: kernel32.dll","7392"
"10:46:23.7683138 AM","firefox.exe","7336","CreateFile","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000227","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.7683655 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.7683859 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000052","AllocationSize: 3,371,008, EndOfFile: 3,368,788, NumberOfLinks: 2, DeletePending: False, Directory: False","7392"
"10:46:23.7684184 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000021","SyncType: SyncTypeOther","7392"
"10:46:23.7684824 AM","firefox.exe","7336","CloseFile","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000077","","7392"
"10:46:23.7685498 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Ids","0.0000085","Desired Access: Read","7392"
"10:46:23.7685686 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Ids","0.0000098","Desired Access: Read","7392"
"10:46:23.7685925 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Ids\en-US","0.0000055","Length: 90","7392"
"10:46:23.7686091 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Ids\en","0.0000038","Length: 90","7392"
"10:46:23.7693263 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\JitPI.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:23.7695435 AM","firefox.exe","7336","CreateFile","C:\Windows\System\JitPI.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:23.7697210 AM","firefox.exe","7336","CreateFile","C:\Windows\JitPI.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:23.8172560 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\JitPI.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:23.8174697 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\JitPI.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:23.8176477 AM","firefox.exe","7336","CreateFile","C:\Program Files (x86)\Intel\iCLS Client\JitPI.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:23.8178345 AM","firefox.exe","7336","CreateFile","C:\Program Files\Intel\iCLS Client\JitPI.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:23.8180474 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\JitPI.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:23.8182126 AM","firefox.exe","7336","CreateFile","C:\Windows\JitPI.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:23.8183811 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wbem\JitPI.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:23.8185620 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\WindowsPowerShell\v1.0\JitPI.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:23.8187425 AM","firefox.exe","7336","CreateFile","C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\JitPI.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:23.8189302 AM","firefox.exe","7336","CreateFile","C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\JitPI.dll","0.0000090","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:23.8190407 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\gmp-clearkey\0.1\clearkey.info","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7608"
"10:46:23.8191990 AM","firefox.exe","7336","CreateFile","C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\JitPI.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:23.8192374 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\gmp-clearkey\0.1\manifest.json","0.0000371","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7608"
"10:46:23.8192908 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Program Files\Firefox Nightly\gmp-clearkey\0.1\manifest.json","0.0000047","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, AllocationSize: 232, EndOfFile: 229, FileAttributes: A","7608"
"10:46:23.8193104 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\gmp-clearkey\0.1\manifest.json","0.0000060","","7608"
"10:46:23.8194017 AM","firefox.exe","7336","CreateFile","C:\Program Files\Intel\Intel(R) Management Engine Components\IPT\JitPI.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:23.8194619 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\gmp-clearkey\0.1\manifest.json","0.0000166","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7608"
"10:46:23.8195028 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\gmp-clearkey\0.1\manifest.json","0.0000039","AllocationSize: 232, EndOfFile: 229, NumberOfLinks: 1, DeletePending: False, Directory: False","7608"
"10:46:23.8195288 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\gmp-clearkey\0.1\manifest.json","0.0001093","Offset: 0, Length: 229, Priority: Normal","7608"
"10:46:23.8196137 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\gmp-clearkey\0.1\manifest.json","0.0000099","Offset: 0, Length: 229, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7608"
"10:46:23.8196573 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\gmp-clearkey\0.1\manifest.json","0.0000072","","7608"
"10:46:23.8196769 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\OpenSSH\JitPI.dll","0.0000405","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:23.8199576 AM","firefox.exe","7336","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\WindowsApps\JitPI.dll","0.0000401","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:23.8213366 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 1944","7392"
"10:46:23.8219284 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1944"
"10:46:23.8219732 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000034","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","1944"
"10:46:23.8219856 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000051","","1944"
"10:46:23.8221464 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000180","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1944"
"10:46:23.8222147 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1944"
"10:46:23.8222587 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000025","SyncType: SyncTypeOther","1944"
"10:46:23.8222992 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\NapiNSP.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","1944"
"10:46:23.8223845 AM","firefox.exe","7336","Load Image","C:\Windows\System32\NapiNSP.dll","0.0000000","Image Base: 0x7ffb3cce0000, Image Size: 0x16000","1944"
"10:46:23.8224208 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000081","Name: \Windows\System32\NapiNSP.dll","1944"
"10:46:23.8226060 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000102","","1944"
"10:46:23.8231662 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\webauthn.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.8232067 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000038","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","7392"
"10:46:23.8232187 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\webauthn.dll","0.0000098","","7392"
"10:46:23.8233791 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\webauthn.dll","0.0000153","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.8234328 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000035","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.8234619 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000017","SyncType: SyncTypeOther","7392"
"10:46:23.8234879 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\webauthn.dll","0.0000030","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.8235497 AM","firefox.exe","7336","Load Image","C:\Windows\System32\webauthn.dll","0.0000000","Image Base: 0x7ffb38050000, Image Size: 0x4b000","7392"
"10:46:23.8235707 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\webauthn.dll","0.0000046","Name: \Windows\System32\webauthn.dll","7392"
"10:46:23.8236829 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\webauthn.dll","0.0000072","","7392"
"10:46:23.8239687 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.8240016 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000034","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7392"
"10:46:23.8240114 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000047","","7392"
"10:46:23.8241526 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000145","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.8241936 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\bcrypt.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:23.8242188 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\bcrypt.dll","0.0000012","SyncType: SyncTypeOther","7392"
"10:46:23.8242427 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\bcrypt.dll","0.0000025","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:23.8242913 AM","firefox.exe","7336","Load Image","C:\Windows\System32\bcrypt.dll","0.0000000","Image Base: 0x7ffb455f0000, Image Size: 0x25000","7392"
"10:46:23.8243096 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\bcrypt.dll","0.0000043","Name: \Windows\System32\bcrypt.dll","7392"
"10:46:23.8244146 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000068","","7392"
"10:46:23.8249381 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1944"
"10:46:23.8249863 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000039","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","1944"
"10:46:23.8250000 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000055","","1944"
"10:46:23.8251830 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000214","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1944"
"10:46:23.8252509 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1944"
"10:46:23.8252918 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000026","SyncType: SyncTypeOther","1944"
"10:46:23.8253486 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\pnrpnsp.dll","0.0000042","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","1944"
"10:46:23.8254156 AM","firefox.exe","7336","Load Image","C:\Windows\System32\pnrpnsp.dll","0.0000000","Image Base: 0x7ffb3ca40000, Image Size: 0x1a000","1944"
"10:46:23.8254446 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000068","Name: \Windows\System32\pnrpnsp.dll","1944"
"10:46:23.8256212 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000094","","1944"
"10:46:23.8261784 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1944"
"10:46:23.8261823 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 4768","7392"
"10:46:23.8262203 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","1944"
"10:46:23.8262399 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000102","","1944"
"10:46:23.8262450 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 7396","7392"
"10:46:23.8263768 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000163","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1944"
"10:46:23.8264349 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1944"
"10:46:23.8264639 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000017","SyncType: SyncTypeOther","1944"
"10:46:23.8264899 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\nlaapi.dll","0.0000030","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","1944"
"10:46:23.8265539 AM","firefox.exe","7336","Load Image","C:\Windows\System32\nlaapi.dll","0.0000000","Image Base: 0x7ffb423c0000, Image Size: 0x19000","1944"
"10:46:23.8265855 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\nlaapi.dll","0.0000060","Name: \Windows\System32\nlaapi.dll","1944"
"10:46:23.8267596 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000072","","1944"
"10:46:23.8271269 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 5496","7392"
"10:46:23.8272810 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mswsock.dll","0.0000157","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1944"
"10:46:23.8273185 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","1944"
"10:46:23.8273322 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mswsock.dll","0.0000059","","1944"
"10:46:23.8273543 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 5016","7392"
"10:46:23.8274230 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 2264","7392"
"10:46:23.8274747 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 8640","7392"
"10:46:23.8274879 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mswsock.dll","0.0000183","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1944"
"10:46:23.8275114 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 2508","7392"
"10:46:23.8275553 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1944"
"10:46:23.8275971 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000026","SyncType: SyncTypeOther","1944"
"10:46:23.8276376 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\mswsock.dll","0.0000039","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","1944"
"10:46:23.8277132 AM","firefox.exe","7336","Load Image","C:\Windows\System32\mswsock.dll","0.0000000","Image Base: 0x7ffb452b0000, Image Size: 0x66000","1944"
"10:46:23.8277516 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\mswsock.dll","0.0000055","Name: \Windows\System32\mswsock.dll","1944"
"10:46:23.8280251 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mswsock.dll","0.0000081","","1944"
"10:46:23.8282482 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","1944"
"10:46:23.8282789 AM","firefox.exe","7336","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000150","Desired Access: Read","1944"
"10:46:23.8283122 AM","firefox.exe","7336","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000149","Desired Access: Read, Disposition: REG_OPENED_EXISTING_KEY","1944"
"10:46:23.8283698 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000064","Desired Access: Read","1944"
"10:46:23.8283907 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000077","Desired Access: Read","1944"
"10:46:23.8284150 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","1944"
"10:46:23.8284338 AM","firefox.exe","7336","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters","0.0000051","Desired Access: Read","1944"
"10:46:23.8284526 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000077","Desired Access: Read","1944"
"10:46:23.8284765 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","1944"
"10:46:23.8284931 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\DnsClient","0.0000107","Desired Access: Read","1944"
"10:46:23.8285290 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000046","Length: 12","1944"
"10:46:23.8285477 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000039","Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","1944"
"10:46:23.8285708 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000021","","1944"
"10:46:23.8285883 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000017","","1944"
"10:46:23.8286117 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","1944"
"10:46:23.8286322 AM","firefox.exe","7336","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000047","Desired Access: Read","1944"
"10:46:23.8286510 AM","firefox.exe","7336","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000072","Desired Access: Read, Disposition: REG_OPENED_EXISTING_KEY","1944"
"10:46:23.8286749 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000064","Desired Access: Read","1944"
"10:46:23.8286945 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000064","Desired Access: Read","1944"
"10:46:23.8287167 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","1944"
"10:46:23.8287329 AM","firefox.exe","7336","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters","0.0000047","Desired Access: Read","1944"
"10:46:23.8287504 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000060","Desired Access: Read","1944"
"10:46:23.8287709 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","1944"
"10:46:23.8287871 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\DnsClient","0.0000064","Desired Access: Read","1944"
"10:46:23.8288088 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000039","Length: 12","1944"
"10:46:23.8288268 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000038","Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","1944"
"10:46:23.8288511 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000021","","1944"
"10:46:23.8288750 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000017","","1944"
"10:46:23.8288959 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","1944"
"10:46:23.8289138 AM","firefox.exe","7336","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000051","Desired Access: Read","1944"
"10:46:23.8289326 AM","firefox.exe","7336","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000081","Desired Access: Read, Disposition: REG_OPENED_EXISTING_KEY","1944"
"10:46:23.8289607 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000052","Desired Access: Read","1944"
"10:46:23.8289782 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000052","Desired Access: Read","1944"
"10:46:23.8290055 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","1944"
"10:46:23.8290226 AM","firefox.exe","7336","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters","0.0000047","Desired Access: Read","1944"
"10:46:23.8290401 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000064","Desired Access: Read","1944"
"10:46:23.8290619 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","1944"
"10:46:23.8290768 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\DnsClient","0.0000060","Desired Access: Read","1944"
"10:46:23.8290960 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","1944"
"10:46:23.8291109 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Policies\Microsoft\System\DNSClient","0.0000056","Desired Access: Query Value","1944"
"10:46:23.8291310 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Domain","0.0000038","Length: 12","1944"
"10:46:23.8291485 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Domain","0.0000034","Type: REG_SZ, Length: 2, Data: ","1944"
"10:46:23.8291732 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000017","","1944"
"10:46:23.8291903 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000030","","1944"
"10:46:23.8294105 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 3168","7392"
"10:46:23.8295082 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winrnr.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1944"
"10:46:23.8295517 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000038","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","1944"
"10:46:23.8295662 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winrnr.dll","0.0000064","","1944"
"10:46:23.8297292 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winrnr.dll","0.0000230","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1944"
"10:46:23.8297936 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1944"
"10:46:23.8298380 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000025","SyncType: SyncTypeOther","1944"
"10:46:23.8298794 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\winrnr.dll","0.0000042","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","1944"
"10:46:23.8299502 AM","firefox.exe","7336","Load Image","C:\Windows\System32\winrnr.dll","0.0000000","Image Base: 0x7ffb41370000, Image Size: 0xe000","1944"
"10:46:23.8299980 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\winrnr.dll","0.0000077","Name: \Windows\System32\winrnr.dll","1944"
"10:46:23.8301315 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winrnr.dll","0.0000111","","1944"
"10:46:23.8305467 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wshbth.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1944"
"10:46:23.8305945 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000046","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","1944"
"10:46:23.8306107 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wshbth.dll","0.0000064","","1944"
"10:46:23.8307758 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wshbth.dll","0.0000188","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1944"
"10:46:23.8308394 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1944"
"10:46:23.8308812 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000025","SyncType: SyncTypeOther","1944"
"10:46:23.8309132 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\wshbth.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","1944"
"10:46:23.8309797 AM","firefox.exe","7336","Load Image","C:\Windows\System32\wshbth.dll","0.0000000","Image Base: 0x7ffb3bf70000, Image Size: 0x15000","1944"
"10:46:23.8310092 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\wshbth.dll","0.0000051","Name: \Windows\System32\wshbth.dll","1944"
"10:46:23.8312123 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wshbth.dll","0.0000081","","1944"
"10:46:23.8314154 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","1944"
"10:46:23.8314388 AM","firefox.exe","7336","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000077","Desired Access: Read","1944"
"10:46:23.8314623 AM","firefox.exe","7336","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000107","Desired Access: Read, Disposition: REG_OPENED_EXISTING_KEY","1944"
"10:46:23.8314934 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000056","Desired Access: Read","1944"
"10:46:23.8315109 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000060","Desired Access: Read","1944"
"10:46:23.8315314 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","1944"
"10:46:23.8315481 AM","firefox.exe","7336","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters","0.0000051","Desired Access: Read","1944"
"10:46:23.8315647 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000085","Desired Access: Read","1944"
"10:46:23.8315869 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","1944"
"10:46:23.8316010 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\DnsClient","0.0000076","Desired Access: Read","1944"
"10:46:23.8316244 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000043","Length: 12","1944"
"10:46:23.8316406 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000035","Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","1944"
"10:46:23.8316611 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000022","","1944"
"10:46:23.8316769 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000013","","1944"
"10:46:23.8317819 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","1944"
"10:46:23.8317989 AM","firefox.exe","7336","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Winsock\Parameters","0.0000060","Desired Access: Read","1944"
"10:46:23.8318177 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock\Parameters","0.0000154","Desired Access: Read","1944"
"10:46:23.8318506 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\Winsock\Parameters\Transports","0.0000034","Length: 12","1944"
"10:46:23.8318668 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\Winsock\Parameters\Transports","0.0000038","Type: REG_MULTI_SZ, Length: 92, Data: afunix, Tcpip, Tcpip6, Psched, vmbus, irda, RFCOMM","1944"
"10:46:23.8318860 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\Winsock\Parameters","0.0000025","","1944"
"10:46:23.8319077 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","1944"
"10:46:23.8319231 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock","0.0000055","Desired Access: Read","1944"
"10:46:23.8319410 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock","0.0000124","Desired Access: Read","1944"
"10:46:23.8319645 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock\Mapping","0.0000025","Length: 12","1944"
"10:46:23.8319751 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock\Mapping","0.0000026","Type: REG_BINARY, Length: 20, Data: 01 00 00 00 03 00 00 00 01 00 00 00 01 00 00 00","1944"
"10:46:23.8319875 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock","0.0000009","","1944"
"10:46:23.8319982 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","1944"
"10:46:23.8320084 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000034","Desired Access: Read","1944"
"10:46:23.8320187 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000068","Desired Access: Read","1944"
"10:46:23.8320366 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock\Mapping","0.0000025","Length: 12","1944"
"10:46:23.8320464 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock\Mapping","0.0000026","Type: REG_BINARY, Length: 104, Data: 08 00 00 00 03 00 00 00 02 00 00 00 01 00 00 00","1944"
"10:46:23.8320575 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000013","","1944"
"10:46:23.8320669 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","1944"
"10:46:23.8320763 AM","firefox.exe","7336","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Winsock\Setup Migration\Providers","0.0000038","Desired Access: Read","1944"
"10:46:23.8320878 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers","0.0000162","Desired Access: Read","1944"
"10:46:23.8321142 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers","0.0000009","Query: HandleTags, HandleTags: 0x0","1944"
"10:46:23.8321228 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers\Tcpip","0.0000055","Desired Access: Read","1944"
"10:46:23.8321377 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers\Tcpip\WinSock 2.0 Provider ID","0.0000026","Type: REG_BINARY, Length: 16, Data: A0 1A 0F E7 8B AB CF 11 8C A3 00 80 5F 48 A1 92","1944"
"10:46:23.8321488 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers\Tcpip","0.0000013","","1944"
"10:46:23.8321573 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers","0.0000009","","1944"
"10:46:23.8321676 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x0","1944"
"10:46:23.8321765 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000030","Desired Access: Read","1944"
"10:46:23.8321872 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000034","Desired Access: Read","1944"
"10:46:23.8321991 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock\MinSockaddrLength","0.0000022","Type: REG_DWORD, Length: 4, Data: 16","1944"
"10:46:23.8322090 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock\MaxSockaddrLength","0.0000021","Type: REG_DWORD, Length: 4, Data: 16","1944"
"10:46:23.8322183 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock\UseDelayedAcceptance","0.0000022","Type: REG_DWORD, Length: 4, Data: 0","1944"
"10:46:23.8322290 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000013","","1944"
"10:46:23.8324654 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 2908","1944"
"10:46:23.8326437 AM","firefox.exe","7336","TCP Connect","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65535, rcvwinscale: 0, sndwinscale: 0, seqnum: 0, connid: 0","0"
"10:46:23.8326907 AM","firefox.exe","7336","TCP Accept","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65535, rcvwinscale: 0, sndwinscale: 0, seqnum: 0, connid: 0","0"
"10:46:23.8327897 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:23.8328067 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 39881, endtime: 39881, seqnum: 0, connid: 0","0"
"10:46:23.8328797 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:23.8328882 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 39881, endtime: 39881, seqnum: 0, connid: 0","0"
"10:46:23.8597516 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000393","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.8598130 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000086","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7392"
"10:46:23.8598382 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000111","","7392"
"10:46:23.8599031 AM","firefox.exe","7336","CreateFile","C:\","0.0000162","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.8599624 AM","firefox.exe","7336","QueryDirectory","C:\Program Files","0.0000209","Filter: Program Files, 1: Program Files","7392"
"10:46:23.8600080 AM","firefox.exe","7336","CloseFile","C:\","0.0000073","","7392"
"10:46:23.8601753 AM","firefox.exe","7336","CreateFile","C:\Program Files","0.0000179","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:23.8602188 AM","firefox.exe","7336","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000171","Filter: Firefox Nightly, 1: Firefox Nightly","7392"
"10:46:23.8602559 AM","firefox.exe","7336","CloseFile","C:\Program Files","0.0000077","","7392"
"10:46:23.8603626 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0163192","Offset: 9,232,384, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:23.8615854 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d11.dll","0.0003900","Offset: 2,741,248, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.8620027 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000205","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.8620467 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000038","CreationTime: 5/9/2018 4:39:34 AM, LastAccessTime: 3/20/2019 7:14:15 PM, LastWriteTime: 5/9/2018 4:39:34 AM, ChangeTime: 3/20/2019 7:51:25 PM, FileAttributes: A","1120"
"10:46:23.8620671 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000060","","1120"
"10:46:23.8624524 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.8624819 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000034","CreationTime: 5/9/2018 4:39:34 AM, LastAccessTime: 3/20/2019 7:14:15 PM, LastWriteTime: 5/9/2018 4:39:34 AM, ChangeTime: 3/20/2019 7:51:25 PM, FileAttributes: A","1120"
"10:46:23.8624976 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000047","","1120"
"10:46:23.8627302 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.8627558 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000034","CreationTime: 5/9/2018 4:39:34 AM, LastAccessTime: 3/20/2019 7:14:15 PM, LastWriteTime: 5/9/2018 4:39:34 AM, ChangeTime: 3/20/2019 7:51:25 PM, FileAttributes: A","1120"
"10:46:23.8627703 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000042","","1120"
"10:46:23.8628377 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\gdi32.dll","0.0287369","Offset: 133,120, Length: 3,584, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.8777335 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0281865","Offset: 8,638,464, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:23.8916313 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Notifications\41C61629A3BC30B5","0.0000329","Length: 0","1120"
"10:46:23.8916881 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Notifications\41C61629A3BC30B5","0.0000217","Type: REG_BINARY, Length: 132, Data: 01 00 04 80 00 00 00 00 00 00 00 00 00 00 00 00","1120"
"10:46:23.8918694 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d11.dll","0.0005082","Offset: 2,708,480, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.8923934 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d11.dll","0.0057502","Offset: 779,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.8981994 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d11.dll","0.0219312","Offset: 750,592, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.9065502 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0291247","Offset: 14,086,144, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:23.9203772 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d11.dll","0.0004996","Offset: 2,984,960, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.9209233 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d11.dll","0.0012501","Offset: 1,070,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.9222601 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d11.dll","0.0037342","Offset: 1,070,080, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.9271104 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d11.dll","0.0010048","Offset: 963,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.9282842 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d11.dll","0.0006041","Offset: 2,765,824, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.9289814 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d11.dll","0.0006280","Offset: 963,584, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.9336952 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0072081","Offset: 488,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.9410432 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d11.dll","0.0005995","Offset: 3,025,920, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.9417762 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d11.dll","0.0004758","Offset: 2,692,096, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.9423275 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0097553","Offset: 480,256, Length: 20,480, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.9477214 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0123136","Offset: 13,250,560, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:23.9559898 AM","firefox.exe","1008","RegOpenKey","HKLM","0.0000218","Desired Access: Maximum Allowed, Granted Access: Read","1120"
"10:46:23.9560824 AM","firefox.exe","1008","RegOpenKey","HKLM\System\Setup","0.0000166","Desired Access: Read","1120"
"10:46:23.9561605 AM","firefox.exe","1008","RegCloseKey","HKLM","0.0000064","","1120"
"10:46:23.9562138 AM","firefox.exe","1008","RegQueryValue","HKLM\SYSTEM\Setup\SystemSetupInProgress","0.0000154","Type: REG_DWORD, Length: 4, Data: 0","1120"
"10:46:23.9562718 AM","firefox.exe","1008","RegCloseKey","HKLM\SYSTEM\Setup","0.0000052","","1120"
"10:46:23.9575032 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\devobj.dll","0.0000678","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.9576734 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000158","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","1120"
"10:46:23.9577400 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\devobj.dll","0.0000235","","1120"
"10:46:23.9582132 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\devobj.dll","0.0000520","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.9583749 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\devobj.dll","0.0000124","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:23.9584862 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\devobj.dll","0.0000064","SyncType: SyncTypeOther","1120"
"10:46:23.9588655 AM","firefox.exe","1008","Load Image","C:\Windows\System32\devobj.dll","0.0000000","Image Base: 0x7ffb458a0000, Image Size: 0x27000","1120"
"10:46:23.9592807 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\devobj.dll","0.0000405","","1120"
"10:46:23.9599932 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}","0.0000384","Desired Access: All Access","1120"
"10:46:23.9601447 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}\Properties","0.0000230","Desired Access: Query Value","1120"
"10:46:23.9603772 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}","0.0000418","","1120"
"10:46:23.9603934 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0107568","Offset: 13,283,328, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:23.9607267 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}","0.0000192","Desired Access: Query Value","1120"
"10:46:23.9608257 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}\Properties","0.0000128","Desired Access: Query Value","1120"
"10:46:23.9609114 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}","0.0000056","","1120"
"10:46:23.9616824 AM","firefox.exe","1008","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000371","Desired Access: Read, Maximum Allowed","1120"
"10:46:23.9617908 AM","firefox.exe","1008","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000136","Type: REG_DWORD, Length: 4, Data: 3","1120"
"10:46:23.9618672 AM","firefox.exe","1008","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000055","","1120"
"10:46:23.9619444 AM","firefox.exe","1008","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000136","Desired Access: Read","1120"
"10:46:23.9620062 AM","firefox.exe","1008","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000128","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","1120"
"10:46:23.9620822 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000196","Desired Access: Read","1120"
"10:46:23.9621406 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000205","Desired Access: Read","1120"
"10:46:23.9621961 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000098","Desired Access: Read","1120"
"10:46:23.9622558 AM","firefox.exe","1008","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000039","","1120"
"10:46:23.9623002 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000248","Length: 52","1120"
"10:46:23.9623651 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000042","","1120"
"10:46:23.9624589 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000384","Desired Access: Query Value, Maximum Allowed","1120"
"10:46:23.9625524 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000102","Length: 268","1120"
"10:46:23.9626100 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000047","","1120"
"10:46:23.9626770 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000115","Desired Access: Query Value, Maximum Allowed","1120"
"10:46:23.9627440 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000119","Type: REG_MULTI_SZ, Length: 292, Data: PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02, PCI\VEN_8086&DEV_5916&SUBSYS_10941025, PCI\VEN_8086&DEV_5916&CC_030000, PCI\VEN_8086&DEV_5916&CC_0300","1120"
"10:46:23.9627986 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000042","","1120"
"10:46:23.9628506 AM","firefox.exe","1008","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000188","Desired Access: Read","1120"
"10:46:23.9629061 AM","firefox.exe","1008","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000102","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","1120"
"10:46:23.9629547 AM","firefox.exe","1008","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000039","","1120"
"10:46:23.9644792 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000265","Desired Access: Query Value, Maximum Allowed","1120"
"10:46:23.9646162 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\Driver","0.0000222","Type: REG_SZ, Length: 88, Data: {4d36e968-e325-11ce-bfc1-08002be10318}\0001","1120"
"10:46:23.9647425 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000085","","1120"
"10:46:23.9648598 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000085","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:23.9649460 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000951","Desired Access: Query Value","1120"
"10:46:23.9651576 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000290","Desired Access: Query Value","1120"
"10:46:23.9652848 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\DriverVersion","0.0000264","Type: REG_SZ, Length: 28, Data: 23.20.16.5038","1120"
"10:46:23.9653744 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\DriverDate","0.0000209","Type: REG_SZ, Length: 20, Data: 4-18-2018","1120"
"10:46:23.9654584 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000051","","1120"
"10:46:23.9657464 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}","0.0000320","Desired Access: All Access","1120"
"10:46:23.9658672 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}\Properties","0.0000123","Desired Access: Query Value","1120"
"10:46:23.9660365 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}","0.0000060","","1120"
"10:46:23.9661782 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}","0.0000132","Desired Access: Query Value","1120"
"10:46:23.9662490 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}\Properties","0.0000111","Desired Access: Query Value","1120"
"10:46:23.9663135 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}","0.0000042","","1120"
"10:46:23.9665200 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Enum\ROOT\BASICRENDER\0000","0.0000354","Desired Access: Query Value, Maximum Allowed","1120"
"10:46:23.9666147 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Enum\ROOT\BasicRender\0000\Driver","0.0000128","Type: REG_SZ, Length: 88, Data: {4d36e97d-e325-11ce-bfc1-08002be10318}\0039","1120"
"10:46:23.9666791 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Enum\ROOT\BasicRender\0000","0.0000047","","1120"
"10:46:23.9667508 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000060","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:23.9667986 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000183","Desired Access: Query Value","1120"
"10:46:23.9668506 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000320","Desired Access: Query Value","1120"
"10:46:23.9669279 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039\MatchingDeviceId","0.0000123","Type: REG_SZ, Length: 34, Data: ROOT\BasicRender","1120"
"10:46:23.9670243 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000047","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:23.9670687 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000140","Desired Access: Query Value","1120"
"10:46:23.9671139 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000149","Desired Access: Query Value","1120"
"10:46:23.9671659 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039\InstalledDisplayDrivers","0.0000103","Length: 144","1120"
"10:46:23.9672252 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000043","","1120"
"10:46:23.9672641 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000042","","1120"
"10:46:23.9673639 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000128","Desired Access: Query Value, Maximum Allowed","1120"
"10:46:23.9674228 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\Driver","0.0000111","Type: REG_SZ, Length: 88, Data: {4d36e968-e325-11ce-bfc1-08002be10318}\0001","1120"
"10:46:23.9674787 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000038","","1120"
"10:46:23.9675354 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000043","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:23.9675743 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000140","Desired Access: Query Value","1120"
"10:46:23.9676191 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000166","Desired Access: Query Value","1120"
"10:46:23.9676703 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\MatchingDeviceId","0.0000213","Type: REG_SZ, Length: 76, Data: pci\ven_8086&dev_5916&subsys_10941025","1120"
"10:46:23.9677334 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000038","","1120"
"10:46:23.9679079 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000051","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:23.9679501 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000137","Desired Access: Query Value","1120"
"10:46:23.9679937 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000162","Desired Access: Query Value","1120"
"10:46:23.9680389 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000098","Desired Access: Query Value","1120"
"10:46:23.9680841 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\InstalledDisplayDrivers","0.0000098","Length: 144","1120"
"10:46:23.9681264 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\InstalledDisplayDrivers","0.0000093","Type: REG_MULTI_SZ, Length: 186, Data: igdumdim64, igd10iumd64, igd10iumd64, igd12umd64, igdumdim32, igd10iumd32, igd10iumd32, igd12umd32","1120"
"10:46:23.9681780 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000043","","1120"
"10:46:23.9684156 AM","firefox.exe","1008","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000158","Desired Access: Read, Maximum Allowed","1120"
"10:46:23.9684754 AM","firefox.exe","1008","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000106","Type: REG_DWORD, Length: 4, Data: 3","1120"
"10:46:23.9685308 AM","firefox.exe","1008","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000047","","1120"
"10:46:23.9685906 AM","firefox.exe","1008","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000123","Desired Access: Read","1120"
"10:46:23.9686413 AM","firefox.exe","1008","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000107","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","1120"
"10:46:23.9687002 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000150","Desired Access: Read","1120"
"10:46:23.9687493 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000145","Desired Access: Read","1120"
"10:46:23.9687967 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000085","Desired Access: Read","1120"
"10:46:23.9688474 AM","firefox.exe","1008","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000043","","1120"
"10:46:23.9690684 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000205","Length: 52","1120"
"10:46:23.9691184 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000047","","1120"
"10:46:23.9691666 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000077","Desired Access: Query Value, Maximum Allowed","1120"
"10:46:23.9692033 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000076","Length: 268","1120"
"10:46:23.9692383 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000025","","1120"
"10:46:23.9692767 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000059","Desired Access: Query Value, Maximum Allowed","1120"
"10:46:23.9693069 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000060","Type: REG_MULTI_SZ, Length: 292, Data: PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02, PCI\VEN_8086&DEV_5916&SUBSYS_10941025, PCI\VEN_8086&DEV_5916&CC_030000, PCI\VEN_8086&DEV_5916&CC_0300","1120"
"10:46:23.9693372 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000026","","1120"
"10:46:23.9693671 AM","firefox.exe","1008","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000077","Desired Access: Read","1120"
"10:46:23.9693965 AM","firefox.exe","1008","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000064","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","1120"
"10:46:23.9694264 AM","firefox.exe","1008","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000021","","1120"
"10:46:23.9694908 AM","firefox.exe","1008","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000077","Desired Access: Read, Maximum Allowed","1120"
"10:46:23.9695211 AM","firefox.exe","1008","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000069","Type: REG_DWORD, Length: 4, Data: 3","1120"
"10:46:23.9695519 AM","firefox.exe","1008","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000021","","1120"
"10:46:23.9695813 AM","firefox.exe","1008","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000064","Desired Access: Read","1120"
"10:46:23.9696099 AM","firefox.exe","1008","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video1","0.0000060","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0001","1120"
"10:46:23.9696440 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0001","0.0000090","Desired Access: Read","1120"
"10:46:23.9696735 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0001","0.0000093","Desired Access: Read","1120"
"10:46:23.9697029 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000051","Desired Access: Read","1120"
"10:46:23.9697319 AM","firefox.exe","1008","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000026","","1120"
"10:46:23.9697558 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000128","Length: 52","1120"
"10:46:23.9697908 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000021","","1120"
"10:46:23.9698262 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000064","Desired Access: Query Value, Maximum Allowed","1120"
"10:46:23.9698565 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000055","Length: 268","1120"
"10:46:23.9698859 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000022","","1120"
"10:46:23.9699196 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000056","Desired Access: Query Value, Maximum Allowed","1120"
"10:46:23.9699474 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000055","Type: REG_MULTI_SZ, Length: 292, Data: PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02, PCI\VEN_8086&DEV_5916&SUBSYS_10941025, PCI\VEN_8086&DEV_5916&CC_030000, PCI\VEN_8086&DEV_5916&CC_0300","1120"
"10:46:23.9699764 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000021","","1120"
"10:46:23.9700037 AM","firefox.exe","1008","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000073","Desired Access: Read","1120"
"10:46:23.9700323 AM","firefox.exe","1008","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video1","0.0000060","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0001","1120"
"10:46:23.9700609 AM","firefox.exe","1008","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000021","","1120"
"10:46:23.9700942 AM","firefox.exe","1008","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000064","Desired Access: Read, Maximum Allowed","1120"
"10:46:23.9701223 AM","firefox.exe","1008","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000056","Type: REG_DWORD, Length: 4, Data: 3","1120"
"10:46:23.9701505 AM","firefox.exe","1008","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000021","","1120"
"10:46:23.9701786 AM","firefox.exe","1008","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000064","Desired Access: Read","1120"
"10:46:23.9702076 AM","firefox.exe","1008","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video2","0.0000060","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0002","1120"
"10:46:23.9702409 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0002","0.0000077","Desired Access: Read","1120"
"10:46:23.9702687 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0002","0.0000085","Desired Access: Read","1120"
"10:46:23.9702972 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000047","Desired Access: Read","1120"
"10:46:23.9703254 AM","firefox.exe","1008","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000026","","1120"
"10:46:23.9703489 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000141","Length: 52","1120"
"10:46:23.9703847 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000026","","1120"
"10:46:23.9704188 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000060","Desired Access: Query Value, Maximum Allowed","1120"
"10:46:23.9704479 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000055","Length: 268","1120"
"10:46:23.9704764 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000022","","1120"
"10:46:23.9705089 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000055","Desired Access: Query Value, Maximum Allowed","1120"
"10:46:23.9705362 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000055","Type: REG_MULTI_SZ, Length: 292, Data: PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02, PCI\VEN_8086&DEV_5916&SUBSYS_10941025, PCI\VEN_8086&DEV_5916&CC_030000, PCI\VEN_8086&DEV_5916&CC_0300","1120"
"10:46:23.9705643 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000022","","1120"
"10:46:23.9705912 AM","firefox.exe","1008","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000064","Desired Access: Read","1120"
"10:46:23.9706190 AM","firefox.exe","1008","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video2","0.0000059","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0002","1120"
"10:46:23.9706467 AM","firefox.exe","1008","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000025","","1120"
"10:46:23.9706791 AM","firefox.exe","1008","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000064","Desired Access: Read, Maximum Allowed","1120"
"10:46:23.9707068 AM","firefox.exe","1008","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000056","Type: REG_DWORD, Length: 4, Data: 3","1120"
"10:46:23.9707350 AM","firefox.exe","1008","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000021","","1120"
"10:46:23.9707922 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:23.9708191 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Cisco Systems\VPN Client","0.0000102","Desired Access: Query Value","1120"
"10:46:23.9715832 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\dcomp.dll","0.0000397","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.9716788 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000098","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","1120"
"10:46:23.9717155 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\dcomp.dll","0.0000397","","1120"
"10:46:23.9720278 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\dcomp.dll","0.0000320","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.9721460 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\dcomp.dll","0.0000081","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:23.9721801 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\System32\dcomp.dll","0.0000077","AllocationSize: 1,675,264, EndOfFile: 1,674,592, NumberOfLinks: 2, DeletePending: False, Directory: False","1120"
"10:46:23.9722326 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\dcomp.dll","0.0000043","SyncType: SyncTypeOther","1120"
"10:46:23.9724046 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\dcomp.dll","0.0000230","","1120"
"10:46:23.9731316 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\dcomp.dll","0.0000435","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.9732468 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000111","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","1120"
"10:46:23.9732971 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\dcomp.dll","0.0000150","","1120"
"10:46:23.9736555 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\dcomp.dll","0.0000325","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.9737481 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\dcomp.dll","0.0000073","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:23.9738070 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\dcomp.dll","0.0000038","SyncType: SyncTypeOther","1120"
"10:46:23.9739828 AM","firefox.exe","1008","Load Image","C:\Windows\System32\dcomp.dll","0.0000000","Image Base: 0x7ffb435f0000, Image Size: 0x19c000","1120"
"10:46:23.9745682 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\dcomp.dll","0.0000217","","1120"
"10:46:23.9746876 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0175915","Offset: 11,108,352, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:23.9752577 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000465","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:23.9753375 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000085","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","1120"
"10:46:23.9753720 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000111","","1120"
"10:46:23.9756387 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000051","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:23.9756784 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\Windows\Dwm","0.0000149","Desired Access: Read","1120"
"10:46:23.9757227 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\Dwm\DebugFailFast","0.0000082","Length: 16","1120"
"10:46:23.9757633 AM","firefox.exe","1008","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\Dwm","0.0000030","","1120"
"10:46:23.9758183 AM","firefox.exe","1008","QueryNameInformationFile","C:\Windows\System32\dcomp.dll","0.0000128","Name: \Windows\System32\dcomp.dll","1120"
"10:46:23.9761358 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\dcomp.dll","0.0268595","Offset: 1,511,936, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:23.9946527 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0238831","Offset: 12,341,248, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:24.0031011 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\dcomp.dll","0.0103638","Offset: 1,441,280, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:24.0135750 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\dcomp.dll","0.0012019","Offset: 1,416,704, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1120"
"10:46:24.0148439 AM","firefox.exe","1008","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000200","Desired Access: Read, Maximum Allowed","1120"
"10:46:24.0149296 AM","firefox.exe","1008","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000145","Type: REG_DWORD, Length: 4, Data: 3","1120"
"10:46:24.0149928 AM","firefox.exe","1008","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000047","","1120"
"10:46:24.0150666 AM","firefox.exe","1008","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000149","Desired Access: Read","1120"
"10:46:24.0151391 AM","firefox.exe","1008","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000120","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","1120"
"10:46:24.0152112 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000184","Desired Access: Read","1120"
"10:46:24.0152727 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000175","Desired Access: Read","1120"
"10:46:24.0153286 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000093","Desired Access: Read","1120"
"10:46:24.0153926 AM","firefox.exe","1008","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000051","","1120"
"10:46:24.0154459 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000230","Length: 52","1120"
"10:46:24.0155099 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000038","","1120"
"10:46:24.0155871 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000115","Desired Access: Query Value, Maximum Allowed","1120"
"10:46:24.0156426 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000102","Length: 268","1120"
"10:46:24.0156946 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000039","","1120"
"10:46:24.0157582 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000154","Desired Access: Query Value, Maximum Allowed","1120"
"10:46:24.0158137 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000094","Type: REG_MULTI_SZ, Length: 292, Data: PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02, PCI\VEN_8086&DEV_5916&SUBSYS_10941025, PCI\VEN_8086&DEV_5916&CC_030000, PCI\VEN_8086&DEV_5916&CC_0300","1120"
"10:46:24.0158653 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000034","","1120"
"10:46:24.0159169 AM","firefox.exe","1008","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000133","Desired Access: Read","1120"
"10:46:24.0159686 AM","firefox.exe","1008","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000093","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","1120"
"10:46:24.0160185 AM","firefox.exe","1008","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000038","","1120"
"10:46:24.0161456 AM","firefox.exe","1008","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000124","Desired Access: Read, Maximum Allowed","1120"
"10:46:24.0161994 AM","firefox.exe","1008","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000153","Type: REG_DWORD, Length: 4, Data: 3","1120"
"10:46:24.0162600 AM","firefox.exe","1008","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000034","","1120"
"10:46:24.0163129 AM","firefox.exe","1008","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000119","Desired Access: Read","1120"
"10:46:24.0163645 AM","firefox.exe","1008","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video1","0.0000098","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0001","1120"
"10:46:24.0164268 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0001","0.0000154","Desired Access: Read","1120"
"10:46:24.0164814 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0001","0.0000162","Desired Access: Read","1120"
"10:46:24.0165335 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000085","Desired Access: Read","1120"
"10:46:24.0165864 AM","firefox.exe","1008","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000038","","1120"
"10:46:24.0166265 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000226","Length: 52","1120"
"10:46:24.0166888 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000038","","1120"
"10:46:24.0167540 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000111","Desired Access: Query Value, Maximum Allowed","1120"
"10:46:24.0168087 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000085","Length: 268","1120"
"10:46:24.0168594 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000039","","1120"
"10:46:24.0169234 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000099","Desired Access: Query Value, Maximum Allowed","1120"
"10:46:24.0169738 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000094","Type: REG_MULTI_SZ, Length: 292, Data: PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02, PCI\VEN_8086&DEV_5916&SUBSYS_10941025, PCI\VEN_8086&DEV_5916&CC_030000, PCI\VEN_8086&DEV_5916&CC_0300","1120"
"10:46:24.0170254 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000039","","1120"
"10:46:24.0170792 AM","firefox.exe","1008","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000119","Desired Access: Read","1120"
"10:46:24.0171304 AM","firefox.exe","1008","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video1","0.0000102","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0001","1120"
"10:46:24.0171811 AM","firefox.exe","1008","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000035","","1120"
"10:46:24.0172434 AM","firefox.exe","1008","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000116","Desired Access: Read, Maximum Allowed","1120"
"10:46:24.0172942 AM","firefox.exe","1008","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000090","Type: REG_DWORD, Length: 4, Data: 3","1120"
"10:46:24.0173446 AM","firefox.exe","1008","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000038","","1120"
"10:46:24.0173966 AM","firefox.exe","1008","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000115","Desired Access: Read","1120"
"10:46:24.0174461 AM","firefox.exe","1008","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video2","0.0000094","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0002","1120"
"10:46:24.0175046 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0002","0.0000149","Desired Access: Read","1120"
"10:46:24.0175566 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0002","0.0000141","Desired Access: Read","1120"
"10:46:24.0176078 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000085","Desired Access: Read","1120"
"10:46:24.0176582 AM","firefox.exe","1008","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000038","","1120"
"10:46:24.0176978 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000205","Length: 52","1120"
"10:46:24.0177554 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000035","","1120"
"10:46:24.0178182 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000102","Desired Access: Query Value, Maximum Allowed","1120"
"10:46:24.0178694 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000085","Length: 268","1120"
"10:46:24.0179180 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000034","","1120"
"10:46:24.0179696 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000069","Desired Access: Query Value, Maximum Allowed","1120"
"10:46:24.0180012 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000060","Type: REG_MULTI_SZ, Length: 292, Data: PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02, PCI\VEN_8086&DEV_5916&SUBSYS_10941025, PCI\VEN_8086&DEV_5916&CC_030000, PCI\VEN_8086&DEV_5916&CC_0300","1120"
"10:46:24.0180323 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000026","","1120"
"10:46:24.0180631 AM","firefox.exe","1008","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000076","Desired Access: Read","1120"
"10:46:24.0180929 AM","firefox.exe","1008","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video2","0.0000064","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0002","1120"
"10:46:24.0181228 AM","firefox.exe","1008","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000026","","1120"
"10:46:24.0181612 AM","firefox.exe","1008","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000068","Desired Access: Read, Maximum Allowed","1120"
"10:46:24.0181902 AM","firefox.exe","1008","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000064","Type: REG_DWORD, Length: 4, Data: 3","1120"
"10:46:24.0182205 AM","firefox.exe","1008","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000021","","1120"
"10:46:24.0183596 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000038","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:24.0183890 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\Windows\Dwm","0.0000137","Desired Access: Read","1120"
"10:46:24.0184266 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\Dwm\DisallowNonDrawListRendering","0.0000077","Length: 16","1120"
"10:46:24.0184569 AM","firefox.exe","1008","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\Dwm","0.0000025","","1120"
"10:46:24.0190261 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\DWrite.dll","0.0000388","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:24.0191161 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000085","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","1120"
"10:46:24.0191494 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\DWrite.dll","0.0000128","","1120"
"10:46:24.0194130 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\DWrite.dll","0.0000320","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1120"
"10:46:24.0194297 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0042607","Offset: 9,408,512, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:24.0195056 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000098","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1120"
"10:46:24.0195688 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000034","SyncType: SyncTypeOther","1120"
"10:46:24.0198265 AM","firefox.exe","1008","Load Image","C:\Windows\System32\DWrite.dll","0.0000000","Image Base: 0x7ffb33970000, Image Size: 0x31c000","1120"
"10:46:24.0202250 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\DWrite.dll","0.0000230","","1120"
"10:46:24.0206427 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000047","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:24.0206866 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\DirectWrite","0.0000150","Desired Access: Query Value","1120"
"10:46:24.0207643 AM","firefox.exe","1008","QueryNameInformationFile","C:\Windows\System32\DWrite.dll","0.0000132","Name: \Windows\System32\DWrite.dll","1120"
"10:46:24.0209994 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000043","Query: HandleTags, HandleTags: 0x0","1120"
"10:46:24.0210352 AM","firefox.exe","1008","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\FontCache\Parameters","0.0000124","Desired Access: Read","1120"
"10:46:24.0210719 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Services\FontCache\Parameters","0.0000222","Desired Access: Read","1120"
"10:46:24.0211291 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Services\FontCache\Parameters\ClientCacheSize","0.0000077","Type: REG_DWORD, Length: 4, Data: 4194304","1120"
"10:46:24.0211726 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Services\FontCache\Parameters","0.0000039","","1120"
"10:46:24.0213258 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 1316","1120"
"10:46:24.0237689 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 7796","1120"
"10:46:24.0238837 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 4988","1120"
"10:46:24.0241034 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 4012","1120"
"10:46:24.0243244 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 5420","1120"
"10:46:24.0248100 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 9172","1120"
"10:46:24.0249115 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 8580","1120"
"10:46:24.0249973 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 7268","1120"
"10:46:24.0250715 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0007445","Offset: 13,484,032, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:24.0250945 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 7936","1120"
"10:46:24.0252426 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 7160","1120"
"10:46:24.0285215 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0094981","Offset: 8,671,232, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:24.0297828 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 8384","1120"
"10:46:24.0304343 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000473","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.0305247 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000107","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","1316"
"10:46:24.0305729 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000171","","1316"
"10:46:24.0306348 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 8020","1120"
"10:46:24.0314557 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0162449","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.0337666 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 6508","5728"
"10:46:24.0351647 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 7800","1120"
"10:46:24.0354438 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000060","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:24.0354954 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\MozillaPlugins","0.0000141","Desired Access: Read","5728"
"10:46:24.0355568 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000035","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:24.0355999 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\MozillaPlugins","0.0000124","Desired Access: Read","5728"
"10:46:24.0363432 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000486","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:24.0364400 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000124","CreationTime: 2/16/2018 12:59:38 PM, LastAccessTime: 2/16/2018 12:59:42 PM, LastWriteTime: 2/16/2018 12:59:42 PM, ChangeTime: 3/20/2019 7:22:59 PM, AllocationSize: 0, EndOfFile: 0, FileAttributes: D","5728"
"10:46:24.0364964 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000153","","5728"
"10:46:24.0366534 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000051","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:24.0367012 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\MozillaPlugins","0.0000123","Desired Access: Read","5728"
"10:46:24.0367558 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000038","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:24.0367942 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\MozillaPlugins","0.0000128","Desired Access: Read","5728"
"10:46:24.0378643 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 5228","5728"
"10:46:24.0383106 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\pluginreg.dat","0.0000495","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7572"
"10:46:24.0390146 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\plugins","0.0000413","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7572"
"10:46:24.0393913 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000469","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7572"
"10:46:24.0394988 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\*","0.0000354","Filter: *, 1: .","7572"
"10:46:24.0395974 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000328","0: .., 1: Extensions, 2: Firefox, 3: SystemExtensionsDev","7572"
"10:46:24.0397126 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000107","","7572"
"10:46:24.0397651 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000183","","7572"
"10:46:24.0398683 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 7264","5728"
"10:46:24.0406653 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\msvcp140.dll","0.0005061","Offset: 483,840, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8768"
"10:46:24.0412379 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\msvcp140.dll","0.0279749","Offset: 320,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8768"
"10:46:24.0477668 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0000124","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","1316"
"10:46:24.0478158 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0000214","","1316"
"10:46:24.0482016 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0000315","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.0482741 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0000068","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1316"
"10:46:24.0483082 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0000077","AllocationSize: 3,870,720, EndOfFile: 3,866,824, NumberOfLinks: 1, DeletePending: False, Directory: False","1316"
"10:46:24.0483620 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0000038","SyncType: SyncTypeOther","1316"
"10:46:24.0484853 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0082940","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.0485702 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000073","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0486333 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000269","Desired Access: Read","7392"
"10:46:24.0487613 AM","firefox.exe","7336","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000052","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0488070 AM","firefox.exe","7336","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}","0.0000265","Desired Access: Read","7392"
"10:46:24.0488804 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000043","","7392"
"10:46:24.0489260 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Category","0.0000107","Type: REG_DWORD, Length: 4, Data: 4","7392"
"10:46:24.0489666 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Name","0.0000094","Type: REG_SZ, Length: 32, Data: LocalAppDataLow","7392"
"10:46:24.0490067 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\ParentFolder","0.0000081","Length: 90","7392"
"10:46:24.0490447 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Description","0.0000072","Length: 144","7392"
"10:46:24.0490801 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\RelativePath","0.0000085","Type: REG_SZ, Length: 34, Data: AppData\LocalLow","7392"
"10:46:24.0491176 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\ParsingName","0.0000073","Length: 144","7392"
"10:46:24.0491522 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\InfoTip","0.0000064","Length: 144","7392"
"10:46:24.0491855 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\LocalizedName","0.0000068","Length: 144","7392"
"10:46:24.0492200 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Icon","0.0000068","Length: 144","7392"
"10:46:24.0492541 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Security","0.0000077","Type: REG_SZ, Length: 40, Data: S:(ML;OICI;NW;;;LW)","7392"
"10:46:24.0492913 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\StreamResource","0.0000068","Length: 144","7392"
"10:46:24.0493250 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\StreamResourceType","0.0000115","Length: 144","7392"
"10:46:24.0493638 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\LocalRedirectOnly","0.0000081","Type: REG_DWORD, Length: 4, Data: 1","7392"
"10:46:24.0493988 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Roamable","0.0000081","Length: 16","7392"
"10:46:24.0494351 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\PreCreate","0.0000076","Type: REG_DWORD, Length: 4, Data: 1","7392"
"10:46:24.0494717 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Stream","0.0000069","Length: 16","7392"
"10:46:24.0495059 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\PublishExpandedPath","0.0000077","Type: REG_DWORD, Length: 4, Data: 1","7392"
"10:46:24.0495409 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\DefinitionFlags","0.0000072","Length: 16","7392"
"10:46:24.0495759 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Attributes","0.0000064","Type: REG_DWORD, Length: 4, Data: 8192","7392"
"10:46:24.0496096 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\FolderTypeID","0.0000072","Length: 90","7392"
"10:46:24.0496445 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\InitFolderHandler","0.0000069","Length: 90","7392"
"10:46:24.0497158 AM","firefox.exe","7336","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}","0.0000043","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0497585 AM","firefox.exe","7336","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\PropertyBag","0.0000094","Desired Access: Read","7392"
"10:46:24.0498152 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}","0.0000043","","7392"
"10:46:24.0499577 AM","firefox.exe","7336","RegOpenKey","HKCU","0.0000188","Desired Access: Read","7392"
"10:46:24.0500145 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000042","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0500533 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer","0.0000162","Desired Access: Query Value","7392"
"10:46:24.0501007 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer","0.0000034","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0501365 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000132","Desired Access: Query Value","7392"
"10:46:24.0501873 AM","firefox.exe","7336","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer","0.0000034","","7392"
"10:46:24.0502231 AM","firefox.exe","7336","RegCloseKey","HKCU","0.0000038","","7392"
"10:46:24.0502833 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000038","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0503200 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\KnownFolders","0.0000098","Desired Access: Query Value","7392"
"10:46:24.0503639 AM","firefox.exe","7336","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000034","","7392"
"10:46:24.0504522 AM","firefox.exe","7336","RegOpenKey","HKU","0.0000145","Desired Access: Maximum Allowed, Granted Access: Read","7392"
"10:46:24.0504996 AM","firefox.exe","7336","RegQueryKey","HKU","0.0000038","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0505341 AM","firefox.exe","7336","RegOpenKey","HKCU","0.0000137","Desired Access: Read","7392"
"10:46:24.0505858 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000034","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0506203 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000269","Desired Access: Read","7392"
"10:46:24.0506818 AM","firefox.exe","7336","RegCloseKey","HKCU","0.0000034","","7392"
"10:46:24.0507249 AM","firefox.exe","7336","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\{A520A1A4-1780-4FF6-BD18-167343C5AF16}","0.0000102","Length: 142","7392"
"10:46:24.0508832 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000038","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0509258 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList","0.0000192","Desired Access: Read","7392"
"10:46:24.0509821 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\ProgramData","0.0000094","Length: 12","7392"
"10:46:24.0510248 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\ProgramData","0.0000077","Type: REG_EXPAND_SZ, Length: 52, Data: %SystemDrive%\ProgramData","7392"
"10:46:24.0510739 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList","0.0000038","","7392"
"10:46:24.0511264 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000038","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0511652 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList","0.0000158","Desired Access: Read","7392"
"10:46:24.0512155 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Public","0.0000077","Length: 12","7392"
"10:46:24.0512548 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Public","0.0000081","Type: REG_EXPAND_SZ, Length: 54, Data: %SystemDrive%\Users\Public","7392"
"10:46:24.0513017 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList","0.0000034","","7392"
"10:46:24.0513465 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0513849 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000145","Desired Access: Read","7392"
"10:46:24.0514306 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000230","Desired Access: Read","7392"
"10:46:24.0514912 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000085","Query: Cached, SubKeys: 0, Values: 15","7392"
"10:46:24.0515603 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000098","Index: 0, Name: ComSpec, Type: REG_EXPAND_SZ, Length: 60, Data: %SystemRoot%\system32\cmd.exe","7392"
"10:46:24.0516034 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000072","Index: 1, Name: DriverData, Type: REG_SZ, Length: 78, Data: C:\Windows\System32\Drivers\DriverData","7392"
"10:46:24.0516469 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000077","Index: 2, Name: NUMBER_OF_PROCESSORS, Type: REG_SZ, Length: 4, Data: 4","7392"
"10:46:24.0516879 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000072","Index: 3, Name: OS, Type: REG_SZ, Length: 22, Data: Windows_NT","7392"
"10:46:24.0517297 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000089","Index: 4, Name: Path, Type: REG_EXPAND_SZ, Length: 978, Data: C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;%SYSTEMROOT%\System32\OpenSSH\","7392"
"10:46:24.0517693 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000069","Index: 5, Name: PATHEXT, Type: REG_SZ, Length: 108, Data: .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC","7392"
"10:46:24.0518146 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000072","Index: 6, Name: PROCESSOR_ARCHITECTURE, Type: REG_SZ, Length: 12, Data: AMD64","7392"
"10:46:24.0518581 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000068","Index: 7, Name: PROCESSOR_IDENTIFIER, Type: REG_SZ, Length: 104, Data: Intel64 Family 6 Model 142 Stepping 9, GenuineIntel","7392"
"10:46:24.0519008 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000064","Index: 8, Name: PROCESSOR_LEVEL, Type: REG_SZ, Length: 4, Data: 6","7392"
"10:46:24.0519439 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000072","Index: 9, Name: PROCESSOR_REVISION, Type: REG_SZ, Length: 10, Data: 8e09","7392"
"10:46:24.0519852 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000069","Index: 10, Name: PSModulePath, Type: REG_EXPAND_SZ, Length: 188, Data: %ProgramFiles%\WindowsPowerShell\Modules;%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules","7392"
"10:46:24.0520219 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000069","Index: 11, Name: TEMP, Type: REG_EXPAND_SZ, Length: 36, Data: %SystemRoot%\TEMP","7392"
"10:46:24.0520599 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000064","Index: 12, Name: TMP, Type: REG_EXPAND_SZ, Length: 36, Data: %SystemRoot%\TEMP","7392"
"10:46:24.0520970 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000069","Index: 13, Name: USERNAME, Type: REG_SZ, Length: 14, Data: SYSTEM","7392"
"10:46:24.0521405 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000064","Index: 14, Name: windir, Type: REG_EXPAND_SZ, Length: 26, Data: %SystemRoot%","7392"
"10:46:24.0521777 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000064","Index: 0, Name: ComSpec, Type: REG_EXPAND_SZ, Length: 60, Data: %SystemRoot%\system32\cmd.exe","7392"
"10:46:24.0522323 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000064","Index: 1, Name: DriverData, Type: REG_SZ, Length: 78, Data: C:\Windows\System32\Drivers\DriverData","7392"
"10:46:24.0522698 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000069","Index: 2, Name: NUMBER_OF_PROCESSORS, Type: REG_SZ, Length: 4, Data: 4","7392"
"10:46:24.0523069 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000064","Index: 3, Name: OS, Type: REG_SZ, Length: 22, Data: Windows_NT","7392"
"10:46:24.0523441 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000081","Index: 4, Name: Path, Type: REG_EXPAND_SZ, Length: 978, Data: C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;%SYSTEMROOT%\System32\OpenSSH\","7392"
"10:46:24.0524576 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000076","Index: 5, Name: PATHEXT, Type: REG_SZ, Length: 108, Data: .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC","7392"
"10:46:24.0524968 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000068","Index: 6, Name: PROCESSOR_ARCHITECTURE, Type: REG_SZ, Length: 12, Data: AMD64","7392"
"10:46:24.0525335 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000064","Index: 7, Name: PROCESSOR_IDENTIFIER, Type: REG_SZ, Length: 104, Data: Intel64 Family 6 Model 142 Stepping 9, GenuineIntel","7392"
"10:46:24.0525693 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000064","Index: 8, Name: PROCESSOR_LEVEL, Type: REG_SZ, Length: 4, Data: 6","7392"
"10:46:24.0526052 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000068","Index: 9, Name: PROCESSOR_REVISION, Type: REG_SZ, Length: 10, Data: 8e09","7392"
"10:46:24.0526406 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000068","Index: 10, Name: PSModulePath, Type: REG_EXPAND_SZ, Length: 188, Data: %ProgramFiles%\WindowsPowerShell\Modules;%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules","7392"
"10:46:24.0527093 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000068","Index: 11, Name: TEMP, Type: REG_EXPAND_SZ, Length: 36, Data: %SystemRoot%\TEMP","7392"
"10:46:24.0534218 AM","firefox.exe","7336","CreateFile","C:\Windows\Temp","0.0000508","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0535264 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\Temp","0.0000115","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 3/26/2020 10:41:06 AM, LastWriteTime: 3/26/2020 10:41:06 AM, ChangeTime: 3/26/2020 10:41:06 AM, FileAttributes: D","7392"
"10:46:24.0535639 AM","firefox.exe","7336","CloseFile","C:\Windows\Temp","0.0000137","","7392"
"10:46:24.0536864 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000089","Index: 12, Name: TMP, Type: REG_EXPAND_SZ, Length: 36, Data: %SystemRoot%\TEMP","7392"
"10:46:24.0542598 AM","firefox.exe","7336","CreateFile","C:\Windows\Temp","0.0000448","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0543319 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\Temp","0.0000098","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 3/26/2020 10:41:06 AM, LastWriteTime: 3/26/2020 10:41:06 AM, ChangeTime: 3/26/2020 10:41:06 AM, FileAttributes: D","7392"
"10:46:24.0543648 AM","firefox.exe","7336","CloseFile","C:\Windows\Temp","0.0000128","","7392"
"10:46:24.0544881 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000094","Index: 13, Name: USERNAME, Type: REG_SZ, Length: 14, Data: SYSTEM","7392"
"10:46:24.0545397 AM","firefox.exe","7336","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000073","Index: 14, Name: windir, Type: REG_EXPAND_SZ, Length: 26, Data: %SystemRoot%","7392"
"10:46:24.0546191 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000047","","7392"
"10:46:24.0546924 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000039","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0547411 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList","0.0000205","Desired Access: Read","7392"
"10:46:24.0548021 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Default","0.0000090","Length: 12","7392"
"10:46:24.0548431 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Default","0.0000085","Type: REG_EXPAND_SZ, Length: 56, Data: %SystemDrive%\Users\Default","7392"
"10:46:24.0548930 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList","0.0000038","","7392"
"10:46:24.0549412 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000038","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0549817 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion","0.0000171","Desired Access: Read","7392"
"10:46:24.0550321 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir","0.0000081","Length: 12","7392"
"10:46:24.0550692 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir","0.0000077","Type: REG_SZ, Length: 34, Data: C:\Program Files","7392"
"10:46:24.0551183 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonFilesDir","0.0000072","Length: 12","7392"
"10:46:24.0551541 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonFilesDir","0.0000073","Type: REG_SZ, Length: 60, Data: C:\Program Files\Common Files","7392"
"10:46:24.0552057 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir (x86)","0.0000073","Length: 12","7392"
"10:46:24.0552407 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir (x86)","0.0000077","Type: REG_SZ, Length: 46, Data: C:\Program Files (x86)","7392"
"10:46:24.0552894 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonFilesDir (x86)","0.0000068","Length: 12","7392"
"10:46:24.0553243 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonFilesDir (x86)","0.0000077","Type: REG_SZ, Length: 72, Data: C:\Program Files (x86)\Common Files","7392"
"10:46:24.0553764 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramW6432Dir","0.0000077","Length: 12","7392"
"10:46:24.0554118 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramW6432Dir","0.0000085","Type: REG_SZ, Length: 34, Data: C:\Program Files","7392"
"10:46:24.0554600 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonW6432Dir","0.0000073","Length: 12","7392"
"10:46:24.0554946 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonW6432Dir","0.0000077","Type: REG_SZ, Length: 60, Data: C:\Program Files\Common Files","7392"
"10:46:24.0555539 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion","0.0000034","","7392"
"10:46:24.0556414 AM","firefox.exe","7336","RegQueryKey","HKU","0.0000034","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0556827 AM","firefox.exe","7336","RegOpenKey","HKCU","0.0000150","Desired Access: Read","7392"
"10:46:24.0557331 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0557702 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001","0.0000273","Desired Access: Read","7392"
"10:46:24.0558346 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001\ProfileImagePath","0.0000064","Length: 12","7392"
"10:46:24.0558705 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001\ProfileImagePath","0.0000077","Type: REG_EXPAND_SZ, Length: 34, Data: C:\Users\diggles","7392"
"10:46:24.0559136 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001","0.0000081","","7392"
"10:46:24.0559648 AM","firefox.exe","7336","RegQueryKey","HKU","0.0000042","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0560036 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000188","Desired Access: Read","7392"
"10:46:24.0560535 AM","firefox.exe","7336","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\AppData","0.0000077","Length: 12","7392"
"10:46:24.0560902 AM","firefox.exe","7336","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\AppData","0.0000073","Type: REG_EXPAND_SZ, Length: 60, Data: %USERPROFILE%\AppData\Roaming","7392"
"10:46:24.0561290 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0561657 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001","0.0000171","Desired Access: Read","7392"
"10:46:24.0562169 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001\ProfileImagePath","0.0000073","Length: 12","7392"
"10:46:24.0562553 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001\ProfileImagePath","0.0000073","Type: REG_EXPAND_SZ, Length: 34, Data: C:\Users\diggles","7392"
"10:46:24.0562997 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001","0.0000034","","7392"
"10:46:24.0563407 AM","firefox.exe","7336","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000029","","7392"
"10:46:24.0564324 AM","firefox.exe","7336","RegQueryKey","HKU","0.0000034","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0564716 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000184","Desired Access: Read","7392"
"10:46:24.0565237 AM","firefox.exe","7336","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Local AppData","0.0000081","Length: 12","7392"
"10:46:24.0565621 AM","firefox.exe","7336","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Local AppData","0.0000077","Type: REG_EXPAND_SZ, Length: 56, Data: %USERPROFILE%\AppData\Local","7392"
"10:46:24.0566035 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0566423 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001","0.0000167","Desired Access: Read","7392"
"10:46:24.0566931 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001\ProfileImagePath","0.0000077","Length: 12","7392"
"10:46:24.0567319 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001\ProfileImagePath","0.0000073","Type: REG_EXPAND_SZ, Length: 34, Data: C:\Users\diggles","7392"
"10:46:24.0567763 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001","0.0000217","","7392"
"10:46:24.0568838 AM","firefox.exe","7336","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000056","","7392"
"10:46:24.0569640 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000077","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0569973 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0000286","","1316"
"10:46:24.0570276 AM","firefox.exe","7336","RegOpenKey","HKCU\Environment","0.0000260","Desired Access: Read","7392"
"10:46:24.0570980 AM","firefox.exe","7336","RegQueryKey","HKCU\Environment","0.0000090","Query: Cached, SubKeys: 0, Values: 4","7392"
"10:46:24.0571454 AM","firefox.exe","7336","RegEnumValue","HKCU\Environment","0.0000128","Index: 0, Name: OneDrive, Type: REG_EXPAND_SZ, Length: 52, Data: C:\Users\diggles\OneDrive","7392"
"10:46:24.0571923 AM","firefox.exe","7336","RegEnumValue","HKCU\Environment","0.0000085","Index: 1, Name: Path, Type: REG_EXPAND_SZ, Length: 102, Data: %USERPROFILE%\AppData\Local\Microsoft\WindowsApps;","7392"
"10:46:24.0572320 AM","firefox.exe","7336","RegEnumValue","HKCU\Environment","0.0000085","Index: 2, Name: TEMP, Type: REG_EXPAND_SZ, Length: 66, Data: %USERPROFILE%\AppData\Local\Temp","7392"
"10:46:24.0572708 AM","firefox.exe","7336","RegEnumValue","HKCU\Environment","0.0000085","Index: 3, Name: TMP, Type: REG_EXPAND_SZ, Length: 66, Data: %USERPROFILE%\AppData\Local\Temp","7392"
"10:46:24.0573100 AM","firefox.exe","7336","RegEnumValue","HKCU\Environment","0.0000073","Index: 0, Name: OneDrive, Type: REG_EXPAND_SZ, Length: 52, Data: C:\Users\diggles\OneDrive","7392"
"10:46:24.0573728 AM","firefox.exe","7336","RegEnumValue","HKCU\Environment","0.0000085","Index: 1, Name: Path, Type: REG_EXPAND_SZ, Length: 102, Data: %USERPROFILE%\AppData\Local\Microsoft\WindowsApps;","7392"
"10:46:24.0574769 AM","firefox.exe","7336","RegEnumValue","HKCU\Environment","0.0000081","Index: 2, Name: TEMP, Type: REG_EXPAND_SZ, Length: 66, Data: %USERPROFILE%\AppData\Local\Temp","7392"
"10:46:24.0577649 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0000554","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.0578609 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0000106","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","1316"
"10:46:24.0579091 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0000145","","1316"
"10:46:24.0581036 AM","firefox.exe","7336","CreateFile","C:\Users\diggles\AppData\Local\Temp","0.0000423","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0581783 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Temp","0.0000098","CreationTime: 3/20/2019 7:21:23 PM, LastAccessTime: 3/26/2020 10:46:23 AM, LastWriteTime: 3/26/2020 10:46:23 AM, ChangeTime: 3/26/2020 10:46:23 AM, FileAttributes: D","7392"
"10:46:24.0582124 AM","firefox.exe","7336","CloseFile","C:\Users\diggles\AppData\Local\Temp","0.0000551","","7392"
"10:46:24.0582658 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0000384","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.0583579 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0000111","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1316"
"10:46:24.0583806 AM","firefox.exe","7336","RegEnumValue","HKCU\Environment","0.0000098","Index: 3, Name: TMP, Type: REG_EXPAND_SZ, Length: 66, Data: %USERPROFILE%\AppData\Local\Temp","7392"
"10:46:24.0584074 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0000103","AllocationSize: 3,870,720, EndOfFile: 3,866,824, NumberOfLinks: 1, DeletePending: False, Directory: False","1316"
"10:46:24.0588013 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0195605","Offset: 2,930,688, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.0589864 AM","firefox.exe","7336","CreateFile","C:\Users\diggles\AppData\Local\Temp","0.0000316","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0590372 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Temp","0.0000064","CreationTime: 3/20/2019 7:21:23 PM, LastAccessTime: 3/26/2020 10:46:23 AM, LastWriteTime: 3/26/2020 10:46:23 AM, ChangeTime: 3/26/2020 10:46:23 AM, FileAttributes: D","7392"
"10:46:24.0590590 AM","firefox.exe","7336","CloseFile","C:\Users\diggles\AppData\Local\Temp","0.0000089","","7392"
"10:46:24.0591579 AM","firefox.exe","7336","RegCloseKey","HKCU\Environment","0.0000039","","7392"
"10:46:24.0591942 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000034","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0592288 AM","firefox.exe","7336","RegOpenKey","HKCU\Volatile Environment","0.0000196","Desired Access: Read","7392"
"10:46:24.0592770 AM","firefox.exe","7336","RegQueryKey","HKCU\Volatile Environment","0.0000060","Query: Cached, SubKeys: 1, Values: 9","7392"
"10:46:24.0593086 AM","firefox.exe","7336","RegEnumValue","HKCU\Volatile Environment","0.0000068","Index: 0, Name: LOGONSERVER, Type: REG_SZ, Length: 36, Data: \\LAPTOP-49TAGD3F","7392"
"10:46:24.0593512 AM","firefox.exe","7336","RegEnumValue","HKCU\Volatile Environment","0.0000060","Index: 1, Name: USERDOMAIN, Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","7392"
"10:46:24.0593858 AM","firefox.exe","7336","RegEnumValue","HKCU\Volatile Environment","0.0000055","Index: 2, Name: USERNAME, Type: REG_SZ, Length: 16, Data: diggles","7392"
"10:46:24.0594178 AM","firefox.exe","7336","RegEnumValue","HKCU\Volatile Environment","0.0000051","Index: 3, Name: USERPROFILE, Type: REG_SZ, Length: 34, Data: C:\Users\diggles","7392"
"10:46:24.0594468 AM","firefox.exe","7336","RegEnumValue","HKCU\Volatile Environment","0.0000055","Index: 4, Name: HOMEPATH, Type: REG_SZ, Length: 30, Data: \Users\diggles","7392"
"10:46:24.0594826 AM","firefox.exe","7336","RegEnumValue","HKCU\Volatile Environment","0.0000052","Index: 5, Name: HOMEDRIVE, Type: REG_SZ, Length: 6, Data: C:","7392"
"10:46:24.0595176 AM","firefox.exe","7336","RegEnumValue","HKCU\Volatile Environment","0.0000051","Index: 6, Name: APPDATA, Type: REG_SZ, Length: 66, Data: C:\Users\diggles\AppData\Roaming","7392"
"10:46:24.0595458 AM","firefox.exe","7336","RegEnumValue","HKCU\Volatile Environment","0.0000051","Index: 7, Name: LOCALAPPDATA, Type: REG_SZ, Length: 62, Data: C:\Users\diggles\AppData\Local","7392"
"10:46:24.0595748 AM","firefox.exe","7336","RegEnumValue","HKCU\Volatile Environment","0.0000051","Index: 8, Name: USERDOMAIN_ROAMINGPROFILE, Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","7392"
"10:46:24.0596059 AM","firefox.exe","7336","RegEnumValue","HKCU\Volatile Environment","0.0000052","Index: 0, Name: LOGONSERVER, Type: REG_SZ, Length: 36, Data: \\LAPTOP-49TAGD3F","7392"
"10:46:24.0596290 AM","firefox.exe","7336","RegEnumValue","HKCU\Volatile Environment","0.0000051","Index: 1, Name: USERDOMAIN, Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","7392"
"10:46:24.0596520 AM","firefox.exe","7336","RegEnumValue","HKCU\Volatile Environment","0.0000051","Index: 2, Name: USERNAME, Type: REG_SZ, Length: 16, Data: diggles","7392"
"10:46:24.0596746 AM","firefox.exe","7336","RegEnumValue","HKCU\Volatile Environment","0.0000052","Index: 3, Name: USERPROFILE, Type: REG_SZ, Length: 34, Data: C:\Users\diggles","7392"
"10:46:24.0596973 AM","firefox.exe","7336","RegEnumValue","HKCU\Volatile Environment","0.0000051","Index: 4, Name: HOMEPATH, Type: REG_SZ, Length: 30, Data: \Users\diggles","7392"
"10:46:24.0597199 AM","firefox.exe","7336","RegEnumValue","HKCU\Volatile Environment","0.0000051","Index: 5, Name: HOMEDRIVE, Type: REG_SZ, Length: 6, Data: C:","7392"
"10:46:24.0597425 AM","firefox.exe","7336","RegEnumValue","HKCU\Volatile Environment","0.0000047","Index: 6, Name: APPDATA, Type: REG_SZ, Length: 66, Data: C:\Users\diggles\AppData\Roaming","7392"
"10:46:24.0597647 AM","firefox.exe","7336","RegEnumValue","HKCU\Volatile Environment","0.0000051","Index: 7, Name: LOCALAPPDATA, Type: REG_SZ, Length: 62, Data: C:\Users\diggles\AppData\Local","7392"
"10:46:24.0597873 AM","firefox.exe","7336","RegEnumValue","HKCU\Volatile Environment","0.0000047","Index: 8, Name: USERDOMAIN_ROAMINGPROFILE, Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","7392"
"10:46:24.0598189 AM","firefox.exe","7336","RegCloseKey","HKCU\Volatile Environment","0.0000029","","7392"
"10:46:24.0598479 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000025","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0598765 AM","firefox.exe","7336","RegOpenKey","HKCU\Volatile Environment\1","0.0000166","Desired Access: Read","7392"
"10:46:24.0599178 AM","firefox.exe","7336","RegQueryKey","HKCU\Volatile Environment\1","0.0000056","Query: Cached, SubKeys: 0, Values: 2","7392"
"10:46:24.0599430 AM","firefox.exe","7336","RegEnumValue","HKCU\Volatile Environment\1","0.0000047","Index: 0, Name: SESSIONNAME, Type: REG_SZ, Length: 16, Data: Console","7392"
"10:46:24.0599759 AM","firefox.exe","7336","RegEnumValue","HKCU\Volatile Environment\1","0.0000051","Index: 1, Name: CLIENTNAME, Type: REG_SZ, Length: 2, Data: ","7392"
"10:46:24.0600053 AM","firefox.exe","7336","RegEnumValue","HKCU\Volatile Environment\1","0.0000047","Index: 0, Name: SESSIONNAME, Type: REG_SZ, Length: 16, Data: Console","7392"
"10:46:24.0600279 AM","firefox.exe","7336","RegEnumValue","HKCU\Volatile Environment\1","0.0000047","Index: 1, Name: CLIENTNAME, Type: REG_SZ, Length: 2, Data: ","7392"
"10:46:24.0600578 AM","firefox.exe","7336","RegCloseKey","HKCU\Volatile Environment\1","0.0000025","","7392"
"10:46:24.0600821 AM","firefox.exe","7336","RegCloseKey","HKCU","0.0000030","","7392"
"10:46:24.0606014 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sspicli.dll","0.0000384","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0606833 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000077","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7392"
"10:46:24.0607072 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sspicli.dll","0.0000115","","7392"
"10:46:24.0609576 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sspicli.dll","0.0000329","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0610613 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\sspicli.dll","0.0000085","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:24.0611330 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\sspicli.dll","0.0000038","SyncType: SyncTypeOther","7392"
"10:46:24.0612000 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\sspicli.dll","0.0000064","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:24.0613339 AM","firefox.exe","7336","Load Image","C:\Windows\System32\sspicli.dll","0.0000000","Image Base: 0x7ffb45990000, Image Size: 0x30000","7392"
"10:46:24.0613860 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\sspicli.dll","0.0000107","Name: \Windows\System32\sspicli.dll","7392"
"10:46:24.0616181 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sspicli.dll","0.0000162","","7392"
"10:46:24.0624347 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000060","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0624859 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Hvsi","0.0000128","Desired Access: Read","7392"
"10:46:24.0625295 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Hvsi","0.0000106","Desired Access: Read","7392"
"10:46:24.0628478 AM","firefox.exe","7336","RegOpenKey","HKCU","0.0000085","Desired Access: Maximum Allowed, Granted Access: Read, Create Link","7392"
"10:46:24.0628742 AM","firefox.exe","7336","RegOpenKey","HKCU\Control Panel\International","0.0000064","Desired Access: Read","7392"
"10:46:24.0628977 AM","firefox.exe","7336","RegCloseKey","HKCU","0.0000030","","7392"
"10:46:24.0629156 AM","firefox.exe","7336","RegQueryValue","HKCU\Control Panel\International\LocaleName","0.0000068","Type: REG_SZ, Length: 12, Data: en-US","7392"
"10:46:24.0629378 AM","firefox.exe","7336","RegCloseKey","HKCU\Control Panel\International","0.0000017","","7392"
"10:46:24.0630803 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0631038 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000140","Desired Access: Read","7392"
"10:46:24.0631370 AM","firefox.exe","7336","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000022","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0631571 AM","firefox.exe","7336","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}","0.0000145","Desired Access: Read","7392"
"10:46:24.0631921 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000017","","7392"
"10:46:24.0632160 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Category","0.0000047","Type: REG_DWORD, Length: 4, Data: 2","7392"
"10:46:24.0632365 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Name","0.0000051","Type: REG_SZ, Length: 16, Data: Profile","7392"
"10:46:24.0632667 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\ParentFolder","0.0000064","Length: 90","7392"
"10:46:24.0633017 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Description","0.0000043","Length: 144","7392"
"10:46:24.0633252 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\RelativePath","0.0000038","Length: 144","7392"
"10:46:24.0633444 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\ParsingName","0.0000038","Length: 144","7392"
"10:46:24.0633640 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\InfoTip","0.0000039","Length: 144","7392"
"10:46:24.0633790 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\LocalizedName","0.0000025","Length: 144","7392"
"10:46:24.0633913 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Icon","0.0000030","Length: 144","7392"
"10:46:24.0634033 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Security","0.0000025","Length: 144","7392"
"10:46:24.0634152 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\StreamResource","0.0000026","Length: 144","7392"
"10:46:24.0634272 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\StreamResourceType","0.0000025","Length: 144","7392"
"10:46:24.0634387 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\LocalRedirectOnly","0.0000026","Length: 16","7392"
"10:46:24.0634502 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Roamable","0.0000021","Length: 16","7392"
"10:46:24.0634613 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\PreCreate","0.0000026","Length: 16","7392"
"10:46:24.0634728 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Stream","0.0000026","Length: 16","7392"
"10:46:24.0634843 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\PublishExpandedPath","0.0000026","Length: 16","7392"
"10:46:24.0634959 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\DefinitionFlags","0.0000030","Length: 16","7392"
"10:46:24.0635078 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Attributes","0.0000021","Length: 16","7392"
"10:46:24.0635189 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\FolderTypeID","0.0000026","Length: 90","7392"
"10:46:24.0635309 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\InitFolderHandler","0.0000025","Length: 90","7392"
"10:46:24.0635483 AM","firefox.exe","7336","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}","0.0000022","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0635667 AM","firefox.exe","7336","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\PropertyBag","0.0000047","Desired Access: Read","7392"
"10:46:24.0635897 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}","0.0000022","","7392"
"10:46:24.0636243 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0636397 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001","0.0000098","Desired Access: Read","7392"
"10:46:24.0636614 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001\ProfileImagePath","0.0000034","Length: 12","7392"
"10:46:24.0636746 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001\ProfileImagePath","0.0000035","Type: REG_EXPAND_SZ, Length: 34, Data: C:\Users\diggles","7392"
"10:46:24.0636913 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001","0.0000017","","7392"
"10:46:24.0637105 AM","firefox.exe","7336","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000013","","7392"
"10:46:24.0639720 AM","firefox.exe","7336","CreateFile","C:\Users\diggles\AppData\LocalLow","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0640010 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Users\diggles\AppData\LocalLow","0.0000039","CreationTime: 2/16/2018 12:54:36 PM, LastAccessTime: 2/16/2018 12:59:41 PM, LastWriteTime: 2/16/2018 12:59:41 PM, ChangeTime: 3/20/2019 7:53:52 PM, FileAttributes: DNCI","7392"
"10:46:24.0640143 AM","firefox.exe","7336","CloseFile","C:\Users\diggles\AppData\LocalLow","0.0000055","","7392"
"10:46:24.0640557 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0640714 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\KnownFolderSettings","0.0000077","Desired Access: Query Value","7392"
"10:46:24.0641043 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000128","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0641299 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\KnownFolderSettings","0.0000055","Desired Access: Query Value","7392"
"10:46:24.0643100 AM","firefox.exe","7336","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000179","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0643548 AM","firefox.exe","7336","QueryNameInformationFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000042","Name: \Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","7392"
"10:46:24.0643744 AM","firefox.exe","7336","QueryNameInformationFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000030","Name: \Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","7392"
"10:46:24.0644473 AM","firefox.exe","7336","QueryNormalizedNameInformationFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000171","","7392"
"10:46:24.0644845 AM","firefox.exe","7336","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000068","","7392"
"10:46:24.0647763 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 5636","7392"
"10:46:24.0652785 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mswsock.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5636"
"10:46:24.0653199 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","5636"
"10:46:24.0653485 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mswsock.dll","0.0000055","","5636"
"10:46:24.0654496 AM","firefox.exe","7336","RegOpenKey","HKLM\SOFTWARE\Policies\Microsoft\WindowsStore","0.0000111","Desired Access: Read","5636"
"10:46:24.0654794 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000120","Desired Access: Read","5636"
"10:46:24.0656151 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000269","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5636"
"10:46:24.0656702 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5636"
"10:46:24.0656953 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000056","AllocationSize: 12,288, EndOfFile: 11,776, NumberOfLinks: 4, DeletePending: False, Directory: False","5636"
"10:46:24.0657384 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000034","SyncType: SyncTypeOther","5636"
"10:46:24.0658165 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 8652","7392"
"10:46:24.0660828 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 4940","7392"
"10:46:24.0660870 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mswsock.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5636"
"10:46:24.0661459 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000055","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","5636"
"10:46:24.0661647 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mswsock.dll","0.0000089","","5636"
"10:46:24.0665546 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mswsock.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5636"
"10:46:24.0666050 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","5636"
"10:46:24.0666208 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mswsock.dll","0.0000072","","5636"
"10:46:24.0669702 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mswsock.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5636"
"10:46:24.0670120 AM","firefox.exe","7336","RegOpenKey","HKLM","0.0000337","Desired Access: Maximum Allowed, Granted Access: Read","7392"
"10:46:24.0670308 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000060","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","5636"
"10:46:24.0670492 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mswsock.dll","0.0000085","","5636"
"10:46:24.0670679 AM","firefox.exe","7336","RegOpenKey","HKLM\System\Setup","0.0000073","Desired Access: Read","7392"
"10:46:24.0670952 AM","firefox.exe","7336","RegCloseKey","HKLM","0.0000017","","7392"
"10:46:24.0671110 AM","firefox.exe","7336","RegQueryValue","HKLM\SYSTEM\Setup\SystemSetupInProgress","0.0000051","Type: REG_DWORD, Length: 4, Data: 0","7392"
"10:46:24.0671294 AM","firefox.exe","7336","RegCloseKey","HKLM\SYSTEM\Setup","0.0000017","","7392"
"10:46:24.0674383 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mswsock.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5636"
"10:46:24.0674899 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","5636"
"10:46:24.0675074 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mswsock.dll","0.0000072","","5636"
"10:46:24.0675262 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\devobj.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0675684 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","7392"
"10:46:24.0675816 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\devobj.dll","0.0000064","","7392"
"10:46:24.0677617 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\devobj.dll","0.0000183","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0678274 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\devobj.dll","0.0000068","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:24.0678713 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mswsock.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5636"
"10:46:24.0678982 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\devobj.dll","0.0000039","SyncType: SyncTypeOther","7392"
"10:46:24.0679200 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","5636"
"10:46:24.0679366 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mswsock.dll","0.0000077","","5636"
"10:46:24.0679545 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\devobj.dll","0.0000056","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:24.0680471 AM","firefox.exe","7336","Load Image","C:\Windows\System32\devobj.dll","0.0000000","Image Base: 0x7ffb458a0000, Image Size: 0x27000","7392"
"10:46:24.0680834 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\devobj.dll","0.0000068","Name: \Windows\System32\devobj.dll","7392"
"10:46:24.0682186 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\devobj.dll","0.0000094","","7392"
"10:46:24.0683078 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wshqos.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5636"
"10:46:24.0683616 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wshqos.dll","0.0000068","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:11:07 PM, FileAttributes: A","5636"
"10:46:24.0683812 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wshqos.dll","0.0000077","","5636"
"10:46:24.0684670 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}","0.0000064","Desired Access: All Access","7392"
"10:46:24.0685037 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}\Properties","0.0000047","Desired Access: Query Value","7392"
"10:46:24.0685621 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wshqos.dll","0.0000213","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5636"
"10:46:24.0685660 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}","0.0000017","","7392"
"10:46:24.0686253 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}","0.0000042","Desired Access: Query Value","7392"
"10:46:24.0686329 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000052","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5636"
"10:46:24.0686483 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}\Properties","0.0000038","Desired Access: Query Value","7392"
"10:46:24.0686709 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}","0.0000013","","7392"
"10:46:24.0687409 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000034","SyncType: SyncTypeOther","5636"
"10:46:24.0687981 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\wshqos.dll","0.0000072","Name: \Windows\System32\wshqos.dll","5636"
"10:46:24.0688403 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wshqos.dll","0.0000090","","5636"
"10:46:24.0689094 AM","firefox.exe","7336","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000077","Desired Access: Read, Maximum Allowed","7392"
"10:46:24.0689214 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000187","Desired Access: Read","5636"
"10:46:24.0689337 AM","firefox.exe","7336","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000056","Type: REG_DWORD, Length: 4, Data: 3","7392"
"10:46:24.0689559 AM","firefox.exe","7336","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","7392"
"10:46:24.0689785 AM","firefox.exe","7336","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000043","Desired Access: Read","7392"
"10:46:24.0689960 AM","firefox.exe","7336","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000039","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","7392"
"10:46:24.0690161 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000060","Desired Access: Read","7392"
"10:46:24.0690336 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000064","Desired Access: Read","7392"
"10:46:24.0690507 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000029","Desired Access: Read","7392"
"10:46:24.0690686 AM","firefox.exe","7336","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000013","","7392"
"10:46:24.0690827 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000081","Length: 52","7392"
"10:46:24.0691036 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000012","","7392"
"10:46:24.0691108 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000260","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5636"
"10:46:24.0691279 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000047","Desired Access: Query Value, Maximum Allowed","7392"
"10:46:24.0691475 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000034","Length: 268","7392"
"10:46:24.0691650 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5636"
"10:46:24.0691885 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000055","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","5636"
"10:46:24.0692205 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000025","","7392"
"10:46:24.0692286 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000030","SyncType: SyncTypeOther","5636"
"10:46:24.0692542 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000055","Desired Access: Query Value, Maximum Allowed","7392"
"10:46:24.0692687 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\msvcp140.dll","0.0220527","Offset: 308,224, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8768"
"10:46:24.0692798 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000068","Type: REG_MULTI_SZ, Length: 292, Data: PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02, PCI\VEN_8086&DEV_5916&SUBSYS_10941025, PCI\VEN_8086&DEV_5916&CC_030000, PCI\VEN_8086&DEV_5916&CC_0300","7392"
"10:46:24.0693062 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000017","","7392"
"10:46:24.0693131 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000093","","5636"
"10:46:24.0693331 AM","firefox.exe","7336","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000056","Desired Access: Read","7392"
"10:46:24.0693515 AM","firefox.exe","7336","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000059","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","7392"
"10:46:24.0693702 AM","firefox.exe","7336","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000013","","7392"
"10:46:24.0696817 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wshqos.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5636"
"10:46:24.0697282 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000047","Desired Access: Query Value, Maximum Allowed","7392"
"10:46:24.0697350 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wshqos.dll","0.0000051","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:11:07 PM, FileAttributes: A","5636"
"10:46:24.0697521 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\Driver","0.0000072","Type: REG_SZ, Length: 88, Data: {4d36e968-e325-11ce-bfc1-08002be10318}\0001","7392"
"10:46:24.0697623 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wshqos.dll","0.0000141","","5636"
"10:46:24.0697837 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000017","","7392"
"10:46:24.0698157 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0698387 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000081","Desired Access: Query Value","7392"
"10:46:24.0698647 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000116","Desired Access: Query Value","7392"
"10:46:24.0698972 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\DriverVersion","0.0000102","Type: REG_SZ, Length: 28, Data: 23.20.16.5038","7392"
"10:46:24.0699266 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\DriverDate","0.0000090","Type: REG_SZ, Length: 20, Data: 4-18-2018","7392"
"10:46:24.0699573 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000022","","7392"
"10:46:24.0700158 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wshqos.dll","0.0000264","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5636"
"10:46:24.0700921 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000060","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5636"
"10:46:24.0701024 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}","0.0000064","Desired Access: All Access","7392"
"10:46:24.0701459 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}\Properties","0.0000051","Desired Access: Query Value","7392"
"10:46:24.0701664 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000038","SyncType: SyncTypeOther","5636"
"10:46:24.0702137 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}","0.0000022","","7392"
"10:46:24.0702244 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\wshqos.dll","0.0000077","Name: \Windows\System32\wshqos.dll","5636"
"10:46:24.0702675 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wshqos.dll","0.0000098","","5636"
"10:46:24.0702880 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}","0.0000060","Desired Access: Query Value","7392"
"10:46:24.0703196 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}\Properties","0.0000047","Desired Access: Query Value","7392"
"10:46:24.0703473 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}","0.0000017","","7392"
"10:46:24.0703682 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000145","Desired Access: Read","5636"
"10:46:24.0704386 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Enum\ROOT\BASICRENDER\0000","0.0000064","Desired Access: Query Value, Maximum Allowed","7392"
"10:46:24.0704719 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Enum\ROOT\BasicRender\0000\Driver","0.0000064","Type: REG_SZ, Length: 88, Data: {4d36e97d-e325-11ce-bfc1-08002be10318}\0039","7392"
"10:46:24.0705035 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Enum\ROOT\BasicRender\0000","0.0000025","","7392"
"10:46:24.0705346 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0705585 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000077","Desired Access: Query Value","7392"
"10:46:24.0705837 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000106","Desired Access: Query Value","7392"
"10:46:24.0705849 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000269","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5636"
"10:46:24.0706152 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039\MatchingDeviceId","0.0000052","Type: REG_SZ, Length: 34, Data: ROOT\BasicRender","7392"
"10:46:24.0706421 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5636"
"10:46:24.0706613 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0706673 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000060","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","5636"
"10:46:24.0706844 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000068","Desired Access: Query Value","7392"
"10:46:24.0707091 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000085","Desired Access: Query Value","7392"
"10:46:24.0707100 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000029","SyncType: SyncTypeOther","5636"
"10:46:24.0707368 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039\InstalledDisplayDrivers","0.0000043","Length: 144","7392"
"10:46:24.0707667 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000038","","7392"
"10:46:24.0707897 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000022","","7392"
"10:46:24.0707970 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000102","","5636"
"10:46:24.0708418 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000090","Desired Access: Query Value, Maximum Allowed","7392"
"10:46:24.0708785 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\Driver","0.0000055","Type: REG_SZ, Length: 88, Data: {4d36e968-e325-11ce-bfc1-08002be10318}\0001","7392"
"10:46:24.0709096 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000022","","7392"
"10:46:24.0709387 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0709608 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000069","Desired Access: Query Value","7392"
"10:46:24.0709843 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000098","Desired Access: Query Value","7392"
"10:46:24.0710129 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\MatchingDeviceId","0.0000107","Type: REG_SZ, Length: 76, Data: pci\ven_8086&dev_5916&subsys_10941025","7392"
"10:46:24.0710462 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000021","","7392"
"10:46:24.0711836 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0712057 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000069","Desired Access: Query Value","7392"
"10:46:24.0712284 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000081","Desired Access: Query Value","7392"
"10:46:24.0712510 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000064","Desired Access: Query Value","7392"
"10:46:24.0712561 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wshqos.dll","0.0000346","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5636"
"10:46:24.0712757 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\InstalledDisplayDrivers","0.0000043","Length: 144","7392"
"10:46:24.0712962 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\InstalledDisplayDrivers","0.0000047","Type: REG_MULTI_SZ, Length: 186, Data: igdumdim64, igd10iumd64, igd10iumd64, igd12umd64, igdumdim32, igd10iumd32, igd10iumd32, igd12umd32","7392"
"10:46:24.0713235 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000021","","7392"
"10:46:24.0713265 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wshqos.dll","0.0000060","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:11:07 PM, FileAttributes: A","5636"
"10:46:24.0713478 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wshqos.dll","0.0000098","","5636"
"10:46:24.0717122 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wshqos.dll","0.0000422","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5636"
"10:46:24.0718052 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5636"
"10:46:24.0718483 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\igd10iumd64.dll","0.0000303","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:24.0718803 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000034","SyncType: SyncTypeOther","5636"
"10:46:24.0719383 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\wshqos.dll","0.0000069","Name: \Windows\System32\wshqos.dll","5636"
"10:46:24.0719827 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wshqos.dll","0.0000081","","5636"
"10:46:24.0720604 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000153","Desired Access: Read","5636"
"10:46:24.0721845 AM","firefox.exe","7336","CreateFile","C:\Windows\System\igd10iumd64.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:24.0722383 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000277","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5636"
"10:46:24.0722959 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5636"
"10:46:24.0723202 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000055","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","5636"
"10:46:24.0723620 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000030","SyncType: SyncTypeOther","5636"
"10:46:24.0724482 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000090","","5636"
"10:46:24.0725318 AM","firefox.exe","7336","CreateFile","C:\Windows\igd10iumd64.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:24.0728262 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wshqos.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5636"
"10:46:24.0728356 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\igd10iumd64.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:24.0728783 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wshqos.dll","0.0000051","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:11:07 PM, FileAttributes: A","5636"
"10:46:24.0728966 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wshqos.dll","0.0000081","","5636"
"10:46:24.0730677 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wshqos.dll","0.0000205","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5636"
"10:46:24.0731266 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\igd10iumd64.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:24.0731330 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5636"
"10:46:24.0731983 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000038","SyncType: SyncTypeOther","5636"
"10:46:24.0732559 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\wshqos.dll","0.0000068","Name: \Windows\System32\wshqos.dll","5636"
"10:46:24.0732973 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wshqos.dll","0.0000081","","5636"
"10:46:24.0733732 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000154","Desired Access: Read","5636"
"10:46:24.0734556 AM","firefox.exe","7336","CreateFile","C:\Program Files (x86)\Intel\iCLS Client\igd10iumd64.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:24.0735396 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000235","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5636"
"10:46:24.0735921 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5636"
"10:46:24.0736164 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000073","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","5636"
"10:46:24.0736608 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000034","SyncType: SyncTypeOther","5636"
"10:46:24.0737414 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000077","","5636"
"10:46:24.0737645 AM","firefox.exe","7336","CreateFile","C:\Program Files\Intel\iCLS Client\igd10iumd64.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:24.0738507 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0738737 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000081","Desired Access: All Access","5636"
"10:46:24.0738976 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000759","Desired Access: All Access","5636"
"10:46:24.0739266 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000051","Information: Owner","5636"
"10:46:24.0739599 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000055","Information: Owner","5636"
"10:46:24.0740025 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0740277 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000073","Desired Access: Read","5636"
"10:46:24.0740503 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000098","Desired Access: Read","5636"
"10:46:24.0740653 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\igd10iumd64.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:24.0740811 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000055","Length: 16","5636"
"10:46:24.0741011 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000038","Type: REG_SZ, Length: 8, Data: 2.0","5636"
"10:46:24.0741250 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000038","Length: 44","5636"
"10:46:24.0741416 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000039","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","5636"
"10:46:24.0742342 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0742479 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000064","Desired Access: Maximum Allowed, Granted Access: Read","5636"
"10:46:24.0742658 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","5636"
"10:46:24.0743204 AM","firefox.exe","7336","CreateFile","C:\Windows\igd10iumd64.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:24.0743221 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000030","Type: REG_DWORD, Length: 4, Data: 8","5636"
"10:46:24.0743379 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0743499 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000034","Desired Access: Read","5636"
"10:46:24.0743639 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000026","Type: REG_DWORD, Length: 4, Data: 1015","5636"
"10:46:24.0743755 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000047","Type: REG_DWORD, Length: 4, Data: 14","5636"
"10:46:24.0743938 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000026","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0744139 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000072","Desired Access: Maximum Allowed, Granted Access: Read","5636"
"10:46:24.0744450 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0744599 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000086","Desired Access: Read","5636"
"10:46:24.0744851 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000043","Length: 144","5636"
"10:46:24.0745030 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0745299 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000021","","5636"
"10:46:24.0745474 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0745636 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000056","Desired Access: Read","5636"
"10:46:24.0745850 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0746012 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0746221 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wbem\igd10iumd64.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:24.0746263 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","5636"
"10:46:24.0746434 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0746605 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000051","Desired Access: Read","5636"
"10:46:24.0746805 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0746967 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0747172 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000017","","5636"
"10:46:24.0747445 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0747607 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000047","Desired Access: Read","5636"
"10:46:24.0747804 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0747966 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0748192 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","","5636"
"10:46:24.0748354 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0748508 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000051","Desired Access: Read","5636"
"10:46:24.0748704 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0748862 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0749054 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000013","","5636"
"10:46:24.0749207 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0749365 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000047","Desired Access: Read","5636"
"10:46:24.0749429 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\WindowsPowerShell\v1.0\igd10iumd64.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:24.0749566 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0749728 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0749920 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000013","","5636"
"10:46:24.0750078 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0750231 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000052","Desired Access: Read","5636"
"10:46:24.0750432 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0750594 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0750790 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000017","","5636"
"10:46:24.0750944 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0751102 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000051","Desired Access: Read","5636"
"10:46:24.0751298 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0751456 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0751588 AM","firefox.exe","7336","CreateFile","C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\igd10iumd64.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:24.0751644 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000017","","5636"
"10:46:24.0751802 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0751959 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000047","Desired Access: Read","5636"
"10:46:24.0752151 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000035","Length: 144","5636"
"10:46:24.0752305 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0752497 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","","5636"
"10:46:24.0752655 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0752813 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000085","Desired Access: Read","5636"
"10:46:24.0753039 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0753197 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0753389 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000013","","5636"
"10:46:24.0753547 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0753611 AM","firefox.exe","7336","CreateFile","C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\igd10iumd64.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:24.0753704 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000047","Desired Access: Read","5636"
"10:46:24.0753901 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0754054 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0754251 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000012","","5636"
"10:46:24.0754404 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0754558 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000047","Desired Access: Read","5636"
"10:46:24.0754754 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0754912 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0755104 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000013","","5636"
"10:46:24.0755258 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0755420 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000047","Desired Access: Read","5636"
"10:46:24.0755543 AM","firefox.exe","7336","CreateFile","C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\igd10iumd64.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:24.0755616 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000038","Length: 144","5636"
"10:46:24.0755782 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0755974 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000013","","5636"
"10:46:24.0756128 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0756282 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000046","Desired Access: Read","5636"
"10:46:24.0756474 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0756644 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0756832 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000017","","5636"
"10:46:24.0756986 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","","5636"
"10:46:24.0757280 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000026","","5636"
"10:46:24.0757463 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","","5636"
"10:46:24.0757502 AM","firefox.exe","7336","CreateFile","C:\Program Files\Intel\Intel(R) Management Engine Components\IPT\igd10iumd64.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:24.0757916 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0758082 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000073","Desired Access: All Access","5636"
"10:46:24.0758300 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000601","Desired Access: All Access","5636"
"10:46:24.0758607 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000051","Information: Owner","5636"
"10:46:24.0758837 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000026","Information: Owner","5636"
"10:46:24.0759132 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0759311 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000098","Desired Access: Read","5636"
"10:46:24.0759546 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000072","Desired Access: Read","5636"
"10:46:24.0759784 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000039","Length: 16","5636"
"10:46:24.0759955 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000039","Type: REG_SZ, Length: 8, Data: 2.0","5636"
"10:46:24.0760139 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000038","Length: 44","5636"
"10:46:24.0760301 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000038","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","5636"
"10:46:24.0760501 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0760668 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000076","Desired Access: Maximum Allowed, Granted Access: Read","5636"
"10:46:24.0760787 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\OpenSSH\igd10iumd64.dll","0.0000525","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:24.0760898 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000043","Type: REG_DWORD, Length: 4, Data: 8","5636"
"10:46:24.0761619 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","5636"
"10:46:24.0761807 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0761965 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000051","Desired Access: Read","5636"
"10:46:24.0762161 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000038","Type: REG_DWORD, Length: 4, Data: 1015","5636"
"10:46:24.0762327 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000035","Type: REG_DWORD, Length: 4, Data: 14","5636"
"10:46:24.0762494 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0762647 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000060","Desired Access: Maximum Allowed, Granted Access: Read","5636"
"10:46:24.0762865 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0763019 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000072","Desired Access: Read","5636"
"10:46:24.0763249 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0763415 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0763637 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000017","","5636"
"10:46:24.0763804 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0763974 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000056","Desired Access: Read","5636"
"10:46:24.0764192 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000038","Length: 144","5636"
"10:46:24.0764363 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0764427 AM","firefox.exe","7336","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\WindowsApps\igd10iumd64.dll","0.0000652","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","7392"
"10:46:24.0764576 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","5636"
"10:46:24.0764742 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0764909 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000051","Desired Access: Read","5636"
"10:46:24.0765109 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0765271 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0765480 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000013","","5636"
"10:46:24.0765626 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000072","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0765638 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000026","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0765839 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000051","Desired Access: Read","5636"
"10:46:24.0765988 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000090","Desired Access: Query Value","7392"
"10:46:24.0766044 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000042","Length: 144","5636"
"10:46:24.0766219 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0766300 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000098","Desired Access: Query Value","7392"
"10:46:24.0766419 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000021","","5636"
"10:46:24.0766581 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0766586 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000089","Desired Access: Query Value","7392"
"10:46:24.0766752 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000055","Desired Access: Read","5636"
"10:46:24.0766901 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\UserModeDriverName","0.0000056","Length: 12","7392"
"10:46:24.0766961 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000038","Length: 144","5636"
"10:46:24.0767132 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0767196 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000025","","7392"
"10:46:24.0767324 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000017","","5636"
"10:46:24.0767430 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0767486 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0767652 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000051","Desired Access: Read","5636"
"10:46:24.0767656 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000073","Desired Access: Query Value","7392"
"10:46:24.0767857 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0767900 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000068","Desired Access: Query Value","7392"
"10:46:24.0768019 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0768126 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000064","Desired Access: Query Value","7392"
"10:46:24.0768215 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000022","","5636"
"10:46:24.0768403 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\UserModeDriverName","0.0000047","Length: 144","7392"
"10:46:24.0768416 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0768587 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000051","Desired Access: Read","5636"
"10:46:24.0768634 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\UserModeDriverName","0.0000055","Type: REG_MULTI_SZ, Length: 782, Data: C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igdumdim64.dll, C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll, C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll, C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd12umd64.dll","7392"
"10:46:24.0768796 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000038","Length: 144","5636"
"10:46:24.0768885 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000017","","7392"
"10:46:24.0768966 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000052","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0769094 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0769180 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000017","","5636"
"10:46:24.0769239 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000047","Desired Access: Query Value","7392"
"10:46:24.0769346 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0769389 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000042","Desired Access: Query Value","7392"
"10:46:24.0769521 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000055","Desired Access: Read","5636"
"10:46:24.0769530 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000051","Desired Access: Query Value","7392"
"10:46:24.0769709 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\UserModeDriverNameWow","0.0000042","Length: 12","7392"
"10:46:24.0769739 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000042","Length: 144","5636"
"10:46:24.0769875 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000017","","7392"
"10:46:24.0769918 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0770003 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0770114 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000060","","5636"
"10:46:24.0770135 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000056","Desired Access: Query Value","7392"
"10:46:24.0770289 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000043","Desired Access: Query Value","7392"
"10:46:24.0770327 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0770430 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000038","Desired Access: Query Value","7392"
"10:46:24.0770494 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000055","Desired Access: Read","5636"
"10:46:24.0770592 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\UserModeDriverNameWow","0.0000034","Length: 144","7392"
"10:46:24.0770703 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000047","Length: 144","5636"
"10:46:24.0770733 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\UserModeDriverNameWow","0.0000047","Type: REG_MULTI_SZ, Length: 782, Data: C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igdumdim32.dll, C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd32.dll, C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd32.dll, C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd12umd32.dll","7392"
"10:46:24.0770895 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0770908 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000017","","7392"
"10:46:24.0771100 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","","5636"
"10:46:24.0771258 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0771415 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000047","Desired Access: Read","5636"
"10:46:24.0771607 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000035","Length: 144","5636"
"10:46:24.0771765 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0771953 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000013","","5636"
"10:46:24.0772107 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0772264 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000047","Desired Access: Read","5636"
"10:46:24.0772456 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000035","Length: 144","5636"
"10:46:24.0772619 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0772806 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000017","","5636"
"10:46:24.0772964 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0773122 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000047","Desired Access: Read","5636"
"10:46:24.0773318 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0773472 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0773677 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000013","","5636"
"10:46:24.0773707 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0773835 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0774001 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000051","Desired Access: Read","5636"
"10:46:24.0774027 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000047","CreationTime: 5/9/2018 4:39:34 AM, LastAccessTime: 3/20/2019 7:14:15 PM, LastWriteTime: 5/9/2018 4:39:34 AM, ChangeTime: 3/20/2019 7:51:25 PM, FileAttributes: A","7392"
"10:46:24.0774163 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000064","","7392"
"10:46:24.0774202 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0774368 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000055","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0774577 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000017","","5636"
"10:46:24.0775059 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0775217 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000055","Desired Access: Read","5636"
"10:46:24.0775418 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0775575 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000035","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0775755 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000179","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0775767 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000017","","5636"
"10:46:24.0775921 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000055","","5636"
"10:46:24.0776250 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000025","","5636"
"10:46:24.0776318 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:24.0776424 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000018","","5636"
"10:46:24.0776668 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000017","SyncType: SyncTypeOther","7392"
"10:46:24.0776766 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0776936 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000060","Desired Access: All Access","5636"
"10:46:24.0777133 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000584","Desired Access: All Access","5636"
"10:46:24.0777423 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000055","Information: Owner","5636"
"10:46:24.0777653 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000022","Information: Owner","5636"
"10:46:24.0777905 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0778076 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000042","Desired Access: Read","5636"
"10:46:24.0778229 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000073","Desired Access: Read","5636"
"10:46:24.0778472 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000039","Length: 16","5636"
"10:46:24.0778647 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000043","Type: REG_SZ, Length: 8, Data: 2.0","5636"
"10:46:24.0778835 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000039","Length: 44","5636"
"10:46:24.0779002 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000038","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","5636"
"10:46:24.0779223 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0779398 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000073","Desired Access: Maximum Allowed, Granted Access: Read","5636"
"10:46:24.0779548 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000085","Name: \Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","7392"
"10:46:24.0779624 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000043","Type: REG_DWORD, Length: 4, Data: 8","5636"
"10:46:24.0780038 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000094","","7392"
"10:46:24.0780141 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000038","Type: REG_DWORD, Length: 4, Data: 8","5636"
"10:46:24.0780341 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0780512 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000047","Desired Access: Read","5636"
"10:46:24.0780712 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000039","Type: REG_DWORD, Length: 4, Data: 1015","5636"
"10:46:24.0780883 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000034","Type: REG_DWORD, Length: 4, Data: 14","5636"
"10:46:24.0781096 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000018","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0781263 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000064","Desired Access: Maximum Allowed, Granted Access: Read","5636"
"10:46:24.0781523 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0781694 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000051","Desired Access: Read","5636"
"10:46:24.0781907 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000039","Length: 144","5636"
"10:46:24.0782082 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000073","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0782330 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000017","","5636"
"10:46:24.0782487 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0782620 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000042","Desired Access: Read","5636"
"10:46:24.0782786 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000030","Length: 144","5636"
"10:46:24.0782914 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0783072 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000013","","5636"
"10:46:24.0783200 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0783341 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000034","Desired Access: Read","5636"
"10:46:24.0783482 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000029","Length: 144","5636"
"10:46:24.0783631 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0783840 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000017","","5636"
"10:46:24.0784032 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0784211 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000056","Desired Access: Read","5636"
"10:46:24.0784433 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000038","Length: 144","5636"
"10:46:24.0784446 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0254178","Offset: 3,467,264, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.0784595 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0784791 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000022","","5636"
"10:46:24.0784954 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0785099 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000038","Desired Access: Read","5636"
"10:46:24.0785248 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000026","Length: 144","5636"
"10:46:24.0785359 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0785495 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000013","","5636"
"10:46:24.0785568 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000320","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0785615 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0785726 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000051","Desired Access: Read","5636"
"10:46:24.0785879 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000035","Length: 144","5636"
"10:46:24.0785999 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0786037 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000051","CreationTime: 5/9/2018 4:39:34 AM, LastAccessTime: 3/20/2019 7:14:15 PM, LastWriteTime: 5/9/2018 4:39:34 AM, ChangeTime: 3/20/2019 7:51:25 PM, FileAttributes: A","7392"
"10:46:24.0786135 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000013","","5636"
"10:46:24.0786216 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000077","","7392"
"10:46:24.0786246 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0786353 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000034","Desired Access: Read","5636"
"10:46:24.0786490 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000025","Length: 144","5636"
"10:46:24.0786600 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0786728 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000009","","5636"
"10:46:24.0786831 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0786938 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000029","Desired Access: Read","5636"
"10:46:24.0787070 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000025","Length: 144","5636"
"10:46:24.0787176 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0787309 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000008","","5636"
"10:46:24.0787411 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0787514 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000034","Desired Access: Read","5636"
"10:46:24.0787646 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000025","Length: 144","5636"
"10:46:24.0787752 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0787885 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000008","","5636"
"10:46:24.0787991 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0788068 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000231","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0788098 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000034","Desired Access: Read","5636"
"10:46:24.0788226 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000026","Length: 144","5636"
"10:46:24.0788337 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0788474 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000012","","5636"
"10:46:24.0788580 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0788653 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:24.0788687 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000038","Desired Access: Read","5636"
"10:46:24.0788823 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000026","Length: 144","5636"
"10:46:24.0788934 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0789071 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000013","","5636"
"10:46:24.0789139 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000030","SyncType: SyncTypeOther","7392"
"10:46:24.0789182 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0789288 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000035","Desired Access: Read","5636"
"10:46:24.0789429 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000022","Length: 144","5636"
"10:46:24.0789536 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0789664 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000013","","5636"
"10:46:24.0789771 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0789873 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000034","Desired Access: Read","5636"
"10:46:24.0790005 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000026","Length: 144","5636"
"10:46:24.0790112 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0790240 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000013","","5636"
"10:46:24.0790347 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0790449 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000030","Desired Access: Read","5636"
"10:46:24.0790577 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000026","Length: 144","5636"
"10:46:24.0790684 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0790812 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000012","","5636"
"10:46:24.0790914 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","","5636"
"10:46:24.0791153 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","","5636"
"10:46:24.0791277 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000008","","5636"
"10:46:24.0791588 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0791699 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000051","Desired Access: All Access","5636"
"10:46:24.0791840 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000401","Desired Access: All Access","5636"
"10:46:24.0792036 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000043","Information: Owner","5636"
"10:46:24.0792190 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000017","Information: Owner","5636"
"10:46:24.0792399 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0792523 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000042","Desired Access: Read","5636"
"10:46:24.0792582 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000145","Name: \Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","7392"
"10:46:24.0792651 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000239","Desired Access: Read","5636"
"10:46:24.0793158 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000060","Length: 16","5636"
"10:46:24.0793342 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000119","","7392"
"10:46:24.0793393 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000051","Type: REG_SZ, Length: 8, Data: 2.0","5636"
"10:46:24.0793611 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000042","Length: 44","5636"
"10:46:24.0793777 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000043","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","5636"
"10:46:24.0794033 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000021","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0794246 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000090","Desired Access: Maximum Allowed, Granted Access: Read","5636"
"10:46:24.0794532 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000039","Type: REG_DWORD, Length: 4, Data: 8","5636"
"10:46:24.0795113 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000038","Type: REG_DWORD, Length: 4, Data: 8","5636"
"10:46:24.0795317 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000022","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0795505 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000051","Desired Access: Read","5636"
"10:46:24.0795599 AM","firefox.exe","7336","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000094","Desired Access: Read, Maximum Allowed","7392"
"10:46:24.0795706 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000042","Type: REG_DWORD, Length: 4, Data: 1015","5636"
"10:46:24.0795885 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000034","Type: REG_DWORD, Length: 4, Data: 14","5636"
"10:46:24.0795957 AM","firefox.exe","7336","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000060","Type: REG_DWORD, Length: 4, Data: 3","7392"
"10:46:24.0796060 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0797122 AM","firefox.exe","7336","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000039","","7392"
"10:46:24.0797169 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000073","Desired Access: Maximum Allowed, Granted Access: Read","5636"
"10:46:24.0797429 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0797553 AM","firefox.exe","7336","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000073","Desired Access: Read","7392"
"10:46:24.0797613 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000060","Desired Access: Read","5636"
"10:46:24.0797847 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000043","Length: 144","5636"
"10:46:24.0797856 AM","firefox.exe","7336","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000051","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","7392"
"10:46:24.0798031 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0798180 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000086","Desired Access: Read","7392"
"10:46:24.0798295 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000018","","5636"
"10:46:24.0798466 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000081","Desired Access: Read","7392"
"10:46:24.0798470 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0798650 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000059","Desired Access: Read","5636"
"10:46:24.0798726 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000047","Desired Access: Read","7392"
"10:46:24.0798867 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0799004 AM","firefox.exe","7336","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","7392"
"10:46:24.0799038 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0799209 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000102","Length: 52","7392"
"10:46:24.0799383 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000030","","5636"
"10:46:24.0799507 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000017","","7392"
"10:46:24.0799627 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000025","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0799840 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000073","Desired Access: Read","5636"
"10:46:24.0799895 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000069","Desired Access: Query Value, Maximum Allowed","7392"
"10:46:24.0800109 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000047","Length: 144","5636"
"10:46:24.0800194 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000047","Length: 268","7392"
"10:46:24.0800305 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0800531 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000039","","7392"
"10:46:24.0800612 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000026","","5636"
"10:46:24.0800826 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0800898 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000051","Desired Access: Query Value, Maximum Allowed","7392"
"10:46:24.0801005 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000060","Desired Access: Read","5636"
"10:46:24.0801137 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000043","Type: REG_MULTI_SZ, Length: 292, Data: PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02, PCI\VEN_8086&DEV_5916&SUBSYS_10941025, PCI\VEN_8086&DEV_5916&CC_030000, PCI\VEN_8086&DEV_5916&CC_0300","7392"
"10:46:24.0801235 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000039","Length: 144","5636"
"10:46:24.0801346 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000017","","7392"
"10:46:24.0801406 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000055","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0801585 AM","firefox.exe","7336","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000064","Desired Access: Read","7392"
"10:46:24.0801730 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000021","","5636"
"10:46:24.0801850 AM","firefox.exe","7336","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000047","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","7392"
"10:46:24.0801931 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0802101 AM","firefox.exe","7336","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","7392"
"10:46:24.0802114 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000064","Desired Access: Read","5636"
"10:46:24.0802345 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000038","Length: 144","5636"
"10:46:24.0802524 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0802630 AM","firefox.exe","7336","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000064","Desired Access: Read, Maximum Allowed","7392"
"10:46:24.0802750 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000017","","5636"
"10:46:24.0802895 AM","firefox.exe","7336","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000060","Type: REG_DWORD, Length: 4, Data: 3","7392"
"10:46:24.0802925 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000072","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0803155 AM","firefox.exe","7336","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","7392"
"10:46:24.0803185 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000064","Desired Access: Read","5636"
"10:46:24.0803351 AM","firefox.exe","7336","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000043","Desired Access: Read","7392"
"10:46:24.0803420 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000042","Length: 144","5636"
"10:46:24.0803535 AM","firefox.exe","7336","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video1","0.0000038","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0001","7392"
"10:46:24.0803595 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0803735 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0001","0.0000060","Desired Access: Read","7392"
"10:46:24.0803812 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000022","","5636"
"10:46:24.0803910 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0001","0.0000069","Desired Access: Read","7392"
"10:46:24.0803987 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0804094 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000030","Desired Access: Read","7392"
"10:46:24.0804158 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000051","Desired Access: Read","5636"
"10:46:24.0804269 AM","firefox.exe","7336","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000013","","7392"
"10:46:24.0804367 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000111","Length: 144","5636"
"10:46:24.0804401 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000115","Length: 52","7392"
"10:46:24.0804636 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0804704 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000017","","7392"
"10:46:24.0804862 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000021","","5636"
"10:46:24.0805020 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000051","Desired Access: Query Value, Maximum Allowed","7392"
"10:46:24.0805037 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0805225 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000059","Desired Access: Read","5636"
"10:46:24.0805293 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000038","Length: 268","7392"
"10:46:24.0805446 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000039","Length: 144","5636"
"10:46:24.0805536 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000017","","7392"
"10:46:24.0805617 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0805822 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000021","","5636"
"10:46:24.0805835 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000051","Desired Access: Query Value, Maximum Allowed","7392"
"10:46:24.0806001 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0806082 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000039","Type: REG_MULTI_SZ, Length: 292, Data: PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02, PCI\VEN_8086&DEV_5916&SUBSYS_10941025, PCI\VEN_8086&DEV_5916&CC_030000, PCI\VEN_8086&DEV_5916&CC_0300","7392"
"10:46:24.0806176 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000051","Desired Access: Read","5636"
"10:46:24.0806334 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000017","","7392"
"10:46:24.0806381 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0806551 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0806573 AM","firefox.exe","7336","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000055","Desired Access: Read","7392"
"10:46:24.0806761 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","","5636"
"10:46:24.0806807 AM","firefox.exe","7336","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video1","0.0000043","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0001","7392"
"10:46:24.0806927 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0807034 AM","firefox.exe","7336","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","7392"
"10:46:24.0807093 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000052","Desired Access: Read","5636"
"10:46:24.0807302 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000035","Length: 144","5636"
"10:46:24.0807319 AM","firefox.exe","7336","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000052","Desired Access: Read, Maximum Allowed","7392"
"10:46:24.0807473 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0807554 AM","firefox.exe","7336","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000043","Type: REG_DWORD, Length: 4, Data: 3","7392"
"10:46:24.0807678 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000017","","5636"
"10:46:24.0807789 AM","firefox.exe","7336","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","7392"
"10:46:24.0807844 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000030","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0808028 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000072","Desired Access: Read","5636"
"10:46:24.0808070 AM","firefox.exe","7336","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000052","Desired Access: Read","7392"
"10:46:24.0808267 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000038","Length: 144","5636"
"10:46:24.0808318 AM","firefox.exe","7336","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video2","0.0000038","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0002","7392"
"10:46:24.0808437 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0808599 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0002","0.0000064","Desired Access: Read","7392"
"10:46:24.0808638 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000017","","5636"
"10:46:24.0808809 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0808847 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0002","0.0000064","Desired Access: Read","7392"
"10:46:24.0808988 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000051","Desired Access: Read","5636"
"10:46:24.0809090 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000043","Desired Access: Read","7392"
"10:46:24.0809188 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000039","Length: 144","5636"
"10:46:24.0809333 AM","firefox.exe","7336","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","7392"
"10:46:24.0809355 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0809525 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000103","Length: 52","7392"
"10:46:24.0809547 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000017","","5636"
"10:46:24.0809713 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0809811 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000017","","7392"
"10:46:24.0809879 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000047","Desired Access: Read","5636"
"10:46:24.0810084 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0810110 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000051","Desired Access: Query Value, Maximum Allowed","7392"
"10:46:24.0810255 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0810362 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000038","Length: 268","7392"
"10:46:24.0810451 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000017","","5636"
"10:46:24.0810596 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000051","","7392"
"10:46:24.0810613 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000026","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0810801 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000051","Desired Access: Read","5636"
"10:46:24.0810925 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000047","Desired Access: Query Value, Maximum Allowed","7392"
"10:46:24.0811006 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0811168 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000051","Type: REG_MULTI_SZ, Length: 292, Data: PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02, PCI\VEN_8086&DEV_5916&SUBSYS_10941025, PCI\VEN_8086&DEV_5916&CC_030000, PCI\VEN_8086&DEV_5916&CC_0300","7392"
"10:46:24.0811206 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0811407 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000043","","5636"
"10:46:24.0811420 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000025","","7392"
"10:46:24.0811603 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","","5636"
"10:46:24.0811663 AM","firefox.exe","7336","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000055","Desired Access: Read","7392"
"10:46:24.0811906 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000026","","5636"
"10:46:24.0811910 AM","firefox.exe","7336","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video2","0.0000047","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0002","7392"
"10:46:24.0812119 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000018","","5636"
"10:46:24.0812141 AM","firefox.exe","7336","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","7392"
"10:46:24.0812397 AM","firefox.exe","7336","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000047","Desired Access: Read, Maximum Allowed","7392"
"10:46:24.0812619 AM","firefox.exe","7336","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000038","Type: REG_DWORD, Length: 4, Data: 3","7392"
"10:46:24.0812755 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0812858 AM","firefox.exe","7336","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","7392"
"10:46:24.0812930 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000060","Desired Access: All Access","5636"
"10:46:24.0813118 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000657","Desired Access: All Access","5636"
"10:46:24.0813361 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0813455 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000077","Information: Owner","5636"
"10:46:24.0813562 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Cisco Systems\VPN Client","0.0000081","Desired Access: Query Value","7392"
"10:46:24.0813707 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000025","Information: Owner","5636"
"10:46:24.0813984 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0814155 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000055","Desired Access: Read","5636"
"10:46:24.0814338 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000077","Desired Access: Read","5636"
"10:46:24.0814581 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000043","Length: 16","5636"
"10:46:24.0814752 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000038","Type: REG_SZ, Length: 8, Data: 2.0","5636"
"10:46:24.0814931 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000039","Length: 44","5636"
"10:46:24.0815093 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000039","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","5636"
"10:46:24.0815315 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0815486 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000072","Desired Access: Maximum Allowed, Granted Access: Read","5636"
"10:46:24.0815708 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000042","Type: REG_DWORD, Length: 4, Data: 8","5636"
"10:46:24.0816318 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000038","Type: REG_DWORD, Length: 4, Data: 8","5636"
"10:46:24.0816514 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0816672 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000051","Desired Access: Read","5636"
"10:46:24.0816868 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000043","Type: REG_DWORD, Length: 4, Data: 1015","5636"
"10:46:24.0817043 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000034","Type: REG_DWORD, Length: 4, Data: 14","5636"
"10:46:24.0817214 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0817376 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000073","Desired Access: Maximum Allowed, Granted Access: Read","5636"
"10:46:24.0817615 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0817786 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000064","Desired Access: Read","5636"
"10:46:24.0818020 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000043","Length: 144","5636"
"10:46:24.0818208 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0818468 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000022","","5636"
"10:46:24.0818652 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0818831 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000064","Desired Access: Read","5636"
"10:46:24.0819066 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000038","Length: 144","5636"
"10:46:24.0819249 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0819488 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","5636"
"10:46:24.0819667 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0819846 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000060","Desired Access: Read","5636"
"10:46:24.0820081 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000038","Length: 144","5636"
"10:46:24.0820260 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0820269 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\DWrite.dll","0.0000516","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0820486 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000017","","5636"
"10:46:24.0820644 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0820806 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000056","Desired Access: Read","5636"
"10:46:24.0821020 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0821135 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000068","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7392"
"10:46:24.0821190 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0821348 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\DWrite.dll","0.0000094","","7392"
"10:46:24.0821417 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000021","","5636"
"10:46:24.0821596 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000034","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0821749 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000039","Desired Access: Read","5636"
"10:46:24.0821894 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000030","Length: 144","5636"
"10:46:24.0822010 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000029","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0822155 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000012","","5636"
"10:46:24.0822266 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0822372 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000034","Desired Access: Read","5636"
"10:46:24.0822505 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000025","Length: 144","5636"
"10:46:24.0822615 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0822752 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000013","","5636"
"10:46:24.0822863 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0822970 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000047","Desired Access: Read","5636"
"10:46:24.0823115 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000025","Length: 144","5636"
"10:46:24.0823226 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0823354 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000012","","5636"
"10:46:24.0823460 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0823567 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000034","Desired Access: Read","5636"
"10:46:24.0823703 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000026","Length: 144","5636"
"10:46:24.0823810 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\DWrite.dll","0.0000277","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0823853 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0823989 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000013","","5636"
"10:46:24.0824096 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0824198 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000035","Desired Access: Read","5636"
"10:46:24.0824335 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000026","Length: 144","5636"
"10:46:24.0824446 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0824574 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000013","","5636"
"10:46:24.0824634 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000072","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:24.0824698 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0824881 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000056","Desired Access: Read","5636"
"10:46:24.0825103 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000043","Length: 144","5636"
"10:46:24.0825197 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000034","SyncType: SyncTypeOther","7392"
"10:46:24.0825278 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0825483 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000017","","5636"
"10:46:24.0825653 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0825705 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\DWrite.dll","0.0000051","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:24.0825820 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000051","Desired Access: Read","5636"
"10:46:24.0826025 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0826182 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0826374 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000017","","5636"
"10:46:24.0826537 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0826711 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000052","Desired Access: Read","5636"
"10:46:24.0826844 AM","firefox.exe","7336","Load Image","C:\Windows\System32\DWrite.dll","0.0000000","Image Base: 0x7ffb33970000, Image Size: 0x31c000","7392"
"10:46:24.0826916 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0827074 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0827270 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000017","","5636"
"10:46:24.0827300 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\DWrite.dll","0.0000077","Name: \Windows\System32\DWrite.dll","7392"
"10:46:24.0827428 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0827595 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000047","Desired Access: Read","5636"
"10:46:24.0827791 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000030","Length: 144","5636"
"10:46:24.0827970 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000056","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0828243 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000017","","5636"
"10:46:24.0828410 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0828567 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000060","Desired Access: Read","5636"
"10:46:24.0828789 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0828947 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0829135 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000017","","5636"
"10:46:24.0829293 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","","5636"
"10:46:24.0829574 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000026","","5636"
"10:46:24.0829749 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","","5636"
"10:46:24.0830155 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0830249 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\DWrite.dll","0.0000098","","7392"
"10:46:24.0830325 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000073","Desired Access: All Access","5636"
"10:46:24.0830543 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000563","Desired Access: All Access","5636"
"10:46:24.0830825 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000051","Information: Owner","5636"
"10:46:24.0831042 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000021","Information: Owner","5636"
"10:46:24.0831268 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0831443 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000056","Desired Access: Read","5636"
"10:46:24.0831635 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000068","Desired Access: Read","5636"
"10:46:24.0831861 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000043","Length: 16","5636"
"10:46:24.0832041 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000038","Type: REG_SZ, Length: 8, Data: 2.0","5636"
"10:46:24.0832228 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000039","Length: 44","5636"
"10:46:24.0832390 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000039","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","5636"
"10:46:24.0832459 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0832608 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000021","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0832689 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\DirectWrite","0.0000192","Desired Access: Query Value","7392"
"10:46:24.0832774 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000133","Desired Access: Maximum Allowed, Granted Access: Read","5636"
"10:46:24.0833069 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000038","Type: REG_DWORD, Length: 4, Data: 8","5636"
"10:46:24.0833683 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","5636"
"10:46:24.0833875 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0834046 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000047","Desired Access: Read","5636"
"10:46:24.0834217 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0834242 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000043","Type: REG_DWORD, Length: 4, Data: 1015","5636"
"10:46:24.0834413 AM","firefox.exe","7336","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\FontCache\Parameters","0.0000060","Desired Access: Read","7392"
"10:46:24.0834421 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000043","Type: REG_DWORD, Length: 4, Data: 14","5636"
"10:46:24.0834601 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000034","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0834630 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\FontCache\Parameters","0.0000077","Desired Access: Read","7392"
"10:46:24.0834784 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000068","Desired Access: Maximum Allowed, Granted Access: Read","5636"
"10:46:24.0834891 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\FontCache\Parameters\ClientCacheSize","0.0000047","Type: REG_DWORD, Length: 4, Data: 4194304","7392"
"10:46:24.0835014 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0835100 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\FontCache\Parameters","0.0000017","","7392"
"10:46:24.0835181 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000055","Desired Access: Read","5636"
"10:46:24.0835394 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000039","Length: 144","5636"
"10:46:24.0835561 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0835744 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0835791 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000021","","5636"
"10:46:24.0835898 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Microsoft\Avalon.Graphics","0.0000132","Desired Access: Read","7392"
"10:46:24.0835962 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0836132 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000060","Desired Access: Read","5636"
"10:46:24.0836158 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0836290 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\Avalon.Graphics","0.0000051","Desired Access: Read","7392"
"10:46:24.0836350 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0836512 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0836713 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","5636"
"10:46:24.0836905 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0837015 AM","firefox.exe","7336","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000099","Desired Access: Read, Maximum Allowed","7392"
"10:46:24.0837062 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000064","Desired Access: Read","5636"
"10:46:24.0837306 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000042","Length: 144","5636"
"10:46:24.0837314 AM","firefox.exe","7336","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000047","Type: REG_DWORD, Length: 4, Data: 3","7392"
"10:46:24.0837485 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0837562 AM","firefox.exe","7336","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","7392"
"10:46:24.0837698 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000021","","5636"
"10:46:24.0837792 AM","firefox.exe","7336","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000047","Desired Access: Read","7392"
"10:46:24.0837865 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000025","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0837988 AM","firefox.exe","7336","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000039","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","7392"
"10:46:24.0838035 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000051","Desired Access: Read","5636"
"10:46:24.0838202 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000055","Desired Access: Read","7392"
"10:46:24.0838244 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000043","Length: 144","5636"
"10:46:24.0838389 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000064","Desired Access: Read","7392"
"10:46:24.0838419 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0838569 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000034","Desired Access: Read","7392"
"10:46:24.0838624 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","","5636"
"10:46:24.0838765 AM","firefox.exe","7336","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000013","","7392"
"10:46:24.0838786 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0838906 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000089","Length: 52","7392"
"10:46:24.0838953 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000055","Desired Access: Read","5636"
"10:46:24.0839127 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000018","","7392"
"10:46:24.0839157 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000039","Length: 144","5636"
"10:46:24.0839328 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0839392 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000047","Desired Access: Query Value, Maximum Allowed","7392"
"10:46:24.0839520 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000021","","5636"
"10:46:24.0839597 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000034","Length: 268","7392"
"10:46:24.0839686 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0839772 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000017","","7392"
"10:46:24.0839853 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000047","Desired Access: Read","5636"
"10:46:24.0839972 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000039","Desired Access: Query Value, Maximum Allowed","7392"
"10:46:24.0840053 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0840147 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000034","Type: REG_MULTI_SZ, Length: 292, Data: PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02, PCI\VEN_8086&DEV_5916&SUBSYS_10941025, PCI\VEN_8086&DEV_5916&CC_030000, PCI\VEN_8086&DEV_5916&CC_0300","7392"
"10:46:24.0840220 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000059","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0840365 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000025","","7392"
"10:46:24.0840442 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000021","","5636"
"10:46:24.0840608 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0840655 AM","firefox.exe","7336","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000072","Desired Access: Read","7392"
"10:46:24.0840770 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000051","Desired Access: Read","5636"
"10:46:24.0840924 AM","firefox.exe","7336","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000051","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","7392"
"10:46:24.0840988 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000047","Length: 144","5636"
"10:46:24.0841171 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0841188 AM","firefox.exe","7336","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","7392"
"10:46:24.0841385 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000017","","5636"
"10:46:24.0841449 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Microsoft\Avalon.Graphics","0.0000025","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0841538 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0841662 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Microsoft\Avalon.Graphics\DISPLAY1","0.0000051","Desired Access: Read","7392"
"10:46:24.0841705 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000064","Desired Access: Read","5636"
"10:46:24.0841905 AM","firefox.exe","7336","RegCloseKey","HKCU\Software\Microsoft\Avalon.Graphics","0.0000026","","7392"
"10:46:24.0841922 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000039","Length: 144","5636"
"10:46:24.0842089 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0842289 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000017","","5636"
"10:46:24.0842455 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000018","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0842630 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000060","Desired Access: Read","5636"
"10:46:24.0842852 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000039","Length: 144","5636"
"10:46:24.0843027 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000039","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0843074 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000051","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0843262 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Microsoft\Avalon.Graphics\DISPLAY1","0.0000060","Desired Access: Read","7392"
"10:46:24.0843313 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000021","","5636"
"10:46:24.0843497 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0843676 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000055","Desired Access: Read","5636"
"10:46:24.0843898 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000038","Length: 144","5636"
"10:46:24.0844073 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0844307 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000017","","5636"
"10:46:24.0844499 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0844704 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000060","Desired Access: Read","5636"
"10:46:24.0844930 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000051","Length: 144","5636"
"10:46:24.0845122 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0845344 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000017","","5636"
"10:46:24.0845523 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0845702 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000056","Desired Access: Read","5636"
"10:46:24.0845916 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000038","Length: 144","5636"
"10:46:24.0846069 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 6520","7392"
"10:46:24.0846091 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0846308 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000022","","5636"
"10:46:24.0846492 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0846667 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000059","Desired Access: Read","5636"
"10:46:24.0846880 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000038","Length: 144","5636"
"10:46:24.0847051 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0847264 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000017","","5636"
"10:46:24.0847439 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0847622 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000056","Desired Access: Read","5636"
"10:46:24.0847844 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000039","Length: 144","5636"
"10:46:24.0848024 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0848245 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000022","","5636"
"10:46:24.0848425 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","","5636"
"10:46:24.0848740 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000026","","5636"
"10:46:24.0848928 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","","5636"
"10:46:24.0849325 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0849517 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000081","Desired Access: All Access","5636"
"10:46:24.0849760 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000610","Desired Access: All Access","5636"
"10:46:24.0850063 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000051","Information: Owner","5636"
"10:46:24.0850293 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000026","Information: Owner","5636"
"10:46:24.0850558 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0850741 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000060","Desired Access: Read","5636"
"10:46:24.0850942 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000081","Desired Access: Read","5636"
"10:46:24.0851202 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000051","Length: 16","5636"
"10:46:24.0851403 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000042","Type: REG_SZ, Length: 8, Data: 2.0","5636"
"10:46:24.0851608 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000046","Length: 44","5636"
"10:46:24.0851782 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000039","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","5636"
"10:46:24.0852017 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000021","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0852188 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000081","Desired Access: Maximum Allowed, Granted Access: Read","5636"
"10:46:24.0852414 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000038","Type: REG_DWORD, Length: 4, Data: 8","5636"
"10:46:24.0853003 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000042","Type: REG_DWORD, Length: 4, Data: 8","5636"
"10:46:24.0853212 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0853404 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000077","Desired Access: Read","5636"
"10:46:24.0853677 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000043","Type: REG_DWORD, Length: 4, Data: 1015","5636"
"10:46:24.0853865 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000038","Type: REG_DWORD, Length: 4, Data: 14","5636"
"10:46:24.0854061 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0854240 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000068","Desired Access: Maximum Allowed, Granted Access: Read","5636"
"10:46:24.0854483 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0854658 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000064","Desired Access: Read","5636"
"10:46:24.0854893 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000043","Length: 144","5636"
"10:46:24.0855081 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0855337 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000076","","5636"
"10:46:24.0855584 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0855755 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000055","Desired Access: Read","5636"
"10:46:24.0855994 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000038","Length: 144","5636"
"10:46:24.0856173 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0856408 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000021","","5636"
"10:46:24.0856587 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0856753 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000056","Desired Access: Read","5636"
"10:46:24.0856962 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000039","Length: 144","5636"
"10:46:24.0857137 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0857355 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000017","","5636"
"10:46:24.0857534 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0857709 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000077","Desired Access: Read","5636"
"10:46:24.0857952 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000038","Length: 144","5636"
"10:46:24.0858131 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0858366 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000021","","5636"
"10:46:24.0858549 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0858733 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000060","Desired Access: Read","5636"
"10:46:24.0858959 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000038","Length: 144","5636"
"10:46:24.0859189 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000145","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0859672 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000021","","5636"
"10:46:24.0859949 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0860230 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000082","Desired Access: Read","5636"
"10:46:24.0860559 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000043","Length: 144","5636"
"10:46:24.0860802 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0861097 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000021","","5636"
"10:46:24.0861323 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0861570 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000077","Desired Access: Read","5636"
"10:46:24.0861873 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000039","Length: 144","5636"
"10:46:24.0862099 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0862377 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000021","","5636"
"10:46:24.0862594 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0862825 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000059","Desired Access: Read","5636"
"10:46:24.0863093 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000039","Length: 144","5636"
"10:46:24.0863311 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0863588 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000017","","5636"
"10:46:24.0863810 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0864041 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000059","Desired Access: Read","5636"
"10:46:24.0864305 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000039","Length: 144","5636"
"10:46:24.0864527 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0864804 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000039","","5636"
"10:46:24.0865052 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0865291 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000059","Desired Access: Read","5636"
"10:46:24.0865555 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000039","Length: 144","5636"
"10:46:24.0865769 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0866042 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000025","","5636"
"10:46:24.0866264 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0866515 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000064","Desired Access: Read","5636"
"10:46:24.0866788 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000039","Length: 144","5636"
"10:46:24.0867023 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0867309 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000017","","5636"
"10:46:24.0867535 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0867774 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000064","Desired Access: Read","5636"
"10:46:24.0868056 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000042","Length: 144","5636"
"10:46:24.0868294 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0868589 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000017","","5636"
"10:46:24.0868819 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0869071 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000064","Desired Access: Read","5636"
"10:46:24.0869336 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000038","Length: 144","5636"
"10:46:24.0869562 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0869848 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000017","","5636"
"10:46:24.0870061 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0870296 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000059","Desired Access: Read","5636"
"10:46:24.0870569 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000042","Length: 144","5636"
"10:46:24.0870795 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0871085 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000017","","5636"
"10:46:24.0871324 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","","5636"
"10:46:24.0871704 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000029","","5636"
"10:46:24.0871968 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000021","","5636"
"10:46:24.0872437 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0872685 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000077","Desired Access: All Access","5636"
"10:46:24.0872975 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000811","Desired Access: All Access","5636"
"10:46:24.0873363 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000064","Information: Owner","5636"
"10:46:24.0873700 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000034","Information: Owner","5636"
"10:46:24.0874029 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0874281 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000059","Desired Access: Read","5636"
"10:46:24.0874545 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000085","Desired Access: Read","5636"
"10:46:24.0874857 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000047","Length: 16","5636"
"10:46:24.0875100 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000042","Type: REG_SZ, Length: 8, Data: 2.0","5636"
"10:46:24.0875352 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000042","Length: 44","5636"
"10:46:24.0875582 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000047","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","5636"
"10:46:24.0875876 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0876128 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000081","Desired Access: Maximum Allowed, Granted Access: Read","5636"
"10:46:24.0876414 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000051","Type: REG_DWORD, Length: 4, Data: 8","5636"
"10:46:24.0877114 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000059","Type: REG_DWORD, Length: 4, Data: 8","5636"
"10:46:24.0877400 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0877660 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000051","Desired Access: Read","5636"
"10:46:24.0877924 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000047","Type: REG_DWORD, Length: 4, Data: 1015","5636"
"10:46:24.0878172 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000042","Type: REG_DWORD, Length: 4, Data: 14","5636"
"10:46:24.0878424 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0878680 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000085","Desired Access: Maximum Allowed, Granted Access: Read","5636"
"10:46:24.0878987 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0879230 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000072","Desired Access: Read","5636"
"10:46:24.0879537 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000043","Length: 144","5636"
"10:46:24.0879772 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000051","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0880092 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000025","","5636"
"10:46:24.0880339 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0880403 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\fonts","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0880578 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000068","Desired Access: Read","5636"
"10:46:24.0880864 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000043","Length: 144","5636"
"10:46:24.0881001 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\fonts","0.0000064","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: D","7392"
"10:46:24.0881090 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0881201 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\fonts","0.0000081","","7392"
"10:46:24.0881380 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000022","","5636"
"10:46:24.0881602 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0881845 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000064","Desired Access: Read","5636"
"10:46:24.0882114 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000043","Length: 144","5636"
"10:46:24.0882332 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0882626 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000022","","5636"
"10:46:24.0882865 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0883121 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000064","Desired Access: Read","5636"
"10:46:24.0883411 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000043","Length: 144","5636"
"10:46:24.0883646 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0883940 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000022","","5636"
"10:46:24.0883996 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\fonts","0.0000226","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0884171 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0884418 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000064","Desired Access: Read","5636"
"10:46:24.0884700 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000102","Length: 144","5636"
"10:46:24.0884721 AM","firefox.exe","7336","QueryDirectory","C:\Program Files\Firefox Nightly\fonts\*","0.0000218","Filter: *, 1: .","7392"
"10:46:24.0885084 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000068","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0885404 AM","firefox.exe","7336","QueryDirectory","C:\Program Files\Firefox Nightly\fonts","0.0000153","0: .., 1: TwemojiMozilla.ttf","7392"
"10:46:24.0885472 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000026","","5636"
"10:46:24.0885702 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000026","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0885933 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000072","Desired Access: Read","5636"
"10:46:24.0886197 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000043","Length: 144","5636"
"10:46:24.0886381 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0886611 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000017","","5636"
"10:46:24.0886786 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0886953 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000192","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0886970 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000059","Desired Access: Read","5636"
"10:46:24.0887196 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0887371 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0887482 AM","firefox.exe","7336","QueryInformationVolume","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000038","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","7392"
"10:46:24.0887588 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000022","","5636"
"10:46:24.0887712 AM","firefox.exe","7336","QueryAllInformationFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000060","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A, AllocationSize: 1,245,184, EndOfFile: 1,244,336, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0xd00000002c564, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","7392"
"10:46:24.0887763 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0887942 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000056","Desired Access: Read","5636"
"10:46:24.0887968 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000068","","7392"
"10:46:24.0888160 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000038","Length: 144","5636"
"10:46:24.0888344 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0888548 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000013","","5636"
"10:46:24.0888710 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000018","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0888877 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000051","Desired Access: Read","5636"
"10:46:24.0889086 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0889252 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0889449 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","","5636"
"10:46:24.0889538 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000154","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0889615 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0889781 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000052","Desired Access: Read","5636"
"10:46:24.0890016 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0890080 AM","firefox.exe","7336","QueryInformationVolume","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000051","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","7392"
"10:46:24.0890182 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0890353 AM","firefox.exe","7336","QueryAllInformationFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000064","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A, AllocationSize: 1,245,184, EndOfFile: 1,244,336, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0xd00000002c564, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","7392"
"10:46:24.0890379 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000017","","5636"
"10:46:24.0890541 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0890750 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000051","Desired Access: Read","5636"
"10:46:24.0890754 AM","firefox.exe","7336","CreateFileMapping","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:24.0890955 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000042","Length: 144","5636"
"10:46:24.0890968 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000034","AllocationSize: 1,245,184, EndOfFile: 1,244,336, NumberOfLinks: 1, DeletePending: False, Directory: False","7392"
"10:46:24.0891125 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0891292 AM","firefox.exe","7336","CreateFileMapping","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000021","SyncType: SyncTypeOther","7392"
"10:46:24.0891326 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000017","","5636"
"10:46:24.0891492 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0891654 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000052","Desired Access: Read","5636"
"10:46:24.0891851 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0892009 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0892205 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000017","","5636"
"10:46:24.0892341 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0892448 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000038","Desired Access: Read","5636"
"10:46:24.0892585 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000029","Length: 144","5636"
"10:46:24.0892704 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0892883 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000013","","5636"
"10:46:24.0892994 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0893101 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000034","Desired Access: Read","5636"
"10:46:24.0893237 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000026","Length: 144","5636"
"10:46:24.0893348 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0893481 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000008","","5636"
"10:46:24.0893583 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","","5636"
"10:46:24.0893830 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000022","","5636"
"10:46:24.0893963 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000008","","5636"
"10:46:24.0894266 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0894381 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000115","Desired Access: All Access","5636"
"10:46:24.0894637 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000512","Desired Access: All Access","5636"
"10:46:24.0894936 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000042","Information: Owner","5636"
"10:46:24.0895098 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000017","Information: Owner","5636"
"10:46:24.0895332 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0895460 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000043","Desired Access: Read","5636"
"10:46:24.0895588 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000052","Desired Access: Read","5636"
"10:46:24.0895755 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000030","Length: 16","5636"
"10:46:24.0895878 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000030","Type: REG_SZ, Length: 8, Data: 2.0","5636"
"10:46:24.0896011 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000030","Length: 44","5636"
"10:46:24.0896122 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000030","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","5636"
"10:46:24.0896280 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000012","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0896390 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000052","Desired Access: Maximum Allowed, Granted Access: Read","5636"
"10:46:24.0896548 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","5636"
"10:46:24.0897073 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000030","Type: REG_DWORD, Length: 4, Data: 8","5636"
"10:46:24.0897214 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0897325 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000034","Desired Access: Read","5636"
"10:46:24.0897461 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000141","","7392"
"10:46:24.0897500 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000034","Type: REG_DWORD, Length: 4, Data: 1015","5636"
"10:46:24.0897632 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000026","Type: REG_DWORD, Length: 4, Data: 14","5636"
"10:46:24.0897752 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000012","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0897858 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000047","Desired Access: Maximum Allowed, Granted Access: Read","5636"
"10:46:24.0898008 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0898114 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000034","Desired Access: Read","5636"
"10:46:24.0898191 AM","firefox.exe","7336","QueryDirectory","C:\Program Files\Firefox Nightly\fonts","0.0000081","","7392"
"10:46:24.0898259 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000030","Length: 144","5636"
"10:46:24.0898379 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0898532 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000009","","5636"
"10:46:24.0898549 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\fonts","0.0000069","","7392"
"10:46:24.0898643 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0898750 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000034","Desired Access: Read","5636"
"10:46:24.0898887 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000025","Length: 144","5636"
"10:46:24.0898997 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0899138 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000013","","5636"
"10:46:24.0899245 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0899347 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000034","Desired Access: Read","5636"
"10:46:24.0899484 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000043","Length: 144","5636"
"10:46:24.0899659 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000064","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0899893 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000026","","5636"
"10:46:24.0900073 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0900243 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000052","Desired Access: Read","5636"
"10:46:24.0900457 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000042","Length: 144","5636"
"10:46:24.0900474 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000038","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0900636 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0900755 AM","firefox.exe","7336","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000154","Desired Access: Read","7392"
"10:46:24.0900832 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000026","","5636"
"10:46:24.0901011 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0901173 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000052","Desired Access: Read","5636"
"10:46:24.0901203 AM","firefox.exe","7336","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000069","Index: 0, Name: Arabic Transparent, Type: REG_SZ, Length: 12, Data: Arial","7392"
"10:46:24.0901383 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000038","Length: 144","5636"
"10:46:24.0901511 AM","firefox.exe","7336","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000059","Index: 1, Name: Arabic Transparent Bold, Type: REG_SZ, Length: 22, Data: Arial Bold","7392"
"10:46:24.0901553 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000051","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0901762 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000017","","5636"
"10:46:24.0901796 AM","firefox.exe","7336","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000056","Index: 2, Name: Arabic Transparent Bold,0, Type: REG_SZ, Length: 30, Data: Arial Bold,178","7392"
"10:46:24.0901937 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000026","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0902078 AM","firefox.exe","7336","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000060","Index: 3, Name: Arabic Transparent,0, Type: REG_SZ, Length: 20, Data: Arial,178","7392"
"10:46:24.0902112 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000081","Desired Access: Read","5636"
"10:46:24.0902325 AM","firefox.exe","7336","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000047","Index: 4, Name: Arial Baltic,186, Type: REG_SZ, Length: 20, Data: Arial,186","7392"
"10:46:24.0902351 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000038","Length: 144","5636"
"10:46:24.0902526 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0902556 AM","firefox.exe","7336","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000043","Index: 5, Name: Arial CE,238, Type: REG_SZ, Length: 20, Data: Arial,238","7392"
"10:46:24.0902727 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000017","","5636"
"10:46:24.0902773 AM","firefox.exe","7336","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000043","Index: 6, Name: Arial CYR,204, Type: REG_SZ, Length: 20, Data: Arial,204","7392"
"10:46:24.0902889 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0902991 AM","firefox.exe","7336","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000043","Index: 7, Name: Arial Greek,161, Type: REG_SZ, Length: 20, Data: Arial,161","7392"
"10:46:24.0903055 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000060","Desired Access: Read","5636"
"10:46:24.0903213 AM","firefox.exe","7336","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000038","Index: 8, Name: Arial TUR,162, Type: REG_SZ, Length: 20, Data: Arial,162","7392"
"10:46:24.0903264 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000039","Length: 144","5636"
"10:46:24.0903426 AM","firefox.exe","7336","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000051","Index: 9, Name: Courier New Baltic,186, Type: REG_SZ, Length: 32, Data: Courier New,186","7392"
"10:46:24.0903435 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000081","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0903678 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000017","","5636"
"10:46:24.0903772 AM","firefox.exe","7336","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000043","Index: 10, Name: Courier New CE,238, Type: REG_SZ, Length: 32, Data: Courier New,238","7392"
"10:46:24.0903844 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0903985 AM","firefox.exe","7336","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000047","Index: 11, Name: Courier New CYR,204, Type: REG_SZ, Length: 32, Data: Courier New,204","7392"
"10:46:24.0904011 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000055","Desired Access: Read","5636"
"10:46:24.0904190 AM","firefox.exe","7336","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000111","Index: 12, Name: Courier New Greek,161, Type: REG_SZ, Length: 32, Data: Courier New,161","7392"
"10:46:24.0904220 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000060","Length: 144","5636"
"10:46:24.0904408 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0904467 AM","firefox.exe","7336","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000039","Index: 13, Name: Courier New TUR,162, Type: REG_SZ, Length: 32, Data: Courier New,162","7392"
"10:46:24.0904612 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000017","","5636"
"10:46:24.0904625 AM","firefox.exe","7336","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000034","Index: 14, Name: Helv, Type: REG_SZ, Length: 28, Data: MS Sans Serif","7392"
"10:46:24.0904779 AM","firefox.exe","7336","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000077","Index: 15, Name: Helvetica, Type: REG_SZ, Length: 12, Data: Arial","7392"
"10:46:24.0904817 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000124","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0905048 AM","firefox.exe","7336","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000042","Index: 16, Name: MS Shell Dlg 2, Type: REG_SZ, Length: 14, Data: Tahoma","7392"
"10:46:24.0905159 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000081","Desired Access: Read","5636"
"10:46:24.0905278 AM","firefox.exe","7336","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000043","Index: 17, Name: Tahoma Armenian, Type: REG_SZ, Length: 14, Data: Tahoma","7392"
"10:46:24.0905449 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000042","Length: 144","5636"
"10:46:24.0905564 AM","firefox.exe","7336","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000060","Index: 18, Name: Times, Type: REG_SZ, Length: 32, Data: Times New Roman","7392"
"10:46:24.0905653 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0905875 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","","5636"
"10:46:24.0905939 AM","firefox.exe","7336","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000052","Index: 19, Name: Times New Roman Baltic,186, Type: REG_SZ, Length: 40, Data: Times New Roman,186","7392"
"10:46:24.0906029 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0906170 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000042","Desired Access: Read","5636"
"10:46:24.0906225 AM","firefox.exe","7336","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000047","Index: 20, Name: Times New Roman CE,238, Type: REG_SZ, Length: 40, Data: Times New Roman,238","7392"
"10:46:24.0906336 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0906460 AM","firefox.exe","7336","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000064","Index: 21, Name: Times New Roman CYR,204, Type: REG_SZ, Length: 40, Data: Times New Roman,204","7392"
"10:46:24.0906498 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0906665 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000017","","5636"
"10:46:24.0906707 AM","firefox.exe","7336","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000047","Index: 22, Name: Times New Roman Greek,161, Type: REG_SZ, Length: 40, Data: Times New Roman,161","7392"
"10:46:24.0906793 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0906916 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000039","Desired Access: Read","5636"
"10:46:24.0906933 AM","firefox.exe","7336","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000047","Index: 23, Name: Times New Roman TUR,162, Type: REG_SZ, Length: 40, Data: Times New Roman,162","7392"
"10:46:24.0907070 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000030","Length: 144","5636"
"10:46:24.0907155 AM","firefox.exe","7336","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000124","Index: 24, Name: Tms Rmn, Type: REG_SZ, Length: 18, Data: MS Serif","7392"
"10:46:24.0907189 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000141","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0907433 AM","firefox.exe","7336","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000038","Index: 25, Name: MS Shell Dlg, Type: REG_SZ, Length: 42, Data: Microsoft Sans Serif","7392"
"10:46:24.0907527 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000021","","5636"
"10:46:24.0907595 AM","firefox.exe","7336","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000030","Index: 26, Length: 2,048","7392"
"10:46:24.0907706 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0907889 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000051","Desired Access: Read","5636"
"10:46:24.0908094 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0908256 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0908448 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000017","","5636"
"10:46:24.0908610 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0908777 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000051","Desired Access: Read","5636"
"10:46:24.0908973 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0909135 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0909327 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000017","","5636"
"10:46:24.0909485 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0909643 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000047","Desired Access: Read","5636"
"10:46:24.0909839 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0909997 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0910193 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000013","","5636"
"10:46:24.0910351 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","","5636"
"10:46:24.0910654 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000030","","5636"
"10:46:24.0910829 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","","5636"
"10:46:24.0911388 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0911559 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000064","Desired Access: All Access","5636"
"10:46:24.0911759 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000576","Desired Access: All Access","5636"
"10:46:24.0912041 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000055","Information: Owner","5636"
"10:46:24.0912267 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000025","Information: Owner","5636"
"10:46:24.0912544 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0912723 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000052","Desired Access: Read","5636"
"10:46:24.0912907 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000077","Desired Access: Read","5636"
"10:46:24.0913150 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000038","Length: 16","5636"
"10:46:24.0913329 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000039","Type: REG_SZ, Length: 8, Data: 2.0","5636"
"10:46:24.0913517 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000038","Length: 44","5636"
"10:46:24.0913675 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000042","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","5636"
"10:46:24.0913880 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0914046 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000068","Desired Access: Maximum Allowed, Granted Access: Read","5636"
"10:46:24.0914259 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000043","Type: REG_DWORD, Length: 4, Data: 8","5636"
"10:46:24.0914899 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000043","Type: REG_DWORD, Length: 4, Data: 8","5636"
"10:46:24.0915100 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0915271 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000051","Desired Access: Read","5636"
"10:46:24.0915475 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000039","Type: REG_DWORD, Length: 4, Data: 1015","5636"
"10:46:24.0915646 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000034","Type: REG_DWORD, Length: 4, Data: 14","5636"
"10:46:24.0915817 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0917182 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000141","Desired Access: Maximum Allowed, Granted Access: Read","5636"
"10:46:24.0917604 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000030","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0917852 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000072","Desired Access: Read","5636"
"10:46:24.0918163 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000047","Length: 144","5636"
"10:46:24.0918360 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000064","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0918709 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000030","","5636"
"10:46:24.0918927 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0919119 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000081","Desired Access: Read","5636"
"10:46:24.0919371 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000047","Length: 144","5636"
"10:46:24.0919529 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0919751 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000021","","5636"
"10:46:24.0919985 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mscms.dll","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0920117 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000030","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0920361 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000085","Desired Access: Read","5636"
"10:46:24.0920664 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000047","Length: 144","5636"
"10:46:24.0920681 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000068","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","7392"
"10:46:24.0920873 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0920894 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mscms.dll","0.0000098","","7392"
"10:46:24.0921308 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000260","","5636"
"10:46:24.0923339 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000030","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0923565 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000072","Desired Access: Read","5636"
"10:46:24.0923612 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mscms.dll","0.0000307","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0923834 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000042","Length: 144","5636"
"10:46:24.0924021 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0924465 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000026","","5636"
"10:46:24.0924657 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0924704 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000068","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:24.0924849 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000060","Desired Access: Read","5636"
"10:46:24.0925084 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000043","Length: 144","5636"
"10:46:24.0925255 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000046","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0925336 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000038","SyncType: SyncTypeOther","7392"
"10:46:24.0925498 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000021","","5636"
"10:46:24.0925681 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0925865 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000055","Desired Access: Read","5636"
"10:46:24.0925912 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\mscms.dll","0.0000055","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:24.0926087 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000038","Length: 144","5636"
"10:46:24.0926253 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0926471 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000021","","5636"
"10:46:24.0926889 AM","firefox.exe","7336","Load Image","C:\Windows\System32\mscms.dll","0.0000000","Image Base: 0x7ffb2dad0000, Image Size: 0xa8000","7392"
"10:46:24.0926965 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000039","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0927354 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000205","Desired Access: Read","5636"
"10:46:24.0927465 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\mscms.dll","0.0000192","Name: \Windows\System32\mscms.dll","7392"
"10:46:24.0928049 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000068","Length: 144","5636"
"10:46:24.0928361 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000051","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0928621 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000017","","5636"
"10:46:24.0928804 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0928945 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000051","Desired Access: Read","5636"
"10:46:24.0929133 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000030","Length: 144","5636"
"10:46:24.0929257 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0929415 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000012","","5636"
"10:46:24.0929534 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0929653 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000039","Desired Access: Read","5636"
"10:46:24.0929807 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000026","Length: 144","5636"
"10:46:24.0929918 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mscms.dll","0.0000179","","7392"
"10:46:24.0930008 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0930187 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000013","","5636"
"10:46:24.0930315 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0930434 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000043","Desired Access: Read","5636"
"10:46:24.0930584 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000029","Length: 144","5636"
"10:46:24.0930699 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0930840 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000012","","5636"
"10:46:24.0930951 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0931057 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000039","Desired Access: Read","5636"
"10:46:24.0931194 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000030","Length: 144","5636"
"10:46:24.0931309 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0931445 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000013","","5636"
"10:46:24.0931552 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0931655 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000034","Desired Access: Read","5636"
"10:46:24.0931791 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000026","Length: 144","5636"
"10:46:24.0931898 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0932030 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000013","","5636"
"10:46:24.0932141 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0932243 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000039","Desired Access: Read","5636"
"10:46:24.0932384 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000026","Length: 144","5636"
"10:46:24.0932491 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0932666 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000013","","5636"
"10:46:24.0932777 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0932883 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000034","Desired Access: Read","5636"
"10:46:24.0933020 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000025","Length: 144","5636"
"10:46:24.0933131 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0933263 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000013","","5636"
"10:46:24.0933365 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","","5636"
"10:46:24.0933639 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000025","","5636"
"10:46:24.0933775 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","","5636"
"10:46:24.0934108 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0934215 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000285","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0934227 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000069","Desired Access: All Access","5636"
"10:46:24.0934394 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000516","Desired Access: All Access","5636"
"10:46:24.0934641 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000043","Information: Owner","5636"
"10:46:24.0934667 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000064","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","7392"
"10:46:24.0934816 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000017","Information: Owner","5636"
"10:46:24.0934872 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000102","","7392"
"10:46:24.0935081 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0935200 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000068","Desired Access: Read","5636"
"10:46:24.0935418 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000077","Desired Access: Read","5636"
"10:46:24.0935704 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000085","Length: 16","5636"
"10:46:24.0935955 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000060","Type: REG_SZ, Length: 8, Data: 2.0","5636"
"10:46:24.0936186 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000034","Length: 44","5636"
"10:46:24.0936356 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000043","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","5636"
"10:46:24.0936608 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0936787 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000086","Desired Access: Maximum Allowed, Granted Access: Read","5636"
"10:46:24.0937043 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000043","Type: REG_DWORD, Length: 4, Data: 8","5636"
"10:46:24.0937717 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000043","Type: REG_DWORD, Length: 4, Data: 8","5636"
"10:46:24.0937722 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000264","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0937944 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0938119 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000051","Desired Access: Read","5636"
"10:46:24.0938370 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000060","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:24.0939168 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000068","Type: REG_DWORD, Length: 4, Data: 1015","5636"
"10:46:24.0939347 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000030","SyncType: SyncTypeOther","7392"
"10:46:24.0939441 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000030","Type: REG_DWORD, Length: 4, Data: 14","5636"
"10:46:24.0939633 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0939663 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\coloradapterclient.dll","0.0000030","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:24.0939825 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000103","Desired Access: Maximum Allowed, Granted Access: Read","5636"
"10:46:24.0940085 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000018","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0940239 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000051","Desired Access: Read","5636"
"10:46:24.0940324 AM","firefox.exe","7336","Load Image","C:\Windows\System32\coloradapterclient.dll","0.0000000","Image Base: 0x7ffb2dac0000, Image Size: 0x10000","7392"
"10:46:24.0940435 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0940576 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0940755 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000064","Name: \Windows\System32\coloradapterclient.dll","7392"
"10:46:24.0940807 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000017","","5636"
"10:46:24.0940956 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0941105 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000047","Desired Access: Read","5636"
"10:46:24.0941284 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000052","Length: 144","5636"
"10:46:24.0941485 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0941698 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000013","","5636"
"10:46:24.0941835 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0941980 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000047","Desired Access: Read","5636"
"10:46:24.0942014 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000081","","7392"
"10:46:24.0942155 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000030","Length: 144","5636"
"10:46:24.0942287 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0942453 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000013","","5636"
"10:46:24.0942581 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000018","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0942718 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000043","Desired Access: Read","5636"
"10:46:24.0942884 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000026","Length: 144","5636"
"10:46:24.0943012 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0943170 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000013","","5636"
"10:46:24.0943315 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0943456 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000039","Desired Access: Read","5636"
"10:46:24.0943618 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000026","Length: 144","5636"
"10:46:24.0943772 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0943913 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000012","","5636"
"10:46:24.0944041 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0944164 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000035","Desired Access: Read","5636"
"10:46:24.0944327 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000029","Length: 144","5636"
"10:46:24.0944459 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0944612 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000013","","5636"
"10:46:24.0944740 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0944873 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000042","Desired Access: Read","5636"
"10:46:24.0945039 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000026","Length: 144","5636"
"10:46:24.0945167 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0945321 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000008","","5636"
"10:46:24.0945440 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0945577 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000038","Desired Access: Read","5636"
"10:46:24.0945739 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000025","Length: 144","5636"
"10:46:24.0945867 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0946020 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000013","","5636"
"10:46:24.0946148 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0946276 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000039","Desired Access: Read","5636"
"10:46:24.0946340 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0946434 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000030","Length: 144","5636"
"10:46:24.0946571 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0946588 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000034","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7392"
"10:46:24.0946686 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000141","","7392"
"10:46:24.0946733 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000055","","5636"
"10:46:24.0946912 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0947044 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000039","Desired Access: Read","5636"
"10:46:24.0947207 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000025","Length: 144","5636"
"10:46:24.0947335 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000029","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0947497 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000017","","5636"
"10:46:24.0947637 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0947774 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000043","Desired Access: Read","5636"
"10:46:24.0947949 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000026","Length: 144","5636"
"10:46:24.0948081 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0948132 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0948243 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000013","","5636"
"10:46:24.0948303 AM","firefox.exe","7336","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\ClusSvc","0.0000060","Desired Access: Query Value","7392"
"10:46:24.0948376 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0948478 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\ClusSvc","0.0000055","Desired Access: Query Value","7392"
"10:46:24.0948516 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000043","Desired Access: Read","5636"
"10:46:24.0948683 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000025","Length: 144","5636"
"10:46:24.0948764 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0948819 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0948888 AM","firefox.exe","7336","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000111","Desired Access: Read","7392"
"10:46:24.0948977 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000017","","5636"
"10:46:24.0949135 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0949173 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0949284 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000052","Desired Access: Read","5636"
"10:46:24.0949293 AM","firefox.exe","7336","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000136","Desired Access: Read","7392"
"10:46:24.0949472 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000030","Length: 144","5636"
"10:46:24.0949570 AM","firefox.exe","7336","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000013","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","7392"
"10:46:24.0949613 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0949685 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\ri","0.0000030","Length: 12","7392"
"10:46:24.0949779 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000013","","5636"
"10:46:24.0949796 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\ri","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","7392"
"10:46:24.0949912 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0949942 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000017","","7392"
"10:46:24.0950052 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000043","Desired Access: Read","5636"
"10:46:24.0950215 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000025","Length: 144","5636"
"10:46:24.0950338 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0950496 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000013","","5636"
"10:46:24.0950616 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","","5636"
"10:46:24.0950850 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000022","","5636"
"10:46:24.0950991 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","","5636"
"10:46:24.0951307 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0951435 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000055","Desired Access: All Access","5636"
"10:46:24.0951593 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000529","Desired Access: All Access","5636"
"10:46:24.0951849 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000055","Information: Owner","5636"
"10:46:24.0952054 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000021","Information: Owner","5636"
"10:46:24.0952271 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0952403 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000052","Desired Access: Read","5636"
"10:46:24.0952574 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000064","Desired Access: Read","5636"
"10:46:24.0952762 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000034","Length: 16","5636"
"10:46:24.0952894 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000030","Type: REG_SZ, Length: 8, Data: 2.0","5636"
"10:46:24.0953039 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000026","Length: 44","5636"
"10:46:24.0953154 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000034","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","5636"
"10:46:24.0953334 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000012","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0953462 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000059","Desired Access: Maximum Allowed, Granted Access: Read","5636"
"10:46:24.0953632 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","5636"
"10:46:24.0954136 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000030","Type: REG_DWORD, Length: 4, Data: 8","5636"
"10:46:24.0954298 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0954430 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000043","Desired Access: Read","5636"
"10:46:24.0954592 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000030","Type: REG_DWORD, Length: 4, Data: 1015","5636"
"10:46:24.0954614 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000102","Desired Access: Query Value, Maximum Allowed","7392"
"10:46:24.0954737 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000034","Type: REG_DWORD, Length: 4, Data: 14","5636"
"10:46:24.0954878 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\DeviceDesc","0.0000034","Type: REG_SZ, Length: 114, Data: @monitor.inf,%pnpmonitor.devicedesc%;Generic PnP Monitor","7392"
"10:46:24.0954887 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0955027 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000073","Desired Access: Maximum Allowed, Granted Access: Read","5636"
"10:46:24.0955057 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000022","","7392"
"10:46:24.0955236 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0955339 AM","firefox.exe","7336","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000077","Desired Access: Read","7392"
"10:46:24.0955369 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000059","Desired Access: Read","5636"
"10:46:24.0955561 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000030","Length: 144","5636"
"10:46:24.0955608 AM","firefox.exe","7336","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000051","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","7392"
"10:46:24.0955706 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0955881 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000051","Desired Access: Read","7392"
"10:46:24.0955898 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000017","","5636"
"10:46:24.0956034 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000056","Desired Access: Read","7392"
"10:46:24.0956043 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0956179 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000043","Desired Access: Read","5636"
"10:46:24.0956188 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000026","Desired Access: Read","7392"
"10:46:24.0956342 AM","firefox.exe","7336","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000046","","7392"
"10:46:24.0956354 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000043","Length: 144","5636"
"10:46:24.0956495 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000068","Length: 52","7392"
"10:46:24.0956512 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0956670 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000009","","7392"
"10:46:24.0956691 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","5636"
"10:46:24.0956828 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0956849 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000030","Desired Access: Query Value, Maximum Allowed","7392"
"10:46:24.0956964 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000043","Desired Access: Read","5636"
"10:46:24.0956994 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\HardwareID","0.0000030","Type: REG_MULTI_SZ, Length: 34, Data: MONITOR\CMN15D2","7392"
"10:46:24.0957139 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000047","Length: 144","5636"
"10:46:24.0957169 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000073","","7392"
"10:46:24.0957310 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0957425 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000034","Desired Access: Query Value, Maximum Allowed","7392"
"10:46:24.0957476 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000026","","5636"
"10:46:24.0957583 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\Driver","0.0000030","Type: REG_SZ, Length: 88, Data: {4d36e96e-e325-11ce-bfc1-08002be10318}\0001","7392"
"10:46:24.0957617 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0957724 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000013","","7392"
"10:46:24.0957754 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000042","Desired Access: Read","5636"
"10:46:24.0957869 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000030","Desired Access: Query Value, Maximum Allowed","7392"
"10:46:24.0957929 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000025","Length: 144","5636"
"10:46:24.0958001 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\Driver","0.0000026","Type: REG_SZ, Length: 88, Data: {4d36e96e-e325-11ce-bfc1-08002be10318}\0001","7392"
"10:46:24.0958065 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0958134 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000008","","7392"
"10:46:24.0958227 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000013","","5636"
"10:46:24.0958355 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0958483 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000039","Desired Access: Read","5636"
"10:46:24.0958646 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000025","Length: 144","5636"
"10:46:24.0958778 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0958940 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000013","","5636"
"10:46:24.0959068 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0959200 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000039","Desired Access: Read","5636"
"10:46:24.0959268 AM","firefox.exe","7336","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000039","Desired Access: Read, Maximum Allowed","7392"
"10:46:24.0959362 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000030","Length: 144","5636"
"10:46:24.0959431 AM","firefox.exe","7336","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000029","Type: REG_DWORD, Length: 4, Data: 3","7392"
"10:46:24.0959499 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0959584 AM","firefox.exe","7336","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000013","","7392"
"10:46:24.0959661 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000017","","5636"
"10:46:24.0959789 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0959921 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000039","Desired Access: Read","5636"
"10:46:24.0960079 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000026","Length: 144","5636"
"10:46:24.0960207 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0960361 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000013","","5636"
"10:46:24.0960480 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0960608 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000039","Desired Access: Read","5636"
"10:46:24.0960766 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000030","Length: 144","5636"
"10:46:24.0960898 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0961052 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000017","","5636"
"10:46:24.0961180 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0961304 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000038","Desired Access: Read","5636"
"10:46:24.0961462 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000025","Length: 144","5636"
"10:46:24.0961590 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0961739 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000013","","5636"
"10:46:24.0961863 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0961991 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000034","Desired Access: Read","5636"
"10:46:24.0962144 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000026","Length: 144","5636"
"10:46:24.0962272 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0962426 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000013","","5636"
"10:46:24.0962550 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0962678 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000038","Desired Access: Read","5636"
"10:46:24.0962831 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000026","Length: 144","5636"
"10:46:24.0962955 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0963100 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000013","","5636"
"10:46:24.0963224 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0963347 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000073","Desired Access: Read","5636"
"10:46:24.0963544 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000025","Length: 144","5636"
"10:46:24.0963676 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0963830 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000012","","5636"
"10:46:24.0963953 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0964081 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000039","Desired Access: Read","5636"
"10:46:24.0964243 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000026","Length: 144","5636"
"10:46:24.0964371 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0964431 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000051","Desired Access: Query Value, Maximum Allowed","7392"
"10:46:24.0964534 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000012","","5636"
"10:46:24.0964691 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\DeviceDesc","0.0000043","Type: REG_SZ, Length: 114, Data: @monitor.inf,%pnpmonitor.devicedesc%;Generic PnP Monitor","7392"
"10:46:24.0964713 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000123","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0964952 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000012","","7392"
"10:46:24.0964973 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000043","Desired Access: Read","5636"
"10:46:24.0965148 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000026","Length: 144","5636"
"10:46:24.0965186 AM","firefox.exe","7336","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000128","Desired Access: Read","7392"
"10:46:24.0965280 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000324","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0965575 AM","firefox.exe","7336","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000047","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","7392"
"10:46:24.0965754 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000013","","5636"
"10:46:24.0965848 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000059","Desired Access: Read","7392"
"10:46:24.0965916 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","","5636"
"10:46:24.0966057 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000068","Desired Access: Read","7392"
"10:46:24.0966206 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000030","","5636"
"10:46:24.0966240 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000030","Desired Access: Read","7392"
"10:46:24.0966364 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","","5636"
"10:46:24.0966402 AM","firefox.exe","7336","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000013","","7392"
"10:46:24.0966518 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000068","Length: 52","7392"
"10:46:24.0966675 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0966697 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000013","","7392"
"10:46:24.0966829 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000055","Desired Access: All Access","5636"
"10:46:24.0966872 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000034","Desired Access: Query Value, Maximum Allowed","7392"
"10:46:24.0967004 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000670","Desired Access: All Access","5636"
"10:46:24.0967025 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\HardwareID","0.0000030","Type: REG_MULTI_SZ, Length: 34, Data: MONITOR\CMN15D2","7392"
"10:46:24.0967166 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000009","","7392"
"10:46:24.0967260 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000064","Information: Owner","5636"
"10:46:24.0967350 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000038","Desired Access: Query Value, Maximum Allowed","7392"
"10:46:24.0967482 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000017","Information: Owner","5636"
"10:46:24.0967571 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\Driver","0.0000043","Type: REG_SZ, Length: 88, Data: {4d36e96e-e325-11ce-bfc1-08002be10318}\0001","7392"
"10:46:24.0967802 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000055","","7392"
"10:46:24.0967815 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000081","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0968075 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000038","Desired Access: Read","5636"
"10:46:24.0968203 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000060","Desired Access: Read","5636"
"10:46:24.0968216 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000055","Desired Access: Query Value, Maximum Allowed","7392"
"10:46:24.0968395 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000030","Length: 16","5636"
"10:46:24.0968506 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000025","Type: REG_SZ, Length: 8, Data: 2.0","5636"
"10:46:24.0968514 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\Driver","0.0000043","Type: REG_SZ, Length: 88, Data: {4d36e96e-e325-11ce-bfc1-08002be10318}\0001","7392"
"10:46:24.0968625 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000026","Length: 44","5636"
"10:46:24.0968723 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000022","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","5636"
"10:46:24.0968775 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000017","","7392"
"10:46:24.0968881 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0969014 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000064","Desired Access: Maximum Allowed, Granted Access: Read","5636"
"10:46:24.0969193 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","5636"
"10:46:24.0969406 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000021","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0969607 AM","firefox.exe","7336","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM","0.0000132","Desired Access: Enumerate Sub Keys","7392"
"10:46:24.0969811 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000035","Type: REG_DWORD, Length: 4, Data: 8","5636"
"10:46:24.0969961 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Microsoft\Windows NT\CurrentVersion\ICM","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0970025 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0970127 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000034","Desired Access: Read","5636"
"10:46:24.0970140 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Microsoft\Windows NT\CurrentVersion\ICM\ProfileAssociations\Display","0.0000043","Desired Access: Enumerate Sub Keys","7392"
"10:46:24.0970251 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000025","Type: REG_DWORD, Length: 4, Data: 1015","5636"
"10:46:24.0970353 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000026","Type: REG_DWORD, Length: 4, Data: 14","5636"
"10:46:24.0970358 AM","firefox.exe","7336","RegCloseKey","HKCU\Software\Microsoft\Windows NT\CurrentVersion\ICM","0.0000081","","7392"
"10:46:24.0970498 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0970631 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000055","Desired Access: Maximum Allowed, Granted Access: Read","5636"
"10:46:24.0970737 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0970823 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0970925 AM","firefox.exe","7336","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Class\{4D36E96E-E325-11CE-BFC1-08002BE10318}\0001","0.0000055","Desired Access: Query Value","7392"
"10:46:24.0970951 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000047","Desired Access: Read","5636"
"10:46:24.0971126 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4D36E96E-E325-11CE-BFC1-08002BE10318}\0001","0.0000081","Desired Access: Query Value","7392"
"10:46:24.0971185 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000043","Length: 144","5636"
"10:46:24.0971330 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e96e-e325-11ce-bfc1-08002be10318}\0001\ProfileEnumMode","0.0000030","Length: 16","7392"
"10:46:24.0971377 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0971484 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e96e-e325-11ce-bfc1-08002be10318}\0001","0.0000013","","7392"
"10:46:24.0971569 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000013","","5636"
"10:46:24.0971629 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0971719 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0971748 AM","firefox.exe","7336","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Class\{4D36E96E-E325-11CE-BFC1-08002BE10318}\0001","0.0000035","Desired Access: Query Value","7392"
"10:46:24.0971864 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000068","Desired Access: Read","5636"
"10:46:24.0971872 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4D36E96E-E325-11CE-BFC1-08002BE10318}\0001","0.0000073","Desired Access: Query Value","7392"
"10:46:24.0972047 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e96e-e325-11ce-bfc1-08002be10318}\0001\ICMProfile","0.0000056","Length: 12","7392"
"10:46:24.0972073 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000047","Length: 144","5636"
"10:46:24.0972226 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0972239 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e96e-e325-11ce-bfc1-08002be10318}\0001","0.0000013","","7392"
"10:46:24.0972406 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000012","","5636"
"10:46:24.0972474 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0972542 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0972585 AM","firefox.exe","7336","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000055","Desired Access: Read","7392"
"10:46:24.0972683 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000043","Desired Access: Read","5636"
"10:46:24.0972747 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0972854 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000042","Length: 144","5636"
"10:46:24.0972879 AM","firefox.exe","7336","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000073","Desired Access: Read","7392"
"10:46:24.0973003 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0973071 AM","firefox.exe","7336","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000017","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","7392"
"10:46:24.0973186 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000047","","5636"
"10:46:24.0973199 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\sRGB","0.0000047","Length: 12","7392"
"10:46:24.0973353 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000042","","7392"
"10:46:24.0973374 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000047","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0973545 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0973549 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000051","Desired Access: Read","5636"
"10:46:24.0973660 AM","firefox.exe","7336","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000043","Desired Access: Read","7392"
"10:46:24.0973728 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000030","Length: 144","5636"
"10:46:24.0973801 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0973865 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0973929 AM","firefox.exe","7336","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000051","Desired Access: Read","7392"
"10:46:24.0974048 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","","5636"
"10:46:24.0974074 AM","firefox.exe","7336","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000013","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","7392"
"10:46:24.0974172 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\sRGB","0.0000026","Length: 12","7392"
"10:46:24.0974189 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0974330 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000042","Desired Access: Read","5636"
"10:46:24.0974334 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000013","","7392"
"10:46:24.0974500 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000030","Length: 144","5636"
"10:46:24.0974509 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0974620 AM","firefox.exe","7336","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000038","Desired Access: Read","7392"
"10:46:24.0974646 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0974774 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0974838 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000012","","5636"
"10:46:24.0974876 AM","firefox.exe","7336","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000047","Desired Access: Read","7392"
"10:46:24.0974978 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0975042 AM","firefox.exe","7336","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000009","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","7392"
"10:46:24.0975119 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000043","Desired Access: Read","5636"
"10:46:24.0975136 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\camp","0.0000034","Length: 12","7392"
"10:46:24.0975247 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\camp","0.0000030","Type: REG_SZ, Length: 18, Data: D65.camp","7392"
"10:46:24.0975290 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000030","Length: 144","5636"
"10:46:24.0975422 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0975580 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000017","","5636"
"10:46:24.0975712 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0975840 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000039","Desired Access: Read","5636"
"10:46:24.0975998 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000026","Length: 144","5636"
"10:46:24.0976126 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0976275 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000013","","5636"
"10:46:24.0976403 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0976527 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000043","Desired Access: Read","5636"
"10:46:24.0976685 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000026","Length: 144","5636"
"10:46:24.0976817 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0976975 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000013","","5636"
"10:46:24.0977099 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0977231 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000034","Desired Access: Read","5636"
"10:46:24.0977385 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000025","Length: 144","5636"
"10:46:24.0977513 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0977666 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000013","","5636"
"10:46:24.0977718 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\spool\drivers\color\D65.camp","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0977799 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0977931 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000038","Desired Access: Read","5636"
"10:46:24.0977995 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\spool\drivers\color\D65.camp","0.0000038","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 8:09:14 PM, FileAttributes: A","7392"
"10:46:24.0978093 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000030","Length: 144","5636"
"10:46:24.0978106 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\spool\drivers\color\D65.camp","0.0000051","","7392"
"10:46:24.0978230 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000055","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0978451 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000017","","5636"
"10:46:24.0978550 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000021","","7392"
"10:46:24.0978588 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0978716 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000047","Desired Access: Read","5636"
"10:46:24.0978814 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000034","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0978891 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0979027 AM","firefox.exe","7336","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000081","Desired Access: Read","7392"
"10:46:24.0979066 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0979236 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000013","","5636"
"10:46:24.0979288 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0979369 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0979424 AM","firefox.exe","7336","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000064","Desired Access: Read","7392"
"10:46:24.0979505 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000043","Desired Access: Read","5636"
"10:46:24.0979599 AM","firefox.exe","7336","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000009","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","7392"
"10:46:24.0979672 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000030","Length: 144","5636"
"10:46:24.0979706 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\camp","0.0000025","Length: 12","7392"
"10:46:24.0979808 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0979821 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\camp","0.0000030","Type: REG_SZ, Length: 18, Data: D65.camp","7392"
"10:46:24.0979979 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000013","","5636"
"10:46:24.0980107 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0980235 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000038","Desired Access: Read","5636"
"10:46:24.0980397 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000026","Length: 144","5636"
"10:46:24.0980525 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0980679 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000012","","5636"
"10:46:24.0980802 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0980935 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000038","Desired Access: Read","5636"
"10:46:24.0981092 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000026","Length: 144","5636"
"10:46:24.0981220 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0981374 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000009","","5636"
"10:46:24.0981494 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","","5636"
"10:46:24.0981651 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\spool\drivers\color\D65.camp","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0981715 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000022","","5636"
"10:46:24.0981860 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","","5636"
"10:46:24.0981886 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\spool\drivers\color\D65.camp","0.0000034","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 8:09:14 PM, FileAttributes: A","7392"
"10:46:24.0981984 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\spool\drivers\color\D65.camp","0.0000047","","7392"
"10:46:24.0982146 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0982287 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000056","Desired Access: All Access","5636"
"10:46:24.0982304 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000017","","7392"
"10:46:24.0982462 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000504","Desired Access: All Access","5636"
"10:46:24.0982492 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0982624 AM","firefox.exe","7336","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000047","Desired Access: Read","7392"
"10:46:24.0982714 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000042","Information: Owner","5636"
"10:46:24.0982791 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0982902 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000029","Information: Owner","5636"
"10:46:24.0982927 AM","firefox.exe","7336","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000068","Desired Access: Read","7392"
"10:46:24.0983102 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0983192 AM","firefox.exe","7336","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000017","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","7392"
"10:46:24.0983243 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000043","Desired Access: Read","5636"
"10:46:24.0983307 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\rip","0.0000030","Length: 12","7392"
"10:46:24.0983396 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000060","Desired Access: Read","5636"
"10:46:24.0983422 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\rip","0.0000030","Type: REG_SZ, Length: 22, Data: Photo.gmmp","7392"
"10:46:24.0983593 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000034","Length: 16","5636"
"10:46:24.0983734 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000029","Type: REG_SZ, Length: 8, Data: 2.0","5636"
"10:46:24.0983879 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000034","Length: 44","5636"
"10:46:24.0984011 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000030","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","5636"
"10:46:24.0984186 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0984318 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000060","Desired Access: Maximum Allowed, Granted Access: Read","5636"
"10:46:24.0984493 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","5636"
"10:46:24.0984928 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000026","Type: REG_DWORD, Length: 4, Data: 8","5636"
"10:46:24.0985078 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0985129 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\spool\drivers\color\Photo.gmmp","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0985218 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000034","Desired Access: Read","5636"
"10:46:24.0985346 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\spool\drivers\color\Photo.gmmp","0.0000030","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 8:09:14 PM, FileAttributes: A","7392"
"10:46:24.0985372 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000030","Type: REG_DWORD, Length: 4, Data: 1015","5636"
"10:46:24.0985440 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\spool\drivers\color\Photo.gmmp","0.0000043","","7392"
"10:46:24.0985513 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000025","Type: REG_DWORD, Length: 4, Data: 14","5636"
"10:46:24.0985649 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0985752 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000012","","7392"
"10:46:24.0985782 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000055","Desired Access: Maximum Allowed, Granted Access: Read","5636"
"10:46:24.0985901 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0985965 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0986029 AM","firefox.exe","7336","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000051","Desired Access: Read","7392"
"10:46:24.0986102 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000042","Desired Access: Read","5636"
"10:46:24.0986191 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.0986272 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0986302 AM","firefox.exe","7336","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000056","Desired Access: Read","7392"
"10:46:24.0986422 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0986464 AM","firefox.exe","7336","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000013","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","7392"
"10:46:24.0986601 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\rip","0.0000059","Length: 12","7392"
"10:46:24.0986622 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000056","","5636"
"10:46:24.0986750 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\rip","0.0000030","Type: REG_SZ, Length: 22, Data: Photo.gmmp","7392"
"10:46:24.0986801 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0986934 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000051","Desired Access: Read","5636"
"10:46:24.0987108 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000026","Length: 144","5636"
"10:46:24.0987236 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0987394 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000013","","5636"
"10:46:24.0987522 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0987655 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000098","Desired Access: Read","5636"
"10:46:24.0987958 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000042","Length: 144","5636"
"10:46:24.0988132 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0988354 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000017","","5636"
"10:46:24.0988516 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0988683 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000055","Desired Access: Read","5636"
"10:46:24.0988845 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\spool\drivers\color\Photo.gmmp","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0988879 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0989024 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0989144 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\spool\drivers\color\Photo.gmmp","0.0000038","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 8:09:14 PM, FileAttributes: A","7392"
"10:46:24.0989212 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","","5636"
"10:46:24.0989284 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\spool\drivers\color\Photo.gmmp","0.0000060","","7392"
"10:46:24.0989361 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0989511 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000051","Desired Access: Read","5636"
"10:46:24.0989690 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0989711 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000017","","7392"
"10:46:24.0989831 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0989997 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000013","","5636"
"10:46:24.0990134 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0990279 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000047","Desired Access: Read","5636"
"10:46:24.0990458 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000034","Length: 144","5636"
"10:46:24.0990603 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0990791 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000017","","5636"
"10:46:24.0990931 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0991081 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000042","Desired Access: Read","5636"
"10:46:24.0991256 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000030","Length: 144","5636"
"10:46:24.0991337 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000200","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0991392 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0991580 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000013","","5636"
"10:46:24.0991785 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000047","AllocationSize: 4,096, EndOfFile: 3,144, NumberOfLinks: 2, DeletePending: False, Directory: False","7392"
"10:46:24.0992075 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:24.0992216 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0992292 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000030","AllocationSize: 4,096, EndOfFile: 3,144, NumberOfLinks: 2, DeletePending: False, Directory: False","7392"
"10:46:24.0992374 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000046","Desired Access: Read","5636"
"10:46:24.0992557 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000030","Length: 144","5636"
"10:46:24.0992655 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000026","SyncType: SyncTypeOther","7392"
"10:46:24.0992698 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0992877 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000013","","5636"
"10:46:24.0993005 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0993146 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000060","Desired Access: Read","5636"
"10:46:24.0993329 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000030","Length: 144","5636"
"10:46:24.0993470 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0993517 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000081","","7392"
"10:46:24.0993645 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000013","","5636"
"10:46:24.0993782 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0993918 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000043","Desired Access: Read","5636"
"10:46:24.0994080 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000030","Length: 144","5636"
"10:46:24.0994208 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0994375 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000012","","5636"
"10:46:24.0994511 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0994652 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000043","Desired Access: Read","5636"
"10:46:24.0994827 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000030","Length: 144","5636"
"10:46:24.0994963 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000035","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0995143 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000012","","5636"
"10:46:24.0995283 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0995424 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000051","Desired Access: Read","5636"
"10:46:24.0995612 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000030","Length: 144","5636"
"10:46:24.0995753 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0995825 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000303","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","7392"
"10:46:24.0995906 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000013","","5636"
"10:46:24.0996004 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0996098 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000060","Desired Access: Read","5636"
"10:46:24.0996248 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Length: 144","5636"
"10:46:24.0996337 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0996448 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000009","","5636"
"10:46:24.0996542 AM","firefox.exe","7336","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","5636"
"10:46:24.0996585 AM","firefox.exe","7336","ReadFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000226","Offset: 0, Length: 3,144, Priority: Normal","7392"
"10:46:24.0996627 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000026","Desired Access: Read","5636"
"10:46:24.0996734 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000068","Length: 144","5636"
"10:46:24.0996896 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","5636"
"10:46:24.0997054 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000013","","5636"
"10:46:24.0997178 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000089","","7392"
"10:46:24.0997186 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","","5636"
"10:46:24.0997421 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","","5636"
"10:46:24.0997562 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","","5636"
"10:46:24.1005553 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 6308","7392"
"10:46:24.1008083 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 5416","7392"
"10:46:24.1016203 AM","firefox.exe","7336","QueryInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0000047","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","7392"
"10:46:24.1016421 AM","firefox.exe","7336","QueryAllInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0000059","CreationTime: 3/26/2020 10:35:21 AM, LastAccessTime: 3/26/2020 10:35:21 AM, LastWriteTime: 3/26/2020 10:35:21 AM, ChangeTime: 3/26/2020 10:46:21 AM, FileAttributes: A, AllocationSize: 667,648, EndOfFile: 667,473, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x58000000014bf7, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","7392"
"10:46:24.1016664 AM","firefox.exe","7336","CreateFileMapping","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:24.1016817 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0000026","AllocationSize: 667,648, EndOfFile: 667,473, NumberOfLinks: 1, DeletePending: False, Directory: False","7392"
"10:46:24.1017039 AM","firefox.exe","7336","CreateFileMapping","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0000017","SyncType: SyncTypeOther","7392"
"10:46:24.1022727 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0174387","Offset: 20,922,368, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:24.1039269 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0331055","Offset: 3,483,648, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.1233219 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 8564","7392"
"10:46:24.1237315 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 6060","7392"
"10:46:24.1238962 AM","firefox.exe","7336","RegCloseKey","HKLM","0.0000025","","7392"
"10:46:24.1239192 AM","firefox.exe","7336","RegOpenKey","HKLM","0.0000081","Desired Access: Maximum Allowed, Granted Access: Read","7392"
"10:46:24.1239435 AM","firefox.exe","7336","RegCloseKey","HKLM","0.0000013","","7392"
"10:46:24.1239576 AM","firefox.exe","7336","RegCloseKey","HKU","0.0000013","","7392"
"10:46:24.1239725 AM","firefox.exe","7336","RegOpenKey","HKU","0.0000039","Desired Access: Maximum Allowed, Granted Access: Read","7392"
"10:46:24.1239870 AM","firefox.exe","7336","RegCloseKey","HKU","0.0000013","","7392"
"10:46:24.1240075 AM","firefox.exe","7336","RegCloseKey","HKCU","0.0000013","","7392"
"10:46:24.1243041 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 2916","7392"
"10:46:24.1244935 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 7548","7392"
"10:46:24.1249398 AM","firefox.exe","7336","RegOpenKey","HKLM","0.0000072","Desired Access: Maximum Allowed, Granted Access: Read","7392"
"10:46:24.1249658 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.1249829 AM","firefox.exe","7336","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Parental Controls\Users\S-1-5-21-429253301-29906273-2566354956-1001\Web","0.0000132","Desired Access: Read","7392"
"10:46:24.1253801 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\Windows\Tablet PC\","0.0000077","Desired Access: Read","7392"
"10:46:24.1254023 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\Tablet PC\IsTabletPC","0.0000038","Type: REG_DWORD, Length: 4, Data: 0","7392"
"10:46:24.1254194 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\Tablet PC","0.0000012","","7392"
"10:46:24.1254885 AM","firefox.exe","7336","RegOpenKey","HKCU","0.0000064","Desired Access: Maximum Allowed, Granted Access: Read","7392"
"10:46:24.1255068 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.1255183 AM","firefox.exe","7336","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows\DWM","0.0000056","Desired Access: Query Value","7392"
"10:46:24.1255350 AM","firefox.exe","7336","RegCloseKey","HKCU","0.0000013","","7392"
"10:46:24.1255465 AM","firefox.exe","7336","RegQueryValue","HKCU\Software\Microsoft\Windows\DWM\AccentColor","0.0000034","Type: REG_DWORD, Length: 4, Data: 4292311040","7392"
"10:46:24.1255597 AM","firefox.exe","7336","RegCloseKey","HKCU\Software\Microsoft\Windows\DWM","0.0000013","","7392"
"10:46:24.1255742 AM","firefox.exe","7336","RegOpenKey","HKCU","0.0000043","Desired Access: Maximum Allowed, Granted Access: Read","7392"
"10:46:24.1255875 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000012","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.1255981 AM","firefox.exe","7336","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows\DWM","0.0000039","Desired Access: Query Value","7392"
"10:46:24.1256109 AM","firefox.exe","7336","RegCloseKey","HKCU","0.0000013","","7392"
"10:46:24.1256203 AM","firefox.exe","7336","RegQueryValue","HKCU\Software\Microsoft\Windows\DWM\AccentColor","0.0000026","Type: REG_DWORD, Length: 4, Data: 4292311040","7392"
"10:46:24.1256318 AM","firefox.exe","7336","RegCloseKey","HKCU\Software\Microsoft\Windows\DWM","0.0000009","","7392"
"10:46:24.1259463 AM","firefox.exe","7336","RegOpenKey","HKCU","0.0000051","Desired Access: Maximum Allowed, Granted Access: Read","7392"
"10:46:24.1259621 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:24.1259732 AM","firefox.exe","7336","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Themes\Personalize","0.0000055","Desired Access: Query Value","7392"
"10:46:24.1259890 AM","firefox.exe","7336","RegCloseKey","HKCU","0.0000008","","7392"
"10:46:24.1260001 AM","firefox.exe","7336","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Themes\Personalize\AppsUseLightTheme","0.0000025","Length: 16","7392"
"10:46:24.1260124 AM","firefox.exe","7336","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Themes\Personalize","0.0000009","","7392"
"10:46:24.1291130 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\Windows\Tablet PC\","0.0000128","Desired Access: Read","7392"
"10:46:24.1291450 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\Tablet PC\IsTabletPC","0.0000043","Type: REG_DWORD, Length: 4, Data: 0","7392"
"10:46:24.1291668 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\Tablet PC","0.0000013","","7392"
"10:46:24.1374744 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0127330","Offset: 3,828,736, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.1502625 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0012104","Offset: 3,845,120, Length: 12,800, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.1517153 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0000051","SyncType: SyncTypeOther","1316"
"10:46:24.1518501 AM","firefox.exe","1008","Load Image","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0000000","Image Base: 0x7ffb1d410000, Image Size: 0x3b8000","1316"
"10:46:24.1518834 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0006272","Offset: 3,633,152, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.1525541 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0003588","Offset: 3,826,688, Length: 512, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.1529697 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0002509","Offset: 3,827,712, Length: 1,024, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.1532607 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005884","Offset: 3,610,624, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.1539357 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0000132","","1316"
"10:46:24.1541494 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\d3d9.dll","0.0000534","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","800"
"10:46:24.1542147 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\d3d9.dll","0.0000043","CreationTime: 3/20/2019 7:39:25 PM, LastAccessTime: 3/20/2019 7:39:43 PM, LastWriteTime: 3/20/2019 7:39:25 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","800"
"10:46:24.1542279 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\d3d9.dll","0.0000052","","800"
"10:46:24.1543346 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\d3d9.dll","0.0000132","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","800"
"10:46:24.1543692 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\d3d9.dll","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","800"
"10:46:24.1543807 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\System32\d3d9.dll","0.0000030","AllocationSize: 1,650,688, EndOfFile: 1,649,760, NumberOfLinks: 2, DeletePending: False, Directory: False","800"
"10:46:24.1543935 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d9.dll","0.0134835","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","800"
"10:46:24.1679628 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d9.dll","0.0093256","Offset: 1,212,928, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","800"
"10:46:24.1773584 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d9.dll","0.0005700","Offset: 1,229,312, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","800"
"10:46:24.1781874 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d9.dll","0.0027751","Offset: 1,619,456, Length: 7,168, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","800"
"10:46:24.1811148 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\d3d9.dll","0.0000072","SyncType: SyncTypeOther","800"
"10:46:24.1812710 AM","firefox.exe","1008","Load Image","C:\Windows\System32\d3d9.dll","0.0000000","Image Base: 0x7ffb1c310000, Image Size: 0x197000","800"
"10:46:24.1813123 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d9.dll","0.0013334","Offset: 1,562,624, Length: 2,560, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","800"
"10:46:24.1827067 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d9.dll","0.0005717","Offset: 1,544,704, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","800"
"10:46:24.1833313 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d9.dll","0.0004024","Offset: 1,610,752, Length: 512, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","800"
"10:46:24.1838267 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d9.dll","0.0004578","Offset: 1,611,264, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","800"
"10:46:24.1839248 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005649","Offset: 3,274,752, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6852"
"10:46:24.1843784 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d9.dll","0.0007253","Offset: 1,561,088, Length: 1,536, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","800"
"10:46:24.1845559 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0007842","Offset: 3,735,552, Length: 14,848, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6852"
"10:46:24.1851660 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\d3d9.dll","0.0000179","","800"
"10:46:24.1853960 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0004057","Offset: 3,827,200, Length: 512, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6852"
"10:46:24.1859400 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d9.dll","0.0003678","Offset: 1,597,952, Length: 12,800, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.1863517 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d9.dll","0.0005410","Offset: 1,581,568, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.1869397 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d9.dll","0.0005704","Offset: 1,565,184, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.1875839 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d9.dll","0.0006153","Offset: 1,466,880, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.1883024 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d9.dll","0.0008290","Offset: 279,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.1892014 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d9.dll","0.0004932","Offset: 279,552, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.1898521 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d9.dll","0.0005154","Offset: 1,528,320, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.1904699 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d9.dll","0.0008316","Offset: 275,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.1914039 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d9.dll","0.0006336","Offset: 1,503,744, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.1921113 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d9.dll","0.0008909","Offset: 246,784, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.1931767 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d9.dll","0.0007522","Offset: 1,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.1940040 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d9.dll","0.0005077","Offset: 1,024, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.1946598 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d9.dll","0.0005888","Offset: 1,262,080, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.1954359 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d9.dll","0.0005030","Offset: 238,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.1960208 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d9.dll","0.0008333","Offset: 214,016, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.1971963 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\WMI\Security\65cd4c8a-0848-4583-92a0-31c0fbaf00c0","0.0000627","Length: 524","1316"
"10:46:24.1973832 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\WMI\Security\783aca0a-790e-4d7f-8451-aa850511c6b9","0.0000431","Length: 524","1316"
"10:46:24.1974937 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000055","Query: HandleTags, HandleTags: 0x0","1316"
"10:46:24.1975440 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\Direct3D","0.0000192","Desired Access: Query Value","1316"
"10:46:24.1975991 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","1316"
"10:46:24.1976332 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\Direct3D\Drivers","0.0000115","Desired Access: Query Value","1316"
"10:46:24.1976737 AM","firefox.exe","1008","RegQueryKey","HKCU","0.0000035","Query: HandleTags, HandleTags: 0x0","1316"
"10:46:24.1977040 AM","firefox.exe","1008","RegOpenKey","HKCU\Software\Microsoft\Direct3D","0.0000111","Desired Access: Query Value","1316"
"10:46:24.1977420 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","1316"
"10:46:24.1977702 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\GraphicsDrivers\Scheduler","0.0000136","Desired Access: Query Value","1316"
"10:46:24.1978107 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\GraphicsDrivers\Scheduler","0.0000124","Desired Access: Query Value","1316"
"10:46:24.1982869 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000478","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.1983833 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000115","AllocationSize: 581,632, EndOfFile: 579,272, NumberOfLinks: 1, DeletePending: False, Directory: False","1316"
"10:46:24.1984315 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000188","","1316"
"10:46:24.1985339 AM","firefox.exe","1008","RegQueryKey","HKCU","0.0000038","Query: HandleTags, HandleTags: 0x0","1316"
"10:46:24.1985685 AM","firefox.exe","1008","RegOpenKey","HKCU\Software\Microsoft\Direct3D","0.0000111","Desired Access: Read","1316"
"10:46:24.1986077 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","1316"
"10:46:24.1986367 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\Direct3D","0.0000111","Desired Access: Read","1316"
"10:46:24.1986743 AM","firefox.exe","1008","RegQueryKey","HKCU","0.0000030","Query: HandleTags, HandleTags: 0x0","1316"
"10:46:24.1987029 AM","firefox.exe","1008","RegOpenKey","HKCU\Software\Microsoft\Direct3D\Drivers","0.0000094","Desired Access: Read","1316"
"10:46:24.1987379 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","1316"
"10:46:24.1987652 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\Direct3D\Drivers","0.0000102","Desired Access: Read","1316"
"10:46:24.1988010 AM","firefox.exe","1008","RegQueryKey","HKCU","0.0000030","Query: HandleTags, HandleTags: 0x0","1316"
"10:46:24.1988279 AM","firefox.exe","1008","RegOpenKey","HKCU\Software\Microsoft\Direct3D","0.0000085","Desired Access: Read","1316"
"10:46:24.1988612 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000072","Query: HandleTags, HandleTags: 0x0","1316"
"10:46:24.1988932 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\Direct3D","0.0000098","Desired Access: Read","1316"
"10:46:24.1989294 AM","firefox.exe","1008","RegQueryKey","HKCU","0.0000043","Query: HandleTags, HandleTags: 0x0","1316"
"10:46:24.1989589 AM","firefox.exe","1008","RegOpenKey","HKCU\System\CurrentControlSet\Control\GraphicsDrivers\Scheduler","0.0000324","Desired Access: Read","1316"
"10:46:24.1990186 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","1316"
"10:46:24.1990472 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\GraphicsDrivers\Scheduler","0.0000102","Desired Access: Read","1316"
"10:46:24.1990813 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\GraphicsDrivers\Scheduler","0.0000115","Desired Access: Read","1316"
"10:46:24.1992046 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d9.dll","0.0004805","Offset: 1,487,360, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.1997397 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\WMI\Security\b0f726cb-ca9c-4c11-b5b4-8c65aae214e9","0.0000533","Length: 524","1316"
"10:46:24.1999782 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0007697","Offset: 3,811,840, Length: 14,848, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.2008674 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0007377","Offset: 3,787,264, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.2017083 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0004813","Offset: 3,803,648, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.2023014 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005205","Offset: 2,925,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.2028932 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0004475","Offset: 2,900,992, Length: 29,696, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.2035652 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0011597","Offset: 3,766,784, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.2048243 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0241515","Offset: 1,025,024, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.2302549 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000717","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.2303991 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000115","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","1316"
"10:46:24.2304691 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000243","","1316"
"10:46:24.2307494 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0173888","Offset: 2,102,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.2482078 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0111172","Offset: 2,102,272, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.2595234 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0008589","Offset: 3,750,400, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.2604783 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0123985","Offset: 578,560, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.2730343 AM","firefox.exe","1008","QueryNameInformationFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0000251","Name: \Program Files\Firefox Nightly\libGLESv2.dll","1316"
"10:46:24.2740881 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\libEGL.dll","0.0001443","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.2742780 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\libEGL.dll","0.0000115","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","1316"
"10:46:24.2743220 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\libEGL.dll","0.0000166","","1316"
"10:46:24.2746761 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\libEGL.dll","0.0000380","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.2747623 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\libEGL.dll","0.0000085","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1316"
"10:46:24.2748028 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\libEGL.dll","0.0000090","AllocationSize: 45,056, EndOfFile: 43,720, NumberOfLinks: 1, DeletePending: False, Directory: False","1316"
"10:46:24.2748672 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\libEGL.dll","0.0000047","SyncType: SyncTypeOther","1316"
"10:46:24.2749799 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libEGL.dll","0.0090048","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.2842501 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\libEGL.dll","0.0000542","","1316"
"10:46:24.2854204 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\libEGL.dll","0.0000734","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.2855570 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\libEGL.dll","0.0000179","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","1316"
"10:46:24.2856261 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\libEGL.dll","0.0000213","","1316"
"10:46:24.2861338 AM","firefox.exe","1008","CreateFile","C:\Program Files\Firefox Nightly\libEGL.dll","0.0000580","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.2862699 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\libEGL.dll","0.0000154","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1316"
"10:46:24.2863352 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\libEGL.dll","0.0000141","AllocationSize: 45,056, EndOfFile: 43,720, NumberOfLinks: 1, DeletePending: False, Directory: False","1316"
"10:46:24.2868186 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libEGL.dll","0.0081873","Offset: 34,304, Length: 512, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.2952777 AM","firefox.exe","1008","CreateFileMapping","C:\Program Files\Firefox Nightly\libEGL.dll","0.0000243","SyncType: SyncTypeOther","1316"
"10:46:24.2957453 AM","firefox.exe","1008","Load Image","C:\Program Files\Firefox Nightly\libEGL.dll","0.0000000","Image Base: 0x7ffb3ca80000, Image Size: 0xe000","1316"
"10:46:24.2959962 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libEGL.dll","0.0005632","Offset: 32,768, Length: 512, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.2968564 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libEGL.dll","0.0004066","Offset: 33,280, Length: 1,024, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.2977170 AM","firefox.exe","1008","CloseFile","C:\Program Files\Firefox Nightly\libEGL.dll","0.0000520","","1316"
"10:46:24.2980754 AM","firefox.exe","1008","QueryNameInformationFile","C:\Program Files\Firefox Nightly\libEGL.dll","0.0000286","Name: \Program Files\Firefox Nightly\libEGL.dll","1316"
"10:46:24.2986463 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0035665","Offset: 3,504,128, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.3024252 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0112077","Offset: 3,573,760, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.3139632 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0024832","Offset: 3,500,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.3166486 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0006349","Offset: 3,545,088, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.3174909 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005964","Offset: 3,561,472, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.3183903 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0006054","Offset: 3,590,144, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.3194083 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005973","Offset: 3,627,008, Length: 6,144, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.3201567 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0008751","Offset: 1,881,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.3211389 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0027840","Offset: 1,881,088, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.3241746 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0089528","Offset: 230,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.3332131 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0110119","Offset: 230,400, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.3444737 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0093543","Offset: 46,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.3539039 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0110861","Offset: 46,080, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.3651517 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0008329","Offset: 3,291,136, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.3661902 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005300","Offset: 3,323,904, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.3669160 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0007944","Offset: 3,307,520, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.3679012 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005141","Offset: 3,377,152, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.3686282 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0076920","Offset: 115,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.3763790 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0111288","Offset: 115,712, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.3876665 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0111433","Offset: 193,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.3988691 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0008909","Offset: 193,536, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.3999430 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005560","Offset: 189,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4005813 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0006106","Offset: 160,768, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4013698 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005252","Offset: 3,422,208, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4022159 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0007607","Offset: 3,360,768, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4031494 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0007928","Offset: 3,340,288, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4041227 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0006011","Offset: 3,783,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4048203 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0006903","Offset: 1,725,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4055691 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005512","Offset: 1,725,440, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4063243 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0086340","Offset: 877,568, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4150965 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0007168","Offset: 2,996,224, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4160198 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0179081","Offset: 1,913,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4340081 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0110853","Offset: 1,913,856, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4455491 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0127219","Offset: 775,168, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4584869 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0107153","Offset: 340,992, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4694787 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0007108","Offset: 1,700,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4703026 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0007296","Offset: 1,692,672, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4713803 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0013521","Offset: 1,229,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4728220 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0006806","Offset: 1,229,824, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4737466 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0008167","Offset: 1,020,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4746563 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0008239","Offset: 992,256, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4757323 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005765","Offset: 37,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4763992 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0006213","Offset: 17,408, Length: 28,672, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4774535 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0006528","Offset: 1,209,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4781968 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0008955","Offset: 1,197,056, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4793159 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005607","Offset: 3,147,776, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4801381 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0004361","Offset: 1,291,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4806616 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0006562","Offset: 1,291,264, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4815261 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0008533","Offset: 627,712, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4825944 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0007727","Offset: 2,967,552, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4836325 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0012263","Offset: 1,094,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4849236 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005611","Offset: 1,094,656, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4856383 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0007142","Offset: 1,090,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4864174 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0007415","Offset: 1,061,888, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4873036 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005431","Offset: 1,266,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4879116 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0008111","Offset: 1,262,592, Length: 28,672, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4888716 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005546","Offset: 1,422,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4894902 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005261","Offset: 1,422,336, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4901938 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0006336","Offset: 2,951,168, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4910646 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0007168","Offset: 1,192,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4918723 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0007893","Offset: 1,164,288, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4928818 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0004894","Offset: 1,524,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4934343 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005560","Offset: 1,524,736, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4942075 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005939","Offset: 3,131,392, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4957528 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igdumdim64.dll","0.0000555","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.4958629 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igdumdim64.dll","0.0000115","CreationTime: 5/9/2018 4:39:56 AM, LastAccessTime: 3/20/2019 7:14:15 PM, LastWriteTime: 5/9/2018 4:39:56 AM, ChangeTime: 3/20/2019 7:18:35 PM, FileAttributes: A","1316"
"10:46:24.4959222 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igdumdim64.dll","0.0000192","","1316"
"10:46:24.4964654 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igdumdim64.dll","0.0000452","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.4965763 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igdumdim64.dll","0.0000094","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1316"
"10:46:24.4969245 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igdumdim64.dll","0.0000115","SyncType: SyncTypeOther","1316"
"10:46:24.4970678 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igdumdim64.dll","0.0000201","","1316"
"10:46:24.4978747 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igdumdim64.dll","0.0000439","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.4979515 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igdumdim64.dll","0.0000098","CreationTime: 5/9/2018 4:39:56 AM, LastAccessTime: 3/20/2019 7:14:15 PM, LastWriteTime: 5/9/2018 4:39:56 AM, ChangeTime: 3/20/2019 7:18:35 PM, FileAttributes: A","1316"
"10:46:24.4979886 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igdumdim64.dll","0.0000136","","1316"
"10:46:24.4983167 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igdumdim64.dll","0.0000444","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.4984076 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igdumdim64.dll","0.0000106","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1316"
"10:46:24.4986397 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igdumdim64.dll","0.0000064","SyncType: SyncTypeOther","1316"
"10:46:24.4987417 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igdumdim64.dll","0.0000170","","1316"
"10:46:24.4989998 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0004919","Offset: 1,659,904, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.4996061 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0004377","Offset: 3,176,448, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5002883 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0003670","Offset: 1,520,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5006996 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0004109","Offset: 1,491,968, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5012492 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005709","Offset: 1,160,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5018674 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0006208","Offset: 1,131,520, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5026687 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0004915","Offset: 726,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5032050 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0009238","Offset: 726,016, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5042772 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0012834","Offset: 721,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5056276 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005999","Offset: 693,248, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5064545 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005662","Offset: 660,480, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5078352 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005888","Offset: 1,455,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5085157 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005402","Offset: 1,455,104, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5093256 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0006993","Offset: 3,164,160, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5123946 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000503","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.5124914 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000111","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","1316"
"10:46:24.5125379 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000167","","1316"
"10:46:24.5130022 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000435","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.5131007 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\CoreMessaging.dll","0.0000085","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1316"
"10:46:24.5131745 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\CoreMessaging.dll","0.0000047","SyncType: SyncTypeOther","1316"
"10:46:24.5133990 AM","firefox.exe","1008","Load Image","C:\Windows\System32\CoreMessaging.dll","0.0000000","Image Base: 0x7ffb43bf0000, Image Size: 0xda000","1316"
"10:46:24.5139220 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000239","","1316"
"10:46:24.5141721 AM","firefox.exe","1008","QueryNameInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000145","Name: \Windows\System32\CoreMessaging.dll","1316"
"10:46:24.5144635 AM","firefox.exe","1008","RegOpenKey","HKCU\Software\Classes","0.0000217","Desired Access: Maximum Allowed, Granted Access: All Access","1316"
"10:46:24.5146201 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000051","Query: HandleTags, HandleTags: 0x0","1316"
"10:46:24.5146602 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\COM3","0.0000145","Desired Access: Read","1316"
"10:46:24.5147080 AM","firefox.exe","1008","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\COM3","0.0000038","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","1316"
"10:46:24.5147408 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\COM3\Com+Enabled","0.0000107","Type: REG_DWORD, Length: 4, Data: 1","1316"
"10:46:24.5147865 AM","firefox.exe","1008","RegCloseKey","HKLM\SOFTWARE\Microsoft\COM3","0.0000038","","1316"
"10:46:24.5150911 AM","firefox.exe","1008","Load Image","C:\Windows\System32\clbcatq.dll","0.0000000","Image Base: 0x7ffb46ce0000, Image Size: 0xa0000","1316"
"10:46:24.5159346 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\WindowsRuntime","0.0000137","Desired Access: Read","1316"
"10:46:24.5159794 AM","firefox.exe","1008","RegOpenKey","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId","0.0000069","Desired Access: Read","1316"
"10:46:24.5160106 AM","firefox.exe","1008","RegOpenKey","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Metadata.ApiInformation","0.0000200","Desired Access: Read","1316"
"10:46:24.5160550 AM","firefox.exe","1008","RegQueryKey","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Metadata.ApiInformation","0.0000064","Query: Basic, Name: Windows.Foundation.Metadata.ApiInformation","1316"
"10:46:24.5161147 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Metadata.ApiInformation\ActivationType","0.0000055","Type: REG_DWORD, Length: 4, Data: 0","1316"
"10:46:24.5161416 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Metadata.ApiInformation\Server","0.0000047","Length: 144","1316"
"10:46:24.5161646 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Metadata.ApiInformation\DllPath","0.0000051","Type: REG_SZ, Length: 66, Data: C:\Windows\System32\WinTypes.dll","1316"
"10:46:24.5161876 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Metadata.ApiInformation\Threading","0.0000047","Type: REG_DWORD, Length: 4, Data: 0","1316"
"10:46:24.5162081 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Metadata.ApiInformation\TrustLevel","0.0000043","Type: REG_DWORD, Length: 4, Data: 0","1316"
"10:46:24.5162307 AM","firefox.exe","1008","RegQueryKey","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Metadata.ApiInformation","0.0000022","Query: HandleTags, HandleTags: 0x0","1316"
"10:46:24.5162525 AM","firefox.exe","1008","RegOpenKey","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Metadata.ApiInformation\CustomAttributes","0.0000055","Desired Access: Read","1316"
"10:46:24.5162772 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Metadata.ApiInformation\RemoteServer","0.0000047","Length: 144","1316"
"10:46:24.5162977 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Metadata.ApiInformation\ActivateAsUser","0.0000039","Length: 16","1316"
"10:46:24.5163174 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Metadata.ApiInformation\ActivateInSharedBroker","0.0000042","Length: 16","1316"
"10:46:24.5163374 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Metadata.ApiInformation\Permissions","0.0000043","Length: 140","1316"
"10:46:24.5163617 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","1316"
"10:46:24.5163822 AM","firefox.exe","1008","RegOpenKey","HKLM\SOFTWARE\Microsoft\OLE\Diagnosis","0.0000090","Desired Access: Read","1316"
"10:46:24.5164462 AM","firefox.exe","1008","RegCloseKey","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.Foundation.Metadata.ApiInformation","0.0000030","","1316"
"10:46:24.5164910 AM","firefox.exe","1008","RegOpenKey","HKCU","0.0000085","Desired Access: Read","1316"
"10:46:24.5165187 AM","firefox.exe","1008","RegQueryKey","HKCU","0.0000022","Query: HandleTags, HandleTags: 0x0","1316"
"10:46:24.5165375 AM","firefox.exe","1008","RegOpenKey","HKCU\Software\Classes","0.0000077","Desired Access: Notify","1316"
"10:46:24.5165597 AM","firefox.exe","1008","RegOpenKey","HKCU\Software\Classes","0.0000068","Desired Access: Notify","1316"
"10:46:24.5165879 AM","firefox.exe","1008","RegCloseKey","HKCU","0.0000021","","1316"
"10:46:24.5166327 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","1316"
"10:46:24.5166514 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\OLE","0.0000069","Desired Access: Read","1316"
"10:46:24.5166753 AM","firefox.exe","1008","RegQueryValue","HKLM\SOFTWARE\Microsoft\Ole\MaxSxSHashCount","0.0000051","Length: 16","1316"
"10:46:24.5166979 AM","firefox.exe","1008","RegCloseKey","HKLM\SOFTWARE\Microsoft\Ole","0.0000022","","1316"
"10:46:24.5171809 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000329","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.5172599 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000076","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","1316"
"10:46:24.5172897 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000111","","1316"
"10:46:24.5175116 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000265","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.5175875 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\WinTypes.dll","0.0000060","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1316"
"10:46:24.5176153 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\System32\WinTypes.dll","0.0000060","AllocationSize: 1,363,968, EndOfFile: 1,363,536, NumberOfLinks: 3, DeletePending: False, Directory: False","1316"
"10:46:24.5176597 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\WinTypes.dll","0.0000034","SyncType: SyncTypeOther","1316"
"10:46:24.5177855 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000115","","1316"
"10:46:24.5182194 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.5182860 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000060","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","1316"
"10:46:24.5183116 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000090","","1316"
"10:46:24.5187643 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000414","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.5188983 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\WinTypes.dll","0.0000072","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1316"
"10:46:24.5189601 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\WinTypes.dll","0.0000034","SyncType: SyncTypeOther","1316"
"10:46:24.5191026 AM","firefox.exe","1008","Load Image","C:\Windows\System32\WinTypes.dll","0.0000000","Image Base: 0x7ffb41af0000, Image Size: 0x14d000","1316"
"10:46:24.5195029 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000174","","1316"
"10:46:24.5204326 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000345","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.5205055 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000073","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","1316"
"10:46:24.5205414 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000119","","1316"
"10:46:24.5207453 AM","firefox.exe","1008","QueryNameInformationFile","C:\Windows\System32\WinTypes.dll","0.0000090","Name: \Windows\System32\WinTypes.dll","1316"
"10:46:24.5218316 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\rometadata.dll","0.0000384","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.5219003 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\rometadata.dll","0.0000068","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","1316"
"10:46:24.5219302 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\rometadata.dll","0.0000106","","1316"
"10:46:24.5221572 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\rometadata.dll","0.0000243","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.5222148 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\rometadata.dll","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1316"
"10:46:24.5222638 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\rometadata.dll","0.0000034","SyncType: SyncTypeOther","1316"
"10:46:24.5224797 AM","firefox.exe","1008","Load Image","C:\Windows\System32\rometadata.dll","0.0000000","Image Base: 0x7ffb32e70000, Image Size: 0x3b000","1316"
"10:46:24.5226436 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\rometadata.dll","0.0000192","","1316"
"10:46:24.5233156 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\WinMetadata\Windows.Foundation.UniversalApiContract.winmd","0.0000298","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","1316"
"10:46:24.5236897 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\WinMetadata\Windows.Foundation.winmd","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.5237418 AM","firefox.exe","1008","QueryBasicInformationFile","C:\Windows\System32\WinMetadata\Windows.Foundation.winmd","0.0000064","CreationTime: 4/11/2018 4:33:58 PM, LastAccessTime: 4/11/2018 4:33:58 PM, LastWriteTime: 4/11/2018 4:33:58 PM, ChangeTime: 3/20/2019 8:18:49 PM, FileAttributes: A","1316"
"10:46:24.5237691 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\WinMetadata\Windows.Foundation.winmd","0.0000098","","1316"
"10:46:24.5240439 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\rometadata.dll","0.0106556","Offset: 213,504, Length: 6,656, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5350715 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\WinMetadata\Windows.Foundation.winmd","0.0000367","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.5351419 AM","firefox.exe","1008","QueryNetworkOpenInformationFile","C:\Windows\System32\WinMetadata\Windows.Foundation.winmd","0.0000085","CreationTime: 4/11/2018 4:33:58 PM, LastAccessTime: 4/11/2018 4:33:58 PM, LastWriteTime: 4/11/2018 4:33:58 PM, ChangeTime: 3/20/2019 8:18:49 PM, AllocationSize: 69632, EndOfFile: 68704, FileAttributes: A","1316"
"10:46:24.5351756 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\WinMetadata\Windows.Foundation.winmd","0.0000120","","1316"
"10:46:24.5355259 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\rometadata.dll","0.0014652","Offset: 188,928, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5370461 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\WinMetadata\Windows.Foundation.winmd","0.0000662","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.5371763 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\System32\WinMetadata\Windows.Foundation.winmd","0.0000085","AllocationSize: 69,632, EndOfFile: 68,704, NumberOfLinks: 2, DeletePending: False, Directory: False","1316"
"10:46:24.5372509 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\WinMetadata\Windows.Foundation.winmd","0.0000077","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1316"
"10:46:24.5373128 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\System32\WinMetadata\Windows.Foundation.winmd","0.0000038","SyncType: SyncTypeOther","1316"
"10:46:24.5375705 AM","firefox.exe","1008","Load Image","C:\Windows\System32\WinMetadata\Windows.Foundation.winmd","0.0000000","Image Base: 0x20f60f40000, Image Size: 0x11000","1316"
"10:46:24.5381717 AM","firefox.exe","1008","CreateFile","C:\Windows\System32\WinMetadata\Windows.Foundation.winmd","0.0000324","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.5382318 AM","firefox.exe","1008","QueryNetworkOpenInformationFile","C:\Windows\System32\WinMetadata\Windows.Foundation.winmd","0.0000077","CreationTime: 4/11/2018 4:33:58 PM, LastAccessTime: 4/11/2018 4:33:58 PM, LastWriteTime: 4/11/2018 4:33:58 PM, ChangeTime: 3/20/2019 8:18:49 PM, AllocationSize: 69632, EndOfFile: 68704, FileAttributes: A","1316"
"10:46:24.5382617 AM","firefox.exe","1008","CloseFile","C:\Windows\System32\WinMetadata\Windows.Foundation.winmd","0.0000111","","1316"
"10:46:24.5387690 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005991","Offset: 3,405,824, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5394952 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0069952","Offset: 435,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5465356 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0008427","Offset: 435,200, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5474807 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0100557","Offset: 427,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5575799 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0110029","Offset: 402,432, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5688618 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005978","Offset: 226,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5695006 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0004433","Offset: 226,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5701508 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0009080","Offset: 758,784, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5712363 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0013875","Offset: 558,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5726980 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005487","Offset: 545,792, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5733768 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0007215","Offset: 1,332,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5741431 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0004766","Offset: 1,332,224, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5750861 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005081","Offset: 611,328, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5757884 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0004497","Offset: 517,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5762816 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005389","Offset: 513,024, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5769630 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0019605","Offset: 320,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5790127 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0109978","Offset: 308,224, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5902959 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0009344","Offset: 488,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5913229 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0010180","Offset: 480,256, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5929331 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0011465","Offset: 844,800, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5946197 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005475","Offset: 82,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5952508 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0004894","Offset: 82,944, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5959416 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0004757","Offset: 78,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5964988 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0003874","Offset: 78,848, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5983539 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005368","Offset: 1,057,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5989666 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0004233","Offset: 1,057,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.5999138 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005325","Offset: 1,418,240, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.6005150 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0008051","Offset: 1,389,568, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.6016346 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\msvcp140.dll","0.0006515","Offset: 99,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.6023813 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\msvcp140.dll","0.0006596","Offset: 91,136, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.6042671 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0075367","Offset: 275,456, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.6120355 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0009911","Offset: 922,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.6131456 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0006196","Offset: 922,624, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.6141581 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0006579","Offset: 1,328,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.6148907 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0011780","Offset: 1,324,032, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.6170108 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005504","Offset: 3,606,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.6180378 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0007215","Offset: 3,356,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.6190332 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0130449","Offset: 1,954,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.6321665 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0220083","Offset: 1,954,816, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.6544091 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0007005","Offset: 1,840,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.6551997 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0004949","Offset: 1,840,128, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.6565671 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0008815","Offset: 1,782,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.6575156 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0004728","Offset: 1,782,784, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.6581514 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005845","Offset: 148,480, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.6603850 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0007057","Offset: 3,649,536, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.6615404 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0010359","Offset: 1,758,208, Length: 24,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.6641541 AM","firefox.exe","1008","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache","0.0001937","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","1316"
"10:46:24.6649268 AM","firefox.exe","1008","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache","0.0001634","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.6652037 AM","firefox.exe","1008","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache","0.0000167","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","1316"
"10:46:24.6652805 AM","firefox.exe","1008","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache","0.0000282","CreationTime: 3/25/2020 10:26:55 AM, LastAccessTime: 3/26/2020 10:26:47 AM, LastWriteTime: 3/26/2020 10:26:47 AM, ChangeTime: 3/26/2020 10:26:47 AM, FileAttributes: D, AllocationSize: 8,192, EndOfFile: 8,192, NumberOfLinks: 1, DeletePending: False, Directory: True, IndexNumber: 0x900000000bfba, EaSize: 0, Access: Read Attributes, Synchronize, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","1316"
"10:46:24.6653650 AM","firefox.exe","1008","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache","0.0000222","","1316"
"10:46:24.6659333 AM","firefox.exe","1008","ReadFile","C:\$Directory","0.0107030","Offset: 4,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.6773633 AM","firefox.exe","1008","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\startup_shaders","0.0122680","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.6897904 AM","firefox.exe","1008","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\startup_shaders","0.0000201","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","1316"
"10:46:24.6898843 AM","firefox.exe","1008","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\startup_shaders","0.0000260","CreationTime: 3/25/2020 10:27:02 AM, LastAccessTime: 3/25/2020 10:27:02 AM, LastWriteTime: 3/26/2020 10:35:09 AM, ChangeTime: 3/26/2020 10:35:09 AM, FileAttributes: A, AllocationSize: 208, EndOfFile: 203, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x1300000000ac93, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","1316"
"10:46:24.6899743 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\startup_shaders","0.0002710","Offset: 0, Length: 203, Priority: Normal","1316"
"10:46:24.6901484 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\startup_shaders","0.0000397","Offset: 0, Length: 203, I/O Flags: Non-cached, Paging I/O, Priority: Normal","1316"
"10:46:24.6903007 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\startup_shaders","0.0000175","Offset: 203, Length: 1","1316"
"10:46:24.6904082 AM","firefox.exe","1008","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\startup_shaders","0.0000397","","1316"
"10:46:24.6911711 AM","firefox.exe","1008","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache","0.0000798","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.6913158 AM","firefox.exe","1008","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\*","0.0008985","Filter: *, 1: .","1316"
"10:46:24.6914395 AM","firefox.exe","1008","ReadFile","C:","0.0006835","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.6925028 AM","firefox.exe","1008","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache","0.0001344","0: .., 1: 29b7f6576b999fac, 2: 2abd76f1bf3e611f, 3: 318aa3313ba2ee12, 4: 3544708dce65a6d5, 5: 3f543eee4cd06375, 6: 431fb1776cb9b534, 7: 54a57b8b8ace82d8, 8: 63dcbd1f308859c1, 9: 6ffe82c767ece2dc, 10: 81b41bd6ab0e7171, 11: 9142d6aaa1ac1c1a, 12: 9cce8e87268da9f8, 13: a0157382526b3bc3, 14: ae3d1bf57be3a2ec, 15: ba4c7707fd2c3107, 16: c24659b33a1cd5bc, 17: d5aeb6e13e0e45f4, 18: d6d96fdf33273589, 19: f16f5adfad64711e, 20: startup_shaders","1316"
"10:46:24.6927869 AM","firefox.exe","1008","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache","0.0000260","","1316"
"10:46:24.6928906 AM","firefox.exe","1008","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache","0.0000542","","1316"
"10:46:24.6938160 AM","firefox.exe","1008","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9142d6aaa1ac1c1a","0.0059397","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.6999148 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9142d6aaa1ac1c1a","0.0075994","Offset: 0, Length: 32, Priority: Normal","1316"
"10:46:24.7001055 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9142d6aaa1ac1c1a","0.0073084","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","1316"
"10:46:24.7076968 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9142d6aaa1ac1c1a","0.0000358","Offset: 32, Length: 32","1316"
"10:46:24.7078261 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9142d6aaa1ac1c1a","0.0000217","Offset: 64, Length: 64","1316"
"10:46:24.7079093 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9142d6aaa1ac1c1a","0.0000124","Offset: 128, Length: 128","1316"
"10:46:24.7079857 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9142d6aaa1ac1c1a","0.0000098","Offset: 256, Length: 256","1316"
"10:46:24.7080296 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9142d6aaa1ac1c1a","0.0000102","Offset: 512, Length: 512","1316"
"10:46:24.7080706 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9142d6aaa1ac1c1a","0.0000093","Offset: 1,024, Length: 1,024","1316"
"10:46:24.7081162 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9142d6aaa1ac1c1a","0.0000103","Offset: 2,048, Length: 2,048","1316"
"10:46:24.7081597 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9142d6aaa1ac1c1a","0.0174942","Offset: 4,096, Length: 4,096","1316"
"10:46:24.7258660 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9142d6aaa1ac1c1a","0.0000367","Offset: 8,192, Length: 8,192","1316"
"10:46:24.7260111 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9142d6aaa1ac1c1a","0.0000183","Offset: 16,384, Length: 4,886","1316"
"10:46:24.7260704 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9142d6aaa1ac1c1a","0.0000085","Offset: 21,270, Length: 11,498","1316"
"10:46:24.7263835 AM","firefox.exe","1008","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9142d6aaa1ac1c1a","0.0000534","","1316"
"10:46:24.7272173 AM","firefox.exe","1008","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ba4c7707fd2c3107","0.0094028","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.7367814 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ba4c7707fd2c3107","0.0067461","Offset: 0, Length: 32, Priority: Normal","1316"
"10:46:24.7369935 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ba4c7707fd2c3107","0.0063701","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","1316"
"10:46:24.7436764 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ba4c7707fd2c3107","0.0000350","Offset: 32, Length: 32","1316"
"10:46:24.7437783 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ba4c7707fd2c3107","0.0000133","Offset: 64, Length: 64","1316"
"10:46:24.7438440 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ba4c7707fd2c3107","0.0000124","Offset: 128, Length: 128","1316"
"10:46:24.7438948 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ba4c7707fd2c3107","0.0000098","Offset: 256, Length: 256","1316"
"10:46:24.7439388 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ba4c7707fd2c3107","0.0000089","Offset: 512, Length: 512","1316"
"10:46:24.7439784 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ba4c7707fd2c3107","0.0000103","Offset: 1,024, Length: 1,024","1316"
"10:46:24.7440245 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ba4c7707fd2c3107","0.0000098","Offset: 2,048, Length: 2,048","1316"
"10:46:24.7440651 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ba4c7707fd2c3107","0.0003276","Offset: 4,096, Length: 4,096","1316"
"10:46:24.7445135 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ba4c7707fd2c3107","0.0000303","Offset: 8,192, Length: 3,035","1316"
"10:46:24.7445975 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ba4c7707fd2c3107","0.0000094","Offset: 11,227, Length: 5,157","1316"
"10:46:24.7447592 AM","firefox.exe","1008","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ba4c7707fd2c3107","0.0000457","","1316"
"10:46:24.7455354 AM","firefox.exe","1008","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d5aeb6e13e0e45f4","0.0001937","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.7458093 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d5aeb6e13e0e45f4","0.0146615","Offset: 0, Length: 32, Priority: Normal","1316"
"10:46:24.7459667 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d5aeb6e13e0e45f4","0.0143463","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","1316"
"10:46:24.7606180 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d5aeb6e13e0e45f4","0.0000342","Offset: 32, Length: 32","1316"
"10:46:24.7607209 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d5aeb6e13e0e45f4","0.0000162","Offset: 64, Length: 64","1316"
"10:46:24.7607913 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d5aeb6e13e0e45f4","0.0000128","Offset: 128, Length: 128","1316"
"10:46:24.7608446 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d5aeb6e13e0e45f4","0.0000098","Offset: 256, Length: 256","1316"
"10:46:24.7608894 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d5aeb6e13e0e45f4","0.0000145","Offset: 512, Length: 512","1316"
"10:46:24.7609402 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d5aeb6e13e0e45f4","0.0000098","Offset: 1,024, Length: 1,024","1316"
"10:46:24.7609863 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d5aeb6e13e0e45f4","0.0000110","Offset: 2,048, Length: 2,048","1316"
"10:46:24.7610289 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d5aeb6e13e0e45f4","0.0116348","Offset: 4,096, Length: 4,096","1316"
"10:46:24.7728143 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d5aeb6e13e0e45f4","0.0000354","Offset: 8,192, Length: 8,192","1316"
"10:46:24.7731296 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d5aeb6e13e0e45f4","0.0000209","Offset: 16,384, Length: 4,029","1316"
"10:46:24.7731928 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d5aeb6e13e0e45f4","0.0000085","Offset: 20,413, Length: 12,355","1316"
"10:46:24.7734957 AM","firefox.exe","1008","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d5aeb6e13e0e45f4","0.0000512","","1316"
"10:46:24.7742552 AM","firefox.exe","1008","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\431fb1776cb9b534","0.0002069","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.7745402 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\431fb1776cb9b534","0.0113749","Offset: 0, Length: 32, Priority: Normal","1316"
"10:46:24.7746964 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\431fb1776cb9b534","0.0110630","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","1316"
"10:46:24.7860909 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\431fb1776cb9b534","0.0000346","Offset: 32, Length: 32","1316"
"10:46:24.7861920 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\431fb1776cb9b534","0.0000141","Offset: 64, Length: 64","1316"
"10:46:24.7862531 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\431fb1776cb9b534","0.0000140","Offset: 128, Length: 128","1316"
"10:46:24.7863064 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\431fb1776cb9b534","0.0000094","Offset: 256, Length: 256","1316"
"10:46:24.7863491 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\431fb1776cb9b534","0.0000102","Offset: 512, Length: 512","1316"
"10:46:24.7863913 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\431fb1776cb9b534","0.0000090","Offset: 1,024, Length: 1,024","1316"
"10:46:24.7864361 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\431fb1776cb9b534","0.0000098","Offset: 2,048, Length: 2,048","1316"
"10:46:24.7864775 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\431fb1776cb9b534","0.0055424","Offset: 4,096, Length: 4,096","1316"
"10:46:24.7921671 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\431fb1776cb9b534","0.0000350","Offset: 8,192, Length: 8,192","1316"
"10:46:24.7922725 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\431fb1776cb9b534","0.0000217","Offset: 16,384, Length: 14,849","1316"
"10:46:24.7923356 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\431fb1776cb9b534","0.0000077","Offset: 31,233, Length: 1,535","1316"
"10:46:24.7927465 AM","firefox.exe","1008","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\431fb1776cb9b534","0.0000512","","1316"
"10:46:24.7935265 AM","firefox.exe","1008","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\f16f5adfad64711e","0.0011272","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.7948188 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\f16f5adfad64711e","0.0112692","Offset: 0, Length: 32, Priority: Normal","1316"
"10:46:24.7950151 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\f16f5adfad64711e","0.0109056","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","1316"
"10:46:24.8062382 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\f16f5adfad64711e","0.0000349","Offset: 32, Length: 32","1316"
"10:46:24.8063423 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\f16f5adfad64711e","0.0000140","Offset: 64, Length: 64","1316"
"10:46:24.8064084 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\f16f5adfad64711e","0.0000132","Offset: 128, Length: 128","1316"
"10:46:24.8064630 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\f16f5adfad64711e","0.0000102","Offset: 256, Length: 256","1316"
"10:46:24.8065082 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\f16f5adfad64711e","0.0000090","Offset: 512, Length: 512","1316"
"10:46:24.8065483 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\f16f5adfad64711e","0.0000099","Offset: 1,024, Length: 1,024","1316"
"10:46:24.8065927 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\f16f5adfad64711e","0.0000094","Offset: 2,048, Length: 2,048","1316"
"10:46:24.8066337 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\f16f5adfad64711e","0.0006651","Offset: 4,096, Length: 4,096","1316"
"10:46:24.8074482 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\f16f5adfad64711e","0.0000350","Offset: 8,192, Length: 8,192","1316"
"10:46:24.8075544 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\f16f5adfad64711e","0.0000196","Offset: 16,384, Length: 16,384","1316"
"10:46:24.8077806 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\f16f5adfad64711e","0.0000221","Offset: 32,768, Length: 14,596","1316"
"10:46:24.8078382 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\f16f5adfad64711e","0.0000085","Offset: 47,364, Length: 18,172","1316"
"10:46:24.8083412 AM","firefox.exe","1008","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\f16f5adfad64711e","0.0000499","","1316"
"10:46:24.8091322 AM","firefox.exe","1008","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\54a57b8b8ace82d8","0.0069504","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.8162448 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\54a57b8b8ace82d8","0.0051012","Offset: 0, Length: 32, Priority: Normal","1316"
"10:46:24.8164560 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\54a57b8b8ace82d8","0.0048081","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","1316"
"10:46:24.8214476 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\54a57b8b8ace82d8","0.0000251","Offset: 32, Length: 32","1316"
"10:46:24.8215359 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\54a57b8b8ace82d8","0.0000222","Offset: 64, Length: 64","1316"
"10:46:24.8216216 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\54a57b8b8ace82d8","0.0000180","Offset: 128, Length: 128","1316"
"10:46:24.8216946 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\54a57b8b8ace82d8","0.0000162","Offset: 256, Length: 256","1316"
"10:46:24.8217740 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\54a57b8b8ace82d8","0.0000170","Offset: 512, Length: 512","1316"
"10:46:24.8218461 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\54a57b8b8ace82d8","0.0000153","Offset: 1,024, Length: 1,024","1316"
"10:46:24.8219276 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\54a57b8b8ace82d8","0.0000128","Offset: 2,048, Length: 2,048","1316"
"10:46:24.8219830 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\54a57b8b8ace82d8","0.0074172","Offset: 4,096, Length: 4,096","1316"
"10:46:24.8295111 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\54a57b8b8ace82d8","0.0000252","Offset: 8,192, Length: 8,192","1316"
"10:46:24.8296059 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\54a57b8b8ace82d8","0.0000243","Offset: 16,384, Length: 16,384","1316"
"10:46:24.8297292 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\54a57b8b8ace82d8","0.0000320","Offset: 32,768, Length: 19,470","1316"
"10:46:24.8298226 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\54a57b8b8ace82d8","0.0000120","Offset: 52,238, Length: 13,298","1316"
"10:46:24.8306004 AM","firefox.exe","1008","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\54a57b8b8ace82d8","0.0000581","","1316"
"10:46:24.8316735 AM","firefox.exe","1008","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3544708dce65a6d5","0.0011102","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.8328912 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3544708dce65a6d5","0.0187123","Offset: 0, Length: 32, Priority: Normal","1316"
"10:46:24.8330657 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3544708dce65a6d5","0.0184431","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","1316"
"10:46:24.8516970 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3544708dce65a6d5","0.0000200","Offset: 32, Length: 32","1316"
"10:46:24.8517571 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3544708dce65a6d5","0.0000086","Offset: 64, Length: 64","1316"
"10:46:24.8517955 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3544708dce65a6d5","0.0000107","Offset: 128, Length: 128","1316"
"10:46:24.8518459 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3544708dce65a6d5","0.0000055","Offset: 256, Length: 256","1316"
"10:46:24.8518702 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3544708dce65a6d5","0.0000056","Offset: 512, Length: 512","1316"
"10:46:24.8518928 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3544708dce65a6d5","0.0000056","Offset: 1,024, Length: 1,024","1316"
"10:46:24.8519189 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3544708dce65a6d5","0.0000051","Offset: 2,048, Length: 2,048","1316"
"10:46:24.8519419 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3544708dce65a6d5","0.0092092","Offset: 4,096, Length: 4,096","1316"
"10:46:24.8612415 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3544708dce65a6d5","0.0000209","Offset: 8,192, Length: 8,192","1316"
"10:46:24.8613017 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3544708dce65a6d5","0.0000107","Offset: 16,384, Length: 16,384","1316"
"10:46:24.8613461 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3544708dce65a6d5","0.0000098","Offset: 32,768, Length: 6,459","1316"
"10:46:24.8613742 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3544708dce65a6d5","0.0000043","Offset: 39,227, Length: 26,309","1316"
"10:46:24.8616358 AM","firefox.exe","1008","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3544708dce65a6d5","0.0000320","","1316"
"10:46:24.8621418 AM","firefox.exe","1008","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9cce8e87268da9f8","0.0131772","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.8754210 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9cce8e87268da9f8","0.0146082","Offset: 0, Length: 32, Priority: Normal","1316"
"10:46:24.8755323 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9cce8e87268da9f8","0.0144009","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","1316"
"10:46:24.8901474 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9cce8e87268da9f8","0.0000196","Offset: 32, Length: 32","1316"
"10:46:24.8902067 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9cce8e87268da9f8","0.0000085","Offset: 64, Length: 64","1316"
"10:46:24.8902434 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9cce8e87268da9f8","0.0000072","Offset: 128, Length: 128","1316"
"10:46:24.8902724 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9cce8e87268da9f8","0.0000055","Offset: 256, Length: 256","1316"
"10:46:24.8902967 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9cce8e87268da9f8","0.0000051","Offset: 512, Length: 512","1316"
"10:46:24.8903189 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9cce8e87268da9f8","0.0000055","Offset: 1,024, Length: 1,024","1316"
"10:46:24.8903441 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9cce8e87268da9f8","0.0000055","Offset: 2,048, Length: 2,048","1316"
"10:46:24.8903667 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9cce8e87268da9f8","0.0006067","Offset: 4,096, Length: 4,096","1316"
"10:46:24.8910643 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9cce8e87268da9f8","0.0000247","Offset: 8,192, Length: 8,192","1316"
"10:46:24.8911308 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9cce8e87268da9f8","0.0000175","Offset: 16,384, Length: 16,384","1316"
"10:46:24.8911978 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9cce8e87268da9f8","0.0000133","Offset: 32,768, Length: 7,733","1316"
"10:46:24.8912350 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9cce8e87268da9f8","0.0000051","Offset: 40,501, Length: 25,035","1316"
"10:46:24.8915247 AM","firefox.exe","1008","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\9cce8e87268da9f8","0.0000332","","1316"
"10:46:24.8920439 AM","firefox.exe","1008","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\2abd76f1bf3e611f","0.0001408","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.8922342 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\2abd76f1bf3e611f","0.0041916","Offset: 0, Length: 32, Priority: Normal","1316"
"10:46:24.8923247 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\2abd76f1bf3e611f","0.0040294","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","1316"
"10:46:24.8965278 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\2abd76f1bf3e611f","0.0000183","Offset: 32, Length: 32","1316"
"10:46:24.8965781 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\2abd76f1bf3e611f","0.0000064","Offset: 64, Length: 64","1316"
"10:46:24.8966067 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\2abd76f1bf3e611f","0.0000060","Offset: 128, Length: 128","1316"
"10:46:24.8966314 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\2abd76f1bf3e611f","0.0000056","Offset: 256, Length: 256","1316"
"10:46:24.8966549 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\2abd76f1bf3e611f","0.0000051","Offset: 512, Length: 512","1316"
"10:46:24.8966779 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\2abd76f1bf3e611f","0.0000060","Offset: 1,024, Length: 1,024","1316"
"10:46:24.8967027 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\2abd76f1bf3e611f","0.0000055","Offset: 2,048, Length: 2,048","1316"
"10:46:24.8967279 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\2abd76f1bf3e611f","0.0137613","Offset: 4,096, Length: 4,096","1316"
"10:46:24.9106334 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\2abd76f1bf3e611f","0.0000358","Offset: 8,192, Length: 8,192","1316"
"10:46:24.9107388 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\2abd76f1bf3e611f","0.0000183","Offset: 16,384, Length: 8,917","1316"
"10:46:24.9107959 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\2abd76f1bf3e611f","0.0000090","Offset: 25,301, Length: 7,467","1316"
"10:46:24.9110558 AM","firefox.exe","1008","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\2abd76f1bf3e611f","0.0000516","","1316"
"10:46:24.9118344 AM","firefox.exe","1008","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\c24659b33a1cd5bc","0.0001980","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.9121122 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\c24659b33a1cd5bc","0.0124591","Offset: 0, Length: 32, Priority: Normal","1316"
"10:46:24.9122765 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\c24659b33a1cd5bc","0.0121378","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","1316"
"10:46:24.9247224 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\c24659b33a1cd5bc","0.0000341","Offset: 32, Length: 32","1316"
"10:46:24.9248231 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\c24659b33a1cd5bc","0.0000145","Offset: 64, Length: 64","1316"
"10:46:24.9248888 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\c24659b33a1cd5bc","0.0000119","Offset: 128, Length: 128","1316"
"10:46:24.9249429 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\c24659b33a1cd5bc","0.0000099","Offset: 256, Length: 256","1316"
"10:46:24.9249877 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\c24659b33a1cd5bc","0.0000090","Offset: 512, Length: 512","1316"
"10:46:24.9250287 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\c24659b33a1cd5bc","0.0000098","Offset: 1,024, Length: 1,024","1316"
"10:46:24.9250867 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\c24659b33a1cd5bc","0.0000098","Offset: 2,048, Length: 2,048","1316"
"10:46:24.9251277 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\c24659b33a1cd5bc","0.0075878","Offset: 4,096, Length: 4,096","1316"
"10:46:24.9328636 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\c24659b33a1cd5bc","0.0000354","Offset: 8,192, Length: 8,192","1316"
"10:46:24.9329775 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\c24659b33a1cd5bc","0.0000201","Offset: 16,384, Length: 16,384","1316"
"10:46:24.9333427 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\c24659b33a1cd5bc","0.0000197","Offset: 32,768, Length: 1,124","1316"
"10:46:24.9334055 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\c24659b33a1cd5bc","0.0000076","Offset: 33,892, Length: 31,644","1316"
"10:46:24.9338291 AM","firefox.exe","1008","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\c24659b33a1cd5bc","0.0000512","","1316"
"10:46:24.9346082 AM","firefox.exe","1008","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d6d96fdf33273589","0.0010897","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.9358567 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d6d96fdf33273589","0.0092552","Offset: 0, Length: 32, Priority: Normal","1316"
"10:46:24.9360785 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d6d96fdf33273589","0.0088585","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","1316"
"10:46:24.9452625 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d6d96fdf33273589","0.0000346","Offset: 32, Length: 32","1316"
"10:46:24.9453624 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d6d96fdf33273589","0.0000136","Offset: 64, Length: 64","1316"
"10:46:24.9454247 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d6d96fdf33273589","0.0000132","Offset: 128, Length: 128","1316"
"10:46:24.9454819 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d6d96fdf33273589","0.0000106","Offset: 256, Length: 256","1316"
"10:46:24.9455271 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d6d96fdf33273589","0.0000098","Offset: 512, Length: 512","1316"
"10:46:24.9455680 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d6d96fdf33273589","0.0000099","Offset: 1,024, Length: 1,024","1316"
"10:46:24.9456141 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d6d96fdf33273589","0.0000098","Offset: 2,048, Length: 2,048","1316"
"10:46:24.9456564 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d6d96fdf33273589","0.0091989","Offset: 4,096, Length: 4,096","1316"
"10:46:24.9550025 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d6d96fdf33273589","0.0000363","Offset: 8,192, Length: 8,192","1316"
"10:46:24.9551177 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d6d96fdf33273589","0.0000218","Offset: 16,384, Length: 16,322","1316"
"10:46:24.9551817 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d6d96fdf33273589","0.0000085","Offset: 32,706, Length: 62","1316"
"10:46:24.9554846 AM","firefox.exe","1008","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\d6d96fdf33273589","0.0000521","","1316"
"10:46:24.9562710 AM","firefox.exe","1008","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ae3d1bf57be3a2ec","0.0002022","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:24.9565539 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ae3d1bf57be3a2ec","0.0081706","Offset: 0, Length: 32, Priority: Normal","1316"
"10:46:24.9567143 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ae3d1bf57be3a2ec","0.0078528","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","1316"
"10:46:24.9648739 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ae3d1bf57be3a2ec","0.0000345","Offset: 32, Length: 32","1316"
"10:46:24.9649763 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ae3d1bf57be3a2ec","0.0000145","Offset: 64, Length: 64","1316"
"10:46:24.9650420 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ae3d1bf57be3a2ec","0.0000115","Offset: 128, Length: 128","1316"
"10:46:24.9650975 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ae3d1bf57be3a2ec","0.0000110","Offset: 256, Length: 256","1316"
"10:46:24.9651448 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ae3d1bf57be3a2ec","0.0000132","Offset: 512, Length: 512","1316"
"10:46:24.9651952 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ae3d1bf57be3a2ec","0.0000093","Offset: 1,024, Length: 1,024","1316"
"10:46:24.9652425 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ae3d1bf57be3a2ec","0.0000107","Offset: 2,048, Length: 2,048","1316"
"10:46:24.9652848 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ae3d1bf57be3a2ec","0.0140906","Offset: 4,096, Length: 4,096","1316"
"10:46:24.9796779 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ae3d1bf57be3a2ec","0.0000431","Offset: 8,192, Length: 8,192","1316"
"10:46:24.9798072 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ae3d1bf57be3a2ec","0.0000261","Offset: 16,384, Length: 16,384","1316"
"10:46:24.9799079 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ae3d1bf57be3a2ec","0.0000214","Offset: 32,768, Length: 8,204","1316"
"10:46:24.9799745 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ae3d1bf57be3a2ec","0.0000119","Offset: 40,972, Length: 24,564","1316"
"10:46:24.9805381 AM","firefox.exe","1008","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\ae3d1bf57be3a2ec","0.0000533","","1316"
"10:46:24.9821543 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0130292","Offset: 1,995,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:24.9953221 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0110464","Offset: 1,995,776, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.0073192 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0095641","Offset: 1,946,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.0170280 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0108697","Offset: 1,946,624, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.0282173 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0006827","Offset: 377,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.0289960 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0008068","Offset: 373,760, Length: 28,672, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.0300473 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0027294","Offset: 2,536,448, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.0330468 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0104960","Offset: 2,532,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.0436486 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0090513","Offset: 2,503,680, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.0529452 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0007023","Offset: 2,270,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.0537482 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0006571","Offset: 2,270,208, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.0546455 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0006997","Offset: 2,139,136, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.0557083 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0006435","Offset: 2,135,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.0564537 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005547","Offset: 2,135,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.0573433 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0007753","Offset: 955,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.0582231 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0006144","Offset: 955,392, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.0590619 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0007309","Offset: 910,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.0598944 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005892","Offset: 910,336, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.0612384 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 2064","1316"
"10:46:25.0626929 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 8960","1316"
"10:46:25.0649491 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 8412","8960"
"10:46:25.0729760 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0009809","Offset: 2,983,936, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.0742705 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0008747","Offset: 1,836,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.0752352 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0010701","Offset: 1,815,552, Length: 24,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.0765156 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0006136","Offset: 3,115,008, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.0789980 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 7348","1316"
"10:46:25.0791136 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 1492","1316"
"10:46:25.0792570 AM","firefox.exe","1008","Thread Create","","0.0000000","Thread ID: 7292","1316"
"10:46:25.0971224 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0429965","Offset: 42,745,856, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","4920"
"10:46:25.1159755 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0701484","Offset: 22,278,144, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8260"
"10:46:25.1159960 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.1305691","Offset: 6,217,728, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7508"
"10:46:25.1170490 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1170917 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000064","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:25.1171147 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000081","","740"
"10:46:25.1173754 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.1174253 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000039","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","5728"
"10:46:25.1174432 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000056","","5728"
"10:46:25.1174723 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1175090 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000038","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:25.1175264 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000069","","740"
"10:46:25.1178396 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1178635 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000030","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:25.1178750 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000047","","740"
"10:46:25.1179945 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\OEM","0.0000162","Desired Access: Read","5728"
"10:46:25.1180286 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\OEM\DeviceForm","0.0000030","Length: 20","5728"
"10:46:25.1180470 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\OEM","0.0000034","","5728"
"10:46:25.1181050 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1181404 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.1181524 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000047","","740"
"10:46:25.1182821 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\OEM","0.0000085","Desired Access: Read","5728"
"10:46:25.1183043 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\OEM\DeviceForm","0.0000025","Length: 20","5728"
"10:46:25.1183192 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\OEM","0.0000013","","5728"
"10:46:25.1183730 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1184084 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000034","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.1184199 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000047","","740"
"10:46:25.1186729 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\OEM","0.0000102","Desired Access: Read","5728"
"10:46:25.1187011 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\OEM\DeviceForm","0.0000025","Length: 20","5728"
"10:46:25.1187194 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\OEM","0.0000017","","5728"
"10:46:25.1187587 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1187651 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\OEM","0.0000055","Desired Access: Read","5728"
"10:46:25.1187826 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\OEM\DeviceForm","0.0000021","Length: 20","5728"
"10:46:25.1187966 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\OEM","0.0000013","","5728"
"10:46:25.1187975 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000038","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.1188120 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000055","","740"
"10:46:25.1188457 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.1188611 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Input","0.0000089","Desired Access: Read","5728"
"10:46:25.1188837 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Input\ResyncResetTime","0.0000021","Length: 16","5728"
"10:46:25.1188960 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Input\MaxResyncAttempts","0.0000022","Length: 16","5728"
"10:46:25.1189097 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Input","0.0000013","","5728"
"10:46:25.1191098 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1191584 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000047","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:25.1191772 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000086","","740"
"10:46:25.1194985 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1195335 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000038","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:25.1195467 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000060","","740"
"10:46:25.1197528 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1197839 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000035","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:25.1197955 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000042","","740"
"10:46:25.1200152 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1200382 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.1200493 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000051","","740"
"10:46:25.1202780 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1202985 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.1203092 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000038","","740"
"10:46:25.1205007 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1205212 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.1205315 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000038","","740"
"10:46:25.1207512 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1207858 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000029","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:25.1207964 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000043","","740"
"10:46:25.1209991 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1210290 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000025","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:25.1210392 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000043","","740"
"10:46:25.1212325 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1212611 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000030","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:25.1212717 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000052","","740"
"10:46:25.1214893 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1215205 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:25.1215311 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000043","","740"
"10:46:25.1216843 AM","firefox.exe","7384","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0526320","Offset: 14,262,272, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.1217453 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1217739 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:25.1217842 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000042","","740"
"10:46:25.1219706 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1219971 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:25.1220077 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000039","","740"
"10:46:25.1222095 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1222390 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.1222492 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000060","","740"
"10:46:25.1224963 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1225402 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000047","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.1225577 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000060","","740"
"10:46:25.1228103 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1228389 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000025","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.1228495 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000043","","740"
"10:46:25.1230586 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1230885 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000030","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:25.1230991 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000043","","740"
"10:46:25.1232993 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1233266 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000025","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:25.1233368 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000043","","740"
"10:46:25.1235267 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1235531 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000026","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:25.1235634 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000042","","740"
"10:46:25.1237673 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1237959 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000030","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:25.1238061 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000043","","740"
"10:46:25.1240246 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1240523 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000026","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:25.1240626 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000042","","740"
"10:46:25.1242456 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1242725 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000025","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:25.1242823 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000043","","740"
"10:46:25.1244888 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1245093 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:25.1245191 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000038","","740"
"10:46:25.1247218 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1247410 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:25.1247508 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000038","","740"
"10:46:25.1249573 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1249803 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:25.1249906 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000038","","740"
"10:46:25.1252094 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1252410 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:25.1252513 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000042","","740"
"10:46:25.1254441 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1254718 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:25.1254821 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000038","","740"
"10:46:25.1256754 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1257014 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:25.1257116 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000039","","740"
"10:46:25.1259173 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1259459 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:25.1259561 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000043","","740"
"10:46:25.1261413 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1261682 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:25.1261780 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000042","","740"
"10:46:25.1263661 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1263926 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:25.1264028 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000043","","740"
"10:46:25.1266085 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1266388 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.1266494 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000043","","740"
"10:46:25.1268423 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1268705 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000025","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.1268807 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000038","","740"
"10:46:25.1270684 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1270953 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.1271056 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000038","","740"
"10:46:25.1273099 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1273313 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000025","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:25.1273411 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000038","","740"
"10:46:25.1275250 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1275442 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000025","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:25.1275540 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000034","","740"
"10:46:25.1277485 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1277673 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000026","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:25.1277771 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000034","","740"
"10:46:25.1280037 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1280254 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000026","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:25.1280353 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000042","","740"
"10:46:25.1282183 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1282388 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000025","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:25.1282486 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000038","","740"
"10:46:25.1285033 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1285319 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000038","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:25.1285477 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000060","","740"
"10:46:25.1288020 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1288331 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000026","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:25.1288438 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000043","","740"
"10:46:25.1290302 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1290580 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000025","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:25.1290682 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000039","","740"
"10:46:25.1292521 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1292790 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000026","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:25.1292888 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000038","","740"
"10:46:25.1295230 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1295533 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:25.1295640 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000038","","740"
"10:46:25.1297637 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1297927 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:25.1298029 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000047","","740"
"10:46:25.1300235 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1300525 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:25.1300632 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000043","","740"
"10:46:25.1302889 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1303102 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:25.1303205 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000038","","740"
"10:46:25.1305065 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1305253 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:25.1305351 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000038","","740"
"10:46:25.1307169 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1307352 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:25.1307446 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000038","","740"
"10:46:25.1309643 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1309899 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.1309997 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000039","","740"
"10:46:25.1311870 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1312058 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000022","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.1312152 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000038","","740"
"10:46:25.1313957 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1314136 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.1314230 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000038","","740"
"10:46:25.1316397 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1316611 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:25.1316709 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000038","","740"
"10:46:25.1318505 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1318689 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:25.1318787 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000038","","740"
"10:46:25.1320711 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1320895 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:25.1320997 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000038","","740"
"10:46:25.1323267 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1323472 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:25.1323570 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000038","","740"
"10:46:25.1325387 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1325579 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000022","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:25.1325677 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000039","","740"
"10:46:25.1327448 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1327627 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:25.1327725 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000035","","740"
"10:46:25.1329778 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1329978 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:25.1330076 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000039","","740"
"10:46:25.1332048 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1332231 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:25.1332329 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000039","","740"
"10:46:25.1334258 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1334441 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000022","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:25.1334535 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000038","","740"
"10:46:25.1336749 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1337065 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:25.1337168 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000042","","740"
"10:46:25.1339066 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1339348 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:25.1339446 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000043","","740"
"10:46:25.1341848 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1342253 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:25.1342416 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000059","","740"
"10:46:25.1345215 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1345530 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:25.1345641 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000043","","740"
"10:46:25.1347531 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1347804 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000026","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:25.1347907 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000042","","740"
"10:46:25.1349737 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1350002 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:25.1350104 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000043","","740"
"10:46:25.1352391 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1352685 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:25.1352788 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000043","","740"
"10:46:25.1354669 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1354938 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:25.1355045 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000038","","740"
"10:46:25.1356875 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1357140 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:25.1357242 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000039","","740"
"10:46:25.1359461 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1359670 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000026","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:25.1359768 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000039","","740"
"10:46:25.1361611 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1361803 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000026","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:25.1361901 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000039","","740"
"10:46:25.1363723 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1363915 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000022","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:25.1364009 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000039","","740"
"10:46:25.1366343 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1366642 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:25.1366744 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000039","","740"
"10:46:25.1368711 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1368988 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:25.1369091 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000043","","740"
"10:46:25.1370930 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1371203 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:25.1371305 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000039","","740"
"10:46:25.1373511 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1373720 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:25.1373818 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000039","","740"
"10:46:25.1375619 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1375811 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000021","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:25.1375905 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000038","","740"
"10:46:25.1377671 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1377855 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000025","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:25.1377953 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000038","","740"
"10:46:25.1380056 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1380257 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000021","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:25.1380351 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000038","","740"
"10:46:25.1382411 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1382599 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:25.1382697 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000034","","740"
"10:46:25.1384442 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1384626 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:25.1384720 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000038","","740"
"10:46:25.1387092 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1387399 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000026","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:25.1387497 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000043","","740"
"10:46:25.1389477 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1389750 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000026","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:25.1389852 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000043","","740"
"10:46:25.1391743 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1392011 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000030","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:25.1392114 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000042","","740"
"10:46:25.1394320 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1394610 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000030","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:25.1394712 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000039","","740"
"10:46:25.1396611 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1396884 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:25.1396986 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000039","","740"
"10:46:25.1398864 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1399128 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000039","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:25.1399243 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000039","","740"
"10:46:25.1402298 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1402725 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000043","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.1402896 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000059","","740"
"10:46:25.1405707 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1406044 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000035","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.1406181 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000047","","740"
"10:46:25.1408071 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1408336 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000025","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.1408434 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000042","","740"
"10:46:25.1410576 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1410776 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000026","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:25.1410870 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000038","","740"
"10:46:25.1412841 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1413029 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000021","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:25.1413123 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000038","","740"
"10:46:25.1414962 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1415150 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000021","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:25.1415243 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000035","","740"
"10:46:25.1417402 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1417599 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000025","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:25.1417692 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000035","","740"
"10:46:25.1419561 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1419745 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000025","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:25.1419839 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000034","","740"
"10:46:25.1421622 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1421797 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000026","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:25.1421891 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000034","","740"
"10:46:25.1424007 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1424306 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000025","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:25.1424404 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000038","","740"
"10:46:25.1426251 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1426516 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000026","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:25.1426614 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000039","","740"
"10:46:25.1428423 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1428679 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000026","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:25.1428782 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000034","","740"
"10:46:25.1430902 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1431175 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000022","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.1431269 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000043","","740"
"10:46:25.1433057 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1433313 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000025","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.1433411 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000034","","740"
"10:46:25.1435194 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1435446 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000021","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.1435544 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000034","","740"
"10:46:25.1437703 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1437976 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000026","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:25.1438074 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000035","","740"
"10:46:25.1439909 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1440161 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000025","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:25.1440259 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000034","","740"
"10:46:25.1442055 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1442307 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000026","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:25.1442405 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000038","","740"
"10:46:25.1444649 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1444846 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000025","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:25.1444944 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000034","","740"
"10:46:25.1446749 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1446928 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000021","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:25.1447017 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000034","","740"
"10:46:25.1448899 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1449078 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000026","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:25.1449172 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000038","","740"
"10:46:25.1451412 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1451689 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:25.1451787 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000039","","740"
"10:46:25.1453575 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1453827 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:25.1453925 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000038","","740"
"10:46:25.1455674 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1455922 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:25.1456020 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000038","","740"
"10:46:25.1458247 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1458452 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000034","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.1458559 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000038","","740"
"10:46:25.1460829 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1461110 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000090","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.1461328 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000055","","740"
"10:46:25.1463866 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1464075 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.1464178 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000038","","740"
"10:46:25.1466554 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1466866 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:25.1466968 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000043","","740"
"10:46:25.1468841 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1469119 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:25.1469217 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000038","","740"
"10:46:25.1470966 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1471222 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000022","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:25.1471320 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000039","","740"
"10:46:25.1473560 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1473842 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:25.1473940 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000038","","740"
"10:46:25.1475758 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1476018 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:25.1476116 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000034","","740"
"10:46:25.1477938 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1478194 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:25.1478292 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000038","","740"
"10:46:25.1480541 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1480818 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:25.1480916 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000038","","740"
"10:46:25.1482738 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1482994 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:25.1483096 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000039","","740"
"10:46:25.1484854 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1485110 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:25.1485204 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000038","","740"
"10:46:25.1487777 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1488058 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000026","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:25.1488157 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000038","","740"
"10:46:25.1490064 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1490328 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000026","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:25.1490426 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000039","","740"
"10:46:25.1492172 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1492423 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000026","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:25.1492521 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000039","","740"
"10:46:25.1494975 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1495252 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000026","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:25.1495350 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000039","","740"
"10:46:25.1497210 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1497466 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000022","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:25.1497560 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000039","","740"
"10:46:25.1499297 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1499544 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000026","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:25.1499642 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000035","","740"
"10:46:25.1501844 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1502126 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:25.1502224 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000038","","740"
"10:46:25.1504097 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1504361 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:25.1504460 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000038","","740"
"10:46:25.1506200 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1506456 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:25.1506550 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000039","","740"
"10:46:25.1508765 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1509033 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000022","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:25.1509127 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000039","","740"
"10:46:25.1511013 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1511265 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000025","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:25.1511363 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000038","","740"
"10:46:25.1513061 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1513321 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000022","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:25.1513415 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000039","","740"
"10:46:25.1515109 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1515365 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000026","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:25.1515468 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000038","","740"
"10:46:25.1517191 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1517443 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000051","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:25.1517571 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000038","","740"
"10:46:25.1520643 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1521061 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000039","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:25.1521223 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000060","","740"
"10:46:25.1523250 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1523519 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:25.1523621 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000039","","740"
"10:46:25.1525558 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1525819 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000025","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:25.1525917 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000038","","740"
"10:46:25.1528246 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1528545 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000030","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:25.1528647 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000043","","740"
"10:46:25.1530439 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1530700 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000025","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:25.1530798 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000042","","740"
"10:46:25.1532551 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1532807 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000026","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:25.1532905 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000039","","740"
"10:46:25.1535252 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1535538 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000026","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.1535636 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000039","","740"
"10:46:25.1537475 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1537731 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000026","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.1537829 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000039","","740"
"10:46:25.1539579 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1539830 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000026","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.1539928 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000039","","740"
"10:46:25.1542237 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1542565 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000026","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.1542663 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000039","","740"
"10:46:25.1544515 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1544771 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000026","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.1544869 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000039","","740"
"10:46:25.1546606 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1546853 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000026","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.1546951 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000034","","740"
"10:46:25.1549264 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1549550 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000025","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:25.1549644 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000042","","740"
"10:46:25.1551495 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1551756 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000021","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:25.1551849 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000039","","740"
"10:46:25.1553607 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1553859 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:25.1553953 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000038","","740"
"10:46:25.1556278 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1556564 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000021","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.1556658 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000038","","740"
"10:46:25.1558514 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1558779 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000025","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.1558877 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000038","","740"
"10:46:25.1560613 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1560861 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000025","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.1560959 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000038","","740"
"10:46:25.1563493 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1563775 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.1563873 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000043","","740"
"10:46:25.1565737 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1565993 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.1566092 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000038","","740"
"10:46:25.1567841 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1568088 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000022","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.1568182 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000039","","740"
"10:46:25.1570580 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1570853 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:25.1570951 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000039","","740"
"10:46:25.1572786 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1573038 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:25.1573136 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000038","","740"
"10:46:25.1574877 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1575128 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000022","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:25.1575222 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000039","","740"
"10:46:25.1577522 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1577787 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000025","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:25.1577898 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000042","","740"
"10:46:25.1580402 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1580786 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000034","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:25.1580944 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000055","","740"
"10:46:25.1583184 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1583453 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000025","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:25.1583555 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000039","","740"
"10:46:25.1585893 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1586188 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000025","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:25.1586290 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000038","","740"
"10:46:25.1588116 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1588381 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000025","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:25.1588483 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000034","","740"
"10:46:25.1590224 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1590480 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000026","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:25.1590578 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000034","","740"
"10:46:25.1592899 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1593176 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.1593275 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000038","","740"
"10:46:25.1595092 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1595352 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000022","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.1595446 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000039","","740"
"10:46:25.1597238 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1597490 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.1597588 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000039","","740"
"10:46:25.1599918 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1600263 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:25.1600362 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000034","","740"
"10:46:25.1602269 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1602529 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:25.1602627 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000034","","740"
"10:46:25.1604415 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1604671 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:25.1604769 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000038","","740"
"10:46:25.1607120 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1607320 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000026","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:25.1607414 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000034","","740"
"10:46:25.1609176 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1609364 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000022","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:25.1609458 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000038","","740"
"10:46:25.1611250 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1611434 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000025","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:25.1611527 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000039","","740"
"10:46:25.1613861 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1614134 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:25.1614237 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000038","","740"
"10:46:25.1616020 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1616276 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000022","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:25.1616370 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000038","","740"
"10:46:25.1618162 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1618418 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000021","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:25.1618512 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000038","","740"
"10:46:25.1620888 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1621157 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:25.1621255 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000039","","740"
"10:46:25.1623026 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1623278 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000025","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:25.1623376 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000038","","740"
"10:46:25.1625198 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1625454 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000021","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:25.1625548 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000038","","740"
"10:46:25.1627984 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1628261 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000026","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.1628359 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000043","","740"
"10:46:25.1630540 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1630817 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000026","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.1630919 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000043","","740"
"10:46:25.1632707 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1632967 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000026","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.1633066 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000038","","740"
"10:46:25.1635523 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1635805 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:25.1635903 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000038","","740"
"10:46:25.1637665 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1637921 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:25.1638019 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000051","","740"
"10:46:25.1640293 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1640677 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000039","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:25.1640839 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000056","","740"
"10:46:25.1644385 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1644684 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:25.1644786 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000043","","740"
"10:46:25.1646625 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1646894 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:25.1646992 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000038","","740"
"10:46:25.1648976 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1649241 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:25.1649339 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000038","","740"
"10:46:25.1651809 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1652099 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:25.1652202 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000038","","740"
"10:46:25.1653981 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1654237 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:25.1654335 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000038","","740"
"10:46:25.1656093 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1656349 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:25.1656447 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000038","","740"
"10:46:25.1658887 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1659165 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:25.1659267 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000039","","740"
"10:46:25.1661140 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1661392 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000021","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:25.1661486 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000038","","740"
"10:46:25.1663227 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1663483 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:25.1663581 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000038","","740"
"10:46:25.1666030 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1666307 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000030","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:25.1666410 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000038","","740"
"10:46:25.1668206 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1668466 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000026","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:25.1668569 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000034","","740"
"10:46:25.1670314 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1670570 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000025","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:25.1670668 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000034","","740"
"10:46:25.1673121 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1673411 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:25.1673514 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000038","","740"
"10:46:25.1675310 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1675570 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:25.1675668 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000034","","740"
"10:46:25.1677443 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1677699 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000022","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:25.1677797 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000034","","740"
"10:46:25.1680374 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1680652 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000030","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.1680758 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000039","","740"
"10:46:25.1682538 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1682798 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.1682896 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000038","","740"
"10:46:25.1684654 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1684906 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000025","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.1685008 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000038","","740"
"10:46:25.1687500 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1687769 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:25.1687867 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000038","","740"
"10:46:25.1689637 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1689889 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:25.1689987 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000039","","740"
"10:46:25.1691728 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1691980 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000021","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:25.1692074 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000038","","740"
"10:46:25.1694591 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1694868 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:25.1694966 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000039","","740"
"10:46:25.1696737 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1696997 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:25.1697096 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000034","","740"
"10:46:25.1698836 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1699092 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000022","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:25.1699190 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000047","","740"
"10:46:25.1702659 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1703069 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:25.1703235 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000060","","740"
"10:46:25.1705232 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1705501 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:25.1705599 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000043","","740"
"10:46:25.1707361 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1707621 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000022","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:25.1707715 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000039","","740"
"10:46:25.1710335 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1710629 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000026","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:25.1710728 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000038","","740"
"10:46:25.1712507 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1712763 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000030","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:25.1712861 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000038","","740"
"10:46:25.1714606 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1714858 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000025","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:25.1714956 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000034","","740"
"10:46:25.1717721 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1718019 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:25.1718122 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000038","","740"
"10:46:25.1720072 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1720332 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:25.1720430 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000038","","740"
"10:46:25.1722213 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1722474 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:25.1722568 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000038","","740"
"10:46:25.1725102 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1725486 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000026","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:25.1725584 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000038","","740"
"10:46:25.1727525 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1727781 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000026","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:25.1727880 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000038","","740"
"10:46:25.1729616 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1729868 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000025","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:25.1729966 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000038","","740"
"10:46:25.1732462 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1732739 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.1732837 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000039","","740"
"10:46:25.1734608 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1734856 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.1734954 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000038","","740"
"10:46:25.1736682 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1736929 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.1737027 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000039","","740"
"10:46:25.1739536 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1739732 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.1739826 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000039","","740"
"10:46:25.1741580 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1741759 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.1741853 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000034","","740"
"10:46:25.1743589 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1743769 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.1743863 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000038","","740"
"10:46:25.1744848 AM","firefox.exe","7384","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0005223","Offset: 14,295,040, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.1746405 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1746721 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:25.1746819 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000039","","740"
"10:46:25.1748581 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1748859 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:25.1748961 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000039","","740"
"10:46:25.1750711 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1751065 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000034","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:25.1751184 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000043","","740"
"10:46:25.1752609 AM","firefox.exe","7384","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0222716","Offset: 14,438,400, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.1753855 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1754137 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:25.1754235 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000038","","740"
"10:46:25.1756044 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1756308 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:25.1756407 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000038","","740"
"10:46:25.1758143 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1758399 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000021","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:25.1758493 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000038","","740"
"10:46:25.1761791 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1762222 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000038","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:25.1762384 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000060","","740"
"10:46:25.1764479 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1764765 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:25.1764867 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000039","","740"
"10:46:25.1766787 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1767065 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:25.1767163 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000038","","740"
"10:46:25.1769689 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1769979 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:25.1770081 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000039","","740"
"10:46:25.1771886 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1772159 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:25.1772257 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000039","","740"
"10:46:25.1773981 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1774245 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:25.1774344 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000034","","740"
"10:46:25.1776891 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1777172 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000030","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:25.1777275 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000038","","740"
"10:46:25.1779139 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1779395 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000026","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:25.1779493 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000039","","740"
"10:46:25.1781303 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1781554 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000026","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:25.1781657 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000034","","740"
"10:46:25.1784212 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1784494 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000026","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:25.1784592 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000039","","740"
"10:46:25.1786427 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1786683 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000025","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:25.1786781 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000038","","740"
"10:46:25.1788569 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1788820 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000026","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:25.1788919 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000034","","740"
"10:46:25.1791406 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1791675 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:25.1791773 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000034","","740"
"10:46:25.1793565 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1793821 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:25.1793915 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000038","","740"
"10:46:25.1795656 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1795920 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:25.1796052 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000056","","740"
"10:46:25.1798928 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1799218 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:25.1799316 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000043","","740"
"10:46:25.1801172 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1801433 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:25.1801531 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000043","","740"
"10:46:25.1803302 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1803558 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000021","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:25.1803651 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000039","","740"
"10:46:25.1806237 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1806506 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:25.1806608 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000039","","740"
"10:46:25.1808550 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1808810 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000025","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:25.1808908 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000038","","740"
"10:46:25.1810670 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1810922 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000025","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:25.1811020 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000038","","740"
"10:46:25.1813652 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1813853 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:25.1813951 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000039","","740"
"10:46:25.1815880 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1816063 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:25.1816157 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000038","","740"
"10:46:25.1817911 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1818094 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:25.1818188 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000038","","740"
"10:46:25.1820774 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1820974 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000038","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:25.1821081 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000038","","740"
"10:46:25.1823316 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1823594 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000034","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:25.1823747 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000056","","740"
"10:46:25.1826167 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1826359 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000025","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:25.1826457 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000034","","740"
"10:46:25.1829094 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1829294 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000026","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:25.1829388 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000038","","740"
"10:46:25.1831291 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1831470 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000021","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:25.1831564 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000034","","740"
"10:46:25.1833305 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1833484 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000026","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:25.1833578 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000034","","740"
"10:46:25.1836185 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1836373 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000025","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:25.1836466 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000035","","740"
"10:46:25.1838241 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1838425 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000021","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:25.1838514 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000035","","740"
"10:46:25.1840255 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1840430 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000026","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:25.1840520 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000038","","740"
"10:46:25.1843195 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1843489 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.1843587 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000039","","740"
"10:46:25.1845392 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1845653 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000025","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.1845751 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000034","","740"
"10:46:25.1847483 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1847735 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000025","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.1847833 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000034","","740"
"10:46:25.1850585 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1851020 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:25.1851122 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000039","","740"
"10:46:25.1852893 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1853149 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:25.1853243 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000038","","740"
"10:46:25.1854979 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1855231 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:25.1855329 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000039","","740"
"10:46:25.1857941 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1858205 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000026","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:25.1858299 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000038","","740"
"10:46:25.1860117 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1860368 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000026","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:25.1860466 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000039","","740"
"10:46:25.1862203 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1862450 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000026","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:25.1862549 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000034","","740"
"10:46:25.1865177 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1865450 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000025","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:25.1865548 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000038","","740"
"10:46:25.1867361 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1867613 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000021","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:25.1867707 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000038","","740"
"10:46:25.1869431 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1869678 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000026","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:25.1869772 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000038","","740"
"10:46:25.1872797 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1873010 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000026","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:25.1873104 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000039","","740"
"10:46:25.1875310 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1875566 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000026","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:25.1875664 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000034","","740"
"10:46:25.1877426 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1877614 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000021","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:25.1877704 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000038","","740"
"10:46:25.1880362 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1880562 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:25.1880656 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000039","","740"
"10:46:25.1882994 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1883267 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000035","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:25.1883425 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000052","","740"
"10:46:25.1885776 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1885964 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:25.1886058 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000038","","740"
"10:46:25.1888801 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1889096 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000025","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:25.1889194 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000038","","740"
"10:46:25.1891016 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1891285 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000025","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:25.1891383 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000038","","740"
"10:46:25.1893269 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1893529 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000025","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:25.1893623 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000038","","740"
"10:46:25.1896289 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1896571 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000026","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:25.1896669 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000039","","740"
"10:46:25.1898444 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1898704 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000026","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:25.1898802 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000035","","740"
"10:46:25.1900577 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1900829 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000026","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:25.1900927 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000039","","740"
"10:46:25.1903538 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1903820 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000026","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:25.1903918 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000039","","740"
"10:46:25.1905706 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1905962 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000026","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:25.1906060 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000038","","740"
"10:46:25.1908040 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1908292 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000021","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:25.1908390 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000038","","740"
"10:46:25.1911014 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1911300 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000025","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:25.1911398 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000038","","740"
"10:46:25.1913207 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1913458 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000026","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:25.1913557 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000034","","740"
"10:46:25.1915340 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1915592 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000021","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:25.1915686 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000038","","740"
"10:46:25.1918335 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1918532 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000025","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:25.1918625 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000039","","740"
"10:46:25.1920383 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1920567 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000021","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:25.1920656 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000039","","740"
"10:46:25.1922474 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1922653 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000026","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:25.1922747 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000038","","740"
"10:46:25.1925380 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1925567 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:25.1925661 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000034","","740"
"10:46:25.1927415 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1927594 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000021","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:25.1927684 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000038","","740"
"10:46:25.1931357 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1931656 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000030","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","740"
"10:46:25.1931754 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000043","","740"
"10:46:25.1933580 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1933759 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000026","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","740"
"10:46:25.1933853 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000039","","740"
"10:46:25.1935671 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1935850 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000021","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","740"
"10:46:25.1935940 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000038","","740"
"10:46:25.1938649 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1938845 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.1938939 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000038","","740"
"10:46:25.1940804 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1940983 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000025","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.1941077 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000038","","740"
"10:46:25.1941725 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000132","Desired Access: Read","740"
"10:46:25.1942835 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\twinapi.appcore.dll.mui","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1943163 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\twinapi.appcore.dll.mui","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:25.1943300 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\twinapi.appcore.dll.mui","0.0000034","AllocationSize: 8,192, EndOfFile: 7,168, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:25.1943513 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\twinapi.appcore.dll.mui","0.0000017","SyncType: SyncTypeOther","740"
"10:46:25.1946218 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1946517 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000034","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.1946679 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000060","","740"
"10:46:25.1949798 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1950109 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000030","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.1950220 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000043","","740"
"10:46:25.1952068 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1952341 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000025","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.1952443 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000038","","740"
"10:46:25.1954227 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.1954487 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000025","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.1954585 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000038","","740"
"10:46:25.1977156 AM","firefox.exe","7384","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0017523","Offset: 14,471,168, Length: 28,672, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.1998114 AM","firefox.exe","7384","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0218218","Offset: 14,630,912, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.2220864 AM","firefox.exe","7384","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0008904","Offset: 14,819,328, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.2232315 AM","firefox.exe","7384","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0441021","Offset: 14,852,096, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.2681135 AM","firefox.exe","7384","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0008726","Offset: 14,884,864, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.2698471 AM","firefox.exe","7384","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0008593","Offset: 14,917,632, Length: 73,728, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.2723572 AM","firefox.exe","7384","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0007846","Offset: 14,991,360, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.2739098 AM","firefox.exe","7384","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0007701","Offset: 15,024,128, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.2763183 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DWrite.dll","0.0127459","Offset: 2,550,272, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.2892050 AM","firefox.exe","7384","CreateFile","C:\Windows\Fonts\segoeui.ttf","0.0001271","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.2895800 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\Fonts\segoeui.ttf","0.0000171","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","5728"
"10:46:25.2896884 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\Fonts\segoeui.ttf","0.0000256","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:13 PM, FileAttributes: A, AllocationSize: 929,792, EndOfFile: 925,736, NumberOfLinks: 2, DeletePending: False, Directory: False, IndexNumber: 0x800000005147f, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","5728"
"10:46:25.2898313 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\Fonts\segoeui.ttf","0.0000171","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:25.2899179 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\Fonts\segoeui.ttf","0.0000132","AllocationSize: 929,792, EndOfFile: 925,736, NumberOfLinks: 2, DeletePending: False, Directory: False","5728"
"10:46:25.2900549 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\Fonts\segoeui.ttf","0.0000081","SyncType: SyncTypeOther","5728"
"10:46:25.2907243 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000226","Query: Name","5728"
"10:46:25.2908195 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000064","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2908783 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000047","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2909577 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000239","Desired Access: Read","5728"
"10:46:25.2910533 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000678","Desired Access: Read","5728"
"10:46:25.2911915 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000167","Query: Name","5728"
"10:46:25.2912611 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000047","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2913400 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\TreatAs","0.0000230","Desired Access: Query Value","5728"
"10:46:25.2914108 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000051","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2914680 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\TreatAs","0.0000137","Desired Access: Query Value","5728"
"10:46:25.2915277 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000154","Query: Name","5728"
"10:46:25.2916084 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000141","Query: Name","5728"
"10:46:25.2916707 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000047","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2917394 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000200","Desired Access: Maximum Allowed","5728"
"10:46:25.2918115 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\(Default)","0.0000132","Length: 12","5728"
"10:46:25.2918763 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000137","Query: Name","5728"
"10:46:25.2919356 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000047","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2920009 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000179","Desired Access: Maximum Allowed","5728"
"10:46:25.2920653 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\(Default)","0.0000124","Type: REG_SZ, Length: 52, Data: TF_InputProcessorProfiles","5728"
"10:46:25.2921302 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000136","Query: Name","5728"
"10:46:25.2921912 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000047","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2922548 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InprocServer32","0.0000196","Desired Access: Read","5728"
"10:46:25.2923205 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000051","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2923738 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InprocServer32","0.0000286","Desired Access: Read","5728"
"10:46:25.2924617 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000171","Query: Name","5728"
"10:46:25.2925278 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000052","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2925918 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000192","Desired Access: Maximum Allowed","5728"
"10:46:25.2926605 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32\InprocServer32","0.0000116","Length: 12","5728"
"10:46:25.2927186 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000140","Query: Name","5728"
"10:46:25.2927791 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000047","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2928419 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000183","Desired Access: Maximum Allowed","5728"
"10:46:25.2929067 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32\(Default)","0.0000103","Length: 12","5728"
"10:46:25.2929673 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000145","Query: Name","5728"
"10:46:25.2930296 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000047","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2930928 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000183","Desired Access: Maximum Allowed","5728"
"10:46:25.2931576 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32\(Default)","0.0000124","Type: REG_EXPAND_SZ, Length: 64, Data: %SystemRoot%\system32\msctf.dll","5728"
"10:46:25.2932254 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000146","Query: Name","5728"
"10:46:25.2932869 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000043","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2933488 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000174","Desired Access: Maximum Allowed","5728"
"10:46:25.2934110 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32\(Default)","0.0000111","Type: REG_EXPAND_SZ, Length: 64, Data: %SystemRoot%\system32\msctf.dll","5728"
"10:46:25.2934755 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000141","Query: Name","5728"
"10:46:25.2935365 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000047","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2935988 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000175","Desired Access: Maximum Allowed","5728"
"10:46:25.2936619 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32\ThreadingModel","0.0000120","Type: REG_SZ, Length: 20, Data: Apartment","5728"
"10:46:25.2937468 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000073","","5728"
"10:46:25.2938044 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000141","Query: Name","5728"
"10:46:25.2938680 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000047","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2939307 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InprocHandler32","0.0000184","Desired Access: Query Value","5728"
"10:46:25.2939947 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000051","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2940489 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InprocHandler32","0.0000205","Desired Access: Query Value","5728"
"10:46:25.2941189 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000132","Query: Name","5728"
"10:46:25.2941799 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000077","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2942605 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InprocHandler","0.0000197","Desired Access: Query Value","5728"
"10:46:25.2943262 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000052","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2943809 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InprocHandler","0.0000128","Desired Access: Query Value","5728"
"10:46:25.2944624 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000055","","5728"
"10:46:25.2946608 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000162","Query: Name","5728"
"10:46:25.2947405 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000047","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2947973 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000047","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2948600 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000158","Desired Access: Read","5728"
"10:46:25.2949385 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000231","Desired Access: Read","5728"
"10:46:25.2950213 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000149","Query: Name","5728"
"10:46:25.2950908 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000052","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2951612 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\TreatAs","0.0000197","Desired Access: Query Value","5728"
"10:46:25.2952329 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000047","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2952935 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\TreatAs","0.0000132","Desired Access: Query Value","5728"
"10:46:25.2953584 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000145","Query: Name","5728"
"10:46:25.2954339 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000136","Query: Name","5728"
"10:46:25.2955009 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000051","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2955717 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000188","Desired Access: Maximum Allowed","5728"
"10:46:25.2956442 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\(Default)","0.0000115","Length: 12","5728"
"10:46:25.2957099 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000141","Query: Name","5728"
"10:46:25.2957756 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000047","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2958443 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000179","Desired Access: Maximum Allowed","5728"
"10:46:25.2959139 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\(Default)","0.0000119","Type: REG_SZ, Length: 52, Data: TF_InputProcessorProfiles","5728"
"10:46:25.2959817 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000171","Query: Name","5728"
"10:46:25.2960726 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000072","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2961818 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InprocServer32","0.0000214","Desired Access: Read","5728"
"10:46:25.2962595 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000055","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2963218 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InprocServer32","0.0000158","Desired Access: Read","5728"
"10:46:25.2963977 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000167","Query: Name","5728"
"10:46:25.2964715 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000051","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2965441 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000192","Desired Access: Maximum Allowed","5728"
"10:46:25.2966187 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32\InprocServer32","0.0000111","Length: 12","5728"
"10:46:25.2967220 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0001190","Query: Name","5728"
"10:46:25.2968918 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000043","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2969502 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000150","Desired Access: Maximum Allowed","5728"
"10:46:25.2970053 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32\(Default)","0.0000077","Length: 12","5728"
"10:46:25.2970573 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000116","Query: Name","5728"
"10:46:25.2971056 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000029","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2971504 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000115","Desired Access: Maximum Allowed","5728"
"10:46:25.2971956 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32\(Default)","0.0000081","Type: REG_EXPAND_SZ, Length: 64, Data: %SystemRoot%\system32\msctf.dll","5728"
"10:46:25.2972425 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000098","Query: Name","5728"
"10:46:25.2972856 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2973291 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000111","Desired Access: Maximum Allowed","5728"
"10:46:25.2973735 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32\(Default)","0.0000068","Type: REG_EXPAND_SZ, Length: 64, Data: %SystemRoot%\system32\msctf.dll","5728"
"10:46:25.2974183 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000094","Query: Name","5728"
"10:46:25.2974618 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2975053 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000116","Desired Access: Maximum Allowed","5728"
"10:46:25.2975493 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32\ThreadingModel","0.0000077","Type: REG_SZ, Length: 20, Data: Apartment","5728"
"10:46:25.2976077 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InProcServer32","0.0000039","","5728"
"10:46:25.2976474 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000094","Query: Name","5728"
"10:46:25.2976918 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2977362 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InprocHandler32","0.0000115","Desired Access: Query Value","5728"
"10:46:25.2977810 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2978194 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InprocHandler32","0.0000076","Desired Access: Query Value","5728"
"10:46:25.2978616 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000090","Query: Name","5728"
"10:46:25.2979043 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2979469 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InprocHandler","0.0000111","Desired Access: Query Value","5728"
"10:46:25.2979909 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2980289 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\InprocHandler","0.0000081","Desired Access: Query Value","5728"
"10:46:25.2980720 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000089","Query: Name","5728"
"10:46:25.2981146 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2981577 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\LocalServer32","0.0000115","Desired Access: Read","5728"
"10:46:25.2982021 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2982396 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\LocalServer32","0.0000081","Desired Access: Read","5728"
"10:46:25.2982823 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000085","Query: Name","5728"
"10:46:25.2983245 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000026","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2983676 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000111","Desired Access: Maximum Allowed","5728"
"10:46:25.2984120 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\AppID","0.0000068","Length: 112","5728"
"10:46:25.2984521 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000086","Query: Name","5728"
"10:46:25.2984944 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000029","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2985370 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\LocalServer","0.0000115","Desired Access: Query Value","5728"
"10:46:25.2985801 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2986181 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\LocalServer","0.0000090","Desired Access: Query Value","5728"
"10:46:25.2986616 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000115","Query: Name","5728"
"10:46:25.2987098 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000039","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2987452 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000035","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2987896 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000107","Desired Access: Read","5728"
"10:46:25.2988391 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000141","Desired Access: Read","5728"
"10:46:25.2988907 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000090","Query: Name","5728"
"10:46:25.2989334 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2989769 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\Elevation","0.0000120","Desired Access: Read","5728"
"10:46:25.2990209 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2990580 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\Elevation","0.0000081","Desired Access: Read","5728"
"10:46:25.2991079 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000034","","5728"
"10:46:25.2991527 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000030","","5728"
"10:46:25.2992026 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000077","Query: Name","5728"
"10:46:25.2992453 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2992781 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2993148 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000094","Desired Access: Read","5728"
"10:46:25.2993601 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000115","Desired Access: Read","5728"
"10:46:25.2994074 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000090","Query: Name","5728"
"10:46:25.2994492 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2994911 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\TreatAs","0.0000119","Desired Access: Read","5728"
"10:46:25.2995333 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.2995687 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}\TreatAs","0.0000077","Desired Access: Read","5728"
"10:46:25.2996135 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{33C53A50-F456-4884-B049-85FD643ECFED}","0.0000026","","5728"
"10:46:25.3066010 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0001037","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3067721 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000171","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:25.3068417 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000273","","740"
"10:46:25.3079356 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000581","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3080419 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000145","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:25.3080995 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000235","","740"
"10:46:25.3091124 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000742","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3092366 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000145","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:25.3092967 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000222","","740"
"10:46:25.3121298 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000644","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3122795 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000146","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.3123465 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000239","","740"
"10:46:25.3147261 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000631","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3148954 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000167","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.3149658 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000261","","740"
"10:46:25.3162036 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000661","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3163666 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000149","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.3164285 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000247","","740"
"10:46:25.3175468 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000921","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3177366 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000150","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:25.3177942 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000231","","740"
"10:46:25.3187994 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000619","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3189449 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000150","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:25.3190017 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000230","","740"
"10:46:25.3200850 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000610","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3202369 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000154","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:25.3202992 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000401","","740"
"10:46:25.3213957 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000610","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3215143 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000141","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.3215758 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000226","","740"
"10:46:25.3226066 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000623","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3227175 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000141","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.3227879 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000231","","740"
"10:46:25.3237048 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000559","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3238068 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000132","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.3238606 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000217","","740"
"10:46:25.3252690 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000785","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3254512 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000154","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:25.3255160 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000256","","740"
"10:46:25.3265610 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000631","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3267133 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000145","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:25.3267734 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000363","","740"
"10:46:25.3278030 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000580","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3280291 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000371","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:25.3280867 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000098","","740"
"10:46:25.3285330 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3285919 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000055","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:25.3286158 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000085","","740"
"10:46:25.3290817 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3291466 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000081","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:25.3291747 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000090","","740"
"10:46:25.3299022 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000456","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3299943 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000069","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:25.3300217 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000102","","740"
"10:46:25.3304748 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3305388 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000059","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.3305631 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000094","","740"
"10:46:25.3309654 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3310273 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000120","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.3310597 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000111","","740"
"10:46:25.3314676 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000261","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3315325 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000060","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.3315577 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000093","","740"
"10:46:25.3319839 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3320475 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000064","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:25.3320697 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000093","","740"
"10:46:25.3323308 AM","firefox.exe","7336","RegOpenKey","HKCU","0.0000153","Desired Access: Maximum Allowed, Granted Access: Read","7392"
"10:46:25.3323747 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000103","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:25.3324080 AM","firefox.exe","7336","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows\DWM","0.0000081","Desired Access: Query Value","7392"
"10:46:25.3324387 AM","firefox.exe","7336","RegCloseKey","HKCU","0.0000022","","7392"
"10:46:25.3324626 AM","firefox.exe","7336","RegQueryValue","HKCU\Software\Microsoft\Windows\DWM\AccentColor","0.0000056","Type: REG_DWORD, Length: 4, Data: 4292311040","7392"
"10:46:25.3324750 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3325347 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000064","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:25.3325582 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000136","","740"
"10:46:25.3325936 AM","firefox.exe","7336","RegCloseKey","HKCU\Software\Microsoft\Windows\DWM","0.0000154","","7392"
"10:46:25.3329567 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 5244","5728"
"10:46:25.3329878 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3330399 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000047","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:25.3330582 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0001204","","740"
"10:46:25.3332946 AM","firefox.exe","7336","RegOpenKey","HKCU","0.0000111","Desired Access: Maximum Allowed, Granted Access: Read","7392"
"10:46:25.3333287 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000022","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:25.3333509 AM","firefox.exe","7336","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows\DWM","0.0000077","Desired Access: Query Value","7392"
"10:46:25.3333821 AM","firefox.exe","7336","RegCloseKey","HKCU","0.0000021","","7392"
"10:46:25.3334132 AM","firefox.exe","7336","RegQueryValue","HKCU\Software\Microsoft\Windows\DWM\ColorPrevalence","0.0000056","Type: REG_DWORD, Length: 4, Data: 0","7392"
"10:46:25.3334401 AM","firefox.exe","7336","RegCloseKey","HKCU\Software\Microsoft\Windows\DWM","0.0000017","","7392"
"10:46:25.3335779 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3336304 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000060","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:25.3336534 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000090","","740"
"10:46:25.3339837 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0001092","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3341215 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000047","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:25.3341394 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000068","","740"
"10:46:25.3342811 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\Windows\Tablet PC\","0.0000213","Desired Access: Read","7392"
"10:46:25.3343412 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\Tablet PC\IsTabletPC","0.0000090","Type: REG_DWORD, Length: 4, Data: 0","7392"
"10:46:25.3343783 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\Tablet PC","0.0008764","","7392"
"10:46:25.3345507 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3346092 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000060","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:25.3346331 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000089","","740"
"10:46:25.3350405 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3350866 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000051","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:25.3351084 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000081","","740"
"10:46:25.3353145 AM","firefox.exe","7336","RegOpenKey","HKCU","0.0000132","Desired Access: Maximum Allowed, Granted Access: Read","7392"
"10:46:25.3353554 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000030","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:25.3353844 AM","firefox.exe","7336","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Themes\Personalize","0.0000116","Desired Access: Query Value","7392"
"10:46:25.3354233 AM","firefox.exe","7336","RegCloseKey","HKCU","0.0000029","","7392"
"10:46:25.3354501 AM","firefox.exe","7336","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Themes\Personalize\AppsUseLightTheme","0.0000052","Length: 16","7392"
"10:46:25.3354762 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3354800 AM","firefox.exe","7336","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Themes\Personalize","0.0000021","","7392"
"10:46:25.3355158 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000052","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:25.3355376 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000111","","740"
"10:46:25.3359050 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3359455 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000051","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:25.3359685 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000077","","740"
"10:46:25.3364161 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3364810 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000059","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:25.3365053 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000085","","740"
"10:46:25.3369264 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3369861 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000056","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:25.3370100 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000086","","740"
"10:46:25.3373949 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3374521 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:25.3374755 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000086","","740"
"10:46:25.3380110 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3380818 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000124","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:25.3381300 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000145","","740"
"10:46:25.3382602 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 7760","7276"
"10:46:25.3386237 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3386945 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000068","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:25.3387210 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000098","","740"
"10:46:25.3391293 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000478","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3392129 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000064","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:25.3392377 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000089","","740"
"10:46:25.3393712 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 4428","5728"
"10:46:25.3394847 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000350","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:25.3395513 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","7760"
"10:46:25.3395816 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000102","","7760"
"10:46:25.3396404 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3397053 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000051","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.3397288 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000081","","740"
"10:46:25.3399348 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 4412","5728"
"10:46:25.3401640 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3402263 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000055","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.3402510 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000090","","740"
"10:46:25.3405130 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000559","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:25.3406004 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","7760"
"10:46:25.3406277 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000103","","7760"
"10:46:25.3406461 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3406990 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 4500","5728"
"10:46:25.3407144 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000068","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.3407404 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000085","","740"
"10:46:25.3411948 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3411986 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:25.3412434 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000060","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:25.3412507 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","7760"
"10:46:25.3412677 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000086","","740"
"10:46:25.3412759 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000072","","7760"
"10:46:25.3415003 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000452","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","7760"
"10:46:25.3416010 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000469","Offset: 0, Length: 100, Priority: Normal","7760"
"10:46:25.3418437 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000060","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","7760"
"10:46:25.3418732 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","7760"
"10:46:25.3419005 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Offset: 1,073,741,824, Length: 1","7760"
"10:46:25.3421271 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000678","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3422807 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000072","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:25.3423075 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000124","","740"
"10:46:25.3423673 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000298","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:25.3428076 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000303","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:25.3428626 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3428767 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:25.3429066 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000055","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:25.3429143 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000093","Offset: 0, Length: 4,096","7760"
"10:46:25.3429296 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000090","","740"
"10:46:25.3433029 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:25.3433315 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3433733 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000056","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:25.3433968 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000081","","740"
"10:46:25.3436285 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0001890","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","7760"
"10:46:25.3443201 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000640","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:25.3446030 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0004732","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","7760"
"10:46:25.3447165 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:25.3447553 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40032, endtime: 40032, seqnum: 0, connid: 0","0"
"10:46:25.3448663 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:25.3448970 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40032, endtime: 40032, seqnum: 0, connid: 0","0"
"10:46:25.3451261 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000085","Exclusive: True, Offset: 128, Length: 1, Fail Immediately: True","7760"
"10:46:25.3451683 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000487","EndOfFile: 0","7760"
"10:46:25.3452434 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000312","AllocationSize: 0","7760"
"10:46:25.3453019 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000038","Offset: 128, Length: 1","7760"
"10:46:25.3453288 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","Exclusive: False, Offset: 128, Length: 1, Fail Immediately: True","7760"
"10:46:25.3458352 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 9136","5728"
"10:46:25.3465431 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000153","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:25.3466066 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000073","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7760"
"10:46:25.3466570 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000055","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:25.3466945 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0004783","EndOfFile: 32,768","7760"
"10:46:25.3472070 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000375","AllocationSize: 32,768","7760"
"10:46:25.3473012 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000073","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7760"
"10:46:25.3473315 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000060","AllocationSize: 32,768, EndOfFile: 32,768, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:25.3473968 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000051","SyncType: SyncTypeOther","7760"
"10:46:25.3474787 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000150","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7760"
"10:46:25.3475078 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000285","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3475334 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000055","Exclusive: True, Offset: 121, Length: 2, Fail Immediately: True","7760"
"10:46:25.3475568 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000073","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:25.3475590 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000029","Exclusive: True, Offset: 124, Length: 4, Fail Immediately: True","7760"
"10:46:25.3475820 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000158","","740"
"10:46:25.3476059 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000047","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:25.3476349 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000038","Offset: 121, Length: 2","7760"
"10:46:25.3476567 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000025","Offset: 124, Length: 4","7760"
"10:46:25.3476776 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000021","Offset: 120, Length: 1","7760"
"10:46:25.3477074 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000034","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:25.3477382 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000046","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:25.3477766 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000098","Offset: 0, Length: 4,096","7760"
"10:46:25.3482412 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000051","Offset: 123, Length: 1","7760"
"10:46:25.3488774 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000375","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:25.3489401 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000072","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","7760"
"10:46:25.3489849 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000111","","7760"
"10:46:25.3494064 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:25.3494559 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000056","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:25 AM, LastWriteTime: 3/26/2020 10:46:25 AM, ChangeTime: 3/26/2020 10:46:25 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","7760"
"10:46:25.3495016 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000085","","7760"
"10:46:25.3497217 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000482","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:25.3497955 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000056","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,870, SectorsPerAllocationUnit: 8, BytesPerSector: 512","7760"
"10:46:25.3498207 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000073","","7760"
"10:46:25.3500673 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000086","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:25.3501027 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:25.3501446 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000102","Offset: 20,480, Length: 4,096","7760"
"10:46:25.3501949 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0061338","Offset: 1,654,784, Length: 4,096","7760"
"10:46:25.3502401 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0060596","Offset: 1,654,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:25.3504718 AM","firefox.exe","7384","CreateFile","C:\Windows\Fonts\segoeui.ttf","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.3505525 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\Fonts\segoeui.ttf","0.0000059","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:13 PM, FileAttributes: A","5728"
"10:46:25.3506207 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000350","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3506514 AM","firefox.exe","7384","CloseFile","C:\Windows\Fonts\segoeui.ttf","0.0003516","","5728"
"10:46:25.3506766 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000056","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:25.3507005 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000094","","740"
"10:46:25.3511583 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3512206 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000056","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:25.3512437 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000085","","740"
"10:46:25.3516259 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3516844 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000051","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:25.3517074 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000086","","740"
"10:46:25.3520927 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000580","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3522058 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000068","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:25.3522463 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000124","","740"
"10:46:25.3527058 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3527690 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:25.3527929 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000081","","740"
"10:46:25.3531914 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3532618 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000077","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:25.3532887 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000102","","740"
"10:46:25.3536522 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3537081 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:25.3537290 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000081","","740"
"10:46:25.3541987 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3542491 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000055","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:25.3542717 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000085","","740"
"10:46:25.3546634 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3547078 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000055","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:25.3547312 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000086","","740"
"10:46:25.3551643 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3552108 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000060","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:25.3552381 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000090","","740"
"10:46:25.3557100 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000333","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3557710 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000064","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.3557996 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000209","","740"
"10:46:25.3562664 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3563218 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000111","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.3563526 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000111","","740"
"10:46:25.3563965 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0038212","Offset: 12,787,712, Length: 4,096","7760"
"10:46:25.3564537 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0037389","Offset: 12,787,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:25.3567634 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3567984 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000056","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.3568185 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000145","","740"
"10:46:25.3573744 AM","firefox.exe","1008","CreateFile","C:\Windows\Fonts\segoeui.ttf","0.0000286","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7796"
"10:46:25.3573766 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000290","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3574278 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000059","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:25.3574564 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000170","","740"
"10:46:25.3574935 AM","firefox.exe","1008","QueryInformationVolume","C:\Windows\Fonts\segoeui.ttf","0.0000051","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","7796"
"10:46:25.3575221 AM","firefox.exe","1008","QueryAllInformationFile","C:\Windows\Fonts\segoeui.ttf","0.0000076","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:13 PM, FileAttributes: A, AllocationSize: 929,792, EndOfFile: 925,736, NumberOfLinks: 2, DeletePending: False, Directory: False, IndexNumber: 0x800000005147f, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","7796"
"10:46:25.3575536 AM","firefox.exe","1008","CloseFile","C:\Windows\Fonts\segoeui.ttf","0.0000094","","7796"
"10:46:25.3579709 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3580200 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000064","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:25.3580439 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000085","","740"
"10:46:25.3584390 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3584816 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000056","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:25.3585034 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000090","","740"
"10:46:25.3585192 AM","firefox.exe","1008","CreateFile","C:\Windows\Fonts\segoeui.ttf","0.0137186","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7796"
"10:46:25.3589352 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3589796 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000064","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:25.3590017 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000094","","740"
"10:46:25.3594233 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3594578 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:25.3594736 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000073","","740"
"10:46:25.3595278 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\ucrtbase.dll","0.0147533","Offset: 558,080, Length: 28,672, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7348"
"10:46:25.3597702 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3598043 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:25.3598180 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000059","","740"
"10:46:25.3601461 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000221","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3601823 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:25.3601981 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000154","","740"
"10:46:25.3605646 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0216355","Offset: 12,378,112, Length: 4,096","7760"
"10:46:25.3606205 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0215565","Offset: 12,378,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:25.3608040 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3608454 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000051","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:25.3608650 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000073","","740"
"10:46:25.3611718 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3612072 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:25.3612243 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000072","","740"
"10:46:25.3616057 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000384","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3616761 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:25.3616940 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000081","","740"
"10:46:25.3620046 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3620528 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:25.3620712 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000072","","740"
"10:46:25.3623622 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3624121 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:25.3624300 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000068","","740"
"10:46:25.3631268 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000320","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3631925 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000068","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:25.3632147 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000106","","740"
"10:46:25.3635645 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3636200 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000051","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:25.3636464 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000094","","740"
"10:46:25.3640070 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3640543 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:25.3640740 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000072","","740"
"10:46:25.3644972 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3645501 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:25.3645693 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000081","","740"
"10:46:25.3648970 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3649478 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:25.3649670 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000072","","740"
"10:46:25.3653062 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000891","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3654995 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000059","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:25.3655221 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000089","","740"
"10:46:25.3658911 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000316","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3659376 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:25.3659556 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000068","","740"
"10:46:25.3662636 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3662990 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000043","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:25.3663152 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000069","","740"
"10:46:25.3666186 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3666553 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000043","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:25.3666724 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000068","","740"
"10:46:25.3670845 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3671374 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000052","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:25.3671554 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000072","","740"
"10:46:25.3674809 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3675419 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000064","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:25.3675628 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000073","","740"
"10:46:25.3679131 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3679583 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000056","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:25.3679784 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000090","","740"
"10:46:25.3683641 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3684162 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000055","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:25.3684413 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000086","","740"
"10:46:25.3687575 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3687942 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000047","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:25.3688117 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000064","","740"
"10:46:25.3690775 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3691069 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000043","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:25.3691359 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000111","","740"
"10:46:25.3694999 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3695319 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:25.3695464 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000055","","740"
"10:46:25.3698626 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3698963 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000042","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:25.3699142 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000064","","740"
"10:46:25.3702402 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000157","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3702679 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:25.3702807 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000060","","740"
"10:46:25.3706178 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3706677 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000047","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:25.3706924 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000081","","740"
"10:46:25.3709813 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 4408","7392"
"10:46:25.3710090 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3710508 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000094","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:25.3710730 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000064","","740"
"10:46:25.3713431 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3713934 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000052","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:25.3714126 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000069","","740"
"10:46:25.3717843 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3718380 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:25.3718577 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000072","","740"
"10:46:25.3721841 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3722357 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:25.3722557 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000069","","740"
"10:46:25.3722975 AM","firefox.exe","1008","QueryInformationVolume","C:\Windows\Fonts\segoeui.ttf","0.0000064","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","7796"
"10:46:25.3723253 AM","firefox.exe","1008","QueryAllInformationFile","C:\Windows\Fonts\segoeui.ttf","0.0000068","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:13 PM, FileAttributes: A, AllocationSize: 929,792, EndOfFile: 925,736, NumberOfLinks: 2, DeletePending: False, Directory: False, IndexNumber: 0x800000005147f, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","7796"
"10:46:25.3723692 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\Fonts\segoeui.ttf","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7796"
"10:46:25.3723914 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\Fonts\segoeui.ttf","0.0000039","AllocationSize: 929,792, EndOfFile: 925,736, NumberOfLinks: 2, DeletePending: False, Directory: False","7796"
"10:46:25.3724268 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\Fonts\segoeui.ttf","0.0000026","SyncType: SyncTypeOther","7796"
"10:46:25.3726180 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3726683 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000043","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:25.3726875 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000073","","740"
"10:46:25.3730587 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3731091 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000042","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.3731274 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000068","","740"
"10:46:25.3733911 AM","firefox.exe","1008","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0150622","Offset: 933,888, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7796"
"10:46:25.3734559 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3735106 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000042","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.3735293 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000073","","740"
"10:46:25.3738425 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3738894 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000218","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.3739419 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000120","","740"
"10:46:25.3744369 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000221","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3744774 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000055","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:25.3744987 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000077","","740"
"10:46:25.3750700 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3751033 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000047","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:25.3751221 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000072","","740"
"10:46:25.3754404 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3754788 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000051","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:25.3755001 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000077","","740"
"10:46:25.3760270 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3760667 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000051","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:25.3760868 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000077","","740"
"10:46:25.3764285 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3764635 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000043","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:25.3764819 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000064","","740"
"10:46:25.3769137 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3769491 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000047","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:25.3769683 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000072","","740"
"10:46:25.3776300 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000325","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3777064 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000060","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:25.3777294 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000086","","740"
"10:46:25.3781092 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3781634 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000051","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:25.3781834 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000077","","740"
"10:46:25.3786468 AM","firefox.exe","7384","Thread Exit","","0.0000000","Thread ID: 8260, User Time: 0.0000000, Kernel Time: 0.0000000","8260"
"10:46:25.3790035 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000251","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3790670 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000052","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:25.3790909 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000124","","740"
"10:46:25.3795931 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3796503 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000051","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.3796691 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000077","","740"
"10:46:25.3801324 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3801849 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0007778","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.3805996 AM","firefox.exe","7384","Thread Exit","","0.0000000","Thread ID: 9136, User Time: 0.0000000, Kernel Time: 0.0000000","9136"
"10:46:25.3810037 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000217","","740"
"10:46:25.3817559 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0001182","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3819078 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000115","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.3819436 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000124","","740"
"10:46:25.3822457 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0118746","Offset: 12,509,184, Length: 4,096","7760"
"10:46:25.3822880 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0117674","Offset: 12,509,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:25.3823912 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3824458 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000047","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:25.3824646 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000073","","740"
"10:46:25.3828072 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3828546 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000047","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:25.3828729 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000068","","740"
"10:46:25.3832215 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3832808 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000047","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:25.3832996 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000081","","740"
"10:46:25.3837941 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3838342 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000047","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:25.3838534 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000068","","740"
"10:46:25.3841909 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000397","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3842451 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000042","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:25.3842621 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000064","","740"
"10:46:25.3845706 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3846060 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000047","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:25.3846231 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000068","","740"
"10:46:25.3850519 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3851210 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000073","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:25.3851453 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000094","","740"
"10:46:25.3854700 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3855225 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:25.3855421 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000077","","740"
"10:46:25.3858575 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3859099 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:25.3859274 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000133","","740"
"10:46:25.3862722 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3863055 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000042","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.3863225 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000064","","740"
"10:46:25.3866464 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000495","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3867108 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000055","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.3867274 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000064","","740"
"10:46:25.3871362 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3871776 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.3871968 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000072","","740"
"10:46:25.3876239 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3876793 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:25.3876981 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000064","","740"
"10:46:25.3880143 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.ViewManagement.UIViewSettings","0.0000179","Desired Access: Read","5728"
"10:46:25.3880582 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.ViewManagement.UIViewSettings","0.0000051","Query: Basic, Name: Windows.UI.ViewManagement.UIViewSettings","5728"
"10:46:25.3880706 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3880898 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.ViewManagement.UIViewSettings\ActivationType","0.0000051","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:25.3881154 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.ViewManagement.UIViewSettings\Server","0.0000038","Length: 144","5728"
"10:46:25.3881278 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:25.3881380 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.ViewManagement.UIViewSettings\DllPath","0.0000043","Type: REG_SZ, Length: 80, Data: C:\Windows\System32\twinapi.appcore.dll","5728"
"10:46:25.3881478 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000077","","740"
"10:46:25.3881610 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.ViewManagement.UIViewSettings\Threading","0.0000043","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:25.3881836 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.ViewManagement.UIViewSettings\TrustLevel","0.0000103","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:25.3882139 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.ViewManagement.UIViewSettings","0.0000022","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3882378 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.ViewManagement.UIViewSettings\CustomAttributes","0.0000116","Desired Access: Read","5728"
"10:46:25.3882711 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.ViewManagement.UIViewSettings\RemoteServer","0.0000034","Length: 144","5728"
"10:46:25.3882916 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.ViewManagement.UIViewSettings\ActivateAsUser","0.0000030","Length: 16","5728"
"10:46:25.3883121 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.ViewManagement.UIViewSettings\ActivateInSharedBroker","0.0000763","Length: 16","5728"
"10:46:25.3884115 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.ViewManagement.UIViewSettings\Permissions","0.0000038","Length: 140","5728"
"10:46:25.3884456 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.ViewManagement.UIViewSettings","0.0000034","","5728"
"10:46:25.3885322 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3885809 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:25.3886005 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000073","","740"
"10:46:25.3886321 AM","firefox.exe","1008","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0262020","Offset: 966,656, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7796"
"10:46:25.3889145 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000069","Query: Name","5728"
"10:46:25.3889423 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3889585 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000021","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3889790 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000076","Desired Access: Read","5728"
"10:46:25.3889935 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000298","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3890067 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000196","Desired Access: Read","5728"
"10:46:25.3890464 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000059","Query: Name","5728"
"10:46:25.3890558 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:25.3890677 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3890754 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000072","","740"
"10:46:25.3890920 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\TreatAs","0.0000073","Desired Access: Query Value","5728"
"10:46:25.3891134 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3891317 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\TreatAs","0.0000073","Desired Access: Query Value","5728"
"10:46:25.3891603 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000055","Query: Name","5728"
"10:46:25.3891859 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000047","Query: Name","5728"
"10:46:25.3892055 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3892268 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000064","Desired Access: Maximum Allowed","5728"
"10:46:25.3892486 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\(Default)","0.0000030","Length: 12","5728"
"10:46:25.3892661 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000098","Query: Name","5728"
"10:46:25.3893011 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3893322 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InprocServer32","0.0000090","Desired Access: Read","5728"
"10:46:25.3893570 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3893753 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InprocServer32","0.0000086","Desired Access: Read","5728"
"10:46:25.3894031 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000051","Query: Name","5728"
"10:46:25.3894235 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000026","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3894457 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000064","Desired Access: Maximum Allowed","5728"
"10:46:25.3894675 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32\InprocServer32","0.0000030","Length: 12","5728"
"10:46:25.3894850 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000051","Query: Name","5728"
"10:46:25.3895042 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3895161 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3895234 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000060","Desired Access: Maximum Allowed","5728"
"10:46:25.3895507 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32\(Default)","0.0000034","Length: 12","5728"
"10:46:25.3895699 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000047","Query: Name","5728"
"10:46:25.3895707 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:25.3895904 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000072","","740"
"10:46:25.3895916 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3896108 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000056","Desired Access: Maximum Allowed","5728"
"10:46:25.3896305 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32\(Default)","0.0000038","Type: REG_EXPAND_SZ, Length: 68, Data: %SystemRoot%\system32\twinapi.dll","5728"
"10:46:25.3896518 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000038","Query: Name","5728"
"10:46:25.3896693 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3896911 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000055","Desired Access: Maximum Allowed","5728"
"10:46:25.3897103 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32\(Default)","0.0000034","Type: REG_EXPAND_SZ, Length: 68, Data: %SystemRoot%\system32\twinapi.dll","5728"
"10:46:25.3897307 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000039","Query: Name","5728"
"10:46:25.3897482 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3897674 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000056","Desired Access: Maximum Allowed","5728"
"10:46:25.3897918 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32\ThreadingModel","0.0000055","Type: REG_SZ, Length: 10, Data: Both","5728"
"10:46:25.3898267 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000026","","5728"
"10:46:25.3898485 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000073","Query: Name","5728"
"10:46:25.3898775 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000021","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3899035 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InprocHandler32","0.0000077","Desired Access: Query Value","5728"
"10:46:25.3899193 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3899262 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3899454 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InprocHandler32","0.0000064","Desired Access: Query Value","5728"
"10:46:25.3899663 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000055","Query: Name","5728"
"10:46:25.3899867 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000064","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:25.3899876 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3900085 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000068","","740"
"10:46:25.3900094 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InprocHandler","0.0000064","Desired Access: Query Value","5728"
"10:46:25.3900307 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3900495 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InprocHandler","0.0000051","Desired Access: Query Value","5728"
"10:46:25.3900746 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000017","","5728"
"10:46:25.3901523 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000064","Query: Name","5728"
"10:46:25.3901804 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000018","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3901979 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3902180 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000060","Desired Access: Read","5728"
"10:46:25.3902444 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000086","Desired Access: Read","5728"
"10:46:25.3902718 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000106","Query: Name","5728"
"10:46:25.3903008 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3903251 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\TreatAs","0.0000064","Desired Access: Query Value","5728"
"10:46:25.3903477 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000021","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3903678 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\TreatAs","0.0000042","Desired Access: Query Value","5728"
"10:46:25.3903878 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000051","Query: Name","5728"
"10:46:25.3904151 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000068","Query: Name","5728"
"10:46:25.3904364 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000018","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3904561 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000055","Desired Access: Maximum Allowed","5728"
"10:46:25.3904740 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\(Default)","0.0000030","Length: 12","5728"
"10:46:25.3904894 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000038","Query: Name","5728"
"10:46:25.3905051 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3905120 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3905260 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InprocServer32","0.0000060","Desired Access: Read","5728"
"10:46:25.3905478 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3905696 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InprocServer32","0.0000055","Desired Access: Read","5728"
"10:46:25.3905935 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000047","Query: Name","5728"
"10:46:25.3906161 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3906276 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000060","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:25.3906387 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000060","Desired Access: Maximum Allowed","5728"
"10:46:25.3906523 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000111","","740"
"10:46:25.3906698 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32\InprocServer32","0.0000064","Length: 12","5728"
"10:46:25.3907010 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000055","Query: Name","5728"
"10:46:25.3907270 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3907564 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000077","Desired Access: Maximum Allowed","5728"
"10:46:25.3907825 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32\(Default)","0.0000034","Length: 12","5728"
"10:46:25.3908111 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000059","Query: Name","5728"
"10:46:25.3908354 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3908606 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000068","Desired Access: Maximum Allowed","5728"
"10:46:25.3908853 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32\(Default)","0.0000051","Type: REG_EXPAND_SZ, Length: 68, Data: %SystemRoot%\system32\twinapi.dll","5728"
"10:46:25.3909113 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000051","Query: Name","5728"
"10:46:25.3909335 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3909574 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000064","Desired Access: Maximum Allowed","5728"
"10:46:25.3909813 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32\(Default)","0.0000038","Type: REG_EXPAND_SZ, Length: 68, Data: %SystemRoot%\system32\twinapi.dll","5728"
"10:46:25.3910056 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000064","Query: Name","5728"
"10:46:25.3910223 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3910304 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3910534 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000068","Desired Access: Maximum Allowed","5728"
"10:46:25.3910756 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:25.3910777 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32\ThreadingModel","0.0000039","Type: REG_SZ, Length: 10, Data: Both","5728"
"10:46:25.3910961 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000072","","740"
"10:46:25.3911055 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InProcServer32","0.0000017","","5728"
"10:46:25.3911242 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000060","Query: Name","5728"
"10:46:25.3911481 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000022","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3911724 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InprocHandler32","0.0000064","Desired Access: Query Value","5728"
"10:46:25.3911959 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3912219 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InprocHandler32","0.0000039","Desired Access: Query Value","5728"
"10:46:25.3912467 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000043","Query: Name","5728"
"10:46:25.3912693 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3912940 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InprocHandler","0.0000064","Desired Access: Query Value","5728"
"10:46:25.3913162 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3913359 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\InprocHandler","0.0000038","Desired Access: Query Value","5728"
"10:46:25.3913568 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000038","Query: Name","5728"
"10:46:25.3913734 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3913772 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000018","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3913990 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\LocalServer32","0.0000060","Desired Access: Read","5728"
"10:46:25.3914195 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:25.3914208 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000025","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3914378 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000069","","740"
"10:46:25.3914400 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\LocalServer32","0.0000038","Desired Access: Read","5728"
"10:46:25.3914592 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000094","Query: Name","5728"
"10:46:25.3914835 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000051","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3915082 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000060","Desired Access: Maximum Allowed","5728"
"10:46:25.3915287 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\AppID","0.0000034","Length: 112","5728"
"10:46:25.3915462 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000043","Query: Name","5728"
"10:46:25.3915650 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3915812 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\LocalServer","0.0000047","Desired Access: Query Value","5728"
"10:46:25.3915987 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3916128 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\LocalServer","0.0000051","Desired Access: Query Value","5728"
"10:46:25.3916405 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000043","Query: Name","5728"
"10:46:25.3916588 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3916704 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3916887 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000043","Desired Access: Read","5728"
"10:46:25.3917105 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000072","Desired Access: Read","5728"
"10:46:25.3917369 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000051","Query: Name","5728"
"10:46:25.3917642 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3917864 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\Elevation","0.0000060","Desired Access: Read","5728"
"10:46:25.3918069 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3918244 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\Elevation","0.0000043","Desired Access: Read","5728"
"10:46:25.3918470 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000017","","5728"
"10:46:25.3918679 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000060","","5728"
"10:46:25.3918692 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3918978 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000043","Query: Name","5728"
"10:46:25.3919195 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000043","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:25.3919225 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000052","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3919387 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000073","","740"
"10:46:25.3919422 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3919614 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000047","Desired Access: Read","5728"
"10:46:25.3919831 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000060","Desired Access: Read","5728"
"10:46:25.3920053 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000038","Query: Name","5728"
"10:46:25.3920245 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3920441 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\TreatAs","0.0000056","Desired Access: Read","5728"
"10:46:25.3920638 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000021","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:25.3920817 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}\TreatAs","0.0000034","Desired Access: Read","5728"
"10:46:25.3921022 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{2E1271D5-2FF2-4EA4-9647-C67A82A2D85C}","0.0000012","","5728"
"10:46:25.3923104 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3923577 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000047","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:25.3923778 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000077","","740"
"10:46:25.3924328 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.3925028 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000094","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","5728"
"10:46:25.3925314 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000085","","5728"
"10:46:25.3927170 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3927213 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000174","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.3927622 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000043","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:25.3927759 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\twinapi.dll","0.0000081","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:25.3927814 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000064","","740"
"10:46:25.3928181 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\twinapi.dll","0.0000021","SyncType: SyncTypeOther","5728"
"10:46:25.3929009 AM","firefox.exe","7384","Load Image","C:\Windows\System32\twinapi.dll","0.0000000","Image Base: 0x7ffb2c2b0000, Image Size: 0x9b000","5728"
"10:46:25.3929440 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\twinapi.dll","0.0000055","Name: \Windows\System32\twinapi.dll","5728"
"10:46:25.3931637 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3932136 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000047","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:25.3932328 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000064","","740"
"10:46:25.3933049 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000103","","5728"
"10:46:25.3935981 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3936407 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000039","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:25.3936625 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000060","","740"
"10:46:25.3939855 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3940260 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000034","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:25.3940431 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000059","","740"
"10:46:25.3941689 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0131158","Offset: 11,808,768, Length: 4,096","7760"
"10:46:25.3942107 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0130518","Offset: 11,808,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:25.3945610 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000393","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3946378 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000056","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:25.3946609 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000089","","740"
"10:46:25.3950782 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3951306 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000052","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:25.3951507 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000072","","740"
"10:46:25.3954865 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3955381 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000051","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:25.3955569 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000077","","740"
"10:46:25.3960249 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3960817 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000047","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:25.3961017 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000069","","740"
"10:46:25.3964763 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3965275 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000047","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:25.3965455 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000068","","740"
"10:46:25.3969073 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3969589 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000047","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:25.3969977 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000128","","740"
"10:46:25.3973348 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3973783 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000043","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:25.3973967 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000064","","740"
"10:46:25.3977026 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3977448 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000034","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:25.3977619 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000064","","740"
"10:46:25.3981148 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3981617 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:25.3981792 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000068","","740"
"10:46:25.3986041 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000227","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3986186 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 2512","5728"
"10:46:25.3986588 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000046","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:25.3986762 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000073","","740"
"10:46:25.3989591 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3990044 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000038","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:25.3990210 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000068","","740"
"10:46:25.3994246 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3994758 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000051","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:25.3994959 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000077","","740"
"10:46:25.3998436 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.3998940 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000046","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:25.3999140 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000073","","740"
"10:46:25.4001969 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000226","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4002506 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000060","Name: \Program Files\Firefox Nightly\firefox.exe","3800"
"10:46:25.4002848 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000042","Name: \Program Files\Firefox Nightly\firefox.exe","3800"
"10:46:25.4004085 AM","firefox.exe","7384","QueryNormalizedNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000192","","3800"
"10:46:25.4004482 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000085","","3800"
"10:46:25.4008919 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}\.","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:25.4014090 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4014794 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000077","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:25.4015136 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000102","","740"
"10:46:25.4015831 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4016228 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000043","CreationTime: 3/26/2020 10:46:22 AM, LastAccessTime: 3/26/2020 10:46:22 AM, LastWriteTime: 3/26/2020 10:46:22 AM, ChangeTime: 3/26/2020 10:46:22 AM, FileAttributes: DNCI","3800"
"10:46:25.4016424 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000064","","3800"
"10:46:25.4018323 AM","firefox.exe","7384","CreateFile","C:\","0.0000192","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4018758 AM","firefox.exe","7384","QueryDirectory","C:\Users","0.0000218","Filter: Users, 1: Users","3800"
"10:46:25.4019189 AM","firefox.exe","7384","CloseFile","C:\","0.0000077","","3800"
"10:46:25.4020973 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4021386 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000295","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4021992 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000128","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.4022056 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles","0.0000197","Filter: diggles, 1: diggles","3800"
"10:46:25.4022346 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000086","","740"
"10:46:25.4022492 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000098","","3800"
"10:46:25.4025670 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000179","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4028124 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4028793 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000056","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.4029028 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000090","","740"
"10:46:25.4031848 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData","0.0000205","Filter: AppData, 1: AppData","3800"
"10:46:25.4032296 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000077","","3800"
"10:46:25.4033922 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4034178 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000196","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4034588 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\LocalLow","0.0000132","Filter: LocalLow, 1: LocalLow","3800"
"10:46:25.4034690 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000051","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.4034899 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000077","","740"
"10:46:25.4034916 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000073","","3800"
"10:46:25.4037975 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow","0.0000201","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4040723 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000171","Filter: Mozilla, 1: Mozilla","3800"
"10:46:25.4041167 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow","0.0000081","","3800"
"10:46:25.4046859 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4047443 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000056","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.4047665 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000077","","740"
"10:46:25.4050959 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}\.","0.0000196","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4052345 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4052742 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}\.","0.0000133","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4052883 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000051","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.4053088 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000077","","740"
"10:46:25.4054270 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}\.","0.0000128","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4055870 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}\.","0.0000119","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4056360 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4056868 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000047","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.4057064 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000073","","740"
"10:46:25.4057619 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000111","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4059339 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000200","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4059821 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000064","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4060089 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000069","","3800"
"10:46:25.4061689 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4062201 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000773","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4062227 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000064","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:25.4062483 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000073","","740"
"10:46:25.4063272 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000141","","3800"
"10:46:25.4065410 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000269","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4066076 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000021","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4066319 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000077","","3800"
"10:46:25.4067044 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4067552 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000047","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:25.4067752 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000073","","740"
"10:46:25.4068107 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000183","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4068550 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000060","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4068781 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000059","","3800"
"10:46:25.4071341 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000145","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4072753 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4073299 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000051","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:25.4074208 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000098","","740"
"10:46:25.4075223 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000218","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4075684 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000064","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4075927 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000069","","3800"
"10:46:25.4077574 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000175","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4077954 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000060","","3800"
"10:46:25.4078833 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4079371 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000106","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.4079435 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000695","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4079635 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000073","","740"
"10:46:25.4080544 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000021","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4080732 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000072","","3800"
"10:46:25.4082558 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000269","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4083130 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000055","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4083240 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0001012","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4083351 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000056","","3800"
"10:46:25.4084606 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.4084806 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000077","","740"
"10:46:25.4084892 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow","0.0000106","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4086283 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow","0.0000162","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4086688 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\LocalLow","0.0000051","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4086914 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow","0.0000056","","3800"
"10:46:25.4087998 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4088258 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow","0.0000141","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4088463 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000043","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.4088582 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow","0.0000052","","3800"
"10:46:25.4088638 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000060","","740"
"10:46:25.4089892 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow","0.0000145","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4090370 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\LocalLow","0.0000013","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4090536 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow","0.0000052","","3800"
"10:46:25.4091987 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow","0.0000149","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4092354 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\LocalLow","0.0000047","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4092589 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow","0.0000055","","3800"
"10:46:25.4092930 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4093579 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.4094014 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000098","","740"
"10:46:25.4094146 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000107","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4095661 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000200","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4096156 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000059","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4096412 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000068","","3800"
"10:46:25.4097734 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4098229 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.4098391 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000184","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4098421 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000069","","740"
"10:46:25.4098788 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000068","","3800"
"10:46:25.4100559 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000175","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4101173 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData","0.0000022","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4101540 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000081","","3800"
"10:46:25.4101890 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4102351 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.4102539 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000068","","740"
"10:46:25.4103857 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000179","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4104804 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000064","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4105141 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000081","","3800"
"10:46:25.4106827 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4106831 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4107450 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000110","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:25.4107718 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000064","","740"
"10:46:25.4108264 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000158","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4108670 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000042","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4108883 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000060","","3800"
"10:46:25.4110321 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000141","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4110654 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000051","","3800"
"10:46:25.4110910 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4111354 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000042","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:25.4111528 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000056","","740"
"10:46:25.4111998 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000145","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4112493 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles","0.0000017","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4112659 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000051","","3800"
"10:46:25.4114379 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000187","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4114703 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4114856 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000064","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4115117 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000077","","3800"
"10:46:25.4115172 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:25.4115351 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000069","","740"
"10:46:25.4116981 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000103","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4118504 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000167","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4118957 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000064","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4119191 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000069","","3800"
"10:46:25.4119836 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4120804 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000171","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4120936 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000060","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:25.4121154 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000081","","740"
"10:46:25.4121201 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000068","","3800"
"10:46:25.4122839 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000154","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4123368 AM","firefox.exe","7384","DeviceIoControl","C:\Users","0.0000018","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4123543 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000060","","3800"
"10:46:25.4125438 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000209","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4125446 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000670","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4125980 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000076","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4126291 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000077","","3800"
"10:46:25.4126560 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0010854","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:25.4133071 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}\.","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:25.4135934 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4136305 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000056","CreationTime: 3/26/2020 10:46:22 AM, LastAccessTime: 3/26/2020 10:46:22 AM, LastWriteTime: 3/26/2020 10:46:22 AM, ChangeTime: 3/26/2020 10:46:22 AM, FileAttributes: DNCI","3800"
"10:46:25.4136510 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000064","","3800"
"10:46:25.4137824 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000111","","740"
"10:46:25.4139287 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4139642 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000111","CreationTime: 2/16/2018 12:59:41 PM, LastAccessTime: 3/26/2020 10:46:22 AM, LastWriteTime: 3/26/2020 10:46:22 AM, ChangeTime: 3/26/2020 10:46:22 AM, FileAttributes: DNCI","3800"
"10:46:25.4140000 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000081","","3800"
"10:46:25.4142014 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000546","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4142893 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0002978","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:25.4144378 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4144736 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\LocalLow","0.0000047","CreationTime: 2/16/2018 12:54:36 PM, LastAccessTime: 2/16/2018 12:59:41 PM, LastWriteTime: 2/16/2018 12:59:41 PM, ChangeTime: 3/20/2019 7:53:52 PM, FileAttributes: DNCI","3800"
"10:46:25.4144928 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow","0.0000064","","3800"
"10:46:25.4146076 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000081","","740"
"10:46:25.4147548 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4147855 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData","0.0000038","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 3/20/2019 7:22:57 PM, LastWriteTime: 3/20/2019 7:22:57 PM, ChangeTime: 3/20/2019 7:22:57 PM, FileAttributes: HD","3800"
"10:46:25.4148021 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000056","","3800"
"10:46:25.4149975 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000210","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4150057 AM","firefox.exe","1008","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0175266","Offset: 999,424, Length: 90,112, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7796"
"10:46:25.4150479 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4150543 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000038","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:25.4150718 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000064","","740"
"10:46:25.4150756 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles","0.0000034","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 5/9/2019 3:17:34 PM, LastWriteTime: 5/9/2019 3:17:34 PM, ChangeTime: 5/9/2019 3:17:34 PM, FileAttributes: D","3800"
"10:46:25.4151012 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000103","","3800"
"10:46:25.4153833 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4154135 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4154336 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000043","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:25.4154421 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users","0.0000039","CreationTime: 4/11/2018 2:04:33 PM, LastAccessTime: 3/20/2019 7:21:22 PM, LastWriteTime: 3/20/2019 7:21:22 PM, ChangeTime: 3/20/2019 7:21:22 PM, FileAttributes: RD","3800"
"10:46:25.4154537 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000068","","740"
"10:46:25.4154579 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000056","","3800"
"10:46:25.4156841 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts\*","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:25.4158517 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000414","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4159243 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000042","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:25.4159435 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000068","","740"
"10:46:25.4159802 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:25.4162601 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4162967 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000052","CreationTime: 3/20/2019 7:21:23 PM, LastAccessTime: 4/30/2019 6:29:16 PM, LastWriteTime: 4/30/2019 6:29:16 PM, ChangeTime: 4/30/2019 6:29:16 PM, FileAttributes: D","3800"
"10:46:25.4163185 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000064","","3800"
"10:46:25.4163403 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4163799 AM","firefox.exe","7384","CreateFile","C:\","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4163906 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000056","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.4164111 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000072","","740"
"10:46:25.4164175 AM","firefox.exe","7384","QueryDirectory","C:\Users","0.0000205","Filter: Users, 1: Users","3800"
"10:46:25.4164666 AM","firefox.exe","7384","CloseFile","C:\","0.0000059","","3800"
"10:46:25.4166449 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000205","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4166910 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles","0.0000307","Filter: diggles, 1: diggles","3800"
"10:46:25.4167469 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000094","","3800"
"10:46:25.4167840 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4168459 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000047","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.4168693 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000098","","740"
"10:46:25.4169380 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000197","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4169773 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData","0.0000158","Filter: AppData, 1: AppData","3800"
"10:46:25.4170127 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000068","","3800"
"10:46:25.4171876 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000192","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4172205 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4172286 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Local","0.0000149","Filter: Local, 1: Local","3800"
"10:46:25.4172627 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000068","","3800"
"10:46:25.4172683 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000047","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.4172879 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000072","","740"
"10:46:25.4174436 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000201","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4174842 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000162","Filter: Windows, 1: Windows","3800"
"10:46:25.4175213 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000060","","3800"
"10:46:25.4176672 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts\*","0.0000158","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4176966 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000227","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4177521 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000064","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:25.4177687 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts\*","0.0000141","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4177751 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000069","","740"
"10:46:25.4178592 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts\*","0.0000149","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4179932 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts\*\","0.0000170","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4181365 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4181826 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:25.4182035 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000069","","740"
"10:46:25.4187386 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts","0.0000192","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4188956 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts","0.0000175","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4189903 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4190458 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts","0.0000183","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4190560 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000060","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:25.4190790 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000090","","740"
"10:46:25.4192049 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts","0.0000154","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4193602 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000107","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4195070 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000171","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4195198 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4195509 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000039","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:25.4195514 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000064","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4195654 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000064","","740"
"10:46:25.4195765 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000064","","3800"
"10:46:25.4196230 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000047","Offset: 123, Length: 1","7760"
"10:46:25.4196674 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000039","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:25.4196926 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:25.4197203 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000043","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7760"
"10:46:25.4198564 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4198923 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000047","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:25.4199102 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000072","","740"
"10:46:25.4199140 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000184","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4199529 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000064","","3800"
"10:46:25.4201368 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000170","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4201918 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000017","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4202106 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000059","","3800"
"10:46:25.4202468 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4202822 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000039","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:25.4202997 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000064","","740"
"10:46:25.4203736 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000162","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4204124 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000051","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4204341 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000056","","3800"
"10:46:25.4206010 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000106","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4206876 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4207294 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:25.4207469 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000060","","740"
"10:46:25.4208339 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000188","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4208574 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000115","Offset: 24,576, Length: 4,096","7760"
"10:46:25.4208783 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local\Microsoft","0.0000051","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4208949 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0069475","Offset: 823,296, Length: 4,096","7760"
"10:46:25.4209018 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000055","","3800"
"10:46:25.4209406 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0068395","Offset: 823,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:25.4210524 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000183","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4210571 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000806","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4210959 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000469","","3800"
"10:46:25.4211761 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:25.4211962 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000076","","740"
"10:46:25.4213293 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000175","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4213933 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Local\Microsoft","0.0000043","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4214150 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000064","","3800"
"10:46:25.4215217 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4215652 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000154","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4215678 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:25.4215853 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000064","","740"
"10:46:25.4216036 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local\Microsoft","0.0000056","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4216250 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000055","","3800"
"10:46:25.4219727 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4219757 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local","0.0000145","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4220137 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000042","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:25.4220333 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000068","","740"
"10:46:25.4221596 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local","0.0000196","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4222065 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local","0.0000056","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4222278 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local","0.0000060","","3800"
"10:46:25.4227829 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local","0.0000265","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4228358 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local","0.0000082","","3800"
"10:46:25.4229809 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4230185 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local","0.0000170","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4231635 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000470","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:25.4232548 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000781","","740"
"10:46:25.4233376 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Local","0.0000030","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4237237 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local","0.0000094","","3800"
"10:46:25.4239192 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local","0.0000183","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4239588 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4239635 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local","0.0000060","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4239879 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local","0.0000059","","3800"
"10:46:25.4240164 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000056","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:25.4240403 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000077","","740"
"10:46:25.4241530 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4242938 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000153","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4243458 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000098","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4243748 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000064","","3800"
"10:46:25.4245314 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4245831 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0001369","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.4245959 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000170","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4246338 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000064","","3800"
"10:46:25.4247443 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000103","","740"
"10:46:25.4247930 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000149","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4248437 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData","0.0000018","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4248617 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000059","","3800"
"10:46:25.4250532 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000158","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4250925 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000055","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4251147 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000060","","3800"
"10:46:25.4251599 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4252196 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000056","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.4252405 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000073","","740"
"10:46:25.4254385 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000103","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4256041 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000153","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4256143 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4256450 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000056","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4256617 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000042","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.4256689 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000056","","3800"
"10:46:25.4256800 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000056","","740"
"10:46:25.4258114 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0001084","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4259416 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000072","","3800"
"10:46:25.4261195 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4261677 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:25.4261848 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000076","","740"
"10:46:25.4265491 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4266302 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:25.4266468 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000064","","740"
"10:46:25.4268841 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000170","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4269400 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles","0.0000021","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4269447 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000174","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4269916 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:25.4270087 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000072","","740"
"10:46:25.4273914 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000290","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4274511 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:25.4274567 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000081","","3800"
"10:46:25.4274673 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000051","","740"
"10:46:25.4277417 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4277813 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:25.4277946 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000055","","740"
"10:46:25.4278872 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0228561","Offset: 13,410,304, Length: 4,096","7760"
"10:46:25.4279298 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0227900","Offset: 13,410,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:25.4280792 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4281235 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:25.4281415 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000960","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4281453 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000068","","740"
"10:46:25.4282746 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000064","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4282989 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000060","","3800"
"10:46:25.4284397 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4286087 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4286620 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000051","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:25.4286816 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000077","","740"
"10:46:25.4290294 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000221","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4291936 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000073","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:25.4292201 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000102","","740"
"10:46:25.4293378 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000252","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4298016 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000086","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4298336 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000081","","3800"
"10:46:25.4299126 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4299748 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000064","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:25.4299962 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000072","","740"
"10:46:25.4300056 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000162","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4300427 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000055","","3800"
"10:46:25.4302654 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000312","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4303303 AM","firefox.exe","7384","DeviceIoControl","C:\Users","0.0000017","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4303452 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000388","","3800"
"10:46:25.4309323 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000205","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4309835 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000068","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4310116 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000069","","3800"
"10:46:25.4312092 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4313129 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000059","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:25.4313346 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000081","","740"
"10:46:25.4313658 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts\*","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:25.4316260 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:25.4317191 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4317724 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:25.4317912 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000068","","740"
"10:46:25.4318889 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4319196 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000038","CreationTime: 3/20/2019 7:21:23 PM, LastAccessTime: 4/30/2019 6:29:16 PM, LastWriteTime: 4/30/2019 6:29:16 PM, ChangeTime: 4/30/2019 6:29:16 PM, FileAttributes: D","3800"
"10:46:25.4319371 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000047","","3800"
"10:46:25.4322272 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4322682 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000042","CreationTime: 3/20/2019 7:21:23 PM, LastAccessTime: 3/20/2019 7:53:30 PM, LastWriteTime: 3/20/2019 7:53:30 PM, ChangeTime: 3/20/2019 7:53:30 PM, FileAttributes: D","3800"
"10:46:25.4322865 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000064","","3800"
"10:46:25.4325519 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4325852 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local","0.0000038","CreationTime: 3/20/2019 7:21:23 PM, LastAccessTime: 3/26/2020 10:43:56 AM, LastWriteTime: 3/26/2020 10:43:56 AM, ChangeTime: 3/26/2020 10:43:56 AM, FileAttributes: D","3800"
"10:46:25.4326010 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local","0.0000051","","3800"
"10:46:25.4328638 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4328911 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData","0.0000039","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 3/20/2019 7:22:57 PM, LastWriteTime: 3/20/2019 7:22:57 PM, ChangeTime: 3/20/2019 7:22:57 PM, FileAttributes: HD","3800"
"10:46:25.4329048 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000047","","3800"
"10:46:25.4331663 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4331949 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles","0.0000064","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 5/9/2019 3:17:34 PM, LastWriteTime: 5/9/2019 3:17:34 PM, ChangeTime: 5/9/2019 3:17:34 PM, FileAttributes: D","3800"
"10:46:25.4332145 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000060","","3800"
"10:46:25.4334936 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4335239 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users","0.0000042","CreationTime: 4/11/2018 2:04:33 PM, LastAccessTime: 3/20/2019 7:21:22 PM, LastWriteTime: 3/20/2019 7:21:22 PM, ChangeTime: 3/20/2019 7:21:22 PM, FileAttributes: RD","3800"
"10:46:25.4335414 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000059","","3800"
"10:46:25.4338277 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\.","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:25.4340930 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4341238 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly","0.0000047","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:29:06 AM, LastWriteTime: 3/25/2020 10:29:06 AM, ChangeTime: 3/25/2020 10:29:06 AM, FileAttributes: D","3800"
"10:46:25.4341438 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000060","","3800"
"10:46:25.4343516 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\.","0.0000111","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4344851 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\.","0.0000099","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4346238 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\.","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4347723 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\.","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4349165 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000111","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4350560 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000162","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4350983 AM","firefox.exe","7384","FileSystemControl","C:\Program Files\Firefox Nightly","0.0000059","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4351226 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000077","","3800"
"10:46:25.4352822 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000149","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4353159 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000059","","3800"
"10:46:25.4354601 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000145","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4355087 AM","firefox.exe","7384","DeviceIoControl","C:\Program Files\Firefox Nightly","0.0000022","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4355258 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000064","","3800"
"10:46:25.4357856 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000192","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4358390 AM","firefox.exe","7384","FileSystemControl","C:\Program Files\Firefox Nightly","0.0000166","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4358739 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000064","","3800"
"10:46:25.4360352 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4361718 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000145","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4362089 AM","firefox.exe","7384","FileSystemControl","C:\Program Files","0.0000047","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4362302 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000060","","3800"
"10:46:25.4363727 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000141","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4364056 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000059","","3800"
"10:46:25.4365532 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000132","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4366018 AM","firefox.exe","7384","DeviceIoControl","C:\Program Files","0.0000017","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4366185 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000055","","3800"
"10:46:25.4367994 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000149","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4368408 AM","firefox.exe","7384","FileSystemControl","C:\Program Files","0.0000051","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4368668 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000064","","3800"
"10:46:25.4373553 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\.","0.0000926","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:25.4377619 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4377999 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly","0.0000060","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:29:06 AM, LastWriteTime: 3/25/2020 10:29:06 AM, ChangeTime: 3/25/2020 10:29:06 AM, FileAttributes: D","3800"
"10:46:25.4378213 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000140","","3800"
"10:46:25.4380986 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4381302 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files","0.0000047","CreationTime: 4/11/2018 4:38:20 PM, LastAccessTime: 3/26/2020 10:29:39 AM, LastWriteTime: 3/26/2020 10:29:39 AM, ChangeTime: 3/26/2020 10:29:39 AM, FileAttributes: RD","3800"
"10:46:25.4381489 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000056","","3800"
"10:46:25.4382014 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000299","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","4904"
"10:46:25.4384169 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome\*","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:25.4387155 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:25.4390117 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4390505 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000055","CreationTime: 6/19/2019 4:53:26 PM, LastAccessTime: 3/26/2020 10:46:23 AM, LastWriteTime: 3/26/2020 10:46:23 AM, ChangeTime: 3/26/2020 10:46:23 AM, FileAttributes: D","3800"
"10:46:25.4390714 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000068","","3800"
"10:46:25.4391495 AM","firefox.exe","7384","CreateFile","C:\","0.0000175","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4391870 AM","firefox.exe","7384","QueryDirectory","C:\Users","0.0000205","Filter: Users, 1: Users","3800"
"10:46:25.4392369 AM","firefox.exe","7384","CloseFile","C:\","0.0000116","","3800"
"10:46:25.4392873 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4394029 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000115","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:25.4394315 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000137","","740"
"10:46:25.4395121 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\webext.sc.lz4","0.0317458","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","120"
"10:46:25.4397242 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000175","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4397652 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles","0.0000187","Filter: diggles, 1: diggles","3800"
"10:46:25.4398287 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000081","","3800"
"10:46:25.4399098 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4400020 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000051","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:25.4400216 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000077","","740"
"10:46:25.4402085 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4402473 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData","0.0000158","Filter: AppData, 1: AppData","3800"
"10:46:25.4402840 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000064","","3800"
"10:46:25.4403454 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4403928 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000047","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:25.4404120 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000072","","740"
"10:46:25.4404448 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000175","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4404820 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming","0.0000110","Filter: Roaming, 1: Roaming","3800"
"10:46:25.4405238 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000102","","3800"
"10:46:25.4406949 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4407337 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4407362 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000146","Filter: Mozilla, 1: Mozilla","3800"
"10:46:25.4407708 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000064","","3800"
"10:46:25.4407832 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000047","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:25.4408028 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000073","","740"
"10:46:25.4409240 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000170","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4409615 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000115","Filter: Firefox, 1: Firefox","3800"
"10:46:25.4409905 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000056","","3800"
"10:46:25.4411437 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000175","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4411813 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000128","Filter: Profiles, 1: Profiles","3800"
"10:46:25.4412124 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000060","","3800"
"10:46:25.4412295 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4412785 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:25.4412982 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000068","","740"
"10:46:25.4413536 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome\*","0.0000209","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4414603 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome\*","0.0000145","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4415546 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome\*","0.0000141","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4416139 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4416519 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome\*\","0.0000136","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4416681 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:25.4416920 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000098","","740"
"10:46:25.4418213 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome","0.0000183","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4419885 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome","0.0000175","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4420167 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4420628 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000042","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:25.4420820 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000064","","740"
"10:46:25.4421408 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome","0.0000180","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4422957 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome","0.0000167","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4424591 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000128","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4424817 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4425282 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000043","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.4425470 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000064","","740"
"10:46:25.4426072 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000192","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4426507 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000060","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4426754 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000064","","3800"
"10:46:25.4428325 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000204","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4428474 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4428726 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000064","","3800"
"10:46:25.4428990 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000060","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.4429272 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000081","","740"
"10:46:25.4430381 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000188","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4430936 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000017","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4431205 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000089","","3800"
"10:46:25.4431469 AM","firefox.exe","1008","RegQueryKey","HKCU","0.0019862","Query: HandleTags, HandleTags: 0x0","7796"
"10:46:25.4432374 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4432911 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000060","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.4433009 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000184","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4433154 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000069","","740"
"10:46:25.4433398 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000089","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4433756 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000077","","3800"
"10:46:25.4435480 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000124","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4436905 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4436948 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000187","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4437366 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000051","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4437485 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:25.4437592 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000055","","3800"
"10:46:25.4437664 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000056","","740"
"10:46:25.4439512 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000200","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4439930 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000068","","3800"
"10:46:25.4440634 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4441146 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:25.4441325 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000060","","740"
"10:46:25.4441624 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000252","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4442268 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000017","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4442447 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000060","","3800"
"10:46:25.4444081 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4444145 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000158","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4444525 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:25.4444529 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000047","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4444709 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000068","","740"
"10:46:25.4444743 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000042","","3800"
"10:46:25.4446513 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000120","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4447853 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000162","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4448246 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000047","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4448357 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4448459 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000051","","3800"
"10:46:25.4448796 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000064","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:25.4448997 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000059","","740"
"10:46:25.4449897 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000166","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4450251 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000051","","3800"
"10:46:25.4451582 AM","firefox.exe","1008","RegOpenKey","HKCU\Software\Microsoft\Avalon.Graphics","0.0000162","Desired Access: Read","7796"
"10:46:25.4451715 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4451736 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000239","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4452005 AM","firefox.exe","1008","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","7796"
"10:46:25.4452167 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000047","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:25.4452265 AM","firefox.exe","1008","RegOpenKey","HKLM\Software\Microsoft\Avalon.Graphics","0.0000081","Desired Access: Read","7796"
"10:46:25.4452350 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000064","","740"
"10:46:25.4452401 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000018","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4452589 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000077","","3800"
"10:46:25.4453626 AM","firefox.exe","1008","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000128","Desired Access: Read, Maximum Allowed","7796"
"10:46:25.4453989 AM","firefox.exe","1008","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000047","Type: REG_DWORD, Length: 4, Data: 3","7796"
"10:46:25.4454257 AM","firefox.exe","1008","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000790","","7796"
"10:46:25.4454565 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000196","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4455004 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000068","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4455256 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000064","","3800"
"10:46:25.4455358 AM","firefox.exe","1008","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000064","Desired Access: Read","7796"
"10:46:25.4455640 AM","firefox.exe","1008","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000094","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","7796"
"10:46:25.4455695 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4456037 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000081","Desired Access: Read","7796"
"10:46:25.4456177 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000047","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:25.4456297 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000077","Desired Access: Read","7796"
"10:46:25.4456378 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000068","","740"
"10:46:25.4456549 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000059","Desired Access: Read","7796"
"10:46:25.4456817 AM","firefox.exe","1008","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000018","","7796"
"10:46:25.4456920 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000119","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4457009 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000188","Length: 52","7796"
"10:46:25.4457385 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000017","","7796"
"10:46:25.4457713 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000146","Desired Access: Query Value, Maximum Allowed","7796"
"10:46:25.4458093 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000039","Length: 268","7796"
"10:46:25.4458328 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000021","","7796"
"10:46:25.4458447 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000197","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4458614 AM","firefox.exe","1008","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000042","Desired Access: Query Value, Maximum Allowed","7796"
"10:46:25.4458836 AM","firefox.exe","1008","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000042","Type: REG_MULTI_SZ, Length: 292, Data: PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02, PCI\VEN_8086&DEV_5916&SUBSYS_10941025, PCI\VEN_8086&DEV_5916&CC_030000, PCI\VEN_8086&DEV_5916&CC_0300","7796"
"10:46:25.4458904 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000051","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4459066 AM","firefox.exe","1008","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000017","","7796"
"10:46:25.4459147 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000077","","3800"
"10:46:25.4459881 AM","firefox.exe","1008","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000111","Desired Access: Read","7796"
"10:46:25.4460239 AM","firefox.exe","1008","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000056","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","7796"
"10:46:25.4460517 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4460995 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000046","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:25.4461174 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000068","","740"
"10:46:25.4461758 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000179","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4462155 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0001886","","3800"
"10:46:25.4462833 AM","firefox.exe","1008","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000026","","7796"
"10:46:25.4465594 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000201","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4465952 AM","firefox.exe","1008","RegQueryKey","HKCU\Software\Microsoft\Avalon.Graphics","0.0000026","Query: HandleTags, HandleTags: 0x0","7796"
"10:46:25.4466187 AM","firefox.exe","1008","RegOpenKey","HKCU\Software\Microsoft\Avalon.Graphics\DISPLAY1","0.0000098","Desired Access: Read","7796"
"10:46:25.4466251 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000021","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4466255 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4466460 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000073","","3800"
"10:46:25.4466494 AM","firefox.exe","1008","RegCloseKey","HKCU\Software\Microsoft\Avalon.Graphics","0.0000022","","7796"
"10:46:25.4466763 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:25.4466964 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000068","","740"
"10:46:25.4468090 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000166","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4468478 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000051","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4468679 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000051","","3800"
"10:46:25.4470117 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000115","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4470356 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4470833 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:25.4471072 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000090","","740"
"10:46:25.4471550 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000158","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4471939 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming","0.0000046","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4472156 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000056","","3800"
"10:46:25.4473649 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000171","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4474029 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000060","","3800"
"10:46:25.4475237 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000460","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4475557 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000290","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4476017 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000047","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:25.4476201 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming","0.0000017","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4476227 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000072","","740"
"10:46:25.4476359 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000064","","3800"
"10:46:25.4479269 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4479721 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000043","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:25.4479917 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000064","","740"
"10:46:25.4482819 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4483258 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000043","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:25.4483604 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000081","","740"
"10:46:25.4487537 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4488037 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:25.4488297 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000102","","740"
"10:46:25.4491416 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4491979 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000115","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:25.4492218 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000068","","740"
"10:46:25.4492888 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0004058","Offset: 267,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.4495286 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4495768 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000230","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:25.4496237 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000162","","740"
"10:46:25.4497321 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0012049","Offset: 263,168, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.4501344 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4501903 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000052","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:25.4502091 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000077","","740"
"10:46:25.4504822 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000205","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4505312 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming","0.0000064","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4505338 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4505568 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000073","","3800"
"10:46:25.4505846 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000068","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:25.4506098 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000102","","740"
"10:46:25.4507979 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0290002","Offset: 6,840,320, Length: 4,096","7760"
"10:46:25.4508730 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0288977","Offset: 6,840,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:25.4509844 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4510390 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000051","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:25.4510590 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000073","","740"
"10:46:25.4514942 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4515459 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.4515659 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000073","","740"
"10:46:25.4517370 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000196","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4519055 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4519388 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000188","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4519533 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000051","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.4519725 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000069","","740"
"10:46:25.4519866 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000064","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4520126 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000069","","3800"
"10:46:25.4522307 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000183","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4522947 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0015411","","3800"
"10:46:25.4523151 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000227","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4523668 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:25.4523864 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000077","","740"
"10:46:25.4528323 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4528728 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.4528907 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000068","","740"
"10:46:25.4531860 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4532171 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.4532338 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000059","","740"
"10:46:25.4535307 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4535619 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.4535789 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000060","","740"
"10:46:25.4539676 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4540013 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000158","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4540252 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000043","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:25.4540444 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000064","","740"
"10:46:25.4540623 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData","0.0000022","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4540867 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000064","","3800"
"10:46:25.4542441 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000149","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4542829 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000056","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4543060 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000047","","3800"
"10:46:25.4543269 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4543759 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:25.4543947 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000064","","740"
"10:46:25.4544626 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000089","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4546499 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4547011 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:25.4547156 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000158","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4547203 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000076","","740"
"10:46:25.4547540 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000047","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4547766 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000060","","3800"
"10:46:25.4549187 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000183","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4549575 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000055","","3800"
"10:46:25.4551137 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4551444 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000213","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4551521 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000034","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:25.4551755 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000064","","740"
"10:46:25.4552067 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles","0.0000017","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4552250 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000064","","3800"
"10:46:25.4553889 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000183","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4554311 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000055","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4554550 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000047","","3800"
"10:46:25.4555062 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4555531 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:25.4555719 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000064","","740"
"10:46:25.4555949 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4557379 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000166","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4557801 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000064","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4558049 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000085","","3800"
"10:46:25.4559508 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4559678 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000150","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4560015 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000043","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:25.4560028 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000060","","3800"
"10:46:25.4560225 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000081","","740"
"10:46:25.4561492 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000141","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4561987 AM","firefox.exe","7384","DeviceIoControl","C:\Users","0.0000085","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4562341 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000077","","3800"
"10:46:25.4563937 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000145","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4564193 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4564329 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000051","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4564555 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000056","","3800"
"10:46:25.4564683 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000043","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:25.4564897 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000072","","740"
"10:46:25.4568050 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4568229 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome\*","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:25.4568570 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:25.4568762 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000085","","740"
"10:46:25.4571467 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:25.4571531 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4572171 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000051","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:25.4572380 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000086","","740"
"10:46:25.4574070 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4574561 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000076","CreationTime: 6/19/2019 4:53:26 PM, LastAccessTime: 3/26/2020 10:46:23 AM, LastWriteTime: 3/26/2020 10:46:23 AM, ChangeTime: 3/26/2020 10:46:23 AM, FileAttributes: D","3800"
"10:46:25.4574804 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000059","","3800"
"10:46:25.4576805 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4577300 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000042","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:25.4577479 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000072","","740"
"10:46:25.4577688 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4578089 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000043","CreationTime: 2/16/2018 12:59:38 PM, LastAccessTime: 8/16/2019 1:34:27 PM, LastWriteTime: 8/16/2019 1:34:27 PM, ChangeTime: 8/16/2019 1:34:27 PM, FileAttributes: D","3800"
"10:46:25.4578277 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000055","","3800"
"10:46:25.4580658 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4581161 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000094","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:25.4581217 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4581404 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000073","","740"
"10:46:25.4581566 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000043","CreationTime: 2/16/2018 12:59:38 PM, LastAccessTime: 3/21/2019 3:00:59 PM, LastWriteTime: 3/21/2019 3:00:59 PM, ChangeTime: 3/21/2019 3:00:59 PM, FileAttributes: D","3800"
"10:46:25.4581754 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000060","","3800"
"10:46:25.4584276 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4584668 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4584826 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000043","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:25.4585031 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000043","CreationTime: 2/16/2018 12:59:38 PM, LastAccessTime: 2/16/2018 12:59:42 PM, LastWriteTime: 2/16/2018 12:59:42 PM, ChangeTime: 3/20/2019 7:22:59 PM, FileAttributes: D","3800"
"10:46:25.4585039 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000069","","740"
"10:46:25.4585223 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000055","","3800"
"10:46:25.4587779 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4588150 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming","0.0000043","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 10/22/2019 8:25:35 PM, LastWriteTime: 10/22/2019 8:25:35 PM, ChangeTime: 10/22/2019 8:25:35 PM, FileAttributes: D","3800"
"10:46:25.4588325 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000060","","3800"
"10:46:25.4589366 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4589848 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000043","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:25.4590049 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000064","","740"
"10:46:25.4591119 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4591448 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData","0.0000043","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 3/20/2019 7:22:57 PM, LastWriteTime: 3/20/2019 7:22:57 PM, ChangeTime: 3/20/2019 7:22:57 PM, FileAttributes: HD","3800"
"10:46:25.4591636 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000077","","3800"
"10:46:25.4593466 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4593923 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000042","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:25.4594110 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000064","","740"
"10:46:25.4594191 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4594456 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles","0.0000038","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 5/9/2019 3:17:34 PM, LastWriteTime: 5/9/2019 3:17:34 PM, ChangeTime: 5/9/2019 3:17:34 PM, FileAttributes: D","3800"
"10:46:25.4594614 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000055","","3800"
"10:46:25.4597084 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4597340 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4597383 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users","0.0000043","CreationTime: 4/11/2018 2:04:33 PM, LastAccessTime: 3/20/2019 7:21:22 PM, LastWriteTime: 3/20/2019 7:21:22 PM, ChangeTime: 3/20/2019 7:21:22 PM, FileAttributes: RD","3800"
"10:46:25.4597558 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000102","","3800"
"10:46:25.4597814 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000043","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:25.4598002 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000064","","740"
"10:46:25.4602166 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions\.","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:25.4602388 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4602878 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000047","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:25.4603075 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000064","","740"
"10:46:25.4605524 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4605912 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000043","CreationTime: 6/19/2019 4:53:36 PM, LastAccessTime: 6/19/2019 4:53:36 PM, LastWriteTime: 6/19/2019 4:53:36 PM, ChangeTime: 6/19/2019 4:53:36 PM, FileAttributes: D","3800"
"10:46:25.4606104 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000064","","3800"
"10:46:25.4606578 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4606693 AM","firefox.exe","7384","CreateFile","C:\","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4607030 AM","firefox.exe","7384","QueryDirectory","C:\Users","0.0000179","Filter: Users, 1: Users","3800"
"10:46:25.4607085 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000047","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:25.4607282 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000089","","740"
"10:46:25.4607474 AM","firefox.exe","7384","CloseFile","C:\","0.0000064","","3800"
"10:46:25.4609040 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4609381 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles","0.0000205","Filter: diggles, 1: diggles","3800"
"10:46:25.4609825 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000076","","3800"
"10:46:25.4610251 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4610635 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000039","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:25.4610866 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000064","","740"
"10:46:25.4611408 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000153","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4611749 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData","0.0000145","Filter: AppData, 1: AppData","3800"
"10:46:25.4612073 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000056","","3800"
"10:46:25.4613639 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000179","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4614057 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming","0.0000128","Filter: Roaming, 1: Roaming","3800"
"10:46:25.4614373 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000064","","3800"
"10:46:25.4615870 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4615947 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4616208 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000119","Filter: Mozilla, 1: Mozilla","3800"
"10:46:25.4616404 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000098","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:25.4616489 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000060","","3800"
"10:46:25.4616647 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000111","","740"
"10:46:25.4616890 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0006550","Offset: 1,364,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.4617995 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000184","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4618366 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000124","Filter: Firefox, 1: Firefox","3800"
"10:46:25.4618665 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000056","","3800"
"10:46:25.4619582 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4620022 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000085","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:25.4620060 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000184","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4620252 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000069","","740"
"10:46:25.4620432 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000123","Filter: Profiles, 1: Profiles","3800"
"10:46:25.4620713 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000056","","3800"
"10:46:25.4622398 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions\.","0.0000141","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4623013 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000469","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4623760 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000064","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:25.4623875 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0019609","Offset: 1,364,992, Length: 24,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.4623913 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions\.","0.0000222","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4623986 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000059","","740"
"10:46:25.4625837 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions\.","0.0000141","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4627553 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions\.","0.0000136","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4628939 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4629259 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000137","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4629413 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:25.4629584 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000072","","740"
"10:46:25.4632613 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0002628","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4632971 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000380","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4635075 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000128","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:25.4635476 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000209","","740"
"10:46:25.4637758 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000291","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4638501 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000239","","3800"
"10:46:25.4643954 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000908","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4645579 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000201","","3800"
"10:46:25.4645707 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000696","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4647755 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000205","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:25.4648344 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000260","","740"
"10:46:25.4651971 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000956","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4654083 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000021","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4654296 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000094","","3800"
"10:46:25.4656557 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4656715 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000231","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4657031 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000051","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:25.4657202 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000072","","740"
"10:46:25.4657236 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000068","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4657543 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000068","","3800"
"10:46:25.4659348 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000158","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4660432 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4660786 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000179","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4660875 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000043","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:25.4661046 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000064","","740"
"10:46:25.4661200 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000047","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4661409 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000051","","3800"
"10:46:25.4662825 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000171","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4663188 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000051","","3800"
"10:46:25.4663802 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4664220 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000039","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:25.4664395 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000056","","740"
"10:46:25.4664664 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000171","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4665142 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000017","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4665291 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000052","","3800"
"10:46:25.4666819 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000175","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4667280 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000055","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4667527 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000051","","3800"
"10:46:25.4668223 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4668551 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000038","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:25.4668722 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000059","","740"
"10:46:25.4668995 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000115","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4670578 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000196","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4671009 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000047","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4671231 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000051","","3800"
"10:46:25.4671674 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4671973 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000043","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:25.4672152 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000051","","740"
"10:46:25.4672698 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000158","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4673044 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000051","","3800"
"10:46:25.4674994 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4675194 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000222","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4675305 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000043","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:25.4675519 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000068","","740"
"10:46:25.4675821 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000018","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4676005 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000064","","3800"
"10:46:25.4677746 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000192","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4678177 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000051","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4678399 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000059","","3800"
"10:46:25.4680058 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000128","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4680749 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4681108 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000043","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:25.4681287 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000064","","740"
"10:46:25.4681543 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000175","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4681957 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000055","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4682183 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000060","","3800"
"10:46:25.4683736 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000226","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4684159 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000059","","3800"
"10:46:25.4684513 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4684811 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000039","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:25.4684982 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000060","","740"
"10:46:25.4685690 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000171","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4686219 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000017","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4686390 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000060","","3800"
"10:46:25.4687935 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000174","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4688144 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000170","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4688549 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000051","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4688754 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000064","","3800"
"10:46:25.4689654 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000055","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:25.4689867 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000086","","740"
"10:46:25.4690277 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4691736 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000175","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4692291 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000077","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4692611 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000102","","3800"
"10:46:25.4694450 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000192","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4694851 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000060","","3800"
"10:46:25.4696237 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000210","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4696455 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000171","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4696468 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0005073","Offset: 988,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.4696600 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000047","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:25.4696771 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000064","","740"
"10:46:25.4696976 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000038","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4697249 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000055","","3800"
"10:46:25.4698802 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000187","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4699245 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000052","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4699472 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000055","","3800"
"10:46:25.4700376 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4700735 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000047","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:25.4700931 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000064","","740"
"10:46:25.4701507 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000141","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4701793 AM","firefox.exe","1008","ReadFile","C:\Program Files\Firefox Nightly\libGLESv2.dll","0.0002624","Offset: 988,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.4702962 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000166","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4703376 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming","0.0000047","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4703606 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000056","","3800"
"10:46:25.4704284 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4704643 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000043","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:25.4704843 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000069","","740"
"10:46:25.4705249 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000162","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4705599 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000059","","3800"
"10:46:25.4706913 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000149","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4707412 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming","0.0000017","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4707587 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000072","","3800"
"10:46:25.4709473 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000158","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4709524 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4709861 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming","0.0000051","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4709878 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000047","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:25.4710057 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000069","","740"
"10:46:25.4710079 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000059","","3800"
"10:46:25.4711615 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000089","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4712801 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000149","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4712882 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\webext.sc.lz4","0.0000042","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","120"
"10:46:25.4713112 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\webext.sc.lz4","0.0000073","CreationTime: 3/25/2020 10:27:00 AM, LastAccessTime: 3/25/2020 10:31:49 AM, LastWriteTime: 3/25/2020 10:31:50 AM, ChangeTime: 3/25/2020 10:31:50 AM, FileAttributes: A, AllocationSize: 106,496, EndOfFile: 103,783, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0xf0000000230b0, EaSize: 0, Access: Generic Read, Position: 0, Mode: Sequential Access, Synchronous IO Non-Alert, AlignmentRequirement: Word","120"
"10:46:25.4713189 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000051","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4713407 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000059","","3800"
"10:46:25.4713791 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\webext.sc.lz4","0.0271586","Offset: 0, Length: 103,783, Priority: Normal","120"
"10:46:25.4714460 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\webext.sc.lz4","0.0270205","Offset: 0, Length: 103,783, I/O Flags: Non-cached, Paging I/O, Priority: Normal","120"
"10:46:25.4714849 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000141","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4715173 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000051","","3800"
"10:46:25.4715446 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4715783 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000047","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:25.4715962 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000064","","740"
"10:46:25.4716534 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000192","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4717072 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData","0.0000017","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4717238 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000056","","3800"
"10:46:25.4718625 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000205","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4719047 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000047","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4719056 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4719256 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000051","","3800"
"10:46:25.4719406 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000042","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:25.4719572 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000060","","740"
"10:46:25.4720609 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000077","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4721795 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000149","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4722158 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000042","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4722354 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000055","","3800"
"10:46:25.4723433 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000414","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4723664 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000260","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4724171 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000094","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.4724201 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000094","","3800"
"10:46:25.4724427 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000077","","740"
"10:46:25.4726876 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000167","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4727115 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d11.dll","0.0011700","Offset: 947,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.4727410 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles","0.0000017","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4727470 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4727585 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000068","","3800"
"10:46:25.4727964 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000047","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.4728139 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000064","","740"
"10:46:25.4729232 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000149","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4729624 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000060","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4729867 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000060","","3800"
"10:46:25.4731224 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4731442 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4731689 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000043","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.4731877 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000085","","740"
"10:46:25.4732820 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000154","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4733217 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000047","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4733443 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000060","","3800"
"10:46:25.4734945 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000149","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4735286 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000111","","3800"
"10:46:25.4736715 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4736848 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000149","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4737202 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000042","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:25.4737338 AM","firefox.exe","7384","DeviceIoControl","C:\Users","0.0000017","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4737394 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000064","","740"
"10:46:25.4737509 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000060","","3800"
"10:46:25.4739011 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000141","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4739173 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\d3d11.dll","0.0006882","Offset: 930,816, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1316"
"10:46:25.4739374 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000051","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4739587 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000060","","3800"
"10:46:25.4741178 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4741682 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:25.4741878 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000068","","740"
"10:46:25.4744071 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions\.","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:25.4744997 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4745454 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000042","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:25.4745641 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000158","","740"
"10:46:25.4747228 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4747647 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000047","CreationTime: 6/19/2019 4:53:36 PM, LastAccessTime: 6/19/2019 4:53:36 PM, LastWriteTime: 6/19/2019 4:53:36 PM, ChangeTime: 6/19/2019 4:53:36 PM, FileAttributes: D","3800"
"10:46:25.4747843 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000064","","3800"
"10:46:25.4750300 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4750804 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000047","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:25.4750825 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4750996 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000064","","740"
"10:46:25.4751184 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000042","CreationTime: 6/19/2019 4:53:26 PM, LastAccessTime: 3/26/2020 10:46:23 AM, LastWriteTime: 3/26/2020 10:46:23 AM, ChangeTime: 3/26/2020 10:46:23 AM, FileAttributes: D","3800"
"10:46:25.4751367 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000064","","3800"
"10:46:25.4754226 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4754337 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4754537 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000039","CreationTime: 2/16/2018 12:59:38 PM, LastAccessTime: 8/16/2019 1:34:27 PM, LastWriteTime: 8/16/2019 1:34:27 PM, ChangeTime: 8/16/2019 1:34:27 PM, FileAttributes: D","3800"
"10:46:25.4754699 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000060","","3800"
"10:46:25.4754785 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000042","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:25.4755015 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000081","","740"
"10:46:25.4757311 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000401","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4757917 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000046","CreationTime: 2/16/2018 12:59:38 PM, LastAccessTime: 3/21/2019 3:00:59 PM, LastWriteTime: 3/21/2019 3:00:59 PM, ChangeTime: 3/21/2019 3:00:59 PM, FileAttributes: D","3800"
"10:46:25.4758121 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000073","","3800"
"10:46:25.4758565 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4759030 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000039","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:25.4759209 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000064","","740"
"10:46:25.4762256 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4762627 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000043","CreationTime: 2/16/2018 12:59:38 PM, LastAccessTime: 2/16/2018 12:59:42 PM, LastWriteTime: 2/16/2018 12:59:42 PM, ChangeTime: 3/20/2019 7:22:59 PM, FileAttributes: D","3800"
"10:46:25.4762870 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000064","","3800"
"10:46:25.4763378 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4763839 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000042","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:25.4764009 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000086","","740"
"10:46:25.4765541 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000320","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4766083 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming","0.0000047","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 10/22/2019 8:25:35 PM, LastWriteTime: 10/22/2019 8:25:35 PM, ChangeTime: 10/22/2019 8:25:35 PM, FileAttributes: D","3800"
"10:46:25.4766296 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000077","","3800"
"10:46:25.4766928 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4767384 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000043","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:25.4767559 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000086","","740"
"10:46:25.4769727 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4770047 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData","0.0000042","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 3/20/2019 7:22:57 PM, LastWriteTime: 3/20/2019 7:22:57 PM, ChangeTime: 3/20/2019 7:22:57 PM, FileAttributes: HD","3800"
"10:46:25.4770230 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000051","","3800"
"10:46:25.4770341 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4770759 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000039","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:25.4770926 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000059","","740"
"10:46:25.4772662 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4772910 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles","0.0000034","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 5/9/2019 3:17:34 PM, LastWriteTime: 5/9/2019 3:17:34 PM, ChangeTime: 5/9/2019 3:17:34 PM, FileAttributes: D","3800"
"10:46:25.4773050 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000056","","3800"
"10:46:25.4775747 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4776161 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users","0.0000060","CreationTime: 4/11/2018 2:04:33 PM, LastAccessTime: 3/20/2019 7:21:22 PM, LastWriteTime: 3/20/2019 7:21:22 PM, ChangeTime: 3/20/2019 7:21:22 PM, FileAttributes: RD","3800"
"10:46:25.4776425 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000081","","3800"
"10:46:25.4776886 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4777168 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000034","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:25.4777317 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000068","","740"
"10:46:25.4780918 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev\.","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:25.4780974 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4781302 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000043","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:25.4781477 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000068","","740"
"10:46:25.4785065 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4785488 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000047","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:25.4785684 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000098","","740"
"10:46:25.4786789 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4787156 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000047","CreationTime: 2/16/2018 12:59:42 PM, LastAccessTime: 2/16/2018 12:59:42 PM, LastWriteTime: 2/16/2018 12:59:42 PM, ChangeTime: 2/16/2018 12:59:42 PM, FileAttributes: D","3800"
"10:46:25.4787348 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000064","","3800"
"10:46:25.4787992 AM","firefox.exe","7384","CreateFile","C:\","0.0000162","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4788325 AM","firefox.exe","7384","QueryDirectory","C:\Users","0.0000184","Filter: Users, 1: Users","3800"
"10:46:25.4788735 AM","firefox.exe","7384","CloseFile","C:\","0.0000072","","3800"
"10:46:25.4790296 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000329","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4790429 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000157","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4790804 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000043","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:25.4790821 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles","0.0000154","Filter: diggles, 1: diggles","3800"
"10:46:25.4790987 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000073","","740"
"10:46:25.4791167 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000068","","3800"
"10:46:25.4792801 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000230","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4793287 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData","0.0000269","Filter: AppData, 1: AppData","3800"
"10:46:25.4793735 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000068","","3800"
"10:46:25.4794507 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4794827 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000039","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:25.4794985 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000060","","740"
"10:46:25.4795416 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000273","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4795928 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming","0.0001536","Filter: Roaming, 1: Roaming","3800"
"10:46:25.4797725 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0001587","","3800"
"10:46:25.4798467 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0347589","Offset: 14,397,440, Length: 4,096","7760"
"10:46:25.4798877 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0346897","Offset: 14,397,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:25.4800413 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4800779 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000047","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:25.4801018 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000244","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4801078 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000068","","740"
"10:46:25.4801505 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000166","Filter: Mozilla, 1: Mozilla","3800"
"10:46:25.4801914 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000073","","3800"
"10:46:25.4803728 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev\.","0.0000132","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4805080 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4805605 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev\.","0.0000137","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4805661 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000059","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:25.4805921 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000094","","740"
"10:46:25.4807060 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev\.","0.0000111","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4808472 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev\.","0.0000111","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4809300 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4809791 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000047","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:25.4809932 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000110","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4809978 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000077","","740"
"10:46:25.4811344 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000179","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4811805 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000064","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4812048 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000064","","3800"
"10:46:25.4813085 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4813426 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000158","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4813644 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000055","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:25.4813780 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000060","","3800"
"10:46:25.4813857 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000077","","740"
"10:46:25.4815201 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000175","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4815709 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000021","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4815871 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000059","","3800"
"10:46:25.4817445 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000192","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4817859 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000102","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4818226 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000094","","3800"
"10:46:25.4818512 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4818985 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000039","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:25.4819135 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000059","","740"
"10:46:25.4819971 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000128","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4821477 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000184","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4821929 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000056","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4822156 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000064","","3800"
"10:46:25.4822348 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4822821 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000047","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:25.4823000 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000064","","740"
"10:46:25.4823687 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000171","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4824054 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000060","","3800"
"10:46:25.4825573 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000167","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4825914 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4826085 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000021","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4826256 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000060","","3800"
"10:46:25.4826290 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000034","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:25.4826529 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000072","","740"
"10:46:25.4827950 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000170","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4828342 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000051","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4828556 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000059","","3800"
"10:46:25.4830083 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4830706 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4831248 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000047","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:25.4831423 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000064","","740"
"10:46:25.4831529 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000154","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4831913 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming","0.0000052","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4832131 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000060","","3800"
"10:46:25.4833769 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000163","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4834162 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000055","","3800"
"10:46:25.4834990 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4835438 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000042","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:25.4835596 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000145","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4835608 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000060","","740"
"10:46:25.4836065 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming","0.0000017","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4836231 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000051","","3800"
"10:46:25.4837678 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000149","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4838057 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming","0.0000099","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4838471 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000098","","3800"
"10:46:25.4838510 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4838932 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000047","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:25.4839107 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000064","","740"
"10:46:25.4840314 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000111","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4841897 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000184","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4842333 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000055","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4842567 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000060","","3800"
"10:46:25.4843348 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4843809 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000043","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:25.4844001 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000072","","740"
"10:46:25.4844278 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000171","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4844645 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000056","","3800"
"10:46:25.4846313 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000158","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4846813 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData","0.0000021","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4846988 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000055","","3800"
"10:46:25.4847205 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4847683 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000047","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:25.4847879 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000064","","740"
"10:46:25.4848541 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000149","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4848912 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000055","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4849129 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000060","","3800"
"10:46:25.4850793 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000103","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4850819 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4851246 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000038","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:25.4851386 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000060","","740"
"10:46:25.4852270 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000145","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4852696 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000056","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4852931 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000064","","3800"
"10:46:25.4854420 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000145","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4854757 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000056","","3800"
"10:46:25.4855380 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4855713 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000043","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:25.4855884 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000064","","740"
"10:46:25.4856293 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000137","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4856767 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles","0.0000013","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4857014 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000064","","3800"
"10:46:25.4858619 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000145","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4858857 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000210","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4858994 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000060","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4859220 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000043","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:25.4859229 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000055","","3800"
"10:46:25.4859391 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000068","","740"
"10:46:25.4860760 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4862173 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000162","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4862437 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4862569 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000056","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4862753 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000068","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:25.4862889 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000086","","3800"
"10:46:25.4862953 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000052","","740"
"10:46:25.4864498 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000162","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4864937 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000060","","3800"
"10:46:25.4866358 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000576","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4867412 AM","firefox.exe","7384","DeviceIoControl","C:\Users","0.0000021","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4867421 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4867561 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000082","","3800"
"10:46:25.4867736 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000043","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:25.4867924 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000064","","740"
"10:46:25.4869332 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000179","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4869746 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000060","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4869981 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000064","","3800"
"10:46:25.4871209 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4871521 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:25.4871704 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000064","","740"
"10:46:25.4874358 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev\.","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:25.4876120 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4876466 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000043","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","740"
"10:46:25.4876645 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000068","","740"
"10:46:25.4877247 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4877541 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000039","CreationTime: 2/16/2018 12:59:42 PM, LastAccessTime: 2/16/2018 12:59:42 PM, LastWriteTime: 2/16/2018 12:59:42 PM, ChangeTime: 2/16/2018 12:59:42 PM, FileAttributes: D","3800"
"10:46:25.4877691 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000051","","3800"
"10:46:25.4880251 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4880566 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000043","CreationTime: 2/16/2018 12:59:38 PM, LastAccessTime: 2/16/2018 12:59:42 PM, LastWriteTime: 2/16/2018 12:59:42 PM, ChangeTime: 3/20/2019 7:22:59 PM, FileAttributes: D","3800"
"10:46:25.4880656 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4880745 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000052","","3800"
"10:46:25.4881023 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000038","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","740"
"10:46:25.4881193 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000064","","740"
"10:46:25.4883613 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4883911 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming","0.0000043","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 10/22/2019 8:25:35 PM, LastWriteTime: 10/22/2019 8:25:35 PM, ChangeTime: 10/22/2019 8:25:35 PM, FileAttributes: D","3800"
"10:46:25.4884086 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000051","","3800"
"10:46:25.4884462 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4884850 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000038","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","740"
"10:46:25.4885021 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000055","","740"
"10:46:25.4886587 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4886855 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData","0.0000039","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 3/20/2019 7:22:57 PM, LastWriteTime: 3/20/2019 7:22:57 PM, ChangeTime: 3/20/2019 7:22:57 PM, FileAttributes: HD","3800"
"10:46:25.4887017 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000052","","3800"
"10:46:25.4889155 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4889394 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4889462 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000039","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.4889620 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000060","","740"
"10:46:25.4889723 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles","0.0000034","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 5/9/2019 3:17:34 PM, LastWriteTime: 5/9/2019 3:17:34 PM, ChangeTime: 5/9/2019 3:17:34 PM, FileAttributes: D","3800"
"10:46:25.4889906 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000047","","3800"
"10:46:25.4892786 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4893072 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users","0.0000038","CreationTime: 4/11/2018 2:04:33 PM, LastAccessTime: 3/20/2019 7:21:22 PM, LastWriteTime: 3/20/2019 7:21:22 PM, ChangeTime: 3/20/2019 7:21:22 PM, FileAttributes: RD","3800"
"10:46:25.4893243 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000051","","3800"
"10:46:25.4893345 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4893699 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000043","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.4893895 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000069","","740"
"10:46:25.4896950 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions\.","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:25.4897001 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000227","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4897407 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:25.4897595 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000076","","740"
"10:46:25.4899724 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4900082 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000047","CreationTime: 2/16/2018 12:59:40 PM, LastAccessTime: 2/16/2018 12:59:40 PM, LastWriteTime: 2/16/2018 12:59:40 PM, ChangeTime: 2/16/2018 12:59:40 PM, FileAttributes: D","3800"
"10:46:25.4900287 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000060","","3800"
"10:46:25.4900880 AM","firefox.exe","7384","CreateFile","C:\","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4901217 AM","firefox.exe","7384","QueryDirectory","C:\Users","0.0000175","Filter: Users, 1: Users","3800"
"10:46:25.4901575 AM","firefox.exe","7384","CloseFile","C:\","0.0000064","","3800"
"10:46:25.4902292 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4902796 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000042","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.4902988 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000064","","740"
"10:46:25.4903154 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4903483 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles","0.0000119","Filter: diggles, 1: diggles","3800"
"10:46:25.4903756 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000051","","3800"
"10:46:25.4905249 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4905582 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData","0.0000153","Filter: AppData, 1: AppData","3800"
"10:46:25.4905906 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000060","","3800"
"10:46:25.4906217 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4906687 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000047","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.4906879 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000068","","740"
"10:46:25.4907544 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000231","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4907992 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming","0.0000120","Filter: Roaming, 1: Roaming","3800"
"10:46:25.4908287 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000060","","3800"
"10:46:25.4909755 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000157","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4909976 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:25.4910104 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000128","Filter: Mozilla, 1: Mozilla","3800"
"10:46:25.4910412 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000059","","3800"
"10:46:25.4910420 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000043","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:25.4910625 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000064","","740"
"10:46:25.4912131 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions\.","0.0000128","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4913526 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions\.","0.0000120","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4914845 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions\.","0.0000111","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4916257 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions\.","0.0000162","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4918006 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000133","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4919495 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000209","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4919973 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000064","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4920221 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000068","","3800"
"10:46:25.4922196 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000222","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4922555 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.4922683 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000064","","3800"
"10:46:25.4922730 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Keyboard Layouts","0.0000085","Desired Access: Enumerate Sub Keys","2512"
"10:46:25.4922951 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000081","Desired Access: Enumerate Sub Keys","2512"
"10:46:25.4923224 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000043","Index: 0, Name: 00000401","2512"
"10:46:25.4924445 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000196","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4925012 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000017","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4925191 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000060","","3800"
"10:46:25.4926860 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000183","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4927350 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000073","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4927611 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000059","","3800"
"10:46:25.4929330 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000124","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4930772 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000218","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4931408 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000081","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4931736 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000082","","3800"
"10:46:25.4933887 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000209","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4934326 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000056","","3800"
"10:46:25.4935901 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000183","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4936447 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000017","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4936618 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000055","","3800"
"10:46:25.4938256 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000188","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4938683 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000055","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4938913 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000060","","3800"
"10:46:25.4940415 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000192","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4942058 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000170","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4942476 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming","0.0000068","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4942723 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000060","","3800"
"10:46:25.4944285 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000162","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4944639 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000055","","3800"
"10:46:25.4946128 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000205","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4946819 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming","0.0000026","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4947007 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000081","","3800"
"10:46:25.4948718 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000234","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4949307 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming","0.0000059","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4949588 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000068","","3800"
"10:46:25.4951278 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4952724 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000209","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4953194 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000046","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4953445 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000069","","3800"
"10:46:25.4954823 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000150","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4955156 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000051","","3800"
"10:46:25.4956641 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000162","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4957166 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.4957260 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData","0.0000021","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4957396 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000401","0.0011815","Desired Access: Query Value","2512"
"10:46:25.4957469 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000059","","3800"
"10:46:25.4959116 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000153","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4960332 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000064","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4960588 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000064","","3800"
"10:46:25.4964231 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000120","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4966203 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000230","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4966723 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000064","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4966975 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000072","","3800"
"10:46:25.4968686 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000175","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4969100 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000068","","3800"
"10:46:25.4970730 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000170","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4971276 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles","0.0000077","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4971519 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000090","","3800"
"10:46:25.4973294 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000260","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4973895 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000099","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4974301 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000089","","3800"
"10:46:25.4976251 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000115","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:25.4977586 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000158","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4978009 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000059","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4978247 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000069","","3800"
"10:46:25.4979788 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000153","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4980138 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000055","","3800"
"10:46:25.4981541 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000141","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4982032 AM","firefox.exe","7384","DeviceIoControl","C:\Users","0.0000017","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:25.4982198 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000060","","3800"
"10:46:25.4983922 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000154","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4984899 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000060","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:25.4985142 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000086","","3800"
"10:46:25.4985723 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\webext.sc.lz4","0.0000128","","120"
"10:46:25.4989802 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions\.","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:25.4993428 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json","0.0488884","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7572"
"10:46:25.4993919 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4994341 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000064","CreationTime: 2/16/2018 12:59:40 PM, LastAccessTime: 2/16/2018 12:59:40 PM, LastWriteTime: 2/16/2018 12:59:40 PM, ChangeTime: 2/16/2018 12:59:40 PM, FileAttributes: D","3800"
"10:46:25.4994576 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000060","","3800"
"10:46:25.4997605 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.4997977 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000046","CreationTime: 2/16/2018 12:59:38 PM, LastAccessTime: 2/16/2018 12:59:42 PM, LastWriteTime: 2/16/2018 12:59:42 PM, ChangeTime: 3/20/2019 7:22:59 PM, FileAttributes: D","3800"
"10:46:25.4998181 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000056","","3800"
"10:46:25.5001002 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.5001326 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming","0.0000043","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 10/22/2019 8:25:35 PM, LastWriteTime: 10/22/2019 8:25:35 PM, ChangeTime: 10/22/2019 8:25:35 PM, FileAttributes: D","3800"
"10:46:25.5001607 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000073","","3800"
"10:46:25.5004441 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.5004761 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData","0.0000038","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 3/20/2019 7:22:57 PM, LastWriteTime: 3/20/2019 7:22:57 PM, ChangeTime: 3/20/2019 7:22:57 PM, FileAttributes: HD","3800"
"10:46:25.5004944 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000055","","3800"
"10:46:25.5007615 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.5007918 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles","0.0000038","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 5/9/2019 3:17:34 PM, LastWriteTime: 5/9/2019 3:17:34 PM, ChangeTime: 5/9/2019 3:17:34 PM, FileAttributes: D","3800"
"10:46:25.5008093 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000055","","3800"
"10:46:25.5012987 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000320","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.5013546 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users","0.0000047","CreationTime: 4/11/2018 2:04:33 PM, LastAccessTime: 3/20/2019 7:21:22 PM, LastWriteTime: 3/20/2019 7:21:22 PM, ChangeTime: 3/20/2019 7:21:22 PM, FileAttributes: RD","3800"
"10:46:25.5013780 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000069","","3800"
"10:46:25.5029008 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000051","Desired Access: Query Value, Enumerate Sub Keys","3800"
"10:46:25.5029256 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Wow64\x86\xtajit","0.0000179","Desired Access: Query Value","3800"
"10:46:25.5032357 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000286","Desired Access: Read Data/List Directory, Execute/Traverse, Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.5032929 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\firefox.exe","0.0000115","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE","3800"
"10:46:25.5034687 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\firefox.exe","0.0000047","SyncType: SyncTypeOther","3800"
"10:46:25.5035336 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000051","Desired Access: Query Value, Enumerate Sub Keys","3800"
"10:46:25.5036210 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000051","Information: Label","3800"
"10:46:25.5036948 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000077","Name: \Program Files\Firefox Nightly\firefox.exe","3800"
"10:46:25.5037405 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000030","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","3800"
"10:46:25.5037738 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\ntdll.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","3800"
"10:46:25.5041659 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\bam\UserSettings\S-1-5-21-429253301-29906273-2566354956-1001","0.0000098","Desired Access: All Access","3800"
"10:46:25.5041966 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\bam\UserSettings\S-1-5-21-429253301-29906273-2566354956-1001\\Device\HarddiskVolume3\Program Files\Firefox Nightly\firefox.exe","0.0000051","Type: REG_BINARY, Length: 24, Data: 5B 1A 5A 77 96 03 D6 01 00 00 00 00 00 00 00 00","3800"
"10:46:25.5042188 AM","firefox.exe","7384","RegSetValue","HKLM\System\CurrentControlSet\Services\bam\UserSettings\S-1-5-21-429253301-29906273-2566354956-1001\\Device\HarddiskVolume3\Program Files\Firefox Nightly\firefox.exe","0.0000405","Type: REG_BINARY, Length: 24, Data: 91 85 78 78 96 03 D6 01 00 00 00 00 00 00 00 00","3800"
"10:46:25.5042764 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\bam\UserSettings\S-1-5-21-429253301-29906273-2566354956-1001","0.0000021","","3800"
"10:46:25.5042964 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\BAM","0.0000073","Desired Access: Query Value","3800"
"10:46:25.5043237 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager\BAM","0.0000064","Desired Access: Query Value","3800"
"10:46:25.5043609 AM","firefox.exe","7384","Process Create","C:\Program Files\Firefox Nightly\firefox.exe","0.0000000","PID: 7972, Command line: ""C:\Program Files\Firefox Nightly\firefox.exe"" -contentproc --channel=""7384.16.1062730593\928174997"" -childID 2 -isForBrowser -prefsHandle 3236 -prefMapHandle 3232 -prefsLen 197 -prefMapSize 227134 -parentBuildID 20200325093457 -appdir ""C:\Program Files\Firefox Nightly\browser"" - 7384 ""\\.\pipe\gecko-crash-server-pipe.7384"" 3268 tab","3800"
"10:46:25.5043720 AM","firefox.exe","7972","Process Start","","0.0000000","Parent PID: 7384, Command line: ""C:\Program Files\Firefox Nightly\firefox.exe"" -contentproc --channel=""7384.16.1062730593\928174997"" -childID 2 -isForBrowser -prefsHandle 3236 -prefMapHandle 3232 -prefsLen 197 -prefMapSize 227134 -parentBuildID 20200325093457 -appdir ""C:\Program Files\Firefox Nightly\browser"" - 7384 ""\\.\pipe\gecko-crash-server-pipe.7384"" 3268 tab, Current directory: C:\Program Files\Firefox Nightly\, Environment: ;	=::=::\;	ALLUSERSPROFILE=C:\ProgramData;	APPDATA=C:\Users\diggles\AppData\Roaming;	CommonProgramFiles=C:\Program Files\Common Files;	CommonProgramFiles(x86)=C:\Program Files (x86)\Common Files;	CommonProgramW6432=C:\Program Files\Common Files;	COMPUTERNAME=LAPTOP-49TAGD3F;	ComSpec=C:\WINDOWS\system32\cmd.exe;	DriverData=C:\Windows\System32\Drivers\DriverData;	HOMEDRIVE=C:;	HOMEPATH=\Users\diggles;	LOCALAPPDATA=C:\Users\diggles\AppData\Local;	LOGONSERVER=\\LAPTOP-49TAGD3F;	MOZ_CRASHREPORTER_DATA_DIRECTORY=C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Crash Reports;	MOZ_CRASHREPORTER_EVENTS_DIRECTORY=C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\crashes\events;	MOZ_CRASHREPORTER_PING_DIRECTORY=C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Pending Pings;	MOZ_CRASHREPORTER_RESTART_ARG_0=C:\Program Files\Firefox Nightly\firefox.exe;	MOZ_CRASHREPORTER_STRINGS_OVERRIDE=C:\Program Files\Firefox Nightly\browser\crashreporter-override.ini;	NUMBER_OF_PROCESSORS=4;	OneDrive=C:\Users\diggles\OneDrive;	OS=Windows_NT;	Path=C:\Program Files\Firefox Nightly;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\WINDOWS\System32\OpenSSH\;C:\Users\diggles\AppData\Local\Microsoft\WindowsApps;;	PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC;	PROCESSOR_ARCHITECTURE=AMD64;	PROCESSOR_IDENTIFIER=Intel64 Family 6 Model 142 Stepping 9, GenuineIntel;	PROCESSOR_LEVEL=6;	PROCESSOR_REVISION=8e09;	ProgramData=C:\ProgramData;	ProgramFiles=C:\Program Files;	ProgramFiles(x86)=C:\Program Files (x86);	ProgramW6432=C:\Program Files;	PSModulePath=C:\Program Files\WindowsPowerShell\Modules;C:\WINDOWS\system32\WindowsPowerShell\v1.0\Modules;	PUBLIC=C:\Users\Public;	SESSIONNAME=Console;	SystemDrive=C:;	SystemRoot=C:\WINDOWS;	TEMP=C:\Users\diggles\AppData\Local\Temp;	TMP=C:\Users\diggles\AppData\Local\Temp;	USERDOMAIN=LAPTOP-49TAGD3F;	USERDOMAIN_ROAMINGPROFILE=LAPTOP-49TAGD3F;	USERNAME=diggles;	USERPROFILE=C:\Users\diggles;	windir=C:\WINDOWS","3800"
"10:46:25.5043826 AM","firefox.exe","7972","Thread Create","","0.0000000","Thread ID: 8292","3800"
"10:46:25.5044372 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders","0.0000133","Desired Access: Query Value","3800"
"10:46:25.5044658 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Cache","0.0000060","Type: REG_SZ, Length: 118, Data: C:\Users\diggles\AppData\Local\Microsoft\Windows\INetCache","3800"
"10:46:25.5044859 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders","0.0000017","","3800"
"10:46:25.5045025 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Layers","0.0000090","Desired Access: Query Value","3800"
"10:46:25.5045439 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000055","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","3800"
"10:46:25.5047453 AM","firefox.exe","7384","CreateFile","C:\Windows\apppatch\sysmain.sdb","0.0000230","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.5048101 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\apppatch\sysmain.sdb","0.0000060","CreationTime: 4/25/2019 5:35:45 PM, LastAccessTime: 4/25/2019 5:35:45 PM, LastWriteTime: 2/16/2019 1:02:22 AM, ChangeTime: 4/25/2019 8:14:04 PM, FileAttributes: A","3800"
"10:46:25.5048289 AM","firefox.exe","7384","CloseFile","C:\Windows\apppatch\sysmain.sdb","0.0000081","","3800"
"10:46:25.5048844 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000038","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","3800"
"10:46:25.5050081 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\SideBySide","0.0000167","Desired Access: Read","3800"
"10:46:25.5050414 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest","0.0000055","Length: 20","3800"
"10:46:25.5050649 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide","0.0000017","","3800"
"10:46:25.5060270 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000102","","3800"
"10:46:25.5076778 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000226","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:25.5077290 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000269","Offset: 264, Length: 8, Priority: Normal","3800"
"10:46:25.5078045 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000098","","3800"
"10:46:25.5081189 AM","firefox.exe","7972","Load Image","C:\Program Files\Firefox Nightly\firefox.exe","0.0000000","Image Base: 0x7ff7bb360000, Image Size: 0x93000","8292"
"10:46:25.5081642 AM","firefox.exe","7972","Load Image","C:\Windows\System32\ntdll.dll","0.0000000","Image Base: 0x7ffb49780000, Image Size: 0x1e1000","8292"
"10:46:25.5083831 AM","firefox.exe","7972","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\Segment Heap","0.0000106","Desired Access: Query Value","8292"
"10:46:25.5084044 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager\Segment Heap","0.0000077","Desired Access: Query Value","8292"
"10:46:25.5084829 AM","firefox.exe","7972","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager","0.0000064","Desired Access: Query Value, Enumerate Sub Keys","8292"
"10:46:25.5084995 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000094","Desired Access: Query Value, Enumerate Sub Keys","8292"
"10:46:25.5085217 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\ResourcePolicies","0.0000047","Length: 24","8292"
"10:46:25.5085384 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000021","","8292"
"10:46:25.5090585 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly","0.0001186","Desired Access: Execute/Traverse, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5093157 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\kernel32.dll","0.0000060","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.5094152 AM","firefox.exe","7972","Load Image","C:\Windows\System32\kernel32.dll","0.0000000","Image Base: 0x7ffb470b0000, Image Size: 0xb1000","8292"
"10:46:25.5094463 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\kernel32.dll","0.0000081","Name: \Windows\System32\kernel32.dll","8292"
"10:46:25.5095901 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\KernelBase.dll","0.0000047","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.5102578 AM","firefox.exe","7972","Load Image","C:\Windows\System32\KernelBase.dll","0.0000000","Image Base: 0x7ffb46720000, Image Size: 0x273000","8292"
"10:46:25.5103252 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\KernelBase.dll","0.0000094","Name: \Windows\System32\KernelBase.dll","8292"
"10:46:25.5119124 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\SafeBoot\Option","0.0000099","Desired Access: Query Value, Set Value","8292"
"10:46:25.5119351 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\SafeBoot\Option","0.0000123","Desired Access: Query Value, Set Value","8292"
"10:46:25.5119607 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Srp\GP\DLL","0.0000051","Desired Access: Read","8292"
"10:46:25.5119747 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Srp\GP\DLL","0.0000099","Desired Access: Read","8292"
"10:46:25.5119961 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers","0.0000175","Desired Access: Query Value","8292"
"10:46:25.5120289 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Windows\safer\codeidentifiers\TransparentEnabled","0.0000039","Length: 80","8292"
"10:46:25.5120447 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\safer\codeidentifiers","0.0000021","","8292"
"10:46:25.5120699 AM","firefox.exe","7972","RegOpenKey","HKCU\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers","0.0000085","Desired Access: Query Value","8292"
"10:46:25.5125021 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\FileSystem\","0.0000107","Desired Access: Read","8292"
"10:46:25.5125294 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\FileSystem","0.0000102","Desired Access: Read","8292"
"10:46:25.5125537 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\FileSystem\LongPathsEnabled","0.0000047","Type: REG_DWORD, Length: 4, Data: 0","8292"
"10:46:25.5125721 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\FileSystem","0.0000021","","8292"
"10:46:25.5138209 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly","0.0000273","Desired Access: Execute/Traverse, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5139212 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\advapi32.dll","0.0000060","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.5146627 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0216747","Offset: 13,156,352, Length: 4,096","7760"
"10:46:25.5149418 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0213717","Offset: 13,156,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:25.5161753 AM","firefox.exe","7972","Load Image","C:\Windows\System32\advapi32.dll","0.0000000","Image Base: 0x7ffb48a60000, Image Size: 0xa1000","8292"
"10:46:25.5162171 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\advapi32.dll","0.0000094","Name: \Windows\System32\advapi32.dll","8292"
"10:46:25.5169962 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\msvcrt.dll","0.0000051","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.5170674 AM","firefox.exe","7972","Load Image","C:\Windows\System32\msvcrt.dll","0.0000000","Image Base: 0x7ffb48e80000, Image Size: 0x9e000","8292"
"10:46:25.5170973 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\msvcrt.dll","0.0000060","Name: \Windows\System32\msvcrt.dll","8292"
"10:46:25.5172385 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\sechost.dll","0.0000039","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.5172897 AM","firefox.exe","7972","Load Image","C:\Windows\System32\sechost.dll","0.0000000","Image Base: 0x7ffb48e20000, Image Size: 0x5b000","8292"
"10:46:25.5173123 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000056","Name: \Windows\System32\sechost.dll","8292"
"10:46:25.5174156 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\rpcrt4.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.5174706 AM","firefox.exe","7972","Load Image","C:\Windows\System32\rpcrt4.dll","0.0000000","Image Base: 0x7ffb471a0000, Image Size: 0x124000","8292"
"10:46:25.5174979 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000077","Name: \Windows\System32\rpcrt4.dll","8292"
"10:46:25.5178414 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\ucrtbase.dll","0.0000051","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.5179152 AM","firefox.exe","7972","Load Image","C:\Windows\System32\ucrtbase.dll","0.0000000","Image Base: 0x7ffb45da0000, Image Size: 0xf8000","8292"
"10:46:25.5179421 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000064","Name: \Windows\System32\ucrtbase.dll","8292"
"10:46:25.5186086 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5186440 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8292"
"10:46:25.5186559 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000068","","8292"
"10:46:25.5188155 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0007671","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5196185 AM","firefox.exe","7972","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000068","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.5196590 AM","firefox.exe","7972","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000030","SyncType: SyncTypeOther","8292"
"10:46:25.5196949 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000042","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.5197759 AM","firefox.exe","7972","Load Image","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000000","Image Base: 0x7ffb3c6d0000, Image Size: 0x8f000","8292"
"10:46:25.5198079 AM","firefox.exe","7972","QueryNameInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000098","Name: \Program Files\Firefox Nightly\mozglue.dll","8292"
"10:46:25.5200213 AM","firefox.exe","7972","RegOpenKey","HKCU","0.0000119","Desired Access: Maximum Allowed, Granted Access: Read, Create Link","8292"
"10:46:25.5200575 AM","firefox.exe","7972","RegOpenKey","HKCU\Control Panel\Desktop\MuiCached\MachineLanguageConfiguration","0.0000141","Desired Access: Read","8292"
"10:46:25.5200878 AM","firefox.exe","7972","RegCloseKey","HKCU","0.0000021","","8292"
"10:46:25.5201045 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Policies\Microsoft\MUI\Settings","0.0000089","Desired Access: Read","8292"
"10:46:25.5201296 AM","firefox.exe","7972","RegOpenKey","HKCU","0.0000073","Desired Access: Maximum Allowed, Granted Access: Read, Create Link","8292"
"10:46:25.5201514 AM","firefox.exe","7972","RegOpenKey","HKCU\Software\Policies\Microsoft\Control Panel\Desktop","0.0000064","Desired Access: Read","8292"
"10:46:25.5201706 AM","firefox.exe","7972","RegOpenKey","HKCU\Control Panel\Desktop\LanguageConfiguration","0.0000145","Desired Access: Read","8292"
"10:46:25.5202069 AM","firefox.exe","7972","RegEnumValue","HKCU\Control Panel\Desktop\LanguageConfiguration","0.0000038","Index: 0, Length: 512","8292"
"10:46:25.5202461 AM","firefox.exe","7972","RegCloseKey","HKCU\Control Panel\Desktop\LanguageConfiguration","0.0000043","","8292"
"10:46:25.5202990 AM","firefox.exe","7972","RegCloseKey","HKCU","0.0000026","","8292"
"10:46:25.5203169 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Policies\Microsoft\MUI\Settings","0.0000073","Desired Access: Read","8292"
"10:46:25.5203413 AM","firefox.exe","7972","RegOpenKey","HKCU","0.0000076","Desired Access: Maximum Allowed, Granted Access: Read, Create Link","8292"
"10:46:25.5203643 AM","firefox.exe","7972","RegOpenKey","HKCU\Software\Policies\Microsoft\Control Panel\Desktop","0.0000055","Desired Access: Read","8292"
"10:46:25.5203831 AM","firefox.exe","7972","RegOpenKey","HKCU\Control Panel\Desktop","0.0000059","Desired Access: Read","8292"
"10:46:25.5204023 AM","firefox.exe","7972","RegQueryValue","HKCU\Control Panel\Desktop\PreferredUILanguages","0.0000051","Length: 12","8292"
"10:46:25.5204206 AM","firefox.exe","7972","RegCloseKey","HKCU\Control Panel\Desktop","0.0000013","","8292"
"10:46:25.5204330 AM","firefox.exe","7972","RegCloseKey","HKCU","0.0000013","","8292"
"10:46:25.5204488 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Policies\Microsoft\MUI\Settings","0.0000059","Desired Access: Read","8292"
"10:46:25.5204701 AM","firefox.exe","7972","RegOpenKey","HKCU","0.0000064","Desired Access: Maximum Allowed, Granted Access: Read, Create Link","8292"
"10:46:25.5204885 AM","firefox.exe","7972","RegOpenKey","HKCU\Control Panel\Desktop\MuiCached","0.0000110","Desired Access: Read","8292"
"10:46:25.5205145 AM","firefox.exe","7972","RegQueryValue","HKCU\Control Panel\Desktop\MuiCached\MachinePreferredUILanguages","0.0000034","Length: 12","8292"
"10:46:25.5205290 AM","firefox.exe","7972","RegQueryValue","HKCU\Control Panel\Desktop\MuiCached\MachinePreferredUILanguages","0.0000034","Type: REG_MULTI_SZ, Length: 12, Data: en-US","8292"
"10:46:25.5205486 AM","firefox.exe","7972","RegCloseKey","HKCU\Control Panel\Desktop\MuiCached","0.0000021","","8292"
"10:46:25.5205627 AM","firefox.exe","7972","RegCloseKey","HKCU","0.0000017","","8292"
"10:46:25.5206263 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\SideBySide","0.0000098","Desired Access: Read","8292"
"10:46:25.5206480 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest","0.0000039","Length: 20","8292"
"10:46:25.5206638 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide","0.0000013","","8292"
"10:46:25.5208618 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000525","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5212897 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000069","","8292"
"10:46:25.5213960 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\crypt32.dll","0.0000047","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.5214664 AM","firefox.exe","7972","Load Image","C:\Windows\System32\crypt32.dll","0.0000000","Image Base: 0x7ffb469a0000, Image Size: 0x1e2000","8292"
"10:46:25.5214962 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\crypt32.dll","0.0000060","Name: \Windows\System32\crypt32.dll","8292"
"10:46:25.5217126 AM","firefox.exe","7972","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager","0.0000093","Desired Access: Query Value, Enumerate Sub Keys","8292"
"10:46:25.5217360 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000094","Desired Access: Query Value, Enumerate Sub Keys","8292"
"10:46:25.5217603 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\ResourcePolicies","0.0000047","Length: 24","8292"
"10:46:25.5217804 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000124","","8292"
"10:46:25.5218542 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\msasn1.dll","0.0000043","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.5219203 AM","firefox.exe","7972","Load Image","C:\Windows\System32\msasn1.dll","0.0000000","Image Base: 0x7ffb45b10000, Image Size: 0x12000","8292"
"10:46:25.5219451 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\msasn1.dll","0.0000060","Name: \Windows\System32\msasn1.dll","8292"
"10:46:25.5220923 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\wintrust.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.5221776 AM","firefox.exe","7972","Load Image","C:\Windows\System32\wintrust.dll","0.0000000","Image Base: 0x7ffb45ea0000, Image Size: 0x57000","8292"
"10:46:25.5222062 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\wintrust.dll","0.0000077","Name: \Windows\System32\wintrust.dll","8292"
"10:46:25.5224127 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000107","","8292"
"10:46:25.5229917 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000124","Desired Access: Query Value","8292"
"10:46:25.5230194 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000103","Desired Access: Query Value","8292"
"10:46:25.5230459 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\SafeDllSearchMode","0.0000051","Length: 16","8292"
"10:46:25.5234773 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000268","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5235204 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000051","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","8292"
"10:46:25.5235370 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000085","","8292"
"10:46:25.5237537 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000261","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5238066 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000056","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.5238421 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000029","SyncType: SyncTypeOther","8292"
"10:46:25.5238775 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\msvcp140.dll","0.0000042","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.5239423 AM","firefox.exe","7972","Load Image","C:\Windows\System32\msvcp140.dll","0.0000000","Image Base: 0x7ffb1dfe0000, Image Size: 0xa7000","8292"
"10:46:25.5239679 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\msvcp140.dll","0.0003081","Name: \Windows\System32\msvcp140.dll","8292"
"10:46:25.5246092 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000132","","8292"
"10:46:25.5249757 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5250103 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000051","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","8292"
"10:46:25.5250252 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000068","","8292"
"10:46:25.5251878 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000183","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5252296 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.5252633 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000025","SyncType: SyncTypeOther","8292"
"10:46:25.5253034 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\vcruntime140.dll","0.0000043","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.5253836 AM","firefox.exe","7972","Load Image","C:\Windows\System32\vcruntime140.dll","0.0000000","Image Base: 0x7ffb3c690000, Image Size: 0x16000","8292"
"10:46:25.5254096 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000069","Name: \Windows\System32\vcruntime140.dll","8292"
"10:46:25.5255172 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000081","","8292"
"10:46:25.5275088 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\version.dll","0.0000316","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5276808 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000055","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","8292"
"10:46:25.5276991 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\version.dll","0.0000090","","8292"
"10:46:25.5279756 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\version.dll","0.0000226","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5280353 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\version.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.5280665 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\version.dll","0.0000026","SyncType: SyncTypeOther","8292"
"10:46:25.5280989 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\version.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.5281625 AM","firefox.exe","7972","Load Image","C:\Windows\System32\version.dll","0.0000000","Image Base: 0x7ffb39300000, Image Size: 0xa000","8292"
"10:46:25.5282218 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\version.dll","0.0000175","Name: \Windows\System32\version.dll","8292"
"10:46:25.5283613 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\version.dll","0.0000158","","8292"
"10:46:25.5289510 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5290047 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","8292"
"10:46:25.5290214 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000115","","8292"
"10:46:25.5311859 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000247","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5312934 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000064","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.5313348 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000025","SyncType: SyncTypeOther","8292"
"10:46:25.5313727 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\dbghelp.dll","0.0000052","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.5317866 AM","firefox.exe","7972","Load Image","C:\Windows\System32\dbghelp.dll","0.0000000","Image Base: 0x7ffb37030000, Image Size: 0x1c9000","8292"
"10:46:25.5318305 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\dbghelp.dll","0.0000077","Name: \Windows\System32\dbghelp.dll","8292"
"10:46:25.5320379 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000098","","8292"
"10:46:25.5333294 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000444","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5333866 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000043","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","8292"
"10:46:25.5334007 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000072","","8292"
"10:46:25.5352985 AM","firefox.exe","7384","ReadFile","C:\$Directory","0.0292724","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7508"
"10:46:25.5355234 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5355647 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000052","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","8292"
"10:46:25.5355810 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000085","","8292"
"10:46:25.5361480 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5361843 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000047","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","8292"
"10:46:25.5361992 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000077","","8292"
"10:46:25.5364027 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0006857","Offset: 13,746,176, Length: 4,096","7760"
"10:46:25.5364782 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0005901","Offset: 13,746,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:25.5371374 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.1065414","Offset: 14,159,872, Length: 4,096","7760"
"10:46:25.5371818 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.1064697","Offset: 14,159,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:25.5374271 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000448","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5374860 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","8292"
"10:46:25.5375005 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000576","","8292"
"10:46:25.5380723 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000264","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5381260 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.5389111 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000055","SyncType: SyncTypeOther","8292"
"10:46:25.5391837 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\cryptbase.dll","0.0000069","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.5393625 AM","firefox.exe","7972","Load Image","C:\Windows\System32\cryptbase.dll","0.0000000","Image Base: 0x7ffb45480000, Image Size: 0xb000","8292"
"10:46:25.5393911 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\cryptbase.dll","0.0000072","Name: \Windows\System32\cryptbase.dll","8292"
"10:46:25.5398199 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\bcryptprimitives.dll","0.0000060","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.5398920 AM","firefox.exe","7972","Load Image","C:\Windows\System32\bcryptprimitives.dll","0.0000000","Image Base: 0x7ffb46b90000, Image Size: 0x7a000","8292"
"10:46:25.5399564 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000073","Name: \Windows\System32\bcryptprimitives.dll","8292"
"10:46:25.5401749 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000124","","8292"
"10:46:25.5410171 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\cryptbase.dll","0.0002215","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5412526 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000043","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","8292"
"10:46:25.5430749 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000099","","8292"
"10:46:25.5467008 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 5956","5728"
"10:46:25.5477269 AM","firefox.exe","7972","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager","0.0000226","Desired Access: Query Value, Enumerate Sub Keys","8292"
"10:46:25.5477785 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000120","Desired Access: Query Value, Enumerate Sub Keys","8292"
"10:46:25.5478101 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\ResourcePolicies","0.0000051","Length: 24","8292"
"10:46:25.5478331 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000022","","8292"
"10:46:25.5479121 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Versions","0.0000068","Desired Access: Read","8292"
"10:46:25.5479317 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Versions","0.0000836","Desired Access: Read","8292"
"10:46:25.5480384 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Versions\(Default)","0.0000055","Type: REG_SZ, Length: 18, Data: 0006020E","8292"
"10:46:25.5482717 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json","0.0000043","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","7572"
"10:46:25.5482944 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json","0.0000072","CreationTime: 6/19/2019 4:53:40 PM, LastAccessTime: 3/26/2020 10:35:40 AM, LastWriteTime: 3/26/2020 10:35:40 AM, ChangeTime: 3/26/2020 10:35:40 AM, FileAttributes: A, AllocationSize: 288, EndOfFile: 288, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x25000000000a97, EaSize: 0, Access: Generic Read, Position: 0, Mode: Sequential Access, Synchronous IO Non-Alert, AlignmentRequirement: Word","7572"
"10:46:25.5483238 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json","0.0001207","Offset: 0, Length: 288, Priority: Normal","7572"
"10:46:25.5484155 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json","0.0000098","Offset: 0, Length: 288, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7572"
"10:46:25.5484659 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json","0.0000089","","7572"
"10:46:25.5503577 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000303","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","4500"
"10:46:25.5505548 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000227","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4500"
"10:46:25.5506304 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000042","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","4500"
"10:46:25.5506517 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000111","CreationTime: 6/19/2019 4:53:34 PM, LastAccessTime: 6/19/2019 4:53:34 PM, LastWriteTime: 6/19/2019 4:53:34 PM, ChangeTime: 6/19/2019 4:53:34 PM, FileAttributes: D, AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: True, IndexNumber: 0x21000000002d58, EaSize: 0, Access: Read Attributes, Synchronize, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","4500"
"10:46:25.5506790 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000060","","4500"
"10:46:25.5508834 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000209","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4500"
"10:46:25.5509265 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000038","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","4500"
"10:46:25.5509452 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000077","CreationTime: 6/19/2019 4:53:34 PM, LastAccessTime: 6/19/2019 4:53:34 PM, LastWriteTime: 6/19/2019 4:53:34 PM, ChangeTime: 6/19/2019 4:53:34 PM, FileAttributes: D, AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: True, IndexNumber: 0x21000000002d58, EaSize: 0, Access: Read Attributes, Synchronize, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","4500"
"10:46:25.5509691 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000060","","4500"
"10:46:25.5511394 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000209","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4500"
"10:46:25.5511825 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000030","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","4500"
"10:46:25.5512004 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000064","CreationTime: 6/19/2019 4:53:34 PM, LastAccessTime: 6/19/2019 4:53:34 PM, LastWriteTime: 6/19/2019 4:53:34 PM, ChangeTime: 6/19/2019 4:53:34 PM, FileAttributes: D, AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: True, IndexNumber: 0x21000000002d58, EaSize: 0, Access: Read Attributes, Synchronize, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","4500"
"10:46:25.5512221 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000056","","4500"
"10:46:25.5514154 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000333","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","4500"
"10:46:25.5514752 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000047","Exclusive: True, Offset: 0, Length: 1, Fail Immediately: True","4500"
"10:46:25.5514944 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000042","AllocationSize: 8,192, EndOfFile: 8,192, NumberOfLinks: 1, DeletePending: False, Directory: False","4500"
"10:46:25.5515183 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","4500"
"10:46:25.5515375 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000034","AllocationSize: 8,192, EndOfFile: 8,192, NumberOfLinks: 1, DeletePending: False, Directory: False","4500"
"10:46:25.5515690 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000026","SyncType: SyncTypeOther","4500"
"10:46:25.5516155 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000030","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","4500"
"10:46:25.5516330 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000081","CreationTime: 6/19/2019 4:53:34 PM, LastAccessTime: 6/19/2019 4:53:34 PM, LastWriteTime: 6/19/2019 4:53:34 PM, ChangeTime: 6/19/2019 4:53:34 PM, FileAttributes: A, AllocationSize: 8,192, EndOfFile: 8,192, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x16000000002d6d, EaSize: 0, Access: Generic Read/Write, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","4500"
"10:46:25.5518976 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000328","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","4500"
"10:46:25.5519560 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000158","Offset: 0, Length: 152, Priority: Normal","4500"
"10:46:25.5519889 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000047","Offset: 4,096, Length: 152","4500"
"10:46:25.5520196 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000567","EndOfFile: 1,048,576","4500"
"10:46:25.5520985 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000243","AllocationSize: 1,048,576","4500"
"10:46:25.5521446 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","4500"
"10:46:25.5521642 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000043","AllocationSize: 1,048,576, EndOfFile: 1,048,576, NumberOfLinks: 1, DeletePending: False, Directory: False","4500"
"10:46:25.5521975 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000026","SyncType: SyncTypeOther","4500"
"10:46:25.5524215 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000376","Desired Access: Generic Write, Read Attributes, Disposition: Open, Options: Write Through, Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","4500"
"10:46:25.5525333 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000068","Exclusive: False, Offset: 0, Length: 1, Fail Immediately: False","4500"
"10:46:25.5525555 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000034","Offset: 0, Length: 1","4500"
"10:46:25.5526626 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000597","Offset: 8,192, Length: 4,096, Priority: Normal","4500"
"10:46:25.5527381 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000060","Offset: 36,864, Length: 4,096","4500"
"10:46:25.5527552 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000042","Offset: 40,960, Length: 4,096","4500"
"10:46:25.5527773 AM","firefox.exe","7384","FlushBuffersFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.1233871","","4500"
"10:46:25.5528934 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0022532","Offset: 8,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","4500"
"10:46:25.5535475 AM","firefox.exe","7972","RegOpenKey","HKLM","0.0000081","Desired Access: Maximum Allowed, Granted Access: Read","8292"
"10:46:25.5535744 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.5535897 AM","firefox.exe","7972","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\msasn1","0.0000376","Desired Access: Read","8292"
"10:46:25.5536516 AM","firefox.exe","7972","RegOpenKey","HKLM\SOFTWARE\Microsoft\AppModel\Lookaside\Packages","0.0000077","Desired Access: Read","8292"
"10:46:25.5539255 AM","firefox.exe","1008","QueryNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000154","Name: \Program Files\Firefox Nightly\firefox.exe","1316"
"10:46:25.5543987 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy","0.0000094","Desired Access: Query Value","8292"
"10:46:25.5545173 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy","0.0000119","Desired Access: Query Value","8292"
"10:46:25.5545450 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy\Enabled","0.0000052","Type: REG_DWORD, Length: 4, Data: 0","8292"
"10:46:25.5545659 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000120","Desired Access: Query Value","8292"
"10:46:25.5545894 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000064","Desired Access: Query Value","8292"
"10:46:25.5546274 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy","0.0000047","Length: 20","8292"
"10:46:25.5546415 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy\MDMEnabled","0.0000038","Type: REG_DWORD, Length: 4, Data: 0","8292"
"10:46:25.5546590 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy","0.0000017","","8292"
"10:46:25.5546713 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000022","","8292"
"10:46:25.5547579 AM","firefox.exe","7972","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Policies\Microsoft\Cryptography\Configuration","0.0000073","Desired Access: Query Value","8292"
"10:46:25.5547759 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Policies\Microsoft\Cryptography\Configuration","0.0000059","Desired Access: Query Value","8292"
"10:46:25.5552478 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0004164","Offset: 36,864, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","4500"
"10:46:25.5553182 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000285","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5553604 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000055","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8292"
"10:46:25.5553762 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000085","","8292"
"10:46:25.5561066 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000244","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5561493 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000051","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8292"
"10:46:25.5561655 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000619","","8292"
"10:46:25.5563114 AM","firefox.exe","7972","QueryNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000060","Name: \Program Files\Firefox Nightly\firefox.exe","8292"
"10:46:25.5566698 AM","firefox.exe","7972","RegOpenKey","HKCU","0.0020741","Desired Access: Maximum Allowed, Granted Access: Read, Create Link","8292"
"10:46:25.5587669 AM","firefox.exe","7972","RegQueryKey","HKCU","0.0000021","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.5587835 AM","firefox.exe","7972","RegCreateKey","HKCU\SOFTWARE\Mozilla\Firefox\Launcher","0.0000901","Desired Access: All Access","8292"
"10:46:25.5588219 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000090","Information: Owner","8292"
"10:46:25.5588420 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000021","Information: Owner","8292"
"10:46:25.5588859 AM","firefox.exe","7972","RegQueryKey","HKCU","0.0000807","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.5589807 AM","firefox.exe","7972","RegCreateKey","HKCU\SOFTWARE","0.0003076","Desired Access: Maximum Allowed, Granted Access: Read, Create Link, Disposition: REG_OPENED_EXISTING_KEY","8292"
"10:46:25.5593190 AM","firefox.exe","7972","RegQueryKey","HKCU\Software","0.0000026","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.5593403 AM","firefox.exe","7972","RegCreateKey","HKCU\Software\Mozilla","0.0000086","Desired Access: Maximum Allowed, Granted Access: Read, Create Link, Disposition: REG_OPENED_EXISTING_KEY","8292"
"10:46:25.5593647 AM","firefox.exe","7972","RegCloseKey","HKCU\Software","0.0000017","","8292"
"10:46:25.5593805 AM","firefox.exe","7972","RegQueryKey","HKCU\Software\Mozilla","0.0000012","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.5594009 AM","firefox.exe","7972","RegCreateKey","HKCU\Software\Mozilla\Firefox","0.0000056","Desired Access: Maximum Allowed, Granted Access: Read, Create Link, Disposition: REG_OPENED_EXISTING_KEY","8292"
"10:46:25.5594189 AM","firefox.exe","7972","RegCloseKey","HKCU\Software\Mozilla","0.0000017","","8292"
"10:46:25.5594317 AM","firefox.exe","7972","RegQueryKey","HKCU\Software\Mozilla\Firefox","0.0000486","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.5594978 AM","firefox.exe","7972","RegCreateKey","HKCU\Software\Mozilla\Firefox\Launcher","0.0000836","Desired Access: All Access","8292"
"10:46:25.5595345 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000128","Information: Owner","8292"
"10:46:25.5595571 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000021","Information: Owner","8292"
"10:46:25.5595955 AM","firefox.exe","7972","RegCloseKey","HKCU\Software\Mozilla\Firefox","0.0014298","","8292"
"10:46:25.5610654 AM","firefox.exe","7972","RegQueryKey","HKCU","0.0000029","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.5610905 AM","firefox.exe","7972","RegCreateKey","HKCU\SOFTWARE\Mozilla\Firefox\Launcher","0.0001758","Desired Access: All Access","8292"
"10:46:25.5611242 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000931","Information: Owner","8292"
"10:46:25.5612318 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000034","Information: Owner","8292"
"10:46:25.5612830 AM","firefox.exe","7972","RegQueryKey","HKCU","0.0000025","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.5613030 AM","firefox.exe","7972","RegCreateKey","HKCU\SOFTWARE","0.0000465","Desired Access: Maximum Allowed, Granted Access: Read, Create Link, Disposition: REG_OPENED_EXISTING_KEY","8292"
"10:46:25.5613768 AM","firefox.exe","7972","RegQueryKey","HKCU\Software","0.0000081","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.5614011 AM","firefox.exe","7972","RegCreateKey","HKCU\Software\Mozilla","0.0000082","Desired Access: Maximum Allowed, Granted Access: Read, Create Link, Disposition: REG_OPENED_EXISTING_KEY","8292"
"10:46:25.5614250 AM","firefox.exe","7972","RegCloseKey","HKCU\Software","0.0000022","","8292"
"10:46:25.5614378 AM","firefox.exe","7972","RegQueryKey","HKCU\Software\Mozilla","0.0000022","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.5614511 AM","firefox.exe","7972","RegCreateKey","HKCU\Software\Mozilla\Firefox","0.0000047","Desired Access: Maximum Allowed, Granted Access: Read, Create Link, Disposition: REG_OPENED_EXISTING_KEY","8292"
"10:46:25.5614660 AM","firefox.exe","7972","RegCloseKey","HKCU\Software\Mozilla","0.0000017","","8292"
"10:46:25.5614754 AM","firefox.exe","7972","RegQueryKey","HKCU\Software\Mozilla\Firefox","0.0000008","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.5614848 AM","firefox.exe","7972","RegCreateKey","HKCU\Software\Mozilla\Firefox\Launcher","0.0002018","Desired Access: All Access","8292"
"10:46:25.5615035 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000047","Information: Owner","8292"
"10:46:25.5616426 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000384","Information: Owner","8292"
"10:46:25.5617002 AM","firefox.exe","7972","RegCloseKey","HKCU\Software\Mozilla\Firefox","0.0000017","","8292"
"10:46:25.5617310 AM","firefox.exe","7972","RegQueryKey","HKCU","0.0000021","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.5617467 AM","firefox.exe","7972","RegCreateKey","HKCU\SOFTWARE\Mozilla\Firefox\Launcher","0.0000406","Desired Access: All Access","8292"
"10:46:25.5617664 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000034","Information: Owner","8292"
"10:46:25.5617826 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000013","Information: Owner","8292"
"10:46:25.5618142 AM","firefox.exe","7972","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.5618308 AM","firefox.exe","7972","RegCreateKey","HKCU\SOFTWARE","0.0000077","Desired Access: Maximum Allowed, Granted Access: Read, Create Link, Disposition: REG_OPENED_EXISTING_KEY","8292"
"10:46:25.5618500 AM","firefox.exe","7972","RegQueryKey","HKCU\Software","0.0000060","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.5618688 AM","firefox.exe","7972","RegCreateKey","HKCU\Software\Mozilla","0.0000059","Desired Access: Maximum Allowed, Granted Access: Read, Create Link, Disposition: REG_OPENED_EXISTING_KEY","8292"
"10:46:25.5618871 AM","firefox.exe","7972","RegCloseKey","HKCU\Software","0.0000022","","8292"
"10:46:25.5618995 AM","firefox.exe","7972","RegQueryKey","HKCU\Software\Mozilla","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.5619127 AM","firefox.exe","7972","RegCreateKey","HKCU\Software\Mozilla\Firefox","0.0000047","Desired Access: Maximum Allowed, Granted Access: Read, Create Link, Disposition: REG_OPENED_EXISTING_KEY","8292"
"10:46:25.5619289 AM","firefox.exe","7972","RegCloseKey","HKCU\Software\Mozilla","0.0000017","","8292"
"10:46:25.5619400 AM","firefox.exe","7972","RegQueryKey","HKCU\Software\Mozilla\Firefox","0.0000064","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.5619601 AM","firefox.exe","7972","RegCreateKey","HKCU\Software\Mozilla\Firefox\Launcher","0.0000397","Desired Access: All Access","8292"
"10:46:25.5619789 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000025","Information: Owner","8292"
"10:46:25.5619946 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000017","Information: Owner","8292"
"10:46:25.5620121 AM","firefox.exe","7972","RegCloseKey","HKCU\Software\Mozilla\Firefox","0.0000017","","8292"
"10:46:25.5621482 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.5621636 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\Rpc","0.0000090","Desired Access: Read","8292"
"10:46:25.5621913 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Rpc\MaxRpcSize","0.0000034","Length: 16","8292"
"10:46:25.5622105 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Rpc","0.0000047","","8292"
"10:46:25.5622745 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\ComputerName\ActiveComputerName","0.0000081","Desired Access: Read","8292"
"10:46:25.5622942 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\ComputerName\ActiveComputerName","0.0000153","Desired Access: Read","8292"
"10:46:25.5623215 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\ComputerName\ActiveComputerName\ComputerName","0.0000042","Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","8292"
"10:46:25.5623377 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\ComputerName\ActiveComputerName","0.0000017","","8292"
"10:46:25.5623530 AM","firefox.exe","7972","RegOpenKey","HKLM\System\Setup","0.0000235","Desired Access: Read","8292"
"10:46:25.5623889 AM","firefox.exe","7972","RegQueryValue","HKLM\SYSTEM\Setup\OOBEInProgress","0.0000047","Type: REG_DWORD, Length: 4, Data: 0","8292"
"10:46:25.5624051 AM","firefox.exe","7972","RegCloseKey","HKLM\SYSTEM\Setup","0.0003102","","8292"
"10:46:25.5627396 AM","firefox.exe","7972","RegOpenKey","HKLM\System\Setup","0.0001263","Desired Access: Read","8292"
"10:46:25.5628847 AM","firefox.exe","7972","RegQueryValue","HKLM\SYSTEM\Setup\SystemSetupInProgress","0.0000076","Type: REG_DWORD, Length: 4, Data: 0","8292"
"10:46:25.5629073 AM","firefox.exe","7972","RegCloseKey","HKLM\SYSTEM\Setup","0.0000030","","8292"
"10:46:25.5629389 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options","0.0000627","Desired Access: Query Value, Enumerate Sub Keys","8292"
"10:46:25.5630195 AM","firefox.exe","7972","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000060","Desired Access: Query Value, Enumerate Sub Keys","8292"
"10:46:25.5631283 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0051319","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.5655927 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.1111306","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7508"
"10:46:25.5682901 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\Rpc","0.0000457","Desired Access: Read","8292"
"10:46:25.5685657 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000052","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.5685939 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\Rpc","0.0000115","Desired Access: Query Value","8292"
"10:46:25.5686225 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Rpc\IdleTimerWindow","0.0000047","Length: 16","8292"
"10:46:25.5686455 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Rpc","0.0000022","","8292"
"10:46:25.5715575 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5716109 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000183","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8292"
"10:46:25.5716412 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000081","","8292"
"10:46:25.5719385 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\dependentlibs.list","0.0000239","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5720089 AM","firefox.exe","7972","ReadFile","C:\Program Files\Firefox Nightly\dependentlibs.list","0.0000167","Offset: 0, Length: 476, Priority: Normal","8292"
"10:46:25.5724121 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000555","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5724642 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.5724813 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000051","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","8292"
"10:46:25.5724979 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000708","","8292"
"10:46:25.5725064 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000035","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","5728"
"10:46:25.5725282 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000077","","5728"
"10:46:25.5730065 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0001621","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5732992 AM","firefox.exe","7972","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000273","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.5734438 AM","firefox.exe","7972","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000141","SyncType: SyncTypeOther","8292"
"10:46:25.5735885 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000401","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.5770735 AM","firefox.exe","7972","Load Image","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000000","Image Base: 0x7ffb3c6b0000, Image Size: 0x16000","8292"
"10:46:25.5771379 AM","firefox.exe","7972","QueryNameInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000243","Name: \Program Files\Firefox Nightly\vcruntime140.dll","8292"
"10:46:25.5773205 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000337","","8292"
"10:46:25.5779610 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0002077","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5781871 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000055","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8292"
"10:46:25.5782071 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000124","","8292"
"10:46:25.5784026 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0001126","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5785429 AM","firefox.exe","7972","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000103","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.5785843 AM","firefox.exe","7972","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000034","SyncType: SyncTypeOther","8292"
"10:46:25.5786312 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000043","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.5786910 AM","firefox.exe","7972","Load Image","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000000","Image Base: 0x7ffb32080000, Image Size: 0x9b000","8292"
"10:46:25.5787238 AM","firefox.exe","7972","QueryNameInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000064","Name: \Program Files\Firefox Nightly\msvcp140.dll","8292"
"10:46:25.5791744 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000098","","8292"
"10:46:25.5798421 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5798801 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000051","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8292"
"10:46:25.5798950 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000073","","8292"
"10:46:25.5800572 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0003230","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5811068 AM","firefox.exe","7972","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000554","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.5812770 AM","firefox.exe","7972","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000094","SyncType: SyncTypeOther","8292"
"10:46:25.5871155 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000081","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.5871898 AM","firefox.exe","7972","Load Image","C:\Program Files\Firefox Nightly\nss3.dll","0.0000000","Image Base: 0x7ffb1da70000, Image Size: 0x21d000","8292"
"10:46:25.5872354 AM","firefox.exe","7972","QueryNameInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000103","Name: \Program Files\Firefox Nightly\nss3.dll","8292"
"10:46:25.5873950 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\ws2_32.dll","0.0000043","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.5910712 AM","firefox.exe","7972","Load Image","C:\Windows\System32\ws2_32.dll","0.0000000","Image Base: 0x7ffb48bc0000, Image Size: 0x6c000","8292"
"10:46:25.5912644 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\ws2_32.dll","0.0000632","Name: \Windows\System32\ws2_32.dll","8292"
"10:46:25.5926673 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000107","","8292"
"10:46:25.5930296 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\winmm.dll","0.0000251","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5930850 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000060","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","8292"
"10:46:25.5931025 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\winmm.dll","0.0000073","","8292"
"10:46:25.5932826 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\winmm.dll","0.0000209","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5933415 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.5933764 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000022","SyncType: SyncTypeOther","8292"
"10:46:25.5934110 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\winmm.dll","0.0000047","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.5936000 AM","firefox.exe","7972","Load Image","C:\Windows\System32\winmm.dll","0.0000000","Image Base: 0x7ffb437c0000, Image Size: 0x23000","8292"
"10:46:25.5936299 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\winmm.dll","0.0000081","Name: \Windows\System32\winmm.dll","8292"
"10:46:25.5939797 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\winmm.dll","0.0000103","","8292"
"10:46:25.5943714 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\wsock32.dll","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5944235 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","8292"
"10:46:25.5944397 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\wsock32.dll","0.0000068","","8292"
"10:46:25.5946069 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\wsock32.dll","0.0000210","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5946654 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.5947076 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000077","SyncType: SyncTypeOther","8292"
"10:46:25.5947618 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\wsock32.dll","0.0000047","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.5948446 AM","firefox.exe","7972","Load Image","C:\Windows\System32\wsock32.dll","0.0000000","Image Base: 0x7ffb3c880000, Image Size: 0x9000","8292"
"10:46:25.5949052 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\wsock32.dll","0.0000094","Name: \Windows\System32\wsock32.dll","8292"
"10:46:25.5950340 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\wsock32.dll","0.0000107","","8292"
"10:46:25.5954471 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5954808 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000042","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","8292"
"10:46:25.5954957 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000060","","8292"
"10:46:25.5956770 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000231","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5957223 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.5957560 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000025","SyncType: SyncTypeOther","8292"
"10:46:25.5957914 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\winmmbase.dll","0.0000042","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.5958520 AM","firefox.exe","7972","Load Image","C:\Windows\System32\winmmbase.dll","0.0000000","Image Base: 0x7ffb43790000, Image Size: 0x2a000","8292"
"10:46:25.5958780 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\winmmbase.dll","0.0000064","Name: \Windows\System32\winmmbase.dll","8292"
"10:46:25.5960619 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\cfgmgr32.dll","0.0000055","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.5961451 AM","firefox.exe","7972","Load Image","C:\Windows\System32\cfgmgr32.dll","0.0000000","Image Base: 0x7ffb45f00000, Image Size: 0x49000","8292"
"10:46:25.5961758 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000085","Name: \Windows\System32\cfgmgr32.dll","8292"
"10:46:25.5963473 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000098","","8292"
"10:46:25.5971857 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000278","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5972267 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","8292"
"10:46:25.5972425 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000072","","8292"
"10:46:25.5991151 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.5991531 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000213","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","8292"
"10:46:25.5991855 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000064","","8292"
"10:46:25.6001732 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6002104 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000047","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8292"
"10:46:25.6002266 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000068","","8292"
"10:46:25.6004019 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000256","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6004536 AM","firefox.exe","7972","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.6004860 AM","firefox.exe","7972","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000021","SyncType: SyncTypeOther","8292"
"10:46:25.6005197 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000043","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6005726 AM","firefox.exe","7972","Load Image","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000000","Image Base: 0x7ffb3c680000, Image Size: 0xd000","8292"
"10:46:25.6006080 AM","firefox.exe","7972","QueryNameInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000081","Name: \Program Files\Firefox Nightly\lgpllibs.dll","8292"
"10:46:25.6007480 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000094","","8292"
"10:46:25.6012062 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6012497 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000052","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","8292"
"10:46:25.6012668 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000085","","8292"
"10:46:25.6014533 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000192","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6014959 AM","firefox.exe","7972","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.6015296 AM","firefox.exe","7972","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000030","SyncType: SyncTypeOther","8292"
"10:46:25.6015710 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000047","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6016862 AM","firefox.exe","7972","Load Image","C:\Program Files\Firefox Nightly\xul.dll","0.0000000","Image Base: 0x7ffb07c80000, Image Size: 0x6988000","8292"
"10:46:25.6017306 AM","firefox.exe","7972","QueryNameInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000077","Name: \Program Files\Firefox Nightly\xul.dll","8292"
"10:46:25.6018991 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\user32.dll","0.0000047","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6019917 AM","firefox.exe","7972","Load Image","C:\Windows\System32\user32.dll","0.0000000","Image Base: 0x7ffb488d0000, Image Size: 0x190000","8292"
"10:46:25.6020749 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\user32.dll","0.0000068","Name: \Windows\System32\user32.dll","8292"
"10:46:25.6022230 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\win32u.dll","0.0000042","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6022831 AM","firefox.exe","7972","Load Image","C:\Windows\System32\win32u.dll","0.0000000","Image Base: 0x7ffb45f50000, Image Size: 0x20000","8292"
"10:46:25.6023130 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\win32u.dll","0.0000060","Name: \Windows\System32\win32u.dll","8292"
"10:46:25.6024649 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\gdi32.dll","0.0000051","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6025340 AM","firefox.exe","7972","Load Image","C:\Windows\System32\gdi32.dll","0.0000000","Image Base: 0x7ffb47170000, Image Size: 0x28000","8292"
"10:46:25.6025579 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\gdi32.dll","0.0000051","Name: \Windows\System32\gdi32.dll","8292"
"10:46:25.6026872 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\gdi32full.dll","0.0000055","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6027546 AM","firefox.exe","7972","Load Image","C:\Windows\System32\gdi32full.dll","0.0000000","Image Base: 0x7ffb45c00000, Image Size: 0x192000","8292"
"10:46:25.6027896 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\gdi32full.dll","0.0000064","Name: \Windows\System32\gdi32full.dll","8292"
"10:46:25.6029133 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\msvcp_win.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6029718 AM","firefox.exe","7972","Load Image","C:\Windows\System32\msvcp_win.dll","0.0000000","Image Base: 0x7ffb46680000, Image Size: 0x9f000","8292"
"10:46:25.6029995 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000060","Name: \Windows\System32\msvcp_win.dll","8292"
"10:46:25.6032261 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\shell32.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6034565 AM","firefox.exe","7972","Load Image","C:\Windows\System32\shell32.dll","0.0000000","Image Base: 0x7ffb472f0000, Image Size: 0x1440000","8292"
"10:46:25.6034961 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\shell32.dll","0.0000064","Name: \Windows\System32\shell32.dll","8292"
"10:46:25.6037274 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\SHCore.dll","0.0000043","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6037875 AM","firefox.exe","7972","Load Image","C:\Windows\System32\SHCore.dll","0.0000000","Image Base: 0x7ffb48b10000, Image Size: 0xa9000","8292"
"10:46:25.6038174 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\SHCore.dll","0.0000060","Name: \Windows\System32\SHCore.dll","8292"
"10:46:25.6039834 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\combase.dll","0.0000051","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6040636 AM","firefox.exe","7972","Load Image","C:\Windows\System32\combase.dll","0.0000000","Image Base: 0x7ffb46d80000, Image Size: 0x322000","8292"
"10:46:25.6040994 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\combase.dll","0.0000120","Name: \Windows\System32\combase.dll","8292"
"10:46:25.6045662 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\windows.storage.dll","0.0000047","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6046776 AM","firefox.exe","7972","Load Image","C:\Windows\System32\windows.storage.dll","0.0000000","Image Base: 0x7ffb45f70000, Image Size: 0x70d000","8292"
"10:46:25.6047091 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\windows.storage.dll","0.0000060","Name: \Windows\System32\windows.storage.dll","8292"
"10:46:25.6047407 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6047958 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000055","CreationTime: 6/19/2019 4:53:26 PM, LastAccessTime: 3/26/2020 10:46:23 AM, LastWriteTime: 3/26/2020 10:46:23 AM, ChangeTime: 3/26/2020 10:46:23 AM, FileAttributes: D","5728"
"10:46:25.6048265 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000072","","5728"
"10:46:25.6049041 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\shlwapi.dll","0.0000039","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6049882 AM","firefox.exe","7972","Load Image","C:\Windows\System32\shlwapi.dll","0.0000000","Image Base: 0x7ffb490e0000, Image Size: 0x51000","8292"
"10:46:25.6050163 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\shlwapi.dll","0.0000060","Name: \Windows\System32\shlwapi.dll","8292"
"10:46:25.6050722 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000205","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6051205 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000179","Filter: lq450czk.test, 1: lq450czk.test","5728"
"10:46:25.6051909 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\kernel.appcore.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6052433 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000081","","5728"
"10:46:25.6052463 AM","firefox.exe","7972","Load Image","C:\Windows\System32\kernel.appcore.dll","0.0000000","Image Base: 0x7ffb45af0000, Image Size: 0x11000","8292"
"10:46:25.6052706 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000060","Name: \Windows\System32\kernel.appcore.dll","8292"
"10:46:25.6054119 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\profapi.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6054665 AM","firefox.exe","7972","Load Image","C:\Windows\System32\profapi.dll","0.0000000","Image Base: 0x7ffb45b30000, Image Size: 0x1f000","8292"
"10:46:25.6054921 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\profapi.dll","0.0000060","Name: \Windows\System32\profapi.dll","8292"
"10:46:25.6054998 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000158","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","5728"
"10:46:25.6056372 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\powrprof.dll","0.0000029","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6056913 AM","firefox.exe","7972","Load Image","C:\Windows\System32\powrprof.dll","0.0000000","Image Base: 0x7ffb45aa0000, Image Size: 0x4c000","8292"
"10:46:25.6056969 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000217","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6057165 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\powrprof.dll","0.0000056","Name: \Windows\System32\powrprof.dll","8292"
"10:46:25.6058168 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000072","Control: FSCTL_GET_REPARSE_POINT","5728"
"10:46:25.6058488 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000072","","5728"
"10:46:25.6059128 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\fltLib.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6059623 AM","firefox.exe","7972","Load Image","C:\Windows\System32\fltLib.dll","0.0000000","Image Base: 0x7ffb45a90000, Image Size: 0xa000","8292"
"10:46:25.6059866 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\fltLib.dll","0.0000055","Name: \Windows\System32\fltLib.dll","8292"
"10:46:25.6060523 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000205","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6060984 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000060","","5728"
"10:46:25.6061295 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\ole32.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6061880 AM","firefox.exe","7972","Load Image","C:\Windows\System32\ole32.dll","0.0000000","Image Base: 0x7ffb491a0000, Image Size: 0x151000","8292"
"10:46:25.6062149 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\ole32.dll","0.0000051","Name: \Windows\System32\ole32.dll","8292"
"10:46:25.6062985 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000200","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6064342 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\imm32.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6064815 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000026","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","5728"
"10:46:25.6064973 AM","firefox.exe","7972","Load Image","C:\Windows\System32\imm32.dll","0.0000000","Image Base: 0x7ffb48730000, Image Size: 0x2d000","8292"
"10:46:25.6065093 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000085","","5728"
"10:46:25.6065272 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\imm32.dll","0.0000060","Name: \Windows\System32\imm32.dll","8292"
"10:46:25.6067290 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\setupapi.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6067375 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000205","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6067896 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000055","Control: FSCTL_GET_REPARSE_POINT","5728"
"10:46:25.6068173 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000060","","5728"
"10:46:25.6068839 AM","firefox.exe","7972","Load Image","C:\Windows\System32\setupapi.dll","0.0000000","Image Base: 0x7ffb49300000, Image Size: 0x44b000","8292"
"10:46:25.6069184 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\setupapi.dll","0.0000111","Name: \Windows\System32\setupapi.dll","8292"
"10:46:25.6070609 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000150","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","5728"
"10:46:25.6071245 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\oleaut32.dll","0.0000039","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6071860 AM","firefox.exe","7972","Load Image","C:\Windows\System32\oleaut32.dll","0.0000000","Image Base: 0x7ffb46c10000, Image Size: 0xc2000","8292"
"10:46:25.6072167 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\oleaut32.dll","0.0000059","Name: \Windows\System32\oleaut32.dll","8292"
"10:46:25.6072632 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000200","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6073161 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000055","Control: FSCTL_GET_REPARSE_POINT","5728"
"10:46:25.6073464 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000064","","5728"
"10:46:25.6073937 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000124","","8292"
"10:46:25.6077334 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000209","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6077803 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000060","","5728"
"10:46:25.6079599 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000184","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6080401 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000026","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","5728"
"10:46:25.6080670 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000086","","5728"
"10:46:25.6082816 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000205","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6083337 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000060","Control: FSCTL_GET_REPARSE_POINT","5728"
"10:46:25.6083623 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000068","","5728"
"10:46:25.6085317 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000123","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","5728"
"10:46:25.6086772 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000179","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6087228 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000051","Control: FSCTL_GET_REPARSE_POINT","5728"
"10:46:25.6087493 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000059","","5728"
"10:46:25.6089037 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000162","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6089442 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000052","","5728"
"10:46:25.6091008 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000171","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6091610 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000013","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","5728"
"10:46:25.6091819 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000060","","5728"
"10:46:25.6093530 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000183","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6094042 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000068","Control: FSCTL_GET_REPARSE_POINT","5728"
"10:46:25.6094336 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000064","","5728"
"10:46:25.6096090 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000132","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","5728"
"10:46:25.6097639 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000179","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6098104 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000051","Control: FSCTL_GET_REPARSE_POINT","5728"
"10:46:25.6098368 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000060","","5728"
"10:46:25.6098697 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\avrt.dll","0.0000448","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6099358 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","8292"
"10:46:25.6100118 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000170","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6100523 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000060","","5728"
"10:46:25.6102272 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000218","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6102447 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\avrt.dll","0.0000077","","8292"
"10:46:25.6103066 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000021","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","5728"
"10:46:25.6103301 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000068","","5728"
"10:46:25.6104542 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\avrt.dll","0.0000175","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6104986 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000166","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6105101 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.6105451 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000064","Control: FSCTL_GET_REPARSE_POINT","5728"
"10:46:25.6105455 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0004967","SyncType: SyncTypeOther","8292"
"10:46:25.6105745 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000060","","5728"
"10:46:25.6107683 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000106","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","5728"
"10:46:25.6109120 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000163","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6109577 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming","0.0000060","Control: FSCTL_GET_REPARSE_POINT","5728"
"10:46:25.6109876 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000072","","5728"
"10:46:25.6110848 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\avrt.dll","0.0000043","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6111561 AM","firefox.exe","7972","Load Image","C:\Windows\System32\avrt.dll","0.0000000","Image Base: 0x7ffb415a0000, Image Size: 0xa000","8292"
"10:46:25.6111578 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000162","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6111830 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\avrt.dll","0.0000064","Name: \Windows\System32\avrt.dll","8292"
"10:46:25.6112022 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000059","","5728"
"10:46:25.6112926 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\avrt.dll","0.0000086","","8292"
"10:46:25.6113575 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000149","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6114385 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming","0.0000026","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","5728"
"10:46:25.6114637 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000068","","5728"
"10:46:25.6116378 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000171","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6116843 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming","0.0000056","Control: FSCTL_GET_REPARSE_POINT","5728"
"10:46:25.6117108 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000059","","5728"
"10:46:25.6118686 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000103","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","5728"
"10:46:25.6119215 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\usp10.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6119672 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000043","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","8292"
"10:46:25.6119821 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\usp10.dll","0.0000056","","8292"
"10:46:25.6120081 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000150","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6120508 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000047","Control: FSCTL_GET_REPARSE_POINT","5728"
"10:46:25.6120764 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000056","","5728"
"10:46:25.6122339 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000162","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6122548 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\usp10.dll","0.0000239","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6122735 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000098","","5728"
"10:46:25.6123166 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.6123563 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000026","SyncType: SyncTypeOther","8292"
"10:46:25.6123960 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\usp10.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6124429 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000141","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6124899 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData","0.0000012","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","5728"
"10:46:25.6125061 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000047","","5728"
"10:46:25.6126055 AM","firefox.exe","7972","Load Image","C:\Windows\System32\usp10.dll","0.0000000","Image Base: 0x7ffb413c0000, Image Size: 0x19000","8292"
"10:46:25.6126422 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\usp10.dll","0.0000059","Name: \Windows\System32\usp10.dll","8292"
"10:46:25.6126524 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000218","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6127028 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000055","Control: FSCTL_GET_REPARSE_POINT","5728"
"10:46:25.6127279 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000060","","5728"
"10:46:25.6128824 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","5728"
"10:46:25.6130147 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000132","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6130505 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000047","Control: FSCTL_GET_REPARSE_POINT","5728"
"10:46:25.6130752 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000056","","5728"
"10:46:25.6132600 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000179","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6133031 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000055","","5728"
"10:46:25.6134477 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000128","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6134938 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles","0.0000017","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","5728"
"10:46:25.6135143 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000064","","5728"
"10:46:25.6135881 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\usp10.dll","0.0000072","","8292"
"10:46:25.6136739 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000136","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6137174 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000055","Control: FSCTL_GET_REPARSE_POINT","5728"
"10:46:25.6137434 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000055","","5728"
"10:46:25.6139034 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000107","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","5728"
"10:46:25.6140433 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000137","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6140856 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000047","Control: FSCTL_GET_REPARSE_POINT","5728"
"10:46:25.6141163 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000077","","5728"
"10:46:25.6142840 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000141","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6143228 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000051","","5728"
"10:46:25.6144709 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000136","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6145285 AM","firefox.exe","7384","DeviceIoControl","C:\Users","0.0000017","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","5728"
"10:46:25.6145507 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000055","","5728"
"10:46:25.6146531 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\d3d11.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6147008 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000141","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6147107 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000093","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","8292"
"10:46:25.6147328 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\d3d11.dll","0.0000077","","8292"
"10:46:25.6147461 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000047","Control: FSCTL_GET_REPARSE_POINT","5728"
"10:46:25.6147704 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000055","","5728"
"10:46:25.6149005 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\d3d11.dll","0.0000205","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6149590 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.6150080 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000026","SyncType: SyncTypeOther","8292"
"10:46:25.6150435 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\d3d11.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6151254 AM","firefox.exe","7972","Load Image","C:\Windows\System32\d3d11.dll","0.0000000","Image Base: 0x7ffb428e0000, Image Size: 0x30b000","8292"
"10:46:25.6151625 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\d3d11.dll","0.0000111","Name: \Windows\System32\d3d11.dll","8292"
"10:46:25.6153494 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\d3d11.dll","0.0000102","","8292"
"10:46:25.6154906 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6155512 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","5728"
"10:46:25.6155789 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000064","","5728"
"10:46:25.6156783 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\dxgi.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6157227 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000043","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","8292"
"10:46:25.6157376 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\dxgi.dll","0.0000111","","8292"
"10:46:25.6157445 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000495","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.6158341 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000068","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:25.6158883 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000025","SyncType: SyncTypeOther","5728"
"10:46:25.6159629 AM","firefox.exe","7384","Load Image","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000000","Image Base: 0x7ffb3c840000, Image Size: 0x40000","5728"
"10:46:25.6159983 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000056","Name: \Program Files\Firefox Nightly\softokn3.dll","5728"
"10:46:25.6160478 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\dxgi.dll","0.0000197","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6161016 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.6161336 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000021","SyncType: SyncTypeOther","8292"
"10:46:25.6161669 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\dxgi.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6161754 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000081","","5728"
"10:46:25.6162309 AM","firefox.exe","7972","Load Image","C:\Windows\System32\dxgi.dll","0.0000000","Image Base: 0x7ffb44850000, Image Size: 0xbb000","8292"
"10:46:25.6162586 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\dxgi.dll","0.0000064","Name: \Windows\System32\dxgi.dll","8292"
"10:46:25.6163239 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0804750","Offset: 46,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.6164182 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\dxgi.dll","0.0000094","","8292"
"10:46:25.6167151 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6167625 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000043","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","8292"
"10:46:25.6167770 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000064","","8292"
"10:46:25.6169280 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000201","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6169844 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000059","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.6170752 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000035","SyncType: SyncTypeOther","8292"
"10:46:25.6171128 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000051","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6172361 AM","firefox.exe","7972","Load Image","C:\Windows\System32\IPHLPAPI.DLL","0.0000000","Image Base: 0x7ffb45030000, Image Size: 0x38000","8292"
"10:46:25.6172647 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000064","Name: \Windows\System32\IPHLPAPI.DLL","8292"
"10:46:25.6173991 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000102","","8292"
"10:46:25.6178292 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6178791 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","8292"
"10:46:25.6178949 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000068","","8292"
"10:46:25.6180544 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000192","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6181069 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.6181389 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000026","SyncType: SyncTypeOther","8292"
"10:46:25.6181714 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\dnsapi.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6182345 AM","firefox.exe","7972","Load Image","C:\Windows\System32\dnsapi.dll","0.0000000","Image Base: 0x7ffb45070000, Image Size: 0xbe000","8292"
"10:46:25.6182733 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\dnsapi.dll","0.0000090","Name: \Windows\System32\dnsapi.dll","8292"
"10:46:25.6184598 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\nsi.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6185093 AM","firefox.exe","7972","Load Image","C:\Windows\System32\nsi.dll","0.0000000","Image Base: 0x7ffb490d0000, Image Size: 0x8000","8292"
"10:46:25.6185319 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\nsi.dll","0.0000085","Name: \Windows\System32\nsi.dll","8292"
"10:46:25.6187004 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000098","","8292"
"10:46:25.6190119 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6190575 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","8292"
"10:46:25.6190733 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000064","","8292"
"10:46:25.6192333 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000218","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6192905 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.6193238 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000025","SyncType: SyncTypeOther","8292"
"10:46:25.6193575 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\dwmapi.dll","0.0000030","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6194236 AM","firefox.exe","7972","Load Image","C:\Windows\System32\dwmapi.dll","0.0000000","Image Base: 0x7ffb44200000, Image Size: 0x29000","8292"
"10:46:25.6194492 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\dwmapi.dll","0.0000064","Name: \Windows\System32\dwmapi.dll","8292"
"10:46:25.6195794 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000081","","8292"
"10:46:25.6198691 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6199143 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000047","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","8292"
"10:46:25.6199296 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000069","","8292"
"10:46:25.6200807 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000192","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6201374 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000116","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.6201865 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000021","SyncType: SyncTypeOther","8292"
"10:46:25.6202228 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\uxtheme.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6202953 AM","firefox.exe","7972","Load Image","C:\Windows\System32\uxtheme.dll","0.0000000","Image Base: 0x7ffb43f70000, Image Size: 0x98000","8292"
"10:46:25.6203256 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\uxtheme.dll","0.0000072","Name: \Windows\System32\uxtheme.dll","8292"
"10:46:25.6204933 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000094","","8292"
"10:46:25.6209643 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6210151 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000047","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","8292"
"10:46:25.6210313 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000068","","8292"
"10:46:25.6211845 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000243","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6212536 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.6212899 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000021","SyncType: SyncTypeOther","8292"
"10:46:25.6213236 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\wtsapi32.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6213893 AM","firefox.exe","7972","Load Image","C:\Windows\System32\wtsapi32.dll","0.0000000","Image Base: 0x7ffb42730000, Image Size: 0x13000","8292"
"10:46:25.6214149 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000068","Name: \Windows\System32\wtsapi32.dll","8292"
"10:46:25.6215420 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000094","","8292"
"10:46:25.6218693 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6219171 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000047","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","8292"
"10:46:25.6219333 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000068","","8292"
"10:46:25.6220822 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000183","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6221385 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000107","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.6221820 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000030","SyncType: SyncTypeOther","8292"
"10:46:25.6222204 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\dhcpcsvc.dll","0.0000039","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6222823 AM","firefox.exe","7972","Load Image","C:\Windows\System32\dhcpcsvc.dll","0.0000000","Image Base: 0x7ffb3be40000, Image Size: 0x1a000","8292"
"10:46:25.6223062 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000055","Name: \Windows\System32\dhcpcsvc.dll","8292"
"10:46:25.6224577 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000085","","8292"
"10:46:25.6229099 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\userenv.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6229586 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","8292"
"10:46:25.6229748 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\userenv.dll","0.0000064","","8292"
"10:46:25.6231267 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\userenv.dll","0.0000196","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6231804 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.6232133 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000021","SyncType: SyncTypeOther","8292"
"10:46:25.6232572 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\userenv.dll","0.0000047","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6233485 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000401\Layout File","0.0008512","Type: REG_SZ, Length: 20, Data: KBDA1.DLL","2512"
"10:46:25.6233630 AM","firefox.exe","7972","Load Image","C:\Windows\System32\userenv.dll","0.0000000","Image Base: 0x7ffb459c0000, Image Size: 0x28000","8292"
"10:46:25.6233891 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\userenv.dll","0.0000059","Name: \Windows\System32\userenv.dll","8292"
"10:46:25.6235410 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\userenv.dll","0.0000081","","8292"
"10:46:25.6238315 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6238639 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000039","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","8292"
"10:46:25.6238772 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000059","","8292"
"10:46:25.6240303 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000175","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6240743 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.6241050 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000021","SyncType: SyncTypeOther","8292"
"10:46:25.6241357 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000030","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6242300 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000401","0.0000026","","2512"
"10:46:25.6242518 AM","firefox.exe","7972","Load Image","C:\Windows\System32\D3DCompiler_47.dll","0.0000000","Image Base: 0x7ffb42bf0000, Image Size: 0x42f000","8292"
"10:46:25.6242761 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000060","Name: \Windows\System32\D3DCompiler_47.dll","8292"
"10:46:25.6244156 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000086","","8292"
"10:46:25.6247262 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\dxgi.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6247727 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000043","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","8292"
"10:46:25.6247873 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\dxgi.dll","0.0000059","","8292"
"10:46:25.6261586 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6262055 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","8292"
"10:46:25.6262204 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000069","","8292"
"10:46:25.6263698 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000183","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6264257 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.6264611 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000021","SyncType: SyncTypeOther","8292"
"10:46:25.6264948 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\cryptsp.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6265788 AM","firefox.exe","7972","Load Image","C:\Windows\System32\cryptsp.dll","0.0000000","Image Base: 0x7ffb45460000, Image Size: 0x17000","8292"
"10:46:25.6266070 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\cryptsp.dll","0.0000077","Name: \Windows\System32\cryptsp.dll","8292"
"10:46:25.6267324 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000094","","8292"
"10:46:25.6274441 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000064","Index: 1, Name: 00000402","2512"
"10:46:25.6274701 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6274928 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000402","0.0000115","Desired Access: Query Value","2512"
"10:46:25.6275222 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000402\Layout File","0.0000043","Type: REG_SZ, Length: 20, Data: KBDBU.DLL","2512"
"10:46:25.6275461 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000402","0.0000025","","2512"
"10:46:25.6275653 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000043","Index: 2, Name: 00000404","2512"
"10:46:25.6275824 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6275990 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000404","0.0000090","Desired Access: Query Value","2512"
"10:46:25.6276220 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000404\Layout File","0.0000039","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:25.6276400 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000404","0.0000017","","2512"
"10:46:25.6276404 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\imm32.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6276553 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 3, Name: 00000405","2512"
"10:46:25.6276694 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6276848 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000405","0.0000076","Desired Access: Query Value","2512"
"10:46:25.6276890 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000047","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","8292"
"10:46:25.6277044 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\imm32.dll","0.0000072","","8292"
"10:46:25.6277065 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000405\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDCZ.DLL","2512"
"10:46:25.6277240 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000405","0.0000017","","2512"
"10:46:25.6277377 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 4, Name: 00000406","2512"
"10:46:25.6277513 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6277654 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000406","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6277850 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000406\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDDA.DLL","2512"
"10:46:25.6278012 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000406","0.0000017","","2512"
"10:46:25.6278157 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 5, Name: 00000407","2512"
"10:46:25.6278298 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6278443 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000407","0.0000077","Desired Access: Query Value","2512"
"10:46:25.6278661 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000407\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDGR.DLL","2512"
"10:46:25.6278827 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000407","0.0000013","","2512"
"10:46:25.6278964 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 6, Name: 00000408","2512"
"10:46:25.6279105 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6279245 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000408","0.0000073","Desired Access: Query Value","2512"
"10:46:25.6279450 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000408\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDHE.DLL","2512"
"10:46:25.6279612 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000408","0.0000017","","2512"
"10:46:25.6279749 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 7, Name: 00000409","2512"
"10:46:25.6279894 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6280039 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000409","0.0000073","Desired Access: Query Value","2512"
"10:46:25.6280248 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000409\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:25.6280346 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\imm32.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6280402 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000409","0.0000017","","2512"
"10:46:25.6280534 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0007548","Index: 8, Name: 0000040a","2512"
"10:46:25.6280969 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000073","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","8292"
"10:46:25.6281195 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\imm32.dll","0.0000128","","8292"
"10:46:25.6282974 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Error Message Instrument\","0.0000137","Desired Access: Read","8292"
"10:46:25.6283273 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Error Message Instrument","0.0000111","Desired Access: Read","8292"
"10:46:25.6284647 AM","firefox.exe","7972","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000119","Desired Access: Query Value, Enumerate Sub Keys","8292"
"10:46:25.6284984 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Display","0.0000149","Desired Access: Read","8292"
"10:46:25.6285509 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Display","0.0000077","Desired Access: Read","8292"
"10:46:25.6285744 AM","firefox.exe","7972","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000051","Desired Access: Query Value, Enumerate Sub Keys","8292"
"10:46:25.6285940 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Display","0.0000064","Desired Access: Read","8292"
"10:46:25.6286136 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Display","0.0000081","Desired Access: Read","8292"
"10:46:25.6286669 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\GRE_Initialize","0.0000248","Desired Access: Read","8292"
"10:46:25.6287126 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize\DisableMetaFiles","0.0000094","Length: 20","8292"
"10:46:25.6287365 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize","0.0000025","","8292"
"10:46:25.6288001 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Control Panel\Desktop","0.0000076","Desired Access: Read","8292"
"10:46:25.6288295 AM","firefox.exe","7972","RegOpenKey","HKCU\Software\Policies\Microsoft\Windows\Control Panel\Desktop","0.0000094","Desired Access: Read","8292"
"10:46:25.6288333 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6288568 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040a","0.0000102","Desired Access: Query Value","2512"
"10:46:25.6288581 AM","firefox.exe","7972","RegOpenKey","HKCU\Control Panel\Desktop","0.0000064","Desired Access: Read","8292"
"10:46:25.6288828 AM","firefox.exe","7972","RegQueryValue","HKCU\Control Panel\Desktop\EnablePerProcessSystemDPI","0.0000052","Length: 20","8292"
"10:46:25.6288858 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040a\Layout File","0.0000047","Type: REG_SZ, Length: 20, Data: KBDSP.DLL","2512"
"10:46:25.6289067 AM","firefox.exe","7972","RegCloseKey","HKCU\Control Panel\Desktop","0.0000017","","8292"
"10:46:25.6289093 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040a","0.0000060","","2512"
"10:46:25.6289417 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000043","Index: 9, Name: 0000040b","2512"
"10:46:25.6289584 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6289741 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040b","0.0000077","Desired Access: Query Value","2512"
"10:46:25.6289955 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040b\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDFI.DLL","2512"
"10:46:25.6290134 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040b","0.0000017","","2512"
"10:46:25.6290147 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\Compatibility32","0.0000128","Desired Access: Read","8292"
"10:46:25.6290373 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000038","Index: 10, Name: 0000040c","2512"
"10:46:25.6290475 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Compatibility32\firefox","0.0000039","Length: 172","8292"
"10:46:25.6290526 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000018","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6290676 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040c","0.0000068","Desired Access: Query Value","2512"
"10:46:25.6290701 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Compatibility32","0.0000022","","8292"
"10:46:25.6291094 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\IME Compatibility","0.0000094","Desired Access: Read","8292"
"10:46:25.6298437 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040c\Layout File","0.0000077","Type: REG_SZ, Length: 20, Data: KBDFR.DLL","2512"
"10:46:25.6298979 AM","firefox.exe","7972","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000068","Desired Access: Query Value, Enumerate Sub Keys","8292"
"10:46:25.6302789 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040c","0.0000025","","2512"
"10:46:25.6303011 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000047","Index: 11, Name: 0000040d","2512"
"10:46:25.6303198 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000018","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6303237 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6303356 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040d","0.0000081","Desired Access: Query Value","2512"
"10:46:25.6303587 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040d\Layout File","0.0000038","Type: REG_SZ, Length: 22, Data: KBDHEB.DLL","2512"
"10:46:25.6303604 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000051","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8292"
"10:46:25.6303766 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040d","0.0005222","","2512"
"10:46:25.6303809 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000111","","8292"
"10:46:25.6305259 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6305443 AM","firefox.exe","7972","RegOpenKey","HKLM\SOFTWARE\Microsoft\OLE","0.0000089","Desired Access: Read","8292"
"10:46:25.6305677 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Ole\PageAllocatorUseSystemHeap","0.0000039","Length: 20","8292"
"10:46:25.6305861 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Ole","0.0000017","","8292"
"10:46:25.6305997 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6306138 AM","firefox.exe","7972","RegOpenKey","HKLM\SOFTWARE\Microsoft\OLE","0.0000056","Desired Access: Read","8292"
"10:46:25.6306305 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Ole\PageAllocatorSystemHeapIsPrivate","0.0000029","Length: 20","8292"
"10:46:25.6306454 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Ole","0.0000013","","8292"
"10:46:25.6306578 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6306710 AM","firefox.exe","7972","RegOpenKey","HKLM\SOFTWARE\Microsoft\OLE","0.0000047","Desired Access: Read","8292"
"10:46:25.6306872 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Ole\AggressiveMTATesting","0.0000026","Length: 16","8292"
"10:46:25.6307013 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Ole","0.0000017","","8292"
"10:46:25.6309556 AM","firefox.exe","7972","Thread Create","","0.0000000","Thread ID: 9132","36"
"10:46:25.6310115 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000047","Index: 12, Name: 0000040e","2512"
"10:46:25.6310324 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6310516 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040e","0.0000106","Desired Access: Query Value","2512"
"10:46:25.6310768 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6310802 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040e\Layout File","0.0000042","Type: REG_SZ, Length: 20, Data: KBDHU.DLL","2512"
"10:46:25.6310968 AM","firefox.exe","7972","RegOpenKey","HKLM","0.0000060","Desired Access: Read","8292"
"10:46:25.6311011 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040e","0.0000025","","2512"
"10:46:25.6311173 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000038","Index: 13, Name: 0000040f","2512"
"10:46:25.6311186 AM","firefox.exe","7972","RegSetInfoKey","HKLM","0.0000017","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","8292"
"10:46:25.6311331 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6311395 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x100","8292"
"10:46:25.6311540 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040f","0.0000072","Desired Access: Query Value","2512"
"10:46:25.6311617 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\Ole\FeatureDevelopmentProperties","0.0000068","Desired Access: Read","8292"
"10:46:25.6311757 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040f\Layout File","0.0000035","Type: REG_SZ, Length: 20, Data: KBDIC.DLL","2512"
"10:46:25.6311881 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x100","8292"
"10:46:25.6311962 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040f","0.0000022","","2512"
"10:46:25.6312035 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\Ole\FeatureDevelopmentProperties","0.0000047","Desired Access: Read","8292"
"10:46:25.6312103 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 14, Name: 00000410","2512"
"10:46:25.6312222 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x100","8292"
"10:46:25.6312252 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6312363 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\Ole","0.0000064","Desired Access: Read","8292"
"10:46:25.6312397 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000410","0.0000073","Desired Access: Query Value","2512"
"10:46:25.6312598 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000410\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDIT.DLL","2512"
"10:46:25.6312752 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000410","0.0000017","","2512"
"10:46:25.6312884 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 15, Name: 00000411","2512"
"10:46:25.6313025 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6313093 AM","firefox.exe","7972","RegOpenKey","HKCU","0.0000064","Desired Access: Read","8292"
"10:46:25.6313165 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000411","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6313319 AM","firefox.exe","7972","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6313366 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000411\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDJPN.DLL","2512"
"10:46:25.6313460 AM","firefox.exe","7972","RegOpenKey","HKCU\Software\Classes\Local Settings","0.0000111","Desired Access: Read","8292"
"10:46:25.6313528 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000411","0.0000030","","2512"
"10:46:25.6313673 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0007117","Index: 16, Name: 00000412","2512"
"10:46:25.6313699 AM","firefox.exe","7972","RegOpenKey","HKCU\Software\Classes\Local Settings","0.0000089","Desired Access: Read","8292"
"10:46:25.6313921 AM","firefox.exe","7972","RegSetInfoKey","HKCU\Software\Classes\Local Settings","0.0000012","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","8292"
"10:46:25.6314078 AM","firefox.exe","7972","RegCloseKey","HKCU","0.0000018","","8292"
"10:46:25.6314266 AM","firefox.exe","7972","RegQueryKey","HKCU\Software\Classes\Local Settings","0.0000013","Query: HandleTags, HandleTags: 0x100","8292"
"10:46:25.6314407 AM","firefox.exe","7972","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Ole\FeatureDevelopmentProperties","0.0000060","Desired Access: Read","8292"
"10:46:25.6314586 AM","firefox.exe","7972","RegQueryKey","HKCU\Software\Classes\Local Settings","0.0000013","Query: HandleTags, HandleTags: 0x100","8292"
"10:46:25.6314723 AM","firefox.exe","7972","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Ole\FeatureDevelopmentProperties","0.0000038","Desired Access: Read","8292"
"10:46:25.6314876 AM","firefox.exe","7972","RegQueryKey","HKCU\Software\Classes\Local Settings","0.0000013","Query: HandleTags, HandleTags: 0x100","8292"
"10:46:25.6315013 AM","firefox.exe","7972","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Ole","0.0000038","Desired Access: Read","8292"
"10:46:25.6315162 AM","firefox.exe","7972","RegQueryKey","HKCU\Software\Classes\Local Settings","0.0000013","Query: HandleTags, HandleTags: 0x100","8292"
"10:46:25.6315299 AM","firefox.exe","7972","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft","0.0000047","Desired Access: Read","8292"
"10:46:25.6315849 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6315990 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\OLE\Tracing","0.0000051","Desired Access: Read","8292"
"10:46:25.6320935 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6321084 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000412","0.0000077","Desired Access: Query Value","2512"
"10:46:25.6321293 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000412\Layout File","0.0000035","Type: REG_SZ, Length: 22, Data: KBDKOR.DLL","2512"
"10:46:25.6321451 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000412","0.0000017","","2512"
"10:46:25.6321601 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 17, Name: 00000413","2512"
"10:46:25.6321737 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6321869 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000413","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6322057 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000413\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDNE.DLL","2512"
"10:46:25.6322211 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000413","0.0000017","","2512"
"10:46:25.6322335 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 18, Name: 00000414","2512"
"10:46:25.6322467 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6322595 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000414","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6322783 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000414\Layout File","0.0000029","Type: REG_SZ, Length: 20, Data: KBDNO.DLL","2512"
"10:46:25.6322923 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000414","0.0000017","","2512"
"10:46:25.6323047 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 19, Name: 00000415","2512"
"10:46:25.6323175 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6323307 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000415","0.0000060","Desired Access: Query Value","2512"
"10:46:25.6323495 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000415\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDPL1.DLL","2512"
"10:46:25.6323640 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000415","0.0000017","","2512"
"10:46:25.6323764 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 20, Name: 00000416","2512"
"10:46:25.6323892 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6324020 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000416","0.0000068","Desired Access: Query Value","2512"
"10:46:25.6324208 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000416\Layout File","0.0000029","Type: REG_SZ, Length: 20, Data: KBDBR.DLL","2512"
"10:46:25.6324353 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000416","0.0000012","","2512"
"10:46:25.6324476 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 21, Name: 00000418","2512"
"10:46:25.6326093 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6326298 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000418","0.0000086","Desired Access: Query Value","2512"
"10:46:25.6326550 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000418\Layout File","0.0000043","Type: REG_SZ, Length: 20, Data: KBDRO.DLL","2512"
"10:46:25.6326759 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000418","0.0000021","","2512"
"10:46:25.6326925 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000039","Index: 22, Name: 00000419","2512"
"10:46:25.6327083 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6327241 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000419","0.0000081","Desired Access: Query Value","2512"
"10:46:25.6327463 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000419\Layout File","0.0000038","Type: REG_SZ, Length: 20, Data: KBDRU.DLL","2512"
"10:46:25.6327638 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000419","0.0000021","","2512"
"10:46:25.6327783 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 23, Name: 0000041a","2512"
"10:46:25.6328060 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6328223 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041a","0.0000081","Desired Access: Query Value","2512"
"10:46:25.6328449 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041a\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDCR.DLL","2512"
"10:46:25.6328615 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041a","0.0000017","","2512"
"10:46:25.6328645 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6328752 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 24, Name: 0000041b","2512"
"10:46:25.6328892 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6329003 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000056","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8292"
"10:46:25.6329037 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041b","0.0000077","Desired Access: Query Value","2512"
"10:46:25.6329170 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000072","","8292"
"10:46:25.6329247 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041b\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDSL.DLL","2512"
"10:46:25.6329409 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041b","0.0000017","","2512"
"10:46:25.6329545 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 25, Name: 0000041c","2512"
"10:46:25.6329682 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6329827 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041c","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6330032 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041c\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDAL.DLL","2512"
"10:46:25.6330096 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6330194 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041c","0.0000013","","2512"
"10:46:25.6330266 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\OLE\Tracing","0.0000077","Desired Access: Read","8292"
"10:46:25.6330322 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 26, Name: 0000041d","2512"
"10:46:25.6330445 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000018","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6330582 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041d","0.0000073","Desired Access: Query Value","2512"
"10:46:25.6330783 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041d\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDSW.DLL","2512"
"10:46:25.6330936 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041d","0.0000013","","2512"
"10:46:25.6331068 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 27, Name: 0000041e","2512"
"10:46:25.6331209 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6331346 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041e","0.0000068","Desired Access: Query Value","2512"
"10:46:25.6331546 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041e\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDTH0.DLL","2512"
"10:46:25.6331713 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041e","0.0000017","","2512"
"10:46:25.6331845 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 28, Name: 0000041f","2512"
"10:46:25.6331986 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6332127 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041f","0.0000068","Desired Access: Query Value","2512"
"10:46:25.6332327 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041f\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDTUQ.DLL","2512"
"10:46:25.6332489 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041f","0.0000013","","2512"
"10:46:25.6332621 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 29, Name: 00000420","2512"
"10:46:25.6332762 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6332899 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000420","0.0000089","Desired Access: Query Value","2512"
"10:46:25.6333125 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000420\Layout File","0.0000034","Type: REG_SZ, Length: 24, Data: KBDURDU.DLL","2512"
"10:46:25.6333287 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000420","0.0000013","","2512"
"10:46:25.6333419 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 30, Name: 00000422","2512"
"10:46:25.6333522 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6333556 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6333692 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000422","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6333880 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000422\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDUR.DLL","2512"
"10:46:25.6334012 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000043","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","8292"
"10:46:25.6334042 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000422","0.0000013","","2512"
"10:46:25.6334166 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000064","","8292"
"10:46:25.6334175 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 31, Name: 00000423","2512"
"10:46:25.6334311 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6334448 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000423","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6334623 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000423\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDBLR.DLL","2512"
"10:46:25.6334776 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000423","0.0000013","","2512"
"10:46:25.6334900 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 32, Name: 00000424","2512"
"10:46:25.6335028 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6335160 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000424","0.0000060","Desired Access: Query Value","2512"
"10:46:25.6335344 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000424\Layout File","0.0000029","Type: REG_SZ, Length: 20, Data: KBDCR.DLL","2512"
"10:46:25.6335493 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000424","0.0000013","","2512"
"10:46:25.6335638 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 33, Name: 00000425","2512"
"10:46:25.6335757 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6335881 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000425","0.0000056","Desired Access: Query Value","2512"
"10:46:25.6336043 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000425\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDEST.DLL","2512"
"10:46:25.6336188 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000425","0.0000017","","2512"
"10:46:25.6336316 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 34, Name: 00000426","2512"
"10:46:25.6336449 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6336572 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000426","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6336760 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000426\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDLV.DLL","2512"
"10:46:25.6336897 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000426","0.0000017","","2512"
"10:46:25.6337012 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 35, Name: 00000427","2512"
"10:46:25.6337131 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6337255 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000427","0.0000060","Desired Access: Query Value","2512"
"10:46:25.6337439 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000427\Layout File","0.0000029","Type: REG_SZ, Length: 20, Data: KBDLT.DLL","2512"
"10:46:25.6337584 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000427","0.0000017","","2512"
"10:46:25.6337703 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 36, Name: 00000428","2512"
"10:46:25.6337831 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6337955 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000428","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6338138 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000428\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDTAJIK.DLL","2512"
"10:46:25.6338283 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000428","0.0000013","","2512"
"10:46:25.6338407 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 37, Name: 00000429","2512"
"10:46:25.6338535 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6338663 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000429","0.0000068","Desired Access: Query Value","2512"
"10:46:25.6338847 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000429\Layout File","0.0000029","Type: REG_SZ, Length: 20, Data: KBDFA.DLL","2512"
"10:46:25.6338992 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000429","0.0000012","","2512"
"10:46:25.6339111 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 38, Name: 0000042a","2512"
"10:46:25.6339239 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6339367 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042a","0.0000068","Desired Access: Query Value","2512"
"10:46:25.6339555 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042a\Layout File","0.0000034","Type: REG_SZ, Length: 24, Data: KBDVNTC.DLL","2512"
"10:46:25.6339708 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042a","0.0000017","","2512"
"10:46:25.6339832 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 39, Name: 0000042b","2512"
"10:46:25.6339960 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6340088 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042b","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6340267 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042b\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: kbdarme.dll","2512"
"10:46:25.6340412 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042b","0.0000013","","2512"
"10:46:25.6340532 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 40, Name: 0000042c","2512"
"10:46:25.6340664 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6340788 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042c","0.0000060","Desired Access: Query Value","2512"
"10:46:25.6340967 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042c\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDAZEL.DLL","2512"
"10:46:25.6341116 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042c","0.0000013","","2512"
"10:46:25.6341244 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 41, Name: 0000042e","2512"
"10:46:25.6341381 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6341513 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042e","0.0000120","Desired Access: Query Value","2512"
"10:46:25.6341756 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\setupapi.dll","0.0000081","Name: \Windows\System32\setupapi.dll","8292"
"10:46:25.6341765 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042e\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDSORST.DLL","2512"
"10:46:25.6341914 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042e","0.0000017","","2512"
"10:46:25.6342038 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 42, Name: 0000042f","2512"
"10:46:25.6342166 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6342294 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042f","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6342473 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042f\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDMAC.DLL","2512"
"10:46:25.6342627 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042f","0.0000017","","2512"
"10:46:25.6342746 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 43, Name: 00000432","2512"
"10:46:25.6342874 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6343002 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000432","0.0000069","Desired Access: Query Value","2512"
"10:46:25.6343199 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000432\Layout File","0.0000029","Type: REG_SZ, Length: 22, Data: KBDNSO.DLL","2512"
"10:46:25.6343348 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000432","0.0000017","","2512"
"10:46:25.6343480 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 44, Name: 00000437","2512"
"10:46:25.6343617 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6343749 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000437","0.0000072","Desired Access: Query Value","2512"
"10:46:25.6343945 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000437\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: kbdgeo.dll","2512"
"10:46:25.6344099 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000437","0.0000017","","2512"
"10:46:25.6344231 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 45, Name: 00000438","2512"
"10:46:25.6344368 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6344500 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000438","0.0000072","Desired Access: Query Value","2512"
"10:46:25.6344700 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000438\Layout File","0.0000035","Type: REG_SZ, Length: 20, Data: KBDFO.DLL","2512"
"10:46:25.6344858 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000438","0.0000013","","2512"
"10:46:25.6344995 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 46, Name: 00000439","2512"
"10:46:25.6345136 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6345272 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000439","0.0000073","Desired Access: Query Value","2512"
"10:46:25.6345477 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000439\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDINDEV.DLL","2512"
"10:46:25.6345596 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6345938 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000439","0.0000021","","2512"
"10:46:25.6345980 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000043","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8292"
"10:46:25.6346096 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 47, Name: 0000043a","2512"
"10:46:25.6346130 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000068","","8292"
"10:46:25.6346236 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6346373 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043a","0.0000081","Desired Access: Query Value","2512"
"10:46:25.6346578 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043a\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDMLT47.DLL","2512"
"10:46:25.6346731 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043a","0.0000013","","2512"
"10:46:25.6346864 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 48, Name: 0000043b","2512"
"10:46:25.6347004 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6347145 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043b","0.0000068","Desired Access: Query Value","2512"
"10:46:25.6347346 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043b\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDNO1.DLL","2512"
"10:46:25.6347504 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043b","0.0000012","","2512"
"10:46:25.6347636 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 49, Name: 0000043f","2512"
"10:46:25.6347781 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6347917 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043f","0.0000124","Desired Access: Query Value","2512"
"10:46:25.6348178 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043f\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDKAZ.DLL","2512"
"10:46:25.6348336 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043f","0.0000012","","2512"
"10:46:25.6348464 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 50, Name: 00000440","2512"
"10:46:25.6348600 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6348737 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000440","0.0000072","Desired Access: Query Value","2512"
"10:46:25.6348941 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000440\Layout File","0.0000035","Type: REG_SZ, Length: 22, Data: KBDKYR.DLL","2512"
"10:46:25.6349099 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000440","0.0000017","","2512"
"10:46:25.6349236 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 51, Name: 00000442","2512"
"10:46:25.6349261 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\ole32.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6349372 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6349500 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000442","0.0000077","Desired Access: Query Value","2512"
"10:46:25.6349692 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000442\Layout File","0.0000026","Type: REG_SZ, Length: 26, Data: KBDTURME.DLL","2512"
"10:46:25.6349846 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000442","0.0000017","","2512"
"10:46:25.6349893 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000043","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","8292"
"10:46:25.6349974 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 52, Name: 00000444","2512"
"10:46:25.6350034 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\ole32.dll","0.0000068","","8292"
"10:46:25.6350111 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6350247 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000444","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6350435 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000444\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDTAT.DLL","2512"
"10:46:25.6350588 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000444","0.0000013","","2512"
"10:46:25.6350708 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 53, Name: 00000445","2512"
"10:46:25.6350844 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6350972 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000445","0.0000069","Desired Access: Query Value","2512"
"10:46:25.6351164 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000445\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDINBEN.DLL","2512"
"10:46:25.6351237 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6351314 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000445","0.0000013","","2512"
"10:46:25.6351408 AM","firefox.exe","7972","RegOpenKey","HKLM\SOFTWARE\Microsoft\OLEAUT","0.0000072","Desired Access: Query Value","8292"
"10:46:25.6351437 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000035","Index: 54, Name: 00000446","2512"
"10:46:25.6351574 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6351698 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000446","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6351877 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000446\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDINPUN.DLL","2512"
"10:46:25.6352031 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000446","0.0000017","","2512"
"10:46:25.6352154 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 55, Name: 00000447","2512"
"10:46:25.6352282 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6352410 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000447","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6352594 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000447\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDINGUJ.DLL","2512"
"10:46:25.6352743 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000447","0.0000017","","2512"
"10:46:25.6352871 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 56, Name: 00000448","2512"
"10:46:25.6353008 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6353144 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000448","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6353332 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000448\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDINORI.DLL","2512"
"10:46:25.6353481 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000448","0.0000013","","2512"
"10:46:25.6353601 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 57, Name: 00000449","2512"
"10:46:25.6353733 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6353857 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000449","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6354049 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000449\Layout File","0.0000025","Type: REG_SZ, Length: 26, Data: KBDINTAM.DLL","2512"
"10:46:25.6354185 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000449","0.0000013","","2512"
"10:46:25.6354305 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 58, Name: 0000044a","2512"
"10:46:25.6354424 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6354552 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044a","0.0000068","Desired Access: Query Value","2512"
"10:46:25.6354740 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044a\Layout File","0.0000025","Type: REG_SZ, Length: 26, Data: KBDINTEL.DLL","2512"
"10:46:25.6354881 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044a","0.0000012","","2512"
"10:46:25.6355000 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 59, Name: 0000044b","2512"
"10:46:25.6355128 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6355248 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044b","0.0000059","Desired Access: Query Value","2512"
"10:46:25.6355427 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044b\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDINKAN.DLL","2512"
"10:46:25.6355568 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044b","0.0000012","","2512"
"10:46:25.6355679 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 60, Name: 0000044c","2512"
"10:46:25.6355794 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6355913 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044c","0.0000056","Desired Access: Query Value","2512"
"10:46:25.6356080 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044c\Layout File","0.0000025","Type: REG_SZ, Length: 26, Data: KBDINMAL.DLL","2512"
"10:46:25.6356216 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044c","0.0000013","","2512"
"10:46:25.6356327 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 61, Name: 0000044d","2512"
"10:46:25.6356451 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6356579 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044d","0.0000060","Desired Access: Query Value","2512"
"10:46:25.6356762 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044d\Layout File","0.0000026","Type: REG_SZ, Length: 26, Data: KBDINASA.DLL","2512"
"10:46:25.6356903 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044d","0.0000017","","2512"
"10:46:25.6357023 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 62, Name: 0000044e","2512"
"10:46:25.6357142 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6357261 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044e","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6357432 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044e\Layout File","0.0000026","Type: REG_SZ, Length: 26, Data: KBDINMAR.DLL","2512"
"10:46:25.6357569 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044e","0.0000012","","2512"
"10:46:25.6357680 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 63, Name: 00000450","2512"
"10:46:25.6357803 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6357923 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000450","0.0000106","Desired Access: Query Value","2512"
"10:46:25.6358149 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000450\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDMON.DLL","2512"
"10:46:25.6358285 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000450","0.0000013","","2512"
"10:46:25.6358401 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 64, Name: 00000451","2512"
"10:46:25.6358520 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6358640 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000451","0.0000059","Desired Access: Query Value","2512"
"10:46:25.6358810 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000451\Layout File","0.0000026","Type: REG_SZ, Length: 26, Data: KBDTIPRC.DLL","2512"
"10:46:25.6358943 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000451","0.0000017","","2512"
"10:46:25.6359088 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 65, Name: 00000452","2512"
"10:46:25.6359211 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6359335 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000452","0.0000060","Desired Access: Query Value","2512"
"10:46:25.6359510 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000452\Layout File","0.0000026","Type: REG_SZ, Length: 22, Data: KBDUKX.DLL","2512"
"10:46:25.6359647 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000452","0.0000012","","2512"
"10:46:25.6359757 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 66, Name: 00000453","2512"
"10:46:25.6359877 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6359996 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000453","0.0000052","Desired Access: Query Value","2512"
"10:46:25.6360159 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000453\Layout File","0.0000025","Type: REG_SZ, Length: 24, Data: KBDKHMR.DLL","2512"
"10:46:25.6360295 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000453","0.0000013","","2512"
"10:46:25.6360406 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 67, Name: 00000454","2512"
"10:46:25.6360525 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6360645 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000454","0.0000055","Desired Access: Query Value","2512"
"10:46:25.6360811 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000454\Layout File","0.0000026","Type: REG_SZ, Length: 22, Data: KBDLAO.DLL","2512"
"10:46:25.6360944 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000454","0.0000012","","2512"
"10:46:25.6361055 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 68, Name: 0000045a","2512"
"10:46:25.6361174 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6361298 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045a","0.0000059","Desired Access: Query Value","2512"
"10:46:25.6361468 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045a\Layout File","0.0000026","Type: REG_SZ, Length: 24, Data: KBDSYR1.DLL","2512"
"10:46:25.6361601 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045a","0.0000012","","2512"
"10:46:25.6361712 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 69, Name: 0000045b","2512"
"10:46:25.6361831 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6361951 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045b","0.0000059","Desired Access: Query Value","2512"
"10:46:25.6362121 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045b\Layout File","0.0000026","Type: REG_SZ, Length: 22, Data: KBDSN1.DLL","2512"
"10:46:25.6362258 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045b","0.0000013","","2512"
"10:46:25.6362364 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 70, Name: 0000045c","2512"
"10:46:25.6362492 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6362625 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045c","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6362812 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045c\Layout File","0.0000026","Type: REG_SZ, Length: 24, Data: KBDCHER.DLL","2512"
"10:46:25.6362949 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045c","0.0000013","","2512"
"10:46:25.6363068 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 71, Name: 00000461","2512"
"10:46:25.6363192 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6363316 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000461","0.0000060","Desired Access: Query Value","2512"
"10:46:25.6363495 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000461\Layout File","0.0000026","Type: REG_SZ, Length: 24, Data: KBDNEPR.DLL","2512"
"10:46:25.6363632 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000461","0.0000012","","2512"
"10:46:25.6363747 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 72, Name: 00000463","2512"
"10:46:25.6363866 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6363990 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000463","0.0000060","Desired Access: Query Value","2512"
"10:46:25.6364161 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000463\Layout File","0.0000025","Type: REG_SZ, Length: 24, Data: KBDPASH.DLL","2512"
"10:46:25.6364293 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000463","0.0000013","","2512"
"10:46:25.6364408 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 73, Name: 00000465","2512"
"10:46:25.6364528 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6364647 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000465","0.0000994","Desired Access: Query Value","2512"
"10:46:25.6365829 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000465\Layout File","0.0000034","Type: REG_SZ, Length: 24, Data: KBDDIV1.DLL","2512"
"10:46:25.6366038 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000465","0.0000017","","2512"
"10:46:25.6366183 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000047","Index: 74, Name: 00000468","2512"
"10:46:25.6366328 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6366473 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000468","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6366665 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000468\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDHAU.DLL","2512"
"10:46:25.6366819 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000468","0.0000013","","2512"
"10:46:25.6366943 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 75, Name: 0000046a","2512"
"10:46:25.6367075 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6367207 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046a","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6367395 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046a\Layout File","0.0000025","Type: REG_SZ, Length: 22, Data: KBDYBA.DLL","2512"
"10:46:25.6367536 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046a","0.0000017","","2512"
"10:46:25.6369353 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6369699 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000043","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8292"
"10:46:25.6369852 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000069","","8292"
"10:46:25.6372758 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6372980 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000072","Desired Access: All Access","8292"
"10:46:25.6373206 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000555","Desired Access: All Access","8292"
"10:46:25.6373475 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000043","Information: Owner","8292"
"10:46:25.6373688 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000017","Information: Owner","8292"
"10:46:25.6373923 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6373974 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000047","Index: 76, Name: 0000046c","2512"
"10:46:25.6374098 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000081","Desired Access: Read","8292"
"10:46:25.6374217 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6374315 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000077","Desired Access: Read","8292"
"10:46:25.6374422 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046c","0.0000154","Desired Access: Query Value","2512"
"10:46:25.6374729 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046c\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDNSO.DLL","2512"
"10:46:25.6374887 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000047","Length: 16","8292"
"10:46:25.6374904 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046c","0.0000017","","2512"
"10:46:25.6375054 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 77, Name: 0000046d","2512"
"10:46:25.6375075 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000038","Type: REG_SZ, Length: 8, Data: 2.0","8292"
"10:46:25.6375194 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6375335 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046d","0.0000073","Desired Access: Query Value","2512"
"10:46:25.6375339 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6375506 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog","0.0000102","Desired Access: Read","8292"
"10:46:25.6375540 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046d\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDBASH.DLL","2512"
"10:46:25.6375694 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046d","0.0000017","","2512"
"10:46:25.6375817 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 78, Name: 0000046e","2512"
"10:46:25.6375941 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6375954 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6376090 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046e","0.0000069","Desired Access: Query Value","2512"
"10:46:25.6376103 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog\3AC7FBD2-06633065","0.0000043","Desired Access: Read","8292"
"10:46:25.6376282 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046e\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDSF.DLL","2512"
"10:46:25.6376295 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog","0.0000013","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6376432 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046e","0.0000017","","2512"
"10:46:25.6376440 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog\3AC7FBD2","0.0000043","Desired Access: Read","8292"
"10:46:25.6376555 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 79, Name: 0000046f","2512"
"10:46:25.6376658 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog","0.0000021","","8292"
"10:46:25.6376692 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6376816 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046f","0.0000072","Desired Access: Query Value","2512"
"10:46:25.6376858 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Callout","0.0000039","Length: 12","8292"
"10:46:25.6377016 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046f\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDGRLND.DLL","2512"
"10:46:25.6377055 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Callout","0.0000038","Type: REG_EXPAND_SZ, Length: 70, Data: %SystemRoot%\System32\fwpuclnt.dll","8292"
"10:46:25.6377170 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046f","0.0000017","","2512"
"10:46:25.6377285 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6377298 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 80, Name: 00000470","2512"
"10:46:25.6377434 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6377451 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000073","Desired Access: Maximum Allowed, Granted Access: Read","8292"
"10:46:25.6377558 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000470","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6377665 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","8292"
"10:46:25.6377746 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000470\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDIBO.DLL","2512"
"10:46:25.6377887 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000470","0.0000012","","2512"
"10:46:25.6378002 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 81, Name: 00000474","2512"
"10:46:25.6378134 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6378211 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000030","Type: REG_DWORD, Length: 4, Data: 8","8292"
"10:46:25.6378262 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000474","0.0000068","Desired Access: Query Value","2512"
"10:46:25.6378390 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6378450 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000474\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDGN.DLL","2512"
"10:46:25.6378548 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000038","Desired Access: Read","8292"
"10:46:25.6378595 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000474","0.0000013","","2512"
"10:46:25.6378736 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000123","Index: 82, Name: 00000475","2512"
"10:46:25.6378761 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000086","Type: REG_DWORD, Length: 4, Data: 1015","8292"
"10:46:25.6378970 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6378996 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000026","Type: REG_DWORD, Length: 4, Data: 14","8292"
"10:46:25.6379103 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000475","0.0000072","Desired Access: Query Value","2512"
"10:46:25.6379154 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6379299 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000475\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDHAW.DLL","2512"
"10:46:25.6379320 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000107","Desired Access: Maximum Allowed, Granted Access: Read","8292"
"10:46:25.6379448 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000475","0.0000013","","2512"
"10:46:25.6379572 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 83, Name: 00000480","2512"
"10:46:25.6379610 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6379700 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6379764 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000090","Desired Access: Read","8292"
"10:46:25.6379824 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000480","0.0000068","Desired Access: Query Value","2512"
"10:46:25.6380024 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000480\Layout File","0.0000043","Type: REG_SZ, Length: 24, Data: KBDUGHR.DLL","2512"
"10:46:25.6380063 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000038","Length: 144","8292"
"10:46:25.6380182 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000480","0.0000017","","2512"
"10:46:25.6380229 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8292"
"10:46:25.6380302 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000038","Index: 84, Name: 00000481","2512"
"10:46:25.6380438 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000043","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6380451 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000055","","8292"
"10:46:25.6380613 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000481","0.0000060","Desired Access: Query Value","2512"
"10:46:25.6380651 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6380796 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000481\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDMAORI.DLL","2512"
"10:46:25.6380809 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000086","Desired Access: Read","8292"
"10:46:25.6380942 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000481","0.0000017","","2512"
"10:46:25.6381057 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Length: 144","8292"
"10:46:25.6381065 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000043","Index: 85, Name: 00000485","2512"
"10:46:25.6381210 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6381219 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8292"
"10:46:25.6381343 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000485","0.0000072","Desired Access: Query Value","2512"
"10:46:25.6381411 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","8292"
"10:46:25.6381547 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000485\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDYAK.DLL","2512"
"10:46:25.6381569 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6381692 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000485","0.0000018","","2512"
"10:46:25.6381727 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000081","Desired Access: Read","8292"
"10:46:25.6381816 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 86, Name: 00000488","2512"
"10:46:25.6381944 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6381974 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000030","Length: 144","8292"
"10:46:25.6382072 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000488","0.0000073","Desired Access: Query Value","2512"
"10:46:25.6382123 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000035","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8292"
"10:46:25.6382273 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000488\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDWOL.DLL","2512"
"10:46:25.6382315 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000017","","8292"
"10:46:25.6382418 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000488","0.0000017","","2512"
"10:46:25.6382465 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6382537 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 87, Name: 00000492","2512"
"10:46:25.6382601 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000086","Desired Access: Read","8292"
"10:46:25.6382661 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6382793 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000492","0.0000090","Desired Access: Query Value","2512"
"10:46:25.6382849 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000042","Length: 144","8292"
"10:46:25.6383011 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000492\Layout File","0.0000034","Type: REG_SZ, Length: 24, Data: KBDKURD.DLL","2512"
"10:46:25.6383024 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8292"
"10:46:25.6383164 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000492","0.0000013","","2512"
"10:46:25.6383211 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","","8292"
"10:46:25.6383280 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 88, Name: 00000804","2512"
"10:46:25.6383378 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6383433 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000918","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6383531 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000077","Desired Access: Read","8292"
"10:46:25.6383770 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000030","Length: 144","8292"
"10:46:25.6383988 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8292"
"10:46:25.6384171 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000013","","8292"
"10:46:25.6384312 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6384466 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000089","Desired Access: Read","8292"
"10:46:25.6384500 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000804","0.0000090","Desired Access: Query Value","2512"
"10:46:25.6384722 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000072","Length: 144","8292"
"10:46:25.6384764 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000804\Layout File","0.0000035","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:25.6384922 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8292"
"10:46:25.6384935 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000804","0.0000017","","2512"
"10:46:25.6385072 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 89, Name: 00000807","2512"
"10:46:25.6385114 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000017","","8292"
"10:46:25.6385208 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6385259 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6385336 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000807","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6385413 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000077","Desired Access: Read","8292"
"10:46:25.6385528 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000807\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDSG.DLL","2512"
"10:46:25.6385648 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000034","Length: 144","8292"
"10:46:25.6385669 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000807","0.0000021","","2512"
"10:46:25.6385818 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8292"
"10:46:25.6385823 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000038","Index: 90, Name: 00000809","2512"
"10:46:25.6385963 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6386002 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000017","","8292"
"10:46:25.6386096 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000809","0.0000068","Desired Access: Query Value","2512"
"10:46:25.6386147 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6386292 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000809\Layout File","0.0000055","Type: REG_SZ, Length: 20, Data: KBDUK.DLL","2512"
"10:46:25.6386335 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000089","Desired Access: Read","8292"
"10:46:25.6386467 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000809","0.0000017","","2512"
"10:46:25.6386591 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000042","Length: 144","8292"
"10:46:25.6386620 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 91, Name: 0000080a","2512"
"10:46:25.6386744 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6386851 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8292"
"10:46:25.6386876 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080a","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6387039 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000012","","8292"
"10:46:25.6387064 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080a\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDLA.DLL","2512"
"10:46:25.6387192 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6387235 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080a","0.0000017","","2512"
"10:46:25.6387359 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000076","Desired Access: Read","8292"
"10:46:25.6387367 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 92, Name: 0000080c","2512"
"10:46:25.6387495 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6387593 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000030","Length: 144","8292"
"10:46:25.6387653 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080c","0.0000077","Desired Access: Query Value","2512"
"10:46:25.6387760 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8292"
"10:46:25.6387858 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080c\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDBE.DLL","2512"
"10:46:25.6387939 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","","8292"
"10:46:25.6387999 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080c","0.0000017","","2512"
"10:46:25.6388097 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6388118 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 93, Name: 00000813","2512"
"10:46:25.6388255 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6388284 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000086","Desired Access: Read","8292"
"10:46:25.6388391 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000813","0.0000068","Desired Access: Query Value","2512"
"10:46:25.6388566 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000030","Length: 144","8292"
"10:46:25.6388626 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000813\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDBE.DLL","2512"
"10:46:25.6388737 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8292"
"10:46:25.6388779 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000813","0.0000013","","2512"
"10:46:25.6388903 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 94, Name: 00000816","2512"
"10:46:25.6388920 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000022","","8292"
"10:46:25.6389035 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6389082 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6389168 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000816","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6389262 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000089","Desired Access: Read","8292"
"10:46:25.6389372 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000816\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDPO.DLL","2512"
"10:46:25.6389518 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000051","Length: 144","8292"
"10:46:25.6389543 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000816","0.0000021","","2512"
"10:46:25.6389675 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000039","Index: 95, Name: 0000081a","2512"
"10:46:25.6389692 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000060","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8292"
"10:46:25.6389820 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6389906 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000017","","8292"
"10:46:25.6389953 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000081a","0.0000077","Desired Access: Query Value","2512"
"10:46:25.6390068 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6390145 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000081a\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDYCL.DLL","2512"
"10:46:25.6390217 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000090","Desired Access: Read","8292"
"10:46:25.6390294 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000081a","0.0000017","","2512"
"10:46:25.6390414 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 96, Name: 0000082c","2512"
"10:46:25.6390550 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6390567 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000034","Length: 144","8292"
"10:46:25.6390674 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000082c","0.0000094","Desired Access: Query Value","2512"
"10:46:25.6390721 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8292"
"10:46:25.6390887 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000047","","8292"
"10:46:25.6390900 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000082c\Layout File","0.0000043","Type: REG_SZ, Length: 22, Data: KBDAZE.DLL","2512"
"10:46:25.6391058 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000082c","0.0000021","","2512"
"10:46:25.6391164 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6391207 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 97, Name: 0000083b","2512"
"10:46:25.6391339 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000086","Desired Access: Read","8292"
"10:46:25.6391344 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6391467 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000083b","0.0000069","Desired Access: Query Value","2512"
"10:46:25.6391587 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000030","Length: 144","8292"
"10:46:25.6391655 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000083b\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDFI1.DLL","2512"
"10:46:25.6391740 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8292"
"10:46:25.6391792 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000083b","0.0000021","","2512"
"10:46:25.6391920 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000042","Index: 98, Name: 00000843","2512"
"10:46:25.6391950 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000021","","8292"
"10:46:25.6392060 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6392107 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6392188 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000843","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6392257 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000085","Desired Access: Read","8292"
"10:46:25.6392372 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000843\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDUZB.DLL","2512"
"10:46:25.6392504 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000047","Length: 144","8292"
"10:46:25.6392521 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000843","0.0000039","","2512"
"10:46:25.6392683 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000035","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8292"
"10:46:25.6392700 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 99, Name: 00000850","2512"
"10:46:25.6392833 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6392867 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000021","","8292"
"10:46:25.6392965 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000850","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6393020 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000018","","8292"
"10:46:25.6393153 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000850\Layout File","0.0000025","Type: REG_SZ, Length: 26, Data: KBDMONMO.DLL","2512"
"10:46:25.6393289 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000850","0.0000013","","2512"
"10:46:25.6393370 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6393409 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 100, Name: 0000085d","2512"
"10:46:25.6393537 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5","0.0000064","Desired Access: Maximum Allowed, Granted Access: Read","8292"
"10:46:25.6393541 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6393669 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085d","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6393746 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Serial_Access_Num","0.0000038","Type: REG_DWORD, Length: 4, Data: 22","8292"
"10:46:25.6393848 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085d\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: KBDIULAT.DLL","2512"
"10:46:25.6393993 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085d","0.0000013","","2512"
"10:46:25.6394108 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 101, Name: 0000085f","2512"
"10:46:25.6394232 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 22","8292"
"10:46:25.6394245 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6394369 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085f","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6394407 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6394552 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085f\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDTZM.DLL","2512"
"10:46:25.6394565 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\00000016","0.0000038","Desired Access: Read","8292"
"10:46:25.6394697 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085f","0.0000094","","2512"
"10:46:25.6394838 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Num_Catalog_Entries64","0.0000047","Type: REG_DWORD, Length: 4, Data: 7","8292"
"10:46:25.6395094 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 102, Name: 00000c04","2512"
"10:46:25.6395103 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5","0.0000012","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6395235 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6395286 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000102","Desired Access: Maximum Allowed, Granted Access: Read","8292"
"10:46:25.6395367 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c04","0.0000068","Desired Access: Query Value","2512"
"10:46:25.6395559 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c04\Layout File","0.0000056","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:25.6395585 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000047","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6395738 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c04","0.0000013","","2512"
"10:46:25.6395772 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001","0.0000082","Desired Access: Read","8292"
"10:46:25.6395862 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 103, Name: 00000c0c","2512"
"10:46:25.6395999 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6396028 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\LibraryPath","0.0000039","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\napinsp.dll","8292"
"10:46:25.6396127 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c0c","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6396208 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\LibraryPath","0.0000030","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\napinsp.dll","8292"
"10:46:25.6396323 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c0c\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDFC.DLL","2512"
"10:46:25.6396370 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\DisplayString","0.0000034","Length: 12","8292"
"10:46:25.6396472 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c0c","0.0000013","","2512"
"10:46:25.6396515 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\DisplayString","0.0000030","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\napinsp.dll,-1000","8292"
"10:46:25.6396587 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 104, Name: 00000c1a","2512"
"10:46:25.6396677 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\DisplayString","0.0000030","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\napinsp.dll,-1000","8292"
"10:46:25.6396720 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6396826 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\DisplayString","0.0000030","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\napinsp.dll,-1000","8292"
"10:46:25.6396843 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c1a","0.0000069","Desired Access: Query Value","2512"
"10:46:25.6396988 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\ProviderId","0.0000035","Type: REG_BINARY, Length: 16, Data: A2 CB 4A 96 BC B2 EB 40 8C 6A A6 DB 40 16 1C AE","8292"
"10:46:25.6397027 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c1a\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDYCC.DLL","2512"
"10:46:25.6397142 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\AddressFamily","0.0000030","Length: 16","8292"
"10:46:25.6397168 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c1a","0.0000012","","2512"
"10:46:25.6397287 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 105, Name: 00000C51","2512"
"10:46:25.6397300 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\SupportedNameSpace","0.0000030","Type: REG_DWORD, Length: 4, Data: 37","8292"
"10:46:25.6397419 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6397458 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\Enabled","0.0000025","Type: REG_DWORD, Length: 4, Data: 1","8292"
"10:46:25.6397547 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000C51","0.0000069","Desired Access: Query Value","2512"
"10:46:25.6397599 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\Version","0.0000029","Type: REG_DWORD, Length: 4, Data: 0","8292"
"10:46:25.6397735 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000C51\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDDZO.DLL","2512"
"10:46:25.6397761 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\StoresServiceClassInfo","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","8292"
"10:46:25.6397884 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000C51","0.0000013","","2512"
"10:46:25.6397910 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\ProviderInfo","0.0000034","Type: REG_BINARY, Length: 0","8292"
"10:46:25.6398008 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 106, Name: 00001004","2512"
"10:46:25.6398064 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","8292"
"10:46:25.6398132 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6398226 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001","0.0000017","","8292"
"10:46:25.6398260 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001004","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6398388 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6398443 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001004\Layout File","0.0000026","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:25.6398533 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002","0.0000077","Desired Access: Read","8292"
"10:46:25.6398588 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001004","0.0000018","","2512"
"10:46:25.6398712 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 107, Name: 00001009","2512"
"10:46:25.6398755 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\LibraryPath","0.0000030","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\pnrpnsp.dll","8292"
"10:46:25.6398836 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6398904 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\LibraryPath","0.0000026","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\pnrpnsp.dll","8292"
"10:46:25.6398960 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001009","0.0000098","Desired Access: Query Value","2512"
"10:46:25.6399045 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\DisplayString","0.0000030","Length: 12","8292"
"10:46:25.6399177 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001009\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDCA.DLL","2512"
"10:46:25.6399186 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\DisplayString","0.0000030","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1000","8292"
"10:46:25.6399327 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001009","0.0000012","","2512"
"10:46:25.6399335 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\DisplayString","0.0000030","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1000","8292"
"10:46:25.6399446 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 108, Name: 0000100c","2512"
"10:46:25.6399480 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\DisplayString","0.0000030","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1000","8292"
"10:46:25.6399578 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6399634 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\ProviderId","0.0000030","Type: REG_BINARY, Length: 16, Data: CE 89 FE 03 6D 76 76 49 B9 C1 BB 9B C4 2C 7B 4D","8292"
"10:46:25.6399702 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000100c","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6399779 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\AddressFamily","0.0000030","Length: 16","8292"
"10:46:25.6399881 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000100c\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDSF.DLL","2512"
"10:46:25.6399928 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\SupportedNameSpace","0.0000026","Type: REG_DWORD, Length: 4, Data: 39","8292"
"10:46:25.6400022 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000100c","0.0000017","","2512"
"10:46:25.6400073 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\Enabled","0.0000026","Type: REG_DWORD, Length: 4, Data: 1","8292"
"10:46:25.6400142 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 109, Name: 0000105f","2512"
"10:46:25.6400218 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\Version","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","8292"
"10:46:25.6400270 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6400380 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\StoresServiceClassInfo","0.0000035","Type: REG_DWORD, Length: 4, Data: 0","8292"
"10:46:25.6400393 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000105f","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6400538 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\ProviderInfo","0.0000034","Type: REG_BINARY, Length: 0","8292"
"10:46:25.6400572 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000105f\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDTIFI.DLL","2512"
"10:46:25.6400692 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","8292"
"10:46:25.6400718 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000105f","0.0000012","","2512"
"10:46:25.6400833 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000051","Index: 110, Name: 00001404","2512"
"10:46:25.6400850 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002","0.0000098","","8292"
"10:46:25.6400991 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6401084 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6401119 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001404","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6401234 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003","0.0000068","Desired Access: Read","8292"
"10:46:25.6401332 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001404\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:25.6401486 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001404","0.0000017","","2512"
"10:46:25.6401490 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\LibraryPath","0.0000051","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\pnrpnsp.dll","8292"
"10:46:25.6401614 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 111, Name: 00001809","2512"
"10:46:25.6401660 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\LibraryPath","0.0000030","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\pnrpnsp.dll","8292"
"10:46:25.6401737 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6401814 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\DisplayString","0.0000026","Length: 12","8292"
"10:46:25.6401865 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001809","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6401951 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\DisplayString","0.0000029","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1001","8292"
"10:46:25.6402049 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001809\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDIR.DLL","2512"
"10:46:25.6402096 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\DisplayString","0.0000025","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1001","8292"
"10:46:25.6402194 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001809","0.0000013","","2512"
"10:46:25.6402236 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\DisplayString","0.0000026","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1001","8292"
"10:46:25.6402309 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 112, Name: 0000201a","2512"
"10:46:25.6402386 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\ProviderId","0.0000030","Type: REG_BINARY, Length: 16, Data: CD 89 FE 03 6D 76 76 49 B9 C1 BB 9B C4 2C 7B 4D","8292"
"10:46:25.6402437 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6402539 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\AddressFamily","0.0000052","Length: 16","8292"
"10:46:25.6402565 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000201a","0.0000068","Desired Access: Query Value","2512"
"10:46:25.6402719 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\SupportedNameSpace","0.0000029","Type: REG_DWORD, Length: 4, Data: 38","8292"
"10:46:25.6402757 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000201a\Layout File","0.0000026","Type: REG_SZ, Length: 22, Data: KBDBHC.DLL","2512"
"10:46:25.6402868 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\Enabled","0.0000030","Type: REG_DWORD, Length: 4, Data: 1","8292"
"10:46:25.6402919 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000201a","0.0000013","","2512"
"10:46:25.6403039 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000038","Index: 113, Name: 00004009","2512"
"10:46:25.6403051 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\Version","0.0000035","Type: REG_DWORD, Length: 4, Data: 0","8292"
"10:46:25.6403179 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6403218 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\StoresServiceClassInfo","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","8292"
"10:46:25.6403312 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00004009","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6403363 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\ProviderInfo","0.0000034","Type: REG_BINARY, Length: 0","8292"
"10:46:25.6403495 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00004009\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDINEN.DLL","2512"
"10:46:25.6403516 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","8292"
"10:46:25.6403644 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00004009","0.0000013","","2512"
"10:46:25.6403674 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003","0.0000013","","8292"
"10:46:25.6403764 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 114, Name: 00010401","2512"
"10:46:25.6403819 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6403892 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6403964 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004","0.0000086","Desired Access: Read","8292"
"10:46:25.6404208 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010401","0.0000072","Desired Access: Query Value","2512"
"10:46:25.6404229 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\LibraryPath","0.0000030","Type: REG_SZ, Length: 66, Data: %SystemRoot%\system32\NLAapi.dll","8292"
"10:46:25.6404383 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\LibraryPath","0.0000051","Type: REG_SZ, Length: 66, Data: %SystemRoot%\system32\NLAapi.dll","8292"
"10:46:25.6404404 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010401\Layout File","0.0000196","Type: REG_SZ, Length: 20, Data: KBDA2.DLL","2512"
"10:46:25.6404575 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\DisplayString","0.0000029","Length: 12","8292"
"10:46:25.6404720 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\DisplayString","0.0000030","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\system32\nlasvc.dll,-1000","8292"
"10:46:25.6404788 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010401","0.0000021","","2512"
"10:46:25.6404869 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\DisplayString","0.0000030","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\system32\nlasvc.dll,-1000","8292"
"10:46:25.6404963 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000038","Index: 115, Name: 00010402","2512"
"10:46:25.6405014 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\DisplayString","0.0000038","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\system32\nlasvc.dll,-1000","8292"
"10:46:25.6405138 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6405180 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\ProviderId","0.0000039","Type: REG_BINARY, Length: 16, Data: 3A 24 42 66 A8 3B A6 4A BA A5 2E 0B D7 1F DD 83","8292"
"10:46:25.6405304 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010402","0.0000086","Desired Access: Query Value","2512"
"10:46:25.6405334 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\AddressFamily","0.0000030","Length: 16","8292"
"10:46:25.6405483 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\SupportedNameSpace","0.0000030","Type: REG_DWORD, Length: 4, Data: 15","8292"
"10:46:25.6405535 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010402\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:25.6405633 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\Enabled","0.0000030","Type: REG_DWORD, Length: 4, Data: 1","8292"
"10:46:25.6405705 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010402","0.0000017","","2512"
"10:46:25.6405786 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\Version","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","8292"
"10:46:25.6405842 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 116, Name: 00010405","2512"
"10:46:25.6405948 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\StoresServiceClassInfo","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","8292"
"10:46:25.6405987 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6406102 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","8292"
"10:46:25.6406128 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010405","0.0000068","Desired Access: Query Value","2512"
"10:46:25.6406256 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\ProviderInfo","0.0000034","Type: REG_BINARY, Length: 0","8292"
"10:46:25.6406324 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010405\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDCZ1.DLL","2512"
"10:46:25.6406422 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004","0.0000017","","8292"
"10:46:25.6406473 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010405","0.0000013","","2512"
"10:46:25.6406593 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 117, Name: 00010407","2512"
"10:46:25.6406712 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6406734 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6406870 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010407","0.0000090","Desired Access: Query Value","2512"
"10:46:25.6406908 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005","0.0000082","Desired Access: Read","8292"
"10:46:25.6407164 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\LibraryPath","0.0000035","Type: REG_SZ, Length: 68, Data: %SystemRoot%\System32\mswsock.dll","8292"
"10:46:25.6407186 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010407\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDGR1.DLL","2512"
"10:46:25.6407318 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\LibraryPath","0.0000030","Type: REG_SZ, Length: 68, Data: %SystemRoot%\System32\mswsock.dll","8292"
"10:46:25.6407335 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010407","0.0000034","","2512"
"10:46:25.6407480 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 118, Name: 00010408","2512"
"10:46:25.6407489 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\DisplayString","0.0000102","Length: 12","8292"
"10:46:25.6407745 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\DisplayString","0.0000034","Type: REG_SZ, Length: 86, Data: @%SystemRoot%\system32\wshtcpip.dll,-60103","8292"
"10:46:25.6407920 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\DisplayString","0.0000025","Type: REG_SZ, Length: 86, Data: @%SystemRoot%\system32\wshtcpip.dll,-60103","8292"
"10:46:25.6408060 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\DisplayString","0.0000167","Type: REG_SZ, Length: 86, Data: @%SystemRoot%\system32\wshtcpip.dll,-60103","8292"
"10:46:25.6408415 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\ProviderId","0.0000029","Type: REG_BINARY, Length: 16, Data: 40 9D 05 22 9E 7E CF 11 AE 5A 00 AA 00 A7 11 2B","8292"
"10:46:25.6408560 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\AddressFamily","0.0000030","Length: 16","8292"
"10:46:25.6408700 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\SupportedNameSpace","0.0000030","Type: REG_DWORD, Length: 4, Data: 12","8292"
"10:46:25.6408837 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\Enabled","0.0000026","Type: REG_DWORD, Length: 4, Data: 1","8292"
"10:46:25.6408969 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\Version","0.0000026","Type: REG_DWORD, Length: 4, Data: 0","8292"
"10:46:25.6409123 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\StoresServiceClassInfo","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","8292"
"10:46:25.6409268 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\ProviderInfo","0.0000026","Type: REG_BINARY, Length: 0","8292"
"10:46:25.6409409 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","8292"
"10:46:25.6409567 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005","0.0000017","","8292"
"10:46:25.6409720 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6409874 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006","0.0000081","Desired Access: Read","8292"
"10:46:25.6410100 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\LibraryPath","0.0000034","Type: REG_SZ, Length: 66, Data: %SystemRoot%\System32\winrnr.dll","8292"
"10:46:25.6410249 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\LibraryPath","0.0000026","Type: REG_SZ, Length: 66, Data: %SystemRoot%\System32\winrnr.dll","8292"
"10:46:25.6410390 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\DisplayString","0.0000026","Length: 12","8292"
"10:46:25.6410518 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\DisplayString","0.0000030","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\System32\winrnr.dll,-1000","8292"
"10:46:25.6410659 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\DisplayString","0.0000025","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\System32\winrnr.dll,-1000","8292"
"10:46:25.6410795 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\DisplayString","0.0000026","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\System32\winrnr.dll,-1000","8292"
"10:46:25.6410932 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\ProviderId","0.0000030","Type: REG_BINARY, Length: 16, Data: EE 37 26 3B 80 E5 CF 11 A5 55 00 C0 4F D8 D4 AC","8292"
"10:46:25.6411068 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\AddressFamily","0.0000026","Length: 16","8292"
"10:46:25.6411205 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\SupportedNameSpace","0.0000047","Type: REG_DWORD, Length: 4, Data: 32","8292"
"10:46:25.6411363 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\Enabled","0.0000025","Type: REG_DWORD, Length: 4, Data: 1","8292"
"10:46:25.6411499 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\Version","0.0000026","Type: REG_DWORD, Length: 4, Data: 0","8292"
"10:46:25.6411644 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\StoresServiceClassInfo","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","8292"
"10:46:25.6411790 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\ProviderInfo","0.0000029","Type: REG_BINARY, Length: 0","8292"
"10:46:25.6411926 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","8292"
"10:46:25.6412080 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006","0.0000012","","8292"
"10:46:25.6412220 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6412378 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007","0.0000073","Desired Access: Read","8292"
"10:46:25.6412660 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\LibraryPath","0.0000030","Type: REG_SZ, Length: 66, Data: %SystemRoot%\System32\wshbth.dll","8292"
"10:46:25.6412801 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\LibraryPath","0.0000025","Type: REG_SZ, Length: 66, Data: %SystemRoot%\System32\wshbth.dll","8292"
"10:46:25.6412942 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\DisplayString","0.0000025","Length: 12","8292"
"10:46:25.6413070 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\DisplayString","0.0000025","Type: REG_SZ, Length: 40, Data: Bluetooth Namespace","8292"
"10:46:25.6413206 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\DisplayString","0.0000026","Type: REG_SZ, Length: 40, Data: Bluetooth Namespace","8292"
"10:46:25.6413343 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\DisplayString","0.0000025","Type: REG_SZ, Length: 40, Data: Bluetooth Namespace","8292"
"10:46:25.6413475 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\ProviderId","0.0000030","Type: REG_BINARY, Length: 16, Data: E0 63 AA 06 60 7D FF 41 AF B2 3E E6 D2 D9 39 2D","8292"
"10:46:25.6413616 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\AddressFamily","0.0000025","Length: 16","8292"
"10:46:25.6413752 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\SupportedNameSpace","0.0000030","Type: REG_DWORD, Length: 4, Data: 16","8292"
"10:46:25.6413884 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\Enabled","0.0000026","Type: REG_DWORD, Length: 4, Data: 1","8292"
"10:46:25.6414017 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\Version","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","8292"
"10:46:25.6414175 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\StoresServiceClassInfo","0.0000025","Type: REG_DWORD, Length: 4, Data: 0","8292"
"10:46:25.6414320 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","8292"
"10:46:25.6414469 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\ProviderInfo","0.0000026","Type: REG_BINARY, Length: 0","8292"
"10:46:25.6414627 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007","0.0000013","","8292"
"10:46:25.6414763 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000013","","8292"
"10:46:25.6414908 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","","8292"
"10:46:25.6415092 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6415246 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock2\Parameters","0.0000059","Desired Access: Query Value","8292"
"10:46:25.6415420 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock2\Parameters","0.0000116","Desired Access: Query Value","8292"
"10:46:25.6415711 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Ws2_32NumHandleBuckets","0.0000042","Length: 16","8292"
"10:46:25.6415860 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Ws2_32SpinCount","0.0000026","Length: 16","8292"
"10:46:25.6416001 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","","8292"
"10:46:25.6427393 AM","firefox.exe","7972","ReadFile","C:\Program Files\Firefox Nightly\dependentlibs.list","0.0000068","Offset: 476, Length: 4,096","8292"
"10:46:25.6427679 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\dependentlibs.list","0.0000123","","8292"
"10:46:25.6442821 AM","firefox.exe","7972","QueryNameInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000090","Name: \Program Files\Firefox Nightly\xul.dll","8292"
"10:46:25.6448884 AM","firefox.exe","7972","QueryNameInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000068","Name: \Program Files\Firefox Nightly\xul.dll","8292"
"10:46:25.6456282 AM","firefox.exe","7972","QueryNameInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000043","Name: \Program Files\Firefox Nightly\xul.dll","8292"
"10:46:25.6458591 AM","firefox.exe","7972","Thread Create","","0.0000000","Thread ID: 8336","8292"
"10:46:25.6468464 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\SideBySide","0.0000158","Desired Access: Read","8292"
"10:46:25.6468771 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest","0.0000047","Length: 20","8292"
"10:46:25.6468946 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide","0.0000017","","8292"
"10:46:25.6470520 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000209","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6473196 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6473405 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010408","0.0000123","Desired Access: Query Value","2512"
"10:46:25.6473708 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010408\Layout File","0.0000038","Type: REG_SZ, Length: 26, Data: KBDHE220.DLL","2512"
"10:46:25.6474002 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000064","","8292"
"10:46:25.6477641 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\rpcss.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6478111 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\rpcss.dll","0.0000042","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","8292"
"10:46:25.6478252 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\rpcss.dll","0.0000059","","8292"
"10:46:25.6479847 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\rpcss.dll","0.0000184","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6480470 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\rpcss.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.6480684 AM","firefox.exe","7972","QueryStandardInformationFile","C:\Windows\System32\rpcss.dll","0.0000038","AllocationSize: 1,163,264, EndOfFile: 1,159,680, NumberOfLinks: 2, DeletePending: False, Directory: False","8292"
"10:46:25.6481008 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\rpcss.dll","0.0000025","SyncType: SyncTypeOther","8292"
"10:46:25.6482190 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\rpcss.dll","0.0000068","","8292"
"10:46:25.6492848 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6493326 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","8292"
"10:46:25.6493454 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000055","","8292"
"10:46:25.6494938 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000184","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6495608 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\ntmarta.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.6496005 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\ntmarta.dll","0.0000021","SyncType: SyncTypeOther","8292"
"10:46:25.6496398 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\ntmarta.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6496880 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010408","0.0000136","","2512"
"10:46:25.6497149 AM","firefox.exe","7972","Load Image","C:\Windows\System32\ntmarta.dll","0.0000000","Image Base: 0x7ffb44b80000, Image Size: 0x31000","8292"
"10:46:25.6497315 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000060","Index: 119, Name: 00010409","2512"
"10:46:25.6497528 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\ntmarta.dll","0.0000064","Name: \Windows\System32\ntmarta.dll","8292"
"10:46:25.6497614 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6497823 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010409","0.0000158","Desired Access: Query Value","2512"
"10:46:25.6498151 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010409\Layout File","0.0000039","Type: REG_SZ, Length: 20, Data: KBDDV.DLL","2512"
"10:46:25.6498352 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010409","0.0000021","","2512"
"10:46:25.6498497 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 120, Name: 0001040a","2512"
"10:46:25.6498633 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6498778 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040a","0.0000073","Desired Access: Query Value","2512"
"10:46:25.6498979 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040a\Layout File","0.0013914","Type: REG_SZ, Length: 20, Data: KBDES.DLL","2512"
"10:46:25.6499081 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000137","","8292"
"10:46:25.6503984 AM","firefox.exe","7972","RegOpenKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\Appx","0.0000175","Desired Access: Read","8292"
"10:46:25.6504342 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Windows\Appx\AllowDevelopmentWithoutDevLicense","0.0000043","Type: REG_DWORD, Length: 4, Data: 65535","8292"
"10:46:25.6504573 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\Appx","0.0000017","","8292"
"10:46:25.6504743 AM","firefox.exe","7972","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModelUnlock","0.0000154","Desired Access: Read","8292"
"10:46:25.6505016 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModelUnlock\AllowDevelopmentWithoutDevLicense","0.0000030","Length: 24","8292"
"10:46:25.6505161 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModelUnlock","0.0000017","","8292"
"10:46:25.6510759 AM","firefox.exe","7972","RegOpenKey","HKCU\Software\Classes","0.0000115","Desired Access: Maximum Allowed, Granted Access: Read, Create Link","8292"
"10:46:25.6511113 AM","firefox.exe","7972","RegQueryKey","HKCU\Software\Classes","0.0000056","Query: Name","8292"
"10:46:25.6511344 AM","firefox.exe","7972","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6511468 AM","firefox.exe","7972","RegQueryKey","HKCU\Software\Classes","0.0000012","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6511625 AM","firefox.exe","7972","RegOpenKey","HKCU\Software\Classes\AppID\firefox.exe","0.0000099","Desired Access: Read","8292"
"10:46:25.6511869 AM","firefox.exe","7972","RegOpenKey","HKCR\AppID\firefox.exe","0.0000085","Desired Access: Read","8292"
"10:46:25.6512206 AM","firefox.exe","7972","RegQueryKey","HKCU\Software\Classes","0.0000038","Query: Name","8292"
"10:46:25.6512359 AM","firefox.exe","7972","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.6512479 AM","firefox.exe","7972","RegQueryKey","HKCU\Software\Classes","0.0000030","Query: Name","8292"
"10:46:25.6512790 AM","firefox.exe","7972","RegOpenKey","HKCU\Software\Classes\AppID\firefox.exe","0.0000167","Desired Access: Read","8292"
"10:46:25.6513140 AM","firefox.exe","7972","RegOpenKey","HKCR\AppID\firefox.exe","0.0000060","Desired Access: Read","8292"
"10:46:25.6517266 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000081","Desired Access: Query Value","8292"
"10:46:25.6517496 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000064","Desired Access: Query Value","8292"
"10:46:25.6517710 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Lsa\EveryoneIncludesAnonymous","0.0000051","Type: REG_DWORD, Length: 4, Data: 0","8292"
"10:46:25.6517927 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000022","","8292"
"10:46:25.6518422 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\Rpc\Extensions","0.0000141","Desired Access: Read","8292"
"10:46:25.6518712 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Rpc\Extensions\NdrOleExtDLL","0.0000034","Type: REG_EXPAND_SZ, Length: 24, Data: combase.dll","8292"
"10:46:25.6518874 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Rpc\Extensions","0.0000018","","8292"
"10:46:25.6522830 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\browser","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6523154 AM","firefox.exe","7972","QueryNetworkOpenInformationFile","C:\Program Files\Firefox Nightly\browser","0.0000043","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:30 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, AllocationSize: 4096, EndOfFile: 4096, FileAttributes: D","8292"
"10:46:25.6523299 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\browser","0.0000060","","8292"
"10:46:25.6541351 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly","0.0000222","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6541966 AM","firefox.exe","7972","QueryNameInformationFile","C:\Program Files\Firefox Nightly","0.0000047","Name: \Program Files\Firefox Nightly","8292"
"10:46:25.6542243 AM","firefox.exe","7972","QueryNameInformationFile","C:\Program Files\Firefox Nightly","0.0000038","Name: \Program Files\Firefox Nightly","8292"
"10:46:25.6543062 AM","firefox.exe","7972","QueryNormalizedNameInformationFile","C:\Program Files\Firefox Nightly","0.0000115","","8292"
"10:46:25.6543459 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly","0.0000090","","8292"
"10:46:25.6545260 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\browser","0.0000200","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6545699 AM","firefox.exe","7972","QueryNameInformationFile","C:\Program Files\Firefox Nightly\browser","0.0000043","Name: \Program Files\Firefox Nightly\browser","8292"
"10:46:25.6545900 AM","firefox.exe","7972","QueryNameInformationFile","C:\Program Files\Firefox Nightly\browser","0.0000034","Name: \Program Files\Firefox Nightly\browser","8292"
"10:46:25.6546476 AM","firefox.exe","7972","QueryNormalizedNameInformationFile","C:\Program Files\Firefox Nightly\browser","0.0000115","","8292"
"10:46:25.6546783 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\browser","0.0000064","","8292"
"10:46:25.6551702 AM","firefox.exe","7972","RegOpenKey","HKCU","0.0000154","Desired Access: Maximum Allowed, Granted Access: Read, Create Link","8292"
"10:46:25.6552108 AM","firefox.exe","7972","RegOpenKey","HKCU\Control Panel\International","0.0000081","Desired Access: Read","8292"
"10:46:25.6552372 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040a","0.0000034","","2512"
"10:46:25.6552398 AM","firefox.exe","7972","RegCloseKey","HKCU","0.0000025","","8292"
"10:46:25.6552590 AM","firefox.exe","7972","RegQueryValue","HKCU\Control Panel\International\LocaleName","0.0000059","Type: REG_SZ, Length: 12, Data: en-US","8292"
"10:46:25.6552637 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000064","Index: 121, Name: 0001040e","2512"
"10:46:25.6552824 AM","firefox.exe","7972","RegCloseKey","HKCU\Control Panel\International","0.0000017","","8292"
"10:46:25.6552863 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6553072 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040e","0.0000119","Desired Access: Query Value","2512"
"10:46:25.6553123 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\CustomLocale","0.0000077","Desired Access: Read","8292"
"10:46:25.6553349 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\CustomLocale","0.0000137","Desired Access: Read","8292"
"10:46:25.6553383 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040e\Layout File","0.0000043","Type: REG_SZ, Length: 22, Data: KBDHU1.DLL","2512"
"10:46:25.6553720 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\CustomLocale\en-US","0.0000035","Length: 532","8292"
"10:46:25.6553929 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\Nls\CustomLocale","0.0000022","","8292"
"10:46:25.6554151 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\ExtendedLocale","0.0000073","Desired Access: Read","8292"
"10:46:25.6554377 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\ExtendedLocale","0.0000141","Desired Access: Read","8292"
"10:46:25.6554697 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\ExtendedLocale\en-US","0.0000030","Length: 532","8292"
"10:46:25.6554877 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\Nls\ExtendedLocale","0.0000017","","8292"
"10:46:25.6555512 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040e","0.0000017","","2512"
"10:46:25.6555662 AM","firefox.exe","7972","RegOpenKey","HKCU","0.0000089","Desired Access: Maximum Allowed, Granted Access: Read, Create Link","8292"
"10:46:25.6555704 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000043","Index: 122, Name: 00010410","2512"
"10:46:25.6555888 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6555948 AM","firefox.exe","7972","RegOpenKey","HKCU\Control Panel\International","0.0000068","Desired Access: Read","8292"
"10:46:25.6556063 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010410","0.0000094","Desired Access: Query Value","2512"
"10:46:25.6556182 AM","firefox.exe","7972","RegCloseKey","HKCU","0.0000022","","8292"
"10:46:25.6556306 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010410\Layout File","0.0000038","Type: REG_SZ, Length: 26, Data: KBDIT142.DLL","2512"
"10:46:25.6556370 AM","firefox.exe","7972","RegOpenKey","HKCU\Control Panel\International\🌎🌏🌍","0.0000158","Desired Access: Query Value","8292"
"10:46:25.6556481 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010410","0.0000034","","2512"
"10:46:25.6556647 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 123, Name: 00010415","2512"
"10:46:25.6556711 AM","firefox.exe","7972","RegQueryValue","HKCU\Control Panel\International\🌎🌏🌍\Currencies","0.0000034","Length: 182","8292"
"10:46:25.6556797 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6556869 AM","firefox.exe","7972","RegQueryValue","HKCU\Control Panel\International\🌎🌏🌍\NLS Currency Data","0.0000026","Length: 182","8292"
"10:46:25.6556946 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010415","0.0000222","Desired Access: Query Value","2512"
"10:46:25.6557019 AM","firefox.exe","7972","RegQueryValue","HKCU\Control Panel\International\🌎🌏🌍\Clock","0.0000102","Length: 182","8292"
"10:46:25.6557266 AM","firefox.exe","7972","RegOpenKey","HKCU\Control Panel\International\🌎🌏🌍\Gregorian","0.0000119","Desired Access: Query Value","8292"
"10:46:25.6557334 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010415\Layout File","0.0000043","Type: REG_SZ, Length: 20, Data: KBDPL.DLL","2512"
"10:46:25.6557505 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010415","0.0000013","","2512"
"10:46:25.6557531 AM","firefox.exe","7972","RegCloseKey","HKCU\Control Panel\International\🌎🌏🌍","0.0000029","","8292"
"10:46:25.6557667 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 124, Name: 00010416","2512"
"10:46:25.6557804 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6557833 AM","firefox.exe","7972","RegQueryMultipleValueKey","HKCU\Control Panel\International","0.0000355","","8292"
"10:46:25.6557936 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010416","0.0000077","Desired Access: Query Value","2512"
"10:46:25.6558141 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010416\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDBR.DLL","2512"
"10:46:25.6558294 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010416","0.0000017","","2512"
"10:46:25.6558341 AM","firefox.exe","7972","RegQueryValue","HKCU\Control Panel\International\sCurrencyOverride","0.0000047","Length: 182","8292"
"10:46:25.6558422 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 125, Name: 00010418","2512"
"10:46:25.6558537 AM","firefox.exe","7972","RegCloseKey","HKCU\Control Panel\International","0.0000018","","8292"
"10:46:25.6558563 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6558695 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010418","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6558883 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010418\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDROST.DLL","2512"
"10:46:25.6559028 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010418","0.0000013","","2512"
"10:46:25.6559148 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 126, Name: 00010419","2512"
"10:46:25.6559271 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6559399 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010419","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6559579 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010419\Layout File","0.0000029","Type: REG_SZ, Length: 22, Data: KBDRU1.DLL","2512"
"10:46:25.6559715 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010419","0.0000013","","2512"
"10:46:25.6559822 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 127, Name: 0001041b","2512"
"10:46:25.6559945 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6560069 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041b","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6560253 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041b\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDSL1.DLL","2512"
"10:46:25.6560393 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041b","0.0000018","","2512"
"10:46:25.6560513 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 128, Name: 0001041e","2512"
"10:46:25.6560637 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6560773 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041e","0.0000068","Desired Access: Query Value","2512"
"10:46:25.6560965 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041e\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDTH1.DLL","2512"
"10:46:25.6561110 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041e","0.0000013","","2512"
"10:46:25.6561336 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 129, Name: 0001041f","2512"
"10:46:25.6561464 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6561588 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041f","0.0000073","Desired Access: Query Value","2512"
"10:46:25.6561776 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041f\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDTUF.DLL","2512"
"10:46:25.6561917 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041f","0.0000017","","2512"
"10:46:25.6562036 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 130, Name: 00010426","2512"
"10:46:25.6562160 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6562284 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010426","0.0000068","Desired Access: Query Value","2512"
"10:46:25.6562437 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\browser","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6562476 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010426\Layout File","0.0000029","Type: REG_SZ, Length: 22, Data: KBDLV1.DLL","2512"
"10:46:25.6562616 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010426","0.0000013","","2512"
"10:46:25.6562736 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 131, Name: 00010427","2512"
"10:46:25.6562770 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser","0.0000043","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:30 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: D","8292"
"10:46:25.6562864 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6562907 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\browser","0.0000055","","8292"
"10:46:25.6562996 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010427","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6563175 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010427\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDLT1.DLL","2512"
"10:46:25.6563320 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010427","0.0000013","","2512"
"10:46:25.6563440 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 132, Name: 0001042b","2512"
"10:46:25.6563559 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6563687 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042b","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6563871 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042b\Layout File","0.0000051","Type: REG_SZ, Length: 24, Data: kbdarmw.dll","2512"
"10:46:25.6564033 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042b","0.0000017","","2512"
"10:46:25.6564157 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 133, Name: 0001042c","2512"
"10:46:25.6564276 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6564408 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042c","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6564596 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042c\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDAZST.DLL","2512"
"10:46:25.6564741 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042c","0.0000013","","2512"
"10:46:25.6564869 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 134, Name: 0001042e","2512"
"10:46:25.6565001 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6565134 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042e","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6565317 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042e\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDSOREX.DLL","2512"
"10:46:25.6565462 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042e","0.0000017","","2512"
"10:46:25.6565607 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 135, Name: 0001042f","2512"
"10:46:25.6565731 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6565851 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042f","0.0000089","Desired Access: Query Value","2512"
"10:46:25.6565996 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6566060 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042f\Layout File","0.0000029","Type: REG_SZ, Length: 26, Data: KBDMACST.DLL","2512"
"10:46:25.6566205 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042f","0.0000017","","2512"
"10:46:25.6566294 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8292"
"10:46:25.6566456 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000060","","8292"
"10:46:25.6566550 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 136, Name: 00010437","2512"
"10:46:25.6566695 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6566832 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010437","0.0000068","Desired Access: Query Value","2512"
"10:46:25.6567032 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010437\Layout File","0.0000026","Type: REG_SZ, Length: 26, Data: kbdgeoqw.dll","2512"
"10:46:25.6567177 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010437","0.0000013","","2512"
"10:46:25.6567297 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 137, Name: 00010439","2512"
"10:46:25.6567421 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6567549 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010439","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6567728 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010439\Layout File","0.0000025","Type: REG_SZ, Length: 26, Data: KBDINHIN.DLL","2512"
"10:46:25.6567869 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010439","0.0000017","","2512"
"10:46:25.6567992 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 138, Name: 0001043a","2512"
"10:46:25.6568052 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000167","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6568120 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6568248 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043a","0.0000073","Desired Access: Query Value","2512"
"10:46:25.6568440 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043a\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDMLT48.DLL","2512"
"10:46:25.6568590 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043a","0.0000136","","2512"
"10:46:25.6568795 AM","firefox.exe","7972","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000081","AllocationSize: 23,359,488, EndOfFile: 23,355,435, NumberOfLinks: 1, DeletePending: False, Directory: False","8292"
"10:46:25.6569136 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 139, Name: 0001043b","2512"
"10:46:25.6569255 AM","firefox.exe","7972","CreateFileMapping","C:\Program Files\Firefox Nightly\omni.ja","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.6569294 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000392","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6569464 AM","firefox.exe","7972","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000039","AllocationSize: 23,359,488, EndOfFile: 23,355,435, NumberOfLinks: 1, DeletePending: False, Directory: False","8292"
"10:46:25.6569776 AM","firefox.exe","7972","CreateFileMapping","C:\Program Files\Firefox Nightly\omni.ja","0.0000021","SyncType: SyncTypeOther","8292"
"10:46:25.6569900 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043b","0.0000093","Desired Access: Query Value","2512"
"10:46:25.6570177 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043b\Layout File","0.0000038","Type: REG_SZ, Length: 26, Data: KBDSMSNO.DLL","2512"
"10:46:25.6570382 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043b","0.0000021","","2512"
"10:46:25.6570552 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000043","Index: 140, Name: 00010444","2512"
"10:46:25.6570719 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6570872 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010444","0.0000073","Desired Access: Query Value","2512"
"10:46:25.6571077 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010444\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: KBDTT102.DLL","2512"
"10:46:25.6571244 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010444","0.0000017","","2512"
"10:46:25.6571376 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 141, Name: 00010445","2512"
"10:46:25.6571517 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6571653 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010445","0.0000068","Desired Access: Query Value","2512"
"10:46:25.6571854 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010445\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDINBE1.DLL","2512"
"10:46:25.6572007 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010445","0.0000017","","2512"
"10:46:25.6572135 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 142, Name: 00010451","2512"
"10:46:25.6572268 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6572404 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010451","0.0000068","Desired Access: Query Value","2512"
"10:46:25.6572600 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010451\Layout File","0.0000039","Type: REG_SZ, Length: 26, Data: KBDTIPRD.DLL","2512"
"10:46:25.6572763 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010451","0.0000012","","2512"
"10:46:25.6572886 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 143, Name: 00010453","2512"
"10:46:25.6573023 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6573159 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010453","0.0000069","Desired Access: Query Value","2512"
"10:46:25.6573347 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010453\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDKNI.DLL","2512"
"10:46:25.6573496 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010453","0.0000013","","2512"
"10:46:25.6573620 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 144, Name: 0001045a","2512"
"10:46:25.6573752 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6573880 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045a","0.0000167","Desired Access: Query Value","2512"
"10:46:25.6574166 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045a\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDSYR2.DLL","2512"
"10:46:25.6574307 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045a","0.0000017","","2512"
"10:46:25.6574427 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 145, Name: 0001045b","2512"
"10:46:25.6574559 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6574614 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000175","","8292"
"10:46:25.6574691 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045b","0.0000068","Desired Access: Query Value","2512"
"10:46:25.6574883 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045b\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDSW09.DLL","2512"
"10:46:25.6575037 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045b","0.0000013","","2512"
"10:46:25.6575156 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 146, Name: 0001045c","2512"
"10:46:25.6575284 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6575412 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045c","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6575604 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045c\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDCHERP.DLL","2512"
"10:46:25.6575758 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045c","0.0000013","","2512"
"10:46:25.6575877 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 147, Name: 0001045d","2512"
"10:46:25.6576005 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6576133 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045d","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6576317 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045d\Layout File","0.0000025","Type: REG_SZ, Length: 26, Data: KBDINUK2.DLL","2512"
"10:46:25.6576458 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045d","0.0000012","","2512"
"10:46:25.6576573 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 148, Name: 00010465","2512"
"10:46:25.6576701 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0003426","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6577610 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6577844 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000030","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: A","8292"
"10:46:25.6577942 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000043","","8292"
"10:46:25.6579760 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6579960 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8292"
"10:46:25.6580046 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000119","","8292"
"10:46:25.6580344 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010465","0.0000099","Desired Access: Query Value","2512"
"10:46:25.6580630 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010465\Layout File","0.0000043","Type: REG_SZ, Length: 24, Data: KBDDIV2.DLL","2512"
"10:46:25.6580682 AM","firefox.exe","7972","CreateFile","C:\","0.0000162","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6580950 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010465","0.0000022","","2512"
"10:46:25.6581121 AM","firefox.exe","7972","QueryDirectory","C:\Program Files","0.0000196","Filter: Program Files, 1: Program Files","8292"
"10:46:25.6581130 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000038","Index: 149, Name: 00010480","2512"
"10:46:25.6581304 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6581484 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010480","0.0000089","Desired Access: Query Value","2512"
"10:46:25.6581535 AM","firefox.exe","7972","CloseFile","C:\","0.0000064","","8292"
"10:46:25.6581735 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010480\Layout File","0.0000039","Type: REG_SZ, Length: 26, Data: KBDUGHR1.DLL","2512"
"10:46:25.6581923 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010480","0.0000017","","2512"
"10:46:25.6582064 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000038","Index: 150, Name: 0001080c","2512"
"10:46:25.6582218 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6582367 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001080c","0.0000089","Desired Access: Query Value","2512"
"10:46:25.6582597 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001080c\Layout File","0.0000034","Type: REG_SZ, Length: 24, Data: KBDBENE.DLL","2512"
"10:46:25.6582768 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001080c","0.0000017","","2512"
"10:46:25.6582913 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 151, Name: 0001083b","2512"
"10:46:25.6583058 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6583207 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001083b","0.0000081","Desired Access: Query Value","2512"
"10:46:25.6583220 AM","firefox.exe","7972","CreateFile","C:\Program Files","0.0000171","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6583425 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001083b\Layout File","0.0000038","Type: REG_SZ, Length: 22, Data: KBDFI1.DLL","2512"
"10:46:25.6583596 AM","firefox.exe","7972","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000196","Filter: Firefox Nightly, 1: Firefox Nightly","8292"
"10:46:25.6583630 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001083b","0.0000017","","2512"
"10:46:25.6583779 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 152, Name: 00010850","2512"
"10:46:25.6583937 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6583963 AM","firefox.exe","7972","CloseFile","C:\Program Files","0.0000064","","8292"
"10:46:25.6584129 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010850","0.0000077","Desired Access: Query Value","2512"
"10:46:25.6584347 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010850\Layout File","0.0000047","Type: REG_SZ, Length: 26, Data: KBDMONST.DLL","2512"
"10:46:25.6584530 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010850","0.0000013","","2512"
"10:46:25.6584667 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 153, Name: 00010c00","2512"
"10:46:25.6584812 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6584961 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010c00","0.0000081","Desired Access: Query Value","2512"
"10:46:25.6585183 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010c00\Layout File","0.0000034","Type: REG_SZ, Length: 24, Data: KBDMYAN.DLL","2512"
"10:46:25.6585349 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010c00","0.0000013","","2512"
"10:46:25.6585486 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000456","Index: 154, Name: 00011009","2512"
"10:46:25.6586083 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6586232 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011009","0.0000077","Desired Access: Query Value","2512"
"10:46:25.6586450 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011009\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDCAN.DLL","2512"
"10:46:25.6586621 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011009","0.0000017","","2512"
"10:46:25.6586762 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 155, Name: 0001105f","2512"
"10:46:25.6586817 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6586907 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6587043 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001105f","0.0000077","Desired Access: Query Value","2512"
"10:46:25.6587124 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000047","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: A","8292"
"10:46:25.6587256 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001105f\Layout File","0.0000035","Type: REG_SZ, Length: 26, Data: KBDTIFI2.DLL","2512"
"10:46:25.6587269 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000060","","8292"
"10:46:25.6587419 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001105f","0.0000017","","2512"
"10:46:25.6587551 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 156, Name: 00011809","2512"
"10:46:25.6587692 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6587764 AM","firefox.exe","7972","CreateFile","C:\","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6587824 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011809","0.0000072","Desired Access: Query Value","2512"
"10:46:25.6588050 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011809\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDGAE.DLL","2512"
"10:46:25.6588114 AM","firefox.exe","7972","QueryDirectory","C:\Program Files","0.0000179","Filter: Program Files, 1: Program Files","8292"
"10:46:25.6588208 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011809","0.0000017","","2512"
"10:46:25.6588344 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 157, Name: 00020401","2512"
"10:46:25.6588460 AM","firefox.exe","7972","CloseFile","C:\","0.0000055","","8292"
"10:46:25.6588485 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6588630 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020401","0.0000073","Desired Access: Query Value","2512"
"10:46:25.6588835 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020401\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDA3.DLL","2512"
"10:46:25.6588997 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020401","0.0000017","","2512"
"10:46:25.6589134 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 158, Name: 00020402","2512"
"10:46:25.6589279 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6589424 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020402","0.0000072","Desired Access: Query Value","2512"
"10:46:25.6589624 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020402\Layout File","0.0000035","Type: REG_SZ, Length: 24, Data: KBDBGPH.DLL","2512"
"10:46:25.6589782 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020402","0.0000017","","2512"
"10:46:25.6589923 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 159, Name: 00020405","2512"
"10:46:25.6589962 AM","firefox.exe","7972","CreateFile","C:\Program Files","0.0000166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6590060 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6590192 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020405","0.0000132","Desired Access: Query Value","2512"
"10:46:25.6590380 AM","firefox.exe","7972","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000243","Filter: Firefox Nightly, 1: Firefox Nightly","8292"
"10:46:25.6590456 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020405\Layout File","0.0000052","Type: REG_SZ, Length: 22, Data: KBDCZ2.DLL","2512"
"10:46:25.6590636 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020405","0.0000017","","2512"
"10:46:25.6590781 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 160, Name: 00020408","2512"
"10:46:25.6590794 AM","firefox.exe","7972","CloseFile","C:\Program Files","0.0000059","","8292"
"10:46:25.6590926 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6591062 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020408","0.0000073","Desired Access: Query Value","2512"
"10:46:25.6591259 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020408\Layout File","0.0000029","Type: REG_SZ, Length: 26, Data: KBDHE319.DLL","2512"
"10:46:25.6591412 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020408","0.0000017","","2512"
"10:46:25.6591544 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000035","Index: 161, Name: 00020409","2512"
"10:46:25.6591690 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6591830 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020409","0.0000077","Desired Access: Query Value","2512"
"10:46:25.6592044 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020409\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDUSX.DLL","2512"
"10:46:25.6592202 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020409","0.0000017","","2512"
"10:46:25.6592338 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 162, Name: 0002040d","2512"
"10:46:25.6592487 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6592615 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000184","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6592628 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002040d","0.0000073","Desired Access: Query Value","2512"
"10:46:25.6592854 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002040d\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: kbdhebl3.dll","2512"
"10:46:25.6593021 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002040d","0.0000017","","2512"
"10:46:25.6593042 AM","firefox.exe","7972","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000043","AllocationSize: 48,279,552, EndOfFile: 48,278,560, NumberOfLinks: 1, DeletePending: False, Directory: False","8292"
"10:46:25.6593149 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 163, Name: 00020418","2512"
"10:46:25.6593290 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6593328 AM","firefox.exe","7972","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.6593452 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020418","0.0000072","Desired Access: Query Value","2512"
"10:46:25.6593528 AM","firefox.exe","7972","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000035","AllocationSize: 48,279,552, EndOfFile: 48,278,560, NumberOfLinks: 1, DeletePending: False, Directory: False","8292"
"10:46:25.6593661 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020418\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDROPR.DLL","2512"
"10:46:25.6593827 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020418","0.0000017","","2512"
"10:46:25.6593831 AM","firefox.exe","7972","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000026","SyncType: SyncTypeOther","8292"
"10:46:25.6593959 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 164, Name: 00020419","2512"
"10:46:25.6594087 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6594224 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020419","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6594407 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020419\Layout File","0.0000026","Type: REG_SZ, Length: 22, Data: KBDRUM.DLL","2512"
"10:46:25.6594552 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020419","0.0000013","","2512"
"10:46:25.6594672 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 165, Name: 0002041e","2512"
"10:46:25.6594796 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6594919 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002041e","0.0000060","Desired Access: Query Value","2512"
"10:46:25.6595099 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002041e\Layout File","0.0000025","Type: REG_SZ, Length: 22, Data: KBDTH2.DLL","2512"
"10:46:25.6595235 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002041e","0.0000013","","2512"
"10:46:25.6595355 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 166, Name: 00020422","2512"
"10:46:25.6595478 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6595602 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020422","0.0000060","Desired Access: Query Value","2512"
"10:46:25.6595773 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020422\Layout File","0.0000025","Type: REG_SZ, Length: 22, Data: KBDUR1.DLL","2512"
"10:46:25.6595909 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020422","0.0000013","","2512"
"10:46:25.6596024 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 167, Name: 00020426","2512"
"10:46:25.6596144 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6596263 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020426","0.0000056","Desired Access: Query Value","2512"
"10:46:25.6596434 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020426\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDLVST.DLL","2512"
"10:46:25.6596562 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020426","0.0000013","","2512"
"10:46:25.6596673 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 168, Name: 00020427","2512"
"10:46:25.6596788 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6596908 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020427","0.0000055","Desired Access: Query Value","2512"
"10:46:25.6597070 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020427\Layout File","0.0000025","Type: REG_SZ, Length: 22, Data: KBDLT2.DLL","2512"
"10:46:25.6597202 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020427","0.0000013","","2512"
"10:46:25.6597313 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 169, Name: 0002042b","2512"
"10:46:25.6597437 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6597560 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042b","0.0000056","Desired Access: Query Value","2512"
"10:46:25.6597727 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042b\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: kbdarmph.dll","2512"
"10:46:25.6597859 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042b","0.0000013","","2512"
"10:46:25.6597970 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 170, Name: 0002042e","2512"
"10:46:25.6598094 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6598226 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042e","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6598414 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042e\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDSORS1.DLL","2512"
"10:46:25.6598576 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042e","0.0000013","","2512"
"10:46:25.6598700 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 171, Name: 00020437","2512"
"10:46:25.6598823 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6598956 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020437","0.0000068","Desired Access: Query Value","2512"
"10:46:25.6599148 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020437\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: kbdgeoer.dll","2512"
"10:46:25.6599297 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020437","0.0000017","","2512"
"10:46:25.6599425 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 172, Name: 00020445","2512"
"10:46:25.6599690 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6599835 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020445","0.0000068","Desired Access: Query Value","2512"
"10:46:25.6600031 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020445\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDINBE2.DLL","2512"
"10:46:25.6600176 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020445","0.0000013","","2512"
"10:46:25.6600295 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 173, Name: 00020449","2512"
"10:46:25.6600428 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6600556 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020449","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6600739 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020449\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDTAM99.DLL","2512"
"10:46:25.6600888 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020449","0.0000013","","2512"
"10:46:25.6601029 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 174, Name: 0002083b","2512"
"10:46:25.6601157 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000401","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6606090 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000098","","8292"
"10:46:25.6607416 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Versions\000602xx","0.0000077","Type: REG_SZ, Length: 26, Data: kernel32.dll","8292"
"10:46:25.6609392 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002083b","0.0000128","Desired Access: Query Value","2512"
"10:46:25.6609499 AM","firefox.exe","7972","CreateFile","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000209","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6609772 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002083b\Layout File","0.0000051","Type: REG_SZ, Length: 26, Data: KBDSMSFI.DLL","2512"
"10:46:25.6610023 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000090","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.6610100 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002083b","0.0000026","","2512"
"10:46:25.6610314 AM","firefox.exe","7972","QueryStandardInformationFile","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000046","AllocationSize: 3,371,008, EndOfFile: 3,368,788, NumberOfLinks: 2, DeletePending: False, Directory: False","8292"
"10:46:25.6610322 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000047","Index: 175, Name: 00020c00","2512"
"10:46:25.6610557 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000038","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6610779 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020c00","0.0000093","Desired Access: Query Value","2512"
"10:46:25.6610787 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000030","SyncType: SyncTypeOther","8292"
"10:46:25.6611035 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020c00\Layout File","0.0000038","Type: REG_SZ, Length: 22, Data: KBDNTL.DLL","2512"
"10:46:25.6611227 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020c00","0.0000017","","2512"
"10:46:25.6611376 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 176, Name: 00030402","2512"
"10:46:25.6611534 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6611615 AM","firefox.exe","7972","CloseFile","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000081","","8292"
"10:46:25.6611692 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030402","0.0000076","Desired Access: Query Value","2512"
"10:46:25.6611918 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030402\Layout File","0.0000034","Type: REG_SZ, Length: 24, Data: KBDBULG.DLL","2512"
"10:46:25.6612097 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030402","0.0000017","","2512"
"10:46:25.6612242 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 177, Name: 00030408","2512"
"10:46:25.6612344 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Ids","0.0000077","Desired Access: Read","8292"
"10:46:25.6612391 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6612566 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030408","0.0000086","Desired Access: Query Value","2512"
"10:46:25.6612600 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Ids","0.0000103","Desired Access: Read","8292"
"10:46:25.6612780 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030408\Layout File","0.0000042","Type: REG_SZ, Length: 26, Data: KBDHELA2.DLL","2512"
"10:46:25.6612861 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Ids\en-US","0.0000119","Length: 90","8292"
"10:46:25.6612950 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030408","0.0000069","","2512"
"10:46:25.6613125 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Ids\en","0.0000069","Length: 90","8292"
"10:46:25.6613151 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000047","Index: 178, Name: 00030409","2512"
"10:46:25.6613309 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6613445 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030409","0.0000073","Desired Access: Query Value","2512"
"10:46:25.6613650 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030409\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDUSL.DLL","2512"
"10:46:25.6613808 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030409","0.0000017","","2512"
"10:46:25.6614017 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 179, Name: 0003041e","2512"
"10:46:25.6614145 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6614273 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003041e","0.0000077","Desired Access: Query Value","2512"
"10:46:25.6614478 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003041e\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDTH3.DLL","2512"
"10:46:25.6614631 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003041e","0.0000013","","2512"
"10:46:25.6614759 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 180, Name: 0003042b","2512"
"10:46:25.6614883 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6615003 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003042b","0.0000115","Desired Access: Query Value","2512"
"10:46:25.6615254 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003042b\Layout File","0.0000039","Type: REG_SZ, Length: 26, Data: kbdarmty.dll","2512"
"10:46:25.6615404 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003042b","0.0000017","","2512"
"10:46:25.6615532 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 181, Name: 00030437","2512"
"10:46:25.6615664 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6615800 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030437","0.0000073","Desired Access: Query Value","2512"
"10:46:25.6616001 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030437\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: kbdgeome.dll","2512"
"10:46:25.6616163 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030437","0.0000017","","2512"
"10:46:25.6616300 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 182, Name: 00030c00","2512"
"10:46:25.6616436 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6616577 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030c00","0.0000073","Desired Access: Query Value","2512"
"10:46:25.6616799 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030c00\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDTAILE.DLL","2512"
"10:46:25.6616957 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030c00","0.0000017","","2512"
"10:46:25.6617093 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 183, Name: 00040402","2512"
"10:46:25.6617234 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6617375 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040402","0.0000081","Desired Access: Query Value","2512"
"10:46:25.6617588 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040402\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDBGPH1.DLL","2512"
"10:46:25.6617746 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040402","0.0000013","","2512"
"10:46:25.6617878 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 184, Name: 00040408","2512"
"10:46:25.6618015 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6618151 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040408","0.0000073","Desired Access: Query Value","2512"
"10:46:25.6618356 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040408\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDHELA3.DLL","2512"
"10:46:25.6618506 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040408","0.0000012","","2512"
"10:46:25.6618599 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 185, Name: 00040409","2512"
"10:46:25.6618685 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6618770 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040409","0.0000051","Desired Access: Query Value","2512"
"10:46:25.6618911 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040409\Layout File","0.0000025","Type: REG_SZ, Length: 22, Data: KBDUSR.DLL","2512"
"10:46:25.6619009 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040409","0.0000013","","2512"
"10:46:25.6619090 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 186, Name: 00040437","2512"
"10:46:25.6619175 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6619256 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040437","0.0000052","Desired Access: Query Value","2512"
"10:46:25.6619384 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040437\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: kbdgeooa.dll","2512"
"10:46:25.6619478 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040437","0.0000013","","2512"
"10:46:25.6619559 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 187, Name: 00040c00","2512"
"10:46:25.6619640 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6619722 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040c00","0.0000046","Desired Access: Query Value","2512"
"10:46:25.6619845 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040c00\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDOGHAM.DLL","2512"
"10:46:25.6619943 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040c00","0.0000009","","2512"
"10:46:25.6620024 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 188, Name: 00050408","2512"
"10:46:25.6620067 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\JitPI.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:25.6620114 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6620191 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050408","0.0000051","Desired Access: Query Value","2512"
"10:46:25.6620319 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050408\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDGKL.DLL","2512"
"10:46:25.6620413 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050408","0.0000008","","2512"
"10:46:25.6620490 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 189, Name: 00050409","2512"
"10:46:25.6620575 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6620652 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050409","0.0000047","Desired Access: Query Value","2512"
"10:46:25.6620775 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050409\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDUSA.DLL","2512"
"10:46:25.6620869 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050409","0.0000009","","2512"
"10:46:25.6620946 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 190, Name: 00050429","2512"
"10:46:25.6621031 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6621112 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050429","0.0000043","Desired Access: Query Value","2512"
"10:46:25.6621232 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050429\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: kbdfar.dll","2512"
"10:46:25.6621326 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050429","0.0000008","","2512"
"10:46:25.6621403 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 191, Name: 00060408","2512"
"10:46:25.6621488 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6621569 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00060408","0.0000047","Desired Access: Query Value","2512"
"10:46:25.6621697 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00060408\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDHEPT.DLL","2512"
"10:46:25.6621791 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00060408","0.0000008","","2512"
"10:46:25.6621868 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 192, Name: 00070c00","2512"
"10:46:25.6621953 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6622034 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00070c00","0.0000043","Desired Access: Query Value","2512"
"10:46:25.6622154 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00070c00\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: kbdlisub.dll","2512"
"10:46:25.6622247 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00070c00","0.0000013","","2512"
"10:46:25.6622392 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 193, Name: 00080c00","2512"
"10:46:25.6622478 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6622563 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00080c00","0.0000047","Desired Access: Query Value","2512"
"10:46:25.6622589 AM","firefox.exe","7972","CreateFile","C:\Windows\System\JitPI.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:25.6622691 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00080c00\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: kbdlisus.dll","2512"
"10:46:25.6622785 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00080c00","0.0000013","","2512"
"10:46:25.6622866 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000043","Index: 194, Name: 00090c00","2512"
"10:46:25.6623003 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6623148 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00090c00","0.0000192","Desired Access: Query Value","2512"
"10:46:25.6623468 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00090c00\Layout File","0.0000038","Type: REG_SZ, Length: 22, Data: kbdnko.dll","2512"
"10:46:25.6623617 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00090c00","0.0000017","","2512"
"10:46:25.6623741 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 195, Name: 000a0c00","2512"
"10:46:25.6623877 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000077","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6624052 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000a0c00","0.0000056","Desired Access: Query Value","2512"
"10:46:25.6624193 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000a0c00\Layout File","0.0000026","Type: REG_SZ, Length: 26, Data: kbdphags.dll","2512"
"10:46:25.6624300 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000a0c00","0.0000008","","2512"
"10:46:25.6624389 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 196, Name: 000b0c00","2512"
"10:46:25.6624479 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6624560 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000b0c00","0.0000043","Desired Access: Query Value","2512"
"10:46:25.6624679 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000b0c00\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDBUG.DLL","2512"
"10:46:25.6624773 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000b0c00","0.0000009","","2512"
"10:46:25.6624854 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 197, Name: 000c0c00","2512"
"10:46:25.6624914 AM","firefox.exe","7972","CreateFile","C:\Windows\JitPI.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:25.6624940 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6625021 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000c0c00","0.0000047","Desired Access: Query Value","2512"
"10:46:25.6625149 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000c0c00\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDGTHC.DLL","2512"
"10:46:25.6625243 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000c0c00","0.0000008","","2512"
"10:46:25.6625319 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 198, Name: 000d0c00","2512"
"10:46:25.6625400 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6625482 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000d0c00","0.0000042","Desired Access: Query Value","2512"
"10:46:25.6625601 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000d0c00\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDOLCH.DLL","2512"
"10:46:25.6626685 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000d0c00","0.0000021","","2512"
"10:46:25.6626813 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 199, Name: 000e0c00","2512"
"10:46:25.6626945 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6627065 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000e0c00","0.0000076","Desired Access: Query Value","2512"
"10:46:25.6627265 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000e0c00\Layout File","0.0000038","Type: REG_SZ, Length: 22, Data: KBDOSM.DLL","2512"
"10:46:25.6627359 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\JitPI.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:25.6627414 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000e0c00","0.0000013","","2512"
"10:46:25.6627534 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 200, Name: 000f0c00","2512"
"10:46:25.6627653 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6627773 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000f0c00","0.0000081","Desired Access: Query Value","2512"
"10:46:25.6627961 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000f0c00\Layout File","0.0000025","Type: REG_SZ, Length: 26, Data: KBDOLDIT.DLL","2512"
"10:46:25.6628089 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000f0c00","0.0000012","","2512"
"10:46:25.6628195 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 201, Name: 00100c00","2512"
"10:46:25.6628319 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6628438 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00100c00","0.0000064","Desired Access: Query Value","2512"
"10:46:25.6628630 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00100c00\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDSORA.DLL","2512"
"10:46:25.6628763 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00100c00","0.0000012","","2512"
"10:46:25.6628874 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 202, Name: 00110c00","2512"
"10:46:25.6628997 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6629113 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00110c00","0.0000068","Desired Access: Query Value","2512"
"10:46:25.6629292 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00110c00\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDJAV.DLL","2512"
"10:46:25.6629428 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00110c00","0.0000013","","2512"
"10:46:25.6629663 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\JitPI.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:25.6629676 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 203, Name: 00120c00","2512"
"10:46:25.6629804 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6629923 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00120c00","0.0000068","Desired Access: Query Value","2512"
"10:46:25.6630107 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00120c00\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDFTHRK.DLL","2512"
"10:46:25.6631020 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00120c00","0.0000021","","2512"
"10:46:25.6633605 AM","firefox.exe","7972","CreateFile","C:\Program Files (x86)\Intel\iCLS Client\JitPI.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:25.6633917 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000055","Index: 204, Name: 00130c00","2512"
"10:46:25.6634100 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6634250 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00130c00","0.0000102","Desired Access: Query Value","2512"
"10:46:25.6634471 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00130c00\Layout File","0.0000035","Type: REG_SZ, Length: 24, Data: KBDMYAN.DLL","2512"
"10:46:25.6634625 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00130c00","0.0000013","","2512"
"10:46:25.6634736 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 205, Length: 288","2512"
"10:46:25.6634847 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","","2512"
"10:46:25.6635303 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6635436 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000081","Desired Access: Read","2512"
"10:46:25.6635619 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6635722 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{1AC14E77-02E7-4E5D-B744-2EB1AE5198B7}","0.0000034","Desired Access: Read","2512"
"10:46:25.6635854 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000013","","2512"
"10:46:25.6635982 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{1AC14E77-02E7-4E5D-B744-2EB1AE5198B7}\Category","0.0000030","Type: REG_DWORD, Length: 4, Data: 2","2512"
"10:46:25.6636089 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{1AC14E77-02E7-4E5D-B744-2EB1AE5198B7}\Name","0.0000025","Type: REG_SZ, Length: 14, Data: System","2512"
"10:46:25.6636208 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{1AC14E77-02E7-4E5D-B744-2EB1AE5198B7}\ParentFolder","0.0000021","Length: 90","2512"
"10:46:25.6636263 AM","firefox.exe","7972","CreateFile","C:\Program Files\Intel\iCLS Client\JitPI.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:25.6636310 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{1AC14E77-02E7-4E5D-B744-2EB1AE5198B7}\Description","0.0000017","Length: 144","2512"
"10:46:25.6636400 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{1AC14E77-02E7-4E5D-B744-2EB1AE5198B7}\RelativePath","0.0000021","Length: 144","2512"
"10:46:25.6636490 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{1AC14E77-02E7-4E5D-B744-2EB1AE5198B7}\ParsingName","0.0000021","Length: 144","2512"
"10:46:25.6636579 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{1AC14E77-02E7-4E5D-B744-2EB1AE5198B7}\InfoTip","0.0000017","Length: 144","2512"
"10:46:25.6636665 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{1AC14E77-02E7-4E5D-B744-2EB1AE5198B7}\LocalizedName","0.0000021","Length: 144","2512"
"10:46:25.6636754 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{1AC14E77-02E7-4E5D-B744-2EB1AE5198B7}\Icon","0.0000017","Length: 144","2512"
"10:46:25.6636839 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{1AC14E77-02E7-4E5D-B744-2EB1AE5198B7}\Security","0.0000022","Length: 144","2512"
"10:46:25.6636929 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{1AC14E77-02E7-4E5D-B744-2EB1AE5198B7}\StreamResource","0.0000017","Length: 144","2512"
"10:46:25.6637019 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{1AC14E77-02E7-4E5D-B744-2EB1AE5198B7}\StreamResourceType","0.0000017","Length: 144","2512"
"10:46:25.6637108 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{1AC14E77-02E7-4E5D-B744-2EB1AE5198B7}\LocalRedirectOnly","0.0000017","Length: 16","2512"
"10:46:25.6637194 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{1AC14E77-02E7-4E5D-B744-2EB1AE5198B7}\Roamable","0.0000021","Length: 16","2512"
"10:46:25.6637283 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{1AC14E77-02E7-4E5D-B744-2EB1AE5198B7}\PreCreate","0.0000022","Length: 16","2512"
"10:46:25.6637373 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{1AC14E77-02E7-4E5D-B744-2EB1AE5198B7}\Stream","0.0000017","Length: 16","2512"
"10:46:25.6637458 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{1AC14E77-02E7-4E5D-B744-2EB1AE5198B7}\PublishExpandedPath","0.0000021","Length: 16","2512"
"10:46:25.6637548 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{1AC14E77-02E7-4E5D-B744-2EB1AE5198B7}\DefinitionFlags","0.0000021","Length: 16","2512"
"10:46:25.6637637 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{1AC14E77-02E7-4E5D-B744-2EB1AE5198B7}\Attributes","0.0000022","Length: 16","2512"
"10:46:25.6637731 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{1AC14E77-02E7-4E5D-B744-2EB1AE5198B7}\FolderTypeID","0.0000022","Length: 90","2512"
"10:46:25.6637821 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{1AC14E77-02E7-4E5D-B744-2EB1AE5198B7}\InitFolderHandler","0.0000021","Length: 90","2512"
"10:46:25.6637945 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{1AC14E77-02E7-4E5D-B744-2EB1AE5198B7}","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6638047 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{1AC14E77-02E7-4E5D-B744-2EB1AE5198B7}\PropertyBag","0.0000030","Desired Access: Read","2512"
"10:46:25.6638243 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{1AC14E77-02E7-4E5D-B744-2EB1AE5198B7}","0.0000009","","2512"
"10:46:25.6638755 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\JitPI.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:25.6641127 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6641482 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32","0.0000145","CreationTime: 4/11/2018 2:04:33 PM, LastAccessTime: 10/22/2019 8:19:56 PM, LastWriteTime: 10/22/2019 8:19:56 PM, ChangeTime: 10/22/2019 8:19:56 PM, FileAttributes: D","2512"
"10:46:25.6641639 AM","firefox.exe","7972","CreateFile","C:\Windows\JitPI.dll","0.0000227","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:25.6641755 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000089","","2512"
"10:46:25.6642454 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6642646 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000086","Desired Access: Read","2512"
"10:46:25.6642885 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6643052 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F38BF404-1D43-42F2-9305-67DE0B28FC23}","0.0000051","Desired Access: Read","2512"
"10:46:25.6643274 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000017","","2512"
"10:46:25.6643470 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F38BF404-1D43-42F2-9305-67DE0B28FC23}\Category","0.0000043","Type: REG_DWORD, Length: 4, Data: 2","2512"
"10:46:25.6643645 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F38BF404-1D43-42F2-9305-67DE0B28FC23}\Name","0.0000034","Type: REG_SZ, Length: 16, Data: Windows","2512"
"10:46:25.6643815 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F38BF404-1D43-42F2-9305-67DE0B28FC23}\ParentFolder","0.0000035","Length: 90","2512"
"10:46:25.6643973 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F38BF404-1D43-42F2-9305-67DE0B28FC23}\Description","0.0000030","Length: 144","2512"
"10:46:25.6644123 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F38BF404-1D43-42F2-9305-67DE0B28FC23}\RelativePath","0.0000030","Length: 144","2512"
"10:46:25.6644272 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F38BF404-1D43-42F2-9305-67DE0B28FC23}\ParsingName","0.0000043","Length: 144","2512"
"10:46:25.6644357 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\wbem\JitPI.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:25.6644404 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F38BF404-1D43-42F2-9305-67DE0B28FC23}\InfoTip","0.0000022","Length: 144","2512"
"10:46:25.6644494 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F38BF404-1D43-42F2-9305-67DE0B28FC23}\LocalizedName","0.0000021","Length: 144","2512"
"10:46:25.6644588 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F38BF404-1D43-42F2-9305-67DE0B28FC23}\Icon","0.0000017","Length: 144","2512"
"10:46:25.6644673 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F38BF404-1D43-42F2-9305-67DE0B28FC23}\Security","0.0000021","Length: 144","2512"
"10:46:25.6644763 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F38BF404-1D43-42F2-9305-67DE0B28FC23}\StreamResource","0.0000021","Length: 144","2512"
"10:46:25.6644852 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F38BF404-1D43-42F2-9305-67DE0B28FC23}\StreamResourceType","0.0000017","Length: 144","2512"
"10:46:25.6644942 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F38BF404-1D43-42F2-9305-67DE0B28FC23}\LocalRedirectOnly","0.0000017","Length: 16","2512"
"10:46:25.6645027 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F38BF404-1D43-42F2-9305-67DE0B28FC23}\Roamable","0.0000022","Length: 16","2512"
"10:46:25.6645117 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F38BF404-1D43-42F2-9305-67DE0B28FC23}\PreCreate","0.0000017","Length: 16","2512"
"10:46:25.6645202 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F38BF404-1D43-42F2-9305-67DE0B28FC23}\Stream","0.0000021","Length: 16","2512"
"10:46:25.6645287 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F38BF404-1D43-42F2-9305-67DE0B28FC23}\PublishExpandedPath","0.0000043","Length: 16","2512"
"10:46:25.6645437 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F38BF404-1D43-42F2-9305-67DE0B28FC23}\DefinitionFlags","0.0000038","Length: 16","2512"
"10:46:25.6646145 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F38BF404-1D43-42F2-9305-67DE0B28FC23}\Attributes","0.0000026","Length: 16","2512"
"10:46:25.6646256 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F38BF404-1D43-42F2-9305-67DE0B28FC23}\FolderTypeID","0.0000021","Length: 90","2512"
"10:46:25.6646346 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F38BF404-1D43-42F2-9305-67DE0B28FC23}\InitFolderHandler","0.0000021","Length: 90","2512"
"10:46:25.6646465 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F38BF404-1D43-42F2-9305-67DE0B28FC23}","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.6646580 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F38BF404-1D43-42F2-9305-67DE0B28FC23}\PropertyBag","0.0000039","Desired Access: Read","2512"
"10:46:25.6646734 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{F38BF404-1D43-42F2-9305-67DE0B28FC23}","0.0000013","","2512"
"10:46:25.6646896 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\WindowsPowerShell\v1.0\JitPI.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:25.6648543 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6648778 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows","0.0000034","CreationTime: 4/11/2018 2:04:33 PM, LastAccessTime: 5/8/2019 8:00:40 AM, LastWriteTime: 5/8/2019 8:00:40 AM, ChangeTime: 5/8/2019 8:00:40 AM, FileAttributes: D","2512"
"10:46:25.6648901 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000043","","2512"
"10:46:25.6649563 AM","firefox.exe","7972","CreateFile","C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\JitPI.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:25.6651060 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6651295 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000030","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","2512"
"10:46:25.6651406 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000047","","2512"
"10:46:25.6652242 AM","firefox.exe","7972","CreateFile","C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\JitPI.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:25.6653398 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6653599 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000136","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","2512"
"10:46:25.6653859 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000047","","2512"
"10:46:25.6654815 AM","firefox.exe","7972","CreateFile","C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\JitPI.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:25.6657145 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6657174 AM","firefox.exe","7972","CreateFile","C:\Program Files\Intel\Intel(R) Management Engine Components\IPT\JitPI.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:25.6657345 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000030","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","2512"
"10:46:25.6657452 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000042","","2512"
"10:46:25.6659419 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6659726 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000030","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","2512"
"10:46:25.6659833 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000042","","2512"
"10:46:25.6661211 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\OpenSSH\JitPI.dll","0.0000571","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:25.6661667 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6661855 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000021","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","2512"
"10:46:25.6661949 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000038","","2512"
"10:46:25.6664052 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6664381 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000025","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:25.6664487 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000043","","2512"
"10:46:25.6665196 AM","firefox.exe","7972","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\WindowsApps\JitPI.dll","0.0000563","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:25.6666476 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6666766 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:25.6666873 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000038","","2512"
"10:46:25.6668750 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6669010 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:25.6669113 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000038","","2512"
"10:46:25.6671101 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6671399 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000026","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:25.6671498 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000042","","2512"
"10:46:25.6673354 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6673627 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000025","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:25.6673729 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000038","","2512"
"10:46:25.6675572 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6675828 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000030","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:25.6675931 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000038","","2512"
"10:46:25.6677983 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6678192 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:25.6678290 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000039","","2512"
"10:46:25.6680180 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6680372 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:25.6680470 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000035","","2512"
"10:46:25.6682224 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6682403 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:25.6682501 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000035","","2512"
"10:46:25.6684434 AM","firefox.exe","7972","Thread Create","","0.0000000","Thread ID: 7948","8292"
"10:46:25.6684793 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6685228 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000038","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","2512"
"10:46:25.6685373 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000064","","2512"
"10:46:25.6688577 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6689038 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000038","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","2512"
"10:46:25.6689209 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000064","","2512"
"10:46:25.6690339 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7948"
"10:46:25.6690796 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000038","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","7948"
"10:46:25.6690954 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000081","","7948"
"10:46:25.6692588 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6692844 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000298","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7948"
"10:46:25.6693010 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000137","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","2512"
"10:46:25.6693603 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000090","","2512"
"10:46:25.6693731 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7948"
"10:46:25.6694145 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000026","SyncType: SyncTypeOther","7948"
"10:46:25.6694529 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\NapiNSP.dll","0.0000039","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7948"
"10:46:25.6695242 AM","firefox.exe","7972","Load Image","C:\Windows\System32\NapiNSP.dll","0.0000000","Image Base: 0x7ffb3cce0000, Image Size: 0x16000","7948"
"10:46:25.6695656 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000055","Name: \Windows\System32\NapiNSP.dll","7948"
"10:46:25.6697064 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6697823 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000090","","7948"
"10:46:25.6698028 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000077","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:25.6698352 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000137","","2512"
"10:46:25.6703067 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6703540 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000039","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:25.6703677 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000060","","2512"
"10:46:25.6706211 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\webauthn.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6706689 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000039","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","8292"
"10:46:25.6706830 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\webauthn.dll","0.0000060","","8292"
"10:46:25.6706962 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6707368 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000042","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:25.6707577 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000064","","2512"
"10:46:25.6708456 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\webauthn.dll","0.0000187","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6709108 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.6709518 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000026","SyncType: SyncTypeOther","8292"
"10:46:25.6709945 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\webauthn.dll","0.0000047","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6710653 AM","firefox.exe","7972","Load Image","C:\Windows\System32\webauthn.dll","0.0000000","Image Base: 0x7ffb38050000, Image Size: 0x4b000","8292"
"10:46:25.6710870 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\webauthn.dll","0.0000052","Name: \Windows\System32\webauthn.dll","8292"
"10:46:25.6711259 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6711818 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000051","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:25.6712027 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\webauthn.dll","0.0000064","","8292"
"10:46:25.6712035 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000073","","2512"
"10:46:25.6715282 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6715688 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000055","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","8292"
"10:46:25.6715978 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6716046 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000060","","8292"
"10:46:25.6716485 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000039","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:25.6716673 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000064","","2512"
"10:46:25.6717121 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000141","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.6717710 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\bcrypt.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.6718094 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\bcrypt.dll","0.0000026","SyncType: SyncTypeOther","8292"
"10:46:25.6718478 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\bcrypt.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.6719208 AM","firefox.exe","7972","Load Image","C:\Windows\System32\bcrypt.dll","0.0000000","Image Base: 0x7ffb455f0000, Image Size: 0x25000","8292"
"10:46:25.6719540 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\bcrypt.dll","0.0000056","Name: \Windows\System32\bcrypt.dll","8292"
"10:46:25.6719681 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6720138 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000042","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:25.6720321 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000068","","2512"
"10:46:25.6720846 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000077","","8292"
"10:46:25.6723585 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6724063 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000047","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","2512"
"10:46:25.6724229 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000069","","2512"
"10:46:25.6727523 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7948"
"10:46:25.6727877 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6728005 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000047","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","7948"
"10:46:25.6728159 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000073","","7948"
"10:46:25.6728355 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000047","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","2512"
"10:46:25.6728556 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000068","","2512"
"10:46:25.6729738 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000187","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7948"
"10:46:25.6730373 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7948"
"10:46:25.6730834 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000026","SyncType: SyncTypeOther","7948"
"10:46:25.6731244 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\pnrpnsp.dll","0.0000043","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7948"
"10:46:25.6731525 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000393","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6732101 AM","firefox.exe","7972","Load Image","C:\Windows\System32\pnrpnsp.dll","0.0000000","Image Base: 0x7ffb3ca40000, Image Size: 0x1a000","7948"
"10:46:25.6732541 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000060","Name: \Windows\System32\pnrpnsp.dll","7948"
"10:46:25.6734465 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000086","","7948"
"10:46:25.6738817 AM","firefox.exe","7972","Thread Create","","0.0000000","Thread ID: 5108","8292"
"10:46:25.6739427 AM","firefox.exe","7972","Thread Create","","0.0000000","Thread ID: 5116","8292"
"10:46:25.6739790 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7948"
"10:46:25.6739892 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000060","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","2512"
"10:46:25.6740089 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000068","","2512"
"10:46:25.6740276 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000052","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","7948"
"10:46:25.6740443 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000077","","7948"
"10:46:25.6742431 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000213","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7948"
"10:46:25.6743080 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7948"
"10:46:25.6743506 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000026","SyncType: SyncTypeOther","7948"
"10:46:25.6743600 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6743907 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\nlaapi.dll","0.0000039","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7948"
"10:46:25.6743954 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000030","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:25.6744069 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000047","","2512"
"10:46:25.6744624 AM","firefox.exe","7972","Load Image","C:\Windows\System32\nlaapi.dll","0.0000000","Image Base: 0x7ffb423c0000, Image Size: 0x19000","7948"
"10:46:25.6744923 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\nlaapi.dll","0.0000064","Name: \Windows\System32\nlaapi.dll","7948"
"10:46:25.6746719 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000098","","7948"
"10:46:25.6746749 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6747069 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000034","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:25.6747184 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000047","","2512"
"10:46:25.6750640 AM","firefox.exe","7972","Thread Create","","0.0000000","Thread ID: 6888","8292"
"10:46:25.6751024 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\mswsock.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7948"
"10:46:25.6751468 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","7948"
"10:46:25.6751613 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\mswsock.dll","0.0000060","","7948"
"10:46:25.6751907 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6752509 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000038","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:25.6752688 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000064","","2512"
"10:46:25.6753089 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\mswsock.dll","0.0000179","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7948"
"10:46:25.6753106 AM","firefox.exe","7972","Thread Create","","0.0000000","Thread ID: 8728","8292"
"10:46:25.6753652 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7948"
"10:46:25.6753755 AM","firefox.exe","7972","Thread Create","","0.0000000","Thread ID: 8264","8292"
"10:46:25.6754049 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000026","SyncType: SyncTypeOther","7948"
"10:46:25.6754220 AM","firefox.exe","7972","Thread Create","","0.0000000","Thread ID: 4228","8292"
"10:46:25.6754510 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\mswsock.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7948"
"10:46:25.6754723 AM","firefox.exe","7972","Thread Create","","0.0000000","Thread ID: 1132","8292"
"10:46:25.6755167 AM","firefox.exe","7972","Load Image","C:\Windows\System32\mswsock.dll","0.0000000","Image Base: 0x7ffb452b0000, Image Size: 0x66000","7948"
"10:46:25.6755572 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\mswsock.dll","0.0000060","Name: \Windows\System32\mswsock.dll","7948"
"10:46:25.6757556 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6757932 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:25.6758111 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000073","","2512"
"10:46:25.6758239 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\mswsock.dll","0.0000090","","7948"
"10:46:25.6762139 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0016021","Offset: 4,128, Length: 120, I/O Flags: Write Through, Priority: Normal","4500"
"10:46:25.6762839 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0014873","Offset: 4,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Write Through, Priority: Normal","4500"
"10:46:25.6763585 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000039","Query: HandleTags, HandleTags: 0x0","7948"
"10:46:25.6763880 AM","firefox.exe","7972","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000093","Desired Access: Read","7948"
"10:46:25.6764127 AM","firefox.exe","7972","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000132","Desired Access: Read, Disposition: REG_OPENED_EXISTING_KEY","7948"
"10:46:25.6764810 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000068","Desired Access: Read","7948"
"10:46:25.6765010 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000069","Desired Access: Read","7948"
"10:46:25.6765339 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000047","Query: HandleTags, HandleTags: 0x0","7948"
"10:46:25.6765603 AM","firefox.exe","7972","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters","0.0000052","Desired Access: Read","7948"
"10:46:25.6765778 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000077","Desired Access: Read","7948"
"10:46:25.6766000 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","7948"
"10:46:25.6766154 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\DnsClient","0.0000094","Desired Access: Read","7948"
"10:46:25.6766777 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000051","Length: 12","7948"
"10:46:25.6766964 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000035","Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","7948"
"10:46:25.6767173 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000022","","7948"
"10:46:25.6767336 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000012","","7948"
"10:46:25.6767511 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0000059","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:30 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: A","7508"
"10:46:25.6767566 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","7948"
"10:46:25.6767741 AM","firefox.exe","7972","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000051","Desired Access: Read","7948"
"10:46:25.6767749 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0000077","","7508"
"10:46:25.6767924 AM","firefox.exe","7972","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000077","Desired Access: Read, Disposition: REG_OPENED_EXISTING_KEY","7948"
"10:46:25.6768176 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000051","Desired Access: Read","7948"
"10:46:25.6768351 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000051","Desired Access: Read","7948"
"10:46:25.6768479 AM","firefox.exe","7384","CreateFile","C:\","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7508"
"10:46:25.6768547 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","7948"
"10:46:25.6768697 AM","firefox.exe","7972","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters","0.0000042","Desired Access: Read","7948"
"10:46:25.6768846 AM","firefox.exe","7384","QueryDirectory","C:\Program Files","0.0000209","Filter: Program Files, 1: Program Files","7508"
"10:46:25.6768867 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000056","Desired Access: Read","7948"
"10:46:25.6769128 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","7948"
"10:46:25.6769285 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\DnsClient","0.0000064","Desired Access: Read","7948"
"10:46:25.6769332 AM","firefox.exe","7384","CloseFile","C:\","0.0000060","","7508"
"10:46:25.6769499 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000034","Length: 12","7948"
"10:46:25.6769669 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000030","Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","7948"
"10:46:25.6769853 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000017","","7948"
"10:46:25.6770011 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000013","","7948"
"10:46:25.6770190 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","7948"
"10:46:25.6770356 AM","firefox.exe","7972","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000043","Desired Access: Read","7948"
"10:46:25.6770519 AM","firefox.exe","7972","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000064","Desired Access: Read, Disposition: REG_OPENED_EXISTING_KEY","7948"
"10:46:25.6770745 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000042","Desired Access: Read","7948"
"10:46:25.6770877 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7508"
"10:46:25.6770911 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000047","Desired Access: Read","7948"
"10:46:25.6771099 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000051","Query: HandleTags, HandleTags: 0x0","7948"
"10:46:25.6771235 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000167","Filter: Firefox Nightly, 1: Firefox Nightly","7508"
"10:46:25.6771291 AM","firefox.exe","7972","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters","0.0000042","Desired Access: Read","7948"
"10:46:25.6771449 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000055","Desired Access: Read","7948"
"10:46:25.6771589 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000056","","7508"
"10:46:25.6771636 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","7948"
"10:46:25.6771773 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\DnsClient","0.0000060","Desired Access: Read","7948"
"10:46:25.6771973 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000018","Query: HandleTags, HandleTags: 0x0","7948"
"10:46:25.6772136 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Policies\Microsoft\System\DNSClient","0.0000051","Desired Access: Query Value","7948"
"10:46:25.6772319 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Domain","0.0000034","Length: 12","7948"
"10:46:25.6772477 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Domain","0.0000030","Type: REG_SZ, Length: 2, Data: ","7948"
"10:46:25.6772673 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000017","","7948"
"10:46:25.6772827 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000017","","7948"
"10:46:25.6773143 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features","0.0000170","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7508"
"10:46:25.6773620 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0000218","Filter: formautofill@mozilla.org.xpi, 1: formautofill@mozilla.org.xpi","7508"
"10:46:25.6774013 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\features","0.0000055","","7508"
"10:46:25.6775818 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0000179","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7508"
"10:46:25.6776291 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0000047","AllocationSize: 643,072, EndOfFile: 639,537, NumberOfLinks: 1, DeletePending: False, Directory: False","7508"
"10:46:25.6776577 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7508"
"10:46:25.6776786 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0000030","AllocationSize: 643,072, EndOfFile: 639,537, NumberOfLinks: 1, DeletePending: False, Directory: False","7508"
"10:46:25.6776863 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\winrnr.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7948"
"10:46:25.6777123 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0000026","SyncType: SyncTypeOther","7508"
"10:46:25.6777264 AM","firefox.exe","7972","Thread Create","","0.0000000","Thread ID: 7556","8292"
"10:46:25.6777392 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000299","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","7948"
"10:46:25.6777815 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\winrnr.dll","0.0000076","","7948"
"10:46:25.6777977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0337848","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7508"
"10:46:25.6779333 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0004873","","4500"
"10:46:25.6779436 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\winrnr.dll","0.0000230","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7948"
"10:46:25.6780093 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7948"
"10:46:25.6780328 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6780503 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000021","SyncType: SyncTypeOther","7948"
"10:46:25.6780716 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:25.6780788 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\winrnr.dll","0.0000030","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7948"
"10:46:25.6780904 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000068","","2512"
"10:46:25.6781373 AM","firefox.exe","7972","Load Image","C:\Windows\System32\winrnr.dll","0.0000000","Image Base: 0x7ffb41370000, Image Size: 0xe000","7948"
"10:46:25.6781684 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\winrnr.dll","0.0000064","Name: \Windows\System32\winrnr.dll","7948"
"10:46:25.6783105 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\winrnr.dll","0.0000064","","7948"
"10:46:25.6784253 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0002914","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6784646 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000430","","4500"
"10:46:25.6785691 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000051","Offset: 0, Length: 1","4500"
"10:46:25.6785879 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000076","","4500"
"10:46:25.6786958 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\wshbth.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7948"
"10:46:25.6787351 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:25.6787453 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000043","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7948"
"10:46:25.6787534 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000060","","2512"
"10:46:25.6787602 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\wshbth.dll","0.0000064","","7948"
"10:46:25.6789458 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\wshbth.dll","0.0000261","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7948"
"10:46:25.6790188 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7948"
"10:46:25.6790636 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000026","SyncType: SyncTypeOther","7948"
"10:46:25.6791037 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\wshbth.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7948"
"10:46:25.6791976 AM","firefox.exe","7972","Load Image","C:\Windows\System32\wshbth.dll","0.0000000","Image Base: 0x7ffb3bf70000, Image Size: 0x15000","7948"
"10:46:25.6792262 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\wshbth.dll","0.0001152","Name: \Windows\System32\wshbth.dll","7948"
"10:46:25.6795376 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\wshbth.dll","0.0000196","","7948"
"10:46:25.6798576 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","7948"
"10:46:25.6798832 AM","firefox.exe","7972","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000098","Desired Access: Read","7948"
"10:46:25.6799092 AM","firefox.exe","7972","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000107","Desired Access: Read, Disposition: REG_OPENED_EXISTING_KEY","7948"
"10:46:25.6799404 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000055","Desired Access: Read","7948"
"10:46:25.6799587 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000056","Desired Access: Read","7948"
"10:46:25.6799796 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000018","Query: HandleTags, HandleTags: 0x0","7948"
"10:46:25.6799929 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6799963 AM","firefox.exe","7972","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters","0.0000047","Desired Access: Read","7948"
"10:46:25.6800125 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000068","Desired Access: Read","7948"
"10:46:25.6800330 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","7948"
"10:46:25.6800475 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\DnsClient","0.0000094","Desired Access: Read","7948"
"10:46:25.6800560 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000056","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:25.6800735 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000043","Length: 12","7948"
"10:46:25.6800799 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000073","","2512"
"10:46:25.6800906 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000030","Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","7948"
"10:46:25.6801115 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000021","","7948"
"10:46:25.6801273 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000013","","7948"
"10:46:25.6802352 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","7948"
"10:46:25.6802523 AM","firefox.exe","7972","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Winsock\Parameters","0.0000051","Desired Access: Read","7948"
"10:46:25.6802706 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock\Parameters","0.0000141","Desired Access: Read","7948"
"10:46:25.6803022 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\Winsock\Parameters\Transports","0.0000030","Length: 12","7948"
"10:46:25.6803171 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\Winsock\Parameters\Transports","0.0000030","Type: REG_MULTI_SZ, Length: 92, Data: afunix, Tcpip, Tcpip6, Psched, vmbus, irda, RFCOMM","7948"
"10:46:25.6803346 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\Winsock\Parameters","0.0000017","","7948"
"10:46:25.6803530 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","7948"
"10:46:25.6803675 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock","0.0000051","Desired Access: Read","7948"
"10:46:25.6803846 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock","0.0000123","Desired Access: Read","7948"
"10:46:25.6804123 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock\Mapping","0.0000034","Length: 12","7948"
"10:46:25.6804225 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6804272 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock\Mapping","0.0000034","Type: REG_BINARY, Length: 20, Data: 01 00 00 00 03 00 00 00 01 00 00 00 01 00 00 00","7948"
"10:46:25.6804447 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock","0.0000017","","7948"
"10:46:25.6804601 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","7948"
"10:46:25.6804724 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:25.6804754 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000043","Desired Access: Read","7948"
"10:46:25.6805074 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000150","Desired Access: Read","7948"
"10:46:25.6805446 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock\Mapping","0.0000042","Length: 12","7948"
"10:46:25.6805633 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock\Mapping","0.0000043","Type: REG_BINARY, Length: 104, Data: 08 00 00 00 03 00 00 00 02 00 00 00 01 00 00 00","7948"
"10:46:25.6805855 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000021","","7948"
"10:46:25.6806030 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","7948"
"10:46:25.6806218 AM","firefox.exe","7972","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Winsock\Setup Migration\Providers","0.0000060","Desired Access: Read","7948"
"10:46:25.6806418 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers","0.0000128","Desired Access: Read","7948"
"10:46:25.6806704 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers","0.0000017","Query: HandleTags, HandleTags: 0x0","7948"
"10:46:25.6806854 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers\Tcpip","0.0000068","Desired Access: Read","7948"
"10:46:25.6807075 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers\Tcpip\WinSock 2.0 Provider ID","0.0000035","Type: REG_BINARY, Length: 16, Data: A0 1A 0F E7 8B AB CF 11 8C A3 00 80 5F 48 A1 92","7948"
"10:46:25.6807259 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers\Tcpip","0.0000017","","7948"
"10:46:25.6807412 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers","0.0000013","","7948"
"10:46:25.6807575 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","7948"
"10:46:25.6807732 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000052","Desired Access: Read","7948"
"10:46:25.6807903 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000068","Desired Access: Read","7948"
"10:46:25.6808104 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock\MinSockaddrLength","0.0000034","Type: REG_DWORD, Length: 4, Data: 16","7948"
"10:46:25.6808253 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock\MaxSockaddrLength","0.0000026","Type: REG_DWORD, Length: 4, Data: 16","7948"
"10:46:25.6808385 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock\UseDelayedAcceptance","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","7948"
"10:46:25.6808560 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000013","","7948"
"10:46:25.6810459 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000141","","2512"
"10:46:25.6812106 AM","firefox.exe","7972","Thread Create","","0.0000000","Thread ID: 2580","7948"
"10:46:25.6813885 AM","firefox.exe","7972","TCP Connect","LAPTOP-49TAGD3F:49750 -> LAPTOP-49TAGD3F:49749","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65535, rcvwinscale: 0, sndwinscale: 0, seqnum: 0, connid: 0","0"
"10:46:25.6814397 AM","firefox.exe","7972","TCP Accept","LAPTOP-49TAGD3F:49749 -> LAPTOP-49TAGD3F:49750","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65535, rcvwinscale: 0, sndwinscale: 0, seqnum: 0, connid: 0","0"
"10:46:25.6815408 AM","firefox.exe","7972","TCP Receive","LAPTOP-49TAGD3F:49749 -> LAPTOP-49TAGD3F:49750","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:25.6815617 AM","firefox.exe","7972","TCP Send","LAPTOP-49TAGD3F:49750 -> LAPTOP-49TAGD3F:49749","0.0000000","Length: 1, startime: 40066, endtime: 40066, seqnum: 0, connid: 0","0"
"10:46:25.6816087 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6816607 AM","firefox.exe","7972","TCP Receive","LAPTOP-49TAGD3F:49749 -> LAPTOP-49TAGD3F:49750","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:25.6816833 AM","firefox.exe","7972","TCP Send","LAPTOP-49TAGD3F:49750 -> LAPTOP-49TAGD3F:49749","0.0000000","Length: 1, startime: 40066, endtime: 40066, seqnum: 0, connid: 0","0"
"10:46:25.6816983 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000055","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:25.6817192 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000068","","2512"
"10:46:25.6820690 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6821177 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000042","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:25.6821360 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000060","","2512"
"10:46:25.6824351 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6824842 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000042","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:25.6825012 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000060","","2512"
"10:46:25.6827696 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6828110 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000038","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:25.6828285 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000055","","2512"
"10:46:25.6831583 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6832317 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000064","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.6832599 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000098","","2512"
"10:46:25.6836400 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6836938 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.6837151 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000068","","2512"
"10:46:25.6840326 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6840812 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.6841013 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000068","","2512"
"10:46:25.6844545 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6844917 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000042","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","2512"
"10:46:25.6845104 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000069","","2512"
"10:46:25.6848108 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6848454 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000042","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","2512"
"10:46:25.6848646 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000064","","2512"
"10:46:25.6851713 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6852063 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000043","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","2512"
"10:46:25.6852251 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000068","","2512"
"10:46:25.6855673 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6856035 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000043","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","2512"
"10:46:25.6856223 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000068","","2512"
"10:46:25.6859201 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6859534 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000043","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","2512"
"10:46:25.6859718 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000068","","2512"
"10:46:25.6862888 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6863238 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000042","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","2512"
"10:46:25.6863413 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000068","","2512"
"10:46:25.6866758 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6867261 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000047","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","2512"
"10:46:25.6867445 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000072","","2512"
"10:46:25.6870457 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6870935 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000047","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","2512"
"10:46:25.6871127 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000068","","2512"
"10:46:25.6874310 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6874809 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000047","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","2512"
"10:46:25.6875001 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000068","","2512"
"10:46:25.6878427 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6878922 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","2512"
"10:46:25.6879122 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000069","","2512"
"10:46:25.6882348 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6882907 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","2512"
"10:46:25.6883103 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000068","","2512"
"10:46:25.6886282 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6886760 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","2512"
"10:46:25.6886965 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000068","","2512"
"10:46:25.6890412 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6890805 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000068","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","2512"
"10:46:25.6891026 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000069","","2512"
"10:46:25.6893970 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6894303 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","2512"
"10:46:25.6894491 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000068","","2512"
"10:46:25.6897572 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000174","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6897904 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000043","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","2512"
"10:46:25.6898096 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000069","","2512"
"10:46:25.6901685 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6902052 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:25.6902226 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000064","","2512"
"10:46:25.6905362 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6905708 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:25.6905896 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000068","","2512"
"10:46:25.6908891 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6909220 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:25.6909407 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000064","","2512"
"10:46:25.6912923 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6913277 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:25.6913473 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000073","","2512"
"10:46:25.6916409 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6916737 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:25.6916925 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000064","","2512"
"10:46:25.6919818 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6920164 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000042","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:25.6920364 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000068","","2512"
"10:46:25.6923922 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6924272 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:25.6924456 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000072","","2512"
"10:46:25.6927447 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6927784 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000042","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:25.6927967 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000060","","2512"
"10:46:25.6930758 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6931073 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000039","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:25.6931248 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000060","","2512"
"10:46:25.6934542 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6934858 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:25.6935020 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000060","","2512"
"10:46:25.6938088 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6938378 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:25.6938536 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000060","","2512"
"10:46:25.6941207 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6941514 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:25.6941689 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000064","","2512"
"10:46:25.6945392 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6945934 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:25.6946126 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000073","","2512"
"10:46:25.6949446 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6949924 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:25.6950124 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000068","","2512"
"10:46:25.6953192 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6953670 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:25.6953875 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000068","","2512"
"10:46:25.6957642 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6958158 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:25.6958367 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000069","","2512"
"10:46:25.6964819 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000238","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6965420 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000051","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:25.6965642 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000077","","2512"
"10:46:25.6968424 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0221026","Offset: 37,888, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.6971649 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6972213 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:25.6972435 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000072","","2512"
"10:46:25.6976543 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6977068 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000051","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:25.6977286 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000068","","2512"
"10:46:25.6980477 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6980968 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000043","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:25.6981173 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000064","","2512"
"10:46:25.6984240 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6984714 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:25.6984910 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000064","","2512"
"10:46:25.6988426 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6988789 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000042","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:25.6988981 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000068","","2512"
"10:46:25.6992053 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6992398 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000043","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:25.6992586 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000064","","2512"
"10:46:25.6995675 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.6996016 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:25.6996208 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000069","","2512"
"10:46:25.6999703 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7000258 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000046","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:25.7000458 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000064","","2512"
"10:46:25.7003534 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7004012 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:25.7004217 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000068","","2512"
"10:46:25.7007276 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7007750 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:25.7007950 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000060","","2512"
"10:46:25.7011415 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7011765 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000047","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:25.7011944 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000072","","2512"
"10:46:25.7014892 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7015212 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000077","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:25.7015430 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000081","","2512"
"10:46:25.7019432 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7019769 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000043","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:25.7019952 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000060","","2512"
"10:46:25.7023383 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7023728 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:25.7023903 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000064","","2512"
"10:46:25.7027470 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7027786 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:25.7027965 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000060","","2512"
"10:46:25.7030649 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7030935 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:25.7031097 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000060","","2512"
"10:46:25.7034702 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7035176 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000043","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:25.7035355 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000064","","2512"
"10:46:25.7038474 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7038939 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000043","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:25.7039123 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000064","","2512"
"10:46:25.7041947 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7042399 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000043","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:25.7042579 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000068","","2512"
"10:46:25.7045843 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7046291 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:25.7046466 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000059","","2512"
"10:46:25.7049218 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7049640 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000038","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:25.7049806 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000060","","2512"
"10:46:25.7052396 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7052802 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:25.7052985 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000056","","2512"
"10:46:25.7056215 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7057781 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000055","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:25.7057977 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000073","","2512"
"10:46:25.7060913 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7061352 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000043","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:25.7061531 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000064","","2512"
"10:46:25.7071980 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7072556 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000069","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:25.7072795 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000077","","2512"
"10:46:25.7077015 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7077343 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000043","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:25.7077514 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000064","","2512"
"10:46:25.7080573 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7080919 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000043","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:25.7081098 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000068","","2512"
"10:46:25.7084055 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7084362 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000039","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:25.7084529 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000064","","2512"
"10:46:25.7087903 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7088241 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000042","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:25.7088424 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000064","","2512"
"10:46:25.7089853 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.7090182 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8292"
"10:46:25.7090306 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000068","","8292"
"10:46:25.7090882 AM","firefox.exe","7972","CreateFile","C:\","0.0000166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.7091381 AM","firefox.exe","7972","QueryDirectory","C:\Program Files","0.0000153","Filter: Program Files, 1: Program Files","8292"
"10:46:25.7091714 AM","firefox.exe","7972","CloseFile","C:\","0.0000042","","8292"
"10:46:25.7092038 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7092443 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000047","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:25.7092661 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000064","","2512"
"10:46:25.7092755 AM","firefox.exe","7972","CreateFile","C:\Program Files","0.0000119","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.7093053 AM","firefox.exe","7972","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000120","Filter: Firefox Nightly, 1: Firefox Nightly","8292"
"10:46:25.7093301 AM","firefox.exe","7972","CloseFile","C:\Program Files","0.0000042","","8292"
"10:46:25.7095805 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7096147 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000042","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:25.7096334 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000060","","2512"
"10:46:25.7099863 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7100375 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000047","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","2512"
"10:46:25.7100550 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000068","","2512"
"10:46:25.7103686 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7104151 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000038","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","2512"
"10:46:25.7104326 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000094","","2512"
"10:46:25.7108294 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7108768 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000042","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","2512"
"10:46:25.7108955 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000064","","2512"
"10:46:25.7112501 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7112966 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000043","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.7113145 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000064","","2512"
"10:46:25.7116320 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7116512 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0221956","Offset: 32,768, Length: 49,152, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7508"
"10:46:25.7116861 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000043","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.7117045 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000060","","2512"
"10:46:25.7119904 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000174","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7120352 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000038","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.7120531 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000059","","2512"
"10:46:25.7124443 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7124921 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000043","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:25.7125109 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000064","","2512"
"10:46:25.7131867 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7132341 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000043","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:25.7132507 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000056","","2512"
"10:46:25.7134739 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7135067 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000030","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:25.7135191 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000043","","2512"
"10:46:25.7137653 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7137883 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000030","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:25.7137990 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000043","","2512"
"10:46:25.7140123 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7140332 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000030","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:25.7140439 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000043","","2512"
"10:46:25.7142474 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7142670 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000026","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:25.7142773 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000038","","2512"
"10:46:25.7145115 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7145435 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:25.7145542 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000043","","2512"
"10:46:25.7147569 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7147872 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:25.7147974 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000043","","2512"
"10:46:25.7149890 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7150197 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:25.7150299 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000039","","2512"
"10:46:25.7152586 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7152804 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000025","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.7152906 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000039","","2512"
"10:46:25.7154852 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7155044 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000025","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.7155142 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000038","","2512"
"10:46:25.7156908 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7157092 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000021","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.7157190 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000034","","2512"
"10:46:25.7159490 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7159784 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:25.7159891 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000038","","2512"
"10:46:25.7161798 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7162071 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:25.7162178 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000038","","2512"
"10:46:25.7163940 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7164200 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:25.7164303 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000038","","2512"
"10:46:25.7166525 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7166816 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:25.7166914 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000038","","2512"
"10:46:25.7168829 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7169098 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:25.7169201 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000038","","2512"
"10:46:25.7171078 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7171338 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:25.7171441 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000038","","2512"
"10:46:25.7173685 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7173971 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:25.7174073 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000039","","2512"
"10:46:25.7176151 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7176548 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:25.7176795 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000103","","2512"
"10:46:25.7179099 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7179385 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:25.7179492 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000043","","2512"
"10:46:25.7181975 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7182274 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000025","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","2512"
"10:46:25.7182376 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000047","","2512"
"10:46:25.7184467 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7184740 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000025","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","2512"
"10:46:25.7184842 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000039","","2512"
"10:46:25.7186775 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7187057 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000025","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","2512"
"10:46:25.7187159 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000043","","2512"
"10:46:25.7192693 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\pkcs11.txt","0.0014498","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.7195189 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7195675 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000043","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","2512"
"10:46:25.7195850 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000060","","2512"
"10:46:25.7199093 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000482","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7199857 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000042","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","2512"
"10:46:25.7200040 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000064","","2512"
"10:46:25.7202916 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7203330 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000038","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","2512"
"10:46:25.7203496 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000060","","2512"
"10:46:25.7208322 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\pkcs11.txt","0.0001105","Offset: 0, Length: 507, Priority: Normal","5728"
"10:46:25.7209120 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\LQ450C~1.TES\pkcs11.txt","0.0000111","Offset: 0, Length: 507, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:25.7210003 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\pkcs11.txt","0.0000051","Offset: 507, Length: 4,096","5728"
"10:46:25.7210361 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\pkcs11.txt","0.0000120","","5728"
"10:46:25.7216898 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.7217623 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000060","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","5728"
"10:46:25.7217947 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000086","","5728"
"10:46:25.7219983 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000204","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.7220559 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:25.7221122 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000034","SyncType: SyncTypeOther","5728"
"10:46:25.7222090 AM","firefox.exe","7384","Load Image","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000000","Image Base: 0x7ffb1de70000, Image Size: 0x95000","5728"
"10:46:25.7222517 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000073","Name: \Program Files\Firefox Nightly\freebl3.dll","5728"
"10:46:25.7224471 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000103","","5728"
"10:46:25.7225999 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0391586","Offset: 549,376, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.7228085 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7228691 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000051","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:25.7228896 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000081","","2512"
"10:46:25.7233162 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7233828 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000051","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:25.7234041 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000086","","2512"
"10:46:25.7237672 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7238214 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000051","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:25.7238419 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000072","","2512"
"10:46:25.7242732 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000227","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7243274 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000052","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:25.7243475 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000077","","2512"
"10:46:25.7247033 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7247562 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000047","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:25.7247767 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000077","","2512"
"10:46:25.7251001 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7251505 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000047","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:25.7251697 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000077","","2512"
"10:46:25.7255533 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7255754 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7256010 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000192","Desired Access: Read","8292"
"10:46:25.7256117 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000038","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:25.7256343 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000064","","2512"
"10:46:25.7256655 AM","firefox.exe","7972","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000021","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7256881 AM","firefox.exe","7972","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}","0.0000354","Desired Access: Read","8292"
"10:46:25.7257444 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000017","","8292"
"10:46:25.7257679 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Category","0.0000047","Type: REG_DWORD, Length: 4, Data: 4","8292"
"10:46:25.7257866 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Name","0.0000043","Type: REG_SZ, Length: 32, Data: LocalAppDataLow","8292"
"10:46:25.7258046 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\ParentFolder","0.0000038","Length: 90","8292"
"10:46:25.7258208 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Description","0.0000034","Length: 144","8292"
"10:46:25.7258361 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\RelativePath","0.0000039","Type: REG_SZ, Length: 34, Data: AppData\LocalLow","8292"
"10:46:25.7258532 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\ParsingName","0.0000030","Length: 144","8292"
"10:46:25.7258724 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\InfoTip","0.0000030","Length: 144","8292"
"10:46:25.7258873 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\LocalizedName","0.0000030","Length: 144","8292"
"10:46:25.7259014 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Icon","0.0000030","Length: 144","8292"
"10:46:25.7259163 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Security","0.0000035","Type: REG_SZ, Length: 40, Data: S:(ML;OICI;NW;;;LW)","8292"
"10:46:25.7259334 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\StreamResource","0.0000030","Length: 144","8292"
"10:46:25.7259483 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\StreamResourceType","0.0000030","Length: 144","8292"
"10:46:25.7259633 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\LocalRedirectOnly","0.0000034","Type: REG_DWORD, Length: 4, Data: 1","8292"
"10:46:25.7259791 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Roamable","0.0000030","Length: 16","8292"
"10:46:25.7259833 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7259931 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\PreCreate","0.0000030","Type: REG_DWORD, Length: 4, Data: 1","8292"
"10:46:25.7260068 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Stream","0.0000030","Length: 16","8292"
"10:46:25.7260213 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\PublishExpandedPath","0.0000034","Type: REG_DWORD, Length: 4, Data: 1","8292"
"10:46:25.7260277 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000038","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:25.7260362 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\DefinitionFlags","0.0000030","Length: 16","8292"
"10:46:25.7260465 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000068","","2512"
"10:46:25.7260507 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Attributes","0.0000030","Type: REG_DWORD, Length: 4, Data: 8192","8292"
"10:46:25.7260657 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\FolderTypeID","0.0000025","Length: 90","8292"
"10:46:25.7260802 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\InitFolderHandler","0.0000030","Length: 90","8292"
"10:46:25.7261126 AM","firefox.exe","7972","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}","0.0000021","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7261314 AM","firefox.exe","7972","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\PropertyBag","0.0000043","Desired Access: Read","8292"
"10:46:25.7261570 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}","0.0000021","","8292"
"10:46:25.7262338 AM","firefox.exe","7972","RegOpenKey","HKCU","0.0000094","Desired Access: Read","8292"
"10:46:25.7262607 AM","firefox.exe","7972","RegQueryKey","HKCU","0.0000021","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7262782 AM","firefox.exe","7972","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer","0.0000076","Desired Access: Query Value","8292"
"10:46:25.7262999 AM","firefox.exe","7972","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer","0.0000013","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7263149 AM","firefox.exe","7972","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000059","Desired Access: Query Value","8292"
"10:46:25.7263409 AM","firefox.exe","7972","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer","0.0000017","","8292"
"10:46:25.7263575 AM","firefox.exe","7972","RegCloseKey","HKCU","0.0000017","","8292"
"10:46:25.7263861 AM","firefox.exe","7972","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7264027 AM","firefox.exe","7972","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\KnownFolders","0.0000052","Desired Access: Query Value","8292"
"10:46:25.7264228 AM","firefox.exe","7972","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000017","","8292"
"10:46:25.7264642 AM","firefox.exe","7972","RegOpenKey","HKU","0.0000068","Desired Access: Maximum Allowed, Granted Access: Read","8292"
"10:46:25.7264864 AM","firefox.exe","7972","RegQueryKey","HKU","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7265022 AM","firefox.exe","7972","RegOpenKey","HKCU","0.0000072","Desired Access: Read","8292"
"10:46:25.7265034 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7265312 AM","firefox.exe","7972","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7265461 AM","firefox.exe","7972","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000120","Desired Access: Read","8292"
"10:46:25.7265734 AM","firefox.exe","7972","RegCloseKey","HKCU","0.0000021","","8292"
"10:46:25.7265947 AM","firefox.exe","7972","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\{A520A1A4-1780-4FF6-BD18-167343C5AF16}","0.0000047","Length: 142","8292"
"10:46:25.7266063 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000055","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","2512"
"10:46:25.7266293 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000077","","2512"
"10:46:25.7266711 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7266907 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList","0.0000099","Desired Access: Read","8292"
"10:46:25.7267168 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\ProgramData","0.0000042","Length: 12","8292"
"10:46:25.7267355 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\ProgramData","0.0000043","Type: REG_EXPAND_SZ, Length: 52, Data: %SystemDrive%\ProgramData","8292"
"10:46:25.7267582 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList","0.0000017","","8292"
"10:46:25.7267829 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7268008 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList","0.0000077","Desired Access: Read","8292"
"10:46:25.7268243 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Public","0.0000034","Length: 12","8292"
"10:46:25.7268418 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Public","0.0000085","Type: REG_EXPAND_SZ, Length: 54, Data: %SystemDrive%\Users\Public","8292"
"10:46:25.7268682 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList","0.0000017","","8292"
"10:46:25.7268887 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7269058 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000068","Desired Access: Read","8292"
"10:46:25.7269271 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000132","Desired Access: Read","8292"
"10:46:25.7269587 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000055","Query: Cached, SubKeys: 0, Values: 15","8292"
"10:46:25.7269651 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7269822 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000042","Index: 0, Name: ComSpec, Type: REG_EXPAND_SZ, Length: 60, Data: %SystemRoot%\system32\cmd.exe","8292"
"10:46:25.7270018 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000034","Index: 1, Name: DriverData, Type: REG_SZ, Length: 78, Data: C:\Windows\System32\Drivers\DriverData","8292"
"10:46:25.7270125 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000042","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","2512"
"10:46:25.7270218 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000030","Index: 2, Name: NUMBER_OF_PROCESSORS, Type: REG_SZ, Length: 4, Data: 4","8292"
"10:46:25.7270317 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000068","","2512"
"10:46:25.7270406 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000030","Index: 3, Name: OS, Type: REG_SZ, Length: 22, Data: Windows_NT","8292"
"10:46:25.7270602 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000043","Index: 4, Name: Path, Type: REG_EXPAND_SZ, Length: 978, Data: C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;%SYSTEMROOT%\System32\OpenSSH\","8292"
"10:46:25.7270794 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000030","Index: 5, Name: PATHEXT, Type: REG_SZ, Length: 108, Data: .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC","8292"
"10:46:25.7270991 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000034","Index: 6, Name: PROCESSOR_ARCHITECTURE, Type: REG_SZ, Length: 12, Data: AMD64","8292"
"10:46:25.7271187 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000030","Index: 7, Name: PROCESSOR_IDENTIFIER, Type: REG_SZ, Length: 104, Data: Intel64 Family 6 Model 142 Stepping 9, GenuineIntel","8292"
"10:46:25.7271358 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000029","Index: 8, Name: PROCESSOR_LEVEL, Type: REG_SZ, Length: 4, Data: 6","8292"
"10:46:25.7271545 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000030","Index: 9, Name: PROCESSOR_REVISION, Type: REG_SZ, Length: 10, Data: 8e09","8292"
"10:46:25.7271733 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000034","Index: 10, Name: PSModulePath, Type: REG_EXPAND_SZ, Length: 188, Data: %ProgramFiles%\WindowsPowerShell\Modules;%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules","8292"
"10:46:25.7271899 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000030","Index: 11, Name: TEMP, Type: REG_EXPAND_SZ, Length: 36, Data: %SystemRoot%\TEMP","8292"
"10:46:25.7272057 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000030","Index: 12, Name: TMP, Type: REG_EXPAND_SZ, Length: 36, Data: %SystemRoot%\TEMP","8292"
"10:46:25.7272219 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000030","Index: 13, Name: USERNAME, Type: REG_SZ, Length: 14, Data: SYSTEM","8292"
"10:46:25.7272416 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000030","Index: 14, Name: windir, Type: REG_EXPAND_SZ, Length: 26, Data: %SystemRoot%","8292"
"10:46:25.7272582 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000030","Index: 0, Name: ComSpec, Type: REG_EXPAND_SZ, Length: 60, Data: %SystemRoot%\system32\cmd.exe","8292"
"10:46:25.7272830 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000029","Index: 1, Name: DriverData, Type: REG_SZ, Length: 78, Data: C:\Windows\System32\Drivers\DriverData","8292"
"10:46:25.7272992 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000030","Index: 2, Name: NUMBER_OF_PROCESSORS, Type: REG_SZ, Length: 4, Data: 4","8292"
"10:46:25.7273154 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000025","Index: 3, Name: OS, Type: REG_SZ, Length: 22, Data: Windows_NT","8292"
"10:46:25.7273316 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000077","Index: 4, Name: Path, Type: REG_EXPAND_SZ, Length: 978, Data: C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;%SYSTEMROOT%\System32\OpenSSH\","8292"
"10:46:25.7273687 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7273943 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000030","Index: 5, Name: PATHEXT, Type: REG_SZ, Length: 108, Data: .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC","8292"
"10:46:25.7274110 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000029","Index: 6, Name: PROCESSOR_ARCHITECTURE, Type: REG_SZ, Length: 12, Data: AMD64","8292"
"10:46:25.7274157 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000038","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","2512"
"10:46:25.7274272 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000034","Index: 7, Name: PROCESSOR_IDENTIFIER, Type: REG_SZ, Length: 104, Data: Intel64 Family 6 Model 142 Stepping 9, GenuineIntel","8292"
"10:46:25.7274340 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000064","","2512"
"10:46:25.7274442 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000030","Index: 8, Name: PROCESSOR_LEVEL, Type: REG_SZ, Length: 4, Data: 6","8292"
"10:46:25.7274605 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000034","Index: 9, Name: PROCESSOR_REVISION, Type: REG_SZ, Length: 10, Data: 8e09","8292"
"10:46:25.7274771 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000034","Index: 10, Name: PSModulePath, Type: REG_EXPAND_SZ, Length: 188, Data: %ProgramFiles%\WindowsPowerShell\Modules;%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules","8292"
"10:46:25.7275095 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000034","Index: 11, Name: TEMP, Type: REG_EXPAND_SZ, Length: 36, Data: %SystemRoot%\TEMP","8292"
"10:46:25.7277839 AM","firefox.exe","7972","CreateFile","C:\Windows\Temp","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.7278176 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\Temp","0.0000042","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 3/26/2020 10:41:06 AM, LastWriteTime: 3/26/2020 10:41:06 AM, ChangeTime: 3/26/2020 10:41:06 AM, FileAttributes: D","8292"
"10:46:25.7278312 AM","firefox.exe","7972","CloseFile","C:\Windows\Temp","0.0000060","","8292"
"10:46:25.7278410 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7278850 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000043","Index: 12, Name: TMP, Type: REG_EXPAND_SZ, Length: 36, Data: %SystemRoot%\TEMP","8292"
"10:46:25.7279281 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000051","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:25.7279490 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000089","","2512"
"10:46:25.7281499 AM","firefox.exe","7972","CreateFile","C:\Windows\Temp","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.7281837 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\Temp","0.0000042","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 3/26/2020 10:41:06 AM, LastWriteTime: 3/26/2020 10:41:06 AM, ChangeTime: 3/26/2020 10:41:06 AM, FileAttributes: D","8292"
"10:46:25.7281943 AM","firefox.exe","7972","CloseFile","C:\Windows\Temp","0.0000043","","8292"
"10:46:25.7282477 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000046","Index: 13, Name: USERNAME, Type: REG_SZ, Length: 14, Data: SYSTEM","8292"
"10:46:25.7282707 AM","firefox.exe","7972","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000030","Index: 14, Name: windir, Type: REG_EXPAND_SZ, Length: 26, Data: %SystemRoot%","8292"
"10:46:25.7283048 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000026","","8292"
"10:46:25.7283381 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7283594 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList","0.0000111","Desired Access: Read","8292"
"10:46:25.7283889 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Default","0.0000042","Length: 12","8292"
"10:46:25.7284072 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Default","0.0000030","Type: REG_EXPAND_SZ, Length: 56, Data: %SystemDrive%\Users\Default","8292"
"10:46:25.7284277 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList","0.0000013","","8292"
"10:46:25.7284482 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7284678 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion","0.0000077","Desired Access: Read","8292"
"10:46:25.7284896 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir","0.0000038","Length: 12","8292"
"10:46:25.7285058 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir","0.0000030","Type: REG_SZ, Length: 34, Data: C:\Program Files","8292"
"10:46:25.7285066 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7285271 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonFilesDir","0.0000026","Length: 12","8292"
"10:46:25.7285416 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonFilesDir","0.0000026","Type: REG_SZ, Length: 60, Data: C:\Program Files\Common Files","8292"
"10:46:25.7285519 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0004352","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:25.7285625 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir (x86)","0.0000030","Length: 12","8292"
"10:46:25.7285813 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir (x86)","0.0000064","Type: REG_SZ, Length: 46, Data: C:\Program Files (x86)","8292"
"10:46:25.7286103 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonFilesDir (x86)","0.0000039","Length: 12","8292"
"10:46:25.7286274 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonFilesDir (x86)","0.0000038","Type: REG_SZ, Length: 72, Data: C:\Program Files (x86)\Common Files","8292"
"10:46:25.7286504 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramW6432Dir","0.0000034","Length: 12","8292"
"10:46:25.7286679 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramW6432Dir","0.0000051","Type: REG_SZ, Length: 34, Data: C:\Program Files","8292"
"10:46:25.7286914 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonW6432Dir","0.0000034","Length: 12","8292"
"10:46:25.7287063 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonW6432Dir","0.0000030","Type: REG_SZ, Length: 60, Data: C:\Program Files\Common Files","8292"
"10:46:25.7287315 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion","0.0000017","","8292"
"10:46:25.7287776 AM","firefox.exe","7972","RegQueryKey","HKU","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7287963 AM","firefox.exe","7972","RegOpenKey","HKCU","0.0000077","Desired Access: Read","8292"
"10:46:25.7288207 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7288377 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001","0.0000133","Desired Access: Read","8292"
"10:46:25.7288667 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001\ProfileImagePath","0.0000030","Length: 12","8292"
"10:46:25.7288817 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001\ProfileImagePath","0.0000030","Type: REG_EXPAND_SZ, Length: 34, Data: C:\Users\diggles","8292"
"10:46:25.7289013 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001","0.0000017","","8292"
"10:46:25.7289218 AM","firefox.exe","7972","RegQueryKey","HKU","0.0000013","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7289380 AM","firefox.exe","7972","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000094","Desired Access: Read","8292"
"10:46:25.7289615 AM","firefox.exe","7972","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\AppData","0.0000038","Length: 12","8292"
"10:46:25.7289764 AM","firefox.exe","7972","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\AppData","0.0000060","Type: REG_EXPAND_SZ, Length: 60, Data: %USERPROFILE%\AppData\Roaming","8292"
"10:46:25.7289973 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7290093 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000064","","2512"
"10:46:25.7290148 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001","0.0000081","Desired Access: Read","8292"
"10:46:25.7290374 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001\ProfileImagePath","0.0000034","Length: 12","8292"
"10:46:25.7290549 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001\ProfileImagePath","0.0000098","Type: REG_EXPAND_SZ, Length: 34, Data: C:\Users\diggles","8292"
"10:46:25.7290831 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001","0.0000017","","8292"
"10:46:25.7291006 AM","firefox.exe","7972","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000017","","8292"
"10:46:25.7291334 AM","firefox.exe","7972","RegQueryKey","HKU","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7291513 AM","firefox.exe","7972","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000081","Desired Access: Read","8292"
"10:46:25.7291739 AM","firefox.exe","7972","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Local AppData","0.0000035","Length: 12","8292"
"10:46:25.7291910 AM","firefox.exe","7972","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Local AppData","0.0000034","Type: REG_EXPAND_SZ, Length: 56, Data: %USERPROFILE%\AppData\Local","8292"
"10:46:25.7292094 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7292264 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001","0.0000124","Desired Access: Read","8292"
"10:46:25.7292554 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001\ProfileImagePath","0.0000035","Length: 12","8292"
"10:46:25.7292695 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001\ProfileImagePath","0.0000034","Type: REG_EXPAND_SZ, Length: 34, Data: C:\Users\diggles","8292"
"10:46:25.7292891 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001","0.0000018","","8292"
"10:46:25.7293113 AM","firefox.exe","7972","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000017","","8292"
"10:46:25.7293386 AM","firefox.exe","7972","RegQueryKey","HKCU","0.0000022","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7293578 AM","firefox.exe","7972","RegOpenKey","HKCU\Environment","0.0000094","Desired Access: Read","8292"
"10:46:25.7293843 AM","firefox.exe","7972","RegQueryKey","HKCU\Environment","0.0000043","Query: Cached, SubKeys: 0, Values: 4","8292"
"10:46:25.7294056 AM","firefox.exe","7972","RegEnumValue","HKCU\Environment","0.0000047","Index: 0, Name: OneDrive, Type: REG_EXPAND_SZ, Length: 52, Data: C:\Users\diggles\OneDrive","8292"
"10:46:25.7294227 AM","firefox.exe","7972","RegEnumValue","HKCU\Environment","0.0000038","Index: 1, Name: Path, Type: REG_EXPAND_SZ, Length: 102, Data: %USERPROFILE%\AppData\Local\Microsoft\WindowsApps;","8292"
"10:46:25.7294385 AM","firefox.exe","7972","RegEnumValue","HKCU\Environment","0.0000030","Index: 2, Name: TEMP, Type: REG_EXPAND_SZ, Length: 66, Data: %USERPROFILE%\AppData\Local\Temp","8292"
"10:46:25.7294530 AM","firefox.exe","7972","RegEnumValue","HKCU\Environment","0.0000030","Index: 3, Name: TMP, Type: REG_EXPAND_SZ, Length: 66, Data: %USERPROFILE%\AppData\Local\Temp","8292"
"10:46:25.7294679 AM","firefox.exe","7972","RegEnumValue","HKCU\Environment","0.0000068","Index: 0, Name: OneDrive, Type: REG_EXPAND_SZ, Length: 52, Data: C:\Users\diggles\OneDrive","8292"
"10:46:25.7294978 AM","firefox.exe","7972","RegEnumValue","HKCU\Environment","0.0000034","Index: 1, Name: Path, Type: REG_EXPAND_SZ, Length: 102, Data: %USERPROFILE%\AppData\Local\Microsoft\WindowsApps;","8292"
"10:46:25.7297179 AM","firefox.exe","7972","RegEnumValue","HKCU\Environment","0.0000060","Index: 2, Name: TEMP, Type: REG_EXPAND_SZ, Length: 66, Data: %USERPROFILE%\AppData\Local\Temp","8292"
"10:46:25.7300077 AM","firefox.exe","7972","CreateFile","C:\Users\diggles\AppData\Local\Temp","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.7300371 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Temp","0.0000047","CreationTime: 3/20/2019 7:21:23 PM, LastAccessTime: 3/26/2020 10:46:23 AM, LastWriteTime: 3/26/2020 10:46:23 AM, ChangeTime: 3/26/2020 10:46:23 AM, FileAttributes: D","8292"
"10:46:25.7300520 AM","firefox.exe","7972","CloseFile","C:\Users\diggles\AppData\Local\Temp","0.0000060","","8292"
"10:46:25.7301105 AM","firefox.exe","7972","RegEnumValue","HKCU\Environment","0.0000047","Index: 3, Name: TMP, Type: REG_EXPAND_SZ, Length: 66, Data: %USERPROFILE%\AppData\Local\Temp","8292"
"10:46:25.7303707 AM","firefox.exe","7972","CreateFile","C:\Users\diggles\AppData\Local\Temp","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.7303993 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Temp","0.0000039","CreationTime: 3/20/2019 7:21:23 PM, LastAccessTime: 3/26/2020 10:46:23 AM, LastWriteTime: 3/26/2020 10:46:23 AM, ChangeTime: 3/26/2020 10:46:23 AM, FileAttributes: D","8292"
"10:46:25.7304130 AM","firefox.exe","7972","CloseFile","C:\Users\diggles\AppData\Local\Temp","0.0000051","","8292"
"10:46:25.7304714 AM","firefox.exe","7972","RegCloseKey","HKCU\Environment","0.0000026","","8292"
"10:46:25.7304945 AM","firefox.exe","7972","RegQueryKey","HKCU","0.0000021","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7305171 AM","firefox.exe","7972","RegOpenKey","HKCU\Volatile Environment","0.0000124","Desired Access: Read","8292"
"10:46:25.7305491 AM","firefox.exe","7972","RegQueryKey","HKCU\Volatile Environment","0.0000038","Query: Cached, SubKeys: 1, Values: 9","8292"
"10:46:25.7305696 AM","firefox.exe","7972","RegEnumValue","HKCU\Volatile Environment","0.0000038","Index: 0, Name: LOGONSERVER, Type: REG_SZ, Length: 36, Data: \\LAPTOP-49TAGD3F","8292"
"10:46:25.7305977 AM","firefox.exe","7972","RegEnumValue","HKCU\Volatile Environment","0.0000035","Index: 1, Name: USERDOMAIN, Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","8292"
"10:46:25.7306212 AM","firefox.exe","7972","RegEnumValue","HKCU\Volatile Environment","0.0000030","Index: 2, Name: USERNAME, Type: REG_SZ, Length: 16, Data: diggles","8292"
"10:46:25.7306425 AM","firefox.exe","7972","RegEnumValue","HKCU\Volatile Environment","0.0000035","Index: 3, Name: USERPROFILE, Type: REG_SZ, Length: 34, Data: C:\Users\diggles","8292"
"10:46:25.7306626 AM","firefox.exe","7972","RegEnumValue","HKCU\Volatile Environment","0.0000034","Index: 4, Name: HOMEPATH, Type: REG_SZ, Length: 30, Data: \Users\diggles","8292"
"10:46:25.7306873 AM","firefox.exe","7972","RegEnumValue","HKCU\Volatile Environment","0.0000030","Index: 5, Name: HOMEDRIVE, Type: REG_SZ, Length: 6, Data: C:","8292"
"10:46:25.7307112 AM","firefox.exe","7972","RegEnumValue","HKCU\Volatile Environment","0.0000030","Index: 6, Name: APPDATA, Type: REG_SZ, Length: 66, Data: C:\Users\diggles\AppData\Roaming","8292"
"10:46:25.7307309 AM","firefox.exe","7972","RegEnumValue","HKCU\Volatile Environment","0.0000029","Index: 7, Name: LOCALAPPDATA, Type: REG_SZ, Length: 62, Data: C:\Users\diggles\AppData\Local","8292"
"10:46:25.7307501 AM","firefox.exe","7972","RegEnumValue","HKCU\Volatile Environment","0.0000034","Index: 8, Name: USERDOMAIN_ROAMINGPROFILE, Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","8292"
"10:46:25.7307714 AM","firefox.exe","7972","RegEnumValue","HKCU\Volatile Environment","0.0000030","Index: 0, Name: LOGONSERVER, Type: REG_SZ, Length: 36, Data: \\LAPTOP-49TAGD3F","8292"
"10:46:25.7307868 AM","firefox.exe","7972","RegEnumValue","HKCU\Volatile Environment","0.0000029","Index: 1, Name: USERDOMAIN, Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","8292"
"10:46:25.7308047 AM","firefox.exe","7972","RegEnumValue","HKCU\Volatile Environment","0.0000047","Index: 2, Name: USERNAME, Type: REG_SZ, Length: 16, Data: diggles","8292"
"10:46:25.7308213 AM","firefox.exe","7972","RegEnumValue","HKCU\Volatile Environment","0.0000030","Index: 3, Name: USERPROFILE, Type: REG_SZ, Length: 34, Data: C:\Users\diggles","8292"
"10:46:25.7308358 AM","firefox.exe","7972","RegEnumValue","HKCU\Volatile Environment","0.0000030","Index: 4, Name: HOMEPATH, Type: REG_SZ, Length: 30, Data: \Users\diggles","8292"
"10:46:25.7308512 AM","firefox.exe","7972","RegEnumValue","HKCU\Volatile Environment","0.0000042","Index: 5, Name: HOMEDRIVE, Type: REG_SZ, Length: 6, Data: C:","8292"
"10:46:25.7308682 AM","firefox.exe","7972","RegEnumValue","HKCU\Volatile Environment","0.0000026","Index: 6, Name: APPDATA, Type: REG_SZ, Length: 66, Data: C:\Users\diggles\AppData\Roaming","8292"
"10:46:25.7308828 AM","firefox.exe","7972","RegEnumValue","HKCU\Volatile Environment","0.0000029","Index: 7, Name: LOCALAPPDATA, Type: REG_SZ, Length: 62, Data: C:\Users\diggles\AppData\Local","8292"
"10:46:25.7308977 AM","firefox.exe","7972","RegEnumValue","HKCU\Volatile Environment","0.0000025","Index: 8, Name: USERDOMAIN_ROAMINGPROFILE, Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","8292"
"10:46:25.7309177 AM","firefox.exe","7972","RegCloseKey","HKCU\Volatile Environment","0.0000022","","8292"
"10:46:25.7309378 AM","firefox.exe","7972","RegQueryKey","HKCU","0.0000021","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7309557 AM","firefox.exe","7972","RegOpenKey","HKCU\Volatile Environment\1","0.0000107","Desired Access: Read","8292"
"10:46:25.7309886 AM","firefox.exe","7972","RegQueryKey","HKCU\Volatile Environment\1","0.0000034","Query: Cached, SubKeys: 0, Values: 2","8292"
"10:46:25.7310061 AM","firefox.exe","7972","RegEnumValue","HKCU\Volatile Environment\1","0.0000038","Index: 0, Name: SESSIONNAME, Type: REG_SZ, Length: 16, Data: Console","8292"
"10:46:25.7310300 AM","firefox.exe","7972","RegEnumValue","HKCU\Volatile Environment\1","0.0000034","Index: 1, Name: CLIENTNAME, Type: REG_SZ, Length: 2, Data: ","8292"
"10:46:25.7310504 AM","firefox.exe","7972","RegEnumValue","HKCU\Volatile Environment\1","0.0000026","Index: 0, Name: SESSIONNAME, Type: REG_SZ, Length: 16, Data: Console","8292"
"10:46:25.7310654 AM","firefox.exe","7972","RegEnumValue","HKCU\Volatile Environment\1","0.0000034","Index: 1, Name: CLIENTNAME, Type: REG_SZ, Length: 2, Data: ","8292"
"10:46:25.7310854 AM","firefox.exe","7972","RegCloseKey","HKCU\Volatile Environment\1","0.0000017","","8292"
"10:46:25.7311021 AM","firefox.exe","7972","RegCloseKey","HKCU","0.0000017","","8292"
"10:46:25.7314272 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\sspicli.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.7314865 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000047","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8292"
"10:46:25.7315027 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\sspicli.dll","0.0000073","","8292"
"10:46:25.7317348 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\sspicli.dll","0.0000201","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.7318001 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\sspicli.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:25.7318453 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7318466 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\sspicli.dll","0.0000026","SyncType: SyncTypeOther","8292"
"10:46:25.7318927 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\sspicli.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:25.7318948 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000038","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:25.7319149 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000064","","2512"
"10:46:25.7319618 AM","firefox.exe","7972","Load Image","C:\Windows\System32\sspicli.dll","0.0000000","Image Base: 0x7ffb45990000, Image Size: 0x30000","8292"
"10:46:25.7319848 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\sspicli.dll","0.0000047","Name: \Windows\System32\sspicli.dll","8292"
"10:46:25.7320881 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\sspicli.dll","0.0000060","","8292"
"10:46:25.7325305 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7325634 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Hvsi","0.0000077","Desired Access: Read","8292"
"10:46:25.7325898 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Hvsi","0.0000073","Desired Access: Read","8292"
"10:46:25.7328015 AM","firefox.exe","7972","RegOpenKey","HKCU","0.0000119","Desired Access: Maximum Allowed, Granted Access: Read, Create Link","8292"
"10:46:25.7328258 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7328348 AM","firefox.exe","7972","RegOpenKey","HKCU\Control Panel\International","0.0000068","Desired Access: Read","8292"
"10:46:25.7328625 AM","firefox.exe","7972","RegCloseKey","HKCU","0.0000021","","8292"
"10:46:25.7328830 AM","firefox.exe","7972","RegQueryValue","HKCU\Control Panel\International\LocaleName","0.0000064","Type: REG_SZ, Length: 12, Data: en-US","8292"
"10:46:25.7328868 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000051","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:25.7329081 AM","firefox.exe","7972","RegCloseKey","HKCU\Control Panel\International","0.0000017","","8292"
"10:46:25.7329090 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000077","","2512"
"10:46:25.7329559 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7329738 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000116","Desired Access: Read","8292"
"10:46:25.7330016 AM","firefox.exe","7972","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000021","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7330191 AM","firefox.exe","7972","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}","0.0000119","Desired Access: Read","8292"
"10:46:25.7330485 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000017","","8292"
"10:46:25.7330694 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Category","0.0000043","Type: REG_DWORD, Length: 4, Data: 2","8292"
"10:46:25.7330873 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Name","0.0000043","Type: REG_SZ, Length: 16, Data: Profile","8292"
"10:46:25.7331061 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\ParentFolder","0.0000034","Length: 90","8292"
"10:46:25.7331228 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Description","0.0000034","Length: 144","8292"
"10:46:25.7331381 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\RelativePath","0.0000030","Length: 144","8292"
"10:46:25.7331535 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\ParsingName","0.0000030","Length: 144","8292"
"10:46:25.7331688 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\InfoTip","0.0000026","Length: 144","8292"
"10:46:25.7331829 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\LocalizedName","0.0000030","Length: 144","8292"
"10:46:25.7331974 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Icon","0.0000030","Length: 144","8292"
"10:46:25.7332124 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Security","0.0000029","Length: 144","8292"
"10:46:25.7332269 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\StreamResource","0.0000029","Length: 144","8292"
"10:46:25.7332418 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\StreamResourceType","0.0000030","Length: 144","8292"
"10:46:25.7332563 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\LocalRedirectOnly","0.0000030","Length: 16","8292"
"10:46:25.7332862 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Roamable","0.0000068","Length: 16","8292"
"10:46:25.7333088 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\PreCreate","0.0000030","Length: 16","8292"
"10:46:25.7333233 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Stream","0.0000034","Length: 16","8292"
"10:46:25.7333369 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7333386 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\PublishExpandedPath","0.0000030","Length: 16","8292"
"10:46:25.7333532 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\DefinitionFlags","0.0000029","Length: 16","8292"
"10:46:25.7333681 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Attributes","0.0000025","Length: 16","8292"
"10:46:25.7333826 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\FolderTypeID","0.0000030","Length: 90","8292"
"10:46:25.7333911 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000047","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:25.7333975 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\InitFolderHandler","0.0000030","Length: 90","8292"
"10:46:25.7334108 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000076","","2512"
"10:46:25.7334210 AM","firefox.exe","7972","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}","0.0000021","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7334406 AM","firefox.exe","7972","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\PropertyBag","0.0000047","Desired Access: Read","8292"
"10:46:25.7334624 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}","0.0000021","","8292"
"10:46:25.7334982 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7335166 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001","0.0000106","Desired Access: Read","8292"
"10:46:25.7335426 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001\ProfileImagePath","0.0000038","Length: 12","8292"
"10:46:25.7335597 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001\ProfileImagePath","0.0000038","Type: REG_EXPAND_SZ, Length: 34, Data: C:\Users\diggles","8292"
"10:46:25.7335806 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001","0.0000017","","8292"
"10:46:25.7336023 AM","firefox.exe","7972","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000017","","8292"
"10:46:25.7337679 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7338157 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000042","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:25.7338378 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000064","","2512"
"10:46:25.7338997 AM","firefox.exe","7972","CreateFile","C:\Users\diggles\AppData\LocalLow","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.7339134 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0000081","","7508"
"10:46:25.7339300 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Users\diggles\AppData\LocalLow","0.0000056","CreationTime: 2/16/2018 12:54:36 PM, LastAccessTime: 2/16/2018 12:59:41 PM, LastWriteTime: 2/16/2018 12:59:41 PM, ChangeTime: 3/20/2019 7:53:52 PM, FileAttributes: DNCI","8292"
"10:46:25.7339428 AM","firefox.exe","7972","CloseFile","C:\Users\diggles\AppData\LocalLow","0.0000051","","8292"
"10:46:25.7340021 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0510973","Offset: 10,391,552, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","4920"
"10:46:25.7340904 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7341182 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\KnownFolderSettings","0.0000226","Desired Access: Query Value","8292"
"10:46:25.7341566 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:25.7341741 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\KnownFolderSettings","0.0000068","Desired Access: Query Value","8292"
"10:46:25.7343533 AM","firefox.exe","7972","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000196","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:25.7343550 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0000465","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5956"
"10:46:25.7344023 AM","firefox.exe","7972","QueryNameInformationFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000047","Name: \Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","8292"
"10:46:25.7344177 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0000043","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:30 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: A","5956"
"10:46:25.7344254 AM","firefox.exe","7972","QueryNameInformationFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000034","Name: \Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","8292"
"10:46:25.7344356 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0000064","","5956"
"10:46:25.7344975 AM","firefox.exe","7972","QueryNormalizedNameInformationFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000175","","8292"
"10:46:25.7345017 AM","firefox.exe","7384","CreateFile","C:\","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5956"
"10:46:25.7345354 AM","firefox.exe","7384","QueryDirectory","C:\Program Files","0.0000188","Filter: Program Files, 1: Program Files","5956"
"10:46:25.7345389 AM","firefox.exe","7972","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000059","","8292"
"10:46:25.7345713 AM","firefox.exe","7384","CloseFile","C:\","0.0000055","","5956"
"10:46:25.7347300 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5956"
"10:46:25.7347650 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000166","Filter: Firefox Nightly, 1: Firefox Nightly","5956"
"10:46:25.7347961 AM","firefox.exe","7972","Thread Create","","0.0000000","Thread ID: 4244","8292"
"10:46:25.7348004 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000064","","5956"
"10:46:25.7349647 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features","0.0000166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5956"
"10:46:25.7349992 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0000145","Filter: webcompat@mozilla.org.xpi, 1: webcompat@mozilla.org.xpi","5956"
"10:46:25.7350300 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\features","0.0000059","","5956"
"10:46:25.7352087 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0000171","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5956"
"10:46:25.7352493 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0000038","AllocationSize: 110,592, EndOfFile: 110,579, NumberOfLinks: 1, DeletePending: False, Directory: False","5956"
"10:46:25.7352706 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5956"
"10:46:25.7352877 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0000034","AllocationSize: 110,592, EndOfFile: 110,579, NumberOfLinks: 1, DeletePending: False, Directory: False","5956"
"10:46:25.7353180 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0000025","SyncType: SyncTypeOther","5956"
"10:46:25.7353768 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0131341","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5956"
"10:46:25.7356047 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\mswsock.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4244"
"10:46:25.7356465 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","4244"
"10:46:25.7356614 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\mswsock.dll","0.0000051","","4244"
"10:46:25.7357459 AM","firefox.exe","7972","RegOpenKey","HKLM\SOFTWARE\Policies\Microsoft\WindowsStore","0.0000414","Desired Access: Read","4244"
"10:46:25.7358073 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000133","Desired Access: Read","4244"
"10:46:25.7359699 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000213","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","4244"
"10:46:25.7359895 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7360160 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","4244"
"10:46:25.7360352 AM","firefox.exe","7972","QueryStandardInformationFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000043","AllocationSize: 12,288, EndOfFile: 11,776, NumberOfLinks: 4, DeletePending: False, Directory: False","4244"
"10:46:25.7360399 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000047","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:25.7360616 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000064","","2512"
"10:46:25.7360689 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000026","SyncType: SyncTypeOther","4244"
"10:46:25.7364205 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\mswsock.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4244"
"10:46:25.7364328 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7364648 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","4244"
"10:46:25.7364793 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000043","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:25.7364802 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\mswsock.dll","0.0000064","","4244"
"10:46:25.7364998 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000064","","2512"
"10:46:25.7368395 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\mswsock.dll","0.0000238","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4244"
"10:46:25.7368574 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000315","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7368915 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","4244"
"10:46:25.7369069 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\mswsock.dll","0.0000064","","4244"
"10:46:25.7369222 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000043","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:25.7369431 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000069","","2512"
"10:46:25.7372094 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\mswsock.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4244"
"10:46:25.7372537 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","4244"
"10:46:25.7372683 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\mswsock.dll","0.0000064","","4244"
"10:46:25.7373352 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7373843 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000043","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:25.7374018 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000068","","2512"
"10:46:25.7375584 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\mswsock.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4244"
"10:46:25.7376006 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","4244"
"10:46:25.7376151 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\mswsock.dll","0.0000077","","4244"
"10:46:25.7377512 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7377990 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000043","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:25.7378182 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000064","","2512"
"10:46:25.7379321 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\mswsock.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4244"
"10:46:25.7379765 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","4244"
"10:46:25.7379889 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\mswsock.dll","0.0000051","","4244"
"10:46:25.7381570 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7381997 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000034","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:25.7382129 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000051","","2512"
"10:46:25.7382782 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\wshqos.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4244"
"10:46:25.7383196 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\wshqos.dll","0.0000038","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:11:07 PM, FileAttributes: A","4244"
"10:46:25.7383332 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\wshqos.dll","0.0000064","","4244"
"10:46:25.7384966 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\wshqos.dll","0.0000192","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","4244"
"10:46:25.7385218 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7385547 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000029","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.7385555 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","4244"
"10:46:25.7385662 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000042","","2512"
"10:46:25.7386285 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000034","SyncType: SyncTypeOther","4244"
"10:46:25.7386763 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\wshqos.dll","0.0000059","Name: \Windows\System32\wshqos.dll","4244"
"10:46:25.7387164 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\wshqos.dll","0.0000072","","4244"
"10:46:25.7387812 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000145","Desired Access: Read","4244"
"10:46:25.7387876 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7388171 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000029","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.7388281 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000039","","2512"
"10:46:25.7389468 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000217","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","4244"
"10:46:25.7389886 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","4244"
"10:46:25.7390048 AM","firefox.exe","7972","QueryStandardInformationFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000030","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","4244"
"10:46:25.7390270 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000017","SyncType: SyncTypeOther","4244"
"10:46:25.7390914 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7390957 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000059","","4244"
"10:46:25.7391464 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000043","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.7391639 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000064","","2512"
"10:46:25.7394003 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\wshqos.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4244"
"10:46:25.7394553 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\wshqos.dll","0.0000035","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:11:07 PM, FileAttributes: A","4244"
"10:46:25.7394669 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\wshqos.dll","0.0000072","","4244"
"10:46:25.7396640 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7396712 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\wshqos.dll","0.0000150","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","4244"
"10:46:25.7397088 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:25.7397135 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000072","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","4244"
"10:46:25.7397276 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000059","","2512"
"10:46:25.7397608 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000022","SyncType: SyncTypeOther","4244"
"10:46:25.7397950 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\wshqos.dll","0.0000047","Name: \Windows\System32\wshqos.dll","4244"
"10:46:25.7398295 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\wshqos.dll","0.0000064","","4244"
"10:46:25.7398999 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000158","Desired Access: Read","4244"
"10:46:25.7400399 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000196","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","4244"
"10:46:25.7400757 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","4244"
"10:46:25.7400881 AM","firefox.exe","7972","QueryStandardInformationFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000030","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","4244"
"10:46:25.7401086 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000013","SyncType: SyncTypeOther","4244"
"10:46:25.7401367 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7401551 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000055","","4244"
"10:46:25.7401811 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:25.7401999 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000060","","2512"
"10:46:25.7404115 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\wshqos.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4244"
"10:46:25.7404414 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\wshqos.dll","0.0000030","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:11:07 PM, FileAttributes: A","4244"
"10:46:25.7404508 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\wshqos.dll","0.0000042","","4244"
"10:46:25.7405301 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7405553 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\wshqos.dll","0.0000256","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","4244"
"10:46:25.7405881 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:25.7406082 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000077","","2512"
"10:46:25.7406146 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","4244"
"10:46:25.7406620 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000021","SyncType: SyncTypeOther","4244"
"10:46:25.7406944 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\wshqos.dll","0.0000060","Name: \Windows\System32\wshqos.dll","4244"
"10:46:25.7407260 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\wshqos.dll","0.0000047","","4244"
"10:46:25.7407678 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000094","Desired Access: Read","4244"
"10:46:25.7408774 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000150","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","4244"
"10:46:25.7409077 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","4244"
"10:46:25.7409197 AM","firefox.exe","7972","QueryStandardInformationFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000025","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","4244"
"10:46:25.7409406 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000017","SyncType: SyncTypeOther","4244"
"10:46:25.7409841 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000051","","4244"
"10:46:25.7410054 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7410515 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","2512"
"10:46:25.7410699 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000068","","2512"
"10:46:25.7412124 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\wshqos.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4244"
"10:46:25.7412478 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\wshqos.dll","0.0000042","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:11:07 PM, FileAttributes: A","4244"
"10:46:25.7412619 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\wshqos.dll","0.0000059","","4244"
"10:46:25.7414355 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\wshqos.dll","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","4244"
"10:46:25.7414406 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7414752 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","4244"
"10:46:25.7414859 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000042","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","2512"
"10:46:25.7415055 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000064","","2512"
"10:46:25.7415136 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000017","SyncType: SyncTypeOther","4244"
"10:46:25.7415516 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\wshqos.dll","0.0000055","Name: \Windows\System32\wshqos.dll","4244"
"10:46:25.7415763 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\wshqos.dll","0.0000051","","4244"
"10:46:25.7416186 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000098","Desired Access: Read","4244"
"10:46:25.7417346 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000192","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","4244"
"10:46:25.7417717 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","4244"
"10:46:25.7417841 AM","firefox.exe","7972","QueryStandardInformationFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000030","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","4244"
"10:46:25.7418046 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000017","SyncType: SyncTypeOther","4244"
"10:46:25.7418071 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7418472 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000056","","4244"
"10:46:25.7418494 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000042","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","2512"
"10:46:25.7418690 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000064","","2512"
"10:46:25.7419181 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7419317 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000056","Desired Access: All Access","4244"
"10:46:25.7419467 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000345","Desired Access: All Access","4244"
"10:46:25.7419637 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000034","Information: Owner","4244"
"10:46:25.7419757 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000013","Information: Owner","4244"
"10:46:25.7419957 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7420068 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000034","Desired Access: Read","4244"
"10:46:25.7420171 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000047","Desired Access: Read","4244"
"10:46:25.7420333 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000034","Length: 16","4244"
"10:46:25.7420444 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000025","Type: REG_SZ, Length: 8, Data: 2.0","4244"
"10:46:25.7420584 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000026","Length: 44","4244"
"10:46:25.7420678 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000022","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","4244"
"10:46:25.7421468 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000012","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7421574 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000060","Desired Access: Maximum Allowed, Granted Access: Read","4244"
"10:46:25.7421724 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000025","Type: REG_DWORD, Length: 4, Data: 8","4244"
"10:46:25.7422206 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000021","Type: REG_DWORD, Length: 4, Data: 8","4244"
"10:46:25.7422325 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7422423 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000030","Desired Access: Read","4244"
"10:46:25.7422436 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7422543 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000021","Type: REG_DWORD, Length: 4, Data: 1015","4244"
"10:46:25.7422637 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000021","Type: REG_DWORD, Length: 4, Data: 14","4244"
"10:46:25.7422731 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7422816 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000038","Desired Access: Maximum Allowed, Granted Access: Read","4244"
"10:46:25.7422901 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000039","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:25.7422961 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7423051 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000038","Desired Access: Read","4244"
"10:46:25.7423076 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000060","","2512"
"10:46:25.7423179 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000025","Length: 144","4244"
"10:46:25.7423319 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7423550 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000013","","4244"
"10:46:25.7423648 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7423733 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000069","Desired Access: Read","4244"
"10:46:25.7423883 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7423972 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7424092 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000008","","4244"
"10:46:25.7424181 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7424267 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000029","Desired Access: Read","4244"
"10:46:25.7424378 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000017","Length: 144","4244"
"10:46:25.7424463 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000051","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7424668 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000017","","4244"
"10:46:25.7425009 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7425146 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000046","Desired Access: Read","4244"
"10:46:25.7425320 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000052","Length: 144","4244"
"10:46:25.7425478 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7425611 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000012","","4244"
"10:46:25.7425709 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7425798 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000026","Desired Access: Read","4244"
"10:46:25.7425905 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7425995 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7426097 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000009","","4244"
"10:46:25.7426182 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7426263 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000026","Desired Access: Read","4244"
"10:46:25.7426370 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7426455 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7426558 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000008","","4244"
"10:46:25.7426664 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7426750 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000025","Desired Access: Read","4244"
"10:46:25.7426856 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7426946 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000081","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7426967 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7427138 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000013","","4244"
"10:46:25.7427228 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7427309 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000025","Desired Access: Read","4244"
"10:46:25.7427420 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7427454 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000042","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:25.7427509 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7427616 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000008","","4244"
"10:46:25.7427637 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000060","","2512"
"10:46:25.7427701 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7427787 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000029","Desired Access: Read","4244"
"10:46:25.7427893 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000039","Length: 144","4244"
"10:46:25.7428000 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7428107 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000008","","4244"
"10:46:25.7428188 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7428273 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000030","Desired Access: Read","4244"
"10:46:25.7428380 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7428469 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7428576 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000008","","4244"
"10:46:25.7428661 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7428747 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000025","Desired Access: Read","4244"
"10:46:25.7428853 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7428947 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7429045 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000009","","4244"
"10:46:25.7429131 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7429212 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000025","Desired Access: Read","4244"
"10:46:25.7429318 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000026","Length: 144","4244"
"10:46:25.7429408 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7429510 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000013","","4244"
"10:46:25.7429596 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7429677 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000025","Desired Access: Read","4244"
"10:46:25.7429779 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7429864 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7429967 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000008","","4244"
"10:46:25.7430048 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7430129 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000026","Desired Access: Read","4244"
"10:46:25.7430236 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000042","Length: 144","4244"
"10:46:25.7430381 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7430466 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7430547 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000013","","4244"
"10:46:25.7430684 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","","4244"
"10:46:25.7430931 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000026","","4244"
"10:46:25.7430948 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000034","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:25.7431106 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000056","","2512"
"10:46:25.7431115 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000012","","4244"
"10:46:25.7431511 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7431661 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000094","Desired Access: All Access","4244"
"10:46:25.7431904 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000538","Desired Access: All Access","4244"
"10:46:25.7432194 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000038","Information: Owner","4244"
"10:46:25.7432382 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000021","Information: Owner","4244"
"10:46:25.7432587 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000068","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7432783 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000047","Desired Access: Read","4244"
"10:46:25.7432936 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000064","Desired Access: Read","4244"
"10:46:25.7433141 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000039","Length: 16","4244"
"10:46:25.7433295 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000030","Type: REG_SZ, Length: 8, Data: 2.0","4244"
"10:46:25.7433453 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000030","Length: 44","4244"
"10:46:25.7433585 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000034","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","4244"
"10:46:25.7433773 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7433918 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000064","Desired Access: Maximum Allowed, Granted Access: Read","4244"
"10:46:25.7433922 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7434110 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","4244"
"10:46:25.7434229 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000030","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","2512"
"10:46:25.7434349 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000042","","2512"
"10:46:25.7434600 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000030","Type: REG_DWORD, Length: 4, Data: 8","4244"
"10:46:25.7434771 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7434912 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000043","Desired Access: Read","4244"
"10:46:25.7435441 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000038","Type: REG_DWORD, Length: 4, Data: 1015","4244"
"10:46:25.7435595 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000034","Type: REG_DWORD, Length: 4, Data: 14","4244"
"10:46:25.7435744 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7435902 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000060","Desired Access: Maximum Allowed, Granted Access: Read","4244"
"10:46:25.7436077 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7436183 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000043","Desired Access: Read","4244"
"10:46:25.7436363 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Length: 144","4244"
"10:46:25.7436503 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7436721 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000017","","4244"
"10:46:25.7436875 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7437032 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000052","Desired Access: Read","4244"
"10:46:25.7437220 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Length: 144","4244"
"10:46:25.7437370 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7437570 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","4244"
"10:46:25.7437805 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000034","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7437997 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000072","Desired Access: Read","4244"
"10:46:25.7438035 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7438231 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000035","Length: 144","4244"
"10:46:25.7438389 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7438564 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000039","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","2512"
"10:46:25.7438615 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000017","","4244"
"10:46:25.7438696 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000047","","2512"
"10:46:25.7438782 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7438940 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000051","Desired Access: Read","4244"
"10:46:25.7439136 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000034","Length: 144","4244"
"10:46:25.7439281 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7439460 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000013","","4244"
"10:46:25.7439563 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7439656 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000030","Desired Access: Read","4244"
"10:46:25.7439776 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000026","Length: 144","4244"
"10:46:25.7439866 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7439994 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000008","","4244"
"10:46:25.7440079 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7440168 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000035","Desired Access: Read","4244"
"10:46:25.7440292 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7440382 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7440488 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000013","","4244"
"10:46:25.7440578 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7440668 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000030","Desired Access: Read","4244"
"10:46:25.7440779 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7440868 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7440979 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000009","","4244"
"10:46:25.7441064 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7441146 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000025","Desired Access: Read","4244"
"10:46:25.7441256 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7441350 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7441380 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7441457 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000009","","4244"
"10:46:25.7441542 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000047","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7441666 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000030","Desired Access: Read","4244"
"10:46:25.7441841 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000026","Length: 144","4244"
"10:46:25.7441901 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000051","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","2512"
"10:46:25.7441978 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000029","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7442101 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000069","","2512"
"10:46:25.7442106 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000012","","4244"
"10:46:25.7442199 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7442293 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000034","Desired Access: Read","4244"
"10:46:25.7442413 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000017","Length: 144","4244"
"10:46:25.7442498 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7442600 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000009","","4244"
"10:46:25.7442682 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7442767 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000025","Desired Access: Read","4244"
"10:46:25.7442874 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000017","Length: 144","4244"
"10:46:25.7442955 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7443057 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000013","","4244"
"10:46:25.7443142 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7443228 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000025","Desired Access: Read","4244"
"10:46:25.7443339 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7443424 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7443526 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000009","","4244"
"10:46:25.7443612 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7443697 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000026","Desired Access: Read","4244"
"10:46:25.7443804 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7443893 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7444000 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000008","","4244"
"10:46:25.7444303 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7444392 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000030","Desired Access: Read","4244"
"10:46:25.7444503 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7444593 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7444700 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000008","","4244"
"10:46:25.7444781 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","","4244"
"10:46:25.7444977 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","","4244"
"10:46:25.7445084 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000008","","4244"
"10:46:25.7445331 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7445421 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000042","Desired Access: All Access","4244"
"10:46:25.7445540 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000354","Desired Access: All Access","4244"
"10:46:25.7445707 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000034","Information: Owner","4244"
"10:46:25.7445852 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000012","Information: Owner","4244"
"10:46:25.7445873 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7446018 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7446116 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000034","Desired Access: Read","4244"
"10:46:25.7446214 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000043","Desired Access: Read","4244"
"10:46:25.7446355 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000026","Length: 16","4244"
"10:46:25.7446372 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000043","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.7446458 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000046","Type: REG_SZ, Length: 8, Data: 2.0","4244"
"10:46:25.7446539 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000076","","2512"
"10:46:25.7446611 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000026","Length: 44","4244"
"10:46:25.7446743 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000030","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","4244"
"10:46:25.7446884 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7446999 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000047","Desired Access: Maximum Allowed, Granted Access: Read","4244"
"10:46:25.7447132 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000021","Type: REG_DWORD, Length: 4, Data: 8","4244"
"10:46:25.7447528 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000022","Type: REG_DWORD, Length: 4, Data: 8","4244"
"10:46:25.7447639 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7447725 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000025","Desired Access: Read","4244"
"10:46:25.7447831 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000026","Type: REG_DWORD, Length: 4, Data: 1015","4244"
"10:46:25.7447925 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000022","Type: REG_DWORD, Length: 4, Data: 14","4244"
"10:46:25.7448015 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7448100 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000047","Desired Access: Maximum Allowed, Granted Access: Read","4244"
"10:46:25.7448241 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7448322 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000030","Desired Access: Read","4244"
"10:46:25.7448454 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7448702 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7448907 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000017","","4244"
"10:46:25.7449056 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7449188 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000043","Desired Access: Read","4244"
"10:46:25.7449320 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000026","Length: 144","4244"
"10:46:25.7449431 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7449594 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000012","","4244"
"10:46:25.7449730 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7449867 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000042","Desired Access: Read","4244"
"10:46:25.7450037 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7450191 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000055","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7450225 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7450391 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000013","","4244"
"10:46:25.7450532 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7450583 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.7450677 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000047","Desired Access: Read","4244"
"10:46:25.7450703 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000047","","2512"
"10:46:25.7450861 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7451002 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7451176 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000013","","4244"
"10:46:25.7451309 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7451415 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000030","Desired Access: Read","4244"
"10:46:25.7451535 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7451624 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7451740 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000008","","4244"
"10:46:25.7451825 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7451915 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000021","Desired Access: Read","4244"
"10:46:25.7452021 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7452111 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7452218 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000008","","4244"
"10:46:25.7452303 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7452388 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000030","Desired Access: Read","4244"
"10:46:25.7452499 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7452589 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7452687 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000008","","4244"
"10:46:25.7452772 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7452862 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000025","Desired Access: Read","4244"
"10:46:25.7452968 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7453067 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7453173 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000013","","4244"
"10:46:25.7453259 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7453348 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000073","Desired Access: Read","4244"
"10:46:25.7453365 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7453519 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7453608 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7453719 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000013","","4244"
"10:46:25.7453805 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000042","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.7453818 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7453903 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000034","Desired Access: Read","4244"
"10:46:25.7453997 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000059","","2512"
"10:46:25.7454018 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7454108 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7454214 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000009","","4244"
"10:46:25.7454300 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7454415 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000025","Desired Access: Read","4244"
"10:46:25.7454522 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7454607 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7454714 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000008","","4244"
"10:46:25.7454799 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7454884 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000051","Desired Access: Read","4244"
"10:46:25.7455016 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7455106 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7455213 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000013","","4244"
"10:46:25.7455298 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7455383 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000030","Desired Access: Read","4244"
"10:46:25.7455490 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000017","Length: 144","4244"
"10:46:25.7455571 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7455674 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000012","","4244"
"10:46:25.7455759 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7455844 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000026","Desired Access: Read","4244"
"10:46:25.7455951 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7456040 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7456143 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000008","","4244"
"10:46:25.7456224 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","","4244"
"10:46:25.7456416 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000026","","4244"
"10:46:25.7456527 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000008","","4244"
"10:46:25.7456774 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7456864 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000038","Desired Access: All Access","4244"
"10:46:25.7456975 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000316","Desired Access: All Access","4244"
"10:46:25.7457133 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000030","Information: Owner","4244"
"10:46:25.7457252 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000013","Information: Owner","4244"
"10:46:25.7457414 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7457508 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000030","Desired Access: Read","4244"
"10:46:25.7457606 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000039","Desired Access: Read","4244"
"10:46:25.7457619 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7457739 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000025","Length: 16","4244"
"10:46:25.7457832 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000022","Type: REG_SZ, Length: 8, Data: 2.0","4244"
"10:46:25.7457931 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000025","Length: 44","4244"
"10:46:25.7458046 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000025","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","4244"
"10:46:25.7458101 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","2512"
"10:46:25.7458174 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7458263 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000043","Desired Access: Maximum Allowed, Granted Access: Read","4244"
"10:46:25.7458285 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000064","","2512"
"10:46:25.7458387 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000026","Type: REG_DWORD, Length: 4, Data: 8","4244"
"10:46:25.7458746 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000021","Type: REG_DWORD, Length: 4, Data: 8","4244"
"10:46:25.7459663 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000030","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7459804 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000042","Desired Access: Read","4244"
"10:46:25.7460529 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000038","Type: REG_DWORD, Length: 4, Data: 1015","4244"
"10:46:25.7460691 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000030","Type: REG_DWORD, Length: 4, Data: 14","4244"
"10:46:25.7460845 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7460969 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000051","Desired Access: Maximum Allowed, Granted Access: Read","4244"
"10:46:25.7461143 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7461267 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000043","Desired Access: Read","4244"
"10:46:25.7461434 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Length: 144","4244"
"10:46:25.7463200 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000064","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7463516 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000021","","4244"
"10:46:25.7463716 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000111","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7463964 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000042","Desired Access: Read","4244"
"10:46:25.7464126 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7464241 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7464416 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","4244"
"10:46:25.7464540 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7464642 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000034","Desired Access: Read","4244"
"10:46:25.7464770 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000026","Length: 144","4244"
"10:46:25.7464873 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7465005 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000013","","4244"
"10:46:25.7465116 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7465201 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000030","Desired Access: Read","4244"
"10:46:25.7465316 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7465350 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7465406 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7465513 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000012","","4244"
"10:46:25.7465598 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7465679 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000026","Desired Access: Read","4244"
"10:46:25.7465790 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7465803 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","2512"
"10:46:25.7465879 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7465982 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000060","","2512"
"10:46:25.7465990 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000013","","4244"
"10:46:25.7466076 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7466161 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000030","Desired Access: Read","4244"
"10:46:25.7466272 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7466357 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7466460 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000013","","4244"
"10:46:25.7466545 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7466626 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000030","Desired Access: Read","4244"
"10:46:25.7466733 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000017","Length: 144","4244"
"10:46:25.7466818 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7466916 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000013","","4244"
"10:46:25.7467002 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7467083 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000025","Desired Access: Read","4244"
"10:46:25.7467185 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7467275 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7467373 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000008","","4244"
"10:46:25.7467454 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7467535 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000030","Desired Access: Read","4244"
"10:46:25.7467650 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000085","Length: 144","4244"
"10:46:25.7467846 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7467953 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000013","","4244"
"10:46:25.7468043 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7468124 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000030","Desired Access: Read","4244"
"10:46:25.7468230 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7468316 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7468418 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000009","","4244"
"10:46:25.7468503 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7468585 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000025","Desired Access: Read","4244"
"10:46:25.7468687 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000026","Length: 144","4244"
"10:46:25.7468777 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7468883 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000009","","4244"
"10:46:25.7468969 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7469033 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7469054 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000030","Desired Access: Read","4244"
"10:46:25.7469165 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000042","Length: 144","4244"
"10:46:25.7469310 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000089","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7469591 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000056","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","2512"
"10:46:25.7469634 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000017","","4244"
"10:46:25.7469788 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7469813 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000094","","2512"
"10:46:25.7469924 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000043","Desired Access: Read","4244"
"10:46:25.7470099 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7470231 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7470402 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000013","","4244"
"10:46:25.7470526 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7470645 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000043","Desired Access: Read","4244"
"10:46:25.7470807 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000026","Length: 144","4244"
"10:46:25.7470927 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7471068 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000013","","4244"
"10:46:25.7471183 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","","4244"
"10:46:25.7471435 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","","4244"
"10:46:25.7471584 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","","4244"
"10:46:25.7471955 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7472113 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000068","Desired Access: All Access","4244"
"10:46:25.7472309 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000491","Desired Access: All Access","4244"
"10:46:25.7472544 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000043","Information: Owner","4244"
"10:46:25.7472740 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000022","Information: Owner","4244"
"10:46:25.7472945 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000060","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7473158 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000052","Desired Access: Read","4244"
"10:46:25.7473329 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000064","Desired Access: Read","4244"
"10:46:25.7473534 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000038","Length: 16","4244"
"10:46:25.7473653 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000026","Type: REG_SZ, Length: 8, Data: 2.0","4244"
"10:46:25.7473760 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000026","Length: 44","4244"
"10:46:25.7473850 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000021","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","4244"
"10:46:25.7473978 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000025","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7474131 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000077","Desired Access: Maximum Allowed, Granted Access: Read","4244"
"10:46:25.7474319 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000026","Type: REG_DWORD, Length: 4, Data: 8","4244"
"10:46:25.7475121 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000026","Type: REG_DWORD, Length: 4, Data: 8","4244"
"10:46:25.7475155 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7475232 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7475317 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000030","Desired Access: Read","4244"
"10:46:25.7475433 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000021","Type: REG_DWORD, Length: 4, Data: 1015","4244"
"10:46:25.7475522 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000039","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","2512"
"10:46:25.7475526 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000022","Type: REG_DWORD, Length: 4, Data: 14","4244"
"10:46:25.7475620 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7475697 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000064","","2512"
"10:46:25.7475723 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000051","Desired Access: Maximum Allowed, Granted Access: Read","4244"
"10:46:25.7475906 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7476038 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000043","Desired Access: Read","4244"
"10:46:25.7476213 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Length: 144","4244"
"10:46:25.7476363 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7476563 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000017","","4244"
"10:46:25.7476704 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7476845 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000042","Desired Access: Read","4244"
"10:46:25.7477015 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7477161 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7477323 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000012","","4244"
"10:46:25.7477421 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7477506 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000030","Desired Access: Read","4244"
"10:46:25.7477617 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000026","Length: 144","4244"
"10:46:25.7477707 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7477818 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000008","","4244"
"10:46:25.7477899 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7477980 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000030","Desired Access: Read","4244"
"10:46:25.7478091 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7478129 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7478176 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7478283 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000076","","4244"
"10:46:25.7478449 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7478479 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000034","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","2512"
"10:46:25.7478534 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000026","Desired Access: Read","4244"
"10:46:25.7478645 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000026","Length: 144","4244"
"10:46:25.7478650 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000059","","2512"
"10:46:25.7478735 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7478846 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000008","","4244"
"10:46:25.7478931 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7479012 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000026","Desired Access: Read","4244"
"10:46:25.7479119 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000017","Length: 144","4244"
"10:46:25.7479200 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7479307 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000008","","4244"
"10:46:25.7479392 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7479477 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000026","Desired Access: Read","4244"
"10:46:25.7479584 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000017","Length: 144","4244"
"10:46:25.7479669 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7479767 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000009","","4244"
"10:46:25.7479857 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7479989 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000039","Desired Access: Read","4244"
"10:46:25.7480151 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7480292 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7480450 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000013","","4244"
"10:46:25.7480578 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7480710 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000039","Desired Access: Read","4244"
"10:46:25.7480864 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000026","Length: 144","4244"
"10:46:25.7480975 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7480992 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7481158 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","","4244"
"10:46:25.7481227 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000042","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","2512"
"10:46:25.7481316 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7481372 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000051","","2512"
"10:46:25.7481453 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000042","Desired Access: Read","4244"
"10:46:25.7481619 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7481747 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7481909 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000013","","4244"
"10:46:25.7482042 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7482174 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000047","Desired Access: Read","4244"
"10:46:25.7482345 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000029","Length: 144","4244"
"10:46:25.7482481 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7482647 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000018","","4244"
"10:46:25.7482788 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7482895 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000038","Desired Access: Read","4244"
"10:46:25.7483014 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7483100 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7483215 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000008","","4244"
"10:46:25.7483305 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7483386 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000025","Desired Access: Read","4244"
"10:46:25.7483492 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7483582 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7483684 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000009","","4244"
"10:46:25.7483765 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7483846 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000026","Desired Access: Read","4244"
"10:46:25.7483949 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7484034 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7484132 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000009","","4244"
"10:46:25.7484209 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","","4244"
"10:46:25.7484397 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","","4244"
"10:46:25.7484499 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000009","","4244"
"10:46:25.7484828 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7485062 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7485216 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000055","Desired Access: All Access","4244"
"10:46:25.7485297 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:25.7485387 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0001096","Desired Access: All Access","4244"
"10:46:25.7485489 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000051","","2512"
"10:46:25.7485621 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000039","Information: Owner","4244"
"10:46:25.7485685 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0000094","","5956"
"10:46:25.7485801 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000017","Information: Owner","4244"
"10:46:25.7486607 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7486735 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000047","Desired Access: Read","4244"
"10:46:25.7486889 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000064","Desired Access: Read","4244"
"10:46:25.7487098 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000038","Length: 16","4244"
"10:46:25.7487268 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000034","Type: REG_SZ, Length: 8, Data: 2.0","4244"
"10:46:25.7487418 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000025","Length: 44","4244"
"10:46:25.7487511 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000026","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","4244"
"10:46:25.7487644 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7487733 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000047","Desired Access: Maximum Allowed, Granted Access: Read","4244"
"10:46:25.7487861 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000026","Type: REG_DWORD, Length: 4, Data: 8","4244"
"10:46:25.7488254 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000025","Type: REG_DWORD, Length: 4, Data: 8","4244"
"10:46:25.7488369 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7488459 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000025","Desired Access: Read","4244"
"10:46:25.7488587 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000030","Type: REG_DWORD, Length: 4, Data: 1015","4244"
"10:46:25.7488732 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000047","Type: REG_DWORD, Length: 4, Data: 14","4244"
"10:46:25.7488898 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7489039 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000055","Desired Access: Maximum Allowed, Granted Access: Read","4244"
"10:46:25.7489235 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7489372 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000047","Desired Access: Read","4244"
"10:46:25.7489555 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Length: 144","4244"
"10:46:25.7489705 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7489905 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000017","","4244"
"10:46:25.7490050 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7490080 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7490221 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000047","Desired Access: Read","4244"
"10:46:25.7490400 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7490541 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000094","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7490605 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000064","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:25.7490750 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000008","","4244"
"10:46:25.7490835 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000064","","2512"
"10:46:25.7490848 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7490938 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000029","Desired Access: Read","4244"
"10:46:25.7491053 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7491142 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7491262 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000008","","4244"
"10:46:25.7491347 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7491428 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000039","Desired Access: Read","4244"
"10:46:25.7491548 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7491633 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7491735 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000013","","4244"
"10:46:25.7491821 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7491902 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000030","Desired Access: Read","4244"
"10:46:25.7492009 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7492094 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7492196 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000009","","4244"
"10:46:25.7492277 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7492363 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000025","Desired Access: Read","4244"
"10:46:25.7492465 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7492550 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7492653 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000008","","4244"
"10:46:25.7492734 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7492819 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000056","Desired Access: Read","4244"
"10:46:25.7492964 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000017","Length: 144","4244"
"10:46:25.7493050 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7493148 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000008","","4244"
"10:46:25.7493233 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7493314 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000026","Desired Access: Read","4244"
"10:46:25.7493421 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7493510 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7493613 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000008","","4244"
"10:46:25.7493694 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000030","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7493801 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000029","Desired Access: Read","4244"
"10:46:25.7493907 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7493993 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7494095 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000013","","4244"
"10:46:25.7494185 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7494249 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7494270 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000025","Desired Access: Read","4244"
"10:46:25.7494372 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7494458 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7494560 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000009","","4244"
"10:46:25.7494650 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7494675 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:25.7494782 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000030","Desired Access: Read","4244"
"10:46:25.7494859 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000055","","2512"
"10:46:25.7494893 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000047","Length: 144","4244"
"10:46:25.7495012 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7495119 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000008","","4244"
"10:46:25.7495209 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7495294 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000030","Desired Access: Read","4244"
"10:46:25.7495405 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7495490 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7495601 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000009","","4244"
"10:46:25.7495682 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7495767 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000026","Desired Access: Read","4244"
"10:46:25.7495870 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000017","Length: 144","4244"
"10:46:25.7495951 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7496053 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000009","","4244"
"10:46:25.7496134 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7496220 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000025","Desired Access: Read","4244"
"10:46:25.7496322 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000017","Length: 144","4244"
"10:46:25.7496407 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7496506 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000008","","4244"
"10:46:25.7496587 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","","4244"
"10:46:25.7496766 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","","4244"
"10:46:25.7496877 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","","4244"
"10:46:25.7497184 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7497325 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000055","Desired Access: All Access","4244"
"10:46:25.7497457 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000384","Desired Access: All Access","4244"
"10:46:25.7497619 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000068","Information: Owner","4244"
"10:46:25.7497803 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000017","Information: Owner","4244"
"10:46:25.7497973 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7498106 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000051","Desired Access: Read","4244"
"10:46:25.7498268 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000059","Desired Access: Read","4244"
"10:46:25.7498545 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000051","Length: 16","4244"
"10:46:25.7498780 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000042","Type: REG_SZ, Length: 8, Data: 2.0","4244"
"10:46:25.7498980 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000034","Length: 44","4244"
"10:46:25.7499113 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7499138 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000034","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","4244"
"10:46:25.7499356 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000021","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7499509 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000047","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","2512"
"10:46:25.7499539 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000132","Desired Access: Maximum Allowed, Granted Access: Read","4244"
"10:46:25.7499650 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000051","","2512"
"10:46:25.7499821 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000038","Type: REG_DWORD, Length: 4, Data: 8","4244"
"10:46:25.7500290 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","4244"
"10:46:25.7500469 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7500627 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000043","Desired Access: Read","4244"
"10:46:25.7500794 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000029","Type: REG_DWORD, Length: 4, Data: 1015","4244"
"10:46:25.7500939 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000025","Type: REG_DWORD, Length: 4, Data: 14","4244"
"10:46:25.7501097 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7501246 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000064","Desired Access: Maximum Allowed, Granted Access: Read","4244"
"10:46:25.7501455 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000030","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7501587 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000051","Desired Access: Read","4244"
"10:46:25.7501775 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Length: 144","4244"
"10:46:25.7501924 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7502142 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000021","","4244"
"10:46:25.7502295 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7502372 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7502441 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000051","Desired Access: Read","4244"
"10:46:25.7502624 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Length: 144","4244"
"10:46:25.7502692 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","2512"
"10:46:25.7502778 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000085","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7502812 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000072","","2512"
"10:46:25.7503072 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","4244"
"10:46:25.7503243 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7503409 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000056","Desired Access: Read","4244"
"10:46:25.7503627 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000034","Length: 144","4244"
"10:46:25.7503776 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7503989 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000017","","4244"
"10:46:25.7504151 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000018","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7504309 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000052","Desired Access: Read","4244"
"10:46:25.7504497 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000034","Length: 144","4244"
"10:46:25.7504638 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7504826 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","","4244"
"10:46:25.7504971 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7505073 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000030","Desired Access: Read","4244"
"10:46:25.7505193 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7505282 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7505393 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000009","","4244"
"10:46:25.7505478 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7505572 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000030","Desired Access: Read","4244"
"10:46:25.7505679 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7505769 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7505875 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000009","","4244"
"10:46:25.7505926 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7505965 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7506050 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000026","Desired Access: Read","4244"
"10:46:25.7506153 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7506238 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7506345 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000008","","4244"
"10:46:25.7506383 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000038","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","2512"
"10:46:25.7506430 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7506515 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000026","Desired Access: Read","4244"
"10:46:25.7506571 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000059","","2512"
"10:46:25.7506622 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7506711 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7506835 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000047","","4244"
"10:46:25.7506967 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7507057 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000026","Desired Access: Read","4244"
"10:46:25.7507164 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000042","Length: 144","4244"
"10:46:25.7507309 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7507475 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000013","","4244"
"10:46:25.7507612 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7507744 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000043","Desired Access: Read","4244"
"10:46:25.7507923 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7508047 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7508205 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000013","","4244"
"10:46:25.7508333 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7508474 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000038","Desired Access: Read","4244"
"10:46:25.7508636 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7508777 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000029","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7508930 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000013","","4244"
"10:46:25.7509058 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7509195 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000042","Desired Access: Read","4244"
"10:46:25.7509361 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7509378 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7509498 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000029","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7509664 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000111","","4244"
"10:46:25.7509677 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000051","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:25.7509830 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000047","","2512"
"10:46:25.7509903 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7510039 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000039","Desired Access: Read","4244"
"10:46:25.7510197 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7510330 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000029","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7510483 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000013","","4244"
"10:46:25.7510615 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7510748 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000038","Desired Access: Read","4244"
"10:46:25.7510910 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7511042 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7511196 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000025","","4244"
"10:46:25.7511337 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","","4244"
"10:46:25.7511575 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000022","","4244"
"10:46:25.7511721 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","","4244"
"10:46:25.7512058 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7512105 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7512203 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000064","Desired Access: All Access","4244"
"10:46:25.7512386 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000482","Desired Access: All Access","4244"
"10:46:25.7512403 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000030","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:25.7512514 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000043","","2512"
"10:46:25.7512621 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000038","Information: Owner","4244"
"10:46:25.7512813 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000021","Information: Owner","4244"
"10:46:25.7513009 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7513158 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000047","Desired Access: Read","4244"
"10:46:25.7513312 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000060","Desired Access: Read","4244"
"10:46:25.7513508 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000030","Length: 16","4244"
"10:46:25.7513649 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000034","Type: REG_SZ, Length: 8, Data: 2.0","4244"
"10:46:25.7513854 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000034","Length: 44","4244"
"10:46:25.7513999 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000030","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","4244"
"10:46:25.7514178 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7514315 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000059","Desired Access: Maximum Allowed, Granted Access: Read","4244"
"10:46:25.7514498 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000030","Type: REG_DWORD, Length: 4, Data: 8","4244"
"10:46:25.7514694 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7514921 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000029","Type: REG_DWORD, Length: 4, Data: 8","4244"
"10:46:25.7514980 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000030","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:25.7515083 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7515091 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000043","","2512"
"10:46:25.7515224 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000098","Desired Access: Read","4244"
"10:46:25.7515518 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000043","Type: REG_DWORD, Length: 4, Data: 1015","4244"
"10:46:25.7515689 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000029","Type: REG_DWORD, Length: 4, Data: 14","4244"
"10:46:25.7515838 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7515996 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000077","Desired Access: Maximum Allowed, Granted Access: Read","4244"
"10:46:25.7516218 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7516350 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000055","Desired Access: Read","4244"
"10:46:25.7516546 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Length: 144","4244"
"10:46:25.7516696 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7516909 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000017","","4244"
"10:46:25.7517062 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7517220 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000052","Desired Access: Read","4244"
"10:46:25.7517417 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Length: 144","4244"
"10:46:25.7517557 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000035","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7517754 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","4244"
"10:46:25.7517903 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7518057 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000051","Desired Access: Read","4244"
"10:46:25.7518249 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000034","Length: 144","4244"
"10:46:25.7518394 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7518586 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000012","","4244"
"10:46:25.7518731 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7518799 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7518872 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000046","Desired Access: Read","4244"
"10:46:25.7519046 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000035","Length: 144","4244"
"10:46:25.7519187 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7519238 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:25.7519375 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000013","","4244"
"10:46:25.7519418 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000064","","2512"
"10:46:25.7519516 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7519652 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000043","Desired Access: Read","4244"
"10:46:25.7519819 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Length: 144","4244"
"10:46:25.7519955 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7520139 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000017","","4244"
"10:46:25.7520280 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7520429 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000043","Desired Access: Read","4244"
"10:46:25.7520604 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7520745 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000029","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7520924 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000013","","4244"
"10:46:25.7521060 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7521210 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000042","Desired Access: Read","4244"
"10:46:25.7521385 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000029","Length: 144","4244"
"10:46:25.7521521 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7521700 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000017","","4244"
"10:46:25.7521841 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7521990 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000043","Desired Access: Read","4244"
"10:46:25.7522165 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7522264 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7522302 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7522473 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000017","","4244"
"10:46:25.7522613 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7522741 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:25.7522754 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000043","Desired Access: Read","4244"
"10:46:25.7522921 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000068","","2512"
"10:46:25.7522929 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7523066 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7523236 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","","4244"
"10:46:25.7523369 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7523514 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000042","Desired Access: Read","4244"
"10:46:25.7523689 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000042","Length: 144","4244"
"10:46:25.7523838 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7524017 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000013","","4244"
"10:46:25.7524158 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7524303 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000043","Desired Access: Read","4244"
"10:46:25.7524491 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7524632 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7524806 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000013","","4244"
"10:46:25.7524947 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7525088 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000047","Desired Access: Read","4244"
"10:46:25.7525263 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000034","Length: 144","4244"
"10:46:25.7525404 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7525579 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000013","","4244"
"10:46:25.7525720 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7525865 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000042","Desired Access: Read","4244"
"10:46:25.7525933 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7526031 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000034","Length: 144","4244"
"10:46:25.7526168 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7526347 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000055","","4244"
"10:46:25.7526411 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:25.7526496 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7526573 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000051","","2512"
"10:46:25.7526590 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000030","Desired Access: Read","4244"
"10:46:25.7526705 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000094","Length: 144","4244"
"10:46:25.7526982 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7527209 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000017","","4244"
"10:46:25.7527358 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","","4244"
"10:46:25.7527593 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","","4244"
"10:46:25.7527729 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","","4244"
"10:46:25.7528032 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7528194 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000060","Desired Access: All Access","4244"
"10:46:25.7528373 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000448","Desired Access: All Access","4244"
"10:46:25.7528591 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000038","Information: Owner","4244"
"10:46:25.7528766 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000017","Information: Owner","4244"
"10:46:25.7528971 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7529129 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000047","Desired Access: Read","4244"
"10:46:25.7529286 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000069","Desired Access: Read","4244"
"10:46:25.7529508 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000043","Length: 16","4244"
"10:46:25.7529666 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000034","Type: REG_SZ, Length: 8, Data: 2.0","4244"
"10:46:25.7529828 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000034","Length: 44","4244"
"10:46:25.7529969 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000034","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","4244"
"10:46:25.7530165 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7530315 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000064","Desired Access: Maximum Allowed, Granted Access: Read","4244"
"10:46:25.7530515 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","4244"
"10:46:25.7530852 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7530938 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","4244"
"10:46:25.7531113 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000012","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7531266 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000039","Desired Access: Read","4244"
"10:46:25.7531317 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","2512"
"10:46:25.7531437 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000034","Type: REG_DWORD, Length: 4, Data: 1015","4244"
"10:46:25.7531497 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000064","","2512"
"10:46:25.7531582 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000026","Type: REG_DWORD, Length: 4, Data: 14","4244"
"10:46:25.7531731 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7531872 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000056","Desired Access: Maximum Allowed, Granted Access: Read","4244"
"10:46:25.7532064 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7532201 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000047","Desired Access: Read","4244"
"10:46:25.7532405 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7532542 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7532742 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000018","","4244"
"10:46:25.7532892 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7533033 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000042","Desired Access: Read","4244"
"10:46:25.7533212 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Length: 144","4244"
"10:46:25.7533353 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7533540 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","4244"
"10:46:25.7533685 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7533826 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000047","Desired Access: Read","4244"
"10:46:25.7534005 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7534146 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7534334 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000013","","4244"
"10:46:25.7534475 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7534620 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000042","Desired Access: Read","4244"
"10:46:25.7534692 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7534795 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7534931 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7535115 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","","4244"
"10:46:25.7535123 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","2512"
"10:46:25.7535260 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7535302 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000060","","2512"
"10:46:25.7535401 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000047","Desired Access: Read","4244"
"10:46:25.7535571 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7535704 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7535883 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000013","","4244"
"10:46:25.7536028 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7536169 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000047","Desired Access: Read","4244"
"10:46:25.7536352 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000026","Length: 144","4244"
"10:46:25.7536489 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000029","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7536668 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000017","","4244"
"10:46:25.7536809 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7536949 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000043","Desired Access: Read","4244"
"10:46:25.7537120 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7537257 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7537427 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000013","","4244"
"10:46:25.7537564 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7537709 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000043","Desired Access: Read","4244"
"10:46:25.7537888 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7538025 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7538195 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7538242 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000017","","4244"
"10:46:25.7538366 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7538464 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000034","Desired Access: Read","4244"
"10:46:25.7538541 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","2512"
"10:46:25.7538596 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000026","Length: 144","4244"
"10:46:25.7538665 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000042","","2512"
"10:46:25.7538694 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7538818 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000013","","4244"
"10:46:25.7538904 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7538989 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000025","Desired Access: Read","4244"
"10:46:25.7539091 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7539177 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7539279 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000013","","4244"
"10:46:25.7539364 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7539445 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000026","Desired Access: Read","4244"
"10:46:25.7539548 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7539633 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7539736 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000008","","4244"
"10:46:25.7539817 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7539902 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000026","Desired Access: Read","4244"
"10:46:25.7540004 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000017","Length: 144","4244"
"10:46:25.7540090 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7540188 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000013","","4244"
"10:46:25.7540273 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7540354 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000026","Desired Access: Read","4244"
"10:46:25.7540461 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000060","Length: 144","4244"
"10:46:25.7540593 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7540696 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000008","","4244"
"10:46:25.7540777 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7540862 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000034","Desired Access: Read","4244"
"10:46:25.7540973 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000017","Length: 144","4244"
"10:46:25.7541054 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7541156 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000009","","4244"
"10:46:25.7541237 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","","4244"
"10:46:25.7541306 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7541395 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","","4244"
"10:46:25.7541493 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","","4244"
"10:46:25.7541647 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","2512"
"10:46:25.7541724 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7541762 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000056","","2512"
"10:46:25.7541848 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000055","Desired Access: All Access","4244"
"10:46:25.7542035 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000465","Desired Access: All Access","4244"
"10:46:25.7542266 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000047","Information: Owner","4244"
"10:46:25.7542453 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000022","Information: Owner","4244"
"10:46:25.7542603 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000042","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7542731 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000034","Desired Access: Read","4244"
"10:46:25.7542833 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000043","Desired Access: Read","4244"
"10:46:25.7542970 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000025","Length: 16","4244"
"10:46:25.7543068 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000025","Type: REG_SZ, Length: 8, Data: 2.0","4244"
"10:46:25.7543170 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000022","Length: 44","4244"
"10:46:25.7543260 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000021","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","4244"
"10:46:25.7543379 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7543465 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000042","Desired Access: Maximum Allowed, Granted Access: Read","4244"
"10:46:25.7543588 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000022","Type: REG_DWORD, Length: 4, Data: 8","4244"
"10:46:25.7543755 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7543904 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000021","Type: REG_DWORD, Length: 4, Data: 8","4244"
"10:46:25.7544015 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7544041 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","2512"
"10:46:25.7544105 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000025","Desired Access: Read","4244"
"10:46:25.7544152 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000038","","2512"
"10:46:25.7544211 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000026","Type: REG_DWORD, Length: 4, Data: 1015","4244"
"10:46:25.7544309 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000022","Type: REG_DWORD, Length: 4, Data: 14","4244"
"10:46:25.7544403 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7544484 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000039","Desired Access: Maximum Allowed, Granted Access: Read","4244"
"10:46:25.7544604 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7544685 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000025","Desired Access: Read","4244"
"10:46:25.7544792 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7544881 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7544996 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000013","","4244"
"10:46:25.7545086 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7545167 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000026","Desired Access: Read","4244"
"10:46:25.7545278 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000017","Length: 144","4244"
"10:46:25.7545363 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7545466 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000008","","4244"
"10:46:25.7545547 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7545628 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000025","Desired Access: Read","4244"
"10:46:25.7545730 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7545816 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7545922 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000009","","4244"
"10:46:25.7545982 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7546008 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7546114 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000030","Desired Access: Read","4244"
"10:46:25.7546238 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000026","Length: 144","4244"
"10:46:25.7546366 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000064","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","2512"
"10:46:25.7546374 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7546528 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","","4244"
"10:46:25.7546605 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000085","","2512"
"10:46:25.7546660 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7546797 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000043","Desired Access: Read","4244"
"10:46:25.7546963 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Length: 144","4244"
"10:46:25.7547096 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7547253 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000013","","4244"
"10:46:25.7547369 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7547488 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000038","Desired Access: Read","4244"
"10:46:25.7547637 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000026","Length: 144","4244"
"10:46:25.7547753 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000029","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7547898 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000012","","4244"
"10:46:25.7548026 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7548158 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000043","Desired Access: Read","4244"
"10:46:25.7548329 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000029","Length: 144","4244"
"10:46:25.7548465 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7548632 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000017","","4244"
"10:46:25.7548772 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7548913 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000051","Desired Access: Read","4244"
"10:46:25.7549092 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000034","Length: 144","4244"
"10:46:25.7549237 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7549404 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000013","","4244"
"10:46:25.7549540 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7549681 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000043","Desired Access: Read","4244"
"10:46:25.7549856 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7549993 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7550163 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000013","","4244"
"10:46:25.7550304 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7550449 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000043","Desired Access: Read","4244"
"10:46:25.7550581 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7550616 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000029","Length: 144","4244"
"10:46:25.7550752 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7550923 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000013","","4244"
"10:46:25.7551042 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000043","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:25.7551059 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7551200 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000043","Desired Access: Read","4244"
"10:46:25.7551221 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000064","","2512"
"10:46:25.7551371 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000025","Length: 144","4244"
"10:46:25.7551503 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7551665 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000013","","4244"
"10:46:25.7551802 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7551938 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000043","Desired Access: Read","4244"
"10:46:25.7552109 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000025","Length: 144","4244"
"10:46:25.7552245 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000035","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7552420 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000013","","4244"
"10:46:25.7552561 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7552706 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000043","Desired Access: Read","4244"
"10:46:25.7552885 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7553018 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7553188 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000013","","4244"
"10:46:25.7553329 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7553470 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000043","Desired Access: Read","4244"
"10:46:25.7553645 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7553786 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7553961 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000017","","4244"
"10:46:25.7554101 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","","4244"
"10:46:25.7554178 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7554323 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","","4244"
"10:46:25.7554468 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","","4244"
"10:46:25.7554588 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000042","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:25.7554758 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000018","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7554767 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000064","","2512"
"10:46:25.7554912 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000056","Desired Access: All Access","4244"
"10:46:25.7555083 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000452","Desired Access: All Access","4244"
"10:46:25.7555288 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000038","Information: Owner","4244"
"10:46:25.7555462 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000035","Information: Owner","4244"
"10:46:25.7555689 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7555838 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000051","Desired Access: Read","4244"
"10:46:25.7555992 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000064","Desired Access: Read","4244"
"10:46:25.7556201 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000034","Length: 16","4244"
"10:46:25.7556350 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000034","Type: REG_SZ, Length: 8, Data: 2.0","4244"
"10:46:25.7556512 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000030","Length: 44","4244"
"10:46:25.7556649 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000034","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","4244"
"10:46:25.7556841 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7557045 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000073","Desired Access: Maximum Allowed, Granted Access: Read","4244"
"10:46:25.7557267 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","4244"
"10:46:25.7557681 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000026","Type: REG_DWORD, Length: 4, Data: 8","4244"
"10:46:25.7557813 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7557882 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7557937 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000030","Desired Access: Read","4244"
"10:46:25.7558052 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000026","Type: REG_DWORD, Length: 4, Data: 1015","4244"
"10:46:25.7558150 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000018","Type: REG_DWORD, Length: 4, Data: 14","4244"
"10:46:25.7558189 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:25.7558249 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000012","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7558321 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000047","","2512"
"10:46:25.7558364 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000042","Desired Access: Maximum Allowed, Granted Access: Read","4244"
"10:46:25.7558517 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7558620 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000034","Desired Access: Read","4244"
"10:46:25.7558744 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7558837 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7558978 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000013","","4244"
"10:46:25.7559076 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7559162 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000025","Desired Access: Read","4244"
"10:46:25.7559268 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7559354 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7559469 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000008","","4244"
"10:46:25.7559554 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7559640 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000025","Desired Access: Read","4244"
"10:46:25.7559742 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7559827 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7559934 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000013","","4244"
"10:46:25.7560019 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7560105 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000025","Desired Access: Read","4244"
"10:46:25.7560211 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7560297 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7560403 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000009","","4244"
"10:46:25.7560484 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7560570 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000025","Desired Access: Read","4244"
"10:46:25.7560672 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7560757 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7560856 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000008","","4244"
"10:46:25.7560958 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7561039 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7561094 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000039","Desired Access: Read","4244"
"10:46:25.7561231 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7561316 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7561419 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000030","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","2512"
"10:46:25.7561436 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000008","","4244"
"10:46:25.7561547 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000051","","2512"
"10:46:25.7561581 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7561670 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000030","Desired Access: Read","4244"
"10:46:25.7561781 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7561867 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7561969 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000009","","4244"
"10:46:25.7562054 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7562136 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000025","Desired Access: Read","4244"
"10:46:25.7562238 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7562323 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7562426 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000008","","4244"
"10:46:25.7562507 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7562588 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000025","Desired Access: Read","4244"
"10:46:25.7562690 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7562784 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7562882 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000009","","4244"
"10:46:25.7562968 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7563049 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000025","Desired Access: Read","4244"
"10:46:25.7563151 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000017","Length: 144","4244"
"10:46:25.7563232 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7563334 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000009","","4244"
"10:46:25.7563420 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7563488 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7563505 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000026","Desired Access: Read","4244"
"10:46:25.7563608 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7563693 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7563770 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000076","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","2512"
"10:46:25.7563800 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000017","","4244"
"10:46:25.7563893 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7563962 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000055","","2512"
"10:46:25.7563983 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000026","Desired Access: Read","4244"
"10:46:25.7564085 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7564175 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7564277 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000009","","4244"
"10:46:25.7564358 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7564440 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000025","Desired Access: Read","4244"
"10:46:25.7564542 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7564627 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7564725 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000009","","4244"
"10:46:25.7564811 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7564892 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000025","Desired Access: Read","4244"
"10:46:25.7564994 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000017","Length: 144","4244"
"10:46:25.7565080 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7565186 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000009","","4244"
"10:46:25.7565267 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","","4244"
"10:46:25.7565468 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","","4244"
"10:46:25.7565570 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000009","","4244"
"10:46:25.7565826 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7565843 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7565920 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000043","Desired Access: All Access","4244"
"10:46:25.7566035 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000440","Desired Access: All Access","4244"
"10:46:25.7566116 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000030","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","2512"
"10:46:25.7566197 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000077","Information: Owner","4244"
"10:46:25.7566227 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000060","","2512"
"10:46:25.7566415 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000026","Information: Owner","4244"
"10:46:25.7566603 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7566697 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000034","Desired Access: Read","4244"
"10:46:25.7566795 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000042","Desired Access: Read","4244"
"10:46:25.7566927 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000026","Length: 16","4244"
"10:46:25.7567025 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000034","Type: REG_SZ, Length: 8, Data: 2.0","4244"
"10:46:25.7567140 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000026","Length: 44","4244"
"10:46:25.7567239 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000029","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","4244"
"10:46:25.7567367 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000012","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7567452 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000043","Desired Access: Maximum Allowed, Granted Access: Read","4244"
"10:46:25.7567580 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000021","Type: REG_DWORD, Length: 4, Data: 8","4244"
"10:46:25.7567844 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000022","Type: REG_DWORD, Length: 4, Data: 8","4244"
"10:46:25.7567951 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7568032 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000030","Desired Access: Read","4244"
"10:46:25.7568139 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000025","Type: REG_DWORD, Length: 4, Data: 1015","4244"
"10:46:25.7568233 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000038","Type: REG_DWORD, Length: 4, Data: 14","4244"
"10:46:25.7568344 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7568425 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000034","Desired Access: Maximum Allowed, Granted Access: Read","4244"
"10:46:25.7568540 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7568617 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000030","Desired Access: Read","4244"
"10:46:25.7568728 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7568817 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7568928 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000013","","4244"
"10:46:25.7569009 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7569018 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7569103 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000026","Desired Access: Read","4244"
"10:46:25.7569205 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7569295 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7569325 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000030","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","2512"
"10:46:25.7569402 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000013","","4244"
"10:46:25.7569436 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000043","","2512"
"10:46:25.7569487 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7569577 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000025","Desired Access: Read","4244"
"10:46:25.7569679 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7569764 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7569863 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000012","","4244"
"10:46:25.7569948 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7570029 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000026","Desired Access: Read","4244"
"10:46:25.7570131 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000017","Length: 144","4244"
"10:46:25.7570212 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7570315 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000008","","4244"
"10:46:25.7570396 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7570477 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000026","Desired Access: Read","4244"
"10:46:25.7570584 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7570673 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7570801 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000009","","4244"
"10:46:25.7570887 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7570968 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000025","Desired Access: Read","4244"
"10:46:25.7571070 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000017","Length: 144","4244"
"10:46:25.7571151 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7571253 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000009","","4244"
"10:46:25.7571339 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7571394 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7571420 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000025","Desired Access: Read","4244"
"10:46:25.7571527 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7571612 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7571672 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000029","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","2512"
"10:46:25.7571719 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000008","","4244"
"10:46:25.7571787 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000038","","2512"
"10:46:25.7571804 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7571889 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000026","Desired Access: Read","4244"
"10:46:25.7571996 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7572085 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7572188 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000008","","4244"
"10:46:25.7572269 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7572354 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000026","Desired Access: Read","4244"
"10:46:25.7572457 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000017","Length: 144","4244"
"10:46:25.7572542 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7572644 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000009","","4244"
"10:46:25.7572725 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7572824 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000025","Desired Access: Read","4244"
"10:46:25.7572930 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7573028 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7573131 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000008","","4244"
"10:46:25.7573212 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7573293 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000026","Desired Access: Read","4244"
"10:46:25.7573395 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000017","Length: 144","4244"
"10:46:25.7573476 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7573583 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000009","","4244"
"10:46:25.7573664 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7573732 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7573805 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000034","Desired Access: Read","4244"
"10:46:25.7573937 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7574010 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","2512"
"10:46:25.7574031 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7574121 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000038","","2512"
"10:46:25.7574142 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000013","","4244"
"10:46:25.7574232 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7574317 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000030","Desired Access: Read","4244"
"10:46:25.7574419 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7574505 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7574607 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000009","","4244"
"10:46:25.7574688 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7574769 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000026","Desired Access: Read","4244"
"10:46:25.7574872 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000017","Length: 144","4244"
"10:46:25.7574953 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7575055 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000009","","4244"
"10:46:25.7575132 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","","4244"
"10:46:25.7575294 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","","4244"
"10:46:25.7575384 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000012","","4244"
"10:46:25.7575576 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7575661 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000038","Desired Access: All Access","4244"
"10:46:25.7575768 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000285","Desired Access: All Access","4244"
"10:46:25.7575904 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000026","Information: Owner","4244"
"10:46:25.7576015 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000013","Information: Owner","4244"
"10:46:25.7576177 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7576263 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000029","Desired Access: Read","4244"
"10:46:25.7576356 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000035","Desired Access: Read","4244"
"10:46:25.7576476 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000025","Length: 16","4244"
"10:46:25.7576574 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000021","Type: REG_SZ, Length: 8, Data: 2.0","4244"
"10:46:25.7576578 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7576676 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000022","Length: 44","4244"
"10:46:25.7576762 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000021","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","4244"
"10:46:25.7576868 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.7576877 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7576967 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000034","Desired Access: Maximum Allowed, Granted Access: Read","4244"
"10:46:25.7576975 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000043","","2512"
"10:46:25.7577082 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000025","Type: REG_DWORD, Length: 4, Data: 8","4244"
"10:46:25.7577355 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000025","Type: REG_DWORD, Length: 4, Data: 8","4244"
"10:46:25.7577466 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7577547 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000030","Desired Access: Read","4244"
"10:46:25.7577653 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000022","Type: REG_DWORD, Length: 4, Data: 1015","4244"
"10:46:25.7577743 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000021","Type: REG_DWORD, Length: 4, Data: 14","4244"
"10:46:25.7577833 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000012","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7577914 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000034","Desired Access: Maximum Allowed, Granted Access: Read","4244"
"10:46:25.7578029 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7578106 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000030","Desired Access: Read","4244"
"10:46:25.7578212 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7578302 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7578421 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000009","","4244"
"10:46:25.7578507 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7578588 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000025","Desired Access: Read","4244"
"10:46:25.7578690 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000017","Length: 144","4244"
"10:46:25.7578776 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7578878 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000009","","4244"
"10:46:25.7578963 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7579044 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000026","Desired Access: Read","4244"
"10:46:25.7579096 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7579151 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000017","Length: 144","4244"
"10:46:25.7579236 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7579339 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000008","","4244"
"10:46:25.7579377 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000030","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.7579424 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7579492 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000039","","2512"
"10:46:25.7579514 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000025","Desired Access: Read","4244"
"10:46:25.7579616 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000026","Length: 144","4244"
"10:46:25.7579710 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7579812 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000009","","4244"
"10:46:25.7579893 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7579975 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000025","Desired Access: Read","4244"
"10:46:25.7580107 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7580192 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7580295 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000012","","4244"
"10:46:25.7580380 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7580461 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000026","Desired Access: Read","4244"
"10:46:25.7580563 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7580649 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7580751 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000013","","4244"
"10:46:25.7580841 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7580922 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000025","Desired Access: Read","4244"
"10:46:25.7581024 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7581109 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7581212 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000008","","4244"
"10:46:25.7581293 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7581374 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000026","Desired Access: Read","4244"
"10:46:25.7581481 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7581493 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7581570 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7581673 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000008","","4244"
"10:46:25.7581758 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7581762 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.7581848 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000025","Desired Access: Read","4244"
"10:46:25.7581869 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000043","","2512"
"10:46:25.7581954 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7582044 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7582146 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000009","","4244"
"10:46:25.7582227 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7582308 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000026","Desired Access: Read","4244"
"10:46:25.7582411 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000017","Length: 144","4244"
"10:46:25.7582492 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7582594 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000009","","4244"
"10:46:25.7582675 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7582756 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000026","Desired Access: Read","4244"
"10:46:25.7582859 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7582944 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7583047 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000008","","4244"
"10:46:25.7583128 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7583209 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000025","Desired Access: Read","4244"
"10:46:25.7583307 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7583396 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7583495 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000008","","4244"
"10:46:25.7583580 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7583665 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000026","Desired Access: Read","4244"
"10:46:25.7583763 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7583849 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7583951 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000009","","4244"
"10:46:25.7584032 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7584113 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000026","Desired Access: Read","4244"
"10:46:25.7584216 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7584301 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7584331 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7584408 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000008","","4244"
"10:46:25.7584484 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","","4244"
"10:46:25.7584608 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","2512"
"10:46:25.7584642 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","","4244"
"10:46:25.7584715 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000038","","2512"
"10:46:25.7584736 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000009","","4244"
"10:46:25.7584920 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7585005 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000030","Desired Access: All Access","4244"
"10:46:25.7585099 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000286","Desired Access: All Access","4244"
"10:46:25.7585227 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000021","Information: Owner","4244"
"10:46:25.7585351 AM","firefox.exe","7972","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000008","Information: Owner","4244"
"10:46:25.7585500 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7585589 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000030","Desired Access: Read","4244"
"10:46:25.7585683 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000034","Desired Access: Read","4244"
"10:46:25.7585854 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000026","Length: 16","4244"
"10:46:25.7585952 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000021","Type: REG_SZ, Length: 8, Data: 2.0","4244"
"10:46:25.7586050 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000022","Length: 44","4244"
"10:46:25.7586136 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000021","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","4244"
"10:46:25.7586242 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7586328 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000038","Desired Access: Maximum Allowed, Granted Access: Read","4244"
"10:46:25.7586443 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000021","Type: REG_DWORD, Length: 4, Data: 8","4244"
"10:46:25.7586558 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7586682 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000021","Type: REG_DWORD, Length: 4, Data: 8","4244"
"10:46:25.7586788 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7586818 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","2512"
"10:46:25.7586878 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000026","Desired Access: Read","4244"
"10:46:25.7586921 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000038","","2512"
"10:46:25.7586980 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000026","Type: REG_DWORD, Length: 4, Data: 1015","4244"
"10:46:25.7587079 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000034","Type: REG_DWORD, Length: 4, Data: 14","4244"
"10:46:25.7587181 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7587271 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000042","Desired Access: Maximum Allowed, Granted Access: Read","4244"
"10:46:25.7587399 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7587484 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000025","Desired Access: Read","4244"
"10:46:25.7587591 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7587680 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7587795 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000009","","4244"
"10:46:25.7587881 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7587966 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000026","Desired Access: Read","4244"
"10:46:25.7588068 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7588158 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7588269 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000008","","4244"
"10:46:25.7588350 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7588431 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000026","Desired Access: Read","4244"
"10:46:25.7588533 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7588619 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7588721 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000009","","4244"
"10:46:25.7588807 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7588892 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000025","Desired Access: Read","4244"
"10:46:25.7588922 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7588994 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7589084 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7589208 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000029","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","2512"
"10:46:25.7589233 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000013","","4244"
"10:46:25.7589319 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000042","","2512"
"10:46:25.7589331 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7589421 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000030","Desired Access: Read","4244"
"10:46:25.7589536 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7589621 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000022","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7589728 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000009","","4244"
"10:46:25.7589809 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7589890 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000026","Desired Access: Read","4244"
"10:46:25.7589993 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7590078 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7590180 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000009","","4244"
"10:46:25.7590261 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7590351 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000026","Desired Access: Read","4244"
"10:46:25.7590453 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7590539 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7590637 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000013","","4244"
"10:46:25.7590722 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7590803 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000026","Desired Access: Read","4244"
"10:46:25.7590906 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000017","Length: 144","4244"
"10:46:25.7590987 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7591093 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000009","","4244"
"10:46:25.7591290 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7591422 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000038","Desired Access: Read","4244"
"10:46:25.7591584 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000030","Length: 144","4244"
"10:46:25.7591691 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7591797 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000013","","4244"
"10:46:25.7591836 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7591887 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7591977 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000025","Desired Access: Read","4244"
"10:46:25.7592079 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7592126 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:25.7592169 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7592228 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000039","","2512"
"10:46:25.7592275 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000009","","4244"
"10:46:25.7592365 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7592446 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000026","Desired Access: Read","4244"
"10:46:25.7592548 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7592634 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7592736 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000009","","4244"
"10:46:25.7592817 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7592898 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000026","Desired Access: Read","4244"
"10:46:25.7593001 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000021","Length: 144","4244"
"10:46:25.7593086 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7593188 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000009","","4244"
"10:46:25.7593274 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7593359 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000026","Desired Access: Read","4244"
"10:46:25.7593461 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000022","Length: 144","4244"
"10:46:25.7593547 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7593645 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000008","","4244"
"10:46:25.7593730 AM","firefox.exe","7972","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","4244"
"10:46:25.7593811 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000026","Desired Access: Read","4244"
"10:46:25.7593914 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000017","Length: 144","4244"
"10:46:25.7593999 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","4244"
"10:46:25.7594037 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7594101 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000013","","4244"
"10:46:25.7594183 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","","4244"
"10:46:25.7594311 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000025","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:25.7594349 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","","4244"
"10:46:25.7594417 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000039","","2512"
"10:46:25.7594447 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000026","","4244"
"10:46:25.7596487 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7596751 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:25.7596853 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000039","","2512"
"10:46:25.7599303 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7599584 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2512"
"10:46:25.7599682 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000039","","2512"
"10:46:25.7601491 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7601743 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2512"
"10:46:25.7601841 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000039","","2512"
"10:46:25.7603791 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7604051 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2512"
"10:46:25.7604154 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000038","","2512"
"10:46:25.7606607 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7606991 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000026","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","2512"
"10:46:25.7607093 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000039","","2512"
"10:46:25.7608860 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7609141 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000026","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","2512"
"10:46:25.7609244 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000038","","2512"
"10:46:25.7611224 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7611480 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000025","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","2512"
"10:46:25.7611582 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000038","","2512"
"10:46:25.7614014 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7614287 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:25.7614385 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000039","","2512"
"10:46:25.7616228 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7616484 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:25.7616587 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000038","","2512"
"10:46:25.7617939 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0094622","Offset: 160,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.7619044 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7619428 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000039","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:25.7619599 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000051","","2512"
"10:46:25.7622155 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7622441 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000025","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","2512"
"10:46:25.7622543 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000043","","2512"
"10:46:25.7624425 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7624685 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000026","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","2512"
"10:46:25.7624787 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000039","","2512"
"10:46:25.7626558 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7626818 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000026","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","2512"
"10:46:25.7626916 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000039","","2512"
"10:46:25.7631303 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7631623 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000034","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:25.7631738 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000047","","2512"
"10:46:25.7633598 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7633871 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:25.7633974 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000038","","2512"
"10:46:25.7635736 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7635996 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:25.7636094 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000038","","2512"
"10:46:25.7638607 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7638812 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000021","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.7638906 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000038","","2512"
"10:46:25.7640676 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7640860 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.7640958 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000034","","2512"
"10:46:25.7642733 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7642916 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000022","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.7643010 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000039","","2512"
"10:46:25.7645545 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7645865 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:25.7645967 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000039","","2512"
"10:46:25.7647763 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7648036 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:25.7648139 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000038","","2512"
"10:46:25.7649884 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7650161 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:25.7650264 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000038","","2512"
"10:46:25.7652760 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7653037 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:25.7653135 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000039","","2512"
"10:46:25.7655047 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7655307 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:25.7655405 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000038","","2512"
"10:46:25.7657150 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7657402 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:25.7657500 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000038","","2512"
"10:46:25.7660004 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7660295 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:25.7660393 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000038","","2512"
"10:46:25.7662168 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7662441 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:25.7662539 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000038","","2512"
"10:46:25.7664378 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7664647 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:25.7664745 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000038","","2512"
"10:46:25.7667266 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7667556 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","2512"
"10:46:25.7667680 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000043","","2512"
"10:46:25.7669592 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7669865 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","2512"
"10:46:25.7669967 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000039","","2512"
"10:46:25.7671695 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7671968 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000022","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","2512"
"10:46:25.7672066 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000039","","2512"
"10:46:25.7674614 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7674899 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000026","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:25.7674998 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000042","","2512"
"10:46:25.7676888 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7677144 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000025","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:25.7677242 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000038","","2512"
"10:46:25.7679000 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7679251 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000026","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:25.7679350 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000038","","2512"
"10:46:25.7681875 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7682153 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000025","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","2512"
"10:46:25.7682251 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000043","","2512"
"10:46:25.7684141 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7684397 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000026","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","2512"
"10:46:25.7684499 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000039","","2512"
"10:46:25.7686232 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7686488 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000025","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","2512"
"10:46:25.7686590 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000039","","2512"
"10:46:25.7689090 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7689359 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","2512"
"10:46:25.7689457 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000039","","2512"
"10:46:25.7691237 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7691484 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","2512"
"10:46:25.7691582 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000039","","2512"
"10:46:25.7693310 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7693566 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000021","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","2512"
"10:46:25.7693664 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000034","","2512"
"10:46:25.7696173 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7696442 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000021","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","2512"
"10:46:25.7696540 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000038","","2512"
"10:46:25.7698306 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7698558 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","2512"
"10:46:25.7698661 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000034","","2512"
"10:46:25.7700414 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7700662 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","2512"
"10:46:25.7700764 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000034","","2512"
"10:46:25.7703371 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7703640 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000025","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","2512"
"10:46:25.7703742 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000039","","2512"
"10:46:25.7705611 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7705867 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","2512"
"10:46:25.7705965 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000038","","2512"
"10:46:25.7707906 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7708162 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","2512"
"10:46:25.7708265 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000038","","2512"
"10:46:25.7710838 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7711042 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","2512"
"10:46:25.7711141 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000038","","2512"
"10:46:25.7712924 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0221760","Offset: 160,768, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.7713201 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7713406 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","2512"
"10:46:25.7713509 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000042","","2512"
"10:46:25.7715339 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7715527 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000025","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","2512"
"10:46:25.7715625 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000038","","2512"
"10:46:25.7718168 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7718373 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000025","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:25.7718471 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000034","","2512"
"10:46:25.7720263 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7720446 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000026","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:25.7720544 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000034","","2512"
"10:46:25.7722255 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7722434 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000022","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:25.7722528 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000047","","2512"
"10:46:25.7725118 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7725319 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000025","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:25.7725417 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000034","","2512"
"10:46:25.7727294 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7727478 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000021","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:25.7727572 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000038","","2512"
"10:46:25.7729325 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000094","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7729500 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000021","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:25.7729594 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000038","","2512"
"10:46:25.7732133 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7732354 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000026","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","2512"
"10:46:25.7732448 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000039","","2512"
"10:46:25.7734202 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7734381 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000026","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","2512"
"10:46:25.7734475 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000034","","2512"
"10:46:25.7736216 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7736395 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000026","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","2512"
"10:46:25.7736493 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000034","","2512"
"10:46:25.7739151 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7739441 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000030","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.7739544 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000038","","2512"
"10:46:25.7741353 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7741617 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.7741716 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000038","","2512"
"10:46:25.7743465 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7743721 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000025","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.7743823 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000039","","2512"
"10:46:25.7746481 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7746767 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","2512"
"10:46:25.7746870 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000038","","2512"
"10:46:25.7748999 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7749259 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","2512"
"10:46:25.7749361 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000039","","2512"
"10:46:25.7751115 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7751367 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000021","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","2512"
"10:46:25.7751461 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000038","","2512"
"10:46:25.7754033 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7754311 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000025","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","2512"
"10:46:25.7754409 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000038","","2512"
"10:46:25.7756346 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7756606 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000026","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","2512"
"10:46:25.7756704 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000039","","2512"
"10:46:25.7758475 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7758731 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000021","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","2512"
"10:46:25.7758829 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000039","","2512"
"10:46:25.7761410 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7761692 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000021","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","2512"
"10:46:25.7761786 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000038","","2512"
"10:46:25.7763646 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7763902 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000026","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","2512"
"10:46:25.7764005 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000034","","2512"
"10:46:25.7765750 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7765997 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000026","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","2512"
"10:46:25.7766095 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000039","","2512"
"10:46:25.7769031 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7769240 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000025","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:25.7769338 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000038","","2512"
"10:46:25.7771284 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7771471 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000026","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:25.7771565 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000039","","2512"
"10:46:25.7773425 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7773609 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000026","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:25.7773707 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000038","","2512"
"10:46:25.7776323 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7776515 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000021","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:25.7776608 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000039","","2512"
"10:46:25.7778460 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7778639 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:25.7778737 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000039","","2512"
"10:46:25.7780606 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7780785 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000039","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:25.7780901 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000038","","2512"
"10:46:25.7783576 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7783862 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000025","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:25.7783960 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000038","","2512"
"10:46:25.7785914 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7786179 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000025","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:25.7786277 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000038","","2512"
"10:46:25.7788111 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7788367 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:25.7788465 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000039","","2512"
"10:46:25.7791064 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7791345 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000026","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","2512"
"10:46:25.7791444 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000038","","2512"
"10:46:25.7793402 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7793679 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000026","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","2512"
"10:46:25.7793777 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000039","","2512"
"10:46:25.7797340 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7797643 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000030","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","2512"
"10:46:25.7797750 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000042","","2512"
"10:46:25.7800497 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7800796 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000026","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","2512"
"10:46:25.7800899 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000042","","2512"
"10:46:25.7802755 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7803019 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000026","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","2512"
"10:46:25.7803117 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000039","","2512"
"10:46:25.7804871 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7805127 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000030","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","2512"
"10:46:25.7805229 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000039","","2512"
"10:46:25.7807892 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7808314 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000026","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","2512"
"10:46:25.7808412 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000039","","2512"
"10:46:25.7810255 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7810520 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000025","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","2512"
"10:46:25.7810622 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000039","","2512"
"10:46:25.7812384 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7812662 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000025","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","2512"
"10:46:25.7812760 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000038","","2512"
"10:46:25.7815435 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7815648 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000026","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:25.7815747 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000038","","2512"
"10:46:25.7817556 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7817739 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000026","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:25.7817837 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000034","","2512"
"10:46:25.7819693 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7819881 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000021","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:25.7819975 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000038","","2512"
"10:46:25.7822629 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7822821 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:25.7822919 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000034","","2512"
"10:46:25.7824694 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7824869 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:25.7824967 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000038","","2512"
"10:46:25.7827924 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7828128 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000030","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","2512"
"10:46:25.7828231 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000038","","2512"
"10:46:25.7830061 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7830245 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000025","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","2512"
"10:46:25.7830343 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000034","","2512"
"10:46:25.7832096 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000099","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7832276 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000025","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","2512"
"10:46:25.7832374 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000034","","2512"
"10:46:25.7835083 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7835288 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000021","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.7835382 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000038","","2512"
"10:46:25.7837216 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000099","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7837400 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000021","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.7837494 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000038","","2512"
"10:46:25.7839243 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7839422 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.7839516 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000034","","2512"
"10:46:25.7842307 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7842627 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000025","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:25.7842725 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000038","","2512"
"10:46:25.7844521 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7844781 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000026","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:25.7844879 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000039","","2512"
"10:46:25.7846629 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7846880 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000026","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:25.7846979 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000038","","2512"
"10:46:25.7849658 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7849944 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","2512"
"10:46:25.7850046 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000039","","2512"
"10:46:25.7851954 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7852231 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","2512"
"10:46:25.7852329 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000038","","2512"
"10:46:25.7852786 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000123","Desired Access: Read","2512"
"10:46:25.7853869 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\twinapi.dll.mui","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7854211 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\twinapi.dll.mui","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:25.7854339 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\twinapi.dll.mui","0.0000029","AllocationSize: 8,192, EndOfFile: 5,120, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:25.7854543 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\twinapi.dll.mui","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:25.7856506 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7856805 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","2512"
"10:46:25.7856911 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000043","","2512"
"10:46:25.7859757 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7859971 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000029","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:25.7860073 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000038","","2512"
"10:46:25.7861848 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7862040 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000021","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:25.7862134 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000038","","2512"
"10:46:25.7863840 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7864028 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:25.7864126 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000034","","2512"
"10:46:25.7868201 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7868419 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000029","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:25.7868521 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000043","","2512"
"10:46:25.7868888 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7869106 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000128","Filter: Windows, 1: Windows","2512"
"10:46:25.7869349 AM","firefox.exe","7384","CloseFile","C:\","0.0000042","","2512"
"10:46:25.7870279 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7870496 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:25.7870710 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:25.7872476 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7872677 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000025","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:25.7872779 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000039","","2512"
"10:46:25.7873099 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7873283 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:25.7873479 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:25.7874763 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7874972 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:25.7875177 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:25.7876551 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.7876837 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KernelBase.dll","0.0000030","AllocationSize: 2,572,288, EndOfFile: 2,571,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.7877029 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.7877170 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Cryptography\Wintrust\Config","0.0000068","Desired Access: Read","2512"
"10:46:25.7877404 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KernelBase.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:25.7877524 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KernelBase.dll","0.0000025","AllocationSize: 2,572,288, EndOfFile: 2,571,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.7877716 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KernelBase.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:25.7878373 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000055","","2512"
"10:46:25.7878799 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\crypt32.dll","0.0182213","Offset: 410,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:25.7935832 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0227887","Offset: 479,744, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.8061528 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\crypt32.dll","0.0221756","Offset: 406,528, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:25.8164210 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0202518","Offset: 54,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.8289048 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000141","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8290388 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Cryptography\OID","0.0000350","Desired Access: Read","2512"
"10:46:25.8291843 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0001750","Index: 0, Name: EncodingType 0","2512"
"10:46:25.8294446 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000102","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8295427 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0","0.0000184","Desired Access: Read","2512"
"10:46:25.8307647 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0","0.0000141","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8308773 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000414","Desired Access: Read","2512"
"10:46:25.8309895 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000150","Index: 0, Name: {000C10F1-0000-0000-C000-000000000046}","2512"
"10:46:25.8310535 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000052","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8311039 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{000C10F1-0000-0000-C000-000000000046}","0.0000273","Desired Access: Read","2512"
"10:46:25.8311879 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{000C10F1-0000-0000-C000-000000000046}","0.0000111","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8312409 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{000C10F1-0000-0000-C000-000000000046}","0.0000119","Index: 0, Name: Dll, Type: REG_SZ, Length: 62, Data: C:\Windows\System32\MSISIP.DLL","2512"
"10:46:25.8312878 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{000C10F1-0000-0000-C000-000000000046}","0.0000085","Index: 1, Name: FuncName, Type: REG_SZ, Length: 46, Data: MsiSIPPutSignedDataMsg","2512"
"10:46:25.8313701 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{000C10F1-0000-0000-C000-000000000046}","0.0000056","","2512"
"10:46:25.8314124 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000098","Index: 1, Name: {06C9E010-38CE-11D4-A2A3-00104BD35090}","2512"
"10:46:25.8314585 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000051","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8315033 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090}","0.0000221","Desired Access: Read","2512"
"10:46:25.8316061 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090}","0.0000200","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8317251 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090}","0.0000192","Index: 0, Name: Dll, Type: REG_SZ, Length: 62, Data: C:\Windows\System32\wshext.dll","2512"
"10:46:25.8318079 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090}","0.0000141","Index: 1, Name: FuncName, Type: REG_SZ, Length: 34, Data: PutSignedDataMsg","2512"
"10:46:25.8319090 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090}","0.0000064","","2512"
"10:46:25.8319645 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000119","Index: 2, Name: {0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1}","2512"
"10:46:25.8320251 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000047","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8320810 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1}","0.0000328","Desired Access: Read","2512"
"10:46:25.8321650 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1}","0.0000098","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8322137 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1}","0.0000098","Index: 0, Name: Dll, Type: REG_SZ, Length: 64, Data: C:\Windows\System32\AppxSip.dll","2512"
"10:46:25.8322576 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1}","0.0000094","Index: 1, Name: FuncName, Type: REG_SZ, Length: 48, Data: AppxSipPutSignedDataMsg","2512"
"10:46:25.8323254 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1}","0.0000047","","2512"
"10:46:25.8323668 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000103","Index: 3, Name: {0F5F58B3-AADE-4B9A-A434-95742D92ECEB}","2512"
"10:46:25.8324278 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000060","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8324991 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB}","0.0000358","Desired Access: Read","2512"
"10:46:25.8326309 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB}","0.0000167","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8327069 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB}","0.0000141","Index: 0, Name: Dll, Type: REG_SZ, Length: 64, Data: C:\Windows\System32\AppxSip.dll","2512"
"10:46:25.8327888 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB}","0.0000209","Index: 1, Name: FuncName, Type: REG_SZ, Length: 60, Data: AppxBundleSipPutSignedDataMsg","2512"
"10:46:25.8329083 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB}","0.0000051","","2512"
"10:46:25.8329642 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000153","Index: 4, Name: {1629F04E-2799-4DB5-8FE5-ACE10F17EBAB}","2512"
"10:46:25.8330371 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000064","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8331284 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB}","0.0000427","Desired Access: Read","2512"
"10:46:25.8332517 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB}","0.0000150","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8333204 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB}","0.0000128","Index: 0, Name: Dll, Type: REG_SZ, Length: 62, Data: C:\Windows\System32\wshext.dll","2512"
"10:46:25.8333695 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB}","0.0000094","Index: 1, Name: FuncName, Type: REG_SZ, Length: 34, Data: PutSignedDataMsg","2512"
"10:46:25.8334514 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB}","0.0000064","","2512"
"10:46:25.8335137 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000149","Index: 5, Name: {1A610570-38CE-11D4-A2A3-00104BD35090}","2512"
"10:46:25.8335888 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000073","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8337881 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090}","0.0000405","Desired Access: Read","2512"
"10:46:25.8338981 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090}","0.0000128","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8339967 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090}","0.0000166","Index: 0, Name: Dll, Type: REG_SZ, Length: 62, Data: C:\Windows\System32\wshext.dll","2512"
"10:46:25.8340743 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090}","0.0000167","Index: 1, Name: FuncName, Type: REG_SZ, Length: 34, Data: PutSignedDataMsg","2512"
"10:46:25.8341814 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090}","0.0000069","","2512"
"10:46:25.8342420 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000141","Index: 6, Name: {5598CFF1-68DB-4340-B57F-1CACF88C9A51}","2512"
"10:46:25.8343158 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000069","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8343850 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51}","0.0000358","Desired Access: Read","2512"
"10:46:25.8344835 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51}","0.0000128","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8345501 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51}","0.0000141","Index: 0, Name: Dll, Type: REG_SZ, Length: 64, Data: C:\Windows\System32\AppxSip.dll","2512"
"10:46:25.8346320 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51}","0.0000230","Index: 1, Name: FuncName, Type: REG_SZ, Length: 46, Data: P7xSipPutSignedDataMsg","2512"
"10:46:25.8347498 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51}","0.0000072","","2512"
"10:46:25.8348010 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000111","Index: 7, Name: {603BCC1F-4B59-4E08-B724-D2C6297EF351}","2512"
"10:46:25.8348530 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000047","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8349008 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351}","0.0000269","Desired Access: Read","2512"
"10:46:25.8349785 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351}","0.0000187","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8350399 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351}","0.0000107","Index: 0, Name: Dll, Type: REG_SZ, Length: 112, Data: C:\Windows\System32\WindowsPowerShell\v1.0\pwrshsip.dll","2512"
"10:46:25.8350847 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351}","0.0000090","Index: 1, Name: FuncName, Type: REG_SZ, Length: 30, Data: PsPutSignature","2512"
"10:46:25.8351547 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351}","0.0000098","","2512"
"10:46:25.8352148 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000145","Index: 8, Name: {9BA61D3F-E73A-11D0-8CD2-00C04FC295EE}","2512"
"10:46:25.8352899 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000120","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8353629 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE}","0.0000324","Desired Access: Read","2512"
"10:46:25.8354619 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE}","0.0000119","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8355280 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE}","0.0000192","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:25.8356121 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE}","0.0000136","Index: 1, Name: FuncName, Type: REG_SZ, Length: 50, Data: CryptSIPPutSignedDataMsg","2512"
"10:46:25.8357213 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE}","0.0000107","","2512"
"10:46:25.8357849 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000157","Index: 9, Name: {9F3053C5-439D-4BF7-8A77-04F0450A1D9F}","2512"
"10:46:25.8358570 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000294","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8359577 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F}","0.0000375","Desired Access: Read","2512"
"10:46:25.8360639 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F}","0.0000115","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8361283 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F}","0.0000137","Index: 0, Name: Dll, Type: REG_SZ, Length: 62, Data: C:\Windows\System32\EsdSip.dll","2512"
"10:46:25.8361923 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F}","0.0000222","Index: 1, Name: FuncName, Type: REG_SZ, Length: 38, Data: EsdSipPutSignature","2512"
"10:46:25.8364270 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F}","0.0000098","","2512"
"10:46:25.8364978 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000162","Index: 10, Name: {C689AAB8-8E78-11D0-8C47-00C04FC295EE}","2512"
"10:46:25.8365742 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000068","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8366450 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE}","0.0002351","Desired Access: Read","2512"
"10:46:25.8367961 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0110357","Offset: 54,272, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.8369565 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE}","0.0000132","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8370286 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE}","0.0000141","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:25.8370956 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE}","0.0000141","Index: 1, Name: FuncName, Type: REG_SZ, Length: 50, Data: CryptSIPPutSignedDataMsg","2512"
"10:46:25.8372052 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE}","0.0000094","","2512"
"10:46:25.8372701 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000141","Index: 11, Name: {C689AAB9-8E78-11D0-8C47-00C04FC295EE}","2512"
"10:46:25.8373422 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000064","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8374105 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE}","0.0000315","Desired Access: Read","2512"
"10:46:25.8375107 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE}","0.0000120","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8375769 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE}","0.0000128","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:25.8376400 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE}","0.0000115","Index: 1, Name: FuncName, Type: REG_SZ, Length: 50, Data: CryptSIPPutSignedDataMsg","2512"
"10:46:25.8377680 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE}","0.0000137","","2512"
"10:46:25.8378495 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000175","Index: 12, Name: {C689AABA-8E78-11D0-8C47-00C04FC295EE}","2512"
"10:46:25.8379331 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000073","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8380129 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE}","0.0000384","Desired Access: Read","2512"
"10:46:25.8381217 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE}","0.0000120","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8381977 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE}","0.0000157","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:25.8382681 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE}","0.0000136","Index: 1, Name: FuncName, Type: REG_SZ, Length: 50, Data: CryptSIPPutSignedDataMsg","2512"
"10:46:25.8384020 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE}","0.0000077","","2512"
"10:46:25.8384669 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000149","Index: 13, Name: {CF78C6DE-64A2-4799-B506-89ADFF5D16D6}","2512"
"10:46:25.8385398 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000064","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8386171 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6}","0.0000358","Desired Access: Read","2512"
"10:46:25.8387195 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6}","0.0000170","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8387886 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6}","0.0000128","Index: 0, Name: Dll, Type: REG_SZ, Length: 64, Data: C:\Windows\System32\AppxSip.dll","2512"
"10:46:25.8388534 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6}","0.0000175","Index: 1, Name: FuncName, Type: REG_SZ, Length: 50, Data: EappxSipPutSignedDataMsg","2512"
"10:46:25.8390105 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6}","0.0000085","","2512"
"10:46:25.8390792 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000140","Index: 14, Name: {D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C}","2512"
"10:46:25.8391547 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000068","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8392097 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C}","0.0000444","Desired Access: Read","2512"
"10:46:25.8393057 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C}","0.0000090","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8393509 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C}","0.0000103","Index: 0, Name: Dll, Type: REG_SZ, Length: 64, Data: C:\Windows\System32\AppxSip.dll","2512"
"10:46:25.8393949 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C}","0.0000089","Index: 1, Name: FuncName, Type: REG_SZ, Length: 62, Data: EappxBundleSipPutSignedDataMsg","2512"
"10:46:25.8394606 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C}","0.0000047","","2512"
"10:46:25.8395007 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000098","Index: 15, Name: {DE351A42-8E59-11D0-8C47-00C04FC295EE}","2512"
"10:46:25.8395476 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000043","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8395907 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE}","0.0000243","Desired Access: Read","2512"
"10:46:25.8396675 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE}","0.0000128","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8397597 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE}","0.0000183","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:25.8398514 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE}","0.0000162","Index: 1, Name: FuncName, Type: REG_SZ, Length: 50, Data: CryptSIPPutSignedDataMsg","2512"
"10:46:25.8399479 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE}","0.0000093","","2512"
"10:46:25.8400114 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000137","Index: 16, Name: {DE351A43-8E59-11D0-8C47-00C04FC295EE}","2512"
"10:46:25.8400831 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000064","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8401501 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE}","0.0000320","Desired Access: Read","2512"
"10:46:25.8402380 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE}","0.0000089","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8402828 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE}","0.0000098","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:25.8403259 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE}","0.0000089","Index: 1, Name: FuncName, Type: REG_SZ, Length: 50, Data: CryptSIPPutSignedDataMsg","2512"
"10:46:25.8403860 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE}","0.0000052","","2512"
"10:46:25.8404261 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000090","Index: 17, Length: 288","2512"
"10:46:25.8404731 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllPutSignedDataMsg","0.0000047","","2512"
"10:46:25.8405157 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0","0.0000039","","2512"
"10:46:25.8405537 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000196","Index: 1, Name: EncodingType 1","2512"
"10:46:25.8406135 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000046","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8406578 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1","0.0000265","Desired Access: Read","2512"
"10:46:25.8407517 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1","0.0000051","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8407999 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptSIPDllPutSignedDataMsg","0.0000137","Desired Access: Read","2512"
"10:46:25.8408660 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1","0.0000052","","2512"
"10:46:25.8409061 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000099","Index: 2, Length: 288","2512"
"10:46:25.8409527 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000042","","2512"
"10:46:25.8413115 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 2080","2512"
"10:46:25.8414258 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000069","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8417207 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Cryptography\OID","0.0000324","Desired Access: Read","2512"
"10:46:25.8418333 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000218","Index: 0, Name: EncodingType 0","2512"
"10:46:25.8419361 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000073","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8420069 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0","0.0000128","Desired Access: Read","2512"
"10:46:25.8420756 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0","0.0000047","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8421422 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000380","Desired Access: Read","2512"
"10:46:25.8422514 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000145","Index: 0, Name: {000C10F1-0000-0000-C000-000000000046}","2512"
"10:46:25.8423278 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000064","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8423773 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{000C10F1-0000-0000-C000-000000000046}","0.0000230","Desired Access: Read","2512"
"10:46:25.8424622 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{000C10F1-0000-0000-C000-000000000046}","0.0000183","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8425377 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{000C10F1-0000-0000-C000-000000000046}","0.0000158","Index: 0, Name: Dll, Type: REG_SZ, Length: 62, Data: C:\Windows\System32\MSISIP.DLL","2512"
"10:46:25.8426043 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{000C10F1-0000-0000-C000-000000000046}","0.0000136","Index: 1, Name: FuncName, Type: REG_SZ, Length: 46, Data: MsiSIPGetSignedDataMsg","2512"
"10:46:25.8427139 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{000C10F1-0000-0000-C000-000000000046}","0.0000359","","2512"
"10:46:25.8428146 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000192","Index: 1, Name: {06C9E010-38CE-11D4-A2A3-00104BD35090}","2512"
"10:46:25.8428765 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000043","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8429209 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090}","0.0000222","Desired Access: Read","2512"
"10:46:25.8429857 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090}","0.0000086","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8430365 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090}","0.0000098","Index: 0, Name: Dll, Type: REG_SZ, Length: 62, Data: C:\Windows\System32\wshext.dll","2512"
"10:46:25.8430800 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090}","0.0000568","Index: 1, Name: FuncName, Type: REG_SZ, Length: 34, Data: GetSignedDataMsg","2512"
"10:46:25.8432468 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{06C9E010-38CE-11D4-A2A3-00104BD35090}","0.0000077","","2512"
"10:46:25.8433134 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000162","Index: 2, Name: {0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1}","2512"
"10:46:25.8433898 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000068","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8434721 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1}","0.0000350","Desired Access: Read","2512"
"10:46:25.8435912 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1}","0.0000128","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8436628 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1}","0.0000154","Index: 0, Name: Dll, Type: REG_SZ, Length: 64, Data: C:\Windows\System32\AppxSip.dll","2512"
"10:46:25.8437303 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1}","0.0000128","Index: 1, Name: FuncName, Type: REG_SZ, Length: 48, Data: AppxSipGetSignedDataMsg","2512"
"10:46:25.8452803 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1}","0.0000124","","2512"
"10:46:25.8453862 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000162","Index: 3, Name: {0F5F58B3-AADE-4B9A-A434-95742D92ECEB}","2512"
"10:46:25.8454523 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000051","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8455026 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB}","0.0000278","Desired Access: Read","2512"
"10:46:25.8455752 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB}","0.0000388","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8456776 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB}","0.0000204","Index: 0, Name: Dll, Type: REG_SZ, Length: 64, Data: C:\Windows\System32\AppxSip.dll","2512"
"10:46:25.8457510 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB}","0.0000132","Index: 1, Name: FuncName, Type: REG_SZ, Length: 60, Data: AppxBundleSipGetSignedDataMsg","2512"
"10:46:25.8458512 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB}","0.0000077","","2512"
"10:46:25.8459174 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000140","Index: 4, Name: {1629F04E-2799-4DB5-8FE5-ACE10F17EBAB}","2512"
"10:46:25.8459869 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000068","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8460543 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB}","0.0000474","Desired Access: Read","2512"
"10:46:25.8461695 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB}","0.0000115","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8462412 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB}","0.0000222","Index: 0, Name: Dll, Type: REG_SZ, Length: 62, Data: C:\Windows\System32\wshext.dll","2512"
"10:46:25.8463154 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB}","0.0000128","Index: 1, Name: FuncName, Type: REG_SZ, Length: 34, Data: GetSignedDataMsg","2512"
"10:46:25.8464119 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB}","0.0000068","","2512"
"10:46:25.8464737 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000133","Index: 5, Name: {1A610570-38CE-11D4-A2A3-00104BD35090}","2512"
"10:46:25.8474896 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000623","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8476394 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090}","0.0000397","Desired Access: Read","2512"
"10:46:25.8482363 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0117397","Offset: 275,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.8482598 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090}","0.0000635","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8485004 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090}","0.0000200","Index: 0, Name: Dll, Type: REG_SZ, Length: 62, Data: C:\Windows\System32\wshext.dll","2512"
"10:46:25.8485819 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090}","0.0000145","Index: 1, Name: FuncName, Type: REG_SZ, Length: 34, Data: GetSignedDataMsg","2512"
"10:46:25.8497983 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{1A610570-38CE-11D4-A2A3-00104BD35090}","0.0000090","","2512"
"10:46:25.8498781 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000235","Index: 6, Name: {5598CFF1-68DB-4340-B57F-1CACF88C9A51}","2512"
"10:46:25.8499720 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000076","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8500628 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51}","0.0000423","Desired Access: Read","2512"
"10:46:25.8501857 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51}","0.0000133","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8502561 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51}","0.0000141","Index: 0, Name: Dll, Type: REG_SZ, Length: 64, Data: C:\Windows\System32\AppxSip.dll","2512"
"10:46:25.8503210 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51}","0.0000128","Index: 1, Name: FuncName, Type: REG_SZ, Length: 46, Data: P7xSipGetSignedDataMsg","2512"
"10:46:25.8504174 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{5598CFF1-68DB-4340-B57F-1CACF88C9A51}","0.0000068","","2512"
"10:46:25.8504780 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000137","Index: 7, Name: {603BCC1F-4B59-4E08-B724-D2C6297EF351}","2512"
"10:46:25.8505458 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000060","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8506150 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351}","0.0000315","Desired Access: Read","2512"
"10:46:25.8507075 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351}","0.0000120","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8507728 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351}","0.0000133","Index: 0, Name: Dll, Type: REG_SZ, Length: 112, Data: C:\Windows\System32\WindowsPowerShell\v1.0\pwrshsip.dll","2512"
"10:46:25.8508360 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351}","0.0000128","Index: 1, Name: FuncName, Type: REG_SZ, Length: 30, Data: PsGetSignature","2512"
"10:46:25.8509315 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{603BCC1F-4B59-4E08-B724-D2C6297EF351}","0.0000069","","2512"
"10:46:25.8509909 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000128","Index: 8, Name: {9BA61D3F-E73A-11D0-8CD2-00C04FC295EE}","2512"
"10:46:25.8510591 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000056","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8511253 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE}","0.0000302","Desired Access: Read","2512"
"10:46:25.8512187 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE}","0.0000119","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8512810 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE}","0.0000124","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:25.8513429 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE}","0.0000119","Index: 1, Name: FuncName, Type: REG_SZ, Length: 50, Data: CryptSIPGetSignedDataMsg","2512"
"10:46:25.8514278 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE}","0.0000064","","2512"
"10:46:25.8514854 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000128","Index: 9, Name: {9F3053C5-439D-4BF7-8A77-04F0450A1D9F}","2512"
"10:46:25.8515532 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000055","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8516159 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F}","0.0000320","Desired Access: Read","2512"
"10:46:25.8517106 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F}","0.0000107","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8517721 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F}","0.0000132","Index: 0, Name: Dll, Type: REG_SZ, Length: 62, Data: C:\Windows\System32\EsdSip.dll","2512"
"10:46:25.8518275 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F}","0.0000116","Index: 1, Name: FuncName, Type: REG_SZ, Length: 38, Data: EsdSipGetSignature","2512"
"10:46:25.8519116 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F}","0.0000068","","2512"
"10:46:25.8519722 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000128","Index: 10, Name: {C689AAB8-8E78-11D0-8C47-00C04FC295EE}","2512"
"10:46:25.8520375 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000059","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8521006 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE}","0.0000312","Desired Access: Read","2512"
"10:46:25.8521958 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE}","0.0000119","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8522572 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE}","0.0000124","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:25.8523169 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE}","0.0000116","Index: 1, Name: FuncName, Type: REG_SZ, Length: 50, Data: CryptSIPGetSignedDataMsg","2512"
"10:46:25.8524108 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AAB8-8E78-11D0-8C47-00C04FC295EE}","0.0000060","","2512"
"10:46:25.8524654 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000128","Index: 11, Name: {C689AAB9-8E78-11D0-8C47-00C04FC295EE}","2512"
"10:46:25.8525286 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000064","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8525926 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE}","0.0000324","Desired Access: Read","2512"
"10:46:25.8526873 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE}","0.0000119","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8527509 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE}","0.0000132","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:25.8528119 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE}","0.0000123","Index: 1, Name: FuncName, Type: REG_SZ, Length: 50, Data: CryptSIPGetSignedDataMsg","2512"
"10:46:25.8529096 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AAB9-8E78-11D0-8C47-00C04FC295EE}","0.0000072","","2512"
"10:46:25.8529731 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000146","Index: 12, Name: {C689AABA-8E78-11D0-8C47-00C04FC295EE}","2512"
"10:46:25.8530444 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000068","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8531131 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE}","0.0000346","Desired Access: Read","2512"
"10:46:25.8532163 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE}","0.0000120","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8532769 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE}","0.0000116","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:25.8533205 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE}","0.0000089","Index: 1, Name: FuncName, Type: REG_SZ, Length: 50, Data: CryptSIPGetSignedDataMsg","2512"
"10:46:25.8533853 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{C689AABA-8E78-11D0-8C47-00C04FC295EE}","0.0000051","","2512"
"10:46:25.8534250 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000098","Index: 13, Name: {CF78C6DE-64A2-4799-B506-89ADFF5D16D6}","2512"
"10:46:25.8534702 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000043","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8535120 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6}","0.0000218","Desired Access: Read","2512"
"10:46:25.8535722 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6}","0.0000081","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8536110 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6}","0.0000094","Index: 0, Name: Dll, Type: REG_SZ, Length: 64, Data: C:\Windows\System32\AppxSip.dll","2512"
"10:46:25.8536494 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6}","0.0000081","Index: 1, Name: FuncName, Type: REG_SZ, Length: 50, Data: EappxSipGetSignedDataMsg","2512"
"10:46:25.8537070 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6}","0.0000047","","2512"
"10:46:25.8537441 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000094","Index: 14, Name: {D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C}","2512"
"10:46:25.8538171 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000072","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8538696 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C}","0.0000247","Desired Access: Read","2512"
"10:46:25.8539383 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C}","0.0000089","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8539805 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C}","0.0000107","Index: 0, Name: Dll, Type: REG_SZ, Length: 64, Data: C:\Windows\System32\AppxSip.dll","2512"
"10:46:25.8540236 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C}","0.0000085","Index: 1, Name: FuncName, Type: REG_SZ, Length: 62, Data: EappxBundleSipGetSignedDataMsg","2512"
"10:46:25.8540914 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C}","0.0000047","","2512"
"10:46:25.8541431 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000089","Index: 15, Name: {DE351A42-8E59-11D0-8C47-00C04FC295EE}","2512"
"10:46:25.8541887 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000043","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8542275 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE}","0.0000222","Desired Access: Read","2512"
"10:46:25.8542881 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE}","0.0000077","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8543265 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE}","0.0000086","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:25.8543637 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE}","0.0000085","Index: 1, Name: FuncName, Type: REG_SZ, Length: 50, Data: CryptSIPGetSignedDataMsg","2512"
"10:46:25.8544166 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{DE351A42-8E59-11D0-8C47-00C04FC295EE}","0.0000038","","2512"
"10:46:25.8544528 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000090","Index: 16, Name: {DE351A43-8E59-11D0-8C47-00C04FC295EE}","2512"
"10:46:25.8544938 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000038","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8545322 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE}","0.0000200","Desired Access: Read","2512"
"10:46:25.8545911 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE}","0.0000081","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8546303 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE}","0.0000086","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:25.8546670 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE}","0.0000085","Index: 1, Name: FuncName, Type: REG_SZ, Length: 50, Data: CryptSIPGetSignedDataMsg","2512"
"10:46:25.8547208 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg\{DE351A43-8E59-11D0-8C47-00C04FC295EE}","0.0000042","","2512"
"10:46:25.8547720 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000081","Index: 17, Length: 288","2512"
"10:46:25.8548253 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllGetSignedDataMsg","0.0000043","","2512"
"10:46:25.8548786 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0","0.0000081","","2512"
"10:46:25.8549217 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000103","Index: 1, Name: EncodingType 1","2512"
"10:46:25.8549781 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000055","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8550395 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1","0.0000128","Desired Access: Read","2512"
"10:46:25.8551039 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1","0.0000047","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8551449 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptSIPDllGetSignedDataMsg","0.0000115","Desired Access: Read","2512"
"10:46:25.8551957 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1","0.0000042","","2512"
"10:46:25.8552311 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000085","Index: 2, Length: 288","2512"
"10:46:25.8552725 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000042","","2512"
"10:46:25.8561586 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000781","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8566037 AM","firefox.exe","7384","Load Image","C:\Windows\System32\imagehlp.dll","0.0000000","Image Base: 0x7ffb472d0000, Image Size: 0x1d000","2512"
"10:46:25.8567381 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\imagehlp.dll","0.0000234","Name: \Windows\System32\imagehlp.dll","2512"
"10:46:25.8576750 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KernelBase.dll","0.0000184","AllocationSize: 2,572,288, EndOfFile: 2,571,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.8577727 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KernelBase.dll","0.0000137","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:25.8578508 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KernelBase.dll","0.0000137","AllocationSize: 2,572,288, EndOfFile: 2,571,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.8579839 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KernelBase.dll","0.0000107","SyncType: SyncTypeOther","2512"
"10:46:25.8584370 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KernelBase.dll","0.0000154","AllocationSize: 2,572,288, EndOfFile: 2,571,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.8585420 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000341","","2512"
"10:46:25.8593574 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0001813","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8596347 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KernelBase.dll","0.0000094","AllocationSize: 2,572,288, EndOfFile: 2,571,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.8596782 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KernelBase.dll","0.0000068","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:25.8597085 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KernelBase.dll","0.0000043","AllocationSize: 2,572,288, EndOfFile: 2,571,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.8597508 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KernelBase.dll","0.0000029","SyncType: SyncTypeOther","2512"
"10:46:25.8598788 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8599645 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Cryptography\Wintrust\Config","0.0000167","Desired Access: Read","2512"
"10:46:25.8600443 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0320013","Offset: 275,456, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.8615393 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8615679 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Cryptography\Wintrust\Config","0.0000107","Desired Access: Read","2512"
"10:46:25.8616955 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000307","","2512"
"10:46:25.8618960 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000043","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8619438 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Microsoft Enhanced RSA and AES Cryptographic Provider","0.0000367","Desired Access: Read","2512"
"10:46:25.8620270 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Microsoft Enhanced RSA and AES Cryptographic Provider\Type","0.0000081","Type: REG_DWORD, Length: 4, Data: 24","2512"
"10:46:25.8620693 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Microsoft Enhanced RSA and AES Cryptographic Provider\Image Path","0.0000064","Length: 12","2512"
"10:46:25.8621098 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Microsoft Enhanced RSA and AES Cryptographic Provider\Image Path","0.0000068","Type: REG_SZ, Length: 66, Data: %SystemRoot%\system32\rsaenh.dll","2512"
"10:46:25.8621512 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Microsoft Enhanced RSA and AES Cryptographic Provider\Image Path","0.0000060","Length: 45","2512"
"10:46:25.8621921 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Microsoft Enhanced RSA and AES Cryptographic Provider\Image Path","0.0000064","Type: REG_SZ, Length: 66, Data: %SystemRoot%\system32\rsaenh.dll","2512"
"10:46:25.8635677 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rsaenh.dll","0.0000435","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8636902 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rsaenh.dll","0.0000106","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.8637392 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rsaenh.dll","0.0000150","","2512"
"10:46:25.8640831 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rsaenh.dll","0.0000350","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8641992 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rsaenh.dll","0.0000089","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:25.8642739 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rsaenh.dll","0.0000046","SyncType: SyncTypeOther","2512"
"10:46:25.8644467 AM","firefox.exe","7384","Load Image","C:\Windows\System32\rsaenh.dll","0.0000000","Image Base: 0x7ffb44e90000, Image Size: 0x33000","2512"
"10:46:25.8645047 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\rsaenh.dll","0.0000128","Name: \Windows\System32\rsaenh.dll","2512"
"10:46:25.8648784 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rsaenh.dll","0.0000180","","2512"
"10:46:25.8651681 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000052","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8652129 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\Cryptography","0.0000180","Desired Access: Read","2512"
"10:46:25.8652693 AM","firefox.exe","7384","RegSetInfoKey","HKLM\SOFTWARE\Policies\Microsoft\Cryptography","0.0000030","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","2512"
"10:46:25.8653038 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Cryptography\PrivKeyCacheMaxItems","0.0000069","Length: 16","2512"
"10:46:25.8653392 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Cryptography\PrivKeyCachePurgeIntervalSeconds","0.0000052","Length: 16","2512"
"10:46:25.8653700 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Cryptography\PrivateKeyLifetimeSeconds","0.0000047","Length: 16","2512"
"10:46:25.8654101 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Policies\Microsoft\Cryptography","0.0000034","","2512"
"10:46:25.8654630 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8654992 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Cryptography","0.0000116","Desired Access: Read","2512"
"10:46:25.8655381 AM","firefox.exe","7384","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Cryptography","0.0000025","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","2512"
"10:46:25.8655679 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\MachineGuid","0.0000077","Length: 12","2512"
"10:46:25.8656004 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\MachineGuid","0.0000072","Type: REG_SZ, Length: 74, Data: bcdaa5f1-507c-43e0-97f8-5e82f17f7e65","2512"
"10:46:25.8656349 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\MachineGuid","0.0000056","Length: 49","2512"
"10:46:25.8656652 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\MachineGuid","0.0000060","Type: REG_SZ, Length: 74, Data: bcdaa5f1-507c-43e0-97f8-5e82f17f7e65","2512"
"10:46:25.8657109 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography","0.0000025","","2512"
"10:46:25.8657510 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8657843 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Cryptography\Offload","0.0000115","Desired Access: Read","2512"
"10:46:25.8658709 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8659024 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Cryptography\DESHashSessionKeyBackward","0.0000107","Desired Access: Read","2512"
"10:46:25.8659464 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Microsoft Enhanced RSA and AES Cryptographic Provider","0.0000034","","2512"
"10:46:25.8661072 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8661405 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Cryptography\OID","0.0000111","Desired Access: Read","2512"
"10:46:25.8661815 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8662118 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0","0.0000072","Desired Access: Read","2512"
"10:46:25.8662549 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0","0.0000030","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8662847 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo","0.0000175","Desired Access: Read","2512"
"10:46:25.8663355 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo","0.0000081","Index: 0, Name: 1.3.6.1.4.1.311.10.3.37!7","2512"
"10:46:25.8663714 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo","0.0000029","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8664012 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.10.3.37!7","0.0000145","Desired Access: Read","2512"
"10:46:25.8664464 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.10.3.37!7","0.0000069","Query: Cached, SubKeys: 0, Values: 1","2512"
"10:46:25.8664831 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.10.3.37!7","0.0000081","Index: 0, Name: Name, Type: REG_SZ, Length: 70, Data: @%SystemRoot%\System32\ci.dll,-100","2512"
"10:46:25.8665497 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8665808 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.10.3.37!7","0.0000150","Desired Access: Read","2512"
"10:46:25.8666312 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.10.3.37!7\Name","0.0000077","Type: REG_SZ, Length: 70, Data: @%SystemRoot%\System32\ci.dll,-100","2512"
"10:46:25.8666837 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000149","Desired Access: Query Value","2512"
"10:46:25.8667263 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000256","Desired Access: Query Value","2512"
"10:46:25.8667835 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings\StringCacheGeneration","0.0000073","Type: REG_DWORD, Length: 4, Data: 82","2512"
"10:46:25.8668219 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000034","","2512"
"10:46:25.8668735 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000128","Desired Access: Maximum Allowed, Granted Access: All Access","2512"
"10:46:25.8669205 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000153","Desired Access: Read/Write","2512"
"10:46:25.8669653 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000452","Desired Access: Read/Write","2512"
"10:46:25.8670455 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000038","","2512"
"10:46:25.8670843 AM","firefox.exe","7384","RegSetValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\LanguageList","0.0000094","Type: REG_MULTI_SZ, Length: 20, Data: en-US, en","2512"
"10:46:25.8677294 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ci.dll","0.0000410","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8678365 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ci.dll","0.0000107","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:58 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.8678818 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ci.dll","0.0000149","","2512"
"10:46:25.8679837 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\@%SystemRoot%\System32\ci.dll,-100","0.0000150","Type: REG_SZ, Length: 50, Data: Isolated User Mode (IUM)","2512"
"10:46:25.8680366 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000039","","2512"
"10:46:25.8680712 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.10.3.37!7\Name","0.0000077","Type: REG_SZ, Length: 70, Data: @%SystemRoot%\System32\ci.dll,-100","2512"
"10:46:25.8681220 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000132","Desired Access: Query Value","2512"
"10:46:25.8681634 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000123","Desired Access: Query Value","2512"
"10:46:25.8682039 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings\StringCacheGeneration","0.0000072","Type: REG_DWORD, Length: 4, Data: 82","2512"
"10:46:25.8682410 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000030","","2512"
"10:46:25.8682892 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000111","Desired Access: Maximum Allowed, Granted Access: All Access","2512"
"10:46:25.8683336 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000102","Desired Access: Read/Write","2512"
"10:46:25.8683694 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000124","Desired Access: Read/Write","2512"
"10:46:25.8684142 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000030","","2512"
"10:46:25.8684471 AM","firefox.exe","7384","RegSetValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\LanguageList","0.0000077","Type: REG_MULTI_SZ, Length: 20, Data: en-US, en","2512"
"10:46:25.8689830 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ci.dll","0.0000350","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8690768 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ci.dll","0.0000090","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:58 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.8691182 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ci.dll","0.0000137","","2512"
"10:46:25.8692155 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\@%SystemRoot%\System32\ci.dll,-100","0.0000103","Type: REG_SZ, Length: 50, Data: Isolated User Mode (IUM)","2512"
"10:46:25.8692612 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000034","","2512"
"10:46:25.8692966 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.10.3.37!7","0.0000030","","2512"
"10:46:25.8693320 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.10.3.37!7","0.0000030","","2512"
"10:46:25.8693644 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo","0.0000086","Index: 1, Name: 1.3.6.1.4.1.311.10.3.42!7","2512"
"10:46:25.8694045 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo","0.0000039","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8694416 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.10.3.42!7","0.0000167","Desired Access: Read","2512"
"10:46:25.8694916 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.10.3.42!7","0.0000059","Query: Cached, SubKeys: 0, Values: 1","2512"
"10:46:25.8695266 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.10.3.42!7","0.0000072","Index: 0, Name: Name, Type: REG_SZ, Length: 70, Data: @%SystemRoot%\System32\ci.dll,-101","2512"
"10:46:25.8695803 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8696149 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.10.3.42!7","0.0000149","Desired Access: Read","2512"
"10:46:25.8696622 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.10.3.42!7\Name","0.0000073","Type: REG_SZ, Length: 70, Data: @%SystemRoot%\System32\ci.dll,-101","2512"
"10:46:25.8697100 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000111","Desired Access: Query Value","2512"
"10:46:25.8697480 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000107","Desired Access: Query Value","2512"
"10:46:25.8697864 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings\StringCacheGeneration","0.0000072","Type: REG_DWORD, Length: 4, Data: 82","2512"
"10:46:25.8698239 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000035","","2512"
"10:46:25.8698704 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000107","Desired Access: Maximum Allowed, Granted Access: All Access","2512"
"10:46:25.8699131 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000098","Desired Access: Read/Write","2512"
"10:46:25.8699490 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000119","Desired Access: Read/Write","2512"
"10:46:25.8699925 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000038","","2512"
"10:46:25.8700262 AM","firefox.exe","7384","RegSetValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\LanguageList","0.0000072","Type: REG_MULTI_SZ, Length: 20, Data: en-US, en","2512"
"10:46:25.8705736 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ci.dll","0.0000354","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8706687 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ci.dll","0.0000094","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:58 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.8707106 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ci.dll","0.0000132","","2512"
"10:46:25.8708066 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\@%SystemRoot%\System32\ci.dll,-101","0.0000123","Type: REG_SZ, Length: 16, Data: Enclave","2512"
"10:46:25.8708539 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000034","","2512"
"10:46:25.8708932 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.10.3.42!7\Name","0.0000076","Type: REG_SZ, Length: 70, Data: @%SystemRoot%\System32\ci.dll,-101","2512"
"10:46:25.8709422 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000124","Desired Access: Query Value","2512"
"10:46:25.8709811 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000115","Desired Access: Query Value","2512"
"10:46:25.8710207 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings\StringCacheGeneration","0.0000069","Type: REG_DWORD, Length: 4, Data: 82","2512"
"10:46:25.8710574 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000030","","2512"
"10:46:25.8711031 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000111","Desired Access: Maximum Allowed, Granted Access: All Access","2512"
"10:46:25.8711470 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000099","Desired Access: Read/Write","2512"
"10:46:25.8711833 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000115","Desired Access: Read/Write","2512"
"10:46:25.8712268 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000039","","2512"
"10:46:25.8712601 AM","firefox.exe","7384","RegSetValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\LanguageList","0.0000077","Type: REG_MULTI_SZ, Length: 20, Data: en-US, en","2512"
"10:46:25.8718284 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ci.dll","0.0000354","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8719236 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ci.dll","0.0000089","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:58 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.8719645 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ci.dll","0.0000137","","2512"
"10:46:25.8720618 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\@%SystemRoot%\System32\ci.dll,-101","0.0000111","Type: REG_SZ, Length: 16, Data: Enclave","2512"
"10:46:25.8721083 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000039","","2512"
"10:46:25.8721442 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.10.3.42!7","0.0000029","","2512"
"10:46:25.8721821 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.10.3.42!7","0.0000034","","2512"
"10:46:25.8722141 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo","0.0000077","Index: 2, Name: 1.3.6.1.4.1.311.64.1.1!7","2512"
"10:46:25.8722525 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo","0.0000039","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8722892 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.64.1.1!7","0.0000175","Desired Access: Read","2512"
"10:46:25.8723396 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.64.1.1!7","0.0000068","Query: Cached, SubKeys: 0, Values: 1","2512"
"10:46:25.8723758 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.64.1.1!7","0.0000073","Index: 0, Name: Name, Type: REG_SZ, Length: 78, Data: @%SystemRoot%\system32\dnsapi.dll,-103","2512"
"10:46:25.8724266 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8724607 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.64.1.1!7","0.0000146","Desired Access: Read","2512"
"10:46:25.8725068 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.64.1.1!7\Name","0.0000073","Type: REG_SZ, Length: 78, Data: @%SystemRoot%\system32\dnsapi.dll,-103","2512"
"10:46:25.8725538 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000106","Desired Access: Query Value","2512"
"10:46:25.8725909 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000106","Desired Access: Query Value","2512"
"10:46:25.8726289 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings\StringCacheGeneration","0.0000068","Type: REG_DWORD, Length: 4, Data: 82","2512"
"10:46:25.8726668 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000026","","2512"
"10:46:25.8727133 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000107","Desired Access: Maximum Allowed, Granted Access: All Access","2512"
"10:46:25.8727569 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000093","Desired Access: Read/Write","2512"
"10:46:25.8727923 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000123","Desired Access: Read/Write","2512"
"10:46:25.8728354 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000029","","2512"
"10:46:25.8728678 AM","firefox.exe","7384","RegSetValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\LanguageList","0.0000068","Type: REG_MULTI_SZ, Length: 20, Data: en-US, en","2512"
"10:46:25.8734097 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000392","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8735078 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000089","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.8735500 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000137","","2512"
"10:46:25.8736482 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\@%SystemRoot%\system32\dnsapi.dll,-103","0.0000115","Type: REG_SZ, Length: 76, Data: Domain Name System (DNS) Server Trust","2512"
"10:46:25.8736955 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000034","","2512"
"10:46:25.8737301 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.64.1.1!7\Name","0.0000072","Type: REG_SZ, Length: 78, Data: @%SystemRoot%\system32\dnsapi.dll,-103","2512"
"10:46:25.8737787 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000124","Desired Access: Query Value","2512"
"10:46:25.8738175 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000111","Desired Access: Query Value","2512"
"10:46:25.8738581 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings\StringCacheGeneration","0.0000072","Type: REG_DWORD, Length: 4, Data: 82","2512"
"10:46:25.8738952 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000055","","2512"
"10:46:25.8740667 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000132","Desired Access: Maximum Allowed, Granted Access: All Access","2512"
"10:46:25.8741162 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000103","Desired Access: Read/Write","2512"
"10:46:25.8741542 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000124","Desired Access: Read/Write","2512"
"10:46:25.8741994 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000034","","2512"
"10:46:25.8742335 AM","firefox.exe","7384","RegSetValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\LanguageList","0.0000077","Type: REG_MULTI_SZ, Length: 20, Data: en-US, en","2512"
"10:46:25.8747788 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000384","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8748778 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000090","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:25.8749192 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000132","","2512"
"10:46:25.8750609 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\@%SystemRoot%\system32\dnsapi.dll,-103","0.0000170","Type: REG_SZ, Length: 76, Data: Domain Name System (DNS) Server Trust","2512"
"10:46:25.8751295 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000035","","2512"
"10:46:25.8751739 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.64.1.1!7","0.0000030","","2512"
"10:46:25.8752174 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.64.1.1!7","0.0000035","","2512"
"10:46:25.8752516 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo","0.0000085","Index: 3, Name: 1.3.6.1.4.1.311.67.1.1!7","2512"
"10:46:25.8752917 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo","0.0000030","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8753211 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.67.1.1!7","0.0000154","Desired Access: Read","2512"
"10:46:25.8753608 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.67.1.1!7","0.0000047","Query: Cached, SubKeys: 0, Values: 1","2512"
"10:46:25.8753843 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.67.1.1!7","0.0000059","Index: 0, Name: Name, Type: REG_SZ, Length: 76, Data: @%SystemRoot%\System32\fveui.dll,-843","2512"
"10:46:25.8754248 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8754474 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.67.1.1!7","0.0000115","Desired Access: Read","2512"
"10:46:25.8754807 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.67.1.1!7\Name","0.0000055","Type: REG_SZ, Length: 76, Data: @%SystemRoot%\System32\fveui.dll,-843","2512"
"10:46:25.8755161 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000094","Desired Access: Query Value","2512"
"10:46:25.8755434 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000090","Desired Access: Query Value","2512"
"10:46:25.8755707 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings\StringCacheGeneration","0.0000056","Type: REG_DWORD, Length: 4, Data: 82","2512"
"10:46:25.8755963 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000026","","2512"
"10:46:25.8756305 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000089","Desired Access: Maximum Allowed, Granted Access: All Access","2512"
"10:46:25.8756616 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000094","Desired Access: Read/Write","2512"
"10:46:25.8756868 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000098","Desired Access: Read/Write","2512"
"10:46:25.8757175 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000021","","2512"
"10:46:25.8757393 AM","firefox.exe","7384","RegSetValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\LanguageList","0.0000064","Type: REG_MULTI_SZ, Length: 20, Data: en-US, en","2512"
"10:46:25.8761774 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fveui.dll","0.0000316","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8762513 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fveui.dll","0.0000072","CreationTime: 4/11/2018 4:35:21 PM, LastAccessTime: 4/11/2018 4:35:21 PM, LastWriteTime: 4/11/2018 4:35:21 PM, ChangeTime: 3/20/2019 6:51:22 PM, FileAttributes: A","2512"
"10:46:25.8762794 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fveui.dll","0.0000107","","2512"
"10:46:25.8763468 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\@%SystemRoot%\System32\fveui.dll,-843","0.0000090","Type: REG_SZ, Length: 54, Data: BitLocker Drive Encryption","2512"
"10:46:25.8763793 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000025","","2512"
"10:46:25.8764023 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.67.1.1!7\Name","0.0000055","Type: REG_SZ, Length: 76, Data: @%SystemRoot%\System32\fveui.dll,-843","2512"
"10:46:25.8764360 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000090","Desired Access: Query Value","2512"
"10:46:25.8764616 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000085","Desired Access: Query Value","2512"
"10:46:25.8764885 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings\StringCacheGeneration","0.0000051","Type: REG_DWORD, Length: 4, Data: 82","2512"
"10:46:25.8765124 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000021","","2512"
"10:46:25.8765440 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000076","Desired Access: Maximum Allowed, Granted Access: All Access","2512"
"10:46:25.8765730 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000072","Desired Access: Read/Write","2512"
"10:46:25.8765964 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000081","Desired Access: Read/Write","2512"
"10:46:25.8766254 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000022","","2512"
"10:46:25.8766472 AM","firefox.exe","7384","RegSetValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\LanguageList","0.0000056","Type: REG_MULTI_SZ, Length: 20, Data: en-US, en","2512"
"10:46:25.8770363 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fveui.dll","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8771008 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fveui.dll","0.0000068","CreationTime: 4/11/2018 4:35:21 PM, LastAccessTime: 4/11/2018 4:35:21 PM, LastWriteTime: 4/11/2018 4:35:21 PM, ChangeTime: 3/20/2019 6:51:22 PM, FileAttributes: A","2512"
"10:46:25.8771268 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fveui.dll","0.0000094","","2512"
"10:46:25.8771904 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\@%SystemRoot%\System32\fveui.dll,-843","0.0000085","Type: REG_SZ, Length: 54, Data: BitLocker Drive Encryption","2512"
"10:46:25.8772215 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000026","","2512"
"10:46:25.8772445 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.67.1.1!7","0.0000026","","2512"
"10:46:25.8772714 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.67.1.1!7","0.0000022","","2512"
"10:46:25.8772923 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo","0.0000060","Index: 4, Name: 1.3.6.1.4.1.311.67.1.2!7","2512"
"10:46:25.8773184 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8773414 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.67.1.2!7","0.0000132","Desired Access: Read","2512"
"10:46:25.8773764 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.67.1.2!7","0.0000047","Query: Cached, SubKeys: 0, Values: 1","2512"
"10:46:25.8773994 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.67.1.2!7","0.0000056","Index: 0, Name: Name, Type: REG_SZ, Length: 76, Data: @%SystemRoot%\System32\fveui.dll,-844","2512"
"10:46:25.8774357 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8774570 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.67.1.2!7","0.0000103","Desired Access: Read","2512"
"10:46:25.8774873 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.67.1.2!7\Name","0.0000051","Type: REG_SZ, Length: 76, Data: @%SystemRoot%\System32\fveui.dll,-844","2512"
"10:46:25.8775189 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000081","Desired Access: Query Value","2512"
"10:46:25.8775428 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000072","Desired Access: Query Value","2512"
"10:46:25.8775675 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings\StringCacheGeneration","0.0000051","Type: REG_DWORD, Length: 4, Data: 82","2512"
"10:46:25.8775910 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000021","","2512"
"10:46:25.8776217 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000073","Desired Access: Maximum Allowed, Granted Access: All Access","2512"
"10:46:25.8776494 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000064","Desired Access: Read/Write","2512"
"10:46:25.8776712 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000085","Desired Access: Read/Write","2512"
"10:46:25.8776994 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000021","","2512"
"10:46:25.8777207 AM","firefox.exe","7384","RegSetValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\LanguageList","0.0000055","Type: REG_MULTI_SZ, Length: 20, Data: en-US, en","2512"
"10:46:25.8780859 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fveui.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8781508 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fveui.dll","0.0000060","CreationTime: 4/11/2018 4:35:21 PM, LastAccessTime: 4/11/2018 4:35:21 PM, LastWriteTime: 4/11/2018 4:35:21 PM, ChangeTime: 3/20/2019 6:51:22 PM, FileAttributes: A","2512"
"10:46:25.8781760 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fveui.dll","0.0000098","","2512"
"10:46:25.8782404 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\@%SystemRoot%\System32\fveui.dll,-844","0.0000089","Type: REG_SZ, Length: 60, Data: BitLocker Data Recovery Agent","2512"
"10:46:25.8782715 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000026","","2512"
"10:46:25.8782941 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.67.1.2!7\Name","0.0000052","Type: REG_SZ, Length: 76, Data: @%SystemRoot%\System32\fveui.dll,-844","2512"
"10:46:25.8783266 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000081","Desired Access: Query Value","2512"
"10:46:25.8783509 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000077","Desired Access: Query Value","2512"
"10:46:25.8783761 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings\StringCacheGeneration","0.0000047","Type: REG_DWORD, Length: 4, Data: 82","2512"
"10:46:25.8783991 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000021","","2512"
"10:46:25.8784294 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000077","Desired Access: Maximum Allowed, Granted Access: All Access","2512"
"10:46:25.8784576 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000068","Desired Access: Read/Write","2512"
"10:46:25.8784797 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000081","Desired Access: Read/Write","2512"
"10:46:25.8785079 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000026","","2512"
"10:46:25.8785292 AM","firefox.exe","7384","RegSetValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\LanguageList","0.0000056","Type: REG_MULTI_SZ, Length: 20, Data: en-US, en","2512"
"10:46:25.8789149 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fveui.dll","0.0000261","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8789781 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fveui.dll","0.0000064","CreationTime: 4/11/2018 4:35:21 PM, LastAccessTime: 4/11/2018 4:35:21 PM, LastWriteTime: 4/11/2018 4:35:21 PM, ChangeTime: 3/20/2019 6:51:22 PM, FileAttributes: A","2512"
"10:46:25.8790037 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fveui.dll","0.0000089","","2512"
"10:46:25.8790660 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\@%SystemRoot%\System32\fveui.dll,-844","0.0000085","Type: REG_SZ, Length: 60, Data: BitLocker Data Recovery Agent","2512"
"10:46:25.8790971 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000026","","2512"
"10:46:25.8791197 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.67.1.2!7","0.0000022","","2512"
"10:46:25.8791453 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.67.1.2!7","0.0000026","","2512"
"10:46:25.8791658 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo","0.0000086","Index: 5, Name: 1.3.6.1.4.1.311.76.6.1!7","2512"
"10:46:25.8792012 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo","0.0000056","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8792324 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.76.6.1!7","0.0000175","Desired Access: Read","2512"
"10:46:25.8792806 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.76.6.1!7","0.0000072","Query: Cached, SubKeys: 0, Values: 1","2512"
"10:46:25.8793143 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.76.6.1!7","0.0000077","Index: 0, Name: Name, Type: REG_SZ, Length: 80, Data: @%SystemRoot%\System32\wuaueng.dll,-400","2512"
"10:46:25.8793655 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8794001 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.76.6.1!7","0.0000149","Desired Access: Read","2512"
"10:46:25.8794453 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.76.6.1!7\Name","0.0000077","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\System32\wuaueng.dll,-400","2512"
"10:46:25.8794918 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000107","Desired Access: Query Value","2512"
"10:46:25.8795268 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000106","Desired Access: Query Value","2512"
"10:46:25.8795639 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings\StringCacheGeneration","0.0000077","Type: REG_DWORD, Length: 4, Data: 82","2512"
"10:46:25.8796198 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0004578","","2512"
"10:46:25.8801198 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000103","Desired Access: Maximum Allowed, Granted Access: All Access","2512"
"10:46:25.8801536 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000089","Desired Access: Read/Write","2512"
"10:46:25.8801796 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000102","Desired Access: Read/Write","2512"
"10:46:25.8802129 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000025","","2512"
"10:46:25.8802363 AM","firefox.exe","7384","RegSetValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\LanguageList","0.0000069","Type: REG_MULTI_SZ, Length: 20, Data: en-US, en","2512"
"10:46:25.8806621 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wuaueng.dll","0.0000316","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8807351 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wuaueng.dll","0.0000073","CreationTime: 4/25/2019 5:33:55 PM, LastAccessTime: 4/25/2019 5:33:55 PM, LastWriteTime: 3/14/2019 12:52:36 AM, ChangeTime: 4/25/2019 8:15:31 PM, FileAttributes: A","2512"
"10:46:25.8807628 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wuaueng.dll","0.0000137","","2512"
"10:46:25.8808345 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\@%SystemRoot%\System32\wuaueng.dll,-400","0.0000103","Type: REG_SZ, Length: 30, Data: Windows Update","2512"
"10:46:25.8808686 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000026","","2512"
"10:46:25.8808934 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.76.6.1!7\Name","0.0000060","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\System32\wuaueng.dll,-400","2512"
"10:46:25.8809288 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000090","Desired Access: Query Value","2512"
"10:46:25.8809540 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000085","Desired Access: Query Value","2512"
"10:46:25.8809809 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings\StringCacheGeneration","0.0000051","Type: REG_DWORD, Length: 4, Data: 82","2512"
"10:46:25.8810052 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000021","","2512"
"10:46:25.8810363 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000077","Desired Access: Maximum Allowed, Granted Access: All Access","2512"
"10:46:25.8810645 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000068","Desired Access: Read/Write","2512"
"10:46:25.8810871 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000090","Desired Access: Read/Write","2512"
"10:46:25.8811157 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000025","","2512"
"10:46:25.8811374 AM","firefox.exe","7384","RegSetValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\LanguageList","0.0000056","Type: REG_MULTI_SZ, Length: 20, Data: en-US, en","2512"
"10:46:25.8815377 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wuaueng.dll","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8816059 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wuaueng.dll","0.0000060","CreationTime: 4/25/2019 5:33:55 PM, LastAccessTime: 4/25/2019 5:33:55 PM, LastWriteTime: 3/14/2019 12:52:36 AM, ChangeTime: 4/25/2019 8:15:31 PM, FileAttributes: A","2512"
"10:46:25.8816315 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wuaueng.dll","0.0000094","","2512"
"10:46:25.8816951 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\@%SystemRoot%\System32\wuaueng.dll,-400","0.0000081","Type: REG_SZ, Length: 30, Data: Windows Update","2512"
"10:46:25.8817263 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000021","","2512"
"10:46:25.8817493 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.76.6.1!7","0.0000021","","2512"
"10:46:25.8817749 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.76.6.1!7","0.0000026","","2512"
"10:46:25.8817971 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo","0.0000064","Index: 6, Name: 1.3.6.1.4.1.311.80.1!7","2512"
"10:46:25.8818240 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo","0.0000029","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8818487 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.80.1!7","0.0000149","Desired Access: Read","2512"
"10:46:25.8818863 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.80.1!7","0.0000046","Query: Cached, SubKeys: 0, Values: 1","2512"
"10:46:25.8819097 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.80.1!7","0.0000056","Index: 0, Name: Name, Type: REG_SZ, Length: 132, Data: @%SystemRoot%\system32\WindowsPowerShell\v1.0\powershell.exe,-124","2512"
"10:46:25.8819490 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8819703 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.80.1!7","0.0000111","Desired Access: Read","2512"
"10:46:25.8820019 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.80.1!7\Name","0.0000051","Type: REG_SZ, Length: 132, Data: @%SystemRoot%\system32\WindowsPowerShell\v1.0\powershell.exe,-124","2512"
"10:46:25.8820339 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000085","Desired Access: Query Value","2512"
"10:46:25.8820582 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000073","Desired Access: Query Value","2512"
"10:46:25.8820834 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings\StringCacheGeneration","0.0000051","Type: REG_DWORD, Length: 4, Data: 82","2512"
"10:46:25.8821073 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000021","","2512"
"10:46:25.8821380 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000072","Desired Access: Maximum Allowed, Granted Access: All Access","2512"
"10:46:25.8821653 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000064","Desired Access: Read/Write","2512"
"10:46:25.8821871 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000085","Desired Access: Read/Write","2512"
"10:46:25.8822152 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000021","","2512"
"10:46:25.8822365 AM","firefox.exe","7384","RegSetValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\LanguageList","0.0000052","Type: REG_MULTI_SZ, Length: 20, Data: en-US, en","2512"
"10:46:25.8826205 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8826688 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe","0.0000059","CreationTime: 4/11/2018 4:35:26 PM, LastAccessTime: 4/11/2018 4:35:26 PM, LastWriteTime: 4/11/2018 4:35:26 PM, ChangeTime: 3/20/2019 7:05:51 PM, FileAttributes: A","2512"
"10:46:25.8826935 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe","0.0000094","","2512"
"10:46:25.8827562 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\@%SystemRoot%\system32\WindowsPowerShell\v1.0\powershell.exe,-124","0.0000090","Type: REG_SZ, Length: 40, Data: Document Encryption","2512"
"10:46:25.8827874 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000025","","2512"
"10:46:25.8828096 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.80.1!7\Name","0.0000051","Type: REG_SZ, Length: 132, Data: @%SystemRoot%\system32\WindowsPowerShell\v1.0\powershell.exe,-124","2512"
"10:46:25.8828411 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000086","Desired Access: Query Value","2512"
"10:46:25.8828646 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000081","Desired Access: Query Value","2512"
"10:46:25.8828902 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings\StringCacheGeneration","0.0000051","Type: REG_DWORD, Length: 4, Data: 82","2512"
"10:46:25.8829137 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000021","","2512"
"10:46:25.8829431 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000068","Desired Access: Maximum Allowed, Granted Access: All Access","2512"
"10:46:25.8829700 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000068","Desired Access: Read/Write","2512"
"10:46:25.8829922 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000081","Desired Access: Read/Write","2512"
"10:46:25.8830203 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000022","","2512"
"10:46:25.8830412 AM","firefox.exe","7384","RegSetValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\LanguageList","0.0000056","Type: REG_MULTI_SZ, Length: 20, Data: en-US, en","2512"
"10:46:25.8833898 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8834355 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe","0.0000055","CreationTime: 4/11/2018 4:35:26 PM, LastAccessTime: 4/11/2018 4:35:26 PM, LastWriteTime: 4/11/2018 4:35:26 PM, ChangeTime: 3/20/2019 7:05:51 PM, FileAttributes: A","2512"
"10:46:25.8834598 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe","0.0000090","","2512"
"10:46:25.8835208 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\@%SystemRoot%\system32\WindowsPowerShell\v1.0\powershell.exe,-124","0.0000085","Type: REG_SZ, Length: 40, Data: Document Encryption","2512"
"10:46:25.8835515 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000022","","2512"
"10:46:25.8835741 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.80.1!7","0.0000022","","2512"
"10:46:25.8835980 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.80.1!7","0.0000022","","2512"
"10:46:25.8836181 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo","0.0000055","Index: 7, Name: 1.3.6.1.4.1.311.92.1.1!7","2512"
"10:46:25.8836437 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8836667 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.92.1.1!7","0.0000137","Desired Access: Read","2512"
"10:46:25.8837021 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.92.1.1!7","0.0000047","Query: Cached, SubKeys: 0, Values: 1","2512"
"10:46:25.8837252 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.92.1.1!7","0.0000051","Index: 0, Name: Name, Type: REG_SZ, Length: 88, Data: @%SystemRoot%\system32\NgcRecovery.dll,-100","2512"
"10:46:25.8837610 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8837824 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.92.1.1!7","0.0000106","Desired Access: Read","2512"
"10:46:25.8838131 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.92.1.1!7\Name","0.0000051","Type: REG_SZ, Length: 88, Data: @%SystemRoot%\system32\NgcRecovery.dll,-100","2512"
"10:46:25.8838442 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000077","Desired Access: Query Value","2512"
"10:46:25.8838677 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000072","Desired Access: Query Value","2512"
"10:46:25.8838924 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings\StringCacheGeneration","0.0000052","Type: REG_DWORD, Length: 4, Data: 82","2512"
"10:46:25.8839155 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000021","","2512"
"10:46:25.8839458 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000072","Desired Access: Maximum Allowed, Granted Access: All Access","2512"
"10:46:25.8839739 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000064","Desired Access: Read/Write","2512"
"10:46:25.8839961 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000252","Desired Access: Read/Write","2512"
"10:46:25.8840495 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000029","","2512"
"10:46:25.8840768 AM","firefox.exe","7384","RegSetValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\LanguageList","0.0000055","Type: REG_MULTI_SZ, Length: 20, Data: en-US, en","2512"
"10:46:25.8844591 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ngcrecovery.dll","0.0000268","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8845073 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ngcrecovery.dll","0.0000064","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:10:26 PM, FileAttributes: A","2512"
"10:46:25.8845324 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ngcrecovery.dll","0.0000090","","2512"
"10:46:25.8845947 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\@%SystemRoot%\system32\NgcRecovery.dll,-100","0.0000090","Type: REG_SZ, Length: 76, Data: Windows Hello Recovery Key Encryption","2512"
"10:46:25.8846259 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000021","","2512"
"10:46:25.8846485 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.92.1.1!7\Name","0.0000055","Type: REG_SZ, Length: 88, Data: @%SystemRoot%\system32\NgcRecovery.dll,-100","2512"
"10:46:25.8846818 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000085","Desired Access: Query Value","2512"
"10:46:25.8847069 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000082","Desired Access: Query Value","2512"
"10:46:25.8847330 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings\StringCacheGeneration","0.0000051","Type: REG_DWORD, Length: 4, Data: 82","2512"
"10:46:25.8847564 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\MUI\StringCacheSettings","0.0000022","","2512"
"10:46:25.8847872 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000072","Desired Access: Maximum Allowed, Granted Access: All Access","2512"
"10:46:25.8848153 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000068","Desired Access: Read/Write","2512"
"10:46:25.8848375 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000090","Desired Access: Read/Write","2512"
"10:46:25.8848657 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000021","","2512"
"10:46:25.8848870 AM","firefox.exe","7384","RegSetValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\LanguageList","0.0000055","Type: REG_MULTI_SZ, Length: 20, Data: en-US, en","2512"
"10:46:25.8852356 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ngcrecovery.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8852808 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ngcrecovery.dll","0.0000060","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:10:26 PM, FileAttributes: A","2512"
"10:46:25.8853043 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ngcrecovery.dll","0.0000089","","2512"
"10:46:25.8853661 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E\@%SystemRoot%\system32\NgcRecovery.dll,-100","0.0000086","Type: REG_SZ, Length: 76, Data: Windows Hello Recovery Key Encryption","2512"
"10:46:25.8853969 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\MuiCache\52\52C64B7E","0.0000025","","2512"
"10:46:25.8854195 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.92.1.1!7","0.0000021","","2512"
"10:46:25.8854434 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo\1.3.6.1.4.1.311.92.1.1!7","0.0000021","","2512"
"10:46:25.8854643 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo","0.0000055","Index: 8, Length: 288","2512"
"10:46:25.8854873 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllFindOIDInfo","0.0000022","","2512"
"10:46:25.8855065 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0","0.0000022","","2512"
"10:46:25.8855249 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000021","","2512"
"10:46:25.8855607 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8855846 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Cryptography\ECCParameters","0.0000077","Desired Access: Read","2512"
"10:46:25.8856085 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Cryptography\ECCParameters","0.0000162","Desired Access: Read","2512"
"10:46:25.8856477 AM","firefox.exe","7384","RegSetInfoKey","HKLM\System\CurrentControlSet\Control\Cryptography\ECCParameters","0.0000022","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","2512"
"10:46:25.8856665 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Cryptography\ECCParameters","0.0000039","Index: 0, Length: 288","2512"
"10:46:25.8856930 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Cryptography\ECCParameters","0.0000021","","2512"
"10:46:25.8868100 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Cryptography\Providers","0.0000090","Desired Access: Read","2512"
"10:46:25.8868505 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Cryptography\Providers","0.0000133","Desired Access: Read","2512"
"10:46:25.8869009 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Cryptography\Providers","0.0000025","","2512"
"10:46:25.8869320 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Cryptography\Configuration","0.0000077","Desired Access: Read","2512"
"10:46:25.8869619 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Cryptography\Configuration","0.0000064","Desired Access: Read","2512"
"10:46:25.8869947 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Cryptography\Configuration","0.0000022","","2512"
"10:46:25.8874649 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8874905 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Cryptography\OID","0.0000086","Desired Access: Read","2512"
"10:46:25.8875208 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000060","Index: 0, Name: EncodingType 0","2512"
"10:46:25.8875451 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8875648 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0","0.0000051","Desired Access: Read","2512"
"10:46:25.8875912 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0","0.0000022","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8876096 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv","0.0000123","Desired Access: Read","2512"
"10:46:25.8876416 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv","0.0000051","Index: 0, Name: #16","2512"
"10:46:25.8876629 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8876808 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\#16","0.0000098","Desired Access: Read","2512"
"10:46:25.8877094 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\#16","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8877324 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\#16","0.0000056","Index: 0, Name: Dll, Type: REG_SZ, Length: 66, Data: C:\Windows\System32\cryptnet.dll","2512"
"10:46:25.8877534 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\#16","0.0000046","Index: 1, Name: FuncName, Type: REG_SZ, Length: 36, Data: LdapProvOpenStore","2512"
"10:46:25.8877883 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\#16","0.0000026","","2512"
"10:46:25.8878071 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv","0.0000047","Index: 1, Name: Ldap","2512"
"10:46:25.8878276 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8878459 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\Ldap","0.0000094","Desired Access: Read","2512"
"10:46:25.8878737 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\Ldap","0.0000038","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8878933 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\Ldap","0.0000043","Index: 0, Name: Dll, Type: REG_SZ, Length: 66, Data: C:\Windows\System32\cryptnet.dll","2512"
"10:46:25.8879116 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\Ldap","0.0000043","Index: 1, Name: FuncName, Type: REG_SZ, Length: 36, Data: LdapProvOpenStore","2512"
"10:46:25.8879390 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv\Ldap","0.0000021","","2512"
"10:46:25.8879560 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv","0.0000043","Index: 2, Length: 288","2512"
"10:46:25.8879765 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CertDllOpenStoreProv","0.0000021","","2512"
"10:46:25.8879944 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0","0.0000022","","2512"
"10:46:25.8880115 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000047","Index: 1, Name: EncodingType 1","2512"
"10:46:25.8880315 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000022","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8880503 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1","0.0000051","Desired Access: Read","2512"
"10:46:25.8880746 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8880926 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CertDllOpenStoreProv","0.0000051","Desired Access: Read","2512"
"10:46:25.8881156 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1","0.0000021","","2512"
"10:46:25.8881327 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000038","Index: 2, Length: 288","2512"
"10:46:25.8881523 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000021","","2512"
"10:46:25.8885508 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8885708 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Cryptography\OID","0.0000077","Desired Access: Read","2512"
"10:46:25.8885969 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000042","Index: 0, Name: EncodingType 0","2512"
"10:46:25.8886174 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8886357 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0","0.0000043","Desired Access: Read","2512"
"10:46:25.8886596 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8886779 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllDecodeObjectEx","0.0000056","Desired Access: Read","2512"
"10:46:25.8887014 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0","0.0000021","","2512"
"10:46:25.8887189 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000043","Index: 1, Name: EncodingType 1","2512"
"10:46:25.8887390 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8887569 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1","0.0000047","Desired Access: Read","2512"
"10:46:25.8887799 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8887983 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx","0.0000119","Desired Access: Read","2512"
"10:46:25.8888303 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx","0.0000042","Index: 0, Name: 1.2.840.113549.1.9.16.1.1","2512"
"10:46:25.8888512 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8888691 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.1.1","0.0000102","Desired Access: Read","2512"
"10:46:25.8888981 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.1.1","0.0000038","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8889186 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.1.1","0.0000051","Index: 0, Name: Dll, Type: REG_SZ, Length: 66, Data: C:\Windows\System32\inetcomm.dll","2512"
"10:46:25.8889386 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.1.1","0.0000047","Index: 1, Name: FuncName, Type: REG_SZ, Length: 38, Data: EssReceiptDecodeEx","2512"
"10:46:25.8889685 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.1.1","0.0000026","","2512"
"10:46:25.8889864 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx","0.0000043","Index: 1, Name: 1.2.840.113549.1.9.16.2.1","2512"
"10:46:25.8890065 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8890248 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.1","0.0000132","Desired Access: Read","2512"
"10:46:25.8890564 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.1","0.0000038","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8890756 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.1","0.0000047","Index: 0, Name: Dll, Type: REG_SZ, Length: 66, Data: C:\Windows\System32\inetcomm.dll","2512"
"10:46:25.8890948 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.1","0.0000043","Index: 1, Name: FuncName, Type: REG_SZ, Length: 52, Data: EssReceiptRequestDecodeEx","2512"
"10:46:25.8891208 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.1","0.0000026","","2512"
"10:46:25.8891383 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx","0.0000043","Index: 2, Name: 1.2.840.113549.1.9.16.2.11","2512"
"10:46:25.8891588 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8891771 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.11","0.0000103","Desired Access: Read","2512"
"10:46:25.8892057 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.11","0.0000043","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8892254 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.11","0.0000068","Index: 0, Name: Dll, Type: REG_SZ, Length: 66, Data: C:\Windows\System32\inetcomm.dll","2512"
"10:46:25.8892475 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.11","0.0000047","Index: 1, Name: FuncName, Type: REG_SZ, Length: 58, Data: EssKeyExchPreferenceDecodeEx","2512"
"10:46:25.8892842 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.11","0.0000022","","2512"
"10:46:25.8893022 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx","0.0000042","Index: 3, Name: 1.2.840.113549.1.9.16.2.12","2512"
"10:46:25.8893226 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx","0.0000022","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8893414 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.12","0.0000098","Desired Access: Read","2512"
"10:46:25.8893696 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.12","0.0000038","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8893888 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.12","0.0000047","Index: 0, Name: Dll, Type: REG_SZ, Length: 66, Data: C:\Windows\System32\inetcomm.dll","2512"
"10:46:25.8894080 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.12","0.0000042","Index: 1, Name: FuncName, Type: REG_SZ, Length: 54, Data: EssSignCertificateDecodeEx","2512"
"10:46:25.8894340 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.12","0.0000026","","2512"
"10:46:25.8894515 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx","0.0000043","Index: 4, Name: 1.2.840.113549.1.9.16.2.2","2512"
"10:46:25.8894720 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8894903 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.2","0.0000098","Desired Access: Read","2512"
"10:46:25.8895180 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.2","0.0000039","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8895368 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.2","0.0000043","Index: 0, Name: Dll, Type: REG_SZ, Length: 66, Data: C:\Windows\System32\inetcomm.dll","2512"
"10:46:25.8895560 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.2","0.0000043","Index: 1, Name: FuncName, Type: REG_SZ, Length: 50, Data: EssSecurityLabelDecodeEx","2512"
"10:46:25.8895812 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.2","0.0000021","","2512"
"10:46:25.8895983 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx","0.0000047","Index: 5, Name: 1.2.840.113549.1.9.16.2.3","2512"
"10:46:25.8896187 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx","0.0000022","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8896371 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.3","0.0000089","Desired Access: Read","2512"
"10:46:25.8896648 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.3","0.0000039","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8896840 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.3","0.0000047","Index: 0, Name: Dll, Type: REG_SZ, Length: 66, Data: C:\Windows\System32\inetcomm.dll","2512"
"10:46:25.8897028 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.3","0.0000043","Index: 1, Name: FuncName, Type: REG_SZ, Length: 42, Data: EssMLHistoryDecodeEx","2512"
"10:46:25.8897280 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.3","0.0000021","","2512"
"10:46:25.8897455 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx","0.0000042","Index: 6, Name: 1.2.840.113549.1.9.16.2.4","2512"
"10:46:25.8897655 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:25.8897839 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.4","0.0000093","Desired Access: Read","2512"
"10:46:25.8898120 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.4","0.0000039","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:25.8898321 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.4","0.0000047","Index: 0, Name: Dll, Type: REG_SZ, Length: 66, Data: C:\Windows\System32\inetcomm.dll","2512"
"10:46:25.8898513 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.4","0.0000042","Index: 1, Name: FuncName, Type: REG_SZ, Length: 46, Data: EssContentHintDecodeEx","2512"
"10:46:25.8898769 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx\1.2.840.113549.1.9.16.2.4","0.0000021","","2512"
"10:46:25.8898944 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx","0.0000038","Index: 7, Length: 288","2512"
"10:46:25.8899144 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllDecodeObjectEx","0.0000022","","2512"
"10:46:25.8899328 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1","0.0000017","","2512"
"10:46:25.8899498 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000039","Index: 2, Length: 288","2512"
"10:46:25.8899695 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000021","","2512"
"10:46:25.8906363 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000333","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8906931 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000068","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:25.8907195 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000099","","2512"
"10:46:25.8911129 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8911552 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000055","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:25.8911769 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000090","","2512"
"10:46:25.8915985 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8916382 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000055","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:25.8916586 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000081","","2512"
"10:46:25.8917316 AM","firefox.exe","7384","CreateFile","C:\","0.0000179","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8917755 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000248","Filter: Windows, 1: Windows","2512"
"10:46:25.8918242 AM","firefox.exe","7384","CloseFile","C:\","0.0000081","","2512"
"10:46:25.8920490 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000308","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8921173 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000324","Filter: System32, 1: System32","2512"
"10:46:25.8921830 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000128","","2512"
"10:46:25.8922026 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0770399","Offset: 316,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.8928909 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000290","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8929600 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000068","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:25.8929839 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000094","","2512"
"10:46:25.8930654 AM","firefox.exe","7384","CreateFile","C:\","0.0000187","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8931127 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000534","Filter: Windows, 1: Windows","2512"
"10:46:25.8931912 AM","firefox.exe","7384","CloseFile","C:\","0.0000086","","2512"
"10:46:25.8933973 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000209","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8934434 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000213","Filter: System32, 1: System32","2512"
"10:46:25.8934869 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000077","","2512"
"10:46:25.8936981 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000213","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8937429 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\kernel32.dll","0.0000252","Filter: kernel32.dll, 1: kernel32.dll","2512"
"10:46:25.8937898 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000077","","2512"
"10:46:25.8941525 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8942135 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000060","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:25.8942353 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000085","","2512"
"10:46:25.8943027 AM","firefox.exe","7384","CreateFile","C:\","0.0000166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8943454 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000196","Filter: Windows, 1: Windows","2512"
"10:46:25.8943863 AM","firefox.exe","7384","CloseFile","C:\","0.0000081","","2512"
"10:46:25.8946142 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000192","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8946564 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000201","Filter: System32, 1: System32","2512"
"10:46:25.8946978 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000072","","2512"
"10:46:25.8948855 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000196","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8949282 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\kernel32.dll","0.0000256","Filter: kernel32.dll, 1: kernel32.dll","2512"
"10:46:25.8949815 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000077","","2512"
"10:46:25.8952281 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000261","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8953037 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel32.dll","0.0000072","AllocationSize: 720,896, EndOfFile: 719,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.8953395 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel32.dll","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:25.8953651 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel32.dll","0.0000043","AllocationSize: 720,896, EndOfFile: 719,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.8954043 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel32.dll","0.0000035","SyncType: SyncTypeOther","2512"
"10:46:25.8955106 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000111","","2512"
"10:46:25.8957802 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000248","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8958600 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel32.dll","0.0000073","AllocationSize: 720,896, EndOfFile: 719,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.8959006 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel32.dll","0.0000059","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:25.8959321 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel32.dll","0.0000107","AllocationSize: 720,896, EndOfFile: 719,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.8966434 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel32.dll","0.0000158","SyncType: SyncTypeOther","2512"
"10:46:25.8969254 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel32.dll","0.0000090","AllocationSize: 720,896, EndOfFile: 719,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.8969621 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000179","","2512"
"10:46:25.8973598 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000175","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8974080 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel32.dll","0.0000025","AllocationSize: 720,896, EndOfFile: 719,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.8974229 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel32.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:25.8974404 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel32.dll","0.0000017","AllocationSize: 720,896, EndOfFile: 719,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.8974617 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel32.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:25.8978722 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000060","","2512"
"10:46:25.8983078 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8983411 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000034","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:25.8983539 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000047","","2512"
"10:46:25.8985485 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8985779 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000026","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:25.8985890 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000043","","2512"
"10:46:25.8987929 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8988202 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000026","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:25.8988305 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000043","","2512"
"10:46:25.8988668 AM","firefox.exe","7384","CreateFile","C:\","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8988894 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000132","Filter: Windows, 1: Windows","2512"
"10:46:25.8989145 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:25.8990080 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8990306 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:25.8990519 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:25.8991518 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8991731 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\kernel32.dll","0.0000115","Filter: kernel32.dll, 1: kernel32.dll","2512"
"10:46:25.8991949 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:25.8993834 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\KERNEL32.DLL","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2512"
"10:46:25.8995972 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8996309 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000030","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","2512"
"10:46:25.8996424 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000047","","2512"
"10:46:25.8996783 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8996979 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:25.8997188 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:25.8998088 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8998302 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:25.8998506 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:25.8999437 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.8999650 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\advapi32.dll","0.0000119","Filter: advapi32.dll, 1: advapi32.dll","2512"
"10:46:25.8999872 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:25.9001625 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9001911 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000030","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","2512"
"10:46:25.9002018 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000038","","2512"
"10:46:25.9002346 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9002526 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:25.9002722 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:25.9003609 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000099","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9003818 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:25.9004010 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:25.9004924 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9005128 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\advapi32.dll","0.0000116","Filter: advapi32.dll, 1: advapi32.dll","2512"
"10:46:25.9005342 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:25.9006442 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9006801 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\advapi32.dll","0.0000030","AllocationSize: 647,168, EndOfFile: 645,320, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9006972 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\advapi32.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:25.9007100 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\advapi32.dll","0.0000021","AllocationSize: 647,168, EndOfFile: 645,320, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9007330 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\advapi32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:25.9007996 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000055","","2512"
"10:46:25.9009220 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9009596 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\advapi32.dll","0.0000029","AllocationSize: 647,168, EndOfFile: 645,320, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9009745 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\advapi32.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:25.9009860 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\advapi32.dll","0.0000021","AllocationSize: 647,168, EndOfFile: 645,320, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9010044 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\advapi32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:25.9010611 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\advapi32.dll","0.0000021","AllocationSize: 647,168, EndOfFile: 645,320, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9010739 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000051","","2512"
"10:46:25.9011942 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9012292 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\advapi32.dll","0.0000026","AllocationSize: 647,168, EndOfFile: 645,320, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9012424 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\advapi32.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:25.9012540 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\advapi32.dll","0.0000017","AllocationSize: 647,168, EndOfFile: 645,320, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9012714 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\advapi32.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:25.9016648 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000052","","2512"
"10:46:25.9021414 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9021820 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000034","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","2512"
"10:46:25.9021948 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000051","","2512"
"10:46:25.9025455 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9025894 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000034","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","2512"
"10:46:25.9026069 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000051","","2512"
"10:46:25.9028706 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9029047 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000030","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","2512"
"10:46:25.9029175 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000047","","2512"
"10:46:25.9029593 AM","firefox.exe","7384","CreateFile","C:\","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9029815 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000133","Filter: Windows, 1: Windows","2512"
"10:46:25.9030080 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:25.9031087 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9031321 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000116","Filter: System32, 1: System32","2512"
"10:46:25.9031552 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:25.9032738 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9032973 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\advapi32.dll","0.0000136","Filter: advapi32.dll, 1: advapi32.dll","2512"
"10:46:25.9033224 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000043","","2512"
"10:46:25.9035388 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9035887 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000034","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:25.9036011 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000046","","2512"
"10:46:25.9036390 AM","firefox.exe","7384","CreateFile","C:\","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9036599 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000103","Filter: Windows, 1: Windows","2512"
"10:46:25.9036813 AM","firefox.exe","7384","CloseFile","C:\","0.0000042","","2512"
"10:46:25.9037790 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9038024 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000099","Filter: System32, 1: System32","2512"
"10:46:25.9038229 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000043","","2512"
"10:46:25.9039343 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9039565 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\msvcrt.dll","0.0000115","Filter: msvcrt.dll, 1: msvcrt.dll","2512"
"10:46:25.9039795 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:25.9041830 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9042210 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:25.9042334 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000081","","2512"
"10:46:25.9042782 AM","firefox.exe","7384","CreateFile","C:\","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9043016 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000120","Filter: Windows, 1: Windows","2512"
"10:46:25.9043255 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:25.9044322 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9044548 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:25.9044774 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000043","","2512"
"10:46:25.9045811 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000120","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9046059 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\msvcrt.dll","0.0000132","Filter: msvcrt.dll, 1: msvcrt.dll","2512"
"10:46:25.9046297 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000043","","2512"
"10:46:25.9048559 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000153","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9049037 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcrt.dll","0.0000030","AllocationSize: 638,976, EndOfFile: 636,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9049207 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcrt.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:25.9049335 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcrt.dll","0.0000017","AllocationSize: 638,976, EndOfFile: 636,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9049549 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcrt.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:25.9050056 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000056","","2512"
"10:46:25.9051464 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9051857 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcrt.dll","0.0000047","AllocationSize: 638,976, EndOfFile: 636,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9052070 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcrt.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:25.9052207 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcrt.dll","0.0000021","AllocationSize: 638,976, EndOfFile: 636,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9052399 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcrt.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:25.9052975 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcrt.dll","0.0000021","AllocationSize: 638,976, EndOfFile: 636,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9053107 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000056","","2512"
"10:46:25.9054613 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9054997 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcrt.dll","0.0000026","AllocationSize: 638,976, EndOfFile: 636,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9055134 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcrt.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:25.9055245 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcrt.dll","0.0000021","AllocationSize: 638,976, EndOfFile: 636,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9055441 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcrt.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:25.9059545 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000056","","2512"
"10:46:25.9063671 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9064004 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:25.9064128 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000047","","2512"
"10:46:25.9066120 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9066462 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:25.9066573 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000042","","2512"
"10:46:25.9068796 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9069073 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:25.9069184 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000043","","2512"
"10:46:25.9069547 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9069760 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000136","Filter: Windows, 1: Windows","2512"
"10:46:25.9070012 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:25.9070946 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9071164 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000106","Filter: System32, 1: System32","2512"
"10:46:25.9071377 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:25.9072311 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9072520 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\msvcrt.dll","0.0000120","Filter: msvcrt.dll, 1: msvcrt.dll","2512"
"10:46:25.9072742 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:25.9074888 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9075196 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:25.9075302 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000043","","2512"
"10:46:25.9075639 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9075823 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:25.9076023 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:25.9077005 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9077218 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:25.9077414 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:25.9078438 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9078643 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\sechost.dll","0.0000120","Filter: sechost.dll, 1: sechost.dll","2512"
"10:46:25.9078865 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:25.9080691 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9080986 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000025","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:25.9081092 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000039","","2512"
"10:46:25.9081421 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9081600 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000107","Filter: Windows, 1: Windows","2512"
"10:46:25.9081809 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:25.9082684 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9082888 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:25.9083085 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:25.9083981 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9084186 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\sechost.dll","0.0000106","Filter: sechost.dll, 1: sechost.dll","2512"
"10:46:25.9084399 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000047","","2512"
"10:46:25.9085530 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000166","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9086024 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\sechost.dll","0.0000047","AllocationSize: 368,640, EndOfFile: 368,448, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9086268 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\sechost.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:25.9086447 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\sechost.dll","0.0000034","AllocationSize: 368,640, EndOfFile: 368,448, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9086763 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\sechost.dll","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:25.9087462 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000073","","2512"
"10:46:25.9089156 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9089549 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\sechost.dll","0.0000030","AllocationSize: 368,640, EndOfFile: 368,448, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9089719 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\sechost.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:25.9089839 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\sechost.dll","0.0000017","AllocationSize: 368,640, EndOfFile: 368,448, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9090031 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\sechost.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:25.9090547 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\sechost.dll","0.0000017","AllocationSize: 368,640, EndOfFile: 368,448, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9090675 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000056","","2512"
"10:46:25.9091917 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9092262 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\sechost.dll","0.0000026","AllocationSize: 368,640, EndOfFile: 368,448, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9092395 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\sechost.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:25.9092506 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\sechost.dll","0.0000021","AllocationSize: 368,640, EndOfFile: 368,448, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9092689 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\sechost.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:25.9095996 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000055","","2512"
"10:46:25.9099558 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9099874 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:25.9099994 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000042","","2512"
"10:46:25.9101875 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9102157 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000025","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:25.9102263 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000043","","2512"
"10:46:25.9104213 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9104482 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000021","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:25.9104580 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000043","","2512"
"10:46:25.9104922 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9105122 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000115","Filter: Windows, 1: Windows","2512"
"10:46:25.9105352 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:25.9106257 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9106492 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:25.9106696 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:25.9107618 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9107831 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\sechost.dll","0.0000111","Filter: sechost.dll, 1: sechost.dll","2512"
"10:46:25.9108045 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:25.9110029 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9110327 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000030","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","2512"
"10:46:25.9110434 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000043","","2512"
"10:46:25.9110763 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9110950 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:25.9111185 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:25.9112072 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000099","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9112277 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:25.9112474 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:25.9113378 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9113587 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\rpcrt4.dll","0.0000107","Filter: rpcrt4.dll, 1: rpcrt4.dll","2512"
"10:46:25.9113792 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:25.9115464 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9115742 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000030","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","2512"
"10:46:25.9115844 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000043","","2512"
"10:46:25.9116164 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9116343 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000090","Filter: Windows, 1: Windows","2512"
"10:46:25.9116535 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:25.9117402 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9117602 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:25.9117794 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:25.9118810 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9119014 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\rpcrt4.dll","0.0000107","Filter: rpcrt4.dll, 1: rpcrt4.dll","2512"
"10:46:25.9119223 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000035","","2512"
"10:46:25.9120277 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9120614 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000030","AllocationSize: 1,191,936, EndOfFile: 1,188,000, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9120772 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rpcrt4.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:25.9120896 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000021","AllocationSize: 1,191,936, EndOfFile: 1,188,000, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9121092 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rpcrt4.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:25.9121621 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000051","","2512"
"10:46:25.9122790 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9123144 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000030","AllocationSize: 1,191,936, EndOfFile: 1,188,000, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9123290 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rpcrt4.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:25.9123400 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000022","AllocationSize: 1,191,936, EndOfFile: 1,188,000, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9123592 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rpcrt4.dll","0.0000018","SyncType: SyncTypeOther","2512"
"10:46:25.9124177 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000017","AllocationSize: 1,191,936, EndOfFile: 1,188,000, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9124301 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000051","","2512"
"10:46:25.9125483 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000162","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9125867 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000025","AllocationSize: 1,191,936, EndOfFile: 1,188,000, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9126033 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rpcrt4.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:25.9126161 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000021","AllocationSize: 1,191,936, EndOfFile: 1,188,000, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9126366 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rpcrt4.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:25.9135450 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000136","","2512"
"10:46:25.9140796 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000324","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9141414 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000043","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","2512"
"10:46:25.9141564 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000051","","2512"
"10:46:25.9143689 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9143991 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000030","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","2512"
"10:46:25.9144115 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000043","","2512"
"10:46:25.9146155 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9146432 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000030","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","2512"
"10:46:25.9146543 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000043","","2512"
"10:46:25.9146910 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9147136 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000137","Filter: Windows, 1: Windows","2512"
"10:46:25.9147388 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:25.9148335 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9148561 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:25.9148783 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:25.9149747 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9149961 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\rpcrt4.dll","0.0000115","Filter: rpcrt4.dll, 1: rpcrt4.dll","2512"
"10:46:25.9150178 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:25.9152384 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9152695 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000030","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:25.9152806 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000047","","2512"
"10:46:25.9153152 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9153344 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:25.9153549 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:25.9154449 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9154662 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:25.9154863 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:25.9155776 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9155985 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\ucrtbase.dll","0.0000111","Filter: ucrtbase.dll, 1: ucrtbase.dll","2512"
"10:46:25.9156198 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:25.9158012 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9158289 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000030","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:25.9158396 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000038","","2512"
"10:46:25.9158724 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9158903 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:25.9159095 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:25.9159991 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9160196 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:25.9160388 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:25.9161301 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9161498 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\ucrtbase.dll","0.0000102","Filter: ucrtbase.dll, 1: ucrtbase.dll","2512"
"10:46:25.9161698 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:25.9162778 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9163136 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000030","AllocationSize: 1,015,808, EndOfFile: 1,014,344, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9163311 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ucrtbase.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:25.9163439 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000021","AllocationSize: 1,015,808, EndOfFile: 1,014,344, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9163644 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ucrtbase.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:25.9164215 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000052","","2512"
"10:46:25.9165431 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9165897 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000025","AllocationSize: 1,015,808, EndOfFile: 1,014,344, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9166063 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ucrtbase.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:25.9166182 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000017","AllocationSize: 1,015,808, EndOfFile: 1,014,344, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9166374 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ucrtbase.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:25.9166955 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000021","AllocationSize: 1,015,808, EndOfFile: 1,014,344, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9167083 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000051","","2512"
"10:46:25.9168269 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9168614 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000026","AllocationSize: 1,015,808, EndOfFile: 1,014,344, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9168747 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ucrtbase.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:25.9168853 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000017","AllocationSize: 1,015,808, EndOfFile: 1,014,344, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9169037 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ucrtbase.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:25.9173675 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000051","","2512"
"10:46:25.9178065 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9178381 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000030","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:25.9178500 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000047","","2512"
"10:46:25.9180352 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9180629 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000026","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:25.9180736 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000043","","2512"
"10:46:25.9182682 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9182950 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000047","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:25.9183078 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000052","","2512"
"10:46:25.9183480 AM","firefox.exe","7384","CreateFile","C:\","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9183689 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000106","Filter: Windows, 1: Windows","2512"
"10:46:25.9183915 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:25.9184841 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9185058 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:25.9185276 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:25.9186202 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9186415 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\ucrtbase.dll","0.0000107","Filter: ucrtbase.dll, 1: ucrtbase.dll","2512"
"10:46:25.9186628 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:25.9188655 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9188873 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:25.9188975 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000043","","2512"
"10:46:25.9189948 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9190161 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000103","Filter: mozglue.dll, 1: mozglue.dll","2512"
"10:46:25.9190370 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000039","","2512"
"10:46:25.9192017 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9192213 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:25.9192312 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000038","","2512"
"10:46:25.9193225 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9193434 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000094","Filter: mozglue.dll, 1: mozglue.dll","2512"
"10:46:25.9193638 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000035","","2512"
"10:46:25.9194667 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000106","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9194918 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000026","AllocationSize: 569,344, EndOfFile: 566,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:25.9195068 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:25.9195187 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000022","AllocationSize: 569,344, EndOfFile: 566,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:25.9195384 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:25.9195849 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000051","","2512"
"10:46:25.9197001 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9197261 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000025","AllocationSize: 569,344, EndOfFile: 566,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:25.9197393 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:25.9197504 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000017","AllocationSize: 569,344, EndOfFile: 566,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:25.9197683 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:25.9198127 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0641780","Offset: 536,576, Length: 30,408, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:25.9693692 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0008952","Offset: 316,416, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.9706497 AM","firefox.exe","7384","CreateFile","C:\","0.0001135","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.9708873 AM","firefox.exe","7384","QueryNameInformationFile","C:\","0.0000222","Name: \","5728"
"10:46:25.9709978 AM","firefox.exe","7384","QueryInformationVolume","C:\","0.0000120","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Windows","5728"
"10:46:25.9710708 AM","firefox.exe","7384","QueryAttributeInformationVolume","C:\","0.0000081","FileSystemAttributes: Case Preserved, Case Sensitive, Unicode, ACLs, Compression, Named Streams, EFS, Object IDs, Reparse Points, Sparse Files, Quotas, Transactions, 0x3c00600, MaximumComponentNameLength: 255, FileSystemName: NTFS","5728"
"10:46:25.9711433 AM","firefox.exe","7384","CloseFile","C:\","0.0000307","","5728"
"10:46:25.9713891 AM","firefox.exe","7384","CreateFile","C:\","0.0000431","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.9714945 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\","0.0000106","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,870, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5728"
"10:46:25.9715585 AM","firefox.exe","7384","CloseFile","C:\","0.0000158","","5728"
"10:46:25.9718004 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0008439","Offset: 17,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.9727634 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0006067","Offset: 17,408, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.9736858 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0009575","Offset: 254,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.9747811 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0098479","Offset: 242,688, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.9843218 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000260","AllocationSize: 569,344, EndOfFile: 566,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:25.9844404 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000469","","2512"
"10:46:25.9851231 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0005363","Offset: 156,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.9853885 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000716","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9855549 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000149","AllocationSize: 569,344, EndOfFile: 566,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:25.9856364 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000132","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:25.9857008 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000111","AllocationSize: 569,344, EndOfFile: 566,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:25.9857968 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0005086","Offset: 140,288, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:25.9858011 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000076","SyncType: SyncTypeOther","2512"
"10:46:25.9871259 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000302","","2512"
"10:46:25.9875022 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Cryptography\Providers","0.0000298","Desired Access: Read","2512"
"10:46:25.9876016 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Cryptography\Providers","0.0000230","Desired Access: Read","2512"
"10:46:25.9876993 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0002824","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.9877129 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Cryptography\Providers","0.0000069","","2512"
"10:46:25.9877842 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Cryptography\Configuration","0.0000269","Desired Access: Read","2512"
"10:46:25.9878640 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Cryptography\Configuration","0.0000162","Desired Access: Read","2512"
"10:46:25.9879433 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Cryptography\Configuration","0.0000052","","2512"
"10:46:25.9880850 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000192","CreationTime: 6/19/2019 4:53:43 PM, LastAccessTime: 6/19/2019 4:53:43 PM, LastWriteTime: 3/26/2020 10:27:31 AM, ChangeTime: 3/26/2020 10:27:31 AM, AllocationSize: 229376, EndOfFile: 229376, FileAttributes: A","5728"
"10:46:25.9881861 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000278","","5728"
"10:46:25.9894119 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000709","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:25.9895497 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000372","CreationTime: 6/19/2019 4:53:43 PM, LastAccessTime: 6/19/2019 4:53:43 PM, LastWriteTime: 3/26/2020 10:27:31 AM, ChangeTime: 3/26/2020 10:27:31 AM, AllocationSize: 229376, EndOfFile: 229376, FileAttributes: A","5728"
"10:46:25.9895672 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000896","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9896534 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000295","","5728"
"10:46:25.9897319 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000205","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:25.9897998 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000243","","2512"
"10:46:25.9904760 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0001242","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5728"
"10:46:25.9907022 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000499","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9907939 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000115","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:25.9908071 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0152457","Offset: 0, Length: 100, Priority: Normal","5728"
"10:46:25.9908438 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000252","","2512"
"10:46:25.9909915 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\LQ450C~1.TES\cert9.db","0.0149815","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:25.9917710 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000461","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9918550 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000107","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:25.9918986 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000166","","2512"
"10:46:25.9923231 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000435","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9924229 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000491","Filter: mozglue.dll, 1: mozglue.dll","2512"
"10:46:25.9925245 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000170","","2512"
"10:46:25.9935498 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000622","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9937016 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000146","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:25.9937541 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000214","","2512"
"10:46:25.9939278 AM","firefox.exe","7384","CreateFile","C:\","0.0000435","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9940276 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000542","Filter: Windows, 1: Windows","2512"
"10:46:25.9941347 AM","firefox.exe","7384","CloseFile","C:\","0.0000196","","2512"
"10:46:25.9945520 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000431","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9946446 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000426","Filter: System32, 1: System32","2512"
"10:46:25.9947320 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000154","","2512"
"10:46:25.9951246 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000431","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9952172 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\crypt32.dll","0.0000503","Filter: crypt32.dll, 1: crypt32.dll","2512"
"10:46:25.9953119 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000149","","2512"
"10:46:25.9960679 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000517","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9961942 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000120","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:25.9962382 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000179","","2512"
"10:46:25.9963837 AM","firefox.exe","7384","CreateFile","C:\","0.0000341","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9964716 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000546","Filter: Windows, 1: Windows","2512"
"10:46:25.9971239 AM","firefox.exe","7384","CloseFile","C:\","0.0000483","","2512"
"10:46:25.9978036 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000568","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9979261 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000550","Filter: System32, 1: System32","2512"
"10:46:25.9980409 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000192","","2512"
"10:46:25.9984833 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000508","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9985900 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\crypt32.dll","0.0000593","Filter: crypt32.dll, 1: crypt32.dll","2512"
"10:46:25.9986992 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000175","","2512"
"10:46:25.9991975 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000585","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:25.9993644 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\crypt32.dll","0.0000149","AllocationSize: 1,961,984, EndOfFile: 1,960,688, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9995231 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\crypt32.dll","0.0000205","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:25.9996020 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\crypt32.dll","0.0000128","AllocationSize: 1,961,984, EndOfFile: 1,960,688, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:25.9997036 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\crypt32.dll","0.0000081","SyncType: SyncTypeOther","2512"
"10:46:26.0000018 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000299","","2512"
"10:46:26.0005659 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000571","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0007353 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\crypt32.dll","0.0000128","AllocationSize: 1,961,984, EndOfFile: 1,960,688, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.0007975 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\crypt32.dll","0.0000090","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.0008441 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\crypt32.dll","0.0000081","AllocationSize: 1,961,984, EndOfFile: 1,960,688, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.0009204 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\crypt32.dll","0.0000064","SyncType: SyncTypeOther","2512"
"10:46:26.0012110 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\crypt32.dll","0.0000089","AllocationSize: 1,961,984, EndOfFile: 1,960,688, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.0012656 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000239","","2512"
"10:46:26.0018361 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000601","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0020003 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\crypt32.dll","0.0000111","AllocationSize: 1,961,984, EndOfFile: 1,960,688, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.0020579 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\crypt32.dll","0.0000098","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.0021049 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\crypt32.dll","0.0000076","AllocationSize: 1,961,984, EndOfFile: 1,960,688, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.0021795 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\crypt32.dll","0.0000060","SyncType: SyncTypeOther","2512"
"10:46:26.0049196 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000256","","2512"
"10:46:26.0064923 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000277","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:26.0066309 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000111","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:26.0067376 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000103","Offset: 1,073,741,824, Length: 1","5728"
"10:46:26.0078077 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000695","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0079959 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000204","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:26.0080402 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000994","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:26.0080837 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000265","","2512"
"10:46:26.0092421 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000662","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:26.0094192 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000231","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:26.0094619 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000977","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0095971 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0240479","Offset: 0, Length: 32,768","5728"
"10:46:26.0097042 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000214","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:26.0097947 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000281","","2512"
"10:46:26.0107662 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000559","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0109006 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000132","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:26.0109480 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000187","","2512"
"10:46:26.0111058 AM","firefox.exe","7384","CreateFile","C:\","0.0000384","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0111963 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000508","Filter: Windows, 1: Windows","2512"
"10:46:26.0112987 AM","firefox.exe","7384","CloseFile","C:\","0.0000175","","2512"
"10:46:26.0116993 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000453","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0117945 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000439","Filter: System32, 1: System32","2512"
"10:46:26.0118845 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000175","","2512"
"10:46:26.0122873 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000426","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0123790 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\crypt32.dll","0.0000521","Filter: crypt32.dll, 1: crypt32.dll","2512"
"10:46:26.0124759 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000157","","2512"
"10:46:26.0139820 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000636","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0141356 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000363","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:26.0142128 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000235","","2512"
"10:46:26.0143954 AM","firefox.exe","7384","CreateFile","C:\","0.0000427","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0144961 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000555","Filter: Windows, 1: Windows","2512"
"10:46:26.0146241 AM","firefox.exe","7384","CloseFile","C:\","0.0000192","","2512"
"10:46:26.0150935 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0001301","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0152756 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000440","Filter: System32, 1: System32","2512"
"10:46:26.0153657 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000166","","2512"
"10:46:26.0157629 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000418","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0158538 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\msasn1.dll","0.0000499","Filter: msasn1.dll, 1: msasn1.dll","2512"
"10:46:26.0159464 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000158","","2512"
"10:46:26.0167037 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000516","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0168279 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000128","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:26.0168735 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000188","","2512"
"10:46:26.0170160 AM","firefox.exe","7384","CreateFile","C:\","0.0000342","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0170945 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000401","Filter: Windows, 1: Windows","2512"
"10:46:26.0171782 AM","firefox.exe","7384","CloseFile","C:\","0.0000157","","2512"
"10:46:26.0175553 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000410","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0176432 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000393","Filter: System32, 1: System32","2512"
"10:46:26.0177243 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000154","","2512"
"10:46:26.0181087 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000410","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0181970 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\msasn1.dll","0.0000465","Filter: msasn1.dll, 1: msasn1.dll","2512"
"10:46:26.0182858 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000158","","2512"
"10:46:26.0187496 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000512","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0188993 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msasn1.dll","0.0000128","AllocationSize: 65,536, EndOfFile: 65,184, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.0189685 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msasn1.dll","0.0000110","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.0190188 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msasn1.dll","0.0000090","AllocationSize: 65,536, EndOfFile: 65,184, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.0190986 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msasn1.dll","0.0000064","SyncType: SyncTypeOther","2512"
"10:46:26.0192846 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000235","","2512"
"10:46:26.0197979 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000520","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0199549 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msasn1.dll","0.0000115","AllocationSize: 65,536, EndOfFile: 65,184, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.0200151 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msasn1.dll","0.0000098","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.0200599 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msasn1.dll","0.0000076","AllocationSize: 65,536, EndOfFile: 65,184, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.0201345 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msasn1.dll","0.0000064","SyncType: SyncTypeOther","2512"
"10:46:26.0203432 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msasn1.dll","0.0000081","AllocationSize: 65,536, EndOfFile: 65,184, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.0203969 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000231","","2512"
"10:46:26.0209324 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000538","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0210839 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msasn1.dll","0.0000102","AllocationSize: 65,536, EndOfFile: 65,184, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.0211381 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msasn1.dll","0.0000093","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.0211820 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msasn1.dll","0.0000068","AllocationSize: 65,536, EndOfFile: 65,184, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.0212537 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msasn1.dll","0.0000055","SyncType: SyncTypeOther","2512"
"10:46:26.0223246 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000231","","2512"
"10:46:26.0236430 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000551","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0237753 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000128","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:26.0238235 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000196","","2512"
"10:46:26.0246162 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000500","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0247357 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000115","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:26.0247797 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000175","","2512"
"10:46:26.0256262 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000486","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0257439 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000115","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:26.0257870 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000171","","2512"
"10:46:26.0259295 AM","firefox.exe","7384","CreateFile","C:\","0.0000363","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0260153 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000452","Filter: Windows, 1: Windows","2512"
"10:46:26.0261083 AM","firefox.exe","7384","CloseFile","C:\","0.0000162","","2512"
"10:46:26.0264996 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000409","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0265909 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000422","Filter: System32, 1: System32","2512"
"10:46:26.0266788 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000162","","2512"
"10:46:26.0270704 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000491","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0271703 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\msasn1.dll","0.0000525","Filter: msasn1.dll, 1: msasn1.dll","2512"
"10:46:26.0272680 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000217","","2512"
"10:46:26.0285130 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000593","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0286508 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000132","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:26.0286977 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000192","","2512"
"10:46:26.0288475 AM","firefox.exe","7384","CreateFile","C:\","0.0000354","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0289307 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000435","Filter: Windows, 1: Windows","2512"
"10:46:26.0290207 AM","firefox.exe","7384","CloseFile","C:\","0.0000162","","2512"
"10:46:26.0294154 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000431","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0295076 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000439","Filter: System32, 1: System32","2512"
"10:46:26.0295976 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000158","","2512"
"10:46:26.0308524 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000738","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0310137 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wintrust.dll","0.0000730","Filter: wintrust.dll, 1: wintrust.dll","2512"
"10:46:26.0311600 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000282","","2512"
"10:46:26.0322689 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000645","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0324285 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000150","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:26.0324848 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000222","","2512"
"10:46:26.0326530 AM","firefox.exe","7384","CreateFile","C:\","0.0000418","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0327472 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000491","Filter: Windows, 1: Windows","2512"
"10:46:26.0328467 AM","firefox.exe","7384","CloseFile","C:\","0.0000183","","2512"
"10:46:26.0332520 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000461","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0333497 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000457","Filter: System32, 1: System32","2512"
"10:46:26.0334431 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000175","","2512"
"10:46:26.0338250 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000175","Exclusive: True, Offset: 1,073,741,825, Length: 1, Fail Immediately: True","5728"
"10:46:26.0339991 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000491","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0341019 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wintrust.dll","0.0000563","Filter: wintrust.dll, 1: wintrust.dll","2512"
"10:46:26.0342064 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000175","","2512"
"10:46:26.0346920 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000567","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0348563 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wintrust.dll","0.0000157","AllocationSize: 352,256, EndOfFile: 349,656, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.0349309 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wintrust.dll","0.0000111","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.0349808 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wintrust.dll","0.0000086","AllocationSize: 352,256, EndOfFile: 349,656, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.0350576 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wintrust.dll","0.0000060","SyncType: SyncTypeOther","2512"
"10:46:26.0352232 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000119","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:26.0352718 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000256","","2512"
"10:46:26.0353124 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000076","Offset: 1,073,741,826, Length: 510","5728"
"10:46:26.0353802 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:26.0354438 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 1,073,741,826, Length: 510","5728"
"10:46:26.0354992 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:26.0355517 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 1,073,741,825, Length: 1","5728"
"10:46:26.0356012 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 1,073,741,824, Length: 1","5728"
"10:46:26.0356541 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 1,073,741,826, Length: 510","5728"
"10:46:26.0358222 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000564","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0359929 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wintrust.dll","0.0000119","AllocationSize: 352,256, EndOfFile: 349,656, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.0360560 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wintrust.dll","0.0000094","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.0361038 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wintrust.dll","0.0000081","AllocationSize: 352,256, EndOfFile: 349,656, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.0361823 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wintrust.dll","0.0000060","SyncType: SyncTypeOther","2512"
"10:46:26.0363662 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\wintrust.dll","0.0254849","Offset: 319,488, Length: 30,168, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:26.0367251 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0010338","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:26.0379257 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000239","CreationTime: 6/19/2019 4:53:43 PM, LastAccessTime: 6/19/2019 4:53:43 PM, LastWriteTime: 6/19/2019 4:53:44 PM, ChangeTime: 6/19/2019 4:53:44 PM, AllocationSize: 294912, EndOfFile: 294912, FileAttributes: A","5728"
"10:46:26.0380405 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000367","","5728"
"10:46:26.0392829 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000721","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:26.0394233 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000132","CreationTime: 6/19/2019 4:53:43 PM, LastAccessTime: 6/19/2019 4:53:43 PM, LastWriteTime: 6/19/2019 4:53:44 PM, ChangeTime: 6/19/2019 4:53:44 PM, AllocationSize: 294912, EndOfFile: 294912, FileAttributes: A","5728"
"10:46:26.0394950 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000205","","5728"
"10:46:26.0400300 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000896","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5728"
"10:46:26.0402749 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0146689","Offset: 0, Length: 100, Priority: Normal","5728"
"10:46:26.0404383 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\LQ450C~1.TES\key4.db","0.0144415","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:26.0552279 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000162","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:26.0552936 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000047","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:26.0553371 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000039","Offset: 1,073,741,824, Length: 1","5728"
"10:46:26.0560480 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-journal","0.0000431","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:26.0565971 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-wal","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:26.0566888 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000162","AllocationSize: 294,912, EndOfFile: 294,912, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:26.0568079 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0175714","Offset: 0, Length: 32,768","5728"
"10:46:26.0620187 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wintrust.dll","0.0000141","AllocationSize: 352,256, EndOfFile: 349,656, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.0620815 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000251","","2512"
"10:46:26.0625798 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000542","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0627458 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wintrust.dll","0.0000111","AllocationSize: 352,256, EndOfFile: 349,656, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.0628059 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wintrust.dll","0.0000099","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.0628465 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wintrust.dll","0.0000055","AllocationSize: 352,256, EndOfFile: 349,656, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.0628985 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wintrust.dll","0.0000043","SyncType: SyncTypeOther","2512"
"10:46:26.0641214 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000281","","2512"
"10:46:26.0651377 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000380","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0652324 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000090","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:26.0652670 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000119","","2512"
"10:46:26.0657491 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000311","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0658246 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000073","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:26.0658532 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000098","","2512"
"10:46:26.0663456 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000281","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0664138 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000069","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:26.0664399 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000098","","2512"
"10:46:26.0665299 AM","firefox.exe","7384","CreateFile","C:\","0.0000256","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0665854 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000303","Filter: Windows, 1: Windows","2512"
"10:46:26.0666438 AM","firefox.exe","7384","CloseFile","C:\","0.0000103","","2512"
"10:46:26.0668789 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000256","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0669340 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000277","Filter: System32, 1: System32","2512"
"10:46:26.0669886 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000094","","2512"
"10:46:26.0672237 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000243","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0672761 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wintrust.dll","0.0000286","Filter: wintrust.dll, 1: wintrust.dll","2512"
"10:46:26.0673303 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000090","","2512"
"10:46:26.0678632 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000320","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0679187 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000073","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","2512"
"10:46:26.0679447 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000103","","2512"
"10:46:26.0680271 AM","firefox.exe","7384","CreateFile","C:\","0.0000205","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0680736 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000239","Filter: Windows, 1: Windows","2512"
"10:46:26.0681231 AM","firefox.exe","7384","CloseFile","C:\","0.0000089","","2512"
"10:46:26.0683428 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000239","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0683940 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000235","Filter: System32, 1: System32","2512"
"10:46:26.0684426 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000090","","2512"
"10:46:26.0686658 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000243","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0687174 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\msvcp140.dll","0.0000295","Filter: msvcp140.dll, 1: msvcp140.dll","2512"
"10:46:26.0687725 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000093","","2512"
"10:46:26.0691906 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0692409 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000064","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","2512"
"10:46:26.0692653 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000102","","2512"
"10:46:26.0693446 AM","firefox.exe","7384","CreateFile","C:\","0.0000184","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0693877 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000226","Filter: Windows, 1: Windows","2512"
"10:46:26.0694347 AM","firefox.exe","7384","CloseFile","C:\","0.0000089","","2512"
"10:46:26.0696518 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000226","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0697013 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000231","Filter: System32, 1: System32","2512"
"10:46:26.0697500 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000089","","2512"
"10:46:26.0699727 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000234","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0700230 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\msvcp140.dll","0.0000282","Filter: msvcp140.dll, 1: msvcp140.dll","2512"
"10:46:26.0700755 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000090","","2512"
"10:46:26.0703575 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000303","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0704254 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp140.dll","0.0000068","AllocationSize: 679,936, EndOfFile: 675,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:26.0704642 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000068","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.0704936 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp140.dll","0.0000047","AllocationSize: 679,936, EndOfFile: 675,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:26.0705406 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000038","SyncType: SyncTypeOther","2512"
"10:46:26.0706613 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000137","","2512"
"10:46:26.0709660 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000285","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0710347 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp140.dll","0.0000068","AllocationSize: 679,936, EndOfFile: 675,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:26.0710692 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000056","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.0710961 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp140.dll","0.0000043","AllocationSize: 679,936, EndOfFile: 675,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:26.0711405 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000038","SyncType: SyncTypeOther","2512"
"10:46:26.0712779 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp140.dll","0.0000046","AllocationSize: 679,936, EndOfFile: 675,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:26.0713077 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000132","","2512"
"10:46:26.0716512 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000299","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0717177 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp140.dll","0.0000060","AllocationSize: 679,936, EndOfFile: 675,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:26.0717493 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000056","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.0717753 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp140.dll","0.0000039","AllocationSize: 679,936, EndOfFile: 675,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:26.0718189 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000038","SyncType: SyncTypeOther","2512"
"10:46:26.0721205 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\msvcp140.dll","0.0007872","Offset: 647,168, Length: 28,816, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:26.0737913 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000282","","2512"
"10:46:26.0745056 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000124","Exclusive: True, Offset: 1,073,741,825, Length: 1, Fail Immediately: True","5728"
"10:46:26.0748849 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000414","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0749591 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000090","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","2512"
"10:46:26.0749937 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000119","","2512"
"10:46:26.0754856 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000308","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0755407 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000072","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","2512"
"10:46:26.0755693 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000098","","2512"
"10:46:26.0755970 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000102","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:26.0756576 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000047","Offset: 1,073,741,826, Length: 510","5728"
"10:46:26.0756977 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000034","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:26.0757365 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000034","Offset: 1,073,741,826, Length: 510","5728"
"10:46:26.0757698 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000038","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:26.0758027 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000025","Offset: 1,073,741,825, Length: 1","5728"
"10:46:26.0758325 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000026","Offset: 1,073,741,824, Length: 1","5728"
"10:46:26.0758637 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000030","Offset: 1,073,741,826, Length: 510","5728"
"10:46:26.0759507 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:26.0759840 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:26.0760164 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000030","Offset: 1,073,741,824, Length: 1","5728"
"10:46:26.0760834 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0761355 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000064","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","2512"
"10:46:26.0761611 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000098","","2512"
"10:46:26.0762507 AM","firefox.exe","7384","CreateFile","C:\","0.0000221","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0763053 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000307","Filter: Windows, 1: Windows","2512"
"10:46:26.0763671 AM","firefox.exe","7384","CloseFile","C:\","0.0000103","","2512"
"10:46:26.0766300 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000260","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0766466 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-journal","0.0000414","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:26.0766859 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000268","Filter: System32, 1: System32","2512"
"10:46:26.0767418 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000098","","2512"
"10:46:26.0767490 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000141","Offset: 24, Length: 16","5728"
"10:46:26.0769892 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000265","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0770464 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\msvcp140.dll","0.0000303","Filter: msvcp140.dll, 1: msvcp140.dll","2512"
"10:46:26.0771044 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000094","","2512"
"10:46:26.0772614 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-wal","0.0000354","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:26.0773519 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000089","AllocationSize: 294,912, EndOfFile: 294,912, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:26.0774257 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0084446","Offset: 262,144, Length: 32,768","5728"
"10:46:26.0775686 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\LQ450C~1.TES\key4.db","0.0082023","Offset: 262,144, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:26.0777150 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000333","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0777717 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000073","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","2512"
"10:46:26.0777978 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000106","","2512"
"10:46:26.0778814 AM","firefox.exe","7384","CreateFile","C:\","0.0000205","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0779283 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000256","Filter: Windows, 1: Windows","2512"
"10:46:26.0779795 AM","firefox.exe","7384","CloseFile","C:\","0.0000090","","2512"
"10:46:26.0782044 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000239","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0782560 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000247","Filter: System32, 1: System32","2512"
"10:46:26.0783072 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000090","","2512"
"10:46:26.0787304 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0787804 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000068","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","2512"
"10:46:26.0788055 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000099","","2512"
"10:46:26.0788840 AM","firefox.exe","7384","CreateFile","C:\","0.0000188","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0789276 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000230","Filter: Windows, 1: Windows","2512"
"10:46:26.0789749 AM","firefox.exe","7384","CloseFile","C:\","0.0000090","","2512"
"10:46:26.0791917 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000230","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0792420 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000235","Filter: System32, 1: System32","2512"
"10:46:26.0793000 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000090","","2512"
"10:46:26.0798573 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000845","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0800190 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000111","AllocationSize: 90,112, EndOfFile: 89,248, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:26.0800732 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000077","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.0801107 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000047","AllocationSize: 90,112, EndOfFile: 89,248, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:26.0801641 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000038","SyncType: SyncTypeOther","2512"
"10:46:26.0802814 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000188","","2512"
"10:46:26.0806594 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000329","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0807388 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000068","AllocationSize: 90,112, EndOfFile: 89,248, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:26.0807729 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000060","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.0808002 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000043","AllocationSize: 90,112, EndOfFile: 89,248, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:26.0808442 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000038","SyncType: SyncTypeOther","2512"
"10:46:26.0809662 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000047","AllocationSize: 90,112, EndOfFile: 89,248, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:26.0809986 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000141","","2512"
"10:46:26.0813126 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000303","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0813788 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000059","AllocationSize: 90,112, EndOfFile: 89,248, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:26.0814095 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.0814351 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000043","AllocationSize: 90,112, EndOfFile: 89,248, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:26.0814778 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000034","SyncType: SyncTypeOther","2512"
"10:46:26.0818511 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\vcruntime140.dll","0.0109090","Offset: 61,440, Length: 27,808, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:26.0860491 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0017549","Offset: 229,376, Length: 32,768","5728"
"10:46:26.0861634 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\LQ450C~1.TES\key4.db","0.0015411","Offset: 229,376, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:26.0879366 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000116","Offset: 1,073,741,826, Length: 510","5728"
"10:46:26.0880612 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000064","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:26.0881043 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000034","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:26.0881393 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000030","Offset: 1,073,741,824, Length: 1","5728"
"10:46:26.0888557 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-journal","0.0000427","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:26.0889692 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000303","Offset: 24, Length: 16","5728"
"10:46:26.0895004 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-wal","0.0000350","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:26.0895904 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000094","AllocationSize: 294,912, EndOfFile: 294,912, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:26.0896548 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000060","Offset: 1,073,741,826, Length: 510","5728"
"10:46:26.0897346 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0113225","Offset: 308,224, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:26.0935793 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000295","","2512"
"10:46:26.0945747 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000393","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0946451 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000090","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","2512"
"10:46:26.0946776 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000123","","2512"
"10:46:26.0951729 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0952263 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000068","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","2512"
"10:46:26.0952531 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000103","","2512"
"10:46:26.0957626 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0958138 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000064","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","2512"
"10:46:26.0958390 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000098","","2512"
"10:46:26.0959273 AM","firefox.exe","7384","CreateFile","C:\","0.0000217","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0959793 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000312","Filter: Windows, 1: Windows","2512"
"10:46:26.0960391 AM","firefox.exe","7384","CloseFile","C:\","0.0000102","","2512"
"10:46:26.0966304 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000388","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0967072 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000320","Filter: System32, 1: System32","2512"
"10:46:26.0967699 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000111","","2512"
"10:46:26.0972986 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000320","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0973779 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000094","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","2512"
"10:46:26.0974078 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000111","","2512"
"10:46:26.0974953 AM","firefox.exe","7384","CreateFile","C:\","0.0000213","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0975443 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000244","Filter: Windows, 1: Windows","2512"
"10:46:26.0975947 AM","firefox.exe","7384","CloseFile","C:\","0.0000098","","2512"
"10:46:26.0978200 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000247","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0978729 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000239","Filter: System32, 1: System32","2512"
"10:46:26.0979219 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000094","","2512"
"10:46:26.0981502 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000248","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0982027 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\version.dll","0.0000294","Filter: version.dll, 1: version.dll","2512"
"10:46:26.0982573 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000090","","2512"
"10:46:26.0986946 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0987667 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000073","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","2512"
"10:46:26.0987923 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000103","","2512"
"10:46:26.0988734 AM","firefox.exe","7384","CreateFile","C:\","0.0000205","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0989191 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000221","Filter: Windows, 1: Windows","2512"
"10:46:26.0989660 AM","firefox.exe","7384","CloseFile","C:\","0.0000090","","2512"
"10:46:26.0991823 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000235","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0992327 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000226","Filter: System32, 1: System32","2512"
"10:46:26.0992813 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000085","","2512"
"10:46:26.0995057 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000235","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.0995561 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\version.dll","0.0000264","Filter: version.dll, 1: version.dll","2512"
"10:46:26.0996073 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000085","","2512"
"10:46:26.0999721 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000320","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.1000642 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\version.dll","0.0000077","AllocationSize: 32,768, EndOfFile: 30,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.1001060 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\version.dll","0.0000069","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.1001363 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\version.dll","0.0000052","AllocationSize: 32,768, EndOfFile: 30,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.1001841 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\version.dll","0.0000043","SyncType: SyncTypeOther","2512"
"10:46:26.1002917 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000132","","2512"
"10:46:26.1005950 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000299","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.1006889 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\version.dll","0.0000064","AllocationSize: 32,768, EndOfFile: 30,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.1007264 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\version.dll","0.0000056","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.1007537 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\version.dll","0.0000047","AllocationSize: 32,768, EndOfFile: 30,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.1008002 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\version.dll","0.0000035","SyncType: SyncTypeOther","2512"
"10:46:26.1009163 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\version.dll","0.0000051","AllocationSize: 32,768, EndOfFile: 30,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.1009470 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000128","","2512"
"10:46:26.1012448 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000316","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.1012704 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0134179","Offset: 33,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:26.1013349 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\version.dll","0.0000059","AllocationSize: 32,768, EndOfFile: 30,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.1013677 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\version.dll","0.0000060","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.1013937 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\version.dll","0.0000047","AllocationSize: 32,768, EndOfFile: 30,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.1014415 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\version.dll","0.0000039","SyncType: SyncTypeOther","2512"
"10:46:26.1024126 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000162","","2512"
"10:46:26.1033509 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000426","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.1034643 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000116","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","2512"
"10:46:26.1035015 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000123","","2512"
"10:46:26.1040088 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000311","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.1040839 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000068","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","2512"
"10:46:26.1041116 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000107","","2512"
"10:46:26.1046189 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.1046889 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000064","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","2512"
"10:46:26.1047149 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000102","","2512"
"10:46:26.1048054 AM","firefox.exe","7384","CreateFile","C:\","0.0000268","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.1048630 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000290","Filter: Windows, 1: Windows","2512"
"10:46:26.1049312 AM","firefox.exe","7384","CloseFile","C:\","0.0000103","","2512"
"10:46:26.1051655 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000260","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.1052209 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000256","Filter: System32, 1: System32","2512"
"10:46:26.1052734 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000094","","2512"
"10:46:26.1055380 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000260","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.1055934 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\version.dll","0.0000316","Filter: version.dll, 1: version.dll","2512"
"10:46:26.1056514 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000090","","2512"
"10:46:26.1061908 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000324","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.1062671 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000073","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","2512"
"10:46:26.1062944 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000111","","2512"
"10:46:26.1063798 AM","firefox.exe","7384","CreateFile","C:\","0.0000204","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.1064276 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000260","Filter: Windows, 1: Windows","2512"
"10:46:26.1064800 AM","firefox.exe","7384","CloseFile","C:\","0.0000094","","2512"
"10:46:26.1067015 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000239","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.1067531 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000239","Filter: System32, 1: System32","2512"
"10:46:26.1068017 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000090","","2512"
"10:46:26.1070257 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000239","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.1070765 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dbghelp.dll","0.0000290","Filter: dbghelp.dll, 1: dbghelp.dll","2512"
"10:46:26.1071307 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000085","","2512"
"10:46:26.1075493 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000281","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.1076192 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000069","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","2512"
"10:46:26.1076444 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000098","","2512"
"10:46:26.1077233 AM","firefox.exe","7384","CreateFile","C:\","0.0000197","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.1077677 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000226","Filter: Windows, 1: Windows","2512"
"10:46:26.1078159 AM","firefox.exe","7384","CloseFile","C:\","0.0000086","","2512"
"10:46:26.1080301 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000231","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.1080805 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000239","Filter: System32, 1: System32","2512"
"10:46:26.1081295 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000090","","2512"
"10:46:26.1083501 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000235","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.1084009 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dbghelp.dll","0.0000277","Filter: dbghelp.dll, 1: dbghelp.dll","2512"
"10:46:26.1084534 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000089","","2512"
"10:46:26.1087192 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000294","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.1088066 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dbghelp.dll","0.0000073","AllocationSize: 1,728,512, EndOfFile: 1,728,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.1088480 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000069","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.1088788 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dbghelp.dll","0.0000051","AllocationSize: 1,728,512, EndOfFile: 1,728,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.1089291 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000043","SyncType: SyncTypeOther","2512"
"10:46:26.1090789 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000136","","2512"
"10:46:26.1093788 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000299","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.1094680 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dbghelp.dll","0.0000068","AllocationSize: 1,728,512, EndOfFile: 1,728,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.1095038 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.1095316 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dbghelp.dll","0.0000046","AllocationSize: 1,728,512, EndOfFile: 1,728,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.1095772 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000034","SyncType: SyncTypeOther","2512"
"10:46:26.1097154 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000133","","2512"
"10:46:26.1102923 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0001037","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.1104229 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000072","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:26.1104510 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000107","","2512"
"10:46:26.1109114 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.1109635 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000064","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:26.1109891 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000081","","2512"
"10:46:26.1112604 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000295","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.1113974 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\wintrust.dll","0.0258731","Offset: 140,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:26.1147655 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0109483","Offset: 9,216, Length: 28,672, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:26.1258567 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0008555","Offset: 238,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:26.1267881 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0008457","Offset: 209,920, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:26.1277763 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0005026","Offset: 532,992, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:26.1284129 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0007159","Offset: 9,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:26.1292581 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0008943","Offset: 1,024, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:26.1303081 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0013329","Offset: 50,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:26.1317187 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0011055","Offset: 50,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:26.1329590 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0130987","Offset: 467,456, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:26.1373238 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\wintrust.dll","0.0005935","Offset: 140,288, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:26.1380457 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dbghelp.dll","0.0000120","AllocationSize: 1,728,512, EndOfFile: 1,728,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.1381025 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000085","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.1381456 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dbghelp.dll","0.0000119","AllocationSize: 1,728,512, EndOfFile: 1,728,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.1382044 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000039","SyncType: SyncTypeOther","2512"
"10:46:26.1384033 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000047","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1384468 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Cryptography\OID","0.0000175","Desired Access: Read","2512"
"10:46:26.1384976 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000089","Index: 0, Name: EncodingType 0","2512"
"10:46:26.1385326 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000029","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1385616 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0","0.0000081","Desired Access: Read","2512"
"10:46:26.1386012 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0","0.0000030","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1386281 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000201","Desired Access: Read","2512"
"10:46:26.1386742 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000073","Index: 0, Name: {000C10F1-0000-0000-C000-000000000046}","2512"
"10:46:26.1387024 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1387246 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{000C10F1-0000-0000-C000-000000000046}","0.0000149","Desired Access: Read","2512"
"10:46:26.1387630 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{000C10F1-0000-0000-C000-000000000046}","0.0000064","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1387924 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{000C10F1-0000-0000-C000-000000000046}","0.0000064","Index: 0, Name: Dll, Type: REG_SZ, Length: 62, Data: C:\Windows\System32\MSISIP.DLL","2512"
"10:46:26.1388176 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{000C10F1-0000-0000-C000-000000000046}","0.0000055","Index: 1, Name: FuncName, Type: REG_SZ, Length: 50, Data: MsiSIPCreateIndirectData","2512"
"10:46:26.1388654 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{000C10F1-0000-0000-C000-000000000046}","0.0000072","","2512"
"10:46:26.1388927 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000055","Index: 1, Name: {06C9E010-38CE-11D4-A2A3-00104BD35090}","2512"
"10:46:26.1389178 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000022","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1389400 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{06C9E010-38CE-11D4-A2A3-00104BD35090}","0.0000145","Desired Access: Read","2512"
"10:46:26.1389776 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{06C9E010-38CE-11D4-A2A3-00104BD35090}","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1390010 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{06C9E010-38CE-11D4-A2A3-00104BD35090}","0.0000052","Index: 0, Name: Dll, Type: REG_SZ, Length: 62, Data: C:\Windows\System32\wshext.dll","2512"
"10:46:26.1390236 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{06C9E010-38CE-11D4-A2A3-00104BD35090}","0.0000056","Index: 1, Name: FuncName, Type: REG_SZ, Length: 38, Data: CreateIndirectData","2512"
"10:46:26.1390603 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{06C9E010-38CE-11D4-A2A3-00104BD35090}","0.0000026","","2512"
"10:46:26.1390812 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000146","Index: 2, Name: {0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1}","2512"
"10:46:26.1391158 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1391384 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1}","0.0000128","Desired Access: Read","2512"
"10:46:26.1391726 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1}","0.0000046","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1391956 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1}","0.0000051","Index: 0, Name: Dll, Type: REG_SZ, Length: 64, Data: C:\Windows\System32\AppxSip.dll","2512"
"10:46:26.1392182 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1}","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 52, Data: AppxSipCreateIndirectData","2512"
"10:46:26.1392528 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{0AC5DF4B-CE07-4DE2-B76E-23C839A09FD1}","0.0000025","","2512"
"10:46:26.1392732 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000052","Index: 3, Name: {0F5F58B3-AADE-4B9A-A434-95742D92ECEB}","2512"
"10:46:26.1392976 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1393193 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB}","0.0000124","Desired Access: Read","2512"
"10:46:26.1393526 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB}","0.0000051","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1393756 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB}","0.0000052","Index: 0, Name: Dll, Type: REG_SZ, Length: 64, Data: C:\Windows\System32\AppxSip.dll","2512"
"10:46:26.1393974 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB}","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 64, Data: AppxBundleSipCreateIndirectData","2512"
"10:46:26.1394303 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{0F5F58B3-AADE-4B9A-A434-95742D92ECEB}","0.0000025","","2512"
"10:46:26.1394503 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000051","Index: 4, Name: {1629F04E-2799-4DB5-8FE5-ACE10F17EBAB}","2512"
"10:46:26.1394746 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1394968 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB}","0.0000120","Desired Access: Read","2512"
"10:46:26.1395314 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB}","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1395540 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB}","0.0000051","Index: 0, Name: Dll, Type: REG_SZ, Length: 62, Data: C:\Windows\System32\wshext.dll","2512"
"10:46:26.1395762 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB}","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 38, Data: CreateIndirectData","2512"
"10:46:26.1396090 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{1629F04E-2799-4DB5-8FE5-ACE10F17EBAB}","0.0000022","","2512"
"10:46:26.1396291 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000051","Index: 5, Name: {1A610570-38CE-11D4-A2A3-00104BD35090}","2512"
"10:46:26.1396530 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1396752 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{1A610570-38CE-11D4-A2A3-00104BD35090}","0.0000119","Desired Access: Read","2512"
"10:46:26.1397089 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{1A610570-38CE-11D4-A2A3-00104BD35090}","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1397319 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{1A610570-38CE-11D4-A2A3-00104BD35090}","0.0000051","Index: 0, Name: Dll, Type: REG_SZ, Length: 62, Data: C:\Windows\System32\wshext.dll","2512"
"10:46:26.1397541 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{1A610570-38CE-11D4-A2A3-00104BD35090}","0.0000047","Index: 1, Name: FuncName, Type: REG_SZ, Length: 38, Data: CreateIndirectData","2512"
"10:46:26.1397865 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{1A610570-38CE-11D4-A2A3-00104BD35090}","0.0000026","","2512"
"10:46:26.1398066 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000051","Index: 6, Name: {5598CFF1-68DB-4340-B57F-1CACF88C9A51}","2512"
"10:46:26.1398305 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1398527 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{5598CFF1-68DB-4340-B57F-1CACF88C9A51}","0.0000123","Desired Access: Read","2512"
"10:46:26.1398868 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{5598CFF1-68DB-4340-B57F-1CACF88C9A51}","0.0000043","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1399090 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{5598CFF1-68DB-4340-B57F-1CACF88C9A51}","0.0000047","Index: 0, Name: Dll, Type: REG_SZ, Length: 64, Data: C:\Windows\System32\AppxSip.dll","2512"
"10:46:26.1399307 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{5598CFF1-68DB-4340-B57F-1CACF88C9A51}","0.0000052","Index: 1, Name: FuncName, Type: REG_SZ, Length: 48, Data: P7SipCreateIndirectData","2512"
"10:46:26.1399627 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{5598CFF1-68DB-4340-B57F-1CACF88C9A51}","0.0000026","","2512"
"10:46:26.1399828 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000051","Index: 7, Name: {603BCC1F-4B59-4E08-B724-D2C6297EF351}","2512"
"10:46:26.1400067 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1400284 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{603BCC1F-4B59-4E08-B724-D2C6297EF351}","0.0000120","Desired Access: Read","2512"
"10:46:26.1400626 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{603BCC1F-4B59-4E08-B724-D2C6297EF351}","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1400865 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{603BCC1F-4B59-4E08-B724-D2C6297EF351}","0.0000055","Index: 0, Name: Dll, Type: REG_SZ, Length: 112, Data: C:\Windows\System32\WindowsPowerShell\v1.0\pwrshsip.dll","2512"
"10:46:26.1401091 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{603BCC1F-4B59-4E08-B724-D2C6297EF351}","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 26, Data: PsCreateHash","2512"
"10:46:26.1401441 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{603BCC1F-4B59-4E08-B724-D2C6297EF351}","0.0000025","","2512"
"10:46:26.1401646 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000051","Index: 8, Name: {9BA61D3F-E73A-11D0-8CD2-00C04FC295EE}","2512"
"10:46:26.1401884 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000022","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1402102 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE}","0.0000120","Desired Access: Read","2512"
"10:46:26.1402435 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE}","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1402657 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE}","0.0000051","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1402883 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE}","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 54, Data: CryptSIPCreateIndirectData","2512"
"10:46:26.1403190 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{9BA61D3F-E73A-11D0-8CD2-00C04FC295EE}","0.0000026","","2512"
"10:46:26.1403391 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000051","Index: 9, Name: {9F3053C5-439D-4BF7-8A77-04F0450A1D9F}","2512"
"10:46:26.1403625 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1403843 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F}","0.0000132","Desired Access: Read","2512"
"10:46:26.1404193 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F}","0.0000042","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1404415 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F}","0.0000047","Index: 0, Name: Dll, Type: REG_SZ, Length: 62, Data: C:\Windows\System32\EsdSip.dll","2512"
"10:46:26.1404632 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F}","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 34, Data: EsdSipCreateHash","2512"
"10:46:26.1404944 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{9F3053C5-439D-4BF7-8A77-04F0450A1D9F}","0.0000025","","2512"
"10:46:26.1405148 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000052","Index: 10, Name: {C689AAB8-8E78-11D0-8C47-00C04FC295EE}","2512"
"10:46:26.1405387 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1405605 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AAB8-8E78-11D0-8C47-00C04FC295EE}","0.0000119","Desired Access: Read","2512"
"10:46:26.1405946 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AAB8-8E78-11D0-8C47-00C04FC295EE}","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1406172 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AAB8-8E78-11D0-8C47-00C04FC295EE}","0.0000052","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1406394 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AAB8-8E78-11D0-8C47-00C04FC295EE}","0.0000052","Index: 1, Name: FuncName, Type: REG_SZ, Length: 54, Data: CryptSIPCreateIndirectData","2512"
"10:46:26.1406774 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AAB8-8E78-11D0-8C47-00C04FC295EE}","0.0000026","","2512"
"10:46:26.1406979 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000051","Index: 11, Name: {C689AAB9-8E78-11D0-8C47-00C04FC295EE}","2512"
"10:46:26.1407214 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1407435 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AAB9-8E78-11D0-8C47-00C04FC295EE}","0.0000116","Desired Access: Read","2512"
"10:46:26.1407768 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AAB9-8E78-11D0-8C47-00C04FC295EE}","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1407990 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AAB9-8E78-11D0-8C47-00C04FC295EE}","0.0000051","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1408212 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AAB9-8E78-11D0-8C47-00C04FC295EE}","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 54, Data: CryptSIPCreateIndirectData","2512"
"10:46:26.1408519 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AAB9-8E78-11D0-8C47-00C04FC295EE}","0.0000026","","2512"
"10:46:26.1408720 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000051","Index: 12, Name: {C689AABA-8E78-11D0-8C47-00C04FC295EE}","2512"
"10:46:26.1408954 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1409172 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AABA-8E78-11D0-8C47-00C04FC295EE}","0.0000115","Desired Access: Read","2512"
"10:46:26.1409505 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AABA-8E78-11D0-8C47-00C04FC295EE}","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1409727 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AABA-8E78-11D0-8C47-00C04FC295EE}","0.0000051","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1409944 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AABA-8E78-11D0-8C47-00C04FC295EE}","0.0000077","Index: 1, Name: FuncName, Type: REG_SZ, Length: 54, Data: CryptSIPCreateIndirectData","2512"
"10:46:26.1410281 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{C689AABA-8E78-11D0-8C47-00C04FC295EE}","0.0000030","","2512"
"10:46:26.1410542 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000059","Index: 13, Name: {CF78C6DE-64A2-4799-B506-89ADFF5D16D6}","2512"
"10:46:26.1410793 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1411015 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6}","0.0000124","Desired Access: Read","2512"
"10:46:26.1411356 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6}","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1411578 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6}","0.0000052","Index: 0, Name: Dll, Type: REG_SZ, Length: 64, Data: C:\Windows\System32\AppxSip.dll","2512"
"10:46:26.1411796 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6}","0.0000047","Index: 1, Name: FuncName, Type: REG_SZ, Length: 54, Data: EappxSipCreateIndirectData","2512"
"10:46:26.1412107 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{CF78C6DE-64A2-4799-B506-89ADFF5D16D6}","0.0000026","","2512"
"10:46:26.1412308 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000051","Index: 14, Name: {D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C}","2512"
"10:46:26.1412547 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1412769 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C}","0.0000115","Desired Access: Read","2512"
"10:46:26.1413106 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C}","0.0000042","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1413323 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C}","0.0000052","Index: 0, Name: Dll, Type: REG_SZ, Length: 64, Data: C:\Windows\System32\AppxSip.dll","2512"
"10:46:26.1413545 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C}","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 66, Data: EappxBundleSipCreateIndirectData","2512"
"10:46:26.1413865 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{D1D04F0C-9ABA-430D-B0E4-D7E96ACCE66C}","0.0000026","","2512"
"10:46:26.1414066 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000051","Index: 15, Name: {DE351A42-8E59-11D0-8C47-00C04FC295EE}","2512"
"10:46:26.1414300 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1414518 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{DE351A42-8E59-11D0-8C47-00C04FC295EE}","0.0000115","Desired Access: Read","2512"
"10:46:26.1414851 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{DE351A42-8E59-11D0-8C47-00C04FC295EE}","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1415077 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{DE351A42-8E59-11D0-8C47-00C04FC295EE}","0.0000047","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1415295 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{DE351A42-8E59-11D0-8C47-00C04FC295EE}","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 54, Data: CryptSIPCreateIndirectData","2512"
"10:46:26.1415598 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{DE351A42-8E59-11D0-8C47-00C04FC295EE}","0.0000025","","2512"
"10:46:26.1415798 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000051","Index: 16, Name: {DE351A43-8E59-11D0-8C47-00C04FC295EE}","2512"
"10:46:26.1416033 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1416250 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{DE351A43-8E59-11D0-8C47-00C04FC295EE}","0.0000124","Desired Access: Read","2512"
"10:46:26.1416592 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{DE351A43-8E59-11D0-8C47-00C04FC295EE}","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1416814 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{DE351A43-8E59-11D0-8C47-00C04FC295EE}","0.0000051","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1417031 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{DE351A43-8E59-11D0-8C47-00C04FC295EE}","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 54, Data: CryptSIPCreateIndirectData","2512"
"10:46:26.1417330 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData\{DE351A43-8E59-11D0-8C47-00C04FC295EE}","0.0000025","","2512"
"10:46:26.1417535 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000047","Index: 17, Length: 288","2512"
"10:46:26.1417782 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptSIPDllCreateIndirectData","0.0000021","","2512"
"10:46:26.1418000 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0","0.0000021","","2512"
"10:46:26.1418196 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000055","Index: 1, Name: EncodingType 1","2512"
"10:46:26.1418435 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1418657 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1","0.0000119","Desired Access: Read","2512"
"10:46:26.1419045 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1419263 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptSIPDllCreateIndirectData","0.0000076","Desired Access: Read","2512"
"10:46:26.1419553 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1","0.0000025","","2512"
"10:46:26.1419758 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000047","Index: 2, Length: 288","2512"
"10:46:26.1420001 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000025","","2512"
"10:46:26.1420479 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1420726 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Cryptography\OID","0.0000090","Desired Access: Read","2512"
"10:46:26.1421029 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000056","Index: 0, Name: EncodingType 0","2512"
"10:46:26.1421285 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1421511 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0","0.0000056","Desired Access: Read","2512"
"10:46:26.1421806 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1422032 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllEncodeObjectEx","0.0000068","Desired Access: Read","2512"
"10:46:26.1422318 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0","0.0000021","","2512"
"10:46:26.1422527 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000055","Index: 1, Name: EncodingType 1","2512"
"10:46:26.1422778 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000022","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1423000 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1","0.0000051","Desired Access: Read","2512"
"10:46:26.1423282 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1423504 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx","0.0000128","Desired Access: Read","2512"
"10:46:26.1423862 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx","0.0000051","Index: 0, Name: 1.2.840.113549.1.9.16.1.1","2512"
"10:46:26.1424110 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1424336 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.1.1","0.0000123","Desired Access: Read","2512"
"10:46:26.1424690 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.1.1","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1424937 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.1.1","0.0000056","Index: 0, Name: Dll, Type: REG_SZ, Length: 66, Data: C:\Windows\System32\inetcomm.dll","2512"
"10:46:26.1425181 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.1.1","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 38, Data: EssReceiptEncodeEx","2512"
"10:46:26.1425513 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.1.1","0.0000026","","2512"
"10:46:26.1425727 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx","0.0000051","Index: 1, Name: 1.2.840.113549.1.9.16.2.1","2512"
"10:46:26.1425974 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1426200 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.1","0.0000120","Desired Access: Read","2512"
"10:46:26.1426542 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.1","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1426781 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.1","0.0000051","Index: 0, Name: Dll, Type: REG_SZ, Length: 66, Data: C:\Windows\System32\inetcomm.dll","2512"
"10:46:26.1427011 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.1","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 52, Data: EssReceiptRequestEncodeEx","2512"
"10:46:26.1427327 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.1","0.0000025","","2512"
"10:46:26.1427540 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx","0.0000051","Index: 2, Name: 1.2.840.113549.1.9.16.2.11","2512"
"10:46:26.1427787 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1428014 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.11","0.0000115","Desired Access: Read","2512"
"10:46:26.1428355 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.11","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1428594 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.11","0.0000051","Index: 0, Name: Dll, Type: REG_SZ, Length: 66, Data: C:\Windows\System32\inetcomm.dll","2512"
"10:46:26.1428829 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.11","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 58, Data: EssKeyExchPreferenceEncodeEx","2512"
"10:46:26.1429144 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.11","0.0000026","","2512"
"10:46:26.1429353 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx","0.0000052","Index: 3, Name: 1.2.840.113549.1.9.16.2.12","2512"
"10:46:26.1429601 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1429827 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.12","0.0000115","Desired Access: Read","2512"
"10:46:26.1430160 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.12","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1430394 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.12","0.0000052","Index: 0, Name: Dll, Type: REG_SZ, Length: 66, Data: C:\Windows\System32\inetcomm.dll","2512"
"10:46:26.1430621 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.12","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 54, Data: EssSignCertificateEncodeEx","2512"
"10:46:26.1430928 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.12","0.0000025","","2512"
"10:46:26.1431137 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx","0.0000051","Index: 4, Name: 1.2.840.113549.1.9.16.2.2","2512"
"10:46:26.1431380 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1431606 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.2","0.0000120","Desired Access: Read","2512"
"10:46:26.1431947 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.2","0.0000043","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1432178 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.2","0.0000055","Index: 0, Name: Dll, Type: REG_SZ, Length: 66, Data: C:\Windows\System32\inetcomm.dll","2512"
"10:46:26.1432413 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.2","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 50, Data: EssSecurityLabelEncodeEx","2512"
"10:46:26.1432724 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.2","0.0000026","","2512"
"10:46:26.1432933 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx","0.0000047","Index: 5, Name: 1.2.840.113549.1.9.16.2.3","2512"
"10:46:26.1433172 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1433402 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.3","0.0000111","Desired Access: Read","2512"
"10:46:26.1433735 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.3","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1433970 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.3","0.0000051","Index: 0, Name: Dll, Type: REG_SZ, Length: 66, Data: C:\Windows\System32\inetcomm.dll","2512"
"10:46:26.1434200 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.3","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 42, Data: EssMLHistoryEncodeEx","2512"
"10:46:26.1434516 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.3","0.0000026","","2512"
"10:46:26.1434725 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx","0.0000051","Index: 6, Name: 1.2.840.113549.1.9.16.2.4","2512"
"10:46:26.1434968 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1435199 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.4","0.0000119","Desired Access: Read","2512"
"10:46:26.1435544 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.4","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1435779 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.4","0.0000051","Index: 0, Name: Dll, Type: REG_SZ, Length: 66, Data: C:\Windows\System32\inetcomm.dll","2512"
"10:46:26.1436009 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.4","0.0000047","Index: 1, Name: FuncName, Type: REG_SZ, Length: 46, Data: EssContentHintEncodeEx","2512"
"10:46:26.1436389 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx\1.2.840.113549.1.9.16.2.4","0.0000030","","2512"
"10:46:26.1436666 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx","0.0000052","Index: 7, Length: 288","2512"
"10:46:26.1436927 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObjectEx","0.0000025","","2512"
"10:46:26.1437153 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1","0.0000021","","2512"
"10:46:26.1437358 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000047","Index: 2, Length: 288","2512"
"10:46:26.1437597 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000025","","2512"
"10:46:26.1437840 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1438074 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Cryptography\OID","0.0000081","Desired Access: Read","2512"
"10:46:26.1438360 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000056","Index: 0, Name: EncodingType 0","2512"
"10:46:26.1438608 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1438834 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0","0.0000051","Desired Access: Read","2512"
"10:46:26.1439124 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1439350 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0\CryptDllEncodeObject","0.0000068","Desired Access: Read","2512"
"10:46:26.1439640 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 0","0.0000022","","2512"
"10:46:26.1439849 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000052","Index: 1, Name: EncodingType 1","2512"
"10:46:26.1440088 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1440314 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1","0.0000052","Desired Access: Read","2512"
"10:46:26.1440596 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1440822 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000137","Desired Access: Read","2512"
"10:46:26.1441193 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000052","Index: 0, Name: #2000","2512"
"10:46:26.1441445 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1441671 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2000","0.0000107","Desired Access: Read","2512"
"10:46:26.1442000 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2000","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1442239 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2000","0.0000055","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1442478 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2000","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 58, Data: WVTAsn1SpcSpAgencyInfoEncode","2512"
"10:46:26.1442806 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2000","0.0000030","","2512"
"10:46:26.1443019 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000052","Index: 1, Name: #2001","2512"
"10:46:26.1443267 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1443497 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2001","0.0000098","Desired Access: Read","2512"
"10:46:26.1443826 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2001","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1444061 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2001","0.0000055","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1444295 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2001","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 72, Data: WVTAsn1SpcMinimalCriteriaInfoEncode","2512"
"10:46:26.1444615 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2001","0.0000026","","2512"
"10:46:26.1444824 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000056","Index: 2, Name: #2002","2512"
"10:46:26.1445072 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1445294 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2002","0.0000106","Desired Access: Read","2512"
"10:46:26.1445626 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2002","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1445861 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2002","0.0000051","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1446091 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2002","0.0000052","Index: 1, Name: FuncName, Type: REG_SZ, Length: 76, Data: WVTAsn1SpcFinancialCriteriaInfoEncode","2512"
"10:46:26.1446407 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2002","0.0000030","","2512"
"10:46:26.1446621 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000051","Index: 3, Name: #2003","2512"
"10:46:26.1446859 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1447086 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2003","0.0000149","Desired Access: Read","2512"
"10:46:26.1447474 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2003","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1447709 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2003","0.0000051","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1447935 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2003","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 72, Data: WVTAsn1SpcIndirectDataContentEncode","2512"
"10:46:26.1448246 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2003","0.0000026","","2512"
"10:46:26.1448455 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000056","Index: 4, Name: #2004","2512"
"10:46:26.1448703 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1448929 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2004","0.0000102","Desired Access: Read","2512"
"10:46:26.1449253 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2004","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1449483 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2004","0.0000052","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1449710 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2004","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 56, Data: WVTAsn1SpcPeImageDataEncode","2512"
"10:46:26.1450025 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2004","0.0000022","","2512"
"10:46:26.1450230 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000051","Index: 5, Name: #2005","2512"
"10:46:26.1450469 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1450695 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2005","0.0000103","Desired Access: Read","2512"
"10:46:26.1451019 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2005","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1451254 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2005","0.0000051","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1451480 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2005","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 42, Data: WVTAsn1SpcLinkEncode","2512"
"10:46:26.1451792 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2005","0.0000025","","2512"
"10:46:26.1452005 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000047","Index: 6, Name: #2006","2512"
"10:46:26.1452244 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1452470 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2006","0.0000103","Desired Access: Read","2512"
"10:46:26.1452799 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2006","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1453033 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2006","0.0000052","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1453259 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2006","0.0000052","Index: 1, Name: FuncName, Type: REG_SZ, Length: 60, Data: WVTAsn1SpcStatementTypeEncode","2512"
"10:46:26.1453575 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2006","0.0000026","","2512"
"10:46:26.1453784 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000047","Index: 7, Name: #2007","2512"
"10:46:26.1454027 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000022","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1454254 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2007","0.0000102","Desired Access: Read","2512"
"10:46:26.1454578 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2007","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1454808 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2007","0.0000047","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1455030 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2007","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 54, Data: WVTAsn1SpcSpOpusInfoEncode","2512"
"10:46:26.1455346 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2007","0.0000025","","2512"
"10:46:26.1455555 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000051","Index: 8, Name: #2008","2512"
"10:46:26.1455794 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1456020 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2008","0.0000111","Desired Access: Read","2512"
"10:46:26.1456353 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2008","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1456583 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2008","0.0000051","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1456809 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2008","0.0000052","Index: 1, Name: FuncName, Type: REG_SZ, Length: 42, Data: WVTAsn1SpcLinkEncode","2512"
"10:46:26.1457121 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2008","0.0000025","","2512"
"10:46:26.1457326 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000051","Index: 9, Name: #2009","2512"
"10:46:26.1457569 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1457791 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2009","0.0001135","Desired Access: Read","2512"
"10:46:26.1459305 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2009","0.0000069","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1459677 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2009","0.0000076","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1460615 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2009","0.0000090","Index: 1, Name: FuncName, Type: REG_SZ, Length: 42, Data: WVTAsn1SpcLinkEncode","2512"
"10:46:26.1461174 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2009","0.0000039","","2512"
"10:46:26.1461507 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000077","Index: 10, Name: #2010","2512"
"10:46:26.1461904 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000034","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1463209 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000137","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:26.1463973 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000064","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:26.1464596 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000055","Offset: 1,073,741,824, Length: 1","5728"
"10:46:26.1470898 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2010","0.0000183","Desired Access: Read","2512"
"10:46:26.1471436 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2010","0.0000068","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1471764 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2010","0.0000068","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1472054 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2010","0.0000060","Index: 1, Name: FuncName, Type: REG_SZ, Length: 70, Data: WVTAsn1IntentToSealAttributeEncode","2512"
"10:46:26.1472549 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2010","0.0000034","","2512"
"10:46:26.1472797 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000059","Index: 11, Name: #2011","2512"
"10:46:26.1473070 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1473334 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2011","0.0000188","Desired Access: Read","2512"
"10:46:26.1473658 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-journal","0.0000743","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:26.1473910 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2011","0.0000094","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1475297 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000192","Offset: 24, Length: 16","5728"
"10:46:26.1475357 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2011","0.0000076","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1475651 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2011","0.0000055","Index: 1, Name: FuncName, Type: REG_SZ, Length: 78, Data: WVTAsn1SealingSignatureAttributeEncode","2512"
"10:46:26.1476031 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2011","0.0000030","","2512"
"10:46:26.1476261 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000056","Index: 12, Name: #2012","2512"
"10:46:26.1476521 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1476773 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2012","0.0000120","Desired Access: Read","2512"
"10:46:26.1477127 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2012","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1477362 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2012","0.0000051","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1477592 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2012","0.0000047","Index: 1, Name: FuncName, Type: REG_SZ, Length: 78, Data: WVTAsn1SealingTimestampAttributeEncode","2512"
"10:46:26.1477925 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2012","0.0000026","","2512"
"10:46:26.1478138 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000052","Index: 13, Name: #2130","2512"
"10:46:26.1478386 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1478621 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2130","0.0000106","Desired Access: Read","2512"
"10:46:26.1478962 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2130","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1479205 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2130","0.0000051","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1479440 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2130","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 48, Data: WVTAsn1SpcSigInfoEncode","2512"
"10:46:26.1479764 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2130","0.0000026","","2512"
"10:46:26.1479977 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000052","Index: 14, Name: #2221","2512"
"10:46:26.1480221 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1480455 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2221","0.0000103","Desired Access: Read","2512"
"10:46:26.1480788 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2221","0.0000043","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1481023 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2221","0.0000051","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1481249 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2221","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 52, Data: WVTAsn1CatNameValueEncode","2512"
"10:46:26.1481569 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2221","0.0000025","","2512"
"10:46:26.1481782 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000047","Index: 15, Name: #2222","2512"
"10:46:26.1482021 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1482256 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2222","0.0000106","Desired Access: Read","2512"
"10:46:26.1482576 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-wal","0.0000495","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:26.1482597 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2222","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1482840 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2222","0.0000047","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1483066 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2222","0.0000056","Index: 1, Name: FuncName, Type: REG_SZ, Length: 54, Data: WVTAsn1CatMemberInfoEncode","2512"
"10:46:26.1483399 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2222","0.0000030","","2512"
"10:46:26.1483617 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000051","Index: 16, Name: #2223","2512"
"10:46:26.1483843 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000128","AllocationSize: 294,912, EndOfFile: 294,912, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:26.1483869 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1484103 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2223","0.0000115","Desired Access: Read","2512"
"10:46:26.1484453 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2223","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1484688 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2223","0.0000051","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1484794 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000082","Offset: 1,073,741,826, Length: 510","5728"
"10:46:26.1484922 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2223","0.0000052","Index: 1, Name: FuncName, Type: REG_SZ, Length: 56, Data: WVTAsn1CatMemberInfo2Encode","2512"
"10:46:26.1485242 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\#2223","0.0000026","","2512"
"10:46:26.1485456 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000051","Index: 17, Name: 1.3.6.1.4.1.311.12.2.1","2512"
"10:46:26.1485712 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1485951 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.1","0.0000132","Desired Access: Read","2512"
"10:46:26.1485981 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0005141","Offset: 132,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:26.1486318 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.1","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1486552 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.1","0.0000056","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1486783 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.1","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 52, Data: WVTAsn1CatNameValueEncode","2512"
"10:46:26.1487120 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.1","0.0000030","","2512"
"10:46:26.1487333 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000051","Index: 18, Name: 1.3.6.1.4.1.311.12.2.2","2512"
"10:46:26.1487581 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1487811 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.2","0.0000119","Desired Access: Read","2512"
"10:46:26.1488157 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.2","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1488391 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.2","0.0000051","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1488622 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.2","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 54, Data: WVTAsn1CatMemberInfoEncode","2512"
"10:46:26.1488937 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.2","0.0000026","","2512"
"10:46:26.1489151 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000051","Index: 19, Name: 1.3.6.1.4.1.311.12.2.3","2512"
"10:46:26.1489398 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1489629 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.3","0.0000115","Desired Access: Read","2512"
"10:46:26.1489970 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.3","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1490205 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.3","0.0000047","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1491054 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.3","0.0000076","Index: 1, Name: FuncName, Type: REG_SZ, Length: 56, Data: WVTAsn1CatMemberInfo2Encode","2512"
"10:46:26.1491621 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.12.2.3","0.0000043","","2512"
"10:46:26.1491788 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0004608","Offset: 107,520, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:26.1491984 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000081","Index: 20, Name: 1.3.6.1.4.1.311.16.1.1","2512"
"10:46:26.1492393 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000047","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1492739 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.1.1","0.0000141","Desired Access: Read","2512"
"10:46:26.1493132 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.1.1","0.0000051","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1493379 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.1.1","0.0000055","Index: 0, Name: Dll, Type: REG_SZ, Length: 66, Data: C:\Windows\System32\cryptdlg.dll","2512"
"10:46:26.1493618 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.1.1","0.0000055","Index: 1, Name: FuncName, Type: REG_SZ, Length: 38, Data: EncodeAttrSequence","2512"
"10:46:26.1494006 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.1.1","0.0000026","","2512"
"10:46:26.1494224 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000051","Index: 21, Name: 1.3.6.1.4.1.311.16.4","2512"
"10:46:26.1494480 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1494706 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.4","0.0000119","Desired Access: Read","2512"
"10:46:26.1495052 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.4","0.0000042","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1495282 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.4","0.0000055","Index: 0, Name: Dll, Type: REG_SZ, Length: 66, Data: C:\Windows\System32\cryptdlg.dll","2512"
"10:46:26.1495517 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.4","0.0000047","Index: 1, Name: FuncName, Type: REG_SZ, Length: 36, Data: EncodeRecipientID","2512"
"10:46:26.1495832 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.16.4","0.0000026","","2512"
"10:46:26.1496408 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000081","Index: 22, Name: 1.3.6.1.4.1.311.2.1.10","2512"
"10:46:26.1496814 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000034","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1497193 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.10","0.0000175","Desired Access: Read","2512"
"10:46:26.1497748 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.10","0.0000073","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1498119 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.10","0.0000077","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1498469 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.10","0.0000077","Index: 1, Name: FuncName, Type: REG_SZ, Length: 58, Data: WVTAsn1SpcSpAgencyInfoEncode","2512"
"10:46:26.1499062 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.10","0.0000039","","2512"
"10:46:26.1499135 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000106","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:26.1499425 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000081","Index: 23, Name: 1.3.6.1.4.1.311.2.1.11","2512"
"10:46:26.1499834 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000244","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:26.1499856 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000034","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1500223 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.11","0.0000141","Desired Access: Read","2512"
"10:46:26.1500611 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.11","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1500773 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000201","Offset: 1,073,741,824, Length: 1","5728"
"10:46:26.1500884 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.11","0.0000111","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1502262 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.11","0.0000073","Index: 1, Name: FuncName, Type: REG_SZ, Length: 60, Data: WVTAsn1SpcStatementTypeEncode","2512"
"10:46:26.1502685 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.11","0.0000029","","2512"
"10:46:26.1502915 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000060","Index: 24, Name: 1.3.6.1.4.1.311.2.1.12","2512"
"10:46:26.1503175 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1503418 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.12","0.0000128","Desired Access: Read","2512"
"10:46:26.1503781 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.12","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1504020 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.12","0.0000051","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1504250 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.12","0.0000052","Index: 1, Name: FuncName, Type: REG_SZ, Length: 54, Data: WVTAsn1SpcSpOpusInfoEncode","2512"
"10:46:26.1504583 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.12","0.0000026","","2512"
"10:46:26.1504801 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000051","Index: 25, Name: 1.3.6.1.4.1.311.2.1.15","2512"
"10:46:26.1505048 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1505279 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.15","0.0000123","Desired Access: Read","2512"
"10:46:26.1505641 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.15","0.0000043","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1505872 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.15","0.0000051","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1506098 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.15","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 56, Data: WVTAsn1SpcPeImageDataEncode","2512"
"10:46:26.1506418 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.15","0.0000026","","2512"
"10:46:26.1506631 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000051","Index: 26, Name: 1.3.6.1.4.1.311.2.1.20","2512"
"10:46:26.1506870 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1507101 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.20","0.0000115","Desired Access: Read","2512"
"10:46:26.1507442 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.20","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1507681 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.20","0.0000051","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1507907 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.20","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 42, Data: WVTAsn1SpcLinkEncode","2512"
"10:46:26.1508227 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.20","0.0000030","","2512"
"10:46:26.1508440 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000052","Index: 27, Name: 1.3.6.1.4.1.311.2.1.25","2512"
"10:46:26.1508620 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-journal","0.0000507","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:26.1508688 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1508914 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.25","0.0000119","Desired Access: Read","2512"
"10:46:26.1509264 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.25","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1509498 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.25","0.0000047","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1509729 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.25","0.0000047","Index: 1, Name: FuncName, Type: REG_SZ, Length: 42, Data: WVTAsn1SpcLinkEncode","2512"
"10:46:26.1509929 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000235","Offset: 24, Length: 16","5728"
"10:46:26.1510049 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.25","0.0000025","","2512"
"10:46:26.1510348 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000072","Index: 28, Name: 1.3.6.1.4.1.311.2.1.26","2512"
"10:46:26.1510650 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1510881 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.26","0.0000119","Desired Access: Read","2512"
"10:46:26.1511231 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.26","0.0000042","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1511465 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.26","0.0000052","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1511696 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.26","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 72, Data: WVTAsn1SpcMinimalCriteriaInfoEncode","2512"
"10:46:26.1512020 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.26","0.0000026","","2512"
"10:46:26.1512233 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000052","Index: 29, Name: 1.3.6.1.4.1.311.2.1.27","2512"
"10:46:26.1512477 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1512707 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.27","0.0000111","Desired Access: Read","2512"
"10:46:26.1513040 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.27","0.0000042","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1513270 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.27","0.0000056","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1513509 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.27","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 76, Data: WVTAsn1SpcFinancialCriteriaInfoEncode","2512"
"10:46:26.1513829 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.27","0.0000026","","2512"
"10:46:26.1514047 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000051","Index: 30, Name: 1.3.6.1.4.1.311.2.1.28","2512"
"10:46:26.1514290 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1514520 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.28","0.0000120","Desired Access: Read","2512"
"10:46:26.1514866 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.28","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1515101 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.28","0.0000051","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1515327 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.28","0.0000047","Index: 1, Name: FuncName, Type: REG_SZ, Length: 42, Data: WVTAsn1SpcLinkEncode","2512"
"10:46:26.1515638 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.28","0.0000022","","2512"
"10:46:26.1515843 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000051","Index: 31, Name: 1.3.6.1.4.1.311.2.1.30","2512"
"10:46:26.1516086 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000022","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1516308 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.30","0.0000111","Desired Access: Read","2512"
"10:46:26.1516666 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.30","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1516905 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.30","0.0000047","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1517012 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-wal","0.0000469","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:26.1517136 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.30","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 48, Data: WVTAsn1SpcSigInfoEncode","2512"
"10:46:26.1517456 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.30","0.0000106","","2512"
"10:46:26.1517763 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000051","Index: 32, Name: 1.3.6.1.4.1.311.2.1.4","2512"
"10:46:26.1518015 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1518241 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.4","0.0000124","Desired Access: Read","2512"
"10:46:26.1518266 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000116","AllocationSize: 294,912, EndOfFile: 294,912, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:26.1518599 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.4","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1518842 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.4","0.0000052","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1519069 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.4","0.0000115","Index: 1, Name: FuncName, Type: REG_SZ, Length: 72, Data: WVTAsn1SpcIndirectDataContentEncode","2512"
"10:46:26.1519111 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000103","Offset: 1,073,741,826, Length: 510","5728"
"10:46:26.1519470 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.1.4","0.0000025","","2512"
"10:46:26.1519683 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000051","Index: 33, Name: 1.3.6.1.4.1.311.2.4.2","2512"
"10:46:26.1519930 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1520157 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.2","0.0000115","Desired Access: Read","2512"
"10:46:26.1520498 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.2","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1520733 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.2","0.0000051","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1520959 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.2","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 70, Data: WVTAsn1IntentToSealAttributeEncode","2512"
"10:46:26.1521023 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000089","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:26.1521356 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.2","0.0000029","","2512"
"10:46:26.1521569 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000060","Index: 34, Name: 1.3.6.1.4.1.311.2.4.3","2512"
"10:46:26.1521599 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:26.1521838 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1522064 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.3","0.0000119","Desired Access: Read","2512"
"10:46:26.1522124 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 1,073,741,824, Length: 1","5728"
"10:46:26.1522418 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.3","0.0000047","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1522653 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.3","0.0000051","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1522879 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.3","0.0000051","Index: 1, Name: FuncName, Type: REG_SZ, Length: 78, Data: WVTAsn1SealingSignatureAttributeEncode","2512"
"10:46:26.1523199 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.3","0.0000025","","2512"
"10:46:26.1523404 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000051","Index: 35, Name: 1.3.6.1.4.1.311.2.4.4","2512"
"10:46:26.1523651 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1523877 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.4","0.0000115","Desired Access: Read","2512"
"10:46:26.1524219 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.4","0.0000042","Query: Cached, SubKeys: 0, Values: 2","2512"
"10:46:26.1524445 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.4","0.0000098","Index: 0, Name: Dll, Type: REG_SZ, Length: 26, Data: WINTRUST.DLL","2512"
"10:46:26.1524833 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.4","0.0000154","Index: 1, Name: FuncName, Type: REG_SZ, Length: 78, Data: WVTAsn1SealingTimestampAttributeEncode","2512"
"10:46:26.1525456 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject\1.3.6.1.4.1.311.2.4.4","0.0000043","","2512"
"10:46:26.1525806 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000072","Index: 36, Length: 288","2512"
"10:46:26.1526207 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1\CryptDllEncodeObject","0.0000030","","2512"
"10:46:26.1526459 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID\EncodingType 1","0.0000021","","2512"
"10:46:26.1526676 AM","firefox.exe","7384","RegEnumKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000051","Index: 2, Length: 288","2512"
"10:46:26.1526924 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\OID","0.0000025","","2512"
"10:46:26.1528549 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1528831 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Cryptography\Wintrust\Config","0.0000115","Desired Access: Read","2512"
"10:46:26.1529321 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dbghelp.dll","0.0000103","AllocationSize: 1,728,512, EndOfFile: 1,728,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.1529432 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000517","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:26.1529646 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.1529885 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Cryptography\Wintrust\Config","0.0000094","Desired Access: Read","2512"
"10:46:26.1530375 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000090","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.1530708 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dbghelp.dll","0.0000056","AllocationSize: 1,728,512, EndOfFile: 1,728,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.1530717 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000166","Offset: 24, Length: 16","5728"
"10:46:26.1531203 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000038","SyncType: SyncTypeOther","2512"
"10:46:26.1535619 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\dbghelp.dll","0.0126012","Offset: 0, Length: 524,288, Priority: Normal","2512"
"10:46:26.1537769 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000478","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:26.1538179 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\dbghelp.dll","0.0121412","Offset: 32,768, Length: 491,520, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2512"
"10:46:26.1538973 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000111","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:26.1540146 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000218","Offset: 32,768, Length: 32,768","5728"
"10:46:26.1541076 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000068","Offset: 1,073,741,826, Length: 510","5728"
"10:46:26.1542531 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000068","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:26.1543043 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:26.1543525 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 1,073,741,824, Length: 1","5728"
"10:46:26.1550582 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000491","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:26.1551798 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000145","Offset: 24, Length: 16","5728"
"10:46:26.1558587 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000460","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:26.1559739 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000106","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:26.1560541 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000068","Offset: 1,073,741,826, Length: 510","5728"
"10:46:26.1569552 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0014686","Offset: 205,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:26.1584844 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0006724","Offset: 193,536, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:26.1592592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0005960","Offset: 87,040, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:26.1599056 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0003746","Offset: 87,040, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:26.1604005 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0003371","Offset: 132,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:26.1607888 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0006468","Offset: 128,000, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:26.1615768 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0171410","Offset: 398,336, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:26.1787720 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0006720","Offset: 119,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:26.1794819 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0002996","Offset: 119,808, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:26.1859413 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:26.1859741 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly","0.0000043","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:29:06 AM, LastWriteTime: 3/25/2020 10:29:06 AM, ChangeTime: 3/25/2020 10:29:06 AM, FileAttributes: D","5728"
"10:46:26.1859916 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000051","","5728"
"10:46:26.1860428 AM","firefox.exe","7384","CreateFile","C:\","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:26.1860701 AM","firefox.exe","7384","QueryDirectory","C:\Program Files","0.0000162","Filter: Program Files, 1: Program Files","5728"
"10:46:26.1861034 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","5728"
"10:46:26.1862118 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:26.1862378 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000107","Filter: Firefox Nightly, 1: Firefox Nightly","5728"
"10:46:26.1862621 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000043","","5728"
"10:46:26.1864737 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:26.1865074 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser","0.0000030","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:30 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: D","5728"
"10:46:26.1865211 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser","0.0000038","","5728"
"10:46:26.1865612 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:26.1865830 AM","firefox.exe","7384","QueryDirectory","C:\Program Files","0.0000106","Filter: Program Files, 1: Program Files","5728"
"10:46:26.1866073 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","5728"
"10:46:26.1867054 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:26.1867302 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000098","Filter: Firefox Nightly, 1: Firefox Nightly","5728"
"10:46:26.1867536 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000039","","5728"
"10:46:26.1869367 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:26.1869584 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly","0.0000030","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:29:06 AM, LastWriteTime: 3/25/2020 10:29:06 AM, ChangeTime: 3/25/2020 10:29:06 AM, FileAttributes: D","5728"
"10:46:26.1869712 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000034","","5728"
"10:46:26.1870092 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:26.1870301 AM","firefox.exe","7384","QueryDirectory","C:\Program Files","0.0000102","Filter: Program Files, 1: Program Files","5728"
"10:46:26.1870536 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","5728"
"10:46:26.1871491 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:26.1871726 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000115","Filter: Firefox Nightly, 1: Firefox Nightly","5728"
"10:46:26.1871974 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000038","","5728"
"10:46:26.1873864 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 7896","5728"
"10:46:26.1875523 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7508"
"10:46:26.1875912 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7508"
"10:46:26.1876048 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000051","","7508"
"10:46:26.1877089 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000128","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7508"
"10:46:26.1877375 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7508"
"10:46:26.1877917 AM","firefox.exe","7384","CreateFileMapping","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0000021","SyncType: SyncTypeOther","7508"
"10:46:26.1879231 AM","firefox.exe","7384","Load Image","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000000","Image Base: 0x7ffb31960000, Image Size: 0x6a000","7508"
"10:46:26.1879517 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000060","Name: \PROGRA~1\FIREFO~1\nssckbi.dll","7508"
"10:46:26.1879927 AM","firefox.exe","7384","ReadFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0227802","Offset: 360,960, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7508"
"10:46:26.2025770 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\dbghelp.dll","0.0168214","Offset: 1,572,864, Length: 155,648, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:26.2109260 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000158","","7508"
"10:46:26.2110118 AM","firefox.exe","7384","ReadFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0219153","Offset: 399,360, Length: 3,584, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7508"
"10:46:26.2207752 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.2207961 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\crypt32","0.0000069","Desired Access: Read","2512"
"10:46:26.2208153 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\crypt32","0.0000056","Desired Access: Read","2512"
"10:46:26.2208350 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\crypt32\DiagLevel","0.0000025","Length: 16","2512"
"10:46:26.2208460 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\crypt32\DiagMatchAnyMask","0.0000018","Length: 20","2512"
"10:46:26.2208601 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\crypt32","0.0000017","","2512"
"10:46:26.2208712 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:26.2208815 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\crypt32","0.0000034","Desired Access: Read","2512"
"10:46:26.2208926 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\crypt32","0.0000029","Desired Access: Read","2512"
"10:46:26.2211072 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000170","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.2211426 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000158","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:26.2212919 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000533","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:26.2214425 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000115","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.2214741 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000021","Information: DACL","2512"
"10:46:26.2214873 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000043","","2512"
"10:46:26.2215978 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000406","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:26.2217250 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.2217489 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:26.2217608 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:26.2228403 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000205","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:26.2230020 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000192","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:26.2231244 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000128","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.2231530 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000026","Information: DACL","2512"
"10:46:26.2231675 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000043","","2512"
"10:46:26.2232785 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:26.2233860 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000115","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.2234099 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:26.2234218 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000039","","2512"
"10:46:26.2329689 AM","firefox.exe","7384","ReadFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0307888","Offset: 66,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7508"
"10:46:26.2435665 AM","firefox.exe","7384","ReadFile","C:","0.0085082","Offset: 262,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:26.2521638 AM","firefox.exe","7384","ReadFile","C:","0.0031885","Offset: 602,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:26.2558110 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0444835","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.2638665 AM","firefox.exe","7384","ReadFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0550499","Offset: 41,984, Length: 31,744, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7508"
"10:46:26.3004301 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000239","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:27:21 PM, ChangeTime: 3/20/2019 7:07:51 PM, AllocationSize: 323584, EndOfFile: 319494, FileAttributes: A","2512"
"10:46:26.3005347 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000405","","2512"
"10:46:26.3011610 AM","firefox.exe","7384","ReadFile","C:","0.0008610","Offset: 606,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:26.3023493 AM","firefox.exe","7384","ReadFile","C:","0.0007104","Offset: 311,296, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:26.3042864 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0015~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0598703","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.3192091 AM","firefox.exe","7384","ReadFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0126139","Offset: 385,536, Length: 13,824, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7508"
"10:46:26.3322971 AM","firefox.exe","7384","ReadFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0521378","Offset: 1,024, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7508"
"10:46:26.3330881 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 8856","5728"
"10:46:26.3334367 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\SiteSecurityServiceState.txt","0.0014033","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7896"
"10:46:26.3350277 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\SiteSecurityServiceState.txt","0.0000261","AllocationSize: 4,096, EndOfFile: 3,825, NumberOfLinks: 1, DeletePending: False, Directory: False","7896"
"10:46:26.3352146 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\SiteSecurityServiceState.txt","0.0612310","Offset: 0, Length: 3,825, Priority: Normal","7896"
"10:46:26.3354113 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\SiteSecurityServiceState.txt","0.0609814","Offset: 0, Length: 3,825, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7896"
"10:46:26.3355777 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert_override.txt","0.0001673","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","5728"
"10:46:26.3388622 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 1308","5728"
"10:46:26.3398085 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000734","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","120"
"10:46:26.3399882 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000175","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","120"
"10:46:26.3400530 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000265","","120"
"10:46:26.3405778 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000615","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","120"
"10:46:26.3407481 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wininet.dll","0.0000239","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","120"
"10:46:26.3408607 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wininet.dll","0.0000077","SyncType: SyncTypeOther","120"
"10:46:26.3413450 AM","firefox.exe","7384","Load Image","C:\Windows\System32\wininet.dll","0.0000000","Image Base: 0x7ffb32650000, Image Size: 0x4bd000","120"
"10:46:26.3415080 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\wininet.dll","0.0000281","Name: \Windows\System32\wininet.dll","120"
"10:46:26.3427700 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000406","","120"
"10:46:26.3454777 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sspicli.dll","0.0001088","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","120"
"10:46:26.3459449 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000298","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","120"
"10:46:26.3460814 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sspicli.dll","0.0000440","","120"
"10:46:26.3472889 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sspicli.dll","0.0001216","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","120"
"10:46:26.3476140 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\sspicli.dll","0.0000230","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","120"
"10:46:26.3478171 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\sspicli.dll","0.0000136","SyncType: SyncTypeOther","120"
"10:46:26.3482834 AM","firefox.exe","7384","Load Image","C:\Windows\System32\sspicli.dll","0.0000000","Image Base: 0x7ffb45990000, Image Size: 0x30000","120"
"10:46:26.3484447 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sspicli.dll","0.0000346","Name: \Windows\System32\sspicli.dll","120"
"10:46:26.3491095 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sspicli.dll","0.0000490","","120"
"10:46:26.3509019 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000119","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3510069 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Hvsi","0.0000256","Desired Access: Read","120"
"10:46:26.3510960 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Hvsi","0.0000201","Desired Access: Read","120"
"10:46:26.3520240 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000098","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3520983 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000268","Desired Access: Read","120"
"10:46:26.3522007 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\SyncMode5","0.0000162","Length: 16","120"
"10:46:26.3523927 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000059","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3524473 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache","0.0000290","Desired Access: Read","120"
"10:46:26.3525241 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\SessionStartTimeDefaultDeltaSecs","0.0000098","Length: 16","120"
"10:46:26.3529179 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000064","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3529827 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000244","Desired Access: Read","120"
"10:46:26.3530595 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000056","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3531125 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}","0.0000324","Desired Access: Read","120"
"10:46:26.3532114 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000064","","120"
"10:46:26.3532946 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\Category","0.0000128","Type: REG_DWORD, Length: 4, Data: 4","120"
"10:46:26.3533510 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\Name","0.0000128","Type: REG_SZ, Length: 12, Data: Cache","120"
"10:46:26.3534077 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\ParentFolder","0.0000124","Type: REG_SZ, Length: 78, Data: {F1B32785-6FBA-4FCF-9D55-7B8E7F157091}","120"
"10:46:26.3534751 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\Description","0.0000107","Length: 144","120"
"10:46:26.3535250 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\RelativePath","0.0000120","Type: REG_SZ, Length: 56, Data: Microsoft\Windows\INetCache","120"
"10:46:26.3535784 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\ParsingName","0.0000102","Length: 144","120"
"10:46:26.3536274 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\InfoTip","0.0000099","Length: 144","120"
"10:46:26.3536757 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\LocalizedName","0.0000098","Length: 144","120"
"10:46:26.3537230 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\Icon","0.0000103","Length: 144","120"
"10:46:26.3537712 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\Security","0.0000094","Length: 144","120"
"10:46:26.3538194 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\StreamResource","0.0000099","Length: 144","120"
"10:46:26.3538677 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\StreamResourceType","0.0000098","Length: 144","120"
"10:46:26.3539159 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\LocalRedirectOnly","0.0000166","Type: REG_DWORD, Length: 4, Data: 1","120"
"10:46:26.3539726 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\Roamable","0.0000098","Length: 16","120"
"10:46:26.3540272 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\PreCreate","0.0000098","Length: 16","120"
"10:46:26.3540750 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\Stream","0.0000103","Length: 16","120"
"10:46:26.3541224 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\PublishExpandedPath","0.0000098","Length: 16","120"
"10:46:26.3541697 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\DefinitionFlags","0.0000098","Length: 16","120"
"10:46:26.3542167 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\Attributes","0.0000102","Length: 16","120"
"10:46:26.3542645 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\FolderTypeID","0.0000098","Length: 90","120"
"10:46:26.3543122 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\InitFolderHandler","0.0000099","Length: 90","120"
"10:46:26.3543698 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}","0.0000052","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3544240 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}\PropertyBag","0.0000141","Desired Access: Read","120"
"10:46:26.3544983 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{352481E8-33BE-4251-BA85-6007CAEDCF9D}","0.0000059","","120"
"10:46:26.3545832 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer","0.0000051","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3546357 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000157","Desired Access: Query Value","120"
"10:46:26.3546988 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000055","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3547517 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\KnownFolders","0.0000196","Desired Access: Query Value","120"
"10:46:26.3548242 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000056","","120"
"10:46:26.3548912 AM","firefox.exe","7384","RegOpenKey","HKU","0.0000150","Desired Access: Maximum Allowed, Granted Access: Read","120"
"10:46:26.3549535 AM","firefox.exe","7384","RegQueryKey","HKU","0.0000051","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3550026 AM","firefox.exe","7384","RegOpenKey","HKU\.DEFAULT","0.0000162","Desired Access: Read","120"
"10:46:26.3550640 AM","firefox.exe","7384","RegQueryKey","HKU\.DEFAULT","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3551122 AM","firefox.exe","7384","RegOpenKey","HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000333","Desired Access: Read","120"
"10:46:26.3551950 AM","firefox.exe","7384","RegCloseKey","HKU\.DEFAULT","0.0000060","","120"
"10:46:26.3552552 AM","firefox.exe","7384","RegQueryValue","HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Cache","0.0000132","Type: REG_EXPAND_SZ, Length: 112, Data: %USERPROFILE%\AppData\Local\Microsoft\Windows\INetCache","120"
"10:46:26.3553516 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000051","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3554066 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList","0.0000235","Desired Access: Read","120"
"10:46:26.3554800 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Default","0.0000124","Length: 12","120"
"10:46:26.3555376 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Default","0.0000111","Type: REG_EXPAND_SZ, Length: 56, Data: %SystemDrive%\Users\Default","120"
"10:46:26.3556068 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList","0.0000051","","120"
"10:46:26.3558069 AM","firefox.exe","7384","RegCloseKey","HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000064","","120"
"10:46:26.3559225 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer","0.0000055","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3559737 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000145","Desired Access: Query Value","120"
"10:46:26.3560317 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3560782 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\KnownFolders","0.0000141","Desired Access: Query Value","120"
"10:46:26.3561384 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000051","","120"
"10:46:26.3562096 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000180","Desired Access: Read","120"
"10:46:26.3562728 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3563201 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000316","Desired Access: Read","120"
"10:46:26.3563982 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000056","","120"
"10:46:26.3564584 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Cache","0.0000119","Type: REG_EXPAND_SZ, Length: 112, Data: %USERPROFILE%\AppData\Local\Microsoft\Windows\INetCache","120"
"10:46:26.3567148 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000085","","120"
"10:46:26.3568680 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer","0.0000145","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3569601 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000201","Desired Access: Query Value","120"
"10:46:26.3570566 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000072","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3571398 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\KnownFolders","0.0000179","Desired Access: Query Value","120"
"10:46:26.3572268 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000073","","120"
"10:46:26.3573151 AM","firefox.exe","7384","RegQueryKey","HKU","0.0000073","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3573962 AM","firefox.exe","7384","RegOpenKey","HKU\.DEFAULT","0.0000247","Desired Access: Read","120"
"10:46:26.3574977 AM","firefox.exe","7384","RegQueryKey","HKU\.DEFAULT","0.0000073","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3575805 AM","firefox.exe","7384","RegOpenKey","HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000333","Desired Access: Read","120"
"10:46:26.3576897 AM","firefox.exe","7384","RegCloseKey","HKU\.DEFAULT","0.0000077","","120"
"10:46:26.3577734 AM","firefox.exe","7384","RegQueryValue","HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Local AppData","0.0000200","Type: REG_EXPAND_SZ, Length: 56, Data: %USERPROFILE%\AppData\Local","120"
"10:46:26.3578864 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000073","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3579718 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList","0.0000311","Desired Access: Read","120"
"10:46:26.3580840 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Default","0.0000175","Length: 12","120"
"10:46:26.3582197 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Default","0.0000179","Type: REG_EXPAND_SZ, Length: 56, Data: %SystemDrive%\Users\Default","120"
"10:46:26.3583822 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList","0.0000090","","120"
"10:46:26.3586143 AM","firefox.exe","7384","RegCloseKey","HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000086","","120"
"10:46:26.3594724 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0001096","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:26.3596460 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000239","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: A","7392"
"10:46:26.3597224 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000367","","7392"
"10:46:26.3599805 AM","firefox.exe","7336","CreateFile","C:\","0.0000785","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:26.3601874 AM","firefox.exe","7336","QueryDirectory","C:\Program Files","0.0000875","Filter: Program Files, 1: Program Files","7392"
"10:46:26.3603816 AM","firefox.exe","7336","CloseFile","C:\","0.0000337","","7392"
"10:46:26.3611684 AM","firefox.exe","7336","CreateFile","C:\Program Files","0.0000879","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:26.3613791 AM","firefox.exe","7336","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000841","Filter: Firefox Nightly, 1: Firefox Nightly","7392"
"10:46:26.3614286 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000124","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3615400 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000388","Desired Access: Read","120"
"10:46:26.3615656 AM","firefox.exe","7336","CloseFile","C:\Program Files","0.0000328","","7392"
"10:46:26.3616731 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\MBCSAPIforCrack","0.0000154","Length: 144","120"
"10:46:26.3619577 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.1247144","Offset: 30,457,856, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:26.3619705 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000098","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3620618 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000414","Desired Access: Query Value","120"
"10:46:26.3621740 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Security_HKLM_only","0.0000141","Length: 16","120"
"10:46:26.3622440 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000064","","120"
"10:46:26.3622977 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000056","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3623507 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\Internet Explorer\Main\FeatureControl","0.0000226","Desired Access: Query Value","120"
"10:46:26.3624168 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3624629 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Policies\Microsoft\Internet Explorer\Main\FeatureControl","0.0000179","Desired Access: Query Value","120"
"10:46:26.3625294 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3625772 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000312","Desired Access: Query Value","120"
"10:46:26.3626715 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000081","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3627440 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000273","Desired Access: Query Value","120"
"10:46:26.3628742 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000072","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3629433 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE","0.0000183","Desired Access: Query Value","120"
"10:46:26.3630256 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl","0.0000073","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3630935 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE","0.0000367","Desired Access: Query Value","120"
"10:46:26.3632044 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE\firefox.exe","0.0000162","Length: 16","120"
"10:46:26.3632748 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE\*","0.0000128","Length: 16","120"
"10:46:26.3633584 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE","0.0000090","","120"
"10:46:26.3634596 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000076","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3635295 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\Internet Explorer\Main\FeatureControl","0.0000290","Desired Access: Read","120"
"10:46:26.3636183 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000077","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3636857 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Policies\Microsoft\Internet Explorer\Main\FeatureControl","0.0000239","Desired Access: Read","120"
"10:46:26.3637663 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000069","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3638355 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000256","Desired Access: Read","120"
"10:46:26.3639195 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000073","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3639865 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000307","Desired Access: Read","120"
"10:46:26.3640970 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_CLIENTAUTHCERTFILTER","0.0000128","Length: 16","120"
"10:46:26.3641781 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000081","","120"
"10:46:26.3642433 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_CLIENTAUTHCERTFILTER","0.0000133","Length: 16","120"
"10:46:26.3642835 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0015~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000290","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:19:44 PM, ChangeTime: 3/20/2019 7:09:04 PM, AllocationSize: 630784, EndOfFile: 629106, FileAttributes: A","2512"
"10:46:26.3643172 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl","0.0000085","","120"
"10:46:26.3644008 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0015~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000491","","2512"
"10:46:26.3644166 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000081","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3644947 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\RETRY_HEADERONLYPOST_ONCONNECTIONRESET","0.0000213","Desired Access: Query Value","120"
"10:46:26.3645779 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl","0.0000085","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3646504 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\RETRY_HEADERONLYPOST_ONCONNECTIONRESET","0.0000209","Desired Access: Query Value","120"
"10:46:26.3646832 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000325","","2512"
"10:46:26.3647349 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000068","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3647946 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000742","","2512"
"10:46:26.3648074 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING","0.0000179","Desired Access: Query Value","120"
"10:46:26.3648868 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl","0.0000055","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3649311 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING","0.0000290","Desired Access: Query Value","120"
"10:46:26.3650126 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING\firefox.exe","0.0000120","Length: 16","120"
"10:46:26.3650630 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING\*","0.0000098","Length: 16","120"
"10:46:26.3651193 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING","0.0000060","","120"
"10:46:26.3651824 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000052","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3652272 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BYPASS_CACHE_FOR_CREDPOLICY_KB936611","0.0000128","Desired Access: Query Value","120"
"10:46:26.3652763 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl","0.0000051","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3653185 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BYPASS_CACHE_FOR_CREDPOLICY_KB936611","0.0000137","Desired Access: Query Value","120"
"10:46:26.3653723 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3654145 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_MAPPINGS_FOR_CREDPOLICY","0.0000124","Desired Access: Query Value","120"
"10:46:26.3654623 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl","0.0000052","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3655041 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_MAPPINGS_FOR_CREDPOLICY","0.0000133","Desired Access: Query Value","120"
"10:46:26.3655566 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3655980 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INCLUDE_PORT_IN_SPN_KB908209","0.0000120","Desired Access: Query Value","120"
"10:46:26.3656454 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl","0.0000042","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3656863 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INCLUDE_PORT_IN_SPN_KB908209","0.0000128","Desired Access: Query Value","120"
"10:46:26.3657473 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3657904 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BUFFERBREAKING_818408","0.0000120","Desired Access: Query Value","120"
"10:46:26.3658378 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3658792 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BUFFERBREAKING_818408","0.0000119","Desired Access: Query Value","120"
"10:46:26.3659291 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3659722 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SKIP_POST_RETRY_ON_INTERNETWRITEFILE_KB895954","0.0000132","Desired Access: Query Value","120"
"10:46:26.3660226 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl","0.0000051","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3660644 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SKIP_POST_RETRY_ON_INTERNETWRITEFILE_KB895954","0.0000128","Desired Access: Query Value","120"
"10:46:26.3661156 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000042","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3661570 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FIX_CHUNKED_PROXY_SCRIPT_DOWNLOAD_KB843289","0.0000128","Desired Access: Query Value","120"
"10:46:26.3662056 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3662478 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FIX_CHUNKED_PROXY_SCRIPT_DOWNLOAD_KB843289","0.0000128","Desired Access: Query Value","120"
"10:46:26.3662986 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000043","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3663400 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_CNAME_FOR_SPN_KB911149","0.0000119","Desired Access: Query Value","120"
"10:46:26.3663886 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl","0.0000043","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3664304 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_CNAME_FOR_SPN_KB911149","0.0000124","Desired Access: Query Value","120"
"10:46:26.3664816 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000043","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3665239 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ALWAYS_USE_DNS_FOR_SPN_KB3022771","0.0000119","Desired Access: Query Value","120"
"10:46:26.3665717 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl","0.0000042","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3666135 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ALWAYS_USE_DNS_FOR_SPN_KB3022771","0.0000124","Desired Access: Query Value","120"
"10:46:26.3666651 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000043","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3666963 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0001122","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.3667082 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PERMIT_CACHE_FOR_AUTHENTICATED_FTP_KB910274","0.0000154","Desired Access: Query Value","120"
"10:46:26.3667812 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl","0.0000119","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3668524 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PERMIT_CACHE_FOR_AUTHENTICATED_FTP_KB910274","0.0000154","Desired Access: Query Value","120"
"10:46:26.3669096 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3669518 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK","0.0000133","Desired Access: Query Value","120"
"10:46:26.3670018 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl","0.0000046","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3670436 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK","0.0000264","Desired Access: Query Value","120"
"10:46:26.3671182 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK\firefox.exe","0.0000120","Length: 16","120"
"10:46:26.3671652 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000277","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:27:21 PM, ChangeTime: 3/20/2019 7:07:51 PM, AllocationSize: 323584, EndOfFile: 319494, FileAttributes: A","2512"
"10:46:26.3671686 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK\*","0.0000102","Length: 16","120"
"10:46:26.3672232 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK","0.0000060","","120"
"10:46:26.3672684 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3672799 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000436","","2512"
"10:46:26.3673128 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISALLOW_NULL_IN_RESPONSE_HEADERS","0.0000132","Desired Access: Query Value","120"
"10:46:26.3673623 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl","0.0000051","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3674050 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISALLOW_NULL_IN_RESPONSE_HEADERS","0.0000140","Desired Access: Query Value","120"
"10:46:26.3674596 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3675014 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DIGEST_NO_EXTRAS_IN_URI","0.0000128","Desired Access: Query Value","120"
"10:46:26.3675492 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3675910 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DIGEST_NO_EXTRAS_IN_URI","0.0000132","Desired Access: Query Value","120"
"10:46:26.3676418 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl","0.0000051","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3676836 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_PASSPORT_SESSION_STORE_KB948608","0.0000123","Desired Access: Query Value","120"
"10:46:26.3677471 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3677898 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_EXCLUDE_INVALID_CLIENT_CERT_KB929477","0.0000128","Desired Access: Query Value","120"
"10:46:26.3678384 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl","0.0000043","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3678794 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_EXCLUDE_INVALID_CLIENT_CERT_KB929477","0.0000124","Desired Access: Query Value","120"
"10:46:26.3679293 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3679707 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_UTF8_FOR_BASIC_AUTH_KB967545","0.0000124","Desired Access: Query Value","120"
"10:46:26.3680181 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl","0.0000051","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3680599 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_UTF8_FOR_BASIC_AUTH_KB967545","0.0000124","Desired Access: Query Value","120"
"10:46:26.3681098 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3681516 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RETURN_FAILED_CONNECT_CONTENT_KB942615","0.0000124","Desired Access: Query Value","120"
"10:46:26.3682011 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3682382 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000960","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.3682434 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RETURN_FAILED_CONNECT_CONTENT_KB942615","0.0000128","Desired Access: Query Value","120"
"10:46:26.3682937 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3683381 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PRESERVE_SPACES_IN_FILENAMES_KB952730","0.0000128","Desired Access: Query Value","120"
"10:46:26.3683867 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3684294 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PRESERVE_SPACES_IN_FILENAMES_KB952730","0.0000128","Desired Access: Query Value","120"
"10:46:26.3684477 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000214","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:26.3684912 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000052","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3685331 AM","firefox.exe","7384","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000213","Desired Access: Query Value","120"
"10:46:26.3685676 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000205","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.3685941 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\EnableZlibDeflate","0.0000132","Length: 16","120"
"10:46:26.3686495 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000056","","120"
"10:46:26.3686658 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000162","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:26.3687545 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\FromCacheTimeout","0.0000115","Length: 16","120"
"10:46:26.3688070 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000051","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3688240 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000133","SyncType: SyncTypeOther","2512"
"10:46:26.3688514 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000251","Desired Access: Query Value","120"
"10:46:26.3689154 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\SecureProtocols","0.0000145","Length: 16","120"
"10:46:26.3689691 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000051","","120"
"10:46:26.3690084 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3690498 AM","firefox.exe","7384","RegOpenKey","HKCU\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000213","Desired Access: Query Value","120"
"10:46:26.3691103 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\SecureProtocols","0.0000090","Length: 16","120"
"10:46:26.3691274 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0386586","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:26.3691586 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000055","","120"
"10:46:26.3691978 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000043","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3692379 AM","firefox.exe","7384","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000154","Desired Access: Query Value","120"
"10:46:26.3692878 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\SecureProtocols","0.0000137","Type: REG_DWORD, Length: 4, Data: 2688","120"
"10:46:26.3693395 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000051","","120"
"10:46:26.3693911 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000055","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3694367 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies","0.0000150","Desired Access: Read","120"
"10:46:26.3694914 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000051","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3695353 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Policies","0.0000128","Desired Access: Read","120"
"10:46:26.3695869 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000043","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3696279 AM","firefox.exe","7384","RegOpenKey","HKCU\Software","0.0000128","Desired Access: Read","120"
"10:46:26.3696782 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000052","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3697205 AM","firefox.exe","7384","RegOpenKey","HKLM\Software","0.0000145","Desired Access: Read","120"
"10:46:26.3697721 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000043","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3698310 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000158","Query: Name","120"
"10:46:26.3699231 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\WOW6432Node","0.0000214","Desired Access: Read","120"
"10:46:26.3699970 AM","firefox.exe","7384","RegSetInfoKey","HKLM\SOFTWARE\WOW6432Node","0.0000051","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","120"
"10:46:26.3700618 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3701058 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\Internet Explorer","0.0000183","Desired Access: Query Value","120"
"10:46:26.3701962 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000051","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3702397 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000192","Desired Access: Query Value","120"
"10:46:26.3702990 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000107","Query: Cached, SubKeys: 1, Values: 1","120"
"10:46:26.3703524 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000051","","120"
"10:46:26.3703984 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3704407 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000179","Desired Access: Query Value","120"
"10:46:26.3705026 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\CertificateRevocation","0.0000110","Length: 16","120"
"10:46:26.3705533 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000051","","120"
"10:46:26.3706062 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3706489 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000183","Desired Access: Query Value","120"
"10:46:26.3707039 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000094","Query: Cached, SubKeys: 2, Values: 0","120"
"10:46:26.3707504 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000052","","120"
"10:46:26.3707957 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3708371 AM","firefox.exe","7384","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000157","Desired Access: Query Value","120"
"10:46:26.3708951 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\CertificateRevocation","0.0000128","Type: REG_DWORD, Length: 4, Data: 1","120"
"10:46:26.3709476 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000051","","120"
"10:46:26.3710487 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DisableKeepAlive","0.0000119","Length: 144","120"
"10:46:26.3711562 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\IdnEnabled","0.0000107","Length: 16","120"
"10:46:26.3712334 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\PreConnectLimit","0.0000111","Length: 16","120"
"10:46:26.3713030 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\PreResolveLimit","0.0000107","Length: 16","120"
"10:46:26.3713986 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\CacheMode","0.0000106","Length: 16","120"
"10:46:26.3714899 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000051","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3715359 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000197","Desired Access: Read","120"
"10:46:26.3715991 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnableHttp1_1","0.0000111","Length: 144","120"
"10:46:26.3716524 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnableHttp1_1","0.0000086","Length: 144","120"
"10:46:26.3716998 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\EnableHttp1_1","0.0000111","Length: 144","120"
"10:46:26.3717531 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000043","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3717958 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000205","Desired Access: Read","120"
"10:46:26.3718555 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\EnableHttp1_1","0.0000115","Length: 144","120"
"10:46:26.3719212 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyHttp1.1","0.0000103","Length: 144","120"
"10:46:26.3719703 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyHttp1.1","0.0000090","Length: 144","120"
"10:46:26.3720177 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyHttp1.1","0.0000115","Length: 144","120"
"10:46:26.3720684 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyHttp1.1","0.0000111","Length: 144","120"
"10:46:26.3721503 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\EnableNegotiate","0.0000120","Type: REG_DWORD, Length: 4, Data: 1","120"
"10:46:26.3722148 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DisableBasicOverClearChannel","0.0000123","Length: 144","120"
"10:46:26.3722724 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnableAutoProxyResultCache","0.0000089","Length: 144","120"
"10:46:26.3723240 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\DisplayScriptDownloadFailureUI","0.0000175","Length: 144","120"
"10:46:26.3724537 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\MBCSServername","0.0000158","Length: 144","120"
"10:46:26.3725834 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\UTF8ServerNameRes","0.0000103","Length: 144","120"
"10:46:26.3726397 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DisableReadRange","0.0000111","Length: 144","120"
"10:46:26.3726952 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\SocketSendBufferLength","0.0000102","Length: 16","120"
"10:46:26.3727839 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\SocketReceiveBufferLength","0.0000107","Length: 16","120"
"10:46:26.3728582 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\KeepAliveTimeout","0.0000107","Length: 16","120"
"10:46:26.3729098 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\MaxHttpRedirects","0.0000111","Length: 16","120"
"10:46:26.3729747 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\MaxConnectionsPerServer","0.0000106","Length: 16","120"
"10:46:26.3730284 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\MaxConnectionsPerServer","0.0000120","Length: 16","120"
"10:46:26.3731022 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\MaxConnectionsPer1_0Server","0.0000111","Length: 16","120"
"10:46:26.3731564 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\MaxConnectionsPer1_0Server","0.0000107","Length: 16","120"
"10:46:26.3732358 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\MaxConnectionsPerProxy","0.0000166","Length: 16","120"
"10:46:26.3733177 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\MaxConnectionsPerProxy","0.0000137","Length: 16","120"
"10:46:26.3733996 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ServerInfoTimeout","0.0000150","Length: 16","120"
"10:46:26.3734854 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ConnectTimeOut","0.0000158","Length: 16","120"
"10:46:26.3735605 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ConnectTimeOut","0.0000141","Length: 16","120"
"10:46:26.3736287 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ConnectRetries","0.0000128","Length: 16","120"
"10:46:26.3736906 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ConnectRetries","0.0000115","Length: 16","120"
"10:46:26.3737674 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\SendTimeOut","0.0000141","Length: 16","120"
"10:46:26.3738318 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\SendTimeOut","0.0000137","Length: 16","120"
"10:46:26.3739018 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ReceiveTimeOut","0.0000137","Length: 16","120"
"10:46:26.3739573 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ReceiveTimeOut","0.0000106","Length: 16","120"
"10:46:26.3740132 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DisableNTLMPreAuth","0.0000115","Length: 144","120"
"10:46:26.3740934 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\CertCacheNoValidate","0.0000107","Length: 144","120"
"10:46:26.3741553 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000055","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3742133 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_NOTIFY_UNVERIFIED_SPN_KB2385266","0.0000162","Desired Access: Query Value","120"
"10:46:26.3742722 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl","0.0000051","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3743174 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_NOTIFY_UNVERIFIED_SPN_KB2385266","0.0000145","Desired Access: Query Value","120"
"10:46:26.3743724 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000043","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3744155 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_COMPAT_USE_CONNECTION_BASED_NEGOTIATE_AUTH_KB2151543","0.0000132","Desired Access: Query Value","120"
"10:46:26.3744650 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl","0.0000043","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3745064 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_COMPAT_USE_CONNECTION_BASED_NEGOTIATE_AUTH_KB2151543","0.0000141","Desired Access: Query Value","120"
"10:46:26.3745687 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\HttpDefaultExpiryTimeSecs","0.0000107","Length: 16","120"
"10:46:26.3746664 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\FtpDefaultExpiryTimeSecs","0.0000107","Length: 16","120"
"10:46:26.3747615 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3748063 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000282","Desired Access: Query Value","120"
"10:46:26.3748785 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\DisableCachingOfSSLPages","0.0000110","Length: 16","120"
"10:46:26.3749416 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000055","","120"
"10:46:26.3750009 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3750440 AM","firefox.exe","7384","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000179","Desired Access: Query Value","120"
"10:46:26.3751025 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DisableCachingOfSSLPages","0.0000119","Type: REG_DWORD, Length: 4, Data: 0","120"
"10:46:26.3751571 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000051","","120"
"10:46:26.3752100 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\LeashLegacyCookies","0.0000111","Length: 144","120"
"10:46:26.3752663 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DialupUseLanSettings","0.0000107","Length: 144","120"
"10:46:26.3753175 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\DialupUseLanSettings","0.0000111","Length: 144","120"
"10:46:26.3753721 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\SendExtraCRLF","0.0000107","Length: 144","120"
"10:46:26.3754263 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\BypassHTTPNoCacheCheck","0.0000098","Length: 144","120"
"10:46:26.3754762 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\BypassHTTPNoCacheCheck","0.0000103","Length: 144","120"
"10:46:26.3755313 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\BypassSSLNoCacheCheck","0.0000102","Length: 144","120"
"10:46:26.3755812 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\BypassSSLNoCacheCheck","0.0000106","Length: 144","120"
"10:46:26.3756349 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\EnableHttpTrace","0.0000107","Length: 144","120"
"10:46:26.3756887 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\NoCheckAutodialOverRide","0.0000102","Length: 144","120"
"10:46:26.3757390 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\NoCheckAutodialOverRide","0.0000103","Length: 144","120"
"10:46:26.3757907 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000042","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3758355 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SCH_SEND_AUX_RECORD_KB_2618444","0.0000132","Desired Access: Query Value","120"
"10:46:26.3758854 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl","0.0000051","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3759281 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SCH_SEND_AUX_RECORD_KB_2618444","0.0000128","Desired Access: Query Value","120"
"10:46:26.3759993 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DontUseDNSLoadBalancing","0.0000111","Length: 144","120"
"10:46:26.3760514 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\DontUseDNSLoadBalancing","0.0000106","Length: 144","120"
"10:46:26.3761055 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ShareCredsWithWinHttp","0.0000099","Length: 144","120"
"10:46:26.3761939 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\MimeExclusionListForCache","0.0000106","Length: 12","120"
"10:46:26.3762971 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\MimeExclusionListForCache","0.0000111","Length: 144","120"
"10:46:26.3764029 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\HeaderExclusionListForCache","0.0000111","Length: 12","120"
"10:46:26.3764541 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000052","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3764981 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Hvsi","0.0000209","Desired Access: Read","120"
"10:46:26.3765570 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Hvsi","0.0000273","Desired Access: Read","120"
"10:46:26.3766235 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3766641 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters\dnscache","0.0000157","Desired Access: Read","120"
"10:46:26.3767298 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\dnscache","0.0000268","Desired Access: Read","120"
"10:46:26.3768454 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000051","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3768919 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Download","0.0000183","Desired Access: Read","120"
"10:46:26.3769585 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000047","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3770020 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_TOKEN_BINDING","0.0000124","Desired Access: Query Value","120"
"10:46:26.3770510 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl","0.0000052","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3771027 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_TOKEN_BINDING","0.0000175","Desired Access: Query Value","120"
"10:46:26.3772196 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DnsCacheEnabled","0.0000166","Length: 144","120"
"10:46:26.3772900 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DnsCacheEntries","0.0000111","Length: 16","120"
"10:46:26.3773442 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DnsCacheTimeout","0.0000102","Length: 16","120"
"10:46:26.3774406 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnPost","0.0000111","Length: 144","120"
"10:46:26.3774956 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnAlwaysOnPost","0.0000103","Length: 144","120"
"10:46:26.3775473 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnZoneCrossing","0.0000119","Type: REG_DWORD, Length: 4, Data: 0","120"
"10:46:26.3776036 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnBadCertRecving","0.0000102","Length: 144","120"
"10:46:26.3776928 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnPostRedirect","0.0000106","Length: 144","120"
"10:46:26.3777478 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\AlwaysDrainOnRedirect","0.0000107","Length: 144","120"
"10:46:26.3778003 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnHTTPSToHTTPRedirect","0.0000102","Length: 144","120"
"10:46:26.3778677 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\TcpAutotuning","0.0000115","Length: 16","120"
"10:46:26.3779168 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000046","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3779603 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000247","Desired Access: Query Value","120"
"10:46:26.3780234 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\DisableHttp2ConnectionSharing","0.0000103","Length: 16","120"
"10:46:26.3780802 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000059","","120"
"10:46:26.3791413 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","120"
"10:46:26.3792010 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000077","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","120"
"10:46:26.3792305 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000102","","120"
"10:46:26.3794694 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000354","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","120"
"10:46:26.3795453 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000163","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","120"
"10:46:26.3796128 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000042","SyncType: SyncTypeOther","120"
"10:46:26.3797881 AM","firefox.exe","7384","Load Image","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000000","Image Base: 0x7ffb30210000, Image Size: 0x15000","120"
"10:46:26.3798474 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000145","Name: \Windows\System32\OnDemandConnRouteHelper.dll","120"
"10:46:26.3802323 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000205","","120"
"10:46:26.3811739 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000427","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","120"
"10:46:26.3812849 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000102","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","120"
"10:46:26.3813288 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000141","","120"
"10:46:26.3816556 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000346","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","120"
"10:46:26.3817585 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winhttp.dll","0.0000081","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","120"
"10:46:26.3818365 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winhttp.dll","0.0000056","SyncType: SyncTypeOther","120"
"10:46:26.3820153 AM","firefox.exe","7384","Load Image","C:\Windows\System32\winhttp.dll","0.0000000","Image Base: 0x7ffb3b150000, Image Size: 0xdd000","120"
"10:46:26.3820832 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\winhttp.dll","0.0000132","Name: \Windows\System32\winhttp.dll","120"
"10:46:26.3826818 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000205","","120"
"10:46:26.3829809 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000055","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3830252 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000214","Desired Access: Query Value","120"
"10:46:26.3830799 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ProxySettingsPerUser","0.0000089","Length: 16","120"
"10:46:26.3831217 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000038","","120"
"10:46:26.3831515 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3831852 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000137","Desired Access: Query Value","120"
"10:46:26.3832236 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\CallLegacyWCMPolicies","0.0000081","Type: REG_DWORD, Length: 4, Data: 0","120"
"10:46:26.3832591 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000034","","120"
"10:46:26.3832855 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3833158 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000141","Desired Access: Query Value","120"
"10:46:26.3833551 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\AutoProxyQueryWithFullUrl","0.0000072","Length: 16","120"
"10:46:26.3833888 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000034","","120"
"10:46:26.3834336 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnableLegacyAutoProxyFeatures","0.0000059","Length: 16","120"
"10:46:26.3834856 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\BadProxyExpiresTime","0.0000077","Length: 16","120"
"10:46:26.3836456 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\AutoProxyDetectType","0.0000073","Length: 16","120"
"10:46:26.3837211 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\DisableBranchCache","0.0000064","Length: 144","120"
"10:46:26.3842178 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000388","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","120"
"10:46:26.3843005 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Windows","0.0000082","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,870, SectorsPerAllocationUnit: 8, BytesPerSector: 512","120"
"10:46:26.3843415 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000132","","120"
"10:46:26.3844516 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000043","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3844917 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main","0.0000136","Desired Access: Read","120"
"10:46:26.3845395 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Internet Explorer\Main\FrameTabWindow","0.0000094","Length: 144","120"
"10:46:26.3845809 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000038","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3846137 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Internet Explorer\Main","0.0000124","Desired Access: Read","120"
"10:46:26.3846167 AM","firefox.exe","7384","ReadFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0678098","Offset: 348,160, Length: 12,800, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7508"
"10:46:26.3846598 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FrameTabWindow","0.0000081","Length: 144","120"
"10:46:26.3847012 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Internet Explorer\Main\FrameMerging","0.0000068","Length: 144","120"
"10:46:26.3847353 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FrameMerging","0.0000073","Length: 144","120"
"10:46:26.3847780 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Internet Explorer\Main\SessionMerging","0.0000089","Length: 144","120"
"10:46:26.3848138 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\SessionMerging","0.0000069","Length: 144","120"
"10:46:26.3848714 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Internet Explorer\Main\AdminTabProcs","0.0000115","Length: 144","120"
"10:46:26.3849410 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\AdminTabProcs","0.0000085","Length: 144","120"
"10:46:26.3850148 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000034","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3850451 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Security","0.0000136","Desired Access: Read","120"
"10:46:26.3850831 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Internet Explorer\Security\RunBinaryControlHostProcessInSeparateAppContainer","0.0000051","Length: 144","120"
"10:46:26.3851108 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3851317 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Internet Explorer\Security","0.0000098","Desired Access: Read","120"
"10:46:26.3851607 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Internet Explorer\Security\RunBinaryControlHostProcessInSeparateAppContainer","0.0000043","Length: 144","120"
"10:46:26.3851957 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3852162 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\Internet Explorer\Main","0.0000115","Desired Access: Read","120"
"10:46:26.3852866 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000025","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3853071 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Policies\Microsoft\Internet Explorer\Main","0.0000076","Desired Access: Read","120"
"10:46:26.3853378 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Internet Explorer\Main\TabProcGrowth","0.0000051","Length: 144","120"
"10:46:26.3853608 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\TabProcGrowth","0.0000064","Type: REG_SZ, Length: 14, Data: Medium","120"
"10:46:26.3854406 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\UseFirstAvailable","0.0000060","Length: 144","120"
"10:46:26.3854671 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\CombineFalseStartData","0.0000042","Length: 144","120"
"10:46:26.3854956 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DisableFalseStartBlocklist","0.0000047","Length: 144","120"
"10:46:26.3855187 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\EnableHttp2Upgrade","0.0000047","Length: 144","120"
"10:46:26.3855464 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\DuoProtocols","0.0000043","Length: 16","120"
"10:46:26.3855690 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\EnableSpdyDebugAsserts","0.0000047","Length: 144","120"
"10:46:26.3855899 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000022","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3856104 AM","firefox.exe","7384","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000201","Desired Access: Query Value","120"
"10:46:26.3856458 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\EnableTcpFastOpen","0.0000043","Length: 16","120"
"10:46:26.3856731 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000026","","120"
"10:46:26.3857555 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3857743 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000106","Desired Access: Query Value","120"
"10:46:26.3858007 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\EdpEnforcementOverride","0.0000051","Length: 16","120"
"10:46:26.3858246 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000021","","120"
"10:46:26.3859961 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000051","Query: HandleTags, HandleTags: 0x0","2956"
"10:46:26.3860409 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Winsock\Parameters","0.0000150","Desired Access: Read","2956"
"10:46:26.3860861 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock\Parameters","0.0000278","Desired Access: Read","2956"
"10:46:26.3861032 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000043","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3861301 AM","firefox.exe","7384","RegOpenKey","HKLM\System\Setup","0.0000077","Desired Access: Read","120"
"10:46:26.3861519 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Winsock\Parameters\Transports","0.0000145","Length: 12","2956"
"10:46:26.3861583 AM","firefox.exe","7384","RegQueryValue","HKLM\SYSTEM\Setup\SystemSetupInProgress","0.0000093","Type: REG_DWORD, Length: 4, Data: 0","120"
"10:46:26.3861890 AM","firefox.exe","7384","RegCloseKey","HKLM\SYSTEM\Setup","0.0000025","","120"
"10:46:26.3861941 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Winsock\Parameters\Transports","0.0000077","Type: REG_MULTI_SZ, Length: 92, Data: afunix, Tcpip, Tcpip6, Psched, vmbus, irda, RFCOMM","2956"
"10:46:26.3862368 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Winsock\Parameters","0.0000047","","2956"
"10:46:26.3862406 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000026","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3862611 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\windows\CurrentVersion\Internet Settings","0.0000089","Desired Access: Query Value","120"
"10:46:26.3862730 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","2956"
"10:46:26.3862884 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\MigrateProxy","0.0000064","Type: REG_DWORD, Length: 4, Data: 1","120"
"10:46:26.3863063 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock","0.0000128","Desired Access: Read","2956"
"10:46:26.3863136 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000029","","120"
"10:46:26.3863392 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000021","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3863434 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock","0.0000248","Desired Access: Read","2956"
"10:46:26.3863588 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000077","Desired Access: Read","120"
"10:46:26.3863831 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnable","0.0000060","Type: REG_DWORD, Length: 4, Data: 0","120"
"10:46:26.3863980 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock\Mapping","0.0000077","Length: 12","2956"
"10:46:26.3864117 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyServer","0.0000055","Length: 144","120"
"10:46:26.3864296 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock\Mapping","0.0000068","Type: REG_BINARY, Length: 20, Data: 01 00 00 00 03 00 00 00 01 00 00 00 01 00 00 00","2956"
"10:46:26.3864390 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyOverride","0.0000055","Length: 144","120"
"10:46:26.3864659 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock","0.0000034","","2956"
"10:46:26.3864710 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\AutoConfigURL","0.0000051","Length: 144","120"
"10:46:26.3864902 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\AutoDetect","0.0000043","Length: 16","120"
"10:46:26.3864953 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","2956"
"10:46:26.3865179 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000026","","120"
"10:46:26.3865248 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000089","Desired Access: Read","2956"
"10:46:26.3865508 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\DialupAutodetect","0.0000043","Length: 16","120"
"10:46:26.3865568 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000157","Desired Access: Read","2956"
"10:46:26.3865986 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock\Mapping","0.0000059","Length: 12","2956"
"10:46:26.3866250 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock\Mapping","0.0000069","Type: REG_BINARY, Length: 104, Data: 08 00 00 00 03 00 00 00 02 00 00 00 01 00 00 00","2956"
"10:46:26.3866511 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3866583 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000030","","2956"
"10:46:26.3866741 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000107","Desired Access: Query Value","120"
"10:46:26.3866860 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","2956"
"10:46:26.3867044 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ShareCredsWithWinHttp","0.0000055","Length: 16","120"
"10:46:26.3867138 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Winsock","0.0000094","Desired Access: Read","2956"
"10:46:26.3867291 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000026","","120"
"10:46:26.3867449 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Winsock","0.0000150","Desired Access: Read","2956"
"10:46:26.3867863 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Winsock\Mapping","0.0000060","Length: 12","2956"
"10:46:26.3868115 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Winsock\Mapping","0.0000060","Type: REG_BINARY, Length: 104, Data: 08 00 00 00 03 00 00 00 17 00 00 00 01 00 00 00","2956"
"10:46:26.3868303 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3868597 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Winsock","0.0000119","","2956"
"10:46:26.3868746 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\WinHttp","0.0000235","Desired Access: Query Value","120"
"10:46:26.3868968 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","2956"
"10:46:26.3869194 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Winsock\Setup Migration\Providers","0.0000094","Desired Access: Read","2956"
"10:46:26.3869420 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\WinHttp\DefaultSecureProtocols","0.0000107","Length: 16","120"
"10:46:26.3869459 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers","0.0000213","Desired Access: Read","2956"
"10:46:26.3869877 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers","0.0000055","Query: HandleTags, HandleTags: 0x0","2956"
"10:46:26.3870014 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\WinHttp","0.0000042","","120"
"10:46:26.3870159 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers\Tcpip6","0.0000128","Desired Access: Read","2956"
"10:46:26.3870329 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3870555 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers\Tcpip6\WinSock 2.0 Provider ID","0.0000073","Type: REG_BINARY, Length: 16, Data: C0 B0 EA F9 D4 26 D0 11 BB BF 00 AA 00 6C 34 E4","2956"
"10:46:26.3870632 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\WinHttp","0.0000128","Desired Access: Query Value","120"
"10:46:26.3870905 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers\Tcpip6","0.0000030","","2956"
"10:46:26.3871020 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\WinHttp\DisableBranchCache","0.0000052","Length: 16","120"
"10:46:26.3871166 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers","0.0000051","","2956"
"10:46:26.3871336 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\WinHttp","0.0000039","","120"
"10:46:26.3871468 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","2956"
"10:46:26.3871618 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3871733 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Winsock","0.0000094","Desired Access: Read","2956"
"10:46:26.3871908 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\WinHttp","0.0000119","Desired Access: Query Value","120"
"10:46:26.3872049 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Winsock","0.0000098","Desired Access: Read","2956"
"10:46:26.3872292 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\WinHttp\DisableAutoProxyAuth","0.0000047","Length: 16","120"
"10:46:26.3872369 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Winsock\MinSockaddrLength","0.0000072","Type: REG_DWORD, Length: 4, Data: 28","2956"
"10:46:26.3872603 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\WinHttp","0.0000030","","120"
"10:46:26.3872642 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Winsock\MaxSockaddrLength","0.0000055","Type: REG_DWORD, Length: 4, Data: 28","2956"
"10:46:26.3872894 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Winsock\UseDelayedAcceptance","0.0000320","Type: REG_DWORD, Length: 4, Data: 0","2956"
"10:46:26.3872949 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000141","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:26.3873039 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000038","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3873329 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\WinHttp","0.0000123","Desired Access: Query Value","120"
"10:46:26.3873406 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Mozilla\Firefox","0.0000204","Desired Access: Read","5728"
"10:46:26.3873478 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip6\Parameters\Winsock","0.0000030","","2956"
"10:46:26.3873704 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\WinHttp\EnableDefaultHttp2","0.0000060","Length: 16","120"
"10:46:26.3874007 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Mozilla\Firefox\Uninstalled-nightly","0.0000043","Length: 12","5728"
"10:46:26.3874037 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\WinHttp","0.0000030","","120"
"10:46:26.3874319 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3874391 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Mozilla\Firefox","0.0000047","","5728"
"10:46:26.3874622 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\WinHttp","0.0000119","Desired Access: Query Value","120"
"10:46:26.3875010 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\WinHttp\AutoProxyQueryWithFullUrl","0.0000247","Length: 16","120"
"10:46:26.3875146 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000064","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:26.3875530 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Mozilla\Firefox","0.0000218","Desired Access: Query Value, Set Value","5728"
"10:46:26.3875624 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\WinHttp","0.0000051","","120"
"10:46:26.3876140 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3876392 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Hvsi","0.0000196","Desired Access: Read","120"
"10:46:26.3876405 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Mozilla\Firefox\Uninstalled-nightly","0.0000073","Length: 12","5728"
"10:46:26.3876844 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Hvsi","0.0000107","Desired Access: Read","120"
"10:46:26.3876938 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Mozilla\Firefox","0.0000026","","5728"
"10:46:26.3877254 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3877557 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters\dnscache","0.0000098","Desired Access: Read","120"
"10:46:26.3877907 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\dnscache","0.0000115","Desired Access: Read","120"
"10:46:26.3890447 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000221","Name: \Windows\System32\sechost.dll","8024"
"10:46:26.3894282 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000047","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:26.3894713 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\Defaults\Provider Types\Type 001","0.0000286","Desired Access: Read","5728"
"10:46:26.3895328 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\Defaults\Provider Types\Type 001\Name","0.0000076","Length: 12","5728"
"10:46:26.3895605 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\Defaults\Provider Types\Type 001\Name","0.0000073","Type: REG_SZ, Length: 80, Data: Microsoft Strong Cryptographic Provider","5728"
"10:46:26.3895878 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\Defaults\Provider Types\Type 001\Name","0.0000051","Length: 52","5728"
"10:46:26.3896126 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\Defaults\Provider Types\Type 001\Name","0.0000046","Type: REG_SZ, Length: 80, Data: Microsoft Strong Cryptographic Provider","5728"
"10:46:26.3896475 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\Defaults\Provider Types\Type 001","0.0000030","","5728"
"10:46:26.3896693 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:26.3896906 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Microsoft Strong Cryptographic Provider","0.0000214","Desired Access: Read","5728"
"10:46:26.3897623 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Microsoft Strong Cryptographic Provider\Type","0.0000068","Type: REG_DWORD, Length: 4, Data: 1","5728"
"10:46:26.3897862 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Microsoft Strong Cryptographic Provider\Image Path","0.0000043","Length: 12","5728"
"10:46:26.3898046 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Microsoft Strong Cryptographic Provider\Image Path","0.0000059","Type: REG_SZ, Length: 66, Data: %SystemRoot%\system32\rsaenh.dll","5728"
"10:46:26.3898511 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Microsoft Strong Cryptographic Provider\Image Path","0.0000055","Length: 45","5728"
"10:46:26.3898720 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Microsoft Strong Cryptographic Provider\Image Path","0.0000055","Type: REG_SZ, Length: 66, Data: %SystemRoot%\system32\rsaenh.dll","5728"
"10:46:26.3899684 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:26.3899919 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Cryptography","0.0000085","Desired Access: Read","5728"
"10:46:26.3900196 AM","firefox.exe","7384","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Cryptography","0.0000021","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:26.3900396 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\MachineGuid","0.0000056","Length: 12","5728"
"10:46:26.3900665 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\MachineGuid","0.0000056","Type: REG_SZ, Length: 74, Data: bcdaa5f1-507c-43e0-97f8-5e82f17f7e65","5728"
"10:46:26.3900900 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\MachineGuid","0.0000055","Length: 49","5728"
"10:46:26.3901113 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Cryptography\MachineGuid","0.0000056","Type: REG_SZ, Length: 74, Data: bcdaa5f1-507c-43e0-97f8-5e82f17f7e65","5728"
"10:46:26.3901450 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography","0.0000026","","5728"
"10:46:26.3901689 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:26.3901903 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Cryptography\Offload","0.0000085","Desired Access: Read","5728"
"10:46:26.3902410 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Cryptography\Defaults\Provider\Microsoft Strong Cryptographic Provider","0.0000030","","5728"
"10:46:26.3909455 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000196","Name: \Windows\System32\sechost.dll","2956"
"10:46:26.3916414 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000029","Query: HandleTags, HandleTags: 0x0","120"
"10:46:26.3916678 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000090","Desired Access: Read","120"
"10:46:26.3916960 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnable","0.0000068","Type: REG_DWORD, Length: 4, Data: 0","120"
"10:46:26.3917322 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyServer","0.0000052","Length: 144","120"
"10:46:26.3917595 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyOverride","0.0000047","Length: 144","120"
"10:46:26.3917864 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\AutoConfigURL","0.0000047","Length: 144","120"
"10:46:26.3918048 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\AutoDetect","0.0000042","Length: 16","120"
"10:46:26.3918299 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings","0.0000022","","120"
"10:46:26.3919370 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\wininet.dll","0.0265439","Offset: 4,733,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","120"
"10:46:26.3965241 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\SiteSecurityServiceState.txt","0.0000120","AllocationSize: 4,096, EndOfFile: 3,825, NumberOfLinks: 1, DeletePending: False, Directory: False","7896"
"10:46:26.3968296 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\SiteSecurityServiceState.txt","0.0000239","","7896"
"10:46:26.3971991 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\SecurityPreloadState.txt","0.0145588","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7896"
"10:46:26.4020060 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 1940","5728"
"10:46:26.4025662 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0092441","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:26.4078560 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0237965","Offset: 290,816, Length: 28,678, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:26.4118355 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\SecurityPreloadState.txt","0.0000132","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","7896"
"10:46:26.4118530 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000068","CreationTime: 6/19/2019 4:53:26 PM, LastAccessTime: 3/26/2020 10:46:23 AM, LastWriteTime: 3/26/2020 10:46:23 AM, ChangeTime: 3/26/2020 10:46:23 AM, FileAttributes: D","5728"
"10:46:26.4118918 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\SecurityPreloadState.txt","0.0000162","","7896"
"10:46:26.4118935 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000137","","5728"
"10:46:26.4120032 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\last_permahang.bin","0.0000286","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","740"
"10:46:26.4121649 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000213","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:26.4122110 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000230","Filter: lq450czk.test, 1: lq450czk.test","5728"
"10:46:26.4122596 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000068","","5728"
"10:46:26.4123582 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\last_permahang.bin","0.0000559","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","740"
"10:46:26.4128617 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000448","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:26.4129269 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000060","CreationTime: 6/19/2019 4:53:26 PM, LastAccessTime: 3/26/2020 10:46:20 AM, LastWriteTime: 3/26/2020 10:46:20 AM, ChangeTime: 3/26/2020 10:46:20 AM, FileAttributes: D","5728"
"10:46:26.4129504 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000077","","5728"
"10:46:26.4130985 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles","0.0000140","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:26.4131283 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000154","Filter: lq450czk.test, 1: lq450czk.test","5728"
"10:46:26.4131590 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles","0.0000047","","5728"
"10:46:26.4134061 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\Cache","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:26.4136506 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:26.4136766 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000038","CreationTime: 6/19/2019 4:53:26 PM, LastAccessTime: 3/26/2020 10:46:23 AM, LastWriteTime: 3/26/2020 10:46:23 AM, ChangeTime: 3/26/2020 10:46:23 AM, FileAttributes: D","5728"
"10:46:26.4136898 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000043","","5728"
"10:46:26.4138093 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:26.4138374 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000124","Filter: lq450czk.test, 1: lq450czk.test","5728"
"10:46:26.4138635 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000042","","5728"
"10:46:26.4140678 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:26.4140913 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000030","CreationTime: 6/19/2019 4:53:26 PM, LastAccessTime: 3/26/2020 10:46:20 AM, LastWriteTime: 3/26/2020 10:46:20 AM, ChangeTime: 3/26/2020 10:46:20 AM, FileAttributes: D","5728"
"10:46:26.4141033 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000042","","5728"
"10:46:26.4142155 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles","0.0000119","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:26.4142415 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000107","Filter: lq450czk.test, 1: lq450czk.test","5728"
"10:46:26.4142645 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles","0.0000047","","5728"
"10:46:26.4144890 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\OfflineCache","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:26.4147313 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000171","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1940"
"10:46:26.4147710 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\*","0.0000277","Filter: *, 1: .","1940"
"10:46:26.4148444 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000162","0: .., 1: .startup-incomplete, 2: activity-stream.discovery_stream.json, 3: activity-stream.topstories.json, 4: cache2, 5: jumpListCache, 6: OfflineCache, 7: safebrowsing, 8: settings, 9: ShutdownDuration.json, 10: ShutdownDuration.json.tmp, 11: startupCache, 12: thumbnails","1940"
"10:46:26.4148964 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000051","","1940"
"10:46:26.4149199 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000081","","1940"
"10:46:26.4150850 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1940"
"10:46:26.4151149 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\*","0.0000128","Filter: *, 1: .","1940"
"10:46:26.4151418 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000132","0: .., 1: .startup-incomplete, 2: activity-stream.discovery_stream.json, 3: activity-stream.topstories.json, 4: cache2, 5: jumpListCache, 6: OfflineCache, 7: safebrowsing, 8: settings, 9: ShutdownDuration.json, 10: ShutdownDuration.json.tmp, 11: startupCache, 12: thumbnails","1940"
"10:46:26.4151785 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000029","","1940"
"10:46:26.4151934 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000051","","1940"
"10:46:26.4154908 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\Cache.Trash19718","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","1940"
"10:46:26.4157540 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4157843 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000043","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:26.4157984 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000060","","740"
"10:46:26.4159243 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\Cache","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","1940"
"10:46:26.4160301 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4160531 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000034","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:26.4160659 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000047","","740"
"10:46:26.4162737 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4162963 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000030","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:26.4163083 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000047","","740"
"10:46:26.4165796 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4166342 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000052","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.4166530 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000081","","740"
"10:46:26.4170037 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4170490 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000047","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.4170647 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000073","","740"
"10:46:26.4174475 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4175004 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000059","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.4175187 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000068","","740"
"10:46:26.4176207 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\AlternateServices.txt","0.0084826","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7896"
"10:46:26.4178554 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4178946 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000043","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:26.4179078 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000056","","740"
"10:46:26.4181357 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4181677 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000030","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:26.4181796 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000047","","740"
"10:46:26.4183874 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4184177 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000026","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:26.4184292 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000043","","740"
"10:46:26.4185060 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000222","Desired Access: Read","120"
"10:46:26.4186908 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\wininet.dll.mui","0.0000234","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","120"
"10:46:26.4187398 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\wininet.dll.mui","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","120"
"10:46:26.4187561 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\wininet.dll.mui","0.0000038","AllocationSize: 36,864, EndOfFile: 34,816, NumberOfLinks: 4, DeletePending: False, Directory: False","120"
"10:46:26.4187821 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\wininet.dll.mui","0.0000017","SyncType: SyncTypeOther","120"
"10:46:26.4187936 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4188363 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000051","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.4188589 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000085","","740"
"10:46:26.4193103 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4193197 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000072","Name: \Windows\System32\sechost.dll","2956"
"10:46:26.4193457 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000051","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.4193662 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000085","","740"
"10:46:26.4197754 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4198155 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000055","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.4198394 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000089","","740"
"10:46:26.4201871 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000077","Name: \Windows\System32\sechost.dll","2956"
"10:46:26.4201901 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4202426 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000042","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:26.4202596 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000060","","740"
"10:46:26.4204943 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4205318 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000043","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:26.4205451 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000059","","740"
"10:46:26.4207738 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4208053 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000030","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:26.4208173 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000047","","740"
"10:46:26.4210549 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4210878 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000034","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:26.4210997 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000052","","740"
"10:46:26.4213190 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4213493 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000035","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:26.4213613 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000043","","740"
"10:46:26.4215755 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4216058 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:26.4216173 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000047","","740"
"10:46:26.4218451 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4218780 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.4218895 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000043","","740"
"10:46:26.4220952 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4221250 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.4221365 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000043","","740"
"10:46:26.4223375 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4223669 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.4223785 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000042","","740"
"10:46:26.4226050 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4226362 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000030","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:26.4226477 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000043","","740"
"10:46:26.4228606 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4228896 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000030","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:26.4229011 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000043","","740"
"10:46:26.4231268 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4231567 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000030","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:26.4231682 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000047","","740"
"10:46:26.4233897 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4234217 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000025","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:26.4234328 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000042","","740"
"10:46:26.4236457 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4236755 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000030","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:26.4236871 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000042","","740"
"10:46:26.4238863 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4239149 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000026","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:26.4239260 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000043","","740"
"10:46:26.4241513 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4241747 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:26.4241858 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000043","","740"
"10:46:26.4243915 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4244124 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:26.4244231 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000042","","740"
"10:46:26.4246176 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4246381 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:26.4246488 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000038","","740"
"10:46:26.4248898 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4249227 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:26.4249342 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000047","","740"
"10:46:26.4251586 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4251889 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:26.4252009 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000042","","740"
"10:46:26.4254044 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4254343 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:26.4254453 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000043","","740"
"10:46:26.4256757 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4257073 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:26.4257188 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000043","","740"
"10:46:26.4259211 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4259497 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:26.4259608 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000042","","740"
"10:46:26.4261468 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\AlternateServices.txt","0.0000055","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","7896"
"10:46:26.4261630 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4261767 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\AlternateServices.txt","0.0000089","","7896"
"10:46:26.4261929 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:26.4262048 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000047","","740"
"10:46:26.4264309 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\TRRBlacklist.txt","0.0011700","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7896"
"10:46:26.4264425 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4264762 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.4264877 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000047","","740"
"10:46:26.4266976 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4267275 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.4267386 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000047","","740"
"10:46:26.4269408 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4269694 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.4269805 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000047","","740"
"10:46:26.4272088 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4272318 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000026","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:26.4272425 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000042","","740"
"10:46:26.4274451 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4274669 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000026","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:26.4274776 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000042","","740"
"10:46:26.4276354 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\TRRBlacklist.txt","0.0000051","AllocationSize: 48, EndOfFile: 45, NumberOfLinks: 1, DeletePending: False, Directory: False","7896"
"10:46:26.4276615 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\TRRBlacklist.txt","0.0000678","Offset: 0, Length: 45, Priority: Normal","7896"
"10:46:26.4276807 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4277024 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000115","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:26.4277050 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\TRRBlacklist.txt","0.0000098","Offset: 0, Length: 45, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7896"
"10:46:26.4277276 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000077","","740"
"10:46:26.4277481 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\TRRBlacklist.txt","0.0000030","AllocationSize: 48, EndOfFile: 45, NumberOfLinks: 1, DeletePending: False, Directory: False","7896"
"10:46:26.4277771 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\TRRBlacklist.txt","0.0000089","","7896"
"10:46:26.4280553 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4280915 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000047","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:26.4281095 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000068","","740"
"10:46:26.4283855 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4284196 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000047","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:26.4284371 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000077","","740"
"10:46:26.4287734 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000392","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4288258 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000039","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:26.4288403 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000064","","740"
"10:46:26.4292482 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000244","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4293033 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000047","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:26.4293195 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000064","","740"
"10:46:26.4298008 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4298618 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000055","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:26.4298814 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000085","","740"
"10:46:26.4300324 AM","firefox.exe","7972","Thread Create","","0.0000000","Thread ID: 3064","8292"
"10:46:26.4301929 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4302479 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000051","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:26.4302680 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000081","","740"
"10:46:26.4302919 AM","firefox.exe","7972","Thread Create","","0.0000000","Thread ID: 4156","8292"
"10:46:26.4306746 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4307305 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000055","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:26.4307505 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000086","","740"
"10:46:26.4308960 AM","firefox.exe","7972","RegOpenKey","HKLM","0.0000128","Desired Access: Maximum Allowed, Granted Access: Read","8292"
"10:46:26.4309387 AM","firefox.exe","7972","RegOpenKey","HKLM\System\Setup","0.0000089","Desired Access: Read","8292"
"10:46:26.4309720 AM","firefox.exe","7972","RegCloseKey","HKLM","0.0000025","","8292"
"10:46:26.4310351 AM","firefox.exe","7972","RegQueryValue","HKLM\SYSTEM\Setup\SystemSetupInProgress","0.0000073","Type: REG_DWORD, Length: 4, Data: 0","8292"
"10:46:26.4310628 AM","firefox.exe","7972","RegCloseKey","HKLM\SYSTEM\Setup","0.0000022","","8292"
"10:46:26.4311004 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4311409 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:26.4311542 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000059","","740"
"10:46:26.4317174 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\devobj.dll","0.0000324","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:26.4317852 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000064","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","8292"
"10:46:26.4317856 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0005248","Offset: 32,768, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:26.4318040 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\devobj.dll","0.0000085","","8292"
"10:46:26.4318057 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4318722 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000056","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:26.4318970 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000089","","740"
"10:46:26.4319576 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\devobj.dll","0.0000175","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:26.4320250 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\devobj.dll","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:26.4320655 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\devobj.dll","0.0000017","SyncType: SyncTypeOther","8292"
"10:46:26.4320996 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\devobj.dll","0.0000039","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:26.4321722 AM","firefox.exe","7972","Load Image","C:\Windows\System32\devobj.dll","0.0000000","Image Base: 0x7ffb458a0000, Image Size: 0x27000","8292"
"10:46:26.4321986 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\devobj.dll","0.0000060","Name: \Windows\System32\devobj.dll","8292"
"10:46:26.4323736 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\devobj.dll","0.0000106","","8292"
"10:46:26.4324201 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4324636 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000051","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:26.4324653 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0089229","Offset: 65,536, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:26.4324841 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000085","","740"
"10:46:26.4326539 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}","0.0000132","Desired Access: All Access","8292"
"10:46:26.4326978 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}\Properties","0.0000034","Desired Access: Query Value","8292"
"10:46:26.4327443 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}","0.0000022","","8292"
"10:46:26.4328839 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4329035 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}","0.0000077","Desired Access: Query Value","8292"
"10:46:26.4329265 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000056","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:26.4329393 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}\Properties","0.0000051","Desired Access: Query Value","8292"
"10:46:26.4329474 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000086","","740"
"10:46:26.4329688 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}","0.0000025","","8292"
"10:46:26.4333105 AM","firefox.exe","7972","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000128","Desired Access: Read, Maximum Allowed","8292"
"10:46:26.4333447 AM","firefox.exe","7972","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000047","Type: REG_DWORD, Length: 4, Data: 3","8292"
"10:46:26.4333694 AM","firefox.exe","7972","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000026","","8292"
"10:46:26.4333878 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4333980 AM","firefox.exe","7972","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000060","Desired Access: Read","8292"
"10:46:26.4334249 AM","firefox.exe","7972","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000051","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","8292"
"10:46:26.4334287 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000060","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:26.4334488 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000085","","740"
"10:46:26.4334560 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000090","Desired Access: Read","8292"
"10:46:26.4334829 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000090","Desired Access: Read","8292"
"10:46:26.4335102 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000047","Desired Access: Read","8292"
"10:46:26.4335367 AM","firefox.exe","7972","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","8292"
"10:46:26.4335542 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000089","Length: 52","8292"
"10:46:26.4335768 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000017","","8292"
"10:46:26.4336049 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000167","Desired Access: Query Value, Maximum Allowed","8292"
"10:46:26.4336442 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000038","Length: 268","8292"
"10:46:26.4336672 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000017","","8292"
"10:46:26.4336954 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000043","Desired Access: Query Value, Maximum Allowed","8292"
"10:46:26.4337154 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000039","Type: REG_MULTI_SZ, Length: 292, Data: PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02, PCI\VEN_8086&DEV_5916&SUBSYS_10941025, PCI\VEN_8086&DEV_5916&CC_030000, PCI\VEN_8086&DEV_5916&CC_0300","8292"
"10:46:26.4337338 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000017","","8292"
"10:46:26.4337534 AM","firefox.exe","7972","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000047","Desired Access: Read","8292"
"10:46:26.4337722 AM","firefox.exe","7972","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000038","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","8292"
"10:46:26.4337875 AM","firefox.exe","7972","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000013","","8292"
"10:46:26.4338315 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4338716 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000055","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.4338904 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000230","","740"
"10:46:26.4342786 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4343089 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.4343230 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000060","","740"
"10:46:26.4344263 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000094","Desired Access: Query Value, Maximum Allowed","8292"
"10:46:26.4344728 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\Driver","0.0000072","Type: REG_SZ, Length: 88, Data: {4d36e968-e325-11ce-bfc1-08002be10318}\0001","8292"
"10:46:26.4345154 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000026","","8292"
"10:46:26.4345555 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4345709 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4345871 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000098","Desired Access: Query Value","8292"
"10:46:26.4345961 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.4346089 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000047","","740"
"10:46:26.4346217 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000136","Desired Access: Query Value","8292"
"10:46:26.4346631 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\DriverVersion","0.0000106","Type: REG_SZ, Length: 28, Data: 23.20.16.5038","8292"
"10:46:26.4346989 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\DriverDate","0.0000094","Type: REG_SZ, Length: 20, Data: 4-18-2018","8292"
"10:46:26.4347373 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000021","","8292"
"10:46:26.4349110 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000157","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4349165 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}","0.0000137","Desired Access: All Access","8292"
"10:46:26.4349383 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:26.4349506 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000056","","740"
"10:46:26.4349686 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}\Properties","0.0000123","Desired Access: Query Value","8292"
"10:46:26.4350445 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}","0.0000030","","8292"
"10:46:26.4351217 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}","0.0000060","Desired Access: Query Value","8292"
"10:46:26.4351525 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}\Properties","0.0000042","Desired Access: Query Value","8292"
"10:46:26.4351691 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\times.json","0.0292625","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7572"
"10:46:26.4351806 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}","0.0000021","","8292"
"10:46:26.4352770 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Enum\ROOT\BASICRENDER\0000","0.0000180","Desired Access: Query Value, Maximum Allowed","8292"
"10:46:26.4352809 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4353180 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:26.4353253 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Enum\ROOT\BasicRender\0000\Driver","0.0000059","Type: REG_SZ, Length: 88, Data: {4d36e97d-e325-11ce-bfc1-08002be10318}\0039","8292"
"10:46:26.4353321 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000060","","740"
"10:46:26.4353551 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Enum\ROOT\BasicRender\0000","0.0000022","","8292"
"10:46:26.4354166 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000029","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4354387 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000086","Desired Access: Query Value","8292"
"10:46:26.4354639 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000162","Desired Access: Query Value","8292"
"10:46:26.4355010 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039\MatchingDeviceId","0.0000052","Type: REG_SZ, Length: 34, Data: ROOT\BasicRender","8292"
"10:46:26.4355429 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4355633 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000064","Desired Access: Query Value","8292"
"10:46:26.4355723 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4355894 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000093","Desired Access: Query Value","8292"
"10:46:26.4356056 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:26.4356179 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000047","","740"
"10:46:26.4356197 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039\InstalledDisplayDrivers","0.0000042","Length: 144","8292"
"10:46:26.4356482 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000022","","8292"
"10:46:26.4356657 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000022","","8292"
"10:46:26.4357139 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000060","Desired Access: Query Value, Maximum Allowed","8292"
"10:46:26.4357442 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\Driver","0.0000060","Type: REG_SZ, Length: 88, Data: {4d36e968-e325-11ce-bfc1-08002be10318}\0001","8292"
"10:46:26.4357737 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000017","","8292"
"10:46:26.4358006 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4358215 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000064","Desired Access: Query Value","8292"
"10:46:26.4358432 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000090","Desired Access: Query Value","8292"
"10:46:26.4358697 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\MatchingDeviceId","0.0000098","Type: REG_SZ, Length: 76, Data: pci\ven_8086&dev_5916&subsys_10941025","8292"
"10:46:26.4358714 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4358970 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:26.4359008 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000017","","8292"
"10:46:26.4359085 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000047","","740"
"10:46:26.4360327 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4360544 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000069","Desired Access: Query Value","8292"
"10:46:26.4360775 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000081","Desired Access: Query Value","8292"
"10:46:26.4361005 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000068","Desired Access: Query Value","8292"
"10:46:26.4361248 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\InstalledDisplayDrivers","0.0000051","Length: 144","8292"
"10:46:26.4361312 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4361466 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\InstalledDisplayDrivers","0.0000043","Type: REG_MULTI_SZ, Length: 186, Data: igdumdim64, igd10iumd64, igd10iumd64, igd12umd64, igdumdim32, igd10iumd32, igd10iumd32, igd12umd32","8292"
"10:46:26.4361530 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:26.4361649 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000043","","740"
"10:46:26.4361730 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000017","","8292"
"10:46:26.4363706 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4363928 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:26.4364047 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000047","","740"
"10:46:26.4365758 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\igd10iumd64.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:26.4366505 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4366731 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:26.4366846 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000043","","740"
"10:46:26.4368903 AM","firefox.exe","7972","CreateFile","C:\Windows\System\igd10iumd64.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:26.4369457 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4369675 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:26.4369786 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000047","","740"
"10:46:26.4371941 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4372094 AM","firefox.exe","7972","CreateFile","C:\Windows\igd10iumd64.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:26.4372162 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:26.4372273 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000047","","740"
"10:46:26.4375004 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4375392 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:26.4375431 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\igd10iumd64.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:26.4375516 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000051","","740"
"10:46:26.4377773 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4378119 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:26.4378238 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000047","","740"
"10:46:26.4378592 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\igd10iumd64.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:26.4380636 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4381046 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000029","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:26.4381165 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000047","","740"
"10:46:26.4381762 AM","firefox.exe","7972","CreateFile","C:\Program Files (x86)\Intel\iCLS Client\igd10iumd64.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:26.4383721 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4384062 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000034","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:26.4384250 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000085","","740"
"10:46:26.4384890 AM","firefox.exe","7972","CreateFile","C:\Program Files\Intel\iCLS Client\igd10iumd64.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:26.4388069 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4388389 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\igd10iumd64.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:26.4388555 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:26.4388734 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000103","","740"
"10:46:26.4392190 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4392732 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000051","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:26.4392766 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 8844","5728"
"10:46:26.4392941 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000085","","740"
"10:46:26.4394776 AM","firefox.exe","7972","CreateFile","C:\Windows\igd10iumd64.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:26.4396666 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4397238 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000076","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:26.4397455 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000077","","740"
"10:46:26.4400045 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4400084 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\wbem\igd10iumd64.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:26.4400391 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000034","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:26.4400514 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000052","","740"
"10:46:26.4402929 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4403262 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000034","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:26.4403386 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000047","","740"
"10:46:26.4403723 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\WindowsPowerShell\v1.0\igd10iumd64.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:26.4406680 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4407038 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:26.4407230 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000068","","740"
"10:46:26.4407789 AM","firefox.exe","7972","CreateFile","C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\igd10iumd64.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:26.4410498 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4410861 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000043","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:26.4410993 AM","firefox.exe","7972","CreateFile","C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\igd10iumd64.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:26.4411049 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000068","","740"
"10:46:26.4414484 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4414833 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:26.4414855 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 6948","5728"
"10:46:26.4414872 AM","firefox.exe","7972","CreateFile","C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\igd10iumd64.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:26.4415030 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000132","","740"
"10:46:26.4415350 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0093474","Offset: 98,304, Length: 73,728, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:26.4417594 AM","firefox.exe","7972","CreateFile","C:\Program Files\Intel\Intel(R) Management Engine Components\IPT\igd10iumd64.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:26.4418085 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.4418447 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40142, endtime: 40142, seqnum: 0, connid: 0","0"
"10:46:26.4418644 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4419173 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000055","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:26.4419301 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.4419390 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000090","","740"
"10:46:26.4419578 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40142, endtime: 40142, seqnum: 0, connid: 0","0"
"10:46:26.4423077 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4423567 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:26.4423776 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000081","","740"
"10:46:26.4424250 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","6948"
"10:46:26.4424514 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000099","Desired Access: All Access","6948"
"10:46:26.4424800 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000824","Desired Access: All Access","6948"
"10:46:26.4425120 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000043","Information: Owner","6948"
"10:46:26.4425346 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000026","Information: Owner","6948"
"10:46:26.4425816 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","6948"
"10:46:26.4426021 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000055","Desired Access: Read","6948"
"10:46:26.4426230 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000059","Desired Access: Read","6948"
"10:46:26.4427066 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4427510 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:26.4427663 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000060","","740"
"10:46:26.4428128 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000064","Length: 16","6948"
"10:46:26.4428376 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0005751","Type: REG_SZ, Length: 8, Data: 2.0","6948"
"10:46:26.4431704 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4432118 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000051","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:26.4432322 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000086","","740"
"10:46:26.4434422 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AutodialDLL","0.0000051","Type: REG_SZ, Length: 66, Data: C:\Windows\System32\rasadhlp.dll","6948"
"10:46:26.4434652 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AutodialDLL","0.0000038","Type: REG_SZ, Length: 66, Data: C:\Windows\System32\rasadhlp.dll","6948"
"10:46:26.4434968 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000025","","6948"
"10:46:26.4435471 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4435825 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000052","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:26.4436022 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000081","","740"
"10:46:26.4439567 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4439913 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000047","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:26.4440101 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000076","","740"
"10:46:26.4444022 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4444410 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000051","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:26.4444611 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000076","","740"
"10:46:26.4448113 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4448480 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:26.4448685 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000077","","740"
"10:46:26.4451446 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4451779 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000046","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:26.4451975 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000068","","740"
"10:46:26.4454966 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6948"
"10:46:26.4455657 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000077","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/27/2019 7:17:12 PM, FileAttributes: A","6948"
"10:46:26.4455930 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000077","","6948"
"10:46:26.4456280 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4456775 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000047","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:26.4456963 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000068","","740"
"10:46:26.4457820 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000213","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","6948"
"10:46:26.4458473 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rasadhlp.dll","0.0000098","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","6948"
"10:46:26.4459002 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rasadhlp.dll","0.0000030","SyncType: SyncTypeOther","6948"
"10:46:26.4460201 AM","firefox.exe","7384","Load Image","C:\Windows\System32\rasadhlp.dll","0.0000000","Image Base: 0x7ffb3b140000, Image Size: 0xa000","6948"
"10:46:26.4460529 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000064","Name: \Windows\System32\rasadhlp.dll","6948"
"10:46:26.4460704 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000227","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4461297 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000060","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:26.4461515 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000085","","740"
"10:46:26.4462659 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000085","","6948"
"10:46:26.4464532 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","6948"
"10:46:26.4464839 AM","firefox.exe","7384","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000102","Desired Access: Read","6948"
"10:46:26.4465027 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4465133 AM","firefox.exe","7384","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000094","Desired Access: Read, Disposition: REG_OPENED_EXISTING_KEY","6948"
"10:46:26.4465470 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000073","Desired Access: Read","6948"
"10:46:26.4465585 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000052","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:26.4465705 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000072","Desired Access: Read","6948"
"10:46:26.4465786 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000073","","740"
"10:46:26.4465978 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","6948"
"10:46:26.4466179 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters","0.0000055","Desired Access: Read","6948"
"10:46:26.4466375 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000072","Desired Access: Read","6948"
"10:46:26.4466618 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","6948"
"10:46:26.4466793 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\DnsClient","0.0000094","Desired Access: Read","6948"
"10:46:26.4467075 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000051","Length: 12","6948"
"10:46:26.4467296 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000043","Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","6948"
"10:46:26.4467561 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000026","","6948"
"10:46:26.4467770 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000021","","6948"
"10:46:26.4467971 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","6948"
"10:46:26.4468192 AM","firefox.exe","7384","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000064","Desired Access: Read","6948"
"10:46:26.4468419 AM","firefox.exe","7384","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000072","Desired Access: Read, Disposition: REG_OPENED_EXISTING_KEY","6948"
"10:46:26.4468700 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000060","Desired Access: Read","6948"
"10:46:26.4468918 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000141","Desired Access: Read","6948"
"10:46:26.4468977 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\OpenSSH\igd10iumd64.dll","0.0002074","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:26.4469391 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","6948"
"10:46:26.4469690 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters","0.0000077","Desired Access: Read","6948"
"10:46:26.4469972 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000081","Desired Access: Read","6948"
"10:46:26.4470001 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4470270 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","6948"
"10:46:26.4470479 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\DnsClient","0.0000090","Desired Access: Read","6948"
"10:46:26.4470560 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000060","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:26.4470748 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","6948"
"10:46:26.4470787 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000085","","740"
"10:46:26.4470949 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\System\DNSClient","0.0000064","Desired Access: Query Value","6948"
"10:46:26.4471205 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Domain","0.0000042","Length: 12","6948"
"10:46:26.4471405 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Domain","0.0000073","Type: REG_SZ, Length: 2, Data: ","6948"
"10:46:26.4471695 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000026","","6948"
"10:46:26.4471896 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000017","","6948"
"10:46:26.4472109 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","6948"
"10:46:26.4472331 AM","firefox.exe","7384","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000060","Desired Access: Read","6948"
"10:46:26.4472540 AM","firefox.exe","7384","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000073","Desired Access: Read, Disposition: REG_OPENED_EXISTING_KEY","6948"
"10:46:26.4472839 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000060","Desired Access: Read","6948"
"10:46:26.4473048 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000085","Desired Access: Read","6948"
"10:46:26.4473287 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","6948"
"10:46:26.4473470 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters","0.0000060","Desired Access: Read","6948"
"10:46:26.4473679 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000064","Desired Access: Read","6948"
"10:46:26.4473910 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","6948"
"10:46:26.4474063 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4474097 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\DnsClient","0.0000069","Desired Access: Read","6948"
"10:46:26.4474341 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000042","Length: 12","6948"
"10:46:26.4474541 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000039","Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","6948"
"10:46:26.4474558 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:26.4474763 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000073","","740"
"10:46:26.4474784 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000017","","6948"
"10:46:26.4474981 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000017","","6948"
"10:46:26.4475190 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","6948"
"10:46:26.4475476 AM","firefox.exe","7384","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000055","Desired Access: Read","6948"
"10:46:26.4475697 AM","firefox.exe","7384","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000064","Desired Access: Read, Disposition: REG_OPENED_EXISTING_KEY","6948"
"10:46:26.4475975 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000055","Desired Access: Read","6948"
"10:46:26.4476175 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000052","Desired Access: Read","6948"
"10:46:26.4476393 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","6948"
"10:46:26.4476440 AM","firefox.exe","7972","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\WindowsApps\igd10iumd64.dll","0.0000665","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8292"
"10:46:26.4476593 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters","0.0000056","Desired Access: Read","6948"
"10:46:26.4476807 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000055","Desired Access: Read","6948"
"10:46:26.4477046 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","6948"
"10:46:26.4477229 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\DnsClient","0.0000073","Desired Access: Read","6948"
"10:46:26.4477460 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","6948"
"10:46:26.4477643 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\DNS","0.0000073","Desired Access: Query Value","6948"
"10:46:26.4477669 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000081","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4477865 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\DNS","0.0000064","Desired Access: Query Value","6948"
"10:46:26.4478006 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4478019 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000081","Desired Access: Query Value","8292"
"10:46:26.4478117 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\QueryAdapterName","0.0000051","Length: 16","6948"
"10:46:26.4478296 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000085","Desired Access: Query Value","8292"
"10:46:26.4478394 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\DisableAdapterDomainName","0.0000038","Length: 16","6948"
"10:46:26.4478543 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000107","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:26.4478556 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000107","Desired Access: Query Value","8292"
"10:46:26.4478595 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\UseDomainNameDevolution","0.0000098","Length: 16","6948"
"10:46:26.4478838 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000085","","740"
"10:46:26.4478851 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\UseDomainNameDevolution","0.0000089","Length: 16","6948"
"10:46:26.4478880 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\UserModeDriverName","0.0000922","Length: 12","8292"
"10:46:26.4479162 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DomainNameDevolutionLevel","0.0000043","Length: 16","6948"
"10:46:26.4479367 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\PrioritizeRecordData","0.0000030","Length: 16","6948"
"10:46:26.4479542 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\PrioritizeRecordData","0.0000034","Length: 16","6948"
"10:46:26.4479708 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\AllowUnqualifiedQuery","0.0000026","Length: 16","6948"
"10:46:26.4479857 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\AllowUnqualifiedQuery","0.0000035","Length: 16","6948"
"10:46:26.4480032 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\AppendToMultiLabelName","0.0000030","Length: 16","6948"
"10:46:26.4480096 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000026","","8292"
"10:46:26.4480207 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\ScreenBadTlds","0.0000034","Length: 16","6948"
"10:46:26.4480344 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4480387 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\ScreenUnreachableServers","0.0000034","Length: 16","6948"
"10:46:26.4480566 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\ScreenDefaultServers","0.0000034","Length: 16","6948"
"10:46:26.4480574 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000086","Desired Access: Query Value","8292"
"10:46:26.4480766 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DynamicServerQueryOrder","0.0000039","Length: 16","6948"
"10:46:26.4480835 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000076","Desired Access: Query Value","8292"
"10:46:26.4480950 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\FilterClusterIp","0.0000034","Length: 16","6948"
"10:46:26.4481073 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000107","Desired Access: Query Value","8292"
"10:46:26.4481137 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\WaitForNameErrorOnAll","0.0000035","Length: 16","6948"
"10:46:26.4481329 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\UseEdns","0.0000030","Length: 16","6948"
"10:46:26.4481385 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\UserModeDriverName","0.0000192","Length: 144","8292"
"10:46:26.4481496 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DnsSecureNameQueryFallback","0.0000047","Length: 16","6948"
"10:46:26.4481684 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\EnableDAForAllNetworks","0.0000034","Length: 16","6948"
"10:46:26.4481765 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\UserModeDriverName","0.0000059","Type: REG_MULTI_SZ, Length: 782, Data: C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igdumdim64.dll, C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll, C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll, C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd12umd64.dll","8292"
"10:46:26.4481867 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DirectAccessQueryOrder","0.0000038","Length: 16","6948"
"10:46:26.4482051 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000042","","8292"
"10:46:26.4482102 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\QueryIpMatching","0.0000034","Length: 16","6948"
"10:46:26.4482294 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\UseHostsFile","0.0000030","Length: 16","6948"
"10:46:26.4482336 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4482477 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\AddrConfigControl","0.0000034","Length: 16","6948"
"10:46:26.4482541 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000060","Desired Access: Query Value","8292"
"10:46:26.4482673 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DisableSmartNameResolution","0.0000030","Length: 16","6948"
"10:46:26.4482755 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000064","Desired Access: Query Value","8292"
"10:46:26.4482861 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\PreferLocalOverLowerBindingDNS","0.0000051","Length: 16","6948"
"10:46:26.4482900 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4482968 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000060","Desired Access: Query Value","8292"
"10:46:26.4483053 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\QueryNetBTFQDN","0.0000039","Length: 16","6948"
"10:46:26.4483207 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\UserModeDriverNameWow","0.0000042","Length: 12","8292"
"10:46:26.4483245 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DisableSmartProtocolReordering","0.0000030","Length: 16","6948"
"10:46:26.4483407 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000052","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:26.4483429 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\UdpRecvBufferSize","0.0000051","Length: 16","6948"
"10:46:26.4483518 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000022","","8292"
"10:46:26.4483612 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000073","","740"
"10:46:26.4483646 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DisableParallelAandAAAA","0.0000030","Length: 16","6948"
"10:46:26.4483702 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4483825 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DisableCoalescing","0.0000035","Length: 16","6948"
"10:46:26.4483898 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000060","Desired Access: Query Value","8292"
"10:46:26.4483996 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\FilterVPNTrigger","0.0000030","Length: 16","6948"
"10:46:26.4484107 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000077","Desired Access: Query Value","8292"
"10:46:26.4484171 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\EnableMultiHomedRouteConflicts","0.0000043","Length: 16","6948"
"10:46:26.4484333 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000068","Desired Access: Query Value","8292"
"10:46:26.4484363 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\RegistrationEnabled","0.0000056","Length: 16","6948"
"10:46:26.4484572 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\UserModeDriverNameWow","0.0000051","Length: 144","8292"
"10:46:26.4484585 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\DisableDynamicUpdate","0.0000047","Length: 16","6948"
"10:46:26.4484781 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\UserModeDriverNameWow","0.0000060","Type: REG_MULTI_SZ, Length: 782, Data: C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igdumdim32.dll, C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd32.dll, C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd32.dll, C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd12umd32.dll","8292"
"10:46:26.4484790 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\RegisterPrimaryName","0.0000098","Length: 16","6948"
"10:46:26.4485059 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0001181","","8292"
"10:46:26.4485118 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\RegisterAdapterName","0.0000051","Length: 16","6948"
"10:46:26.4485391 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\EnableAdapterDomainNameRegistration","0.0000039","Length: 16","6948"
"10:46:26.4485617 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\RegisterReverseLookup","0.0000030","Length: 16","6948"
"10:46:26.4485814 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\DisableReverseAddressRegistrations","0.0000034","Length: 16","6948"
"10:46:26.4486006 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\RegisterWanAdapters","0.0000025","Length: 16","6948"
"10:46:26.4486185 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\DisableWanDynamicUpdate","0.0000034","Length: 16","6948"
"10:46:26.4486364 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\RegistrationTtl","0.0000030","Length: 16","6948"
"10:46:26.4486535 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\DefaultRegistrationTTL","0.0000034","Length: 16","6948"
"10:46:26.4486710 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\RegistrationRefreshInterval","0.0000030","Length: 16","6948"
"10:46:26.4486880 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\DefaultRegistrationRefreshInterval","0.0000035","Length: 16","6948"
"10:46:26.4486987 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4487060 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\RegistrationMaxAddressCount","0.0000025","Length: 16","6948"
"10:46:26.4487226 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\MaxNumberOfAddressesToRegister","0.0000030","Length: 16","6948"
"10:46:26.4487392 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\UpdateSecurityLevel","0.0000030","Length: 16","6948"
"10:46:26.4487520 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000047","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:26.4487563 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\UpdateSecurityLevel","0.0000034","Length: 16","6948"
"10:46:26.4487729 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000077","","740"
"10:46:26.4487747 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\UpdateTopLevelDomainZones","0.0000034","Length: 16","6948"
"10:46:26.4487930 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DowncaseSpnCauseApiOwnerIsTooLazy","0.0000030","Length: 16","6948"
"10:46:26.4488113 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\RegistrationOverwrite","0.0000035","Length: 16","6948"
"10:46:26.4488293 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\MaxCacheSize","0.0000030","Length: 16","6948"
"10:46:26.4488459 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\MaxCacheTtl","0.0000030","Length: 16","6948"
"10:46:26.4488630 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\MaxNegativeCacheTtl","0.0000030","Length: 16","6948"
"10:46:26.4488792 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\AdapterTimeoutLimit","0.0000030","Length: 16","6948"
"10:46:26.4488963 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\ServerPriorityTimeLimit","0.0000034","Length: 16","6948"
"10:46:26.4489142 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\MaxCachedSockets","0.0000030","Length: 16","6948"
"10:46:26.4489317 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DisableServerUnreachability","0.0000030","Length: 16","6948"
"10:46:26.4489500 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\EnableMulticast","0.0000034","Length: 16","6948"
"10:46:26.4489598 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000329","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:26.4489679 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\MulticastResponderFlags","0.0000026","Length: 16","6948"
"10:46:26.4489859 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\MulticastSenderFlags","0.0000029","Length: 16","6948"
"10:46:26.4490033 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\MulticastSenderMaxTimeout","0.0000026","Length: 16","6948"
"10:46:26.4490055 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000042","CreationTime: 5/9/2018 4:39:34 AM, LastAccessTime: 3/20/2019 7:14:15 PM, LastWriteTime: 5/9/2018 4:39:34 AM, ChangeTime: 3/20/2019 7:51:25 PM, FileAttributes: A","8292"
"10:46:26.4490204 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DnsTest","0.0000030","Length: 16","6948"
"10:46:26.4490217 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000064","","8292"
"10:46:26.4490383 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\UseCompartments","0.0000026","Length: 16","6948"
"10:46:26.4490554 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\CacheAllCompartments","0.0000030","Length: 16","6948"
"10:46:26.4490725 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\UseNewRegistration","0.0000034","Length: 16","6948"
"10:46:26.4490780 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4490904 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\ResolverRegistration","0.0000030","Length: 16","6948"
"10:46:26.4491075 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\ResolverRegistrationOnly","0.0000029","Length: 16","6948"
"10:46:26.4491237 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000042","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:26.4491249 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\NewDhcpSrvRegistration","0.0000082","Length: 16","6948"
"10:46:26.4491459 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000064","","740"
"10:46:26.4491480 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DirectAccessPreferLocal","0.0000030","Length: 16","6948"
"10:46:26.4491655 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DisableIdnEncoding","0.0000025","Length: 16","6948"
"10:46:26.4491826 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\EnableIdnMapping","0.0000029","Length: 16","6948"
"10:46:26.4491949 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000214","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:26.4492000 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\ShortnameProxyDefault","0.0000030","Length: 16","6948"
"10:46:26.4492175 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\mDNSEnabled","0.0000035","Length: 16","6948"
"10:46:26.4492359 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\TestMode_AdaptiveTimeoutHistoryLength","0.0000030","Length: 16","6948"
"10:46:26.4492542 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\TestMode_AdaptiveTimeoutRecalculationInterval","0.0000034","Length: 16","6948"
"10:46:26.4492585 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:26.4492764 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","6948"
"10:46:26.4493016 AM","firefox.exe","7384","RegOpenKey","HKLM\System\Setup","0.0000081","Desired Access: Query Value","6948"
"10:46:26.4493076 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000030","SyncType: SyncTypeOther","8292"
"10:46:26.4493276 AM","firefox.exe","7384","RegQueryValue","HKLM\SYSTEM\Setup\SystemSetupInProgress","0.0000107","Type: REG_DWORD, Length: 4, Data: 0","6948"
"10:46:26.4493600 AM","firefox.exe","7384","RegCloseKey","HKLM\SYSTEM\Setup","0.0000022","","6948"
"10:46:26.4493780 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DnsQueryTimeouts","0.0000034","Length: 12","6948"
"10:46:26.4493963 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\DnsQueryTimeouts","0.0000039","Length: 12","6948"
"10:46:26.4494138 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters\DnsQuickQueryTimeouts","0.0000034","Length: 12","6948"
"10:46:26.4494304 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\DnsQuickQueryTimeouts","0.0000039","Length: 12","6948"
"10:46:26.4494514 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000021","","6948"
"10:46:26.4494706 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000017","","6948"
"10:46:26.4495094 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4495452 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000047","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:26.4495636 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000064","","740"
"10:46:26.4497010 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000081","Name: \Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","8292"
"10:46:26.4497539 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000102","","8292"
"10:46:26.4499284 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4499668 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000051","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:26.4499877 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000068","","740"
"10:46:26.4502245 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:26.4502599 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000047","CreationTime: 5/9/2018 4:39:34 AM, LastAccessTime: 3/20/2019 7:14:15 PM, LastWriteTime: 5/9/2018 4:39:34 AM, ChangeTime: 3/20/2019 7:51:25 PM, FileAttributes: A","8292"
"10:46:26.4502761 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000060","","8292"
"10:46:26.4503004 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4503333 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000038","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:26.4503516 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000064","","740"
"10:46:26.4504451 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000209","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:26.4505027 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:26.4505504 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000026","SyncType: SyncTypeOther","8292"
"10:46:26.4507463 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4507800 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000043","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:26.4507979 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000064","","740"
"10:46:26.4508995 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000072","Name: \Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","8292"
"10:46:26.4509460 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000072","","8292"
"10:46:26.4510842 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0006170","Offset: 172,032, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:26.4511341 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4511495 AM","firefox.exe","7972","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000107","Desired Access: Read, Maximum Allowed","8292"
"10:46:26.4511730 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000055","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:26.4511849 AM","firefox.exe","7972","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000064","Type: REG_DWORD, Length: 4, Data: 3","8292"
"10:46:26.4511930 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000068","","740"
"10:46:26.4512160 AM","firefox.exe","7972","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000022","","8292"
"10:46:26.4512476 AM","firefox.exe","7972","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000064","Desired Access: Read","8292"
"10:46:26.4512741 AM","firefox.exe","7972","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000055","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","8292"
"10:46:26.4513061 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000089","Desired Access: Read","8292"
"10:46:26.4513342 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000086","Desired Access: Read","8292"
"10:46:26.4513607 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000051","Desired Access: Read","8292"
"10:46:26.4513888 AM","firefox.exe","7972","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000022","","8292"
"10:46:26.4514098 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000298","Length: 52","8292"
"10:46:26.4514601 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000017","","8292"
"10:46:26.4514972 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000064","Desired Access: Query Value, Maximum Allowed","8292"
"10:46:26.4515262 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000047","Length: 268","8292"
"10:46:26.4515339 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4515518 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000017","","8292"
"10:46:26.4515706 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000047","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:26.4515847 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000055","Desired Access: Query Value, Maximum Allowed","8292"
"10:46:26.4515911 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000077","","740"
"10:46:26.4516103 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000047","Type: REG_MULTI_SZ, Length: 292, Data: PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02, PCI\VEN_8086&DEV_5916&SUBSYS_10941025, PCI\VEN_8086&DEV_5916&CC_030000, PCI\VEN_8086&DEV_5916&CC_0300","8292"
"10:46:26.4516342 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000017","","8292"
"10:46:26.4516581 AM","firefox.exe","7972","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000055","Desired Access: Read","8292"
"10:46:26.4516811 AM","firefox.exe","7972","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000043","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","8292"
"10:46:26.4517071 AM","firefox.exe","7972","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000035","","8292"
"10:46:26.4517874 AM","firefox.exe","7972","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000081","Desired Access: Read, Maximum Allowed","8292"
"10:46:26.4518232 AM","firefox.exe","7972","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000051","Type: REG_DWORD, Length: 4, Data: 3","8292"
"10:46:26.4518565 AM","firefox.exe","7972","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","8292"
"10:46:26.4518868 AM","firefox.exe","7972","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000059","Desired Access: Read","8292"
"10:46:26.4519132 AM","firefox.exe","7972","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video1","0.0000051","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0001","8292"
"10:46:26.4519158 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4519444 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0001","0.0000081","Desired Access: Read","8292"
"10:46:26.4519555 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000038","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:26.4519691 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000051","","740"
"10:46:26.4519704 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0001","0.0000081","Desired Access: Read","8292"
"10:46:26.4519956 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000042","Desired Access: Read","8292"
"10:46:26.4520216 AM","firefox.exe","7972","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","8292"
"10:46:26.4520404 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000106","Length: 52","8292"
"10:46:26.4520694 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000013","","8292"
"10:46:26.4521018 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000051","Desired Access: Query Value, Maximum Allowed","8292"
"10:46:26.4521287 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000034","Length: 268","8292"
"10:46:26.4521522 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000017","","8292"
"10:46:26.4521799 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000043","Desired Access: Query Value, Maximum Allowed","8292"
"10:46:26.4522038 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000038","Type: REG_MULTI_SZ, Length: 292, Data: PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02, PCI\VEN_8086&DEV_5916&SUBSYS_10941025, PCI\VEN_8086&DEV_5916&CC_030000, PCI\VEN_8086&DEV_5916&CC_0300","8292"
"10:46:26.4522063 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4522281 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000017","","8292"
"10:46:26.4522396 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000034","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:26.4522520 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000047","","740"
"10:46:26.4522550 AM","firefox.exe","7972","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000064","Desired Access: Read","8292"
"10:46:26.4522797 AM","firefox.exe","7972","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video1","0.0000039","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0001","8292"
"10:46:26.4523019 AM","firefox.exe","7972","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","8292"
"10:46:26.4523296 AM","firefox.exe","7972","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000052","Desired Access: Read, Maximum Allowed","8292"
"10:46:26.4523531 AM","firefox.exe","7972","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000039","Type: REG_DWORD, Length: 4, Data: 3","8292"
"10:46:26.4523753 AM","firefox.exe","7972","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","8292"
"10:46:26.4523983 AM","firefox.exe","7972","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000047","Desired Access: Read","8292"
"10:46:26.4524197 AM","firefox.exe","7972","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video2","0.0000042","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0002","8292"
"10:46:26.4524474 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0002","0.0000064","Desired Access: Read","8292"
"10:46:26.4524628 AM","firefox.exe","7384","ReadFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0199108","Offset: 33,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7508"
"10:46:26.4524713 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0002","0.0000068","Desired Access: Read","8292"
"10:46:26.4524867 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4524948 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000038","Desired Access: Read","8292"
"10:46:26.4525327 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000043","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:26.4525507 AM","firefox.exe","7972","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000029","","8292"
"10:46:26.4525524 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000068","","740"
"10:46:26.4525771 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000107","Length: 52","8292"
"10:46:26.4526091 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000021","","8292"
"10:46:26.4526198 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0016162","Offset: 212,992, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:26.4526428 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000056","Desired Access: Query Value, Maximum Allowed","8292"
"10:46:26.4526697 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000038","Length: 268","8292"
"10:46:26.4526944 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000022","","8292"
"10:46:26.4527252 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000055","Desired Access: Query Value, Maximum Allowed","8292"
"10:46:26.4527503 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000047","Type: REG_MULTI_SZ, Length: 292, Data: PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02, PCI\VEN_8086&DEV_5916&SUBSYS_10941025, PCI\VEN_8086&DEV_5916&CC_030000, PCI\VEN_8086&DEV_5916&CC_0300","8292"
"10:46:26.4527764 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000017","","8292"
"10:46:26.4528024 AM","firefox.exe","7972","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000064","Desired Access: Read","8292"
"10:46:26.4528271 AM","firefox.exe","7972","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video2","0.0000052","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0002","8292"
"10:46:26.4528519 AM","firefox.exe","7972","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","8292"
"10:46:26.4528839 AM","firefox.exe","7972","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000068","Desired Access: Read, Maximum Allowed","8292"
"10:46:26.4529091 AM","firefox.exe","7972","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000042","Type: REG_DWORD, Length: 4, Data: 3","8292"
"10:46:26.4529334 AM","firefox.exe","7972","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","8292"
"10:46:26.4529598 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4529871 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4530102 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Cisco Systems\VPN Client","0.0000077","Desired Access: Query Value","8292"
"10:46:26.4530115 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000051","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.4530307 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000076","","740"
"10:46:26.4534339 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4534846 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.4535047 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000068","","740"
"10:46:26.4535900 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\DWrite.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:26.4536387 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000047","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","8292"
"10:46:26.4536549 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\DWrite.dll","0.0000068","","8292"
"10:46:26.4538806 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000384","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4538814 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\DWrite.dll","0.0000478","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:26.4539552 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000043","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.4539749 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000072","","740"
"10:46:26.4539817 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:26.4540312 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000030","SyncType: SyncTypeOther","8292"
"10:46:26.4540743 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\DWrite.dll","0.0000043","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:26.4541912 AM","firefox.exe","7972","Load Image","C:\Windows\System32\DWrite.dll","0.0000000","Image Base: 0x7ffb33970000, Image Size: 0x31c000","8292"
"10:46:26.4542309 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\DWrite.dll","0.0000068","Name: \Windows\System32\DWrite.dll","8292"
"10:46:26.4543610 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0003533","Offset: 245,760, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:26.4543892 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4544429 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000052","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:26.4544630 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000072","","740"
"10:46:26.4545249 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\DWrite.dll","0.0000093","","8292"
"10:46:26.4548205 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4548444 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0002680","Offset: 278,528, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:26.4548530 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4548538 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\DirectWrite","0.0000120","Desired Access: Query Value","8292"
"10:46:26.4549050 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000047","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:26.4549246 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000077","","740"
"10:46:26.4550177 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000029","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4550441 AM","firefox.exe","7972","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\FontCache\Parameters","0.0000090","Desired Access: Read","8292"
"10:46:26.4550718 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\FontCache\Parameters","0.0000188","Desired Access: Read","8292"
"10:46:26.4551179 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Services\FontCache\Parameters\ClientCacheSize","0.0000051","Type: REG_DWORD, Length: 4, Data: 4194304","8292"
"10:46:26.4551452 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Services\FontCache\Parameters","0.0000026","","8292"
"10:46:26.4552280 AM","firefox.exe","7972","RegQueryKey","HKCU","0.0000026","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4552515 AM","firefox.exe","7972","RegOpenKey","HKCU\Software\Microsoft\Avalon.Graphics","0.0000158","Desired Access: Read","8292"
"10:46:26.4552523 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000060","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:26.4552852 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4552865 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4552911 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000103","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:27:21 PM, ChangeTime: 3/20/2019 7:07:51 PM, FileAttributes: A, AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x3000000061084, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:26.4553065 AM","firefox.exe","7972","RegOpenKey","HKLM\Software\Microsoft\Avalon.Graphics","0.0000081","Desired Access: Read","8292"
"10:46:26.4553411 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000051","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:26.4553607 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000081","","740"
"10:46:26.4553854 AM","firefox.exe","7972","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000081","Desired Access: Read, Maximum Allowed","8292"
"10:46:26.4554157 AM","firefox.exe","7972","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000052","Type: REG_DWORD, Length: 4, Data: 3","8292"
"10:46:26.4554422 AM","firefox.exe","7972","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","8292"
"10:46:26.4554699 AM","firefox.exe","7972","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000060","Desired Access: Read","8292"
"10:46:26.4554947 AM","firefox.exe","7972","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000051","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","8292"
"10:46:26.4555245 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000171","Desired Access: Read","8292"
"10:46:26.4555591 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000162","Desired Access: Read","8292"
"10:46:26.4555932 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000047","Desired Access: Read","8292"
"10:46:26.4555996 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000286","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.4556205 AM","firefox.exe","7972","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","8292"
"10:46:26.4556414 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000107","Length: 52","8292"
"10:46:26.4556662 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000107","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:26.4556722 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000038","","8292"
"10:46:26.4557089 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.4557106 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000068","Desired Access: Query Value, Maximum Allowed","8292"
"10:46:26.4557349 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:26.4557400 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000047","Length: 268","8292"
"10:46:26.4557690 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000021","","8292"
"10:46:26.4557814 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","SyncType: SyncTypeOther","2512"
"10:46:26.4557997 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000052","Desired Access: Query Value, Maximum Allowed","8292"
"10:46:26.4558108 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4558245 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000047","Type: REG_MULTI_SZ, Length: 292, Data: PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02, PCI\VEN_8086&DEV_5916&SUBSYS_10941025, PCI\VEN_8086&DEV_5916&CC_030000, PCI\VEN_8086&DEV_5916&CC_0300","8292"
"10:46:26.4558505 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000107","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:26.4558565 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000021","","8292"
"10:46:26.4558804 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000081","","740"
"10:46:26.4558825 AM","firefox.exe","7972","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000060","Desired Access: Read","8292"
"10:46:26.4559043 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000111","","2512"
"10:46:26.4559085 AM","firefox.exe","7972","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000047","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","8292"
"10:46:26.4559329 AM","firefox.exe","7972","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","8292"
"10:46:26.4559593 AM","firefox.exe","7972","RegQueryKey","HKCU\Software\Microsoft\Avalon.Graphics","0.0000026","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4559811 AM","firefox.exe","7972","RegOpenKey","HKCU\Software\Microsoft\Avalon.Graphics\DISPLAY1","0.0000042","Desired Access: Read","8292"
"10:46:26.4560054 AM","firefox.exe","7972","RegCloseKey","HKCU\Software\Microsoft\Avalon.Graphics","0.0000017","","8292"
"10:46:26.4561142 AM","firefox.exe","7972","RegQueryKey","HKCU","0.0000025","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4561347 AM","firefox.exe","7972","RegOpenKey","HKCU\Software\Microsoft\Avalon.Graphics\DISPLAY1","0.0000068","Desired Access: Read","8292"
"10:46:26.4561756 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000265","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.4562332 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000056","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:26.4562537 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4562635 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.4562857 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:26.4562904 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000047","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:26.4563105 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000076","","740"
"10:46:26.4563237 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:26.4564013 AM","firefox.exe","7972","Thread Create","","0.0000000","Thread ID: 6612","8292"
"10:46:26.4564466 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000106","","2512"
"10:46:26.4566885 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4567260 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000047","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:26.4567457 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000068","","740"
"10:46:26.4571706 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000606","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4572372 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000401","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.4572679 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000055","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:26.4572884 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000081","","740"
"10:46:26.4573195 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000060","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:26.4573554 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.4573805 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:26.4574211 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:26.4576306 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0009177","Offset: 204,800, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:26.4576357 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4576920 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000051","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:26.4577133 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000073","","740"
"10:46:26.4580513 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4581007 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:26.4581217 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000068","","740"
"10:46:26.4585406 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4585837 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000056","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.4586059 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000086","","740"
"10:46:26.4587732 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000136","","2512"
"10:46:26.4590185 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4590659 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000051","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.4590868 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000081","","740"
"10:46:26.4594494 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4594866 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000042","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.4595066 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000068","","740"
"10:46:26.4596112 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\fonts","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:26.4596478 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\fonts","0.0000043","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: D","8292"
"10:46:26.4596619 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\fonts","0.0000069","","8292"
"10:46:26.4599171 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\fonts","0.0000273","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:26.4599205 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4599811 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:26.4599947 AM","firefox.exe","7972","QueryDirectory","C:\Program Files\Firefox Nightly\fonts\*","0.0000179","Filter: *, 1: .","8292"
"10:46:26.4600020 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000072","","740"
"10:46:26.4600536 AM","firefox.exe","7972","QueryDirectory","C:\Program Files\Firefox Nightly\fonts","0.0000149","0: .., 1: TwemojiMozilla.ttf","8292"
"10:46:26.4602230 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000218","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:26.4602883 AM","firefox.exe","7972","QueryInformationVolume","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000038","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","8292"
"10:46:26.4603181 AM","firefox.exe","7972","QueryAllInformationFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000073","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A, AllocationSize: 1,245,184, EndOfFile: 1,244,336, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0xd00000002c564, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","8292"
"10:46:26.4603459 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4603501 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000077","","8292"
"10:46:26.4603958 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:26.4604129 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000068","","740"
"10:46:26.4606142 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000222","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:26.4606774 AM","firefox.exe","7972","QueryInformationVolume","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000038","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","8292"
"10:46:26.4607068 AM","firefox.exe","7972","QueryAllInformationFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000064","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A, AllocationSize: 1,245,184, EndOfFile: 1,244,336, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0xd00000002c564, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","8292"
"10:46:26.4607508 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4607580 AM","firefox.exe","7972","CreateFileMapping","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000052","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:26.4607892 AM","firefox.exe","7972","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000047","AllocationSize: 1,245,184, EndOfFile: 1,244,336, NumberOfLinks: 1, DeletePending: False, Directory: False","8292"
"10:46:26.4608105 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:26.4608348 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000073","","740"
"10:46:26.4608429 AM","firefox.exe","7972","CreateFileMapping","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000030","SyncType: SyncTypeOther","8292"
"10:46:26.4612615 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4613140 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:26.4613332 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000077","","740"
"10:46:26.4614625 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000089","","8292"
"10:46:26.4615312 AM","firefox.exe","7972","QueryDirectory","C:\Program Files\Firefox Nightly\fonts","0.0000076","","8292"
"10:46:26.4615687 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\fonts","0.0000064","","8292"
"10:46:26.4616903 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4617406 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000052","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:26.4617607 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000107","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4617658 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000073","","740"
"10:46:26.4617953 AM","firefox.exe","7972","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000153","Desired Access: Read","8292"
"10:46:26.4618379 AM","firefox.exe","7972","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000064","Index: 0, Name: Arabic Transparent, Type: REG_SZ, Length: 12, Data: Arial","8292"
"10:46:26.4618674 AM","firefox.exe","7972","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000047","Index: 1, Name: Arabic Transparent Bold, Type: REG_SZ, Length: 22, Data: Arial Bold","8292"
"10:46:26.4618913 AM","firefox.exe","7972","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000042","Index: 2, Name: Arabic Transparent Bold,0, Type: REG_SZ, Length: 30, Data: Arial Bold,178","8292"
"10:46:26.4619160 AM","firefox.exe","7972","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000038","Index: 3, Name: Arabic Transparent,0, Type: REG_SZ, Length: 20, Data: Arial,178","8292"
"10:46:26.4619378 AM","firefox.exe","7972","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000038","Index: 4, Name: Arial Baltic,186, Type: REG_SZ, Length: 20, Data: Arial,186","8292"
"10:46:26.4619595 AM","firefox.exe","7972","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000039","Index: 5, Name: Arial CE,238, Type: REG_SZ, Length: 20, Data: Arial,238","8292"
"10:46:26.4619809 AM","firefox.exe","7972","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000064","Index: 6, Name: Arial CYR,204, Type: REG_SZ, Length: 20, Data: Arial,204","8292"
"10:46:26.4620077 AM","firefox.exe","7972","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000056","Index: 7, Name: Arial Greek,161, Type: REG_SZ, Length: 20, Data: Arial,161","8292"
"10:46:26.4620308 AM","firefox.exe","7972","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000038","Index: 8, Name: Arial TUR,162, Type: REG_SZ, Length: 20, Data: Arial,162","8292"
"10:46:26.4620517 AM","firefox.exe","7972","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000043","Index: 9, Name: Courier New Baltic,186, Type: REG_SZ, Length: 32, Data: Courier New,186","8292"
"10:46:26.4620747 AM","firefox.exe","7972","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000039","Index: 10, Name: Courier New CE,238, Type: REG_SZ, Length: 32, Data: Courier New,238","8292"
"10:46:26.4620969 AM","firefox.exe","7972","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000039","Index: 11, Name: Courier New CYR,204, Type: REG_SZ, Length: 32, Data: Courier New,204","8292"
"10:46:26.4621182 AM","firefox.exe","7972","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000043","Index: 12, Name: Courier New Greek,161, Type: REG_SZ, Length: 32, Data: Courier New,161","8292"
"10:46:26.4621396 AM","firefox.exe","7972","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000038","Index: 13, Name: Courier New TUR,162, Type: REG_SZ, Length: 32, Data: Courier New,162","8292"
"10:46:26.4621490 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4621592 AM","firefox.exe","7972","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000038","Index: 14, Name: Helv, Type: REG_SZ, Length: 28, Data: MS Sans Serif","8292"
"10:46:26.4621793 AM","firefox.exe","7972","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000038","Index: 15, Name: Helvetica, Type: REG_SZ, Length: 12, Data: Arial","8292"
"10:46:26.4622006 AM","firefox.exe","7972","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000077","Index: 16, Name: MS Shell Dlg 2, Type: REG_SZ, Length: 14, Data: Tahoma","8292"
"10:46:26.4622057 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000068","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:26.4622279 AM","firefox.exe","7972","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000034","Index: 17, Name: Tahoma Armenian, Type: REG_SZ, Length: 14, Data: Tahoma","8292"
"10:46:26.4622288 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000081","","740"
"10:46:26.4622484 AM","firefox.exe","7972","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000038","Index: 18, Name: Times, Type: REG_SZ, Length: 32, Data: Times New Roman","8292"
"10:46:26.4622684 AM","firefox.exe","7972","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000043","Index: 19, Name: Times New Roman Baltic,186, Type: REG_SZ, Length: 40, Data: Times New Roman,186","8292"
"10:46:26.4622889 AM","firefox.exe","7972","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000039","Index: 20, Name: Times New Roman CE,238, Type: REG_SZ, Length: 40, Data: Times New Roman,238","8292"
"10:46:26.4623077 AM","firefox.exe","7972","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000030","Index: 21, Name: Times New Roman CYR,204, Type: REG_SZ, Length: 40, Data: Times New Roman,204","8292"
"10:46:26.4623256 AM","firefox.exe","7972","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000034","Index: 22, Name: Times New Roman Greek,161, Type: REG_SZ, Length: 40, Data: Times New Roman,161","8292"
"10:46:26.4623440 AM","firefox.exe","7972","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000029","Index: 23, Name: Times New Roman TUR,162, Type: REG_SZ, Length: 40, Data: Times New Roman,162","8292"
"10:46:26.4623623 AM","firefox.exe","7972","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000038","Index: 24, Name: Tms Rmn, Type: REG_SZ, Length: 18, Data: MS Serif","8292"
"10:46:26.4623841 AM","firefox.exe","7972","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000038","Index: 25, Name: MS Shell Dlg, Type: REG_SZ, Length: 42, Data: Microsoft Sans Serif","8292"
"10:46:26.4624054 AM","firefox.exe","7972","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000034","Index: 26, Length: 2,048","8292"
"10:46:26.4626725 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0003345","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4631414 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000077","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:26.4632630 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000145","","740"
"10:46:26.4637434 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\mscms.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:26.4637673 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4638032 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000051","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","8292"
"10:46:26.4638181 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\mscms.dll","0.0000072","","8292"
"10:46:26.4638288 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000046","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:26.4638480 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000081","","740"
"10:46:26.4640041 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\mscms.dll","0.0000239","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:26.4640946 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:26.4641458 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000030","SyncType: SyncTypeOther","8292"
"10:46:26.4641889 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\mscms.dll","0.0000047","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:26.4642733 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4642785 AM","firefox.exe","7972","Load Image","C:\Windows\System32\mscms.dll","0.0000000","Image Base: 0x7ffb2dad0000, Image Size: 0xa8000","8292"
"10:46:26.4643207 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:26.4643211 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\mscms.dll","0.0000081","Name: \Windows\System32\mscms.dll","8292"
"10:46:26.4643395 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000077","","740"
"10:46:26.4644619 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\times.json","0.0000043","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","7572"
"10:46:26.4644803 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\times.json","0.0000068","CreationTime: 6/19/2019 4:53:26 PM, LastAccessTime: 6/19/2019 4:53:41 PM, LastWriteTime: 6/19/2019 4:53:41 PM, ChangeTime: 6/19/2019 4:53:41 PM, FileAttributes: A, AllocationSize: 56, EndOfFile: 50, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x2c000000004457, EaSize: 0, Access: Generic Read, Position: 0, Mode: Sequential Access, Synchronous IO Non-Alert, AlignmentRequirement: Word","7572"
"10:46:26.4645067 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\times.json","0.0000828","Offset: 0, Length: 50, Priority: Normal","7572"
"10:46:26.4645622 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\times.json","0.0000098","Offset: 0, Length: 50, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7572"
"10:46:26.4646096 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\times.json","0.0000081","","7572"
"10:46:26.4647090 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:26.4647491 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4647521 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000051","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:25 AM, LastWriteTime: 3/26/2020 10:46:25 AM, ChangeTime: 3/26/2020 10:46:25 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:26.4647721 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000090","","5068"
"10:46:26.4648237 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000043","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:26.4648404 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000064","","740"
"10:46:26.4648784 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\mscms.dll","0.0000076","","8292"
"10:46:26.4651536 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\idb-deleting-3870112724rsegmnoittet-es","0.0000251","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:26.4651826 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4652005 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:26.4652269 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000043","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:26.4652436 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000064","","740"
"10:46:26.4655239 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:26.4655469 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4655713 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","5068"
"10:46:26.4655926 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000115","","5068"
"10:46:26.4655964 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000056","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:26.4656148 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000077","","740"
"10:46:26.4660171 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4660406 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000320","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:26.4660692 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000051","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:26.4660892 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000077","","740"
"10:46:26.4660918 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000055","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:26.4661148 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000086","","5068"
"10:46:26.4663171 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000362","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:26.4663960 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000158","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:26.4664400 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000371","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4665061 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000051","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:26.4665257 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000077","","740"
"10:46:26.4665803 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:26.4666059 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:26.4666256 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000055","Offset: 1,073,741,824, Length: 1","5068"
"10:46:26.4668449 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4668875 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000039","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:26.4669020 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000060","","740"
"10:46:26.4670015 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:26.4672195 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4672856 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000064","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:26.4673048 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000068","","740"
"10:46:26.4673108 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000051","Offset: 120, Length: 1","7760"
"10:46:26.4673343 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000025","Offset: 123, Length: 1","7760"
"10:46:26.4673931 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:26.4674102 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 8276","5728"
"10:46:26.4674409 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000056","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:25 AM, LastWriteTime: 3/26/2020 10:46:25 AM, ChangeTime: 3/26/2020 10:46:25 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:26.4674635 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000069","","5068"
"10:46:26.4675147 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:26.4675416 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000085","Offset: 0, Length: 4,096","5068"
"10:46:26.4675979 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4676022 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000060","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","8292"
"10:46:26.4676197 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000090","","8292"
"10:46:26.4676466 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000042","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:26.4676615 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000064","","740"
"10:46:26.4678642 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:26.4679085 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000047","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:25 AM, LastWriteTime: 3/26/2020 10:46:25 AM, ChangeTime: 3/26/2020 10:46:25 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:26.4679316 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000064","","5068"
"10:46:26.4679913 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4680404 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:26.4680583 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000060","","740"
"10:46:26.4681219 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000239","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:26.4681270 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000341","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:26.4681901 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000052","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:26.4682068 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000047","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:26.4682341 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:26.4682618 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000077","Offset: 0, Length: 4,096","5068"
"10:46:26.4684555 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4685089 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000047","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:26.4685281 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000072","","740"
"10:46:26.4686164 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000038","Offset: 123, Length: 1","5068"
"10:46:26.4688400 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4688895 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000046","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:26.4689087 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000085","","740"
"10:46:26.4689876 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:26.4690298 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:26.4690503 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000073","","5068"
"10:46:26.4691864 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4692308 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000038","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:26.4692483 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000060","","740"
"10:46:26.4693400 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:26.4693746 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000038","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:25 AM, LastWriteTime: 3/26/2020 10:46:25 AM, ChangeTime: 3/26/2020 10:46:25 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:26.4693912 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000047","","5068"
"10:46:26.4695175 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4695423 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000217","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:26.4695606 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000119","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:26.4695871 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000042","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,870, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5068"
"10:46:26.4696011 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000120","","740"
"10:46:26.4696063 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000059","","5068"
"10:46:26.4696259 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000042","SyncType: SyncTypeOther","8292"
"10:46:26.4696741 AM","firefox.exe","7972","QuerySecurityFile","C:\Windows\System32\coloradapterclient.dll","0.0000047","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8292"
"10:46:26.4696779 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000047","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:26.4697142 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:26.4697859 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000960","Offset: 123, Length: 1","5068"
"10:46:26.4700436 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:26.4700619 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000035","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:26.4701119 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000102","Offset: 8,192, Length: 4,096","5068"
"10:46:26.4701575 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","Offset: 123, Length: 1","5068"
"10:46:26.4702885 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:26.4703056 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:26.4703218 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4703320 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000056","Offset: 12,288, Length: 4,096","5068"
"10:46:26.4703679 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Offset: 123, Length: 1","5068"
"10:46:26.4703900 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000052","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:26.4704067 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000021","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:26.4704122 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000107","","740"
"10:46:26.4704425 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000039","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:26.4704698 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","Offset: 16,384, Length: 4,096","5068"
"10:46:26.4705027 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000021","Offset: 123, Length: 1","5068"
"10:46:26.4705262 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:26.4705411 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000025","Offset: 1,073,741,826, Length: 510","5068"
"10:46:26.4705688 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:26.4705978 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:26.4706230 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000115","","5068"
"10:46:26.4706759 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Offset: 1,073,741,825, Length: 1","5068"
"10:46:26.4706896 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Offset: 1,073,741,826, Length: 510","5068"
"10:46:26.4707032 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000022","Offset: 1,073,741,824, Length: 1","5068"
"10:46:26.4707216 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000081","","5068"
"10:46:26.4710015 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000354","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4710117 AM","firefox.exe","7972","Load Image","C:\Windows\System32\coloradapterclient.dll","0.0000000","Image Base: 0x7ffb2dac0000, Image Size: 0x10000","8292"
"10:46:26.4710625 AM","firefox.exe","7972","QueryNameInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000175","Name: \Windows\System32\coloradapterclient.dll","8292"
"10:46:26.4710697 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000056","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:26.4710876 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000069","","740"
"10:46:26.4712583 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000085","","8292"
"10:46:26.4714234 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4714742 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000043","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:26.4714998 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000068","","740"
"10:46:26.4718667 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4719205 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:26.4719388 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000069","","740"
"10:46:26.4719397 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:26.4719704 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000034","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8292"
"10:46:26.4719824 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000051","","8292"
"10:46:26.4721953 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000217","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4722567 AM","firefox.exe","7972","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\ClusSvc","0.0000090","Desired Access: Query Value","8292"
"10:46:26.4722998 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Services\ClusSvc","0.0000235","Desired Access: Query Value","8292"
"10:46:26.4723813 AM","firefox.exe","7972","RegQueryKey","HKCU","0.0000265","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4723962 AM","firefox.exe","7384","ReadFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0219836","Offset: 33,792, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7508"
"10:46:26.4724513 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4725076 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000047","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:26.4725153 AM","firefox.exe","7972","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000158","Desired Access: Read","8292"
"10:46:26.4725264 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000068","","740"
"10:46:26.4725571 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4725788 AM","firefox.exe","7972","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000201","Desired Access: Read","8292"
"10:46:26.4726108 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6948"
"10:46:26.4726202 AM","firefox.exe","7972","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000017","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","8292"
"10:46:26.4726373 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\ri","0.0000043","Length: 12","8292"
"10:46:26.4726544 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\ri","0.0000038","Type: REG_DWORD, Length: 4, Data: 0","8292"
"10:46:26.4726625 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000042","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:36 PM, FileAttributes: A","6948"
"10:46:26.4726783 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000025","","8292"
"10:46:26.4726830 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000064","","6948"
"10:46:26.4728472 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4728498 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000166","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","6948"
"10:46:26.4728984 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000043","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:26.4729061 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\FWPUCLNT.DLL","0.0000077","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","6948"
"10:46:26.4729159 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000064","","740"
"10:46:26.4729483 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\FWPUCLNT.DLL","0.0000026","SyncType: SyncTypeOther","6948"
"10:46:26.4731224 AM","firefox.exe","7384","Load Image","C:\Windows\System32\FWPUCLNT.DLL","0.0000000","Image Base: 0x7ffb3ad50000, Image Size: 0x72000","6948"
"10:46:26.4731553 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000055","Name: \Windows\System32\FWPUCLNT.DLL","6948"
"10:46:26.4733592 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4734019 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000094","","6948"
"10:46:26.4734245 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000055","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:26.4734467 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000077","","740"
"10:46:26.4736476 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.4736835 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40145, endtime: 40145, seqnum: 0, connid: 0","0"
"10:46:26.4737782 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.4738012 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40144, endtime: 40145, seqnum: 0, connid: 0","0"
"10:46:26.4738490 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.4738789 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40145, endtime: 40145, seqnum: 0, connid: 0","0"
"10:46:26.4738879 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4739280 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.4739425 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000051","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:26.4739433 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40145, endtime: 40145, seqnum: 0, connid: 0","0"
"10:46:26.4739612 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000090","","740"
"10:46:26.4739740 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.4739864 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40145, endtime: 40145, seqnum: 0, connid: 0","0"
"10:46:26.4740402 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.4740513 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40145, endtime: 40145, seqnum: 0, connid: 0","0"
"10:46:26.4743068 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000244","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4743636 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000051","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:26.4743755 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000201","Desired Access: Query Value, Maximum Allowed","8292"
"10:46:26.4743824 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000081","","740"
"10:46:26.4744284 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\DeviceDesc","0.0000056","Type: REG_SZ, Length: 114, Data: @monitor.inf,%pnpmonitor.devicedesc%;Generic PnP Monitor","8292"
"10:46:26.4744579 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000025","","8292"
"10:46:26.4744878 AM","firefox.exe","7972","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000072","Desired Access: Read","8292"
"10:46:26.4745134 AM","firefox.exe","7972","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000051","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","8292"
"10:46:26.4745411 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000068","Desired Access: Read","8292"
"10:46:26.4745633 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000153","Desired Access: Read","8292"
"10:46:26.4745940 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000043","Desired Access: Read","8292"
"10:46:26.4746166 AM","firefox.exe","7972","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000021","","8292"
"10:46:26.4746426 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.4746665 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40145, endtime: 40145, seqnum: 0, connid: 0","0"
"10:46:26.4747186 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4747561 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.4747694 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000051","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:26.4747736 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40145, endtime: 40145, seqnum: 0, connid: 0","0"
"10:46:26.4747877 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000077","","740"
"10:46:26.4748060 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.4748171 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40145, endtime: 40145, seqnum: 0, connid: 0","0"
"10:46:26.4748423 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 7312","6948"
"10:46:26.4748632 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.4748743 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40145, endtime: 40145, seqnum: 0, connid: 0","0"
"10:46:26.4749426 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000124","Length: 52","8292"
"10:46:26.4749823 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000025","","8292"
"10:46:26.4750194 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000072","Desired Access: Query Value, Maximum Allowed","8292"
"10:46:26.4750471 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\HardwareID","0.0000051","Type: REG_MULTI_SZ, Length: 34, Data: MONITOR\CMN15D2","8292"
"10:46:26.4750710 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000013","","8292"
"10:46:26.4750970 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000047","Desired Access: Query Value, Maximum Allowed","8292"
"10:46:26.4751188 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\Driver","0.0000038","Type: REG_SZ, Length: 88, Data: {4d36e96e-e325-11ce-bfc1-08002be10318}\0001","8292"
"10:46:26.4751388 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000018","","8292"
"10:46:26.4751619 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000943","Desired Access: Query Value, Maximum Allowed","8292"
"10:46:26.4751819 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000227","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4752340 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000051","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:26.4752519 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000077","","740"
"10:46:26.4752711 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\Driver","0.0000905","Type: REG_SZ, Length: 88, Data: {4d36e96e-e325-11ce-bfc1-08002be10318}\0001","8292"
"10:46:26.4753791 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000012","","8292"
"10:46:26.4754917 AM","firefox.exe","7384","Thread Exit","","0.0000000","Thread ID: 4920, User Time: 0.0000000, Kernel Time: 0.0000000","4920"
"10:46:26.4755843 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4756338 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000077","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:26.4756547 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000081","","740"
"10:46:26.4759226 AM","firefox.exe","7972","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000094","Desired Access: Read, Maximum Allowed","8292"
"10:46:26.4759610 AM","firefox.exe","7972","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000060","Type: REG_DWORD, Length: 4, Data: 3","8292"
"10:46:26.4759883 AM","firefox.exe","7972","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000018","","8292"
"10:46:26.4760024 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4760549 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000056","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:26.4760741 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000077","","740"
"10:46:26.4764922 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4765469 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000055","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:26.4765661 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000081","","740"
"10:46:26.4765917 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000102","Desired Access: Query Value, Maximum Allowed","8292"
"10:46:26.4766288 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\DeviceDesc","0.0000051","Type: REG_SZ, Length: 114, Data: @monitor.inf,%pnpmonitor.devicedesc%;Generic PnP Monitor","8292"
"10:46:26.4766548 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000175","","8292"
"10:46:26.4767064 AM","firefox.exe","7972","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000086","Desired Access: Read","8292"
"10:46:26.4767346 AM","firefox.exe","7972","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000055","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","8292"
"10:46:26.4767627 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000086","Desired Access: Read","8292"
"10:46:26.4767866 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000081","Desired Access: Read","8292"
"10:46:26.4768088 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000039","Desired Access: Read","8292"
"10:46:26.4768327 AM","firefox.exe","7972","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","8292"
"10:46:26.4768592 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000098","Length: 52","8292"
"10:46:26.4768848 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000013","","8292"
"10:46:26.4769095 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4769117 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000046","Desired Access: Query Value, Maximum Allowed","8292"
"10:46:26.4769334 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\HardwareID","0.0000039","Type: REG_MULTI_SZ, Length: 34, Data: MONITOR\CMN15D2","8292"
"10:46:26.4769539 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000017","","8292"
"10:46:26.4769624 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000056","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:26.4769791 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000038","Desired Access: Query Value, Maximum Allowed","8292"
"10:46:26.4769821 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000076","","740"
"10:46:26.4770068 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\Driver","0.0000043","Type: REG_SZ, Length: 88, Data: {4d36e96e-e325-11ce-bfc1-08002be10318}\0001","8292"
"10:46:26.4770294 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000013","","8292"
"10:46:26.4770512 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000042","Desired Access: Query Value, Maximum Allowed","8292"
"10:46:26.4770712 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\Driver","0.0000034","Type: REG_SZ, Length: 88, Data: {4d36e96e-e325-11ce-bfc1-08002be10318}\0001","8292"
"10:46:26.4770904 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000013","","8292"
"10:46:26.4772231 AM","firefox.exe","7972","RegQueryKey","HKCU","0.0000056","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4772722 AM","firefox.exe","7972","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM","0.0000196","Desired Access: Enumerate Sub Keys","8292"
"10:46:26.4773695 AM","firefox.exe","7972","RegQueryKey","HKCU\Software\Microsoft\Windows NT\CurrentVersion\ICM","0.0000025","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4773955 AM","firefox.exe","7972","RegOpenKey","HKCU\Software\Microsoft\Windows NT\CurrentVersion\ICM\ProfileAssociations\Display","0.0000047","Desired Access: Enumerate Sub Keys","8292"
"10:46:26.4774019 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4774356 AM","firefox.exe","7972","RegCloseKey","HKCU\Software\Microsoft\Windows NT\CurrentVersion\ICM","0.0000026","","8292"
"10:46:26.4774569 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000052","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:26.4774766 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000076","","740"
"10:46:26.4774804 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4775030 AM","firefox.exe","7972","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Class\{4D36E96E-E325-11CE-BFC1-08002BE10318}\0001","0.0000085","Desired Access: Query Value","8292"
"10:46:26.4775290 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4D36E96E-E325-11CE-BFC1-08002BE10318}\0001","0.0000103","Desired Access: Query Value","8292"
"10:46:26.4775589 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e96e-e325-11ce-bfc1-08002be10318}\0001\ProfileEnumMode","0.0000043","Length: 16","8292"
"10:46:26.4775824 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e96e-e325-11ce-bfc1-08002be10318}\0001","0.0000013","","8292"
"10:46:26.4776041 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4776272 AM","firefox.exe","7972","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Class\{4D36E96E-E325-11CE-BFC1-08002BE10318}\0001","0.0000059","Desired Access: Query Value","8292"
"10:46:26.4776485 AM","firefox.exe","7972","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4D36E96E-E325-11CE-BFC1-08002BE10318}\0001","0.0000068","Desired Access: Query Value","8292"
"10:46:26.4776733 AM","firefox.exe","7972","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e96e-e325-11ce-bfc1-08002be10318}\0001\ICMProfile","0.0000038","Length: 12","8292"
"10:46:26.4776984 AM","firefox.exe","7972","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e96e-e325-11ce-bfc1-08002be10318}\0001","0.0000017","","8292"
"10:46:26.4777326 AM","firefox.exe","7972","RegQueryKey","HKCU","0.0000021","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4777518 AM","firefox.exe","7972","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000076","Desired Access: Read","8292"
"10:46:26.4777769 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4777927 AM","firefox.exe","7972","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000107","Desired Access: Read","8292"
"10:46:26.4778286 AM","firefox.exe","7972","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000017","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","8292"
"10:46:26.4778448 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\sRGB","0.0000047","Length: 12","8292"
"10:46:26.4778665 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000017","","8292"
"10:46:26.4778781 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4778977 AM","firefox.exe","7972","RegQueryKey","HKCU","0.0000021","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4779160 AM","firefox.exe","7972","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000064","Desired Access: Read","8292"
"10:46:26.4779318 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000051","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.4779391 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4779510 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000077","","740"
"10:46:26.4779557 AM","firefox.exe","7972","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000081","Desired Access: Read","8292"
"10:46:26.4779967 AM","firefox.exe","7972","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000021","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","8292"
"10:46:26.4780150 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\sRGB","0.0000039","Length: 12","8292"
"10:46:26.4780419 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000021","","8292"
"10:46:26.4780696 AM","firefox.exe","7972","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4780875 AM","firefox.exe","7972","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000064","Desired Access: Read","8292"
"10:46:26.4781106 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4781277 AM","firefox.exe","7972","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000076","Desired Access: Read","8292"
"10:46:26.4781507 AM","firefox.exe","7972","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000017","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","8292"
"10:46:26.4781661 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\camp","0.0000042","Length: 12","8292"
"10:46:26.4781840 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\camp","0.0000038","Type: REG_SZ, Length: 18, Data: D65.camp","8292"
"10:46:26.4785048 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4785586 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000055","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.4785782 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000077","","740"
"10:46:26.4786559 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\spool\drivers\color\D65.camp","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:26.4786887 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\spool\drivers\color\D65.camp","0.0000039","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 8:09:14 PM, FileAttributes: A","8292"
"10:46:26.4787019 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\spool\drivers\color\D65.camp","0.0000060","","8292"
"10:46:26.4787566 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000025","","8292"
"10:46:26.4787886 AM","firefox.exe","7972","RegQueryKey","HKCU","0.0000064","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4788184 AM","firefox.exe","7972","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000090","Desired Access: Read","8292"
"10:46:26.4788487 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4788692 AM","firefox.exe","7972","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000107","Desired Access: Read","8292"
"10:46:26.4788880 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4788969 AM","firefox.exe","7972","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000017","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","8292"
"10:46:26.4789149 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\camp","0.0000042","Length: 12","8292"
"10:46:26.4789336 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\camp","0.0000034","Type: REG_SZ, Length: 18, Data: D65.camp","8292"
"10:46:26.4789349 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000060","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.4789558 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000064","","740"
"10:46:26.4793048 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\spool\drivers\color\D65.camp","0.0001191","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:26.4794141 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4794435 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\spool\drivers\color\D65.camp","0.0000055","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 8:09:14 PM, FileAttributes: A","8292"
"10:46:26.4794550 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.4794618 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\spool\drivers\color\D65.camp","0.0000099","","8292"
"10:46:26.4794695 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000051","","740"
"10:46:26.4797170 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000034","","8292"
"10:46:26.4797541 AM","firefox.exe","7972","RegQueryKey","HKCU","0.0000026","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4797793 AM","firefox.exe","7972","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000098","Desired Access: Read","8292"
"10:46:26.4798109 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4798198 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4798693 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.4798753 AM","firefox.exe","7972","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000162","Desired Access: Read","8292"
"10:46:26.4798872 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000073","","740"
"10:46:26.4799145 AM","firefox.exe","7972","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000141","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","8292"
"10:46:26.4799491 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\rip","0.0000051","Length: 12","8292"
"10:46:26.4799691 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\rip","0.0000039","Type: REG_SZ, Length: 22, Data: Photo.gmmp","8292"
"10:46:26.4802751 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4803331 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000055","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.4803549 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000085","","740"
"10:46:26.4805183 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\spool\drivers\color\Photo.gmmp","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:26.4805541 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0000213","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:26.4805618 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\spool\drivers\color\Photo.gmmp","0.0000047","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 8:09:14 PM, FileAttributes: A","8292"
"10:46:26.4805784 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\spool\drivers\color\Photo.gmmp","0.0000086","","8292"
"10:46:26.4806083 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0000064","AllocationSize: 643,072, EndOfFile: 639,537, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:26.4806727 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:26.4806821 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000026","","8292"
"10:46:26.4806932 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0000038","AllocationSize: 643,072, EndOfFile: 639,537, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:26.4807158 AM","firefox.exe","7972","RegQueryKey","HKCU","0.0000022","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4807273 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0000026","SyncType: SyncTypeOther","5728"
"10:46:26.4807389 AM","firefox.exe","7972","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000102","Desired Access: Read","8292"
"10:46:26.4807521 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4807700 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0002163","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.4808114 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:26.4808314 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0001588","","740"
"10:46:26.4808319 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0000064","","5728"
"10:46:26.4814100 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000427","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4815107 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000068","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:26.4815312 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000089","","740"
"10:46:26.4817919 AM","firefox.exe","7972","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000187","Desired Access: Read","8292"
"10:46:26.4818350 AM","firefox.exe","7972","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000017","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","8292"
"10:46:26.4818589 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\rip","0.0000055","Length: 12","8292"
"10:46:26.4818785 AM","firefox.exe","7972","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\rip","0.0000038","Type: REG_SZ, Length: 22, Data: Photo.gmmp","8292"
"10:46:26.4819314 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4819869 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000149","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:26.4820159 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000077","","740"
"10:46:26.4822074 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\spool\drivers\color\Photo.gmmp","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:26.4822488 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Windows\System32\spool\drivers\color\Photo.gmmp","0.0000047","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 8:09:14 PM, FileAttributes: A","8292"
"10:46:26.4822659 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\spool\drivers\color\Photo.gmmp","0.0000107","","8292"
"10:46:26.4824515 AM","firefox.exe","7972","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000043","","8292"
"10:46:26.4824639 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000529","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4826388 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000363","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:26.4827642 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000820","","740"
"10:46:26.4845882 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000333","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:26.4845917 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4846514 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000060","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:26.4846727 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000081","","740"
"10:46:26.4849074 AM","firefox.exe","7972","QueryStandardInformationFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000090","AllocationSize: 4,096, EndOfFile: 3,144, NumberOfLinks: 2, DeletePending: False, Directory: False","8292"
"10:46:26.4849663 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000094","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:26.4850145 AM","firefox.exe","7972","QueryStandardInformationFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000064","AllocationSize: 4,096, EndOfFile: 3,144, NumberOfLinks: 2, DeletePending: False, Directory: False","8292"
"10:46:26.4856566 AM","firefox.exe","7972","CreateFileMapping","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000482","SyncType: SyncTypeOther","8292"
"10:46:26.4861648 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000934","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4862569 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000175","","8292"
"10:46:26.4863197 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000094","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:26.4863414 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000069","","740"
"10:46:26.4869225 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000261","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4869460 AM","firefox.exe","7972","CreateFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000290","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:26.4869912 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000069","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:26.4870134 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000086","","740"
"10:46:26.4870275 AM","firefox.exe","7972","ReadFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000179","Offset: 0, Length: 3,144, Priority: Normal","8292"
"10:46:26.4871397 AM","firefox.exe","7972","CloseFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000124","","8292"
"10:46:26.4873752 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000227","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4874264 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000052","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:26.4874427 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000072","","740"
"10:46:26.4877759 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4878275 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000047","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:26.4878459 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000072","","740"
"10:46:26.4882636 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4883037 AM","firefox.exe","7972","Thread Create","","0.0000000","Thread ID: 3248","8292"
"10:46:26.4883173 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000073","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.4883378 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000077","","740"
"10:46:26.4885870 AM","firefox.exe","7972","Thread Create","","0.0000000","Thread ID: 728","8292"
"10:46:26.4886821 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4887380 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000056","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.4887559 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000090","","740"
"10:46:26.4891250 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4891771 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000051","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.4891967 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000072","","740"
"10:46:26.4893533 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0119189","Offset: 1,859,584, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:26.4896088 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4896639 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:26.4896839 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000107","","740"
"10:46:26.4900393 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4900880 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:26.4901063 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000064","","740"
"10:46:26.4903645 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4904067 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:26.4904225 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000060","","740"
"10:46:26.4906119 AM","firefox.exe","7972","QueryInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0000069","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","8292"
"10:46:26.4906461 AM","firefox.exe","7972","QueryAllInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0000094","CreationTime: 3/26/2020 10:35:21 AM, LastAccessTime: 3/26/2020 10:35:21 AM, LastWriteTime: 3/26/2020 10:35:21 AM, ChangeTime: 3/26/2020 10:46:21 AM, FileAttributes: A, AllocationSize: 667,648, EndOfFile: 667,473, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x58000000014bf7, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","8292"
"10:46:26.4906887 AM","firefox.exe","7972","CreateFileMapping","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0000064","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8292"
"10:46:26.4907156 AM","firefox.exe","7972","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0000043","AllocationSize: 667,648, EndOfFile: 667,473, NumberOfLinks: 1, DeletePending: False, Directory: False","8292"
"10:46:26.4907553 AM","firefox.exe","7972","CreateFileMapping","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0000030","SyncType: SyncTypeOther","8292"
"10:46:26.4908419 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4908795 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000038","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:26.4908952 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000073","","740"
"10:46:26.4912460 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4912831 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000047","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:26.4913014 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000073","","740"
"10:46:26.4916543 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4916901 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000047","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:26.4917089 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000073","","740"
"10:46:26.4921364 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000410","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4922213 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:26.4922418 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000077","","740"
"10:46:26.4926006 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4926531 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:26.4926736 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000077","","740"
"10:46:26.4927419 AM","firefox.exe","7972","CreateFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:26.4927803 AM","firefox.exe","7972","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000042","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: A","8292"
"10:46:26.4927965 AM","firefox.exe","7972","CloseFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0084851","","8292"
"10:46:26.4930141 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4930648 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:26.4930840 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000073","","740"
"10:46:26.4935128 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4935653 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000051","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:26.4935850 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000072","","740"
"10:46:26.4939455 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4939954 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000051","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:26.4940159 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000072","","740"
"10:46:26.4943952 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4944490 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000046","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:26.4944694 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000069","","740"
"10:46:26.4944869 AM","firefox.exe","7384","ReadFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0239565","Offset: 159,744, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7508"
"10:46:26.4948820 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4949315 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000047","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:26.4949499 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000072","","740"
"10:46:26.4953019 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4953445 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000043","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:26.4953624 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000064","","740"
"10:46:26.4956603 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4957942 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000047","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:26.4958139 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000076","","740"
"10:46:26.4962137 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4962631 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:26.4962806 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000069","","740"
"10:46:26.4965951 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4966463 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000055","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:26.4966629 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000069","","740"
"10:46:26.4979050 AM","firefox.exe","7384","TCP Connect","LAPTOP-49TAGD3F.lan1:49751 -> a104-114-76-170.deploy.static.akamaitechnologies.com:http","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65700, rcvwinscale: 8, sndwinscale: 7, seqnum: 0, connid: 0","0"
"10:46:26.4979532 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4981827 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000060","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:26.4982011 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000085","","740"
"10:46:26.4986239 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.4986538 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40148, endtime: 40148, seqnum: 0, connid: 0","0"
"10:46:26.4986986 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.4987114 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40148, endtime: 40148, seqnum: 0, connid: 0","0"
"10:46:26.4992362 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000281","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4992997 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000064","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:26.4993206 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000103","","740"
"10:46:26.4997157 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.4997772 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000072","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:26.4997989 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000073","","740"
"10:46:26.5001872 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5002384 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:26.5002585 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000076","","740"
"10:46:26.5006830 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5007359 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:26.5007564 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000077","","740"
"10:46:26.5010713 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5011199 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:26.5011399 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000073","","740"
"10:46:26.5013725 AM","firefox.exe","7972","CreateFile","C:\","0.0000243","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:26.5014655 AM","firefox.exe","7972","QueryDirectory","C:\Program Files","0.0000243","Filter: Program Files, 1: Program Files","8292"
"10:46:26.5015184 AM","firefox.exe","7972","CloseFile","C:\","0.0000085","","8292"
"10:46:26.5015363 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5015880 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000051","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:26.5016084 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000073","","740"
"10:46:26.5017142 AM","firefox.exe","7972","CreateFile","C:\Program Files","0.0000210","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8292"
"10:46:26.5017642 AM","firefox.exe","7972","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000187","Filter: Firefox Nightly, 1: Firefox Nightly","8292"
"10:46:26.5018051 AM","firefox.exe","7972","CloseFile","C:\Program Files","0.0000073","","8292"
"10:46:26.5019050 AM","firefox.exe","7972","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0315686","Offset: 2,174,976, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8292"
"10:46:26.5020368 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5020893 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000051","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:26.5021089 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000081","","740"
"10:46:26.5024724 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5025219 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:26.5025398 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000073","","740"
"10:46:26.5028543 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5029029 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000052","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:26.5029213 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000068","","740"
"10:46:26.5029580 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 2596","7392"
"10:46:26.5033241 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5033646 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000034","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:26.5033778 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000056","","740"
"10:46:26.5036428 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5036846 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000043","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:26.5037012 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000064","","740"
"10:46:26.5038100 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes","0.0000145","Desired Access: Maximum Allowed, Granted Access: Read","7392"
"10:46:26.5039410 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5039645 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\COM3","0.0000102","Desired Access: Read","7392"
"10:46:26.5039939 AM","firefox.exe","7336","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\COM3","0.0000017","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","7392"
"10:46:26.5040127 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\COM3\Com+Enabled","0.0000055","Type: REG_DWORD, Length: 4, Data: 1","7392"
"10:46:26.5040255 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000303","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5040383 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\COM3","0.0000017","","7392"
"10:46:26.5040848 AM","firefox.exe","7336","QuerySecurityFile","C:\Windows\System32\clbcatq.dll","0.0000056","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:26.5041027 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000056","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:26.5041292 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000098","","740"
"10:46:26.5042239 AM","firefox.exe","7336","Load Image","C:\Windows\System32\clbcatq.dll","0.0000000","Image Base: 0x7ffb46ce0000, Image Size: 0xa0000","7392"
"10:46:26.5042696 AM","firefox.exe","7336","QueryNameInformationFile","C:\Windows\System32\clbcatq.dll","0.0000072","Name: \Windows\System32\clbcatq.dll","7392"
"10:46:26.5045934 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5046467 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000043","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:26.5046651 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000077","","740"
"10:46:26.5049450 AM","firefox.exe","7336","CreateFile","C:\Windows\Registration\R00000000000d.clb","0.0000222","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:26.5049731 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000120","","2512"
"10:46:26.5050111 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\Registration\R00000000000d.clb","0.0000051","AllocationSize: 24,576, EndOfFile: 23,144, NumberOfLinks: 1, DeletePending: False, Directory: False","7392"
"10:46:26.5050414 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000418","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5050529 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Registration\R00000000000d.clb","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:26.5050747 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\Registration\R00000000000d.clb","0.0000034","AllocationSize: 24,576, EndOfFile: 23,144, NumberOfLinks: 1, DeletePending: False, Directory: False","7392"
"10:46:26.5051126 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Registration\R00000000000d.clb","0.0000030","SyncType: SyncTypeOther","7392"
"10:46:26.5051144 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000046","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:26.5051220 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000077","","2512"
"10:46:26.5051344 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000077","","740"
"10:46:26.5053051 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Classes","0.0000081","Query: Name","7392"
"10:46:26.5053332 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5053499 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5053729 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209C7-767B-42B2-9FBA-44EE4615F2C7}","0.0000085","Desired Access: Read","7392"
"10:46:26.5054011 AM","firefox.exe","7336","RegOpenKey","HKCR\CLSID\{591209C7-767B-42B2-9FBA-44EE4615F2C7}","0.0000234","Desired Access: Read","7392"
"10:46:26.5054446 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000055","Query: Name","7392"
"10:46:26.5054668 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5054928 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\TreatAs","0.0000073","Desired Access: Query Value","7392"
"10:46:26.5055146 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000021","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5055350 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000393","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5055389 AM","firefox.exe","7336","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\TreatAs","0.0000055","Desired Access: Query Value","7392"
"10:46:26.5055624 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000051","Query: Name","7392"
"10:46:26.5055982 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000047","Query: Name","7392"
"10:46:26.5056089 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000059","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:26.5056178 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000034","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5056315 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000085","","740"
"10:46:26.5056421 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000064","Desired Access: Maximum Allowed","7392"
"10:46:26.5056648 AM","firefox.exe","7336","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\(Default)","0.0000042","Length: 12","7392"
"10:46:26.5056840 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000046","Query: Name","7392"
"10:46:26.5057019 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5057215 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000055","Desired Access: Maximum Allowed","7392"
"10:46:26.5057398 AM","firefox.exe","7336","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\(Default)","0.0000035","Type: REG_SZ, Length: 50, Data: Application Registration","7392"
"10:46:26.5057578 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000448","Query: Name","7392"
"10:46:26.5058559 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000021","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5058806 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocServer32","0.0000073","Desired Access: Read","7392"
"10:46:26.5059037 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000021","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5059229 AM","firefox.exe","7336","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocServer32","0.0000136","Desired Access: Read","7392"
"10:46:26.5059587 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000056","Query: Name","7392"
"10:46:26.5059809 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5060031 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000073","Desired Access: Maximum Allowed","7392"
"10:46:26.5060581 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000244","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5060722 AM","firefox.exe","7336","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\InprocServer32","0.0000051","Length: 12","7392"
"10:46:26.5060987 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000064","Query: Name","7392"
"10:46:26.5061234 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000068","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.5061520 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000102","","740"
"10:46:26.5061853 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\postSigningData","0.0000687","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5244"
"10:46:26.5062877 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\postSigningData","0.0000047","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","5244"
"10:46:26.5063077 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\postSigningData","0.0000060","CreationTime: 2/16/2018 12:59:37 PM, LastAccessTime: 2/16/2018 12:59:37 PM, LastWriteTime: 2/16/2018 12:58:20 PM, ChangeTime: 2/16/2018 12:58:20 PM, FileAttributes: A, AllocationSize: 112, EndOfFile: 106, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x40000000155bb, EaSize: 0, Access: Generic Read, Position: 0, Mode: Sequential Access, Synchronous IO Non-Alert, AlignmentRequirement: Word","5244"
"10:46:26.5063295 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\postSigningData","0.0001272","Offset: 0, Length: 106, Priority: Normal","5244"
"10:46:26.5064221 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\postSigningData","0.0000136","Offset: 0, Length: 106, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5244"
"10:46:26.5064737 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\postSigningData","0.0000081","","5244"
"10:46:26.5065317 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5065834 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000047","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.5066004 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000069","","740"
"10:46:26.5067063 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000042","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5067425 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000107","Desired Access: Maximum Allowed","7392"
"10:46:26.5067703 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000251","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5067741 AM","firefox.exe","7336","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\(Default)","0.0000047","Length: 12","7392"
"10:46:26.5067988 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000073","Query: Name","7392"
"10:46:26.5068253 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5068449 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000056","Desired Access: Maximum Allowed","7392"
"10:46:26.5068645 AM","firefox.exe","7336","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\(Default)","0.0000056","Type: REG_EXPAND_SZ, Length: 68, Data: %SystemRoot%\System32\shell32.dll","7392"
"10:46:26.5068880 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","2512"
"10:46:26.5068897 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000047","Query: Name","7392"
"10:46:26.5069085 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000077","","2512"
"10:46:26.5069098 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5069375 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000060","Desired Access: Maximum Allowed","7392"
"10:46:26.5069396 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5069571 AM","firefox.exe","7336","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\(Default)","0.0000034","Type: REG_EXPAND_SZ, Length: 68, Data: %SystemRoot%\System32\shell32.dll","7392"
"10:46:26.5069789 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000051","Query: Name","7392"
"10:46:26.5069874 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000043","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.5069994 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5070053 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000064","","740"
"10:46:26.5070220 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000064","Desired Access: Maximum Allowed","7392"
"10:46:26.5070446 AM","firefox.exe","7336","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\ThreadingModel","0.0000038","Type: REG_SZ, Length: 10, Data: Both","7392"
"10:46:26.5070732 AM","firefox.exe","7336","RegCloseKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000025","","7392"
"10:46:26.5070924 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000055","Query: Name","7392"
"10:46:26.5071146 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5071372 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocHandler32","0.0000064","Desired Access: Query Value","7392"
"10:46:26.5071589 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000018","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5071781 AM","firefox.exe","7336","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocHandler32","0.0000363","Desired Access: Query Value","7392"
"10:46:26.5072319 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000047","Query: Name","7392"
"10:46:26.5072524 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000025","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5072750 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocHandler","0.0000064","Desired Access: Query Value","7392"
"10:46:26.5072963 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5073143 AM","firefox.exe","7336","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocHandler","0.0000038","Desired Access: Query Value","7392"
"10:46:26.5073522 AM","firefox.exe","7336","RegOpenKey","HKCU","0.0000098","Desired Access: Read","7392"
"10:46:26.5073710 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5073787 AM","firefox.exe","7336","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5073957 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes","0.0000077","Desired Access: Notify","7392"
"10:46:26.5074184 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes","0.0000106","Desired Access: Notify","7392"
"10:46:26.5074252 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0005837","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","2512"
"10:46:26.5074576 AM","firefox.exe","7336","RegCloseKey","HKCU","0.0000026","","7392"
"10:46:26.5074734 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000316","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5075084 AM","firefox.exe","7336","RegCloseKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000030","","7392"
"10:46:26.5075519 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000073","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:26.5075639 AM","firefox.exe","7336","RegQueryKey","HKLM","0.0000029","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5075749 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000120","","740"
"10:46:26.5075856 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\OLE","0.0000141","Desired Access: Read","7392"
"10:46:26.5076197 AM","firefox.exe","7336","RegQueryValue","HKLM\SOFTWARE\Microsoft\Ole\MaxSxSHashCount","0.0000060","Length: 16","7392"
"10:46:26.5076471 AM","firefox.exe","7336","RegCloseKey","HKLM\SOFTWARE\Microsoft\Ole","0.0000021","","7392"
"10:46:26.5078523 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Classes","0.0000085","Query: Name","7392"
"10:46:26.5078868 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5079060 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5079252 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209C7-767B-42B2-9FBA-44EE4615F2C7}","0.0000047","Desired Access: Read","7392"
"10:46:26.5079487 AM","firefox.exe","7336","RegOpenKey","HKCR\CLSID\{591209C7-767B-42B2-9FBA-44EE4615F2C7}","0.0000081","Desired Access: Read","7392"
"10:46:26.5079739 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000047","Query: Name","7392"
"10:46:26.5079939 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000026","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5080217 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\TreatAs","0.0000064","Desired Access: Query Value","7392"
"10:46:26.5080362 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000089","","2512"
"10:46:26.5080464 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000043","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5080481 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5080695 AM","firefox.exe","7336","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\TreatAs","0.0000106","Desired Access: Query Value","7392"
"10:46:26.5080946 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:26.5081061 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000052","Query: Name","7392"
"10:46:26.5081134 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000068","","740"
"10:46:26.5081335 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000042","Query: Name","7392"
"10:46:26.5081548 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5081787 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000064","Desired Access: Maximum Allowed","7392"
"10:46:26.5082017 AM","firefox.exe","7336","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\(Default)","0.0000039","Length: 12","7392"
"10:46:26.5082218 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000042","Query: Name","7392"
"10:46:26.5082423 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5082649 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000059","Desired Access: Maximum Allowed","7392"
"10:46:26.5082875 AM","firefox.exe","7336","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\(Default)","0.0000042","Type: REG_SZ, Length: 50, Data: Application Registration","7392"
"10:46:26.5083105 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000081","Query: Name","7392"
"10:46:26.5083387 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5083617 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocServer32","0.0000068","Desired Access: Read","7392"
"10:46:26.5083848 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5084052 AM","firefox.exe","7336","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocServer32","0.0000073","Desired Access: Read","7392"
"10:46:26.5084317 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000051","Query: Name","7392"
"10:46:26.5084543 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5084765 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5084867 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000069","Desired Access: Maximum Allowed","7392"
"10:46:26.5085119 AM","firefox.exe","7336","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\InprocServer32","0.0000034","Length: 12","7392"
"10:46:26.5085260 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:26.5085324 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000047","Query: Name","7392"
"10:46:26.5085452 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000072","","740"
"10:46:26.5085486 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5085550 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5085785 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000059","Desired Access: Maximum Allowed","7392"
"10:46:26.5085985 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","2512"
"10:46:26.5086024 AM","firefox.exe","7336","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\(Default)","0.0000038","Length: 12","7392"
"10:46:26.5086181 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000069","","2512"
"10:46:26.5086241 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000043","Query: Name","7392"
"10:46:26.5086463 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000064","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5086749 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000064","Desired Access: Maximum Allowed","7392"
"10:46:26.5086890 AM","firefox.exe","7384","CreateFile","C:\","0.0000175","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5086988 AM","firefox.exe","7336","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\(Default)","0.0000043","Type: REG_EXPAND_SZ, Length: 68, Data: %SystemRoot%\System32\shell32.dll","7392"
"10:46:26.5087240 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000042","Query: Name","7392"
"10:46:26.5087269 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000184","Filter: Windows, 1: Windows","2512"
"10:46:26.5087444 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5087645 AM","firefox.exe","7384","CloseFile","C:\","0.0000064","","2512"
"10:46:26.5087679 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000060","Desired Access: Maximum Allowed","7392"
"10:46:26.5087918 AM","firefox.exe","7336","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\(Default)","0.0000073","Type: REG_EXPAND_SZ, Length: 68, Data: %SystemRoot%\System32\shell32.dll","7392"
"10:46:26.5088187 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000068","Query: Name","7392"
"10:46:26.5088426 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5088652 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000064","Desired Access: Maximum Allowed","7392"
"10:46:26.5088887 AM","firefox.exe","7336","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\ThreadingModel","0.0000042","Type: REG_SZ, Length: 10, Data: Both","7392"
"10:46:26.5089168 AM","firefox.exe","7336","RegCloseKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000021","","7392"
"10:46:26.5089369 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000047","Query: Name","7392"
"10:46:26.5089467 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5089527 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5089603 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5089829 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000167","Filter: System32, 1: System32","2512"
"10:46:26.5089847 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocHandler32","0.0000059","Desired Access: Query Value","7392"
"10:46:26.5090013 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000047","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:26.5090081 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5090179 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000064","","2512"
"10:46:26.5090201 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000068","","740"
"10:46:26.5090295 AM","firefox.exe","7336","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocHandler32","0.0000042","Desired Access: Query Value","7392"
"10:46:26.5090516 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000047","Query: Name","7392"
"10:46:26.5090738 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5090973 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocHandler","0.0000060","Desired Access: Query Value","7392"
"10:46:26.5091199 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000021","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5091404 AM","firefox.exe","7336","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocHandler","0.0000043","Desired Access: Query Value","7392"
"10:46:26.5091630 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000043","Query: Name","7392"
"10:46:26.5091788 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000183","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5091848 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5092082 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\LocalServer32","0.0000060","Desired Access: Read","7392"
"10:46:26.5092163 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dbghelp.dll","0.0000214","Filter: dbghelp.dll, 1: dbghelp.dll","2512"
"10:46:26.5092308 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5092509 AM","firefox.exe","7336","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\LocalServer32","0.0000038","Desired Access: Read","7392"
"10:46:26.5092556 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000064","","2512"
"10:46:26.5092735 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000043","Query: Name","7392"
"10:46:26.5092940 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5093153 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000056","Desired Access: Maximum Allowed","7392"
"10:46:26.5093371 AM","firefox.exe","7336","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\AppID","0.0000034","Length: 112","7392"
"10:46:26.5093529 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5093576 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000068","Query: Name","7392"
"10:46:26.5093840 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5093977 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000042","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:26.5094079 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\LocalServer","0.0000060","Desired Access: Query Value","7392"
"10:46:26.5094152 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000064","","740"
"10:46:26.5094314 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5094510 AM","firefox.exe","7336","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\LocalServer","0.0000038","Desired Access: Query Value","7392"
"10:46:26.5094736 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Classes","0.0000043","Query: Name","7392"
"10:46:26.5094949 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Classes","0.0000018","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5095112 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5095287 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209C7-767B-42B2-9FBA-44EE4615F2C7}","0.0000046","Desired Access: Read","7392"
"10:46:26.5095521 AM","firefox.exe","7336","RegOpenKey","HKCR\CLSID\{591209C7-767B-42B2-9FBA-44EE4615F2C7}","0.0000098","Desired Access: Read","7392"
"10:46:26.5095807 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000051","Query: Name","7392"
"10:46:26.5096029 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5096302 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\Elevation","0.0000094","Desired Access: Read","7392"
"10:46:26.5096592 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5096788 AM","firefox.exe","7336","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\Elevation","0.0000047","Desired Access: Read","7392"
"10:46:26.5097057 AM","firefox.exe","7336","RegCloseKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000022","","7392"
"10:46:26.5097292 AM","firefox.exe","7336","RegCloseKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000017","","7392"
"10:46:26.5097556 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Classes","0.0000043","Query: Name","7392"
"10:46:26.5097770 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5097932 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5097945 AM","firefox.exe","7336","RegQueryKey","HKCU\Software\Classes","0.0000047","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5097957 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5098171 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209C7-767B-42B2-9FBA-44EE4615F2C7}","0.0000051","Desired Access: Read","7392"
"10:46:26.5098290 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","2512"
"10:46:26.5098414 AM","firefox.exe","7336","RegOpenKey","HKCR\CLSID\{591209C7-767B-42B2-9FBA-44EE4615F2C7}","0.0000085","Desired Access: Read","7392"
"10:46:26.5098431 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000038","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:26.5098487 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000068","","2512"
"10:46:26.5098602 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000064","","740"
"10:46:26.5098691 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000047","Query: Name","7392"
"10:46:26.5098909 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000017","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5099067 AM","firefox.exe","7384","CreateFile","C:\","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5099139 AM","firefox.exe","7336","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\TreatAs","0.0000103","Desired Access: Read","7392"
"10:46:26.5099365 AM","firefox.exe","7336","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000018","Query: HandleTags, HandleTags: 0x0","7392"
"10:46:26.5099493 AM","firefox.exe","7336","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\TreatAs","0.0000030","Desired Access: Read","7392"
"10:46:26.5099668 AM","firefox.exe","7336","RegCloseKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","","7392"
"10:46:26.5102126 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5102587 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:26.5102757 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000064","","740"
"10:46:26.5104443 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 7672","7392"
"10:46:26.5105795 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5106248 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:26.5106380 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000055","","740"
"10:46:26.5109000 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5109149 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000307","Filter: Windows, 1: Windows","2512"
"10:46:26.5109473 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:26.5109627 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000060","","740"
"10:46:26.5109665 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0138010","Offset: 634,880, Length: 32,593, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:26.5109729 AM","firefox.exe","7384","CloseFile","C:\","0.0000086","","2512"
"10:46:26.5111607 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0007492","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5115451 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5115886 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000038","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:26.5116018 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000060","","740"
"10:46:26.5118442 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5118787 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000030","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:26.5118907 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000047","","740"
"10:46:26.5119385 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000222","Filter: System32, 1: System32","2512"
"10:46:26.5119828 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000073","","2512"
"10:46:26.5121795 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5122359 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000042","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:26.5122538 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000072","","740"
"10:46:26.5122811 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5123067 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","2512"
"10:46:26.5123178 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000047","","2512"
"10:46:26.5123570 AM","firefox.exe","7384","CreateFile","C:\","0.0001084","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5124829 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000166","Filter: Windows, 1: Windows","2512"
"10:46:26.5125149 AM","firefox.exe","7384","CloseFile","C:\","0.0000060","","2512"
"10:46:26.5126548 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5127031 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000042","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:26.5127214 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000064","","740"
"10:46:26.5129087 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000222","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5129518 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000491","Filter: System32, 1: System32","2512"
"10:46:26.5130039 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5130239 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000081","","2512"
"10:46:26.5130491 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000038","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:26.5130649 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000059","","740"
"10:46:26.5132710 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000217","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5133691 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5134152 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:26.5134352 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000073","","740"
"10:46:26.5135969 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptbase.dll","0.0000086","AllocationSize: 32,768, EndOfFile: 31,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.5136332 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.5136554 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptbase.dll","0.0000038","AllocationSize: 32,768, EndOfFile: 31,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.5136895 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:26.5137795 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000111","","2512"
"10:46:26.5138427 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5139020 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000047","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:26.5139208 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000076","","740"
"10:46:26.5140317 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000230","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5140842 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptbase.dll","0.0000051","AllocationSize: 32,768, EndOfFile: 31,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.5141076 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.5141260 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptbase.dll","0.0000030","AllocationSize: 32,768, EndOfFile: 31,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.5141554 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:26.5142433 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptbase.dll","0.0000043","AllocationSize: 32,768, EndOfFile: 31,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.5142540 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5142664 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000098","","2512"
"10:46:26.5143052 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000047","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:26.5143231 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000064","","740"
"10:46:26.5146150 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000234","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5146704 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptbase.dll","0.0000051","AllocationSize: 32,768, EndOfFile: 31,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.5146952 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5146960 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.5147165 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptbase.dll","0.0000034","AllocationSize: 32,768, EndOfFile: 31,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.5147498 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000077","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:26.5147553 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000043","SyncType: SyncTypeOther","2512"
"10:46:26.5147767 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000192","","740"
"10:46:26.5152844 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000555","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5154448 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000393","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.5156458 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000930","","740"
"10:46:26.5170026 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000764","","2512"
"10:46:26.5170785 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49751 -> a104-114-76-170.deploy.static.akamaitechnologies.com:http","0.0000000","Length: 298, startime: 40148, endtime: 40149, seqnum: 0, connid: 0","0"
"10:46:26.5175410 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49751 -> a104-114-76-170.deploy.static.akamaitechnologies.com:http","0.0000000","Length: 384, seqnum: 0, connid: 0","0"
"10:46:26.5182403 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0002415","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5186534 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.5186747 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000179","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.5186896 AM","firefox.exe","7384","ReadFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0310166","Offset: 81,920, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7508"
"10:46:26.5187097 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000234","","740"
"10:46:26.5187225 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40150, endtime: 40150, seqnum: 0, connid: 0","0"
"10:46:26.5188287 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.5188471 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40150, endtime: 40150, seqnum: 0, connid: 0","0"
"10:46:26.5192460 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5193100 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000055","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.5193296 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000081","","740"
"10:46:26.5195029 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000285","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5195451 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000034","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","2512"
"10:46:26.5195596 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000060","","2512"
"10:46:26.5198293 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000298","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5198706 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","2512"
"10:46:26.5198826 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000047","","2512"
"10:46:26.5198834 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5199197 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.5199372 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000073","","740"
"10:46:26.5203221 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5203583 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000039","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","2512"
"10:46:26.5203754 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000072","","2512"
"10:46:26.5203976 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5204338 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.5204424 AM","firefox.exe","7384","CreateFile","C:\","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5204530 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000077","","740"
"10:46:26.5204714 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000171","Filter: Windows, 1: Windows","2512"
"10:46:26.5205021 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:26.5206578 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000120","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5206830 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000120","Filter: System32, 1: System32","2512"
"10:46:26.5207061 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000042","","2512"
"10:46:26.5207910 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5208255 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.5208439 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000076","","740"
"10:46:26.5209390 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5209625 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:26.5209736 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000047","","2512"
"10:46:26.5210124 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5210325 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000110","Filter: Windows, 1: Windows","2512"
"10:46:26.5210546 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:26.5211673 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5211903 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:26.5212206 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000081","","2512"
"10:46:26.5212833 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5213435 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:26.5213631 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000094","","740"
"10:46:26.5214625 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5214856 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:26.5214967 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000042","","2512"
"10:46:26.5215329 AM","firefox.exe","7384","CreateFile","C:\","0.0000086","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5215530 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000124","Filter: Windows, 1: Windows","2512"
"10:46:26.5215782 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:26.5216763 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5216968 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5216989 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:26.5217207 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:26.5217510 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:26.5217685 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000081","","740"
"10:46:26.5218461 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5218747 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000030","AllocationSize: 495,616, EndOfFile: 494,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:26.5218930 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcryptprimitives.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.5219063 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000021","AllocationSize: 495,616, EndOfFile: 494,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:26.5219263 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcryptprimitives.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:26.5219971 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000060","","2512"
"10:46:26.5220778 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5221298 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000052","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:26.5221341 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5221490 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000073","","740"
"10:46:26.5221653 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000029","AllocationSize: 495,616, EndOfFile: 494,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:26.5221810 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcryptprimitives.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.5221956 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000021","AllocationSize: 495,616, EndOfFile: 494,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:26.5222165 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcryptprimitives.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:26.5222903 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000021","AllocationSize: 495,616, EndOfFile: 494,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:26.5223035 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000051","","2512"
"10:46:26.5225023 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000154","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5225348 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000034","AllocationSize: 495,616, EndOfFile: 494,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:26.5225501 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcryptprimitives.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.5225616 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000022","AllocationSize: 495,616, EndOfFile: 494,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:26.5225800 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcryptprimitives.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:26.5226679 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5227186 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000043","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:26.5227378 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000077","","740"
"10:46:26.5229661 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000056","","2512"
"10:46:26.5230655 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5231150 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000051","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:26.5231329 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000069","","740"
"10:46:26.5234884 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5235118 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5235148 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:26.5235272 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000051","","2512"
"10:46:26.5235617 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:26.5235805 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000073","","740"
"10:46:26.5237401 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","7760"
"10:46:26.5237593 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","Offset: 1,073,741,826, Length: 510","7760"
"10:46:26.5237729 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","7760"
"10:46:26.5238182 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000106","","7760"
"10:46:26.5239556 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5239905 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:26.5240089 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000064","","2512"
"10:46:26.5240217 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5240831 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000039","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:26.5241006 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000056","","740"
"10:46:26.5241911 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:26.5242329 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000038","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:25 AM, LastWriteTime: 3/26/2020 10:46:25 AM, ChangeTime: 3/26/2020 10:46:25 AM, FileAttributes: A","7760"
"10:46:26.5242576 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000064","","7760"
"10:46:26.5243912 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5244411 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000038","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:26.5244582 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000059","","740"
"10:46:26.5244880 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000824","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:26.5245930 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000051","Attributes: A, ReparseTag: 0x0","7760"
"10:46:26.5246165 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000128","Delete: True","7760"
"10:46:26.5246455 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0001566","","7760"
"10:46:26.5248452 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000221","","7760"
"10:46:26.5249386 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5249941 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:26.5250120 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000064","","740"
"10:46:26.5252181 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:26.5252603 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000051","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:25 AM, LastWriteTime: 3/26/2020 10:46:25 AM, ChangeTime: 3/26/2020 10:46:25 AM, FileAttributes: A","7760"
"10:46:26.5252804 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000064","","7760"
"10:46:26.5254194 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0417311","Offset: 16,289,792, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:26.5254271 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5254527 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000568","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:26.5254792 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000136","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:26.5255056 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000133","","740"
"10:46:26.5255393 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000047","Attributes: A, ReparseTag: 0x0","7760"
"10:46:26.5255637 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000115","Delete: True","7760"
"10:46:26.5255918 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000973","","7760"
"10:46:26.5257697 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","Offset: 1,073,741,826, Length: 510","7760"
"10:46:26.5257881 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Offset: 1,073,741,825, Length: 1","7760"
"10:46:26.5258047 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000022","Offset: 1,073,741,826, Length: 510","7760"
"10:46:26.5258286 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000022","Offset: 1,073,741,824, Length: 1","7760"
"10:46:26.5258393 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5258495 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000141","","7760"
"10:46:26.5259033 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000068","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:26.5259242 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000064","","740"
"10:46:26.5260121 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0001037","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5261320 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:26.5261490 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000060","","2512"
"10:46:26.5262041 AM","firefox.exe","7384","CreateFile","C:\","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5262088 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5262369 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000188","Filter: Windows, 1: Windows","2512"
"10:46:26.5262706 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000094","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:26.5262728 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:26.5262980 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000059","","740"
"10:46:26.5264375 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5264447 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:26.5264682 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000162","Filter: System32, 1: System32","2512"
"10:46:26.5264929 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000056","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","7760"
"10:46:26.5265010 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000056","","2512"
"10:46:26.5265168 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000086","","7760"
"10:46:26.5267041 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5267541 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000042","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:26.5267716 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000064","","740"
"10:46:26.5268330 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5268650 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:26.5268825 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000055","","2512"
"10:46:26.5269017 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:26.5269478 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","7760"
"10:46:26.5269725 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000077","","7760"
"10:46:26.5270613 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5271044 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000038","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:26.5271214 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000056","","740"
"10:46:26.5271385 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5271654 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000042","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:26.5271816 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000060","","2512"
"10:46:26.5274047 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5274111 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:26.5274474 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000034","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:26.5274611 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000051","","740"
"10:46:26.5274973 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","7760"
"10:46:26.5275216 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","","7760"
"10:46:26.5275579 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000209","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5276023 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000051","AllocationSize: 90,112, EndOfFile: 87,200, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:26.5276304 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.5276501 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000030","AllocationSize: 90,112, EndOfFile: 87,200, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:26.5276833 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:26.5277098 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000371","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","7760"
"10:46:26.5277648 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000094","","2512"
"10:46:26.5277892 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000209","Offset: 0, Length: 100, Priority: Normal","7760"
"10:46:26.5278404 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5278890 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000047","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:26.5279056 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000069","","740"
"10:46:26.5279253 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","7760"
"10:46:26.5279462 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000025","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","7760"
"10:46:26.5280029 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000209","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5280089 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","Offset: 1,073,741,824, Length: 1","7760"
"10:46:26.5280511 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000047","AllocationSize: 90,112, EndOfFile: 87,200, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:26.5280763 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.5280976 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000030","AllocationSize: 90,112, EndOfFile: 87,200, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:26.5281313 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:26.5282410 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5282896 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000039","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:26.5283076 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000064","","740"
"10:46:26.5283148 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:26.5285823 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5956"
"10:46:26.5286003 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5286246 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json","0.0000047","CreationTime: 6/19/2019 4:53:40 PM, LastAccessTime: 3/26/2020 10:35:40 AM, LastWriteTime: 3/26/2020 10:35:40 AM, ChangeTime: 3/26/2020 10:35:40 AM, FileAttributes: A","5956"
"10:46:26.5286399 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:26.5286438 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000038","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:26.5286446 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json","0.0000077","","5956"
"10:46:26.5286613 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000064","","740"
"10:46:26.5286916 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000042","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:26.5287210 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000077","Offset: 0, Length: 4,096","7760"
"10:46:26.5288332 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json.tmp","0.0007249","Desired Access: Generic Write, Read Attributes, Disposition: OverwriteIf, Options: Write Through, Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: 0, OpenResult: Created","5956"
"10:46:26.5290815 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5291315 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:26.5291494 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000072","","740"
"10:46:26.5291605 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000051","AllocationSize: 90,112, EndOfFile: 87,200, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:26.5291886 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000081","","2512"
"10:46:26.5294421 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5294958 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:26.5295125 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000076","","740"
"10:46:26.5295940 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json.tmp","0.1011943","Offset: 0, Length: 53, I/O Flags: Write Through, Priority: Normal","5956"
"10:46:26.5298286 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5298901 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:26.5299080 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000077","","740"
"10:46:26.5306931 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 2444","5728"
"10:46:26.5312200 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0002329","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5315955 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json.tmp","0.0991621","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Write Through, Priority: Normal","5956"
"10:46:26.5316833 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:26.5318741 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0001327","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","7760"
"10:46:26.5320490 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000077","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:26.5320746 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000119","","740"
"10:46:26.5324044 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:26.5325171 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5325725 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000056","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:26.5325990 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000094","","740"
"10:46:26.5326058 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.1070918","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","7760"
"10:46:26.5329232 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5329744 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000060","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:26.5329936 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000077","","740"
"10:46:26.5334980 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5335547 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000056","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:26.5335718 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000081","","740"
"10:46:26.5339455 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000244","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5340010 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000051","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:26.5340159 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000094","Name: \Windows\System32\sechost.dll","2956"
"10:46:26.5340185 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000073","","740"
"10:46:26.5343496 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5344076 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000056","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:26.5344255 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000081","","740"
"10:46:26.5349435 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5349823 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000056","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:26.5350007 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000077","","740"
"10:46:26.5353804 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5354210 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000051","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:26.5354376 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000081","","740"
"10:46:26.5358173 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5358540 AM","firefox.exe","7384","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.1428068","Offset: 15,470,592, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:26.5358570 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000051","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:26.5358736 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000073","","740"
"10:46:26.5362909 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5363212 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000039","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:26.5363344 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000056","","740"
"10:46:26.5381555 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0001292","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5383214 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000124","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:26.5383539 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000192","","740"
"10:46:26.5400260 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000414","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5400853 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000068","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:26.5401058 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000089","","740"
"10:46:26.5402559 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000355","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.5403972 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0001694","AllocationSize: 90,112, EndOfFile: 87,200, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:26.5406054 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000060","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.5406395 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5406783 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000047","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:26.5406958 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000077","","740"
"10:46:26.5407086 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000064","Name: \Windows\System32\sechost.dll","2956"
"10:46:26.5407466 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000107","AllocationSize: 90,112, EndOfFile: 87,200, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:26.5408089 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000038","SyncType: SyncTypeOther","2512"
"10:46:26.5410551 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5410918 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000047","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:26.5411161 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000111","","740"
"10:46:26.5413687 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.1526410","Offset: 61,440, Length: 25,760, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:26.5415014 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5415411 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000051","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:26.5415598 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000086","","740"
"10:46:26.5417113 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000081","Name: \Windows\System32\sechost.dll","2956"
"10:46:26.5420531 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5420974 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000052","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:26.5421179 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000086","","740"
"10:46:26.5425049 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5425058 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000072","Name: \Windows\System32\sechost.dll","2956"
"10:46:26.5425459 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000047","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:26.5425646 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000086","","740"
"10:46:26.5429056 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000221","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5429444 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000055","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:26.5429644 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000141","","740"
"10:46:26.5432170 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000073","Name: \Windows\System32\sechost.dll","2956"
"10:46:26.5434470 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5435046 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000119","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.5435323 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000086","","740"
"10:46:26.5439121 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000072","Name: \Windows\System32\sechost.dll","2956"
"10:46:26.5439249 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5439790 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000052","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.5439987 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000085","","740"
"10:46:26.5443225 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5443776 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000051","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.5443968 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000076","","740"
"10:46:26.5448149 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5448469 AM","firefox.exe","7972","Thread Create","","0.0000000","Thread ID: 1312","8292"
"10:46:26.5448588 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000039","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:26.5448716 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000052","","740"
"10:46:26.5451174 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5451601 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000042","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:26.5451763 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000068","","740"
"10:46:26.5452535 AM","firefox.exe","7972","Thread Create","","0.0000000","Thread ID: 716","8292"
"10:46:26.5454600 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5454711 AM","firefox.exe","7972","RegCloseKey","HKLM","0.0000026","","8292"
"10:46:26.5454954 AM","firefox.exe","7972","RegOpenKey","HKLM","0.0000077","Desired Access: Maximum Allowed, Granted Access: Read","8292"
"10:46:26.5455052 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:26.5455296 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000072","","740"
"10:46:26.5455466 AM","firefox.exe","7972","RegCloseKey","HKLM","0.0000022","","8292"
"10:46:26.5455637 AM","firefox.exe","7972","RegCloseKey","HKU","0.0000017","","8292"
"10:46:26.5455944 AM","firefox.exe","7972","RegOpenKey","HKU","0.0000056","Desired Access: Maximum Allowed, Granted Access: Read","8292"
"10:46:26.5456123 AM","firefox.exe","7972","RegCloseKey","HKU","0.0000017","","8292"
"10:46:26.5456324 AM","firefox.exe","7972","RegCloseKey","HKCU","0.0000013","","8292"
"10:46:26.5458470 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5458807 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000030","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:26.5458918 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000047","","740"
"10:46:26.5460710 AM","firefox.exe","7972","Thread Create","","0.0000000","Thread ID: 8916","8292"
"10:46:26.5461043 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5461474 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000038","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:26.5461627 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000064","","740"
"10:46:26.5463662 AM","firefox.exe","7972","Thread Create","","0.0000000","Thread ID: 7316","8292"
"10:46:26.5466999 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0001617","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5473740 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000482","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:26.5474487 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000196","","740"
"10:46:26.5479897 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5480456 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000051","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:26.5480601 AM","firefox.exe","7972","RegOpenKey","HKLM","0.0000098","Desired Access: Maximum Allowed, Granted Access: Read","8292"
"10:46:26.5480648 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000077","","740"
"10:46:26.5480998 AM","firefox.exe","7972","RegQueryKey","HKLM","0.0000115","Query: HandleTags, HandleTags: 0x0","8292"
"10:46:26.5481408 AM","firefox.exe","7972","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Parental Controls\Users\S-1-5-21-429253301-29906273-2566354956-1001\Web","0.0000175","Desired Access: Read","8292"
"10:46:26.5484253 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5484748 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000047","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:26.5484923 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000081","","740"
"10:46:26.5488303 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5488861 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000060","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:26.5489058 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000119","","740"
"10:46:26.5495001 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5495402 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000060","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:26.5495590 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000085","","740"
"10:46:26.5499106 AM","firefox.exe","7384","ReadFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0988549","Offset: 98,304, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7508"
"10:46:26.5503948 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0001259","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5506671 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000371","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:26.5507601 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000456","","740"
"10:46:26.5515498 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000397","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5516027 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000047","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:26.5516164 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000064","","740"
"10:46:26.5527953 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5528315 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000052","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:26.5528486 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000077","","740"
"10:46:26.5529787 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 9200","7312"
"10:46:26.5531494 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5531716 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:26.5531823 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000046","","740"
"10:46:26.5534532 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5534762 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:26.5534873 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000047","","740"
"10:46:26.5538146 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5538491 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:26.5538602 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000052","","740"
"10:46:26.5540612 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5540885 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:26.5540987 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000043","","740"
"10:46:26.5542895 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5543155 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000025","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:26.5543253 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000043","","740"
"10:46:26.5545915 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5546201 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000026","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:26.5546299 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000043","","740"
"10:46:26.5548416 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5548693 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000026","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:26.5548795 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000043","","740"
"10:46:26.5550558 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5550818 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000025","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:26.5550916 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000038","","740"
"10:46:26.5553583 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5553864 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000026","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:26.5553962 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000039","","740"
"10:46:26.5555793 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5556053 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000021","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:26.5556147 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000043","","740"
"10:46:26.5557888 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5558144 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000025","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:26.5558242 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000038","","740"
"10:46:26.5560904 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5561190 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000026","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:26.5561288 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000039","","740"
"10:46:26.5563127 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5563387 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000026","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:26.5563486 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000038","","740"
"10:46:26.5565239 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5565495 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000021","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:26.5565589 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000038","","740"
"10:46:26.5568367 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5568576 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000025","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:26.5568674 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000038","","740"
"10:46:26.5570483 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5570666 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000026","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:26.5570760 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000039","","740"
"10:46:26.5572518 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5572702 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000025","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:26.5572800 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000034","","740"
"10:46:26.5575995 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5576204 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:26.5576303 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000051","","740"
"10:46:26.5578291 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5578479 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:26.5578577 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000038","","740"
"10:46:26.5581538 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5581738 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000026","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","740"
"10:46:26.5581836 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000039","","740"
"10:46:26.5583761 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5583944 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000026","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","740"
"10:46:26.5584038 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000038","","740"
"10:46:26.5585787 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000099","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5585967 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000021","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","740"
"10:46:26.5586061 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000034","","740"
"10:46:26.5588736 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5588945 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000025","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.5589039 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000038","","740"
"10:46:26.5590980 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5591163 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.5591257 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000039","","740"
"10:46:26.5592998 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5593177 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.5593271 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000034","","740"
"10:46:26.5595951 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5596262 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000030","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:26.5596365 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000042","","740"
"10:46:26.5598327 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5598592 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000025","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:26.5598690 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000043","","740"
"10:46:26.5600443 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5600699 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000026","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:26.5600798 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000038","","740"
"10:46:26.5603567 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5603853 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","740"
"10:46:26.5603951 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000042","","740"
"10:46:26.5605956 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5606221 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","740"
"10:46:26.5606319 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000038","","740"
"10:46:26.5608064 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5608315 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","740"
"10:46:26.5608414 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000038","","740"
"10:46:26.5611127 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5611345 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:26.5611443 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000038","","740"
"10:46:26.5613179 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5613363 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:26.5613457 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000038","","740"
"10:46:26.5615223 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5615407 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:26.5615501 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000038","","740"
"10:46:26.5618291 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5618483 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","740"
"10:46:26.5618581 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000034","","740"
"10:46:26.5620330 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000099","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5620510 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000021","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","740"
"10:46:26.5620599 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000039","","740"
"10:46:26.5622276 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5622455 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000022","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","740"
"10:46:26.5622545 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000038","","740"
"10:46:26.5625549 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imagehlp.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5625864 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imagehlp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:26.5626035 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imagehlp.dll","0.0000043","","740"
"10:46:26.5627955 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imagehlp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5628224 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imagehlp.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:26.5628322 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imagehlp.dll","0.0000038","","740"
"10:46:26.5630088 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imagehlp.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5630361 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imagehlp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:26.5630459 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imagehlp.dll","0.0000039","","740"
"10:46:26.5642961 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rsaenh.dll","0.0000320","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5643703 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rsaenh.dll","0.0000064","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.5643929 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rsaenh.dll","0.0000099","","740"
"10:46:26.5647927 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rsaenh.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5648298 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rsaenh.dll","0.0000035","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.5648426 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rsaenh.dll","0.0000056","","740"
"10:46:26.5649152 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000132","Desired Access: Read","740"
"10:46:26.5650406 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\rsaenh.dll.mui","0.0000175","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5650794 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\rsaenh.dll.mui","0.0000035","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:26.5650944 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\rsaenh.dll.mui","0.0000034","AllocationSize: 12,288, EndOfFile: 9,728, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:26.5651157 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\rsaenh.dll.mui","0.0000017","SyncType: SyncTypeOther","740"
"10:46:26.5653555 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rsaenh.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5653973 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rsaenh.dll","0.0000034","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.5654101 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rsaenh.dll","0.0000051","","740"
"10:46:26.5658116 AM","firefox.exe","1008","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\startup_shaders","0.0002112","Desired Access: Generic Write, Read Attributes, Disposition: OverwriteIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: 0, OpenResult: Overwritten","7796"
"10:46:26.5659588 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.5659981 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000055","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:26.5660173 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0827964","","740"
"10:46:26.5660484 AM","firefox.exe","1008","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\startup_shaders","0.0000405","Offset: 0, Length: 186, Priority: Normal","7796"
"10:46:26.5661030 AM","firefox.exe","1008","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\startup_shaders","0.0000337","","7796"
"10:46:26.5694425 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.2029533","Offset: 5,894,144, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:26.6309970 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json","0.0000281","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5956"
"10:46:26.6310409 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json","0.0000051","Attributes: A, ReparseTag: 0x0","5956"
"10:46:26.6310584 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json","0.0000090","Delete: True","5956"
"10:46:26.6310780 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json","0.0000679","","5956"
"10:46:26.6312841 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json.tmp","0.0000205","Desired Access: Read Attributes, Delete, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5956"
"10:46:26.6313170 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json.tmp","0.0000038","Attributes: A, ReparseTag: 0x0","5956"
"10:46:26.6313345 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json.tmp","0.0000025","CreationTime: 3/26/2020 10:46:26 AM, LastAccessTime: 3/26/2020 10:46:26 AM, LastWriteTime: 3/26/2020 10:46:26 AM, ChangeTime: 3/26/2020 10:46:26 AM, FileAttributes: A","5956"
"10:46:26.6314339 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000136","Desired Access: Write Data/Add File, Synchronize, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5956"
"10:46:26.6317769 AM","firefox.exe","7384","SetRenameInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json.tmp","0.0000956","ReplaceIfExists: False, FileName: C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json","5956"
"10:46:26.6318832 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000183","","5956"
"10:46:26.6319322 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json","0.0000162","","5956"
"10:46:26.6319745 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json","0.0006195","","5956"
"10:46:26.6397594 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000064","Exclusive: True, Offset: 128, Length: 1, Fail Immediately: True","7760"
"10:46:26.6397910 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000337","EndOfFile: 0","7760"
"10:46:26.6398435 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000171","AllocationSize: 0","7760"
"10:46:26.6398776 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000026","Offset: 128, Length: 1","7760"
"10:46:26.6398934 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Exclusive: False, Offset: 128, Length: 1, Fail Immediately: True","7760"
"10:46:26.6399083 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000039","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:26.6399246 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7760"
"10:46:26.6399356 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000018","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:26.6399502 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000686","EndOfFile: 32,768","7760"
"10:46:26.6400355 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000200","AllocationSize: 32,768","7760"
"10:46:26.6400820 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000060","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7760"
"10:46:26.6401029 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","AllocationSize: 32,768, EndOfFile: 32,768, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:26.6401315 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000047","SyncType: SyncTypeOther","7760"
"10:46:26.6402096 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000179","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7760"
"10:46:26.6402578 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000042","Exclusive: True, Offset: 121, Length: 2, Fail Immediately: True","7760"
"10:46:26.6402787 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000013","Exclusive: True, Offset: 124, Length: 4, Fail Immediately: True","7760"
"10:46:26.6402953 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000043","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:26.6403188 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000021","Offset: 121, Length: 2","7760"
"10:46:26.6403376 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Offset: 124, Length: 4","7760"
"10:46:26.6403538 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000013","Offset: 120, Length: 1","7760"
"10:46:26.6403700 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:26.6403939 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000025","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:26.6404178 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000072","Offset: 0, Length: 4,096","7760"
"10:46:26.6406857 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","Offset: 123, Length: 1","7760"
"10:46:26.6410300 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:26.6410633 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000039","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","7760"
"10:46:26.6410787 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000060","","7760"
"10:46:26.6412831 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000221","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:26.6413163 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000030","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:26 AM, LastWriteTime: 3/26/2020 10:46:26 AM, ChangeTime: 3/26/2020 10:46:26 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","7760"
"10:46:26.6413279 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000034","","7760"
"10:46:26.6414337 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000141","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:26.6414614 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000026","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,870, SectorsPerAllocationUnit: 8, BytesPerSector: 512","7760"
"10:46:26.6414742 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000038","","7760"
"10:46:26.6415779 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:26.6415937 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:26.6416197 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","Offset: 20,480, Length: 4,096","7760"
"10:46:26.6416444 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000035","Offset: 1,654,784, Length: 4,096","7760"
"10:46:26.6416628 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000094","Offset: 12,787,712, Length: 4,096","7760"
"10:46:26.6416858 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000052","Offset: 12,378,112, Length: 4,096","7760"
"10:46:26.6417140 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Offset: 12,509,184, Length: 4,096","7760"
"10:46:26.6417358 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000046","Offset: 11,808,768, Length: 4,096","7760"
"10:46:26.6477001 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000359","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","4500"
"10:46:26.6479079 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000222","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4500"
"10:46:26.6479591 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000043","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","4500"
"10:46:26.6479779 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000085","CreationTime: 6/19/2019 4:53:34 PM, LastAccessTime: 6/19/2019 4:53:34 PM, LastWriteTime: 6/19/2019 4:53:34 PM, ChangeTime: 6/19/2019 4:53:34 PM, FileAttributes: D, AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: True, IndexNumber: 0x21000000002d58, EaSize: 0, Access: Read Attributes, Synchronize, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","4500"
"10:46:26.6480005 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000060","","4500"
"10:46:26.6481921 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000200","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4500"
"10:46:26.6482343 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000030","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","4500"
"10:46:26.6482480 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000064","CreationTime: 6/19/2019 4:53:34 PM, LastAccessTime: 6/19/2019 4:53:34 PM, LastWriteTime: 6/19/2019 4:53:34 PM, ChangeTime: 6/19/2019 4:53:34 PM, FileAttributes: D, AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: True, IndexNumber: 0x21000000002d58, EaSize: 0, Access: Read Attributes, Synchronize, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","4500"
"10:46:26.6482646 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000047","","4500"
"10:46:26.6484127 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000175","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4500"
"10:46:26.6484481 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000021","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","4500"
"10:46:26.6484596 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000043","CreationTime: 6/19/2019 4:53:34 PM, LastAccessTime: 6/19/2019 4:53:34 PM, LastWriteTime: 6/19/2019 4:53:34 PM, ChangeTime: 6/19/2019 4:53:34 PM, FileAttributes: D, AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: True, IndexNumber: 0x21000000002d58, EaSize: 0, Access: Read Attributes, Synchronize, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","4500"
"10:46:26.6484733 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore","0.0000034","","4500"
"10:46:26.6486060 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000234","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","4500"
"10:46:26.6486478 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000030","Exclusive: True, Offset: 0, Length: 1, Fail Immediately: True","4500"
"10:46:26.6486597 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000026","AllocationSize: 8,192, EndOfFile: 8,192, NumberOfLinks: 1, DeletePending: False, Directory: False","4500"
"10:46:26.6486764 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","4500"
"10:46:26.6486896 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000021","AllocationSize: 8,192, EndOfFile: 8,192, NumberOfLinks: 1, DeletePending: False, Directory: False","4500"
"10:46:26.6487092 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000017","SyncType: SyncTypeOther","4500"
"10:46:26.6487416 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000022","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","4500"
"10:46:26.6487540 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000043","CreationTime: 6/19/2019 4:53:34 PM, LastAccessTime: 6/19/2019 4:53:34 PM, LastWriteTime: 6/19/2019 4:53:34 PM, ChangeTime: 6/19/2019 4:53:34 PM, FileAttributes: A, AllocationSize: 8,192, EndOfFile: 8,192, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x16000000002d6d, EaSize: 0, Access: Generic Read/Write, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","4500"
"10:46:26.6488334 AM","firefox.exe","7384","ReadFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.1009349","Offset: 377,344, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7508"
"10:46:26.6489737 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000209","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","4500"
"10:46:26.6490130 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000124","Offset: 0, Length: 152, Priority: Normal","4500"
"10:46:26.6490365 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000034","Offset: 4,096, Length: 152","4500"
"10:46:26.6490535 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000252","EndOfFile: 1,048,576","4500"
"10:46:26.6490889 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000124","AllocationSize: 1,048,576","4500"
"10:46:26.6491141 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","4500"
"10:46:26.6491261 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000029","AllocationSize: 1,048,576, EndOfFile: 1,048,576, NumberOfLinks: 1, DeletePending: False, Directory: False","4500"
"10:46:26.6491457 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000017","SyncType: SyncTypeOther","4500"
"10:46:26.6491879 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.6492255 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:26.6492447 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.1006678","","740"
"10:46:26.6492733 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000200","Desired Access: Generic Write, Read Attributes, Disposition: Open, Options: Write Through, Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","4500"
"10:46:26.6493142 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000030","Exclusive: False, Offset: 0, Length: 1, Fail Immediately: False","4500"
"10:46:26.6493266 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000013","Offset: 0, Length: 1","4500"
"10:46:26.6493906 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000324","Offset: 12,288, Length: 4,096, Priority: Normal","4500"
"10:46:26.6494333 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000042","Offset: 16,384, Length: 4,096","4500"
"10:46:26.6494448 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0000034","Offset: 20,480, Length: 4,096","4500"
"10:46:26.6494589 AM","firefox.exe","7384","FlushBuffersFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.1370984","","4500"
"10:46:26.6495194 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0013880","Offset: 12,288, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","4500"
"10:46:26.6789258 AM","firefox.exe","7384","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.1094700","Offset: 15,503,360, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:26.6943349 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000213","","2512"
"10:46:26.6948597 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.6948929 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000052","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:26.6949087 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000060","","2512"
"10:46:26.6951349 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.6951566 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:26.6951681 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000047","","2512"
"10:46:26.6953717 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.6953913 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:26.6954015 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000039","","2512"
"10:46:26.6955978 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.6956161 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:26.6956260 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000038","","2512"
"10:46:26.6958581 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.6958790 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:26.6958896 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000043","","2512"
"10:46:26.6961252 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.6961811 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000405","Filter: msvcp140.dll, 1: msvcp140.dll","2512"
"10:46:26.6962638 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000064","","2512"
"10:46:26.6964580 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.6964797 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:26.6964908 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000043","","2512"
"10:46:26.6965902 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.6966133 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000115","Filter: msvcp140.dll, 1: msvcp140.dll","2512"
"10:46:26.6966410 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000043","","2512"
"10:46:26.6967549 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.6967827 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000029","AllocationSize: 626,688, EndOfFile: 625,808, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:26.6968001 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.6968125 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000022","AllocationSize: 626,688, EndOfFile: 625,808, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:26.6968326 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:26.6968974 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000060","","2512"
"10:46:26.6970314 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.6970608 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000026","AllocationSize: 626,688, EndOfFile: 625,808, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:26.6970753 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.6970864 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000022","AllocationSize: 626,688, EndOfFile: 625,808, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:26.6971052 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:26.6971667 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000017","AllocationSize: 626,688, EndOfFile: 625,808, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:26.6971795 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000051","","2512"
"10:46:26.6973028 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.6973284 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000025","AllocationSize: 626,688, EndOfFile: 625,808, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:26.6973412 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.6973514 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000017","AllocationSize: 626,688, EndOfFile: 625,808, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:26.6973693 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:26.6975251 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.1168061","Offset: 593,920, Length: 31,888, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:26.7500614 AM","firefox.exe","7384","ReadFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0858092","Offset: 114,688, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7508"
"10:46:26.7518466 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000717","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.7519819 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000179","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:26.7520514 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0841089","","740"
"10:46:26.7764559 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.1378238","Offset: 5,791,744, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:26.7867787 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0018978","Offset: 32, Length: 120, I/O Flags: Write Through, Priority: Normal","4500"
"10:46:26.7870356 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0014664","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Write Through, Priority: Normal","4500"
"10:46:26.7890802 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0012181","","4500"
"10:46:26.7893976 AM","firefox.exe","7384","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0344666","Offset: 15,536,128, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:26.7905782 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\data.mdb","0.0001485","","4500"
"10:46:26.7909562 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000158","Offset: 0, Length: 1","4500"
"10:46:26.7910185 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\xulstore\lock.mdb","0.0000248","","4500"
"10:46:26.8162337 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000550","","2512"
"10:46:26.8180402 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000717","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8181742 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000175","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:26.8182412 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000238","","2512"
"10:46:26.8191931 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000597","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8193010 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000137","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:26.8193552 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000200","","2512"
"10:46:26.8203143 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000534","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8204103 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000133","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:26.8204611 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000196","","2512"
"10:46:26.8209445 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000504","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8210606 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000589","Filter: msvcp140.dll, 1: msvcp140.dll","2512"
"10:46:26.8211805 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000196","","2512"
"10:46:26.8220671 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000554","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8221656 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000141","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:26.8222151 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000192","","2512"
"10:46:26.8226776 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000478","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8227843 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000512","Filter: msvcp140.dll, 1: msvcp140.dll","2512"
"10:46:26.8228923 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000183","","2512"
"10:46:26.8238953 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000636","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8240515 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000154","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:26.8241065 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000205","","2512"
"10:46:26.8243165 AM","firefox.exe","7384","CreateFile","C:\","0.0000490","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8244300 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000559","Filter: Windows, 1: Windows","2512"
"10:46:26.8245435 AM","firefox.exe","7384","CloseFile","C:\","0.0000192","","2512"
"10:46:26.8250422 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000521","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8250546 AM","firefox.exe","7384","CreateFile","C:\Windows\Fonts\times.ttf","0.0002556","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:26.8251536 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000550","Filter: System32, 1: System32","2512"
"10:46:26.8252628 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000192","","2512"
"10:46:26.8254753 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\Fonts\times.ttf","0.0000218","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","5728"
"10:46:26.8255990 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\Fonts\times.ttf","0.0000226","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 7:10:47 PM, FileAttributes: A, AllocationSize: 1,196,032, EndOfFile: 1,195,688, NumberOfLinks: 2, DeletePending: False, Directory: False, IndexNumber: 0x3000000062432, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","5728"
"10:46:26.8257386 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000499","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8257445 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\Fonts\times.ttf","0.0000154","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:26.8258439 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\Fonts\times.ttf","0.0000133","AllocationSize: 1,196,032, EndOfFile: 1,195,688, NumberOfLinks: 2, DeletePending: False, Directory: False","5728"
"10:46:26.8258478 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\ws2_32.dll","0.0000589","Filter: ws2_32.dll, 1: ws2_32.dll","2512"
"10:46:26.8259613 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000192","","2512"
"10:46:26.8260095 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\Fonts\times.ttf","0.0000081","SyncType: SyncTypeOther","5728"
"10:46:26.8263636 AM","firefox.exe","7384","ReadFile","C:\Windows\Fonts\times.ttf","0.0475888","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:26.8268270 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000589","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8269695 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000141","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:26.8270211 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000209","","2512"
"10:46:26.8271871 AM","firefox.exe","7384","CreateFile","C:\","0.0000397","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8272788 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000461","Filter: Windows, 1: Windows","2512"
"10:46:26.8273752 AM","firefox.exe","7384","CloseFile","C:\","0.0000180","","2512"
"10:46:26.8278207 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000657","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8279670 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000623","Filter: System32, 1: System32","2512"
"10:46:26.8281053 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000226","","2512"
"10:46:26.8287956 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000721","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8289535 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\ws2_32.dll","0.0000811","Filter: ws2_32.dll, 1: ws2_32.dll","2512"
"10:46:26.8291378 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000346","","2512"
"10:46:26.8309456 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000998","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8312391 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ws2_32.dll","0.0000197","AllocationSize: 434,176, EndOfFile: 430,408, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.8313671 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ws2_32.dll","0.0000167","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.8314397 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ws2_32.dll","0.0000106","AllocationSize: 434,176, EndOfFile: 430,408, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.8315451 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ws2_32.dll","0.0000085","SyncType: SyncTypeOther","2512"
"10:46:26.8318527 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000384","","2512"
"10:46:26.8328605 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000746","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8330815 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ws2_32.dll","0.0000158","AllocationSize: 434,176, EndOfFile: 430,408, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.8331604 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ws2_32.dll","0.0000124","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.8332193 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ws2_32.dll","0.0000098","AllocationSize: 434,176, EndOfFile: 430,408, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.8333136 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ws2_32.dll","0.0000073","SyncType: SyncTypeOther","2512"
"10:46:26.8336336 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ws2_32.dll","0.0205048","Offset: 401,408, Length: 29,000, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:26.8361817 AM","firefox.exe","7384","ReadFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0217822","Offset: 131,072, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7508"
"10:46:26.8384677 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000986","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8387306 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000200","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:26.8388330 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000388","","740"
"10:46:26.8403737 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000857","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8405887 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000171","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:26.8406800 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000367","","740"
"10:46:26.8420441 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000866","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8422617 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000175","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:26.8423372 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000299","","740"
"10:46:26.8442188 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sspicli.dll","0.0000857","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8444215 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000170","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.8444983 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sspicli.dll","0.0000277","","740"
"10:46:26.8460769 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sspicli.dll","0.0000798","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8462702 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000196","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.8463521 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sspicli.dll","0.0002449","","740"
"10:46:26.8478851 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sspicli.dll","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8479777 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000098","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.8480776 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sspicli.dll","0.0000140","","740"
"10:46:26.8488780 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000320","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8489330 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000064","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:26.8489646 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000102","","740"
"10:46:26.8494928 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000278","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8495500 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000081","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:26.8495833 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000128","","740"
"10:46:26.8501222 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8501738 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000064","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:26.8502096 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000273","","740"
"10:46:26.8509704 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000333","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8510485 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000081","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","740"
"10:46:26.8511120 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000128","","740"
"10:46:26.8516607 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000329","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8517401 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000064","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","740"
"10:46:26.8517798 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000119","","740"
"10:46:26.8519086 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000265","Desired Access: Read","740"
"10:46:26.8522235 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\winhttp.dll.mui","0.0000341","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8522986 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\winhttp.dll.mui","0.0000072","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:26.8523314 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\winhttp.dll.mui","0.0000073","AllocationSize: 20,480, EndOfFile: 19,968, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:26.8523882 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\winhttp.dll.mui","0.0000068","SyncType: SyncTypeOther","740"
"10:46:26.8529531 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8530290 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000069","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","740"
"10:46:26.8530623 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000115","","740"
"10:46:26.8542583 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ws2_32.dll","0.0000081","AllocationSize: 434,176, EndOfFile: 430,408, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.8543129 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000149","","2512"
"10:46:26.8547826 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000389","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8549081 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ws2_32.dll","0.0000094","AllocationSize: 434,176, EndOfFile: 430,408, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.8549759 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ws2_32.dll","0.0000077","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.8550169 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ws2_32.dll","0.0000060","AllocationSize: 434,176, EndOfFile: 430,408, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.8550886 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ws2_32.dll","0.0000047","SyncType: SyncTypeOther","2512"
"10:46:26.8558455 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000123","","2512"
"10:46:26.8565328 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000261","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8565938 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000060","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:26.8566156 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000081","","2512"
"10:46:26.8569655 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8570175 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:26.8570372 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000076","","2512"
"10:46:26.8574169 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8574660 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000046","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:26.8574843 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000077","","2512"
"10:46:26.8575470 AM","firefox.exe","7384","CreateFile","C:\","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8575846 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000213","Filter: Windows, 1: Windows","2512"
"10:46:26.8576260 AM","firefox.exe","7384","CloseFile","C:\","0.0000068","","2512"
"10:46:26.8577877 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000183","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8578256 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000180","Filter: System32, 1: System32","2512"
"10:46:26.8578628 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000064","","2512"
"10:46:26.8580603 AM","firefox.exe","7384","ReadFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0232115","Offset: 147,456, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7508"
"10:46:26.8580654 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000282","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8581200 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\ws2_32.dll","0.0000239","Filter: ws2_32.dll, 1: ws2_32.dll","2512"
"10:46:26.8581631 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000077","","2512"
"10:46:26.8585360 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8585902 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000051","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:26.8586098 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000077","","2512"
"10:46:26.8586709 AM","firefox.exe","7384","CreateFile","C:\","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8587046 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000175","Filter: Windows, 1: Windows","2512"
"10:46:26.8587404 AM","firefox.exe","7384","CloseFile","C:\","0.0000064","","2512"
"10:46:26.8588978 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000175","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8589341 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000167","Filter: System32, 1: System32","2512"
"10:46:26.8589691 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000064","","2512"
"10:46:26.8591300 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000170","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8591662 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\winmm.dll","0.0000196","Filter: winmm.dll, 1: winmm.dll","2512"
"10:46:26.8592038 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000089","","2512"
"10:46:26.8595259 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8595767 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000051","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:26.8595946 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000077","","2512"
"10:46:26.8596518 AM","firefox.exe","7384","CreateFile","C:\","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8596833 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000158","Filter: Windows, 1: Windows","2512"
"10:46:26.8597166 AM","firefox.exe","7384","CloseFile","C:\","0.0000064","","2512"
"10:46:26.8598689 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000163","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8599035 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000162","Filter: System32, 1: System32","2512"
"10:46:26.8599376 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000064","","2512"
"10:46:26.8600938 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8601292 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\winmm.dll","0.0000188","Filter: winmm.dll, 1: winmm.dll","2512"
"10:46:26.8601655 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000064","","2512"
"10:46:26.8603814 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000226","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8604475 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmm.dll","0.0000055","AllocationSize: 126,976, EndOfFile: 123,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.8604761 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.8604966 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmm.dll","0.0000034","AllocationSize: 126,976, EndOfFile: 123,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.8605307 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:26.8606049 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000099","","2512"
"10:46:26.8608157 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000209","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.8608789 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmm.dll","0.0000047","AllocationSize: 126,976, EndOfFile: 123,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.8609045 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.8609241 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmm.dll","0.0000034","AllocationSize: 126,976, EndOfFile: 123,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.8609557 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:26.8610248 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\winmm.dll","0.0472158","Offset: 94,208, Length: 29,376, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:26.8747460 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 6568","5728"
"10:46:26.8775040 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000290","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8775547 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000064","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:26.8775782 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000094","","740"
"10:46:26.8780654 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8781175 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000081","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:26.8781469 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000128","","740"
"10:46:26.8785531 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8786073 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8786265 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8786743 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000073","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:26.8787033 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000120","","740"
"10:46:26.8787481 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8787882 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8788633 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8788923 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8789828 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8790169 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8790766 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8790980 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8792200 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8792418 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8794769 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8795054 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8795784 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8796036 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8796620 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8796782 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8797290 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000487","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8797610 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8797811 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8798348 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000090","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.8798545 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8798673 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000140","","740"
"10:46:26.8798749 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8799850 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8800059 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8800558 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8800733 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8802696 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8802914 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8803579 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8803758 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8804445 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000363","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8805422 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000163","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.8805815 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000128","","740"
"10:46:26.8806681 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8807057 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8810794 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8811084 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8811562 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8811754 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8812151 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000290","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8812736 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8812881 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000076","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.8812936 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8813196 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000120","","740"
"10:46:26.8813393 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8813563 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8814391 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8814579 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8819050 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8819123 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000358","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8819311 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8820198 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000090","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:26.8820518 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000256","","740"
"10:46:26.8820527 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8820736 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8824512 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8824815 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8825809 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8826035 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8826641 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8826837 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8826939 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000363","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8827400 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8827588 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8827814 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000085","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:26.8828232 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000149","","740"
"10:46:26.8828475 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8828672 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8833920 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8834764 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000090","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:26.8835084 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000137","","740"
"10:46:26.8840870 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000324","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8841429 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000077","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.8841702 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000119","","740"
"10:46:26.8847146 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000346","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8847232 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8847701 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8847765 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000085","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.8848081 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000115","","740"
"10:46:26.8848776 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8849199 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8849860 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8850090 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8850956 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8851165 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8853568 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000345","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8854306 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000234","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.8854813 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000210","","740"
"10:46:26.8855897 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8856221 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8857211 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.8857433 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40186, endtime: 40186, seqnum: 0, connid: 0","0"
"10:46:26.8860202 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000350","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8861047 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000081","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:26.8861359 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000115","","740"
"10:46:26.8866427 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000312","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8867195 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000069","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:26.8867486 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000102","","740"
"10:46:26.8872119 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000295","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8872849 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000068","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:26.8873122 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000102","","740"
"10:46:26.8878203 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8878937 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000098","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:26.8879262 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000110","","740"
"10:46:26.8884638 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8885397 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000064","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:26.8885683 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000115","","740"
"10:46:26.8890547 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8891281 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000072","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:26.8891575 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000107","","740"
"10:46:26.8897284 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000316","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8898048 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000072","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.8898338 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000106","","740"
"10:46:26.8903577 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0001997","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8909009 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000576","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.8910639 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000968","","740"
"10:46:26.8938560 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000469","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8939729 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000098","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.8940096 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000128","","740"
"10:46:26.8946274 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000345","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8947093 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000077","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:26.8947392 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000111","","740"
"10:46:26.8952520 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000290","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8953254 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000073","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:26.8953553 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000119","","740"
"10:46:26.8958724 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000320","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8959479 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000068","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:26.8959769 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000111","","740"
"10:46:26.8965000 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0001280","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8967381 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000085","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:26.8967718 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000132","","740"
"10:46:26.8981107 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000439","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8982093 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000089","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:26.8982489 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000141","","740"
"10:46:26.8988160 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000520","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8989120 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000077","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:26.8989175 AM","firefox.exe","7384","Thread Exit","","0.0000000","Thread ID: 5956, User Time: 0.0000000, Kernel Time: 0.0156250","5956"
"10:46:26.8989427 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000102","","740"
"10:46:26.8993463 AM","firefox.exe","7384","Thread Exit","","0.0000000","Thread ID: 7508, User Time: 0.0000000, Kernel Time: 0.0000000","7508"
"10:46:26.8995119 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000311","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.8995686 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000068","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:26.8995972 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000098","","740"
"10:46:26.8997602 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000098","Offset: 123, Length: 1","7760"
"10:46:26.8998084 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","7760"
"10:46:26.8998408 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","Offset: 1,073,741,826, Length: 510","7760"
"10:46:26.8998707 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","7760"
"10:46:26.8999488 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000209","","7760"
"10:46:26.9001203 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9001732 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000068","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:26.9002022 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000111","","740"
"10:46:26.9005401 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000568","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8844"
"10:46:26.9006302 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore.jsonlz4","0.0369877","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4904"
"10:46:26.9006489 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000423","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:26.9006869 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000090","CreationTime: 3/26/2020 10:35:25 AM, LastAccessTime: 3/26/2020 10:35:40 AM, LastWriteTime: 3/26/2020 10:35:40 AM, ChangeTime: 3/26/2020 10:35:41 AM, AllocationSize: 16384, EndOfFile: 13482, FileAttributes: A","8844"
"10:46:26.9007223 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000081","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:26 AM, LastWriteTime: 3/26/2020 10:46:26 AM, ChangeTime: 3/26/2020 10:46:26 AM, FileAttributes: A","7760"
"10:46:26.9007245 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000123","","8844"
"10:46:26.9007475 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9007586 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000115","","7760"
"10:46:26.9007983 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000068","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:26.9008333 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000102","","740"
"10:46:26.9012761 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000384","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8844"
"10:46:26.9013410 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000068","CreationTime: 3/26/2020 10:35:25 AM, LastAccessTime: 3/26/2020 10:35:40 AM, LastWriteTime: 3/26/2020 10:35:40 AM, ChangeTime: 3/26/2020 10:35:41 AM, FileAttributes: A","8844"
"10:46:26.9013461 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0001860","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:26.9013704 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000111","","8844"
"10:46:26.9015693 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000102","Attributes: A, ReparseTag: 0x0","7760"
"10:46:26.9016119 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000201","Delete: True","7760"
"10:46:26.9016444 AM","firefox.exe","7384","TCP Connect","LAPTOP-49TAGD3F.lan1:49752 -> a104-114-76-170.deploy.static.akamaitechnologies.com:http","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65700, rcvwinscale: 8, sndwinscale: 7, seqnum: 0, connid: 0","0"
"10:46:26.9016640 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0008299","","7760"
"10:46:26.9021798 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.9022238 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40188, endtime: 40188, seqnum: 0, connid: 0","0"
"10:46:26.9023155 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.9023407 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40188, endtime: 40188, seqnum: 0, connid: 0","0"
"10:46:26.9024175 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0368290","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8844"
"10:46:26.9026031 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000452","","7760"
"10:46:26.9026398 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000375","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9027268 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000081","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:26.9027580 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000111","","740"
"10:46:26.9033054 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000354","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9033903 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000077","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:26.9034210 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000107","","740"
"10:46:26.9039441 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000311","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9040235 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000072","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:26.9040555 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000110","","740"
"10:46:26.9046545 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000410","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9047919 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000081","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:26.9048264 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000120","","740"
"10:46:26.9053807 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000324","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9054839 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000086","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:26.9055334 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000133","","740"
"10:46:26.9056828 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.9057259 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40188, endtime: 40188, seqnum: 0, connid: 0","0"
"10:46:26.9060164 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.9060514 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40188, endtime: 40188, seqnum: 0, connid: 0","0"
"10:46:26.9061133 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.9061372 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40188, endtime: 40188, seqnum: 0, connid: 0","0"
"10:46:26.9062259 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.9062430 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40188, endtime: 40188, seqnum: 0, connid: 0","0"
"10:46:26.9065617 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000290","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9066321 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000171","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:26.9066739 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000098","","740"
"10:46:26.9072452 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000312","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9073233 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000085","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.9073540 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000115","","740"
"10:46:26.9078869 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000559","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9079923 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000073","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.9080222 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000200","","740"
"10:46:26.9086353 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000341","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9087087 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmm.dll","0.0000094","AllocationSize: 126,976, EndOfFile: 123,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.9087202 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000056","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.9087509 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000124","","740"
"10:46:26.9087731 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000107","","2512"
"10:46:26.9096491 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000345","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9096653 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000388","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.9097126 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000081","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:26.9097459 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000111","","740"
"10:46:26.9097992 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmm.dll","0.0000120","AllocationSize: 126,976, EndOfFile: 123,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.9098577 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000073","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.9098978 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmm.dll","0.0000064","AllocationSize: 126,976, EndOfFile: 123,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.9099614 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000047","SyncType: SyncTypeOther","2512"
"10:46:26.9103198 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9103752 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000060","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:26.9104043 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000093","","740"
"10:46:26.9109338 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000157","","2512"
"10:46:26.9110110 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9110664 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000073","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:26.9110976 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000115","","740"
"10:46:26.9117879 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000384","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9118588 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000076","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:26.9118938 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000115","","740"
"10:46:26.9123541 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9124036 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000068","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:26.9124301 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000115","","740"
"10:46:26.9129374 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000345","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9129963 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000081","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:26.9130231 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000120","","740"
"10:46:26.9133141 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000320","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.9133965 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000068","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:26.9134272 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000115","","2512"
"10:46:26.9136491 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000495","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9137468 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000064","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:26.9137745 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000111","","740"
"10:46:26.9139819 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.9140612 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000069","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:26.9140915 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000107","","2512"
"10:46:26.9143070 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000290","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9143778 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000073","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:26.9144068 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000107","","740"
"10:46:26.9149103 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000320","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9149897 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000076","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:26.9150225 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000120","","740"
"10:46:26.9155678 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0669262","Offset: 8,470,528, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:26.9156352 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000354","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9157137 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000068","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:26.9157372 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000119","","740"
"10:46:26.9161920 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9162551 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000056","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:26.9162765 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000089","","740"
"10:46:26.9167543 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000308","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9168375 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000082","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:26.9169412 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000069","","740"
"10:46:26.9173222 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9173598 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:26.9173773 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000072","","740"
"10:46:26.9178274 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9178718 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000051","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:26.9178914 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000073","","740"
"10:46:26.9183253 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9183595 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000042","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:26.9183765 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000060","","740"
"10:46:26.9186889 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.9187371 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000034","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:26.9187537 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000068","","2512"
"10:46:26.9188207 AM","firefox.exe","7384","CreateFile","C:\","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.9188544 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000171","Filter: Windows, 1: Windows","2512"
"10:46:26.9188894 AM","firefox.exe","7384","CloseFile","C:\","0.0000055","","2512"
"10:46:26.9188954 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9189432 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.9189675 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000077","","740"
"10:46:26.9190366 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.9190699 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000162","Filter: System32, 1: System32","2512"
"10:46:26.9191023 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000060","","2512"
"10:46:26.9193233 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9193694 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.9193894 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000060","","740"
"10:46:26.9194398 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000192","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.9194820 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\winmm.dll","0.0000214","Filter: winmm.dll, 1: winmm.dll","2512"
"10:46:26.9195243 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000187","","2512"
"10:46:26.9199428 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9199817 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.9200034 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000068","","740"
"10:46:26.9200900 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.9201370 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000085","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:26.9201613 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000072","","2512"
"10:46:26.9202223 AM","firefox.exe","7384","CreateFile","C:\","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.9202590 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000154","Filter: Windows, 1: Windows","2512"
"10:46:26.9202931 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:26.9203512 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000174","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9203836 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000042","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:26.9204002 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000060","","740"
"10:46:26.9204446 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.9204834 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000145","Filter: System32, 1: System32","2512"
"10:46:26.9205150 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:26.9206976 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9207014 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000146","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.9207296 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000077","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:26.9207334 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wsock32.dll","0.0000355","Filter: wsock32.dll, 1: wsock32.dll","2512"
"10:46:26.9207518 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000064","","740"
"10:46:26.9207919 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000073","","2512"
"10:46:26.9210355 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9210645 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:26.9210812 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000060","","740"
"10:46:26.9211640 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.9212083 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000039","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:26.9212250 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000059","","2512"
"10:46:26.9212830 AM","firefox.exe","7384","CreateFile","C:\","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.9213171 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000137","Filter: Windows, 1: Windows","2512"
"10:46:26.9213487 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:26.9214067 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9214366 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:26.9214532 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000056","","740"
"10:46:26.9214929 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.9215262 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000141","Filter: System32, 1: System32","2512"
"10:46:26.9215565 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000051","","2512"
"10:46:26.9217062 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.9217280 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9217382 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wsock32.dll","0.0000192","Filter: wsock32.dll, 1: wsock32.dll","2512"
"10:46:26.9217681 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000051","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:26.9217754 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000059","","2512"
"10:46:26.9217865 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000055","","740"
"10:46:26.9220134 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000146","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9220386 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000039","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:26.9220523 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000051","","740"
"10:46:26.9223467 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9223531 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000153","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.9223757 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:26.9223919 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000064","","740"
"10:46:26.9224047 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wsock32.dll","0.0000034","AllocationSize: 20,480, EndOfFile: 18,432, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.9224277 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000035","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.9224448 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wsock32.dll","0.0000030","AllocationSize: 20,480, EndOfFile: 18,432, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.9224751 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:26.9225617 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000073","","2512"
"10:46:26.9227059 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9227349 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000039","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:26.9227362 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000158","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.9227571 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000069","","740"
"10:46:26.9227925 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wsock32.dll","0.0000035","AllocationSize: 20,480, EndOfFile: 18,432, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.9228152 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.9228335 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wsock32.dll","0.0000034","AllocationSize: 20,480, EndOfFile: 18,432, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.9228655 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:26.9229316 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000064","","2512"
"10:46:26.9230362 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9230652 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:26.9230822 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000056","","740"
"10:46:26.9232017 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.9232333 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000038","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:26.9232504 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000051","","2512"
"10:46:26.9233924 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9234347 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:26.9234517 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000056","","740"
"10:46:26.9235029 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.9235337 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000038","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:26.9235499 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000055","","2512"
"10:46:26.9238191 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000222","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.9238204 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9238869 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:26.9239044 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wsock32.dll","0.0000052","AllocationSize: 20,480, EndOfFile: 18,432, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.9239053 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000068","","740"
"10:46:26.9239335 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.9239535 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wsock32.dll","0.0000030","AllocationSize: 20,480, EndOfFile: 18,432, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.9239859 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:26.9241643 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wsock32.dll","0.0000051","AllocationSize: 20,480, EndOfFile: 18,432, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.9241877 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000035","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:26.9242069 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wsock32.dll","0.0000030","AllocationSize: 20,480, EndOfFile: 18,432, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:26.9242398 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:26.9242547 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9242906 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\wsock32.dll","0.0000337","Offset: 0, Length: 18,432, Priority: Normal","2512"
"10:46:26.9243085 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:26.9243264 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000077","","740"
"10:46:26.9251469 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000179","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.9251840 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000158","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:26.9252122 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9252787 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000273","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:26.9253376 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000103","","740"
"10:46:26.9254421 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000261","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:26.9256487 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000149","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.9256811 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000030","Information: DACL","2512"
"10:46:26.9256956 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000043","","2512"
"10:46:26.9257493 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9257950 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:26.9258142 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000068","","740"
"10:46:26.9261077 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000248","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:26.9261773 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9262268 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:26.9262434 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000073","","740"
"10:46:26.9262562 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000141","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.9262895 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000034","Information: DACL","2512"
"10:46:26.9263057 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000047","","2512"
"10:46:26.9265929 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9266398 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000043","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:26.9266577 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000068","","740"
"10:46:26.9266842 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49752 -> a104-114-76-170.deploy.static.akamaitechnologies.com:http","0.0000000","Length: 303, startime: 40188, endtime: 40190, seqnum: 0, connid: 0","0"
"10:46:26.9267187 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49752 -> a104-114-76-170.deploy.static.akamaitechnologies.com:http","0.0000000","Length: 384, seqnum: 0, connid: 0","0"
"10:46:26.9268664 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.9268928 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40189, endtime: 40190, seqnum: 0, connid: 0","0"
"10:46:26.9269543 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.9269705 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40190, endtime: 40190, seqnum: 0, connid: 0","0"
"10:46:26.9270942 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9271416 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:26.9271450 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000226","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:26.9271616 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000103","","740"
"10:46:26.9281080 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000409","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:26.9283128 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9283277 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000145","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.9283580 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000043","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:26.9283618 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000026","Information: DACL","2512"
"10:46:26.9283763 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000069","","740"
"10:46:26.9283780 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000047","","2512"
"10:46:26.9286076 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000209","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:26.9288137 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9288470 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000034","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:26.9288529 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000179","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.9288615 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000051","","740"
"10:46:26.9288926 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000034","Information: DACL","2512"
"10:46:26.9289122 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000060","","2512"
"10:46:26.9292915 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9293291 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000051","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:26.9293479 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000076","","740"
"10:46:26.9298121 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9298526 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:26.9298718 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000085","","740"
"10:46:26.9303569 AM","firefox.exe","7384","TCP Connect","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 0, mss: 1400, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65800, rcvwinscale: 8, sndwinscale: 10, seqnum: 0, connid: 0","0"
"10:46:26.9306684 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9307204 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000056","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:26.9307409 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000064","","740"
"10:46:26.9308186 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0468608","Offset: 103,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2884"
"10:46:26.9310464 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9310934 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:26.9311108 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000060","","740"
"10:46:26.9314364 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9314786 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:26.9314957 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000060","","740"
"10:46:26.9318375 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9318703 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000039","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:26.9318874 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000060","","740"
"10:46:26.9321430 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9321673 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000030","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:26.9321779 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000043","","740"
"10:46:26.9323921 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9324182 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000029","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:26.9324284 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000043","","740"
"10:46:26.9326477 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9326682 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:26.9326780 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000038","","740"
"10:46:26.9328841 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9329028 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:26.9329127 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000038","","740"
"10:46:26.9330995 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9331179 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:26.9331281 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000034","","740"
"10:46:26.9334614 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000302","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9335288 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000051","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:26.9335505 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000081","","740"
"10:46:26.9339324 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9339832 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000047","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:26.9340032 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000069","","740"
"10:46:26.9343672 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9344137 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000042","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:26.9344312 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000051","","740"
"10:46:26.9347772 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9348237 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000043","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:26.9348399 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000056","","740"
"10:46:26.9351292 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9351727 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000043","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:26.9351898 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000064","","740"
"10:46:26.9354889 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9355324 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000043","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:26.9355503 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000051","","740"
"10:46:26.9359147 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9359565 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000043","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:26.9359731 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000043","","740"
"10:46:26.9363136 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9363546 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000038","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:26.9363699 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000056","","740"
"10:46:26.9366417 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9366823 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000038","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:26.9366981 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000059","","740"
"10:46:26.9370343 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9370663 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000038","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:26.9370838 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000059","","740"
"10:46:26.9374306 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9374588 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000038","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:26.9374763 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000055","","740"
"10:46:26.9377856 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9378155 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000038","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:26.9378321 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000064","","740"
"10:46:26.9383898 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:26.9384491 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000051","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:26 AM, LastWriteTime: 3/26/2020 10:46:26 AM, ChangeTime: 3/26/2020 10:46:26 AM, FileAttributes: A","7760"
"10:46:26.9384730 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000081","","7760"
"10:46:26.9386761 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0013312","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:26.9388203 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore.jsonlz4","0.0000051","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","4904"
"10:46:26.9388549 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9388894 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000043","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:26.9389065 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000068","","740"
"10:46:26.9389214 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore.jsonlz4","0.0000073","CreationTime: 3/26/2020 10:35:36 AM, LastAccessTime: 3/26/2020 10:35:36 AM, LastWriteTime: 3/26/2020 10:35:36 AM, ChangeTime: 3/26/2020 10:35:36 AM, FileAttributes: A, AllocationSize: 4,096, EndOfFile: 1,123, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x1f000000029234, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","4904"
"10:46:26.9396160 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9396514 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000043","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:26.9396702 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000064","","740"
"10:46:26.9398490 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore.jsonlz4","0.0523683","Offset: 0, Length: 1,123, Priority: Normal","4904"
"10:46:26.9399062 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore.jsonlz4","0.0522868","Offset: 0, Length: 1,123, I/O Flags: Non-cached, Paging I/O, Priority: Normal","4904"
"10:46:26.9400423 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000064","Attributes: A, ReparseTag: 0x0","7760"
"10:46:26.9400470 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9400721 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000124","Delete: True","7760"
"10:46:26.9400798 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000039","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:26.9400973 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000064","","740"
"10:46:26.9401041 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0001187","","7760"
"10:46:26.9403158 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","Offset: 1,073,741,826, Length: 510","7760"
"10:46:26.9403358 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000022","Offset: 1,073,741,825, Length: 1","7760"
"10:46:26.9403597 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Offset: 1,073,741,826, Length: 510","7760"
"10:46:26.9403798 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Offset: 1,073,741,824, Length: 1","7760"
"10:46:26.9404058 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000171","","7760"
"10:46:26.9404510 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9404997 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000042","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:26.9405167 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000060","","740"
"10:46:26.9409221 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9409562 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:26.9409664 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000043","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:26.9409848 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000064","","740"
"10:46:26.9410065 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000116","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","7760"
"10:46:26.9410356 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000068","","7760"
"10:46:26.9410850 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000517","CreationTime: 3/26/2020 10:35:25 AM, LastAccessTime: 3/26/2020 10:35:40 AM, LastWriteTime: 3/26/2020 10:35:40 AM, ChangeTime: 3/26/2020 10:35:41 AM, FileAttributes: A","8844"
"10:46:26.9413270 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9413713 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000039","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:26.9413893 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000059","","740"
"10:46:26.9413940 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:26.9414332 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","7760"
"10:46:26.9414524 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000060","","7760"
"10:46:26.9416773 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000315","","8844"
"10:46:26.9417656 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9418117 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000042","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.9418296 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000064","","740"
"10:46:26.9418876 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000312","Desired Access: Generic Write, Read Attributes, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","8844"
"10:46:26.9419465 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000068","","8844"
"10:46:26.9421368 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9421794 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000039","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.9421965 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000064","","740"
"10:46:26.9422417 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8844"
"10:46:26.9422776 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000042","CreationTime: 3/26/2020 10:35:25 AM, LastAccessTime: 3/26/2020 10:35:40 AM, LastWriteTime: 3/26/2020 10:35:40 AM, ChangeTime: 3/26/2020 10:35:41 AM, FileAttributes: A","8844"
"10:46:26.9422959 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000060","","8844"
"10:46:26.9424926 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9425370 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000043","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.9425553 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000064","","740"
"10:46:26.9425801 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8844"
"10:46:26.9426138 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000038","CreationTime: 3/26/2020 10:35:25 AM, LastAccessTime: 3/26/2020 10:35:40 AM, LastWriteTime: 3/26/2020 10:35:40 AM, ChangeTime: 3/26/2020 10:35:41 AM, FileAttributes: A","8844"
"10:46:26.9426304 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000056","","8844"
"10:46:26.9427994 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000269","Desired Access: Generic Write, Read Attributes, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","8844"
"10:46:26.9428502 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000068","","8844"
"10:46:26.9429159 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9429624 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000047","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:26.9429807 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000064","","740"
"10:46:26.9431467 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8844"
"10:46:26.9431808 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000039","CreationTime: 3/26/2020 10:35:25 AM, LastAccessTime: 3/26/2020 10:35:40 AM, LastWriteTime: 3/26/2020 10:35:40 AM, ChangeTime: 3/26/2020 10:35:41 AM, FileAttributes: A","8844"
"10:46:26.9431979 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000060","","8844"
"10:46:26.9432751 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9433195 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000043","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:26.9433370 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000064","","740"
"10:46:26.9433639 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000205","Desired Access: Generic Read, Disposition: Create, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: 0","8844"
"10:46:26.9435384 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0001344","Desired Access: Generic Read, Disposition: Create, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","8844"
"10:46:26.9436190 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9436608 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000043","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:26.9436783 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000064","","740"
"10:46:26.9437039 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000393","","8844"
"10:46:26.9439258 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000209","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","8844"
"10:46:26.9440423 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9440837 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000047","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:26.9441016 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000064","","740"
"10:46:26.9441327 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000696","Desired Access: Generic Write, Read Attributes, Disposition: OverwriteIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Overwritten","8844"
"10:46:26.9442838 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0001058","Offset: 0, Length: 4,096, Priority: Normal","8844"
"10:46:26.9443917 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9444229 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000042","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:26.9444352 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000380","Offset: 4,096, Length: 4,096, Priority: Normal","8844"
"10:46:26.9444412 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000064","","740"
"10:46:26.9444933 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000059","Offset: 8,192, Length: 4,096","8844"
"10:46:26.9445137 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000103","Offset: 12,288, Length: 1,194","8844"
"10:46:26.9445590 AM","firefox.exe","7384","FlushBuffersFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.1050331","","8844"
"10:46:26.9446204 AM","firefox.exe","7384","WriteFile","C:\$ConvertToNonresident","0.0348843","Offset: 0, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8844"
"10:46:26.9447838 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9447894 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:26.9448188 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000047","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:26.9448380 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000064","","740"
"10:46:26.9448414 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","7760"
"10:46:26.9448645 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000076","","7760"
"10:46:26.9450543 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000320","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","7760"
"10:46:26.9451375 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000137","Offset: 0, Length: 100, Priority: Normal","7760"
"10:46:26.9452698 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","7760"
"10:46:26.9452928 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","7760"
"10:46:26.9453125 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000025","Offset: 1,073,741,824, Length: 1","7760"
"10:46:26.9453304 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9453859 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000042","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:26.9454038 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000068","","740"
"10:46:26.9456457 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:26.9457605 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9458091 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:26.9458270 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000069","","740"
"10:46:26.9464337 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000244","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9464931 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000055","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:26.9465152 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000077","","740"
"10:46:26.9466974 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:26.9467576 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000060","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:26.9467917 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000090","Offset: 0, Length: 4,096","7760"
"10:46:26.9468975 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9469325 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000043","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.9469509 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000064","","740"
"10:46:26.9471275 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:26.9472611 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9472965 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000038","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.9473140 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000059","","740"
"10:46:26.9473178 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0001434","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","7760"
"10:46:26.9475947 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9476246 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000038","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.9476425 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000064","","740"
"10:46:26.9478179 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:26.9480107 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9480662 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:26.9480832 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000064","","740"
"10:46:26.9481903 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0002001","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","7760"
"10:46:26.9483853 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9484267 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000060","Exclusive: True, Offset: 128, Length: 1, Fail Immediately: True","7760"
"10:46:26.9484305 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:26.9484489 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000060","","740"
"10:46:26.9484600 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000358","EndOfFile: 0","7760"
"10:46:26.9485184 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000235","AllocationSize: 0","7760"
"10:46:26.9485632 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000035","Offset: 128, Length: 1","7760"
"10:46:26.9485829 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000025","Exclusive: False, Offset: 128, Length: 1, Fail Immediately: True","7760"
"10:46:26.9486021 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000042","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:26.9486230 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000021","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7760"
"10:46:26.9486413 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000026","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:26.9486618 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000734","EndOfFile: 32,768","7760"
"10:46:26.9487360 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000163","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9487544 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000230","AllocationSize: 32,768","7760"
"10:46:26.9487779 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:26.9487949 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000064","","740"
"10:46:26.9488056 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7760"
"10:46:26.9488299 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000034","AllocationSize: 32,768, EndOfFile: 32,768, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:26.9488773 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000025","SyncType: SyncTypeOther","7760"
"10:46:26.9489404 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000132","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7760"
"10:46:26.9489861 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000034","Exclusive: True, Offset: 121, Length: 2, Fail Immediately: True","7760"
"10:46:26.9490044 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Exclusive: True, Offset: 124, Length: 4, Fail Immediately: True","7760"
"10:46:26.9490245 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000034","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:26.9490471 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000021","Offset: 121, Length: 2","7760"
"10:46:26.9490637 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Offset: 124, Length: 4","7760"
"10:46:26.9490791 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Offset: 120, Length: 1","7760"
"10:46:26.9490970 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000021","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:26.9491200 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000035","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:26.9491465 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000073","Offset: 0, Length: 4,096","7760"
"10:46:26.9491712 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9492165 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:26.9492340 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000059","","740"
"10:46:26.9494917 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000034","Offset: 123, Length: 1","7760"
"10:46:26.9495113 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9495531 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:26.9495693 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000064","","740"
"10:46:26.9498710 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9499124 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:26.9499294 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000948","","740"
"10:46:26.9499354 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000414","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:26.9499960 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","7760"
"10:46:26.9500186 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000077","","7760"
"10:46:26.9503365 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:26.9503753 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000047","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:26 AM, LastWriteTime: 3/26/2020 10:46:26 AM, ChangeTime: 3/26/2020 10:46:26 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","7760"
"10:46:26.9503954 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000059","","7760"
"10:46:26.9503988 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9504487 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:26.9504683 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000128","","740"
"10:46:26.9506147 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000230","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:26.9506586 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000043","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,866, SectorsPerAllocationUnit: 8, BytesPerSector: 512","7760"
"10:46:26.9506795 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000056","","7760"
"10:46:26.9507823 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9507900 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000047","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:26.9508267 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:26.9508271 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:26.9508438 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000145","","740"
"10:46:26.9508502 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000094","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7760"
"10:46:26.9510132 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000094","Offset: 24,576, Length: 4,096","7760"
"10:46:26.9510464 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","Offset: 823,296, Length: 4,096","7760"
"10:46:26.9510686 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0531679","Offset: 491,520, Length: 4,096","7760"
"10:46:26.9511036 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0531094","Offset: 491,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:26.9511322 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9511762 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:26.9511932 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000060","","740"
"10:46:26.9515896 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9516348 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000039","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:26.9516519 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000060","","740"
"10:46:26.9519335 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9519736 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000038","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:26.9519902 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000069","","740"
"10:46:26.9522607 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9523004 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000043","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:26.9523171 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000059","","740"
"10:46:26.9526601 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9527058 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000038","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:26.9527224 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000060","","740"
"10:46:26.9530006 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9530403 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000042","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:26.9530569 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000060","","740"
"10:46:26.9535245 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9535723 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000043","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:26.9535894 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000068","","740"
"10:46:26.9539516 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9539956 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:26.9540122 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000060","","740"
"10:46:26.9543087 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9543506 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:26.9543672 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000060","","740"
"10:46:26.9546394 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9546791 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:26.9546957 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000056","","740"
"10:46:26.9552751 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9553118 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000035","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:26.9553251 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000047","","740"
"10:46:26.9555512 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9555811 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000030","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:26.9555917 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000047","","740"
"10:46:26.9557735 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9558008 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000026","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:26.9558110 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000039","","740"
"10:46:26.9559868 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9560124 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000026","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:26.9560227 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000038","","740"
"10:46:26.9562040 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9562296 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000026","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:26.9562394 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000043","","740"
"10:46:26.9564941 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9565236 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000025","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:26.9565334 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000043","","740"
"10:46:26.9567173 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9567446 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000025","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:26.9567544 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000038","","740"
"10:46:26.9569438 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9569699 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000025","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:26.9569797 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000038","","740"
"10:46:26.9572378 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9572681 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000026","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:26.9572779 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000043","","740"
"10:46:26.9574695 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9574964 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000025","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:26.9575062 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000043","","740"
"10:46:26.9576909 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9577165 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000026","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:26.9577263 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000086","","740"
"10:46:26.9580071 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9580378 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000026","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:26.9580476 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000047","","740"
"10:46:26.9582473 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9582746 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000026","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:26.9582844 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000043","","740"
"10:46:26.9584717 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9584978 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000021","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:26.9585076 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000038","","740"
"10:46:26.9587380 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9587730 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000025","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:26.9587828 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000038","","740"
"10:46:26.9590157 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9590648 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000038","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:26.9590831 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000090","","740"
"10:46:26.9596822 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9597232 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000038","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:26.9597419 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000073","","740"
"10:46:26.9600952 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9601413 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000034","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:26.9601562 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000060","","740"
"10:46:26.9603896 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9604220 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:26.9604323 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000038","","740"
"10:46:26.9606695 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9606972 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:26.9607075 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000038","","740"
"10:46:26.9609549 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9609852 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.9609955 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000042","","740"
"10:46:26.9612041 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9612391 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.9612489 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000039","","740"
"10:46:26.9614443 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9614708 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000025","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.9614806 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000043","","740"
"10:46:26.9618390 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9618962 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.9619171 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000072","","740"
"10:46:26.9622170 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9622588 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.9622738 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000081","","740"
"10:46:26.9628715 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9629206 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.9629389 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000073","","740"
"10:46:26.9632628 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9632961 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000029","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:26.9633076 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000047","","740"
"10:46:26.9635090 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9635367 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:26.9635521 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000059","","740"
"10:46:26.9637641 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9637923 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:26.9638029 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000039","","740"
"10:46:26.9640662 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9640956 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000026","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:26.9641059 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000042","","740"
"10:46:26.9642889 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9643158 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000026","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:26.9643260 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000039","","740"
"10:46:26.9645018 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9645270 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000026","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:26.9645372 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000039","","740"
"10:46:26.9647706 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9647996 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000026","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:26.9648099 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000038","","740"
"10:46:26.9649882 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9650143 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000025","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:26.9650245 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000038","","740"
"10:46:26.9652084 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9652344 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000026","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:26.9652442 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000043","","740"
"10:46:26.9654755 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9655164 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000043","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.9655327 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000051","","740"
"10:46:26.9657165 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9657426 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000025","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.9657524 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000043","","740"
"10:46:26.9659380 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9659636 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000025","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.9659734 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000038","","740"
"10:46:26.9662081 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9662362 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:26.9662460 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000039","","740"
"10:46:26.9664244 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9664500 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:26.9664598 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000038","","740"
"10:46:26.9666458 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9666710 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:26.9666808 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000039","","740"
"10:46:26.9669283 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9669488 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000025","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:26.9669586 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000038","","740"
"10:46:26.9671365 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9671553 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000021","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:26.9671647 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000034","","740"
"10:46:26.9673456 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9673639 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000021","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:26.9673729 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000038","","740"
"10:46:26.9676067 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9676344 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:26.9676442 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000043","","740"
"10:46:26.9678230 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9678495 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:26.9678593 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000034","","740"
"10:46:26.9680427 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9680679 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:26.9680777 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000039","","740"
"10:46:26.9683107 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9683380 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000025","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:26.9683478 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000038","","740"
"10:46:26.9685334 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9685586 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000025","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:26.9685684 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000038","","740"
"10:46:26.9687565 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9687817 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000022","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:26.9687911 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000043","","740"
"10:46:26.9690258 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9690539 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000026","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:26.9690637 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000039","","740"
"10:46:26.9692617 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9692882 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000025","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:26.9692980 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000038","","740"
"10:46:26.9694797 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9695058 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000021","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:26.9695152 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000038","","740"
"10:46:26.9697511 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9697788 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:26.9697882 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000043","","740"
"10:46:26.9699785 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9700046 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:26.9700144 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000038","","740"
"10:46:26.9701880 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9702132 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000021","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:26.9702226 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000038","","740"
"10:46:26.9704803 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9705076 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:26.9705174 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000043","","740"
"10:46:26.9707039 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9707295 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:26.9707393 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000038","","740"
"10:46:26.9709134 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9709385 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:26.9709479 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000039","","740"
"10:46:26.9711830 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9712112 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000021","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:26.9712206 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000038","","740"
"10:46:26.9714053 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9714356 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:26.9714458 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000039","","740"
"10:46:26.9716417 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9716677 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:26.9716775 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000039","","740"
"10:46:26.9719169 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9719442 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:26.9719540 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000038","","740"
"10:46:26.9721349 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9721601 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000021","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:26.9721695 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000038","","740"
"10:46:26.9723521 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9723768 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:26.9723866 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000034","","740"
"10:46:26.9726260 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9726533 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000026","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:26.9726631 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000039","","740"
"10:46:26.9728410 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9728662 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000026","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:26.9728760 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000039","","740"
"10:46:26.9730650 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9730902 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000026","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:26.9731000 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000034","","740"
"10:46:26.9733411 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9733692 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000030","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:26.9733795 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000038","","740"
"10:46:26.9735570 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9735826 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000021","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:26.9735924 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000034","","740"
"10:46:26.9737742 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9737998 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:26.9738096 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000038","","740"
"10:46:26.9740485 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9740758 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.9740856 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000039","","740"
"10:46:26.9742695 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9742955 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.9743054 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000034","","740"
"10:46:26.9744952 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9745204 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.9745302 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000038","","740"
"10:46:26.9747708 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9747969 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:26.9748071 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000039","","740"
"10:46:26.9749919 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9750166 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:26.9750264 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000039","","740"
"10:46:26.9752009 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9752359 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:26.9752491 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000047","","740"
"10:46:26.9754979 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9755269 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000030","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:26.9755371 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000039","","740"
"10:46:26.9757274 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9757535 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000030","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:26.9757633 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000042","","740"
"10:46:26.9759382 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9759638 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:26.9759736 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000034","","740"
"10:46:26.9762275 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9762552 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:26.9762650 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000039","","740"
"10:46:26.9764639 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9764895 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:26.9764993 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000042","","740"
"10:46:26.9766751 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9767002 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000022","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:26.9767096 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000039","","740"
"10:46:26.9769882 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9770181 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000026","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:26.9770279 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000043","","740"
"10:46:26.9772208 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9772472 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000026","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:26.9772570 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000039","","740"
"10:46:26.9774375 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9774631 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000026","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:26.9774729 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000039","","740"
"10:46:26.9777012 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0007049","Offset: 103,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2884"
"10:46:26.9777439 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9777720 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000030","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:26.9777823 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000042","","740"
"10:46:26.9779721 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9779982 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:26.9780080 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000042","","740"
"10:46:26.9781829 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9782081 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:26.9782179 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000038","","740"
"10:46:26.9784905 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9785191 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000026","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:26.9785289 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000043","","740"
"10:46:26.9787103 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9787359 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000025","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:26.9787457 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000038","","740"
"10:46:26.9789270 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9789620 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000030","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:26.9789744 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000072","","740"
"10:46:26.9798000 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.9798311 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40196, endtime: 40196, seqnum: 0, connid: 0","0"
"10:46:26.9798798 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:26.9798921 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40196, endtime: 40196, seqnum: 0, connid: 0","0"
"10:46:26.9800035 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000311","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9800756 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000060","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.9800961 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000077","","740"
"10:46:26.9803717 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9804080 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000042","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.9804242 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000072","","740"
"10:46:26.9806985 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9807327 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:26.9807442 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000047","","740"
"10:46:26.9810412 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9810642 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.9810749 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000042","","740"
"10:46:26.9812750 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9812946 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.9813044 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000038","","740"
"10:46:26.9814917 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9815101 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.9815199 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000038","","740"
"10:46:26.9817789 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9818109 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000029","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:26.9818215 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000039","","740"
"10:46:26.9820024 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9820306 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:26.9820408 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000039","","740"
"10:46:26.9822183 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9822456 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:26.9822559 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000038","","740"
"10:46:26.9825089 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9825375 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:26.9825477 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000039","","740"
"10:46:26.9827444 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9827721 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:26.9827824 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000038","","740"
"10:46:26.9830089 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9830439 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:26.9830550 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000043","","740"
"10:46:26.9833840 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9834365 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:26.9834535 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000073","","740"
"10:46:26.9837620 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9838452 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:26.9838640 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000072","","740"
"10:46:26.9841622 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9842092 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000042","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:26.9842271 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000064","","740"
"10:46:26.9846469 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9846990 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000051","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:26.9847182 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000064","","740"
"10:46:26.9850096 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9850565 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000039","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:26.9850749 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000089","","740"
"10:46:26.9853671 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9854115 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000038","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:26.9854273 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000064","","740"
"10:46:26.9858322 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9858791 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000047","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:26.9858962 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000068","","740"
"10:46:26.9862316 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9863045 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000047","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:26.9863220 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000068","","740"
"10:46:26.9866446 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9866540 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0775088","Offset: 14,987,264, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:26.9867017 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000043","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:26.9867188 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000068","","740"
"10:46:26.9870414 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9870759 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000030","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:26.9870879 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000051","","740"
"10:46:26.9873136 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9873426 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000030","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:26.9873537 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000047","","740"
"10:46:26.9875367 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9875645 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000025","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:26.9875751 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000039","","740"
"10:46:26.9878358 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9878644 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:26.9878742 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000043","","740"
"10:46:26.9880718 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9880982 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:26.9881085 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000042","","740"
"10:46:26.9882966 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9883227 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:26.9883325 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000042","","740"
"10:46:26.9886008 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9886294 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:26.9886401 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000038","","740"
"10:46:26.9888248 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9888509 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:26.9888611 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000038","","740"
"10:46:26.9890557 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9890817 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:26.9890919 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000039","","740"
"10:46:26.9893475 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9893757 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000025","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:26.9893859 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000038","","740"
"10:46:26.9895766 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9896027 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000029","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:26.9896129 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000038","","740"
"10:46:26.9897993 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9898254 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000025","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:26.9898356 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000039","","740"
"10:46:26.9900946 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9901151 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000025","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:26.9901249 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000038","","740"
"10:46:26.9903041 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9903224 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:26.9903323 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000034","","740"
"10:46:26.9905179 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9905362 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000021","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:26.9905456 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000038","","740"
"10:46:26.9908007 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9908212 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000026","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:26.9908306 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000038","","740"
"10:46:26.9910192 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9910371 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000026","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:26.9910469 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000034","","740"
"10:46:26.9912308 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9912487 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000026","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:26.9912581 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000039","","740"
"10:46:26.9915133 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9915333 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000026","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:26.9915431 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000035","","740"
"10:46:26.9917326 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9917509 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000022","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:26.9917603 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000034","","740"
"10:46:26.9919493 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9919681 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000026","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:26.9919779 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000034","","740"
"10:46:26.9922779 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9922992 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000030","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:26.9923094 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000039","","740"
"10:46:26.9924950 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9925147 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000025","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:26.9925240 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000039","","740"
"10:46:26.9927271 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9927480 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000026","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:26.9927583 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000038","","740"
"10:46:26.9927890 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000154","Desired Access: Execute/Traverse, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","4904"
"10:46:26.9930634 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9931009 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000038","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.9931133 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000042","","740"
"10:46:26.9931982 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore.jsonlz4","0.0000098","","4904"
"10:46:26.9933223 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9933582 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000034","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.9933731 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000056","","740"
"10:46:26.9936645 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9937200 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000043","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:26.9937375 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000060","","740"
"10:46:26.9939154 AM","firefox.exe","7384","CreateFile","C:\ProgramData\Mozilla\updates\6F193CCC56814779\update-config.json","0.1691983","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5244"
"10:46:26.9941569 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9942068 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000051","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:26.9942243 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000073","","740"
"10:46:26.9945396 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9945857 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:26.9946032 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000068","","740"
"10:46:26.9949142 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9949590 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:26.9949765 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000069","","740"
"10:46:26.9950802 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 5008","5728"
"10:46:26.9953494 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9953968 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000047","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:26.9954139 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000072","","740"
"10:46:26.9959604 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9960291 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000064","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:26.9960517 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000090","","740"
"10:46:26.9963969 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9964532 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000056","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:26.9964729 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000076","","740"
"10:46:26.9970766 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9971406 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000064","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:26.9971670 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000235","","740"
"10:46:26.9974021 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0996708","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:26.9975805 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9976415 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000055","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:26.9976611 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000077","","740"
"10:46:26.9980298 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9980784 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000038","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:26.9980912 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000060","","740"
"10:46:26.9981744 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:26.9982124 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000042","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","5728"
"10:46:26.9982333 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000068","","5728"
"10:46:26.9985260 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000559","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:26.9986553 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\firefox.exe","0.0000426","Filter: firefox.exe, 1: firefox.exe","5728"
"10:46:26.9987628 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000209","","5728"
"10:46:26.9988852 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0001105","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:26.9990751 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000239","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:26.9991408 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000516","","740"
"10:46:26.9997283 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes","0.0000290","Desired Access: Maximum Allowed, Granted Access: All Access","5728"
"10:46:26.9998094 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000085","Query: Name","5728"
"10:46:26.9998427 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000021","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:26.9998674 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:26.9998862 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\http","0.0000166","Desired Access: Query Value","5728"
"10:46:26.9999267 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\http","0.0000034","Query: Name","5728"
"10:46:26.9999429 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\http","0.0000022","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:26.9999626 AM","firefox.exe","7384","RegOpenKey","HKCR\http","0.0000315","Desired Access: Maximum Allowed, Granted Access: Read","5728"
"10:46:26.9999860 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0000142 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\http\URL Protocol","0.0000047","Length: 12","5728"
"10:46:27.0000287 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000047","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:27.0000415 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000051","","740"
"10:46:27.0000453 AM","firefox.exe","7384","RegCloseKey","HKCR\http","0.0000026","","5728"
"10:46:27.0000709 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\http","0.0000017","","5728"
"10:46:27.0001648 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0001904 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\RegisteredApplications","0.0000111","Desired Access: Read","5728"
"10:46:27.0002335 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\RegisteredApplications","0.0000038","Query: Cached, SubKeys: 0, Values: 58","5728"
"10:46:27.0002565 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0002604 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000047","Index: 0, Name: Firefox-6F193CCC56814779, Type: REG_SZ, Length: 146, Data: Software\Clients\StartMenuInternet\Firefox-6F193CCC56814779\Capabilities","5728"
"10:46:27.0002770 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000026","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:27.0002868 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000043","","740"
"10:46:27.0002877 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\Firefox-6F193CCC56814779","0.0000038","Length: 144","5728"
"10:46:27.0003103 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\Firefox-6F193CCC56814779","0.0000038","Type: REG_SZ, Length: 146, Data: Software\Clients\StartMenuInternet\Firefox-6F193CCC56814779\Capabilities","5728"
"10:46:27.0003367 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0003521 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Clients\StartMenuInternet\Firefox-6F193CCC56814779\Capabilities\UrlAssociations","0.0000154","Desired Access: Read","5728"
"10:46:27.0003828 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Clients\StartMenuInternet\Firefox-6F193CCC56814779\Capabilities\URLAssociations\http","0.0000030","Type: REG_SZ, Length: 56, Data: FirefoxURL-6F193CCC56814779","5728"
"10:46:27.0003999 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Clients\StartMenuInternet\Firefox-6F193CCC56814779\Capabilities\URLAssociations","0.0000017","","5728"
"10:46:27.0004182 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0004327 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Clients\StartMenuInternet\Firefox-6F193CCC56814779\Capabilities","0.0000043","Desired Access: Read","5728"
"10:46:27.0004596 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Clients\StartMenuInternet\Firefox-6F193CCC56814779\Capabilities\Hidden","0.0000022","Length: 16","5728"
"10:46:27.0004793 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Clients\StartMenuInternet\Firefox-6F193CCC56814779\Capabilities","0.0000008","","5728"
"10:46:27.0005002 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000029","Index: 1, Length: 220","5728"
"10:46:27.0005155 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000026","Index: 1, Name: AppXveh2ktf0zxzfhebt0a4dk2gt25zs2zpn, Type: REG_SZ, Length: 372, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxSpeechToTextOverlay_1.21.13002.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0005317 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXveh2ktf0zxzfhebt0a4dk2gt25zs2zpn","0.0000022","Length: 144","5728"
"10:46:27.0005488 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXveh2ktf0zxzfhebt0a4dk2gt25zs2zpn","0.0000021","Length: 144","5728"
"10:46:27.0005629 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXveh2ktf0zxzfhebt0a4dk2gt25zs2zpn","0.0000030","Type: REG_SZ, Length: 372, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxSpeechToTextOverlay_1.21.13002.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0005744 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0005821 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0005957 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:27.0005974 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxSpeechToTextOverlay_1.21.13002.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000069","Desired Access: Read","5728"
"10:46:27.0006060 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000038","","740"
"10:46:27.0006175 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxSpeechToTextOverlay_1.21.13002.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000290","Desired Access: Read","5728"
"10:46:27.0006631 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxSpeechToTextOverlay_1.21.13002.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations\http","0.0000026","Length: 90","5728"
"10:46:27.0006794 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxSpeechToTextOverlay_1.21.13002.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations","0.0000012","","5728"
"10:46:27.0006947 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000026","Index: 2, Length: 220","5728"
"10:46:27.0007088 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000026","Index: 2, Name: AppXy0w5vbb1qqhbsbaaw36vsjyd93vcxf69, Type: REG_SZ, Length: 368, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxApp_44.44.7002.0_x64__8wekyb3d8bbwe\Microsoft.XboxApp\Capabilities","5728"
"10:46:27.0007237 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXy0w5vbb1qqhbsbaaw36vsjyd93vcxf69","0.0000026","Length: 144","5728"
"10:46:27.0007391 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXy0w5vbb1qqhbsbaaw36vsjyd93vcxf69","0.0000021","Length: 144","5728"
"10:46:27.0007532 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXy0w5vbb1qqhbsbaaw36vsjyd93vcxf69","0.0000021","Type: REG_SZ, Length: 368, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxApp_44.44.7002.0_x64__8wekyb3d8bbwe\Microsoft.XboxApp\Capabilities","5728"
"10:46:27.0007711 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0007856 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxApp_44.44.7002.0_x64__8wekyb3d8bbwe\Microsoft.XboxApp\Capabilities\UrlAssociations","0.0000102","Desired Access: Read","5728"
"10:46:27.0007920 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0008082 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxApp_44.44.7002.0_x64__8wekyb3d8bbwe\Microsoft.XboxApp\Capabilities\UrlAssociations","0.0000162","Desired Access: Read","5728"
"10:46:27.0008112 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:27.0008210 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000039","","740"
"10:46:27.0008398 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxApp_44.44.7002.0_x64__8wekyb3d8bbwe\Microsoft.XboxApp\Capabilities\URLAssociations\http","0.0000025","Length: 90","5728"
"10:46:27.0008560 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxApp_44.44.7002.0_x64__8wekyb3d8bbwe\Microsoft.XboxApp\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0008709 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000030","Index: 3, Length: 220","5728"
"10:46:27.0008854 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000026","Index: 3, Name: AppXr9m6k0ya8yby2bkqy0cs70zk6zba4zge, Type: REG_SZ, Length: 348, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.BingWeather_4.28.10351.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0009004 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXr9m6k0ya8yby2bkqy0cs70zk6zba4zge","0.0000025","Length: 144","5728"
"10:46:27.0009153 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXr9m6k0ya8yby2bkqy0cs70zk6zba4zge","0.0000021","Length: 144","5728"
"10:46:27.0009294 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXr9m6k0ya8yby2bkqy0cs70zk6zba4zge","0.0000025","Type: REG_SZ, Length: 348, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.BingWeather_4.28.10351.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0009469 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0009610 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.BingWeather_4.28.10351.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000047","Desired Access: Read","5728"
"10:46:27.0009772 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.BingWeather_4.28.10351.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000149","Desired Access: Read","5728"
"10:46:27.0009981 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0010070 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.BingWeather_4.28.10351.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations\http","0.0000022","Length: 90","5728"
"10:46:27.0010164 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000022","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:27.0010279 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.BingWeather_4.28.10351.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0010348 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000064","","740"
"10:46:27.0010429 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000025","Index: 4, Length: 220","5728"
"10:46:27.0010574 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000034","Index: 4, Name: AppX3dvrxvnkn2a02mkc5xf0bb5qtmhmdx6a, Type: REG_SZ, Length: 340, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.3DBuilder_16.1.741.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0010736 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX3dvrxvnkn2a02mkc5xf0bb5qtmhmdx6a","0.0000030","Length: 144","5728"
"10:46:27.0010915 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX3dvrxvnkn2a02mkc5xf0bb5qtmhmdx6a","0.0000034","Length: 144","5728"
"10:46:27.0011124 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX3dvrxvnkn2a02mkc5xf0bb5qtmhmdx6a","0.0000039","Type: REG_SZ, Length: 340, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.3DBuilder_16.1.741.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0011397 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0011623 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.3DBuilder_16.1.741.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000064","Desired Access: Read","5728"
"10:46:27.0011875 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.3DBuilder_16.1.741.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000188","Desired Access: Read","5728"
"10:46:27.0012289 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.3DBuilder_16.1.741.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations\http","0.0000034","Length: 90","5728"
"10:46:27.0012528 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.3DBuilder_16.1.741.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations","0.0000030","","5728"
"10:46:27.0012776 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000055","Index: 5, Length: 220","5728"
"10:46:27.0014009 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000051","Index: 5, Name: AppXmvkaevshhcxfss0wxnrw33r642ftykm9, Type: REG_SZ, Length: 402, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.CloudExperienceHost_10.0.17134.1_neutral_neutral_cw5n1h2txyewy\App\Capabilities","5728"
"10:46:27.0014085 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0014256 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXmvkaevshhcxfss0wxnrw33r642ftykm9","0.0000034","Length: 144","5728"
"10:46:27.0014452 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXmvkaevshhcxfss0wxnrw33r642ftykm9","0.0000030","Length: 144","5728"
"10:46:27.0014563 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:27.0014640 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXmvkaevshhcxfss0wxnrw33r642ftykm9","0.0000030","Type: REG_SZ, Length: 402, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.CloudExperienceHost_10.0.17134.1_neutral_neutral_cw5n1h2txyewy\App\Capabilities","5728"
"10:46:27.0014678 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000052","","740"
"10:46:27.0014845 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000025","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0015024 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.CloudExperienceHost_10.0.17134.1_neutral_neutral_cw5n1h2txyewy\App\Capabilities\UrlAssociations","0.0000056","Desired Access: Read","5728"
"10:46:27.0015203 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.CloudExperienceHost_10.0.17134.1_neutral_neutral_cw5n1h2txyewy\App\Capabilities\UrlAssociations","0.0000184","Desired Access: Read","5728"
"10:46:27.0015643 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.CloudExperienceHost_10.0.17134.1_neutral_neutral_cw5n1h2txyewy\App\Capabilities\URLAssociations\http","0.0000025","Length: 90","5728"
"10:46:27.0015813 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.CloudExperienceHost_10.0.17134.1_neutral_neutral_cw5n1h2txyewy\App\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0015967 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000030","Index: 6, Length: 220","5728"
"10:46:27.0016155 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000025","Index: 6, Name: AppXvfjfrpekah7akqs3b57dqak7x0d48xzn, Type: REG_SZ, Length: 384, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.AAD.BrokerPlugin_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\App\Capabilities","5728"
"10:46:27.0016308 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXvfjfrpekah7akqs3b57dqak7x0d48xzn","0.0000026","Length: 144","5728"
"10:46:27.0016458 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXvfjfrpekah7akqs3b57dqak7x0d48xzn","0.0000025","Length: 144","5728"
"10:46:27.0016603 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXvfjfrpekah7akqs3b57dqak7x0d48xzn","0.0000025","Type: REG_SZ, Length: 384, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.AAD.BrokerPlugin_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\App\Capabilities","5728"
"10:46:27.0016790 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0016859 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0016936 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.AAD.BrokerPlugin_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\App\Capabilities\UrlAssociations","0.0000102","Desired Access: Read","5728"
"10:46:27.0017179 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000042","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:27.0017209 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.AAD.BrokerPlugin_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\App\Capabilities\UrlAssociations","0.0000153","Desired Access: Read","5728"
"10:46:27.0017302 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000043","","740"
"10:46:27.0017533 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.AAD.BrokerPlugin_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\App\Capabilities\URLAssociations\http","0.0000021","Length: 90","5728"
"10:46:27.0017699 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.AAD.BrokerPlugin_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\App\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0017844 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000030","Index: 7, Length: 220","5728"
"10:46:27.0017994 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000025","Index: 7, Name: AppX12hp18tathfrvp384k3azh9jbpcx41r6, Type: REG_SZ, Length: 406, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.ShellExperienceHost_10.0.17134.112_neutral_neutral_cw5n1h2txyewy\App\Capabilities","5728"
"10:46:27.0018156 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX12hp18tathfrvp384k3azh9jbpcx41r6","0.0000025","Length: 144","5728"
"10:46:27.0018309 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX12hp18tathfrvp384k3azh9jbpcx41r6","0.0000026","Length: 144","5728"
"10:46:27.0018459 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX12hp18tathfrvp384k3azh9jbpcx41r6","0.0000030","Type: REG_SZ, Length: 406, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.ShellExperienceHost_10.0.17134.112_neutral_neutral_cw5n1h2txyewy\App\Capabilities","5728"
"10:46:27.0018659 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0018809 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.ShellExperienceHost_10.0.17134.112_neutral_neutral_cw5n1h2txyewy\App\Capabilities\UrlAssociations","0.0000051","Desired Access: Read","5728"
"10:46:27.0018992 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.ShellExperienceHost_10.0.17134.112_neutral_neutral_cw5n1h2txyewy\App\Capabilities\UrlAssociations","0.0000149","Desired Access: Read","5728"
"10:46:27.0019120 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0019295 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.ShellExperienceHost_10.0.17134.112_neutral_neutral_cw5n1h2txyewy\App\Capabilities\URLAssociations\http","0.0000030","Length: 90","5728"
"10:46:27.0019397 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:27.0019461 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.ShellExperienceHost_10.0.17134.112_neutral_neutral_cw5n1h2txyewy\App\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0019500 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000038","","740"
"10:46:27.0019606 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000030","Index: 8, Length: 220","5728"
"10:46:27.0019756 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000025","Index: 8, Name: AppXvg76210j997039y8z5c8pewm94kvchdn, Type: REG_SZ, Length: 412, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.Cortana_1.10.7.17134_neutral_neutral_cw5n1h2txyewy\CortanaAINotebookApp\Capabilities","5728"
"10:46:27.0019939 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXvg76210j997039y8z5c8pewm94kvchdn","0.0000034","Length: 144","5728"
"10:46:27.0020131 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXvg76210j997039y8z5c8pewm94kvchdn","0.0000030","Length: 144","5728"
"10:46:27.0020306 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXvg76210j997039y8z5c8pewm94kvchdn","0.0000034","Type: REG_SZ, Length: 412, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.Cortana_1.10.7.17134_neutral_neutral_cw5n1h2txyewy\CortanaAINotebookApp\Capabilities","5728"
"10:46:27.0020558 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0020763 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.Cortana_1.10.7.17134_neutral_neutral_cw5n1h2txyewy\CortanaAINotebookApp\Capabilities\UrlAssociations","0.0000068","Desired Access: Read","5728"
"10:46:27.0021002 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 517, startime: 40196, endtime: 40198, seqnum: 0, connid: 0","0"
"10:46:27.0021027 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.Cortana_1.10.7.17134_neutral_neutral_cw5n1h2txyewy\CortanaAINotebookApp\Capabilities\UrlAssociations","0.0000371","Desired Access: Read","5728"
"10:46:27.0021637 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.Cortana_1.10.7.17134_neutral_neutral_cw5n1h2txyewy\CortanaAINotebookApp\Capabilities\URLAssociations\http","0.0000069","Length: 90","5728"
"10:46:27.0021876 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.Cortana_1.10.7.17134_neutral_neutral_cw5n1h2txyewy\CortanaAINotebookApp\Capabilities\URLAssociations","0.0000017","","5728"
"10:46:27.0022034 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000030","Index: 9, Length: 220","5728"
"10:46:27.0022184 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000072","Index: 9, Name: AppXfj6ffr3zz2c1kndxkrenvpcm107sby1f, Type: REG_SZ, Length: 390, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.Cortana_1.10.7.17134_neutral_neutral_cw5n1h2txyewy\CortanaUI\Capabilities","5728"
"10:46:27.0022235 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0022397 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXfj6ffr3zz2c1kndxkrenvpcm107sby1f","0.0000030","Length: 144","5728"
"10:46:27.0022563 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXfj6ffr3zz2c1kndxkrenvpcm107sby1f","0.0000026","Length: 144","5728"
"10:46:27.0022700 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000089","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:27.0022713 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXfj6ffr3zz2c1kndxkrenvpcm107sby1f","0.0000029","Type: REG_SZ, Length: 390, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.Cortana_1.10.7.17134_neutral_neutral_cw5n1h2txyewy\CortanaUI\Capabilities","5728"
"10:46:27.0023011 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0023033 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000119","","740"
"10:46:27.0023259 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.Cortana_1.10.7.17134_neutral_neutral_cw5n1h2txyewy\CortanaUI\Capabilities\UrlAssociations","0.0000085","Desired Access: Read","5728"
"10:46:27.0023545 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.Cortana_1.10.7.17134_neutral_neutral_cw5n1h2txyewy\CortanaUI\Capabilities\UrlAssociations","0.0000170","Desired Access: Read","5728"
"10:46:27.0023950 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.Cortana_1.10.7.17134_neutral_neutral_cw5n1h2txyewy\CortanaUI\Capabilities\URLAssociations\http","0.0000043","Length: 90","5728"
"10:46:27.0024214 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.Cortana_1.10.7.17134_neutral_neutral_cw5n1h2txyewy\CortanaUI\Capabilities\URLAssociations","0.0000022","","5728"
"10:46:27.0024449 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000034","Index: 10, Length: 220","5728"
"10:46:27.0024684 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000038","Index: 10, Name: AppXdns450s4v3dj1y9egs8n4zgafk0nxhdq, Type: REG_SZ, Length: 380, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe\MicrosoftEdge\Capabilities","5728"
"10:46:27.0024940 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXdns450s4v3dj1y9egs8n4zgafk0nxhdq","0.0000047","Length: 144","5728"
"10:46:27.0025200 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXdns450s4v3dj1y9egs8n4zgafk0nxhdq","0.0000038","Length: 144","5728"
"10:46:27.0025430 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXdns450s4v3dj1y9egs8n4zgafk0nxhdq","0.0000047","Type: REG_SZ, Length: 380, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe\MicrosoftEdge\Capabilities","5728"
"10:46:27.0025742 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0025994 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe\MicrosoftEdge\Capabilities\UrlAssociations","0.0000081","Desired Access: Read","5728"
"10:46:27.0026284 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe\MicrosoftEdge\Capabilities\UrlAssociations","0.0000230","Desired Access: Read","5728"
"10:46:27.0026506 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0026762 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe\MicrosoftEdge\Capabilities\URLAssociations\http","0.0000038","Type: REG_SZ, Length: 74, Data: AppXq0fevzme2pys62n3e0fbqa7peapykr8v","5728"
"10:46:27.0026996 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000154","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:27.0027039 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe\MicrosoftEdge\Capabilities\URLAssociations","0.0000060","","5728"
"10:46:27.0027269 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000064","","740"
"10:46:27.0027278 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0027440 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe\MicrosoftEdge\Capabilities","0.0000051","Desired Access: Read","5728"
"10:46:27.0027615 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe\MicrosoftEdge\Capabilities","0.0000068","Desired Access: Read","5728"
"10:46:27.0027850 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe\MicrosoftEdge\Capabilities\Hidden","0.0000025","Length: 16","5728"
"10:46:27.0028020 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe\MicrosoftEdge\Capabilities","0.0000013","","5728"
"10:46:27.0028182 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000030","Index: 11, Length: 220","5728"
"10:46:27.0028332 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000025","Index: 11, Name: AppXsfqpgyckymt0sh0sn0qdzj5zkwfkvhsg, Type: REG_SZ, Length: 400, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.ParentalControls_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\App\Capabilities","5728"
"10:46:27.0028494 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXsfqpgyckymt0sh0sn0qdzj5zkwfkvhsg","0.0000030","Length: 144","5728"
"10:46:27.0028652 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXsfqpgyckymt0sh0sn0qdzj5zkwfkvhsg","0.0000025","Length: 144","5728"
"10:46:27.0028801 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXsfqpgyckymt0sh0sn0qdzj5zkwfkvhsg","0.0000026","Type: REG_SZ, Length: 400, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.ParentalControls_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\App\Capabilities","5728"
"10:46:27.0028997 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0029142 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.ParentalControls_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\App\Capabilities\UrlAssociations","0.0000052","Desired Access: Read","5728"
"10:46:27.0029245 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0029317 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.ParentalControls_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\App\Capabilities\UrlAssociations","0.0000231","Desired Access: Read","5728"
"10:46:27.0029552 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000030","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:27.0029663 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000043","","740"
"10:46:27.0029710 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.ParentalControls_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\App\Capabilities\URLAssociations\http","0.0000026","Length: 90","5728"
"10:46:27.0029881 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.ParentalControls_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\App\Capabilities\URLAssociations","0.0000012","","5728"
"10:46:27.0030026 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000025","Index: 12, Length: 220","5728"
"10:46:27.0030166 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000022","Index: 12, Name: AppX36yxw0g7y5qahaz7g4wj78fe2pf8amz8, Type: REG_SZ, Length: 400, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.OOBENetworkConnectionFlow_10.0.17134.1_neutral__cw5n1h2txyewy\App\Capabilities","5728"
"10:46:27.0030316 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX36yxw0g7y5qahaz7g4wj78fe2pf8amz8","0.0000030","Length: 144","5728"
"10:46:27.0030465 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX36yxw0g7y5qahaz7g4wj78fe2pf8amz8","0.0000030","Length: 144","5728"
"10:46:27.0030610 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX36yxw0g7y5qahaz7g4wj78fe2pf8amz8","0.0000030","Type: REG_SZ, Length: 400, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.OOBENetworkConnectionFlow_10.0.17134.1_neutral__cw5n1h2txyewy\App\Capabilities","5728"
"10:46:27.0030794 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0030934 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.OOBENetworkConnectionFlow_10.0.17134.1_neutral__cw5n1h2txyewy\App\Capabilities\UrlAssociations","0.0000052","Desired Access: Read","5728"
"10:46:27.0031109 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.OOBENetworkConnectionFlow_10.0.17134.1_neutral__cw5n1h2txyewy\App\Capabilities\UrlAssociations","0.0000133","Desired Access: Read","5728"
"10:46:27.0031387 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.OOBENetworkConnectionFlow_10.0.17134.1_neutral__cw5n1h2txyewy\App\Capabilities\URLAssociations\http","0.0000025","Length: 90","5728"
"10:46:27.0031549 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.OOBENetworkConnectionFlow_10.0.17134.1_neutral__cw5n1h2txyewy\App\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0031690 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000038","Index: 13, Length: 220","5728"
"10:46:27.0031848 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000021","Index: 13, Name: AppX236m4rjxwge9pp13wspk3v4k77h08jjv, Type: REG_SZ, Length: 388, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.SecHealthUI_10.0.17134.1_neutral__cw5n1h2txyewy\SecHealthUI\Capabilities","5728"
"10:46:27.0031993 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX236m4rjxwge9pp13wspk3v4k77h08jjv","0.0000029","Length: 144","5728"
"10:46:27.0032146 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX236m4rjxwge9pp13wspk3v4k77h08jjv","0.0000026","Length: 144","5728"
"10:46:27.0032287 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX236m4rjxwge9pp13wspk3v4k77h08jjv","0.0000030","Type: REG_SZ, Length: 388, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.SecHealthUI_10.0.17134.1_neutral__cw5n1h2txyewy\SecHealthUI\Capabilities","5728"
"10:46:27.0032470 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0032586 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0032616 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.SecHealthUI_10.0.17134.1_neutral__cw5n1h2txyewy\SecHealthUI\Capabilities\UrlAssociations","0.0000064","Desired Access: Read","5728"
"10:46:27.0032803 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.SecHealthUI_10.0.17134.1_neutral__cw5n1h2txyewy\SecHealthUI\Capabilities\UrlAssociations","0.0000179","Desired Access: Read","5728"
"10:46:27.0033021 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000038","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:27.0033174 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000103","","740"
"10:46:27.0033204 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.SecHealthUI_10.0.17134.1_neutral__cw5n1h2txyewy\SecHealthUI\Capabilities\URLAssociations\http","0.0000034","Length: 90","5728"
"10:46:27.0033469 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.SecHealthUI_10.0.17134.1_neutral__cw5n1h2txyewy\SecHealthUI\Capabilities\URLAssociations","0.0000021","","5728"
"10:46:27.0033691 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000034","Index: 14, Length: 220","5728"
"10:46:27.0033913 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000034","Index: 14, Name: AppXr1bysyqf6kpaq1zaje7badka8dgx2g7g, Type: REG_SZ, Length: 398, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.OOBENetworkCaptivePortal_10.0.17134.1_neutral__cw5n1h2txyewy\App\Capabilities","5728"
"10:46:27.0034152 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXr1bysyqf6kpaq1zaje7badka8dgx2g7g","0.0000042","Length: 144","5728"
"10:46:27.0034395 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXr1bysyqf6kpaq1zaje7badka8dgx2g7g","0.0000038","Length: 144","5728"
"10:46:27.0034625 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXr1bysyqf6kpaq1zaje7badka8dgx2g7g","0.0000039","Type: REG_SZ, Length: 398, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.OOBENetworkCaptivePortal_10.0.17134.1_neutral__cw5n1h2txyewy\App\Capabilities","5728"
"10:46:27.0034920 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0035137 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.OOBENetworkCaptivePortal_10.0.17134.1_neutral__cw5n1h2txyewy\App\Capabilities\UrlAssociations","0.0000073","Desired Access: Read","5728"
"10:46:27.0035240 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0035372 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.OOBENetworkCaptivePortal_10.0.17134.1_neutral__cw5n1h2txyewy\App\Capabilities\UrlAssociations","0.0000183","Desired Access: Read","5728"
"10:46:27.0035517 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000030","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:27.0035624 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000038","","740"
"10:46:27.0035713 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.OOBENetworkCaptivePortal_10.0.17134.1_neutral__cw5n1h2txyewy\App\Capabilities\URLAssociations\http","0.0000021","Length: 90","5728"
"10:46:27.0035880 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.OOBENetworkCaptivePortal_10.0.17134.1_neutral__cw5n1h2txyewy\App\Capabilities\URLAssociations","0.0000012","","5728"
"10:46:27.0036025 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000025","Index: 15, Length: 220","5728"
"10:46:27.0036165 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000030","Index: 15, Name: AppXrq4qdbvn3dhszjejfxgteh6drce9aggv, Type: REG_SZ, Length: 438, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxGameCallableUI_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\Microsoft.XboxGameCallableUI\Capabilities","5728"
"10:46:27.0036319 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXrq4qdbvn3dhszjejfxgteh6drce9aggv","0.0000034","Length: 144","5728"
"10:46:27.0036481 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXrq4qdbvn3dhszjejfxgteh6drce9aggv","0.0000034","Length: 144","5728"
"10:46:27.0036682 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXrq4qdbvn3dhszjejfxgteh6drce9aggv","0.0000034","Type: REG_SZ, Length: 438, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxGameCallableUI_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\Microsoft.XboxGameCallableUI\Capabilities","5728"
"10:46:27.0036882 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0037023 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxGameCallableUI_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\Microsoft.XboxGameCallableUI\Capabilities\UrlAssociations","0.0000051","Desired Access: Read","5728"
"10:46:27.0037194 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxGameCallableUI_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\Microsoft.XboxGameCallableUI\Capabilities\UrlAssociations","0.0000140","Desired Access: Read","5728"
"10:46:27.0037484 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxGameCallableUI_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\Microsoft.XboxGameCallableUI\Capabilities\URLAssociations\http","0.0000034","Length: 90","5728"
"10:46:27.0037582 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0037659 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxGameCallableUI_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\Microsoft.XboxGameCallableUI\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0037795 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000034","Index: 16, Length: 220","5728"
"10:46:27.0037864 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000025","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:27.0037949 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000030","Index: 16, Name: AppX3g5ey09v5q8zs89jfmvfs94krhtvv6ww, Type: REG_SZ, Length: 402, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.HolographicFirstRun_10.0.17134.1_neutral_neutral_cw5n1h2txyewy\App\Capabilities","5728"
"10:46:27.0037970 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000043","","740"
"10:46:27.0038107 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX3g5ey09v5q8zs89jfmvfs94krhtvv6ww","0.0000030","Length: 144","5728"
"10:46:27.0038260 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX3g5ey09v5q8zs89jfmvfs94krhtvv6ww","0.0000030","Length: 144","5728"
"10:46:27.0038410 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX3g5ey09v5q8zs89jfmvfs94krhtvv6ww","0.0000030","Type: REG_SZ, Length: 402, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.HolographicFirstRun_10.0.17134.1_neutral_neutral_cw5n1h2txyewy\App\Capabilities","5728"
"10:46:27.0038593 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0038734 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.HolographicFirstRun_10.0.17134.1_neutral_neutral_cw5n1h2txyewy\App\Capabilities\UrlAssociations","0.0000047","Desired Access: Read","5728"
"10:46:27.0038900 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.HolographicFirstRun_10.0.17134.1_neutral_neutral_cw5n1h2txyewy\App\Capabilities\UrlAssociations","0.0000133","Desired Access: Read","5728"
"10:46:27.0039182 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.HolographicFirstRun_10.0.17134.1_neutral_neutral_cw5n1h2txyewy\App\Capabilities\URLAssociations\http","0.0000026","Length: 90","5728"
"10:46:27.0039340 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.HolographicFirstRun_10.0.17134.1_neutral_neutral_cw5n1h2txyewy\App\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0039476 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000026","Index: 17, Length: 220","5728"
"10:46:27.0039617 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000026","Index: 17, Name: AppXec953xtj3tdvjv4cawwxx8d0qzx46z2h, Type: REG_SZ, Length: 410, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Microsoft3DViewer_6.1903.4012.0_x64__8wekyb3d8bbwe\Microsoft.Microsoft3DViewer\Capabilities","5728"
"10:46:27.0039762 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXec953xtj3tdvjv4cawwxx8d0qzx46z2h","0.0000030","Length: 144","5728"
"10:46:27.0039916 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXec953xtj3tdvjv4cawwxx8d0qzx46z2h","0.0000025","Length: 144","5728"
"10:46:27.0040065 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXec953xtj3tdvjv4cawwxx8d0qzx46z2h","0.0000030","Type: REG_SZ, Length: 410, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Microsoft3DViewer_6.1903.4012.0_x64__8wekyb3d8bbwe\Microsoft.Microsoft3DViewer\Capabilities","5728"
"10:46:27.0040249 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0040406 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Microsoft3DViewer_6.1903.4012.0_x64__8wekyb3d8bbwe\Microsoft.Microsoft3DViewer\Capabilities\UrlAssociations","0.0000069","Desired Access: Read","5728"
"10:46:27.0040603 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Microsoft3DViewer_6.1903.4012.0_x64__8wekyb3d8bbwe\Microsoft.Microsoft3DViewer\Capabilities\UrlAssociations","0.0000141","Desired Access: Read","5728"
"10:46:27.0040825 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0040897 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Microsoft3DViewer_6.1903.4012.0_x64__8wekyb3d8bbwe\Microsoft.Microsoft3DViewer\Capabilities\URLAssociations\http","0.0000026","Length: 90","5728"
"10:46:27.0041055 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Microsoft3DViewer_6.1903.4012.0_x64__8wekyb3d8bbwe\Microsoft.Microsoft3DViewer\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0041136 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000026","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:27.0041204 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000030","Index: 18, Length: 220","5728"
"10:46:27.0041238 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000043","","740"
"10:46:27.0041354 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000025","Index: 18, Name: AppXgzzfreat371nkms9k7gpb45n6ha46qgn, Type: REG_SZ, Length: 376, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Xbox.TCUI_1.24.10001.0_x64__8wekyb3d8bbwe\Microsoft.Xbox.TCUI\Capabilities","5728"
"10:46:27.0041507 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXgzzfreat371nkms9k7gpb45n6ha46qgn","0.0000026","Length: 144","5728"
"10:46:27.0041657 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXgzzfreat371nkms9k7gpb45n6ha46qgn","0.0000025","Length: 144","5728"
"10:46:27.0041797 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXgzzfreat371nkms9k7gpb45n6ha46qgn","0.0000030","Type: REG_SZ, Length: 376, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Xbox.TCUI_1.24.10001.0_x64__8wekyb3d8bbwe\Microsoft.Xbox.TCUI\Capabilities","5728"
"10:46:27.0042024 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000025","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0042250 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Xbox.TCUI_1.24.10001.0_x64__8wekyb3d8bbwe\Microsoft.Xbox.TCUI\Capabilities\UrlAssociations","0.0000076","Desired Access: Read","5728"
"10:46:27.0042527 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Xbox.TCUI_1.24.10001.0_x64__8wekyb3d8bbwe\Microsoft.Xbox.TCUI\Capabilities\UrlAssociations","0.0000192","Desired Access: Read","5728"
"10:46:27.0042881 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000162","Offset: 20,480, Length: 4,096","7760"
"10:46:27.0042958 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Xbox.TCUI_1.24.10001.0_x64__8wekyb3d8bbwe\Microsoft.Xbox.TCUI\Capabilities\URLAssociations\http","0.0000051","Length: 90","5728"
"10:46:27.0043257 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Xbox.TCUI_1.24.10001.0_x64__8wekyb3d8bbwe\Microsoft.Xbox.TCUI\Capabilities\URLAssociations","0.0000021","","5728"
"10:46:27.0043419 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000089","Offset: 1,654,784, Length: 4,096","7760"
"10:46:27.0043491 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000034","Index: 19, Length: 220","5728"
"10:46:27.0043730 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000039","Index: 19, Name: AppXkrjv7abbe2kyn3dg9eeawyqhd3q3zyz7, Type: REG_SZ, Length: 394, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.Apprep.ChxApp_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\App\Capabilities","5728"
"10:46:27.0043747 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0043816 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000285","Offset: 6,840,320, Length: 4,096","7760"
"10:46:27.0043982 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXkrjv7abbe2kyn3dg9eeawyqhd3q3zyz7","0.0000043","Length: 144","5728"
"10:46:27.0044221 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000043","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:27.0044229 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXkrjv7abbe2kyn3dg9eeawyqhd3q3zyz7","0.0000043","Length: 144","5728"
"10:46:27.0044353 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0478217","Offset: 13,348,864, Length: 4,096","7760"
"10:46:27.0044396 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000064","","740"
"10:46:27.0044468 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXkrjv7abbe2kyn3dg9eeawyqhd3q3zyz7","0.0000047","Type: REG_SZ, Length: 394, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.Apprep.ChxApp_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\App\Capabilities","5728"
"10:46:27.0044716 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0477692","Offset: 13,348,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:27.0044793 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0045010 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.Apprep.ChxApp_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\App\Capabilities\UrlAssociations","0.0000073","Desired Access: Read","5728"
"10:46:27.0045279 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.Apprep.ChxApp_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\App\Capabilities\UrlAssociations","0.0000196","Desired Access: Read","5728"
"10:46:27.0045744 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.Apprep.ChxApp_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\App\Capabilities\URLAssociations\http","0.0000034","Length: 90","5728"
"10:46:27.0045932 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.Apprep.ChxApp_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\App\Capabilities\URLAssociations","0.0000021","","5728"
"10:46:27.0046107 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000030","Index: 20, Length: 220","5728"
"10:46:27.0046260 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000030","Index: 20, Name: AppXcxa69j3jyy3bbc256a12a2n74xbxm8et, Type: REG_SZ, Length: 414, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.PPIProjection_10.0.17134.1_neutral_neutral_cw5n1h2txyewy\Microsoft.PPIProjection\Capabilities","5728"
"10:46:27.0046414 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXcxa69j3jyy3bbc256a12a2n74xbxm8et","0.0000030","Length: 144","5728"
"10:46:27.0046572 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXcxa69j3jyy3bbc256a12a2n74xbxm8et","0.0000030","Length: 144","5728"
"10:46:27.0046674 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0046725 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXcxa69j3jyy3bbc256a12a2n74xbxm8et","0.0000035","Type: REG_SZ, Length: 414, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.PPIProjection_10.0.17134.1_neutral_neutral_cw5n1h2txyewy\Microsoft.PPIProjection\Capabilities","5728"
"10:46:27.0046926 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0046973 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000030","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:27.0047084 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000042","","740"
"10:46:27.0047088 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.PPIProjection_10.0.17134.1_neutral_neutral_cw5n1h2txyewy\Microsoft.PPIProjection\Capabilities\UrlAssociations","0.0000085","Desired Access: Read","5728"
"10:46:27.0047297 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.PPIProjection_10.0.17134.1_neutral_neutral_cw5n1h2txyewy\Microsoft.PPIProjection\Capabilities\UrlAssociations","0.0000171","Desired Access: Read","5728"
"10:46:27.0047626 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.PPIProjection_10.0.17134.1_neutral_neutral_cw5n1h2txyewy\Microsoft.PPIProjection\Capabilities\URLAssociations\http","0.0000025","Length: 90","5728"
"10:46:27.0047788 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.PPIProjection_10.0.17134.1_neutral_neutral_cw5n1h2txyewy\Microsoft.PPIProjection\Capabilities\URLAssociations","0.0000008","","5728"
"10:46:27.0047929 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000029","Index: 21, Length: 220","5728"
"10:46:27.0048074 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000021","Index: 21, Name: AppXkydz3jr9h862erf79v7na6tqcgmtpmjt, Type: REG_SZ, Length: 348, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\InputApp_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\App\Capabilities","5728"
"10:46:27.0048219 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXkydz3jr9h862erf79v7na6tqcgmtpmjt","0.0000034","Length: 144","5728"
"10:46:27.0048377 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXkydz3jr9h862erf79v7na6tqcgmtpmjt","0.0000029","Length: 144","5728"
"10:46:27.0048522 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXkydz3jr9h862erf79v7na6tqcgmtpmjt","0.0000030","Type: REG_SZ, Length: 348, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\InputApp_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\App\Capabilities","5728"
"10:46:27.0048709 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0048854 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\InputApp_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\App\Capabilities\UrlAssociations","0.0000043","Desired Access: Read","5728"
"10:46:27.0049012 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\InputApp_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\App\Capabilities\UrlAssociations","0.0000128","Desired Access: Read","5728"
"10:46:27.0049298 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\InputApp_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\App\Capabilities\URLAssociations\http","0.0000022","Length: 90","5728"
"10:46:27.0049452 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\InputApp_1000.17134.1.0_neutral_neutral_cw5n1h2txyewy\App\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0049588 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000026","Index: 22, Length: 220","5728"
"10:46:27.0049725 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000025","Index: 22, Name: AppX4s94rt7tt8e7g8v4f6bma5tmfhymq8hj, Type: REG_SZ, Length: 400, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\c5e2524a-ea46-4f67-841f-6a9465d9d515_10.0.17134.1_neutral_neutral_cw5n1h2txyewy\App\Capabilities","5728"
"10:46:27.0049874 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX4s94rt7tt8e7g8v4f6bma5tmfhymq8hj","0.0000034","Length: 144","5728"
"10:46:27.0049896 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0050036 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX4s94rt7tt8e7g8v4f6bma5tmfhymq8hj","0.0000030","Length: 144","5728"
"10:46:27.0050113 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000026","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:27.0050186 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX4s94rt7tt8e7g8v4f6bma5tmfhymq8hj","0.0000034","Type: REG_SZ, Length: 400, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\c5e2524a-ea46-4f67-841f-6a9465d9d515_10.0.17134.1_neutral_neutral_cw5n1h2txyewy\App\Capabilities","5728"
"10:46:27.0050216 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000038","","740"
"10:46:27.0050382 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0050518 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\c5e2524a-ea46-4f67-841f-6a9465d9d515_10.0.17134.1_neutral_neutral_cw5n1h2txyewy\App\Capabilities\UrlAssociations","0.0000047","Desired Access: Read","5728"
"10:46:27.0050685 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\c5e2524a-ea46-4f67-841f-6a9465d9d515_10.0.17134.1_neutral_neutral_cw5n1h2txyewy\App\Capabilities\UrlAssociations","0.0000132","Desired Access: Read","5728"
"10:46:27.0050966 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\c5e2524a-ea46-4f67-841f-6a9465d9d515_10.0.17134.1_neutral_neutral_cw5n1h2txyewy\App\Capabilities\URLAssociations\http","0.0000022","Length: 90","5728"
"10:46:27.0051120 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\c5e2524a-ea46-4f67-841f-6a9465d9d515_10.0.17134.1_neutral_neutral_cw5n1h2txyewy\App\Capabilities\URLAssociations","0.0000009","","5728"
"10:46:27.0051257 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000025","Index: 23, Length: 220","5728"
"10:46:27.0051397 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000026","Index: 23, Name: AppXpxfcb0gv5z59b6zmr85jcd542te4467d, Type: REG_SZ, Length: 418, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Messaging_4.1901.10241.0_x64__8wekyb3d8bbwe\x27e26f40ye031y48a6yb130yd1f20388991ax\Capabilities","5728"
"10:46:27.0051560 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXpxfcb0gv5z59b6zmr85jcd542te4467d","0.0000038","Length: 144","5728"
"10:46:27.0051739 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXpxfcb0gv5z59b6zmr85jcd542te4467d","0.0000034","Length: 144","5728"
"10:46:27.0051888 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXpxfcb0gv5z59b6zmr85jcd542te4467d","0.0000034","Type: REG_SZ, Length: 418, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Messaging_4.1901.10241.0_x64__8wekyb3d8bbwe\x27e26f40ye031y48a6yb130yd1f20388991ax\Capabilities","5728"
"10:46:27.0052080 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0052229 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Messaging_4.1901.10241.0_x64__8wekyb3d8bbwe\x27e26f40ye031y48a6yb130yd1f20388991ax\Capabilities\UrlAssociations","0.0000069","Desired Access: Read","5728"
"10:46:27.0052366 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0052494 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Messaging_4.1901.10241.0_x64__8wekyb3d8bbwe\x27e26f40ye031y48a6yb130yd1f20388991ax\Capabilities\UrlAssociations","0.0000200","Desired Access: Read","5728"
"10:46:27.0052665 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000034","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:27.0052784 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000056","","740"
"10:46:27.0052933 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Messaging_4.1901.10241.0_x64__8wekyb3d8bbwe\x27e26f40ye031y48a6yb130yd1f20388991ax\Capabilities\URLAssociations\http","0.0000035","Length: 90","5728"
"10:46:27.0053172 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Messaging_4.1901.10241.0_x64__8wekyb3d8bbwe\x27e26f40ye031y48a6yb130yd1f20388991ax\Capabilities\URLAssociations","0.0000017","","5728"
"10:46:27.0053411 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000034","Index: 24, Length: 220","5728"
"10:46:27.0053629 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000034","Index: 24, Name: AppXggdkr8c9gxxxh9fnjns35fwfs92sceb7, Type: REG_SZ, Length: 346, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Getstarted_6.15.12641.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0053859 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXggdkr8c9gxxxh9fnjns35fwfs92sceb7","0.0000047","Length: 144","5728"
"10:46:27.0054094 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXggdkr8c9gxxxh9fnjns35fwfs92sceb7","0.0000043","Length: 144","5728"
"10:46:27.0054320 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXggdkr8c9gxxxh9fnjns35fwfs92sceb7","0.0000051","Type: REG_SZ, Length: 346, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Getstarted_6.15.12641.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0054610 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0054764 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Getstarted_6.15.12641.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000047","Desired Access: Read","5728"
"10:46:27.0054794 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0054934 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Getstarted_6.15.12641.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000150","Desired Access: Read","5728"
"10:46:27.0054990 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000026","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:27.0055088 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000038","","740"
"10:46:27.0055233 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Getstarted_6.15.12641.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations\http","0.0000026","Length: 90","5728"
"10:46:27.0055395 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Getstarted_6.15.12641.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations","0.0000009","","5728"
"10:46:27.0055528 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000034","Index: 25, Length: 220","5728"
"10:46:27.0055673 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000021","Index: 25, Name: AppXmctspj5ve32hrsewvnqb01v2gbk38jf3, Type: REG_SZ, Length: 346, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.OneConnect_5.1902.361.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0055826 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXmctspj5ve32hrsewvnqb01v2gbk38jf3","0.0000034","Length: 144","5728"
"10:46:27.0055980 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXmctspj5ve32hrsewvnqb01v2gbk38jf3","0.0000034","Length: 144","5728"
"10:46:27.0056129 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXmctspj5ve32hrsewvnqb01v2gbk38jf3","0.0000034","Type: REG_SZ, Length: 346, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.OneConnect_5.1902.361.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0056313 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0056458 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.OneConnect_5.1902.361.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000042","Desired Access: Read","5728"
"10:46:27.0056616 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.OneConnect_5.1902.361.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000132","Desired Access: Read","5728"
"10:46:27.0056893 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.OneConnect_5.1902.361.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations\http","0.0000025","Length: 90","5728"
"10:46:27.0057046 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.OneConnect_5.1902.361.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0057183 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000026","Index: 26, Length: 220","5728"
"10:46:27.0057324 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000025","Index: 26, Name: AppXh5q1t9ykn9f4mx4qg5kdn38dvsg3ge8k, Type: REG_SZ, Length: 358, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxGamingOverlay_1.16.1012.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0057477 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXh5q1t9ykn9f4mx4qg5kdn38dvsg3ge8k","0.0000035","Length: 144","5728"
"10:46:27.0057631 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXh5q1t9ykn9f4mx4qg5kdn38dvsg3ge8k","0.0000034","Length: 144","5728"
"10:46:27.0057785 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXh5q1t9ykn9f4mx4qg5kdn38dvsg3ge8k","0.0000051","Type: REG_SZ, Length: 358, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxGamingOverlay_1.16.1012.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0057878 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0058002 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0058105 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:27.0058152 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxGamingOverlay_1.16.1012.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000051","Desired Access: Read","5728"
"10:46:27.0058203 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000042","","740"
"10:46:27.0058322 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxGamingOverlay_1.16.1012.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000132","Desired Access: Read","5728"
"10:46:27.0058604 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxGamingOverlay_1.16.1012.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations\http","0.0000025","Length: 90","5728"
"10:46:27.0058787 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxGamingOverlay_1.16.1012.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0058924 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000025","Index: 27, Length: 220","5728"
"10:46:27.0059065 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000021","Index: 27, Name: AppXsb1zgj7e45ja97qva5xv68rnf2mweyv6, Type: REG_SZ, Length: 382, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftOfficeHub_18.1903.1152.0_x64__8wekyb3d8bbwe\LocalBridge\Capabilities","5728"
"10:46:27.0059210 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXsb1zgj7e45ja97qva5xv68rnf2mweyv6","0.0000038","Length: 144","5728"
"10:46:27.0059372 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXsb1zgj7e45ja97qva5xv68rnf2mweyv6","0.0000030","Length: 144","5728"
"10:46:27.0059521 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXsb1zgj7e45ja97qva5xv68rnf2mweyv6","0.0000034","Type: REG_SZ, Length: 382, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftOfficeHub_18.1903.1152.0_x64__8wekyb3d8bbwe\LocalBridge\Capabilities","5728"
"10:46:27.0059713 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0059850 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftOfficeHub_18.1903.1152.0_x64__8wekyb3d8bbwe\LocalBridge\Capabilities\UrlAssociations","0.0000047","Desired Access: Read","5728"
"10:46:27.0060020 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftOfficeHub_18.1903.1152.0_x64__8wekyb3d8bbwe\LocalBridge\Capabilities\UrlAssociations","0.0000180","Desired Access: Read","5728"
"10:46:27.0060114 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0060306 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:27.0060345 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftOfficeHub_18.1903.1152.0_x64__8wekyb3d8bbwe\LocalBridge\Capabilities\URLAssociations\http","0.0000025","Length: 90","5728"
"10:46:27.0060404 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000039","","740"
"10:46:27.0060502 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftOfficeHub_18.1903.1152.0_x64__8wekyb3d8bbwe\LocalBridge\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0060639 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000034","Index: 28, Length: 220","5728"
"10:46:27.0060788 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000034","Index: 28, Name: AppX14sgk3n9en7k0bkktc9b16422015ebss, Type: REG_SZ, Length: 416, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftOfficeHub_18.1903.1152.0_x64__8wekyb3d8bbwe\Microsoft.MicrosoftOfficeHub\Capabilities","5728"
"10:46:27.0060959 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX14sgk3n9en7k0bkktc9b16422015ebss","0.0000047","Length: 144","5728"
"10:46:27.0061206 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX14sgk3n9en7k0bkktc9b16422015ebss","0.0000047","Length: 144","5728"
"10:46:27.0061441 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX14sgk3n9en7k0bkktc9b16422015ebss","0.0000056","Type: REG_SZ, Length: 416, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftOfficeHub_18.1903.1152.0_x64__8wekyb3d8bbwe\Microsoft.MicrosoftOfficeHub\Capabilities","5728"
"10:46:27.0061744 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0061966 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftOfficeHub_18.1903.1152.0_x64__8wekyb3d8bbwe\Microsoft.MicrosoftOfficeHub\Capabilities\UrlAssociations","0.0000068","Desired Access: Read","5728"
"10:46:27.0062222 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftOfficeHub_18.1903.1152.0_x64__8wekyb3d8bbwe\Microsoft.MicrosoftOfficeHub\Capabilities\UrlAssociations","0.0000209","Desired Access: Read","5728"
"10:46:27.0062657 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftOfficeHub_18.1903.1152.0_x64__8wekyb3d8bbwe\Microsoft.MicrosoftOfficeHub\Capabilities\URLAssociations\http","0.0000034","Length: 90","5728"
"10:46:27.0062892 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftOfficeHub_18.1903.1152.0_x64__8wekyb3d8bbwe\Microsoft.MicrosoftOfficeHub\Capabilities\URLAssociations","0.0000017","","5728"
"10:46:27.0063114 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000034","Index: 29, Length: 220","5728"
"10:46:27.0063229 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0063310 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000026","Index: 29, Name: AppX6v6229574g9044mxm39bbtzccb96fzyz, Type: REG_SZ, Length: 368, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsSoundRecorder_10.1902.633.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0063442 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000111","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","740"
"10:46:27.0063468 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX6v6229574g9044mxm39bbtzccb96fzyz","0.0000047","Length: 144","5728"
"10:46:27.0063643 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000047","","740"
"10:46:27.0063656 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX6v6229574g9044mxm39bbtzccb96fzyz","0.0000068","Length: 144","5728"
"10:46:27.0063852 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX6v6229574g9044mxm39bbtzccb96fzyz","0.0000038","Type: REG_SZ, Length: 368, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsSoundRecorder_10.1902.633.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0064048 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0064185 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsSoundRecorder_10.1902.633.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000119","Desired Access: Read","5728"
"10:46:27.0064432 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsSoundRecorder_10.1902.633.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000137","Desired Access: Read","5728"
"10:46:27.0064718 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsSoundRecorder_10.1902.633.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations\http","0.0000017","Length: 90","5728"
"10:46:27.0064872 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsSoundRecorder_10.1902.633.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations","0.0000012","","5728"
"10:46:27.0065017 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000025","Index: 30, Length: 220","5728"
"10:46:27.0065157 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000022","Index: 30, Name: AppXfxt1avkgsxwnrdzhjp85111pn8c7aeve, Type: REG_SZ, Length: 378, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftSolitaireCollection_4.3.4032.0_x86__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0065303 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXfxt1avkgsxwnrdzhjp85111pn8c7aeve","0.0000038","Length: 144","5728"
"10:46:27.0065460 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXfxt1avkgsxwnrdzhjp85111pn8c7aeve","0.0000035","Length: 144","5728"
"10:46:27.0065546 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0065614 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXfxt1avkgsxwnrdzhjp85111pn8c7aeve","0.0000034","Type: REG_SZ, Length: 378, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftSolitaireCollection_4.3.4032.0_x86__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0065802 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000034","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","740"
"10:46:27.0065815 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0065913 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000051","","740"
"10:46:27.0065960 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftSolitaireCollection_4.3.4032.0_x86__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000102","Desired Access: Read","5728"
"10:46:27.0066190 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftSolitaireCollection_4.3.4032.0_x86__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000137","Desired Access: Read","5728"
"10:46:27.0066472 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftSolitaireCollection_4.3.4032.0_x86__8wekyb3d8bbwe\App\Capabilities\URLAssociations\http","0.0000025","Length: 90","5728"
"10:46:27.0066629 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftSolitaireCollection_4.3.4032.0_x86__8wekyb3d8bbwe\App\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0066766 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000026","Index: 31, Length: 220","5728"
"10:46:27.0066907 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000025","Index: 31, Name: AppXewjnn6fj87mfbvhpk6qa2dh911setft2, Type: REG_SZ, Length: 384, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.ZuneMusic_10.19031.11411.0_x64__8wekyb3d8bbwe\Microsoft.ZuneMusic\Capabilities","5728"
"10:46:27.0067052 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXewjnn6fj87mfbvhpk6qa2dh911setft2","0.0000038","Length: 144","5728"
"10:46:27.0067214 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXewjnn6fj87mfbvhpk6qa2dh911setft2","0.0000034","Length: 144","5728"
"10:46:27.0067363 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXewjnn6fj87mfbvhpk6qa2dh911setft2","0.0000039","Type: REG_SZ, Length: 384, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.ZuneMusic_10.19031.11411.0_x64__8wekyb3d8bbwe\Microsoft.ZuneMusic\Capabilities","5728"
"10:46:27.0067560 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0067700 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.ZuneMusic_10.19031.11411.0_x64__8wekyb3d8bbwe\Microsoft.ZuneMusic\Capabilities\UrlAssociations","0.0000043","Desired Access: Read","5728"
"10:46:27.0067863 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.ZuneMusic_10.19031.11411.0_x64__8wekyb3d8bbwe\Microsoft.ZuneMusic\Capabilities\UrlAssociations","0.0000166","Desired Access: Read","5728"
"10:46:27.0067897 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0068093 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000026","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","740"
"10:46:27.0068178 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.ZuneMusic_10.19031.11411.0_x64__8wekyb3d8bbwe\Microsoft.ZuneMusic\Capabilities\URLAssociations\http","0.0000026","Length: 90","5728"
"10:46:27.0068191 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000038","","740"
"10:46:27.0068336 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.ZuneMusic_10.19031.11411.0_x64__8wekyb3d8bbwe\Microsoft.ZuneMusic\Capabilities\URLAssociations","0.0000026","","5728"
"10:46:27.0068485 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000022","Index: 32, Length: 220","5728"
"10:46:27.0068622 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000021","Index: 32, Name: AppX57shfkq7q7f6bm9y82pr06460pewd8y8, Type: REG_SZ, Length: 384, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.ZuneVideo_10.19031.11411.0_x64__8wekyb3d8bbwe\Microsoft.ZuneVideo\Capabilities","5728"
"10:46:27.0068767 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX57shfkq7q7f6bm9y82pr06460pewd8y8","0.0000038","Length: 144","5728"
"10:46:27.0068925 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX57shfkq7q7f6bm9y82pr06460pewd8y8","0.0000034","Length: 144","5728"
"10:46:27.0069074 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX57shfkq7q7f6bm9y82pr06460pewd8y8","0.0000034","Type: REG_SZ, Length: 384, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.ZuneVideo_10.19031.11411.0_x64__8wekyb3d8bbwe\Microsoft.ZuneVideo\Capabilities","5728"
"10:46:27.0069262 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0069399 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.ZuneVideo_10.19031.11411.0_x64__8wekyb3d8bbwe\Microsoft.ZuneVideo\Capabilities\UrlAssociations","0.0000042","Desired Access: Read","5728"
"10:46:27.0069561 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.ZuneVideo_10.19031.11411.0_x64__8wekyb3d8bbwe\Microsoft.ZuneVideo\Capabilities\UrlAssociations","0.0000132","Desired Access: Read","5728"
"10:46:27.0069902 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.ZuneVideo_10.19031.11411.0_x64__8wekyb3d8bbwe\Microsoft.ZuneVideo\Capabilities\URLAssociations\http","0.0000026","Length: 90","5728"
"10:46:27.0070060 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.ZuneVideo_10.19031.11411.0_x64__8wekyb3d8bbwe\Microsoft.ZuneVideo\Capabilities\URLAssociations","0.0000008","","5728"
"10:46:27.0070192 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000021","Index: 33, Length: 220","5728"
"10:46:27.0070329 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000072","Index: 33, Name: AppX9rtse493g2y54jctg0pwyfvrxgectard, Type: REG_SZ, Length: 348, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsMaps_5.1902.843.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0070542 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX9rtse493g2y54jctg0pwyfvrxgectard","0.0000038","Length: 144","5728"
"10:46:27.0070730 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX9rtse493g2y54jctg0pwyfvrxgectard","0.0000034","Length: 144","5728"
"10:46:27.0070900 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX9rtse493g2y54jctg0pwyfvrxgectard","0.0000052","Type: REG_SZ, Length: 348, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsMaps_5.1902.843.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0071199 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0071306 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0071429 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsMaps_5.1902.843.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000064","Desired Access: Read","5728"
"10:46:27.0071528 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000029","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.0071630 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000038","","740"
"10:46:27.0071685 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsMaps_5.1902.843.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000188","Desired Access: Read","5728"
"10:46:27.0072095 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsMaps_5.1902.843.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations\http","0.0000034","Length: 90","5728"
"10:46:27.0072325 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsMaps_5.1902.843.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations","0.0000022","","5728"
"10:46:27.0072539 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000034","Index: 34, Length: 220","5728"
"10:46:27.0072761 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000038","Index: 34, Name: AppXzmj4w2qy8vzs0p26zp9v5f81a1gt70wt, Type: REG_SZ, Length: 354, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsCamera_2019.124.60.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0073004 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXzmj4w2qy8vzs0p26zp9v5f81a1gt70wt","0.0000055","Length: 144","5728"
"10:46:27.0073243 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXzmj4w2qy8vzs0p26zp9v5f81a1gt70wt","0.0000051","Length: 144","5728"
"10:46:27.0073486 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXzmj4w2qy8vzs0p26zp9v5f81a1gt70wt","0.0000047","Type: REG_SZ, Length: 354, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsCamera_2019.124.60.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0073665 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0073704 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0073861 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsCamera_2019.124.60.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000077","Desired Access: Read","5728"
"10:46:27.0073879 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000029","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.0074036 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000060","","740"
"10:46:27.0074079 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsCamera_2019.124.60.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000141","Desired Access: Read","5728"
"10:46:27.0074369 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsCamera_2019.124.60.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations\http","0.0000030","Length: 90","5728"
"10:46:27.0074531 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsCamera_2019.124.60.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0074668 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000025","Index: 35, Length: 220","5728"
"10:46:27.0074809 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000030","Index: 35, Name: AppXjytc3dv8m4ksdpfnfeskd2jdhxak394m, Type: REG_SZ, Length: 456, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\microsoft.windowscommunicationsapps_16005.11425.20190.0_x64__8wekyb3d8bbwe\microsoft.windowslive.manageaccounts\Capabilities","5728"
"10:46:27.0074958 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXjytc3dv8m4ksdpfnfeskd2jdhxak394m","0.0000038","Length: 144","5728"
"10:46:27.0075120 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXjytc3dv8m4ksdpfnfeskd2jdhxak394m","0.0000034","Length: 144","5728"
"10:46:27.0075287 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXjytc3dv8m4ksdpfnfeskd2jdhxak394m","0.0000038","Type: REG_SZ, Length: 456, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\microsoft.windowscommunicationsapps_16005.11425.20190.0_x64__8wekyb3d8bbwe\microsoft.windowslive.manageaccounts\Capabilities","5728"
"10:46:27.0075513 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0075653 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\microsoft.windowscommunicationsapps_16005.11425.20190.0_x64__8wekyb3d8bbwe\microsoft.windowslive.manageaccounts\Capabilities\UrlAssociations","0.0000052","Desired Access: Read","5728"
"10:46:27.0075824 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\microsoft.windowscommunicationsapps_16005.11425.20190.0_x64__8wekyb3d8bbwe\microsoft.windowslive.manageaccounts\Capabilities\UrlAssociations","0.0000141","Desired Access: Read","5728"
"10:46:27.0076008 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0076119 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\microsoft.windowscommunicationsapps_16005.11425.20190.0_x64__8wekyb3d8bbwe\microsoft.windowslive.manageaccounts\Capabilities\URLAssociations\http","0.0000021","Length: 90","5728"
"10:46:27.0076200 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000029","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.0076276 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\microsoft.windowscommunicationsapps_16005.11425.20190.0_x64__8wekyb3d8bbwe\microsoft.windowslive.manageaccounts\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0076298 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000038","","740"
"10:46:27.0076421 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000035","Index: 36, Length: 220","5728"
"10:46:27.0076575 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000026","Index: 36, Name: AppXwamwa2kf2e7x4fd08paxw4p921k3d1y9, Type: REG_SZ, Length: 444, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\microsoft.windowscommunicationsapps_16005.11425.20190.0_x64__8wekyb3d8bbwe\microsoft.windowslive.calendar\Capabilities","5728"
"10:46:27.0076720 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXwamwa2kf2e7x4fd08paxw4p921k3d1y9","0.0000039","Length: 144","5728"
"10:46:27.0076887 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXwamwa2kf2e7x4fd08paxw4p921k3d1y9","0.0000034","Length: 144","5728"
"10:46:27.0077040 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXwamwa2kf2e7x4fd08paxw4p921k3d1y9","0.0000039","Type: REG_SZ, Length: 444, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\microsoft.windowscommunicationsapps_16005.11425.20190.0_x64__8wekyb3d8bbwe\microsoft.windowslive.calendar\Capabilities","5728"
"10:46:27.0077236 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0077377 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\microsoft.windowscommunicationsapps_16005.11425.20190.0_x64__8wekyb3d8bbwe\microsoft.windowslive.calendar\Capabilities\UrlAssociations","0.0000047","Desired Access: Read","5728"
"10:46:27.0077539 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\microsoft.windowscommunicationsapps_16005.11425.20190.0_x64__8wekyb3d8bbwe\microsoft.windowslive.calendar\Capabilities\UrlAssociations","0.0000116","Desired Access: Read","5728"
"10:46:27.0077804 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\microsoft.windowscommunicationsapps_16005.11425.20190.0_x64__8wekyb3d8bbwe\microsoft.windowslive.calendar\Capabilities\URLAssociations\http","0.0000021","Length: 90","5728"
"10:46:27.0077953 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\microsoft.windowscommunicationsapps_16005.11425.20190.0_x64__8wekyb3d8bbwe\microsoft.windowslive.calendar\Capabilities\URLAssociations","0.0000009","","5728"
"10:46:27.0078090 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000025","Index: 37, Length: 220","5728"
"10:46:27.0078226 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000030","Index: 37, Name: AppX6vbxqn5afntjcpwzncqkx2e6ghzbtzs3, Type: REG_SZ, Length: 436, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\microsoft.windowscommunicationsapps_16005.11425.20190.0_x64__8wekyb3d8bbwe\microsoft.windowslive.mail\Capabilities","5728"
"10:46:27.0078376 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX6vbxqn5afntjcpwzncqkx2e6ghzbtzs3","0.0000038","Length: 144","5728"
"10:46:27.0078542 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX6vbxqn5afntjcpwzncqkx2e6ghzbtzs3","0.0000034","Length: 144","5728"
"10:46:27.0078691 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX6vbxqn5afntjcpwzncqkx2e6ghzbtzs3","0.0000039","Type: REG_SZ, Length: 436, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\microsoft.windowscommunicationsapps_16005.11425.20190.0_x64__8wekyb3d8bbwe\microsoft.windowslive.mail\Capabilities","5728"
"10:46:27.0078892 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0079037 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\microsoft.windowscommunicationsapps_16005.11425.20190.0_x64__8wekyb3d8bbwe\microsoft.windowslive.mail\Capabilities\UrlAssociations","0.0000051","Desired Access: Read","5728"
"10:46:27.0079182 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0079208 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\microsoft.windowscommunicationsapps_16005.11425.20190.0_x64__8wekyb3d8bbwe\microsoft.windowslive.mail\Capabilities\UrlAssociations","0.0000106","Desired Access: Read","5728"
"10:46:27.0079464 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\microsoft.windowscommunicationsapps_16005.11425.20190.0_x64__8wekyb3d8bbwe\microsoft.windowslive.mail\Capabilities\URLAssociations\http","0.0000025","Length: 90","5728"
"10:46:27.0079493 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000030","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:27.0079600 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000043","","740"
"10:46:27.0079621 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\microsoft.windowscommunicationsapps_16005.11425.20190.0_x64__8wekyb3d8bbwe\microsoft.windowslive.mail\Capabilities\URLAssociations","0.0000052","","5728"
"10:46:27.0079809 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000030","Index: 38, Length: 220","5728"
"10:46:27.0079976 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000025","Index: 38, Name: AppXfzkfzzvhwc054km7064e6mxmarpf3ctc, Type: REG_SZ, Length: 354, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.BingNews_4.30.10924.0_x64__8wekyb3d8bbwe\AppexNews\Capabilities","5728"
"10:46:27.0080125 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXfzkfzzvhwc054km7064e6mxmarpf3ctc","0.0000043","Length: 144","5728"
"10:46:27.0080287 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXfzkfzzvhwc054km7064e6mxmarpf3ctc","0.0000034","Length: 144","5728"
"10:46:27.0080509 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXfzkfzzvhwc054km7064e6mxmarpf3ctc","0.0000055","Type: REG_SZ, Length: 354, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.BingNews_4.30.10924.0_x64__8wekyb3d8bbwe\AppexNews\Capabilities","5728"
"10:46:27.0080808 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0081038 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.BingNews_4.30.10924.0_x64__8wekyb3d8bbwe\AppexNews\Capabilities\UrlAssociations","0.0000081","Desired Access: Read","5728"
"10:46:27.0081315 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.BingNews_4.30.10924.0_x64__8wekyb3d8bbwe\AppexNews\Capabilities\UrlAssociations","0.0000180","Desired Access: Read","5728"
"10:46:27.0081716 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.BingNews_4.30.10924.0_x64__8wekyb3d8bbwe\AppexNews\Capabilities\URLAssociations\http","0.0000030","Length: 90","5728"
"10:46:27.0081921 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0081960 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.BingNews_4.30.10924.0_x64__8wekyb3d8bbwe\AppexNews\Capabilities\URLAssociations","0.0000017","","5728"
"10:46:27.0082173 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000034","Index: 39, Length: 220","5728"
"10:46:27.0082216 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000029","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:27.0082322 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000039","","740"
"10:46:27.0082399 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000038","Index: 39, Name: AppXqn2g7320198qfbxp8pmmts8j3dqkwh2p, Type: REG_SZ, Length: 366, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsFeedbackHub_1.1811.10862.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0082600 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXqn2g7320198qfbxp8pmmts8j3dqkwh2p","0.0000042","Length: 144","5728"
"10:46:27.0082770 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXqn2g7320198qfbxp8pmmts8j3dqkwh2p","0.0000039","Length: 144","5728"
"10:46:27.0082928 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXqn2g7320198qfbxp8pmmts8j3dqkwh2p","0.0000039","Type: REG_SZ, Length: 366, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsFeedbackHub_1.1811.10862.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0083124 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0083265 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsFeedbackHub_1.1811.10862.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000043","Desired Access: Read","5728"
"10:46:27.0083436 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsFeedbackHub_1.1811.10862.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000136","Desired Access: Read","5728"
"10:46:27.0083722 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsFeedbackHub_1.1811.10862.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations\http","0.0000047","Length: 90","5728"
"10:46:27.0083905 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsFeedbackHub_1.1811.10862.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations","0.0000009","","5728"
"10:46:27.0084042 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000030","Index: 40, Length: 220","5728"
"10:46:27.0084127 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0084187 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000021","Index: 40, Name: AppX080qskz17wmsy4y1g5w8ppdem0gye741, Type: REG_SZ, Length: 362, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.DesktopAppInstaller_1.0.30732.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0084332 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX080qskz17wmsy4y1g5w8ppdem0gye741","0.0000038","Length: 144","5728"
"10:46:27.0084396 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000025","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:27.0084498 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000039","","740"
"10:46:27.0084503 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX080qskz17wmsy4y1g5w8ppdem0gye741","0.0000038","Length: 144","5728"
"10:46:27.0084660 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX080qskz17wmsy4y1g5w8ppdem0gye741","0.0000039","Type: REG_SZ, Length: 362, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.DesktopAppInstaller_1.0.30732.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0084852 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0084985 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.DesktopAppInstaller_1.0.30732.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000042","Desired Access: Read","5728"
"10:46:27.0085143 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.DesktopAppInstaller_1.0.30732.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000128","Desired Access: Read","5728"
"10:46:27.0085416 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.DesktopAppInstaller_1.0.30732.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations\http","0.0000021","Length: 90","5728"
"10:46:27.0085565 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.DesktopAppInstaller_1.0.30732.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0085701 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000026","Index: 41, Length: 220","5728"
"10:46:27.0085838 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000026","Index: 41, Name: AppX787wev7j6yvhz2e8pqmw1cag3vtzmj16, Type: REG_SZ, Length: 370, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MSPaint_5.1904.8017.0_x64__8wekyb3d8bbwe\Microsoft.MSPaint\Capabilities","5728"
"10:46:27.0085983 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX787wev7j6yvhz2e8pqmw1cag3vtzmj16","0.0000038","Length: 144","5728"
"10:46:27.0086145 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX787wev7j6yvhz2e8pqmw1cag3vtzmj16","0.0000039","Length: 144","5728"
"10:46:27.0086299 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX787wev7j6yvhz2e8pqmw1cag3vtzmj16","0.0000034","Type: REG_SZ, Length: 370, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MSPaint_5.1904.8017.0_x64__8wekyb3d8bbwe\Microsoft.MSPaint\Capabilities","5728"
"10:46:27.0086487 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0086627 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MSPaint_5.1904.8017.0_x64__8wekyb3d8bbwe\Microsoft.MSPaint\Capabilities\UrlAssociations","0.0000047","Desired Access: Read","5728"
"10:46:27.0086789 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MSPaint_5.1904.8017.0_x64__8wekyb3d8bbwe\Microsoft.MSPaint\Capabilities\UrlAssociations","0.0000141","Desired Access: Read","5728"
"10:46:27.0087084 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MSPaint_5.1904.8017.0_x64__8wekyb3d8bbwe\Microsoft.MSPaint\Capabilities\URLAssociations\http","0.0000025","Length: 90","5728"
"10:46:27.0087229 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0087242 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MSPaint_5.1904.8017.0_x64__8wekyb3d8bbwe\Microsoft.MSPaint\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0087378 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000030","Index: 42, Length: 220","5728"
"10:46:27.0087523 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000026","Index: 42, Name: AppXbhfj1qd973wvfkbwqtmbs7qwnnbjxwp3, Type: REG_SZ, Length: 346, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.GetHelp_10.1706.20381.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0087562 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","740"
"10:46:27.0087664 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000043","","740"
"10:46:27.0087681 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXbhfj1qd973wvfkbwqtmbs7qwnnbjxwp3","0.0000043","Length: 144","5728"
"10:46:27.0087852 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXbhfj1qd973wvfkbwqtmbs7qwnnbjxwp3","0.0000034","Length: 144","5728"
"10:46:27.0088001 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXbhfj1qd973wvfkbwqtmbs7qwnnbjxwp3","0.0000039","Type: REG_SZ, Length: 346, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.GetHelp_10.1706.20381.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0088189 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0088330 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.GetHelp_10.1706.20381.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000038","Desired Access: Read","5728"
"10:46:27.0088479 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.GetHelp_10.1706.20381.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000124","Desired Access: Read","5728"
"10:46:27.0088748 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.GetHelp_10.1706.20381.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations\http","0.0000021","Length: 90","5728"
"10:46:27.0088901 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.GetHelp_10.1706.20381.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations","0.0000022","","5728"
"10:46:27.0089047 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000021","Index: 43, Length: 220","5728"
"10:46:27.0089200 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000030","Index: 43, Name: AppXyeqgk34pevewxwwz7cpsgrqae3zy1qve, Type: REG_SZ, Length: 346, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\king.com.BubbleWitch3Saga_5.4.4.0_x86__kgqvnymyfvs32\App\Capabilities","5728"
"10:46:27.0089431 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXyeqgk34pevewxwwz7cpsgrqae3zy1qve","0.0000055","Length: 144","5728"
"10:46:27.0089682 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXyeqgk34pevewxwwz7cpsgrqae3zy1qve","0.0000056","Length: 144","5728"
"10:46:27.0089708 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0089930 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXyeqgk34pevewxwwz7cpsgrqae3zy1qve","0.0000055","Type: REG_SZ, Length: 346, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\king.com.BubbleWitch3Saga_5.4.4.0_x86__kgqvnymyfvs32\App\Capabilities","5728"
"10:46:27.0089989 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","740"
"10:46:27.0090096 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000039","","740"
"10:46:27.0090220 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0090442 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\king.com.BubbleWitch3Saga_5.4.4.0_x86__kgqvnymyfvs32\App\Capabilities\UrlAssociations","0.0000059","Desired Access: Read","5728"
"10:46:27.0090689 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\king.com.BubbleWitch3Saga_5.4.4.0_x86__kgqvnymyfvs32\App\Capabilities\UrlAssociations","0.0000175","Desired Access: Read","5728"
"10:46:27.0091090 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\king.com.BubbleWitch3Saga_5.4.4.0_x86__kgqvnymyfvs32\App\Capabilities\URLAssociations\http","0.0000034","Length: 90","5728"
"10:46:27.0091325 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\king.com.BubbleWitch3Saga_5.4.4.0_x86__kgqvnymyfvs32\App\Capabilities\URLAssociations","0.0000017","","5728"
"10:46:27.0091496 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000025","Index: 44, Length: 220","5728"
"10:46:27.0091641 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000025","Index: 44, Name: AppXxevv7w4echwe3sagycz14jet3p1yv42y, Type: REG_SZ, Length: 410, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.People_10.1902.633.0_x64__8wekyb3d8bbwe\x4c7a3b7dy2188y46d4ya362y19ac5a5805e5x\Capabilities","5728"
"10:46:27.0091794 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXxevv7w4echwe3sagycz14jet3p1yv42y","0.0000043","Length: 144","5728"
"10:46:27.0091875 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0091965 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXxevv7w4echwe3sagycz14jet3p1yv42y","0.0000038","Length: 144","5728"
"10:46:27.0092123 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXxevv7w4echwe3sagycz14jet3p1yv42y","0.0000042","Type: REG_SZ, Length: 410, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.People_10.1902.633.0_x64__8wekyb3d8bbwe\x4c7a3b7dy2188y46d4ya362y19ac5a5805e5x\Capabilities","5728"
"10:46:27.0092144 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000085","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","740"
"10:46:27.0092340 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000060","","740"
"10:46:27.0092379 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0092524 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.People_10.1902.633.0_x64__8wekyb3d8bbwe\x4c7a3b7dy2188y46d4ya362y19ac5a5805e5x\Capabilities\UrlAssociations","0.0000047","Desired Access: Read","5728"
"10:46:27.0092690 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.People_10.1902.633.0_x64__8wekyb3d8bbwe\x4c7a3b7dy2188y46d4ya362y19ac5a5805e5x\Capabilities\UrlAssociations","0.0000133","Desired Access: Read","5728"
"10:46:27.0092968 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.People_10.1902.633.0_x64__8wekyb3d8bbwe\x4c7a3b7dy2188y46d4ya362y19ac5a5805e5x\Capabilities\URLAssociations\http","0.0000025","Length: 90","5728"
"10:46:27.0093121 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.People_10.1902.633.0_x64__8wekyb3d8bbwe\x4c7a3b7dy2188y46d4ya362y19ac5a5805e5x\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0093258 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000025","Index: 45, Length: 220","5728"
"10:46:27.0093399 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000021","Index: 45, Name: AppX1h04dx2d0h0ebp49qn7x9y3596rvr8sd, Type: REG_SZ, Length: 400, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Office.OneNote_16001.11601.20066.0_x64__8wekyb3d8bbwe\microsoft.onenoteim\Capabilities","5728"
"10:46:27.0093556 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX1h04dx2d0h0ebp49qn7x9y3596rvr8sd","0.0000043","Length: 144","5728"
"10:46:27.0093719 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX1h04dx2d0h0ebp49qn7x9y3596rvr8sd","0.0000038","Length: 144","5728"
"10:46:27.0093876 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX1h04dx2d0h0ebp49qn7x9y3596rvr8sd","0.0000039","Type: REG_SZ, Length: 400, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Office.OneNote_16001.11601.20066.0_x64__8wekyb3d8bbwe\microsoft.onenoteim\Capabilities","5728"
"10:46:27.0094068 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0094209 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Office.OneNote_16001.11601.20066.0_x64__8wekyb3d8bbwe\microsoft.onenoteim\Capabilities\UrlAssociations","0.0000047","Desired Access: Read","5728"
"10:46:27.0094380 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Office.OneNote_16001.11601.20066.0_x64__8wekyb3d8bbwe\microsoft.onenoteim\Capabilities\UrlAssociations","0.0000145","Desired Access: Read","5728"
"10:46:27.0094670 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Office.OneNote_16001.11601.20066.0_x64__8wekyb3d8bbwe\microsoft.onenoteim\Capabilities\URLAssociations\http","0.0000021","Length: 90","5728"
"10:46:27.0094819 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Office.OneNote_16001.11601.20066.0_x64__8wekyb3d8bbwe\microsoft.onenoteim\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0094960 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000021","Index: 46, Length: 220","5728"
"10:46:27.0095097 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000025","Index: 46, Name: AppXcgygxhd3q2cxpmrd5ga188r4j5qv55n2, Type: REG_SZ, Length: 356, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxGameOverlay_1.40.23001.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0095156 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0095246 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXcgygxhd3q2cxpmrd5ga188r4j5qv55n2","0.0000043","Length: 144","5728"
"10:46:27.0095412 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXcgygxhd3q2cxpmrd5ga188r4j5qv55n2","0.0000039","Length: 144","5728"
"10:46:27.0095476 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:27.0095570 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXcgygxhd3q2cxpmrd5ga188r4j5qv55n2","0.0000043","Type: REG_SZ, Length: 356, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxGameOverlay_1.40.23001.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0095579 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000038","","740"
"10:46:27.0095771 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0095912 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxGameOverlay_1.40.23001.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000047","Desired Access: Read","5728"
"10:46:27.0096074 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxGameOverlay_1.40.23001.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000132","Desired Access: Read","5728"
"10:46:27.0096351 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxGameOverlay_1.40.23001.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations\http","0.0000047","Length: 90","5728"
"10:46:27.0096530 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.XboxGameOverlay_1.40.23001.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0096667 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000025","Index: 47, Length: 220","5728"
"10:46:27.0096808 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000021","Index: 47, Name: AppX2hyn8s9aayh0e2vwck88bndtrr9amyp9, Type: REG_SZ, Length: 334, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Print3D_3.3.791.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0096948 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX2hyn8s9aayh0e2vwck88bndtrr9amyp9","0.0000039","Length: 144","5728"
"10:46:27.0097115 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX2hyn8s9aayh0e2vwck88bndtrr9amyp9","0.0000038","Length: 144","5728"
"10:46:27.0097264 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppX2hyn8s9aayh0e2vwck88bndtrr9amyp9","0.0000039","Type: REG_SZ, Length: 334, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Print3D_3.3.791.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0097341 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0097456 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0097524 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:27.0097601 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Print3D_3.3.791.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000043","Desired Access: Read","5728"
"10:46:27.0097618 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000043","","740"
"10:46:27.0097763 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Print3D_3.3.791.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000154","Desired Access: Read","5728"
"10:46:27.0098058 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Print3D_3.3.791.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations\http","0.0000030","Length: 90","5728"
"10:46:27.0098220 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Print3D_3.3.791.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0098369 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000030","Index: 48, Length: 220","5728"
"10:46:27.0098583 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000034","Index: 48, Name: AppXw34v2vewhh9dpnphkgncvz18pey4gsn7, Type: REG_SZ, Length: 358, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\king.com.CandyCrushSodaSaga_1.137.700.0_x86__kgqvnymyfvs32\App\Capabilities","5728"
"10:46:27.0098817 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXw34v2vewhh9dpnphkgncvz18pey4gsn7","0.0000064","Length: 144","5728"
"10:46:27.0099077 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXw34v2vewhh9dpnphkgncvz18pey4gsn7","0.0000056","Length: 144","5728"
"10:46:27.0099321 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXw34v2vewhh9dpnphkgncvz18pey4gsn7","0.0000059","Type: REG_SZ, Length: 358, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\king.com.CandyCrushSodaSaga_1.137.700.0_x86__kgqvnymyfvs32\App\Capabilities","5728"
"10:46:27.0099521 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0099632 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0099713 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:27.0099811 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000034","","740"
"10:46:27.0099854 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\king.com.CandyCrushSodaSaga_1.137.700.0_x86__kgqvnymyfvs32\App\Capabilities\UrlAssociations","0.0000064","Desired Access: Read","5728"
"10:46:27.0100110 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\king.com.CandyCrushSodaSaga_1.137.700.0_x86__kgqvnymyfvs32\App\Capabilities\UrlAssociations","0.0000179","Desired Access: Read","5728"
"10:46:27.0100511 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\king.com.CandyCrushSodaSaga_1.137.700.0_x86__kgqvnymyfvs32\App\Capabilities\URLAssociations\http","0.0000034","Length: 90","5728"
"10:46:27.0100746 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\king.com.CandyCrushSodaSaga_1.137.700.0_x86__kgqvnymyfvs32\App\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0100891 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000025","Index: 49, Length: 220","5728"
"10:46:27.0101036 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000021","Index: 49, Name: AppXxer4j4vpt6w96t5ejvgw3tre7jsx0qgp, Type: REG_SZ, Length: 356, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\SpotifyAB.SpotifyMusic_1.105.152.0_x86__zpdnekdrzrea0\Spotify\Capabilities","5728"
"10:46:27.0101181 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXxer4j4vpt6w96t5ejvgw3tre7jsx0qgp","0.0000047","Length: 144","5728"
"10:46:27.0101347 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXxer4j4vpt6w96t5ejvgw3tre7jsx0qgp","0.0000043","Length: 144","5728"
"10:46:27.0101505 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXxer4j4vpt6w96t5ejvgw3tre7jsx0qgp","0.0000039","Type: REG_SZ, Length: 356, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\SpotifyAB.SpotifyMusic_1.105.152.0_x86__zpdnekdrzrea0\Spotify\Capabilities","5728"
"10:46:27.0101701 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0101847 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\SpotifyAB.SpotifyMusic_1.105.152.0_x86__zpdnekdrzrea0\Spotify\Capabilities\UrlAssociations","0.0000042","Desired Access: Read","5728"
"10:46:27.0102009 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\SpotifyAB.SpotifyMusic_1.105.152.0_x86__zpdnekdrzrea0\Spotify\Capabilities\UrlAssociations","0.0000123","Desired Access: Read","5728"
"10:46:27.0102277 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\SpotifyAB.SpotifyMusic_1.105.152.0_x86__zpdnekdrzrea0\Spotify\Capabilities\URLAssociations\http","0.0000022","Length: 90","5728"
"10:46:27.0102431 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\SpotifyAB.SpotifyMusic_1.105.152.0_x86__zpdnekdrzrea0\Spotify\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0102461 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0102568 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000025","Index: 50, Length: 220","5728"
"10:46:27.0102657 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","740"
"10:46:27.0102708 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000026","Index: 50, Name: AppXed5g10and6p1xz6w73jkn53tyeg9gx6c, Type: REG_SZ, Length: 356, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsAlarms_10.1903.1006.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0102755 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000039","","740"
"10:46:27.0102866 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXed5g10and6p1xz6w73jkn53tyeg9gx6c","0.0000043","Length: 144","5728"
"10:46:27.0103033 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXed5g10and6p1xz6w73jkn53tyeg9gx6c","0.0000042","Length: 144","5728"
"10:46:27.0103191 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXed5g10and6p1xz6w73jkn53tyeg9gx6c","0.0000038","Type: REG_SZ, Length: 356, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsAlarms_10.1903.1006.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0103378 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0103519 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsAlarms_10.1903.1006.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000038","Desired Access: Read","5728"
"10:46:27.0103677 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsAlarms_10.1903.1006.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000179","Desired Access: Read","5728"
"10:46:27.0104001 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsAlarms_10.1903.1006.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations\http","0.0000022","Length: 90","5728"
"10:46:27.0104155 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsAlarms_10.1903.1006.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations","0.0000008","","5728"
"10:46:27.0104283 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000025","Index: 51, Length: 220","5728"
"10:46:27.0104419 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000026","Index: 51, Name: AppXf26pe22x6rwvd65y363gmnvf9bptjexr, Type: REG_SZ, Length: 342, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\A278AB0D.MarchofEmpires_4.0.0.9_x86__h6adky7gbf63m\App\Capabilities","5728"
"10:46:27.0104513 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0104569 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXf26pe22x6rwvd65y363gmnvf9bptjexr","0.0000042","Length: 144","5728"
"10:46:27.0104697 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000021","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","740"
"10:46:27.0104739 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXf26pe22x6rwvd65y363gmnvf9bptjexr","0.0000043","Length: 144","5728"
"10:46:27.0104791 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000038","","740"
"10:46:27.0104901 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXf26pe22x6rwvd65y363gmnvf9bptjexr","0.0000043","Type: REG_SZ, Length: 342, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\A278AB0D.MarchofEmpires_4.0.0.9_x86__h6adky7gbf63m\App\Capabilities","5728"
"10:46:27.0105098 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0105234 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\A278AB0D.MarchofEmpires_4.0.0.9_x86__h6adky7gbf63m\App\Capabilities\UrlAssociations","0.0000043","Desired Access: Read","5728"
"10:46:27.0105392 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\A278AB0D.MarchofEmpires_4.0.0.9_x86__h6adky7gbf63m\App\Capabilities\UrlAssociations","0.0000124","Desired Access: Read","5728"
"10:46:27.0105657 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\A278AB0D.MarchofEmpires_4.0.0.9_x86__h6adky7gbf63m\App\Capabilities\URLAssociations\http","0.0000021","Length: 90","5728"
"10:46:27.0105810 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\A278AB0D.MarchofEmpires_4.0.0.9_x86__h6adky7gbf63m\App\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0105943 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000021","Index: 52, Length: 220","5728"
"10:46:27.0106079 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000021","Index: 52, Name: AppXhc8h4hexhwektvtcwwm7qc018mz172nb, Type: REG_SZ, Length: 360, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsCalculator_10.1903.21.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0106228 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXhc8h4hexhwektvtcwwm7qc018mz172nb","0.0000043","Length: 144","5728"
"10:46:27.0106395 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXhc8h4hexhwektvtcwwm7qc018mz172nb","0.0000042","Length: 144","5728"
"10:46:27.0106455 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0106591 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXhc8h4hexhwektvtcwwm7qc018mz172nb","0.0000047","Type: REG_SZ, Length: 360, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsCalculator_10.1903.21.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0106651 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000021","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","740"
"10:46:27.0106745 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000038","","740"
"10:46:27.0106800 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0106941 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsCalculator_10.1903.21.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000047","Desired Access: Read","5728"
"10:46:27.0107103 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsCalculator_10.1903.21.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000145","Desired Access: Read","5728"
"10:46:27.0107415 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsCalculator_10.1903.21.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations\http","0.0000025","Length: 90","5728"
"10:46:27.0107568 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsCalculator_10.1903.21.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0107709 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000021","Index: 53, Length: 220","5728"
"10:46:27.0107901 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000034","Index: 53, Name: AppXj9g2rdv99zjfwjwd3v9hcb3fn1xyxnp6, Type: REG_SZ, Length: 346, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MinecraftUWP_1.11.102.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0108131 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXj9g2rdv99zjfwjwd3v9hcb3fn1xyxnp6","0.0000060","Length: 144","5728"
"10:46:27.0108387 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXj9g2rdv99zjfwjwd3v9hcb3fn1xyxnp6","0.0000056","Length: 144","5728"
"10:46:27.0108626 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXj9g2rdv99zjfwjwd3v9hcb3fn1xyxnp6","0.0000060","Type: REG_SZ, Length: 346, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MinecraftUWP_1.11.102.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0108929 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0109147 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MinecraftUWP_1.11.102.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000068","Desired Access: Read","5728"
"10:46:27.0109399 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MinecraftUWP_1.11.102.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000174","Desired Access: Read","5728"
"10:46:27.0109701 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imagehlp.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0109800 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MinecraftUWP_1.11.102.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations\http","0.0000029","Length: 90","5728"
"10:46:27.0110009 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imagehlp.dll","0.0000085","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:27.0110034 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MinecraftUWP_1.11.102.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations","0.0000034","","5728"
"10:46:27.0110201 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imagehlp.dll","0.0000059","","740"
"10:46:27.0110235 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000034","Index: 54, Length: 220","5728"
"10:46:27.0110431 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000034","Index: 54, Name: AppXgfj234hjjj72yzxwz4ry7pa3zyzczw3v, Type: REG_SZ, Length: 338, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.SkypeApp_14.44.40.0_x64__kzf8qxf38zg5c\App\Capabilities","5728"
"10:46:27.0110640 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXgfj234hjjj72yzxwz4ry7pa3zyzczw3v","0.0000064","Length: 144","5728"
"10:46:27.0110879 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXgfj234hjjj72yzxwz4ry7pa3zyzczw3v","0.0000060","Length: 144","5728"
"10:46:27.0111084 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 2920, seqnum: 0, connid: 0","0"
"10:46:27.0111131 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXgfj234hjjj72yzxwz4ry7pa3zyzczw3v","0.0000068","Type: REG_SZ, Length: 338, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.SkypeApp_14.44.40.0_x64__kzf8qxf38zg5c\App\Capabilities","5728"
"10:46:27.0111438 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0111660 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.SkypeApp_14.44.40.0_x64__kzf8qxf38zg5c\App\Capabilities\UrlAssociations","0.0000098","Desired Access: Read","5728"
"10:46:27.0111984 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.SkypeApp_14.44.40.0_x64__kzf8qxf38zg5c\App\Capabilities\UrlAssociations","0.0000277","Desired Access: Read","5728"
"10:46:27.0112475 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.SkypeApp_14.44.40.0_x64__kzf8qxf38zg5c\App\Capabilities\URLAssociations\http","0.0000030","Length: 90","5728"
"10:46:27.0112658 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.SkypeApp_14.44.40.0_x64__kzf8qxf38zg5c\App\Capabilities\URLAssociations","0.0000017","","5728"
"10:46:27.0112816 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000026","Index: 55, Length: 220","5728"
"10:46:27.0112957 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imagehlp.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0112970 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000025","Index: 55, Name: AppXd2xfw98cq4qgczzfkgjkbbz7cx2q1vx8, Type: REG_SZ, Length: 350, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\89006A2E.AutodeskSketchBook_5.0.0.0_x64__tf1gferkr813w\App\Capabilities","5728"
"10:46:27.0113128 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXd2xfw98cq4qgczzfkgjkbbz7cx2q1vx8","0.0000051","Length: 144","5728"
"10:46:27.0113307 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXd2xfw98cq4qgczzfkgjkbbz7cx2q1vx8","0.0000042","Length: 144","5728"
"10:46:27.0113413 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imagehlp.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:27.0113473 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXd2xfw98cq4qgczzfkgjkbbz7cx2q1vx8","0.0000043","Type: REG_SZ, Length: 350, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\89006A2E.AutodeskSketchBook_5.0.0.0_x64__tf1gferkr813w\App\Capabilities","5728"
"10:46:27.0113588 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imagehlp.dll","0.0000064","","740"
"10:46:27.0113682 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0113836 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\89006A2E.AutodeskSketchBook_5.0.0.0_x64__tf1gferkr813w\App\Capabilities\UrlAssociations","0.0000081","Desired Access: Read","5728"
"10:46:27.0114036 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\89006A2E.AutodeskSketchBook_5.0.0.0_x64__tf1gferkr813w\App\Capabilities\UrlAssociations","0.0000133","Desired Access: Read","5728"
"10:46:27.0114318 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\89006A2E.AutodeskSketchBook_5.0.0.0_x64__tf1gferkr813w\App\Capabilities\URLAssociations\http","0.0000021","Length: 90","5728"
"10:46:27.0114476 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\89006A2E.AutodeskSketchBook_5.0.0.0_x64__tf1gferkr813w\App\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0114612 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000026","Index: 56, Length: 220","5728"
"10:46:27.0114753 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000026","Index: 56, Name: AppXst9sbthfzqpx9jx715tj6aj7cqqmx83x, Type: REG_SZ, Length: 366, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.Photos_2019.19031.17720.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0114903 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXst9sbthfzqpx9jx715tj6aj7cqqmx83x","0.0000046","Length: 144","5728"
"10:46:27.0115077 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXst9sbthfzqpx9jx715tj6aj7cqqmx83x","0.0000043","Length: 144","5728"
"10:46:27.0115240 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXst9sbthfzqpx9jx715tj6aj7cqqmx83x","0.0000042","Type: REG_SZ, Length: 366, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.Photos_2019.19031.17720.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0115436 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0115577 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.Photos_2019.19031.17720.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000047","Desired Access: Read","5728"
"10:46:27.0115743 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.Photos_2019.19031.17720.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000145","Desired Access: Read","5728"
"10:46:27.0116033 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.Photos_2019.19031.17720.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations\http","0.0000026","Length: 90","5728"
"10:46:27.0116195 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.Windows.Photos_2019.19031.17720.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0116229 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imagehlp.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0116340 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000026","Index: 57, Length: 220","5728"
"10:46:27.0116481 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000026","Index: 57, Name: AppXv9jvk9jzbaw6g6gbzfwn8daz6hz545p3, Type: REG_SZ, Length: 354, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsStore_11904.1001.1.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0116626 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXv9jvk9jzbaw6g6gbzfwn8daz6hz545p3","0.0000047","Length: 144","5728"
"10:46:27.0116665 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imagehlp.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:27.0116801 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXv9jvk9jzbaw6g6gbzfwn8daz6hz545p3","0.0000043","Length: 144","5728"
"10:46:27.0116899 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imagehlp.dll","0.0000073","","740"
"10:46:27.0117019 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\RegisteredApplications\AppXv9jvk9jzbaw6g6gbzfwn8daz6hz545p3","0.0000047","Type: REG_SZ, Length: 354, Data: Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsStore_11904.1001.1.0_x64__8wekyb3d8bbwe\App\Capabilities","5728"
"10:46:27.0117224 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0117369 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsStore_11904.1001.1.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000042","Desired Access: Read","5728"
"10:46:27.0117527 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsStore_11904.1001.1.0_x64__8wekyb3d8bbwe\App\Capabilities\UrlAssociations","0.0000145","Desired Access: Read","5728"
"10:46:27.0117821 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsStore_11904.1001.1.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations\http","0.0000021","Length: 90","5728"
"10:46:27.0117975 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.WindowsStore_11904.1001.1.0_x64__8wekyb3d8bbwe\App\Capabilities\URLAssociations","0.0000025","","5728"
"10:46:27.0118128 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\RegisteredApplications","0.0000022","Index: 58, Length: 220","5728"
"10:46:27.0118376 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\RegisteredApplications","0.0000017","","5728"
"10:46:27.0118619 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0118845 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\RegisteredApplications","0.0000111","Desired Access: Read","5728"
"10:46:27.0119195 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\RegisteredApplications","0.0000038","Query: Cached, SubKeys: 0, Values: 20","5728"
"10:46:27.0119425 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\RegisteredApplications","0.0000043","Index: 0, Name: File Explorer, Type: REG_SZ, Length: 128, Data: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Capabilities","5728"
"10:46:27.0119668 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\RegisteredApplications\File Explorer","0.0000035","Type: REG_SZ, Length: 128, Data: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Capabilities","5728"
"10:46:27.0119924 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000018","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0120142 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Capabilities\UrlAssociations","0.0000141","Desired Access: Read","5728"
"10:46:27.0120287 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rsaenh.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0120505 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Capabilities\UrlAssociations\http","0.0000030","Length: 90","5728"
"10:46:27.0120603 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rsaenh.dll","0.0000030","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.0120701 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Capabilities\UrlAssociations","0.0000017","","5728"
"10:46:27.0120714 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rsaenh.dll","0.0000042","","740"
"10:46:27.0120846 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\RegisteredApplications","0.0000026","Index: 1, Name: Paint, Type: REG_SZ, Length: 138, Data: SOFTWARE\Microsoft\Windows\CurrentVersion\Applets\Paint\Capabilities","5728"
"10:46:27.0121000 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\RegisteredApplications\Paint","0.0000025","Length: 144","5728"
"10:46:27.0121136 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\RegisteredApplications\Paint","0.0000022","Type: REG_SZ, Length: 138, Data: SOFTWARE\Microsoft\Windows\CurrentVersion\Applets\Paint\Capabilities","5728"
"10:46:27.0121298 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0121435 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Applets\Paint\Capabilities\UrlAssociations","0.0000107","Desired Access: Read","5728"
"10:46:27.0121704 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0121844 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000035","Query: Name","5728"
"10:46:27.0122092 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Applets\Paint\Capabilities\UrlAssociations","0.0000111","Desired Access: Read","5728"
"10:46:27.0122344 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\RegisteredApplications","0.0000030","Index: 2, Name: Windows Address Book, Type: REG_SZ, Length: 104, Data: Software\Clients\Contacts\Address Book\Capabilities","5728"
"10:46:27.0122536 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\RegisteredApplications\Windows Address Book","0.0000072","Type: REG_SZ, Length: 104, Data: Software\Clients\Contacts\Address Book\Capabilities","5728"
"10:46:27.0122574 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rsaenh.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0122804 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0122911 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rsaenh.dll","0.0000030","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.0122984 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Clients\Contacts\Address Book\Capabilities\UrlAssociations","0.0000149","Desired Access: Read","5728"
"10:46:27.0123014 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rsaenh.dll","0.0000038","","740"
"10:46:27.0123329 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Clients\Contacts\Address Book\Capabilities\URLAssociations\http","0.0000030","Length: 90","5728"
"10:46:27.0123547 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Clients\Contacts\Address Book\Capabilities\URLAssociations","0.0000021","","5728"
"10:46:27.0123743 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\RegisteredApplications","0.0000034","Index: 3, Name: Windows Disc Image Burner, Type: REG_SZ, Length: 80, Data: Software\Microsoft\IsoBurn\Capabilities","5728"
"10:46:27.0123956 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\RegisteredApplications\Windows Disc Image Burner","0.0000039","Type: REG_SZ, Length: 80, Data: Software\Microsoft\IsoBurn\Capabilities","5728"
"10:46:27.0124195 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0124396 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\IsoBurn\Capabilities\UrlAssociations","0.0000111","Desired Access: Read","5728"
"10:46:27.0124699 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0124823 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rsaenh.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0124887 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000038","Query: Name","5728"
"10:46:27.0125091 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rsaenh.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.0125185 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\WOW6432Node\Microsoft\IsoBurn\Capabilities\UrlAssociations","0.0000120","Desired Access: Read","5728"
"10:46:27.0125194 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rsaenh.dll","0.0000038","","740"
"10:46:27.0125510 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\RegisteredApplications","0.0000038","Index: 4, Name: Windows Photo Viewer, Type: REG_SZ, Length: 106, Data: Software\Microsoft\Windows Photo Viewer\Capabilities","5728"
"10:46:27.0125740 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\RegisteredApplications\Windows Photo Viewer","0.0000034","Type: REG_SZ, Length: 106, Data: Software\Microsoft\Windows Photo Viewer\Capabilities","5728"
"10:46:27.0125992 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0126196 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows Photo Viewer\Capabilities\UrlAssociations","0.0000116","Desired Access: Read","5728"
"10:46:27.0126512 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0126700 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000038","Query: Name","5728"
"10:46:27.0127007 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\WOW6432Node\Microsoft\Windows Photo Viewer\Capabilities\UrlAssociations","0.0000120","Desired Access: Read","5728"
"10:46:27.0127327 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\RegisteredApplications","0.0000043","Index: 5, Name: Windows Search, Type: REG_SZ, Length: 94, Data: Software\Microsoft\Windows Search\Capabilities","5728"
"10:46:27.0127562 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\RegisteredApplications\Windows Search","0.0000042","Type: REG_SZ, Length: 94, Data: Software\Microsoft\Windows Search\Capabilities","5728"
"10:46:27.0127809 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0128018 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows Search\Capabilities\UrlAssociations","0.0000128","Desired Access: Read","5728"
"10:46:27.0128176 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0128364 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows Search\Capabilities\UrlAssociations\http","0.0000034","Length: 90","5728"
"10:46:27.0128402 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:27.0128505 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000038","","740"
"10:46:27.0128616 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows Search\Capabilities\UrlAssociations","0.0000021","","5728"
"10:46:27.0128825 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\RegisteredApplications","0.0000034","Index: 6, Name: Wordpad, Type: REG_SZ, Length: 142, Data: Software\Microsoft\Windows\CurrentVersion\Applets\Wordpad\Capabilities","5728"
"10:46:27.0129034 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\RegisteredApplications\Wordpad","0.0000038","Length: 144","5728"
"10:46:27.0129239 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\RegisteredApplications\Wordpad","0.0000038","Type: REG_SZ, Length: 142, Data: Software\Microsoft\Windows\CurrentVersion\Applets\Wordpad\Capabilities","5728"
"10:46:27.0129490 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0129699 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\Applets\Wordpad\Capabilities\UrlAssociations","0.0000133","Desired Access: Read","5728"
"10:46:27.0130036 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000018","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0130233 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000793","Query: Name","5728"
"10:46:27.0131500 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Applets\Wordpad\Capabilities\UrlAssociations","0.0000183","Desired Access: Read","5728"
"10:46:27.0132016 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\RegisteredApplications","0.0000132","Index: 7, Name: Internet Explorer, Type: REG_SZ, Length: 100, Data: SOFTWARE\Microsoft\Internet Explorer\Capabilities","5728"
"10:46:27.0132895 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\RegisteredApplications\Internet Explorer","0.0000162","Type: REG_SZ, Length: 100, Data: SOFTWARE\Microsoft\Internet Explorer\Capabilities","5728"
"10:46:27.0133748 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000922","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0134056 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000051","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0134696 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Capabilities\UrlAssociations","0.0000601","Desired Access: Read","5728"
"10:46:27.0135152 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000145","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:27.0135553 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000295","","740"
"10:46:27.0136031 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Internet Explorer\Capabilities\UrlAssociations\http","0.0000141","Type: REG_SZ, Length: 16, Data: IE.HTTP","5728"
"10:46:27.0136616 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Capabilities\UrlAssociations","0.0000230","","5728"
"10:46:27.0138024 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000657","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0140264 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Capabilities","0.0000268","Desired Access: Read","5728"
"10:46:27.0140754 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Internet Explorer\Capabilities\Hidden","0.0000026","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:27.0141006 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Capabilities","0.0000017","","5728"
"10:46:27.0141228 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\RegisteredApplications","0.0000038","Index: 8, Name: Windows Media Player, Type: REG_SZ, Length: 114, Data: Software\Clients\Media\Windows Media Player\Capabilities","5728"
"10:46:27.0141411 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\RegisteredApplications\Windows Media Player","0.0000116","Type: REG_SZ, Length: 114, Data: Software\Clients\Media\Windows Media Player\Capabilities","5728"
"10:46:27.0141830 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 134, seqnum: 0, connid: 0","0"
"10:46:27.0141847 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0142098 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Clients\Media\Windows Media Player\Capabilities\UrlAssociations","0.0000214","Desired Access: Read","5728"
"10:46:27.0142563 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Clients\Media\Windows Media Player\Capabilities\URLAssociations\http","0.0000035","Length: 90","5728"
"10:46:27.0142768 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0548908","Offset: 365,568, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2884"
"10:46:27.0142836 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Clients\Media\Windows Media Player\Capabilities\URLAssociations","0.0000026","","5728"
"10:46:27.0143101 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\RegisteredApplications","0.0000055","Index: 9, Name: PowerDVD12, Type: REG_SZ, Length: 94, Data: Software\CyberLink\FileAssociations\PowerDVD12","5728"
"10:46:27.0143212 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0143361 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\RegisteredApplications\PowerDVD12","0.0000043","Type: REG_SZ, Length: 94, Data: Software\CyberLink\FileAssociations\PowerDVD12","5728"
"10:46:27.0143647 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:27.0143656 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0143843 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000073","","740"
"10:46:27.0143903 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\CyberLink\FileAssociations\PowerDVD12\UrlAssociations","0.0000064","Desired Access: Read","5728"
"10:46:27.0144210 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0144419 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000043","Query: Name","5728"
"10:46:27.0144761 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\WOW6432Node\CyberLink\FileAssociations\PowerDVD12\UrlAssociations","0.0000153","Desired Access: Read","5728"
"10:46:27.0145128 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\RegisteredApplications","0.0000038","Index: 10, Name: Firefox-6F193CCC56814779, Type: REG_SZ, Length: 146, Data: Software\Clients\StartMenuInternet\Firefox-6F193CCC56814779\Capabilities","5728"
"10:46:27.0145354 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\RegisteredApplications\Firefox-6F193CCC56814779","0.0000034","Length: 144","5728"
"10:46:27.0145554 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\RegisteredApplications\Firefox-6F193CCC56814779","0.0000034","Type: REG_SZ, Length: 146, Data: Software\Clients\StartMenuInternet\Firefox-6F193CCC56814779\Capabilities","5728"
"10:46:27.0145798 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0146015 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Clients\StartMenuInternet\Firefox-6F193CCC56814779\Capabilities\UrlAssociations","0.0000171","Desired Access: Read","5728"
"10:46:27.0146420 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Clients\StartMenuInternet\Firefox-6F193CCC56814779\Capabilities\URLAssociations\http","0.0000039","Type: REG_SZ, Length: 56, Data: FirefoxURL-6F193CCC56814779","5728"
"10:46:27.0146702 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Clients\StartMenuInternet\Firefox-6F193CCC56814779\Capabilities\URLAssociations","0.0000017","","5728"
"10:46:27.0146958 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\RegisteredApplications","0.0000038","Index: 11, Name: Google Chrome, Type: REG_SZ, Length: 124, Data: Software\Clients\StartMenuInternet\Google Chrome\Capabilities","5728"
"10:46:27.0147206 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\RegisteredApplications\Google Chrome","0.0000042","Type: REG_SZ, Length: 124, Data: Software\Clients\StartMenuInternet\Google Chrome\Capabilities","5728"
"10:46:27.0147491 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0147726 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Clients\StartMenuInternet\Google Chrome\Capabilities\UrlAssociations","0.0000137","Desired Access: Read","5728"
"10:46:27.0148093 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Clients\StartMenuInternet\Google Chrome\Capabilities\URLAssociations\http","0.0000043","Type: REG_SZ, Length: 22, Data: ChromeHTML","5728"
"10:46:27.0148366 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Clients\StartMenuInternet\Google Chrome\Capabilities\URLAssociations","0.0000017","","5728"
"10:46:27.0148596 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000018","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0148699 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0148827 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Clients\StartMenuInternet\Google Chrome\Capabilities","0.0000064","Desired Access: Read","5728"
"10:46:27.0149113 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Clients\StartMenuInternet\Google Chrome\Capabilities\Hidden","0.0000034","Length: 16","5728"
"10:46:27.0149219 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000043","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:27.0149377 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Clients\StartMenuInternet\Google Chrome\Capabilities","0.0000017","","5728"
"10:46:27.0149407 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000068","","740"
"10:46:27.0149625 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\RegisteredApplications","0.0000038","Index: 12, Name: Access.Application.16, Type: REG_SZ, Length: 102, Data: SOFTWARE\Microsoft\Office\16.0\Access\Capabilities","5728"
"10:46:27.0149864 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\RegisteredApplications\Access.Application.16","0.0000038","Type: REG_SZ, Length: 102, Data: SOFTWARE\Microsoft\Office\16.0\Access\Capabilities","5728"
"10:46:27.0150124 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0150363 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Office\16.0\Access\Capabilities\UrlAssociations","0.0000107","Desired Access: Read","5728"
"10:46:27.0150700 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0150922 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000042","Query: Name","5728"
"10:46:27.0151276 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\WOW6432Node\Microsoft\Office\16.0\Access\Capabilities\UrlAssociations","0.0000209","Desired Access: Read","5728"
"10:46:27.0151745 AM","firefox.exe","7384","RegSetInfoKey","HKLM\SOFTWARE\WOW6432Node\Microsoft\Office\16.0\Access\Capabilities\URLAssociations","0.0000017","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:27.0151967 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\WOW6432Node\Microsoft\Office\16.0\Access\Capabilities\URLAssociations\http","0.0000034","Length: 90","5728"
"10:46:27.0152240 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\WOW6432Node\Microsoft\Office\16.0\Access\Capabilities\URLAssociations","0.0000022","","5728"
"10:46:27.0152479 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\RegisteredApplications","0.0000043","Index: 13, Name: Excel.Application.16, Type: REG_SZ, Length: 116, Data: Software\Clients\Spreadsheet\Microsoft Excel\Capabilities","5728"
"10:46:27.0152658 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0152731 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\RegisteredApplications\Excel.Application.16","0.0000043","Type: REG_SZ, Length: 116, Data: Software\Clients\Spreadsheet\Microsoft Excel\Capabilities","5728"
"10:46:27.0153012 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000018","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0153123 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000043","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:27.0153251 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Clients\Spreadsheet\Microsoft Excel\Capabilities\UrlAssociations","0.0000154","Desired Access: Read","5728"
"10:46:27.0153311 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000064","","740"
"10:46:27.0153631 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Clients\Spreadsheet\Microsoft Excel\Capabilities\URLAssociations\http","0.0000034","Length: 90","5728"
"10:46:27.0153891 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Clients\Spreadsheet\Microsoft Excel\Capabilities\URLAssociations","0.0000022","","5728"
"10:46:27.0154126 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\RegisteredApplications","0.0000038","Index: 14, Name: PowerPoint.Application.16, Type: REG_SZ, Length: 128, Data: Software\Clients\Presentation\Microsoft PowerPoint\Capabilities","5728"
"10:46:27.0154378 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\RegisteredApplications\PowerPoint.Application.16","0.0000047","Type: REG_SZ, Length: 128, Data: Software\Clients\Presentation\Microsoft PowerPoint\Capabilities","5728"
"10:46:27.0154668 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0154911 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Clients\Presentation\Microsoft PowerPoint\Capabilities\UrlAssociations","0.0000213","Desired Access: Read","5728"
"10:46:27.0155372 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Clients\Presentation\Microsoft PowerPoint\Capabilities\URLAssociations\http","0.0000030","Length: 90","5728"
"10:46:27.0155632 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Clients\Presentation\Microsoft PowerPoint\Capabilities\URLAssociations","0.0000022","","5728"
"10:46:27.0155863 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\RegisteredApplications","0.0000042","Index: 15, Name: Publisher.Application.16, Type: REG_SZ, Length: 122, Data: Software\Clients\Publishing\Microsoft Publisher\Capabilities","5728"
"10:46:27.0156114 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\RegisteredApplications\Publisher.Application.16","0.0000043","Type: REG_SZ, Length: 122, Data: Software\Clients\Publishing\Microsoft Publisher\Capabilities","5728"
"10:46:27.0156323 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0156396 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0156631 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Clients\Publishing\Microsoft Publisher\Capabilities\UrlAssociations","0.0000153","Desired Access: Read","5728"
"10:46:27.0156763 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000043","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:27.0156946 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000116","","740"
"10:46:27.0157006 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Clients\Publishing\Microsoft Publisher\Capabilities\URLAssociations\http","0.0000124","Length: 90","5728"
"10:46:27.0157501 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Clients\Publishing\Microsoft Publisher\Capabilities\URLAssociations","0.0000030","","5728"
"10:46:27.0157808 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\RegisteredApplications","0.0000047","Index: 16, Name: Outlook.Application.16, Type: REG_SZ, Length: 104, Data: Software\Microsoft\Office\16.0\Outlook\Capabilities","5728"
"10:46:27.0158043 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\RegisteredApplications\Outlook.Application.16","0.0000034","Type: REG_SZ, Length: 104, Data: Software\Microsoft\Office\16.0\Outlook\Capabilities","5728"
"10:46:27.0158269 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0158457 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Office\16.0\Outlook\Capabilities\UrlAssociations","0.0000085","Desired Access: Read","5728"
"10:46:27.0158704 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0158845 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000034","Query: Name","5728"
"10:46:27.0159092 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\WOW6432Node\Microsoft\Office\16.0\Outlook\Capabilities\UrlAssociations","0.0000150","Desired Access: Read","5728"
"10:46:27.0159412 AM","firefox.exe","7384","RegSetInfoKey","HKLM\SOFTWARE\WOW6432Node\Microsoft\Office\16.0\Outlook\Capabilities\URLAssociations","0.0000009","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:27.0159553 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\WOW6432Node\Microsoft\Office\16.0\Outlook\Capabilities\URLAssociations\http","0.0000026","Length: 90","5728"
"10:46:27.0159732 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\WOW6432Node\Microsoft\Office\16.0\Outlook\Capabilities\URLAssociations","0.0000013","","5728"
"10:46:27.0159882 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\RegisteredApplications","0.0000025","Index: 17, Name: Word.Application.16, Type: REG_SZ, Length: 122, Data: Software\Clients\Word Processing\Microsoft Word\Capabilities","5728"
"10:46:27.0160048 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\RegisteredApplications\Word.Application.16","0.0000030","Type: REG_SZ, Length: 122, Data: Software\Clients\Word Processing\Microsoft Word\Capabilities","5728"
"10:46:27.0160223 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0160368 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Clients\Word Processing\Microsoft Word\Capabilities\UrlAssociations","0.0000115","Desired Access: Read","5728"
"10:46:27.0160620 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Clients\Word Processing\Microsoft Word\Capabilities\URLAssociations\http","0.0000021","Length: 90","5728"
"10:46:27.0160774 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Clients\Word Processing\Microsoft Word\Capabilities\URLAssociations","0.0000012","","5728"
"10:46:27.0160910 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\RegisteredApplications","0.0000026","Index: 18, Name: OneNote.Application.16, Type: REG_SZ, Length: 130, Data: Software\Clients\Note Taking\Microsoft OneNote\16.0\Capabilities","5728"
"10:46:27.0161064 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\RegisteredApplications\OneNote.Application.16","0.0000025","Type: REG_SZ, Length: 130, Data: Software\Clients\Note Taking\Microsoft OneNote\16.0\Capabilities","5728"
"10:46:27.0161140 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sspicli.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0161234 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0161379 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Clients\Note Taking\Microsoft OneNote\16.0\Capabilities\UrlAssociations","0.0000107","Desired Access: Read","5728"
"10:46:27.0161623 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000089","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:27.0161691 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Clients\Note Taking\Microsoft OneNote\16.0\Capabilities\URLAssociations\http","0.0000025","Length: 90","5728"
"10:46:27.0161857 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Clients\Note Taking\Microsoft OneNote\16.0\Capabilities\URLAssociations","0.0000034","","5728"
"10:46:27.0161917 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sspicli.dll","0.0000124","","740"
"10:46:27.0162083 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\RegisteredApplications","0.0000039","Index: 19, Name: VLC, Type: REG_SZ, Length: 80, Data: Software\Clients\Media\VLC\Capabilities","5728"
"10:46:27.0162327 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\RegisteredApplications\VLC","0.0000038","Type: REG_SZ, Length: 80, Data: Software\Clients\Media\VLC\Capabilities","5728"
"10:46:27.0162583 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0162800 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Clients\Media\VLC\Capabilities\UrlAssociations","0.0000115","Desired Access: Read","5728"
"10:46:27.0163129 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0163342 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000038","Query: Name","5728"
"10:46:27.0163671 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\WOW6432Node\Clients\Media\VLC\Capabilities\UrlAssociations","0.0000076","Desired Access: Read","5728"
"10:46:27.0163948 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Clients\Media\VLC\Capabilities\UrlAssociations","0.0000081","Desired Access: Read","5728"
"10:46:27.0164268 AM","firefox.exe","7384","RegEnumValue","HKLM\SOFTWARE\RegisteredApplications","0.0000030","Index: 20, Length: 220","5728"
"10:46:27.0164554 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\RegisteredApplications","0.0000017","","5728"
"10:46:27.0165147 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0165394 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000218","Desired Access: Read","5728"
"10:46:27.0165475 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sspicli.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0165855 AM","firefox.exe","7384","RegSetInfoKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000017","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:27.0165953 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000047","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:27.0166086 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000042","Index: 0, Name: AppXq0fevzme2pys62n3e0fbqa7peapykr8v","5728"
"10:46:27.0166150 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sspicli.dll","0.0000064","","740"
"10:46:27.0166333 AM","firefox.exe","7384","RegQueryKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000034","Query: Cached, SubKeys: 1, Values: 0","5728"
"10:46:27.0166559 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000039","Index: 0, Name: AppXq0fevzme2pys62n3e0fbqa7peapykr8v","5728"
"10:46:27.0166794 AM","firefox.exe","7384","RegQueryKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000017","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:27.0167041 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000098","Desired Access: Read","5728"
"10:46:27.0167430 AM","firefox.exe","7384","RegQueryKey","HKU","0.0000021","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0167673 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000094","Desired Access: Read","5728"
"10:46:27.0167971 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000099","Desired Access: Read","5728"
"10:46:27.0168313 AM","firefox.exe","7384","RegSetInfoKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000017","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:27.0168582 AM","firefox.exe","7384","RegEnumValue","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000038","Index: 0, Length: 256","5728"
"10:46:27.0168821 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000017","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:27.0169055 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000064","Desired Access: Read","5728"
"10:46:27.0169414 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sspicli.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0169495 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000021","","5728"
"10:46:27.0169763 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000018","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0169870 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000047","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:27.0170002 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\AppModel\StateChange\PackageList\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000180","Desired Access: Read","5728"
"10:46:27.0170062 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sspicli.dll","0.0000064","","740"
"10:46:27.0170463 AM","firefox.exe","7384","RegQueryKey","HKU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0170685 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000056","Desired Access: Read","5728"
"10:46:27.0170937 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0171129 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000094","Desired Access: Read","5728"
"10:46:27.0171393 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000124","Desired Access: Read","5728"
"10:46:27.0171735 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000017","","5728"
"10:46:27.0171944 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe\PackageStatus","0.0000038","Length: 16","5728"
"10:46:27.0172200 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000017","","5728"
"10:46:27.0172422 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000017","","5728"
"10:46:27.0172639 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000051","Index: 1, Length: 288","5728"
"10:46:27.0172895 AM","firefox.exe","7384","RegCloseKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000026","","5728"
"10:46:27.0173130 AM","firefox.exe","7384","RegCloseKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000017","","5728"
"10:46:27.0173403 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0173642 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000102","Desired Access: Read","5728"
"10:46:27.0173958 AM","firefox.exe","7384","RegSetInfoKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000017","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:27.0174175 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000039","Index: 0, Name: AppXq0fevzme2pys62n3e0fbqa7peapykr8v","5728"
"10:46:27.0174414 AM","firefox.exe","7384","RegQueryKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000034","Query: Cached, SubKeys: 1, Values: 0","5728"
"10:46:27.0174457 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0174657 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000034","Index: 0, Name: AppXq0fevzme2pys62n3e0fbqa7peapykr8v","5728"
"10:46:27.0174785 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000043","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:27.0174888 AM","firefox.exe","7384","RegQueryKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000017","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:27.0174965 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000064","","740"
"10:46:27.0175127 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000102","Desired Access: Read","5728"
"10:46:27.0175541 AM","firefox.exe","7384","RegQueryKey","HKU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0175779 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000060","Desired Access: Read","5728"
"10:46:27.0175997 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000077","Desired Access: Read","5728"
"10:46:27.0176240 AM","firefox.exe","7384","RegSetInfoKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000009","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:27.0176407 AM","firefox.exe","7384","RegEnumValue","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000030","Index: 0, Length: 256","5728"
"10:46:27.0176573 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000013","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:27.0176744 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000038","Desired Access: Read","5728"
"10:46:27.0176953 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000013","","5728"
"10:46:27.0177102 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0177247 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\AppModel\StateChange\PackageList\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000094","Desired Access: Read","5728"
"10:46:27.0177478 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0177516 AM","firefox.exe","7384","RegQueryKey","HKU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0177657 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000042","Desired Access: Read","5728"
"10:46:27.0177708 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000030","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:27.0177819 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000047","","740"
"10:46:27.0177836 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0177977 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000047","Desired Access: Read","5728"
"10:46:27.0178143 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000060","Desired Access: Read","5728"
"10:46:27.0178352 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000013","","5728"
"10:46:27.0178497 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe\PackageStatus","0.0000030","Length: 16","5728"
"10:46:27.0178655 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000013","","5728"
"10:46:27.0178787 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000009","","5728"
"10:46:27.0178941 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000051","Index: 1, Length: 288","5728"
"10:46:27.0179184 AM","firefox.exe","7384","RegCloseKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000017","","5728"
"10:46:27.0179402 AM","firefox.exe","7384","RegCloseKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000013","","5728"
"10:46:27.0179918 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000047","Query: Name","5728"
"10:46:27.0180195 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000018","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0180405 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0180554 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0180652 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000132","Desired Access: Query Value","5728"
"10:46:27.0180904 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000042","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:27.0181040 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000047","Query: Name","5728"
"10:46:27.0181096 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000068","","740"
"10:46:27.0181313 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0181574 AM","firefox.exe","7384","RegOpenKey","HKCR\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000102","Desired Access: Maximum Allowed","5728"
"10:46:27.0181864 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\AppXq0fevzme2pys62n3e0fbqa7peapykr8v\URL Protocol","0.0000030","Length: 12","5728"
"10:46:27.0182103 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000017","","5728"
"10:46:27.0182453 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0182662 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000098","Desired Access: Read","5728"
"10:46:27.0183105 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000043","Query: Name","5728"
"10:46:27.0183349 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0183545 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0183775 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\http","0.0000051","Desired Access: Read","5728"
"10:46:27.0184129 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0184364 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000158","Desired Access: Read","5728"
"10:46:27.0184795 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0185030 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000093","Desired Access: Query Value","5728"
"10:46:27.0185358 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice\ProgId","0.0000043","Type: REG_SZ, Length: 56, Data: FirefoxURL-6F193CCC56814779","5728"
"10:46:27.0185512 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0185631 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000022","","5728"
"10:46:27.0185857 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0185985 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000043","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","740"
"10:46:27.0186092 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000043","Desired Access: Query Value","5728"
"10:46:27.0186173 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000064","","740"
"10:46:27.0186339 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice\Hash","0.0000060","Type: REG_SZ, Length: 26, Data: WGuVFWKHpGI=","5728"
"10:46:27.0186617 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000017","","5728"
"10:46:27.0186843 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0187082 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000043","Desired Access: Read","5728"
"10:46:27.0187338 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0187560 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000042","Desired Access: Read","5728"
"10:46:27.0187824 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000034","Query: Cached, SubKeys: 0, Values: 2","5728"
"10:46:27.0188110 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000017","","5728"
"10:46:27.0188981 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000017","","5728"
"10:46:27.0189258 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000017","","5728"
"10:46:27.0189424 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0189488 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000043","Query: Name","5728"
"10:46:27.0189736 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0189877 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000038","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","740"
"10:46:27.0189932 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0190060 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000068","","740"
"10:46:27.0190167 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779","0.0000055","Desired Access: Read","5728"
"10:46:27.0190453 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000128","Desired Access: Read","5728"
"10:46:27.0190832 AM","firefox.exe","7384","RegCloseKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000017","","5728"
"10:46:27.0191097 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000042","Query: Name","5728"
"10:46:27.0191340 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0191541 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0191775 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779","0.0000047","Desired Access: Read","5728"
"10:46:27.0192048 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000060","Desired Access: Read","5728"
"10:46:27.0192321 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000047","Query: Name","5728"
"10:46:27.0192565 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0192833 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779\CurVer","0.0000064","Desired Access: Query Value","5728"
"10:46:27.0192978 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0193085 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0193303 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779\CurVer","0.0000042","Desired Access: Query Value","5728"
"10:46:27.0193405 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000047","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","740"
"10:46:27.0193567 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000043","Query: Name","5728"
"10:46:27.0193593 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000060","","740"
"10:46:27.0193810 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0194066 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779","0.0000056","Desired Access: Read","5728"
"10:46:27.0194297 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0194489 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000038","Desired Access: Read","5728"
"10:46:27.0194736 AM","firefox.exe","7384","RegCloseKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000013","","5728"
"10:46:27.0194984 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000038","Query: Name","5728"
"10:46:27.0195184 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0195406 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779\Progid","0.0000060","Desired Access: Query Value","5728"
"10:46:27.0195645 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0195858 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779\Progid","0.0000064","Desired Access: Query Value","5728"
"10:46:27.0196204 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\http","0.0000017","","5728"
"10:46:27.0196434 AM","firefox.exe","7384","RegCloseKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000017","","5728"
"10:46:27.0196712 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000089","Query: Name","5728"
"10:46:27.0196934 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0197049 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0197177 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000038","Desired Access: Read","5728"
"10:46:27.0197343 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000107","Desired Access: Read","5728"
"10:46:27.0197591 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000034","Query: Name","5728"
"10:46:27.0197719 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0197744 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0197898 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000043","Desired Access: Maximum Allowed","5728"
"10:46:27.0198051 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000035","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/27/2019 7:17:12 PM, FileAttributes: A","740"
"10:46:27.0198064 AM","firefox.exe","7384","RegQueryValue","HKCR\FirefoxURL-6F193CCC56814779\shell\open\command\(Default)","0.0000030","Type: REG_SZ, Length: 128, Data: ""C:\Program Files\Firefox Nightly\firefox.exe"" -osint -url ""%1""","5728"
"10:46:27.0198175 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000047","","740"
"10:46:27.0198231 AM","firefox.exe","7384","RegCloseKey","HKCR\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000012","","5728"
"10:46:27.0198589 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000030","Query: Name","5728"
"10:46:27.0198751 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0198866 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0199003 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\.html","0.0000068","Desired Access: Read","5728"
"10:46:27.0199229 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\.html","0.0000026","Query: Name","5728"
"10:46:27.0199374 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\.html","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0199519 AM","firefox.exe","7384","RegOpenKey","HKCR\.html","0.0000098","Desired Access: Maximum Allowed, Granted Access: Read","5728"
"10:46:27.0199758 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\.html\(Default)","0.0000026","Length: 144","5728"
"10:46:27.0199899 AM","firefox.exe","7384","RegQueryValue","HKCR\.html\(Default)","0.0000026","Type: REG_SZ, Length: 18, Data: htmlfile","5728"
"10:46:27.0200048 AM","firefox.exe","7384","RegCloseKey","HKCR\.html","0.0000013","","5728"
"10:46:27.0200364 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0200390 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0200509 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts","0.0000051","Desired Access: Read","5728"
"10:46:27.0200693 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0200710 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000029","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/27/2019 7:17:12 PM, FileAttributes: A","740"
"10:46:27.0200825 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html","0.0000072","Desired Access: Read","5728"
"10:46:27.0200855 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000051","","740"
"10:46:27.0201051 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html","0.0000026","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0201269 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html","0.0000038","Desired Access: Read","5728"
"10:46:27.0201503 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0201717 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\UserChoice","0.0000085","Desired Access: Query Value","5728"
"10:46:27.0202002 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\UserChoice\ProgId","0.0000030","Type: REG_SZ, Length: 58, Data: FirefoxHTML-6F193CCC56814779","5728"
"10:46:27.0202182 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\UserChoice","0.0000012","","5728"
"10:46:27.0202322 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0202455 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\UserChoice","0.0000021","Desired Access: Query Value","5728"
"10:46:27.0202591 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\UserChoice\Hash","0.0000026","Type: REG_SZ, Length: 26, Data: H6Dyj+r5EFU=","5728"
"10:46:27.0202741 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\UserChoice","0.0000012","","5728"
"10:46:27.0202873 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0203001 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html","0.0000021","Desired Access: Read","5728"
"10:46:27.0203137 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0203265 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\UserChoice","0.0000094","Desired Access: Read","5728"
"10:46:27.0203291 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0203487 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\UserChoice","0.0000022","Query: Cached, SubKeys: 0, Values: 2","5728"
"10:46:27.0203637 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\UserChoice","0.0000012","","5728"
"10:46:27.0203747 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000039","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/27/2019 7:17:12 PM, FileAttributes: A","740"
"10:46:27.0203914 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000060","","740"
"10:46:27.0203995 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html","0.0000013","","5728"
"10:46:27.0204136 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html","0.0000013","","5728"
"10:46:27.0204277 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html","0.0000008","","5728"
"10:46:27.0204447 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000039","Query: Name","5728"
"10:46:27.0204609 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0204720 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0204848 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxHTML-6F193CCC56814779","0.0000039","Desired Access: Read","5728"
"10:46:27.0205019 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxHTML-6F193CCC56814779","0.0000102","Desired Access: Read","5728"
"10:46:27.0205262 AM","firefox.exe","7384","RegCloseKey","HKCR\FirefoxHTML-6F193CCC56814779","0.0000013","","5728"
"10:46:27.0205407 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000026","Query: Name","5728"
"10:46:27.0205548 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0205659 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0205787 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxHTML-6F193CCC56814779","0.0000030","Desired Access: Read","5728"
"10:46:27.0205941 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxHTML-6F193CCC56814779","0.0000034","Desired Access: Read","5728"
"10:46:27.0206103 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxHTML-6F193CCC56814779","0.0000034","Query: Name","5728"
"10:46:27.0206248 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxHTML-6F193CCC56814779","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0206410 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxHTML-6F193CCC56814779\CurVer","0.0000043","Desired Access: Query Value","5728"
"10:46:27.0206563 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxHTML-6F193CCC56814779","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0206726 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxHTML-6F193CCC56814779\CurVer","0.0000029","Desired Access: Query Value","5728"
"10:46:27.0206888 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxHTML-6F193CCC56814779","0.0000030","Query: Name","5728"
"10:46:27.0207033 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxHTML-6F193CCC56814779","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0207182 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxHTML-6F193CCC56814779","0.0000043","Desired Access: Read","5728"
"10:46:27.0207336 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxHTML-6F193CCC56814779","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0207442 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0207464 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxHTML-6F193CCC56814779","0.0000021","Desired Access: Read","5728"
"10:46:27.0207617 AM","firefox.exe","7384","RegCloseKey","HKCR\FirefoxHTML-6F193CCC56814779","0.0000013","","5728"
"10:46:27.0207750 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000029","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:36 PM, FileAttributes: A","740"
"10:46:27.0207767 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxHTML-6F193CCC56814779","0.0000030","Query: Name","5728"
"10:46:27.0207861 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000042","","740"
"10:46:27.0207912 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxHTML-6F193CCC56814779","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0208065 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxHTML-6F193CCC56814779\Progid","0.0000039","Desired Access: Query Value","5728"
"10:46:27.0208215 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxHTML-6F193CCC56814779","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0208343 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxHTML-6F193CCC56814779\Progid","0.0000030","Desired Access: Query Value","5728"
"10:46:27.0208509 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\.html","0.0000013","","5728"
"10:46:27.0208658 AM","firefox.exe","7384","RegCloseKey","HKCR\FirefoxHTML-6F193CCC56814779","0.0000009","","5728"
"10:46:27.0208821 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000025","Query: Name","5728"
"10:46:27.0208957 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0209064 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0209213 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxHTML-6F193CCC56814779\shell\open\command","0.0000056","Desired Access: Read","5728"
"10:46:27.0209461 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxHTML-6F193CCC56814779\shell\open\command","0.0000128","Desired Access: Read","5728"
"10:46:27.0209819 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxHTML-6F193CCC56814779\shell\open\command","0.0000047","Query: Name","5728"
"10:46:27.0210049 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxHTML-6F193CCC56814779\shell\open\command","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.0210297 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxHTML-6F193CCC56814779\shell\open\command","0.0000060","Desired Access: Maximum Allowed","5728"
"10:46:27.0210544 AM","firefox.exe","7384","RegQueryValue","HKCR\FirefoxHTML-6F193CCC56814779\shell\open\command\(Default)","0.0000043","Type: REG_SZ, Length: 128, Data: ""C:\Program Files\Firefox Nightly\firefox.exe"" -osint -url ""%1""","5728"
"10:46:27.0210787 AM","firefox.exe","7384","RegCloseKey","HKCR\FirefoxHTML-6F193CCC56814779\shell\open\command","0.0000022","","5728"
"10:46:27.0210984 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0211453 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000043","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:36 PM, FileAttributes: A","740"
"10:46:27.0211632 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000069","","740"
"10:46:27.0212336 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000252","Desired Access: Read","740"
"10:46:27.0214269 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\fwpuclnt.dll.mui","0.0000222","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0214747 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\fwpuclnt.dll.mui","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:27.0214943 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\fwpuclnt.dll.mui","0.0000043","AllocationSize: 151,552, EndOfFile: 147,968, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:27.0215259 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\fwpuclnt.dll.mui","0.0000030","SyncType: SyncTypeOther","740"
"10:46:27.0218514 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.0219005 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:36 PM, FileAttributes: A","740"
"10:46:27.0219189 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000068","","740"
"10:46:27.0219888 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0810681","Offset: 14,213,120, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:27.0496518 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000538","","8844"
"10:46:27.0499739 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8844"
"10:46:27.0500042 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000039","CreationTime: 3/26/2020 10:46:26 AM, LastAccessTime: 3/26/2020 10:46:26 AM, LastWriteTime: 3/26/2020 10:46:26 AM, ChangeTime: 3/26/2020 10:46:26 AM, AllocationSize: 16384, EndOfFile: 13482, FileAttributes: A","8844"
"10:46:27.0500179 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000047","","8844"
"10:46:27.0502129 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8844"
"10:46:27.0502363 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000030","CreationTime: 3/26/2020 10:46:26 AM, LastAccessTime: 3/26/2020 10:46:26 AM, LastWriteTime: 3/26/2020 10:46:26 AM, ChangeTime: 3/26/2020 10:46:26 AM, FileAttributes: A","8844"
"10:46:27.0502474 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000039","","8844"
"10:46:27.0503554 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000213","Desired Access: Read Attributes, Delete, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8844"
"10:46:27.0503899 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000039","Attributes: A, ReparseTag: 0x0","8844"
"10:46:27.0504074 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000022","CreationTime: 3/26/2020 10:46:26 AM, LastAccessTime: 3/26/2020 10:46:26 AM, LastWriteTime: 3/26/2020 10:46:26 AM, ChangeTime: 3/26/2020 10:46:26 AM, FileAttributes: A","8844"
"10:46:27.0505034 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000133","Desired Access: Write Data/Add File, Synchronize, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","8844"
"10:46:27.0508490 AM","firefox.exe","7384","SetRenameInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0002343","ReplaceIfExists: True, FileName: C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","8844"
"10:46:27.0510927 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000200","","8844"
"10:46:27.0511417 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000260","","8844"
"10:46:27.0523065 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0466744","Offset: 12,595,200, Length: 4,096","7760"
"10:46:27.0523343 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0465745","Offset: 12,595,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:27.0660473 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0196063","Offset: 14,954,496, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.0698366 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000179","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:27.0699121 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:27.0699697 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Offset: 1,073,741,824, Length: 1","2884"
"10:46:27.0710347 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000729","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.0712045 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000290","Offset: 24, Length: 16","2884"
"10:46:27.0720271 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000614","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.0721675 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000157","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:27.0722583 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000316","Offset: 98,304, Length: 32,768","2884"
"10:46:27.0723590 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000098","Offset: 1,073,741,826, Length: 510","2884"
"10:46:27.0725625 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000103","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:27.0726108 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:27.0726521 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000052","Offset: 1,073,741,824, Length: 1","2884"
"10:46:27.0734649 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000594","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.0736002 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000192","Offset: 24, Length: 16","2884"
"10:46:27.0743738 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000567","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.0745018 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000128","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:27.0745820 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000094","Offset: 1,073,741,826, Length: 510","2884"
"10:46:27.0747202 AM","firefox.exe","7384","ReadFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0809051","Offset: 266,240, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2884"
"10:46:27.0955958 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0295492","Offset: 8,052,736, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2596"
"10:46:27.0959166 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 8936","7392"
"10:46:27.0970174 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.1036230","Offset: 13,488,128, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8936"
"10:46:27.0972103 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000217","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:29:46 PM, ChangeTime: 3/20/2019 7:10:41 PM, AllocationSize: 462848, EndOfFile: 460400, FileAttributes: A","2512"
"10:46:27.0972973 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000354","","2512"
"10:46:27.0974991 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000213","","2512"
"10:46:27.0975725 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000205","","2512"
"10:46:27.0985880 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000644","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.0986989 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000132","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:29:46 PM, ChangeTime: 3/20/2019 7:10:41 PM, AllocationSize: 462848, EndOfFile: 460400, FileAttributes: A","2512"
"10:46:27.0987497 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000192","","2512"
"10:46:27.0991166 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0096401","Offset: 12,812,288, Length: 4,096","7760"
"10:46:27.0992344 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0094447","Offset: 12,812,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:27.0993278 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 5504","7392"
"10:46:27.1000502 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000738","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.1001961 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 6024","7392"
"10:46:27.1002166 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000183","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:27.1003249 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000184","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.1004103 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000149","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:27.1005477 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000115","SyncType: SyncTypeOther","2512"
"10:46:27.1007614 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0301965","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.1030240 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0069910","Offset: 5,828,608, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.1035356 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.1096484","Offset: 14,245,888, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:27.1157669 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0318140","Offset: 11,075,584, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.1311380 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0366080","Offset: 430,080, Length: 30,320, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.1497262 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0856073","Offset: 11,042,816, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.1559384 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000081","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:27.1559717 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:27.1559965 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,824, Length: 1","2884"
"10:46:27.1564513 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.1565166 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000102","Offset: 24, Length: 16","2884"
"10:46:27.1568477 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.1569019 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000089","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:27.1569509 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 1,073,741,826, Length: 510","2884"
"10:46:27.1571135 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:27.1571357 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:27.1571549 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","2884"
"10:46:27.1574877 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.1575419 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000123","Offset: 24, Length: 16","2884"
"10:46:27.1578717 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.1579242 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:27.1579587 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","2884"
"10:46:27.1580888 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:27.1581102 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:27.1581298 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","2884"
"10:46:27.1584600 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.1585130 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000068","Offset: 24, Length: 16","2884"
"10:46:27.1588248 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.1588743 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000052","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:27.1589140 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","2884"
"10:46:27.1589819 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:27.1590023 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:27.1590211 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","2884"
"10:46:27.1593437 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.1593962 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Offset: 24, Length: 16","2884"
"10:46:27.1597068 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.1597567 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:27.1598168 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000111","Offset: 65,536, Length: 32,768","2884"
"10:46:27.1598565 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","2884"
"10:46:27.1599133 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:27.1599333 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:27.1599521 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","2884"
"10:46:27.1602747 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.1603250 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Offset: 24, Length: 16","2884"
"10:46:27.1606352 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.1606843 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:27.1607184 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","2884"
"10:46:27.1607713 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:27.1607914 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:27.1608106 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","2884"
"10:46:27.1611276 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.1611788 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","2884"
"10:46:27.1614851 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.1615338 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000046","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:27.1615670 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","2884"
"10:46:27.1616144 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:27.1616340 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:27.1616524 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","2884"
"10:46:27.1619626 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.1620125 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000059","Offset: 24, Length: 16","2884"
"10:46:27.1623188 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.1623696 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:27.1624042 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","2884"
"10:46:27.1624724 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:27.1624925 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:27.1625112 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,824, Length: 1","2884"
"10:46:27.1628449 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.1628987 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000068","Offset: 24, Length: 16","2884"
"10:46:27.1631559 AM","firefox.exe","7384","QueryInformationVolume","C:\ProgramData\Mozilla\updates\6F193CCC56814779\update-config.json","0.0000043","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","5244"
"10:46:27.1631777 AM","firefox.exe","7384","QueryAllInformationFile","C:\ProgramData\Mozilla\updates\6F193CCC56814779\update-config.json","0.0000060","CreationTime: 1/10/2019 10:30:07 AM, LastAccessTime: 1/10/2019 10:30:07 AM, LastWriteTime: 1/10/2019 10:31:05 AM, ChangeTime: 3/25/2020 10:26:40 AM, FileAttributes: ANCI, AllocationSize: 32, EndOfFile: 25, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x70000000154d4, EaSize: 0, Access: Generic Read, Position: 0, Mode: Sequential Access, Synchronous IO Non-Alert, AlignmentRequirement: Word","5244"
"10:46:27.1632025 AM","firefox.exe","7384","ReadFile","C:\ProgramData\Mozilla\updates\6F193CCC56814779\update-config.json","0.0000678","Offset: 0, Length: 25, Priority: Normal","5244"
"10:46:27.1632217 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000221","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.1632473 AM","firefox.exe","7384","ReadFile","C:\ProgramData\Mozilla\updates\6F193CCC56814779\update-config.json","0.0000081","Offset: 0, Length: 25, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5244"
"10:46:27.1632729 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:27.1632908 AM","firefox.exe","7384","CloseFile","C:\ProgramData\Mozilla\updates\6F193CCC56814779\update-config.json","0.0000094","","5244"
"10:46:27.1633142 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000035","Offset: 1,073,741,826, Length: 510","2884"
"10:46:27.1633881 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:27.1634090 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:27.1634282 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","2884"
"10:46:27.1637503 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.1638023 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000077","Offset: 24, Length: 16","2884"
"10:46:27.1641270 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000244","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.1641812 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:27.1642183 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000035","Offset: 1,073,741,826, Length: 510","2884"
"10:46:27.1643741 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:27.1643958 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:27.1644155 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,824, Length: 1","2884"
"10:46:27.1647551 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.1648084 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000073","Offset: 24, Length: 16","2884"
"10:46:27.1651289 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000221","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.1651801 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:27.1652180 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","2884"
"10:46:27.1652743 AM","firefox.exe","7384","ReadFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0234902","Offset: 294,912, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2884"
"10:46:27.1678749 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0090918","Offset: 172,032, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.1770798 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0005444","Offset: 204,800, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.1777108 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0057468","Offset: 237,568, Length: 65,536, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.1835541 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0004010","Offset: 303,104, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.1840456 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0003238","Offset: 335,872, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.1844317 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0003238","Offset: 380,928, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.1848161 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0003333","Offset: 413,696, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.1852368 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:27.1852590 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000073","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:29:46 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A, AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x30000000623b7, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:27.1854591 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000179","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.1854979 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:27.1855176 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.1855312 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000022","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:27.1855513 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:27.1856405 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000076","","2512"
"10:46:27.1857936 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.1858252 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:27.1858414 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.1858525 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:27.1858713 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:27.1859088 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","","2512"
"10:46:27.1862625 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.1862924 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:27.1863069 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.1863180 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:27.1863359 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:27.1863905 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0003473","Offset: 32,768, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.1867959 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0003891","Offset: 65,536, Length: 65,536, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.1872558 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0003477","Offset: 131,072, Length: 40,960, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.1877571 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0003388","Offset: 368,640, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.1882231 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000094","","2512"
"10:46:27.1888153 AM","firefox.exe","7384","ReadFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0328726","Offset: 282,624, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2884"
"10:46:27.1948313 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000149","","2512"
"10:46:27.1949307 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","","2512"
"10:46:27.1954820 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.1955251 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000042","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:27.1955400 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000060","","2512"
"10:46:27.1958041 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.1959590 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000059","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:27.1959790 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000077","","2512"
"10:46:27.1962427 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.1962768 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:27.1962884 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000042","","2512"
"10:46:27.1963289 AM","firefox.exe","7384","CreateFile","C:\","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.1963528 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000149","Filter: Windows, 1: Windows","2512"
"10:46:27.1963805 AM","firefox.exe","7384","CloseFile","C:\","0.0000047","","2512"
"10:46:27.1964778 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.1965004 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000115","Filter: System32, 1: System32","2512"
"10:46:27.1965230 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:27.1966190 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.1966412 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wsock32.dll","0.0000124","Filter: wsock32.dll, 1: wsock32.dll","2512"
"10:46:27.1966647 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:27.1968810 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.1969032 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:27.1969134 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000043","","2512"
"10:46:27.1969471 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.1969659 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:27.1969885 AM","firefox.exe","7384","CloseFile","C:\","0.0000047","","2512"
"10:46:27.1971093 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000140","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.1971404 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000137","Filter: System32, 1: System32","2512"
"10:46:27.1971699 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:27.1973900 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.1974109 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:27.1974220 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000039","","2512"
"10:46:27.1974557 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.1974741 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:27.1974945 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:27.1975850 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.1976055 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:27.1976255 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:27.1977399 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.1977676 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmmbase.dll","0.0000030","AllocationSize: 163,840, EndOfFile: 162,240, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.1977855 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.1977988 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmmbase.dll","0.0000017","AllocationSize: 163,840, EndOfFile: 162,240, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.1978197 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:27.1978709 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000055","","2512"
"10:46:27.1979989 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.1980270 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmmbase.dll","0.0000030","AllocationSize: 163,840, EndOfFile: 162,240, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.1980415 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.1980531 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmmbase.dll","0.0000017","AllocationSize: 163,840, EndOfFile: 162,240, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.1980718 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:27.1981183 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\winmmbase.dll","0.0083418","Offset: 131,072, Length: 31,168, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.2065083 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmmbase.dll","0.0000047","AllocationSize: 163,840, EndOfFile: 162,240, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.2065305 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000081","","2512"
"10:46:27.2067012 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.2067327 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmmbase.dll","0.0000030","AllocationSize: 163,840, EndOfFile: 162,240, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.2067490 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.2067618 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmmbase.dll","0.0000017","AllocationSize: 163,840, EndOfFile: 162,240, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.2067814 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:27.2070741 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000060","","2512"
"10:46:27.2074449 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.2074683 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:27.2074803 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000047","","2512"
"10:46:27.2076748 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.2076962 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000025","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:27.2077068 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000039","","2512"
"10:46:27.2079099 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.2079295 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000026","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:27.2079398 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000038","","2512"
"10:46:27.2079743 AM","firefox.exe","7384","CreateFile","C:\","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.2079957 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000124","Filter: Windows, 1: Windows","2512"
"10:46:27.2080200 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:27.2081126 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.2081348 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:27.2081565 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:27.2083647 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.2083980 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:27.2084083 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000042","","2512"
"10:46:27.2084420 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.2084607 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000099","Filter: Windows, 1: Windows","2512"
"10:46:27.2084812 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:27.2085721 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.2085926 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:27.2086139 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:27.2087057 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.2087266 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\cfgmgr32.dll","0.0000123","Filter: cfgmgr32.dll, 1: cfgmgr32.dll","2512"
"10:46:27.2087492 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:27.2089194 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.2089480 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:27.2089587 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000042","","2512"
"10:46:27.2089919 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.2090103 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000090","Filter: Windows, 1: Windows","2512"
"10:46:27.2090295 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:27.2091182 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.2091387 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:27.2091579 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:27.2092484 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.2092684 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\cfgmgr32.dll","0.0000115","Filter: cfgmgr32.dll, 1: cfgmgr32.dll","2512"
"10:46:27.2092902 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:27.2093986 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.2094335 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000043","AllocationSize: 290,816, EndOfFile: 286,744, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.2094519 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cfgmgr32.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.2094643 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000017","AllocationSize: 290,816, EndOfFile: 286,744, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.2094941 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cfgmgr32.dll","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:27.2095586 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000072","","2512"
"10:46:27.2097373 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000167","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.2097873 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000042","AllocationSize: 290,816, EndOfFile: 286,744, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.2098086 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cfgmgr32.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.2098265 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000026","AllocationSize: 290,816, EndOfFile: 286,744, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.2098564 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cfgmgr32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:27.2098982 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\cfgmgr32.dll","0.1041827","Offset: 258,048, Length: 28,696, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.2132829 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0444370","Offset: 14,278,656, Length: 65,536, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:27.2217356 AM","firefox.exe","7384","ReadFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0221735","Offset: 311,296, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2884"
"10:46:27.2388121 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0406926","Offset: 1,626,112, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2596"
"10:46:27.2397640 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0062157","Offset: 2,748,416, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.2440158 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:27.2440354 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:27.2440499 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","2884"
"10:46:27.2443354 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.2443784 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Offset: 24, Length: 16","2884"
"10:46:27.2445884 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.2446229 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:27.2446519 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","2884"
"10:46:27.2446916 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:27.2447027 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:27.2447125 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","2884"
"10:46:27.2449037 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.2449352 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","2884"
"10:46:27.2451170 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.2451473 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:27.2451682 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","2884"
"10:46:27.2452134 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:27.2452250 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:27.2452352 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000008","Offset: 1,073,741,824, Length: 1","2884"
"10:46:27.2454263 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.2454579 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000043","Offset: 24, Length: 16","2884"
"10:46:27.2456977 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-wal","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.2457395 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000043","AllocationSize: 294,912, EndOfFile: 294,912, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:27.2457911 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0136022","Offset: 196,608, Length: 32,768","2884"
"10:46:27.2458295 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\LQ450C~1.TES\key4.db","0.0134554","Offset: 196,608, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2884"
"10:46:27.2484638 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 880","7392"
"10:46:27.2484830 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0184316","Offset: 13,520,896, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5504"
"10:46:27.2521976 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0490581","Offset: 8,085,504, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.2596241 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000231","Offset: 1,073,741,826, Length: 510","2884"
"10:46:27.2601340 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 8316","2884"
"10:46:27.2616819 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\security_state","0.0113063","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","8316"
"10:46:27.2672568 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0217839","Offset: 13,553,664, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5504"
"10:46:27.2737349 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\security_state","0.0001506","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8316"
"10:46:27.2740578 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\security_state","0.0000137","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","8316"
"10:46:27.2741312 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\security_state","0.0000226","CreationTime: 6/19/2019 4:54:27 PM, LastAccessTime: 6/19/2019 4:54:27 PM, LastWriteTime: 6/19/2019 4:54:27 PM, ChangeTime: 6/19/2019 4:54:27 PM, FileAttributes: D, AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: True, IndexNumber: 0x700000000bd1e, EaSize: 0, Access: Read Attributes, Synchronize, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","8316"
"10:46:27.2742089 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\security_state","0.0000205","","8316"
"10:46:27.2747738 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\security_state","0.0000614","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8316"
"10:46:27.2749056 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\security_state","0.0000098","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","8316"
"10:46:27.2749581 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\security_state","0.0000192","CreationTime: 6/19/2019 4:54:27 PM, LastAccessTime: 6/19/2019 4:54:27 PM, LastWriteTime: 6/19/2019 4:54:27 PM, ChangeTime: 6/19/2019 4:54:27 PM, FileAttributes: D, AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: True, IndexNumber: 0x700000000bd1e, EaSize: 0, Access: Read Attributes, Synchronize, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","8316"
"10:46:27.2750208 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\security_state","0.0000162","","8316"
"10:46:27.2755473 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\security_state","0.0000581","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8316"
"10:46:27.2757009 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\security_state","0.0000094","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","8316"
"10:46:27.2757509 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\security_state","0.0000179","CreationTime: 6/19/2019 4:54:27 PM, LastAccessTime: 6/19/2019 4:54:27 PM, LastWriteTime: 6/19/2019 4:54:27 PM, ChangeTime: 6/19/2019 4:54:27 PM, FileAttributes: D, AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: True, IndexNumber: 0x700000000bd1e, EaSize: 0, Access: Read Attributes, Synchronize, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","8316"
"10:46:27.2758132 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\security_state","0.0000170","","8316"
"10:46:27.2762983 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\security_state\data.safe.bin","0.0000512","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:27.2768909 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\revocations.txt","0.0000546","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:27.2773598 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\security_state","0.0000649","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","8316"
"10:46:27.2778172 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\security_state","0.0000551","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8316"
"10:46:27.2779409 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\security_state","0.0000099","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","8316"
"10:46:27.2779956 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\security_state","0.0000196","CreationTime: 6/19/2019 4:54:27 PM, LastAccessTime: 6/19/2019 4:54:27 PM, LastWriteTime: 6/19/2019 4:54:27 PM, ChangeTime: 6/19/2019 4:54:27 PM, FileAttributes: D, AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: True, IndexNumber: 0x700000000bd1e, EaSize: 0, Access: Read Attributes, Synchronize, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","8316"
"10:46:27.2780604 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\security_state","0.0000158","","8316"
"10:46:27.2785212 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\security_state\crlite.filter","0.0000469","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:27.2790033 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000146","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:27.2790609 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:27.2791194 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Offset: 1,073,741,824, Length: 1","8316"
"10:46:27.2802676 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000486","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:27.2803793 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000167","Offset: 24, Length: 16","8316"
"10:46:27.2808419 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000473","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:27.2809515 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000120","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:27.2810249 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000085","Offset: 1,073,741,826, Length: 510","8316"
"10:46:27.2813551 AM","firefox.exe","7384","ReadFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0010411","Offset: 184,320, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8316"
"10:46:27.2827171 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000119","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:27.2827768 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:27.2828229 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 1,073,741,824, Length: 1","8316"
"10:46:27.2836600 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000546","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:27.2838068 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000170","Offset: 24, Length: 16","8316"
"10:46:27.2845172 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000520","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:27.2846362 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000115","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:27.2847322 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000085","Offset: 1,073,741,826, Length: 510","8316"
"10:46:27.2849007 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000081","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:27.2849455 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:27.2849861 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 1,073,741,824, Length: 1","8316"
"10:46:27.2857251 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000512","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:27.2858432 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000154","Offset: 24, Length: 16","8316"
"10:46:27.2865677 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000495","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:27.2866829 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000111","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:27.2867614 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000077","Offset: 1,073,741,826, Length: 510","8316"
"10:46:27.2871740 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000090","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:27.2872222 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:27.2872628 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 1,073,741,824, Length: 1","8316"
"10:46:27.2880367 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000500","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:27.2881545 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000158","Offset: 24, Length: 16","8316"
"10:46:27.2888538 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000474","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:27.2890356 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000132","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:27.2891235 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000085","Offset: 1,073,741,826, Length: 510","8316"
"10:46:27.2892370 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0006020","Offset: 13,586,432, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5504"
"10:46:27.2896342 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000094","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:27.2896807 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:27.2897242 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 1,073,741,824, Length: 1","8316"
"10:46:27.2900254 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0437744","Offset: 13,619,200, Length: 94,208, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5504"
"10:46:27.2905443 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000520","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:27.2906680 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000154","Offset: 24, Length: 16","8316"
"10:46:27.2913622 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000495","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:27.2914778 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000115","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:27.2915640 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000085","Offset: 1,073,741,826, Length: 510","8316"
"10:46:27.2917304 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000081","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:27.2917735 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:27.2918106 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 1,073,741,824, Length: 1","8316"
"10:46:27.2925138 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000495","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:27.2926311 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000145","Offset: 24, Length: 16","8316"
"10:46:27.2933675 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000474","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:27.2934806 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000107","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:27.2935629 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000077","Offset: 1,073,741,826, Length: 510","8316"
"10:46:27.2939704 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000090","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:27.2940190 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000052","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:27.2940626 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 1,073,741,824, Length: 1","8316"
"10:46:27.2948472 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000525","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:27.2949705 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000158","Offset: 24, Length: 16","8316"
"10:46:27.2958115 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000525","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:27.2959365 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000124","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:27.2960252 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000081","Offset: 1,073,741,826, Length: 510","8316"
"10:46:27.2965108 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000098","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:27.2965543 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:27.2965872 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","Offset: 1,073,741,824, Length: 1","8316"
"10:46:27.2971841 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000392","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:27.2972766 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000124","Offset: 24, Length: 16","8316"
"10:46:27.2977200 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000328","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:27.2977997 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000081","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:27.2978612 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Offset: 1,073,741,826, Length: 510","8316"
"10:46:27.2980225 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:27.2980481 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:27.2980707 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,824, Length: 1","8316"
"10:46:27.2985110 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000316","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:27.2985865 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000107","Offset: 24, Length: 16","8316"
"10:46:27.2990140 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000470","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:27.2991245 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000120","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:27.2991984 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Offset: 1,073,741,826, Length: 510","8316"
"10:46:27.2994953 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:27.2995231 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:27.2995469 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,824, Length: 1","8316"
"10:46:27.3000747 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000342","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:27.3001567 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000115","Offset: 24, Length: 16","8316"
"10:46:27.3003021 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0050509","Offset: 12,222,464, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:27.3005876 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:27.3006580 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000081","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:27.3007130 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Offset: 1,073,741,826, Length: 510","8316"
"10:46:27.3009827 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:27.3010087 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:27.3010313 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,824, Length: 1","8316"
"10:46:27.3014930 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000320","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:27.3015681 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000106","Offset: 24, Length: 16","8316"
"10:46:27.3019785 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:27.3020472 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000081","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:27.3021526 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Offset: 1,073,741,826, Length: 510","8316"
"10:46:27.3049891 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0362279","Offset: 17,342,464, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.3069948 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000222","Query: Name","5728"
"10:46:27.3070341 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3070452 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3070623 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11D0-958A-006097C9A090}","0.0000072","Desired Access: Read","5728"
"10:46:27.3070832 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{56FDF344-FD6D-11D0-958A-006097C9A090}","0.0000158","Desired Access: Read","5728"
"10:46:27.3071126 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000034","Query: Name","5728"
"10:46:27.3071254 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3071412 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\TreatAs","0.0000043","Desired Access: Query Value","5728"
"10:46:27.3071540 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3071638 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\TreatAs","0.0000026","Desired Access: Query Value","5728"
"10:46:27.3071749 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000030","Query: Name","5728"
"10:46:27.3071907 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000030","Query: Name","5728"
"10:46:27.3072018 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3072142 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000038","Desired Access: Maximum Allowed","5728"
"10:46:27.3072274 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\(Default)","0.0000030","Length: 12","5728"
"10:46:27.3072389 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000026","Query: Name","5728"
"10:46:27.3072491 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3072607 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000038","Desired Access: Maximum Allowed","5728"
"10:46:27.3072726 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\(Default)","0.0000026","Type: REG_SZ, Length: 46, Data: Task Bar Communication","5728"
"10:46:27.3072841 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000030","Query: Name","5728"
"10:46:27.3072952 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3073067 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InprocServer32","0.0000039","Desired Access: Read","5728"
"10:46:27.3073187 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3073281 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InprocServer32","0.0000064","Desired Access: Read","5728"
"10:46:27.3073447 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000034","Query: Name","5728"
"10:46:27.3073562 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3073682 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000038","Desired Access: Maximum Allowed","5728"
"10:46:27.3073806 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32\InprocServer32","0.0000021","Length: 12","5728"
"10:46:27.3073908 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000030","Query: Name","5728"
"10:46:27.3074019 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3074130 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000038","Desired Access: Maximum Allowed","5728"
"10:46:27.3074249 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32\(Default)","0.0000022","Length: 12","5728"
"10:46:27.3074360 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000030","Query: Name","5728"
"10:46:27.3074471 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3074582 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000038","Desired Access: Maximum Allowed","5728"
"10:46:27.3074697 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32\(Default)","0.0000026","Type: REG_EXPAND_SZ, Length: 80, Data: %SystemRoot%\system32\explorerframe.dll","5728"
"10:46:27.3074821 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000030","Query: Name","5728"
"10:46:27.3074932 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3075043 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000034","Desired Access: Maximum Allowed","5728"
"10:46:27.3075154 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32\(Default)","0.0000021","Type: REG_EXPAND_SZ, Length: 80, Data: %SystemRoot%\system32\explorerframe.dll","5728"
"10:46:27.3075269 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000030","Query: Name","5728"
"10:46:27.3075380 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3075491 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000034","Desired Access: Maximum Allowed","5728"
"10:46:27.3075606 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32\ThreadingModel","0.0000021","Type: REG_SZ, Length: 20, Data: Apartment","5728"
"10:46:27.3075777 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000034","","5728"
"10:46:27.3075900 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000030","Query: Name","5728"
"10:46:27.3076011 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3076131 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InprocHandler32","0.0000038","Desired Access: Query Value","5728"
"10:46:27.3076250 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3076344 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InprocHandler32","0.0000026","Desired Access: Query Value","5728"
"10:46:27.3076451 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000030","Query: Name","5728"
"10:46:27.3076562 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3076673 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InprocHandler","0.0000034","Desired Access: Query Value","5728"
"10:46:27.3076788 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3076882 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InprocHandler","0.0000025","Desired Access: Query Value","5728"
"10:46:27.3077048 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000009","","5728"
"10:46:27.3077496 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000030","Query: Name","5728"
"10:46:27.3077637 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3077739 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3077850 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11D0-958A-006097C9A090}","0.0000034","Desired Access: Read","5728"
"10:46:27.3077991 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{56FDF344-FD6D-11D0-958A-006097C9A090}","0.0000047","Desired Access: Read","5728"
"10:46:27.3078140 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000030","Query: Name","5728"
"10:46:27.3078273 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3078405 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\TreatAs","0.0000038","Desired Access: Query Value","5728"
"10:46:27.3078533 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3078635 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\TreatAs","0.0000030","Desired Access: Query Value","5728"
"10:46:27.3078751 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000029","Query: Name","5728"
"10:46:27.3078887 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000030","Query: Name","5728"
"10:46:27.3079007 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3079135 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000034","Desired Access: Maximum Allowed","5728"
"10:46:27.3079267 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\(Default)","0.0000021","Length: 12","5728"
"10:46:27.3079382 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000051","Query: Name","5728"
"10:46:27.3079527 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3079659 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000043","Desired Access: Maximum Allowed","5728"
"10:46:27.3079817 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\(Default)","0.0000022","Type: REG_SZ, Length: 46, Data: Task Bar Communication","5728"
"10:46:27.3079962 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000039","Query: Name","5728"
"10:46:27.3080146 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3080351 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InprocServer32","0.0000055","Desired Access: Read","5728"
"10:46:27.3080551 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3080718 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InprocServer32","0.0000042","Desired Access: Read","5728"
"10:46:27.3080922 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000043","Query: Name","5728"
"10:46:27.3081114 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3081319 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000056","Desired Access: Maximum Allowed","5728"
"10:46:27.3081524 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32\InprocServer32","0.0000030","Length: 12","5728"
"10:46:27.3081699 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000038","Query: Name","5728"
"10:46:27.3081887 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3082083 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000055","Desired Access: Maximum Allowed","5728"
"10:46:27.3082279 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32\(Default)","0.0000030","Length: 12","5728"
"10:46:27.3082463 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000038","Query: Name","5728"
"10:46:27.3082646 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3082800 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000038","Desired Access: Maximum Allowed","5728"
"10:46:27.3082936 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32\(Default)","0.0000022","Type: REG_EXPAND_SZ, Length: 80, Data: %SystemRoot%\system32\explorerframe.dll","5728"
"10:46:27.3083090 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000030","Query: Name","5728"
"10:46:27.3083209 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3083337 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000039","Desired Access: Maximum Allowed","5728"
"10:46:27.3083465 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32\(Default)","0.0000022","Type: REG_EXPAND_SZ, Length: 80, Data: %SystemRoot%\system32\explorerframe.dll","5728"
"10:46:27.3083615 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000025","Query: Name","5728"
"10:46:27.3083734 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3083862 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000034","Desired Access: Maximum Allowed","5728"
"10:46:27.3083986 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32\ThreadingModel","0.0000025","Type: REG_SZ, Length: 20, Data: Apartment","5728"
"10:46:27.3084148 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InProcServer32","0.0000008","","5728"
"10:46:27.3084250 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000030","Query: Name","5728"
"10:46:27.3084378 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3084502 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InprocHandler32","0.0000038","Desired Access: Query Value","5728"
"10:46:27.3084634 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3084745 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InprocHandler32","0.0000026","Desired Access: Query Value","5728"
"10:46:27.3084865 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000030","Query: Name","5728"
"10:46:27.3084988 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3085116 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InprocHandler","0.0000035","Desired Access: Query Value","5728"
"10:46:27.3085240 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3085347 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InprocHandler","0.0000030","Desired Access: Query Value","5728"
"10:46:27.3085475 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000026","Query: Name","5728"
"10:46:27.3085594 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3085714 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\LocalServer32","0.0000038","Desired Access: Read","5728"
"10:46:27.3085842 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3085944 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\LocalServer32","0.0000026","Desired Access: Read","5728"
"10:46:27.3086064 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000030","Query: Name","5728"
"10:46:27.3086183 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3086307 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000034","Desired Access: Maximum Allowed","5728"
"10:46:27.3086435 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\AppID","0.0000021","Length: 112","5728"
"10:46:27.3086550 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000026","Query: Name","5728"
"10:46:27.3086670 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3086793 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\LocalServer","0.0000039","Desired Access: Query Value","5728"
"10:46:27.3086917 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3087024 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\LocalServer","0.0000030","Desired Access: Query Value","5728"
"10:46:27.3087147 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000026","Query: Name","5728"
"10:46:27.3087275 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3087369 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3087472 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11D0-958A-006097C9A090}","0.0000030","Desired Access: Read","5728"
"10:46:27.3087608 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{56FDF344-FD6D-11D0-958A-006097C9A090}","0.0000039","Desired Access: Read","5728"
"10:46:27.3087749 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000030","Query: Name","5728"
"10:46:27.3087869 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3087992 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\Elevation","0.0000043","Desired Access: Read","5728"
"10:46:27.3088120 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3088227 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\Elevation","0.0000026","Desired Access: Read","5728"
"10:46:27.3088368 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000008","","5728"
"10:46:27.3088496 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000008","","5728"
"10:46:27.3088641 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000025","Query: Name","5728"
"10:46:27.3088760 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3088854 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3088957 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11D0-958A-006097C9A090}","0.0000025","Desired Access: Read","5728"
"10:46:27.3089085 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{56FDF344-FD6D-11D0-958A-006097C9A090}","0.0000034","Desired Access: Read","5728"
"10:46:27.3089217 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000030","Query: Name","5728"
"10:46:27.3089336 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3089456 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\TreatAs","0.0000038","Desired Access: Read","5728"
"10:46:27.3089575 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3089673 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\TreatAs","0.0000026","Desired Access: Read","5728"
"10:46:27.3089801 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}","0.0000009","","5728"
"10:46:27.3092523 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.3092852 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000043","CreationTime: 4/11/2018 4:34:35 PM, LastAccessTime: 4/11/2018 4:34:35 PM, LastWriteTime: 4/11/2018 4:34:35 PM, ChangeTime: 3/20/2019 7:07:22 PM, FileAttributes: A","5728"
"10:46:27.3093014 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000064","","5728"
"10:46:27.3094153 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000128","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.3094465 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ExplorerFrame.dll","0.0000153","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:27.3094977 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ExplorerFrame.dll","0.0000013","SyncType: SyncTypeOther","5728"
"10:46:27.3095779 AM","firefox.exe","7384","Load Image","C:\Windows\System32\ExplorerFrame.dll","0.0000000","Image Base: 0x7ffb298a0000, Image Size: 0x495000","5728"
"10:46:27.3096090 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000052","Name: \Windows\System32\ExplorerFrame.dll","5728"
"10:46:27.3099022 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000085","","5728"
"10:46:27.3111915 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0109914","Offset: 11,554,816, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:27.3113976 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:27.3114258 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40229, endtime: 40229, seqnum: 0, connid: 0","0"
"10:46:27.3114958 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:27.3115205 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40229, endtime: 40229, seqnum: 0, connid: 0","0"
"10:46:27.3116703 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:27.3116933 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:27.3117134 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,824, Length: 1","2884"
"10:46:27.3120491 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000227","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.3121021 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000072","Offset: 24, Length: 16","2884"
"10:46:27.3123939 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.3124421 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:27.3124767 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 1,073,741,826, Length: 510","2884"
"10:46:27.3126721 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:27.3126849 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:27.3126955 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","2884"
"10:46:27.3129345 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.3129707 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000052","Offset: 24, Length: 16","2884"
"10:46:27.3131563 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.3131862 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:27.3132110 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","2884"
"10:46:27.3132553 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:27.3132660 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:27.3132750 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","2884"
"10:46:27.3134597 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.3134900 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","2884"
"10:46:27.3136671 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.3136952 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:27.3137153 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","2884"
"10:46:27.3138522 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:27.3138629 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:27.3138727 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Offset: 1,073,741,824, Length: 1","2884"
"10:46:27.3140801 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.3141142 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 24, Length: 16","2884"
"10:46:27.3141513 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000052","AllocationSize: 290,816, EndOfFile: 286,744, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.3141757 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000089","","2512"
"10:46:27.3143032 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.3143327 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:27.3143540 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000192","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.3143617 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000089","Offset: 1,073,741,826, Length: 510","2884"
"10:46:27.3144061 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000029","AllocationSize: 290,816, EndOfFile: 286,744, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.3144244 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cfgmgr32.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.3144381 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000017","AllocationSize: 290,816, EndOfFile: 286,744, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.3144594 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cfgmgr32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:27.3148780 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000068","","2512"
"10:46:27.3151169 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:27.3151442 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40229, endtime: 40229, seqnum: 0, connid: 0","0"
"10:46:27.3151779 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:27.3151873 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40229, endtime: 40229, seqnum: 0, connid: 0","0"
"10:46:27.3153085 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.3153511 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:27.3153648 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000055","","2512"
"10:46:27.3155325 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:27.3155470 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40229, endtime: 40229, seqnum: 0, connid: 0","0"
"10:46:27.3156204 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.3156515 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:27.3156630 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000043","","2512"
"10:46:27.3159382 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.3159809 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:27.3159984 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000064","","2512"
"10:46:27.3160496 AM","firefox.exe","7384","CreateFile","C:\","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.3160735 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000128","Filter: Windows, 1: Windows","2512"
"10:46:27.3160982 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:27.3161968 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.3162211 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000145","Filter: System32, 1: System32","2512"
"10:46:27.3162463 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000042","","2512"
"10:46:27.3163418 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.3163636 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\cfgmgr32.dll","0.0000120","Filter: cfgmgr32.dll, 1: cfgmgr32.dll","2512"
"10:46:27.3163862 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:27.3166025 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.3166243 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:27.3166350 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000038","","2512"
"10:46:27.3167327 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.3167553 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\nss3.dll","0.0000102","Filter: nss3.dll, 1: nss3.dll","2512"
"10:46:27.3167770 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000035","","2512"
"10:46:27.3169417 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.3169609 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:27.3169708 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000038","","2512"
"10:46:27.3170625 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.3170830 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\nss3.dll","0.0000094","Filter: nss3.dll, 1: nss3.dll","2512"
"10:46:27.3171030 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000039","","2512"
"10:46:27.3172110 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.3172374 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000030","AllocationSize: 2,195,456, EndOfFile: 2,193,608, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:27.3172549 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.3172681 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000022","AllocationSize: 2,195,456, EndOfFile: 2,193,608, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:27.3172882 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:27.3173582 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000051","","2512"
"10:46:27.3174781 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.3175058 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000026","AllocationSize: 2,195,456, EndOfFile: 2,193,608, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:27.3175199 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.3175314 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000017","AllocationSize: 2,195,456, EndOfFile: 2,193,608, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:27.3175497 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:27.3176163 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000021","AllocationSize: 2,195,456, EndOfFile: 2,193,608, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:27.3176291 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000051","","2512"
"10:46:27.3177477 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.3177733 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000026","AllocationSize: 2,195,456, EndOfFile: 2,193,608, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:27.3177861 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.3177964 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000021","AllocationSize: 2,195,456, EndOfFile: 2,193,608, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:27.3178147 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:27.3179248 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0331081","Offset: 2,162,688, Length: 30,920, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.3267956 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000214","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.3268374 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions\*","0.0000133","Filter: *, 1: .","5728"
"10:46:27.3268903 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000077","0: ..","5728"
"10:46:27.3269091 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000021","","5728"
"10:46:27.3269240 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000056","","5728"
"10:46:27.3279946 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features\doh-rollout@mozilla.org.xpi","0.0005589","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.3285974 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Program Files\Firefox Nightly\browser\features\doh-rollout@mozilla.org.xpi","0.0000073","CreationTime: 3/25/2020 10:26:30 AM, LastAccessTime: 3/25/2020 10:26:30 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, AllocationSize: 61440, EndOfFile: 58055, FileAttributes: A","5728"
"10:46:27.3286200 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\features\doh-rollout@mozilla.org.xpi","0.0000111","","5728"
"10:46:27.3293808 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.3294273 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0000043","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:30 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, AllocationSize: 643072, EndOfFile: 639537, FileAttributes: A","5728"
"10:46:27.3294418 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0000064","","5728"
"10:46:27.3297840 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features\screenshots@mozilla.org.xpi","0.0000503","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.3298450 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Program Files\Firefox Nightly\browser\features\screenshots@mozilla.org.xpi","0.0000030","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:30 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, AllocationSize: 344064, EndOfFile: 340280, FileAttributes: A","5728"
"10:46:27.3298565 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\features\screenshots@mozilla.org.xpi","0.0000047","","5728"
"10:46:27.3300946 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features\webcompat-reporter@mozilla.org.xpi","0.0005769","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.3307060 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Program Files\Firefox Nightly\browser\features\webcompat-reporter@mozilla.org.xpi","0.0000069","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:30 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, AllocationSize: 28672, EndOfFile: 26423, FileAttributes: A","5728"
"10:46:27.3307295 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\features\webcompat-reporter@mozilla.org.xpi","0.0000111","","5728"
"10:46:27.3311557 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.3311869 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0000038","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:30 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, AllocationSize: 110592, EndOfFile: 110579, FileAttributes: A","5728"
"10:46:27.3311997 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0000051","","5728"
"10:46:27.3317189 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:27.3319830 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:27.3322139 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3322301 AM","firefox.exe","7384","RegOpenKey","HKCU\SOFTWARE\Mozilla\Firefox\Extensions","0.0000132","Desired Access: Read","5728"
"10:46:27.3324251 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\extensions","0.0000119","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:27.3326444 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\extensions","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:27.3327357 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.3327489 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Mozilla\Firefox\Extensions","0.0000102","Desired Access: Read","5728"
"10:46:27.3334171 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3334465 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000038","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:27.3334606 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000055","","740"
"10:46:27.3337307 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3337575 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000030","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:27.3337686 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000043","","740"
"10:46:27.3339935 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3340140 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000030","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:27.3340246 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000043","","740"
"10:46:27.3342452 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3342811 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000034","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:27.3342934 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000043","","740"
"10:46:27.3345127 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3345533 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000038","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:27.3345669 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000043","","740"
"10:46:27.3347538 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3347816 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000025","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:27.3347918 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000038","","740"
"10:46:27.3349949 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3350252 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000030","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:27.3350358 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000039","","740"
"10:46:27.3353396 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000363","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3354134 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000052","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:27.3354292 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000060","","740"
"10:46:27.3356989 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3357437 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000038","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:27.3357573 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000052","","740"
"10:46:27.3360552 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3360884 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000043","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:27.3361042 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000068","","740"
"10:46:27.3365066 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3365416 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000051","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:27.3365586 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000086","","740"
"10:46:27.3369042 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3369349 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000043","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:27.3369486 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000060","","740"
"10:46:27.3372622 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3373151 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000055","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:27.3373317 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000064","","740"
"10:46:27.3376808 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3376829 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 64, startime: 40229, endtime: 40232, seqnum: 0, connid: 0","0"
"10:46:27.3377115 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 170, startime: 40229, endtime: 40232, seqnum: 0, connid: 0","0"
"10:46:27.3377247 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 151, startime: 40229, endtime: 40232, seqnum: 0, connid: 0","0"
"10:46:27.3377341 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 79, startime: 40229, endtime: 40232, seqnum: 0, connid: 0","0"
"10:46:27.3377345 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000051","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:27.3377516 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000085","","740"
"10:46:27.3377546 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 537, seqnum: 0, connid: 0","0"
"10:46:27.3380985 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3381535 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000051","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:27.3381710 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000077","","740"
"10:46:27.3381864 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000068","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:27.3382213 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000035","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:27.3382512 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,824, Length: 1","2884"
"10:46:27.3385742 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3386211 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000051","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:27.3386378 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000068","","740"
"10:46:27.3387116 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.3387858 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000094","Offset: 24, Length: 16","2884"
"10:46:27.3389966 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3390457 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000059","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:27.3390623 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000068","","740"
"10:46:27.3394280 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0002214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.3398947 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000414","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:27.3401665 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000320","Offset: 1,073,741,826, Length: 510","2884"
"10:46:27.3409738 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000499","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3410685 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000098","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:27.3410898 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000090","","740"
"10:46:27.3412532 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000077","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:27.3412869 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:27.3413113 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,824, Length: 1","2884"
"10:46:27.3415438 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3415946 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000047","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:27.3416129 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000077","","740"
"10:46:27.3417093 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000261","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.3417755 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000085","Offset: 24, Length: 16","2884"
"10:46:27.3419188 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3419978 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000042","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:27.3420153 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000068","","740"
"10:46:27.3421317 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:27.3421898 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:27.3422307 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 1,073,741,826, Length: 510","2884"
"10:46:27.3423237 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3423720 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000047","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:27.3423912 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000072","","740"
"10:46:27.3427406 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3427922 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000115","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:27.3428170 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000059","","740"
"10:46:27.3431267 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3431724 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000043","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:27.3431903 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000064","","740"
"10:46:27.3434143 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3434433 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000026","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:27.3434536 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000042","","740"
"10:46:27.3436750 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3437053 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000026","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:27.3437155 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000043","","740"
"10:46:27.3439088 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3439361 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000026","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:27.3439459 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000043","","740"
"10:46:27.3441243 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3441516 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000038","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:27.3441627 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000042","","740"
"10:46:27.3443696 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3443918 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:27.3444020 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000039","","740"
"10:46:27.3446487 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3446679 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:27.3446772 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000039","","740"
"10:46:27.3448517 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3448701 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:27.3448795 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000038","","740"
"10:46:27.3450975 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3451342 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:27.3451440 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000043","","740"
"10:46:27.3453416 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3453697 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:27.3453800 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000038","","740"
"10:46:27.3456385 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3456829 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:27.3456978 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000069","","740"
"10:46:27.3460319 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3460835 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000052","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:27.3461002 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000077","","740"
"10:46:27.3473200 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000491","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3474126 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000068","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:27.3474318 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000094","","740"
"10:46:27.3478111 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3478632 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000051","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:27.3478815 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000081","","740"
"10:46:27.3482796 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3483334 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000051","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.3483517 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000073","","740"
"10:46:27.3486849 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3487553 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000051","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.3487745 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000073","","740"
"10:46:27.3491291 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3491747 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.3491922 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000073","","740"
"10:46:27.3495323 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000533","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3496018 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000043","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:27.3496189 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000068","","740"
"10:46:27.3499709 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3499735 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0542507","Offset: 17,207,296, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.3500076 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000043","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:27.3500225 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000069","","740"
"10:46:27.3503404 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3503762 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000069","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:27.3503946 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000107","","740"
"10:46:27.3505085 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 350, seqnum: 0, connid: 0","0"
"10:46:27.3505426 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:27.3507854 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3508221 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000047","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:27.3508396 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000077","","740"
"10:46:27.3511532 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3511873 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000077","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:27.3512121 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000141","","740"
"10:46:27.3514975 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3515312 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000039","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:27.3515483 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000068","","740"
"10:46:27.3518568 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3519058 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000081","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:27.3519263 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000090","","740"
"10:46:27.3522809 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3523270 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000038","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:27.3523406 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000056","","740"
"10:46:27.3526350 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3526832 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000043","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:27.3527011 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000073","","740"
"10:46:27.3527882 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000098","","2512"
"10:46:27.3530591 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3531103 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:27.3531295 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000068","","740"
"10:46:27.3532464 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.3532746 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:27.3532882 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000052","","2512"
"10:46:27.3534802 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3534926 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.3535144 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:27.3535263 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000043","","2512"
"10:46:27.3535280 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:27.3535477 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000068","","740"
"10:46:27.3537418 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.3537618 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:27.3537725 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000038","","2512"
"10:46:27.3538480 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3538907 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.3538958 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:27.3539142 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000068","","740"
"10:46:27.3539218 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\nss3.dll","0.0000154","Filter: nss3.dll, 1: nss3.dll","2512"
"10:46:27.3539513 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000042","","2512"
"10:46:27.3541633 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.3541881 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:27.3541987 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000043","","2512"
"10:46:27.3542666 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3543033 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000051","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:27.3543046 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.3543221 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000068","","740"
"10:46:27.3543293 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\nss3.dll","0.0000120","Filter: nss3.dll, 1: nss3.dll","2512"
"10:46:27.3543536 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000043","","2512"
"10:46:27.3546476 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3546805 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000042","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:27.3546975 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000064","","740"
"10:46:27.3547965 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.3548426 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000051","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:27.3548614 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000076","","2512"
"10:46:27.3549885 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3550214 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000055","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:27.3550239 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:27.3550401 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000064","","740"
"10:46:27.3550606 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000043","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:26 AM, LastWriteTime: 3/26/2020 10:46:26 AM, ChangeTime: 3/26/2020 10:46:26 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:27.3550640 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000179","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.3550768 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000060","","5068"
"10:46:27.3551084 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000222","Filter: lgpllibs.dll, 1: lgpllibs.dll","2512"
"10:46:27.3551511 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000068","","2512"
"10:46:27.3553904 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3554049 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\idb-deleting-1451318868ntouromlalnodry--epcr","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:27.3554220 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:27.3554378 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000064","","740"
"10:46:27.3554608 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.3554958 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000047","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:27.3555142 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000068","","2512"
"10:46:27.3556827 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000175","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.3557207 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000192","Filter: lgpllibs.dll, 1: lgpllibs.dll","2512"
"10:46:27.3557279 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3557356 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:27.3557599 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000069","","2512"
"10:46:27.3557604 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:27.3557727 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000030","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 6/19/2019 4:53:48 PM, LastWriteTime: 3/25/2020 10:46:19 AM, ChangeTime: 3/25/2020 10:46:19 AM, FileAttributes: A","5068"
"10:46:27.3557774 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000064","","740"
"10:46:27.3557906 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000052","","5068"
"10:46:27.3559460 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000174","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.3559873 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000043","AllocationSize: 40,960, EndOfFile: 39,112, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:27.3560138 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.3560338 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000035","AllocationSize: 40,960, EndOfFile: 39,112, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:27.3560616 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3560680 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:27.3560906 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:27.3561064 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000064","","740"
"10:46:27.3561469 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000073","","2512"
"10:46:27.3562587 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000405","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:27.3563193 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000055","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 6/19/2019 4:53:48 PM, LastWriteTime: 3/25/2020 10:46:19 AM, ChangeTime: 3/25/2020 10:46:19 AM, AllocationSize: 49152, EndOfFile: 49152, FileAttributes: A","5068"
"10:46:27.3563419 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000077","","5068"
"10:46:27.3564874 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3565215 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:27.3565390 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000064","","740"
"10:46:27.3565458 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000359","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:27.3566282 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0783583","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:27.3566918 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0782580","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5068"
"10:46:27.3567344 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000290","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.3568001 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000043","AllocationSize: 40,960, EndOfFile: 39,112, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:27.3568257 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.3568458 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000030","AllocationSize: 40,960, EndOfFile: 39,112, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:27.3568620 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3568795 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000043","SyncType: SyncTypeOther","2512"
"10:46:27.3569106 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000056","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:27.3569328 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000094","","740"
"10:46:27.3570169 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000038","AllocationSize: 40,960, EndOfFile: 39,112, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:27.3570378 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000081","","2512"
"10:46:27.3570416 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, startime: 40232, endtime: 40233, seqnum: 0, connid: 0","0"
"10:46:27.3572490 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000154","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.3572823 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000030","AllocationSize: 40,960, EndOfFile: 39,112, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:27.3572976 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.3573100 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000021","AllocationSize: 40,960, EndOfFile: 39,112, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:27.3573296 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:27.3573510 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3573855 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:27.3574039 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000068","","740"
"10:46:27.3575425 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0635351","Offset: 8,192, Length: 30,920, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.3577503 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3577832 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:27.3577981 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000073","","740"
"10:46:27.3580921 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3581237 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000042","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:27.3581399 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000068","","740"
"10:46:27.3584240 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3584565 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000042","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:27.3584735 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000064","","740"
"10:46:27.3587974 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3588294 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000042","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:27.3588460 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000064","","740"
"10:46:27.3591686 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3592006 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000042","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:27.3592168 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000068","","740"
"10:46:27.3595052 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3595364 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000051","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:27.3595534 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000064","","740"
"10:46:27.3598982 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3599498 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:27.3599673 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000068","","740"
"10:46:27.3602724 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3603201 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:27.3603389 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000068","","740"
"10:46:27.3606325 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3606777 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:27.3606965 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000068","","740"
"10:46:27.3610348 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3610817 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000043","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:27.3611001 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000064","","740"
"10:46:27.3613860 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3614299 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:27.3614474 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000064","","740"
"10:46:27.3617375 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3617815 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000072","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:27.3618028 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000085","","740"
"10:46:27.3621493 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000281","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3622244 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:27.3622487 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000068","","740"
"10:46:27.3625550 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3626011 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000038","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:27.3626148 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000055","","740"
"10:46:27.3628260 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3628563 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000029","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:27.3628669 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000043","","740"
"10:46:27.3630909 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3631144 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000025","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:27.3631246 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000043","","740"
"10:46:27.3633239 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3633439 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000026","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:27.3633546 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000043","","740"
"10:46:27.3633892 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0480491","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.3635385 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3635573 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000021","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:27.3635662 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000039","","740"
"10:46:27.3637804 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3638107 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:27.3638205 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000039","","740"
"10:46:27.3640083 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3640347 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:27.3640445 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000043","","740"
"10:46:27.3642212 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3642468 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:27.3642566 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000038","","740"
"10:46:27.3644682 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.3644887 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000025","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:27.3644985 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0565948","","740"
"10:46:27.4046867 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0020655","Offset: 17,240,064, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.4071750 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0006132","Offset: 17,272,832, Length: 65,536, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.4115957 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000286","CreationTime: 6/19/2019 4:53:38 PM, LastAccessTime: 6/19/2019 4:53:38 PM, LastWriteTime: 3/26/2020 10:29:02 AM, ChangeTime: 3/26/2020 10:29:02 AM, AllocationSize: 5242880, EndOfFile: 5242880, FileAttributes: A","5728"
"10:46:27.4117293 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000461","","5728"
"10:46:27.4137346 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0001003","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.4139147 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000183","CreationTime: 6/19/2019 4:53:38 PM, LastAccessTime: 6/19/2019 4:53:38 PM, LastWriteTime: 3/26/2020 10:29:02 AM, ChangeTime: 3/26/2020 10:29:02 AM, AllocationSize: 5242880, EndOfFile: 5242880, FileAttributes: A","5728"
"10:46:27.4140038 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000299","","5728"
"10:46:27.4148098 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0001216","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5728"
"10:46:27.4151153 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0156092","Offset: 0, Length: 100, Priority: Normal","5728"
"10:46:27.4153862 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0152956","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:27.4214001 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000209","","2512"
"10:46:27.4217585 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000341","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4218217 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000089","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:27.4218562 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000115","","740"
"10:46:27.4224762 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000303","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4224813 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000397","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4225474 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000073","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:27.4225564 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000089","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:27.4225786 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000111","","740"
"10:46:27.4225961 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000136","","2512"
"10:46:27.4232113 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000316","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4232335 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000354","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4232681 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000068","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:27.4232988 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000111","","740"
"10:46:27.4233043 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000086","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:27.4233423 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000128","","2512"
"10:46:27.4239797 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000316","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4240373 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000077","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:27.4240728 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000132","","740"
"10:46:27.4240945 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0007313","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4247166 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000324","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4247827 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000086","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:27.4248190 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000132","","740"
"10:46:27.4248668 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000094","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:27.4249048 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000153","","2512"
"10:46:27.4254432 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000299","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4255187 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000418","Filter: lgpllibs.dll, 1: lgpllibs.dll","2512"
"10:46:27.4255443 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000397","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4256028 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000107","","2512"
"10:46:27.4256386 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000081","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:27.4256676 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000111","","740"
"10:46:27.4261447 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4261993 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000072","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:27.4262151 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4262287 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000102","","2512"
"10:46:27.4262859 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000068","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:27.4263157 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000103","","740"
"10:46:27.4264873 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000243","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4265432 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000281","Filter: lgpllibs.dll, 1: lgpllibs.dll","2512"
"10:46:27.4266008 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000093","","2512"
"10:46:27.4268427 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000345","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4269310 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000077","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:27.4269609 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000115","","740"
"10:46:27.4271657 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4272356 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000069","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:27.4272655 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000098","","2512"
"10:46:27.4273555 AM","firefox.exe","7384","CreateFile","C:\","0.0000214","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4274067 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000256","Filter: Windows, 1: Windows","2512"
"10:46:27.4274618 AM","firefox.exe","7384","CloseFile","C:\","0.0000094","","2512"
"10:46:27.4275202 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4275902 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000073","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:27.4276188 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000094","","740"
"10:46:27.4277016 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000247","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4277604 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000282","Filter: System32, 1: System32","2512"
"10:46:27.4278172 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000098","","2512"
"10:46:27.4280472 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000239","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4281013 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\user32.dll","0.0000265","Filter: user32.dll, 1: user32.dll","2512"
"10:46:27.4281180 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4281560 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000153","","2512"
"10:46:27.4281897 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000068","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:27.4282259 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000098","","740"
"10:46:27.4288664 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0002423","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4288698 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000281","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4289385 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000077","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:27.4289671 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000115","","740"
"10:46:27.4291885 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000098","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:27.4292320 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000158","","2512"
"10:46:27.4293609 AM","firefox.exe","7384","CreateFile","C:\","0.0000311","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4295554 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000316","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4296314 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000081","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:27.4296595 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000124","","740"
"10:46:27.4299616 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000414","Filter: Windows, 1: Windows","2512"
"10:46:27.4300529 AM","firefox.exe","7384","CloseFile","C:\","0.0000158","","2512"
"10:46:27.4301114 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4301750 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000055","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:27.4301942 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000081","","740"
"10:46:27.4303994 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000371","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4304749 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000299","Filter: System32, 1: System32","2512"
"10:46:27.4305432 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000123","","2512"
"10:46:27.4305624 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4306136 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000051","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:27.4306336 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000073","","740"
"10:46:27.4309216 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000103","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:27.4309690 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000051","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:27.4310048 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000039","Offset: 1,073,741,824, Length: 1","5728"
"10:46:27.4310509 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000290","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4311170 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\user32.dll","0.0000359","Filter: user32.dll, 1: user32.dll","2512"
"10:46:27.4311874 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000094","","2512"
"10:46:27.4313107 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000376","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4313764 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000077","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:27.4314114 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000120","","740"
"10:46:27.4314925 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000333","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4315416 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-journal","0.0000418","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:27.4319926 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000328","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4320527 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000081","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:27.4320775 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-wal","0.0000345","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:27.4320860 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000124","","740"
"10:46:27.4321628 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000098","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:27.4322153 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0719540","Offset: 0, Length: 32,768","5728"
"10:46:27.4322511 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\user32.dll","0.0000064","AllocationSize: 1,642,496, EndOfFile: 1,639,560, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4322878 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\user32.dll","0.0000056","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.4323121 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\user32.dll","0.0000034","AllocationSize: 1,642,496, EndOfFile: 1,639,560, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4323480 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\user32.dll","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:27.4324700 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000119","","2512"
"10:46:27.4326812 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000341","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4327439 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000081","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:27.4327780 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000120","","740"
"10:46:27.4328139 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000269","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4329043 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\user32.dll","0.0000052","AllocationSize: 1,642,496, EndOfFile: 1,639,560, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4329304 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\user32.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.4329496 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\user32.dll","0.0000030","AllocationSize: 1,642,496, EndOfFile: 1,639,560, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4329807 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\user32.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:27.4331062 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\user32.dll","0.0000038","AllocationSize: 1,642,496, EndOfFile: 1,639,560, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4331296 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000103","","2512"
"10:46:27.4335200 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000295","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4335661 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000371","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4336318 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000081","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:27.4336664 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000119","","740"
"10:46:27.4337001 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\user32.dll","0.0000072","AllocationSize: 1,642,496, EndOfFile: 1,639,560, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4337402 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\user32.dll","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.4337645 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\user32.dll","0.0000038","AllocationSize: 1,642,496, EndOfFile: 1,639,560, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4338003 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\user32.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:27.4342151 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000298","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4342718 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000073","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:27.4343030 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000111","","740"
"10:46:27.4348359 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4348704 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000133","","2512"
"10:46:27.4348960 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000077","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:27.4349297 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000124","","740"
"10:46:27.4351789 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000115","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:27.4352211 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000047","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:27.4352553 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000038","Offset: 1,073,741,824, Length: 1","5068"
"10:46:27.4355770 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000354","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4356670 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000081","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:27.4357007 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000154","","740"
"10:46:27.4359234 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-journal","0.0000444","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:27.4364811 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000371","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4364956 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-wal","0.0000393","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:27.4365442 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000329","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4365733 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000089","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:27.4365865 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000094","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:27.4366108 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000132","","740"
"10:46:27.4366274 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000073","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:27.4366364 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000132","Offset: 0, Length: 4,096","5068"
"10:46:27.4366603 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000115","","2512"
"10:46:27.4372901 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4372918 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000362","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4372939 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-wal","0.0000508","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:27.4373664 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000077","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:27.4373826 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000086","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:27.4374027 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000124","","2512"
"10:46:27.4374193 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000133","","740"
"10:46:27.4376186 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-wal","0.0002735","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","5068"
"10:46:27.4381400 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000324","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4381596 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0002803","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4382505 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000098","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.4382876 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000145","","740"
"10:46:27.4385159 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000081","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:27.4385449 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000461","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:27.4385496 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0005862","","2512"
"10:46:27.4388764 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000341","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4388935 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0257954","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","5068"
"10:46:27.4389583 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000077","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.4389908 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000123","","740"
"10:46:27.4392433 AM","firefox.exe","7384","CreateFile","C:\","0.0000239","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4392937 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000230","Filter: Windows, 1: Windows","2512"
"10:46:27.4393406 AM","firefox.exe","7384","CloseFile","C:\","0.0000103","","2512"
"10:46:27.4395386 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000205","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4395561 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000345","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4395808 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000192","Filter: System32, 1: System32","2512"
"10:46:27.4396205 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000073","","2512"
"10:46:27.4396423 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000077","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.4396764 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000120","","740"
"10:46:27.4397950 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000184","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4398334 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\user32.dll","0.0000218","Filter: user32.dll, 1: user32.dll","2512"
"10:46:27.4398769 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000069","","2512"
"10:46:27.4403454 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4404030 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000056","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:27.4404226 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000090","","740"
"10:46:27.4405280 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000363","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4406232 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000085","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:27.4406629 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000128","","2512"
"10:46:27.4407729 AM","firefox.exe","7384","CreateFile","C:\","0.0000252","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4407998 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4408331 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000282","Filter: Windows, 1: Windows","2512"
"10:46:27.4408497 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000047","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:27.4408681 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000077","","740"
"10:46:27.4408937 AM","firefox.exe","7384","CloseFile","C:\","0.0000115","","2512"
"10:46:27.4411877 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000298","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4412137 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4412529 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000282","Filter: System32, 1: System32","2512"
"10:46:27.4412628 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000046","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:27.4412807 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000072","","740"
"10:46:27.4413178 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000115","","2512"
"10:46:27.4416079 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000337","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4416770 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\win32u.dll","0.0000376","Filter: win32u.dll, 1: win32u.dll","2512"
"10:46:27.4417479 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000119","","2512"
"10:46:27.4417607 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4417986 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000047","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:27.4418157 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000068","","740"
"10:46:27.4424186 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4424578 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000047","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:27.4424672 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000359","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4424758 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000081","","740"
"10:46:27.4425573 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000085","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:27.4425935 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000124","","2512"
"10:46:27.4427010 AM","firefox.exe","7384","CreateFile","C:\","0.0000256","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4427616 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000337","Filter: Windows, 1: Windows","2512"
"10:46:27.4428056 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4428278 AM","firefox.exe","7384","CloseFile","C:\","0.0000115","","2512"
"10:46:27.4428401 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000043","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:27.4428581 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000068","","740"
"10:46:27.4431094 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000286","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4431725 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000277","Filter: System32, 1: System32","2512"
"10:46:27.4432331 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000128","","2512"
"10:46:27.4432621 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4433150 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:27.4433325 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000077","","740"
"10:46:27.4435237 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000307","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4435889 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\win32u.dll","0.0000649","Filter: win32u.dll, 1: win32u.dll","2512"
"10:46:27.4436845 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000299","","2512"
"10:46:27.4438249 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4439013 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000068","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:27.4439273 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000094","","740"
"10:46:27.4441133 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000371","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4442140 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\win32u.dll","0.0000081","AllocationSize: 126,976, EndOfFile: 124,048, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:27.4442588 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\win32u.dll","0.0000073","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.4442942 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\win32u.dll","0.0000060","AllocationSize: 126,976, EndOfFile: 124,048, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:27.4443484 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\win32u.dll","0.0000047","SyncType: SyncTypeOther","2512"
"10:46:27.4443616 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000227","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4444163 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000059","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:27.4444367 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000086","","740"
"10:46:27.4445012 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000145","","2512"
"10:46:27.4449803 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000397","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4450917 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\win32u.dll","0.0000076","AllocationSize: 126,976, EndOfFile: 124,048, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:27.4451352 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\win32u.dll","0.0000064","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.4451433 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4451706 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\win32u.dll","0.0000064","AllocationSize: 126,976, EndOfFile: 124,048, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:27.4451902 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.4452094 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000086","","740"
"10:46:27.4452282 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\win32u.dll","0.0000043","SyncType: SyncTypeOther","2512"
"10:46:27.4453643 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\win32u.dll","0.0000060","AllocationSize: 126,976, EndOfFile: 124,048, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:27.4454006 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000136","","2512"
"10:46:27.4457876 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000311","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4458443 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000073","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.4458580 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000349","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4458729 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000124","","740"
"10:46:27.4459599 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\win32u.dll","0.0000073","AllocationSize: 126,976, EndOfFile: 124,048, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:27.4459992 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\win32u.dll","0.0000064","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.4460316 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\win32u.dll","0.0000056","AllocationSize: 126,976, EndOfFile: 124,048, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:27.4462475 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\win32u.dll","0.0000085","SyncType: SyncTypeOther","2512"
"10:46:27.4464869 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000315","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4465440 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000077","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.4465748 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000128","","740"
"10:46:27.4470219 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000145","","2512"
"10:46:27.4472613 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000345","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4473453 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000081","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:27.4473765 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000119","","740"
"10:46:27.4477703 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000345","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4478607 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000086","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:27.4478953 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000111","","2512"
"10:46:27.4479247 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000295","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4479981 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000068","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:27.4480280 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000107","","740"
"10:46:27.4484756 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000298","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4485502 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000069","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:27.4485814 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000102","","2512"
"10:46:27.4486010 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4486671 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000069","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:27.4486940 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000098","","740"
"10:46:27.4491348 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4492871 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4493221 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:27.4493362 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000055","","740"
"10:46:27.4493622 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000072","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:27.4493933 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000103","","2512"
"10:46:27.4494671 AM","firefox.exe","7384","CreateFile","C:\","0.0000201","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4495102 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000474","Filter: Windows, 1: Windows","2512"
"10:46:27.4495550 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4495785 AM","firefox.exe","7384","CloseFile","C:\","0.0000073","","2512"
"10:46:27.4495849 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:27.4495968 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000043","","740"
"10:46:27.4497513 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000175","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4497906 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000170","Filter: System32, 1: System32","2512"
"10:46:27.4497914 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4498196 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:27.4498298 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000043","","740"
"10:46:27.4498332 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000064","","2512"
"10:46:27.4499945 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000188","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4500320 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\win32u.dll","0.0000227","Filter: win32u.dll, 1: win32u.dll","2512"
"10:46:27.4500730 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000294","","2512"
"10:46:27.4501967 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4502642 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:27.4502855 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000072","","740"
"10:46:27.4504890 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4505462 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000047","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:27.4505654 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000064","","2512"
"10:46:27.4506204 AM","firefox.exe","7384","CreateFile","C:\","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4506328 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4506516 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000158","Filter: Windows, 1: Windows","2512"
"10:46:27.4506836 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:27.4506840 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:27.4507006 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000064","","740"
"10:46:27.4508239 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000209","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4508709 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000158","Filter: System32, 1: System32","2512"
"10:46:27.4509076 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000072","","2512"
"10:46:27.4509362 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4509963 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:27.4510138 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000060","","740"
"10:46:27.4510915 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000140","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4511239 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\gdi32.dll","0.0000166","Filter: gdi32.dll, 1: gdi32.dll","2512"
"10:46:27.4511580 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000060","","2512"
"10:46:27.4514076 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4514302 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4514516 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000038","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:27.4514686 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000060","","740"
"10:46:27.4514720 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000030","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:27.4514895 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000052","","2512"
"10:46:27.4515390 AM","firefox.exe","7384","CreateFile","C:\","0.0000116","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4515672 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000132","Filter: Windows, 1: Windows","2512"
"10:46:27.4515971 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:27.4517289 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4517438 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4517592 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000149","Filter: System32, 1: System32","2512"
"10:46:27.4517912 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:27.4517929 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000034","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:27.4518100 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000051","","740"
"10:46:27.4519294 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4519584 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\gdi32.dll","0.0000239","Filter: gdi32.dll, 1: gdi32.dll","2512"
"10:46:27.4520173 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000363","","2512"
"10:46:27.4521312 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4521714 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000034","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:27.4521884 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000051","","740"
"10:46:27.4522132 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000158","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4522610 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32.dll","0.0000038","AllocationSize: 155,648, EndOfFile: 155,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4522853 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.4523045 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32.dll","0.0000034","AllocationSize: 155,648, EndOfFile: 155,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4523369 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:27.4524137 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000077","","2512"
"10:46:27.4525822 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4526232 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000166","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4526275 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000038","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:27.4526441 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000055","","740"
"10:46:27.4526765 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32.dll","0.0000039","AllocationSize: 155,648, EndOfFile: 155,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4526991 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32.dll","0.0000035","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.4527183 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32.dll","0.0000030","AllocationSize: 155,648, EndOfFile: 155,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4527516 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:27.4528498 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32.dll","0.0000038","AllocationSize: 155,648, EndOfFile: 155,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4528728 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000068","","2512"
"10:46:27.4529658 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4530093 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000034","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:27.4530264 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000060","","740"
"10:46:27.4530605 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000162","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4531104 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32.dll","0.0000039","AllocationSize: 155,648, EndOfFile: 155,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4531326 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.4531510 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32.dll","0.0000025","AllocationSize: 155,648, EndOfFile: 155,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4531826 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32.dll","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:27.4533067 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4533460 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000038","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:27.4533626 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000060","","740"
"10:46:27.4537010 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4537513 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:27.4537547 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000077","","2512"
"10:46:27.4537692 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000051","","740"
"10:46:27.4541114 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4541571 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000042","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:27.4541750 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000060","","740"
"10:46:27.4542582 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4543043 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000042","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:27.4543226 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000060","","2512"
"10:46:27.4544830 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4545355 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000039","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:27.4545526 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000060","","740"
"10:46:27.4546315 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4546699 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000039","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:27.4546870 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000060","","2512"
"10:46:27.4549054 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4549490 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000038","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:27.4549656 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000060","","740"
"10:46:27.4550014 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4550411 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000034","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:27.4550586 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000077","","2512"
"10:46:27.4551239 AM","firefox.exe","7384","CreateFile","C:\","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4551725 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000231","Filter: Windows, 1: Windows","2512"
"10:46:27.4552280 AM","firefox.exe","7384","CloseFile","C:\","0.0000102","","2512"
"10:46:27.4552715 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4553321 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000043","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:27.4553496 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000064","","740"
"10:46:27.4554418 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000183","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4554836 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000166","Filter: System32, 1: System32","2512"
"10:46:27.4555203 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000072","","2512"
"10:46:27.4555890 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4556235 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000034","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:27.4556346 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000047","","740"
"10:46:27.4556982 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000209","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4557409 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\gdi32.dll","0.0000209","Filter: gdi32.dll, 1: gdi32.dll","2512"
"10:46:27.4557801 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000354","","2512"
"10:46:27.4560331 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4560826 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000047","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:27.4561031 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000064","","740"
"10:46:27.4561889 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4562213 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000042","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:27.4562388 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000059","","2512"
"10:46:27.4562925 AM","firefox.exe","7384","CreateFile","C:\","0.0000120","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4563241 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000162","Filter: Windows, 1: Windows","2512"
"10:46:27.4563587 AM","firefox.exe","7384","CloseFile","C:\","0.0000047","","2512"
"10:46:27.4563919 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4564329 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000038","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:27.4564500 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000055","","740"
"10:46:27.4564939 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4565242 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000149","Filter: System32, 1: System32","2512"
"10:46:27.4565545 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000051","","2512"
"10:46:27.4568374 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4568472 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4568758 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:27.4568911 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000060","","740"
"10:46:27.4569014 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000047","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:27.4570110 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000103","","2512"
"10:46:27.4570840 AM","firefox.exe","7384","CreateFile","C:\","0.0000179","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4571233 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000174","Filter: Windows, 1: Windows","2512"
"10:46:27.4571489 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4571608 AM","firefox.exe","7384","CloseFile","C:\","0.0000081","","2512"
"10:46:27.4571800 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:27.4571911 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000043","","740"
"10:46:27.4573477 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000188","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4573874 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000162","Filter: System32, 1: System32","2512"
"10:46:27.4574138 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4574232 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000068","","2512"
"10:46:27.4574424 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:27.4574531 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000042","","740"
"10:46:27.4576476 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000179","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4576890 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32full.dll","0.0000047","AllocationSize: 1,638,400, EndOfFile: 1,634,912, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4577150 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32full.dll","0.0000035","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.4577347 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32full.dll","0.0000030","AllocationSize: 1,638,400, EndOfFile: 1,634,912, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4577675 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32full.dll","0.0000039","SyncType: SyncTypeOther","2512"
"10:46:27.4577795 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000345","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4578396 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000039","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:27.4578558 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000081","","740"
"10:46:27.4578887 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000068","","2512"
"10:46:27.4581050 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000175","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4581473 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32full.dll","0.0000042","AllocationSize: 1,638,400, EndOfFile: 1,634,912, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4581703 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32full.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.4581899 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32full.dll","0.0000034","AllocationSize: 1,638,400, EndOfFile: 1,634,912, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4581916 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4582223 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32full.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:27.4582364 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000039","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:27.4582539 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000068","","740"
"10:46:27.4582642 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:27.4582902 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7392"
"10:46:27.4583026 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000059","","7392"
"10:46:27.4583337 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32full.dll","0.0000043","AllocationSize: 1,638,400, EndOfFile: 1,634,912, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4583542 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000068","","2512"
"10:46:27.4584114 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000128","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:27.4584809 AM","firefox.exe","7336","CreateFileMapping","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:27.4585236 AM","firefox.exe","7336","CreateFileMapping","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000021","SyncType: SyncTypeOther","7392"
"10:46:27.4585462 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000235","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4585658 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4585739 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000043","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:27.4586234 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000068","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:27.4586439 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000064","","740"
"10:46:27.4586601 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32full.dll","0.0000043","AllocationSize: 1,638,400, EndOfFile: 1,634,912, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4586639 AM","firefox.exe","7336","Load Image","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000000","Image Base: 0x7ffb3c840000, Image Size: 0x40000","7392"
"10:46:27.4586831 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32full.dll","0.0000035","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.4587002 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32full.dll","0.0000030","AllocationSize: 1,638,400, EndOfFile: 1,634,912, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4587015 AM","firefox.exe","7336","QueryNameInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000072","Name: \Program Files\Firefox Nightly\softokn3.dll","7392"
"10:46:27.4587288 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32full.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:27.4588790 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000094","","7392"
"10:46:27.4590002 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4590445 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000039","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:27.4590620 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000060","","740"
"10:46:27.4593534 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4593739 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:27.4594017 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000038","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:27.4594076 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000051","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","7392"
"10:46:27.4594200 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000060","","740"
"10:46:27.4594238 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000077","","7392"
"10:46:27.4595356 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000124","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:27.4595843 AM","firefox.exe","7336","CreateFileMapping","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:27.4596274 AM","firefox.exe","7336","CreateFileMapping","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000017","SyncType: SyncTypeOther","7392"
"10:46:27.4596653 AM","firefox.exe","7336","QuerySecurityFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000026","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","7392"
"10:46:27.4596880 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000157","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4597148 AM","firefox.exe","7336","Load Image","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000000","Image Base: 0x7ffb1de70000, Image Size: 0x95000","7392"
"10:46:27.4597298 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000034","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:27.4597417 AM","firefox.exe","7336","QueryNameInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000047","Name: \Program Files\Firefox Nightly\freebl3.dll","7392"
"10:46:27.4597481 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000056","","740"
"10:46:27.4598450 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000064","","7392"
"10:46:27.4599367 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000073","","2512"
"10:46:27.4600144 AM","firefox.exe","7336","CreateFile","C:\","0.0000145","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:27.4600574 AM","firefox.exe","7336","QueryNameInformationFile","C:\","0.0000043","Name: \","7392"
"10:46:27.4600801 AM","firefox.exe","7336","QueryInformationVolume","C:\","0.0000025","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Windows","7392"
"10:46:27.4600967 AM","firefox.exe","7336","QueryAttributeInformationVolume","C:\","0.0000021","FileSystemAttributes: Case Preserved, Case Sensitive, Unicode, ACLs, Compression, Named Streams, EFS, Object IDs, Reparse Points, Sparse Files, Quotas, Transactions, 0x3c00600, MaximumComponentNameLength: 255, FileSystemName: NTFS","7392"
"10:46:27.4601159 AM","firefox.exe","7336","CloseFile","C:\","0.0000047","","7392"
"10:46:27.4601219 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4601586 AM","firefox.exe","7336","CreateFile","C:\","0.0000098","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:27.4601697 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000042","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:27.4601872 AM","firefox.exe","7336","QuerySizeInformationVolume","C:\","0.0000021","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,870, SectorsPerAllocationUnit: 8, BytesPerSector: 512","7392"
"10:46:27.4601876 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000068","","740"
"10:46:27.4602038 AM","firefox.exe","7336","CloseFile","C:\","0.0000038","","7392"
"10:46:27.4605293 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4605729 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000038","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:27.4605916 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000060","","740"
"10:46:27.4607235 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4607542 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000038","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:27.4607713 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000059","","2512"
"10:46:27.4608084 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0100578","Offset: 16,310,272, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.4608997 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4609475 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000038","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:27.4609624 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000060","","740"
"10:46:27.4610362 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4610567 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000047","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:27.4610695 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000047","","2512"
"10:46:27.4615905 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000157","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4616301 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000039","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:27.4616451 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000055","","740"
"10:46:27.4616754 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4617018 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000034","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:27.4617172 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000051","","2512"
"10:46:27.4617637 AM","firefox.exe","7384","CreateFile","C:\","0.0000119","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4617901 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000145","Filter: Windows, 1: Windows","2512"
"10:46:27.4618179 AM","firefox.exe","7384","CloseFile","C:\","0.0000081","","2512"
"10:46:27.4619143 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4619446 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4619467 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:27.4619582 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000069","","740"
"10:46:27.4619719 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000175","Filter: System32, 1: System32","2512"
"10:46:27.4620082 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000064","","2512"
"10:46:27.4622872 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4623367 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000043","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:27.4623550 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000073","","740"
"10:46:27.4623934 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0002112","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4626221 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000043","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:27.4626401 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000068","","2512"
"10:46:27.4626977 AM","firefox.exe","7384","CreateFile","C:\","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4627173 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4627297 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000166","Filter: Windows, 1: Windows","2512"
"10:46:27.4627625 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000039","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.4627638 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:27.4627817 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000056","","740"
"10:46:27.4629153 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4629490 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000149","Filter: System32, 1: System32","2512"
"10:46:27.4629810 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:27.4631299 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4631730 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000038","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.4631905 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000064","","740"
"10:46:27.4632941 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000163","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4633244 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000039","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:27.4633419 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000051","","2512"
"10:46:27.4633953 AM","firefox.exe","7384","CreateFile","C:\","0.0000119","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4634247 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000145","Filter: Windows, 1: Windows","2512"
"10:46:27.4634563 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:27.4634742 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4635079 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.4635186 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000042","","740"
"10:46:27.4636150 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000119","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4636432 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000123","Filter: System32, 1: System32","2512"
"10:46:27.4636696 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000043","","2512"
"10:46:27.4638462 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000146","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4638782 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000035","AllocationSize: 643,072, EndOfFile: 641,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4638957 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp_win.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.4639085 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000056","AllocationSize: 643,072, EndOfFile: 641,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4639107 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4639333 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp_win.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:27.4639563 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:27.4639760 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000059","","740"
"10:46:27.4639896 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000060","","2512"
"10:46:27.4642055 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000171","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4642558 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000039","AllocationSize: 643,072, EndOfFile: 641,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4642797 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp_win.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.4642977 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4642989 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000030","AllocationSize: 643,072, EndOfFile: 641,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4643335 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp_win.dll","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:27.4643403 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:27.4643578 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000086","","740"
"10:46:27.4644534 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000043","AllocationSize: 643,072, EndOfFile: 641,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4644743 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000068","","2512"
"10:46:27.4646846 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4647077 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000158","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4647333 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000064","Exclusive: True, Offset: 128, Length: 1, Fail Immediately: True","5068"
"10:46:27.4647350 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:27.4647452 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000034","AllocationSize: 643,072, EndOfFile: 641,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4647521 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000068","","740"
"10:46:27.4647657 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000572","EndOfFile: 0","5068"
"10:46:27.4648468 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000311","AllocationSize: 0","5068"
"10:46:27.4648997 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000038","Offset: 128, Length: 1","5068"
"10:46:27.4649210 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000034","Exclusive: False, Offset: 128, Length: 1, Fail Immediately: True","5068"
"10:46:27.4649419 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000043","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:27.4649633 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000021","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","5068"
"10:46:27.4649808 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000029","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:27.4650004 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0001877","EndOfFile: 32,768","5068"
"10:46:27.4650055 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp_win.dll","0.0000068","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.4650371 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000042","AllocationSize: 643,072, EndOfFile: 641,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4650738 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp_win.dll","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:27.4651237 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4651702 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:27.4651864 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000064","","740"
"10:46:27.4652116 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000256","AllocationSize: 32,768","5068"
"10:46:27.4652619 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5068"
"10:46:27.4652841 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000034","AllocationSize: 32,768, EndOfFile: 32,768, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:27.4653212 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000022","SyncType: SyncTypeOther","5068"
"10:46:27.4653963 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000145","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5068"
"10:46:27.4654411 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000034","Exclusive: True, Offset: 121, Length: 2, Fail Immediately: True","5068"
"10:46:27.4654603 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000017","Exclusive: True, Offset: 124, Length: 4, Fail Immediately: True","5068"
"10:46:27.4654629 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4654812 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-wal","0.0000039","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:27.4655004 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000039","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:27.4655043 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000025","Offset: 121, Length: 2","5068"
"10:46:27.4655149 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000060","","740"
"10:46:27.4655265 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000017","Offset: 124, Length: 4","5068"
"10:46:27.4655418 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000017","Offset: 120, Length: 1","5068"
"10:46:27.4655572 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000025","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:27.4655819 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000034","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:27.4656075 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000116","Offset: 0, Length: 4,096","5068"
"10:46:27.4657530 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4657880 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000039","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:27.4658098 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000064","","740"
"10:46:27.4659036 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000107","","2512"
"10:46:27.4659847 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000047","Offset: 123, Length: 1","5068"
"10:46:27.4661669 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4662403 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000042","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:27.4662556 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000060","","740"
"10:46:27.4664890 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000312","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:27.4665385 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000051","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 6/19/2019 4:53:48 PM, LastWriteTime: 3/25/2020 10:46:19 AM, ChangeTime: 3/25/2020 10:46:19 AM, AllocationSize: 49152, EndOfFile: 49152, FileAttributes: A","5068"
"10:46:27.4665603 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000077","","5068"
"10:46:27.4666303 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0006574","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4666362 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4666849 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000047","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:27.4667036 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000064","","740"
"10:46:27.4668641 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:27.4669003 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000039","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:27 AM, LastWriteTime: 3/26/2020 10:46:27 AM, ChangeTime: 3/26/2020 10:46:27 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:27.4669178 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000051","","5068"
"10:46:27.4669814 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4670347 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000039","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:27.4670527 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000059","","740"
"10:46:27.4670838 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000201","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:27.4671218 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000038","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,862, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5068"
"10:46:27.4671388 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000052","","5068"
"10:46:27.4672276 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000072","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:27.4672630 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000060","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:27.4672946 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000034","Offset: 123, Length: 1","5068"
"10:46:27.4673074 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000047","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:27.4673261 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000073","","2512"
"10:46:27.4673641 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000030","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:27.4673829 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000034","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:27.4674187 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000081","Offset: 8,192, Length: 4,096","5068"
"10:46:27.4674593 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000030","Offset: 123, Length: 1","5068"
"10:46:27.4674738 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4675028 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000030","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:27.4675211 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000039","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:27.4675297 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000042","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:27.4675510 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000115","","740"
"10:46:27.4675621 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000060","Offset: 12,288, Length: 4,096","5068"
"10:46:27.4676018 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000025","Offset: 123, Length: 1","5068"
"10:46:27.4676474 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000030","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:27.4676658 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000034","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:27.4676884 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000051","Offset: 16,384, Length: 4,096","5068"
"10:46:27.4677106 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000025","Offset: 123, Length: 1","5068"
"10:46:27.4677588 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4677912 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000039","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:27.4678096 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000068","","2512"
"10:46:27.4678970 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4679444 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000043","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:27.4679623 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000060","","740"
"10:46:27.4679661 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.files","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:27.4679956 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.files","0.0000030","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 6/19/2019 4:53:49 PM, ChangeTime: 6/19/2019 4:53:49 PM, AllocationSize: 0, EndOfFile: 0, FileAttributes: D","5068"
"10:46:27.4680084 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.files","0.0000038","","5068"
"10:46:27.4681496 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4681803 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000039","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:27.4681974 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000055","","2512"
"10:46:27.4682362 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.files","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:27.4682401 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4682512 AM","firefox.exe","7384","CreateFile","C:\","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4682661 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.files","0.0000034","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 6/19/2019 4:53:49 PM, ChangeTime: 6/19/2019 4:53:49 PM, FileAttributes: D","5068"
"10:46:27.4682806 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.files","0.0000043","","5068"
"10:46:27.4682827 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000043","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:27.4682832 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000247","Filter: Windows, 1: Windows","2512"
"10:46:27.4682998 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000154","","740"
"10:46:27.4683344 AM","firefox.exe","7384","CloseFile","C:\","0.0000068","","2512"
"10:46:27.4684944 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4685328 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000153","Filter: System32, 1: System32","2512"
"10:46:27.4685665 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000076","","2512"
"10:46:27.4685690 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.files\journals","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:27.4686215 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000030","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:27.4686369 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000034","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:27.4686565 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000098","Offset: 40,960, Length: 4,096","5068"
"10:46:27.4686817 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4686928 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000034","Offset: 123, Length: 1","5068"
"10:46:27.4687158 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:27.4687260 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000017","Offset: 1,073,741,826, Length: 510","5068"
"10:46:27.4687354 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000043","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.4687359 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000012","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:27.4687555 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000060","","740"
"10:46:27.4687717 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000081","","5068"
"10:46:27.4689236 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4689675 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000043","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","2512"
"10:46:27.4689846 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000064","","2512"
"10:46:27.4689957 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:27.4690239 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000029","CreationTime: 3/26/2020 10:46:27 AM, LastAccessTime: 3/26/2020 10:46:27 AM, LastWriteTime: 3/26/2020 10:46:27 AM, ChangeTime: 3/26/2020 10:46:27 AM, FileAttributes: A","5068"
"10:46:27.4690367 AM","firefox.exe","7384","CreateFile","C:\","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4690379 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000056","","5068"
"10:46:27.4690674 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000153","Filter: Windows, 1: Windows","2512"
"10:46:27.4690746 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4691327 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000051","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.4691331 AM","firefox.exe","7384","CloseFile","C:\","0.0000064","","2512"
"10:46:27.4691519 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000059","","740"
"10:46:27.4692653 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000346","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:27.4693089 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4693217 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000055","Attributes: A, ReparseTag: 0x0","5068"
"10:46:27.4693421 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000141","Filter: System32, 1: System32","2512"
"10:46:27.4693464 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000115","Delete: True","5068"
"10:46:27.4693776 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:27.4693788 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0001093","","5068"
"10:46:27.4694292 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4694774 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000068","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.4694966 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000064","","740"
"10:46:27.4695376 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4695431 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-wal","0.0000290","","5068"
"10:46:27.4695691 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\shell32.dll","0.0000171","Filter: shell32.dll, 1: shell32.dll","2512"
"10:46:27.4696024 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000056","","2512"
"10:46:27.4698520 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-wal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:27.4698823 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-wal","0.0000030","CreationTime: 3/26/2020 10:46:27 AM, LastAccessTime: 3/26/2020 10:46:27 AM, LastWriteTime: 3/26/2020 10:46:27 AM, ChangeTime: 3/26/2020 10:46:27 AM, FileAttributes: A","5068"
"10:46:27.4698951 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-wal","0.0000051","","5068"
"10:46:27.4699847 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4699915 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4700282 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:27.4700355 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-wal","0.0000307","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:27.4700453 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000038","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","2512"
"10:46:27.4700470 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000064","","740"
"10:46:27.4700649 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000069","","2512"
"10:46:27.4700871 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-wal","0.0000047","Attributes: A, ReparseTag: 0x0","5068"
"10:46:27.4701140 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-wal","0.0000094","Delete: True","5068"
"10:46:27.4701212 AM","firefox.exe","7384","CreateFile","C:\","0.0000133","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4701400 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-wal","0.0000879","","5068"
"10:46:27.4701515 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000145","Filter: Windows, 1: Windows","2512"
"10:46:27.4701835 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:27.4702906 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4702983 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000085","Offset: 1,073,741,826, Length: 510","5068"
"10:46:27.4703209 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000026","Offset: 1,073,741,825, Length: 1","5068"
"10:46:27.4703273 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:27.4703401 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000047","","740"
"10:46:27.4703414 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000021","Offset: 1,073,741,826, Length: 510","5068"
"10:46:27.4703461 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000171","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4703683 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000021","Offset: 1,073,741,824, Length: 1","5068"
"10:46:27.4703815 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000158","Filter: System32, 1: System32","2512"
"10:46:27.4703871 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000076","","5068"
"10:46:27.4704131 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:27.4705582 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000140","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4705697 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4705855 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\shell32.dll","0.0000153","Filter: shell32.dll, 1: shell32.dll","2512"
"10:46:27.4706128 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000042","","2512"
"10:46:27.4706204 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000035","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:27.4706341 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000047","","740"
"10:46:27.4707416 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4707851 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shell32.dll","0.0000035","AllocationSize: 21,389,312, EndOfFile: 21,388,752, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4708035 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shell32.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.4708159 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shell32.dll","0.0000021","AllocationSize: 21,389,312, EndOfFile: 21,388,752, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4708790 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shell32.dll","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:27.4709059 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4709294 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000025","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:27.4709396 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000038","","740"
"10:46:27.4710441 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000090","","2512"
"10:46:27.4711307 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4711713 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000034","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:27.4711866 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000052","","740"
"10:46:27.4712886 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000188","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4713458 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shell32.dll","0.0000042","AllocationSize: 21,389,312, EndOfFile: 21,388,752, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4713714 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shell32.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.4713923 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shell32.dll","0.0000030","AllocationSize: 21,389,312, EndOfFile: 21,388,752, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4714264 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shell32.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:27.4714588 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000163","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4714879 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000034","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:27.4715032 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000056","","740"
"10:46:27.4715907 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\shell32.dll","0.0155034","Offset: 21,192,704, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.4718501 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4718915 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:27.4719026 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000051","","740"
"10:46:27.4719086 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0007057","Offset: 17,338,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.4721202 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4721492 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:27.4721594 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000043","","740"
"10:46:27.4723425 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4723689 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:27.4723792 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000038","","740"
"10:46:27.4726211 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4726510 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000025","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:27.4726608 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000038","","740"
"10:46:27.4728468 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4728728 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:27.4728826 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000039","","740"
"10:46:27.4730584 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4730836 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:27.4730934 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000038","","740"
"10:46:27.4733302 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4733588 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000026","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:27.4733686 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000043","","740"
"10:46:27.4735504 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4735760 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000025","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:27.4735858 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000038","","740"
"10:46:27.4737748 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4737995 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000022","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:27.4738089 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000039","","740"
"10:46:27.4740449 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4740718 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:27.4740816 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000038","","740"
"10:46:27.4742578 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4742825 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000022","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:27.4742919 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000039","","740"
"10:46:27.4744656 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4744903 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000021","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:27.4745001 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000034","","740"
"10:46:27.4747736 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4748018 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:27.4748120 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000039","","740"
"10:46:27.4749929 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4750198 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:27.4750292 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000038","","740"
"10:46:27.4752067 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4752323 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:27.4752425 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000034","","740"
"10:46:27.4754879 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0003840","Offset: 17,375,232, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.4755241 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4755553 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:27.4755651 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000038","","740"
"10:46:27.4757456 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4757712 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:27.4757806 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000038","","740"
"10:46:27.4759568 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4759824 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000021","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:27.4759918 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000038","","740"
"10:46:27.4762529 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4762802 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:27.4762904 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000039","","740"
"10:46:27.4764752 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4765003 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000022","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:27.4765097 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000039","","740"
"10:46:27.4766838 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4767086 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:27.4767184 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000038","","740"
"10:46:27.4769880 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4770166 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000026","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:27.4770264 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000039","","740"
"10:46:27.4772312 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4772585 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000030","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:27.4772688 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000038","","740"
"10:46:27.4774454 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4774719 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000025","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:27.4774817 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000038","","740"
"10:46:27.4777317 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000440","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4778051 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000043","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:27.4778226 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000064","","740"
"10:46:27.4780346 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4780637 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000034","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:27.4780743 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000039","","740"
"10:46:27.4782531 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4782791 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000022","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:27.4782885 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000038","","740"
"10:46:27.4785360 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4785658 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.4785761 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000038","","740"
"10:46:27.4787779 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4788043 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.4788142 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000038","","740"
"10:46:27.4790109 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4790373 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.4790471 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000039","","740"
"10:46:27.4793454 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4793757 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000029","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:27.4793859 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000043","","740"
"10:46:27.4795694 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4795950 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:27.4796048 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000038","","740"
"10:46:27.4797797 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4798045 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:27.4798143 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000034","","740"
"10:46:27.4800767 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4801053 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000025","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:27.4801146 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000039","","740"
"10:46:27.4802968 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4803237 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000021","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:27.4803331 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000034","","740"
"10:46:27.4805413 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4805750 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000030","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:27.4805853 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000038","","740"
"10:46:27.4808485 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4808775 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:27.4808873 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000039","","740"
"10:46:27.4809850 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0402399","Offset: 13,713,408, Length: 69,632, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.4810746 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4811011 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:27.4811109 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000034","","740"
"10:46:27.4812880 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4813136 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000021","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:27.4813230 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000038","","740"
"10:46:27.4815798 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4816088 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000026","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:27.4816186 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000039","","740"
"10:46:27.4817953 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4818209 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000025","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:27.4818307 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000038","","740"
"10:46:27.4820048 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4820295 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000022","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:27.4820389 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000039","","740"
"10:46:27.4822941 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4823214 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:27.4823312 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000038","","740"
"10:46:27.4825142 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4825390 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:27.4825488 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000038","","740"
"10:46:27.4827220 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4827472 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:27.4827566 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000038","","740"
"10:46:27.4830181 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4830463 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000025","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:27.4830561 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000043","","740"
"10:46:27.4832370 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4832630 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000026","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:27.4832724 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000038","","740"
"10:46:27.4834580 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4834836 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000026","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:27.4834930 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000038","","740"
"10:46:27.4837477 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4837750 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:27.4837848 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000039","","740"
"10:46:27.4840366 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4840762 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000039","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:27.4840925 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000059","","740"
"10:46:27.4843130 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4843399 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:27.4843502 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000038","","740"
"10:46:27.4846151 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4846360 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.4846458 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000039","","740"
"10:46:27.4848280 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4848464 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.4848558 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000034","","740"
"10:46:27.4850298 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000099","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4850478 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000021","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.4850572 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000038","","740"
"10:46:27.4853127 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4853580 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:27.4853678 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000042","","740"
"10:46:27.4855657 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4855943 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000022","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:27.4856041 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000039","","740"
"10:46:27.4857791 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4858060 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:27.4858158 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000038","","740"
"10:46:27.4860654 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4860931 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:27.4861029 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000043","","740"
"10:46:27.4862915 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4863180 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000021","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:27.4863273 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000039","","740"
"10:46:27.4865023 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4865279 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000021","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:27.4865373 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000038","","740"
"10:46:27.4867860 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4868150 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:27.4868248 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000043","","740"
"10:46:27.4870032 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4870305 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000021","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:27.4870399 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000038","","740"
"10:46:27.4871653 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shell32.dll","0.0000047","AllocationSize: 21,389,312, EndOfFile: 21,388,752, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4871888 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000081","","2512"
"10:46:27.4872255 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4872664 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000039","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:27.4872822 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000064","","740"
"10:46:27.4874977 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000179","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.4875544 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shell32.dll","0.0000039","AllocationSize: 21,389,312, EndOfFile: 21,388,752, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4875805 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shell32.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.4876014 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shell32.dll","0.0000030","AllocationSize: 21,389,312, EndOfFile: 21,388,752, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.4876359 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shell32.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:27.4876372 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4876807 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000039","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:27.4876969 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000064","","740"
"10:46:27.4879551 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4879952 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000038","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:27.4880118 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000051","","740"
"10:46:27.4882520 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4882913 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000034","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:27.4883071 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000055","","740"
"10:46:27.4886582 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4887000 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000035","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:27.4887171 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000056","","740"
"10:46:27.4889829 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4890205 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000034","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:27.4890367 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000051","","740"
"10:46:27.4892824 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\shell32.dll","0.0003879","Offset: 21,225,472, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.4892841 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000146","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4893247 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000042","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:27.4893379 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000051","","740"
"10:46:27.4896080 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4896383 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000030","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:27.4896485 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000043","","740"
"10:46:27.4898299 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4898563 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000030","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:27.4898665 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000043","","740"
"10:46:27.4900765 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4901029 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000026","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:27.4901132 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000038","","740"
"10:46:27.4903675 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4903952 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:27.4904054 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000043","","740"
"10:46:27.4905829 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4906081 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:27.4906179 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000038","","740"
"10:46:27.4908014 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4908270 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:27.4908368 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000038","","740"
"10:46:27.4909584 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\shell32.dll","0.0003831","Offset: 21,258,240, Length: 65,536, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.4910928 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4911286 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:27.4911384 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000039","","740"
"10:46:27.4913249 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4913595 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000034","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:27.4913748 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000056","","740"
"10:46:27.4916120 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4916483 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000034","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:27.4916637 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000055","","740"
"10:46:27.4920088 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4920472 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000035","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:27.4920635 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000055","","740"
"10:46:27.4923340 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4923711 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000038","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:27.4923873 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000055","","740"
"10:46:27.4926382 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4926757 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000034","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:27.4926924 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000051","","740"
"10:46:27.4930456 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4930751 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000034","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:27.4930913 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000055","","740"
"10:46:27.4933669 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4933951 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000034","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:27.4934113 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000051","","740"
"10:46:27.4936647 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4936920 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000035","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:27.4937083 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000051","","740"
"10:46:27.4940867 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4941157 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000034","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:27.4941319 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000052","","740"
"10:46:27.4943935 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4944195 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000030","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:27.4944353 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000055","","740"
"10:46:27.4944494 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\shell32.dll","0.0004015","Offset: 21,323,776, Length: 64,976, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.4946465 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4946666 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000025","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:27.4946764 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000042","","740"
"10:46:27.4949460 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4949669 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000030","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:27.4949772 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000038","","740"
"10:46:27.4951764 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4951943 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000026","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:27.4952037 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000039","","740"
"10:46:27.4953876 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4954060 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000021","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:27.4954154 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000034","","740"
"10:46:27.4957098 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4957375 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000034","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:27.4957503 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000051","","740"
"10:46:27.4959820 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4960076 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000030","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:27.4960221 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000051","","740"
"10:46:27.4962610 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4962870 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000030","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:27.4963020 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000047","","740"
"10:46:27.4966663 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000163","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4967103 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000034","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.4967274 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000051","","740"
"10:46:27.4969787 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4970175 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000034","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.4970337 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000051","","740"
"10:46:27.4972995 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4973383 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000035","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.4973550 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000055","","740"
"10:46:27.4976886 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000081","","2512"
"10:46:27.4977629 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4978068 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:27.4978235 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000076","","740"
"10:46:27.4981145 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4981558 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:27.4981729 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000060","","740"
"10:46:27.4984379 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4984767 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:27.4984933 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000056","","740"
"10:46:27.4988752 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4989174 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000039","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:27.4989337 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000055","","740"
"10:46:27.4992106 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4992490 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000034","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:27.4992647 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000056","","740"
"10:46:27.4995246 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4995630 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000034","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:27.4995788 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000055","","740"
"10:46:27.4999542 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.4999990 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000039","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:27.5000157 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000064","","740"
"10:46:27.5003015 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000163","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5003425 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000038","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:27.5003587 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000056","","740"
"10:46:27.5006211 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5006599 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000035","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:27.5006757 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000060","","740"
"10:46:27.5010973 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5011280 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000034","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:27.5011438 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000055","","740"
"10:46:27.5014433 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5014715 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000038","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:27.5014873 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000055","","740"
"10:46:27.5017526 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5017804 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000034","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:27.5017962 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000055","","740"
"10:46:27.5022053 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5022365 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000043","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:27.5022531 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000064","","740"
"10:46:27.5026943 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5027020 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5027357 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000034","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","2512"
"10:46:27.5027378 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000039","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:27.5027485 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000051","","2512"
"10:46:27.5027545 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000064","","740"
"10:46:27.5030472 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5030745 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5030804 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000030","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","2512"
"10:46:27.5030920 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000042","","2512"
"10:46:27.5030988 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000034","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:27.5031112 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000046","","740"
"10:46:27.5033778 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5034098 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000034","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","2512"
"10:46:27.5034213 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000043","","2512"
"10:46:27.5034602 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5034610 AM","firefox.exe","7384","CreateFile","C:\","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5034849 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000132","Filter: Windows, 1: Windows","2512"
"10:46:27.5034947 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000103","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:27.5035173 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:27.5035212 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000055","","740"
"10:46:27.5036624 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5036889 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000123","Filter: System32, 1: System32","2512"
"10:46:27.5037149 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000043","","2512"
"10:46:27.5037490 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5037827 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:27.5037934 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000043","","740"
"10:46:27.5038288 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5038540 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\shell32.dll","0.0000222","Filter: shell32.dll, 1: shell32.dll","2512"
"10:46:27.5038890 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000059","","2512"
"10:46:27.5040904 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5041505 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000047","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:27.5041684 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000064","","740"
"10:46:27.5042201 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.1541164","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:27.5042922 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5043289 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000029","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:27.5043417 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000051","","2512"
"10:46:27.5043839 AM","firefox.exe","7384","CreateFile","C:\","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5044065 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000124","Filter: Windows, 1: Windows","2512"
"10:46:27.5044325 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:27.5045042 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5045384 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000029","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:27.5045499 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000042","","740"
"10:46:27.5045622 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000116","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5045870 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:27.5046092 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:27.5047504 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000179","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5047615 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5047926 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\SHCore.dll","0.0000184","Filter: SHCore.dll, 1: SHCore.dll","2512"
"10:46:27.5048033 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000039","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:27.5048200 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000059","","740"
"10:46:27.5048289 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000056","","2512"
"10:46:27.5050858 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5051050 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5051220 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000034","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:27.5051331 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000043","","740"
"10:46:27.5051468 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000034","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:27.5051592 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000051","","2512"
"10:46:27.5051963 AM","firefox.exe","7384","CreateFile","C:\","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5052168 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:27.5052377 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:27.5053358 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5053584 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:27.5053785 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000042","","2512"
"10:46:27.5054241 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5054570 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000030","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:27.5054681 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000042","","740"
"10:46:27.5054804 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5055030 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\SHCore.dll","0.0000210","Filter: SHCore.dll, 1: SHCore.dll","2512"
"10:46:27.5055355 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000136","","2512"
"10:46:27.5057142 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000133","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5057313 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5057544 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\SHCore.dll","0.0000029","AllocationSize: 679,936, EndOfFile: 678,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.5057633 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000034","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:27.5057723 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\SHCore.dll","0.0000081","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.5057753 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000059","","740"
"10:46:27.5057945 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\SHCore.dll","0.0000034","AllocationSize: 679,936, EndOfFile: 678,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.5058166 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\SHCore.dll","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:27.5058764 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000060","","2512"
"10:46:27.5060168 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5060492 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000025","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:27.5060560 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5060598 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000043","","740"
"10:46:27.5060965 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\SHCore.dll","0.0000026","AllocationSize: 679,936, EndOfFile: 678,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.5061136 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\SHCore.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.5061251 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\SHCore.dll","0.0000017","AllocationSize: 679,936, EndOfFile: 678,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.5061469 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\SHCore.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:27.5061964 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\SHCore.dll","0.0209937","Offset: 647,168, Length: 31,672, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.5063461 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5063760 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000030","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:27.5063862 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000043","","740"
"10:46:27.5065744 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5066013 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000026","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:27.5066111 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000038","","740"
"10:46:27.5067882 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5068142 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000026","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:27.5068240 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000039","","740"
"10:46:27.5070962 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5071167 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000026","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:27.5071261 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000038","","740"
"10:46:27.5073061 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5073245 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000026","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:27.5073339 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000038","","740"
"10:46:27.5075080 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5075280 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000026","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:27.5075395 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000043","","740"
"10:46:27.5078100 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5078297 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:27.5078391 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000038","","740"
"10:46:27.5080170 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5080349 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:27.5080443 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000038","","740"
"10:46:27.5083088 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5083289 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000025","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","740"
"10:46:27.5083378 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000039","","740"
"10:46:27.5085166 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5085345 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000026","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","740"
"10:46:27.5085439 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000034","","740"
"10:46:27.5087188 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000099","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5087363 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000026","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","740"
"10:46:27.5087457 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000034","","740"
"10:46:27.5090115 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5090316 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000021","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.5090410 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000038","","740"
"10:46:27.5092240 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5092415 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000021","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.5092505 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000038","","740"
"10:46:27.5094356 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000099","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5094536 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000021","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.5094629 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000039","","740"
"10:46:27.5097309 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5097599 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000030","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:27.5097701 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000039","","740"
"10:46:27.5099472 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5099732 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000022","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:27.5099826 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000039","","740"
"10:46:27.5101669 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5101925 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000026","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:27.5102024 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000038","","740"
"10:46:27.5104801 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5105087 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","740"
"10:46:27.5105185 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000043","","740"
"10:46:27.5107041 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5107310 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","740"
"10:46:27.5107412 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000039","","740"
"10:46:27.5109247 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5109503 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","740"
"10:46:27.5109601 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000039","","740"
"10:46:27.5112426 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5112639 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:27.5112733 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000043","","740"
"10:46:27.5114491 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5114679 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000021","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:27.5114772 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000039","","740"
"10:46:27.5116445 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5116624 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:27.5116718 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000038","","740"
"10:46:27.5119329 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5119521 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","740"
"10:46:27.5119615 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000034","","740"
"10:46:27.5122188 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5122376 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000021","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","740"
"10:46:27.5122470 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000038","","740"
"10:46:27.5124820 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5125064 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000030","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","740"
"10:46:27.5125170 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000043","","740"
"10:46:27.5128212 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imagehlp.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5128524 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imagehlp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:27.5128626 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imagehlp.dll","0.0000043","","740"
"10:46:27.5130435 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imagehlp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5130700 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imagehlp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:27.5130798 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imagehlp.dll","0.0000038","","740"
"10:46:27.5132808 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imagehlp.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5133064 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imagehlp.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:27.5133162 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imagehlp.dll","0.0000038","","740"
"10:46:27.5135888 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rsaenh.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5136161 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rsaenh.dll","0.0000030","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.5136264 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rsaenh.dll","0.0000059","","740"
"10:46:27.5138103 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rsaenh.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5138363 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rsaenh.dll","0.0000025","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.5138461 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rsaenh.dll","0.0000043","","740"
"10:46:27.5140291 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rsaenh.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5140547 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rsaenh.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:27.5140646 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rsaenh.dll","0.0000042","","740"
"10:46:27.5143423 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5143641 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:27.5143735 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000042","","740"
"10:46:27.5145505 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5145706 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000021","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:27.5145795 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000039","","740"
"10:46:27.5147506 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5147690 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:27.5147784 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000038","","740"
"10:46:27.5150523 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5150813 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000026","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:27.5150911 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000043","","740"
"10:46:27.5153036 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5153305 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000025","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:27.5153403 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000043","","740"
"10:46:27.5155216 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5155468 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000026","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:27.5155570 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000039","","740"
"10:46:27.5158318 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sspicli.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5158600 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000021","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:27.5158698 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sspicli.dll","0.0000038","","740"
"10:46:27.5160460 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sspicli.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5160716 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:27.5160814 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sspicli.dll","0.0000038","","740"
"10:46:27.5162568 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sspicli.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5162819 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:27.5162918 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sspicli.dll","0.0000034","","740"
"10:46:27.5165674 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5165874 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000022","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:27.5165968 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000039","","740"
"10:46:27.5167735 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5167914 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000025","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:27.5168008 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000034","","740"
"10:46:27.5169731 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5169911 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000021","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:27.5170000 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000039","","740"
"10:46:27.5172752 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5173025 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000026","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","740"
"10:46:27.5173128 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000038","","740"
"10:46:27.5174941 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5175197 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000026","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","740"
"10:46:27.5175295 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000039","","740"
"10:46:27.5177027 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5177275 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000026","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","740"
"10:46:27.5177373 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000038","","740"
"10:46:27.5180146 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5180428 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000026","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/27/2019 7:17:12 PM, FileAttributes: A","740"
"10:46:27.5180526 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000039","","740"
"10:46:27.5182485 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5182749 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000026","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/27/2019 7:17:12 PM, FileAttributes: A","740"
"10:46:27.5182847 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000043","","740"
"10:46:27.5184703 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5184963 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000026","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/27/2019 7:17:12 PM, FileAttributes: A","740"
"10:46:27.5185062 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000038","","740"
"10:46:27.5187933 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5188206 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000030","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:36 PM, FileAttributes: A","740"
"10:46:27.5188309 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000038","","740"
"10:46:27.5190182 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5190442 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:36 PM, FileAttributes: A","740"
"10:46:27.5190540 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000038","","740"
"10:46:27.5192362 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5192614 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:36 PM, FileAttributes: A","740"
"10:46:27.5192712 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000042","","740"
"10:46:27.5195609 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5195814 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000029","CreationTime: 4/11/2018 4:34:35 PM, LastAccessTime: 4/11/2018 4:34:35 PM, LastWriteTime: 4/11/2018 4:34:35 PM, ChangeTime: 3/20/2019 7:07:22 PM, FileAttributes: A","740"
"10:46:27.5195912 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000042","","740"
"10:46:27.5197973 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5198160 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000030","CreationTime: 4/11/2018 4:34:35 PM, LastAccessTime: 4/11/2018 4:34:35 PM, LastWriteTime: 4/11/2018 4:34:35 PM, ChangeTime: 3/20/2019 7:07:22 PM, FileAttributes: A","740"
"10:46:27.5198258 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000039","","740"
"10:46:27.5198826 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000132","Desired Access: Read","740"
"10:46:27.5199948 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\explorerframe.dll.mui","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5200277 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\explorerframe.dll.mui","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:27.5200409 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\explorerframe.dll.mui","0.0000030","AllocationSize: 24,576, EndOfFile: 24,576, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:27.5200614 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\explorerframe.dll.mui","0.0000017","SyncType: SyncTypeOther","740"
"10:46:27.5202572 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:27.5202768 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000026","CreationTime: 4/11/2018 4:34:35 PM, LastAccessTime: 4/11/2018 4:34:35 PM, LastWriteTime: 4/11/2018 4:34:35 PM, ChangeTime: 3/20/2019 7:07:22 PM, FileAttributes: A","740"
"10:46:27.5202871 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000047","","740"
"10:46:27.5213247 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0229035","Offset: 13,783,040, Length: 139,264, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.5272473 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\SHCore.dll","0.0000047","AllocationSize: 679,936, EndOfFile: 678,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.5272690 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000077","","2512"
"10:46:27.5274504 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000153","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5274948 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\SHCore.dll","0.0000029","AllocationSize: 679,936, EndOfFile: 678,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.5275123 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\SHCore.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.5275246 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\SHCore.dll","0.0000022","AllocationSize: 679,936, EndOfFile: 678,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.5275455 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\SHCore.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:27.5279483 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000060","","2512"
"10:46:27.5283716 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5284044 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:27.5284172 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000043","","2512"
"10:46:27.5286071 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5286361 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:27.5286480 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000039","","2512"
"10:46:27.5288814 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5289100 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:27.5289207 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000038","","2512"
"10:46:27.5289582 AM","firefox.exe","7384","CreateFile","C:\","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5289813 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000140","Filter: Windows, 1: Windows","2512"
"10:46:27.5290090 AM","firefox.exe","7384","CloseFile","C:\","0.0000055","","2512"
"10:46:27.5292488 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5292740 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000115","Filter: System32, 1: System32","2512"
"10:46:27.5292974 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:27.5293960 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5294177 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\SHCore.dll","0.0000120","Filter: SHCore.dll, 1: SHCore.dll","2512"
"10:46:27.5294404 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:27.5296580 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5296904 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000034","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:27.5297019 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000043","","2512"
"10:46:27.5297365 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5297561 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:27.5297766 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:27.5298807 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5299020 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:27.5299221 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:27.5300330 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5300543 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\combase.dll","0.0000226","Filter: combase.dll, 1: combase.dll","2512"
"10:46:27.5300880 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:27.5302634 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5302924 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000030","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:27.5303031 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000042","","2512"
"10:46:27.5303368 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5303560 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:27.5303760 AM","firefox.exe","7384","CloseFile","C:\","0.0000035","","2512"
"10:46:27.5304669 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5304878 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:27.5305079 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:27.5305996 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5306201 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\combase.dll","0.0000107","Filter: combase.dll, 1: combase.dll","2512"
"10:46:27.5306410 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:27.5307519 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5307878 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\combase.dll","0.0000025","AllocationSize: 3,293,184, EndOfFile: 3,291,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.5308048 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\combase.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.5308176 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\combase.dll","0.0000022","AllocationSize: 3,293,184, EndOfFile: 3,291,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.5308373 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\combase.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:27.5309068 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000051","","2512"
"10:46:27.5310331 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5310698 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\combase.dll","0.0000030","AllocationSize: 3,293,184, EndOfFile: 3,291,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.5310847 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\combase.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.5310963 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\combase.dll","0.0000017","AllocationSize: 3,293,184, EndOfFile: 3,291,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.5311146 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\combase.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:27.5311859 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\combase.dll","0.0000021","AllocationSize: 3,293,184, EndOfFile: 3,291,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.5311999 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000056","","2512"
"10:46:27.5313416 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5313791 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\combase.dll","0.0000026","AllocationSize: 3,293,184, EndOfFile: 3,291,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.5313928 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\combase.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.5314039 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\combase.dll","0.0000017","AllocationSize: 3,293,184, EndOfFile: 3,291,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.5314222 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\combase.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:27.5325828 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000076","","2512"
"10:46:27.5333388 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5333738 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000034","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:27.5333866 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000047","","2512"
"10:46:27.5335812 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5336106 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000026","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:27.5336226 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000038","","2512"
"10:46:27.5338820 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5339114 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000026","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:27.5339225 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000038","","2512"
"10:46:27.5339588 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5339810 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000119","Filter: Windows, 1: Windows","2512"
"10:46:27.5340053 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:27.5341000 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5341222 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000106","Filter: System32, 1: System32","2512"
"10:46:27.5341435 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:27.5342374 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5342587 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\combase.dll","0.0000115","Filter: combase.dll, 1: combase.dll","2512"
"10:46:27.5342809 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:27.5344938 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5345254 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000030","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:27.5345365 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000038","","2512"
"10:46:27.5345698 AM","firefox.exe","7384","CreateFile","C:\","0.0000076","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5345885 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:27.5346090 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:27.5346990 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5347199 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000099","Filter: System32, 1: System32","2512"
"10:46:27.5347404 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:27.5349154 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5349354 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000030","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:27.5349461 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000034","","2512"
"10:46:27.5349781 AM","firefox.exe","7384","CreateFile","C:\","0.0000072","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5349956 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000089","Filter: Windows, 1: Windows","2512"
"10:46:27.5350148 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:27.5351039 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5351240 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:27.5351475 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:27.5352588 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5352857 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\windows.storage.dll","0.0000030","AllocationSize: 7,438,336, EndOfFile: 7,436,016, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.5353023 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\windows.storage.dll","0.0000052","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.5353177 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\windows.storage.dll","0.0000017","AllocationSize: 7,438,336, EndOfFile: 7,436,016, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.5353390 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\windows.storage.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:27.5354244 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000051","","2512"
"10:46:27.5355477 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5355754 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\windows.storage.dll","0.0000026","AllocationSize: 7,438,336, EndOfFile: 7,436,016, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.5355895 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\windows.storage.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.5356006 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\windows.storage.dll","0.0000017","AllocationSize: 7,438,336, EndOfFile: 7,436,016, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.5356194 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\windows.storage.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:27.5356962 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\windows.storage.dll","0.0201143","Offset: 7,360,512, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.5444164 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0990230","Offset: 13,922,304, Length: 278,528, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.5558643 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\windows.storage.dll","0.0000051","AllocationSize: 7,438,336, EndOfFile: 7,436,016, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.5558835 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000094","","2512"
"10:46:27.5560606 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000149","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.5560947 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\windows.storage.dll","0.0000025","AllocationSize: 7,438,336, EndOfFile: 7,436,016, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.5561160 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\windows.storage.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.5561301 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\windows.storage.dll","0.0000017","AllocationSize: 7,438,336, EndOfFile: 7,436,016, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.5561493 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\windows.storage.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:27.5569587 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\windows.storage.dll","0.0007172","Offset: 7,393,280, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.5584516 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\windows.storage.dll","0.0635764","Offset: 7,426,048, Length: 9,968, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.6224141 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000201","","2512"
"10:46:27.6247087 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000227","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6247523 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000119","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:27.6247877 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000085","","2512"
"10:46:27.6251055 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6251414 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000043","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:27.6251610 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000060","","2512"
"10:46:27.6256837 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6257289 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000051","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:27.6257511 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000081","","2512"
"10:46:27.6258164 AM","firefox.exe","7384","CreateFile","C:\","0.0000290","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6258689 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000183","Filter: Windows, 1: Windows","2512"
"10:46:27.6259064 AM","firefox.exe","7384","CloseFile","C:\","0.0000073","","2512"
"10:46:27.6260869 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6261236 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000166","Filter: System32, 1: System32","2512"
"10:46:27.6261586 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000059","","2512"
"10:46:27.6265093 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6265596 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:27.6265788 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000069","","2512"
"10:46:27.6266360 AM","firefox.exe","7384","CreateFile","C:\","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6266667 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000141","Filter: Windows, 1: Windows","2512"
"10:46:27.6266979 AM","firefox.exe","7384","CloseFile","C:\","0.0000059","","2512"
"10:46:27.6268472 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6268805 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000200","Filter: System32, 1: System32","2512"
"10:46:27.6269180 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000060","","2512"
"10:46:27.6270686 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6271028 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\shlwapi.dll","0.0000269","Filter: shlwapi.dll, 1: shlwapi.dll","2512"
"10:46:27.6271664 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000068","","2512"
"10:46:27.6274616 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6275090 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000042","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:27.6275277 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000064","","2512"
"10:46:27.6275828 AM","firefox.exe","7384","CreateFile","C:\","0.0000298","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6276336 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000157","Filter: Windows, 1: Windows","2512"
"10:46:27.6276673 AM","firefox.exe","7384","CloseFile","C:\","0.0000059","","2512"
"10:46:27.6278187 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6278520 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000141","Filter: System32, 1: System32","2512"
"10:46:27.6278832 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:27.6280414 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000150","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6280747 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\shlwapi.dll","0.0000256","Filter: shlwapi.dll, 1: shlwapi.dll","2512"
"10:46:27.6281566 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000099","","2512"
"10:46:27.6283674 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000222","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6284297 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shlwapi.dll","0.0000051","AllocationSize: 327,680, EndOfFile: 326,496, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.6284592 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shlwapi.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.6284809 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shlwapi.dll","0.0000034","AllocationSize: 327,680, EndOfFile: 326,496, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.6285159 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shlwapi.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:27.6286132 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000102","","2512"
"10:46:27.6289626 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000252","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6292331 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shlwapi.dll","0.0000064","AllocationSize: 327,680, EndOfFile: 326,496, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.6292643 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shlwapi.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.6292869 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shlwapi.dll","0.0000034","AllocationSize: 327,680, EndOfFile: 326,496, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.6293283 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shlwapi.dll","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:27.6294000 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\shlwapi.dll","0.0440819","Offset: 294,912, Length: 31,584, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.6438354 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0019699","Offset: 14,200,832, Length: 479,232, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.6583869 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000098","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:27.6584415 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000047","SyncType: SyncTypeOther","5728"
"10:46:27.6585341 AM","firefox.exe","7384","QueryNameInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000183","Name: \Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","5728"
"10:46:27.6589560 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.6590047 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000043","CreationTime: 6/19/2019 4:53:38 PM, LastAccessTime: 6/19/2019 4:53:38 PM, LastWriteTime: 3/26/2020 10:29:02 AM, ChangeTime: 3/26/2020 10:29:02 AM, FileAttributes: A","5728"
"10:46:27.6590290 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000081","","5728"
"10:46:27.6591007 AM","firefox.exe","7384","CreateFile","C:\","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.6591370 AM","firefox.exe","7384","QueryDirectory","C:\Users","0.0000187","Filter: Users, 1: Users","5728"
"10:46:27.6591783 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","5728"
"10:46:27.6593418 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000153","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.6593806 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles","0.0000256","Filter: diggles, 1: diggles","5728"
"10:46:27.6594267 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000055","","5728"
"10:46:27.6595764 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.6596127 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData","0.0000136","Filter: AppData, 1: AppData","5728"
"10:46:27.6596468 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000056","","5728"
"10:46:27.6597940 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.6598294 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming","0.0000103","Filter: Roaming, 1: Roaming","5728"
"10:46:27.6598593 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000051","","5728"
"10:46:27.6600039 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.6600394 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000123","Filter: Mozilla, 1: Mozilla","5728"
"10:46:27.6600709 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000056","","5728"
"10:46:27.6602194 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000162","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.6602565 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000107","Filter: Firefox, 1: Firefox","5728"
"10:46:27.6602868 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000051","","5728"
"10:46:27.6604344 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000163","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.6604720 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000119","Filter: Profiles, 1: Profiles","5728"
"10:46:27.6605031 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000060","","5728"
"10:46:27.6608129 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.6608530 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000047","CreationTime: 6/19/2019 4:53:38 PM, LastAccessTime: 6/19/2019 4:53:38 PM, LastWriteTime: 3/26/2020 10:29:02 AM, ChangeTime: 3/26/2020 10:29:02 AM, FileAttributes: A","5728"
"10:46:27.6608743 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000069","","5728"
"10:46:27.6609332 AM","firefox.exe","7384","CreateFile","C:\","0.0000120","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.6609656 AM","firefox.exe","7384","QueryDirectory","C:\Users","0.0000137","Filter: Users, 1: Users","5728"
"10:46:27.6609998 AM","firefox.exe","7384","CloseFile","C:\","0.0000055","","5728"
"10:46:27.6611551 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.6611905 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles","0.0000124","Filter: diggles, 1: diggles","5728"
"10:46:27.6612225 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000055","","5728"
"10:46:27.6613663 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.6614008 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData","0.0000124","Filter: AppData, 1: AppData","5728"
"10:46:27.6614328 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000056","","5728"
"10:46:27.6615741 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.6616086 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming","0.0000098","Filter: Roaming, 1: Roaming","5728"
"10:46:27.6616381 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000055","","5728"
"10:46:27.6617827 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000427","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.6618459 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000111","Filter: Mozilla, 1: Mozilla","5728"
"10:46:27.6618766 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000077","","5728"
"10:46:27.6620571 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000175","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.6620942 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000128","Filter: Firefox, 1: Firefox","5728"
"10:46:27.6621334 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000086","","5728"
"10:46:27.6623045 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000171","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.6623429 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000371","Filter: Profiles, 1: Profiles","5728"
"10:46:27.6624048 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000064","","5728"
"10:46:27.6629462 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-wal","0.0000227","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:27.6631135 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-wal","0.0001451","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","5728"
"10:46:27.6635982 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:27.6637991 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0001242","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","5728"
"10:46:27.6639587 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000064","Exclusive: True, Offset: 128, Length: 1, Fail Immediately: True","5728"
"10:46:27.6639920 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000350","EndOfFile: 0","5728"
"10:46:27.6640492 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000251","AllocationSize: 0","5728"
"10:46:27.6640957 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000034","Offset: 128, Length: 1","5728"
"10:46:27.6641162 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000029","Exclusive: False, Offset: 128, Length: 1, Fail Immediately: True","5728"
"10:46:27.6641366 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000047","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:27.6641571 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000022","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","5728"
"10:46:27.6641746 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000026","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:27.6641959 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000862","EndOfFile: 32,768","5728"
"10:46:27.6643013 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000226","AllocationSize: 32,768","5728"
"10:46:27.6643491 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:27.6643722 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000034","AllocationSize: 32,768, EndOfFile: 32,768, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:27.6644093 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000021","SyncType: SyncTypeOther","5728"
"10:46:27.6644733 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000217","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:27.6645454 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000030","Exclusive: True, Offset: 121, Length: 2, Fail Immediately: True","5728"
"10:46:27.6645620 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000022","Exclusive: True, Offset: 124, Length: 4, Fail Immediately: True","5728"
"10:46:27.6645808 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-wal","0.0000034","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:27.6646013 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000025","Offset: 121, Length: 2","5728"
"10:46:27.6646166 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000017","Offset: 124, Length: 4","5728"
"10:46:27.6646311 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000018","Offset: 120, Length: 1","5728"
"10:46:27.6646461 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000017","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5728"
"10:46:27.6646683 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000025","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:27.6646922 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000196","Offset: 0, Length: 32,768","5728"
"10:46:27.6651713 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000038","Offset: 123, Length: 1","5728"
"10:46:27.6652131 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000030","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5728"
"10:46:27.6652370 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000039","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:27.6652647 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0211214","Offset: 589,824, Length: 32,768","5728"
"10:46:27.6653087 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0210411","Offset: 589,824, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:27.6736163 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shlwapi.dll","0.0000090","AllocationSize: 327,680, EndOfFile: 326,496, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.6736535 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000162","","2512"
"10:46:27.6739470 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000243","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6740178 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shlwapi.dll","0.0000047","AllocationSize: 327,680, EndOfFile: 326,496, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.6740456 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shlwapi.dll","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.6740660 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shlwapi.dll","0.0000030","AllocationSize: 327,680, EndOfFile: 326,496, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.6740997 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shlwapi.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:27.6747385 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000085","","2512"
"10:46:27.6753738 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6754254 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000051","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:27.6754463 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000068","","2512"
"10:46:27.6757599 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6758056 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000042","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:27.6758248 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000064","","2512"
"10:46:27.6761541 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6761977 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000042","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:27.6762156 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000060","","2512"
"10:46:27.6762706 AM","firefox.exe","7384","CreateFile","C:\","0.0000133","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6763031 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000192","Filter: Windows, 1: Windows","2512"
"10:46:27.6763397 AM","firefox.exe","7384","CloseFile","C:\","0.0000060","","2512"
"10:46:27.6764852 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6765198 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000149","Filter: System32, 1: System32","2512"
"10:46:27.6765518 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000060","","2512"
"10:46:27.6766969 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6767297 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\shlwapi.dll","0.0000175","Filter: shlwapi.dll, 1: shlwapi.dll","2512"
"10:46:27.6767630 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000051","","2512"
"10:46:27.6771026 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6771368 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000042","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:27.6771547 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000064","","2512"
"10:46:27.6772067 AM","firefox.exe","7384","CreateFile","C:\","0.0000120","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6772362 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000141","Filter: Windows, 1: Windows","2512"
"10:46:27.6772669 AM","firefox.exe","7384","CloseFile","C:\","0.0000597","","2512"
"10:46:27.6775429 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000201","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6775907 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000180","Filter: System32, 1: System32","2512"
"10:46:27.6776321 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000068","","2512"
"10:46:27.6779598 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6779982 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000051","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:27.6780187 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000072","","2512"
"10:46:27.6780805 AM","firefox.exe","7384","CreateFile","C:\","0.0000150","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6781143 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000162","Filter: Windows, 1: Windows","2512"
"10:46:27.6781484 AM","firefox.exe","7384","CloseFile","C:\","0.0000064","","2512"
"10:46:27.6783788 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000316","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6784330 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000183","Filter: System32, 1: System32","2512"
"10:46:27.6784710 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000076","","2512"
"10:46:27.6787120 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000243","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6787854 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000154","AllocationSize: 61,440, EndOfFile: 57,960, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.6788302 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel.appcore.dll","0.0001574","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.6790115 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000047","AllocationSize: 61,440, EndOfFile: 57,960, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.6790499 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel.appcore.dll","0.0000056","SyncType: SyncTypeOther","2512"
"10:46:27.6794083 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000175","","2512"
"10:46:27.6797254 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000238","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6797851 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000060","AllocationSize: 61,440, EndOfFile: 57,960, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.6798145 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel.appcore.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.6798363 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000034","AllocationSize: 61,440, EndOfFile: 57,960, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.6798708 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel.appcore.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:27.6799856 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000068","AllocationSize: 61,440, EndOfFile: 57,960, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.6800159 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000111","","2512"
"10:46:27.6802028 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000162","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6802399 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000030","AllocationSize: 61,440, EndOfFile: 57,960, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.6802574 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel.appcore.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.6802711 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000021","AllocationSize: 61,440, EndOfFile: 57,960, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.6802920 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel.appcore.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:27.6805783 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000059","","2512"
"10:46:27.6811956 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000210","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6812332 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:27.6812524 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000064","","2512"
"10:46:27.6815336 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6815634 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000034","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:27.6815796 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000056","","2512"
"10:46:27.6818634 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6818911 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000034","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:27.6819065 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000051","","2512"
"10:46:27.6819564 AM","firefox.exe","7384","CreateFile","C:\","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6819965 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000307","Filter: Windows, 1: Windows","2512"
"10:46:27.6820447 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:27.6821872 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000150","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6822196 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000158","Filter: System32, 1: System32","2512"
"10:46:27.6822525 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:27.6825529 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6825994 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:27.6826160 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000064","","2512"
"10:46:27.6826655 AM","firefox.exe","7384","CreateFile","C:\","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6826937 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000132","Filter: Windows, 1: Windows","2512"
"10:46:27.6827278 AM","firefox.exe","7384","CloseFile","C:\","0.0000047","","2512"
"10:46:27.6828575 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6828874 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000132","Filter: System32, 1: System32","2512"
"10:46:27.6829160 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000051","","2512"
"10:46:27.6830495 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6830798 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\profapi.dll","0.0000154","Filter: profapi.dll, 1: profapi.dll","2512"
"10:46:27.6831097 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000051","","2512"
"10:46:27.6833524 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6833947 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:27.6834105 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000055","","2512"
"10:46:27.6834578 AM","firefox.exe","7384","CreateFile","C:\","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6834843 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000119","Filter: Windows, 1: Windows","2512"
"10:46:27.6835116 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:27.6836409 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6836699 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000124","Filter: System32, 1: System32","2512"
"10:46:27.6836968 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000051","","2512"
"10:46:27.6838282 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6838576 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\profapi.dll","0.0000150","Filter: profapi.dll, 1: profapi.dll","2512"
"10:46:27.6838875 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000047","","2512"
"10:46:27.6840466 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000163","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6840966 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\profapi.dll","0.0000064","AllocationSize: 118,784, EndOfFile: 115,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.6841247 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\profapi.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.6841533 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\profapi.dll","0.0000047","AllocationSize: 118,784, EndOfFile: 115,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.6841862 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\profapi.dll","0.0000029","SyncType: SyncTypeOther","2512"
"10:46:27.6842595 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000090","","2512"
"10:46:27.6844490 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000256","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.6845173 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\profapi.dll","0.0000038","AllocationSize: 118,784, EndOfFile: 115,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.6845382 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\profapi.dll","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.6845552 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\profapi.dll","0.0000026","AllocationSize: 118,784, EndOfFile: 115,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.6845842 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\profapi.dll","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:27.6846431 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\profapi.dll","0.0155188","Offset: 86,016, Length: 29,784, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.6864667 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000064","Offset: 123, Length: 1","5728"
"10:46:27.6869633 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.6870090 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000055","CreationTime: 6/19/2019 4:53:26 PM, LastAccessTime: 3/26/2020 10:46:27 AM, LastWriteTime: 3/26/2020 10:46:27 AM, ChangeTime: 3/26/2020 10:46:27 AM, AllocationSize: 16384, EndOfFile: 16384, FileAttributes: D","5728"
"10:46:27.6870342 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000341","","5728"
"10:46:27.6872560 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000222","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.6873030 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000042","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,862, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5728"
"10:46:27.6873273 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000064","","5728"
"10:46:27.6876831 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0005735","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.6882856 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000055","CreationTime: 6/19/2019 4:53:38 PM, LastAccessTime: 6/19/2019 4:53:38 PM, LastWriteTime: 3/26/2020 10:29:03 AM, ChangeTime: 3/26/2020 10:29:03 AM, AllocationSize: 5242880, EndOfFile: 5242880, FileAttributes: A","5728"
"10:46:27.6883120 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000090","","5728"
"10:46:27.6887319 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.6887741 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000047","CreationTime: 6/19/2019 4:53:38 PM, LastAccessTime: 6/19/2019 4:53:38 PM, LastWriteTime: 3/26/2020 10:29:03 AM, ChangeTime: 3/26/2020 10:29:03 AM, AllocationSize: 5242880, EndOfFile: 5242880, FileAttributes: A","5728"
"10:46:27.6887959 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000068","","5728"
"10:46:27.6889759 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000299","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5728"
"10:46:27.6890455 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0203618","Offset: 0, Length: 100, Priority: Normal","5728"
"10:46:27.6891218 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0202198","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:27.7002498 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\profapi.dll","0.0000085","AllocationSize: 118,784, EndOfFile: 115,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7002869 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000435","","2512"
"10:46:27.7005864 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000235","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7006564 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\profapi.dll","0.0000042","AllocationSize: 118,784, EndOfFile: 115,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7006820 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\profapi.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.7007024 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\profapi.dll","0.0000026","AllocationSize: 118,784, EndOfFile: 115,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7007344 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\profapi.dll","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:27.7012789 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000085","","2512"
"10:46:27.7018271 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7018826 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:27.7019031 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000068","","2512"
"10:46:27.7022244 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7022687 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:27.7022858 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000060","","2512"
"10:46:27.7025695 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7026024 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:27.7026143 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000047","","2512"
"10:46:27.7026557 AM","firefox.exe","7384","CreateFile","C:\","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7026796 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000141","Filter: Windows, 1: Windows","2512"
"10:46:27.7027061 AM","firefox.exe","7384","CloseFile","C:\","0.0000042","","2512"
"10:46:27.7028063 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7028298 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:27.7028516 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:27.7029480 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7029698 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\profapi.dll","0.0000123","Filter: profapi.dll, 1: profapi.dll","2512"
"10:46:27.7029924 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000051","","2512"
"10:46:27.7034510 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7035001 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:27.7035176 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000068","","2512"
"10:46:27.7035739 AM","firefox.exe","7384","CreateFile","C:\","0.0000205","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7036191 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000180","Filter: Windows, 1: Windows","2512"
"10:46:27.7036533 AM","firefox.exe","7384","CloseFile","C:\","0.0000055","","2512"
"10:46:27.7037907 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7038218 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000145","Filter: System32, 1: System32","2512"
"10:46:27.7038517 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:27.7039925 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7040240 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\powrprof.dll","0.0000171","Filter: powrprof.dll, 1: powrprof.dll","2512"
"10:46:27.7040556 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000056","","2512"
"10:46:27.7043287 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7043743 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:27.7043914 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000064","","2512"
"10:46:27.7044648 AM","firefox.exe","7384","CreateFile","C:\","0.0000230","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7045113 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000184","Filter: Windows, 1: Windows","2512"
"10:46:27.7045467 AM","firefox.exe","7384","CloseFile","C:\","0.0000068","","2512"
"10:46:27.7046931 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7047246 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000141","Filter: System32, 1: System32","2512"
"10:46:27.7047622 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000068","","2512"
"10:46:27.7048787 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7049017 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\powrprof.dll","0.0000137","Filter: powrprof.dll, 1: powrprof.dll","2512"
"10:46:27.7049260 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:27.7050673 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000153","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7051138 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\powrprof.dll","0.0000047","AllocationSize: 303,104, EndOfFile: 300,208, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7051564 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\powrprof.dll","0.0000086","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.7051867 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\powrprof.dll","0.0000060","AllocationSize: 303,104, EndOfFile: 300,208, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7052260 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\powrprof.dll","0.0000038","SyncType: SyncTypeOther","2512"
"10:46:27.7053386 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000128","","2512"
"10:46:27.7056565 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000239","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7057252 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\powrprof.dll","0.0000047","AllocationSize: 303,104, EndOfFile: 300,208, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7057512 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\powrprof.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.7057700 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\powrprof.dll","0.0000030","AllocationSize: 303,104, EndOfFile: 300,208, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7058003 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\powrprof.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:27.7058758 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\powrprof.dll","0.0120870","Offset: 270,336, Length: 29,872, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.7077454 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0004429","Offset: 5,996,544, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.7090084 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0182601","Offset: 12,627,968, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.7094965 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000068","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:27.7095221 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000025","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:27.7095413 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000021","Offset: 1,073,741,824, Length: 1","5728"
"10:46:27.7098933 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-journal","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:27.7101710 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-wal","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:27.7102214 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000064","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:27.7102662 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0884054","Offset: 0, Length: 32,768","5728"
"10:46:27.7180349 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\powrprof.dll","0.0000060","AllocationSize: 303,104, EndOfFile: 300,208, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7180601 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000111","","2512"
"10:46:27.7183404 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000205","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7183980 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\powrprof.dll","0.0000035","AllocationSize: 303,104, EndOfFile: 300,208, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7184202 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\powrprof.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.7184390 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\powrprof.dll","0.0000026","AllocationSize: 303,104, EndOfFile: 300,208, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7184625 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\powrprof.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:27.7189839 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000128","","2512"
"10:46:27.7196273 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7196819 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:27.7197019 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000069","","2512"
"10:46:27.7199934 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7200352 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:27.7200522 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000064","","2512"
"10:46:27.7203407 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000157","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7203803 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:27.7203966 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000055","","2512"
"10:46:27.7204482 AM","firefox.exe","7384","CreateFile","C:\","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7204802 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000196","Filter: Windows, 1: Windows","2512"
"10:46:27.7205169 AM","firefox.exe","7384","CloseFile","C:\","0.0000055","","2512"
"10:46:27.7206628 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7206944 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000145","Filter: System32, 1: System32","2512"
"10:46:27.7207242 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000056","","2512"
"10:46:27.7208586 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7208894 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\powrprof.dll","0.0000153","Filter: powrprof.dll, 1: powrprof.dll","2512"
"10:46:27.7209196 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000056","","2512"
"10:46:27.7212123 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7212554 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:27.7212725 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000060","","2512"
"10:46:27.7213216 AM","firefox.exe","7384","CreateFile","C:\","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7213484 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000133","Filter: Windows, 1: Windows","2512"
"10:46:27.7213766 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:27.7215055 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7215353 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000128","Filter: System32, 1: System32","2512"
"10:46:27.7215631 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000051","","2512"
"10:46:27.7216953 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7217252 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\fltLib.dll","0.0000222","Filter: fltLib.dll, 1: fltLib.dll","2512"
"10:46:27.7217627 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000056","","2512"
"10:46:27.7220247 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7220644 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:27.7220806 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000060","","2512"
"10:46:27.7221280 AM","firefox.exe","7384","CreateFile","C:\","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7221548 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000124","Filter: Windows, 1: Windows","2512"
"10:46:27.7221822 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:27.7223097 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7223392 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000136","Filter: System32, 1: System32","2512"
"10:46:27.7223678 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000051","","2512"
"10:46:27.7224987 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7225282 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\fltLib.dll","0.0000153","Filter: fltLib.dll, 1: fltLib.dll","2512"
"10:46:27.7225580 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000052","","2512"
"10:46:27.7227116 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000188","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7227688 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\fltLib.dll","0.0000043","AllocationSize: 32,768, EndOfFile: 31,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7227931 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\fltLib.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.7228111 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\fltLib.dll","0.0000025","AllocationSize: 32,768, EndOfFile: 31,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7228405 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\fltLib.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:27.7229054 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000068","","2512"
"10:46:27.7230790 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000162","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7231281 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\fltLib.dll","0.0000038","AllocationSize: 32,768, EndOfFile: 31,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7231494 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\fltLib.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.7231665 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\fltLib.dll","0.0000025","AllocationSize: 32,768, EndOfFile: 31,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7231951 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\fltLib.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:27.7232603 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\fltLib.dll","0.0000030","AllocationSize: 32,768, EndOfFile: 31,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7232787 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000068","","2512"
"10:46:27.7234447 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000162","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7234916 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\fltLib.dll","0.0000034","AllocationSize: 32,768, EndOfFile: 31,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7235112 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\fltLib.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.7235274 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\fltLib.dll","0.0000026","AllocationSize: 32,768, EndOfFile: 31,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7235556 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\fltLib.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:27.7240313 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000069","","2512"
"10:46:27.7244930 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7245365 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:27.7245553 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000059","","2512"
"10:46:27.7248326 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7248731 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000035","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:27.7248898 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000060","","2512"
"10:46:27.7251667 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7252055 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:27.7252217 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000056","","2512"
"10:46:27.7252699 AM","firefox.exe","7384","CreateFile","C:\","0.0000120","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7252981 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000141","Filter: Windows, 1: Windows","2512"
"10:46:27.7253280 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:27.7254598 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7254901 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000132","Filter: System32, 1: System32","2512"
"10:46:27.7255195 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000052","","2512"
"10:46:27.7256527 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000140","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7256830 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\fltLib.dll","0.0000149","Filter: fltLib.dll, 1: fltLib.dll","2512"
"10:46:27.7257128 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000051","","2512"
"10:46:27.7259910 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7260371 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000038","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","2512"
"10:46:27.7260533 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000060","","2512"
"10:46:27.7261011 AM","firefox.exe","7384","CreateFile","C:\","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7261284 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000124","Filter: Windows, 1: Windows","2512"
"10:46:27.7261561 AM","firefox.exe","7384","CloseFile","C:\","0.0000069","","2512"
"10:46:27.7262875 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000133","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7263170 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000132","Filter: System32, 1: System32","2512"
"10:46:27.7263456 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000051","","2512"
"10:46:27.7264778 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000133","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7265069 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\ole32.dll","0.0000153","Filter: ole32.dll, 1: ole32.dll","2512"
"10:46:27.7265371 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000052","","2512"
"10:46:27.7267782 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7268175 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000038","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","2512"
"10:46:27.7268337 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000055","","2512"
"10:46:27.7268815 AM","firefox.exe","7384","CreateFile","C:\","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7269075 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000124","Filter: Windows, 1: Windows","2512"
"10:46:27.7269344 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:27.7270607 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7270897 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000124","Filter: System32, 1: System32","2512"
"10:46:27.7271213 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:27.7272527 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7272825 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\ole32.dll","0.0000145","Filter: ole32.dll, 1: ole32.dll","2512"
"10:46:27.7273120 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000051","","2512"
"10:46:27.7274677 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000162","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7275155 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ole32.dll","0.0000043","AllocationSize: 1,380,352, EndOfFile: 1,376,672, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7275385 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ole32.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.7275565 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ole32.dll","0.0000029","AllocationSize: 1,380,352, EndOfFile: 1,376,672, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7275859 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ole32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:27.7276759 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000120","","2512"
"10:46:27.7278692 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000188","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7279251 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ole32.dll","0.0000043","AllocationSize: 1,380,352, EndOfFile: 1,376,672, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7279469 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ole32.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.7279656 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ole32.dll","0.0000026","AllocationSize: 1,380,352, EndOfFile: 1,376,672, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7279946 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ole32.dll","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:27.7280936 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ole32.dll","0.0000034","AllocationSize: 1,380,352, EndOfFile: 1,376,672, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7281145 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000158","","2512"
"10:46:27.7284964 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000226","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7285664 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ole32.dll","0.0000051","AllocationSize: 1,380,352, EndOfFile: 1,376,672, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7285672 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7285971 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ole32.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.7285992 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000039","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","7396"
"10:46:27.7286137 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000056","","7396"
"10:46:27.7286197 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ole32.dll","0.0000034","AllocationSize: 1,380,352, EndOfFile: 1,376,672, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7286538 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ole32.dll","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:27.7288834 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7289073 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000034","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","7396"
"10:46:27.7289175 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000047","","7396"
"10:46:27.7292431 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000290","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7292874 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000052","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","7396"
"10:46:27.7293037 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000085","","7396"
"10:46:27.7296356 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntdll.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7296821 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000043","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:27.7296966 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntdll.dll","0.0000064","","7396"
"10:46:27.7297585 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 7280","7392"
"10:46:27.7298046 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 8136","7392"
"10:46:27.7298523 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 8904","7392"
"10:46:27.7299748 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntdll.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7300102 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000034","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:27.7300213 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntdll.dll","0.0000051","","7396"
"10:46:27.7301015 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000162","Desired Access: Read","7396"
"10:46:27.7302594 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\ntdll.dll.mui","0.0000235","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7303208 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\ntdll.dll.mui","0.0000115","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.7303533 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\ntdll.dll.mui","0.0000046","AllocationSize: 442,368, EndOfFile: 440,320, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.7303857 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\ntdll.dll.mui","0.0000021","SyncType: SyncTypeOther","7396"
"10:46:27.7307006 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntdll.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7307420 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000042","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:27.7307560 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntdll.dll","0.0000069","","7396"
"10:46:27.7310295 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel32.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7310666 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000035","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:27.7310777 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel32.dll","0.0000047","","7396"
"10:46:27.7313508 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel32.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7313896 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000039","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:27.7314007 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel32.dll","0.0000051","","7396"
"10:46:27.7314630 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000154","Desired Access: Read","7396"
"10:46:27.7316239 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\kernel32.dll.mui","0.0000243","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7316759 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\kernel32.dll.mui","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.7316964 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\kernel32.dll.mui","0.0000051","AllocationSize: 974,848, EndOfFile: 971,264, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.7317310 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\kernel32.dll.mui","0.0000030","SyncType: SyncTypeOther","7396"
"10:46:27.7320177 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel32.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7320659 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000043","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:27.7320825 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel32.dll","0.0000073","","7396"
"10:46:27.7323966 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7324260 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000098","","2512"
"10:46:27.7324311 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000039","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:27.7324456 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000056","","7396"
"10:46:27.7327545 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7327870 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000089","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:27.7328053 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000085","","7396"
"10:46:27.7328889 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000184","Desired Access: Read","7396"
"10:46:27.7330570 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\KernelBase.dll.mui","0.0000244","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7331070 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\KernelBase.dll.mui","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.7331236 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\KernelBase.dll.mui","0.0000034","AllocationSize: 1,269,760, EndOfFile: 1,269,248, NumberOfLinks: 2, DeletePending: False, Directory: False","7396"
"10:46:27.7331496 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\KernelBase.dll.mui","0.0000026","SyncType: SyncTypeOther","7396"
"10:46:27.7335264 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7335588 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000043","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:27.7335750 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000068","","7396"
"10:46:27.7335968 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000320","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7336714 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000043","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","2512"
"10:46:27.7336911 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000059","","2512"
"10:46:27.7339987 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\advapi32.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7340418 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000043","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","7396"
"10:46:27.7340478 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7340563 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\advapi32.dll","0.0000060","","7396"
"10:46:27.7340879 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000038","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","2512"
"10:46:27.7341045 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000060","","2512"
"10:46:27.7343981 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\advapi32.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7344424 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000047","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","7396"
"10:46:27.7344569 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\advapi32.dll","0.0000056","","7396"
"10:46:27.7345192 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000150","Desired Access: Read","7396"
"10:46:27.7345521 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7346093 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000051","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","2512"
"10:46:27.7346336 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000081","","2512"
"10:46:27.7346673 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\advapi32.dll.mui","0.0000213","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7347001 AM","firefox.exe","7384","CreateFile","C:\","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7347146 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\advapi32.dll.mui","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.7347330 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\advapi32.dll.mui","0.0000043","AllocationSize: 4,096, EndOfFile: 4,096, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.7347377 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000192","Filter: Windows, 1: Windows","2512"
"10:46:27.7347641 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\advapi32.dll.mui","0.0000022","SyncType: SyncTypeOther","7396"
"10:46:27.7347774 AM","firefox.exe","7384","CloseFile","C:\","0.0000068","","2512"
"10:46:27.7349677 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000170","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7350125 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000162","Filter: System32, 1: System32","2512"
"10:46:27.7350492 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000059","","2512"
"10:46:27.7350991 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\advapi32.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7351409 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000038","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","7396"
"10:46:27.7351545 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\advapi32.dll","0.0000060","","7396"
"10:46:27.7351968 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000153","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7352309 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\ole32.dll","0.0000188","Filter: ole32.dll, 1: ole32.dll","2512"
"10:46:27.7352672 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000277","","2512"
"10:46:27.7355134 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7355693 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:27.7355876 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000060","","7396"
"10:46:27.7356380 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7356964 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000047","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","2512"
"10:46:27.7357156 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000064","","2512"
"10:46:27.7357694 AM","firefox.exe","7384","CreateFile","C:\","0.0000123","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7357992 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000154","Filter: Windows, 1: Windows","2512"
"10:46:27.7358317 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:27.7359097 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7359477 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000043","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:27.7359618 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000060","","7396"
"10:46:27.7359669 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7359968 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000145","Filter: System32, 1: System32","2512"
"10:46:27.7360279 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000060","","2512"
"10:46:27.7361709 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000140","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7362033 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\imm32.dll","0.0000171","Filter: imm32.dll, 1: imm32.dll","2512"
"10:46:27.7362366 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000051","","2512"
"10:46:27.7362652 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7363151 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000042","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:27.7363292 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000055","","7396"
"10:46:27.7365126 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7365655 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000043","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","2512"
"10:46:27.7365826 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000064","","2512"
"10:46:27.7366219 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sechost.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7366325 AM","firefox.exe","7384","CreateFile","C:\","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7366603 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000136","Filter: Windows, 1: Windows","2512"
"10:46:27.7366620 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000034","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:27.7366752 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sechost.dll","0.0000055","","7396"
"10:46:27.7366897 AM","firefox.exe","7384","CloseFile","C:\","0.0000047","","2512"
"10:46:27.7368245 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7368552 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000128","Filter: System32, 1: System32","2512"
"10:46:27.7368847 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000051","","2512"
"10:46:27.7369380 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sechost.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7369777 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000038","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:27.7369913 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sechost.dll","0.0000056","","7396"
"10:46:27.7370221 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7370507 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000145","Desired Access: Read","7396"
"10:46:27.7370532 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\imm32.dll","0.0000158","Filter: imm32.dll, 1: imm32.dll","2512"
"10:46:27.7370856 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000094","","2512"
"10:46:27.7371932 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\sechost.dll.mui","0.0000221","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7372414 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\sechost.dll.mui","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.7372555 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000166","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7372601 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\sechost.dll.mui","0.0000039","AllocationSize: 4,096, EndOfFile: 2,560, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.7372934 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\sechost.dll.mui","0.0000026","SyncType: SyncTypeOther","7396"
"10:46:27.7373058 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\imm32.dll","0.0000034","AllocationSize: 176,128, EndOfFile: 173,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7373263 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\imm32.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.7373425 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\imm32.dll","0.0000030","AllocationSize: 176,128, EndOfFile: 173,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7373724 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\imm32.dll","0.0000303","SyncType: SyncTypeOther","2512"
"10:46:27.7375221 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000107","","2512"
"10:46:27.7375848 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sechost.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7376441 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000060","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:27.7376633 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sechost.dll","0.0000082","","7396"
"10:46:27.7377529 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000210","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7378323 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\imm32.dll","0.0000056","AllocationSize: 176,128, EndOfFile: 173,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7378630 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\imm32.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.7378848 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\imm32.dll","0.0000038","AllocationSize: 176,128, EndOfFile: 173,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7379215 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\imm32.dll","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:27.7379923 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\imm32.dll","0.0004770","Offset: 143,360, Length: 30,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.7379970 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7380371 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000038","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","7396"
"10:46:27.7380508 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000059","","7396"
"10:46:27.7383144 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7383503 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000038","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","7396"
"10:46:27.7383631 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000055","","7396"
"10:46:27.7384284 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000439","Desired Access: Read","7396"
"10:46:27.7385342 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\imm32.dll","0.0000055","AllocationSize: 176,128, EndOfFile: 173,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7385653 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000124","","2512"
"10:46:27.7386088 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\rpcrt4.dll.mui","0.0000218","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7386562 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\rpcrt4.dll.mui","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.7386750 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\rpcrt4.dll.mui","0.0000034","AllocationSize: 24,576, EndOfFile: 22,016, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.7387053 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\rpcrt4.dll.mui","0.0000021","SyncType: SyncTypeOther","7396"
"10:46:27.7387979 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000226","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7388644 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\imm32.dll","0.0000047","AllocationSize: 176,128, EndOfFile: 173,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7388909 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\imm32.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.7389118 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\imm32.dll","0.0000034","AllocationSize: 176,128, EndOfFile: 173,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7389485 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\imm32.dll","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:27.7389843 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7390231 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000039","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","7396"
"10:46:27.7390368 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000055","","7396"
"10:46:27.7393128 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7393517 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000034","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:27.7393640 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000056","","7396"
"10:46:27.7395266 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000102","","2512"
"10:46:27.7396422 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7396776 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000039","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:27.7396913 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000055","","7396"
"10:46:27.7399644 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7400015 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000034","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:27.7400143 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000055","","7396"
"10:46:27.7401350 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7401901 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000051","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","2512"
"10:46:27.7402161 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000081","","2512"
"10:46:27.7403019 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000174","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7403296 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:27.7403420 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000051","","7396"
"10:46:27.7405604 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7406065 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7406116 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000051","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","2512"
"10:46:27.7406317 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:27.7406334 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000072","","2512"
"10:46:27.7406445 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000051","","7396"
"10:46:27.7409000 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7409350 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000030","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","2512"
"10:46:27.7409470 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000042","","2512"
"10:46:27.7409594 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7409867 AM","firefox.exe","7384","CreateFile","C:\","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7409926 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:27.7410093 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000072","","7396"
"10:46:27.7410110 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000141","Filter: Windows, 1: Windows","2512"
"10:46:27.7410417 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:27.7411437 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7411667 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:27.7411889 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000043","","2512"
"10:46:27.7412875 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7413096 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\imm32.dll","0.0000141","Filter: imm32.dll, 1: imm32.dll","2512"
"10:46:27.7413399 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000056","","2512"
"10:46:27.7413783 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\crypt32.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7414214 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:27.7414355 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\crypt32.dll","0.0000056","","7396"
"10:46:27.7417201 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7417640 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\crypt32.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7417990 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:27.7418110 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\crypt32.dll","0.0000055","","7396"
"10:46:27.7419134 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000170","Desired Access: Read","7396"
"10:46:27.7420704 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\crypt32.dll.mui","0.0000218","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7421199 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\crypt32.dll.mui","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.7421404 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\crypt32.dll.mui","0.0000042","AllocationSize: 40,960, EndOfFile: 40,448, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.7421741 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\crypt32.dll.mui","0.0000025","SyncType: SyncTypeOther","7396"
"10:46:27.7422236 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:27.7422453 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000077","","2512"
"10:46:27.7423076 AM","firefox.exe","7384","CreateFile","C:\","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7423426 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000175","Filter: Windows, 1: Windows","2512"
"10:46:27.7423802 AM","firefox.exe","7384","CloseFile","C:\","0.0002867","","2512"
"10:46:27.7424796 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\crypt32.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7425265 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:27.7425419 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\crypt32.dll","0.0000068","","7396"
"10:46:27.7428610 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000171","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7429011 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000162","Filter: System32, 1: System32","2512"
"10:46:27.7429186 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msasn1.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7429374 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000068","","2512"
"10:46:27.7429613 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000042","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:27.7429754 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msasn1.dll","0.0000059","","7396"
"10:46:27.7431102 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000192","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7431507 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\setupapi.dll","0.0000184","Filter: setupapi.dll, 1: setupapi.dll","2512"
"10:46:27.7431883 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000111","","2512"
"10:46:27.7432877 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msasn1.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7433269 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000043","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:27.7433406 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msasn1.dll","0.0000064","","7396"
"10:46:27.7435019 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000298","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7435808 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:27.7435974 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000060","","2512"
"10:46:27.7436427 AM","firefox.exe","7384","CreateFile","C:\","0.0000119","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7436670 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msasn1.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7436691 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000132","Filter: Windows, 1: Windows","2512"
"10:46:27.7436951 AM","firefox.exe","7384","CloseFile","C:\","0.0000064","","2512"
"10:46:27.7437165 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000038","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:27.7437301 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msasn1.dll","0.0000060","","7396"
"10:46:27.7438428 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000153","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7438765 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000149","Filter: System32, 1: System32","2512"
"10:46:27.7439089 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000047","","2512"
"10:46:27.7440429 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wintrust.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7440446 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000230","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7440864 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\setupapi.dll","0.0000175","Filter: setupapi.dll, 1: setupapi.dll","2512"
"10:46:27.7440890 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000038","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:27.7441026 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wintrust.dll","0.0000060","","7396"
"10:46:27.7441210 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000046","","2512"
"10:46:27.7443172 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000282","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7444004 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\setupapi.dll","0.0000043","AllocationSize: 4,534,272, EndOfFile: 4,530,784, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7444269 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\setupapi.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.7444350 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wintrust.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7444461 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\setupapi.dll","0.0000034","AllocationSize: 4,534,272, EndOfFile: 4,530,784, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7444759 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000035","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:27.7444789 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\setupapi.dll","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:27.7444904 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wintrust.dll","0.0000060","","7396"
"10:46:27.7445984 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000068","","2512"
"10:46:27.7447793 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wintrust.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7447942 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000154","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7448203 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000034","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:27.7448339 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wintrust.dll","0.0000081","","7396"
"10:46:27.7448442 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\setupapi.dll","0.0000029","AllocationSize: 4,534,272, EndOfFile: 4,530,784, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7448663 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\setupapi.dll","0.0000035","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.7448838 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\setupapi.dll","0.0000030","AllocationSize: 4,534,272, EndOfFile: 4,530,784, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7449150 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\setupapi.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:27.7450366 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\setupapi.dll","0.0181333","Offset: 4,481,024, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.7451232 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7451569 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000038","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","7396"
"10:46:27.7451697 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000055","","7396"
"10:46:27.7454065 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7454432 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000026","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","7396"
"10:46:27.7454513 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000038","","7396"
"10:46:27.7457022 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7457325 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000179","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","7396"
"10:46:27.7457683 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000068","","7396"
"10:46:27.7461519 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7461886 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000047","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","7396"
"10:46:27.7462048 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000073","","7396"
"10:46:27.7464962 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7465274 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000042","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","7396"
"10:46:27.7465414 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000064","","7396"
"10:46:27.7468593 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7468909 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000042","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","7396"
"10:46:27.7469045 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000069","","7396"
"10:46:27.7472194 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\version.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7472681 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000046","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","7396"
"10:46:27.7472830 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\version.dll","0.0000064","","7396"
"10:46:27.7472962 AM","firefox.exe","7336","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager","0.0000103","Desired Access: Query Value, Enumerate Sub Keys","7392"
"10:46:27.7473308 AM","firefox.exe","7336","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000094","Desired Access: Query Value, Enumerate Sub Keys","7392"
"10:46:27.7473645 AM","firefox.exe","7336","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\ResourcePolicies","0.0000055","Length: 24","7392"
"10:46:27.7473939 AM","firefox.exe","7336","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000022","","7392"
"10:46:27.7475518 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\version.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7475838 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000030","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","7396"
"10:46:27.7475932 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\version.dll","0.0000047","","7396"
"10:46:27.7477779 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\version.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7478078 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000030","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","7396"
"10:46:27.7478167 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\version.dll","0.0000039","","7396"
"10:46:27.7479729 AM","firefox.exe","7336","CreateFile","C:\Windows\Fonts\times.ttf","0.0000209","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:27.7480356 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7480591 AM","firefox.exe","7336","QueryInformationVolume","C:\Windows\Fonts\times.ttf","0.0000047","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","7392"
"10:46:27.7480659 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","7396"
"10:46:27.7480766 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000043","","7396"
"10:46:27.7480945 AM","firefox.exe","7336","QueryAllInformationFile","C:\Windows\Fonts\times.ttf","0.0000060","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 7:10:47 PM, FileAttributes: A, AllocationSize: 1,196,032, EndOfFile: 1,195,688, NumberOfLinks: 2, DeletePending: False, Directory: False, IndexNumber: 0x3000000062432, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","7392"
"10:46:27.7481321 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Fonts\times.ttf","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:27.7481577 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\Fonts\times.ttf","0.0000034","AllocationSize: 1,196,032, EndOfFile: 1,195,688, NumberOfLinks: 2, DeletePending: False, Directory: False","7392"
"10:46:27.7482042 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Fonts\times.ttf","0.0000025","SyncType: SyncTypeOther","7392"
"10:46:27.7483095 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7483471 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","7396"
"10:46:27.7483599 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000055","","7396"
"10:46:27.7486129 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7486573 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","7396"
"10:46:27.7486697 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000055","","7396"
"10:46:27.7486914 AM","firefox.exe","7336","CreateFile","C:\Windows\Fonts\arial.ttf","0.0000171","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:27.7487597 AM","firefox.exe","7336","QueryInformationVolume","C:\Windows\Fonts\arial.ttf","0.0000034","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","7392"
"10:46:27.7487831 AM","firefox.exe","7336","QueryAllInformationFile","C:\Windows\Fonts\arial.ttf","0.0000043","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 7:07:40 PM, FileAttributes: A, AllocationSize: 1,040,384, EndOfFile: 1,036,584, NumberOfLinks: 2, DeletePending: False, Directory: False, IndexNumber: 0x3000000060fac, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","7392"
"10:46:27.7488113 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Fonts\arial.ttf","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:27.7488301 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\Fonts\arial.ttf","0.0000025","AllocationSize: 1,040,384, EndOfFile: 1,036,584, NumberOfLinks: 2, DeletePending: False, Directory: False","7392"
"10:46:27.7488617 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Fonts\arial.ttf","0.0000017","SyncType: SyncTypeOther","7392"
"10:46:27.7489193 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\arial.ttf","0.0079940","Offset: 823,296, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.7489568 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7489837 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000034","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","7396"
"10:46:27.7489956 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000056","","7396"
"10:46:27.7492410 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7492649 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000034","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","7396"
"10:46:27.7492772 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000051","","7396"
"10:46:27.7495162 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7495392 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000034","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","7396"
"10:46:27.7495507 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000051","","7396"
"10:46:27.7498400 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7498660 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:27.7498780 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000051","","7396"
"10:46:27.7501101 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7501284 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:27.7501365 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000039","","7396"
"10:46:27.7503102 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7503268 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000022","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:27.7503345 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000034","","7396"
"10:46:27.7505325 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7505521 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:27.7505602 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000039","","7396"
"10:46:27.7507390 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7507561 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000021","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:27.7507637 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000034","","7396"
"10:46:27.7509267 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7509429 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:27.7509506 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000034","","7396"
"10:46:27.7511721 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7511908 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000022","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:27.7511985 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000034","","7396"
"10:46:27.7513760 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7513926 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000022","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:27.7514003 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000034","","7396"
"10:46:27.7515650 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7515817 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:27.7515893 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000035","","7396"
"10:46:27.7517801 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7517971 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:27.7518048 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000038","","7396"
"10:46:27.7519989 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7520152 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000021","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:27.7520224 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000034","","7396"
"10:46:27.7521854 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7522012 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:27.7522089 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000034","","7396"
"10:46:27.7524486 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000146","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7524798 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:27.7524883 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000043","","7396"
"10:46:27.7526820 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7527081 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000029","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:27.7527166 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000038","","7396"
"10:46:27.7527960 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000132","Desired Access: Read","7396"
"10:46:27.7529018 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\ws2_32.dll.mui","0.0000166","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7529376 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\ws2_32.dll.mui","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.7529513 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\ws2_32.dll.mui","0.0000029","AllocationSize: 24,576, EndOfFile: 21,504, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.7529722 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\ws2_32.dll.mui","0.0000017","SyncType: SyncTypeOther","7396"
"10:46:27.7531637 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7531919 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:27.7532009 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000042","","7396"
"10:46:27.7534300 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmm.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7534586 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:27.7534675 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmm.dll","0.0000039","","7396"
"10:46:27.7536429 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmm.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7536672 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000026","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:27.7536757 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmm.dll","0.0000039","","7396"
"10:46:27.7537197 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000085","Desired Access: Read","7396"
"10:46:27.7538165 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\winmm.dll.mui","0.0000154","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7538490 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\winmm.dll.mui","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.7538618 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\winmm.dll.mui","0.0000030","AllocationSize: 24,576, EndOfFile: 23,552, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.7538822 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\winmm.dll.mui","0.0000013","SyncType: SyncTypeOther","7396"
"10:46:27.7540900 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmm.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7541178 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:27.7541267 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmm.dll","0.0000043","","7396"
"10:46:27.7543597 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wsock32.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7543883 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000034","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:27.7543977 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wsock32.dll","0.0000038","","7396"
"10:46:27.7545786 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wsock32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7546033 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:27.7546114 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wsock32.dll","0.0000043","","7396"
"10:46:27.7546507 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000081","Desired Access: Read","7396"
"10:46:27.7547573 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\wsock32.dll.mui","0.0000197","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7548000 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\wsock32.dll.mui","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.7548175 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\wsock32.dll.mui","0.0000038","AllocationSize: 12,288, EndOfFile: 11,264, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.7548491 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\SysWOW64\en-US\wsock32.dll.mui","0.0000025","SyncType: SyncTypeOther","7396"
"10:46:27.7551251 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wsock32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7551593 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:27.7551686 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wsock32.dll","0.0000043","","7396"
"10:46:27.7553824 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7554016 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000026","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:27.7554097 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000043","","7396"
"10:46:27.7555889 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7556060 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000021","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:27.7556137 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000038","","7396"
"10:46:27.7556525 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000085","Desired Access: Read","7396"
"10:46:27.7557489 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\winmmbase.dll.mui","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7557805 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\winmmbase.dll.mui","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.7557933 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\winmmbase.dll.mui","0.0000025","AllocationSize: 8,192, EndOfFile: 8,192, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.7558129 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\winmmbase.dll.mui","0.0000017","SyncType: SyncTypeOther","7396"
"10:46:27.7559994 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7560177 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000026","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:27.7560262 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000039","","7396"
"10:46:27.7562349 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7562630 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:27.7562712 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000042","","7396"
"10:46:27.7564521 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7564772 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:27.7564858 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000038","","7396"
"10:46:27.7566564 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7566803 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:27.7566880 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000039","","7396"
"10:46:27.7569231 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7569508 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000039","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:27.7569632 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000056","","7396"
"10:46:27.7570776 AM","firefox.exe","7336","CreateFile","C:\Windows\Fonts\ARIALN.TTF","0.0000763","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:27.7571996 AM","firefox.exe","7336","QueryInformationVolume","C:\Windows\Fonts\ARIALN.TTF","0.0000038","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","7392"
"10:46:27.7572145 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7572307 AM","firefox.exe","7336","QueryAllInformationFile","C:\Windows\Fonts\ARIALN.TTF","0.0000056","CreationTime: 2/15/2017 3:38:52 PM, LastAccessTime: 2/15/2017 3:38:52 PM, LastWriteTime: 2/15/2017 3:38:43 PM, ChangeTime: 3/20/2019 8:09:45 PM, FileAttributes: A, AllocationSize: 176,128, EndOfFile: 175,956, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x6000000006053, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","7392"
"10:46:27.7572414 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000034","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:27.7572542 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000060","","7396"
"10:46:27.7572700 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Fonts\ARIALN.TTF","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:27.7572969 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\Fonts\ARIALN.TTF","0.0000034","AllocationSize: 176,128, EndOfFile: 175,956, NumberOfLinks: 1, DeletePending: False, Directory: False","7392"
"10:46:27.7573476 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Fonts\ARIALN.TTF","0.0000030","SyncType: SyncTypeOther","7392"
"10:46:27.7574253 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\ARIALN.TTF","0.0515568","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.7575072 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7575268 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:27.7575354 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000047","","7396"
"10:46:27.7577461 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7577649 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:27.7577730 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000039","","7396"
"10:46:27.7579740 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7579911 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:27.7579992 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000034","","7396"
"10:46:27.7581685 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7581848 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:27.7581924 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000035","","7396"
"10:46:27.7584147 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\user32.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7584433 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000026","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:27.7584514 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\user32.dll","0.0000043","","7396"
"10:46:27.7586340 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\user32.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7586592 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000026","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:27.7586673 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\user32.dll","0.0000043","","7396"
"10:46:27.7587160 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000098","Desired Access: Read","7396"
"10:46:27.7588162 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\user32.dll.mui","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7588478 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\user32.dll.mui","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.7588610 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\user32.dll.mui","0.0000030","AllocationSize: 20,480, EndOfFile: 17,408, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.7588819 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\user32.dll.mui","0.0000013","SyncType: SyncTypeOther","7396"
"10:46:27.7590731 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\user32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7591008 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000030","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:27.7591098 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\user32.dll","0.0000047","","7396"
"10:46:27.7593265 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\win32u.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7593585 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:27.7593671 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\win32u.dll","0.0000038","","7396"
"10:46:27.7595428 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\win32u.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7595672 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:27.7595753 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\win32u.dll","0.0000038","","7396"
"10:46:27.7597459 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\win32u.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7597698 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:27.7597779 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\win32u.dll","0.0000039","","7396"
"10:46:27.7599947 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7600207 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000026","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:27.7600288 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32.dll","0.0000039","","7396"
"10:46:27.7602003 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7602238 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000026","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:27.7602319 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32.dll","0.0000038","","7396"
"10:46:27.7604111 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7604350 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000021","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:27.7604427 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32.dll","0.0000038","","7396"
"10:46:27.7606552 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7606735 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000026","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:27.7606812 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000038","","7396"
"10:46:27.7608617 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7608783 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000026","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:27.7608860 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000034","","7396"
"10:46:27.7610618 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7610780 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000021","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:27.7610857 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000034","","7396"
"10:46:27.7613912 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7614180 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000035","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:27.7614308 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000056","","7396"
"10:46:27.7616510 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7616689 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000026","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:27.7616766 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000038","","7396"
"10:46:27.7618622 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7618788 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000026","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:27.7618865 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000039","","7396"
"10:46:27.7621344 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shell32.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7621732 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000039","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","7396"
"10:46:27.7621860 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shell32.dll","0.0000064","","7396"
"10:46:27.7625598 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shell32.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7625974 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000034","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","7396"
"10:46:27.7626080 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shell32.dll","0.0000051","","7396"
"10:46:27.7626729 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000119","Desired Access: Read","7396"
"10:46:27.7627979 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\shell32.dll.mui","0.0000162","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7628350 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\shell32.dll.mui","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.7628495 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\shell32.dll.mui","0.0000030","AllocationSize: 393,216, EndOfFile: 393,216, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.7628717 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\shell32.dll.mui","0.0000017","SyncType: SyncTypeOther","7396"
"10:46:27.7630897 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shell32.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7631204 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000030","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","7396"
"10:46:27.7631298 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shell32.dll","0.0000047","","7396"
"10:46:27.7632463 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\setupapi.dll","0.0000051","AllocationSize: 4,534,272, EndOfFile: 4,530,784, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7632740 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000073","","2512"
"10:46:27.7634827 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\SHCore.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7634912 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7635258 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000042","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:27.7635407 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\SHCore.dll","0.0000064","","7396"
"10:46:27.7635416 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\setupapi.dll","0.0000034","AllocationSize: 4,534,272, EndOfFile: 4,530,784, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7635663 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\setupapi.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.7635851 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\setupapi.dll","0.0000030","AllocationSize: 4,534,272, EndOfFile: 4,530,784, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7636175 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\setupapi.dll","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:27.7638074 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\SHCore.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7638445 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000038","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:27.7638582 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\SHCore.dll","0.0000059","","7396"
"10:46:27.7639179 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000128","Desired Access: Read","7396"
"10:46:27.7640523 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\SHCore.dll.mui","0.0000200","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7640967 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\SHCore.dll.mui","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.7641154 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\SHCore.dll.mui","0.0000034","AllocationSize: 4,096, EndOfFile: 2,560, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.7641462 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\SHCore.dll.mui","0.0000021","SyncType: SyncTypeOther","7396"
"10:46:27.7643987 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\SHCore.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7644384 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000039","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:27.7644534 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\SHCore.dll","0.0000059","","7396"
"10:46:27.7647542 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\combase.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7647934 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000038","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:27.7648071 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\combase.dll","0.0000055","","7396"
"10:46:27.7650562 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\combase.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7650916 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000035","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:27.7651044 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\combase.dll","0.0000056","","7396"
"10:46:27.7651625 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000106","Desired Access: Read","7396"
"10:46:27.7651936 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\setupapi.dll","0.0200956","Offset: 4,513,792, Length: 16,992, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:27.7652888 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\combase.dll.mui","0.0000243","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7653314 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\combase.dll.mui","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.7653451 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\combase.dll.mui","0.0000025","AllocationSize: 40,960, EndOfFile: 38,400, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.7653660 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\combase.dll.mui","0.0000017","SyncType: SyncTypeOther","7396"
"10:46:27.7655588 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\combase.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7656011 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000060","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:27.7656190 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\combase.dll","0.0000077","","7396"
"10:46:27.7658733 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7658955 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000025","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:27.7659036 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000038","","7396"
"10:46:27.7660888 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7661071 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000026","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:27.7661152 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000039","","7396"
"10:46:27.7661639 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000093","Desired Access: Read","7396"
"10:46:27.7662628 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\windows.storage.dll.mui","0.0000154","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7662961 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\windows.storage.dll.mui","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.7663320 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\windows.storage.dll.mui","0.0000034","AllocationSize: 32,768, EndOfFile: 29,184, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.7663537 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\windows.storage.dll.mui","0.0000022","SyncType: SyncTypeOther","7396"
"10:46:27.7665487 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7665679 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000026","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:27.7665764 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000043","","7396"
"10:46:27.7667992 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7668278 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000029","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","7396"
"10:46:27.7668367 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000043","","7396"
"10:46:27.7670445 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7670701 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","7396"
"10:46:27.7670786 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000043","","7396"
"10:46:27.7671205 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000089","Desired Access: Read","7396"
"10:46:27.7672173 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\shlwapi.dll.mui","0.0000154","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7672497 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\shlwapi.dll.mui","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.7672621 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\shlwapi.dll.mui","0.0000030","AllocationSize: 8,192, EndOfFile: 4,608, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.7672822 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\shlwapi.dll.mui","0.0000017","SyncType: SyncTypeOther","7396"
"10:46:27.7675369 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7675783 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","7396"
"10:46:27.7675915 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000060","","7396"
"10:46:27.7679606 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000311","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7680041 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000042","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:27.7680186 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000055","","7396"
"10:46:27.7683202 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7683514 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000043","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:27.7683663 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000047","","7396"
"10:46:27.7685733 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7685942 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000042","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:27.7686070 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000072","","7396"
"10:46:27.7689649 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\profapi.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7690093 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:27.7690208 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\profapi.dll","0.0000051","","7396"
"10:46:27.7692828 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\profapi.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7693195 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:27.7693314 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\profapi.dll","0.0000060","","7396"
"10:46:27.7695904 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\profapi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7696177 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:27.7696263 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\profapi.dll","0.0000042","","7396"
"10:46:27.7698460 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\powrprof.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7698737 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:27.7698818 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\powrprof.dll","0.0000039","","7396"
"10:46:27.7700602 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\powrprof.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7700854 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:27.7700935 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\powrprof.dll","0.0000038","","7396"
"10:46:27.7701421 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000120","Desired Access: Read","7396"
"10:46:27.7702466 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\powrprof.dll.mui","0.0000265","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7702919 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\powrprof.dll.mui","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.7703059 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\powrprof.dll.mui","0.0000030","AllocationSize: 57,344, EndOfFile: 55,808, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.7703277 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\powrprof.dll.mui","0.0000017","SyncType: SyncTypeOther","7396"
"10:46:27.7705308 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\powrprof.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7705590 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:27.7705675 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\powrprof.dll","0.0000043","","7396"
"10:46:27.7707983 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\fltLib.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7708265 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:27.7708354 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\fltLib.dll","0.0000039","","7396"
"10:46:27.7710279 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\fltLib.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7710543 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:27.7710624 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\fltLib.dll","0.0000043","","7396"
"10:46:27.7711038 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000085","Desired Access: Read","7396"
"10:46:27.7712011 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\fltlib.dll.mui","0.0000149","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7712327 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\fltlib.dll.mui","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.7712450 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\fltlib.dll.mui","0.0000030","AllocationSize: 8,192, EndOfFile: 7,168, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.7712655 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\fltlib.dll.mui","0.0000017","SyncType: SyncTypeOther","7396"
"10:46:27.7714806 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\fltLib.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7715083 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:27.7715173 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\fltLib.dll","0.0000042","","7396"
"10:46:27.7717622 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ole32.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7717903 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000030","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","7396"
"10:46:27.7717989 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ole32.dll","0.0000042","","7396"
"10:46:27.7719883 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ole32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7720130 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000026","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","7396"
"10:46:27.7720211 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ole32.dll","0.0000039","","7396"
"10:46:27.7720634 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000077","Desired Access: Read","7396"
"10:46:27.7721594 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\ole32.dll.mui","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7721901 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\ole32.dll.mui","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.7722021 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\ole32.dll.mui","0.0000029","AllocationSize: 32,768, EndOfFile: 30,208, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.7722230 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\ole32.dll.mui","0.0000017","SyncType: SyncTypeOther","7396"
"10:46:27.7724162 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ole32.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7724431 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000030","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","7396"
"10:46:27.7724521 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ole32.dll","0.0000043","","7396"
"10:46:27.7726705 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\imm32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7726974 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000026","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","7396"
"10:46:27.7727060 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\imm32.dll","0.0000038","","7396"
"10:46:27.7728886 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\imm32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7729125 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000025","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","7396"
"10:46:27.7729206 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\imm32.dll","0.0000038","","7396"
"10:46:27.7731066 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\imm32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7731309 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000026","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","7396"
"10:46:27.7731390 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\imm32.dll","0.0000034","","7396"
"10:46:27.7733553 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\setupapi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7733831 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:27.7733916 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\setupapi.dll","0.0119066","","7396"
"10:46:27.7856092 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\setupapi.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7856634 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000051","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:27.7856779 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\setupapi.dll","0.0000060","","7396"
"10:46:27.7857483 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000120","Desired Access: Read","7396"
"10:46:27.7858947 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\setupapi.dll.mui","0.0000273","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7859497 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\setupapi.dll.mui","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.7859689 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\setupapi.dll.mui","0.0000038","AllocationSize: 49,152, EndOfFile: 48,640, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.7860077 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000086","","2512"
"10:46:27.7860133 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\setupapi.dll.mui","0.0000025","SyncType: SyncTypeOther","7396"
"10:46:27.7864101 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\setupapi.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7864651 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000051","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:27.7864822 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\setupapi.dll","0.0000077","","7396"
"10:46:27.7868777 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7869434 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000043","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:27.7869583 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000064","","7396"
"10:46:27.7873061 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7873492 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000047","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:27.7873637 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000068","","7396"
"10:46:27.7874281 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000111","Desired Access: Read","7396"
"10:46:27.7875962 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\OLEAUT32.dll.mui","0.0000209","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a","7396"
"10:46:27.7876504 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en","0.0000094","Desired Access: Read","7396"
"10:46:27.7878283 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en\OLEAUT32.dll.mui","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a","7396"
"10:46:27.7878680 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7879154 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000153","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:27.7879529 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000085","","2512"
"10:46:27.7881705 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7882243 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000047","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:27.7882418 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000068","","7396"
"10:46:27.7883723 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7884457 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:27.7884649 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000068","","2512"
"10:46:27.7885383 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000303","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7886091 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000060","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:27.7886258 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000059","","7396"
"10:46:27.7890708 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000350","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7891335 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000043","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:27.7891480 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000064","","7396"
"10:46:27.7891676 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7892150 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000213","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:27.7892525 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000056","","2512"
"10:46:27.7893165 AM","firefox.exe","7384","CreateFile","C:\","0.0000406","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7894074 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000243","Filter: Windows, 1: Windows","2512"
"10:46:27.7894543 AM","firefox.exe","7384","CloseFile","C:\","0.0000064","","2512"
"10:46:27.7895951 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\avrt.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7896459 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","7396"
"10:46:27.7896613 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\avrt.dll","0.0000064","","7396"
"10:46:27.7896694 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000392","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7897300 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000166","Filter: System32, 1: System32","2512"
"10:46:27.7897684 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000068","","2512"
"10:46:27.7899288 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000175","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7899629 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\avrt.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7899676 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\setupapi.dll","0.0000197","Filter: setupapi.dll, 1: setupapi.dll","2512"
"10:46:27.7900035 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000038","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","7396"
"10:46:27.7900065 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000059","","2512"
"10:46:27.7900171 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\avrt.dll","0.0000064","","7396"
"10:46:27.7900862 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000124","Desired Access: Read","7396"
"10:46:27.7902612 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\avrt.dll.mui","0.0000239","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7903128 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\avrt.dll.mui","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.7903316 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\avrt.dll.mui","0.0000038","AllocationSize: 8,192, EndOfFile: 4,608, NumberOfLinks: 2, DeletePending: False, Directory: False","7396"
"10:46:27.7903341 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7903657 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\avrt.dll.mui","0.0000026","SyncType: SyncTypeOther","7396"
"10:46:27.7903811 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000047","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:27.7903998 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000064","","2512"
"10:46:27.7904549 AM","firefox.exe","7384","CreateFile","C:\","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7904856 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000145","Filter: Windows, 1: Windows","2512"
"10:46:27.7905180 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:27.7906665 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000171","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7906699 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\avrt.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7907036 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000145","Filter: System32, 1: System32","2512"
"10:46:27.7907173 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000042","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","7396"
"10:46:27.7907326 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\avrt.dll","0.0000064","","7396"
"10:46:27.7907373 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000060","","2512"
"10:46:27.7908879 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000167","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7909234 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\oleaut32.dll","0.0000183","Filter: oleaut32.dll, 1: oleaut32.dll","2512"
"10:46:27.7909596 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000056","","2512"
"10:46:27.7911273 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\usp10.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7911785 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000060","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","7396"
"10:46:27.7911947 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\usp10.dll","0.0000064","","7396"
"10:46:27.7912899 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7913406 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000047","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:27.7913594 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000073","","2512"
"10:46:27.7914162 AM","firefox.exe","7384","CreateFile","C:\","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7914486 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000648","Filter: Windows, 1: Windows","2512"
"10:46:27.7914934 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\usp10.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7915343 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000043","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","7396"
"10:46:27.7915399 AM","firefox.exe","7384","CloseFile","C:\","0.0000077","","2512"
"10:46:27.7915484 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\usp10.dll","0.0000051","","7396"
"10:46:27.7917025 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000153","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7917379 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000140","Filter: System32, 1: System32","2512"
"10:46:27.7917699 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000051","","2512"
"10:46:27.7918211 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\usp10.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7918616 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000051","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","7396"
"10:46:27.7918761 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\usp10.dll","0.0000056","","7396"
"10:46:27.7919243 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7919559 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\oleaut32.dll","0.0000166","Filter: oleaut32.dll, 1: oleaut32.dll","2512"
"10:46:27.7919892 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000064","","2512"
"10:46:27.7921978 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000188","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7922520 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\oleaut32.dll","0.0000038","AllocationSize: 786,432, EndOfFile: 786,080, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7922767 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\oleaut32.dll","0.0000035","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.7922810 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\d3d11.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7922959 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\oleaut32.dll","0.0000035","AllocationSize: 786,432, EndOfFile: 786,080, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7923228 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000034","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:27.7923284 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\oleaut32.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:27.7923369 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\d3d11.dll","0.0000068","","7396"
"10:46:27.7924090 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000068","","2512"
"10:46:27.7926036 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000170","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7926552 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\d3d11.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7926642 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\oleaut32.dll","0.0000042","AllocationSize: 786,432, EndOfFile: 786,080, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7926932 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\oleaut32.dll","0.0000068","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.7927009 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000038","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:27.7927149 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\d3d11.dll","0.0000060","","7396"
"10:46:27.7927166 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\oleaut32.dll","0.0000035","AllocationSize: 786,432, EndOfFile: 786,080, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7927499 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\oleaut32.dll","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:27.7928408 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\oleaut32.dll","0.0000034","AllocationSize: 786,432, EndOfFile: 786,080, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7928609 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000064","","2512"
"10:46:27.7930183 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\d3d11.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7930537 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000167","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7930584 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000038","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:27.7930725 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\d3d11.dll","0.0000060","","7396"
"10:46:27.7931045 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\oleaut32.dll","0.0000038","AllocationSize: 786,432, EndOfFile: 786,080, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7931258 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\oleaut32.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.7931437 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\oleaut32.dll","0.0000030","AllocationSize: 786,432, EndOfFile: 786,080, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.7931728 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\oleaut32.dll","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:27.7933972 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dxgi.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7934369 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000034","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:27.7934569 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dxgi.dll","0.0000064","","7396"
"10:46:27.7937411 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dxgi.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7937808 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000038","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:27.7937948 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dxgi.dll","0.0000056","","7396"
"10:46:27.7939949 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000073","","2512"
"10:46:27.7940594 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dxgi.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7941093 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000043","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:27.7941238 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dxgi.dll","0.0000064","","7396"
"10:46:27.7944720 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7945308 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000052","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","7396"
"10:46:27.7945479 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000073","","7396"
"10:46:27.7947792 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7948295 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000064","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:27.7948538 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000064","","2512"
"10:46:27.7948905 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7949370 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000043","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","7396"
"10:46:27.7949528 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000068","","7396"
"10:46:27.7950168 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000111","Desired Access: Read","7396"
"10:46:27.7951320 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7951798 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000038","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:27.7951828 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\iphlpapi.dll.mui","0.0000234","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7951964 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000056","","2512"
"10:46:27.7952340 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\iphlpapi.dll.mui","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.7952553 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\iphlpapi.dll.mui","0.0000043","AllocationSize: 4,096, EndOfFile: 4,096, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.7952907 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\iphlpapi.dll.mui","0.0000030","SyncType: SyncTypeOther","7396"
"10:46:27.7957404 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7958010 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000060","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","7396"
"10:46:27.7958279 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000081","","7396"
"10:46:27.7958936 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7959504 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000038","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:27.7959713 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000076","","2512"
"10:46:27.7962755 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7963314 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000042","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:27.7963472 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000081","","7396"
"10:46:27.7963757 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7964205 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000047","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:27.7964393 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000060","","2512"
"10:46:27.7966531 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7966953 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:27.7967094 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000055","","7396"
"10:46:27.7967640 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7967849 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000149","Desired Access: Read","7396"
"10:46:27.7968075 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000043","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:27.7968259 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000055","","2512"
"10:46:27.7968826 AM","firefox.exe","7384","CreateFile","C:\","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7969159 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000179","Filter: Windows, 1: Windows","2512"
"10:46:27.7969283 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\dnsapi.dll.mui","0.0000213","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7969517 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:27.7969803 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\dnsapi.dll.mui","0.0000081","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.7970068 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\dnsapi.dll.mui","0.0000038","AllocationSize: 73,728, EndOfFile: 72,704, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.7970388 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\dnsapi.dll.mui","0.0000025","SyncType: SyncTypeOther","7396"
"10:46:27.7970985 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000162","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7971322 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000150","Filter: System32, 1: System32","2512"
"10:46:27.7971634 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:27.7973050 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000171","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7973396 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\oleaut32.dll","0.0000179","Filter: oleaut32.dll, 1: oleaut32.dll","2512"
"10:46:27.7973729 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000064","","2512"
"10:46:27.7974036 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7974509 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:27.7974672 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000072","","7396"
"10:46:27.7977607 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000559","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7978524 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","2512"
"10:46:27.7978733 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000064","","2512"
"10:46:27.7978989 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nsi.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7979331 AM","firefox.exe","7384","CreateFile","C:\","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7979437 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:27.7979600 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nsi.dll","0.0000068","","7396"
"10:46:27.7979659 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000171","Filter: Windows, 1: Windows","2512"
"10:46:27.7980146 AM","firefox.exe","7384","CloseFile","C:\","0.0000076","","2512"
"10:46:27.7981733 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7982070 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000154","Filter: System32, 1: System32","2512"
"10:46:27.7982433 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000064","","2512"
"10:46:27.7982539 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nsi.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7982936 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:27.7983077 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nsi.dll","0.0000055","","7396"
"10:46:27.7983994 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000171","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7984344 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\avrt.dll","0.0000192","Filter: avrt.dll, 1: avrt.dll","2512"
"10:46:27.7984711 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000064","","2512"
"10:46:27.7986930 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nsi.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7987203 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0210522","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:27.7987365 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:27.7987506 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nsi.dll","0.0000059","","7396"
"10:46:27.7989878 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7990352 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000042","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","2512"
"10:46:27.7990544 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000064","","2512"
"10:46:27.7991090 AM","firefox.exe","7384","CreateFile","C:\","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7991388 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000145","Filter: Windows, 1: Windows","2512"
"10:46:27.7991457 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7991704 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:27.7991935 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000046","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","7396"
"10:46:27.7992097 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000068","","7396"
"10:46:27.7993125 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7993441 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000149","Filter: System32, 1: System32","2512"
"10:46:27.7993748 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:27.7995280 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7995408 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7995719 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","7396"
"10:46:27.7995732 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\avrt.dll","0.0000171","Filter: avrt.dll, 1: avrt.dll","2512"
"10:46:27.7995860 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000051","","7396"
"10:46:27.7996069 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000055","","2512"
"10:46:27.7996589 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000158","Desired Access: Read","7396"
"10:46:27.7998036 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000188","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.7998164 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\dwmapi.dll.mui","0.0000358","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.7998603 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\avrt.dll","0.0000043","AllocationSize: 32,768, EndOfFile: 30,056, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:27.7998804 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\dwmapi.dll.mui","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.7998855 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.7999013 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\dwmapi.dll.mui","0.0000043","AllocationSize: 4,096, EndOfFile: 3,584, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.7999043 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\avrt.dll","0.0000034","AllocationSize: 32,768, EndOfFile: 30,056, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:27.7999333 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\dwmapi.dll.mui","0.0000021","SyncType: SyncTypeOther","7396"
"10:46:27.7999388 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:27.8000186 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000086","","2512"
"10:46:27.8002251 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000175","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.8002465 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8002883 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000042","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","7396"
"10:46:27.8002951 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\avrt.dll","0.0000034","AllocationSize: 32,768, EndOfFile: 30,056, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:27.8003028 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000064","","7396"
"10:46:27.8003190 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000094","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.8003826 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\avrt.dll","0.0000119","AllocationSize: 32,768, EndOfFile: 30,056, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:27.8004278 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000034","SyncType: SyncTypeOther","2512"
"10:46:27.8005724 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\avrt.dll","0.0000056","AllocationSize: 32,768, EndOfFile: 30,056, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:27.8005976 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000085","","2512"
"10:46:27.8007154 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8007661 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000043","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","7396"
"10:46:27.8007819 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000064","","7396"
"10:46:27.8008310 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000188","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.8008929 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\avrt.dll","0.0000042","AllocationSize: 32,768, EndOfFile: 30,056, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:27.8009189 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.8009398 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\avrt.dll","0.0000030","AllocationSize: 32,768, EndOfFile: 30,056, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:27.8009752 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:27.8010721 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8011271 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000038","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","7396"
"10:46:27.8011412 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000055","","7396"
"10:46:27.8012082 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000149","Desired Access: Read","7396"
"10:46:27.8013515 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\uxtheme.dll.mui","0.0000209","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8013989 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\uxtheme.dll.mui","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.8014185 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\uxtheme.dll.mui","0.0000039","AllocationSize: 8,192, EndOfFile: 7,680, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.8014518 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\uxtheme.dll.mui","0.0000021","SyncType: SyncTypeOther","7396"
"10:46:27.8014851 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000085","","2512"
"10:46:27.8017500 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8017974 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000047","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","7396"
"10:46:27.8018119 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000064","","7396"
"10:46:27.8021754 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.8022488 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000090","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","2512"
"10:46:27.8022659 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8022757 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000102","","2512"
"10:46:27.8023239 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000051","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","7396"
"10:46:27.8023405 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000086","","7396"
"10:46:27.8027386 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000435","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8027949 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.8028086 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000051","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","7396"
"10:46:27.8028235 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000073","","7396"
"10:46:27.8028483 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000094","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","2512"
"10:46:27.8028756 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000068","","2512"
"10:46:27.8031393 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8031858 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000051","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","7396"
"10:46:27.8032028 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000073","","7396"
"10:46:27.8036065 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8036466 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.8036538 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000047","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:27.8036683 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000064","","7396"
"10:46:27.8036918 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000034","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","2512"
"10:46:27.8037084 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000056","","2512"
"10:46:27.8037635 AM","firefox.exe","7384","CreateFile","C:\","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.8037972 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000183","Filter: Windows, 1: Windows","2512"
"10:46:27.8038352 AM","firefox.exe","7384","CloseFile","C:\","0.0000055","","2512"
"10:46:27.8039487 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8039734 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.8040016 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000106","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:27.8040058 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000133","Filter: System32, 1: System32","2512"
"10:46:27.8040302 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000098","","7396"
"10:46:27.8040319 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000051","","2512"
"10:46:27.8041082 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000154","Desired Access: Read","7396"
"10:46:27.8041321 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.8041543 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\avrt.dll","0.0000132","Filter: avrt.dll, 1: avrt.dll","2512"
"10:46:27.8041782 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:27.8042793 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\dhcpcsvc.dll.mui","0.0000231","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8043292 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\dhcpcsvc.dll.mui","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.8043497 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\dhcpcsvc.dll.mui","0.0000043","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.8043809 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\dhcpcsvc.dll.mui","0.0000025","SyncType: SyncTypeOther","7396"
"10:46:27.8044184 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.8044504 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000030","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:27.8044619 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000043","","2512"
"10:46:27.8044978 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.8045178 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000103","Filter: Windows, 1: Windows","2512"
"10:46:27.8045387 AM","firefox.exe","7384","CloseFile","C:\","0.0000052","","2512"
"10:46:27.8046356 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.8046569 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000103","Filter: System32, 1: System32","2512"
"10:46:27.8046778 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:27.8046842 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8047282 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000038","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:27.8047427 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000060","","7396"
"10:46:27.8047794 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.8048007 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\usp10.dll","0.0000115","Filter: usp10.dll, 1: usp10.dll","2512"
"10:46:27.8048225 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:27.8050567 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.8050879 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000029","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:27.8050998 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000043","","2512"
"10:46:27.8051164 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\userenv.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8051455 AM","firefox.exe","7384","CreateFile","C:\","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.8051583 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","7396"
"10:46:27.8051728 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\userenv.dll","0.0000059","","7396"
"10:46:27.8051894 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000205","Filter: Windows, 1: Windows","2512"
"10:46:27.8052410 AM","firefox.exe","7384","CloseFile","C:\","0.0000090","","2512"
"10:46:27.8054057 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000150","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.8054403 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000153","Filter: System32, 1: System32","2512"
"10:46:27.8054731 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000056","","2512"
"10:46:27.8054830 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\userenv.dll","0.0000174","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8055235 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","7396"
"10:46:27.8055371 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\userenv.dll","0.0000052","","7396"
"10:46:27.8056007 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000132","Desired Access: Read","7396"
"10:46:27.8056148 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.8056485 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\usp10.dll","0.0000158","Filter: usp10.dll, 1: usp10.dll","2512"
"10:46:27.8056818 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000051","","2512"
"10:46:27.8057650 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\userenv.dll.mui","0.0000226","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8058136 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\userenv.dll.mui","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.8058251 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000133","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.8058324 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\userenv.dll.mui","0.0000043","AllocationSize: 8,192, EndOfFile: 4,608, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.8058648 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\usp10.dll","0.0000034","AllocationSize: 81,920, EndOfFile: 79,360, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.8058657 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\userenv.dll.mui","0.0000021","SyncType: SyncTypeOther","7396"
"10:46:27.8058827 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.8058947 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\usp10.dll","0.0000021","AllocationSize: 81,920, EndOfFile: 79,360, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.8059147 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:27.8059659 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000060","","2512"
"10:46:27.8061456 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.8061865 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\usp10.dll","0.0000030","AllocationSize: 81,920, EndOfFile: 79,360, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.8061929 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\userenv.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8062023 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.8062134 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\usp10.dll","0.0000021","AllocationSize: 81,920, EndOfFile: 79,360, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.8062343 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:27.8062356 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","7396"
"10:46:27.8062505 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\userenv.dll","0.0000060","","7396"
"10:46:27.8062787 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000055","","2512"
"10:46:27.8065014 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.8065257 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000043","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:27.8065385 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000039","","2512"
"10:46:27.8066251 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8066559 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000038","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","7396"
"10:46:27.8066691 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000055","","7396"
"10:46:27.8067263 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.8067480 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:27.8067583 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:27.8068841 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.8069319 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\usp10.dll","0.0000030","AllocationSize: 81,920, EndOfFile: 79,360, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.8069477 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.8069592 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\usp10.dll","0.0000017","AllocationSize: 81,920, EndOfFile: 79,360, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.8069686 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8069780 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:27.8069951 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000034","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","7396"
"10:46:27.8070074 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000052","","7396"
"10:46:27.8070659 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\usp10.dll","0.0000021","AllocationSize: 81,920, EndOfFile: 79,360, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.8070787 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:27.8070885 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\usp10.dll","0.0000017","AllocationSize: 81,920, EndOfFile: 79,360, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:27.8071077 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:27.8071324 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\usp10.dll","0.0481268","Offset: 0, Length: 79,360, Priority: Normal","2512"
"10:46:27.8071811 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\usp10.dll","0.0284011","Offset: 32,768, Length: 46,592, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2512"
"10:46:27.8072694 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8072942 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000034","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","7396"
"10:46:27.8073061 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000051","","7396"
"10:46:27.8076415 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8076799 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","7396"
"10:46:27.8076922 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000056","","7396"
"10:46:27.8079572 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8079926 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","7396"
"10:46:27.8080050 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000055","","7396"
"10:46:27.8082597 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8082947 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","7396"
"10:46:27.8083071 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000051","","7396"
"10:46:27.8086228 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8086595 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","7396"
"10:46:27.8086714 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000056","","7396"
"10:46:27.8089202 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8089539 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000034","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","7396"
"10:46:27.8089663 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000055","","7396"
"10:46:27.8090294 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000149","Desired Access: Read","7396"
"10:46:27.8090350 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\ARIALN.TTF","0.0227264","Offset: 114,688, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.8091706 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\ntmarta.dll.mui","0.0000197","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8092142 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\ntmarta.dll.mui","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.8092321 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\ntmarta.dll.mui","0.0000038","AllocationSize: 8,192, EndOfFile: 6,656, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.8092619 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\ntmarta.dll.mui","0.0000022","SyncType: SyncTypeOther","7396"
"10:46:27.8095423 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8095798 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000039","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","7396"
"10:46:27.8095935 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000059","","7396"
"10:46:27.8099271 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8099664 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000034","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","7396"
"10:46:27.8099787 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000056","","7396"
"10:46:27.8102283 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8102667 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000035","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","7396"
"10:46:27.8102791 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000056","","7396"
"10:46:27.8103337 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000107","Desired Access: Read","7396"
"10:46:27.8104686 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\napinsp.dll.mui","0.0000192","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8105095 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\napinsp.dll.mui","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.8105270 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\napinsp.dll.mui","0.0000039","AllocationSize: 4,096, EndOfFile: 2,560, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.8105560 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\napinsp.dll.mui","0.0000022","SyncType: SyncTypeOther","7396"
"10:46:27.8108133 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8108513 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000034","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","7396"
"10:46:27.8108645 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000060","","7396"
"10:46:27.8111930 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\webauthn.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8112327 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000034","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","7396"
"10:46:27.8112455 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\webauthn.dll","0.0000056","","7396"
"10:46:27.8114985 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\webauthn.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8115344 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000034","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","7396"
"10:46:27.8115472 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\webauthn.dll","0.0000051","","7396"
"10:46:27.8116022 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000098","Desired Access: Read","7396"
"10:46:27.8117362 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\webauthn.dll.mui","0.0000192","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8117771 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\webauthn.dll.mui","0.0000035","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.8117946 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\webauthn.dll.mui","0.0000039","AllocationSize: 20,480, EndOfFile: 18,944, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.8118241 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\webauthn.dll.mui","0.0000021","SyncType: SyncTypeOther","7396"
"10:46:27.8120852 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\webauthn.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8121236 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000038","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","7396"
"10:46:27.8121364 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\webauthn.dll","0.0000060","","7396"
"10:46:27.8125093 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8125533 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000051","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:27.8125870 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000213","","7396"
"10:46:27.8129146 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8129488 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000034","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:27.8129590 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000043","","7396"
"10:46:27.8130145 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000119","Desired Access: Read","7396"
"10:46:27.8131241 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\bcrypt.dll.mui","0.0000158","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8131604 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\bcrypt.dll.mui","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.8131745 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\bcrypt.dll.mui","0.0000030","AllocationSize: 4,096, EndOfFile: 3,584, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.8131958 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\bcrypt.dll.mui","0.0000017","SyncType: SyncTypeOther","7396"
"10:46:27.8133895 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8134177 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000030","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:27.8134271 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000042","","7396"
"10:46:27.8136882 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8137181 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000029","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","7396"
"10:46:27.8137270 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000043","","7396"
"10:46:27.8139062 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8139322 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000026","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","7396"
"10:46:27.8139408 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000038","","7396"
"10:46:27.8139826 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000085","Desired Access: Read","7396"
"10:46:27.8140807 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\pnrpnsp.dll.mui","0.0000154","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8141127 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\pnrpnsp.dll.mui","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.8141255 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\pnrpnsp.dll.mui","0.0000026","AllocationSize: 4,096, EndOfFile: 2,560, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.8141460 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\pnrpnsp.dll.mui","0.0000017","SyncType: SyncTypeOther","7396"
"10:46:27.8143542 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8143837 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000029","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","7396"
"10:46:27.8143926 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000047","","7396"
"10:46:27.8146529 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8146810 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","7396"
"10:46:27.8146896 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000042","","7396"
"10:46:27.8148641 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8148888 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","7396"
"10:46:27.8148969 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000039","","7396"
"10:46:27.8150663 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8150902 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","7396"
"10:46:27.8150983 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000034","","7396"
"10:46:27.8153420 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mswsock.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8153684 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","7396"
"10:46:27.8153765 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mswsock.dll","0.0000034","","7396"
"10:46:27.8155480 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mswsock.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8155719 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","7396"
"10:46:27.8155800 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mswsock.dll","0.0000034","","7396"
"10:46:27.8157635 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mswsock.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8157874 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","7396"
"10:46:27.8157955 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mswsock.dll","0.0000034","","7396"
"10:46:27.8160357 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winrnr.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8160630 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000026","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","7396"
"10:46:27.8160711 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winrnr.dll","0.0000039","","7396"
"10:46:27.8162426 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winrnr.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8162670 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000021","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","7396"
"10:46:27.8162746 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winrnr.dll","0.0000039","","7396"
"10:46:27.8163165 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000098","Desired Access: Read","7396"
"10:46:27.8164150 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\winrnr.dll.mui","0.0000150","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8164479 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\winrnr.dll.mui","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.8164615 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\winrnr.dll.mui","0.0000026","AllocationSize: 4,096, EndOfFile: 2,560, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.8164820 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\winrnr.dll.mui","0.0000017","SyncType: SyncTypeOther","7396"
"10:46:27.8166778 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winrnr.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8167056 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000030","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","7396"
"10:46:27.8167145 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winrnr.dll","0.0000043","","7396"
"10:46:27.8169565 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wshbth.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8169838 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:27.8169927 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wshbth.dll","0.0000039","","7396"
"10:46:27.8171715 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wshbth.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8171962 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:27.8172044 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wshbth.dll","0.0000038","","7396"
"10:46:27.8173737 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wshbth.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8173972 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:27.8174053 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wshbth.dll","0.0000039","","7396"
"10:46:27.8176472 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sspicli.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8176741 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:27.8176822 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sspicli.dll","0.0000039","","7396"
"10:46:27.8178644 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sspicli.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8178892 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000021","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:27.8178968 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sspicli.dll","0.0000039","","7396"
"10:46:27.8181298 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sspicli.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8181661 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000034","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:27.8181789 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sspicli.dll","0.0000055","","7396"
"10:46:27.8184852 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\devobj.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8185134 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","7396"
"10:46:27.8185219 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\devobj.dll","0.0000038","","7396"
"10:46:27.8187113 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\devobj.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8187361 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","7396"
"10:46:27.8187442 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\devobj.dll","0.0000038","","7396"
"10:46:27.8189140 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\devobj.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8189797 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","7396"
"10:46:27.8189900 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\devobj.dll","0.0000051","","7396"
"10:46:27.8192349 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\DWrite.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8192609 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000026","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:27.8192694 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\DWrite.dll","0.0000039","","7396"
"10:46:27.8194772 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\DWrite.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8195015 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000026","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:27.8195096 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\DWrite.dll","0.0000039","","7396"
"10:46:27.8195519 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000098","Desired Access: Read","7396"
"10:46:27.8196517 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\DWrite.dll.mui","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8196846 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\DWrite.dll.mui","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.8196978 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\DWrite.dll.mui","0.0000026","AllocationSize: 4,096, EndOfFile: 2,560, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.8197473 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\DWrite.dll.mui","0.0000030","SyncType: SyncTypeOther","7396"
"10:46:27.8198083 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000051","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:27.8198548 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000034","SyncType: SyncTypeOther","5728"
"10:46:27.8199222 AM","firefox.exe","7384","QueryNameInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000051","Name: \Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","5728"
"10:46:27.8200195 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\DWrite.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8200605 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000038","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:27.8200754 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\DWrite.dll","0.0000060","","7396"
"10:46:27.8202392 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000261","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.8202862 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000038","CreationTime: 6/19/2019 4:53:38 PM, LastAccessTime: 6/19/2019 4:53:38 PM, LastWriteTime: 3/26/2020 10:29:03 AM, ChangeTime: 3/26/2020 10:29:03 AM, FileAttributes: A","5728"
"10:46:27.8203096 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000073","","5728"
"10:46:27.8203762 AM","firefox.exe","7384","CreateFile","C:\","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.8204129 AM","firefox.exe","7384","QueryDirectory","C:\Users","0.0000166","Filter: Users, 1: Users","5728"
"10:46:27.8204539 AM","firefox.exe","7384","CloseFile","C:\","0.0000059","","5728"
"10:46:27.8204590 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mscms.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8204999 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000039","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","7396"
"10:46:27.8205132 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mscms.dll","0.0000055","","7396"
"10:46:27.8206057 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000150","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.8206446 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles","0.0000123","Filter: diggles, 1: diggles","5728"
"10:46:27.8206796 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000055","","5728"
"10:46:27.8207824 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mscms.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8208187 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.8208199 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000039","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","7396"
"10:46:27.8208332 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mscms.dll","0.0000051","","7396"
"10:46:27.8208545 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData","0.0000136","Filter: AppData, 1: AppData","5728"
"10:46:27.8208903 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000060","","5728"
"10:46:27.8208955 AM","firefox.exe","7336","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000119","Desired Access: Read","7396"
"10:46:27.8210371 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\en-US\mscms.dll.mui","0.0000269","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8210409 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000163","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.8210815 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming","0.0000115","Filter: Roaming, 1: Roaming","5728"
"10:46:27.8210875 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\mscms.dll.mui","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7396"
"10:46:27.8211062 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\System32\en-US\mscms.dll.mui","0.0000043","AllocationSize: 20,480, EndOfFile: 17,408, NumberOfLinks: 4, DeletePending: False, Directory: False","7396"
"10:46:27.8211160 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000056","","5728"
"10:46:27.8211408 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\System32\en-US\mscms.dll.mui","0.0000043","SyncType: SyncTypeOther","7396"
"10:46:27.8213213 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000175","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.8213460 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mscms.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8213686 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000137","Filter: Mozilla, 1: Mozilla","5728"
"10:46:27.8213746 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","7396"
"10:46:27.8213840 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mscms.dll","0.0000047","","7396"
"10:46:27.8214083 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000064","","5728"
"10:46:27.8215751 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000226","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.8216216 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000116","Filter: Firefox, 1: Firefox","5728"
"10:46:27.8216545 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000055","","5728"
"10:46:27.8216592 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8216801 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","7396"
"10:46:27.8216886 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000043","","7396"
"10:46:27.8218175 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000175","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.8218572 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000132","Filter: Profiles, 1: Profiles","5728"
"10:46:27.8218781 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8218913 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000055","","5728"
"10:46:27.8218964 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","7396"
"10:46:27.8219058 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000038","","7396"
"10:46:27.8221016 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8221196 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000051","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","7396"
"10:46:27.8221341 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000072","","7396"
"10:46:27.8221968 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.8222395 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000046","CreationTime: 6/19/2019 4:53:38 PM, LastAccessTime: 6/19/2019 4:53:38 PM, LastWriteTime: 3/26/2020 10:29:03 AM, ChangeTime: 3/26/2020 10:29:03 AM, FileAttributes: A","5728"
"10:46:27.8222625 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000077","","5728"
"10:46:27.8223273 AM","firefox.exe","7384","CreateFile","C:\","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.8223623 AM","firefox.exe","7384","QueryDirectory","C:\Users","0.0000145","Filter: Users, 1: Users","5728"
"10:46:27.8224012 AM","firefox.exe","7384","CloseFile","C:\","0.0000064","","5728"
"10:46:27.8224861 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8225266 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000038","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:27.8225411 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000056","","7396"
"10:46:27.8225556 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.8225829 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles","0.0000094","Filter: diggles, 1: diggles","5728"
"10:46:27.8226060 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000042","","5728"
"10:46:27.8227169 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.8227455 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData","0.0000098","Filter: AppData, 1: AppData","5728"
"10:46:27.8227689 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000039","","5728"
"10:46:27.8228201 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8228581 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000034","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:27.8228713 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000052","","7396"
"10:46:27.8228773 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.8229025 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming","0.0000072","Filter: Roaming, 1: Roaming","5728"
"10:46:27.8229225 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000039","","5728"
"10:46:27.8230296 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.8230540 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000081","Filter: Mozilla, 1: Mozilla","5728"
"10:46:27.8230753 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000038","","5728"
"10:46:27.8231372 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8231747 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000038","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:27.8231875 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000056","","7396"
"10:46:27.8232084 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000120","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.8232349 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000085","Filter: Firefox, 1: Firefox","5728"
"10:46:27.8232571 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000038","","5728"
"10:46:27.8233620 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:27.8233876 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000085","Filter: Profiles, 1: Profiles","5728"
"10:46:27.8234089 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000039","","5728"
"10:46:27.8235352 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8235681 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:27.8235813 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000073","","7396"
"10:46:27.8236722 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-wal","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:27.8237883 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-wal","0.0001224","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","5728"
"10:46:27.8238382 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8238629 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:27.8238749 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000051","","7396"
"10:46:27.8241211 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8241454 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:27.8241573 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:27.8241582 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000051","","7396"
"10:46:27.8242661 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000969","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","5728"
"10:46:27.8243903 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000043","Exclusive: True, Offset: 128, Length: 1, Fail Immediately: True","5728"
"10:46:27.8244120 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000252","EndOfFile: 0","5728"
"10:46:27.8244504 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000154","AllocationSize: 0","5728"
"10:46:27.8244790 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000026","Offset: 128, Length: 1","5728"
"10:46:27.8244888 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000163","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8244927 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000017","Exclusive: False, Offset: 128, Length: 1, Fail Immediately: True","5728"
"10:46:27.8245076 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000030","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:27.8245166 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000034","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","7396"
"10:46:27.8245221 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000013","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","5728"
"10:46:27.8245298 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000111","","7396"
"10:46:27.8245332 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000017","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:27.8245541 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000790","EndOfFile: 32,768","5728"
"10:46:27.8246527 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000235","AllocationSize: 32,768","5728"
"10:46:27.8247013 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:27.8247252 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000107","AllocationSize: 32,768, EndOfFile: 32,768, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:27.8247854 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000030","SyncType: SyncTypeOther","5728"
"10:46:27.8248088 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8248302 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000030","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","7396"
"10:46:27.8248413 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000042","","7396"
"10:46:27.8248541 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000128","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:27.8249002 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000038","Exclusive: True, Offset: 121, Length: 2, Fail Immediately: True","5728"
"10:46:27.8249194 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000017","Exclusive: True, Offset: 124, Length: 4, Fail Immediately: True","5728"
"10:46:27.8249390 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-wal","0.0000038","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:27.8249607 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000026","Offset: 121, Length: 2","5728"
"10:46:27.8249770 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000021","Offset: 124, Length: 4","5728"
"10:46:27.8249927 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000017","Offset: 120, Length: 1","5728"
"10:46:27.8250085 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000034","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5728"
"10:46:27.8250350 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000034","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:27.8250610 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000149","Offset: 0, Length: 32,768","5728"
"10:46:27.8250695 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.8250977 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000043","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","7396"
"10:46:27.8251114 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000059","","7396"
"10:46:27.8252466 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000030","Offset: 123, Length: 1","5728"
"10:46:27.8252799 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000025","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5728"
"10:46:27.8252982 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000039","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:27.8253400 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0245330","Offset: 229,376, Length: 32,768","5728"
"10:46:27.8253755 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0244651","Offset: 229,376, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:27.8319619 AM","firefox.exe","7336","CreateFile","C:\Windows\Fonts\ariali.ttf","0.0000653","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:27.8320707 AM","firefox.exe","7336","QueryInformationVolume","C:\Windows\Fonts\ariali.ttf","0.0000034","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","7392"
"10:46:27.8320959 AM","firefox.exe","7336","QueryAllInformationFile","C:\Windows\Fonts\ariali.ttf","0.0000047","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 7:09:53 PM, FileAttributes: A, AllocationSize: 720,896, EndOfFile: 717,428, NumberOfLinks: 2, DeletePending: False, Directory: False, IndexNumber: 0x4000000061e39, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","7392"
"10:46:27.8321262 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Fonts\ariali.ttf","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:27.8321471 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\Fonts\ariali.ttf","0.0000026","AllocationSize: 720,896, EndOfFile: 717,428, NumberOfLinks: 2, DeletePending: False, Directory: False","7392"
"10:46:27.8321791 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Fonts\ariali.ttf","0.0000017","SyncType: SyncTypeOther","7392"
"10:46:27.8322388 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\ariali.ttf","0.0232534","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.8499404 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000043","Offset: 123, Length: 1","5728"
"10:46:27.8503295 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000060","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5728"
"10:46:27.8503568 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000060","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:27.8503854 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000026","Offset: 123, Length: 1","5728"
"10:46:27.8550015 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000060","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5728"
"10:46:27.8550293 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000055","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:27.8550800 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0488581","Offset: 229,376, Length: 32,768","5728"
"10:46:27.8551201 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0487864","Offset: 229,376, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:27.8555626 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\ariali.ttf","0.0039804","Offset: 589,824, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.8565247 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000226","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.8565695 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000201","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:27.8567265 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000333","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:27.8569220 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000166","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.8569595 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000038","Information: DACL","2512"
"10:46:27.8569787 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000055","","2512"
"10:46:27.8571353 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000196","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:27.8572752 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000158","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.8573085 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000030","Information: DACL","2512"
"10:46:27.8573252 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000051","","2512"
"10:46:27.8576870 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000268","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:27.8578756 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000204","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:27.8580240 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000158","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.8580582 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000030","Information: DACL","2512"
"10:46:27.8580761 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000055","","2512"
"10:46:27.8582246 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000183","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:27.8583620 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000153","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.8583944 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000030","Information: DACL","2512"
"10:46:27.8584110 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000051","","2512"
"10:46:27.8597008 AM","firefox.exe","7336","CreateFile","C:\Windows\Fonts\ARIALNI.TTF","0.0000564","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:27.8597985 AM","firefox.exe","7336","QueryInformationVolume","C:\Windows\Fonts\ARIALNI.TTF","0.0000035","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","7392"
"10:46:27.8598224 AM","firefox.exe","7336","QueryAllInformationFile","C:\Windows\Fonts\ARIALNI.TTF","0.0000052","CreationTime: 2/15/2017 3:38:52 PM, LastAccessTime: 2/15/2017 3:38:52 PM, LastWriteTime: 2/15/2017 3:38:43 PM, ChangeTime: 3/20/2019 8:09:45 PM, FileAttributes: A, AllocationSize: 184,320, EndOfFile: 181,124, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x3000000006057, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","7392"
"10:46:27.8598544 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Fonts\ARIALNI.TTF","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:27.8598745 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\Fonts\ARIALNI.TTF","0.0000025","AllocationSize: 184,320, EndOfFile: 181,124, NumberOfLinks: 1, DeletePending: False, Directory: False","7392"
"10:46:27.8599065 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Fonts\ARIALNI.TTF","0.0000017","SyncType: SyncTypeOther","7392"
"10:46:27.8599602 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\ARIALNI.TTF","0.0316993","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.8809787 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.1641342","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:27.8917111 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\ARIALNI.TTF","0.0007578","Offset: 118,784, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.8926314 AM","firefox.exe","7336","CreateFile","C:\Windows\Fonts\arialbd.ttf","0.0000871","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:27.8927556 AM","firefox.exe","7336","QueryInformationVolume","C:\Windows\Fonts\arialbd.ttf","0.0000034","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","7392"
"10:46:27.8927786 AM","firefox.exe","7336","QueryAllInformationFile","C:\Windows\Fonts\arialbd.ttf","0.0000052","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 7:05:16 PM, FileAttributes: A, AllocationSize: 983,040, EndOfFile: 980,756, NumberOfLinks: 2, DeletePending: False, Directory: False, IndexNumber: 0x3000000060133, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","7392"
"10:46:27.8928081 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Fonts\arialbd.ttf","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:27.8928281 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\Fonts\arialbd.ttf","0.0000026","AllocationSize: 983,040, EndOfFile: 980,756, NumberOfLinks: 2, DeletePending: False, Directory: False","7392"
"10:46:27.8928610 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Fonts\arialbd.ttf","0.0000017","SyncType: SyncTypeOther","7392"
"10:46:27.8929186 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\arialbd.ttf","0.0187149","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.9041455 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000068","Offset: 123, Length: 1","5728"
"10:46:27.9047932 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 7852","5728"
"10:46:27.9054814 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7852"
"10:46:27.9055270 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000060","CreationTime: 6/19/2019 4:53:38 PM, LastAccessTime: 6/19/2019 4:53:38 PM, LastWriteTime: 3/26/2020 10:29:02 AM, ChangeTime: 3/26/2020 10:29:02 AM, AllocationSize: 5242880, EndOfFile: 5242880, FileAttributes: A","7852"
"10:46:27.9055484 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000085","","7852"
"10:46:27.9057267 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000252","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7852"
"10:46:27.9058112 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000200","Offset: 0, Length: 100, Priority: Normal","7852"
"10:46:27.9059652 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000060","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","7852"
"10:46:27.9059887 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","7852"
"10:46:27.9060104 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000052","Offset: 1,073,741,824, Length: 1","7852"
"10:46:27.9063868 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-journal","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7852"
"10:46:27.9067191 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-wal","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7852"
"10:46:27.9067627 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-wal","0.0000055","CreationTime: 3/26/2020 10:46:27 AM, LastAccessTime: 3/26/2020 10:46:27 AM, LastWriteTime: 3/26/2020 10:46:27 AM, ChangeTime: 3/26/2020 10:46:27 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","7852"
"10:46:27.9067848 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-wal","0.0000090","","7852"
"10:46:27.9068476 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000089","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:27.9068864 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000141","Offset: 0, Length: 32,768","7852"
"10:46:27.9072205 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-wal","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7852"
"10:46:27.9072644 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-wal","0.0000043","CreationTime: 3/26/2020 10:46:27 AM, LastAccessTime: 3/26/2020 10:46:27 AM, LastWriteTime: 3/26/2020 10:46:27 AM, ChangeTime: 3/26/2020 10:46:27 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","7852"
"10:46:27.9072857 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-wal","0.0000069","","7852"
"10:46:27.9074709 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-wal","0.0000329","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","7852"
"10:46:27.9075439 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000055","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:27.9075725 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000042","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:27.9075972 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000103","Offset: 0, Length: 32,768","7852"
"10:46:27.9077692 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9077943 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Mozilla\Firefox","0.0000150","Desired Access: Read","5728"
"10:46:27.9078400 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Mozilla\Firefox\DefaultBrowserOptOut","0.0000030","Length: 12","5728"
"10:46:27.9078703 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Mozilla\Firefox","0.0000021","","5728"
"10:46:27.9079159 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9079360 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Mozilla\Firefox","0.0000047","Desired Access: Query Value, Set Value","5728"
"10:46:27.9079633 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Mozilla\Firefox\DefaultBrowserOptOut","0.0000026","Length: 12","5728"
"10:46:27.9079885 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Mozilla\Firefox","0.0000013","","5728"
"10:46:27.9080887 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000043","Offset: 123, Length: 1","7852"
"10:46:27.9081293 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000030","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:27.9081502 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000047","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:27.9081950 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000119","Offset: 589,824, Length: 32,768","7852"
"10:46:27.9082432 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000026","Offset: 123, Length: 1","7852"
"10:46:27.9086792 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7852"
"10:46:27.9087228 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000047","CreationTime: 6/19/2019 4:53:38 PM, LastAccessTime: 6/19/2019 4:53:38 PM, LastWriteTime: 3/26/2020 10:29:03 AM, ChangeTime: 3/26/2020 10:29:03 AM, AllocationSize: 5242880, EndOfFile: 5242880, FileAttributes: A","7852"
"10:46:27.9087441 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000081","","7852"
"10:46:27.9089233 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000209","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7852"
"10:46:27.9089860 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000145","Offset: 0, Length: 100, Priority: Normal","7852"
"10:46:27.9090428 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000038","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","7852"
"10:46:27.9090603 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","7852"
"10:46:27.9090760 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000022","Offset: 1,073,741,824, Length: 1","7852"
"10:46:27.9093508 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-journal","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7852"
"10:46:27.9096333 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-wal","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7852"
"10:46:27.9096712 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-wal","0.0000043","CreationTime: 3/26/2020 10:46:27 AM, LastAccessTime: 3/26/2020 10:46:27 AM, LastWriteTime: 3/26/2020 10:46:27 AM, ChangeTime: 3/26/2020 10:46:27 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","7852"
"10:46:27.9096904 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-wal","0.0000069","","7852"
"10:46:27.9097416 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000043","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:27.9097668 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000115","Offset: 0, Length: 32,768","7852"
"10:46:27.9098351 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9098611 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000273","Desired Access: Read","5728"
"10:46:27.9099080 AM","firefox.exe","7384","RegSetInfoKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000018","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:27.9099298 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000120","Index: 0, Name: AppXq0fevzme2pys62n3e0fbqa7peapykr8v","5728"
"10:46:27.9099554 AM","firefox.exe","7384","RegQueryKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000038","Query: Cached, SubKeys: 1, Values: 0","5728"
"10:46:27.9099712 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000030","Index: 0, Name: AppXq0fevzme2pys62n3e0fbqa7peapykr8v","5728"
"10:46:27.9099870 AM","firefox.exe","7384","RegQueryKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000013","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:27.9100032 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000085","Desired Access: Read","5728"
"10:46:27.9100309 AM","firefox.exe","7384","RegQueryKey","HKU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9100459 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000085","Desired Access: Read","5728"
"10:46:27.9100668 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-wal","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7852"
"10:46:27.9100680 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000184","Desired Access: Read","5728"
"10:46:27.9101018 AM","firefox.exe","7384","RegSetInfoKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000012","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:27.9101039 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-wal","0.0000038","CreationTime: 3/26/2020 10:46:27 AM, LastAccessTime: 3/26/2020 10:46:27 AM, LastWriteTime: 3/26/2020 10:46:27 AM, ChangeTime: 3/26/2020 10:46:27 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","7852"
"10:46:27.9101197 AM","firefox.exe","7384","RegEnumValue","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000217","Index: 0, Length: 256","5728"
"10:46:27.9101235 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-wal","0.0000124","","7852"
"10:46:27.9101589 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000094","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:27.9101837 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000119","Desired Access: Read","5728"
"10:46:27.9102174 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000021","","5728"
"10:46:27.9102340 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9102507 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\AppModel\StateChange\PackageList\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000192","Desired Access: Read","5728"
"10:46:27.9102920 AM","firefox.exe","7384","RegQueryKey","HKU","0.0000018","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9103083 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000059","Desired Access: Read","5728"
"10:46:27.9103296 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9103454 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000064","Desired Access: Read","5728"
"10:46:27.9103667 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000103","Desired Access: Read","5728"
"10:46:27.9103706 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-wal","0.0000337","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","7852"
"10:46:27.9103944 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000018","","5728"
"10:46:27.9104102 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe\PackageStatus","0.0000039","Length: 16","5728"
"10:46:27.9104277 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000017","","5728"
"10:46:27.9104435 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000013","","5728"
"10:46:27.9104456 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000043","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:27.9104576 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000038","Index: 1, Length: 288","5728"
"10:46:27.9104712 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000086","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:27.9104759 AM","firefox.exe","7384","RegCloseKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000047","","5728"
"10:46:27.9104939 AM","firefox.exe","7384","RegCloseKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000017","","5728"
"10:46:27.9105011 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000098","Offset: 0, Length: 32,768","7852"
"10:46:27.9105143 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9105297 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000102","Desired Access: Read","5728"
"10:46:27.9105532 AM","firefox.exe","7384","RegSetInfoKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000012","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:27.9105672 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000039","Index: 0, Name: AppXq0fevzme2pys62n3e0fbqa7peapykr8v","5728"
"10:46:27.9105835 AM","firefox.exe","7384","RegQueryKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000047","Query: Cached, SubKeys: 1, Values: 0","5728"
"10:46:27.9106010 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000042","Index: 0, Name: AppXq0fevzme2pys62n3e0fbqa7peapykr8v","5728"
"10:46:27.9106176 AM","firefox.exe","7384","RegQueryKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000017","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:27.9106334 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000042","Desired Access: Read","5728"
"10:46:27.9106556 AM","firefox.exe","7384","RegQueryKey","HKU","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9106718 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000081","Desired Access: Read","5728"
"10:46:27.9106739 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000039","Offset: 123, Length: 1","7852"
"10:46:27.9106935 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000077","Desired Access: Read","5728"
"10:46:27.9107106 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000030","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:27.9107153 AM","firefox.exe","7384","RegSetInfoKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000013","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:27.9107302 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000043","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:27.9107315 AM","firefox.exe","7384","RegEnumValue","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000068","Index: 0, Length: 256","5728"
"10:46:27.9107490 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000013","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:27.9107601 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000038","Desired Access: Read","5728"
"10:46:27.9107759 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000008","","5728"
"10:46:27.9107866 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9107938 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000128","Offset: 229,376, Length: 32,768","7852"
"10:46:27.9107964 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\AppModel\StateChange\PackageList\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000123","Desired Access: Read","5728"
"10:46:27.9108224 AM","firefox.exe","7384","RegQueryKey","HKU","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9108318 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000034","Desired Access: Read","5728"
"10:46:27.9108433 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000043","Offset: 123, Length: 1","7852"
"10:46:27.9108523 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9108659 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000056","Desired Access: Read","5728"
"10:46:27.9108838 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000090","Desired Access: Read","5728"
"10:46:27.9109090 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000017","","5728"
"10:46:27.9109244 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe\PackageStatus","0.0000038","Length: 16","5728"
"10:46:27.9109414 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000013","","5728"
"10:46:27.9109538 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000009","","5728"
"10:46:27.9109679 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000030","Index: 1, Length: 288","5728"
"10:46:27.9109811 AM","firefox.exe","7384","RegCloseKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000009","","5728"
"10:46:27.9109918 AM","firefox.exe","7384","RegCloseKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000008","","5728"
"10:46:27.9110208 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9110310 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000081","Desired Access: Read","5728"
"10:46:27.9110549 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000034","Query: Name","5728"
"10:46:27.9110682 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9110763 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9110861 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\http","0.0000068","Desired Access: Read","5728"
"10:46:27.9111078 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9111172 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000107","Desired Access: Read","5728"
"10:46:27.9111386 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9111484 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000055","Desired Access: Query Value","5728"
"10:46:27.9111637 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice\ProgId","0.0000030","Type: REG_SZ, Length: 56, Data: FirefoxURL-6F193CCC56814779","5728"
"10:46:27.9111761 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000013","","5728"
"10:46:27.9111855 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9111944 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000022","Desired Access: Query Value","5728"
"10:46:27.9112047 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice\Hash","0.0000021","Type: REG_SZ, Length: 26, Data: WGuVFWKHpGI=","5728"
"10:46:27.9112154 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000008","","5728"
"10:46:27.9112247 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9112337 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000026","Desired Access: Read","5728"
"10:46:27.9112444 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9112529 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000021","Desired Access: Read","5728"
"10:46:27.9112627 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000021","Query: Cached, SubKeys: 0, Values: 2","5728"
"10:46:27.9112738 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000009","","5728"
"10:46:27.9113062 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000009","","5728"
"10:46:27.9113173 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000009","","5728"
"10:46:27.9113271 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000030","Query: Name","5728"
"10:46:27.9113387 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9113463 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9113557 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779","0.0000034","Desired Access: Read","5728"
"10:46:27.9113694 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000098","Desired Access: Read","5728"
"10:46:27.9113894 AM","firefox.exe","7384","RegCloseKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000013","","5728"
"10:46:27.9113992 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000026","Query: Name","5728"
"10:46:27.9114095 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9114172 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9114261 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779","0.0000030","Desired Access: Read","5728"
"10:46:27.9114381 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000030","Desired Access: Read","5728"
"10:46:27.9114496 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000034","Query: Name","5728"
"10:46:27.9114603 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9114726 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779\CurVer","0.0000039","Desired Access: Query Value","5728"
"10:46:27.9114842 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9114931 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779\CurVer","0.0000030","Desired Access: Query Value","5728"
"10:46:27.9115051 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000025","Query: Name","5728"
"10:46:27.9115153 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9115268 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779","0.0000039","Desired Access: Read","5728"
"10:46:27.9115379 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9115469 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000021","Desired Access: Read","5728"
"10:46:27.9115580 AM","firefox.exe","7384","RegCloseKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000012","","5728"
"10:46:27.9115686 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000026","Query: Name","5728"
"10:46:27.9115784 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9115917 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779\Progid","0.0000051","Desired Access: Query Value","5728"
"10:46:27.9116062 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000042","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9116207 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779\Progid","0.0000047","Desired Access: Query Value","5728"
"10:46:27.9116412 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\http","0.0000012","","5728"
"10:46:27.9116544 AM","firefox.exe","7384","RegCloseKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000013","","5728"
"10:46:27.9116740 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000039","Query: Name","5728"
"10:46:27.9116898 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9117013 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9117103 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\arialbd.ttf","0.0063578","Offset: 794,624, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.9117150 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000042","Desired Access: Read","5728"
"10:46:27.9117312 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000124","Desired Access: Read","5728"
"10:46:27.9117598 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000042","Query: Name","5728"
"10:46:27.9117722 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:27.9117850 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000038","Desired Access: Maximum Allowed","5728"
"10:46:27.9117965 AM","firefox.exe","7384","RegQueryValue","HKCR\FirefoxURL-6F193CCC56814779\shell\open\command\(Default)","0.0000030","Type: REG_SZ, Length: 128, Data: ""C:\Program Files\Firefox Nightly\firefox.exe"" -osint -url ""%1""","5728"
"10:46:27.9118080 AM","firefox.exe","7384","RegCloseKey","HKCR\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000013","","5728"
"10:46:27.9122372 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0889192","Offset: 13,672,448, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:27.9182609 AM","firefox.exe","7336","CreateFile","C:\Windows\Fonts\ARIALNB.TTF","0.0000542","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:27.9183616 AM","firefox.exe","7336","QueryInformationVolume","C:\Windows\Fonts\ARIALNB.TTF","0.0000034","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","7392"
"10:46:27.9183864 AM","firefox.exe","7336","QueryAllInformationFile","C:\Windows\Fonts\ARIALNB.TTF","0.0000051","CreationTime: 2/15/2017 3:38:52 PM, LastAccessTime: 2/15/2017 3:38:52 PM, LastWriteTime: 2/15/2017 3:38:50 PM, ChangeTime: 3/20/2019 8:09:45 PM, FileAttributes: A, AllocationSize: 184,320, EndOfFile: 180,740, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x3000000006054, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","7392"
"10:46:27.9184179 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Fonts\ARIALNB.TTF","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:27.9184380 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\Fonts\ARIALNB.TTF","0.0000030","AllocationSize: 184,320, EndOfFile: 180,740, NumberOfLinks: 1, DeletePending: False, Directory: False","7392"
"10:46:27.9184700 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Fonts\ARIALNB.TTF","0.0000017","SyncType: SyncTypeOther","7392"
"10:46:27.9185254 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\ARIALNB.TTF","0.0127344","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.9313421 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\ARIALNB.TTF","0.0227200","Offset: 118,784, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.9352060 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:27.9352653 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40291, endtime: 40291, seqnum: 0, connid: 0","0"
"10:46:27.9353319 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:27.9353541 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40291, endtime: 40291, seqnum: 0, connid: 0","0"
"10:46:27.9542435 AM","firefox.exe","7336","CreateFile","C:\Windows\Fonts\arialbi.ttf","0.0000576","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:27.9543518 AM","firefox.exe","7336","QueryInformationVolume","C:\Windows\Fonts\arialbi.ttf","0.0000052","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","7392"
"10:46:27.9543847 AM","firefox.exe","7336","QueryAllInformationFile","C:\Windows\Fonts\arialbi.ttf","0.0000055","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 7:07:54 PM, FileAttributes: A, AllocationSize: 724,992, EndOfFile: 721,144, NumberOfLinks: 2, DeletePending: False, Directory: False, IndexNumber: 0x3000000061160, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","7392"
"10:46:27.9544171 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Fonts\arialbi.ttf","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:27.9544372 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\Fonts\arialbi.ttf","0.0000025","AllocationSize: 724,992, EndOfFile: 721,144, NumberOfLinks: 2, DeletePending: False, Directory: False","7392"
"10:46:27.9544692 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Fonts\arialbi.ttf","0.0000017","SyncType: SyncTypeOther","7392"
"10:46:27.9545306 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\arialbi.ttf","0.0004442","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.9550238 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\arialbi.ttf","0.0102678","Offset: 593,920, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.9654367 AM","firefox.exe","7336","CreateFile","C:\Windows\Fonts\ARIALNBI.TTF","0.0000443","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:27.9655139 AM","firefox.exe","7336","QueryInformationVolume","C:\Windows\Fonts\ARIALNBI.TTF","0.0000030","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","7392"
"10:46:27.9655373 AM","firefox.exe","7336","QueryAllInformationFile","C:\Windows\Fonts\ARIALNBI.TTF","0.0000043","CreationTime: 2/15/2017 3:38:52 PM, LastAccessTime: 2/15/2017 3:38:52 PM, LastWriteTime: 2/15/2017 3:38:43 PM, ChangeTime: 3/20/2019 8:09:45 PM, FileAttributes: A, AllocationSize: 180,224, EndOfFile: 180,084, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x3000000006056, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","7392"
"10:46:27.9655655 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Fonts\ARIALNBI.TTF","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:27.9655847 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\Fonts\ARIALNBI.TTF","0.0000030","AllocationSize: 180,224, EndOfFile: 180,084, NumberOfLinks: 1, DeletePending: False, Directory: False","7392"
"10:46:27.9656159 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Fonts\ARIALNBI.TTF","0.0000017","SyncType: SyncTypeOther","7392"
"10:46:27.9656653 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\ARIALNBI.TTF","0.0005095","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.9662273 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\ARIALNBI.TTF","0.0003468","Offset: 114,688, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.9667644 AM","firefox.exe","7336","CreateFile","C:\Windows\Fonts\ariblk.ttf","0.0000640","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:27.9668681 AM","firefox.exe","7336","QueryInformationVolume","C:\Windows\Fonts\ariblk.ttf","0.0000039","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","7392"
"10:46:27.9668993 AM","firefox.exe","7336","QueryAllInformationFile","C:\Windows\Fonts\ariblk.ttf","0.0000072","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:10:46 PM, FileAttributes: A, AllocationSize: 167,936, EndOfFile: 167,592, NumberOfLinks: 2, DeletePending: False, Directory: False, IndexNumber: 0x300000006240a, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","7392"
"10:46:27.9669419 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Fonts\ariblk.ttf","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:27.9669675 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\Fonts\ariblk.ttf","0.0000039","AllocationSize: 167,936, EndOfFile: 167,592, NumberOfLinks: 2, DeletePending: False, Directory: False","7392"
"10:46:27.9670119 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Fonts\ariblk.ttf","0.0000021","SyncType: SyncTypeOther","7392"
"10:46:27.9670768 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\ariblk.ttf","0.0053239","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.9724430 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\ariblk.ttf","0.0008827","Offset: 135,168, Length: 32,424, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.9734943 AM","firefox.exe","7336","CreateFile","C:\Windows\Fonts\segoeui.ttf","0.0000256","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:27.9735591 AM","firefox.exe","7336","QueryInformationVolume","C:\Windows\Fonts\segoeui.ttf","0.0000034","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","7392"
"10:46:27.9735822 AM","firefox.exe","7336","QueryAllInformationFile","C:\Windows\Fonts\segoeui.ttf","0.0000042","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:13 PM, FileAttributes: A, AllocationSize: 929,792, EndOfFile: 925,736, NumberOfLinks: 2, DeletePending: False, Directory: False, IndexNumber: 0x800000005147f, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","7392"
"10:46:27.9736099 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Fonts\segoeui.ttf","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:27.9736282 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\Fonts\segoeui.ttf","0.0000026","AllocationSize: 929,792, EndOfFile: 925,736, NumberOfLinks: 2, DeletePending: False, Directory: False","7392"
"10:46:27.9736585 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Fonts\segoeui.ttf","0.0000017","SyncType: SyncTypeOther","7392"
"10:46:27.9746535 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9746906 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000047","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","7396"
"10:46:27.9747068 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000073","","7396"
"10:46:27.9749906 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9750200 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000043","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","7396"
"10:46:27.9750341 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000064","","7396"
"10:46:27.9753195 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9753486 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000042","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","7396"
"10:46:27.9753622 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000060","","7396"
"10:46:27.9756856 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntdll.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9757334 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000047","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:27.9757479 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntdll.dll","0.0000073","","7396"
"10:46:27.9760427 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntdll.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9760833 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000042","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:27.9760969 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntdll.dll","0.0000064","","7396"
"10:46:27.9763785 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntdll.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9764203 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000043","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:27.9764340 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntdll.dll","0.0000064","","7396"
"10:46:27.9767446 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel32.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9768274 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000051","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:27.9768415 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel32.dll","0.0000072","","7396"
"10:46:27.9771461 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel32.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9771918 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000047","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:27.9772067 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel32.dll","0.0000068","","7396"
"10:46:27.9772165 AM","firefox.exe","7972","Thread Create","","0.0000000","Thread ID: 7856","8292"
"10:46:27.9774990 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel32.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9775408 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000038","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:27.9775553 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel32.dll","0.0000064","","7396"
"10:46:27.9778983 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9779316 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000047","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:27.9779461 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000068","","7396"
"10:46:27.9782499 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9782802 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000102","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:27.9783007 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000064","","7396"
"10:46:27.9785993 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9786301 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000038","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:27.9786433 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000068","","7396"
"10:46:27.9790670 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\advapi32.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9791216 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000051","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","7396"
"10:46:27.9791365 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\advapi32.dll","0.0000073","","7396"
"10:46:27.9794693 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\advapi32.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9795218 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000047","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","7396"
"10:46:27.9795363 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\advapi32.dll","0.0000064","","7396"
"10:46:27.9798234 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\advapi32.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9798695 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000047","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","7396"
"10:46:27.9798845 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\advapi32.dll","0.0000068","","7396"
"10:46:27.9802232 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9803000 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:27.9803137 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000077","","7396"
"10:46:27.9806486 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9806990 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:27.9807135 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000081","","7396"
"10:46:27.9810164 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9810625 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000043","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:27.9810791 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000073","","7396"
"10:46:27.9814286 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sechost.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9814789 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000047","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:27.9814921 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sechost.dll","0.0000099","","7396"
"10:46:27.9817912 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sechost.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9818356 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000043","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:27.9818493 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sechost.dll","0.0000072","","7396"
"10:46:27.9821633 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sechost.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9822106 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000043","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:27.9822247 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sechost.dll","0.0000060","","7396"
"10:46:27.9825964 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9826407 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000043","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","7396"
"10:46:27.9826540 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000059","","7396"
"10:46:27.9829693 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9830119 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000051","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","7396"
"10:46:27.9830256 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000068","","7396"
"10:46:27.9833153 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9833622 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000056","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","7396"
"10:46:27.9833776 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000072","","7396"
"10:46:27.9837215 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9837786 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000052","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:27.9837932 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000064","","7396"
"10:46:27.9841093 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9841558 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000047","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:27.9841695 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000068","","7396"
"10:46:27.9844767 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9845245 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000051","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:27.9845390 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000072","","7396"
"10:46:27.9849008 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9849319 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:27.9849426 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000051","","7396"
"10:46:27.9852425 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9852681 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000039","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:27.9852788 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000051","","7396"
"10:46:27.9855672 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9855950 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:27.9856078 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000055","","7396"
"10:46:27.9865968 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\crypt32.dll","0.0003008","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9871600 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000563","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:27.9872820 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\crypt32.dll","0.0000802","","7396"
"10:46:27.9896824 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\crypt32.dll","0.0000478","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9909130 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000166","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:27.9909501 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\crypt32.dll","0.0000222","","7396"
"10:46:27.9914331 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\crypt32.dll","0.0000281","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9914890 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000046","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:27.9915018 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\crypt32.dll","0.0000068","","7396"
"10:46:27.9918299 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msasn1.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9918755 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:27.9918900 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msasn1.dll","0.0000064","","7396"
"10:46:27.9921857 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msasn1.dll","0.0000316","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9922420 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000154","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:27.9922817 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msasn1.dll","0.0000090","","7396"
"10:46:27.9925863 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msasn1.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9926486 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000056","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:27.9926631 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msasn1.dll","0.0000069","","7396"
"10:46:27.9929720 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wintrust.dll","0.0000210","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9930156 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000042","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:27.9930292 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wintrust.dll","0.0000064","","7396"
"10:46:27.9933053 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wintrust.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9933467 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000042","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:27.9933590 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wintrust.dll","0.0000064","","7396"
"10:46:27.9936155 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wintrust.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9936543 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000043","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:27.9936675 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wintrust.dll","0.0000060","","7396"
"10:46:27.9939598 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9939926 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000043","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","7396"
"10:46:27.9940059 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000059","","7396"
"10:46:27.9945093 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9945452 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000042","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","7396"
"10:46:27.9945588 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000068","","7396"
"10:46:27.9949270 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000367","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9949851 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000115","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","7396"
"10:46:27.9950166 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000094","","7396"
"10:46:27.9959822 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0066031","Offset: 5,861,376, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:27.9960133 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9960539 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000055","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","7396"
"10:46:27.9960692 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000086","","7396"
"10:46:27.9979722 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000384","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9980251 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000298","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","7396"
"10:46:27.9980729 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000849","","7396"
"10:46:27.9993981 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000499","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:27.9994727 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000103","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","7396"
"10:46:27.9994966 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000163","","7396"
"10:46:28.0003376 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\version.dll","0.0000363","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0004157 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000094","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","7396"
"10:46:28.0004396 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\version.dll","0.0000098","","7396"
"10:46:28.0008202 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\version.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0008675 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000051","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","7396"
"10:46:28.0008918 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\version.dll","0.0000073","","7396"
"10:46:28.0013279 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0220694","Offset: 13,705,216, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:28.0048697 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\version.dll","0.0000708","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0049989 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000086","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","7396"
"10:46:28.0050198 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\version.dll","0.0000103","","7396"
"10:46:28.0054828 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0055374 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","7396"
"10:46:28.0055656 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000132","","7396"
"10:46:28.0060268 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000281","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0060840 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","7396"
"10:46:28.0061014 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000128","","7396"
"10:46:28.0075508 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0076183 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000064","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","7396"
"10:46:28.0076392 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000311","","7396"
"10:46:28.0081230 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0081588 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000052","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","7396"
"10:46:28.0081746 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000069","","7396"
"10:46:28.0084963 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0085313 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","7396"
"10:46:28.0085458 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000069","","7396"
"10:46:28.0088825 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0089166 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000043","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","7396"
"10:46:28.0089320 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000068","","7396"
"10:46:28.0093104 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0093480 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:28.0093629 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000068","","7396"
"10:46:28.0097644 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0097989 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000120","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:28.0098233 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000081","","7396"
"10:46:28.0101232 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0101620 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:28.0101770 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000064","","7396"
"10:46:28.0105140 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0105465 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000042","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:28.0105614 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000064","","7396"
"10:46:28.0108579 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0108895 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:28.0109032 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000064","","7396"
"10:46:28.0112227 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0112530 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:28.0112671 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000073","","7396"
"10:46:28.0116208 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0116562 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:28.0116712 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000068","","7396"
"10:46:28.0119835 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000700","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0120675 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000056","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:28.0120833 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000205","","7396"
"10:46:28.0124579 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0124921 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:28.0125074 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000073","","7396"
"10:46:28.0129763 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0130173 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000060","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:28.0130374 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000093","","7396"
"10:46:28.0134222 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0134551 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000051","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:28.0134696 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000072","","7396"
"10:46:28.0142632 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000537","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0143357 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000060","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:28.0143532 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000090","","7396"
"10:46:28.0150167 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0150841 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000059","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:28.0151033 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000098","","7396"
"10:46:28.0154770 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000555","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0155679 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000056","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:28.0155850 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000431","","7396"
"10:46:28.0161772 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000380","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0162442 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000060","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:28.0162612 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000082","","7396"
"10:46:28.0166495 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmm.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0166977 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:28.0167144 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmm.dll","0.0000068","","7396"
"10:46:28.0170335 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmm.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0170941 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000064","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:28.0171159 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmm.dll","0.0000085","","7396"
"10:46:28.0175784 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmm.dll","0.0002850","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0181407 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000418","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:28.0182282 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmm.dll","0.0000764","","7396"
"10:46:28.0238197 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0439288","Offset: 13,737,984, Length: 65,536, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:28.0261676 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wsock32.dll","0.0002005","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0264590 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000307","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:28.0265337 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wsock32.dll","0.0000712","","7396"
"10:46:28.0303191 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wsock32.dll","0.0002423","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0307816 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000623","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:28.0311780 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wsock32.dll","0.0000303","","7396"
"10:46:28.0316315 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wsock32.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0316861 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000051","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:28.0317023 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wsock32.dll","0.0000073","","7396"
"10:46:28.0320488 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0320804 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000042","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:28.0320949 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000064","","7396"
"10:46:28.0323871 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0324161 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000133","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:28.0324439 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000089","","7396"
"10:46:28.0327140 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0327477 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:28.0327673 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000077","","7396"
"10:46:28.0330779 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0331214 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:28.0331312 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000047","","7396"
"10:46:28.0333215 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0333510 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:28.0333595 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000043","","7396"
"10:46:28.0335605 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0335899 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:28.0336040 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000060","","7396"
"10:46:28.0339372 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0339671 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000030","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:28.0339769 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000047","","7396"
"10:46:28.0341591 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0341783 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000025","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:28.0341868 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000039","","7396"
"10:46:28.0344304 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0344565 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000047","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:28.0344706 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000055","","7396"
"10:46:28.0347530 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0347807 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000035","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:28.0347931 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000051","","7396"
"10:46:28.0350683 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0350926 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000060","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:28.0351076 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000051","","7396"
"10:46:28.0354050 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0354442 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:28.0354579 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000064","","7396"
"10:46:28.0358316 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\user32.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0358815 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000039","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:28.0358926 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\user32.dll","0.0000090","","7396"
"10:46:28.0360987 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\user32.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0361282 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000025","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:28.0361367 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\user32.dll","0.0000047","","7396"
"10:46:28.0363236 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\user32.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0363496 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000030","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:28.0363586 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\user32.dll","0.0000038","","7396"
"10:46:28.0365890 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\win32u.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0366180 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:28.0366261 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\win32u.dll","0.0000042","","7396"
"10:46:28.0368040 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\win32u.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0368424 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000034","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:28.0368552 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\win32u.dll","0.0000055","","7396"
"10:46:28.0371180 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\win32u.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0371564 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000039","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:28.0371701 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\win32u.dll","0.0000055","","7396"
"10:46:28.0374018 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32.dll","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0374308 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000025","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:28.0374393 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32.dll","0.0000043","","7396"
"10:46:28.0376159 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0376407 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000025","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:28.0376492 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32.dll","0.0000039","","7396"
"10:46:28.0378195 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0378434 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000025","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:28.0378515 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32.dll","0.0000038","","7396"
"10:46:28.0380699 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0380891 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000026","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:28.0381023 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000077","","7396"
"10:46:28.0383818 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0384130 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000042","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:28.0384330 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000068","","7396"
"10:46:28.0386451 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0386638 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000026","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:28.0386724 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000038","","7396"
"10:46:28.0388955 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0389156 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000025","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:28.0389237 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000038","","7396"
"10:46:28.0390986 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0391161 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000026","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:28.0391242 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000034","","7396"
"10:46:28.0392979 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0393149 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000022","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:28.0393226 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000039","","7396"
"10:46:28.0396136 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shell32.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0396567 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000043","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","7396"
"10:46:28.0396712 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shell32.dll","0.0000060","","7396"
"10:46:28.0398969 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shell32.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0399238 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000030","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","7396"
"10:46:28.0399327 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shell32.dll","0.0000039","","7396"
"10:46:28.0401384 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shell32.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0401670 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000030","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","7396"
"10:46:28.0401759 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shell32.dll","0.0000039","","7396"
"10:46:28.0404098 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\SHCore.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0404401 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000034","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:28.0404499 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\SHCore.dll","0.0000042","","7396"
"10:46:28.0406274 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\SHCore.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0406525 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:28.0406611 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\SHCore.dll","0.0000034","","7396"
"10:46:28.0408305 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\SHCore.dll","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0408586 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:28.0408731 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\SHCore.dll","0.0000064","","7396"
"10:46:28.0412008 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\combase.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0412311 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000030","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:28.0412405 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\combase.dll","0.0000038","","7396"
"10:46:28.0414265 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\combase.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0414530 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000029","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:28.0414615 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\combase.dll","0.0000043","","7396"
"10:46:28.0416441 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\combase.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0416744 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000030","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:28.0416834 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\combase.dll","0.0000042","","7396"
"10:46:28.0419167 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000146","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0419415 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000026","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:28.0419505 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000042","","7396"
"10:46:28.0421305 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0421484 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000022","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:28.0421565 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000064","","7396"
"10:46:28.0424057 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0424326 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000034","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:28.0424458 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000056","","7396"
"10:46:28.0426813 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0427095 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","7396"
"10:46:28.0427185 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000038","","7396"
"10:46:28.0429241 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0429506 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","7396"
"10:46:28.0429591 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000038","","7396"
"10:46:28.0431306 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0431549 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","7396"
"10:46:28.0431635 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000034","","7396"
"10:46:28.0433905 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0434101 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:28.0434186 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000039","","7396"
"10:46:28.0436512 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000174","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0436797 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000039","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:28.0436934 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000055","","7396"
"10:46:28.0439195 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0439383 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:28.0439468 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000034","","7396"
"10:46:28.0441614 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\profapi.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0441905 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000029","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:28.0441990 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\profapi.dll","0.0000043","","7396"
"10:46:28.0444247 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\profapi.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0444640 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:28.0444780 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\profapi.dll","0.0000056","","7396"
"10:46:28.0447571 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\profapi.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0447968 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:28.0448104 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\profapi.dll","0.0000064","","7396"
"10:46:28.0451530 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\powrprof.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0451616 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000072","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:20:29 PM, ChangeTime: 3/20/2019 7:06:10 PM, AllocationSize: 454656, EndOfFile: 452785, FileAttributes: A","2512"
"10:46:28.0451923 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000098","","2512"
"10:46:28.0451970 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:28.0452119 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\powrprof.dll","0.0000068","","7396"
"10:46:28.0452644 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000072","","2512"
"10:46:28.0452900 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000064","","2512"
"10:46:28.0455707 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\powrprof.dll","0.0000290","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0456356 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000060","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:28.0456539 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\powrprof.dll","0.0000086","","7396"
"10:46:28.0459675 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\powrprof.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0460149 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:28.0460302 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\powrprof.dll","0.0000064","","7396"
"10:46:28.0461715 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.0462094 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:20:29 PM, ChangeTime: 3/20/2019 7:06:10 PM, AllocationSize: 454656, EndOfFile: 452785, FileAttributes: A","2512"
"10:46:28.0462393 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000068","","2512"
"10:46:28.0464168 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\fltLib.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0464364 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000214","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.0464659 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:28.0464804 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\fltLib.dll","0.0000064","","7396"
"10:46:28.0464910 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000073","AllocationSize: 454,656, EndOfFile: 452,785, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:28.0465538 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000059","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:28.0465789 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","AllocationSize: 454,656, EndOfFile: 452,785, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:28.0466173 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:28.0466920 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0350917","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:28.0467744 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\fltLib.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0468059 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:28.0468157 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\fltLib.dll","0.0000043","","7396"
"10:46:28.0470154 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\fltLib.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0470427 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:28.0470517 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\fltLib.dll","0.0000043","","7396"
"10:46:28.0472910 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ole32.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0473192 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000026","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","7396"
"10:46:28.0473277 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ole32.dll","0.0000039","","7396"
"10:46:28.0475048 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ole32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0475296 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000025","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","7396"
"10:46:28.0475377 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ole32.dll","0.0000038","","7396"
"10:46:28.0477297 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ole32.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0477557 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000034","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","7396"
"10:46:28.0477651 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ole32.dll","0.0000064","","7396"
"10:46:28.0480787 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\imm32.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0481073 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000025","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","7396"
"10:46:28.0481162 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\imm32.dll","0.0000039","","7396"
"10:46:28.0482933 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\imm32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0483180 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000026","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","7396"
"10:46:28.0483266 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\imm32.dll","0.0000038","","7396"
"10:46:28.0485058 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\imm32.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0485292 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000026","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","7396"
"10:46:28.0485378 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\imm32.dll","0.0000038","","7396"
"10:46:28.0487609 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\setupapi.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0488023 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:28.0488160 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\setupapi.dll","0.0000059","","7396"
"10:46:28.0490924 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\setupapi.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0491334 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:28.0491475 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\setupapi.dll","0.0000060","","7396"
"10:46:28.0494265 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\setupapi.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0494662 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:28.0494803 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\setupapi.dll","0.0000060","","7396"
"10:46:28.0498284 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0498698 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000043","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:28.0498843 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000064","","7396"
"10:46:28.0501715 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0502103 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000043","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:28.0502244 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000064","","7396"
"10:46:28.0504829 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0505226 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000039","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:28.0505367 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000060","","7396"
"10:46:28.0508303 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000174","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0508704 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000042","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:28.0508853 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000064","","7396"
"10:46:28.0511613 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0512006 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000038","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:28.0512147 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000060","","7396"
"10:46:28.0515449 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\avrt.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0515867 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000043","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","7396"
"10:46:28.0516008 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\avrt.dll","0.0000124","","7396"
"10:46:28.0519093 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\avrt.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0519520 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000042","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","7396"
"10:46:28.0519682 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\avrt.dll","0.0000064","","7396"
"10:46:28.0522408 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\avrt.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0522792 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000043","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","7396"
"10:46:28.0522929 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\avrt.dll","0.0000059","","7396"
"10:46:28.0526218 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\usp10.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0526628 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000038","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","7396"
"10:46:28.0526760 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\usp10.dll","0.0000056","","7396"
"10:46:28.0529320 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\usp10.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0529683 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000038","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","7396"
"10:46:28.0529819 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\usp10.dll","0.0000052","","7396"
"10:46:28.0532264 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\usp10.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0532627 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000038","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","7396"
"10:46:28.0532772 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\usp10.dll","0.0000055","","7396"
"10:46:28.0535874 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\d3d11.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0536305 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000042","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:28.0536454 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\d3d11.dll","0.0000064","","7396"
"10:46:28.0539385 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\d3d11.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0539791 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000042","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:28.0539936 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\d3d11.dll","0.0000064","","7396"
"10:46:28.0542692 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\d3d11.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0543089 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000042","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:28.0543230 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\d3d11.dll","0.0000064","","7396"
"10:46:28.0546715 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dxgi.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0547129 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000043","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:28.0547274 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dxgi.dll","0.0000060","","7396"
"10:46:28.0550065 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dxgi.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0550449 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000042","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:28.0550594 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dxgi.dll","0.0000060","","7396"
"10:46:28.0553273 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dxgi.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0553653 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000038","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:28.0553790 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dxgi.dll","0.0000059","","7396"
"10:46:28.0557177 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0557600 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000042","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","7396"
"10:46:28.0557749 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000060","","7396"
"10:46:28.0560582 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0561068 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000052","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","7396"
"10:46:28.0561235 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000068","","7396"
"10:46:28.0564089 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0564490 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000043","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","7396"
"10:46:28.0564631 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000060","","7396"
"10:46:28.0568044 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0568480 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:28.0568578 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000047","","7396"
"10:46:28.0570613 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0570895 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000029","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:28.0570984 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000043","","7396"
"10:46:28.0572738 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0572998 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:28.0573083 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000039","","7396"
"10:46:28.0575349 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nsi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0575622 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:28.0575712 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nsi.dll","0.0000038","","7396"
"10:46:28.0577525 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nsi.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0577900 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000035","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:28.0578033 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nsi.dll","0.0000059","","7396"
"10:46:28.0580670 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nsi.dll","0.0000174","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0581058 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000055","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:28.0581220 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nsi.dll","0.0000064","","7396"
"10:46:28.0584736 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0585154 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000042","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","7396"
"10:46:28.0585299 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000064","","7396"
"10:46:28.0588008 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0588405 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","7396"
"10:46:28.0588546 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000060","","7396"
"10:46:28.0591315 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0591703 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","7396"
"10:46:28.0591844 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000064","","7396"
"10:46:28.0595398 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0595825 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000042","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","7396"
"10:46:28.0595974 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000064","","7396"
"10:46:28.0598777 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0599166 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000042","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","7396"
"10:46:28.0599311 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000059","","7396"
"10:46:28.0601815 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0602093 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000029","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","7396"
"10:46:28.0602186 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000047","","7396"
"10:46:28.0604687 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0605011 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000038","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","7396"
"10:46:28.0605143 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000064","","7396"
"10:46:28.0607925 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0608326 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000039","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","7396"
"10:46:28.0608463 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000064","","7396"
"10:46:28.0611240 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0611637 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000043","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","7396"
"10:46:28.0611778 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000064","","7396"
"10:46:28.0615315 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0615742 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000047","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:28.0615891 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000064","","7396"
"10:46:28.0618592 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0618993 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000038","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:28.0619134 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000059","","7396"
"10:46:28.0621915 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0622325 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000038","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:28.0622470 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000060","","7396"
"10:46:28.0626477 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\userenv.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0626967 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","7396"
"10:46:28.0627168 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\userenv.dll","0.0001723","","7396"
"10:46:28.0641295 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\userenv.dll","0.0000827","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0642673 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000136","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","7396"
"10:46:28.0642942 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\userenv.dll","0.0000089","","7396"
"10:46:28.0646257 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\userenv.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0646701 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","7396"
"10:46:28.0646854 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\userenv.dll","0.0000064","","7396"
"10:46:28.0650647 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0650963 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000038","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","7396"
"10:46:28.0651108 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000060","","7396"
"10:46:28.0653783 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0654005 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000030","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","7396"
"10:46:28.0654099 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000043","","7396"
"10:46:28.0655912 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0656104 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000026","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","7396"
"10:46:28.0656190 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000038","","7396"
"10:46:28.0658605 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0658895 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","7396"
"10:46:28.0658989 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000072","","7396"
"10:46:28.0660964 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0661224 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","7396"
"10:46:28.0661314 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000038","","7396"
"10:46:28.0663306 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0663878 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000064","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","7396"
"10:46:28.0664028 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000064","","7396"
"10:46:28.0667782 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0668273 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000051","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","7396"
"10:46:28.0668431 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000068","","7396"
"10:46:28.0671315 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0671614 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","7396"
"10:46:28.0671708 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000042","","7396"
"10:46:28.0673534 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0673798 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","7396"
"10:46:28.0673888 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000068","","7396"
"10:46:28.0678048 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0678521 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","7396"
"10:46:28.0678675 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000324","","7396"
"10:46:28.0678952 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0226317","Offset: 13,803,520, Length: 131,072, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:28.0681999 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0682451 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000043","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","7396"
"10:46:28.0682596 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000085","","7396"
"10:46:28.0685182 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0685591 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000039","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","7396"
"10:46:28.0685728 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000060","","7396"
"10:46:28.0689273 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\webauthn.dll","0.0000210","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0689820 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","7396"
"10:46:28.0689973 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\webauthn.dll","0.0000068","","7396"
"10:46:28.0692601 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\webauthn.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0692985 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000056","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","7396"
"10:46:28.0693131 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\webauthn.dll","0.0000055","","7396"
"10:46:28.0695665 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\webauthn.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0696032 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000119","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","7396"
"10:46:28.0696313 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\webauthn.dll","0.0000086","","7396"
"10:46:28.0699676 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0700115 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000047","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:28.0700269 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000064","","7396"
"10:46:28.0703059 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0703464 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000039","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:28.0703609 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000060","","7396"
"10:46:28.0706408 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0706814 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000038","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:28.0706955 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000059","","7396"
"10:46:28.0710594 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0711029 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000043","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","7396"
"10:46:28.0711179 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000064","","7396"
"10:46:28.0713986 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0714383 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000042","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","7396"
"10:46:28.0714528 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000060","","7396"
"10:46:28.0717425 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0717822 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000042","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","7396"
"10:46:28.0717963 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000064","","7396"
"10:46:28.0721589 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0722007 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","7396"
"10:46:28.0722152 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000060","","7396"
"10:46:28.0724887 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0725276 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","7396"
"10:46:28.0725416 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000060","","7396"
"10:46:28.0728271 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0728663 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000039","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","7396"
"10:46:28.0728800 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000064","","7396"
"10:46:28.0732772 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mswsock.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0733220 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000064","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","7396"
"10:46:28.0733408 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mswsock.dll","0.0000115","","7396"
"10:46:28.0736493 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mswsock.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0736911 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","7396"
"10:46:28.0737060 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mswsock.dll","0.0000064","","7396"
"10:46:28.0739991 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mswsock.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0740384 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000094","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","7396"
"10:46:28.0740623 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mswsock.dll","0.0000089","","7396"
"10:46:28.0744378 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winrnr.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0744817 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000038","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","7396"
"10:46:28.0744962 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winrnr.dll","0.0000064","","7396"
"10:46:28.0747778 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winrnr.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0748179 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000043","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","7396"
"10:46:28.0748324 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winrnr.dll","0.0000064","","7396"
"10:46:28.0751102 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winrnr.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0751516 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000038","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","7396"
"10:46:28.0751661 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winrnr.dll","0.0000059","","7396"
"10:46:28.0755368 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wshbth.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0755782 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000039","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:28.0755932 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wshbth.dll","0.0000059","","7396"
"10:46:28.0758743 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wshbth.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0759132 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000042","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:28.0759277 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wshbth.dll","0.0000064","","7396"
"10:46:28.0761952 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wshbth.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0762336 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000043","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:28.0762472 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wshbth.dll","0.0000064","","7396"
"10:46:28.0766052 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sspicli.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0766479 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000043","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:28.0766628 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sspicli.dll","0.0000064","","7396"
"10:46:28.0769474 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sspicli.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0769875 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000043","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:28.0770020 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sspicli.dll","0.0000060","","7396"
"10:46:28.0772712 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sspicli.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0773071 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:28.0773169 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sspicli.dll","0.0000043","","7396"
"10:46:28.0775639 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\devobj.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0775981 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","7396"
"10:46:28.0776075 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\devobj.dll","0.0000042","","7396"
"10:46:28.0778012 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\devobj.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0778417 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","7396"
"10:46:28.0778554 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\devobj.dll","0.0000064","","7396"
"10:46:28.0781242 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\devobj.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0781553 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","7396"
"10:46:28.0781651 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\devobj.dll","0.0000043","","7396"
"10:46:28.0784096 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\DWrite.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0784378 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000025","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:28.0784467 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\DWrite.dll","0.0000043","","7396"
"10:46:28.0786383 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\DWrite.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0786639 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000025","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:28.0786720 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\DWrite.dll","0.0000038","","7396"
"10:46:28.0790219 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\DWrite.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0791191 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000064","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:28.0791456 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\DWrite.dll","0.0000124","","7396"
"10:46:28.0795407 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mscms.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0795868 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000042","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","7396"
"10:46:28.0796051 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mscms.dll","0.0000073","","7396"
"10:46:28.0798731 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mscms.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0799106 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000034","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","7396"
"10:46:28.0799251 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mscms.dll","0.0000056","","7396"
"10:46:28.0802007 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mscms.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0802537 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000034","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","7396"
"10:46:28.0802656 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mscms.dll","0.0000060","","7396"
"10:46:28.0805532 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0805762 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","7396"
"10:46:28.0805856 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000047","","7396"
"10:46:28.0808612 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0809052 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000068","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","7396"
"10:46:28.0809303 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000094","","7396"
"10:46:28.0812226 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0812512 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000038","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","7396"
"10:46:28.0812649 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000064","","7396"
"10:46:28.0816356 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0816830 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:28.0816992 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000068","","7396"
"10:46:28.0818502 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0248252","Offset: 421,888, Length: 30,897, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:28.0820290 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0820768 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000098","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:28.0821011 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000081","","7396"
"10:46:28.0823934 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0824343 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:28.0824493 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000068","","7396"
"10:46:28.0828222 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0828538 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000042","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:28.0828683 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000059","","7396"
"10:46:28.0831132 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0831328 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:28.0831418 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000042","","7396"
"10:46:28.0833124 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0833312 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000021","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:28.0833393 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000038","","7396"
"10:46:28.0836273 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0836550 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000039","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","7396"
"10:46:28.0836687 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000055","","7396"
"10:46:28.0839401 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0839627 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000025","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","7396"
"10:46:28.0839721 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000064","","7396"
"10:46:28.0842558 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:28.0842869 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000039","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","7396"
"10:46:28.0842976 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000047","","7396"
"10:46:28.1033253 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0141837","Offset: 8,720,384, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:28.1068043 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0052745","Offset: 32,768, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:28.1122021 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0003588","Offset: 65,536, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:28.1126313 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0003021","Offset: 110,592, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:28.1129867 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0002714","Offset: 143,360, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:28.1133144 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0002662","Offset: 188,416, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:28.1136331 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0002795","Offset: 286,720, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:28.1139578 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0002590","Offset: 319,488, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:28.1142492 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0002573","Offset: 352,256, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:28.1145479 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0138893","Offset: 389,120, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:28.1195979 AM","firefox.exe","7384","CreateFile","C:\ProgramData\Mozilla\updates\6F193CCC56814779","0.0000201","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5728"
"10:46:28.1199508 AM","firefox.exe","7384","CreateFile","C:\ProgramData\Mozilla\updates\6F193CCC56814779\active-update.xml","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:28.1202034 AM","firefox.exe","7384","CreateFile","C:\ProgramData\Mozilla\updates\6F193CCC56814779","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5728"
"10:46:28.1204640 AM","firefox.exe","7384","CreateFile","C:\ProgramData\Mozilla\updates\6F193CCC56814779\updates.xml","0.0000662","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:28.1205455 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\ProgramData\Mozilla\updates\6F193CCC56814779\updates.xml","0.0000043","CreationTime: 8/26/2018 4:42:08 PM, LastAccessTime: 3/25/2020 10:27:03 AM, LastWriteTime: 3/25/2020 10:27:03 AM, ChangeTime: 3/25/2020 10:27:03 AM, AllocationSize: 12288, EndOfFile: 9475, FileAttributes: ANCI","5728"
"10:46:28.1205618 AM","firefox.exe","7384","CloseFile","C:\ProgramData\Mozilla\updates\6F193CCC56814779\updates.xml","0.0000055","","5728"
"10:46:28.1207482 AM","firefox.exe","7384","CreateFile","C:\ProgramData\Mozilla\updates\6F193CCC56814779\updates.xml","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:28.1208634 AM","firefox.exe","7384","QueryStandardInformationFile","C:\ProgramData\Mozilla\updates\6F193CCC56814779\updates.xml","0.0000043","AllocationSize: 12,288, EndOfFile: 9,475, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:28.1210034 AM","firefox.exe","7384","ReadFile","C:\ProgramData\Mozilla\updates\6F193CCC56814779\updates.xml","0.0167057","Offset: 0, Length: 4,096, Priority: Normal","5728"
"10:46:28.1210546 AM","firefox.exe","7384","ReadFile","C:\ProgramData\Mozilla\updates\6F193CCC56814779\updates.xml","0.0166306","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:28.1285268 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:28.1285451 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000056","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:20:29 PM, ChangeTime: 3/20/2019 7:06:10 PM, FileAttributes: A, AllocationSize: 454,656, EndOfFile: 452,785, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x3000000060657, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:28.1288242 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000239","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1288741 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","AllocationSize: 454,656, EndOfFile: 452,785, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:28.1288993 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:28.1289180 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 454,656, EndOfFile: 452,785, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:28.1289488 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:28.1290640 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000093","","2512"
"10:46:28.1293140 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0001587","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1295201 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000059","AllocationSize: 454,656, EndOfFile: 452,785, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:28.1295482 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:28.1295653 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","AllocationSize: 454,656, EndOfFile: 452,785, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:28.1295892 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:28.1296455 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000107","","2512"
"10:46:28.1301208 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000213","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1301682 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","AllocationSize: 454,656, EndOfFile: 452,785, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:28.1301929 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:28.1302108 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","AllocationSize: 454,656, EndOfFile: 452,785, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:28.1302407 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:28.1303504 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0043392","Offset: 98,304, Length: 90,112, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:28.1347881 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0010509","Offset: 221,184, Length: 167,936, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:28.1360464 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000085","","2512"
"10:46:28.1377710 AM","firefox.exe","7384","ReadFile","C:\ProgramData\Mozilla\updates\6F193CCC56814779\updates.xml","0.0003639","Offset: 4,096, Length: 4,096","5728"
"10:46:28.1381716 AM","firefox.exe","7384","ReadFile","C:\ProgramData\Mozilla\updates\6F193CCC56814779\updates.xml","0.0000064","Offset: 8,192, Length: 1,283","5728"
"10:46:28.1422608 AM","firefox.exe","7384","CloseFile","C:\ProgramData\Mozilla\updates\6F193CCC56814779\updates.xml","0.0000183","","5728"
"10:46:28.1444069 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 8500","5728"
"10:46:28.1450102 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0009037","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8500"
"10:46:28.1451429 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000149","","2512"
"10:46:28.1453033 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000167","","2512"
"10:46:28.1459531 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000086","CreationTime: 6/19/2019 4:53:46 PM, LastAccessTime: 6/19/2019 4:53:46 PM, LastWriteTime: 3/26/2020 10:29:02 AM, ChangeTime: 3/26/2020 10:29:02 AM, AllocationSize: 229376, EndOfFile: 229376, FileAttributes: A","8500"
"10:46:28.1459809 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000124","","8500"
"10:46:28.1462501 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000358","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","8500"
"10:46:28.1463342 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0123481","Offset: 0, Length: 100, Priority: Normal","8500"
"10:46:28.1463687 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000111","Desired Access: Read","5728"
"10:46:28.1464041 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0122407","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","8500"
"10:46:28.1464105 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.1464400 AM","firefox.exe","7384","RegOpenKey","HKCU\Keyboard Layout\Toggle","0.0000064","Desired Access: Read","5728"
"10:46:28.1464724 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000021","","5728"
"10:46:28.1464976 AM","firefox.exe","7384","RegQueryValue","HKCU\Keyboard Layout\Toggle\Language Hotkey","0.0000038","Length: 16","5728"
"10:46:28.1465185 AM","firefox.exe","7384","RegQueryValue","HKCU\Keyboard Layout\Toggle\Hotkey","0.0000025","Length: 16","5728"
"10:46:28.1465364 AM","firefox.exe","7384","RegQueryValue","HKCU\Keyboard Layout\Toggle\Layout Hotkey","0.0000026","Length: 16","5728"
"10:46:28.1465586 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1465620 AM","firefox.exe","7384","RegCloseKey","HKCU\Keyboard Layout\Toggle","0.0000017","","5728"
"10:46:28.1466141 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000051","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:28.1466345 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000077","","2512"
"10:46:28.1470074 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1470578 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000051","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:28.1470783 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000068","","2512"
"10:46:28.1474124 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1474593 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000047","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:28.1474772 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000064","","2512"
"10:46:28.1475335 AM","firefox.exe","7384","CreateFile","C:\","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1475638 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000175","Filter: Windows, 1: Windows","2512"
"10:46:28.1475988 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:28.1477336 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1477644 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000140","Filter: System32, 1: System32","2512"
"10:46:28.1477942 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000051","","2512"
"10:46:28.1479265 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1479564 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\usp10.dll","0.0000174","Filter: usp10.dll, 1: usp10.dll","2512"
"10:46:28.1479888 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000051","","2512"
"10:46:28.1482802 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1483246 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000042","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:28.1483412 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000060","","2512"
"10:46:28.1483903 AM","firefox.exe","7384","CreateFile","C:\","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1484167 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000133","Filter: Windows, 1: Windows","2512"
"10:46:28.1484453 AM","firefox.exe","7384","CloseFile","C:\","0.0000047","","2512"
"10:46:28.1485750 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1486049 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000132","Filter: System32, 1: System32","2512"
"10:46:28.1486326 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000051","","2512"
"10:46:28.1487640 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1487939 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\d3d11.dll","0.0000179","Filter: d3d11.dll, 1: d3d11.dll","2512"
"10:46:28.1488272 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000051","","2512"
"10:46:28.1492573 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1493068 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000055","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:28.1493268 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000068","","2512"
"10:46:28.1494006 AM","firefox.exe","7384","CreateFile","C:\","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1494279 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000167","Filter: Windows, 1: Windows","2512"
"10:46:28.1494595 AM","firefox.exe","7384","CloseFile","C:\","0.0000055","","2512"
"10:46:28.1496673 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1497036 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000174","Filter: System32, 1: System32","2512"
"10:46:28.1499105 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000102","","2512"
"10:46:28.1500654 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000140","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1500935 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\d3d11.dll","0.0000171","Filter: d3d11.dll, 1: d3d11.dll","2512"
"10:46:28.1501234 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:28.1502685 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000162","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1503180 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\d3d11.dll","0.0000042","AllocationSize: 3,182,592, EndOfFile: 3,179,760, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.1503393 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:28.1503551 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\d3d11.dll","0.0000025","AllocationSize: 3,182,592, EndOfFile: 3,179,760, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.1503798 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:28.1504609 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000064","","2512"
"10:46:28.1506021 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000137","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1506435 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\d3d11.dll","0.0000030","AllocationSize: 3,182,592, EndOfFile: 3,179,760, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.1506597 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:28.1506717 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\d3d11.dll","0.0000021","AllocationSize: 3,182,592, EndOfFile: 3,179,760, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.1506909 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:28.1507557 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\d3d11.dll","0.0097472","Offset: 3,141,632, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:28.1587190 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\search.json.mozlz4","0.0222759","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4904"
"10:46:28.1588509 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000081","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8500"
"10:46:28.1588786 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8500"
"10:46:28.1588995 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000026","Offset: 1,073,741,824, Length: 1","8500"
"10:46:28.1593842 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000060","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:28.1594085 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000056","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:28.1594584 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000141","Offset: 98,304, Length: 32,768","7852"
"10:46:28.1594926 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000021","Offset: 123, Length: 1","7852"
"10:46:28.1598275 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000030","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:28.1598437 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000034","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:28.1598578 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000034","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:28.1598693 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000017","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:28.1599094 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0803329","Offset: 622,592, Length: 32,768","7852"
"10:46:28.1599495 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0802600","Offset: 622,592, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7852"
"10:46:28.1605976 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\d3d11.dll","0.0000064","AllocationSize: 3,182,592, EndOfFile: 3,179,760, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.1606284 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000132","","2512"
"10:46:28.1608016 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 7860","7276"
"10:46:28.1608869 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000606","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1609949 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\d3d11.dll","0.0000051","AllocationSize: 3,182,592, EndOfFile: 3,179,760, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.1610226 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000056","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:28.1610452 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\d3d11.dll","0.0000030","AllocationSize: 3,182,592, EndOfFile: 3,179,760, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.1610768 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000034","SyncType: SyncTypeOther","2512"
"10:46:28.1618986 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\d3d11.dll","0.0004313","Offset: 3,174,400, Length: 5,360, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:28.1627203 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000214","","2512"
"10:46:28.1686518 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1687265 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000064","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:28.1687513 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000089","","2512"
"10:46:28.1692266 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000354","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1694463 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000299","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:28.1695359 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000448","","2512"
"10:46:28.1709294 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1710164 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000056","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:28.1710382 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000072","","2512"
"10:46:28.1710826 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0121369","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:28.1711001 AM","firefox.exe","7384","CreateFile","C:\","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1711265 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000162","Filter: Windows, 1: Windows","2512"
"10:46:28.1711568 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:28.1712562 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1712793 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000115","Filter: System32, 1: System32","2512"
"10:46:28.1713019 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000042","","2512"
"10:46:28.1714115 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1714337 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\d3d11.dll","0.0000209","Filter: d3d11.dll, 1: d3d11.dll","2512"
"10:46:28.1714700 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000042","","2512"
"10:46:28.1717042 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1717375 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000030","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:28.1717486 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000047","","2512"
"10:46:28.1717840 AM","firefox.exe","7384","CreateFile","C:\","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1718058 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000123","Filter: Windows, 1: Windows","2512"
"10:46:28.1718292 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:28.1719205 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000099","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1719419 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:28.1719619 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:28.1720545 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1720754 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dxgi.dll","0.0000103","Filter: dxgi.dll, 1: dxgi.dll","2512"
"10:46:28.1720959 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:28.1722747 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1723037 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000030","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:28.1723144 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000042","","2512"
"10:46:28.1723502 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1723715 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000115","Filter: Windows, 1: Windows","2512"
"10:46:28.1723958 AM","firefox.exe","7384","CloseFile","C:\","0.0000047","","2512"
"10:46:28.1725017 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1725243 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:28.1725448 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:28.1726365 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1726565 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dxgi.dll","0.0000103","Filter: dxgi.dll, 1: dxgi.dll","2512"
"10:46:28.1726770 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:28.1727939 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1728310 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dxgi.dll","0.0000030","AllocationSize: 749,568, EndOfFile: 748,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.1728498 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:28.1728630 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dxgi.dll","0.0000022","AllocationSize: 749,568, EndOfFile: 748,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.1728831 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:28.1729437 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000055","","2512"
"10:46:28.1730683 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000123","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1731058 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dxgi.dll","0.0000030","AllocationSize: 749,568, EndOfFile: 748,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.1731208 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:28.1731323 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dxgi.dll","0.0000017","AllocationSize: 749,568, EndOfFile: 748,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.1731506 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:28.1732005 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\dxgi.dll","0.0174524","Offset: 716,800, Length: 31,712, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:28.1812270 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\search.json.mozlz4","0.0000051","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","4904"
"10:46:28.1812513 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\search.json.mozlz4","0.0000081","CreationTime: 3/26/2020 10:35:13 AM, LastAccessTime: 3/26/2020 10:35:13 AM, LastWriteTime: 3/26/2020 10:35:13 AM, ChangeTime: 3/26/2020 10:35:13 AM, FileAttributes: A, AllocationSize: 576, EndOfFile: 572, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x180000000292b2, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","4904"
"10:46:28.1815095 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\search.json.mozlz4","0.0000793","Offset: 0, Length: 572, Priority: Normal","4904"
"10:46:28.1815611 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\search.json.mozlz4","0.0000107","Offset: 0, Length: 572, I/O Flags: Non-cached, Paging I/O, Priority: Normal","4904"
"10:46:28.1816174 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000363","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:28.1816810 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000064","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:27 AM, LastWriteTime: 3/26/2020 10:46:27 AM, ChangeTime: 3/26/2020 10:46:27 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:28.1816865 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite-journal","0.0000559","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8500"
"10:46:28.1817062 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000332","","5068"
"10:46:28.1817168 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0001097","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7572"
"10:46:28.1818457 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000077","CreationTime: 3/26/2020 10:46:26 AM, LastAccessTime: 3/26/2020 10:46:26 AM, LastWriteTime: 3/26/2020 10:46:26 AM, ChangeTime: 3/26/2020 10:46:27 AM, AllocationSize: 16384, EndOfFile: 13482, FileAttributes: A","7572"
"10:46:28.1818679 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000149","","7572"
"10:46:28.1820846 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\search.json.mozlz4","0.0000098","","4904"
"10:46:28.1823760 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\idb-deleting-3870112724rsegmnoittet-es","0.0000363","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:28.1825620 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite-wal","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8500"
"10:46:28.1825804 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7572"
"10:46:28.1826179 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000069","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8500"
"10:46:28.1826214 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000046","CreationTime: 3/26/2020 10:46:26 AM, LastAccessTime: 3/26/2020 10:46:26 AM, LastWriteTime: 3/26/2020 10:46:26 AM, ChangeTime: 3/26/2020 10:46:27 AM, FileAttributes: A","7572"
"10:46:28.1826418 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000073","","7572"
"10:46:28.1826499 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000184","Offset: 0, Length: 32,768","8500"
"10:46:28.1828611 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000043","Offset: 1,073,741,826, Length: 510","8500"
"10:46:28.1829068 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:28.1829392 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7572"
"10:46:28.1829460 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","5068"
"10:46:28.1829661 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000068","","5068"
"10:46:28.1829704 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000030","CreationTime: 3/26/2020 10:46:26 AM, LastAccessTime: 3/26/2020 10:46:26 AM, LastWriteTime: 3/26/2020 10:46:26 AM, ChangeTime: 3/26/2020 10:46:27 AM, FileAttributes: A","7572"
"10:46:28.1829874 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000060","","7572"
"10:46:28.1831611 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000286","Desired Access: Generic Write, Read Attributes, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7572"
"10:46:28.1832234 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0005192","","7572"
"10:46:28.1832635 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000055","CreationTime: 6/19/2019 4:53:26 PM, LastAccessTime: 3/26/2020 10:46:27 AM, LastWriteTime: 3/26/2020 10:46:27 AM, ChangeTime: 3/26/2020 10:46:27 AM, AllocationSize: 16384, EndOfFile: 16384, FileAttributes: D","5728"
"10:46:28.1832870 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7860"
"10:46:28.1832951 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000072","","5728"
"10:46:28.1833275 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000043","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 6/19/2019 4:53:48 PM, LastWriteTime: 3/25/2020 10:46:19 AM, ChangeTime: 3/25/2020 10:46:19 AM, AllocationSize: 49152, EndOfFile: 49152, FileAttributes: A","7860"
"10:46:28.1833497 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000068","","7860"
"10:46:28.1834154 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:28.1834546 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000039","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:28.1834751 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","","5068"
"10:46:28.1835050 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000239","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:28.1835587 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000047","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,854, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5728"
"10:46:28.1835865 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000060","","5728"
"10:46:28.1836590 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000295","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:28.1837162 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000281","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7860"
"10:46:28.1837388 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000145","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:28.1837682 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000056","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 6/19/2019 4:53:48 PM, LastWriteTime: 3/25/2020 10:46:19 AM, ChangeTime: 3/25/2020 10:46:19 AM, FileAttributes: A","7860"
"10:46:28.1837913 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000081","","7860"
"10:46:28.1838741 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000042","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:28.1838967 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000025","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:28.1839240 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Offset: 1,073,741,824, Length: 1","5068"
"10:46:28.1840648 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0002043","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7572"
"10:46:28.1842572 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000316","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7860"
"10:46:28.1842623 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000320","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:28.1842858 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0001395","CreationTime: 3/26/2020 10:46:26 AM, LastAccessTime: 3/26/2020 10:46:26 AM, LastWriteTime: 3/26/2020 10:46:26 AM, ChangeTime: 3/26/2020 10:46:27 AM, FileAttributes: A","7572"
"10:46:28.1843046 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000047","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 6/19/2019 4:53:48 PM, LastWriteTime: 3/25/2020 10:46:19 AM, ChangeTime: 3/25/2020 10:46:19 AM, AllocationSize: 49152, EndOfFile: 49152, FileAttributes: A","7860"
"10:46:28.1843263 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000115","","7860"
"10:46:28.1844492 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000073","","7572"
"10:46:28.1845435 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000392","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","7860"
"10:46:28.1846331 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000124","Offset: 0, Length: 100, Priority: Normal","7860"
"10:46:28.1846429 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:28.1846950 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000047","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:26 AM, LastWriteTime: 3/26/2020 10:46:26 AM, ChangeTime: 3/26/2020 10:46:26 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:28.1847163 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000072","","5068"
"10:46:28.1847585 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7572"
"10:46:28.1847722 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:28.1847752 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","7860"
"10:46:28.1847944 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000072","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","7860"
"10:46:28.1847969 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000064","CreationTime: 3/26/2020 10:46:26 AM, LastAccessTime: 3/26/2020 10:46:26 AM, LastWriteTime: 3/26/2020 10:46:26 AM, ChangeTime: 3/26/2020 10:46:27 AM, FileAttributes: A","7572"
"10:46:28.1847978 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","Offset: 0, Length: 4,096","5068"
"10:46:28.1848178 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000064","","7572"
"10:46:28.1848187 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000026","Offset: 1,073,741,824, Length: 1","7860"
"10:46:28.1849928 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000324","Desired Access: Generic Write, Read Attributes, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7572"
"10:46:28.1850521 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000068","","7572"
"10:46:28.1851383 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000320","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:28.1851899 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000047","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:26 AM, LastWriteTime: 3/26/2020 10:46:26 AM, ChangeTime: 3/26/2020 10:46:26 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:28.1852117 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000076","","5068"
"10:46:28.1853345 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7572"
"10:46:28.1853695 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000039","CreationTime: 3/26/2020 10:46:26 AM, LastAccessTime: 3/26/2020 10:46:26 AM, LastWriteTime: 3/26/2020 10:46:26 AM, ChangeTime: 3/26/2020 10:46:27 AM, FileAttributes: A","7572"
"10:46:28.1853857 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000060","","7572"
"10:46:28.1854216 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000328","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:28.1854988 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:28.1855261 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000073","Offset: 0, Length: 4,096","5068"
"10:46:28.1855688 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000213","Desired Access: Generic Read, Disposition: Create, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: 0","7572"
"10:46:28.1857275 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0174857","Desired Access: Generic Read, Disposition: Create, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","7572"
"10:46:28.1885904 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 7884","5728"
"10:46:28.1890056 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000094","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7884"
"10:46:28.1890913 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0203209","Offset: 819,200, Length: 32,768","7884"
"10:46:28.1891310 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0202501","Offset: 819,200, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7884"
"10:46:28.1907673 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dxgi.dll","0.0000102","AllocationSize: 749,568, EndOfFile: 748,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.1908001 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000197","","2512"
"10:46:28.1911031 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000196","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1911594 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dxgi.dll","0.0000034","AllocationSize: 749,568, EndOfFile: 748,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.1911786 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:28.1911931 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dxgi.dll","0.0000021","AllocationSize: 749,568, EndOfFile: 748,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.1912144 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:28.1916684 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000115","","2512"
"10:46:28.1921655 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1922069 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000038","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:28.1922209 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000052","","2512"
"10:46:28.1924407 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1924722 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000026","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:28.1924838 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000047","","2512"
"10:46:28.1927346 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1927705 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000030","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:28.1927816 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000047","","2512"
"10:46:28.1928200 AM","firefox.exe","7384","CreateFile","C:\","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1928439 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000158","Filter: Windows, 1: Windows","2512"
"10:46:28.1928720 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:28.1929680 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000116","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1929919 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000115","Filter: System32, 1: System32","2512"
"10:46:28.1930150 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:28.1931118 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1931340 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dxgi.dll","0.0000124","Filter: dxgi.dll, 1: dxgi.dll","2512"
"10:46:28.1931570 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000043","","2512"
"10:46:28.1933845 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000426","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1934506 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000034","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:28.1934621 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000047","","2512"
"10:46:28.1934988 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1935197 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000179","Filter: Windows, 1: Windows","2512"
"10:46:28.1935590 AM","firefox.exe","7384","CloseFile","C:\","0.0000059","","2512"
"10:46:28.1936725 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1936964 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000110","Filter: System32, 1: System32","2512"
"10:46:28.1937181 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:28.1939724 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1940001 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\IPHLPAPI.DLL","0.0000154","Filter: IPHLPAPI.DLL, 1: IPHLPAPI.DLL","2512"
"10:46:28.1940270 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000043","","2512"
"10:46:28.1942148 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1942745 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000038","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:28.1942864 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000047","","2512"
"10:46:28.1943240 AM","firefox.exe","7384","CreateFile","C:\","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1943449 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000115","Filter: Windows, 1: Windows","2512"
"10:46:28.1943671 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:28.1944605 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1944823 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:28.1945028 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:28.1946124 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1946342 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\IPHLPAPI.DLL","0.0000119","Filter: IPHLPAPI.DLL, 1: IPHLPAPI.DLL","2512"
"10:46:28.1946564 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:28.1947745 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000133","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1948138 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000030","AllocationSize: 221,184, EndOfFile: 219,616, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.1948321 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:28.1948454 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000017","AllocationSize: 221,184, EndOfFile: 219,616, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.1948663 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:28.1949243 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000060","","2512"
"10:46:28.1950566 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000123","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.1950954 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000026","AllocationSize: 221,184, EndOfFile: 219,616, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.1951103 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:28.1951214 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000022","AllocationSize: 221,184, EndOfFile: 219,616, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.1951411 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:28.1951850 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\IPHLPAPI.DLL","0.0302025","Offset: 188,416, Length: 31,200, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:28.2010576 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000192","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2011037 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000051","Name: \Program Files\Firefox Nightly\firefox.exe","3800"
"10:46:28.2011229 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000026","Name: \Program Files\Firefox Nightly\firefox.exe","3800"
"10:46:28.2012002 AM","firefox.exe","7384","QueryNormalizedNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000140","","3800"
"10:46:28.2012287 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000064","","3800"
"10:46:28.2015586 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}\.","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:28.2017403 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2017638 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000038","CreationTime: 3/26/2020 10:46:22 AM, LastAccessTime: 3/26/2020 10:46:22 AM, LastWriteTime: 3/26/2020 10:46:22 AM, ChangeTime: 3/26/2020 10:46:22 AM, FileAttributes: DNCI","3800"
"10:46:28.2017766 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000038","","3800"
"10:46:28.2018167 AM","firefox.exe","7384","CreateFile","C:\","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2018436 AM","firefox.exe","7384","QueryDirectory","C:\Users","0.0000149","Filter: Users, 1: Users","3800"
"10:46:28.2018713 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","3800"
"10:46:28.2019677 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2019908 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles","0.0000094","Filter: diggles, 1: diggles","3800"
"10:46:28.2020117 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000038","","3800"
"10:46:28.2021060 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2021273 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData","0.0000098","Filter: AppData, 1: AppData","3800"
"10:46:28.2021478 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000038","","3800"
"10:46:28.2022399 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2022613 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\LocalLow","0.0000077","Filter: LocalLow, 1: LocalLow","3800"
"10:46:28.2022792 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000038","","3800"
"10:46:28.2023696 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2023914 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000073","Filter: Mozilla, 1: Mozilla","3800"
"10:46:28.2024089 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow","0.0000034","","3800"
"10:46:28.2025599 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}\.","0.0000086","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2026461 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}\.","0.0000073","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2027306 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}\.","0.0000068","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2028287 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}\.","0.0000069","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2029188 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000064","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2030050 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000110","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2030318 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000043","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2030472 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000034","","3800"
"10:46:28.2031795 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000166","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2032144 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000060","","3800"
"10:46:28.2032563 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000337","","7572"
"10:46:28.2033608 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000158","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2033719 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-journal","0.0000281","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7860"
"10:46:28.2034107 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000017","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2034278 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000055","","3800"
"10:46:28.2034790 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000422","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","7572"
"10:46:28.2035724 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000516","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:28.2035810 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000157","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2036211 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000047","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2036428 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000060","","3800"
"10:46:28.2036437 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:28.2037260 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000841","Desired Access: Generic Write, Read Attributes, Disposition: OverwriteIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Overwritten","7572"
"10:46:28.2037802 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-wal","0.0000384","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7860"
"10:46:28.2037892 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000111","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2037956 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0001689","","5068"
"10:46:28.2038544 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000056","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","7860"
"10:46:28.2038869 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000077","Offset: 0, Length: 4,096","7860"
"10:46:28.2039044 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0001049","Offset: 0, Length: 4,096, Priority: Normal","7572"
"10:46:28.2039240 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000162","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2039620 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000047","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2039842 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000081","","3800"
"10:46:28.2040520 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000380","Offset: 4,096, Length: 4,096, Priority: Normal","7572"
"10:46:28.2041079 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000068","Offset: 8,192, Length: 4,096","7572"
"10:46:28.2041305 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000060","Offset: 12,288, Length: 1,258","7572"
"10:46:28.2041476 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000166","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2041552 AM","firefox.exe","7384","FlushBuffersFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.1213075","","7572"
"10:46:28.2041843 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000055","","3800"
"10:46:28.2042137 AM","firefox.exe","7384","WriteFile","C:\$ConvertToNonresident","0.0022033","Offset: 0, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7572"
"10:46:28.2042239 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-wal","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7860"
"10:46:28.2042884 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:28.2043302 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000179","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:27 AM, LastWriteTime: 3/26/2020 10:46:27 AM, ChangeTime: 3/26/2020 10:46:27 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:28.2043912 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000166","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2044450 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000021","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2044548 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-wal","0.0133901","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","7860"
"10:46:28.2044625 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000059","","3800"
"10:46:28.2044966 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0133538","","5068"
"10:46:28.2046033 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000119","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2046323 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000042","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2046472 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000038","","3800"
"10:46:28.2047782 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow","0.0000072","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2048917 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow","0.0000145","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2049262 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\LocalLow","0.0000043","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2049416 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow","0.0000043","","3800"
"10:46:28.2050359 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2050585 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow","0.0000034","","3800"
"10:46:28.2051460 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow","0.0000089","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2051758 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\LocalLow","0.0000013","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2051861 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow","0.0000034","","3800"
"10:46:28.2052770 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2053004 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\LocalLow","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2053128 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow","0.0000038","","3800"
"10:46:28.2054062 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000060","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2054920 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2055155 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2055274 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000039","","3800"
"10:46:28.2056149 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2056354 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:28.2057207 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2057489 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData","0.0000008","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2057582 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000035","","3800"
"10:46:28.2058483 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000089","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2058700 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2058815 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000035","","3800"
"10:46:28.2059724 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000056","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2060535 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2060761 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2060881 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000038","","3800"
"10:46:28.2061725 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000086","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2061917 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:28.2062745 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2063018 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles","0.0000009","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2063112 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:28.2063982 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2064196 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000025","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2064315 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000094","","3800"
"10:46:28.2065885 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000077","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2066815 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000116","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2067101 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000034","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2067251 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000042","","3800"
"10:46:28.2068373 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000111","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2068616 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000038","","3800"
"10:46:28.2069503 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2069802 AM","firefox.exe","7384","DeviceIoControl","C:\Users","0.0000009","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2069900 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000034","","3800"
"10:46:28.2070801 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2071027 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2071150 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000035","","3800"
"10:46:28.2073928 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}\.","0.0000085","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:28.2075609 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2075822 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000060","CreationTime: 3/26/2020 10:46:22 AM, LastAccessTime: 3/26/2020 10:46:22 AM, LastWriteTime: 3/26/2020 10:46:22 AM, ChangeTime: 3/26/2020 10:46:22 AM, FileAttributes: DNCI","3800"
"10:46:28.2075963 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000039","","3800"
"10:46:28.2077593 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2077789 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000026","CreationTime: 2/16/2018 12:59:41 PM, LastAccessTime: 3/26/2020 10:46:22 AM, LastWriteTime: 3/26/2020 10:46:22 AM, ChangeTime: 3/26/2020 10:46:22 AM, FileAttributes: DNCI","3800"
"10:46:28.2077892 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla","0.0000034","","3800"
"10:46:28.2079453 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\LocalLow","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2079637 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\LocalLow","0.0000025","CreationTime: 2/16/2018 12:54:36 PM, LastAccessTime: 2/16/2018 12:59:41 PM, LastWriteTime: 2/16/2018 12:59:41 PM, ChangeTime: 3/20/2019 7:53:52 PM, FileAttributes: DNCI","3800"
"10:46:28.2079735 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\LocalLow","0.0000030","","3800"
"10:46:28.2081412 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000094","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2081591 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData","0.0000026","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 3/20/2019 7:22:57 PM, LastWriteTime: 3/20/2019 7:22:57 PM, ChangeTime: 3/20/2019 7:22:57 PM, FileAttributes: HD","3800"
"10:46:28.2081689 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000030","","3800"
"10:46:28.2083217 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000089","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2083391 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles","0.0000022","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 5/9/2019 3:17:34 PM, LastWriteTime: 5/9/2019 3:17:34 PM, ChangeTime: 5/9/2019 3:17:34 PM, FileAttributes: D","3800"
"10:46:28.2083485 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:28.2085000 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000094","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2085175 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users","0.0000021","CreationTime: 4/11/2018 2:04:33 PM, LastAccessTime: 3/20/2019 7:21:22 PM, LastWriteTime: 3/20/2019 7:21:22 PM, ChangeTime: 3/20/2019 7:21:22 PM, FileAttributes: RD","3800"
"10:46:28.2085269 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000030","","3800"
"10:46:28.2086728 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts\*","0.0000077","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:28.2088409 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:28.2090086 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2090286 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000026","CreationTime: 3/20/2019 7:21:23 PM, LastAccessTime: 4/30/2019 6:29:16 PM, LastWriteTime: 4/30/2019 6:29:16 PM, ChangeTime: 4/30/2019 6:29:16 PM, FileAttributes: D","3800"
"10:46:28.2090393 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000038","","3800"
"10:46:28.2090743 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2090956 AM","firefox.exe","7384","QueryDirectory","C:\Users","0.0000111","Filter: Users, 1: Users","3800"
"10:46:28.2091187 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","3800"
"10:46:28.2092117 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2092330 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles","0.0000098","Filter: diggles, 1: diggles","3800"
"10:46:28.2092535 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000038","","3800"
"10:46:28.2093457 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2093905 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData","0.0000132","Filter: AppData, 1: AppData","3800"
"10:46:28.2094199 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000060","","3800"
"10:46:28.2095603 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000153","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2095931 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Local","0.0000167","Filter: Local, 1: Local","3800"
"10:46:28.2095991 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000055","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7884"
"10:46:28.2096256 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000059","","3800"
"10:46:28.2096332 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.1286474","Offset: 1,081,344, Length: 32,768","7884"
"10:46:28.2096861 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.1285600","Offset: 1,081,344, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7884"
"10:46:28.2097425 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2097664 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000093","Filter: Windows, 1: Windows","3800"
"10:46:28.2097864 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000038","","3800"
"10:46:28.2098722 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts\*","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2099229 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts\*","0.0000069","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2099699 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts\*","0.0000064","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2100219 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts\*\","0.0000069","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2101128 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2102003 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2102852 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts","0.0000089","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2103731 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2104614 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000064","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2105467 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000107","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2105732 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000038","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2105881 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000034","","3800"
"10:46:28.2106786 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2107003 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000034","","3800"
"10:46:28.2107886 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000099","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2108198 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000008","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2108296 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000034","","3800"
"10:46:28.2109235 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2109469 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2109589 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000034","","3800"
"10:46:28.2110506 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000064","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2111368 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2111603 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local\Microsoft","0.0000047","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2111748 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000034","","3800"
"10:46:28.2112686 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000099","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2112900 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000034","","3800"
"10:46:28.2113774 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2114065 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Local\Microsoft","0.0000008","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2114163 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000034","","3800"
"10:46:28.2115089 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2115315 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local\Microsoft","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2115438 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000035","","3800"
"10:46:28.2116317 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local","0.0000064","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2117132 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2117367 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local","0.0000026","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2117486 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local","0.0000035","","3800"
"10:46:28.2118336 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local","0.0000089","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2118536 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local","0.0000034","","3800"
"10:46:28.2119377 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local","0.0000093","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2119722 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Local","0.0000017","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2119846 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local","0.0000047","","3800"
"10:46:28.2121152 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local","0.0000145","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2121489 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Local","0.0000038","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2121659 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local","0.0000056","","3800"
"10:46:28.2123161 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2124480 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000153","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2124846 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000047","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2125064 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000064","","3800"
"10:46:28.2126528 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000157","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2126869 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000060","","3800"
"10:46:28.2128418 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000166","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2128904 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData","0.0000017","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2129058 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000059","","3800"
"10:46:28.2130944 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000157","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2131276 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000047","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2131468 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000056","","3800"
"10:46:28.2132842 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000077","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2134028 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000162","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2134476 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000060","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2134677 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000055","","3800"
"10:46:28.2137472 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000221","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2137954 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000051","","3800"
"10:46:28.2139426 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000452","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2140556 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles","0.0000030","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2140693 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000043","","3800"
"10:46:28.2144076 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000418","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2145100 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000116","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2145544 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000158","","3800"
"10:46:28.2148625 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000217","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2150801 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000371","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2152004 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000354","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2152678 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000166","","3800"
"10:46:28.2155242 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000115","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2155507 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000055","","3800"
"10:46:28.2156693 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2156996 AM","firefox.exe","7384","DeviceIoControl","C:\Users","0.0000013","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2157098 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000034","","3800"
"10:46:28.2158182 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2158412 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000035","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2158540 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000035","","3800"
"10:46:28.2160665 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts\*","0.0000077","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:28.2162406 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows\Fonts","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:28.2164044 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2164253 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000039","CreationTime: 3/20/2019 7:21:23 PM, LastAccessTime: 4/30/2019 6:29:16 PM, LastWriteTime: 4/30/2019 6:29:16 PM, ChangeTime: 4/30/2019 6:29:16 PM, FileAttributes: D","3800"
"10:46:28.2164373 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft\Windows","0.0000038","","3800"
"10:46:28.2166050 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2166246 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000026","CreationTime: 3/20/2019 7:21:23 PM, LastAccessTime: 3/20/2019 7:53:30 PM, LastWriteTime: 3/20/2019 7:53:30 PM, ChangeTime: 3/20/2019 7:53:30 PM, FileAttributes: D","3800"
"10:46:28.2166344 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Microsoft","0.0000034","","3800"
"10:46:28.2167914 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2168093 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local","0.0000022","CreationTime: 3/20/2019 7:21:23 PM, LastAccessTime: 3/26/2020 10:43:56 AM, LastWriteTime: 3/26/2020 10:43:56 AM, ChangeTime: 3/26/2020 10:43:56 AM, FileAttributes: D","3800"
"10:46:28.2168187 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local","0.0000034","","3800"
"10:46:28.2169813 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2169992 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData","0.0000026","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 3/20/2019 7:22:57 PM, LastWriteTime: 3/20/2019 7:22:57 PM, ChangeTime: 3/20/2019 7:22:57 PM, FileAttributes: HD","3800"
"10:46:28.2170090 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000030","","3800"
"10:46:28.2171767 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000090","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2171938 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles","0.0000025","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 5/9/2019 3:17:34 PM, LastWriteTime: 5/9/2019 3:17:34 PM, ChangeTime: 5/9/2019 3:17:34 PM, FileAttributes: D","3800"
"10:46:28.2172032 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:28.2173649 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000089","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2173824 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users","0.0000021","CreationTime: 4/11/2018 2:04:33 PM, LastAccessTime: 3/20/2019 7:21:22 PM, LastWriteTime: 3/20/2019 7:21:22 PM, ChangeTime: 3/20/2019 7:21:22 PM, FileAttributes: RD","3800"
"10:46:28.2173917 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000035","","3800"
"10:46:28.2175940 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\.","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:28.2177762 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2177962 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly","0.0000128","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:29:06 AM, LastWriteTime: 3/25/2020 10:29:06 AM, ChangeTime: 3/25/2020 10:29:06 AM, FileAttributes: D","3800"
"10:46:28.2178248 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000077","","3800"
"10:46:28.2180125 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\.","0.0000103","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2180262 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000218","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:28.2180689 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000047","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,850, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5068"
"10:46:28.2180893 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000052","","5068"
"10:46:28.2181397 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\.","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2182596 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7860"
"10:46:28.2182609 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\.","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2183543 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\.","0.0000064","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2184004 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0001348","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","7860"
"10:46:28.2184439 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000077","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2185403 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000111","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2185625 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000047","Exclusive: True, Offset: 128, Length: 1, Fail Immediately: True","7860"
"10:46:28.2185689 AM","firefox.exe","7384","FileSystemControl","C:\Program Files\Firefox Nightly","0.0000034","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2185839 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000038","","3800"
"10:46:28.2185949 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000265","EndOfFile: 0","7860"
"10:46:28.2186376 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000184","AllocationSize: 0","7860"
"10:46:28.2186713 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000022","Offset: 128, Length: 1","7860"
"10:46:28.2186764 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2186845 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000026","Exclusive: False, Offset: 128, Length: 1, Fail Immediately: True","7860"
"10:46:28.2187050 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000051","","3800"
"10:46:28.2187097 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000039","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","7860"
"10:46:28.2187200 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:28.2187302 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000038","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7860"
"10:46:28.2187635 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000030","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","7860"
"10:46:28.2187814 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000713","EndOfFile: 32,768","7860"
"10:46:28.2188079 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000042","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:28.2188364 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000077","Offset: 8,192, Length: 4,096","5068"
"10:46:28.2188454 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000141","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2188667 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000167","AllocationSize: 32,768","7860"
"10:46:28.2188898 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:28.2188928 AM","firefox.exe","7384","DeviceIoControl","C:\Program Files\Firefox Nightly","0.0000017","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2189030 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000060","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7860"
"10:46:28.2189107 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000064","","3800"
"10:46:28.2189196 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000056","Offset: 12,288, Length: 4,096","5068"
"10:46:28.2189218 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000025","AllocationSize: 32,768, EndOfFile: 32,768, NumberOfLinks: 1, DeletePending: False, Directory: False","7860"
"10:46:28.2189551 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000021","SyncType: SyncTypeOther","7860"
"10:46:28.2189939 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:28.2190075 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000098","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7860"
"10:46:28.2190169 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","Offset: 16,384, Length: 4,096","5068"
"10:46:28.2190387 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000025","Exclusive: True, Offset: 121, Length: 2, Fail Immediately: True","7860"
"10:46:28.2190506 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000017","Exclusive: True, Offset: 124, Length: 4, Fail Immediately: True","7860"
"10:46:28.2190643 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-wal","0.0000025","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","7860"
"10:46:28.2190694 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000158","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2190715 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000039","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:28.2190805 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000017","Offset: 121, Length: 2","7860"
"10:46:28.2190899 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","Offset: 1,073,741,826, Length: 510","5068"
"10:46:28.2190916 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000043","Offset: 124, Length: 4","7860"
"10:46:28.2191069 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000035","Offset: 120, Length: 1","7860"
"10:46:28.2191074 AM","firefox.exe","7384","FileSystemControl","C:\Program Files\Firefox Nightly","0.0000047","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2191078 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:28.2191215 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000021","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7860"
"10:46:28.2191249 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:28.2191283 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000051","","3800"
"10:46:28.2191377 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000038","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","7860"
"10:46:28.2191556 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000111","","5068"
"10:46:28.2191616 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000059","Offset: 0, Length: 4,096","7860"
"10:46:28.2192140 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","Offset: 1,073,741,825, Length: 1","5068"
"10:46:28.2192315 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","Offset: 1,073,741,826, Length: 510","5068"
"10:46:28.2192405 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000077","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2192456 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Offset: 1,073,741,824, Length: 1","5068"
"10:46:28.2192644 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000089","","5068"
"10:46:28.2193288 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000111","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2193553 AM","firefox.exe","7384","FileSystemControl","C:\Program Files","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2193685 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000034","","3800"
"10:46:28.2194717 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000141","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2194999 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000051","","3800"
"10:46:28.2195648 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000034","Offset: 123, Length: 1","7860"
"10:46:28.2196027 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2196335 AM","firefox.exe","7384","DeviceIoControl","C:\Program Files","0.0000008","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2196492 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000039","","3800"
"10:46:28.2197725 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000133","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2197892 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:28.2198063 AM","firefox.exe","7384","FileSystemControl","C:\Program Files","0.0000042","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2198259 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000064","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:28.2198301 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000060","","3800"
"10:46:28.2198464 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000051","","5068"
"10:46:28.2199462 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000311","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7860"
"10:46:28.2199974 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000047","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 6/19/2019 4:53:48 PM, LastWriteTime: 3/25/2020 10:46:19 AM, ChangeTime: 3/25/2020 10:46:19 AM, AllocationSize: 49152, EndOfFile: 49152, FileAttributes: A","7860"
"10:46:28.2200187 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000077","","7860"
"10:46:28.2201809 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\idb-deleting-1657114595AmcateirvtiSty","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:28.2202594 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\.","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:28.2203157 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7860"
"10:46:28.2203511 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000094","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","7860"
"10:46:28.2203754 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000056","","7860"
"10:46:28.2204915 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2205239 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly","0.0000043","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:29:06 AM, LastWriteTime: 3/25/2020 10:29:06 AM, ChangeTime: 3/25/2020 10:29:06 AM, FileAttributes: D","3800"
"10:46:28.2205260 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000158","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","7860"
"10:46:28.2205431 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:28.2205482 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000081","","3800"
"10:46:28.2205627 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000039","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,842, SectorsPerAllocationUnit: 8, BytesPerSector: 512","7860"
"10:46:28.2205790 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000034","CreationTime: 6/19/2019 4:53:51 PM, LastAccessTime: 6/19/2019 4:53:51 PM, LastWriteTime: 3/26/2020 10:35:41 AM, ChangeTime: 3/26/2020 10:35:41 AM, FileAttributes: A","5068"
"10:46:28.2205832 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000047","","7860"
"10:46:28.2205969 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000068","","5068"
"10:46:28.2207283 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite-shm","0.0000043","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7860"
"10:46:28.2207539 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000043","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","7860"
"10:46:28.2207902 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1451318868ntouromlalnodry--epcr.sqlite","0.0000085","Offset: 20,480, Length: 4,096","7860"
"10:46:28.2208358 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2208623 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files","0.0000038","CreationTime: 4/11/2018 4:38:20 PM, LastAccessTime: 3/26/2020 10:29:39 AM, LastWriteTime: 3/26/2020 10:29:39 AM, ChangeTime: 3/26/2020 10:29:39 AM, FileAttributes: RD","3800"
"10:46:28.2208759 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000047","","3800"
"10:46:28.2209105 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:28.2209463 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000047","CreationTime: 6/19/2019 4:53:51 PM, LastAccessTime: 6/19/2019 4:53:51 PM, LastWriteTime: 3/26/2020 10:35:41 AM, ChangeTime: 3/26/2020 10:35:41 AM, AllocationSize: 81920, EndOfFile: 81920, FileAttributes: A","5068"
"10:46:28.2209617 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000051","","5068"
"10:46:28.2210598 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome\*","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:28.2210952 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000239","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:28.2211468 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.1621579","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:28.2211951 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.1620448","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5068"
"10:46:28.2212565 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:28.2214408 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2214626 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000030","CreationTime: 6/19/2019 4:53:26 PM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, FileAttributes: D","3800"
"10:46:28.2214737 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000038","","3800"
"10:46:28.2215104 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2215317 AM","firefox.exe","7384","QueryDirectory","C:\Users","0.0000119","Filter: Users, 1: Users","3800"
"10:46:28.2215564 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","3800"
"10:46:28.2216499 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2216729 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles","0.0000094","Filter: diggles, 1: diggles","3800"
"10:46:28.2216934 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000034","","3800"
"10:46:28.2217873 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2218120 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData","0.0000094","Filter: AppData, 1: AppData","3800"
"10:46:28.2218359 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000039","","3800"
"10:46:28.2219276 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2219490 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming","0.0000072","Filter: Roaming, 1: Roaming","3800"
"10:46:28.2219660 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000035","","3800"
"10:46:28.2220561 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2220774 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000077","Filter: Mozilla, 1: Mozilla","3800"
"10:46:28.2220953 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000034","","3800"
"10:46:28.2221871 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2222092 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000069","Filter: Firefox, 1: Firefox","3800"
"10:46:28.2222263 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000034","","3800"
"10:46:28.2223198 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000110","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2223424 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000076","Filter: Profiles, 1: Profiles","3800"
"10:46:28.2223603 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000034","","3800"
"10:46:28.2224443 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome\*","0.0000099","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2225002 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome\*","0.0000086","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2225531 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome\*","0.0000077","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2226112 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome\*\","0.0000076","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2227089 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome","0.0000106","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2228019 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2228928 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome","0.0000106","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2229879 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome","0.0000111","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2230835 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2231744 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000119","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2232025 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000039","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2232179 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000038","","3800"
"10:46:28.2233224 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000175","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2233583 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000055","","3800"
"10:46:28.2235046 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000166","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2235537 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000017","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2235695 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000055","","3800"
"10:46:28.2236821 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000124","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2237081 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000034","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2237214 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000034","","3800"
"10:46:28.2238191 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000076","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2239104 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000115","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2239355 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2239483 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000035","","3800"
"10:46:28.2240537 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000115","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2240763 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000035","","3800"
"10:46:28.2241685 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2241992 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000009","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2242090 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000034","","3800"
"10:46:28.2243063 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000107","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2243302 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000026","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2243422 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000029","","3800"
"10:46:28.2244347 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000077","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2245218 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000106","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2245457 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2245576 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000034","","3800"
"10:46:28.2246468 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2246681 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000034","","3800"
"10:46:28.2247569 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2247859 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000013","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2247953 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000034","","3800"
"10:46:28.2248879 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2249105 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2249224 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000030","","3800"
"10:46:28.2250124 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000069","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2250982 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2251212 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000026","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2251332 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000030","","3800"
"10:46:28.2252198 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2252403 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000030","","3800"
"10:46:28.2253265 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2253551 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000008","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2253645 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000029","","3800"
"10:46:28.2254511 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000047","AllocationSize: 221,184, EndOfFile: 219,616, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.2254703 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000119","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2254741 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000077","","2512"
"10:46:28.2254959 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2255082 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000035","","3800"
"10:46:28.2256064 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000064","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2256298 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.2256738 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000030","AllocationSize: 221,184, EndOfFile: 219,616, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.2256921 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:28.2256930 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000089","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2257058 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000021","AllocationSize: 221,184, EndOfFile: 219,616, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.2257160 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2257275 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000018","SyncType: SyncTypeOther","2512"
"10:46:28.2257288 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000034","","3800"
"10:46:28.2258146 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000089","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2258346 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000035","","3800"
"10:46:28.2259183 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2259464 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming","0.0000013","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2259562 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000035","","3800"
"10:46:28.2260394 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000060","","2512"
"10:46:28.2260480 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2260710 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2260830 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000034","","3800"
"10:46:28.2261909 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000060","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2262809 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2263057 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2263185 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:28.2264132 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2264196 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.2264337 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000089","","3800"
"10:46:28.2264665 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000034","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:28.2264802 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000051","","2512"
"10:46:28.2265297 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000089","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2265583 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData","0.0000012","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2265685 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:28.2266671 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000140","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2266871 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.2267021 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000046","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2267208 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000043","","3800"
"10:46:28.2267230 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000038","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:28.2267426 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000055","","2512"
"10:46:28.2268522 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000064","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2269431 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000167","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2269798 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000043","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2269990 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000051","","3800"
"10:46:28.2270711 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.2271155 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000043","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:28.2271253 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000128","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2271330 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000055","","2512"
"10:46:28.2271552 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000042","","3800"
"10:46:28.2271846 AM","firefox.exe","7384","CreateFile","C:\","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.2272094 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000123","Filter: Windows, 1: Windows","2512"
"10:46:28.2272333 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:28.2272763 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000133","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2273160 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles","0.0000009","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2273280 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000042","","3800"
"10:46:28.2273314 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.2273544 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:28.2273770 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:28.2274317 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000106","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2274577 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000038","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2274722 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000038","","3800"
"10:46:28.2274743 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.2274961 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\IPHLPAPI.DLL","0.0000205","Filter: IPHLPAPI.DLL, 1: IPHLPAPI.DLL","2512"
"10:46:28.2275272 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000043","","2512"
"10:46:28.2275729 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000068","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2276663 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000103","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2276923 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2277056 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000038","","3800"
"10:46:28.2277905 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.2278011 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2278225 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000038","","3800"
"10:46:28.2278242 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000034","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:28.2278366 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000042","","2512"
"10:46:28.2278720 AM","firefox.exe","7384","CreateFile","C:\","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.2278942 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000111","Filter: Windows, 1: Windows","2512"
"10:46:28.2279163 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:28.2279253 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2279565 AM","firefox.exe","7384","DeviceIoControl","C:\Users","0.0000008","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2279663 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000038","","3800"
"10:46:28.2280256 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000183","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.2280571 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000099","Filter: System32, 1: System32","2512"
"10:46:28.2280785 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:28.2280789 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2281019 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2281143 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000034","","3800"
"10:46:28.2281745 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.2281958 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dnsapi.dll","0.0000141","Filter: dnsapi.dll, 1: dnsapi.dll","2512"
"10:46:28.2282206 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:28.2283306 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome\*","0.0000099","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:28.2284053 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.2284356 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:28.2284471 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000039","","2512"
"10:46:28.2284825 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.2285009 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:28.2285218 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:28.2285261 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\chrome","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:28.2286395 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.2286605 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000106","Filter: System32, 1: System32","2512"
"10:46:28.2286814 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:28.2287885 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.2288094 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dnsapi.dll","0.0000115","Filter: dnsapi.dll, 1: dnsapi.dll","2512"
"10:46:28.2288311 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:28.2288729 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2289075 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000047","CreationTime: 6/19/2019 4:53:26 PM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, FileAttributes: D","3800"
"10:46:28.2289237 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000056","","3800"
"10:46:28.2290214 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.2290615 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dnsapi.dll","0.0000034","AllocationSize: 770,048, EndOfFile: 766,704, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.2290811 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:28.2290944 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dnsapi.dll","0.0000021","AllocationSize: 770,048, EndOfFile: 766,704, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.2291170 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:28.2291264 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2291486 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000029","CreationTime: 2/16/2018 12:59:38 PM, LastAccessTime: 8/16/2019 1:34:27 PM, LastWriteTime: 8/16/2019 1:34:27 PM, ChangeTime: 8/16/2019 1:34:27 PM, FileAttributes: D","3800"
"10:46:28.2291605 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000051","","3800"
"10:46:28.2291797 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000085","","2512"
"10:46:28.2293286 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.2293679 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dnsapi.dll","0.0000030","AllocationSize: 770,048, EndOfFile: 766,704, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.2293841 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:28.2293960 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dnsapi.dll","0.0000017","AllocationSize: 770,048, EndOfFile: 766,704, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.2294093 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2294157 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:28.2294413 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000038","CreationTime: 2/16/2018 12:59:38 PM, LastAccessTime: 3/21/2019 3:00:59 PM, LastWriteTime: 3/21/2019 3:00:59 PM, ChangeTime: 3/21/2019 3:00:59 PM, FileAttributes: D","3800"
"10:46:28.2294643 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000060","","3800"
"10:46:28.2294733 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\dnsapi.dll","0.1165087","Offset: 737,280, Length: 29,424, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:28.2296546 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2296746 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000030","CreationTime: 2/16/2018 12:59:38 PM, LastAccessTime: 2/16/2018 12:59:42 PM, LastWriteTime: 2/16/2018 12:59:42 PM, ChangeTime: 3/20/2019 7:22:59 PM, FileAttributes: D","3800"
"10:46:28.2296849 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000034","","3800"
"10:46:28.2298406 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2298585 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming","0.0000022","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 10/22/2019 8:25:35 PM, LastWriteTime: 10/22/2019 8:25:35 PM, ChangeTime: 10/22/2019 8:25:35 PM, FileAttributes: D","3800"
"10:46:28.2298679 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000034","","3800"
"10:46:28.2300369 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000094","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2300544 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData","0.0000025","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 3/20/2019 7:22:57 PM, LastWriteTime: 3/20/2019 7:22:57 PM, ChangeTime: 3/20/2019 7:22:57 PM, FileAttributes: HD","3800"
"10:46:28.2300642 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000030","","3800"
"10:46:28.2302178 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000089","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2302344 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles","0.0000026","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 5/9/2019 3:17:34 PM, LastWriteTime: 5/9/2019 3:17:34 PM, ChangeTime: 5/9/2019 3:17:34 PM, FileAttributes: D","3800"
"10:46:28.2302438 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:28.2303978 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000090","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2304149 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users","0.0000021","CreationTime: 4/11/2018 2:04:33 PM, LastAccessTime: 3/20/2019 7:21:22 PM, LastWriteTime: 3/20/2019 7:21:22 PM, ChangeTime: 3/20/2019 7:21:22 PM, FileAttributes: RD","3800"
"10:46:28.2304243 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000030","","3800"
"10:46:28.2306500 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions\.","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:28.2308437 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2308663 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000030","CreationTime: 6/19/2019 4:53:36 PM, LastAccessTime: 6/19/2019 4:53:36 PM, LastWriteTime: 6/19/2019 4:53:36 PM, ChangeTime: 6/19/2019 4:53:36 PM, FileAttributes: D","3800"
"10:46:28.2308774 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000034","","3800"
"10:46:28.2309124 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2309333 AM","firefox.exe","7384","QueryDirectory","C:\Users","0.0000107","Filter: Users, 1: Users","3800"
"10:46:28.2309559 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","3800"
"10:46:28.2310481 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2310698 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles","0.0000090","Filter: diggles, 1: diggles","3800"
"10:46:28.2310895 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000038","","3800"
"10:46:28.2311808 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2312017 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData","0.0000089","Filter: AppData, 1: AppData","3800"
"10:46:28.2312209 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000038","","3800"
"10:46:28.2313122 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2313331 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming","0.0000073","Filter: Roaming, 1: Roaming","3800"
"10:46:28.2313502 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:28.2314393 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2314598 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000077","Filter: Mozilla, 1: Mozilla","3800"
"10:46:28.2314773 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000034","","3800"
"10:46:28.2315678 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2315887 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000068","Filter: Firefox, 1: Firefox","3800"
"10:46:28.2316053 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000034","","3800"
"10:46:28.2316979 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2317197 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000081","Filter: Profiles, 1: Profiles","3800"
"10:46:28.2317376 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000034","","3800"
"10:46:28.2318575 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions\.","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2319509 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions\.","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2320499 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions\.","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2321442 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions\.","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2322402 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2323358 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000128","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2323639 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000043","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2323793 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000034","","3800"
"10:46:28.2324778 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000120","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2325017 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000035","","3800"
"10:46:28.2325977 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000116","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2326297 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000013","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2326400 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000034","","3800"
"10:46:28.2327428 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000115","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2327676 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000029","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2327795 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000034","","3800"
"10:46:28.2328781 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2329719 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000115","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2329975 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2330099 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000034","","3800"
"10:46:28.2331038 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000115","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2331264 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000047","","3800"
"10:46:28.2332249 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000107","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2332557 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000008","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2332650 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000035","","3800"
"10:46:28.2333632 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000111","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2333879 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000026","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2334003 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000030","","3800"
"10:46:28.2335048 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2335957 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000111","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2336205 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000029","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2336324 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000034","","3800"
"10:46:28.2337237 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000107","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2337455 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000034","","3800"
"10:46:28.2338364 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2338662 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000009","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2338756 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000034","","3800"
"10:46:28.2339712 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000106","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2339951 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000025","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2340066 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000034","","3800"
"10:46:28.2340992 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000072","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2341862 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000107","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2342105 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2342225 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000034","","3800"
"10:46:28.2343104 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2343317 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000030","","3800"
"10:46:28.2344192 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2344486 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000009","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2344584 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000034","","3800"
"10:46:28.2345506 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2345736 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000026","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2345852 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000034","","3800"
"10:46:28.2346748 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000068","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2347597 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2347827 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2347951 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000034","","3800"
"10:46:28.2348919 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2349133 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000034","","3800"
"10:46:28.2349994 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000099","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2350280 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000013","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2350378 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000035","","3800"
"10:46:28.2351292 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2351518 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2351637 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000034","","3800"
"10:46:28.2352503 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000060","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2353318 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2353540 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2353655 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000039","","3800"
"10:46:28.2354500 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2354701 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000034","","3800"
"10:46:28.2355533 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2356446 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming","0.0000025","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2356642 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000068","","3800"
"10:46:28.2357913 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000124","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2358204 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming","0.0000034","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2358344 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000039","","3800"
"10:46:28.2359339 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000068","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2360371 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2360631 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2360759 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000039","","3800"
"10:46:28.2361664 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2361873 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:28.2362739 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2363033 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData","0.0000009","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2363132 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:28.2364045 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2364271 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2364390 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:28.2365282 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000055","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2366101 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000086","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2366323 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2366443 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000038","","3800"
"10:46:28.2367287 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000086","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2367484 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:28.2368320 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2368593 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles","0.0000013","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2368687 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:28.2369570 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2369779 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2369894 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:28.2370777 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000069","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2371733 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000137","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2372070 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000043","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2372262 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000051","","3800"
"10:46:28.2373564 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000123","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2373858 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000051","","3800"
"10:46:28.2374980 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2375270 AM","firefox.exe","7384","DeviceIoControl","C:\Users","0.0000009","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2375368 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000039","","3800"
"10:46:28.2376264 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000086","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2376482 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2376601 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000035","","3800"
"10:46:28.2379558 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions\.","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:28.2381372 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2381602 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000034","CreationTime: 6/19/2019 4:53:36 PM, LastAccessTime: 6/19/2019 4:53:36 PM, LastWriteTime: 6/19/2019 4:53:36 PM, ChangeTime: 6/19/2019 4:53:36 PM, FileAttributes: D","3800"
"10:46:28.2381717 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions","0.0000034","","3800"
"10:46:28.2383595 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2383804 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000029","CreationTime: 6/19/2019 4:53:26 PM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, FileAttributes: D","3800"
"10:46:28.2383910 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000034","","3800"
"10:46:28.2385630 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2385826 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000026","CreationTime: 2/16/2018 12:59:38 PM, LastAccessTime: 8/16/2019 1:34:27 PM, LastWriteTime: 8/16/2019 1:34:27 PM, ChangeTime: 8/16/2019 1:34:27 PM, FileAttributes: D","3800"
"10:46:28.2385924 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles","0.0000034","","3800"
"10:46:28.2387545 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2387737 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000022","CreationTime: 2/16/2018 12:59:38 PM, LastAccessTime: 3/21/2019 3:00:59 PM, LastWriteTime: 3/21/2019 3:00:59 PM, ChangeTime: 3/21/2019 3:00:59 PM, FileAttributes: D","3800"
"10:46:28.2387836 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox","0.0000029","","3800"
"10:46:28.2389423 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2389606 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000026","CreationTime: 2/16/2018 12:59:38 PM, LastAccessTime: 2/16/2018 12:59:42 PM, LastWriteTime: 2/16/2018 12:59:42 PM, ChangeTime: 3/20/2019 7:22:59 PM, FileAttributes: D","3800"
"10:46:28.2389704 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000030","","3800"
"10:46:28.2391300 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2391479 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming","0.0000022","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 10/22/2019 8:25:35 PM, LastWriteTime: 10/22/2019 8:25:35 PM, ChangeTime: 10/22/2019 8:25:35 PM, FileAttributes: D","3800"
"10:46:28.2391573 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000034","","3800"
"10:46:28.2393139 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000094","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2393314 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData","0.0000026","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 3/20/2019 7:22:57 PM, LastWriteTime: 3/20/2019 7:22:57 PM, ChangeTime: 3/20/2019 7:22:57 PM, FileAttributes: HD","3800"
"10:46:28.2393408 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:28.2394918 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000090","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2395085 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles","0.0000025","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 5/9/2019 3:17:34 PM, LastWriteTime: 5/9/2019 3:17:34 PM, ChangeTime: 5/9/2019 3:17:34 PM, FileAttributes: D","3800"
"10:46:28.2395179 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000029","","3800"
"10:46:28.2396766 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000094","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2396941 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users","0.0000021","CreationTime: 4/11/2018 2:04:33 PM, LastAccessTime: 3/20/2019 7:21:22 PM, LastWriteTime: 3/20/2019 7:21:22 PM, ChangeTime: 3/20/2019 7:21:22 PM, FileAttributes: RD","3800"
"10:46:28.2397030 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000034","","3800"
"10:46:28.2399061 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev\.","0.0000086","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:28.2400815 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2401041 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000030","CreationTime: 2/16/2018 12:59:42 PM, LastAccessTime: 2/16/2018 12:59:42 PM, LastWriteTime: 2/16/2018 12:59:42 PM, ChangeTime: 2/16/2018 12:59:42 PM, FileAttributes: D","3800"
"10:46:28.2401148 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000034","","3800"
"10:46:28.2401489 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2401698 AM","firefox.exe","7384","QueryDirectory","C:\Users","0.0000111","Filter: Users, 1: Users","3800"
"10:46:28.2401933 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","3800"
"10:46:28.2402816 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000043","Offset: 123, Length: 1","7852"
"10:46:28.2403281 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2403605 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles","0.0000124","Filter: diggles, 1: diggles","3800"
"10:46:28.2403891 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000068","","3800"
"10:46:28.2405346 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2405615 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData","0.0000119","Filter: AppData, 1: AppData","3800"
"10:46:28.2405871 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000047","","3800"
"10:46:28.2406856 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2407074 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming","0.0000073","Filter: Roaming, 1: Roaming","3800"
"10:46:28.2407249 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000038","","3800"
"10:46:28.2408162 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2408375 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000081","Filter: Mozilla, 1: Mozilla","3800"
"10:46:28.2408555 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000038","","3800"
"10:46:28.2409745 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev\.","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2410620 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev\.","0.0000072","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2411520 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev\.","0.0000072","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2412412 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev\.","0.0000072","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2413291 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000068","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2414157 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000111","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2414421 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000039","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2414566 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000039","","3800"
"10:46:28.2415475 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000107","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2415697 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000038","","3800"
"10:46:28.2416648 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000103","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2416960 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000013","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2417062 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000034","","3800"
"10:46:28.2418125 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000106","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2418364 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000047","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2418504 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000039","","3800"
"10:46:28.2419789 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2421073 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000154","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2421431 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000043","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2421623 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000052","","3800"
"10:46:28.2422647 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000107","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2422869 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000030","","3800"
"10:46:28.2423748 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2424047 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000013","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2424145 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000034","","3800"
"10:46:28.2425067 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2425293 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2425416 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000030","","3800"
"10:46:28.2426517 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000064","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2427349 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2427580 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming","0.0000025","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2427699 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000039","","3800"
"10:46:28.2428552 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2428753 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000030","","3800"
"10:46:28.2429589 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2429867 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming","0.0000008","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2429960 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000035","","3800"
"10:46:28.2430839 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2431053 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2431168 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000034","","3800"
"10:46:28.2432136 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000060","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2433041 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2433267 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2433391 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000030","","3800"
"10:46:28.2434240 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2434440 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000030","","3800"
"10:46:28.2435285 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2435558 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData","0.0000009","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2435652 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:28.2436557 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2436770 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000026","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2436885 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000030","","3800"
"10:46:28.2437832 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000052","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2438635 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2438848 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000026","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2438967 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000035","","3800"
"10:46:28.2439795 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2439991 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000030","","3800"
"10:46:28.2440815 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2441084 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles","0.0000012","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2441178 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:28.2442044 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2442253 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000025","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2442364 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:28.2443247 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000055","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2444053 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000086","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2444267 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000029","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2444386 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000034","","3800"
"10:46:28.2445291 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2445487 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000030","","3800"
"10:46:28.2446306 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000077","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2446571 AM","firefox.exe","7384","DeviceIoControl","C:\Users","0.0000008","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2446664 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000035","","3800"
"10:46:28.2447531 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2447744 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2447859 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000034","","3800"
"10:46:28.2450389 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev\.","0.0000086","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:28.2451976 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2452168 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000035","CreationTime: 2/16/2018 12:59:42 PM, LastAccessTime: 2/16/2018 12:59:42 PM, LastWriteTime: 2/16/2018 12:59:42 PM, ChangeTime: 2/16/2018 12:59:42 PM, FileAttributes: D","3800"
"10:46:28.2452279 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\SystemExtensionsDev","0.0000030","","3800"
"10:46:28.2453888 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2454076 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000030","CreationTime: 2/16/2018 12:59:38 PM, LastAccessTime: 2/16/2018 12:59:42 PM, LastWriteTime: 2/16/2018 12:59:42 PM, ChangeTime: 3/20/2019 7:22:59 PM, FileAttributes: D","3800"
"10:46:28.2454178 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000034","","3800"
"10:46:28.2456038 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2456235 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming","0.0000025","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 10/22/2019 8:25:35 PM, LastWriteTime: 10/22/2019 8:25:35 PM, ChangeTime: 10/22/2019 8:25:35 PM, FileAttributes: D","3800"
"10:46:28.2456333 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000034","","3800"
"10:46:28.2458248 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000094","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2458423 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData","0.0000026","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 3/20/2019 7:22:57 PM, LastWriteTime: 3/20/2019 7:22:57 PM, ChangeTime: 3/20/2019 7:22:57 PM, FileAttributes: HD","3800"
"10:46:28.2458522 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:28.2460049 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000090","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2460220 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles","0.0000021","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 5/9/2019 3:17:34 PM, LastWriteTime: 5/9/2019 3:17:34 PM, ChangeTime: 5/9/2019 3:17:34 PM, FileAttributes: D","3800"
"10:46:28.2460314 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000029","","3800"
"10:46:28.2461828 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000090","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2461999 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users","0.0000021","CreationTime: 4/11/2018 2:04:33 PM, LastAccessTime: 3/20/2019 7:21:22 PM, LastWriteTime: 3/20/2019 7:21:22 PM, ChangeTime: 3/20/2019 7:21:22 PM, FileAttributes: RD","3800"
"10:46:28.2462093 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000030","","3800"
"10:46:28.2464350 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions\.","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:28.2466833 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2467145 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000042","CreationTime: 2/16/2018 12:59:40 PM, LastAccessTime: 2/16/2018 12:59:40 PM, LastWriteTime: 2/16/2018 12:59:40 PM, ChangeTime: 2/16/2018 12:59:40 PM, FileAttributes: D","3800"
"10:46:28.2467277 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000038","","3800"
"10:46:28.2467635 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2467849 AM","firefox.exe","7384","QueryDirectory","C:\Users","0.0000115","Filter: Users, 1: Users","3800"
"10:46:28.2468079 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","3800"
"10:46:28.2469018 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2469231 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles","0.0000090","Filter: diggles, 1: diggles","3800"
"10:46:28.2469427 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000039","","3800"
"10:46:28.2470336 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2470545 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData","0.0000090","Filter: AppData, 1: AppData","3800"
"10:46:28.2470737 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:28.2471646 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2471851 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming","0.0000068","Filter: Roaming, 1: Roaming","3800"
"10:46:28.2472026 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:28.2472913 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2473114 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000076","Filter: Mozilla, 1: Mozilla","3800"
"10:46:28.2473293 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000034","","3800"
"10:46:28.2474436 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions\.","0.0000077","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2475290 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions\.","0.0000068","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2476117 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions\.","0.0000069","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2477013 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions\.","0.0000069","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2477888 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000068","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2478737 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000111","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2478997 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000039","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2479142 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000039","","3800"
"10:46:28.2480034 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000107","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2480252 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000030","","3800"
"10:46:28.2481126 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000103","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2481429 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000013","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2481591 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000035","","3800"
"10:46:28.2482513 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000107","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2482748 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2482867 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000034","","3800"
"10:46:28.2483772 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000068","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2484625 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000102","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2484860 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2484979 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000034","","3800"
"10:46:28.2485841 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2486050 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000030","","3800"
"10:46:28.2486980 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2487266 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000009","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2487356 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000034","","3800"
"10:46:28.2488269 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2488495 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000026","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2488610 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000030","","3800"
"10:46:28.2489472 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000055","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2490278 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000094","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2490496 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2490611 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000034","","3800"
"10:46:28.2491447 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2491644 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000030","","3800"
"10:46:28.2492467 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000090","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2492740 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData\Roaming","0.0000009","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2492834 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000030","","3800"
"10:46:28.2493705 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000089","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2493914 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData\Roaming","0.0000029","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2494029 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000034","","3800"
"10:46:28.2494908 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000055","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2495727 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2495940 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2496060 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000030","","3800"
"10:46:28.2496900 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000086","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2497092 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000030","","3800"
"10:46:28.2497933 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2498202 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles\AppData","0.0000012","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2498295 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000035","","3800"
"10:46:28.2499179 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2499392 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles\AppData","0.0000026","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2499503 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000034","","3800"
"10:46:28.2500425 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000055","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2501218 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2501431 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2501551 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000034","","3800"
"10:46:28.2502379 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2502566 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000030","","3800"
"10:46:28.2503377 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2503642 AM","firefox.exe","7384","DeviceIoControl","C:\Users\diggles","0.0000008","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2503735 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000035","","3800"
"10:46:28.2504738 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000128","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2505054 AM","firefox.exe","7384","FileSystemControl","C:\Users\diggles","0.0000038","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2505233 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000051","","3800"
"10:46:28.2506564 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000077","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a","3800"
"10:46:28.2507721 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000098","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2507959 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000030","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2508083 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000039","","3800"
"10:46:28.2508941 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2509137 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000030","","3800"
"10:46:28.2509956 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000081","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2510225 AM","firefox.exe","7384","DeviceIoControl","C:\Users","0.0000009","Control: IOCTL_MOUNTDEV_QUERY_DEVICE_NAME","3800"
"10:46:28.2510315 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000034","","3800"
"10:46:28.2511177 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000085","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2511390 AM","firefox.exe","7384","FileSystemControl","C:\Users","0.0000025","Control: FSCTL_GET_REPARSE_POINT","3800"
"10:46:28.2511505 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000030","","3800"
"10:46:28.2514287 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions\.","0.0000085","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","3800"
"10:46:28.2515955 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2516164 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000030","CreationTime: 2/16/2018 12:59:40 PM, LastAccessTime: 2/16/2018 12:59:40 PM, LastWriteTime: 2/16/2018 12:59:40 PM, ChangeTime: 2/16/2018 12:59:40 PM, FileAttributes: D","3800"
"10:46:28.2516267 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Extensions","0.0000034","","3800"
"10:46:28.2517897 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2518093 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000025","CreationTime: 2/16/2018 12:59:38 PM, LastAccessTime: 2/16/2018 12:59:42 PM, LastWriteTime: 2/16/2018 12:59:42 PM, ChangeTime: 3/20/2019 7:22:59 PM, FileAttributes: D","3800"
"10:46:28.2518187 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla","0.0000030","","3800"
"10:46:28.2519718 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming","0.0000094","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2519889 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming","0.0000026","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 10/22/2019 8:25:35 PM, LastWriteTime: 10/22/2019 8:25:35 PM, ChangeTime: 10/22/2019 8:25:35 PM, FileAttributes: D","3800"
"10:46:28.2519987 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming","0.0000030","","3800"
"10:46:28.2521549 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData","0.0000089","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2521720 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData","0.0000025","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 3/20/2019 7:22:57 PM, LastWriteTime: 3/20/2019 7:22:57 PM, ChangeTime: 3/20/2019 7:22:57 PM, FileAttributes: HD","3800"
"10:46:28.2521813 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData","0.0000030","","3800"
"10:46:28.2523307 AM","firefox.exe","7384","CreateFile","C:\Users\diggles","0.0000089","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2523473 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles","0.0000026","CreationTime: 3/20/2019 7:21:22 PM, LastAccessTime: 5/9/2019 3:17:34 PM, LastWriteTime: 5/9/2019 3:17:34 PM, ChangeTime: 5/9/2019 3:17:34 PM, FileAttributes: D","3800"
"10:46:28.2523567 AM","firefox.exe","7384","CloseFile","C:\Users\diggles","0.0000030","","3800"
"10:46:28.2525069 AM","firefox.exe","7384","CreateFile","C:\Users","0.0000094","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2525240 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users","0.0000025","CreationTime: 4/11/2018 2:04:33 PM, LastAccessTime: 3/20/2019 7:21:22 PM, LastWriteTime: 3/20/2019 7:21:22 PM, ChangeTime: 3/20/2019 7:21:22 PM, FileAttributes: RD","3800"
"10:46:28.2525333 AM","firefox.exe","7384","CloseFile","C:\Users","0.0000030","","3800"
"10:46:28.2535945 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000068","Desired Access: Query Value, Enumerate Sub Keys","3800"
"10:46:28.2536175 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Wow64\x86\xtajit","0.0000124","Desired Access: Query Value","3800"
"10:46:28.2537711 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000166","Desired Access: Read Data/List Directory, Execute/Traverse, Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2538065 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\firefox.exe","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE","3800"
"10:46:28.2538334 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\firefox.exe","0.0000017","SyncType: SyncTypeOther","3800"
"10:46:28.2538667 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000038","Desired Access: Query Value, Enumerate Sub Keys","3800"
"10:46:28.2539243 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000030","Information: Label","3800"
"10:46:28.2539874 AM","firefox.exe","7384","QueryNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000043","Name: \Program Files\Firefox Nightly\firefox.exe","3800"
"10:46:28.2540216 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000021","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","3800"
"10:46:28.2540403 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\ntdll.dll","0.0000017","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","3800"
"10:46:28.2542754 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Services\bam\UserSettings\S-1-5-21-429253301-29906273-2566354956-1001","0.0000312","Desired Access: All Access","3800"
"10:46:28.2543236 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Services\bam\UserSettings\S-1-5-21-429253301-29906273-2566354956-1001\\Device\HarddiskVolume3\Program Files\Firefox Nightly\firefox.exe","0.0000052","Type: REG_BINARY, Length: 24, Data: 91 85 78 78 96 03 D6 01 00 00 00 00 00 00 00 00","3800"
"10:46:28.2543403 AM","firefox.exe","7384","RegSetValue","HKLM\System\CurrentControlSet\Services\bam\UserSettings\S-1-5-21-429253301-29906273-2566354956-1001\\Device\HarddiskVolume3\Program Files\Firefox Nightly\firefox.exe","0.0000362","Type: REG_BINARY, Length: 24, Data: F4 F9 1B 7A 96 03 D6 01 00 00 00 00 00 00 00 00","3800"
"10:46:28.2543915 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Services\bam\UserSettings\S-1-5-21-429253301-29906273-2566354956-1001","0.0000013","","3800"
"10:46:28.2544047 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\BAM","0.0000055","Desired Access: Query Value","3800"
"10:46:28.2544192 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager\BAM","0.0000047","Desired Access: Query Value","3800"
"10:46:28.2544452 AM","firefox.exe","7384","Process Create","C:\Program Files\Firefox Nightly\firefox.exe","0.0000000","PID: 7904, Command line: ""C:\Program Files\Firefox Nightly\firefox.exe"" -contentproc --channel=""7384.24.824375647\1167043412"" -childID 3 -isForBrowser -prefsHandle 4344 -prefMapHandle 4340 -prefsLen 6804 -prefMapSize 227134 -parentBuildID 20200325093457 -appdir ""C:\Program Files\Firefox Nightly\browser"" - 7384 ""\\.\pipe\gecko-crash-server-pipe.7384"" 4356 tab","3800"
"10:46:28.2544525 AM","firefox.exe","7904","Process Start","","0.0000000","Parent PID: 7384, Command line: ""C:\Program Files\Firefox Nightly\firefox.exe"" -contentproc --channel=""7384.24.824375647\1167043412"" -childID 3 -isForBrowser -prefsHandle 4344 -prefMapHandle 4340 -prefsLen 6804 -prefMapSize 227134 -parentBuildID 20200325093457 -appdir ""C:\Program Files\Firefox Nightly\browser"" - 7384 ""\\.\pipe\gecko-crash-server-pipe.7384"" 4356 tab, Current directory: C:\Program Files\Firefox Nightly\, Environment: ;	=::=::\;	ALLUSERSPROFILE=C:\ProgramData;	APPDATA=C:\Users\diggles\AppData\Roaming;	CommonProgramFiles=C:\Program Files\Common Files;	CommonProgramFiles(x86)=C:\Program Files (x86)\Common Files;	CommonProgramW6432=C:\Program Files\Common Files;	COMPUTERNAME=LAPTOP-49TAGD3F;	ComSpec=C:\WINDOWS\system32\cmd.exe;	DriverData=C:\Windows\System32\Drivers\DriverData;	HOMEDRIVE=C:;	HOMEPATH=\Users\diggles;	LOCALAPPDATA=C:\Users\diggles\AppData\Local;	LOGONSERVER=\\LAPTOP-49TAGD3F;	MOZ_CRASHREPORTER_DATA_DIRECTORY=C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Crash Reports;	MOZ_CRASHREPORTER_EVENTS_DIRECTORY=C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\crashes\events;	MOZ_CRASHREPORTER_PING_DIRECTORY=C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Pending Pings;	MOZ_CRASHREPORTER_RESTART_ARG_0=C:\Program Files\Firefox Nightly\firefox.exe;	MOZ_CRASHREPORTER_STRINGS_OVERRIDE=C:\Program Files\Firefox Nightly\browser\crashreporter-override.ini;	NUMBER_OF_PROCESSORS=4;	OneDrive=C:\Users\diggles\OneDrive;	OS=Windows_NT;	Path=C:\Program Files\Firefox Nightly;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\WINDOWS\System32\OpenSSH\;C:\Users\diggles\AppData\Local\Microsoft\WindowsApps;;	PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC;	PROCESSOR_ARCHITECTURE=AMD64;	PROCESSOR_IDENTIFIER=Intel64 Family 6 Model 142 Stepping 9, GenuineIntel;	PROCESSOR_LEVEL=6;	PROCESSOR_REVISION=8e09;	ProgramData=C:\ProgramData;	ProgramFiles=C:\Program Files;	ProgramFiles(x86)=C:\Program Files (x86);	ProgramW6432=C:\Program Files;	PSModulePath=C:\Program Files\WindowsPowerShell\Modules;C:\WINDOWS\system32\WindowsPowerShell\v1.0\Modules;	PUBLIC=C:\Users\Public;	SESSIONNAME=Console;	SystemDrive=C:;	SystemRoot=C:\WINDOWS;	TEMP=C:\Users\diggles\AppData\Local\Temp;	TMP=C:\Users\diggles\AppData\Local\Temp;	USERDOMAIN=LAPTOP-49TAGD3F;	USERDOMAIN_ROAMINGPROFILE=LAPTOP-49TAGD3F;	USERNAME=diggles;	USERPROFILE=C:\Users\diggles;	windir=C:\WINDOWS","3800"
"10:46:28.2544623 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 8004","3800"
"10:46:28.2544998 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders","0.0000116","Desired Access: Query Value","3800"
"10:46:28.2545233 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Cache","0.0000047","Type: REG_SZ, Length: 118, Data: C:\Users\diggles\AppData\Local\Microsoft\Windows\INetCache","3800"
"10:46:28.2545395 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders","0.0000013","","3800"
"10:46:28.2545506 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Layers","0.0000060","Desired Access: Query Value","3800"
"10:46:28.2545784 AM","firefox.exe","7384","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000029","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","3800"
"10:46:28.2547021 AM","firefox.exe","7384","CreateFile","C:\Windows\apppatch\sysmain.sdb","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2547426 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\apppatch\sysmain.sdb","0.0000039","CreationTime: 4/25/2019 5:35:45 PM, LastAccessTime: 4/25/2019 5:35:45 PM, LastWriteTime: 2/16/2019 1:02:22 AM, ChangeTime: 4/25/2019 8:14:04 PM, FileAttributes: A","3800"
"10:46:28.2547546 AM","firefox.exe","7384","CloseFile","C:\Windows\apppatch\sysmain.sdb","0.0000059","","3800"
"10:46:28.2547891 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000022","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","3800"
"10:46:28.2548489 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\SideBySide","0.0000081","Desired Access: Read","3800"
"10:46:28.2548668 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest","0.0000030","Length: 20","3800"
"10:46:28.2548800 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide","0.0000013","","3800"
"10:46:28.2553865 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000068","","3800"
"10:46:28.2564796 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000153","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","3800"
"10:46:28.2565176 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000179","Offset: 264, Length: 8, Priority: Normal","3800"
"10:46:28.2565692 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000064","","3800"
"10:46:28.2566660 AM","firefox.exe","7904","Load Image","C:\Program Files\Firefox Nightly\firefox.exe","0.0000000","Image Base: 0x7ff7bb360000, Image Size: 0x93000","8004"
"10:46:28.2567104 AM","firefox.exe","7904","Load Image","C:\Windows\System32\ntdll.dll","0.0000000","Image Base: 0x7ffb49780000, Image Size: 0x1e1000","8004"
"10:46:28.2568960 AM","firefox.exe","7904","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\Segment Heap","0.0000094","Desired Access: Query Value","8004"
"10:46:28.2569139 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager\Segment Heap","0.0000056","Desired Access: Query Value","8004"
"10:46:28.2569737 AM","firefox.exe","7904","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager","0.0000038","Desired Access: Query Value, Enumerate Sub Keys","8004"
"10:46:28.2569835 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000072","Desired Access: Query Value, Enumerate Sub Keys","8004"
"10:46:28.2569993 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\ResourcePolicies","0.0000038","Length: 24","8004"
"10:46:28.2570121 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000017","","8004"
"10:46:28.2574136 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly","0.0000166","Desired Access: Execute/Traverse, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2575172 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\kernel32.dll","0.0000069","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.2576359 AM","firefox.exe","7904","Load Image","C:\Windows\System32\kernel32.dll","0.0000000","Image Base: 0x7ffb470b0000, Image Size: 0xb1000","8004"
"10:46:28.2576687 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\kernel32.dll","0.0000081","Name: \Windows\System32\kernel32.dll","8004"
"10:46:28.2579968 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\KernelBase.dll","0.0000064","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.2580890 AM","firefox.exe","7904","Load Image","C:\Windows\System32\KernelBase.dll","0.0000000","Image Base: 0x7ffb46720000, Image Size: 0x273000","8004"
"10:46:28.2581658 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\KernelBase.dll","0.0000166","Name: \Windows\System32\KernelBase.dll","8004"
"10:46:28.2600149 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\SafeBoot\Option","0.0000111","Desired Access: Query Value, Set Value","8004"
"10:46:28.2600371 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\SafeBoot\Option","0.0000478","Desired Access: Query Value, Set Value","8004"
"10:46:28.2600964 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Srp\GP\DLL","0.0000047","Desired Access: Read","8004"
"10:46:28.2601088 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Srp\GP\DLL","0.0000120","Desired Access: Read","8004"
"10:46:28.2601319 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers","0.0000196","Desired Access: Query Value","8004"
"10:46:28.2601651 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Windows\safer\codeidentifiers\TransparentEnabled","0.0000047","Length: 80","8004"
"10:46:28.2601818 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\safer\codeidentifiers","0.0000021","","8004"
"10:46:28.2602048 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers","0.0000090","Desired Access: Query Value","8004"
"10:46:28.2602543 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\FileSystem\","0.0000051","Desired Access: Read","8004"
"10:46:28.2602684 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\FileSystem","0.0000068","Desired Access: Read","8004"
"10:46:28.2602867 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\FileSystem\LongPathsEnabled","0.0000047","Type: REG_DWORD, Length: 4, Data: 0","8004"
"10:46:28.2603029 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\FileSystem","0.0000018","","8004"
"10:46:28.2604834 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly","0.0000222","Desired Access: Execute/Traverse, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2605611 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\advapi32.dll","0.0000047","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.2606477 AM","firefox.exe","7904","Load Image","C:\Windows\System32\advapi32.dll","0.0000000","Image Base: 0x7ffb48a60000, Image Size: 0xa1000","8004"
"10:46:28.2606767 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\advapi32.dll","0.0000064","Name: \Windows\System32\advapi32.dll","8004"
"10:46:28.2608282 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\msvcrt.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.2609289 AM","firefox.exe","7904","Load Image","C:\Windows\System32\msvcrt.dll","0.0000000","Image Base: 0x7ffb48e80000, Image Size: 0x9e000","8004"
"10:46:28.2609600 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\msvcrt.dll","0.0000149","Name: \Windows\System32\msvcrt.dll","8004"
"10:46:28.2611025 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\sechost.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.2611537 AM","firefox.exe","7904","Load Image","C:\Windows\System32\sechost.dll","0.0000000","Image Base: 0x7ffb48e20000, Image Size: 0x5b000","8004"
"10:46:28.2611725 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000043","Name: \Windows\System32\sechost.dll","8004"
"10:46:28.2612570 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\rpcrt4.dll","0.0000025","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.2613039 AM","firefox.exe","7904","Load Image","C:\Windows\System32\rpcrt4.dll","0.0000000","Image Base: 0x7ffb471a0000, Image Size: 0x124000","8004"
"10:46:28.2613287 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000042","Name: \Windows\System32\rpcrt4.dll","8004"
"10:46:28.2614891 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\ucrtbase.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.2615390 AM","firefox.exe","7904","Load Image","C:\Windows\System32\ucrtbase.dll","0.0000000","Image Base: 0x7ffb45da0000, Image Size: 0xf8000","8004"
"10:46:28.2615561 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000042","Name: \Windows\System32\ucrtbase.dll","8004"
"10:46:28.2618663 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2618927 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8004"
"10:46:28.2619025 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000051","","8004"
"10:46:28.2621487 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000201","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2621927 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.2622503 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000034","SyncType: SyncTypeOther","8004"
"10:46:28.2622870 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000042","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.2623505 AM","firefox.exe","7904","Load Image","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000000","Image Base: 0x7ffb3c6d0000, Image Size: 0x8f000","8004"
"10:46:28.2623791 AM","firefox.exe","7904","QueryNameInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000077","Name: \Program Files\Firefox Nightly\mozglue.dll","8004"
"10:46:28.2625421 AM","firefox.exe","7904","RegOpenKey","HKCU","0.0000158","Desired Access: Maximum Allowed, Granted Access: Read, Create Link","8004"
"10:46:28.2625814 AM","firefox.exe","7904","RegOpenKey","HKCU\Control Panel\Desktop\MuiCached\MachineLanguageConfiguration","0.0000157","Desired Access: Read","8004"
"10:46:28.2626146 AM","firefox.exe","7904","RegCloseKey","HKCU","0.0000017","","8004"
"10:46:28.2626313 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Policies\Microsoft\MUI\Settings","0.0000089","Desired Access: Read","8004"
"10:46:28.2626654 AM","firefox.exe","7904","RegOpenKey","HKCU","0.0000192","Desired Access: Maximum Allowed, Granted Access: Read, Create Link","8004"
"10:46:28.2626991 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Policies\Microsoft\Control Panel\Desktop","0.0000064","Desired Access: Read","8004"
"10:46:28.2627166 AM","firefox.exe","7904","RegOpenKey","HKCU\Control Panel\Desktop\LanguageConfiguration","0.0000098","Desired Access: Read","8004"
"10:46:28.2627418 AM","firefox.exe","7904","RegEnumValue","HKCU\Control Panel\Desktop\LanguageConfiguration","0.0000034","Index: 0, Length: 512","8004"
"10:46:28.2627563 AM","firefox.exe","7904","RegCloseKey","HKCU\Control Panel\Desktop\LanguageConfiguration","0.0000017","","8004"
"10:46:28.2627691 AM","firefox.exe","7904","RegCloseKey","HKCU","0.0000017","","8004"
"10:46:28.2627823 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Policies\Microsoft\MUI\Settings","0.0000064","Desired Access: Read","8004"
"10:46:28.2628015 AM","firefox.exe","7904","RegOpenKey","HKCU","0.0000060","Desired Access: Maximum Allowed, Granted Access: Read, Create Link","8004"
"10:46:28.2628194 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Policies\Microsoft\Control Panel\Desktop","0.0000039","Desired Access: Read","8004"
"10:46:28.2628310 AM","firefox.exe","7904","RegOpenKey","HKCU\Control Panel\Desktop","0.0000034","Desired Access: Read","8004"
"10:46:28.2628433 AM","firefox.exe","7904","RegQueryValue","HKCU\Control Panel\Desktop\PreferredUILanguages","0.0000039","Length: 12","8004"
"10:46:28.2628566 AM","firefox.exe","7904","RegCloseKey","HKCU\Control Panel\Desktop","0.0000008","","8004"
"10:46:28.2628647 AM","firefox.exe","7904","RegCloseKey","HKCU","0.0000012","","8004"
"10:46:28.2628740 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Policies\Microsoft\MUI\Settings","0.0000039","Desired Access: Read","8004"
"10:46:28.2628873 AM","firefox.exe","7904","RegOpenKey","HKCU","0.0000038","Desired Access: Maximum Allowed, Granted Access: Read, Create Link","8004"
"10:46:28.2628996 AM","firefox.exe","7904","RegOpenKey","HKCU\Control Panel\Desktop\MuiCached","0.0000077","Desired Access: Read","8004"
"10:46:28.2629163 AM","firefox.exe","7904","RegQueryValue","HKCU\Control Panel\Desktop\MuiCached\MachinePreferredUILanguages","0.0000025","Length: 12","8004"
"10:46:28.2629257 AM","firefox.exe","7904","RegQueryValue","HKCU\Control Panel\Desktop\MuiCached\MachinePreferredUILanguages","0.0000030","Type: REG_MULTI_SZ, Length: 12, Data: en-US","8004"
"10:46:28.2629385 AM","firefox.exe","7904","RegCloseKey","HKCU\Control Panel\Desktop\MuiCached","0.0000013","","8004"
"10:46:28.2629470 AM","firefox.exe","7904","RegCloseKey","HKCU","0.0000013","","8004"
"10:46:28.2629931 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\SideBySide","0.0000085","Desired Access: Read","8004"
"10:46:28.2630089 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest","0.0000030","Length: 20","8004"
"10:46:28.2630187 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide","0.0000013","","8004"
"10:46:28.2631689 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000175","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2634577 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000056","","8004"
"10:46:28.2635704 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\crypt32.dll","0.0000030","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.2636425 AM","firefox.exe","7904","Load Image","C:\Windows\System32\crypt32.dll","0.0000000","Image Base: 0x7ffb469a0000, Image Size: 0x1e2000","8004"
"10:46:28.2636655 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\crypt32.dll","0.0000047","Name: \Windows\System32\crypt32.dll","8004"
"10:46:28.2638349 AM","firefox.exe","7904","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager","0.0000085","Desired Access: Query Value, Enumerate Sub Keys","8004"
"10:46:28.2638528 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000068","Desired Access: Query Value, Enumerate Sub Keys","8004"
"10:46:28.2638695 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\ResourcePolicies","0.0000034","Length: 24","8004"
"10:46:28.2638831 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000009","","8004"
"10:46:28.2639305 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\msasn1.dll","0.0000030","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.2639842 AM","firefox.exe","7904","Load Image","C:\Windows\System32\msasn1.dll","0.0000000","Image Base: 0x7ffb45b10000, Image Size: 0x12000","8004"
"10:46:28.2640094 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\msasn1.dll","0.0000051","Name: \Windows\System32\msasn1.dll","8004"
"10:46:28.2641242 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\wintrust.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.2641758 AM","firefox.exe","7904","Load Image","C:\Windows\System32\wintrust.dll","0.0000000","Image Base: 0x7ffb45ea0000, Image Size: 0x57000","8004"
"10:46:28.2641963 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\wintrust.dll","0.0000055","Name: \Windows\System32\wintrust.dll","8004"
"10:46:28.2644126 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000081","","8004"
"10:46:28.2648363 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000077","Desired Access: Query Value","8004"
"10:46:28.2648529 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000069","Desired Access: Query Value","8004"
"10:46:28.2648700 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\SafeDllSearchMode","0.0000030","Length: 16","8004"
"10:46:28.2652019 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2652301 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000034","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","8004"
"10:46:28.2652399 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000047","","8004"
"10:46:28.2654230 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000345","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2654793 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.2655044 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000018","SyncType: SyncTypeOther","8004"
"10:46:28.2655313 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\msvcp140.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.2655885 AM","firefox.exe","7904","Load Image","C:\Windows\System32\msvcp140.dll","0.0000000","Image Base: 0x7ffb1dfe0000, Image Size: 0xa7000","8004"
"10:46:28.2656154 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\msvcp140.dll","0.0000055","Name: \Windows\System32\msvcp140.dll","8004"
"10:46:28.2657417 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000094","","8004"
"10:46:28.2661914 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2662212 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000039","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","8004"
"10:46:28.2662328 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000051","","8004"
"10:46:28.2663527 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000149","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2663885 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.2664132 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000018","SyncType: SyncTypeOther","8004"
"10:46:28.2664359 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\vcruntime140.dll","0.0000025","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.2664824 AM","firefox.exe","7904","Load Image","C:\Windows\System32\vcruntime140.dll","0.0000000","Image Base: 0x7ffb3c690000, Image Size: 0x16000","8004"
"10:46:28.2665003 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000081","Name: \Windows\System32\vcruntime140.dll","8004"
"10:46:28.2665882 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000068","","8004"
"10:46:28.2672815 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\version.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2673272 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000038","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","8004"
"10:46:28.2673413 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\version.dll","0.0000059","","8004"
"10:46:28.2675017 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\version.dll","0.0000166","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2675571 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\version.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.2675819 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\version.dll","0.0000017","SyncType: SyncTypeOther","8004"
"10:46:28.2676045 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\version.dll","0.0000030","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.2676937 AM","firefox.exe","7904","Load Image","C:\Windows\System32\version.dll","0.0000000","Image Base: 0x7ffb39300000, Image Size: 0xa000","8004"
"10:46:28.2677180 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\version.dll","0.0000043","Name: \Windows\System32\version.dll","8004"
"10:46:28.2678230 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\version.dll","0.0000170","","8004"
"10:46:28.2682249 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2682590 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","8004"
"10:46:28.2682684 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000047","","8004"
"10:46:28.2684659 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000376","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2685308 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000026","SyncType: SyncTypeOther","8004"
"10:46:28.2687134 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.2687318 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000017","SyncType: SyncTypeOther","8004"
"10:46:28.2687561 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\dbghelp.dll","0.0000025","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.2688252 AM","firefox.exe","7904","Load Image","C:\Windows\System32\dbghelp.dll","0.0000000","Image Base: 0x7ffb37030000, Image Size: 0x1c9000","8004"
"10:46:28.2688546 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\dbghelp.dll","0.0000052","Name: \Windows\System32\dbghelp.dll","8004"
"10:46:28.2689839 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000073","","8004"
"10:46:28.2692066 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2692310 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000034","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","8004"
"10:46:28.2692399 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000047","","8004"
"10:46:28.2694904 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2695207 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000030","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","8004"
"10:46:28.2695305 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000060","","8004"
"10:46:28.2697340 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2697541 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000025","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","8004"
"10:46:28.2697643 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000055","","8004"
"10:46:28.2704649 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2704994 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000436","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","8004"
"10:46:28.2705558 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000068","","8004"
"10:46:28.2705801 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\ShutdownDuration.json","0.0791485","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8844"
"10:46:28.2707098 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000175","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2707456 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.2707665 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000013","SyncType: SyncTypeOther","8004"
"10:46:28.2707874 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\cryptbase.dll","0.0000030","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.2708527 AM","firefox.exe","7904","Load Image","C:\Windows\System32\cryptbase.dll","0.0000000","Image Base: 0x7ffb45480000, Image Size: 0xb000","8004"
"10:46:28.2708792 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\cryptbase.dll","0.0000051","Name: \Windows\System32\cryptbase.dll","8004"
"10:46:28.2710042 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\bcryptprimitives.dll","0.0000030","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.2710562 AM","firefox.exe","7904","Load Image","C:\Windows\System32\bcryptprimitives.dll","0.0000000","Image Base: 0x7ffb46b90000, Image Size: 0x7a000","8004"
"10:46:28.2710742 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000047","Name: \Windows\System32\bcryptprimitives.dll","8004"
"10:46:28.2711714 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000077","","8004"
"10:46:28.2714479 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2714744 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","8004"
"10:46:28.2714859 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000047","","8004"
"10:46:28.2720278 AM","firefox.exe","7904","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager","0.0000072","Desired Access: Query Value, Enumerate Sub Keys","8004"
"10:46:28.2720465 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000077","Desired Access: Query Value, Enumerate Sub Keys","8004"
"10:46:28.2720666 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\ResourcePolicies","0.0000038","Length: 24","8004"
"10:46:28.2720828 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000017","","8004"
"10:46:28.2721349 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Versions","0.0000047","Desired Access: Read","8004"
"10:46:28.2721472 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Versions","0.0000056","Desired Access: Read","8004"
"10:46:28.2721639 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Versions\(Default)","0.0000038","Type: REG_SZ, Length: 18, Data: 0006020E","8004"
"10:46:28.2724378 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000060","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8500"
"10:46:28.2724600 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000025","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8500"
"10:46:28.2724800 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000022","Offset: 1,073,741,824, Length: 1","8500"
"10:46:28.2727633 AM","firefox.exe","7904","RegOpenKey","HKLM","0.0000086","Desired Access: Maximum Allowed, Granted Access: Read","8004"
"10:46:28.2727911 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.2728094 AM","firefox.exe","7904","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\msasn1","0.0000111","Desired Access: Read","8004"
"10:46:28.2728423 AM","firefox.exe","7904","RegOpenKey","HKLM\SOFTWARE\Microsoft\AppModel\Lookaside\Packages","0.0000081","Desired Access: Read","8004"
"10:46:28.2728581 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite-journal","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8500"
"10:46:28.2729178 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000098","Offset: 24, Length: 16","8500"
"10:46:28.2732207 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite-wal","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8500"
"10:46:28.2732749 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000060","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8500"
"10:46:28.2733172 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000046","Offset: 1,073,741,826, Length: 510","8500"
"10:46:28.2735714 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy","0.0000090","Desired Access: Query Value","8004"
"10:46:28.2735902 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy","0.0000098","Desired Access: Query Value","8004"
"10:46:28.2736128 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy\Enabled","0.0000056","Type: REG_DWORD, Length: 4, Data: 0","8004"
"10:46:28.2736320 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000052","Desired Access: Query Value","8004"
"10:46:28.2736457 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000064","Desired Access: Query Value","8004"
"10:46:28.2736619 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy","0.0000038","Length: 20","8004"
"10:46:28.2736743 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy\MDMEnabled","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","8004"
"10:46:28.2736913 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\Lsa\FipsAlgorithmPolicy","0.0000017","","8004"
"10:46:28.2737041 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000013","","8004"
"10:46:28.2737178 AM","firefox.exe","7904","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Policies\Microsoft\Cryptography\Configuration","0.0000064","Desired Access: Query Value","8004"
"10:46:28.2737323 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Policies\Microsoft\Cryptography\Configuration","0.0000051","Desired Access: Query Value","8004"
"10:46:28.2738360 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000124","Offset: 12,787,712, Length: 4,096","7760"
"10:46:28.2738923 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000073","Offset: 12,378,112, Length: 4,096","7760"
"10:46:28.2739277 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000056","Offset: 12,509,184, Length: 4,096","7760"
"10:46:28.2739554 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","Offset: 11,808,768, Length: 4,096","7760"
"10:46:28.2742251 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000546","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2742912 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000039","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8004"
"10:46:28.2743045 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000064","","8004"
"10:46:28.2751121 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2751561 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000051","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8004"
"10:46:28.2751732 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000081","","8004"
"10:46:28.2755196 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000060","Offset: 120, Length: 1","7760"
"10:46:28.2755473 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","Offset: 123, Length: 1","7760"
"10:46:28.2759215 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000060","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","7760"
"10:46:28.2759480 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000025","Offset: 1,073,741,826, Length: 510","7760"
"10:46:28.2759668 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000887","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","7760"
"10:46:28.2761135 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000150","","7760"
"10:46:28.2766934 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000691","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:28.2767855 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000060","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:26 AM, LastWriteTime: 3/26/2020 10:46:26 AM, ChangeTime: 3/26/2020 10:46:26 AM, FileAttributes: A","7760"
"10:46:28.2768116 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000098","","7760"
"10:46:28.2768218 AM","firefox.exe","7904","QueryNameInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000081","Name: \Program Files\Firefox Nightly\firefox.exe","8004"
"10:46:28.2770846 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000423","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:28.2771738 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000072","Attributes: A, ReparseTag: 0x0","7760"
"10:46:28.2772084 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000140","Delete: True","7760"
"10:46:28.2772412 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0001118","","7760"
"10:46:28.2774085 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000277","","7760"
"10:46:28.2774644 AM","firefox.exe","7904","RegOpenKey","HKCU","0.0000145","Desired Access: Maximum Allowed, Granted Access: Read, Create Link","8004"
"10:46:28.2776760 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000064","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8500"
"10:46:28.2777007 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8500"
"10:46:28.2777191 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000025","Offset: 1,073,741,824, Length: 1","8500"
"10:46:28.2778083 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0000038","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.2779183 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000316","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:28.2779836 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000060","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:26 AM, LastWriteTime: 3/26/2020 10:46:26 AM, ChangeTime: 3/26/2020 10:46:26 AM, FileAttributes: A","7760"
"10:46:28.2780109 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000086","","7760"
"10:46:28.2780728 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.2780775 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite-journal","0.0000303","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8500"
"10:46:28.2781133 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000047","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:28.2781321 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000068","","740"
"10:46:28.2781372 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000081","Offset: 24, Length: 16","8500"
"10:46:28.2782371 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000362","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:28.2782989 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000068","Attributes: A, ReparseTag: 0x0","7760"
"10:46:28.2783267 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000123","Delete: True","7760"
"10:46:28.2783561 AM","firefox.exe","7904","RegCreateKey","HKCU\SOFTWARE\Mozilla\Firefox\Launcher","0.0000939","Desired Access: All Access","8004"
"10:46:28.2783591 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000994","","7760"
"10:46:28.2783847 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000038","Information: Owner","8004"
"10:46:28.2783979 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000021","Information: Owner","8004"
"10:46:28.2784282 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite-wal","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8500"
"10:46:28.2784743 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000051","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8500"
"10:46:28.2785233 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000128","Offset: 98,304, Length: 32,768","8500"
"10:46:28.2785438 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.2785455 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","Offset: 1,073,741,826, Length: 510","7760"
"10:46:28.2785643 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Offset: 1,073,741,825, Length: 1","7760"
"10:46:28.2785767 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000042","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:28.2785814 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Offset: 1,073,741,826, Length: 510","7760"
"10:46:28.2785937 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000064","","740"
"10:46:28.2785967 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Offset: 1,073,741,824, Length: 1","7760"
"10:46:28.2786168 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000196","","7760"
"10:46:28.2786616 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000145","Offset: 32,768, Length: 32,768","8500"
"10:46:28.2789005 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.2789355 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000043","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:28.2789492 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000055","","740"
"10:46:28.2792704 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000052","Offset: 1,073,741,826, Length: 510","8500"
"10:46:28.2792884 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.2793430 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000055","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:28.2793626 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000077","","740"
"10:46:28.2797027 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.2797547 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000060","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:28.2797752 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000077","","740"
"10:46:28.2800743 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000303","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:28.2801084 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.2801255 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000060","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","7760"
"10:46:28.2801507 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000085","","7760"
"10:46:28.2801596 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000051","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:28.2801805 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000073","","740"
"10:46:28.2805287 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.2805790 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:28.2805850 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000055","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:28.2806051 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000076","","740"
"10:46:28.2806238 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","7760"
"10:46:28.2806464 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000086","","7760"
"10:46:28.2812549 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000311","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:28.2813078 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","7760"
"10:46:28.2813317 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000089","","7760"
"10:46:28.2815591 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000358","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","7760"
"10:46:28.2816384 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000154","Offset: 0, Length: 100, Priority: Normal","7760"
"10:46:28.2816632 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0000068","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.2816952 AM","firefox.exe","7904","RegCreateKey","HKCU\SOFTWARE","0.0000136","Desired Access: Maximum Allowed, Granted Access: Read, Create Link, Disposition: REG_OPENED_EXISTING_KEY","8004"
"10:46:28.2817251 AM","firefox.exe","7904","RegQueryKey","HKCU\Software","0.0000012","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.2817400 AM","firefox.exe","7904","RegCreateKey","HKCU\Software\Mozilla","0.0000081","Desired Access: Maximum Allowed, Granted Access: Read, Create Link, Disposition: REG_OPENED_EXISTING_KEY","8004"
"10:46:28.2817639 AM","firefox.exe","7904","RegCloseKey","HKCU\Software","0.0000021","","8004"
"10:46:28.2817733 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000059","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","7760"
"10:46:28.2817814 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Mozilla","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.2817946 AM","firefox.exe","7904","RegCreateKey","HKCU\Software\Mozilla\Firefox","0.0000068","Desired Access: Maximum Allowed, Granted Access: Read, Create Link, Disposition: REG_OPENED_EXISTING_KEY","8004"
"10:46:28.2817959 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000025","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","7760"
"10:46:28.2818147 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000025","Offset: 1,073,741,824, Length: 1","7760"
"10:46:28.2822669 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:28.2826949 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000311","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:28.2828224 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000073","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:28.2828604 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000111","Offset: 0, Length: 4,096","7760"
"10:46:28.2832687 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:28.2835179 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0001690","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","7760"
"10:46:28.2837487 AM","firefox.exe","7904","RegCloseKey","HKCU\Software\Mozilla","0.0000077","","8004"
"10:46:28.2837901 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Mozilla\Firefox","0.0000026","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.2838115 AM","firefox.exe","7904","RegCreateKey","HKCU\Software\Mozilla\Firefox\Launcher","0.0000755","Desired Access: All Access","8004"
"10:46:28.2838392 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000047","Information: Owner","8004"
"10:46:28.2838558 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000017","Information: Owner","8004"
"10:46:28.2839036 AM","firefox.exe","7904","RegCloseKey","HKCU\Software\Mozilla\Firefox","0.0000013","","8004"
"10:46:28.2839309 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.2839467 AM","firefox.exe","7904","RegCreateKey","HKCU\SOFTWARE\Mozilla\Firefox\Launcher","0.0000461","Desired Access: All Access","8004"
"10:46:28.2839634 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000025","Information: Owner","8004"
"10:46:28.2839736 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000013","Information: Owner","8004"
"10:46:28.2840039 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.2840167 AM","firefox.exe","7904","RegCreateKey","HKCU\SOFTWARE","0.0000072","Desired Access: Maximum Allowed, Granted Access: Read, Create Link, Disposition: REG_OPENED_EXISTING_KEY","8004"
"10:46:28.2840346 AM","firefox.exe","7904","RegQueryKey","HKCU\Software","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.2840466 AM","firefox.exe","7904","RegCreateKey","HKCU\Software\Mozilla","0.0000055","Desired Access: Maximum Allowed, Granted Access: Read, Create Link, Disposition: REG_OPENED_EXISTING_KEY","8004"
"10:46:28.2840645 AM","firefox.exe","7904","RegCloseKey","HKCU\Software","0.0000017","","8004"
"10:46:28.2840747 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Mozilla","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.2840867 AM","firefox.exe","7904","RegCreateKey","HKCU\Software\Mozilla\Firefox","0.0000042","Desired Access: Maximum Allowed, Granted Access: Read, Create Link, Disposition: REG_OPENED_EXISTING_KEY","8004"
"10:46:28.2841020 AM","firefox.exe","7904","RegCloseKey","HKCU\Software\Mozilla","0.0000013","","8004"
"10:46:28.2841118 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Mozilla\Firefox","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.2841234 AM","firefox.exe","7904","RegCreateKey","HKCU\Software\Mozilla\Firefox\Launcher","0.0000426","Desired Access: All Access","8004"
"10:46:28.2841379 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000025","Information: Owner","8004"
"10:46:28.2841460 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:28.2841472 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000018","Information: Owner","8004"
"10:46:28.2841775 AM","firefox.exe","7904","RegCloseKey","HKCU\Software\Mozilla\Firefox","0.0000013","","8004"
"10:46:28.2841989 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.2842108 AM","firefox.exe","7904","RegCreateKey","HKCU\SOFTWARE\Mozilla\Firefox\Launcher","0.0000388","Desired Access: All Access","8004"
"10:46:28.2842245 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000021","Information: Owner","8004"
"10:46:28.2842330 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000017","Information: Owner","8004"
"10:46:28.2842595 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0000012","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.2842706 AM","firefox.exe","7904","RegCreateKey","HKCU\SOFTWARE","0.0000051","Desired Access: Maximum Allowed, Granted Access: Read, Create Link, Disposition: REG_OPENED_EXISTING_KEY","8004"
"10:46:28.2842846 AM","firefox.exe","7904","RegQueryKey","HKCU\Software","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.2842957 AM","firefox.exe","7904","RegCreateKey","HKCU\Software\Mozilla","0.0000103","Desired Access: Maximum Allowed, Granted Access: Read, Create Link, Disposition: REG_OPENED_EXISTING_KEY","8004"
"10:46:28.2843171 AM","firefox.exe","7904","RegCloseKey","HKCU\Software","0.0000017","","8004"
"10:46:28.2843286 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Mozilla","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.2843444 AM","firefox.exe","7904","RegCreateKey","HKCU\Software\Mozilla\Firefox","0.0000038","Desired Access: Maximum Allowed, Granted Access: Read, Create Link, Disposition: REG_OPENED_EXISTING_KEY","8004"
"10:46:28.2843593 AM","firefox.exe","7904","RegCloseKey","HKCU\Software\Mozilla","0.0000013","","8004"
"10:46:28.2843678 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Mozilla\Firefox","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.2843695 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0001929","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","7760"
"10:46:28.2844348 AM","firefox.exe","7904","RegCreateKey","HKCU\Software\Mozilla\Firefox\Launcher","0.0000687","Desired Access: All Access","8004"
"10:46:28.2844643 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000042","Information: Owner","8004"
"10:46:28.2844766 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000013","Information: Owner","8004"
"10:46:28.2845202 AM","firefox.exe","7904","RegCloseKey","HKCU\Software\Mozilla\Firefox","0.0000021","","8004"
"10:46:28.2847702 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000550","Exclusive: True, Offset: 128, Length: 1, Fail Immediately: True","7760"
"10:46:28.2852907 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0004177","EndOfFile: 0","7760"
"10:46:28.2859141 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000183","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.2859273 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0002411","AllocationSize: 0","7760"
"10:46:28.2861044 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\Rpc","0.0000443","Desired Access: Read","8004"
"10:46:28.2863220 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000358","Offset: 128, Length: 1","7760"
"10:46:28.2865208 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000277","Exclusive: False, Offset: 128, Length: 1, Fail Immediately: True","7760"
"10:46:28.2865916 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000239","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:28.2867282 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000170","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7760"
"10:46:28.2868754 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Rpc\MaxRpcSize","0.0000392","Length: 16","8004"
"10:46:28.2869078 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000192","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:28.2870183 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Rpc","0.0000089","","8004"
"10:46:28.2870341 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0007748","EndOfFile: 32,768","7760"
"10:46:28.2875200 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\ComputerName\ActiveComputerName","0.0000508","Desired Access: Read","8004"
"10:46:28.2876937 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\ComputerName\ActiveComputerName","0.0000525","Desired Access: Read","8004"
"10:46:28.2877876 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\ComputerName\ActiveComputerName\ComputerName","0.0000089","Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","8004"
"10:46:28.2878281 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\ComputerName\ActiveComputerName","0.0000030","","8004"
"10:46:28.2878593 AM","firefox.exe","7904","RegOpenKey","HKLM\System\Setup","0.0000119","Desired Access: Read","8004"
"10:46:28.2878785 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000469","AllocationSize: 32,768","7760"
"10:46:28.2878844 AM","firefox.exe","7904","RegQueryValue","HKLM\SYSTEM\Setup\OOBEInProgress","0.0000047","Type: REG_DWORD, Length: 4, Data: 0","8004"
"10:46:28.2879011 AM","firefox.exe","7904","RegCloseKey","HKLM\SYSTEM\Setup","0.0000017","","8004"
"10:46:28.2879177 AM","firefox.exe","7904","RegOpenKey","HKLM\System\Setup","0.0000056","Desired Access: Read","8004"
"10:46:28.2879335 AM","firefox.exe","7904","RegQueryValue","HKLM\SYSTEM\Setup\SystemSetupInProgress","0.0000055","Type: REG_DWORD, Length: 4, Data: 0","8004"
"10:46:28.2879493 AM","firefox.exe","7904","RegCloseKey","HKLM\SYSTEM\Setup","0.0000017","","8004"
"10:46:28.2879817 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000085","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7760"
"10:46:28.2879894 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options","0.0000175","Desired Access: Query Value, Enumerate Sub Keys","8004"
"10:46:28.2880124 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000069","AllocationSize: 32,768, EndOfFile: 32,768, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:28.2880235 AM","firefox.exe","7904","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000068","Desired Access: Query Value, Enumerate Sub Keys","8004"
"10:46:28.2880577 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000025","SyncType: SyncTypeOther","7760"
"10:46:28.2881370 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000226","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7760"
"10:46:28.2881528 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000051","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.2881733 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\Rpc","0.0000085","Desired Access: Read","8004"
"10:46:28.2881955 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000047","Exclusive: True, Offset: 121, Length: 2, Fail Immediately: True","7760"
"10:46:28.2882155 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","Exclusive: True, Offset: 124, Length: 4, Fail Immediately: True","7760"
"10:46:28.2882403 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000047","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:28.2882595 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.2882663 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","Offset: 121, Length: 2","7760"
"10:46:28.2882753 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\Rpc","0.0000076","Desired Access: Query Value","8004"
"10:46:28.2882970 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Rpc\IdleTimerWindow","0.0000051","Length: 16","8004"
"10:46:28.2882987 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000022","Offset: 124, Length: 4","7760"
"10:46:28.2883077 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000298","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.2883175 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Rpc","0.0000017","","8004"
"10:46:28.2883179 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000022","Offset: 120, Length: 1","7760"
"10:46:28.2883346 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000025","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:28.2883764 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000051","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:28.2883777 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000042","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:28.2883969 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000102","","740"
"10:46:28.2884148 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000443","Offset: 0, Length: 4,096","7760"
"10:46:28.2888461 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000052","Offset: 123, Length: 1","7760"
"10:46:28.2888798 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.2889409 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000051","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:28.2889938 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000106","","740"
"10:46:28.2893684 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000311","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:28.2894925 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.2895019 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","7760"
"10:46:28.2895297 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000102","","7760"
"10:46:28.2895314 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000051","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:28.2895506 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000072","","740"
"10:46:28.2898036 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2898351 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8004"
"10:46:28.2898505 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000056","","8004"
"10:46:28.2898718 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.2898834 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:28.2899026 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000098","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:28.2899311 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000073","","740"
"10:46:28.2901927 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\dependentlibs.list","0.0000205","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2902537 AM","firefox.exe","7904","ReadFile","C:\Program Files\Firefox Nightly\dependentlibs.list","0.0000154","Offset: 0, Length: 476, Priority: Normal","8004"
"10:46:28.2902793 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.2903134 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000047","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:28.2903309 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000073","","740"
"10:46:28.2903506 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000059","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","7760"
"10:46:28.2903757 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000069","","7760"
"10:46:28.2906590 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000239","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:28.2906923 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.2907073 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000042","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,842, SectorsPerAllocationUnit: 8, BytesPerSector: 512","7760"
"10:46:28.2907290 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000056","","7760"
"10:46:28.2907401 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000047","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:28.2907585 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000059","","740"
"10:46:28.2910418 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2910622 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.2910814 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000081","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","8004"
"10:46:28.2911019 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000073","","8004"
"10:46:28.2911173 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000042","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:28.2911365 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000064","","740"
"10:46:28.2911591 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 7900","5728"
"10:46:28.2912764 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000197","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2913016 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000055","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:28.2913276 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.2913327 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000052","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:28.2913660 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000043","SyncType: SyncTypeOther","8004"
"10:46:28.2913699 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000085","Offset: 20,480, Length: 4,096","7760"
"10:46:28.2914023 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.2914061 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","Offset: 1,654,784, Length: 4,096","7760"
"10:46:28.2914317 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","Offset: 12,787,712, Length: 4,096","7760"
"10:46:28.2914454 AM","firefox.exe","7904","Load Image","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000000","Image Base: 0x7ffb3c6b0000, Image Size: 0x16000","8004"
"10:46:28.2914548 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","Offset: 12,378,112, Length: 4,096","7760"
"10:46:28.2914706 AM","firefox.exe","7904","QueryNameInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000055","Name: \Program Files\Firefox Nightly\vcruntime140.dll","8004"
"10:46:28.2914808 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.2915367 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000047","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:28.2915559 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000072","","740"
"10:46:28.2916109 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000069","Offset: 12,509,184, Length: 4,096","7760"
"10:46:28.2916421 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000042","Offset: 11,808,768, Length: 4,096","7760"
"10:46:28.2916472 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000077","","8004"
"10:46:28.2917492 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000111","Offset: 123, Length: 1","7760"
"10:46:28.2917957 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000034","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:28.2918200 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:28.2918405 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000025","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7760"
"10:46:28.2919770 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","Offset: 24,576, Length: 4,096","7760"
"10:46:28.2920001 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000059","Offset: 823,296, Length: 4,096","7760"
"10:46:28.2920201 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.2837009","Offset: 14,950,400, Length: 4,096","7760"
"10:46:28.2920316 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2920606 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.2836369","Offset: 14,950,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:28.2920666 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8004"
"10:46:28.2920798 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000069","","8004"
"10:46:28.2921208 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.2921848 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:28.2922019 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000072","","740"
"10:46:28.2922249 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000179","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2922667 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.2923013 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000030","SyncType: SyncTypeOther","8004"
"10:46:28.2923444 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.2924024 AM","firefox.exe","7904","Load Image","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000000","Image Base: 0x7ffb32080000, Image Size: 0x9b000","8004"
"10:46:28.2924301 AM","firefox.exe","7904","QueryNameInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000056","Name: \Program Files\Firefox Nightly\msvcp140.dll","8004"
"10:46:28.2925948 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.2926469 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:28.2926499 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000072","","8004"
"10:46:28.2926661 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000072","","740"
"10:46:28.2930369 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.2930898 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000051","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:28.2931098 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000081","","740"
"10:46:28.2931730 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2932041 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8004"
"10:46:28.2932165 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000051","","8004"
"10:46:28.2934264 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000243","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2934814 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000052","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.2935053 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.2935301 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000034","SyncType: SyncTypeOther","8004"
"10:46:28.2935574 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000038","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:28.2935702 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000043","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.2935757 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000099","","740"
"10:46:28.2936397 AM","firefox.exe","7904","Load Image","C:\Program Files\Firefox Nightly\nss3.dll","0.0000000","Image Base: 0x7ffb1da70000, Image Size: 0x21d000","8004"
"10:46:28.2936820 AM","firefox.exe","7904","QueryNameInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000077","Name: \Program Files\Firefox Nightly\nss3.dll","8004"
"10:46:28.2938215 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\ws2_32.dll","0.0000043","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.2938821 AM","firefox.exe","7904","Load Image","C:\Windows\System32\ws2_32.dll","0.0000000","Image Base: 0x7ffb48bc0000, Image Size: 0x6c000","8004"
"10:46:28.2939115 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\ws2_32.dll","0.0000077","Name: \Windows\System32\ws2_32.dll","8004"
"10:46:28.2939657 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.2940229 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000055","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:28.2940451 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000081","","740"
"10:46:28.2940899 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000081","","8004"
"10:46:28.2946778 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.2946902 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\winmm.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2947341 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000077","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:28.2947376 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000025","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","8004"
"10:46:28.2947538 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\winmm.dll","0.0000081","","8004"
"10:46:28.2947614 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000060","","740"
"10:46:28.2949338 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\winmm.dll","0.0000201","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2949910 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.2950362 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000026","SyncType: SyncTypeOther","8004"
"10:46:28.2950716 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\winmm.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.2951369 AM","firefox.exe","7904","Load Image","C:\Windows\System32\winmm.dll","0.0000000","Image Base: 0x7ffb437c0000, Image Size: 0x23000","8004"
"10:46:28.2951536 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000320","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.2951625 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\winmm.dll","0.0000064","Name: \Windows\System32\winmm.dll","8004"
"10:46:28.2952150 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000047","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:28.2952350 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000077","","740"
"10:46:28.2953763 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\winmm.dll","0.0000085","","8004"
"10:46:28.2960376 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000068","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8500"
"10:46:28.2960670 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000035","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8500"
"10:46:28.2960867 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000025","Offset: 1,073,741,824, Length: 1","8500"
"10:46:28.2961438 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0002117","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.2964233 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite-journal","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8500"
"10:46:28.2964749 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000099","Offset: 24, Length: 16","8500"
"10:46:28.2968880 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000072","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:28.2969161 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000060","","740"
"10:46:28.2972822 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite-wal","0.0001698","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8500"
"10:46:28.2973048 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wsock32.dll","0.0001118","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.2975710 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0045355","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","8004"
"10:46:28.2977426 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000320","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8500"
"10:46:28.3010992 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000085","Offset: 1,073,741,826, Length: 510","8500"
"10:46:28.3014392 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0001754","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3021543 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000401","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:28.3022541 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000141","","740"
"10:46:28.3029616 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wsock32.dll","0.0000111","","8004"
"10:46:28.3032538 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wsock32.dll","0.0000333","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3033242 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000047","SyncType: SyncTypeOther","8004"
"10:46:28.3033400 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3033908 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000043","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:28.3034091 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000069","","740"
"10:46:28.3034143 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.3034783 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000025","SyncType: SyncTypeOther","8004"
"10:46:28.3035115 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\wsock32.dll","0.0000043","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3035947 AM","firefox.exe","7904","Load Image","C:\Windows\System32\wsock32.dll","0.0000000","Image Base: 0x7ffb3c880000, Image Size: 0x9000","8004"
"10:46:28.3036284 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\wsock32.dll","0.0000064","Name: \Windows\System32\wsock32.dll","8004"
"10:46:28.3037513 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wsock32.dll","0.0000077","","8004"
"10:46:28.3040952 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3041387 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3041486 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000046","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:28.3041682 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","8004"
"10:46:28.3041690 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000094","","740"
"10:46:28.3041797 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000047","","8004"
"10:46:28.3043815 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000201","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3044284 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.3044643 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000030","SyncType: SyncTypeOther","8004"
"10:46:28.3045006 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\winmmbase.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3045087 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3045646 AM","firefox.exe","7904","Load Image","C:\Windows\System32\winmmbase.dll","0.0000000","Image Base: 0x7ffb43790000, Image Size: 0x2a000","8004"
"10:46:28.3045735 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000047","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:28.3046896 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\winmmbase.dll","0.0000102","Name: \Windows\System32\winmmbase.dll","8004"
"10:46:28.3047207 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000115","","740"
"10:46:28.3048564 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\cfgmgr32.dll","0.0000047","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3049242 AM","firefox.exe","7904","Load Image","C:\Windows\System32\cfgmgr32.dll","0.0000000","Image Base: 0x7ffb45f00000, Image Size: 0x49000","8004"
"10:46:28.3049532 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000056","Name: \Windows\System32\cfgmgr32.dll","8004"
"10:46:28.3051866 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000098","","8004"
"10:46:28.3054507 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3054810 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000039","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","8004"
"10:46:28.3054926 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000055","","8004"
"10:46:28.3057238 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3057532 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3057579 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000039","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","8004"
"10:46:28.3057716 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000064","","8004"
"10:46:28.3057998 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000046","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:28.3058211 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000077","","740"
"10:46:28.3062192 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3062580 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:28.3062785 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000077","","740"
"10:46:28.3066859 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000333","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3067393 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:28.3067610 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000086","","740"
"10:46:28.3068954 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3069257 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000039","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8004"
"10:46:28.3069390 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000059","","8004"
"10:46:28.3070921 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000179","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3071310 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.3071463 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3071634 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000025","SyncType: SyncTypeOther","8004"
"10:46:28.3071958 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3072009 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:28.3072312 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000090","","740"
"10:46:28.3072432 AM","firefox.exe","7904","Load Image","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000000","Image Base: 0x7ffb3c680000, Image Size: 0xd000","8004"
"10:46:28.3072688 AM","firefox.exe","7904","QueryNameInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000068","Name: \Program Files\Firefox Nightly\lgpllibs.dll","8004"
"10:46:28.3073878 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000077","","8004"
"10:46:28.3076135 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000935","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3077368 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:28.3077509 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000055","","740"
"10:46:28.3077786 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3078158 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000046","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","8004"
"10:46:28.3078819 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000081","","8004"
"10:46:28.3080504 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3080922 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:28.3081063 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000056","","740"
"10:46:28.3082689 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000192","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3083128 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.3083474 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000021","SyncType: SyncTypeOther","8004"
"10:46:28.3083832 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000086","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3084212 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3084690 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000042","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:28.3084860 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000064","","740"
"10:46:28.3085522 AM","firefox.exe","7904","Load Image","C:\Program Files\Firefox Nightly\xul.dll","0.0000000","Image Base: 0x7ffb07c80000, Image Size: 0x6988000","8004"
"10:46:28.3086000 AM","firefox.exe","7904","QueryNameInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000516","Name: \Program Files\Firefox Nightly\xul.dll","8004"
"10:46:28.3087634 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3088086 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:28.3088295 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000064","","740"
"10:46:28.3088850 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\user32.dll","0.0000043","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3091222 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3091235 AM","firefox.exe","7904","Load Image","C:\Windows\System32\user32.dll","0.0000000","Image Base: 0x7ffb488d0000, Image Size: 0x190000","8004"
"10:46:28.3091542 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\user32.dll","0.0000081","Name: \Windows\System32\user32.dll","8004"
"10:46:28.3091670 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000043","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:28.3091841 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000060","","740"
"10:46:28.3093466 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\win32u.dll","0.0000047","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3095549 AM","firefox.exe","7904","Load Image","C:\Windows\System32\win32u.dll","0.0000000","Image Base: 0x7ffb45f50000, Image Size: 0x20000","8004"
"10:46:28.3095898 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\win32u.dll","0.0000056","Name: \Windows\System32\win32u.dll","8004"
"10:46:28.3096713 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3097285 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.3097383 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\gdi32.dll","0.0000039","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3097643 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000090","","740"
"10:46:28.3099094 AM","firefox.exe","7904","Load Image","C:\Windows\System32\gdi32.dll","0.0000000","Image Base: 0x7ffb47170000, Image Size: 0x28000","8004"
"10:46:28.3099871 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\gdi32.dll","0.0000085","Name: \Windows\System32\gdi32.dll","8004"
"10:46:28.3100916 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3101381 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000043","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.3101565 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000064","","740"
"10:46:28.3102030 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\gdi32full.dll","0.0000051","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3103937 AM","firefox.exe","7904","Load Image","C:\Windows\System32\gdi32full.dll","0.0000000","Image Base: 0x7ffb45c00000, Image Size: 0x192000","8004"
"10:46:28.3104299 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\gdi32full.dll","0.0000064","Name: \Windows\System32\gdi32full.dll","8004"
"10:46:28.3105643 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\msvcp_win.dll","0.0000039","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3105707 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000367","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3106292 AM","firefox.exe","7904","Load Image","C:\Windows\System32\msvcp_win.dll","0.0000000","Image Base: 0x7ffb46680000, Image Size: 0x9f000","8004"
"10:46:28.3106625 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000081","Name: \Windows\System32\msvcp_win.dll","8004"
"10:46:28.3107465 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000060","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.3107679 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000076","","740"
"10:46:28.3109432 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\shell32.dll","0.0000051","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3111075 AM","firefox.exe","7904","Load Image","C:\Windows\System32\shell32.dll","0.0000000","Image Base: 0x7ffb472f0000, Image Size: 0x1440000","8004"
"10:46:28.3111467 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\shell32.dll","0.0000060","Name: \Windows\System32\shell32.dll","8004"
"10:46:28.3112573 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3113067 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000060","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:28.3113319 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000081","","740"
"10:46:28.3113742 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\SHCore.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3114309 AM","firefox.exe","7904","Load Image","C:\Windows\System32\SHCore.dll","0.0000000","Image Base: 0x7ffb48b10000, Image Size: 0xa9000","8004"
"10:46:28.3114612 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\SHCore.dll","0.0000064","Name: \Windows\System32\SHCore.dll","8004"
"10:46:28.3116259 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\combase.dll","0.0000047","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3117035 AM","firefox.exe","7904","Load Image","C:\Windows\System32\combase.dll","0.0000000","Image Base: 0x7ffb46d80000, Image Size: 0x322000","8004"
"10:46:28.3117142 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3117326 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\combase.dll","0.0000064","Name: \Windows\System32\combase.dll","8004"
"10:46:28.3117543 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000051","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:28.3117748 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000073","","740"
"10:46:28.3120406 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\windows.storage.dll","0.0000051","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3122493 AM","firefox.exe","7904","Load Image","C:\Windows\System32\windows.storage.dll","0.0000000","Image Base: 0x7ffb45f70000, Image Size: 0x70d000","8004"
"10:46:28.3122868 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\windows.storage.dll","0.0000068","Name: \Windows\System32\windows.storage.dll","8004"
"10:46:28.3124907 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\shlwapi.dll","0.0000052","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3126077 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3126277 AM","firefox.exe","7904","Load Image","C:\Windows\System32\shlwapi.dll","0.0000000","Image Base: 0x7ffb490e0000, Image Size: 0x51000","8004"
"10:46:28.3126503 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000051","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:28.3126571 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\shlwapi.dll","0.0000064","Name: \Windows\System32\shlwapi.dll","8004"
"10:46:28.3126699 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000077","","740"
"10:46:28.3128517 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\kernel.appcore.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3129136 AM","firefox.exe","7904","Load Image","C:\Windows\System32\kernel.appcore.dll","0.0000000","Image Base: 0x7ffb45af0000, Image Size: 0x11000","8004"
"10:46:28.3129396 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000465","Name: \Windows\System32\kernel.appcore.dll","8004"
"10:46:28.3131397 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3131802 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000047","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:28.3132041 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000069","","740"
"10:46:28.3132720 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\profapi.dll","0.0000047","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3133466 AM","firefox.exe","7904","Load Image","C:\Windows\System32\profapi.dll","0.0000000","Image Base: 0x7ffb45b30000, Image Size: 0x1f000","8004"
"10:46:28.3135514 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3135830 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000043","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:28.3136005 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000064","","740"
"10:46:28.3139286 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3139602 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000034","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:28.3139768 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000064","","740"
"10:46:28.3142708 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\profapi.dll","0.0000081","Name: \Windows\System32\profapi.dll","8004"
"10:46:28.3143024 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3143689 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000047","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:28.3143869 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000076","","740"
"10:46:28.3144901 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\powrprof.dll","0.0000051","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3149142 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3149658 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000039","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:28.3149804 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000068","","740"
"10:46:28.3154181 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3154693 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000047","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:28.3155064 AM","firefox.exe","7904","Load Image","C:\Windows\System32\powrprof.dll","0.0000000","Image Base: 0x7ffb45aa0000, Image Size: 0x4c000","8004"
"10:46:28.3155128 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000124","","740"
"10:46:28.3155401 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\powrprof.dll","0.0000060","Name: \Windows\System32\powrprof.dll","8004"
"10:46:28.3157245 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\fltLib.dll","0.0000047","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3157936 AM","firefox.exe","7904","Load Image","C:\Windows\System32\fltLib.dll","0.0000000","Image Base: 0x7ffb45a90000, Image Size: 0xa000","8004"
"10:46:28.3158188 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\fltLib.dll","0.0000055","Name: \Windows\System32\fltLib.dll","8004"
"10:46:28.3159706 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\ole32.dll","0.0000069","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3159762 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000503","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3160547 AM","firefox.exe","7904","Load Image","C:\Windows\System32\ole32.dll","0.0000000","Image Base: 0x7ffb491a0000, Image Size: 0x151000","8004"
"10:46:28.3160615 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:28.3160782 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000055","","740"
"10:46:28.3161225 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\ole32.dll","0.0000056","Name: \Windows\System32\ole32.dll","8004"
"10:46:28.3163653 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\imm32.dll","0.0000043","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3164327 AM","firefox.exe","7904","Load Image","C:\Windows\System32\imm32.dll","0.0000000","Image Base: 0x7ffb48730000, Image Size: 0x2d000","8004"
"10:46:28.3164596 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\imm32.dll","0.0000060","Name: \Windows\System32\imm32.dll","8004"
"10:46:28.3164617 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3165117 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:28.3165317 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000094","","740"
"10:46:28.3168389 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3168850 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:28.3169025 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000047","","740"
"10:46:28.3170697 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\setupapi.dll","0.0000060","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3171692 AM","firefox.exe","7904","Load Image","C:\Windows\System32\setupapi.dll","0.0000000","Image Base: 0x7ffb49300000, Image Size: 0x44b000","8004"
"10:46:28.3172076 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\setupapi.dll","0.0000110","Name: \Windows\System32\setupapi.dll","8004"
"10:46:28.3172865 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3173249 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000034","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:28.3173432 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000090","","740"
"10:46:28.3174239 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\oleaut32.dll","0.0000047","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3177477 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3177776 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000034","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:28.3177904 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000055","","740"
"10:46:28.3180464 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3180767 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000038","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:28.3180933 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000068","","740"
"10:46:28.3183881 AM","firefox.exe","7904","Load Image","C:\Windows\System32\oleaut32.dll","0.0000000","Image Base: 0x7ffb46c10000, Image Size: 0xc2000","8004"
"10:46:28.3185597 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3185690 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\oleaut32.dll","0.0000086","Name: \Windows\System32\oleaut32.dll","8004"
"10:46:28.3186787 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000060","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:28.3186988 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000089","","740"
"10:46:28.3187777 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000098","","8004"
"10:46:28.3191668 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000986","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3192893 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000064","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:28.3193119 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000064","","740"
"10:46:28.3198661 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3198973 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:28.3199143 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000060","","740"
"10:46:28.3202642 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3202953 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000035","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:28.3203099 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000059","","740"
"10:46:28.3208291 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\avrt.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3208777 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000035","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","8004"
"10:46:28.3208905 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\avrt.dll","0.0000052","","8004"
"10:46:28.3210770 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\avrt.dll","0.0000179","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3211286 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.3211589 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000022","SyncType: SyncTypeOther","8004"
"10:46:28.3211871 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\avrt.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3213121 AM","firefox.exe","7904","Load Image","C:\Windows\System32\avrt.dll","0.0000000","Image Base: 0x7ffb415a0000, Image Size: 0xa000","8004"
"10:46:28.3213390 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\avrt.dll","0.0000064","Name: \Windows\System32\avrt.dll","8004"
"10:46:28.3214439 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\avrt.dll","0.0000094","","8004"
"10:46:28.3216069 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000290","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3216513 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:28.3216671 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000060","","740"
"10:46:28.3217755 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\usp10.dll","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3218305 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000043","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","8004"
"10:46:28.3218454 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\usp10.dll","0.0000064","","8004"
"10:46:28.3219704 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3220033 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000051","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:28.3220161 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\usp10.dll","0.0000218","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3220216 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000069","","740"
"10:46:28.3220677 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000034","SyncType: SyncTypeOther","8004"
"10:46:28.3221432 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.3221650 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000021","SyncType: SyncTypeOther","8004"
"10:46:28.3221906 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\usp10.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3222610 AM","firefox.exe","7904","Load Image","C:\Windows\System32\usp10.dll","0.0000000","Image Base: 0x7ffb413c0000, Image Size: 0x19000","8004"
"10:46:28.3222896 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\usp10.dll","0.0000064","Name: \Windows\System32\usp10.dll","8004"
"10:46:28.3224671 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\usp10.dll","0.0000111","","8004"
"10:46:28.3230328 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\d3d11.dll","0.0000261","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3230883 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000043","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","8004"
"10:46:28.3231062 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\d3d11.dll","0.0000073","","8004"
"10:46:28.3232846 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\d3d11.dll","0.0000234","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3233383 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3233503 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.3233699 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:28.3233878 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000073","","740"
"10:46:28.3233883 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000029","SyncType: SyncTypeOther","8004"
"10:46:28.3234459 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\d3d11.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3235832 AM","firefox.exe","7904","Load Image","C:\Windows\System32\d3d11.dll","0.0000000","Image Base: 0x7ffb428e0000, Image Size: 0x30b000","8004"
"10:46:28.3236225 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\d3d11.dll","0.0000072","Name: \Windows\System32\d3d11.dll","8004"
"10:46:28.3237586 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3237923 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:28.3238094 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000068","","740"
"10:46:28.3238209 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\d3d11.dll","0.0000145","","8004"
"10:46:28.3241358 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dxgi.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3241819 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000038","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","8004"
"10:46:28.3241895 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3241959 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dxgi.dll","0.0000060","","8004"
"10:46:28.3242296 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:28.3242523 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000076","","740"
"10:46:28.3243495 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dxgi.dll","0.0000184","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3244029 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.3244357 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000026","SyncType: SyncTypeOther","8004"
"10:46:28.3244677 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\dxgi.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3245424 AM","firefox.exe","7904","Load Image","C:\Windows\System32\dxgi.dll","0.0000000","Image Base: 0x7ffb44850000, Image Size: 0xbb000","8004"
"10:46:28.3245710 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\dxgi.dll","0.0000064","Name: \Windows\System32\dxgi.dll","8004"
"10:46:28.3246435 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3246823 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:28.3247024 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000072","","740"
"10:46:28.3247378 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dxgi.dll","0.0000090","","8004"
"10:46:28.3250420 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000474","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3250855 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3251154 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000038","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","8004"
"10:46:28.3251184 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:28.3251303 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000060","","8004"
"10:46:28.3251389 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000068","","740"
"10:46:28.3252874 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000200","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3253582 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.3253949 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000025","SyncType: SyncTypeOther","8004"
"10:46:28.3254286 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3254525 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000435","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3255011 AM","firefox.exe","7904","Load Image","C:\Windows\System32\IPHLPAPI.DLL","0.0000000","Image Base: 0x7ffb45030000, Image Size: 0x38000","8004"
"10:46:28.3255122 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000521","","7572"
"10:46:28.3255357 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000059","Name: \Windows\System32\IPHLPAPI.DLL","8004"
"10:46:28.3256709 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000094","","8004"
"10:46:28.3258518 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000056","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:28.3258732 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000089","","740"
"10:46:28.3261245 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3261966 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000060","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","8004"
"10:46:28.3262175 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dnsapi.dll","0.0191556","","8004"
"10:46:28.3262704 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7572"
"10:46:28.3263195 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000051","CreationTime: 3/26/2020 10:46:26 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 16384, EndOfFile: 13546, FileAttributes: A","7572"
"10:46:28.3263267 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3263408 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000077","","7572"
"10:46:28.3263715 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:28.3263894 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000064","","740"
"10:46:28.3267346 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0001242","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3267389 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000375","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7572"
"10:46:28.3267918 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000034","CreationTime: 3/26/2020 10:46:26 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, FileAttributes: A","7572"
"10:46:28.3268080 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000055","","7572"
"10:46:28.3268967 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000064","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:28.3269206 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000081","","740"
"10:46:28.3269957 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000307","Desired Access: Read Attributes, Delete, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7572"
"10:46:28.3270478 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000047","Attributes: A, ReparseTag: 0x0","7572"
"10:46:28.3270776 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000035","CreationTime: 3/26/2020 10:46:26 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, FileAttributes: A","7572"
"10:46:28.3273042 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000205","Desired Access: Write Data/Add File, Synchronize, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7572"
"10:46:28.3273908 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3274488 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:28.3274698 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000072","","740"
"10:46:28.3280287 AM","firefox.exe","7384","SetRenameInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0003243","ReplaceIfExists: True, FileName: C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","7572"
"10:46:28.3280504 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000960","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3282049 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000051","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:28.3282254 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000077","","740"
"10:46:28.3283700 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000320","","7572"
"10:46:28.3284856 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000444","","7572"
"10:46:28.3285646 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3289618 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000068","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:28.3289844 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000086","","740"
"10:46:28.3294277 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3294649 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000038","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:28.3294789 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000052","","740"
"10:46:28.3298058 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3298493 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000042","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:28.3298651 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000064","","740"
"10:46:28.3302073 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3302563 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000039","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:28.3302691 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000051","","740"
"10:46:28.3305089 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3305396 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:28.3305503 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000055","","740"
"10:46:28.3308071 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3308332 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:28.3308447 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000047","","740"
"10:46:28.3311545 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3311843 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000039","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:28.3312018 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000060","","740"
"10:46:28.3315248 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3315538 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:28.3315658 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000047","","740"
"10:46:28.3318922 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3319408 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:28.3319583 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000060","","740"
"10:46:28.3322881 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3323227 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:28.3323333 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000043","","740"
"10:46:28.3326094 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3326512 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:28.3326649 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000072","","740"
"10:46:28.3329853 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3330160 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000038","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:28.3330322 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000056","","740"
"10:46:28.3332925 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3333198 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000030","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:28.3333347 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000051","","740"
"10:46:28.3336031 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3336291 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000030","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:28.3336402 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000047","","740"
"10:46:28.3338719 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3338924 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:28.3339026 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000039","","740"
"10:46:28.3341398 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3341659 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:28.3341799 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000056","","740"
"10:46:28.3344027 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3344223 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000021","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:28.3344317 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000038","","740"
"10:46:28.3347551 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3348012 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000034","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:28.3348182 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000060","","740"
"10:46:28.3351173 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000363","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3351835 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000038","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:28.3352005 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000069","","740"
"10:46:28.3355210 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3355653 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000043","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:28.3355833 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000059","","740"
"10:46:28.3360901 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3361452 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:28.3361669 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000081","","740"
"10:46:28.3365279 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3365727 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000038","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:28.3365902 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000064","","740"
"10:46:28.3368010 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3368287 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:28.3368385 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000043","","740"
"10:46:28.3371688 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3372144 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000047","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:28.3372332 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000060","","740"
"10:46:28.3375626 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3376168 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000046","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:28.3376342 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000060","","740"
"10:46:28.3379449 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3379858 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000039","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:28.3380033 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000060","","740"
"10:46:28.3384180 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000440","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3384462 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000064","Offset: 123, Length: 1","7884"
"10:46:28.3384808 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000046","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:28.3385008 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000077","","740"
"10:46:28.3388490 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3388840 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000042","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:28.3389027 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000069","","740"
"10:46:28.3392061 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3392372 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000043","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:28.3392547 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000060","","740"
"10:46:28.3396063 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3396349 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000034","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:28.3396464 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000047","","740"
"10:46:28.3398529 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3398743 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000025","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:28.3398845 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000043","","740"
"10:46:28.3400692 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3400927 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000026","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:28.3401025 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000034","","740"
"10:46:28.3402275 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000056","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:28.3402489 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:28.3402634 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:28.3404848 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3405262 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000034","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:28.3405381 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-journal","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:28.3405420 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000051","","740"
"10:46:28.3406009 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000094","Offset: 24, Length: 16","5728"
"10:46:28.3408398 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-wal","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:28.3408799 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000051","AllocationSize: 294,912, EndOfFile: 294,912, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:28.3408961 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3409426 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:28.3409469 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000038","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:28.3409644 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000060","","740"
"10:46:28.3412451 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3412848 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000030","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:28.3413002 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000059","","740"
"10:46:28.3416445 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3416850 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000034","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.3416995 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000111","","740"
"10:46:28.3420195 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3420635 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000038","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.3420805 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000060","","740"
"10:46:28.3423976 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3424424 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000042","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.3424594 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000060","","740"
"10:46:28.3428276 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3428665 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000034","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:28.3428784 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000047","","740"
"10:46:28.3431528 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3432014 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000043","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:28.3432168 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000047","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7884"
"10:46:28.3432202 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000064","","740"
"10:46:28.3432407 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000046","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7884"
"10:46:28.3432773 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000141","Offset: 622,592, Length: 32,768","7884"
"10:46:28.3433175 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000034","Offset: 123, Length: 1","7884"
"10:46:28.3435308 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3435786 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000064","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:28.3436055 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000081","","740"
"10:46:28.3440065 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3440462 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000047","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:28.3440637 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000068","","740"
"10:46:28.3444306 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3444609 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000056","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:28.3444759 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000051","","740"
"10:46:28.3447784 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3448091 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000047","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:28.3448266 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000051","","740"
"10:46:28.3452067 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3452468 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000039","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:28.3452639 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000064","","740"
"10:46:28.3455327 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000538","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3456270 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.3456573 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000021","SyncType: SyncTypeOther","8004"
"10:46:28.3456931 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\dnsapi.dll","0.0000043","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3459777 AM","firefox.exe","7904","Load Image","C:\Windows\System32\dnsapi.dll","0.0000000","Image Base: 0x7ffb45070000, Image Size: 0xbe000","8004"
"10:46:28.3460127 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\dnsapi.dll","0.0000073","Name: \Windows\System32\dnsapi.dll","8004"
"10:46:28.3460639 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dnsapi.dll","0.0000051","AllocationSize: 770,048, EndOfFile: 766,704, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.3460908 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000085","","2512"
"10:46:28.3461774 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\nsi.dll","0.0000043","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3462551 AM","firefox.exe","7904","Load Image","C:\Windows\System32\nsi.dll","0.0000000","Image Base: 0x7ffb490d0000, Image Size: 0x8000","8004"
"10:46:28.3462794 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\nsi.dll","0.0000064","Name: \Windows\System32\nsi.dll","8004"
"10:46:28.3463724 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3463839 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000077","","8004"
"10:46:28.3464249 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000042","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:28.3464432 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000060","","740"
"10:46:28.3468852 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000210","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3469194 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3469296 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","8004"
"10:46:28.3469437 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000060","","8004"
"10:46:28.3469642 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000034","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:28.3469795 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000060","","740"
"10:46:28.3474079 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000252","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3474770 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.3475184 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000026","SyncType: SyncTypeOther","8004"
"10:46:28.3475547 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\dwmapi.dll","0.0000043","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3476298 AM","firefox.exe","7904","Load Image","C:\Windows\System32\dwmapi.dll","0.0000000","Image Base: 0x7ffb44200000, Image Size: 0x29000","8004"
"10:46:28.3476558 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\dwmapi.dll","0.0000115","Name: \Windows\System32\dwmapi.dll","8004"
"10:46:28.3478359 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000085","","8004"
"10:46:28.3478380 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3478777 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000042","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.3478973 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000064","","740"
"10:46:28.3481815 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000426","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3482011 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0001288","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3482275 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3482557 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000051","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","8004"
"10:46:28.3482587 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000025","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.3482740 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000107","","8004"
"10:46:28.3482766 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000043","","740"
"10:46:28.3484968 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dnsapi.dll","0.0001079","AllocationSize: 770,048, EndOfFile: 766,704, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.3485535 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000269","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3486290 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.3486662 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000025","SyncType: SyncTypeOther","8004"
"10:46:28.3487024 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\uxtheme.dll","0.0000043","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3487438 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3487818 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000055","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.3487852 AM","firefox.exe","7904","Load Image","C:\Windows\System32\uxtheme.dll","0.0000000","Image Base: 0x7ffb43f70000, Image Size: 0x98000","8004"
"10:46:28.3488006 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000059","","740"
"10:46:28.3488163 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\uxtheme.dll","0.0000069","Name: \Windows\System32\uxtheme.dll","8004"
"10:46:28.3490438 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000076","","8004"
"10:46:28.3491538 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3492012 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:28.3492183 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000059","","740"
"10:46:28.3495246 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000546","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:28.3495302 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000290","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3495455 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3495963 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000047","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","8004"
"10:46:28.3496001 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000094","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:28.3496048 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dnsapi.dll","0.0016841","AllocationSize: 770,048, EndOfFile: 766,704, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.3496121 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000072","","8004"
"10:46:28.3496236 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000055","","740"
"10:46:28.3497652 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\ShutdownDuration.json","0.0000047","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","8844"
"10:46:28.3497883 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\ShutdownDuration.json","0.0000060","CreationTime: 3/26/2020 10:35:38 AM, LastAccessTime: 3/26/2020 10:35:38 AM, LastWriteTime: 3/26/2020 10:35:38 AM, ChangeTime: 3/26/2020 10:35:38 AM, FileAttributes: A, AllocationSize: 32, EndOfFile: 30, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x3700000001765b, EaSize: 0, Access: Generic Read, Position: 0, Mode: Sequential Access, Synchronous IO Non-Alert, AlignmentRequirement: Word","8844"
"10:46:28.3498152 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\ShutdownDuration.json","0.0000866","Offset: 0, Length: 30, Priority: Normal","8844"
"10:46:28.3498668 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\ShutdownDuration.json","0.0000094","Offset: 0, Length: 30, I/O Flags: Non-cached, Paging I/O, Priority: Normal","8844"
"10:46:28.3498796 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000388","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3499265 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\ShutdownDuration.json","0.0000077","","8844"
"10:46:28.3499479 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing-to_delete","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7900"
"10:46:28.3499794 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.3500144 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000026","SyncType: SyncTypeOther","8004"
"10:46:28.3500498 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\wtsapi32.dll","0.0000039","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3502158 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing-updating","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7900"
"10:46:28.3503003 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3503498 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000055","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:28.3503711 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000068","","740"
"10:46:28.3505145 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing-backup","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7900"
"10:46:28.3506839 AM","firefox.exe","7904","Load Image","C:\Windows\System32\wtsapi32.dll","0.0000000","Image Base: 0x7ffb42730000, Image Size: 0x13000","8004"
"10:46:28.3507189 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000081","Name: \Windows\System32\wtsapi32.dll","8004"
"10:46:28.3507649 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3508042 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing","0.0090786","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.3508187 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:28.3508375 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000072","","740"
"10:46:28.3508665 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000094","","8004"
"10:46:28.3511383 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extension-settings.json","0.0211243","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5244"
"10:46:28.3512001 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3512151 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3512471 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:28.3512556 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","8004"
"10:46:28.3512667 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000072","","740"
"10:46:28.3512680 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000051","","8004"
"10:46:28.3513384 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000038","SyncType: SyncTypeOther","2512"
"10:46:28.3514911 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000201","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3515415 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.3515675 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000021","SyncType: SyncTypeOther","8004"
"10:46:28.3515999 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\dhcpcsvc.dll","0.0000043","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3516682 AM","firefox.exe","7904","Load Image","C:\Windows\System32\dhcpcsvc.dll","0.0000000","Image Base: 0x7ffb3be40000, Image Size: 0x1a000","8004"
"10:46:28.3516938 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000055","Name: \Windows\System32\dhcpcsvc.dll","8004"
"10:46:28.3517655 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000874","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3518615 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000072","","8004"
"10:46:28.3518824 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:28.3518999 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000059","","740"
"10:46:28.3522924 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\userenv.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3523385 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","8004"
"10:46:28.3523509 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\userenv.dll","0.0000055","","8004"
"10:46:28.3525582 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\userenv.dll","0.0000243","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3525800 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3526393 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:28.3526461 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.3526559 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000060","","740"
"10:46:28.3526862 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000026","SyncType: SyncTypeOther","8004"
"10:46:28.3527208 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\userenv.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3528044 AM","firefox.exe","7904","Load Image","C:\Windows\System32\userenv.dll","0.0000000","Image Base: 0x7ffb459c0000, Image Size: 0x28000","8004"
"10:46:28.3528411 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\userenv.dll","0.0000055","Name: \Windows\System32\userenv.dll","8004"
"10:46:28.3530007 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3530015 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\userenv.dll","0.0000077","","8004"
"10:46:28.3530463 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:28.3530651 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000081","","740"
"10:46:28.3534521 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3535011 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000047","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","8004"
"10:46:28.3535046 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3535174 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000064","","8004"
"10:46:28.3535498 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:28.3535677 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000060","","740"
"10:46:28.3536906 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000235","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3537397 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.3537751 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000025","SyncType: SyncTypeOther","8004"
"10:46:28.3538109 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3539573 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000332","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3539790 AM","firefox.exe","7904","Load Image","C:\Windows\System32\D3DCompiler_47.dll","0.0000000","Image Base: 0x7ffb42bf0000, Image Size: 0x42f000","8004"
"10:46:28.3540076 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000064","Name: \Windows\System32\D3DCompiler_47.dll","8004"
"10:46:28.3540311 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000042","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:28.3540490 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000068","","740"
"10:46:28.3541557 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000093","","8004"
"10:46:28.3544705 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3545153 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000043","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:28.3545341 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000060","","740"
"10:46:28.3545520 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dxgi.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3545934 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000043","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","8004"
"10:46:28.3546071 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dxgi.dll","0.0000059","","8004"
"10:46:28.3548810 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3549335 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000047","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:28.3549535 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000068","","740"
"10:46:28.3554280 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3554869 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000089","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:28.3555133 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000077","","740"
"10:46:28.3559020 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000376","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3559775 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000047","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:28.3559976 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000064","","740"
"10:46:28.3562011 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3562506 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","8004"
"10:46:28.3562668 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\cryptsp.dll","0.0002453","","8004"
"10:46:28.3563436 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3563867 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000043","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:28.3564050 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000056","","740"
"10:46:28.3565006 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 7880","5728"
"10:46:28.3566858 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000213","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3567784 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.3568121 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000025","SyncType: SyncTypeOther","8004"
"10:46:28.3568129 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000073","Query: Name","7880"
"10:46:28.3568513 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3568633 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\cryptsp.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3568961 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:28.3569170 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000073","","740"
"10:46:28.3569264 AM","firefox.exe","7904","Load Image","C:\Windows\System32\cryptsp.dll","0.0000000","Image Base: 0x7ffb45460000, Image Size: 0x17000","8004"
"10:46:28.3569328 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000026","Query: HandleTags, HandleTags: 0x0","7880"
"10:46:28.3569490 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000018","Query: HandleTags, HandleTags: 0x0","7880"
"10:46:28.3569525 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\cryptsp.dll","0.0000059","Name: \Windows\System32\cryptsp.dll","8004"
"10:46:28.3569682 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000086","Desired Access: Read","7880"
"10:46:28.3569951 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000184","Desired Access: Read","7880"
"10:46:28.3570352 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000060","Query: Name","7880"
"10:46:28.3570553 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000017","Query: HandleTags, HandleTags: 0x0","7880"
"10:46:28.3570779 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\TreatAs","0.0000081","Desired Access: Query Value","7880"
"10:46:28.3570813 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000077","","8004"
"10:46:28.3570992 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000017","Query: HandleTags, HandleTags: 0x0","7880"
"10:46:28.3571154 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\TreatAs","0.0000043","Desired Access: Query Value","7880"
"10:46:28.3571317 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000047","Query: Name","7880"
"10:46:28.3571551 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000043","Query: Name","7880"
"10:46:28.3571722 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000013","Query: HandleTags, HandleTags: 0x0","7880"
"10:46:28.3571927 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000081","Desired Access: Maximum Allowed","7880"
"10:46:28.3572140 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\(Default)","0.0000047","Length: 12","7880"
"10:46:28.3572324 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000042","Query: Name","7880"
"10:46:28.3572562 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3573079 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:28.3573266 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000073","","740"
"10:46:28.3573301 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000021","Query: HandleTags, HandleTags: 0x0","7880"
"10:46:28.3573522 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000064","Desired Access: Maximum Allowed","7880"
"10:46:28.3573710 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\(Default)","0.0000043","Type: REG_SZ, Length: 48, Data: Custom Destination List","7880"
"10:46:28.3573902 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000047","Query: Name","7880"
"10:46:28.3574081 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000013","Query: HandleTags, HandleTags: 0x0","7880"
"10:46:28.3574278 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InprocServer32","0.0000068","Desired Access: Read","7880"
"10:46:28.3574470 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000017","Query: HandleTags, HandleTags: 0x0","7880"
"10:46:28.3574632 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InprocServer32","0.0000102","Desired Access: Read","7880"
"10:46:28.3574901 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000047","Query: Name","7880"
"10:46:28.3575076 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","7880"
"10:46:28.3575263 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000064","Desired Access: Maximum Allowed","7880"
"10:46:28.3575460 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32\InprocServer32","0.0000034","Length: 12","7880"
"10:46:28.3575626 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000047","Query: Name","7880"
"10:46:28.3575809 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000013","Query: HandleTags, HandleTags: 0x0","7880"
"10:46:28.3575997 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000060","Desired Access: Maximum Allowed","7880"
"10:46:28.3576176 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32\(Default)","0.0000030","Length: 12","7880"
"10:46:28.3576317 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3576334 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000043","Query: Name","7880"
"10:46:28.3576603 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","7880"
"10:46:28.3576774 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000042","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:28.3576791 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000059","Desired Access: Maximum Allowed","7880"
"10:46:28.3576953 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000072","","740"
"10:46:28.3577081 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32\(Default)","0.0000043","Type: REG_EXPAND_SZ, Length: 84, Data: %SystemRoot%\system32\windows.storage.dll","7880"
"10:46:28.3577281 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000043","Query: Name","7880"
"10:46:28.3577452 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000013","Query: HandleTags, HandleTags: 0x0","7880"
"10:46:28.3577640 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000055","Desired Access: Maximum Allowed","7880"
"10:46:28.3577798 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32\(Default)","0.0000034","Type: REG_EXPAND_SZ, Length: 84, Data: %SystemRoot%\system32\windows.storage.dll","7880"
"10:46:28.3577964 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000038","Query: Name","7880"
"10:46:28.3578109 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000013","Query: HandleTags, HandleTags: 0x0","7880"
"10:46:28.3578280 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000051","Desired Access: Maximum Allowed","7880"
"10:46:28.3578446 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32\ThreadingModel","0.0000039","Type: REG_SZ, Length: 20, Data: Apartment","7880"
"10:46:28.3578728 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000077","","7880"
"10:46:28.3578950 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000042","Query: Name","7880"
"10:46:28.3579120 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000013","Query: HandleTags, HandleTags: 0x0","7880"
"10:46:28.3579300 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InprocHandler32","0.0000059","Desired Access: Query Value","7880"
"10:46:28.3579474 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000026","Query: HandleTags, HandleTags: 0x0","7880"
"10:46:28.3579637 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InprocHandler32","0.0000042","Desired Access: Query Value","7880"
"10:46:28.3579807 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000043","Query: Name","7880"
"10:46:28.3579978 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000013","Query: HandleTags, HandleTags: 0x0","7880"
"10:46:28.3580157 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InprocHandler","0.0000064","Desired Access: Query Value","7880"
"10:46:28.3580345 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000017","Query: HandleTags, HandleTags: 0x0","7880"
"10:46:28.3580503 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InprocHandler","0.0000042","Desired Access: Query Value","7880"
"10:46:28.3580750 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000017","","7880"
"10:46:28.3581313 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\imm32.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3581429 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0002419","","2512"
"10:46:28.3581817 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000043","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","8004"
"10:46:28.3581962 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\imm32.dll","0.0000077","","8004"
"10:46:28.3582043 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3582525 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000039","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:28.3582713 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000068","","740"
"10:46:28.3583263 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 2912","7880"
"10:46:28.3586335 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\imm32.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3586847 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3586920 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000042","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","8004"
"10:46:28.3587082 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\imm32.dll","0.0000064","","8004"
"10:46:28.3587632 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000047","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:28.3587816 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000077","","740"
"10:46:28.3587846 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Error Message Instrument\","0.0000085","Desired Access: Read","8004"
"10:46:28.3589006 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Error Message Instrument","0.0000167","Desired Access: Read","8004"
"10:46:28.3589685 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","7880"
"10:46:28.3589894 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\COM3","0.0000085","Desired Access: Read","7880"
"10:46:28.3589906 AM","firefox.exe","7904","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000073","Desired Access: Query Value, Enumerate Sub Keys","8004"
"10:46:28.3590150 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\COM3\GipActivityBypass","0.0000055","Length: 16","7880"
"10:46:28.3590184 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Display","0.0000106","Desired Access: Read","8004"
"10:46:28.3590418 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\COM3","0.0000022","","7880"
"10:46:28.3590542 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Display","0.0000064","Desired Access: Read","8004"
"10:46:28.3590760 AM","firefox.exe","7904","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000038","Desired Access: Query Value, Enumerate Sub Keys","8004"
"10:46:28.3590939 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Display","0.0000055","Desired Access: Read","8004"
"10:46:28.3591127 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Display","0.0000047","Desired Access: Read","8004"
"10:46:28.3591378 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3591605 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\GRE_Initialize","0.0000115","Desired Access: Read","8004"
"10:46:28.3591912 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize\DisableMetaFiles","0.0000162","Length: 20","8004"
"10:46:28.3592048 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000081","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:28.3592262 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize","0.0000017","","8004"
"10:46:28.3592287 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000077","","740"
"10:46:28.3592842 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows\Control Panel\Desktop","0.0000098","Desired Access: Read","8004"
"10:46:28.3593166 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Policies\Microsoft\Windows\Control Panel\Desktop","0.0000107","Desired Access: Read","8004"
"10:46:28.3593465 AM","firefox.exe","7904","RegOpenKey","HKCU\Control Panel\Desktop","0.0000064","Desired Access: Read","8004"
"10:46:28.3593721 AM","firefox.exe","7904","RegQueryValue","HKCU\Control Panel\Desktop\EnablePerProcessSystemDPI","0.0000081","Length: 20","8004"
"10:46:28.3594007 AM","firefox.exe","7904","RegCloseKey","HKCU\Control Panel\Desktop","0.0000017","","8004"
"10:46:28.3595099 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\Compatibility32","0.0000145","Desired Access: Read","8004"
"10:46:28.3595257 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000060","Query: Name","2912"
"10:46:28.3595483 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Compatibility32\firefox","0.0000034","Length: 172","8004"
"10:46:28.3595526 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000012","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3595692 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3595713 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Compatibility32","0.0000022","","8004"
"10:46:28.3595931 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\IME Compatibility","0.0000073","Desired Access: Read","8004"
"10:46:28.3595995 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000085","Desired Access: Read","2912"
"10:46:28.3596298 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000077","Desired Access: Read","2912"
"10:46:28.3596580 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000072","Query: Name","2912"
"10:46:28.3596823 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000021","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3597202 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\TreatAs","0.0000077","Desired Access: Query Value","2912"
"10:46:28.3597318 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3597441 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3597629 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\TreatAs","0.0000043","Desired Access: Query Value","2912"
"10:46:28.3597817 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000055","Query: Name","2912"
"10:46:28.3597855 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000069","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:28.3598060 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000068","","740"
"10:46:28.3599071 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing","0.0000047","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:38 AM, LastWriteTime: 3/26/2020 10:25:38 AM, ChangeTime: 3/26/2020 10:25:38 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: D","7900"
"10:46:28.3599285 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing","0.0000072","","7900"
"10:46:28.3599404 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0001382","Query: Name","2912"
"10:46:28.3601034 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000021","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3601328 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000090","Desired Access: Maximum Allowed","2912"
"10:46:28.3601584 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3601593 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\(Default)","0.0000043","Length: 12","2912"
"10:46:28.3601815 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000055","Query: Name","2912"
"10:46:28.3602028 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000013","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3602066 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000047","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:28.3602276 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000068","Desired Access: Maximum Allowed","2912"
"10:46:28.3602280 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000068","","740"
"10:46:28.3602506 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\(Default)","0.0001506","Type: REG_SZ, Length: 48, Data: Custom Destination List","2912"
"10:46:28.3602877 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.3603201 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing","0.0000043","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:38 AM, LastWriteTime: 3/26/2020 10:25:38 AM, ChangeTime: 3/26/2020 10:25:38 AM, FileAttributes: D","7900"
"10:46:28.3603381 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing","0.0000051","","7900"
"10:46:28.3603398 AM","firefox.exe","7904","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\firefox.exe","0.0000051","Desired Access: Query Value, Enumerate Sub Keys","8004"
"10:46:28.3605045 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000657","Query: Name","2912"
"10:46:28.3605079 AM","firefox.exe","7384","ReadFile","C:\$Directory","0.0400495","Offset: 4,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7900"
"10:46:28.3605941 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000025","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3606231 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InprocServer32","0.0000081","Desired Access: Read","2912"
"10:46:28.3606483 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3606687 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InprocServer32","0.0000064","Desired Access: Read","2912"
"10:46:28.3606939 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000060","Query: Name","2912"
"10:46:28.3607157 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3607276 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3607387 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000073","Desired Access: Maximum Allowed","2912"
"10:46:28.3607617 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32\InprocServer32","0.0000039","Length: 12","2912"
"10:46:28.3607771 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000038","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:28.3607912 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000089","Query: Name","2912"
"10:46:28.3607972 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000072","","740"
"10:46:28.3608019 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3608176 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3608351 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8004"
"10:46:28.3608411 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000073","Desired Access: Maximum Allowed","2912"
"10:46:28.3608471 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000051","","8004"
"10:46:28.3608646 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32\(Default)","0.0000111","Length: 12","2912"
"10:46:28.3610224 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3610421 AM","firefox.exe","7904","RegOpenKey","HKLM\SOFTWARE\Microsoft\OLE","0.0000081","Desired Access: Read","8004"
"10:46:28.3610651 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Ole\PageAllocatorUseSystemHeap","0.0000038","Length: 20","8004"
"10:46:28.3610835 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Ole","0.0000012","","8004"
"10:46:28.3610975 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3611116 AM","firefox.exe","7904","RegOpenKey","HKLM\SOFTWARE\Microsoft\OLE","0.0000060","Desired Access: Read","8004"
"10:46:28.3611253 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3611325 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Ole\PageAllocatorSystemHeapIsPrivate","0.0000034","Length: 20","8004"
"10:46:28.3611560 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Ole","0.0000021","","8004"
"10:46:28.3611692 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000043","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:28.3611790 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000064","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3611841 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000201","Query: Name","2912"
"10:46:28.3611880 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000064","","740"
"10:46:28.3612080 AM","firefox.exe","7904","RegOpenKey","HKLM\SOFTWARE\Microsoft\OLE","0.0000124","Desired Access: Read","8004"
"10:46:28.3612362 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Ole\AggressiveMTATesting","0.0000034","Length: 16","8004"
"10:46:28.3612537 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Ole","0.0000081","","8004"
"10:46:28.3612622 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000022","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3613267 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000081","Desired Access: Maximum Allowed","2912"
"10:46:28.3613535 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32\(Default)","0.0000043","Type: REG_EXPAND_SZ, Length: 84, Data: %SystemRoot%\system32\windows.storage.dll","2912"
"10:46:28.3614227 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 7504","36"
"10:46:28.3614440 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000060","Query: Name","2912"
"10:46:28.3614666 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3614905 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000068","Desired Access: Maximum Allowed","2912"
"10:46:28.3615118 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32\(Default)","0.0000039","Type: REG_EXPAND_SZ, Length: 84, Data: %SystemRoot%\system32\windows.storage.dll","2912"
"10:46:28.3615464 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3615617 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000069","Query: Name","2912"
"10:46:28.3615630 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3615656 AM","firefox.exe","7904","RegOpenKey","HKLM","0.0000055","Desired Access: Read","8004"
"10:46:28.3615882 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000038","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3615925 AM","firefox.exe","7904","RegSetInfoKey","HKLM","0.0000017","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","8004"
"10:46:28.3616159 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000069","Query: HandleTags, HandleTags: 0x100","8004"
"10:46:28.3616172 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000094","Desired Access: Maximum Allowed","2912"
"10:46:28.3616198 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:28.3616415 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\Ole\FeatureDevelopmentProperties","0.0000069","Desired Access: Read","8004"
"10:46:28.3616441 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000128","","740"
"10:46:28.3616496 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32\ThreadingModel","0.0000052","Type: REG_SZ, Length: 20, Data: Apartment","2912"
"10:46:28.3616701 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x100","8004"
"10:46:28.3616795 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InProcServer32","0.0000021","","2912"
"10:46:28.3616876 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\Ole\FeatureDevelopmentProperties","0.0000051","Desired Access: Read","8004"
"10:46:28.3616991 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000060","Query: Name","2912"
"10:46:28.3617064 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x100","8004"
"10:46:28.3617209 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\Ole","0.0000064","Desired Access: Read","8004"
"10:46:28.3617222 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3617456 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InprocHandler32","0.0000069","Desired Access: Query Value","2912"
"10:46:28.3617678 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3617870 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InprocHandler32","0.0000043","Desired Access: Query Value","2912"
"10:46:28.3617947 AM","firefox.exe","7904","RegOpenKey","HKCU","0.0000073","Desired Access: Read","8004"
"10:46:28.3618071 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000047","Query: Name","2912"
"10:46:28.3618186 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3618276 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000029","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3618348 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\Local Settings","0.0000064","Desired Access: Read","8004"
"10:46:28.3618502 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InprocHandler","0.0000068","Desired Access: Query Value","2912"
"10:46:28.3618549 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\Local Settings","0.0000072","Desired Access: Read","8004"
"10:46:28.3618719 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000022","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3618771 AM","firefox.exe","7904","RegSetInfoKey","HKCU\Software\Classes\Local Settings","0.0000017","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","8004"
"10:46:28.3618899 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\InprocHandler","0.0000042","Desired Access: Query Value","2912"
"10:46:28.3618963 AM","firefox.exe","7904","RegCloseKey","HKCU","0.0000021","","8004"
"10:46:28.3619099 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000047","Query: Name","2912"
"10:46:28.3619291 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3619547 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\LocalServer32","0.0000068","Desired Access: Read","2912"
"10:46:28.3619752 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3619940 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\LocalServer32","0.0000038","Desired Access: Read","2912"
"10:46:28.3620021 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Classes\Local Settings","0.0000021","Query: HandleTags, HandleTags: 0x100","8004"
"10:46:28.3620110 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000043","Query: Name","2912"
"10:46:28.3620200 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Ole\FeatureDevelopmentProperties","0.0000064","Desired Access: Read","8004"
"10:46:28.3620277 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3620413 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Classes\Local Settings","0.0000013","Query: HandleTags, HandleTags: 0x100","8004"
"10:46:28.3620486 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000059","Desired Access: Maximum Allowed","2912"
"10:46:28.3620575 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Ole\FeatureDevelopmentProperties","0.0000047","Desired Access: Read","8004"
"10:46:28.3620682 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\AppID","0.0000038","Length: 112","2912"
"10:46:28.3620767 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Classes\Local Settings","0.0000017","Query: HandleTags, HandleTags: 0x100","8004"
"10:46:28.3620853 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000042","Query: Name","2912"
"10:46:28.3620938 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Ole","0.0000043","Desired Access: Read","8004"
"10:46:28.3620959 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3621019 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3621104 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Classes\Local Settings","0.0000013","Query: HandleTags, HandleTags: 0x100","8004"
"10:46:28.3621207 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\LocalServer","0.0000060","Desired Access: Query Value","2912"
"10:46:28.3621254 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft","0.0000068","Desired Access: Read","8004"
"10:46:28.3621390 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3621450 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000051","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:28.3621548 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\LocalServer","0.0000039","Desired Access: Query Value","2912"
"10:46:28.3621633 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000069","","740"
"10:46:28.3621723 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000043","Query: Name","2912"
"10:46:28.3621924 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000012","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3622047 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3622120 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3622197 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000051","Desired Access: Read","2912"
"10:46:28.3622269 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\OLE\Tracing","0.0000068","Desired Access: Read","8004"
"10:46:28.3622401 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000073","Desired Access: Read","2912"
"10:46:28.3622619 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000043","Query: Name","2912"
"10:46:28.3622794 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000013","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3622977 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\Elevation","0.0000056","Desired Access: Read","2912"
"10:46:28.3623161 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3623315 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\Elevation","0.0000038","Desired Access: Read","2912"
"10:46:28.3623541 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000021","","2912"
"10:46:28.3623745 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000018","","2912"
"10:46:28.3623997 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000043","Query: Name","2912"
"10:46:28.3624172 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3624304 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3624471 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000051","Desired Access: Read","2912"
"10:46:28.3624684 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000068","Desired Access: Read","2912"
"10:46:28.3624910 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000051","Query: Name","2912"
"10:46:28.3625102 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000013","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3625303 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\TreatAs","0.0000060","Desired Access: Read","2912"
"10:46:28.3625499 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3625661 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}\TreatAs","0.0000039","Desired Access: Read","2912"
"10:46:28.3625875 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{77F10CF0-3DB5-4966-B520-B7C54FD35ED6}","0.0000017","","2912"
"10:46:28.3626037 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3626536 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000051","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:28.3626719 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000073","","740"
"10:46:28.3627103 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000047","Query: Name","2912"
"10:46:28.3627325 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3627492 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000012","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3627679 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{6332DEBF-87B5-4670-90C0-5E57B408A49E}","0.0000107","Desired Access: Read","2912"
"10:46:28.3627978 AM","firefox.exe","7384","RegOpenKey","HKCR\Interface\{6332DEBF-87B5-4670-90C0-5E57B408A49E}","0.0000222","Desired Access: Read","2912"
"10:46:28.3628388 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{6332DEBF-87B5-4670-90C0-5E57B408A49E}","0.0000047","Query: Name","2912"
"10:46:28.3628592 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{6332DEBF-87B5-4670-90C0-5E57B408A49E}","0.0000039","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3628857 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{6332DEBF-87B5-4670-90C0-5E57B408A49E}\ProxyStubClsid32","0.0000107","Desired Access: Read","2912"
"10:46:28.3629130 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{6332DEBF-87B5-4670-90C0-5E57B408A49E}","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3629313 AM","firefox.exe","7384","RegOpenKey","HKCR\Interface\{6332DEBF-87B5-4670-90C0-5E57B408A49E}\ProxyStubClsid32","0.0000086","Desired Access: Read","2912"
"10:46:28.3629591 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{6332DEBF-87B5-4670-90C0-5E57B408A49E}\ProxyStubClsid32","0.0000047","Query: Name","2912"
"10:46:28.3629791 AM","firefox.exe","7384","RegQueryKey","HKCR\Interface\{6332DEBF-87B5-4670-90C0-5E57B408A49E}\ProxyStubClsid32","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3630013 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Interface\{6332DEBF-87B5-4670-90C0-5E57B408A49E}\ProxyStubClsid32","0.0000090","Desired Access: Maximum Allowed","2912"
"10:46:28.3630273 AM","firefox.exe","7384","RegQueryValue","HKCR\Interface\{6332DEBF-87B5-4670-90C0-5E57B408A49E}\ProxyStubClsid32\(Default)","0.0000043","Type: REG_SZ, Length: 78, Data: {95E15D0A-66E6-93D9-C53C-76E6219D3341}","2912"
"10:46:28.3630372 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3630508 AM","firefox.exe","7384","RegCloseKey","HKCR\Interface\{6332DEBF-87B5-4670-90C0-5E57B408A49E}\ProxyStubClsid32","0.0000021","","2912"
"10:46:28.3630687 AM","firefox.exe","7384","RegCloseKey","HKCR\Interface\{6332DEBF-87B5-4670-90C0-5E57B408A49E}","0.0000013","","2912"
"10:46:28.3630867 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000042","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:28.3630939 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000038","Query: Name","2912"
"10:46:28.3631054 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000077","","740"
"10:46:28.3631140 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3631310 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3631481 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000055","Desired Access: Read","2912"
"10:46:28.3631694 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000150","Desired Access: Read","2912"
"10:46:28.3632010 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000043","Query: Name","2912"
"10:46:28.3632189 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000013","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3632381 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\TreatAs","0.0000060","Desired Access: Query Value","2912"
"10:46:28.3632582 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3632757 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\TreatAs","0.0000042","Desired Access: Query Value","2912"
"10:46:28.3632944 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000047","Query: Name","2912"
"10:46:28.3633188 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000042","Query: Name","2912"
"10:46:28.3633380 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000012","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3633589 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000059","Desired Access: Maximum Allowed","2912"
"10:46:28.3633798 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\(Default)","0.0000038","Length: 12","2912"
"10:46:28.3633985 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000043","Query: Name","2912"
"10:46:28.3634173 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000013","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3634374 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000055","Desired Access: Maximum Allowed","2912"
"10:46:28.3634574 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\(Default)","0.0000034","Type: REG_SZ, Length: 32, Data: PSFactoryBuffer","2912"
"10:46:28.3634779 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000043","Query: Name","2912"
"10:46:28.3634980 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3635214 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InprocServer32","0.0000056","Desired Access: Read","2912"
"10:46:28.3635415 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3635594 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InprocServer32","0.0000081","Desired Access: Read","2912"
"10:46:28.3635863 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32","0.0000047","Query: Name","2912"
"10:46:28.3636063 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3636277 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32","0.0000059","Desired Access: Maximum Allowed","2912"
"10:46:28.3636494 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32\InprocServer32","0.0000034","Length: 12","2912"
"10:46:28.3636558 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3636686 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32","0.0000047","Query: Name","2912"
"10:46:28.3636853 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000379","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3636895 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3637062 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000098","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:28.3637104 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32","0.0000090","Desired Access: Maximum Allowed","2912"
"10:46:28.3637326 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000073","","740"
"10:46:28.3637365 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32\(Default)","0.0000038","Length: 12","2912"
"10:46:28.3637446 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000055","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8004"
"10:46:28.3637625 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32","0.0000051","Query: Name","2912"
"10:46:28.3637663 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000098","","8004"
"10:46:28.3637830 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3638043 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32","0.0000060","Desired Access: Maximum Allowed","2912"
"10:46:28.3638244 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32\(Default)","0.0000042","Type: REG_SZ, Length: 100, Data: C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","2912"
"10:46:28.3638444 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32","0.0000043","Query: Name","2912"
"10:46:28.3638640 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32","0.0000013","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3638679 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3638845 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\OLE\Tracing","0.0000103","Desired Access: Read","8004"
"10:46:28.3638849 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32","0.0000073","Desired Access: Maximum Allowed","2912"
"10:46:28.3639067 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32\ThreadingModel","0.0000038","Type: REG_SZ, Length: 10, Data: Both","2912"
"10:46:28.3639323 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32","0.0000017","","2912"
"10:46:28.3639498 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000051","Query: Name","2912"
"10:46:28.3639707 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3639925 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InprocHandler32","0.0000059","Desired Access: Query Value","2912"
"10:46:28.3640142 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3640330 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InprocHandler32","0.0000043","Desired Access: Query Value","2912"
"10:46:28.3640535 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000042","Query: Name","2912"
"10:46:28.3640740 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000012","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3640953 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InprocHandler","0.0000060","Desired Access: Query Value","2912"
"10:46:28.3641162 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3641345 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InprocHandler","0.0000056","Desired Access: Query Value","2912"
"10:46:28.3641503 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3641631 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000017","","2912"
"10:46:28.3642101 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000055","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:28.3642284 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000051","Query: Name","2912"
"10:46:28.3642314 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000077","","740"
"10:46:28.3642643 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3642655 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3642813 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3642988 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000051","Desired Access: Read","2912"
"10:46:28.3643227 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000098","Desired Access: Read","2912"
"10:46:28.3643274 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000047","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","8004"
"10:46:28.3643449 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000333","","8004"
"10:46:28.3643517 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000047","Query: Name","2912"
"10:46:28.3643731 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000012","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3643952 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\TreatAs","0.0000060","Desired Access: Query Value","2912"
"10:46:28.3644161 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000013","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3644353 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\TreatAs","0.0000039","Desired Access: Query Value","2912"
"10:46:28.3644545 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000047","Query: Name","2912"
"10:46:28.3644806 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000042","Query: Name","2912"
"10:46:28.3645023 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3645258 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000064","Desired Access: Maximum Allowed","2912"
"10:46:28.3645488 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\(Default)","0.0000035","Length: 12","2912"
"10:46:28.3645689 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000043","Query: Name","2912"
"10:46:28.3645885 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3646107 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000060","Desired Access: Maximum Allowed","2912"
"10:46:28.3646201 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3646325 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\(Default)","0.0000034","Type: REG_SZ, Length: 32, Data: PSFactoryBuffer","2912"
"10:46:28.3646529 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000043","Query: Name","2912"
"10:46:28.3646696 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000047","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:28.3646734 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3646892 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000068","","740"
"10:46:28.3646965 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InprocServer32","0.0000059","Desired Access: Read","2912"
"10:46:28.3647199 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3647379 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InprocServer32","0.0000046","Desired Access: Read","2912"
"10:46:28.3647592 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32","0.0000043","Query: Name","2912"
"10:46:28.3647780 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32","0.0000012","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3647980 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32","0.0000077","Desired Access: Maximum Allowed","2912"
"10:46:28.3648219 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32\InprocServer32","0.0000034","Length: 12","2912"
"10:46:28.3648420 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32","0.0000042","Query: Name","2912"
"10:46:28.3648620 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3648842 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32","0.0000060","Desired Access: Maximum Allowed","2912"
"10:46:28.3649064 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32\(Default)","0.0000030","Length: 12","2912"
"10:46:28.3649264 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32","0.0000047","Query: Name","2912"
"10:46:28.3649473 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32","0.0000018","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3649695 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32","0.0000060","Desired Access: Maximum Allowed","2912"
"10:46:28.3649917 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32\(Default)","0.0000039","Type: REG_SZ, Length: 100, Data: C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","2912"
"10:46:28.3650135 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32","0.0000042","Query: Name","2912"
"10:46:28.3650340 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3650566 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32","0.0000059","Desired Access: Maximum Allowed","2912"
"10:46:28.3650643 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3650783 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32\ThreadingModel","0.0000039","Type: REG_SZ, Length: 10, Data: Both","2912"
"10:46:28.3651048 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InProcServer32","0.0000017","","2912"
"10:46:28.3651095 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000042","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:28.3651240 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000038","Query: Name","2912"
"10:46:28.3651274 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000073","","740"
"10:46:28.3651457 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000013","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3651675 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InprocHandler32","0.0000060","Desired Access: Query Value","2912"
"10:46:28.3651871 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3652046 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InprocHandler32","0.0000043","Desired Access: Query Value","2912"
"10:46:28.3652243 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000046","Query: Name","2912"
"10:46:28.3652460 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3652605 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\setupapi.dll","0.0000073","Name: \Windows\System32\setupapi.dll","8004"
"10:46:28.3652682 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InprocHandler","0.0000060","Desired Access: Query Value","2912"
"10:46:28.3652895 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3653092 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\InprocHandler","0.0000055","Desired Access: Query Value","2912"
"10:46:28.3653322 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000043","Query: Name","2912"
"10:46:28.3653531 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000060","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3653945 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\LocalServer32","0.0000081","Desired Access: Read","2912"
"10:46:28.3654261 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000030","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3654585 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\LocalServer32","0.0000047","Desired Access: Read","2912"
"10:46:28.3654811 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000047","Query: Name","2912"
"10:46:28.3655024 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3655144 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3655259 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000064","Desired Access: Maximum Allowed","2912"
"10:46:28.3655489 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\AppID","0.0000035","Length: 112","2912"
"10:46:28.3655750 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000047","Query: Name","2912"
"10:46:28.3655805 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000047","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:28.3655976 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3656001 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000073","","740"
"10:46:28.3656211 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\LocalServer","0.0000064","Desired Access: Query Value","2912"
"10:46:28.3656428 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000021","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3656624 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\LocalServer","0.0000043","Desired Access: Query Value","2912"
"10:46:28.3656893 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000073","Query: Name","2912"
"10:46:28.3657866 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000192","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3657960 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3658365 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000056","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8004"
"10:46:28.3658404 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000025","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3658536 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000068","","8004"
"10:46:28.3658651 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000051","Desired Access: Read","2912"
"10:46:28.3658911 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000077","Desired Access: Read","2912"
"10:46:28.3659184 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000052","Query: Name","2912"
"10:46:28.3659406 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000013","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3659641 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\Elevation","0.0000064","Desired Access: Read","2912"
"10:46:28.3659893 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000021","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3660080 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\Elevation","0.0000039","Desired Access: Read","2912"
"10:46:28.3660328 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000021","","2912"
"10:46:28.3660563 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000012","","2912"
"10:46:28.3660827 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000043","Query: Name","2912"
"10:46:28.3661040 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3661203 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000012","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3661386 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000047","Desired Access: Read","2912"
"10:46:28.3661621 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000059","Desired Access: Read","2912"
"10:46:28.3661625 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3661847 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000051","Query: Name","2912"
"10:46:28.3662056 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3662192 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000039","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:28.3662278 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\TreatAs","0.0000064","Desired Access: Read","2912"
"10:46:28.3662402 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000064","","740"
"10:46:28.3662491 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000013","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3662670 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}\TreatAs","0.0000039","Desired Access: Read","2912"
"10:46:28.3662892 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{95E15D0A-66E6-93D9-C53C-76E6219D3341}","0.0000017","","2912"
"10:46:28.3663511 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ole32.dll","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3664304 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000043","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","8004"
"10:46:28.3664445 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ole32.dll","0.0000056","","8004"
"10:46:28.3665704 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3665917 AM","firefox.exe","7904","RegOpenKey","HKLM\SOFTWARE\Microsoft\OLEAUT","0.0000077","Desired Access: Query Value","8004"
"10:46:28.3667778 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000418","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3668004 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000315","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2912"
"10:46:28.3668499 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000904","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:28.3668546 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000038","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:46:36 PM, FileAttributes: A","2912"
"10:46:28.3668793 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000060","","2912"
"10:46:28.3669608 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000081","","740"
"10:46:28.3670487 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000179","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2912"
"10:46:28.3670926 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000120","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2912"
"10:46:28.3671447 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000025","SyncType: SyncTypeOther","2912"
"10:46:28.3672304 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0008841","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3672898 AM","firefox.exe","7384","Load Image","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000000","Image Base: 0x7ffb40310000, Image Size: 0x69b000","2912"
"10:46:28.3673264 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000069","Name: \Windows\System32\OneCoreUAPCommonProxyStub.dll","2912"
"10:46:28.3673789 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3674314 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000043","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:28.3674502 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000068","","740"
"10:46:28.3675304 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000072","","2912"
"10:46:28.3677514 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3677958 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000042","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:28.3678128 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000060","","740"
"10:46:28.3682476 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3683095 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.3683304 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000068","","740"
"10:46:28.3683714 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3684025 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000043","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8004"
"10:46:28.3684166 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000064","","8004"
"10:46:28.3686517 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3686982 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000042","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.3687161 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000060","","740"
"10:46:28.3687276 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3687536 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000094","Desired Access: All Access","8004"
"10:46:28.3687792 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000734","Desired Access: All Access","8004"
"10:46:28.3687797 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0005320","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:28.3688078 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000077","Information: Owner","8004"
"10:46:28.3688322 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000034","Information: Owner","8004"
"10:46:28.3688723 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3688902 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000060","Desired Access: Read","8004"
"10:46:28.3689098 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000081","Desired Access: Read","8004"
"10:46:28.3689572 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000051","Length: 16","8004"
"10:46:28.3689755 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000034","Type: REG_SZ, Length: 8, Data: 2.0","8004"
"10:46:28.3690015 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3690178 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog","0.0000119","Desired Access: Read","8004"
"10:46:28.3690263 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3690621 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3690736 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.3690771 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog\3AC7FBD2-2F7B1DCC","0.0000042","Desired Access: Read","8004"
"10:46:28.3690920 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000064","","740"
"10:46:28.3690958 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3691108 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog\3AC7FBD2","0.0000034","Desired Access: Read","8004"
"10:46:28.3691321 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog","0.0000021","","8004"
"10:46:28.3691522 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Callout","0.0000034","Length: 12","8004"
"10:46:28.3691722 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Callout","0.0000038","Type: REG_EXPAND_SZ, Length: 70, Data: %SystemRoot%\System32\fwpuclnt.dll","8004"
"10:46:28.3691965 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3692127 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000073","Desired Access: Maximum Allowed, Granted Access: Read","8004"
"10:46:28.3692345 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000038","Type: REG_DWORD, Length: 4, Data: 8","8004"
"10:46:28.3693275 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","8004"
"10:46:28.3693467 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3693629 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000039","Desired Access: Read","8004"
"10:46:28.3693834 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000034","Type: REG_DWORD, Length: 4, Data: 1015","8004"
"10:46:28.3694013 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000030","Type: REG_DWORD, Length: 4, Data: 14","8004"
"10:46:28.3694175 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3694333 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000103","Desired Access: Maximum Allowed, Granted Access: Read","8004"
"10:46:28.3694619 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3694773 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000094","Desired Access: Read","8004"
"10:46:28.3694969 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3695046 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Length: 144","8004"
"10:46:28.3695199 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8004"
"10:46:28.3695417 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:28.3695430 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000017","","8004"
"10:46:28.3695592 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000068","","740"
"10:46:28.3695605 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3695767 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000085","Desired Access: Read","8004"
"10:46:28.3696040 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Length: 144","8004"
"10:46:28.3696198 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8004"
"10:46:28.3697077 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3697299 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000055","Query: Name","5728"
"10:46:28.3697307 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000034","","8004"
"10:46:28.3697572 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000025","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3697640 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\WOW6432Node\Mozilla\Firefox\TaskBarIDs","0.0000183","Desired Access: Read","5728"
"10:46:28.3697794 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000123","Desired Access: Read","8004"
"10:46:28.3698041 AM","firefox.exe","7384","RegSetInfoKey","HKLM\SOFTWARE\WOW6432Node\Mozilla\Firefox\TaskBarIDs","0.0000030","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:28.3698152 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000043","Length: 144","8004"
"10:46:28.3698182 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000068","","2512"
"10:46:28.3698233 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\WOW6432Node\Mozilla\Firefox\TaskBarIDs\C:\Program Files\Firefox Nightly","0.0000047","Type: REG_SZ, Length: 34, Data: 6F193CCC56814779","5728"
"10:46:28.3698344 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8004"
"10:46:28.3698463 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\WOW6432Node\Mozilla\Firefox\TaskBarIDs","0.0000022","","5728"
"10:46:28.3698591 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000022","","8004"
"10:46:28.3698779 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3698788 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3698954 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000094","Desired Access: Read","8004"
"10:46:28.3699231 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000035","Length: 144","8004"
"10:46:28.3699385 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8004"
"10:46:28.3699594 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","","8004"
"10:46:28.3699756 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3699927 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000089","Desired Access: Read","8004"
"10:46:28.3700115 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3700196 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Length: 144","8004"
"10:46:28.3700272 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000056","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:28.3700358 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000102","Desired Access: Read","2912"
"10:46:28.3700482 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000085","","740"
"10:46:28.3700503 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8004"
"10:46:28.3700644 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3700725 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000034","","8004"
"10:46:28.3700831 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{AE50C081-EBD2-438A-8655-8A092E34987A}","0.0000244","Desired Access: Read","2912"
"10:46:28.3700964 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000025","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3701147 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000350","Desired Access: Read","8004"
"10:46:28.3701275 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000021","","2912"
"10:46:28.3701518 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{AE50C081-EBD2-438A-8655-8A092E34987A}\Category","0.0000047","Type: REG_DWORD, Length: 4, Data: 4","2912"
"10:46:28.3701719 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{AE50C081-EBD2-438A-8655-8A092E34987A}\Name","0.0000043","Type: REG_SZ, Length: 14, Data: Recent","2912"
"10:46:28.3701732 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000042","Length: 144","8004"
"10:46:28.3701902 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8004"
"10:46:28.3701924 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{AE50C081-EBD2-438A-8655-8A092E34987A}\ParentFolder","0.0000042","Type: REG_SZ, Length: 78, Data: {3EB685DB-65F9-4CF6-A03A-E3EF65729F3D}","2912"
"10:46:28.3702120 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{AE50C081-EBD2-438A-8655-8A092E34987A}\Description","0.0000043","Length: 144","2912"
"10:46:28.3702128 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000026","","8004"
"10:46:28.3702299 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{AE50C081-EBD2-438A-8655-8A092E34987A}\RelativePath","0.0000043","Type: REG_SZ, Length: 50, Data: Microsoft\Windows\Recent","2912"
"10:46:28.3702316 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3702483 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000098","Desired Access: Read","8004"
"10:46:28.3702495 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{AE50C081-EBD2-438A-8655-8A092E34987A}\ParsingName","0.0000039","Length: 144","2912"
"10:46:28.3702666 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{AE50C081-EBD2-438A-8655-8A092E34987A}\InfoTip","0.0000038","Type: REG_SZ, Length: 40, Data: @shell32,dll,-12692","2912"
"10:46:28.3702756 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000034","Length: 144","8004"
"10:46:28.3702845 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{AE50C081-EBD2-438A-8655-8A092E34987A}\LocalizedName","0.0000034","Type: REG_EXPAND_SZ, Length: 84, Data: @%SystemRoot%\system32\shell32.dll,-21797","2912"
"10:46:28.3702965 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000158","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8004"
"10:46:28.3703315 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{AE50C081-EBD2-438A-8655-8A092E34987A}\Icon","0.0000047","Type: REG_EXPAND_SZ, Length: 80, Data: %SystemRoot%\system32\imageres.dll,-117","2912"
"10:46:28.3703528 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{AE50C081-EBD2-438A-8655-8A092E34987A}\Security","0.0000030","Length: 144","2912"
"10:46:28.3703699 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{AE50C081-EBD2-438A-8655-8A092E34987A}\StreamResource","0.0000072","Length: 144","2912"
"10:46:28.3703861 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000021","","8004"
"10:46:28.3703912 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{AE50C081-EBD2-438A-8655-8A092E34987A}\StreamResourceType","0.0000034","Length: 144","2912"
"10:46:28.3704057 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3704087 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{AE50C081-EBD2-438A-8655-8A092E34987A}\LocalRedirectOnly","0.0000030","Length: 16","2912"
"10:46:28.3704240 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000107","Desired Access: Read","8004"
"10:46:28.3704249 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{AE50C081-EBD2-438A-8655-8A092E34987A}\Roamable","0.0000034","Length: 16","2912"
"10:46:28.3704420 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{AE50C081-EBD2-438A-8655-8A092E34987A}\PreCreate","0.0000038","Type: REG_DWORD, Length: 4, Data: 1","2912"
"10:46:28.3704505 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3704535 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000043","Length: 144","8004"
"10:46:28.3704595 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{AE50C081-EBD2-438A-8655-8A092E34987A}\Stream","0.0000029","Length: 16","2912"
"10:46:28.3704752 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{AE50C081-EBD2-438A-8655-8A092E34987A}\PublishExpandedPath","0.0000035","Length: 16","2912"
"10:46:28.3704859 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8004"
"10:46:28.3704910 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{AE50C081-EBD2-438A-8655-8A092E34987A}\DefinitionFlags","0.0000030","Length: 16","2912"
"10:46:28.3705081 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{AE50C081-EBD2-438A-8655-8A092E34987A}\Attributes","0.0000043","Type: REG_DWORD, Length: 4, Data: 1","2912"
"10:46:28.3705094 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000021","","8004"
"10:46:28.3705158 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:28.3705260 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{AE50C081-EBD2-438A-8655-8A092E34987A}\FolderTypeID","0.0000039","Length: 90","2912"
"10:46:28.3705282 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3705375 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000077","","740"
"10:46:28.3705435 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{AE50C081-EBD2-438A-8655-8A092E34987A}\InitFolderHandler","0.0000039","Length: 90","2912"
"10:46:28.3705456 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000099","Desired Access: Read","8004"
"10:46:28.3705640 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{AE50C081-EBD2-438A-8655-8A092E34987A}","0.0000021","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3705734 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000034","Length: 144","8004"
"10:46:28.3705836 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{AE50C081-EBD2-438A-8655-8A092E34987A}\PropertyBag","0.0000043","Desired Access: Read","2912"
"10:46:28.3705887 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000035","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8004"
"10:46:28.3706079 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000060","","8004"
"10:46:28.3706092 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{AE50C081-EBD2-438A-8655-8A092E34987A}","0.0000068","","2912"
"10:46:28.3706284 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3706408 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3706438 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000089","Desired Access: Read","8004"
"10:46:28.3706596 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000059","Desired Access: Query Value","2912"
"10:46:28.3706694 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000051","Length: 144","8004"
"10:46:28.3706847 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000017","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3706890 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8004"
"10:46:28.3707027 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\KnownFolders","0.0000047","Desired Access: Query Value","2912"
"10:46:28.3707091 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000021","","8004"
"10:46:28.3707253 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000021","","2912"
"10:46:28.3707261 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000026","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3707436 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000094","Desired Access: Read","8004"
"10:46:28.3707500 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000064","Desired Access: Read","2912"
"10:46:28.3707714 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000072","Length: 144","8004"
"10:46:28.3707752 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000047","Query: HandleTags, HandleTags: 0x0","2912"
"10:46:28.3707918 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8004"
"10:46:28.3707952 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000120","Desired Access: Read","2912"
"10:46:28.3708123 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000017","","8004"
"10:46:28.3708238 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000022","","2912"
"10:46:28.3708290 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3708430 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Recent","0.0000047","Type: REG_EXPAND_SZ, Length: 110, Data: %USERPROFILE%\AppData\Roaming\Microsoft\Windows\Recent","2912"
"10:46:28.3708460 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000098","Desired Access: Read","8004"
"10:46:28.3708831 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000035","Length: 144","8004"
"10:46:28.3708989 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8004"
"10:46:28.3709186 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000021","","8004"
"10:46:28.3709224 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3709360 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3709386 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000021","","2912"
"10:46:28.3709510 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000089","Desired Access: Read","8004"
"10:46:28.3709774 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000030","Length: 144","8004"
"10:46:28.3709804 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:28.3709928 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8004"
"10:46:28.3709988 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000068","","740"
"10:46:28.3710124 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000017","","8004"
"10:46:28.3710282 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3710427 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000086","Desired Access: Read","8004"
"10:46:28.3710679 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000030","Length: 144","8004"
"10:46:28.3710828 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8004"
"10:46:28.3711020 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000017","","8004"
"10:46:28.3711174 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","","8004"
"10:46:28.3711353 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations","0.0000265","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2912"
"10:46:28.3711579 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3711750 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5","0.0000077","Desired Access: Maximum Allowed, Granted Access: Read","8004"
"10:46:28.3711976 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Serial_Access_Num","0.0000038","Type: REG_DWORD, Length: 4, Data: 22","8004"
"10:46:28.3712556 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 22","8004"
"10:46:28.3712753 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3712923 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\00000016","0.0000039","Desired Access: Read","8004"
"10:46:28.3713013 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3713124 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Num_Catalog_Entries64","0.0000034","Type: REG_DWORD, Length: 4, Data: 7","8004"
"10:46:28.3713294 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3713444 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000111","Desired Access: Maximum Allowed, Granted Access: Read","8004"
"10:46:28.3713580 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:28.3713742 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3713768 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000073","","740"
"10:46:28.3713900 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001","0.0000090","Desired Access: Read","8004"
"10:46:28.3714156 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\LibraryPath","0.0000039","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\napinsp.dll","8004"
"10:46:28.3714318 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\LibraryPath","0.0000035","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\napinsp.dll","8004"
"10:46:28.3714489 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\DisplayString","0.0000034","Length: 12","8004"
"10:46:28.3714638 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\DisplayString","0.0000035","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\napinsp.dll,-1000","8004"
"10:46:28.3714801 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\DisplayString","0.0000055","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\napinsp.dll,-1000","8004"
"10:46:28.3714984 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\DisplayString","0.0000038","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\napinsp.dll,-1000","8004"
"10:46:28.3715163 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\ProviderId","0.0000034","Type: REG_BINARY, Length: 16, Data: A2 CB 4A 96 BC B2 EB 40 8C 6A A6 DB 40 16 1C AE","8004"
"10:46:28.3715330 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\AddressFamily","0.0000029","Length: 16","8004"
"10:46:28.3715492 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\SupportedNameSpace","0.0000034","Type: REG_DWORD, Length: 4, Data: 37","8004"
"10:46:28.3715662 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\Enabled","0.0000030","Type: REG_DWORD, Length: 4, Data: 1","8004"
"10:46:28.3715816 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\Version","0.0000034","Type: REG_DWORD, Length: 4, Data: 0","8004"
"10:46:28.3715995 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\StoresServiceClassInfo","0.0000034","Type: REG_DWORD, Length: 4, Data: 0","8004"
"10:46:28.3716170 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\ProviderInfo","0.0000039","Type: REG_BINARY, Length: 0","8004"
"10:46:28.3716341 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001\ProviderInfo","0.0000034","Type: REG_BINARY, Length: 0","8004"
"10:46:28.3716550 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000001","0.0000021","","8004"
"10:46:28.3716738 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3716840 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3716913 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002","0.0000102","Desired Access: Read","8004"
"10:46:28.3717190 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\LibraryPath","0.0000034","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\pnrpnsp.dll","8004"
"10:46:28.3717314 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000076","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:28.3717348 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\LibraryPath","0.0000030","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\pnrpnsp.dll","8004"
"10:46:28.3717518 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\DisplayString","0.0000026","Length: 12","8004"
"10:46:28.3717527 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000090","","740"
"10:46:28.3717668 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\DisplayString","0.0000051","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1000","8004"
"10:46:28.3717847 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\DisplayString","0.0000034","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1000","8004"
"10:46:28.3717992 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\DisplayString","0.0000030","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1000","8004"
"10:46:28.3718146 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\ProviderId","0.0000025","Type: REG_BINARY, Length: 16, Data: CE 89 FE 03 6D 76 76 49 B9 C1 BB 9B C4 2C 7B 4D","8004"
"10:46:28.3718278 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\AddressFamily","0.0000025","Length: 16","8004"
"10:46:28.3718414 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\SupportedNameSpace","0.0000030","Type: REG_DWORD, Length: 4, Data: 39","8004"
"10:46:28.3718551 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\Enabled","0.0000026","Type: REG_DWORD, Length: 4, Data: 1","8004"
"10:46:28.3718687 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\Version","0.0000026","Type: REG_DWORD, Length: 4, Data: 0","8004"
"10:46:28.3718837 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\StoresServiceClassInfo","0.0000025","Type: REG_DWORD, Length: 4, Data: 0","8004"
"10:46:28.3718986 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","8004"
"10:46:28.3719140 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","8004"
"10:46:28.3719336 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000002","0.0000017","","8004"
"10:46:28.3719524 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000930","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3719613 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000030","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3719903 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003","0.0000128","Desired Access: Read","8004"
"10:46:28.3720279 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\LibraryPath","0.0000047","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\pnrpnsp.dll","8004"
"10:46:28.3720484 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\LibraryPath","0.0000034","Type: REG_SZ, Length: 68, Data: %SystemRoot%\system32\pnrpnsp.dll","8004"
"10:46:28.3720667 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\DisplayString","0.0000034","Length: 12","8004"
"10:46:28.3720808 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\DisplayString","0.0000034","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1001","8004"
"10:46:28.3720945 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000853","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:28.3721043 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\DisplayString","0.0000034","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1001","8004"
"10:46:28.3721384 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\DisplayString","0.0000047","Type: REG_SZ, Length: 82, Data: @%SystemRoot%\system32\pnrpnsp.dll,-1001","8004"
"10:46:28.3721533 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3721730 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\ProviderId","0.0002517","Type: REG_BINARY, Length: 16, Data: CD 89 FE 03 6D 76 76 49 B9 C1 BB 9B C4 2C 7B 4D","8004"
"10:46:28.3722340 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000055","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:28.3722545 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000093","","740"
"10:46:28.3722975 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extension-settings.json","0.0000047","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","5244"
"10:46:28.3723189 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extension-settings.json","0.0000068","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 6/19/2019 5:34:18 PM, LastWriteTime: 6/19/2019 5:34:18 PM, ChangeTime: 6/19/2019 5:34:18 PM, FileAttributes: A, AllocationSize: 4,096, EndOfFile: 890, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x12000000009b9c, EaSize: 0, Access: Generic Read, Position: 0, Mode: Sequential Access, Synchronous IO Non-Alert, AlignmentRequirement: Word","5244"
"10:46:28.3723556 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extension-settings.json","0.0162632","Offset: 0, Length: 890, Priority: Normal","5244"
"10:46:28.3724106 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extension-settings.json","0.0161848","Offset: 0, Length: 890, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5244"
"10:46:28.3724191 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000082","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3724477 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\AddressFamily","0.0000039","Length: 16","8004"
"10:46:28.3724499 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Mozilla\Firefox","0.0000179","Desired Access: Read","5728"
"10:46:28.3724716 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\SupportedNameSpace","0.0000034","Type: REG_DWORD, Length: 4, Data: 38","8004"
"10:46:28.3724861 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000098","","2512"
"10:46:28.3724900 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\Enabled","0.0000034","Type: REG_DWORD, Length: 4, Data: 1","8004"
"10:46:28.3725011 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Mozilla\Firefox\DefaultBrowserOptOut","0.0000034","Length: 12","5728"
"10:46:28.3725066 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\Version","0.0000034","Type: REG_DWORD, Length: 4, Data: 0","8004"
"10:46:28.3725267 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\StoresServiceClassInfo","0.0000038","Type: REG_DWORD, Length: 4, Data: 0","8004"
"10:46:28.3725322 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Mozilla\Firefox","0.0000026","","5728"
"10:46:28.3725442 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\ProviderInfo","0.0000038","Type: REG_BINARY, Length: 0","8004"
"10:46:28.3725608 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","8004"
"10:46:28.3725898 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000003","0.0000039","","8004"
"10:46:28.3725941 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000077","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3726001 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3726167 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3726218 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Mozilla\Firefox","0.0000056","Desired Access: Query Value, Set Value","5728"
"10:46:28.3726363 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004","0.0000120","Desired Access: Read","8004"
"10:46:28.3726504 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000047","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:28.3726530 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Mozilla\Firefox\DefaultBrowserOptOut","0.0000034","Length: 12","5728"
"10:46:28.3726675 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\LibraryPath","0.0000038","Type: REG_SZ, Length: 66, Data: %SystemRoot%\system32\NLAapi.dll","8004"
"10:46:28.3726687 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000069","","740"
"10:46:28.3726820 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Mozilla\Firefox","0.0000021","","5728"
"10:46:28.3726845 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\LibraryPath","0.0000034","Type: REG_SZ, Length: 66, Data: %SystemRoot%\system32\NLAapi.dll","8004"
"10:46:28.3727012 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\DisplayString","0.0000030","Length: 12","8004"
"10:46:28.3727157 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\DisplayString","0.0000030","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\system32\nlasvc.dll,-1000","8004"
"10:46:28.3727315 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\DisplayString","0.0000034","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\system32\nlasvc.dll,-1000","8004"
"10:46:28.3727468 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\DisplayString","0.0000030","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\system32\nlasvc.dll,-1000","8004"
"10:46:28.3727643 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\ProviderId","0.0000030","Type: REG_BINARY, Length: 16, Data: 3A 24 42 66 A8 3B A6 4A BA A5 2E 0B D7 1F DD 83","8004"
"10:46:28.3727797 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\AddressFamily","0.0000034","Length: 16","8004"
"10:46:28.3727959 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\SupportedNameSpace","0.0000030","Type: REG_DWORD, Length: 4, Data: 15","8004"
"10:46:28.3728108 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\Enabled","0.0000030","Type: REG_DWORD, Length: 4, Data: 1","8004"
"10:46:28.3728262 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\Version","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","8004"
"10:46:28.3728441 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\StoresServiceClassInfo","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","8004"
"10:46:28.3728603 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\ProviderInfo","0.0000034","Type: REG_BINARY, Length: 0","8004"
"10:46:28.3728761 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004\ProviderInfo","0.0000038","Type: REG_BINARY, Length: 0","8004"
"10:46:28.3728949 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0004727","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3728966 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3728974 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000004","0.0000026","","8004"
"10:46:28.3729188 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000196","Desired Access: Read","5728"
"10:46:28.3729320 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3729512 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005","0.0000102","Desired Access: Read","8004"
"10:46:28.3729525 AM","firefox.exe","7384","RegSetInfoKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000017","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:28.3729649 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000038","Index: 0, Name: AppXq0fevzme2pys62n3e0fbqa7peapykr8v","5728"
"10:46:28.3729781 AM","firefox.exe","7384","RegQueryKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000102","Query: Cached, SubKeys: 1, Values: 0","5728"
"10:46:28.3729798 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\LibraryPath","0.0000072","Type: REG_SZ, Length: 68, Data: %SystemRoot%\System32\mswsock.dll","8004"
"10:46:28.3729943 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000303","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3730007 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\LibraryPath","0.0000034","Type: REG_SZ, Length: 68, Data: %SystemRoot%\System32\mswsock.dll","8004"
"10:46:28.3730050 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000098","Index: 0, Name: AppXq0fevzme2pys62n3e0fbqa7peapykr8v","5728"
"10:46:28.3730178 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\DisplayString","0.0000034","Length: 12","8004"
"10:46:28.3730289 AM","firefox.exe","7384","RegQueryKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000021","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:28.3730331 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\DisplayString","0.0000043","Type: REG_SZ, Length: 86, Data: @%SystemRoot%\system32\wshtcpip.dll,-60103","8004"
"10:46:28.3730472 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000119","Desired Access: Read","5728"
"10:46:28.3730506 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\DisplayString","0.0000039","Type: REG_SZ, Length: 86, Data: @%SystemRoot%\system32\wshtcpip.dll,-60103","8004"
"10:46:28.3730579 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000047","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:28.3730668 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\DisplayString","0.0000030","Type: REG_SZ, Length: 86, Data: @%SystemRoot%\system32\wshtcpip.dll,-60103","8004"
"10:46:28.3730771 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000081","","740"
"10:46:28.3730830 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\ProviderId","0.0000035","Type: REG_BINARY, Length: 16, Data: 40 9D 05 22 9E 7E CF 11 AE 5A 00 AA 00 A7 11 2B","8004"
"10:46:28.3730967 AM","firefox.exe","7384","RegQueryKey","HKU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3730997 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\AddressFamily","0.0000030","Length: 16","8004"
"10:46:28.3731159 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\SupportedNameSpace","0.0000034","Type: REG_DWORD, Length: 4, Data: 12","8004"
"10:46:28.3731167 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000094","Desired Access: Read","5728"
"10:46:28.3731313 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\Enabled","0.0000029","Type: REG_DWORD, Length: 4, Data: 1","8004"
"10:46:28.3731419 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000205","Desired Access: Read","5728"
"10:46:28.3731466 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\Version","0.0000034","Type: REG_DWORD, Length: 4, Data: 0","8004"
"10:46:28.3731641 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\StoresServiceClassInfo","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","8004"
"10:46:28.3731799 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\ProviderInfo","0.0000034","Type: REG_BINARY, Length: 0","8004"
"10:46:28.3731807 AM","firefox.exe","7384","RegSetInfoKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000018","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:28.3731957 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005\ProviderInfo","0.0000030","Type: REG_BINARY, Length: 0","8004"
"10:46:28.3732017 AM","firefox.exe","7384","RegEnumValue","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000038","Index: 0, Length: 256","5728"
"10:46:28.3732149 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000005","0.0000017","","8004"
"10:46:28.3732191 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000013","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:28.3732319 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000018","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3732354 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000111","Desired Access: Read","5728"
"10:46:28.3732482 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006","0.0000102","Desired Access: Read","8004"
"10:46:28.3732682 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000017","","5728"
"10:46:28.3732746 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\LibraryPath","0.0000030","Type: REG_SZ, Length: 66, Data: %SystemRoot%\System32\winrnr.dll","8004"
"10:46:28.3732844 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3732895 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\LibraryPath","0.0000026","Type: REG_SZ, Length: 66, Data: %SystemRoot%\System32\winrnr.dll","8004"
"10:46:28.3733002 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\AppModel\StateChange\PackageList\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000175","Desired Access: Read","5728"
"10:46:28.3733049 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\DisplayString","0.0000030","Length: 12","8004"
"10:46:28.3733194 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\DisplayString","0.0000026","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\System32\winrnr.dll,-1000","8004"
"10:46:28.3733339 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\DisplayString","0.0000030","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\System32\winrnr.dll,-1000","8004"
"10:46:28.3733382 AM","firefox.exe","7384","RegQueryKey","HKU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3733493 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\DisplayString","0.0000030","Type: REG_SZ, Length: 80, Data: @%SystemRoot%\System32\winrnr.dll,-1000","8004"
"10:46:28.3733540 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000055","Desired Access: Read","5728"
"10:46:28.3733651 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\ProviderId","0.0000034","Type: REG_BINARY, Length: 16, Data: EE 37 26 3B 80 E5 CF 11 A5 55 00 C0 4F D8 D4 AC","8004"
"10:46:28.3733736 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3733800 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\AddressFamily","0.0000030","Length: 16","8004"
"10:46:28.3733890 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000076","Desired Access: Read","5728"
"10:46:28.3733949 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\SupportedNameSpace","0.0000030","Type: REG_DWORD, Length: 4, Data: 32","8004"
"10:46:28.3734107 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000175","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:28.3734116 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\Enabled","0.0000030","Type: REG_DWORD, Length: 4, Data: 1","8004"
"10:46:28.3734171 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000141","Desired Access: Read","5728"
"10:46:28.3734261 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\Version","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","8004"
"10:46:28.3734436 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\StoresServiceClassInfo","0.0000064","Type: REG_DWORD, Length: 4, Data: 0","8004"
"10:46:28.3734461 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000094","","2512"
"10:46:28.3734474 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000017","","5728"
"10:46:28.3734623 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe\PackageStatus","0.0000035","Length: 16","5728"
"10:46:28.3734628 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\ProviderInfo","0.0000034","Type: REG_BINARY, Length: 0","8004"
"10:46:28.3734790 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006\ProviderInfo","0.0000119","Type: REG_BINARY, Length: 0","8004"
"10:46:28.3734807 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000021","","5728"
"10:46:28.3734837 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3734956 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000013","","5728"
"10:46:28.3735046 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000006","0.0000081","","8004"
"10:46:28.3735076 AM","firefox.exe","7384","CreateFile","C:\","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3735101 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000043","Index: 1, Length: 288","5728"
"10:46:28.3735285 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3735306 AM","firefox.exe","7384","RegCloseKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000017","","5728"
"10:46:28.3735374 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000043","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:28.3735391 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0001498","Filter: Windows, 1: Windows","2512"
"10:46:28.3735455 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007","0.0000086","Desired Access: Read","8004"
"10:46:28.3735481 AM","firefox.exe","7384","RegCloseKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000017","","5728"
"10:46:28.3735575 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000055","","740"
"10:46:28.3735699 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3735716 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\LibraryPath","0.0000034","Type: REG_SZ, Length: 66, Data: %SystemRoot%\System32\wshbth.dll","8004"
"10:46:28.3735857 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000093","Desired Access: Read","5728"
"10:46:28.3735869 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\LibraryPath","0.0000034","Type: REG_SZ, Length: 66, Data: %SystemRoot%\System32\wshbth.dll","8004"
"10:46:28.3736031 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\DisplayString","0.0000030","Length: 12","8004"
"10:46:28.3736087 AM","firefox.exe","7384","RegSetInfoKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000013","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:28.3736177 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\DisplayString","0.0000029","Type: REG_SZ, Length: 40, Data: Bluetooth Namespace","8004"
"10:46:28.3736223 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000035","Index: 0, Name: AppXq0fevzme2pys62n3e0fbqa7peapykr8v","5728"
"10:46:28.3736330 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\DisplayString","0.0000034","Type: REG_SZ, Length: 40, Data: Bluetooth Namespace","8004"
"10:46:28.3736377 AM","firefox.exe","7384","RegQueryKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000030","Query: Cached, SubKeys: 1, Values: 0","5728"
"10:46:28.3736479 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\DisplayString","0.0000026","Type: REG_SZ, Length: 40, Data: Bluetooth Namespace","8004"
"10:46:28.3736526 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000035","Index: 0, Name: AppXq0fevzme2pys62n3e0fbqa7peapykr8v","5728"
"10:46:28.3736637 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\ProviderId","0.0000030","Type: REG_BINARY, Length: 16, Data: E0 63 AA 06 60 7D FF 41 AF B2 3E E6 D2 D9 39 2D","8004"
"10:46:28.3736680 AM","firefox.exe","7384","RegQueryKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000017","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:28.3736791 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\AddressFamily","0.0000026","Length: 16","8004"
"10:46:28.3736829 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000094","Desired Access: Read","5728"
"10:46:28.3736940 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\SupportedNameSpace","0.0000030","Type: REG_DWORD, Length: 4, Data: 16","8004"
"10:46:28.3737102 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\Enabled","0.0000035","Type: REG_DWORD, Length: 4, Data: 1","8004"
"10:46:28.3737149 AM","firefox.exe","7384","CloseFile","C:\","0.0000090","","2512"
"10:46:28.3737201 AM","firefox.exe","7384","RegQueryKey","HKU","0.0000025","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3737260 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\Version","0.0000034","Type: REG_DWORD, Length: 4, Data: 0","8004"
"10:46:28.3737427 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000085","Desired Access: Read","5728"
"10:46:28.3737439 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\StoresServiceClassInfo","0.0000035","Type: REG_DWORD, Length: 4, Data: 0","8004"
"10:46:28.3737606 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\ProviderInfo","0.0000034","Type: REG_BINARY, Length: 0","8004"
"10:46:28.3737674 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000090","Desired Access: Read","5728"
"10:46:28.3737772 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007\ProviderInfo","0.0000034","Type: REG_BINARY, Length: 0","8004"
"10:46:28.3737951 AM","firefox.exe","7384","RegSetInfoKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000039","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:28.3737981 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64\000000000007","0.0000022","","8004"
"10:46:28.3738088 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000439","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3738152 AM","firefox.exe","7384","RegEnumValue","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000043","Index: 0, Length: 256","5728"
"10:46:28.3738165 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries64","0.0000021","","8004"
"10:46:28.3738353 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000034","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:28.3738399 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000022","","8004"
"10:46:28.3738545 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000059","Desired Access: Read","5728"
"10:46:28.3738660 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3738788 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000017","","5728"
"10:46:28.3738852 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock2\Parameters","0.0000059","Desired Access: Query Value","8004"
"10:46:28.3738877 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000056","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:28.3738954 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3739057 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock2\Parameters","0.0000076","Desired Access: Query Value","8004"
"10:46:28.3739095 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000085","","740"
"10:46:28.3739116 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\AppModel\StateChange\PackageList\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000124","Desired Access: Read","5728"
"10:46:28.3739321 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Ws2_32NumHandleBuckets","0.0000043","Length: 16","8004"
"10:46:28.3739441 AM","firefox.exe","7384","RegQueryKey","HKU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3739500 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Ws2_32SpinCount","0.0000030","Length: 16","8004"
"10:46:28.3739598 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000052","Desired Access: Read","5728"
"10:46:28.3739684 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","","8004"
"10:46:28.3739782 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3739935 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000082","Desired Access: Read","5728"
"10:46:28.3740157 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000086","Desired Access: Read","5728"
"10:46:28.3740401 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000017","","5728"
"10:46:28.3740541 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe\PackageStatus","0.0000039","Length: 16","5728"
"10:46:28.3740716 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000013","","5728"
"10:46:28.3740857 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000013","","5728"
"10:46:28.3741011 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000034","Index: 1, Length: 288","5728"
"10:46:28.3741173 AM","firefox.exe","7384","RegCloseKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000013","","5728"
"10:46:28.3741305 AM","firefox.exe","7384","RegCloseKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000013","","5728"
"10:46:28.3741655 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3741817 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000107","Desired Access: Read","5728"
"10:46:28.3742214 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000145","Query: Name","5728"
"10:46:28.3742312 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3742346 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000179","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3742538 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3742666 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3742739 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000179","Filter: System32, 1: System32","2512"
"10:46:28.3742798 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000039","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:28.3742807 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\http","0.0000090","Desired Access: Read","5728"
"10:46:28.3742973 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000064","","740"
"10:46:28.3743097 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000060","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3743144 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000060","","2512"
"10:46:28.3743298 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000140","Desired Access: Read","5728"
"10:46:28.3743596 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3743741 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000069","Desired Access: Query Value","5728"
"10:46:28.3743955 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice\ProgId","0.0000034","Type: REG_SZ, Length: 56, Data: FirefoxURL-6F193CCC56814779","5728"
"10:46:28.3744130 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000012","","5728"
"10:46:28.3744270 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3744411 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000030","Desired Access: Query Value","5728"
"10:46:28.3744586 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000162","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3744607 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice\Hash","0.0000030","Type: REG_SZ, Length: 26, Data: WGuVFWKHpGI=","5728"
"10:46:28.3744770 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000012","","5728"
"10:46:28.3744915 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3744936 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dnsapi.dll","0.0000166","Filter: dnsapi.dll, 1: dnsapi.dll","2512"
"10:46:28.3745055 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000035","Desired Access: Read","5728"
"10:46:28.3745209 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3745277 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000060","","2512"
"10:46:28.3745346 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000029","Desired Access: Read","5728"
"10:46:28.3745495 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000030","Query: Cached, SubKeys: 0, Values: 2","5728"
"10:46:28.3745670 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000013","","5728"
"10:46:28.3746122 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000013","","5728"
"10:46:28.3746276 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000013","","5728"
"10:46:28.3746421 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000038","Query: Name","5728"
"10:46:28.3746587 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3746711 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3746860 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779","0.0000047","Desired Access: Read","5728"
"10:46:28.3747014 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3747061 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000132","Desired Access: Read","5728"
"10:46:28.3747359 AM","firefox.exe","7384","RegCloseKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000018","","5728"
"10:46:28.3747475 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000081","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.3747513 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000056","Query: Name","5728"
"10:46:28.3747692 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3747709 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000069","","740"
"10:46:28.3747812 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3747953 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779","0.0000042","Desired Access: Read","5728"
"10:46:28.3748132 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000047","Desired Access: Read","5728"
"10:46:28.3748311 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000047","Query: Name","5728"
"10:46:28.3748490 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3748682 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779\CurVer","0.0000051","Desired Access: Query Value","5728"
"10:46:28.3748785 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3748853 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3748998 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779\CurVer","0.0000038","Desired Access: Query Value","5728"
"10:46:28.3749164 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000039","Query: Name","5728"
"10:46:28.3749237 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:28.3749326 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3749420 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000056","","2512"
"10:46:28.3749497 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779","0.0000051","Desired Access: Read","5728"
"10:46:28.3749663 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000018","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3749809 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000034","Desired Access: Read","5728"
"10:46:28.3749962 AM","firefox.exe","7384","CreateFile","C:\","0.0002445","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3749988 AM","firefox.exe","7384","RegCloseKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000017","","5728"
"10:46:28.3750154 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000047","Query: Name","5728"
"10:46:28.3750303 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3750508 AM","firefox.exe","7904","ReadFile","C:\Program Files\Firefox Nightly\dependentlibs.list","0.0000214","Offset: 476, Length: 4,096","8004"
"10:46:28.3750525 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779\Progid","0.0000154","Desired Access: Query Value","5728"
"10:46:28.3750611 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3750803 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3750918 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\dependentlibs.list","0.0000107","","8004"
"10:46:28.3750952 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779\Progid","0.0000038","Desired Access: Query Value","5728"
"10:46:28.3751080 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000038","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.3751191 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\http","0.0000017","","5728"
"10:46:28.3751246 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000064","","740"
"10:46:28.3751345 AM","firefox.exe","7384","RegCloseKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000017","","5728"
"10:46:28.3751545 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000038","Query: Name","5728"
"10:46:28.3751699 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3751814 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3751959 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000043","Desired Access: Read","5728"
"10:46:28.3752134 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000136","Desired Access: Read","5728"
"10:46:28.3752458 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000056","Query: Name","5728"
"10:46:28.3752629 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.3752799 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000056","Desired Access: Maximum Allowed","5728"
"10:46:28.3752966 AM","firefox.exe","7384","RegQueryValue","HKCR\FirefoxURL-6F193CCC56814779\shell\open\command\(Default)","0.0000038","Type: REG_SZ, Length: 128, Data: ""C:\Program Files\Firefox Nightly\firefox.exe"" -osint -url ""%1""","5728"
"10:46:28.3753128 AM","firefox.exe","7384","RegCloseKey","HKCR\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000013","","5728"
"10:46:28.3754075 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3754510 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000039","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.3754690 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000059","","740"
"10:46:28.3756051 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000200","Filter: Windows, 1: Windows","2512"
"10:46:28.3756456 AM","firefox.exe","7384","CloseFile","C:\","0.0000073","","2512"
"10:46:28.3757919 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3758261 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000149","Filter: System32, 1: System32","2512"
"10:46:28.3758585 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000056","","2512"
"10:46:28.3758794 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3759212 AM","firefox.exe","7904","QueryNameInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000069","Name: \Program Files\Firefox Nightly\xul.dll","8004"
"10:46:28.3759362 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:28.3759537 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000059","","740"
"10:46:28.3760019 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3760343 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\nsi.dll","0.0000175","Filter: nsi.dll, 1: nsi.dll","2512"
"10:46:28.3760689 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000051","","2512"
"10:46:28.3762579 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3763108 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:28.3763291 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000060","","740"
"10:46:28.3763547 AM","firefox.exe","7904","QueryNameInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000081","Name: \Program Files\Firefox Nightly\xul.dll","8004"
"10:46:28.3763667 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3763965 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:28.3764076 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000039","","2512"
"10:46:28.3764465 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3764669 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000107","Filter: Windows, 1: Windows","2512"
"10:46:28.3764883 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:28.3765851 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3766069 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:28.3766278 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:28.3766658 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3767165 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:28.3767272 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3767362 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000068","","740"
"10:46:28.3767494 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\nsi.dll","0.0000111","Filter: nsi.dll, 1: nsi.dll","2512"
"10:46:28.3767716 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:28.3768885 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3769282 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nsi.dll","0.0000030","AllocationSize: 28,672, EndOfFile: 24,888, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:28.3769461 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nsi.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:28.3769593 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nsi.dll","0.0000021","AllocationSize: 28,672, EndOfFile: 24,888, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:28.3769806 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nsi.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:28.3770297 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000056","","2512"
"10:46:28.3771244 AM","firefox.exe","7904","QueryNameInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000043","Name: \Program Files\Firefox Nightly\xul.dll","8004"
"10:46:28.3771402 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3771744 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000038","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:28.3771914 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000051","","740"
"10:46:28.3772102 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3772516 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nsi.dll","0.0000030","AllocationSize: 28,672, EndOfFile: 24,888, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:28.3772674 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nsi.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:28.3772785 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nsi.dll","0.0000021","AllocationSize: 28,672, EndOfFile: 24,888, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:28.3772994 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nsi.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:28.3773369 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 3020","8004"
"10:46:28.3773809 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nsi.dll","0.0000038","AllocationSize: 28,672, EndOfFile: 24,888, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:28.3774001 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000076","","2512"
"10:46:28.3774645 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3774952 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000038","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:28.3775080 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000056","","740"
"10:46:28.3776155 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000226","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3776885 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nsi.dll","0.0000047","AllocationSize: 28,672, EndOfFile: 24,888, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:28.3777120 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nsi.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:28.3777316 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nsi.dll","0.0000030","AllocationSize: 28,672, EndOfFile: 24,888, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:28.3777452 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\SideBySide","0.0000150","Desired Access: Read","8004"
"10:46:28.3777644 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nsi.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:28.3777708 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3777751 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide\PreferExternalManifest","0.0000047","Length: 20","8004"
"10:46:28.3777947 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000030","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:28.3777952 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide","0.0000021","","8004"
"10:46:28.3778062 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000043","","740"
"10:46:28.3779406 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000188","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3781088 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000174","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3781544 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:28.3781723 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000056","","740"
"10:46:28.3782124 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000081","","8004"
"10:46:28.3783080 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000085","","2512"
"10:46:28.3785324 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3786634 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000056","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:28.3786818 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000076","","740"
"10:46:28.3786860 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\rpcss.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3787330 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\rpcss.dll","0.0000042","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","8004"
"10:46:28.3787496 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\rpcss.dll","0.0000068","","8004"
"10:46:28.3789710 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\rpcss.dll","0.0000239","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3790449 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\rpcss.dll","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.3790658 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\rpcss.dll","0.0000042","AllocationSize: 1,163,264, EndOfFile: 1,159,680, NumberOfLinks: 2, DeletePending: False, Directory: False","8004"
"10:46:28.3790918 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\rpcss.dll","0.0000021","SyncType: SyncTypeOther","8004"
"10:46:28.3791878 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3791916 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\rpcss.dll","0.0000086","","8004"
"10:46:28.3792339 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3792407 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:28.3792599 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000073","","740"
"10:46:28.3792834 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000085","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:28.3793073 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000076","","2512"
"10:46:28.3796908 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3797565 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000056","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:28.3797757 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000077","","740"
"10:46:28.3798555 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000414","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3799822 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000056","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:28.3800027 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000081","","2512"
"10:46:28.3801337 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3801939 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000047","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:28.3802118 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000064","","740"
"10:46:28.3802993 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3803517 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000043","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","8004"
"10:46:28.3803662 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000064","","8004"
"10:46:28.3804652 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0002590","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3805757 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000291","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3805796 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000358","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3806359 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000043","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:28.3806513 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000055","","740"
"10:46:28.3806692 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\ntmarta.dll","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.3807110 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\ntmarta.dll","0.0000026","SyncType: SyncTypeOther","8004"
"10:46:28.3807656 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\ntmarta.dll","0.0000043","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.3808437 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:28.3808445 AM","firefox.exe","7904","Load Image","C:\Windows\System32\ntmarta.dll","0.0000000","Image Base: 0x7ffb44b80000, Image Size: 0x31000","8004"
"10:46:28.3808633 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000077","","2512"
"10:46:28.3808727 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\ntmarta.dll","0.0000055","Name: \Windows\System32\ntmarta.dll","8004"
"10:46:28.3809243 AM","firefox.exe","7384","CreateFile","C:\","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3809606 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000469","Filter: Windows, 1: Windows","2512"
"10:46:28.3810323 AM","firefox.exe","7384","CloseFile","C:\","0.0000059","","2512"
"10:46:28.3810395 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000069","","8004"
"10:46:28.3810702 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000227","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3811232 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000046","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:28.3811419 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000077","","740"
"10:46:28.3811859 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000162","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3812213 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000171","Filter: System32, 1: System32","2512"
"10:46:28.3812558 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000060","","2512"
"10:46:28.3814653 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000227","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3815101 AM","firefox.exe","7904","RegOpenKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\Appx","0.0000222","Desired Access: Read","8004"
"10:46:28.3815174 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000047","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:28.3815357 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000069","","740"
"10:46:28.3815520 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Windows\Appx\AllowDevelopmentWithoutDevLicense","0.0000055","Type: REG_DWORD, Length: 4, Data: 65535","8004"
"10:46:28.3815788 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Policies\Microsoft\Windows\Appx","0.0000026","","8004"
"10:46:28.3815985 AM","firefox.exe","7904","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModelUnlock","0.0000145","Desired Access: Read","8004"
"10:46:28.3815993 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000188","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3816262 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModelUnlock\AllowDevelopmentWithoutDevLicense","0.0000034","Length: 24","8004"
"10:46:28.3816386 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\nsi.dll","0.0000217","Filter: nsi.dll, 1: nsi.dll","2512"
"10:46:28.3816428 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModelUnlock","0.0000017","","8004"
"10:46:28.3816787 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000094","","2512"
"10:46:28.3819159 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3819658 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000047","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:28.3819842 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000072","","740"
"10:46:28.3821250 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3821600 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes","0.0000119","Desired Access: Maximum Allowed, Granted Access: Read, Create Link","8004"
"10:46:28.3821792 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","2512"
"10:46:28.3821967 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Classes","0.0000064","Query: Name","8004"
"10:46:28.3822018 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000085","","2512"
"10:46:28.3822223 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3822355 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3822521 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\AppID\firefox.exe","0.0000111","Desired Access: Read","8004"
"10:46:28.3822649 AM","firefox.exe","7384","CreateFile","C:\","0.0000188","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3822799 AM","firefox.exe","7904","RegOpenKey","HKCR\AppID\firefox.exe","0.0000106","Desired Access: Read","8004"
"10:46:28.3823029 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000183","Filter: Windows, 1: Windows","2512"
"10:46:28.3823204 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Classes","0.0000047","Query: Name","8004"
"10:46:28.3823383 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.3823396 AM","firefox.exe","7384","CloseFile","C:\","0.0000064","","2512"
"10:46:28.3823520 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Classes","0.0000038","Query: Name","8004"
"10:46:28.3823968 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\AppID\firefox.exe","0.0000192","Desired Access: Read","8004"
"10:46:28.3824079 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000221","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3824364 AM","firefox.exe","7904","RegOpenKey","HKCR\AppID\firefox.exe","0.0000077","Desired Access: Read","8004"
"10:46:28.3824586 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000051","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:28.3824765 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000073","","740"
"10:46:28.3826127 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0760338","Offset: 8,753,152, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:28.3828541 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3829117 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000052","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:28.3829314 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000068","","740"
"10:46:28.3829459 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000175","Desired Access: Query Value","8004"
"10:46:28.3829536 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000196","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3829809 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000072","Desired Access: Query Value","8004"
"10:46:28.3829975 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000192","Filter: System32, 1: System32","2512"
"10:46:28.3830043 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Lsa\EveryoneIncludesAnonymous","0.0000094","Type: REG_DWORD, Length: 4, Data: 0","8004"
"10:46:28.3830312 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\Lsa","0.0000021","","8004"
"10:46:28.3830363 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000086","","2512"
"10:46:28.3830858 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\Rpc\Extensions","0.0000188","Desired Access: Read","8004"
"10:46:28.3831229 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Rpc\Extensions\NdrOleExtDLL","0.0000047","Type: REG_EXPAND_SZ, Length: 24, Data: combase.dll","8004"
"10:46:28.3831434 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Rpc\Extensions","0.0000022","","8004"
"10:46:28.3832697 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3833124 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000060","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:28.3833303 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000068","","740"
"10:46:28.3834993 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000076","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:28.3835296 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0002675","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3835394 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000034","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:28.3835624 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000026","Offset: 1,073,741,824, Length: 1","5068"
"10:46:28.3835658 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\browser","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3835974 AM","firefox.exe","7904","QueryNetworkOpenInformationFile","C:\Program Files\Firefox Nightly\browser","0.0000043","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:30 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, AllocationSize: 4096, EndOfFile: 4096, FileAttributes: D","8004"
"10:46:28.3836119 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\browser","0.0000056","","8004"
"10:46:28.3837642 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3838090 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:28.3838235 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dwmapi.dll","0.0000209","Filter: dwmapi.dll, 1: dwmapi.dll","2512"
"10:46:28.3838278 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000064","","740"
"10:46:28.3838662 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000077","","2512"
"10:46:28.3838897 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-journal","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:28.3841858 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3842152 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:28.3842280 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3842336 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:28.3842506 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000069","","740"
"10:46:28.3842656 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000047","AllocationSize: 81,920, EndOfFile: 81,920, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:28.3842775 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000060","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","2512"
"10:46:28.3842984 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000064","","2512"
"10:46:28.3843176 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000090","Offset: 0, Length: 4,096","5068"
"10:46:28.3843556 AM","firefox.exe","7384","CreateFile","C:\","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3843876 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000162","Filter: Windows, 1: Windows","2512"
"10:46:28.3844285 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:28.3845642 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3845873 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000183","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3846090 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:28.3846201 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:28.3846257 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000149","Filter: System32, 1: System32","2512"
"10:46:28.3846269 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000064","","740"
"10:46:28.3846585 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000060","","2512"
"10:46:28.3847942 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0001481","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","5068"
"10:46:28.3848108 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000184","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3848497 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dwmapi.dll","0.0000196","Filter: dwmapi.dll, 1: dwmapi.dll","2512"
"10:46:28.3848872 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000064","","2512"
"10:46:28.3850476 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3850954 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000077","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:28.3851215 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000102","","740"
"10:46:28.3854235 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3854683 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000043","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:28.3854867 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000064","","740"
"10:46:28.3855904 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly","0.0000221","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3856450 AM","firefox.exe","7904","QueryNameInformationFile","C:\Program Files\Firefox Nightly","0.0000051","Name: \Program Files\Firefox Nightly","8004"
"10:46:28.3856740 AM","firefox.exe","7904","QueryNameInformationFile","C:\Program Files\Firefox Nightly","0.0000038","Name: \Program Files\Firefox Nightly","8004"
"10:46:28.3857478 AM","firefox.exe","7904","QueryNormalizedNameInformationFile","C:\Program Files\Firefox Nightly","0.0000111","","8004"
"10:46:28.3857781 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3857832 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly","0.0000068","","8004"
"10:46:28.3858233 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000064","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:28.3858447 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000081","","740"
"10:46:28.3859756 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\browser","0.0000192","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3860209 AM","firefox.exe","7904","QueryNameInformationFile","C:\Program Files\Firefox Nightly\browser","0.0000042","Name: \Program Files\Firefox Nightly\browser","8004"
"10:46:28.3860405 AM","firefox.exe","7904","QueryNameInformationFile","C:\Program Files\Firefox Nightly\browser","0.0000034","Name: \Program Files\Firefox Nightly\browser","8004"
"10:46:28.3860947 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000350","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:28.3861045 AM","firefox.exe","7904","QueryNormalizedNameInformationFile","C:\Program Files\Firefox Nightly\browser","0.0000119","","8004"
"10:46:28.3861356 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\browser","0.0000060","","8004"
"10:46:28.3863097 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3863247 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0006754","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","5068"
"10:46:28.3863567 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000046","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:28.3863741 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000069","","740"
"10:46:28.3865248 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000192","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3865777 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dwmapi.dll","0.0000038","AllocationSize: 147,456, EndOfFile: 146,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.3865986 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:28.3866003 AM","firefox.exe","7904","RegOpenKey","HKCU","0.0000132","Desired Access: Maximum Allowed, Granted Access: Read, Create Link","8004"
"10:46:28.3866127 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dwmapi.dll","0.0000021","AllocationSize: 147,456, EndOfFile: 146,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.3866336 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:28.3866370 AM","firefox.exe","7904","RegOpenKey","HKCU\Control Panel\International","0.0000072","Desired Access: Read","8004"
"10:46:28.3866660 AM","firefox.exe","7904","RegCloseKey","HKCU","0.0000021","","8004"
"10:46:28.3866843 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000064","","2512"
"10:46:28.3866856 AM","firefox.exe","7904","RegQueryValue","HKCU\Control Panel\International\LocaleName","0.0000064","Type: REG_SZ, Length: 12, Data: en-US","8004"
"10:46:28.3867095 AM","firefox.exe","7904","RegCloseKey","HKCU\Control Panel\International","0.0000017","","8004"
"10:46:28.3867159 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3867381 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\CustomLocale","0.0000141","Desired Access: Read","8004"
"10:46:28.3867680 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\CustomLocale","0.0000273","Desired Access: Read","8004"
"10:46:28.3867688 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000081","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:28.3867906 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000064","","740"
"10:46:28.3868119 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\CustomLocale\en-US","0.0000047","Length: 532","8004"
"10:46:28.3868315 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\Nls\CustomLocale","0.0000017","","8004"
"10:46:28.3868507 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\ExtendedLocale","0.0000107","Desired Access: Read","8004"
"10:46:28.3868751 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\ExtendedLocale","0.0000123","Desired Access: Read","8004"
"10:46:28.3869054 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\ExtendedLocale\en-US","0.0000029","Length: 532","8004"
"10:46:28.3869237 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\Nls\ExtendedLocale","0.0000017","","8004"
"10:46:28.3869493 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000405","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.3869907 AM","firefox.exe","7904","RegOpenKey","HKCU","0.0000081","Desired Access: Maximum Allowed, Granted Access: Read, Create Link","8004"
"10:46:28.3870167 AM","firefox.exe","7904","RegOpenKey","HKCU\Control Panel\International","0.0000064","Desired Access: Read","8004"
"10:46:28.3870385 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dwmapi.dll","0.0000123","AllocationSize: 147,456, EndOfFile: 146,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.3870410 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000077","Exclusive: True, Offset: 128, Length: 1, Fail Immediately: True","5068"
"10:46:28.3870440 AM","firefox.exe","7904","RegCloseKey","HKCU","0.0000060","","8004"
"10:46:28.3870675 AM","firefox.exe","7904","RegOpenKey","HKCU\Control Panel\International\🌎🌏🌍","0.0000115","Desired Access: Query Value","8004"
"10:46:28.3870773 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000435","EndOfFile: 0","5068"
"10:46:28.3870820 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:28.3870969 AM","firefox.exe","7904","RegQueryValue","HKCU\Control Panel\International\🌎🌏🌍\Currencies","0.0000034","Length: 182","8004"
"10:46:28.3871033 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dwmapi.dll","0.0000034","AllocationSize: 147,456, EndOfFile: 146,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.3871127 AM","firefox.exe","7904","RegQueryValue","HKCU\Control Panel\International\🌎🌏🌍\NLS Currency Data","0.0000026","Length: 182","8004"
"10:46:28.3871238 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3871272 AM","firefox.exe","7904","RegQueryValue","HKCU\Control Panel\International\🌎🌏🌍\Clock","0.0000026","Length: 182","8004"
"10:46:28.3871383 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:28.3871422 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000294","AllocationSize: 0","5068"
"10:46:28.3871443 AM","firefox.exe","7904","RegOpenKey","HKCU\Control Panel\International\🌎🌏🌍\Gregorian","0.0000043","Desired Access: Query Value","8004"
"10:46:28.3871643 AM","firefox.exe","7904","RegCloseKey","HKCU\Control Panel\International\🌎🌏🌍","0.0000017","","8004"
"10:46:28.3871699 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000055","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:28.3871857 AM","firefox.exe","7904","RegQueryMultipleValueKey","HKCU\Control Panel\International","0.0000358","","8004"
"10:46:28.3871916 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000069","","740"
"10:46:28.3871934 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000029","Offset: 128, Length: 1","5068"
"10:46:28.3872019 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\dwmapi.dll","0.0381300","Offset: 114,688, Length: 32,152, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:28.3872126 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000025","Exclusive: False, Offset: 128, Length: 1, Fail Immediately: True","5068"
"10:46:28.3872313 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000090","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:28.3872364 AM","firefox.exe","7904","RegQueryValue","HKCU\Control Panel\International\sCurrencyOverride","0.0000060","Length: 182","8004"
"10:46:28.3872552 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000051","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","5068"
"10:46:28.3872569 AM","firefox.exe","7904","RegCloseKey","HKCU\Control Panel\International","0.0000030","","8004"
"10:46:28.3872723 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000021","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:28.3872872 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000730","EndOfFile: 32,768","5068"
"10:46:28.3873755 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000180","AllocationSize: 32,768","5068"
"10:46:28.3874105 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5068"
"10:46:28.3874242 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000021","AllocationSize: 32,768, EndOfFile: 32,768, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:28.3874476 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000018","SyncType: SyncTypeOther","5068"
"10:46:28.3874848 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000085","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5068"
"10:46:28.3875134 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000025","Exclusive: True, Offset: 121, Length: 2, Fail Immediately: True","5068"
"10:46:28.3875253 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000013","Exclusive: True, Offset: 124, Length: 4, Fail Immediately: True","5068"
"10:46:28.3875402 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000022","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:28.3875564 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000018","Offset: 121, Length: 2","5068"
"10:46:28.3875667 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000013","Offset: 124, Length: 4","5068"
"10:46:28.3875795 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000013","Offset: 120, Length: 1","5068"
"10:46:28.3875906 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000038","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:28.3876021 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3876230 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000026","AllocationSize: 81,920, EndOfFile: 81,920, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:28.3876243 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\browser","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3876443 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000060","Offset: 0, Length: 4,096","5068"
"10:46:28.3876524 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser","0.0000043","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:30 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: D","8004"
"10:46:28.3876542 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000119","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:28.3876725 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\browser","0.0000064","","8004"
"10:46:28.3876798 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000081","","740"
"10:46:28.3879865 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.3879934 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000042","Offset: 123, Length: 1","5068"
"10:46:28.3880177 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8004"
"10:46:28.3880309 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\omni.ja","0.0706254","","8004"
"10:46:28.3880582 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3881090 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000047","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:28.3881286 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000068","","740"
"10:46:28.3883850 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000333","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:28.3884089 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3884350 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000051","CreationTime: 6/19/2019 4:53:51 PM, LastAccessTime: 6/19/2019 4:53:51 PM, LastWriteTime: 3/26/2020 10:35:41 AM, ChangeTime: 3/26/2020 10:35:41 AM, AllocationSize: 81920, EndOfFile: 81920, FileAttributes: A","5068"
"10:46:28.3884512 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000034","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:28.3884554 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.1006235","","5068"
"10:46:28.3884661 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000047","","740"
"10:46:28.3886419 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extension-settings.json","0.0000077","","5244"
"10:46:28.3887669 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3887993 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:28.3888096 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000042","","740"
"10:46:28.3889982 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3890259 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:28.3890361 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000039","","740"
"10:46:28.3892226 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3892495 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:28.3892597 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000038","","740"
"10:46:28.3895055 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3895345 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000025","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.3895443 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000043","","740"
"10:46:28.3897290 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3897546 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.3897644 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000039","","740"
"10:46:28.3899407 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3899658 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.3899752 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000039","","740"
"10:46:28.3902380 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3902658 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:28.3902760 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000039","","740"
"10:46:28.3904544 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3904795 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:28.3904894 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000038","","740"
"10:46:28.3906741 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3906993 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:28.3907087 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000042","","740"
"10:46:28.3909715 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3910005 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:28.3910103 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000039","","740"
"10:46:28.3911908 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3912168 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000022","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:28.3912262 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000038","","740"
"10:46:28.3914101 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3914357 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:28.3914455 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000039","","740"
"10:46:28.3916879 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3917280 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000021","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:28.3917374 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000038","","740"
"10:46:28.3919174 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3919430 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:28.3919524 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000038","","740"
"10:46:28.3921371 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3921632 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:28.3921730 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000034","","740"
"10:46:28.3924166 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3924443 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000026","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:28.3924542 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000038","","740"
"10:46:28.3926317 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3926577 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000021","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:28.3926671 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000038","","740"
"10:46:28.3928505 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3928761 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000026","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:28.3928859 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000039","","740"
"10:46:28.3931411 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3931680 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:28.3931778 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000038","","740"
"10:46:28.3933544 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3933796 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:28.3933894 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000039","","740"
"10:46:28.3935669 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3935921 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:28.3936019 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000038","","740"
"10:46:28.3938455 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3938733 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000025","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:28.3938831 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000038","","740"
"10:46:28.3940691 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3940955 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000026","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:28.3941049 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000043","","740"
"10:46:28.3943055 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3943315 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000026","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:28.3943413 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000038","","740"
"10:46:28.3945883 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3946157 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:28.3946255 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000038","","740"
"10:46:28.3948115 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3948371 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:28.3948469 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000038","","740"
"10:46:28.3950214 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3950466 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000021","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:28.3950560 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000034","","740"
"10:46:28.3953811 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3954024 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.3954122 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000039","","740"
"10:46:28.3957463 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3957723 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000035","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.3957847 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000047","","740"
"10:46:28.3959835 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3960045 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000029","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.3960147 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000043","","740"
"10:46:28.3962805 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3963151 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:28.3963257 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000043","","740"
"10:46:28.3965083 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3965361 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:28.3965467 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000039","","740"
"10:46:28.3967225 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3967494 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:28.3967597 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000038","","740"
"10:46:28.3970127 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3970404 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:28.3970506 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000039","","740"
"10:46:28.3972482 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3972751 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:28.3972849 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000034","","740"
"10:46:28.3974620 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3974871 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:28.3974969 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000039","","740"
"10:46:28.3977470 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3977756 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:28.3977854 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000038","","740"
"10:46:28.3979650 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3979919 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:28.3980021 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000039","","740"
"10:46:28.3981860 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3982129 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:28.3982227 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000038","","740"
"10:46:28.3984813 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000157","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3985145 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:28.3985244 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000038","","740"
"10:46:28.3987044 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3987313 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:28.3987411 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000038","","740"
"10:46:28.3989126 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3989386 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:28.3989485 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000034","","740"
"10:46:28.3992010 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3992296 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000026","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:28.3992394 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000043","","740"
"10:46:28.3994660 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3994920 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000026","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:28.3995023 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000038","","740"
"10:46:28.3996798 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.3997045 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000026","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:28.3997143 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000056","","740"
"10:46:28.4000650 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4001060 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000043","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:28.4001209 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000064","","740"
"10:46:28.4003573 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4003846 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000030","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:28.4003953 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000038","","740"
"10:46:28.4005749 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4006031 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000025","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:28.4006133 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000039","","740"
"10:46:28.4008062 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-phish-simple.sbstore","0.0000559","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7900"
"10:46:28.4009043 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4009367 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:28.4009517 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000055","","740"
"10:46:28.4011496 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-malware-simple.sbstore","0.0000465","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7900"
"10:46:28.4011509 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4011774 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:28.4011936 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000060","","740"
"10:46:28.4013967 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4014236 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:28.4014342 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000039","","740"
"10:46:28.4014730 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-unwanted-simple.sbstore","0.0000414","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7900"
"10:46:28.4017060 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4017376 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:28.4017478 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000039","","740"
"10:46:28.4017632 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-harmful-simple.sbstore","0.0000503","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7900"
"10:46:28.4019697 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4019970 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000077","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:28.4020153 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000052","","740"
"10:46:28.4020597 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-track-simple.sbstore","0.0000397","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7900"
"10:46:28.4022095 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4022368 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:28.4022470 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000043","","740"
"10:46:28.4023396 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-trackwhite-simple.sbstore","0.0000388","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7900"
"10:46:28.4025124 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4025406 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000025","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:28.4025521 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000038","","740"
"10:46:28.4026169 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-block-simple.sbstore","0.0000389","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7900"
"10:46:28.4027420 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4027688 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:28.4027723 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.4027787 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000042","","740"
"10:46:28.4028013 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\*","0.0307285","Filter: *, 1: .","7900"
"10:46:28.4028337 AM","firefox.exe","7384","ReadFile","C:","0.0306803","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7900"
"10:46:28.4029549 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4029796 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:28.4029894 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000039","","740"
"10:46:28.4032471 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4032680 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:28.4032779 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000038","","740"
"10:46:28.4034605 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4034788 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000021","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:28.4034882 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000038","","740"
"10:46:28.4036738 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4036917 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000022","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:28.4037011 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000038","","740"
"10:46:28.4039691 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000174","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4039993 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000035","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:28.4040151 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000056","","740"
"10:46:28.4042844 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4043048 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000030","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:28.4043151 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000038","","740"
"10:46:28.4045096 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4045280 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000025","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:28.4045378 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000034","","740"
"10:46:28.4047964 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4048168 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000026","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:28.4048284 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000038","","740"
"10:46:28.4050451 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4050639 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000025","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:28.4050737 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000034","","740"
"10:46:28.4052601 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4052785 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000026","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:28.4052879 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000034","","740"
"10:46:28.4055435 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4055622 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000026","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:28.4055716 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000039","","740"
"10:46:28.4057483 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4057662 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000021","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:28.4057751 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000034","","740"
"10:46:28.4059616 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4059795 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000021","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:28.4059889 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000034","","740"
"10:46:28.4062479 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4062773 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.4062871 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000039","","740"
"10:46:28.4064676 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4064936 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.4065039 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000038","","740"
"10:46:28.4066878 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4067129 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.4067228 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000038","","740"
"10:46:28.4069890 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4070180 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:28.4070278 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000039","","740"
"10:46:28.4072053 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4072305 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:28.4072399 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000038","","740"
"10:46:28.4074131 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4074379 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:28.4074477 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000038","","740"
"10:46:28.4077045 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4077310 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000025","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:28.4077404 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000038","","740"
"10:46:28.4079221 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4079473 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000026","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:28.4079571 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000039","","740"
"10:46:28.4081303 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4081551 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000025","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:28.4081645 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000038","","740"
"10:46:28.4084337 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4084619 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000025","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:28.4084717 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000038","","740"
"10:46:28.4086492 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4086748 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000025","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:28.4086842 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000038","","740"
"10:46:28.4088574 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4088826 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000025","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:28.4088924 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000034","","740"
"10:46:28.4091953 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4092256 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000026","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:28.4092350 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000038","","740"
"10:46:28.4094223 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4094411 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000021","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:28.4094504 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000035","","740"
"10:46:28.4096373 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4096557 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000021","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:28.4096646 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000039","","740"
"10:46:28.4099428 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4099646 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000025","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:28.4099757 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000055","","740"
"10:46:28.4102539 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4102812 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000034","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:28.4102970 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000055","","740"
"10:46:28.4105022 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4105210 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000025","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:28.4105308 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000038","","740"
"10:46:28.4108081 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4108371 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:28.4108474 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000038","","740"
"10:46:28.4110270 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4110526 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000025","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:28.4110624 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000038","","740"
"10:46:28.4112420 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4112676 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:28.4112774 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000039","","740"
"10:46:28.4115565 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4115851 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000025","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:28.4115949 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000038","","740"
"10:46:28.4117741 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4118001 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000026","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:28.4118095 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000038","","740"
"10:46:28.4119998 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4120258 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000026","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:28.4120356 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000039","","740"
"10:46:28.4123876 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4124188 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000030","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:28.4124294 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000043","","740"
"10:46:28.4126189 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4126453 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000026","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:28.4126551 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000043","","740"
"10:46:28.4128314 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4128565 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000026","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:28.4128663 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000039","","740"
"10:46:28.4131629 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4131919 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000026","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:28.4132017 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000038","","740"
"10:46:28.4133860 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4134125 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000025","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:28.4134223 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000038","","740"
"10:46:28.4135968 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4136224 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000026","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:28.4136322 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000034","","740"
"10:46:28.4139078 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4139283 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000026","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:28.4139381 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000039","","740"
"10:46:28.4141178 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4141361 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000026","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:28.4141455 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000038","","740"
"10:46:28.4143187 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4143371 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000025","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:28.4143465 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000038","","740"
"10:46:28.4146187 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4146383 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:28.4146477 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000038","","740"
"10:46:28.4148243 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4148422 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:28.4148516 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000039","","740"
"10:46:28.4151234 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4151524 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000026","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","740"
"10:46:28.4151618 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000039","","740"
"10:46:28.4153419 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4153598 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000025","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","740"
"10:46:28.4153692 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000034","","740"
"10:46:28.4155428 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4155603 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000022","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","740"
"10:46:28.4155693 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000038","","740"
"10:46:28.4158351 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4158547 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.4158641 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000034","","740"
"10:46:28.4160476 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4160655 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.4160749 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000034","","740"
"10:46:28.4163189 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4163458 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000039","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.4163620 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000051","","740"
"10:46:28.4166884 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4167183 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000030","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:28.4167290 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000042","","740"
"10:46:28.4169120 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4169385 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000025","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:28.4169483 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000038","","740"
"10:46:28.4171245 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4171501 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000021","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:28.4171595 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000038","","740"
"10:46:28.4174398 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4174679 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","740"
"10:46:28.4174778 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000038","","740"
"10:46:28.4176582 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4176838 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","740"
"10:46:28.4176937 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000034","","740"
"10:46:28.4178771 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4179027 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","740"
"10:46:28.4179125 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000039","","740"
"10:46:28.4181916 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4182129 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:28.4182223 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000038","","740"
"10:46:28.4183985 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4184164 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:28.4184258 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000034","","740"
"10:46:28.4185944 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4186123 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000021","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:28.4186212 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000039","","740"
"10:46:28.4188828 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4189020 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000021","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","740"
"10:46:28.4189109 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000039","","740"
"10:46:28.4190872 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4191046 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000022","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","740"
"10:46:28.4191136 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000034","","740"
"10:46:28.4192792 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4192966 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000022","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","740"
"10:46:28.4193056 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000034","","740"
"10:46:28.4195902 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imagehlp.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4196184 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imagehlp.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:28.4196282 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imagehlp.dll","0.0000042","","740"
"10:46:28.4198057 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imagehlp.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4198313 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imagehlp.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:28.4198406 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imagehlp.dll","0.0000039","","740"
"10:46:28.4200250 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imagehlp.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4200501 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imagehlp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:28.4200600 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imagehlp.dll","0.0000038","","740"
"10:46:28.4203689 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rsaenh.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4203962 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rsaenh.dll","0.0000025","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.4204064 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rsaenh.dll","0.0000038","","740"
"10:46:28.4207068 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rsaenh.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4207580 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rsaenh.dll","0.0000047","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.4207789 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rsaenh.dll","0.0000072","","740"
"10:46:28.4210831 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rsaenh.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4211253 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rsaenh.dll","0.0000047","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:28.4211437 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rsaenh.dll","0.0000064","","740"
"10:46:28.4215857 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4216194 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:28.4216365 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000060","","740"
"10:46:28.4219121 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4219424 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:28.4219595 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000055","","740"
"10:46:28.4222202 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4222496 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:28.4222667 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000055","","740"
"10:46:28.4226635 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4227074 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000043","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:28.4227258 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000059","","740"
"10:46:28.4230569 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4230987 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000042","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:28.4231166 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000060","","740"
"10:46:28.4234114 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4234579 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000039","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:28.4234746 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000059","","740"
"10:46:28.4238697 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sspicli.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4239123 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000039","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:28.4239281 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sspicli.dll","0.0000056","","740"
"10:46:28.4241956 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sspicli.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4242473 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000034","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:28.4242643 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sspicli.dll","0.0000060","","740"
"10:46:28.4245502 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sspicli.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4245912 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000038","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:28.4246087 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sspicli.dll","0.0000059","","740"
"10:46:28.4250259 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000295","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4250695 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000038","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:28.4250865 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000060","","740"
"10:46:28.4253762 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4254078 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000038","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:28.4254087 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dwmapi.dll","0.0000059","AllocationSize: 147,456, EndOfFile: 146,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.4254249 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000059","","740"
"10:46:28.4254402 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000098","","2512"
"10:46:28.4257602 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4257969 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000047","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:28.4258174 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000064","","740"
"10:46:28.4262931 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4263507 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000043","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","740"
"10:46:28.4263704 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000068","","740"
"10:46:28.4264476 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000213","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.4265133 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dwmapi.dll","0.0000047","AllocationSize: 147,456, EndOfFile: 146,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.4265427 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:28.4265658 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dwmapi.dll","0.0000034","AllocationSize: 147,456, EndOfFile: 146,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.4266025 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:28.4267074 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4267548 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000043","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","740"
"10:46:28.4267744 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000060","","740"
"10:46:28.4270569 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4271055 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000043","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","740"
"10:46:28.4271239 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000068","","740"
"10:46:28.4271473 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000094","","2512"
"10:46:28.4276188 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4276730 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000047","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/27/2019 7:17:12 PM, FileAttributes: A","740"
"10:46:28.4276943 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000068","","740"
"10:46:28.4277054 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.4277553 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","2512"
"10:46:28.4277758 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000073","","2512"
"10:46:28.4280292 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4280775 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000042","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/27/2019 7:17:12 PM, FileAttributes: A","740"
"10:46:28.4280971 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000064","","740"
"10:46:28.4280988 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.4281440 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","2512"
"10:46:28.4281645 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000060","","2512"
"10:46:28.4284051 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4284512 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000043","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/27/2019 7:17:12 PM, FileAttributes: A","740"
"10:46:28.4284700 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000064","","740"
"10:46:28.4285361 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.4285762 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","2512"
"10:46:28.4285929 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000072","","2512"
"10:46:28.4288924 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4289363 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000192","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:36 PM, FileAttributes: A","740"
"10:46:28.4289828 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000077","","740"
"10:46:28.4290545 AM","firefox.exe","7384","CreateFile","C:\","0.0000192","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.4290976 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000201","Filter: Windows, 1: Windows","2512"
"10:46:28.4291386 AM","firefox.exe","7384","CloseFile","C:\","0.0000077","","2512"
"10:46:28.4292589 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4292905 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000034","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:36 PM, FileAttributes: A","740"
"10:46:28.4293028 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000111","","740"
"10:46:28.4293075 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000180","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.4293451 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000158","Filter: System32, 1: System32","2512"
"10:46:28.4293788 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000060","","2512"
"10:46:28.4295290 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4295490 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.4295588 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000035","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:36 PM, FileAttributes: A","740"
"10:46:28.4295704 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000047","","740"
"10:46:28.4295836 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dwmapi.dll","0.0000171","Filter: dwmapi.dll, 1: dwmapi.dll","2512"
"10:46:28.4296732 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000072","","2512"
"10:46:28.4299975 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4300295 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000042","CreationTime: 4/11/2018 4:34:35 PM, LastAccessTime: 4/11/2018 4:34:35 PM, LastWriteTime: 4/11/2018 4:34:35 PM, ChangeTime: 3/20/2019 7:07:22 PM, FileAttributes: A","740"
"10:46:28.4300303 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.4300461 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000060","","740"
"10:46:28.4300726 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000034","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:28.4300883 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000052","","2512"
"10:46:28.4301370 AM","firefox.exe","7384","CreateFile","C:\","0.0000153","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.4301707 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000175","Filter: Windows, 1: Windows","2512"
"10:46:28.4302057 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:28.4303243 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.4303478 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000110","Filter: System32, 1: System32","2512"
"10:46:28.4303704 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:28.4303785 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4304152 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000042","CreationTime: 4/11/2018 4:34:35 PM, LastAccessTime: 4/11/2018 4:34:35 PM, LastWriteTime: 4/11/2018 4:34:35 PM, ChangeTime: 3/20/2019 7:07:22 PM, FileAttributes: A","740"
"10:46:28.4304331 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000064","","740"
"10:46:28.4304749 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.4304979 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\uxtheme.dll","0.0000214","Filter: uxtheme.dll, 1: uxtheme.dll","2512"
"10:46:28.4305368 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000115","","2512"
"10:46:28.4307855 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:28.4308201 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000042","CreationTime: 4/11/2018 4:34:35 PM, LastAccessTime: 4/11/2018 4:34:35 PM, LastWriteTime: 4/11/2018 4:34:35 PM, ChangeTime: 3/20/2019 7:07:22 PM, FileAttributes: A","740"
"10:46:28.4308380 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000060","","740"
"10:46:28.4308495 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.4308883 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000043","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:28.4309041 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000060","","2512"
"10:46:28.4309519 AM","firefox.exe","7384","CreateFile","C:\","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.4309818 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000162","Filter: Windows, 1: Windows","2512"
"10:46:28.4310138 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:28.4311465 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.4311772 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000132","Filter: System32, 1: System32","2512"
"10:46:28.4312041 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000051","","2512"
"10:46:28.4313223 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.4313444 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\uxtheme.dll","0.0000124","Filter: uxtheme.dll, 1: uxtheme.dll","2512"
"10:46:28.4313675 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:28.4314831 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.4315202 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\uxtheme.dll","0.0000030","AllocationSize: 602,112, EndOfFile: 599,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.4315373 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:28.4315505 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\uxtheme.dll","0.0000022","AllocationSize: 602,112, EndOfFile: 599,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.4315710 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:28.4316269 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000051","","2512"
"10:46:28.4317549 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.4317959 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\uxtheme.dll","0.0000025","AllocationSize: 602,112, EndOfFile: 599,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.4318129 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:28.4318244 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\uxtheme.dll","0.0000018","AllocationSize: 602,112, EndOfFile: 599,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.4318428 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:28.4318897 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000051","","2512"
"10:46:28.4321018 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.4321252 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000030","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:28.4321363 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000039","","2512"
"10:46:28.4323185 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.4323399 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000021","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:28.4323497 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:28.4324521 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.4324883 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\uxtheme.dll","0.0000026","AllocationSize: 602,112, EndOfFile: 599,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.4325024 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:28.4325135 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\uxtheme.dll","0.0000017","AllocationSize: 602,112, EndOfFile: 599,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.4325319 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:28.4326151 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\uxtheme.dll","0.0000021","AllocationSize: 602,112, EndOfFile: 599,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.4326279 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:28.4326377 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\uxtheme.dll","0.0000013","AllocationSize: 602,112, EndOfFile: 599,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:28.4326543 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:28.4328356 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\uxtheme.dll","0.0749232","Offset: 0, Length: 524,288, Priority: Normal","2512"
"10:46:28.4329406 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\uxtheme.dll","0.0730476","Offset: 32,768, Length: 491,520, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2512"
"10:46:28.4335533 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing","0.0798166","0: .., 1: ads-track-digest256.sbstore, 2: ads-track-digest256.vlpset, 3: allow-flashallow-digest256.sbstore, 4: allow-flashallow-digest256.vlpset, 5: analytics-track-digest256.sbstore, 6: analytics-track-digest256.vlpset, 7: base-cryptomining-track-digest256.sbstore, 8: base-cryptomining-track-digest256.vlpset, 9: base-fingerprinting-track-digest256.sbstore, 10: base-fingerprinting-track-digest256.vlpset, 11: block-flash-digest256.sbstore, 12: block-flash-digest256.vlpset, 13: block-flashsubdoc-digest256.sbstore, 14: block-flashsubdoc-digest256.vlpset, 15: content-track-digest256.sbstore, 16: content-track-digest256.vlpset, 17: except-flash-digest256.sbstore, 18: except-flash-digest256.vlpset, 19: except-flashallow-digest256.sbstore, 20: except-flashallow-digest256.vlpset, 21: except-flashsubdoc-digest256.sbstore, 22: except-flashsubdoc-digest256.vlpset, 23: google-trackwhite-digest256.sbstore, 24: google-trackwhite-digest256.vlpset","7900"
"10:46:28.4335947 AM","firefox.exe","7384","ReadFile","C:","0.0591395","Offset: 12,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7900"
"10:46:28.4587262 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0223241","Offset: 8,785,920, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:28.4588867 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000183","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.4589485 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000043","AllocationSize: 23,359,488, EndOfFile: 23,355,435, NumberOfLinks: 1, DeletePending: False, Directory: False","8004"
"10:46:28.4589729 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\omni.ja","0.0221073","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.4812355 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000393","AllocationSize: 23,359,488, EndOfFile: 23,355,435, NumberOfLinks: 1, DeletePending: False, Directory: False","8004"
"10:46:28.4813332 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\omni.ja","0.0000115","SyncType: SyncTypeOther","8004"
"10:46:28.4817565 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000145","","8004"
"10:46:28.4820799 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.4821072 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000030","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: A","8004"
"10:46:28.4821166 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000047","","8004"
"10:46:28.4822949 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.4823145 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8004"
"10:46:28.4823226 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000039","","8004"
"10:46:28.4823606 AM","firefox.exe","7904","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.4823875 AM","firefox.exe","7904","QueryDirectory","C:\Program Files","0.0000162","Filter: Program Files, 1: Program Files","8004"
"10:46:28.4824221 AM","firefox.exe","7904","CloseFile","C:\","0.0000042","","8004"
"10:46:28.4825206 AM","firefox.exe","7904","CreateFile","C:\Program Files","0.0000120","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.4825466 AM","firefox.exe","7904","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000133","Filter: Firefox Nightly, 1: Firefox Nightly","8004"
"10:46:28.4825710 AM","firefox.exe","7904","CloseFile","C:\Program Files","0.0000038","","8004"
"10:46:28.4827655 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.4827852 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000025","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: A","8004"
"10:46:28.4827933 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000038","","8004"
"10:46:28.4828253 AM","firefox.exe","7904","CreateFile","C:\","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.4828470 AM","firefox.exe","7904","QueryDirectory","C:\Program Files","0.0000111","Filter: Program Files, 1: Program Files","8004"
"10:46:28.4828688 AM","firefox.exe","7904","CloseFile","C:\","0.0000038","","8004"
"10:46:28.4829759 AM","firefox.exe","7904","CreateFile","C:\Program Files","0.0000153","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.4830066 AM","firefox.exe","7904","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000119","Filter: Firefox Nightly, 1: Firefox Nightly","8004"
"10:46:28.4830309 AM","firefox.exe","7904","CloseFile","C:\Program Files","0.0000047","","8004"
"10:46:28.4831734 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.4832050 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000034","AllocationSize: 48,279,552, EndOfFile: 48,278,560, NumberOfLinks: 1, DeletePending: False, Directory: False","8004"
"10:46:28.4832242 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.4832366 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000021","AllocationSize: 48,279,552, EndOfFile: 48,278,560, NumberOfLinks: 1, DeletePending: False, Directory: False","8004"
"10:46:28.4832553 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000017","SyncType: SyncTypeOther","8004"
"10:46:28.4841885 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000119","","8004"
"10:46:28.4843118 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Versions\000602xx","0.0000055","Type: REG_SZ, Length: 26, Data: kernel32.dll","8004"
"10:46:28.4844905 AM","firefox.exe","7904","CreateFile","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000184","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.4845336 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.4845490 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000038","AllocationSize: 3,371,008, EndOfFile: 3,368,788, NumberOfLinks: 2, DeletePending: False, Directory: False","8004"
"10:46:28.4845720 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000017","SyncType: SyncTypeOther","8004"
"10:46:28.4846271 AM","firefox.exe","7904","CloseFile","C:\Windows\Globalization\Sorting\SortDefault.nls","0.0000072","","8004"
"10:46:28.4846966 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Ids","0.0000086","Desired Access: Read","8004"
"10:46:28.4847162 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Ids","0.0000082","Desired Access: Read","8004"
"10:46:28.4847393 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Ids\en-US","0.0000055","Length: 90","8004"
"10:46:28.4847529 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Nls\Sorting\Ids\en","0.0000039","Length: 90","8004"
"10:46:28.4853912 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\JitPI.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.4855798 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json","0.0000384","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","120"
"10:46:28.4856332 AM","firefox.exe","7904","CreateFile","C:\Windows\System\JitPI.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.4856349 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json","0.0000055","CreationTime: 6/19/2019 4:53:40 PM, LastAccessTime: 3/26/2020 10:46:26 AM, LastWriteTime: 3/26/2020 10:46:26 AM, ChangeTime: 3/26/2020 10:46:26 AM, FileAttributes: A","120"
"10:46:28.4856536 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json","0.0000111","","120"
"10:46:28.4858286 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json.tmp","0.0445073","Desired Access: Generic Write, Read Attributes, Disposition: OverwriteIf, Options: Write Through, Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: 0, OpenResult: Created","120"
"10:46:28.4858674 AM","firefox.exe","7904","CreateFile","C:\Windows\JitPI.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.4861119 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\JitPI.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.4862881 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\JitPI.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.4864498 AM","firefox.exe","7904","CreateFile","C:\Program Files (x86)\Intel\iCLS Client\JitPI.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.4866043 AM","firefox.exe","7904","CreateFile","C:\Program Files\Intel\iCLS Client\JitPI.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.4867685 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\JitPI.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.4869247 AM","firefox.exe","7904","CreateFile","C:\Windows\JitPI.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.4870971 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wbem\JitPI.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.4872588 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\WindowsPowerShell\v1.0\JitPI.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.4874188 AM","firefox.exe","7904","CreateFile","C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\JitPI.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.4875907 AM","firefox.exe","7904","CreateFile","C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\JitPI.dll","0.0000085","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.4877405 AM","firefox.exe","7904","CreateFile","C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\JitPI.dll","0.0000085","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.4879081 AM","firefox.exe","7904","CreateFile","C:\Program Files\Intel\Intel(R) Management Engine Components\IPT\JitPI.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.4881676 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\OpenSSH\JitPI.dll","0.0000388","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.4884385 AM","firefox.exe","7904","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\WindowsApps\JitPI.dll","0.0000375","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.4902412 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 8152","8004"
"10:46:28.4907630 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8152"
"10:46:28.4908086 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","8152"
"10:46:28.4908210 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000056","","8152"
"10:46:28.4909541 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000133","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8152"
"10:46:28.4910092 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8152"
"10:46:28.4910399 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000017","SyncType: SyncTypeOther","8152"
"10:46:28.4910680 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\NapiNSP.dll","0.0000030","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8152"
"10:46:28.4911346 AM","firefox.exe","7904","Load Image","C:\Windows\System32\NapiNSP.dll","0.0000000","Image Base: 0x7ffb3cce0000, Image Size: 0x16000","8152"
"10:46:28.4911555 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000047","Name: \Windows\System32\NapiNSP.dll","8152"
"10:46:28.4913693 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000119","","8152"
"10:46:28.4924479 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\webauthn.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.4925034 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000064","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","8004"
"10:46:28.4925208 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\webauthn.dll","0.0000082","","8004"
"10:46:28.4927453 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\webauthn.dll","0.0000234","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.4928106 AM","firefox.exe","7384","ReadFile","C:","0.0205244","Offset: 8,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7900"
"10:46:28.4928229 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.4928635 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000021","SyncType: SyncTypeOther","8004"
"10:46:28.4928976 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\webauthn.dll","0.0000043","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.4930013 AM","firefox.exe","7904","Load Image","C:\Windows\System32\webauthn.dll","0.0000000","Image Base: 0x7ffb38050000, Image Size: 0x4b000","8004"
"10:46:28.4930307 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\webauthn.dll","0.0000077","Name: \Windows\System32\webauthn.dll","8004"
"10:46:28.4932270 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\webauthn.dll","0.0000141","","8004"
"10:46:28.4935043 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.4935410 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000030","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","8004"
"10:46:28.4935512 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000047","","8004"
"10:46:28.4936558 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000136","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.4936967 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\bcrypt.dll","0.0000035","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.4937240 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\bcrypt.dll","0.0000013","SyncType: SyncTypeOther","8004"
"10:46:28.4937479 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\bcrypt.dll","0.0000030","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.4938367 AM","firefox.exe","7904","Load Image","C:\Windows\System32\bcrypt.dll","0.0000000","Image Base: 0x7ffb455f0000, Image Size: 0x25000","8004"
"10:46:28.4938636 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\bcrypt.dll","0.0000064","Name: \Windows\System32\bcrypt.dll","8004"
"10:46:28.4939685 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000086","","8004"
"10:46:28.4944536 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8152"
"10:46:28.4944895 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000034","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","8152"
"10:46:28.4944997 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000051","","8152"
"10:46:28.4946107 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000136","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8152"
"10:46:28.4946563 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8152"
"10:46:28.4946845 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000017","SyncType: SyncTypeOther","8152"
"10:46:28.4947105 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\pnrpnsp.dll","0.0000026","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8152"
"10:46:28.4947975 AM","firefox.exe","7904","Load Image","C:\Windows\System32\pnrpnsp.dll","0.0000000","Image Base: 0x7ffb3ca40000, Image Size: 0x1a000","8152"
"10:46:28.4948308 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000073","Name: \Windows\System32\pnrpnsp.dll","8152"
"10:46:28.4950028 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000089","","8152"
"10:46:28.4955690 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8152"
"10:46:28.4956236 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000051","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","8152"
"10:46:28.4956406 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000073","","8152"
"10:46:28.4958028 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000200","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8152"
"10:46:28.4958702 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8152"
"10:46:28.4958727 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 8144","8004"
"10:46:28.4959124 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000030","SyncType: SyncTypeOther","8152"
"10:46:28.4959504 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\nlaapi.dll","0.0000047","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8152"
"10:46:28.4959521 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 8388","8004"
"10:46:28.4960746 AM","firefox.exe","7904","Load Image","C:\Windows\System32\nlaapi.dll","0.0000000","Image Base: 0x7ffb423c0000, Image Size: 0x19000","8152"
"10:46:28.4961031 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\nlaapi.dll","0.0000069","Name: \Windows\System32\nlaapi.dll","8152"
"10:46:28.4962585 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000093","","8152"
"10:46:28.4967312 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 6260","8004"
"10:46:28.4967862 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\mswsock.dll","0.0000593","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8152"
"10:46:28.4968754 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000056","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","8152"
"10:46:28.4968925 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\mswsock.dll","0.0000072","","8152"
"10:46:28.4970085 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 2308","8004"
"10:46:28.4970585 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\mswsock.dll","0.0000213","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8152"
"10:46:28.4970777 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 8396","8004"
"10:46:28.4971250 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8152"
"10:46:28.4971267 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 8184","8004"
"10:46:28.4971694 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 7256","8004"
"10:46:28.4971698 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000026","SyncType: SyncTypeOther","8152"
"10:46:28.4972095 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\mswsock.dll","0.0000043","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8152"
"10:46:28.4972953 AM","firefox.exe","7904","Load Image","C:\Windows\System32\mswsock.dll","0.0000000","Image Base: 0x7ffb452b0000, Image Size: 0x66000","8152"
"10:46:28.4973281 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\mswsock.dll","0.0000073","Name: \Windows\System32\mswsock.dll","8152"
"10:46:28.4975679 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\mswsock.dll","0.0000115","","8152"
"10:46:28.4978401 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000047","Query: HandleTags, HandleTags: 0x0","8152"
"10:46:28.4978713 AM","firefox.exe","7904","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000098","Desired Access: Read","8152"
"10:46:28.4978977 AM","firefox.exe","7904","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000124","Desired Access: Read, Disposition: REG_OPENED_EXISTING_KEY","8152"
"10:46:28.4979498 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000072","Desired Access: Read","8152"
"10:46:28.4979715 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000086","Desired Access: Read","8152"
"10:46:28.4979963 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","8152"
"10:46:28.4980142 AM","firefox.exe","7904","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters","0.0000047","Desired Access: Read","8152"
"10:46:28.4980300 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000068","Desired Access: Read","8152"
"10:46:28.4980509 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8152"
"10:46:28.4980654 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\DnsClient","0.0000094","Desired Access: Read","8152"
"10:46:28.4980940 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000047","Length: 12","8152"
"10:46:28.4981115 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000038","Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","8152"
"10:46:28.4981337 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000021","","8152"
"10:46:28.4981503 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000013","","8152"
"10:46:28.4981738 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","8152"
"10:46:28.4981925 AM","firefox.exe","7904","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000064","Desired Access: Read","8152"
"10:46:28.4982117 AM","firefox.exe","7904","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000069","Desired Access: Read, Disposition: REG_OPENED_EXISTING_KEY","8152"
"10:46:28.4982356 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000047","Desired Access: Read","8152"
"10:46:28.4982523 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000047","Desired Access: Read","8152"
"10:46:28.4982693 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8152"
"10:46:28.4982834 AM","firefox.exe","7904","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters","0.0000043","Desired Access: Read","8152"
"10:46:28.4982988 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000051","Desired Access: Read","8152"
"10:46:28.4983171 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8152"
"10:46:28.4983338 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\DnsClient","0.0000072","Desired Access: Read","8152"
"10:46:28.4983572 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000030","Length: 12","8152"
"10:46:28.4983726 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000030","Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","8152"
"10:46:28.4983918 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000017","","8152"
"10:46:28.4984076 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000013","","8152"
"10:46:28.4984281 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8152"
"10:46:28.4984443 AM","firefox.exe","7904","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000072","Desired Access: Read","8152"
"10:46:28.4984639 AM","firefox.exe","7904","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000064","Desired Access: Read, Disposition: REG_OPENED_EXISTING_KEY","8152"
"10:46:28.4984882 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000051","Desired Access: Read","8152"
"10:46:28.4985053 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000042","Desired Access: Read","8152"
"10:46:28.4985245 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8152"
"10:46:28.4985420 AM","firefox.exe","7904","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters","0.0000042","Desired Access: Read","8152"
"10:46:28.4985586 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000060","Desired Access: Read","8152"
"10:46:28.4985778 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8152"
"10:46:28.4985927 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\DnsClient","0.0000060","Desired Access: Read","8152"
"10:46:28.4986111 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8152"
"10:46:28.4986247 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Policies\Microsoft\System\DNSClient","0.0000052","Desired Access: Query Value","8152"
"10:46:28.4986435 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Domain","0.0000030","Length: 12","8152"
"10:46:28.4986580 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Domain","0.0000030","Type: REG_SZ, Length: 2, Data: ","8152"
"10:46:28.4986794 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000021","","8152"
"10:46:28.4986947 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000017","","8152"
"10:46:28.4991999 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\winrnr.dll","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8152"
"10:46:28.4992596 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000145","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","8152"
"10:46:28.4992895 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\winrnr.dll","0.0000179","","8152"
"10:46:28.4993671 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 7244","8004"
"10:46:28.4994499 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\winrnr.dll","0.0000154","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8152"
"10:46:28.4995067 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8152"
"10:46:28.4995498 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000029","SyncType: SyncTypeOther","8152"
"10:46:28.4995907 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\winrnr.dll","0.0000039","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8152"
"10:46:28.4996624 AM","firefox.exe","7904","Load Image","C:\Windows\System32\winrnr.dll","0.0000000","Image Base: 0x7ffb41370000, Image Size: 0xe000","8152"
"10:46:28.4996901 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\winrnr.dll","0.0000060","Name: \Windows\System32\winrnr.dll","8152"
"10:46:28.4998335 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\winrnr.dll","0.0000077","","8152"
"10:46:28.5003604 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wshbth.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8152"
"10:46:28.5004095 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","8152"
"10:46:28.5004240 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wshbth.dll","0.0000064","","8152"
"10:46:28.5005652 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wshbth.dll","0.0000175","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8152"
"10:46:28.5006245 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8152"
"10:46:28.5006706 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000026","SyncType: SyncTypeOther","8152"
"10:46:28.5007124 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\wshbth.dll","0.0000039","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8152"
"10:46:28.5008780 AM","firefox.exe","7904","Load Image","C:\Windows\System32\wshbth.dll","0.0000000","Image Base: 0x7ffb3bf70000, Image Size: 0x15000","8152"
"10:46:28.5009364 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\wshbth.dll","0.0000184","Name: \Windows\System32\wshbth.dll","8152"
"10:46:28.5011506 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wshbth.dll","0.0000103","","8152"
"10:46:28.5013285 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000039","Query: HandleTags, HandleTags: 0x0","8152"
"10:46:28.5013541 AM","firefox.exe","7904","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000103","Desired Access: Read","8152"
"10:46:28.5013819 AM","firefox.exe","7904","RegCreateKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000106","Desired Access: Read, Disposition: REG_OPENED_EXISTING_KEY","8152"
"10:46:28.5014139 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000055","Desired Access: Read","8152"
"10:46:28.5014322 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000060","Desired Access: Read","8152"
"10:46:28.5014540 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8152"
"10:46:28.5014706 AM","firefox.exe","7904","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters","0.0000047","Desired Access: Read","8152"
"10:46:28.5014873 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000076","Desired Access: Read","8152"
"10:46:28.5015086 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8152"
"10:46:28.5015227 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Policies\Microsoft\Windows NT\DnsClient","0.0000089","Desired Access: Read","8152"
"10:46:28.5015474 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000047","Length: 12","8152"
"10:46:28.5015645 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Hostname","0.0000034","Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","8152"
"10:46:28.5015884 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters","0.0000021","","8152"
"10:46:28.5016050 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\Dnscache\Parameters","0.0000013","","8152"
"10:46:28.5017164 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","8152"
"10:46:28.5017339 AM","firefox.exe","7904","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Winsock\Parameters","0.0000132","Desired Access: Read","8152"
"10:46:28.5017612 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock\Parameters","0.0000277","Desired Access: Read","8152"
"10:46:28.5018060 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\Winsock\Parameters\Transports","0.0000038","Length: 12","8152"
"10:46:28.5018218 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\Winsock\Parameters\Transports","0.0000038","Type: REG_MULTI_SZ, Length: 92, Data: afunix, Tcpip, Tcpip6, Psched, vmbus, irda, RFCOMM","8152"
"10:46:28.5019203 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\Winsock\Parameters","0.0000030","","8152"
"10:46:28.5019438 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8152"
"10:46:28.5019604 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock","0.0000056","Desired Access: Read","8152"
"10:46:28.5019788 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock","0.0000141","Desired Access: Read","8152"
"10:46:28.5020091 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock\Mapping","0.0000034","Length: 12","8152"
"10:46:28.5020253 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock\Mapping","0.0000034","Type: REG_BINARY, Length: 20, Data: 01 00 00 00 03 00 00 00 01 00 00 00 01 00 00 00","8152"
"10:46:28.5020441 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\afunix\Parameters\Winsock","0.0000017","","8152"
"10:46:28.5020586 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","8152"
"10:46:28.5020731 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000047","Desired Access: Read","8152"
"10:46:28.5020897 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000107","Desired Access: Read","8152"
"10:46:28.5021157 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock\Mapping","0.0000035","Length: 12","8152"
"10:46:28.5021307 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock\Mapping","0.0000034","Type: REG_BINARY, Length: 104, Data: 08 00 00 00 03 00 00 00 02 00 00 00 01 00 00 00","8152"
"10:46:28.5021486 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000017","","8152"
"10:46:28.5021631 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8152"
"10:46:28.5021780 AM","firefox.exe","7904","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\Winsock\Setup Migration\Providers","0.0000052","Desired Access: Read","8152"
"10:46:28.5021934 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers","0.0000115","Desired Access: Read","8152"
"10:46:28.5022186 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers","0.0000012","Query: HandleTags, HandleTags: 0x0","8152"
"10:46:28.5022484 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers\Tcpip","0.0000081","Desired Access: Read","8152"
"10:46:28.5022719 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers\Tcpip\WinSock 2.0 Provider ID","0.0000034","Type: REG_BINARY, Length: 16, Data: A0 1A 0F E7 8B AB CF 11 8C A3 00 80 5F 48 A1 92","8152"
"10:46:28.5022911 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers\Tcpip","0.0000017","","8152"
"10:46:28.5023043 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers","0.0000017","","8152"
"10:46:28.5023201 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8152"
"10:46:28.5023355 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000047","Desired Access: Read","8152"
"10:46:28.5023517 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000064","Desired Access: Read","8152"
"10:46:28.5023705 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock\MinSockaddrLength","0.0000059","Type: REG_DWORD, Length: 4, Data: 16","8152"
"10:46:28.5023871 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock\MaxSockaddrLength","0.0000030","Type: REG_DWORD, Length: 4, Data: 16","8152"
"10:46:28.5024008 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock\UseDelayedAcceptance","0.0000029","Type: REG_DWORD, Length: 4, Data: 0","8152"
"10:46:28.5024161 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock","0.0000013","","8152"
"10:46:28.5028001 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 2284","8152"
"10:46:28.5029785 AM","firefox.exe","7904","TCP Connect","LAPTOP-49TAGD3F:49758 -> LAPTOP-49TAGD3F:49757","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65535, rcvwinscale: 0, sndwinscale: 0, seqnum: 0, connid: 0","0"
"10:46:28.5030292 AM","firefox.exe","7904","TCP Accept","LAPTOP-49TAGD3F:49757 -> LAPTOP-49TAGD3F:49758","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65535, rcvwinscale: 0, sndwinscale: 0, seqnum: 0, connid: 0","0"
"10:46:28.5031914 AM","firefox.exe","7904","TCP Receive","LAPTOP-49TAGD3F:49757 -> LAPTOP-49TAGD3F:49758","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:28.5032110 AM","firefox.exe","7904","TCP Send","LAPTOP-49TAGD3F:49758 -> LAPTOP-49TAGD3F:49757","0.0000000","Length: 1, startime: 40348, endtime: 40348, seqnum: 0, connid: 0","0"
"10:46:28.5033168 AM","firefox.exe","7904","TCP Receive","LAPTOP-49TAGD3F:49757 -> LAPTOP-49TAGD3F:49758","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:28.5033305 AM","firefox.exe","7904","TCP Send","LAPTOP-49TAGD3F:49758 -> LAPTOP-49TAGD3F:49757","0.0000000","Length: 1, startime: 40348, endtime: 40348, seqnum: 0, connid: 0","0"
"10:46:28.5138009 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\ads-track-digest256.sbstore","0.0000589","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.5138802 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\ads-track-digest256.sbstore","0.0000060","CreationTime: 3/26/2020 10:25:31 AM, LastAccessTime: 3/26/2020 10:25:31 AM, LastWriteTime: 3/26/2020 10:25:32 AM, ChangeTime: 3/26/2020 10:25:32 AM, FileAttributes: A","7900"
"10:46:28.5139037 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\ads-track-digest256.sbstore","0.0000081","","7900"
"10:46:28.5141990 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\ads-track-digest256.vlpset","0.0147618","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.5289975 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\ads-track-digest256.vlpset","0.0000089","CreationTime: 3/26/2020 10:25:32 AM, LastAccessTime: 3/26/2020 10:25:32 AM, LastWriteTime: 3/26/2020 10:25:32 AM, ChangeTime: 3/26/2020 10:25:32 AM, FileAttributes: A","7900"
"10:46:28.5290265 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\ads-track-digest256.vlpset","0.0000149","","7900"
"10:46:28.5300582 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\allow-flashallow-digest256.sbstore","0.0242684","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.5303773 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json.tmp","0.0924968","Offset: 0, Length: 90, I/O Flags: Write Through, Priority: Normal","120"
"10:46:28.5306252 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:28.5306675 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000064","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:28.5306884 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000068","","5068"
"10:46:28.5308816 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000282","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:28.5309964 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000192","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,838, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5068"
"10:46:28.5310485 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000136","","5068"
"10:46:28.5315967 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000342","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:28.5317427 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000968","AllocationSize: 81,920, EndOfFile: 81,920, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:28.5324112 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000372","Offset: 123, Length: 1","5068"
"10:46:28.5330082 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000281","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:28.5331178 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0001493","AllocationSize: 81,920, EndOfFile: 81,920, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:28.5334749 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000568","Offset: 8,192, Length: 4,096","5068"
"10:46:28.5336528 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json.tmp","0.0891982","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Write Through, Priority: Normal","120"
"10:46:28.5336686 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000133","Offset: 123, Length: 1","5068"
"10:46:28.5338470 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000136","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:28.5339080 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000158","AllocationSize: 81,920, EndOfFile: 81,920, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:28.5339856 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000137","Offset: 12,288, Length: 4,096","5068"
"10:46:28.5342928 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000500","Offset: 123, Length: 1","5068"
"10:46:28.5347208 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000247","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:28.5348671 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000273","AllocationSize: 81,920, EndOfFile: 81,920, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:28.5351266 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0001024","Offset: 16,384, Length: 4,096","5068"
"10:46:28.5352994 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000042","Offset: 123, Length: 1","5068"
"10:46:28.5357994 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.files","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:28.5358566 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.files","0.0000064","CreationTime: 6/19/2019 4:53:52 PM, LastAccessTime: 6/19/2019 4:53:52 PM, LastWriteTime: 6/19/2019 4:53:52 PM, ChangeTime: 6/19/2019 4:53:52 PM, AllocationSize: 0, EndOfFile: 0, FileAttributes: D","5068"
"10:46:28.5358775 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.files","0.0000102","","5068"
"10:46:28.5362491 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.files","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:28.5362892 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.files","0.0001417","CreationTime: 6/19/2019 4:53:52 PM, LastAccessTime: 6/19/2019 4:53:52 PM, LastWriteTime: 6/19/2019 4:53:52 PM, ChangeTime: 6/19/2019 4:53:52 PM, FileAttributes: D","5068"
"10:46:28.5364458 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.files","0.0000068","","5068"
"10:46:28.5370397 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.files\journals","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:28.5371357 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000056","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:28.5371613 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000056","AllocationSize: 81,920, EndOfFile: 81,920, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:28.5371955 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000093","Offset: 40,960, Length: 4,096","5068"
"10:46:28.5372296 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000034","Offset: 123, Length: 1","5068"
"10:46:28.5372624 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:28.5372787 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000021","Offset: 1,073,741,826, Length: 510","5068"
"10:46:28.5372991 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000026","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:28.5373474 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000132","","5068"
"10:46:28.5377147 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000290","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:28.5377608 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000051","CreationTime: 3/26/2020 10:46:28 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, FileAttributes: A","5068"
"10:46:28.5377813 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000077","","5068"
"10:46:28.5380185 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000388","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:28.5380795 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000064","Attributes: A, ReparseTag: 0x0","5068"
"10:46:28.5381051 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000120","Delete: True","5068"
"10:46:28.5381341 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0001101","","5068"
"10:46:28.5383001 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000508","","5068"
"10:46:28.5387255 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.5387609 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8004"
"10:46:28.5387724 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:28.5387758 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000069","","8004"
"10:46:28.5388202 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000047","CreationTime: 3/26/2020 10:46:28 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, FileAttributes: A","5068"
"10:46:28.5388433 AM","firefox.exe","7904","CreateFile","C:\","0.0000196","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.5388484 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000077","","5068"
"10:46:28.5389051 AM","firefox.exe","7904","QueryDirectory","C:\Program Files","0.0000196","Filter: Program Files, 1: Program Files","8004"
"10:46:28.5389495 AM","firefox.exe","7904","CloseFile","C:\","0.0000060","","8004"
"10:46:28.5390570 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000371","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:28.5391219 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000055","Attributes: A, ReparseTag: 0x0","5068"
"10:46:28.5391355 AM","firefox.exe","7904","CreateFile","C:\Program Files","0.0000214","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.5391590 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000124","Delete: True","5068"
"10:46:28.5391961 AM","firefox.exe","7904","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000316","Filter: Firefox Nightly, 1: Firefox Nightly","8004"
"10:46:28.5391970 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0001181","","5068"
"10:46:28.5392511 AM","firefox.exe","7904","CloseFile","C:\Program Files","0.0000073","","8004"
"10:46:28.5393966 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000047","Offset: 1,073,741,826, Length: 510","5068"
"10:46:28.5394150 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000017","Offset: 1,073,741,825, Length: 1","5068"
"10:46:28.5394299 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000017","Offset: 1,073,741,826, Length: 510","5068"
"10:46:28.5394444 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000017","Offset: 1,073,741,824, Length: 1","5068"
"10:46:28.5394653 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000239","","5068"
"10:46:28.5399291 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:28.5399756 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000060","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:28.5399974 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000678","","5068"
"10:46:28.5404206 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\idb-deleting-3870112724rsegmnoittet-es","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:28.5408742 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:28.5409207 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000055","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","5068"
"10:46:28.5410628 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0347328","","5068"
"10:46:28.5543590 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\allow-flashallow-digest256.sbstore","0.0000077","CreationTime: 3/26/2020 10:25:34 AM, LastAccessTime: 3/26/2020 10:25:34 AM, LastWriteTime: 3/26/2020 10:25:34 AM, ChangeTime: 3/26/2020 10:25:34 AM, FileAttributes: A","7900"
"10:46:28.5543855 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\allow-flashallow-digest256.sbstore","0.0000140","","7900"
"10:46:28.5547750 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\allow-flashallow-digest256.vlpset","0.0678606","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.5597896 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5598259 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000136","Desired Access: Read","8004"
"10:46:28.5598856 AM","firefox.exe","7904","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000022","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5599082 AM","firefox.exe","7904","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}","0.0000120","Desired Access: Read","8004"
"10:46:28.5599411 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000124","","8004"
"10:46:28.5599735 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Category","0.0000051","Type: REG_DWORD, Length: 4, Data: 4","8004"
"10:46:28.5600017 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Name","0.0000055","Type: REG_SZ, Length: 32, Data: LocalAppDataLow","8004"
"10:46:28.5600226 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\ParentFolder","0.0000038","Length: 90","8004"
"10:46:28.5600388 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Description","0.0000030","Length: 144","8004"
"10:46:28.5600542 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\RelativePath","0.0000042","Type: REG_SZ, Length: 34, Data: AppData\LocalLow","8004"
"10:46:28.5600712 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\ParsingName","0.0000034","Length: 144","8004"
"10:46:28.5600866 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\InfoTip","0.0000034","Length: 144","8004"
"10:46:28.5601024 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\LocalizedName","0.0000034","Length: 144","8004"
"10:46:28.5601177 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Icon","0.0000034","Length: 144","8004"
"10:46:28.5601327 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Security","0.0000047","Type: REG_SZ, Length: 40, Data: S:(ML;OICI;NW;;;LW)","8004"
"10:46:28.5601549 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\StreamResource","0.0000034","Length: 144","8004"
"10:46:28.5601702 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\StreamResourceType","0.0000034","Length: 144","8004"
"10:46:28.5601856 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\LocalRedirectOnly","0.0000034","Type: REG_DWORD, Length: 4, Data: 1","8004"
"10:46:28.5602018 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Roamable","0.0000034","Length: 16","8004"
"10:46:28.5602180 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\PreCreate","0.0000038","Type: REG_DWORD, Length: 4, Data: 1","8004"
"10:46:28.5602342 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Stream","0.0000034","Length: 16","8004"
"10:46:28.5602500 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\PublishExpandedPath","0.0000034","Type: REG_DWORD, Length: 4, Data: 1","8004"
"10:46:28.5602658 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\DefinitionFlags","0.0000030","Length: 16","8004"
"10:46:28.5602820 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\Attributes","0.0000034","Type: REG_DWORD, Length: 4, Data: 8192","8004"
"10:46:28.5602974 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\FolderTypeID","0.0000029","Length: 90","8004"
"10:46:28.5603123 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\InitFolderHandler","0.0000051","Length: 90","8004"
"10:46:28.5603477 AM","firefox.exe","7904","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}","0.0000081","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5603759 AM","firefox.exe","7904","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}\PropertyBag","0.0000081","Desired Access: Read","8004"
"10:46:28.5604100 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{A520A1A4-1780-4FF6-BD18-167343C5AF16}","0.0000021","","8004"
"10:46:28.5604898 AM","firefox.exe","7904","RegOpenKey","HKCU","0.0000081","Desired Access: Read","8004"
"10:46:28.5605150 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5605312 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer","0.0000072","Desired Access: Query Value","8004"
"10:46:28.5605521 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer","0.0000025","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5605691 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000064","Desired Access: Query Value","8004"
"10:46:28.5605943 AM","firefox.exe","7904","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer","0.0000022","","8004"
"10:46:28.5606097 AM","firefox.exe","7904","RegCloseKey","HKCU","0.0000017","","8004"
"10:46:28.5606361 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000022","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5606536 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\KnownFolders","0.0000047","Desired Access: Query Value","8004"
"10:46:28.5606737 AM","firefox.exe","7904","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1","0.0000077","","8004"
"10:46:28.5607364 AM","firefox.exe","7904","RegOpenKey","HKU","0.0000064","Desired Access: Maximum Allowed, Granted Access: Read","8004"
"10:46:28.5607569 AM","firefox.exe","7904","RegQueryKey","HKU","0.0002176","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5609988 AM","firefox.exe","7904","RegOpenKey","HKCU","0.0000081","Desired Access: Read","8004"
"10:46:28.5610291 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5610474 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000086","Desired Access: Read","8004"
"10:46:28.5610747 AM","firefox.exe","7904","RegCloseKey","HKCU","0.0000022","","8004"
"10:46:28.5610939 AM","firefox.exe","7904","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\{A520A1A4-1780-4FF6-BD18-167343C5AF16}","0.0000056","Length: 142","8004"
"10:46:28.5611720 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5611917 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList","0.0000093","Desired Access: Read","8004"
"10:46:28.5612181 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\ProgramData","0.0000051","Length: 12","8004"
"10:46:28.5612373 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\ProgramData","0.0000038","Type: REG_EXPAND_SZ, Length: 52, Data: %SystemDrive%\ProgramData","8004"
"10:46:28.5612603 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList","0.0000018","","8004"
"10:46:28.5612838 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5613069 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList","0.0000085","Desired Access: Read","8004"
"10:46:28.5613307 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Public","0.0000039","Length: 12","8004"
"10:46:28.5613487 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Public","0.0000038","Type: REG_EXPAND_SZ, Length: 54, Data: %SystemDrive%\Users\Public","8004"
"10:46:28.5613704 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList","0.0000034","","8004"
"10:46:28.5613922 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5614093 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000098","Desired Access: Read","8004"
"10:46:28.5614336 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000128","Desired Access: Read","8004"
"10:46:28.5614639 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000038","Query: Cached, SubKeys: 0, Values: 15","8004"
"10:46:28.5614852 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000043","Index: 0, Name: ComSpec, Type: REG_EXPAND_SZ, Length: 60, Data: %SystemRoot%\system32\cmd.exe","8004"
"10:46:28.5615048 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000034","Index: 1, Name: DriverData, Type: REG_SZ, Length: 78, Data: C:\Windows\System32\Drivers\DriverData","8004"
"10:46:28.5615249 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000034","Index: 2, Name: NUMBER_OF_PROCESSORS, Type: REG_SZ, Length: 4, Data: 4","8004"
"10:46:28.5615432 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000030","Index: 3, Name: OS, Type: REG_SZ, Length: 22, Data: Windows_NT","8004"
"10:46:28.5615624 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000047","Index: 4, Name: Path, Type: REG_EXPAND_SZ, Length: 978, Data: C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;%SYSTEMROOT%\System32\OpenSSH\","8004"
"10:46:28.5615803 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000039","Index: 5, Name: PATHEXT, Type: REG_SZ, Length: 108, Data: .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC","8004"
"10:46:28.5616038 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000060","Index: 6, Name: PROCESSOR_ARCHITECTURE, Type: REG_SZ, Length: 12, Data: AMD64","8004"
"10:46:28.5616375 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000034","Index: 7, Name: PROCESSOR_IDENTIFIER, Type: REG_SZ, Length: 104, Data: Intel64 Family 6 Model 142 Stepping 9, GenuineIntel","8004"
"10:46:28.5616601 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000034","Index: 8, Name: PROCESSOR_LEVEL, Type: REG_SZ, Length: 4, Data: 6","8004"
"10:46:28.5616853 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000034","Index: 9, Name: PROCESSOR_REVISION, Type: REG_SZ, Length: 10, Data: 8e09","8004"
"10:46:28.5617058 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000034","Index: 10, Name: PSModulePath, Type: REG_EXPAND_SZ, Length: 188, Data: %ProgramFiles%\WindowsPowerShell\Modules;%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules","8004"
"10:46:28.5617224 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000030","Index: 11, Name: TEMP, Type: REG_EXPAND_SZ, Length: 36, Data: %SystemRoot%\TEMP","8004"
"10:46:28.5617429 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000034","Index: 12, Name: TMP, Type: REG_EXPAND_SZ, Length: 36, Data: %SystemRoot%\TEMP","8004"
"10:46:28.5617587 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000030","Index: 13, Name: USERNAME, Type: REG_SZ, Length: 14, Data: SYSTEM","8004"
"10:46:28.5617770 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000030","Index: 14, Name: windir, Type: REG_EXPAND_SZ, Length: 26, Data: %SystemRoot%","8004"
"10:46:28.5617933 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000029","Index: 0, Name: ComSpec, Type: REG_EXPAND_SZ, Length: 60, Data: %SystemRoot%\system32\cmd.exe","8004"
"10:46:28.5618171 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000035","Index: 1, Name: DriverData, Type: REG_SZ, Length: 78, Data: C:\Windows\System32\Drivers\DriverData","8004"
"10:46:28.5618329 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000039","Index: 2, Name: NUMBER_OF_PROCESSORS, Type: REG_SZ, Length: 4, Data: 4","8004"
"10:46:28.5618521 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000043","Index: 3, Name: OS, Type: REG_SZ, Length: 22, Data: Windows_NT","8004"
"10:46:28.5618709 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000376","Index: 4, Name: Path, Type: REG_EXPAND_SZ, Length: 978, Data: C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;%SYSTEMROOT%\System32\OpenSSH\","8004"
"10:46:28.5619571 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000158","Index: 5, Name: PATHEXT, Type: REG_SZ, Length: 108, Data: .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC","8004"
"10:46:28.5619874 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000038","Index: 6, Name: PROCESSOR_ARCHITECTURE, Type: REG_SZ, Length: 12, Data: AMD64","8004"
"10:46:28.5620045 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000034","Index: 7, Name: PROCESSOR_IDENTIFIER, Type: REG_SZ, Length: 104, Data: Intel64 Family 6 Model 142 Stepping 9, GenuineIntel","8004"
"10:46:28.5620215 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000034","Index: 8, Name: PROCESSOR_LEVEL, Type: REG_SZ, Length: 4, Data: 6","8004"
"10:46:28.5620386 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000030","Index: 9, Name: PROCESSOR_REVISION, Type: REG_SZ, Length: 10, Data: 8e09","8004"
"10:46:28.5620548 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000034","Index: 10, Name: PSModulePath, Type: REG_EXPAND_SZ, Length: 188, Data: %ProgramFiles%\WindowsPowerShell\Modules;%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules","8004"
"10:46:28.5620877 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000029","Index: 11, Name: TEMP, Type: REG_EXPAND_SZ, Length: 36, Data: %SystemRoot%\TEMP","8004"
"10:46:28.5623936 AM","firefox.exe","7904","CreateFile","C:\Windows\Temp","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.5624264 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json","0.0834924","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:28.5624303 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\Temp","0.0000051","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 3/26/2020 10:41:06 AM, LastWriteTime: 3/26/2020 10:41:06 AM, ChangeTime: 3/26/2020 10:41:06 AM, FileAttributes: D","8004"
"10:46:28.5624461 AM","firefox.exe","7904","CloseFile","C:\Windows\Temp","0.0000059","","8004"
"10:46:28.5625058 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000060","Index: 12, Name: TMP, Type: REG_EXPAND_SZ, Length: 36, Data: %SystemRoot%\TEMP","8004"
"10:46:28.5627567 AM","firefox.exe","7904","CreateFile","C:\Windows\Temp","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.5627882 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\Temp","0.0000043","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 3/26/2020 10:41:06 AM, LastWriteTime: 3/26/2020 10:41:06 AM, ChangeTime: 3/26/2020 10:41:06 AM, FileAttributes: D","8004"
"10:46:28.5628027 AM","firefox.exe","7904","CloseFile","C:\Windows\Temp","0.0000060","","8004"
"10:46:28.5628702 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000051","Index: 13, Name: USERNAME, Type: REG_SZ, Length: 14, Data: SYSTEM","8004"
"10:46:28.5628923 AM","firefox.exe","7904","RegEnumValue","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000035","Index: 14, Name: windir, Type: REG_EXPAND_SZ, Length: 26, Data: %SystemRoot%","8004"
"10:46:28.5629252 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager\Environment","0.0000021","","8004"
"10:46:28.5629576 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5629785 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList","0.0000116","Desired Access: Read","8004"
"10:46:28.5630075 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Default","0.0000043","Length: 12","8004"
"10:46:28.5630267 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Default","0.0000039","Type: REG_EXPAND_SZ, Length: 56, Data: %SystemDrive%\Users\Default","8004"
"10:46:28.5630489 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList","0.0000017","","8004"
"10:46:28.5630694 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5630873 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion","0.0000086","Desired Access: Read","8004"
"10:46:28.5631117 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir","0.0000072","Length: 12","8004"
"10:46:28.5631343 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir","0.0000042","Type: REG_SZ, Length: 34, Data: C:\Program Files","8004"
"10:46:28.5631586 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonFilesDir","0.0000034","Length: 12","8004"
"10:46:28.5631757 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonFilesDir","0.0000038","Type: REG_SZ, Length: 60, Data: C:\Program Files\Common Files","8004"
"10:46:28.5632004 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir (x86)","0.0000034","Length: 12","8004"
"10:46:28.5632162 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir (x86)","0.0000034","Type: REG_SZ, Length: 46, Data: C:\Program Files (x86)","8004"
"10:46:28.5632379 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonFilesDir (x86)","0.0000035","Length: 12","8004"
"10:46:28.5632542 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonFilesDir (x86)","0.0000038","Type: REG_SZ, Length: 72, Data: C:\Program Files (x86)\Common Files","8004"
"10:46:28.5632776 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramW6432Dir","0.0000051","Length: 12","8004"
"10:46:28.5632968 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramW6432Dir","0.0000039","Type: REG_SZ, Length: 34, Data: C:\Program Files","8004"
"10:46:28.5633182 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonW6432Dir","0.0000034","Length: 12","8004"
"10:46:28.5633361 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\CommonW6432Dir","0.0000038","Type: REG_SZ, Length: 60, Data: C:\Program Files\Common Files","8004"
"10:46:28.5633634 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion","0.0000017","","8004"
"10:46:28.5634107 AM","firefox.exe","7904","RegQueryKey","HKU","0.0000022","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5634299 AM","firefox.exe","7904","RegOpenKey","HKCU","0.0000082","Desired Access: Read","8004"
"10:46:28.5634551 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5634705 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001","0.0000200","Desired Access: Read","8004"
"10:46:28.5635080 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001\ProfileImagePath","0.0000047","Length: 12","8004"
"10:46:28.5635259 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001\ProfileImagePath","0.0000099","Type: REG_EXPAND_SZ, Length: 34, Data: C:\Users\diggles","8004"
"10:46:28.5635575 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001","0.0000013","","8004"
"10:46:28.5635818 AM","firefox.exe","7904","RegQueryKey","HKU","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5636019 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000136","Desired Access: Read","8004"
"10:46:28.5636335 AM","firefox.exe","7904","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\AppData","0.0000034","Length: 12","8004"
"10:46:28.5636514 AM","firefox.exe","7904","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\AppData","0.0000034","Type: REG_EXPAND_SZ, Length: 60, Data: %USERPROFILE%\AppData\Roaming","8004"
"10:46:28.5636706 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5636881 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001","0.0000085","Desired Access: Read","8004"
"10:46:28.5637124 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001\ProfileImagePath","0.0000034","Length: 12","8004"
"10:46:28.5637290 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001\ProfileImagePath","0.0000035","Type: REG_EXPAND_SZ, Length: 34, Data: C:\Users\diggles","8004"
"10:46:28.5637482 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001","0.0000022","","8004"
"10:46:28.5637713 AM","firefox.exe","7904","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000025","","8004"
"10:46:28.5638105 AM","firefox.exe","7904","RegQueryKey","HKU","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5638289 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000085","Desired Access: Read","8004"
"10:46:28.5638524 AM","firefox.exe","7904","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Local AppData","0.0000085","Length: 12","8004"
"10:46:28.5638762 AM","firefox.exe","7904","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders\Local AppData","0.0000064","Type: REG_EXPAND_SZ, Length: 56, Data: %USERPROFILE%\AppData\Local","8004"
"10:46:28.5639006 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5639189 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001","0.0000077","Desired Access: Read","8004"
"10:46:28.5639411 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001\ProfileImagePath","0.0000034","Length: 12","8004"
"10:46:28.5639594 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001\ProfileImagePath","0.0000035","Type: REG_EXPAND_SZ, Length: 34, Data: C:\Users\diggles","8004"
"10:46:28.5639804 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001","0.0000012","","8004"
"10:46:28.5639987 AM","firefox.exe","7904","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000013","","8004"
"10:46:28.5640222 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0000030","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5640405 AM","firefox.exe","7904","RegOpenKey","HKCU\Environment","0.0000085","Desired Access: Read","8004"
"10:46:28.5640648 AM","firefox.exe","7904","RegQueryKey","HKCU\Environment","0.0000039","Query: Cached, SubKeys: 0, Values: 4","8004"
"10:46:28.5640840 AM","firefox.exe","7904","RegEnumValue","HKCU\Environment","0.0000047","Index: 0, Name: OneDrive, Type: REG_EXPAND_SZ, Length: 52, Data: C:\Users\diggles\OneDrive","8004"
"10:46:28.5641028 AM","firefox.exe","7904","RegEnumValue","HKCU\Environment","0.0000043","Index: 1, Name: Path, Type: REG_EXPAND_SZ, Length: 102, Data: %USERPROFILE%\AppData\Local\Microsoft\WindowsApps;","8004"
"10:46:28.5641122 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000239","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.5641207 AM","firefox.exe","7904","RegEnumValue","HKCU\Environment","0.0000039","Index: 2, Name: TEMP, Type: REG_EXPAND_SZ, Length: 66, Data: %USERPROFILE%\AppData\Local\Temp","8004"
"10:46:28.5641378 AM","firefox.exe","7904","RegEnumValue","HKCU\Environment","0.0000034","Index: 3, Name: TMP, Type: REG_EXPAND_SZ, Length: 66, Data: %USERPROFILE%\AppData\Local\Temp","8004"
"10:46:28.5641532 AM","firefox.exe","7904","RegEnumValue","HKCU\Environment","0.0000029","Index: 0, Name: OneDrive, Type: REG_EXPAND_SZ, Length: 52, Data: C:\Users\diggles\OneDrive","8004"
"10:46:28.5641677 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0002521","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:28.5641779 AM","firefox.exe","7904","RegEnumValue","HKCU\Environment","0.0000030","Index: 1, Name: Path, Type: REG_EXPAND_SZ, Length: 102, Data: %USERPROFILE%\AppData\Local\Microsoft\WindowsApps;","8004"
"10:46:28.5642193 AM","firefox.exe","7904","RegEnumValue","HKCU\Environment","0.0000030","Index: 2, Name: TEMP, Type: REG_EXPAND_SZ, Length: 66, Data: %USERPROFILE%\AppData\Local\Temp","8004"
"10:46:28.5645406 AM","firefox.exe","7904","CreateFile","C:\Users\diggles\AppData\Local\Temp","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.5645841 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Temp","0.0000060","CreationTime: 3/20/2019 7:21:23 PM, LastAccessTime: 3/26/2020 10:46:23 AM, LastWriteTime: 3/26/2020 10:46:23 AM, ChangeTime: 3/26/2020 10:46:23 AM, FileAttributes: D","8004"
"10:46:28.5646084 AM","firefox.exe","7904","CloseFile","C:\Users\diggles\AppData\Local\Temp","0.0000073","","8004"
"10:46:28.5646575 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000281","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:28.5646724 AM","firefox.exe","7904","RegEnumValue","HKCU\Environment","0.0000047","Index: 3, Name: TMP, Type: REG_EXPAND_SZ, Length: 66, Data: %USERPROFILE%\AppData\Local\Temp","8004"
"10:46:28.5648725 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000175","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.5648819 AM","firefox.exe","7904","CreateFile","C:\Users\diggles\AppData\Local\Temp","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.5649084 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000029","Information: DACL","2512"
"10:46:28.5649139 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Temp","0.0000043","CreationTime: 3/20/2019 7:21:23 PM, LastAccessTime: 3/26/2020 10:46:23 AM, LastWriteTime: 3/26/2020 10:46:23 AM, ChangeTime: 3/26/2020 10:46:23 AM, FileAttributes: D","8004"
"10:46:28.5649233 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000043","","2512"
"10:46:28.5649374 AM","firefox.exe","7904","CloseFile","C:\Users\diggles\AppData\Local\Temp","0.0000081","","8004"
"10:46:28.5649967 AM","firefox.exe","7904","RegCloseKey","HKCU\Environment","0.0000021","","8004"
"10:46:28.5650189 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0000021","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5650406 AM","firefox.exe","7904","RegOpenKey","HKCU\Volatile Environment","0.0000115","Desired Access: Read","8004"
"10:46:28.5650713 AM","firefox.exe","7904","RegQueryKey","HKCU\Volatile Environment","0.0000039","Query: Cached, SubKeys: 1, Values: 9","8004"
"10:46:28.5650957 AM","firefox.exe","7904","RegEnumValue","HKCU\Volatile Environment","0.0000064","Index: 0, Name: LOGONSERVER, Type: REG_SZ, Length: 36, Data: \\LAPTOP-49TAGD3F","8004"
"10:46:28.5650969 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000312","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:28.5651255 AM","firefox.exe","7904","RegEnumValue","HKCU\Volatile Environment","0.0000047","Index: 1, Name: USERDOMAIN, Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","8004"
"10:46:28.5651498 AM","firefox.exe","7904","RegEnumValue","HKCU\Volatile Environment","0.0000039","Index: 2, Name: USERNAME, Type: REG_SZ, Length: 16, Data: diggles","8004"
"10:46:28.5651729 AM","firefox.exe","7904","RegEnumValue","HKCU\Volatile Environment","0.0000094","Index: 3, Name: USERPROFILE, Type: REG_SZ, Length: 34, Data: C:\Users\diggles","8004"
"10:46:28.5652066 AM","firefox.exe","7904","RegEnumValue","HKCU\Volatile Environment","0.0000034","Index: 4, Name: HOMEPATH, Type: REG_SZ, Length: 30, Data: \Users\diggles","8004"
"10:46:28.5652348 AM","firefox.exe","7904","RegEnumValue","HKCU\Volatile Environment","0.0000029","Index: 5, Name: HOMEDRIVE, Type: REG_SZ, Length: 6, Data: C:","8004"
"10:46:28.5652471 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000133","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.5652608 AM","firefox.exe","7904","RegEnumValue","HKCU\Volatile Environment","0.0000034","Index: 6, Name: APPDATA, Type: REG_SZ, Length: 66, Data: C:\Users\diggles\AppData\Roaming","8004"
"10:46:28.5652757 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:28.5652825 AM","firefox.exe","7904","RegEnumValue","HKCU\Volatile Environment","0.0000030","Index: 7, Name: LOCALAPPDATA, Type: REG_SZ, Length: 62, Data: C:\Users\diggles\AppData\Local","8004"
"10:46:28.5652889 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000039","","2512"
"10:46:28.5653034 AM","firefox.exe","7904","RegEnumValue","HKCU\Volatile Environment","0.0000030","Index: 8, Name: USERDOMAIN_ROAMINGPROFILE, Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","8004"
"10:46:28.5653265 AM","firefox.exe","7904","RegEnumValue","HKCU\Volatile Environment","0.0000030","Index: 0, Name: LOGONSERVER, Type: REG_SZ, Length: 36, Data: \\LAPTOP-49TAGD3F","8004"
"10:46:28.5653431 AM","firefox.exe","7904","RegEnumValue","HKCU\Volatile Environment","0.0000026","Index: 1, Name: USERDOMAIN, Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","8004"
"10:46:28.5653585 AM","firefox.exe","7904","RegEnumValue","HKCU\Volatile Environment","0.0000025","Index: 2, Name: USERNAME, Type: REG_SZ, Length: 16, Data: diggles","8004"
"10:46:28.5653738 AM","firefox.exe","7904","RegEnumValue","HKCU\Volatile Environment","0.0000026","Index: 3, Name: USERPROFILE, Type: REG_SZ, Length: 34, Data: C:\Users\diggles","8004"
"10:46:28.5653888 AM","firefox.exe","7904","RegEnumValue","HKCU\Volatile Environment","0.0000047","Index: 4, Name: HOMEPATH, Type: REG_SZ, Length: 30, Data: \Users\diggles","8004"
"10:46:28.5654152 AM","firefox.exe","7904","RegEnumValue","HKCU\Volatile Environment","0.0000056","Index: 5, Name: HOMEDRIVE, Type: REG_SZ, Length: 6, Data: C:","8004"
"10:46:28.5654387 AM","firefox.exe","7904","RegEnumValue","HKCU\Volatile Environment","0.0000047","Index: 6, Name: APPDATA, Type: REG_SZ, Length: 66, Data: C:\Users\diggles\AppData\Roaming","8004"
"10:46:28.5654575 AM","firefox.exe","7904","RegEnumValue","HKCU\Volatile Environment","0.0000034","Index: 7, Name: LOCALAPPDATA, Type: REG_SZ, Length: 62, Data: C:\Users\diggles\AppData\Local","8004"
"10:46:28.5654741 AM","firefox.exe","7904","RegEnumValue","HKCU\Volatile Environment","0.0000030","Index: 8, Name: USERDOMAIN_ROAMINGPROFILE, Type: REG_SZ, Length: 32, Data: LAPTOP-49TAGD3F","8004"
"10:46:28.5654946 AM","firefox.exe","7904","RegCloseKey","HKCU\Volatile Environment","0.0000021","","8004"
"10:46:28.5655215 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0000021","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5655432 AM","firefox.exe","7904","RegOpenKey","HKCU\Volatile Environment\1","0.0000111","Desired Access: Read","8004"
"10:46:28.5655722 AM","firefox.exe","7904","RegQueryKey","HKCU\Volatile Environment\1","0.0000047","Query: Cached, SubKeys: 0, Values: 2","8004"
"10:46:28.5655914 AM","firefox.exe","7904","RegEnumValue","HKCU\Volatile Environment\1","0.0000035","Index: 0, Name: SESSIONNAME, Type: REG_SZ, Length: 16, Data: Console","8004"
"10:46:28.5656158 AM","firefox.exe","7904","RegEnumValue","HKCU\Volatile Environment\1","0.0000030","Index: 1, Name: CLIENTNAME, Type: REG_SZ, Length: 2, Data: ","8004"
"10:46:28.5656362 AM","firefox.exe","7904","RegEnumValue","HKCU\Volatile Environment\1","0.0000030","Index: 0, Name: SESSIONNAME, Type: REG_SZ, Length: 16, Data: Console","8004"
"10:46:28.5656516 AM","firefox.exe","7904","RegEnumValue","HKCU\Volatile Environment\1","0.0000030","Index: 1, Name: CLIENTNAME, Type: REG_SZ, Length: 2, Data: ","8004"
"10:46:28.5656721 AM","firefox.exe","7904","RegCloseKey","HKCU\Volatile Environment\1","0.0000021","","8004"
"10:46:28.5656887 AM","firefox.exe","7904","RegCloseKey","HKCU","0.0000017","","8004"
"10:46:28.5658142 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000187","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:28.5660403 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000269","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:28.5660702 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\sspicli.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.5661111 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000039","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8004"
"10:46:28.5661235 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\sspicli.dll","0.0000060","","8004"
"10:46:28.5662660 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000192","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.5662831 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\sspicli.dll","0.0000153","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.5663074 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000038","Information: DACL","2512"
"10:46:28.5663351 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\sspicli.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.5663385 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000073","","2512"
"10:46:28.5663701 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\sspicli.dll","0.0000017","SyncType: SyncTypeOther","8004"
"10:46:28.5664034 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\sspicli.dll","0.0000051","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.5664819 AM","firefox.exe","7904","Load Image","C:\Windows\System32\sspicli.dll","0.0000000","Image Base: 0x7ffb45990000, Image Size: 0x30000","8004"
"10:46:28.5665079 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000167","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:28.5665143 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\sspicli.dll","0.0000069","Name: \Windows\System32\sspicli.dll","8004"
"10:46:28.5666274 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000132","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.5666581 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\sspicli.dll","0.0000107","","8004"
"10:46:28.5666615 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000286","Information: DACL","2512"
"10:46:28.5667089 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000072","","2512"
"10:46:28.5671048 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5671262 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Hvsi","0.0000076","Desired Access: Read","8004"
"10:46:28.5671535 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Hvsi","0.0000059","Desired Access: Read","8004"
"10:46:28.5673476 AM","firefox.exe","7904","RegOpenKey","HKCU","0.0000090","Desired Access: Maximum Allowed, Granted Access: Read, Create Link","8004"
"10:46:28.5673753 AM","firefox.exe","7904","RegOpenKey","HKCU\Control Panel\International","0.0000064","Desired Access: Read","8004"
"10:46:28.5673984 AM","firefox.exe","7904","RegCloseKey","HKCU","0.0000017","","8004"
"10:46:28.5674159 AM","firefox.exe","7904","RegQueryValue","HKCU\Control Panel\International\LocaleName","0.0000038","Type: REG_SZ, Length: 12, Data: en-US","8004"
"10:46:28.5674351 AM","firefox.exe","7904","RegCloseKey","HKCU\Control Panel\International","0.0000013","","8004"
"10:46:28.5674799 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5674961 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000162","Desired Access: Read","8004"
"10:46:28.5675388 AM","firefox.exe","7904","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000025","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5675656 AM","firefox.exe","7904","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}","0.0000845","Desired Access: Read","8004"
"10:46:28.5676676 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions","0.0000013","","8004"
"10:46:28.5676902 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Category","0.0000034","Type: REG_DWORD, Length: 4, Data: 2","8004"
"10:46:28.5677086 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Name","0.0000034","Type: REG_SZ, Length: 16, Data: Profile","8004"
"10:46:28.5677256 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\ParentFolder","0.0000030","Length: 90","8004"
"10:46:28.5677410 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Description","0.0000026","Length: 144","8004"
"10:46:28.5677559 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\RelativePath","0.0000026","Length: 144","8004"
"10:46:28.5677704 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\ParsingName","0.0000026","Length: 144","8004"
"10:46:28.5677845 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\InfoTip","0.0000030","Length: 144","8004"
"10:46:28.5677994 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\LocalizedName","0.0000026","Length: 144","8004"
"10:46:28.5678140 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Icon","0.0000025","Length: 144","8004"
"10:46:28.5678289 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Security","0.0000025","Length: 144","8004"
"10:46:28.5678430 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\StreamResource","0.0001600","Length: 144","8004"
"10:46:28.5680188 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\StreamResourceType","0.0000029","Length: 144","8004"
"10:46:28.5680341 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\LocalRedirectOnly","0.0000141","Length: 16","8004"
"10:46:28.5680606 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Roamable","0.0000051","Length: 16","8004"
"10:46:28.5680798 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\PreCreate","0.0000030","Length: 16","8004"
"10:46:28.5680951 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Stream","0.0000051","Length: 16","8004"
"10:46:28.5681122 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\PublishExpandedPath","0.0000030","Length: 16","8004"
"10:46:28.5681267 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\DefinitionFlags","0.0000026","Length: 16","8004"
"10:46:28.5681408 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\Attributes","0.0000025","Length: 16","8004"
"10:46:28.5681549 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\FolderTypeID","0.0000029","Length: 90","8004"
"10:46:28.5681694 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\InitFolderHandler","0.0000030","Length: 90","8004"
"10:46:28.5681877 AM","firefox.exe","7904","RegQueryKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5682044 AM","firefox.exe","7904","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}\PropertyBag","0.0000042","Desired Access: Read","8004"
"10:46:28.5682257 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FolderDescriptions\{5E6C858F-0E22-4760-9AFE-EA3317B67173}","0.0000030","","8004"
"10:46:28.5682735 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5682922 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001","0.0000103","Desired Access: Read","8004"
"10:46:28.5683170 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001\ProfileImagePath","0.0000068","Length: 12","8004"
"10:46:28.5683379 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001\ProfileImagePath","0.0000047","Type: REG_EXPAND_SZ, Length: 34, Data: C:\Users\diggles","8004"
"10:46:28.5683580 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\S-1-5-21-429253301-29906273-2566354956-1001","0.0000021","","8004"
"10:46:28.5683814 AM","firefox.exe","7904","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders","0.0000013","","8004"
"10:46:28.5687078 AM","firefox.exe","7904","CreateFile","C:\Users\diggles\AppData\LocalLow","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.5687411 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Users\diggles\AppData\LocalLow","0.0000043","CreationTime: 2/16/2018 12:54:36 PM, LastAccessTime: 2/16/2018 12:59:41 PM, LastWriteTime: 2/16/2018 12:59:41 PM, ChangeTime: 3/20/2019 7:53:52 PM, FileAttributes: DNCI","8004"
"10:46:28.5687565 AM","firefox.exe","7904","CloseFile","C:\Users\diggles\AppData\LocalLow","0.0000059","","8004"
"10:46:28.5688021 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5688188 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\KnownFolderSettings","0.0000076","Desired Access: Query Value","8004"
"10:46:28.5688392 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5688525 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\KnownFolderSettings","0.0000047","Desired Access: Query Value","8004"
"10:46:28.5689971 AM","firefox.exe","7904","CreateFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000137","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.5690355 AM","firefox.exe","7904","QueryNameInformationFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000038","Name: \Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","8004"
"10:46:28.5690551 AM","firefox.exe","7904","QueryNameInformationFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000034","Name: \Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","8004"
"10:46:28.5691277 AM","firefox.exe","7904","QueryNormalizedNameInformationFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000230","","8004"
"10:46:28.5691844 AM","firefox.exe","7904","CloseFile","C:\Users\diggles\AppData\LocalLow\Mozilla\Temp-{21d45a46-f24f-4cd0-bc5f-c8e88b05f19d}","0.0000098","","8004"
"10:46:28.5695019 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 8076","8004"
"10:46:28.5700049 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\mswsock.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8076"
"10:46:28.5700476 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000281","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","8076"
"10:46:28.5700907 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\mswsock.dll","0.0000076","","8076"
"10:46:28.5701730 AM","firefox.exe","7904","RegOpenKey","HKLM\SOFTWARE\Policies\Microsoft\WindowsStore","0.0000090","Desired Access: Read","8076"
"10:46:28.5702024 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000111","Desired Access: Read","8076"
"10:46:28.5703147 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 8056","8004"
"10:46:28.5703560 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000180","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8076"
"10:46:28.5703961 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8076"
"10:46:28.5704124 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000038","AllocationSize: 12,288, EndOfFile: 11,776, NumberOfLinks: 4, DeletePending: False, Directory: False","8076"
"10:46:28.5704435 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\mswsock.dll.mui","0.0000030","SyncType: SyncTypeOther","8076"
"10:46:28.5705101 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 5940","8004"
"10:46:28.5708228 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\mswsock.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8076"
"10:46:28.5708864 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000124","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","8076"
"10:46:28.5709116 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\mswsock.dll","0.0000081","","8076"
"10:46:28.5712465 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\mswsock.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8076"
"10:46:28.5712913 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000171","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","8076"
"10:46:28.5713267 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\mswsock.dll","0.0000094","","8076"
"10:46:28.5715908 AM","firefox.exe","7904","RegOpenKey","HKLM","0.0000085","Desired Access: Maximum Allowed, Granted Access: Read","8004"
"10:46:28.5716177 AM","firefox.exe","7904","RegOpenKey","HKLM\System\Setup","0.0000060","Desired Access: Read","8004"
"10:46:28.5716390 AM","firefox.exe","7904","RegCloseKey","HKLM","0.0000017","","8004"
"10:46:28.5716535 AM","firefox.exe","7904","RegQueryValue","HKLM\SYSTEM\Setup\SystemSetupInProgress","0.0000043","Type: REG_DWORD, Length: 4, Data: 0","8004"
"10:46:28.5716770 AM","firefox.exe","7904","RegCloseKey","HKLM\SYSTEM\Setup","0.0000017","","8004"
"10:46:28.5716979 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\mswsock.dll","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8076"
"10:46:28.5717512 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000064","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","8076"
"10:46:28.5717687 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\mswsock.dll","0.0000073","","8076"
"10:46:28.5721429 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\mswsock.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8076"
"10:46:28.5721779 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","8076"
"10:46:28.5721886 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\mswsock.dll","0.0000055","","8076"
"10:46:28.5722372 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\devobj.dll","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.5723016 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","8004"
"10:46:28.5723196 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\devobj.dll","0.0000072","","8004"
"10:46:28.5725069 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\mswsock.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8076"
"10:46:28.5725231 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\devobj.dll","0.0000273","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.5725517 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","8076"
"10:46:28.5725653 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\mswsock.dll","0.0000056","","8076"
"10:46:28.5726054 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\devobj.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.5726656 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\devobj.dll","0.0000030","SyncType: SyncTypeOther","8004"
"10:46:28.5727117 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\devobj.dll","0.0000047","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.5727812 AM","firefox.exe","7904","Load Image","C:\Windows\System32\devobj.dll","0.0000000","Image Base: 0x7ffb458a0000, Image Size: 0x27000","8004"
"10:46:28.5727825 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wshqos.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8076"
"10:46:28.5728115 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wshqos.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:11:07 PM, FileAttributes: A","8076"
"10:46:28.5728124 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\devobj.dll","0.0000064","Name: \Windows\System32\devobj.dll","8004"
"10:46:28.5728209 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wshqos.dll","0.0000043","","8076"
"10:46:28.5729267 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wshqos.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8076"
"10:46:28.5729574 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\devobj.dll","0.0000090","","8004"
"10:46:28.5729698 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8076"
"10:46:28.5730172 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000025","SyncType: SyncTypeOther","8076"
"10:46:28.5730517 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\wshqos.dll","0.0000043","Name: \Windows\System32\wshqos.dll","8076"
"10:46:28.5730782 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wshqos.dll","0.0000055","","8076"
"10:46:28.5731426 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000115","Desired Access: Read","8076"
"10:46:28.5732066 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}","0.0000090","Desired Access: All Access","8004"
"10:46:28.5732412 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}\Properties","0.0000029","Desired Access: Query Value","8004"
"10:46:28.5732936 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}","0.0000013","","8004"
"10:46:28.5732979 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000201","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8076"
"10:46:28.5733419 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8076"
"10:46:28.5733589 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000047","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","8076"
"10:46:28.5733640 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}","0.0000047","Desired Access: Query Value","8004"
"10:46:28.5733875 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}\Properties","0.0000073","Desired Access: Query Value","8004"
"10:46:28.5733931 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000038","SyncType: SyncTypeOther","8076"
"10:46:28.5734430 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}","0.0000021","","8004"
"10:46:28.5734681 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000086","","8076"
"10:46:28.5736781 AM","firefox.exe","7904","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000128","Desired Access: Read, Maximum Allowed","8004"
"10:46:28.5737135 AM","firefox.exe","7904","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000047","Type: REG_DWORD, Length: 4, Data: 3","8004"
"10:46:28.5737387 AM","firefox.exe","7904","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000021","","8004"
"10:46:28.5737668 AM","firefox.exe","7904","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000060","Desired Access: Read","8004"
"10:46:28.5737916 AM","firefox.exe","7904","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000047","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","8004"
"10:46:28.5738231 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000081","Desired Access: Read","8004"
"10:46:28.5738321 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wshqos.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8076"
"10:46:28.5738479 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000077","Desired Access: Read","8004"
"10:46:28.5738722 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000051","Desired Access: Read","8004"
"10:46:28.5738799 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wshqos.dll","0.0000042","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:11:07 PM, FileAttributes: A","8076"
"10:46:28.5738944 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wshqos.dll","0.0000068","","8076"
"10:46:28.5738974 AM","firefox.exe","7904","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000021","","8004"
"10:46:28.5739161 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000107","Length: 52","8004"
"10:46:28.5739439 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000017","","8004"
"10:46:28.5739750 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000137","Desired Access: Query Value, Maximum Allowed","8004"
"10:46:28.5740109 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000034","Length: 268","8004"
"10:46:28.5740331 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000017","","8004"
"10:46:28.5740497 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wshqos.dll","0.0000188","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8076"
"10:46:28.5740642 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000055","Desired Access: Query Value, Maximum Allowed","8004"
"10:46:28.5740885 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000060","Type: REG_MULTI_SZ, Length: 292, Data: PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02, PCI\VEN_8086&DEV_5916&SUBSYS_10941025, PCI\VEN_8086&DEV_5916&CC_030000, PCI\VEN_8086&DEV_5916&CC_0300","8004"
"10:46:28.5741137 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000038","","8004"
"10:46:28.5741145 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8076"
"10:46:28.5741384 AM","firefox.exe","7904","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000056","Desired Access: Read","8004"
"10:46:28.5741628 AM","firefox.exe","7904","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000047","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","8004"
"10:46:28.5741756 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000030","SyncType: SyncTypeOther","8076"
"10:46:28.5741888 AM","firefox.exe","7904","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","8004"
"10:46:28.5742332 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\wshqos.dll","0.0000064","Name: \Windows\System32\wshqos.dll","8076"
"10:46:28.5742694 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wshqos.dll","0.0000081","","8076"
"10:46:28.5743334 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000175","Desired Access: Read","8076"
"10:46:28.5745007 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000217","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8076"
"10:46:28.5745523 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8076"
"10:46:28.5745728 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000043","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","8076"
"10:46:28.5746078 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000030","SyncType: SyncTypeOther","8076"
"10:46:28.5746807 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000069","Desired Access: Query Value, Maximum Allowed","8004"
"10:46:28.5746812 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000081","","8076"
"10:46:28.5747136 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\Driver","0.0000085","Type: REG_SZ, Length: 88, Data: {4d36e968-e325-11ce-bfc1-08002be10318}\0001","8004"
"10:46:28.5747482 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000021","","8004"
"10:46:28.5747780 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5748006 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000081","Desired Access: Query Value","8004"
"10:46:28.5748241 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000094","Desired Access: Query Value","8004"
"10:46:28.5748514 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\DriverVersion","0.0000090","Type: REG_SZ, Length: 28, Data: 23.20.16.5038","8004"
"10:46:28.5748766 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\DriverDate","0.0000072","Type: REG_SZ, Length: 20, Data: 4-18-2018","8004"
"10:46:28.5749030 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000034","","8004"
"10:46:28.5750174 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}","0.0000124","Desired Access: All Access","8004"
"10:46:28.5750263 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wshqos.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8076"
"10:46:28.5750737 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}\Properties","0.0000043","Desired Access: Query Value","8004"
"10:46:28.5750771 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wshqos.dll","0.0000043","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:11:07 PM, FileAttributes: A","8076"
"10:46:28.5750938 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wshqos.dll","0.0000064","","8076"
"10:46:28.5751287 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}","0.0000022","","8004"
"10:46:28.5751880 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}","0.0000052","Desired Access: Query Value","8004"
"10:46:28.5752162 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}\Properties","0.0000038","Desired Access: Query Value","8004"
"10:46:28.5752418 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\DeviceClasses\{1ca05180-a699-450a-9a0c-de4fbe3ddd89}","0.0000021","","8004"
"10:46:28.5752474 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wshqos.dll","0.0000183","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8076"
"10:46:28.5753050 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8076"
"10:46:28.5753340 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Enum\ROOT\BASICRENDER\0000","0.0000149","Desired Access: Query Value, Maximum Allowed","8004"
"10:46:28.5753591 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000026","SyncType: SyncTypeOther","8076"
"10:46:28.5753724 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Enum\ROOT\BasicRender\0000\Driver","0.0000047","Type: REG_SZ, Length: 88, Data: {4d36e97d-e325-11ce-bfc1-08002be10318}\0039","8004"
"10:46:28.5753971 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Enum\ROOT\BasicRender\0000","0.0000021","","8004"
"10:46:28.5754044 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\wshqos.dll","0.0000064","Name: \Windows\System32\wshqos.dll","8076"
"10:46:28.5754227 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5754368 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wshqos.dll","0.0000072","","8076"
"10:46:28.5754436 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000068","Desired Access: Query Value","8004"
"10:46:28.5754645 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000133","Desired Access: Query Value","8004"
"10:46:28.5754974 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039\MatchingDeviceId","0.0000051","Type: REG_SZ, Length: 34, Data: ROOT\BasicRender","8004"
"10:46:28.5754982 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000098","Desired Access: Read","8076"
"10:46:28.5755349 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5755524 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000051","Desired Access: Query Value","8004"
"10:46:28.5755708 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000072","Desired Access: Query Value","8004"
"10:46:28.5755930 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039\InstalledDisplayDrivers","0.0000260","Length: 144","8004"
"10:46:28.5756501 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000094","","8004"
"10:46:28.5756604 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000230","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8076"
"10:46:28.5756740 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}\0039","0.0000013","","8004"
"10:46:28.5757090 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8076"
"10:46:28.5757299 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000047","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","8076"
"10:46:28.5757636 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000026","SyncType: SyncTypeOther","8076"
"10:46:28.5757803 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0001796","Offset: 6,840,320, Length: 4,096","7760"
"10:46:28.5758494 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000081","","8076"
"10:46:28.5759983 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000072","Offset: 14,397,440, Length: 4,096","7760"
"10:46:28.5760303 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000085","Offset: 13,156,352, Length: 4,096","7760"
"10:46:28.5760602 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.4647813","Offset: 14,110,720, Length: 4,096","7760"
"10:46:28.5760977 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.4647140","Offset: 14,110,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:28.5761728 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000077","Desired Access: Query Value, Maximum Allowed","8004"
"10:46:28.5761967 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wshqos.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8076"
"10:46:28.5762091 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\Driver","0.0000098","Type: REG_SZ, Length: 88, Data: {4d36e968-e325-11ce-bfc1-08002be10318}\0001","8004"
"10:46:28.5762440 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000030","","8004"
"10:46:28.5762475 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wshqos.dll","0.0000055","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:11:07 PM, FileAttributes: A","8076"
"10:46:28.5762645 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wshqos.dll","0.0000073","","8076"
"10:46:28.5762752 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5762961 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000085","Desired Access: Query Value","8004"
"10:46:28.5763208 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000099","Desired Access: Query Value","8004"
"10:46:28.5763482 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\MatchingDeviceId","0.0000089","Type: REG_SZ, Length: 76, Data: pci\ven_8086&dev_5916&subsys_10941025","8004"
"10:46:28.5763806 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000017","","8004"
"10:46:28.5764228 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wshqos.dll","0.0000184","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8076"
"10:46:28.5764561 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5764710 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000295","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:28.5764770 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000201","Desired Access: Query Value","8004"
"10:46:28.5764868 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000056","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8076"
"10:46:28.5765124 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000081","Desired Access: Query Value","8004"
"10:46:28.5765231 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:28.5765342 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000085","Desired Access: Query Value","8004"
"10:46:28.5765547 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\wshqos.dll","0.0000038","SyncType: SyncTypeOther","8076"
"10:46:28.5765581 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.4642971","","5068"
"10:46:28.5765602 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\InstalledDisplayDrivers","0.0000043","Length: 144","8004"
"10:46:28.5765794 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\InstalledDisplayDrivers","0.0000085","Type: REG_MULTI_SZ, Length: 186, Data: igdumdim64, igd10iumd64, igd10iumd64, igd12umd64, igdumdim32, igd10iumd32, igd10iumd32, igd12umd32","8004"
"10:46:28.5766037 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\wshqos.dll","0.0000073","Name: \Windows\System32\wshqos.dll","8076"
"10:46:28.5766042 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000017","","8004"
"10:46:28.5766374 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wshqos.dll","0.0000128","","8076"
"10:46:28.5766993 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000085","Desired Access: Read","8076"
"10:46:28.5768862 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000234","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8076"
"10:46:28.5769348 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8076"
"10:46:28.5769587 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000047","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","8076"
"10:46:28.5769643 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\igd10iumd64.dll","0.0000221","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.5769937 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000026","SyncType: SyncTypeOther","8076"
"10:46:28.5770650 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\en-US\wshqos.dll.mui","0.0000068","","8076"
"10:46:28.5771499 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5771627 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000051","Desired Access: All Access","8076"
"10:46:28.5771763 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000371","Desired Access: All Access","8076"
"10:46:28.5771938 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000034","Information: Owner","8076"
"10:46:28.5772083 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000017","Information: Owner","8076"
"10:46:28.5772284 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5772305 AM","firefox.exe","7904","CreateFile","C:\Windows\System\igd10iumd64.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.5772399 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000038","Desired Access: Read","8076"
"10:46:28.5772514 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000047","Desired Access: Read","8076"
"10:46:28.5772676 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000030","Length: 16","8076"
"10:46:28.5772791 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000026","Type: REG_SZ, Length: 8, Data: 2.0","8076"
"10:46:28.5772941 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000021","Length: 44","8076"
"10:46:28.5773035 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000025","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","8076"
"10:46:28.5773730 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5773832 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000056","Desired Access: Maximum Allowed, Granted Access: Read","8076"
"10:46:28.5773982 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000030","Type: REG_DWORD, Length: 4, Data: 8","8076"
"10:46:28.5774464 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000021","Type: REG_DWORD, Length: 4, Data: 8","8076"
"10:46:28.5774588 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5774690 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000034","Desired Access: Read","8076"
"10:46:28.5774750 AM","firefox.exe","7904","CreateFile","C:\Windows\igd10iumd64.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.5774835 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000021","Type: REG_DWORD, Length: 4, Data: 1015","8076"
"10:46:28.5774942 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000025","Type: REG_DWORD, Length: 4, Data: 14","8076"
"10:46:28.5775044 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000009","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5775130 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000046","Desired Access: Maximum Allowed, Granted Access: Read","8076"
"10:46:28.5775279 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5775398 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000039","Desired Access: Read","8076"
"10:46:28.5775531 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000029","Length: 144","8076"
"10:46:28.5775633 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5775782 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000017","","8076"
"10:46:28.5775889 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5775996 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000034","Desired Access: Read","8076"
"10:46:28.5776119 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000022","Length: 144","8076"
"10:46:28.5776213 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000056","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5776380 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000012","","8076"
"10:46:28.5776478 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000030","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5776584 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000030","Desired Access: Read","8076"
"10:46:28.5776700 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000025","Length: 144","8076"
"10:46:28.5776794 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5776939 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000008","","8076"
"10:46:28.5777109 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5777199 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000034","Desired Access: Read","8076"
"10:46:28.5777323 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000017","Length: 144","8076"
"10:46:28.5777352 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\igd10iumd64.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.5777412 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5777532 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000012","","8076"
"10:46:28.5777621 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5777711 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000025","Desired Access: Read","8076"
"10:46:28.5777822 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000025","Length: 144","8076"
"10:46:28.5777916 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5778078 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000017","","8076"
"10:46:28.5778214 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5778581 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000039","Desired Access: Read","8076"
"10:46:28.5778760 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000026","Length: 144","8076"
"10:46:28.5778897 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5779085 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000013","","8076"
"10:46:28.5779213 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5779345 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000043","Desired Access: Read","8076"
"10:46:28.5779541 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000026","Length: 144","8076"
"10:46:28.5779674 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5779861 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000013","","8076"
"10:46:28.5779887 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\igd10iumd64.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.5779994 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5780122 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000046","Desired Access: Read","8076"
"10:46:28.5780296 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000026","Length: 144","8076"
"10:46:28.5780429 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5780591 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000008","","8076"
"10:46:28.5780719 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000038","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5780877 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000042","Desired Access: Read","8076"
"10:46:28.5781047 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5781188 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5781346 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000013","","8076"
"10:46:28.5781478 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5781606 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000039","Desired Access: Read","8076"
"10:46:28.5781777 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000026","Length: 144","8076"
"10:46:28.5781909 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5782071 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000013","","8076"
"10:46:28.5782204 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5782293 AM","firefox.exe","7904","CreateFile","C:\Program Files (x86)\Intel\iCLS Client\igd10iumd64.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.5782344 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000039","Desired Access: Read","8076"
"10:46:28.5782511 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000025","Length: 144","8076"
"10:46:28.5782643 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5782801 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000017","","8076"
"10:46:28.5782933 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5783066 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000042","Desired Access: Read","8076"
"10:46:28.5783228 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5783415 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000056","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5783735 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000026","","8076"
"10:46:28.5783953 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5784154 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000064","Desired Access: Read","8076"
"10:46:28.5784307 AM","firefox.exe","7904","CreateFile","C:\Program Files\Intel\iCLS Client\igd10iumd64.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.5784384 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000043","Length: 144","8076"
"10:46:28.5784555 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5784785 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000021","","8076"
"10:46:28.5784960 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5785148 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000055","Desired Access: Read","8076"
"10:46:28.5785361 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5785510 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5785698 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000137","","8076"
"10:46:28.5785963 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","","8076"
"10:46:28.5786274 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","","8076"
"10:46:28.5786428 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000012","","8076"
"10:46:28.5786961 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\igd10iumd64.dll","0.0000290","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.5787183 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5787362 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000124","Desired Access: All Access","8076"
"10:46:28.5787618 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000760","Desired Access: All Access","8076"
"10:46:28.5787836 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000115","Information: Owner","8076"
"10:46:28.5788130 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000026","Information: Owner","8076"
"10:46:28.5788535 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000035","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5788774 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000098","Desired Access: Read","8076"
"10:46:28.5789018 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000098","Desired Access: Read","8076"
"10:46:28.5789269 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000043","Length: 16","8076"
"10:46:28.5789841 AM","firefox.exe","7904","CreateFile","C:\Windows\igd10iumd64.dll","0.0000354","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.5790152 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000052","Type: REG_SZ, Length: 8, Data: 2.0","8076"
"10:46:28.5790417 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000034","Length: 44","8076"
"10:46:28.5790596 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000034","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","8076"
"10:46:28.5790801 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5790946 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000077","Desired Access: Maximum Allowed, Granted Access: Read","8076"
"10:46:28.5791151 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","8076"
"10:46:28.5791646 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","8076"
"10:46:28.5791778 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000034","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5791898 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000029","Desired Access: Read","8076"
"10:46:28.5792008 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000035","Type: REG_DWORD, Length: 4, Data: 1015","8076"
"10:46:28.5792115 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000021","Type: REG_DWORD, Length: 4, Data: 14","8076"
"10:46:28.5792209 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5792299 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000098","Desired Access: Maximum Allowed, Granted Access: Read","8076"
"10:46:28.5792546 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5792597 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wbem\igd10iumd64.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.5792678 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000056","Desired Access: Read","8076"
"10:46:28.5792883 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000043","Length: 144","8076"
"10:46:28.5793041 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5793246 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000017","","8076"
"10:46:28.5793387 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5793519 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000043","Desired Access: Read","8076"
"10:46:28.5793694 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5793835 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5794018 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000013","","8076"
"10:46:28.5794146 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5794283 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000098","Desired Access: Read","8076"
"10:46:28.5794325 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\WindowsPowerShell\v1.0\igd10iumd64.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.5794586 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000055","Length: 144","8076"
"10:46:28.5794786 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000056","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5795038 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000017","","8076"
"10:46:28.5795217 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5795392 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000060","Desired Access: Read","8076"
"10:46:28.5795610 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5795759 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5795981 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000013","","8076"
"10:46:28.5796139 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5796301 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000055","Desired Access: Read","8076"
"10:46:28.5796506 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000042","Length: 144","8076"
"10:46:28.5796668 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5796860 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000102","","8076"
"10:46:28.5796868 AM","firefox.exe","7904","CreateFile","C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\igd10iumd64.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.5797094 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5797244 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000051","Desired Access: Read","8076"
"10:46:28.5797427 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5797564 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5797743 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000013","","8076"
"10:46:28.5797875 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5798016 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000055","Desired Access: Read","8076"
"10:46:28.5798204 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5798353 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5798524 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000013","","8076"
"10:46:28.5798656 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5798788 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000073","Desired Access: Read","8076"
"10:46:28.5798989 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5799130 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000029","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5799292 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000017","","8076"
"10:46:28.5799424 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5799561 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000038","Desired Access: Read","8076"
"10:46:28.5799629 AM","firefox.exe","7904","CreateFile","C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\igd10iumd64.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.5799727 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000026","Length: 144","8076"
"10:46:28.5799859 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000056","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5800051 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000013","","8076"
"10:46:28.5800201 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5800333 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000042","Desired Access: Read","8076"
"10:46:28.5800499 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5800640 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000055","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5800828 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000017","","8076"
"10:46:28.5800960 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5801097 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000046","Desired Access: Read","8076"
"10:46:28.5801267 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5801404 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5801621 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000026","","8076"
"10:46:28.5801907 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5802095 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000068","Desired Access: Read","8076"
"10:46:28.5802330 AM","firefox.exe","7904","CreateFile","C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\igd10iumd64.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.5802394 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5802543 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5802705 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000017","","8076"
"10:46:28.5802842 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5802974 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000043","Desired Access: Read","8076"
"10:46:28.5803140 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5803281 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5803443 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000017","","8076"
"10:46:28.5803840 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5803977 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000042","Desired Access: Read","8076"
"10:46:28.5803998 AM","firefox.exe","7904","CreateFile","C:\Program Files\Intel\Intel(R) Management Engine Components\IPT\igd10iumd64.dll","0.0000089","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.5804143 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000038","Length: 144","8076"
"10:46:28.5804288 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5804450 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000013","","8076"
"10:46:28.5804625 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000026","","8076"
"10:46:28.5804962 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000026","","8076"
"10:46:28.5805107 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","","8076"
"10:46:28.5805402 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5805534 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000051","Desired Access: All Access","8076"
"10:46:28.5805675 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000345","Desired Access: All Access","8076"
"10:46:28.5805841 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000034","Information: Owner","8076"
"10:46:28.5805978 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000012","Information: Owner","8076"
"10:46:28.5806161 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5806272 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000038","Desired Access: Read","8076"
"10:46:28.5806383 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000047","Desired Access: Read","8076"
"10:46:28.5806541 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000030","Length: 16","8076"
"10:46:28.5806652 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000025","Type: REG_SZ, Length: 8, Data: 2.0","8076"
"10:46:28.5806767 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000026","Length: 44","8076"
"10:46:28.5806865 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000068","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","8076"
"10:46:28.5807057 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5807159 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000090","Desired Access: Maximum Allowed, Granted Access: Read","8076"
"10:46:28.5807407 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000085","Type: REG_DWORD, Length: 4, Data: 8","8076"
"10:46:28.5807851 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\OpenSSH\igd10iumd64.dll","0.0000648","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.5808043 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","8076"
"10:46:28.5808222 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5808401 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000043","Desired Access: Read","8076"
"10:46:28.5808585 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000029","Type: REG_DWORD, Length: 4, Data: 1015","8076"
"10:46:28.5808730 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000034","Type: REG_DWORD, Length: 4, Data: 14","8076"
"10:46:28.5808951 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000022","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5809101 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000060","Desired Access: Maximum Allowed, Granted Access: Read","8076"
"10:46:28.5809301 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5809429 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000064","Desired Access: Read","8076"
"10:46:28.5809638 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000047","Length: 144","8076"
"10:46:28.5809801 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5810014 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000021","","8076"
"10:46:28.5810159 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5810300 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000047","Desired Access: Read","8076"
"10:46:28.5810475 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000038","Length: 144","8076"
"10:46:28.5810671 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000090","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5810918 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000043","","8076"
"10:46:28.5811085 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5811217 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000043","Desired Access: Read","8076"
"10:46:28.5811435 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5811546 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000029","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5811678 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000013","","8076"
"10:46:28.5811776 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5811870 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000034","Desired Access: Read","8076"
"10:46:28.5811989 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000022","Length: 144","8076"
"10:46:28.5812083 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5812134 AM","firefox.exe","7904","CreateFile","C:\Users\diggles\AppData\Local\Microsoft\WindowsApps\igd10iumd64.dll","0.0000640","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles","8004"
"10:46:28.5812241 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","","8076"
"10:46:28.5812437 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5812625 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000051","Desired Access: Read","8076"
"10:46:28.5812838 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000035","Length: 144","8076"
"10:46:28.5812992 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5813137 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5813218 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000017","","8076"
"10:46:28.5813282 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000056","Desired Access: Query Value","8004"
"10:46:28.5813367 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000035","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5813440 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000060","Desired Access: Query Value","8004"
"10:46:28.5813525 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000047","Desired Access: Read","8076"
"10:46:28.5813589 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000043","Desired Access: Query Value","8004"
"10:46:28.5813705 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5813790 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\UserModeDriverName","0.0000034","Length: 12","8004"
"10:46:28.5813926 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5813943 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000013","","8004"
"10:46:28.5814071 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5814110 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000021","","8076"
"10:46:28.5814182 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000043","Desired Access: Query Value","8004"
"10:46:28.5814251 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5814315 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000042","Desired Access: Query Value","8004"
"10:46:28.5814391 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000043","Desired Access: Read","8076"
"10:46:28.5814464 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000068","Desired Access: Query Value","8004"
"10:46:28.5814579 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5814656 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\UserModeDriverName","0.0000030","Length: 144","8004"
"10:46:28.5814724 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5814775 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\UserModeDriverName","0.0000035","Type: REG_MULTI_SZ, Length: 782, Data: C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igdumdim64.dll, C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll, C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll, C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd12umd64.dll","8004"
"10:46:28.5814903 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000094","","8076"
"10:46:28.5814921 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000017","","8004"
"10:46:28.5815121 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5815159 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5815219 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000034","Desired Access: Read","8076"
"10:46:28.5815334 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000056","Desired Access: Query Value","8004"
"10:46:28.5815347 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000039","Length: 144","8076"
"10:46:28.5815462 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5815531 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000051","Desired Access: Query Value","8004"
"10:46:28.5815603 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000026","","8076"
"10:46:28.5815731 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000051","Desired Access: Query Value","8004"
"10:46:28.5815757 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5815910 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000047","Desired Access: Read","8076"
"10:46:28.5815979 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\UserModeDriverNameWow","0.0000038","Length: 12","8004"
"10:46:28.5816107 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000038","Length: 144","8076"
"10:46:28.5816171 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000012","","8004"
"10:46:28.5816256 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5816452 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000022","","8076"
"10:46:28.5816469 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5816606 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5816657 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000060","Desired Access: Query Value","8004"
"10:46:28.5816747 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000042","Desired Access: Read","8076"
"10:46:28.5816879 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000072","Desired Access: Query Value","8004"
"10:46:28.5816917 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000043","Length: 144","8076"
"10:46:28.5817067 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000051","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5817084 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000055","Desired Access: Query Value","8004"
"10:46:28.5817271 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000026","","8076"
"10:46:28.5817289 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\UserModeDriverNameWow","0.0000046","Length: 144","8004"
"10:46:28.5817425 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5817463 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\UserModeDriverNameWow","0.0000039","Type: REG_MULTI_SZ, Length: 782, Data: C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igdumdim32.dll, C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd32.dll, C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd32.dll, C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd12umd32.dll","8004"
"10:46:28.5817600 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000047","Desired Access: Read","8076"
"10:46:28.5817677 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000017","","8004"
"10:46:28.5817783 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5817907 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5818078 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000017","","8076"
"10:46:28.5818236 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5818381 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000047","Desired Access: Read","8076"
"10:46:28.5818564 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5818701 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5818880 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000017","","8076"
"10:46:28.5819029 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5819179 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000051","Desired Access: Read","8076"
"10:46:28.5819375 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000047","Length: 144","8076"
"10:46:28.5819541 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5819742 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000017","","8076"
"10:46:28.5819891 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5820053 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000047","Desired Access: Read","8076"
"10:46:28.5820245 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5820395 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5820587 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000017","","8076"
"10:46:28.5820736 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","","8076"
"10:46:28.5821009 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.5821047 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000026","","8076"
"10:46:28.5821235 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000022","","8076"
"10:46:28.5821308 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000038","CreationTime: 5/9/2018 4:39:34 AM, LastAccessTime: 3/20/2019 7:14:15 PM, LastWriteTime: 5/9/2018 4:39:34 AM, ChangeTime: 3/20/2019 7:51:25 PM, FileAttributes: A","8004"
"10:46:28.5821419 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000055","","8004"
"10:46:28.5821585 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5821739 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000115","Desired Access: All Access","8076"
"10:46:28.5822059 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000503","Desired Access: All Access","8076"
"10:46:28.5822302 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000038","Information: Owner","8076"
"10:46:28.5822502 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000022","Information: Owner","8076"
"10:46:28.5822724 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5822886 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000056","Desired Access: Read","8076"
"10:46:28.5822980 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000201","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.5823057 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000064","Desired Access: Read","8076"
"10:46:28.5823270 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000039","Length: 16","8076"
"10:46:28.5823445 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000043","Type: REG_SZ, Length: 8, Data: 2.0","8076"
"10:46:28.5823526 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.5823620 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000051","Length: 44","8076"
"10:46:28.5823787 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000034","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","8076"
"10:46:28.5823974 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000030","SyncType: SyncTypeOther","8004"
"10:46:28.5824077 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000051","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5824265 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000064","Desired Access: Maximum Allowed, Granted Access: Read","8076"
"10:46:28.5824469 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000030","Type: REG_DWORD, Length: 4, Data: 8","8076"
"10:46:28.5824939 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000030","Type: REG_DWORD, Length: 4, Data: 8","8076"
"10:46:28.5825105 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5825242 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000055","Desired Access: Read","8076"
"10:46:28.5825429 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000052","Type: REG_DWORD, Length: 4, Data: 1015","8076"
"10:46:28.5825596 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000030","Type: REG_DWORD, Length: 4, Data: 14","8076"
"10:46:28.5825754 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000012","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5825886 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000047","Desired Access: Maximum Allowed, Granted Access: Read","8076"
"10:46:28.5826065 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5826202 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000047","Desired Access: Read","8076"
"10:46:28.5826385 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5826534 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000060","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5826739 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000022","","8076"
"10:46:28.5826910 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5826970 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000059","Name: \Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","8004"
"10:46:28.5827042 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000043","Desired Access: Read","8076"
"10:46:28.5827209 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000029","Length: 144","8076"
"10:46:28.5827294 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000064","","8004"
"10:46:28.5827345 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000081","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5827639 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000099","","8076"
"10:46:28.5827908 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5828113 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000064","Desired Access: Read","8076"
"10:46:28.5828339 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000068","Length: 144","8076"
"10:46:28.5828527 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5828740 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000022","","8076"
"10:46:28.5828902 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5829111 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000047","Desired Access: Read","8076"
"10:46:28.5829295 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5829436 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5829606 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000013","","8076"
"10:46:28.5829743 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000077","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5829986 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000060","Desired Access: Read","8076"
"10:46:28.5830212 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000039","Length: 144","8076"
"10:46:28.5830374 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5830592 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000017","","8076"
"10:46:28.5830758 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5830921 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000051","Desired Access: Read","8076"
"10:46:28.5831027 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.5831113 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5831262 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5831360 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000043","CreationTime: 5/9/2018 4:39:34 AM, LastAccessTime: 3/20/2019 7:14:15 PM, LastWriteTime: 5/9/2018 4:39:34 AM, ChangeTime: 3/20/2019 7:51:25 PM, FileAttributes: A","8004"
"10:46:28.5831475 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000017","","8076"
"10:46:28.5831514 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000068","","8004"
"10:46:28.5831625 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5831795 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0001946","Desired Access: Read","8076"
"10:46:28.5833826 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000248","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.5833916 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000068","Length: 144","8076"
"10:46:28.5834112 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000051","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5834325 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000346","","8076"
"10:46:28.5834517 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.5834812 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5834944 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000026","SyncType: SyncTypeOther","8004"
"10:46:28.5834995 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000051","Desired Access: Read","8076"
"10:46:28.5835179 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000038","Length: 144","8076"
"10:46:28.5835328 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5835503 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000017","","8076"
"10:46:28.5835639 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5835772 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000038","Desired Access: Read","8076"
"10:46:28.5835934 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5836075 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5836245 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000013","","8076"
"10:46:28.5836378 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5836510 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000043","Desired Access: Read","8076"
"10:46:28.5836676 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5836817 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5836983 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000018","","8076"
"10:46:28.5837026 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000051","Name: \Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","8004"
"10:46:28.5837120 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5837252 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000043","Desired Access: Read","8076"
"10:46:28.5837329 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igd10iumd64.dll","0.0000064","","8004"
"10:46:28.5837419 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5837555 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5837713 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000017","","8076"
"10:46:28.5837850 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5838016 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000034","Desired Access: Read","8076"
"10:46:28.5838208 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000026","Length: 144","8076"
"10:46:28.5838349 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5838511 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000017","","8076"
"10:46:28.5838647 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5838711 AM","firefox.exe","7904","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000073","Desired Access: Read, Maximum Allowed","8004"
"10:46:28.5838758 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000035","Desired Access: Read","8076"
"10:46:28.5838933 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000022","Length: 144","8076"
"10:46:28.5839014 AM","firefox.exe","7904","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000056","Type: REG_DWORD, Length: 4, Data: 3","8004"
"10:46:28.5839031 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000035","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5839206 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000017","","8076"
"10:46:28.5839215 AM","firefox.exe","7904","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","8004"
"10:46:28.5839347 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5839467 AM","firefox.exe","7904","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000055","Desired Access: Read","8004"
"10:46:28.5839479 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000047","Desired Access: Read","8076"
"10:46:28.5839663 AM","firefox.exe","7904","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000179","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","8004"
"10:46:28.5839714 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000158","Length: 144","8076"
"10:46:28.5840047 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5840107 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000055","Desired Access: Read","8004"
"10:46:28.5840252 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000017","","8076"
"10:46:28.5840290 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000056","Desired Access: Read","8004"
"10:46:28.5840410 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","","8076"
"10:46:28.5840457 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000029","Desired Access: Read","8004"
"10:46:28.5840649 AM","firefox.exe","7904","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000012","","8004"
"10:46:28.5840657 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000026","","8076"
"10:46:28.5840815 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","","8076"
"10:46:28.5840879 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000072","Length: 52","8004"
"10:46:28.5841058 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000034","","8004"
"10:46:28.5841178 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5841340 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000051","Desired Access: All Access","8076"
"10:46:28.5841510 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000640","Desired Access: All Access","8076"
"10:46:28.5841745 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000051","Information: Owner","8076"
"10:46:28.5841937 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000060","Desired Access: Query Value, Maximum Allowed","8004"
"10:46:28.5841954 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000021","Information: Owner","8076"
"10:46:28.5842283 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000072","Length: 268","8004"
"10:46:28.5842308 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000043","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5842496 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000051","Desired Access: Read","8076"
"10:46:28.5842564 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000017","","8004"
"10:46:28.5842675 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000073","Desired Access: Read","8076"
"10:46:28.5842893 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000038","Length: 16","8076"
"10:46:28.5842927 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000051","Desired Access: Query Value, Maximum Allowed","8004"
"10:46:28.5843059 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000034","Type: REG_SZ, Length: 8, Data: 2.0","8076"
"10:46:28.5843162 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000038","Type: REG_MULTI_SZ, Length: 292, Data: PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02, PCI\VEN_8086&DEV_5916&SUBSYS_10941025, PCI\VEN_8086&DEV_5916&CC_030000, PCI\VEN_8086&DEV_5916&CC_0300","8004"
"10:46:28.5843226 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000034","Length: 44","8076"
"10:46:28.5843366 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000039","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","8076"
"10:46:28.5843375 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000017","","8004"
"10:46:28.5843563 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5843593 AM","firefox.exe","7904","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000051","Desired Access: Read","8004"
"10:46:28.5843712 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000064","Desired Access: Maximum Allowed, Granted Access: Read","8076"
"10:46:28.5843810 AM","firefox.exe","7904","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000039","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","8004"
"10:46:28.5843904 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000060","Type: REG_DWORD, Length: 4, Data: 8","8076"
"10:46:28.5844019 AM","firefox.exe","7904","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","8004"
"10:46:28.5844437 AM","firefox.exe","7904","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000047","Desired Access: Read, Maximum Allowed","8004"
"10:46:28.5844446 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","8076"
"10:46:28.5844625 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5844663 AM","firefox.exe","7904","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000043","Type: REG_DWORD, Length: 4, Data: 3","8004"
"10:46:28.5844740 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000051","Desired Access: Read","8076"
"10:46:28.5844847 AM","firefox.exe","7904","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000013","","8004"
"10:46:28.5845005 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000042","Type: REG_DWORD, Length: 4, Data: 1015","8076"
"10:46:28.5845060 AM","firefox.exe","7904","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000047","Desired Access: Read","8004"
"10:46:28.5845197 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000030","Type: REG_DWORD, Length: 4, Data: 14","8076"
"10:46:28.5845269 AM","firefox.exe","7904","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video1","0.0000034","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0001","8004"
"10:46:28.5845363 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5845504 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000068","Desired Access: Maximum Allowed, Granted Access: Read","8076"
"10:46:28.5845517 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0001","0.0000055","Desired Access: Read","8004"
"10:46:28.5845722 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000025","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5845730 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0001","0.0000094","Desired Access: Read","8004"
"10:46:28.5845841 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000039","Desired Access: Read","8076"
"10:46:28.5845995 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000025","Length: 144","8076"
"10:46:28.5846025 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000047","Desired Access: Read","8004"
"10:46:28.5846101 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000035","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5846242 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000017","","8076"
"10:46:28.5846276 AM","firefox.exe","7904","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","8004"
"10:46:28.5846434 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5846515 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000107","Length: 52","8004"
"10:46:28.5846562 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000047","Desired Access: Read","8076"
"10:46:28.5846746 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5846788 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000017","","8004"
"10:46:28.5846899 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5847070 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000064","Desired Access: Query Value, Maximum Allowed","8004"
"10:46:28.5847078 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000018","","8076"
"10:46:28.5847232 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5847360 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000038","Length: 268","8004"
"10:46:28.5847373 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000034","Desired Access: Read","8076"
"10:46:28.5847539 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5847612 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000017","","8004"
"10:46:28.5847701 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000035","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5847825 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000081","Desired Access: Query Value, Maximum Allowed","8004"
"10:46:28.5847876 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000022","","8076"
"10:46:28.5847987 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5848085 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000035","Desired Access: Read","8076"
"10:46:28.5848102 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000039","Type: REG_MULTI_SZ, Length: 292, Data: PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02, PCI\VEN_8086&DEV_5916&SUBSYS_10941025, PCI\VEN_8086&DEV_5916&CC_030000, PCI\VEN_8086&DEV_5916&CC_0300","8004"
"10:46:28.5848230 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000026","Length: 144","8076"
"10:46:28.5848320 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000021","","8004"
"10:46:28.5848333 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5848448 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000034","","8076"
"10:46:28.5848550 AM","firefox.exe","7904","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000052","Desired Access: Read","8004"
"10:46:28.5848572 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5848661 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000047","Desired Access: Read","8076"
"10:46:28.5848768 AM","firefox.exe","7904","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video1","0.0000038","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0001","8004"
"10:46:28.5848849 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000039","Length: 144","8076"
"10:46:28.5849011 AM","firefox.exe","7904","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","8004"
"10:46:28.5849075 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5849284 AM","firefox.exe","7904","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000056","Desired Access: Read, Maximum Allowed","8004"
"10:46:28.5849318 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000022","","8076"
"10:46:28.5849485 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5849523 AM","firefox.exe","7904","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000039","Type: REG_DWORD, Length: 4, Data: 3","8004"
"10:46:28.5849626 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000047","Desired Access: Read","8076"
"10:46:28.5849728 AM","firefox.exe","7904","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","8004"
"10:46:28.5849813 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000035","Length: 144","8076"
"10:46:28.5849950 AM","firefox.exe","7904","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000077","Desired Access: Read","8004"
"10:46:28.5849971 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5850155 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000013","","8076"
"10:46:28.5850197 AM","firefox.exe","7904","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video2","0.0000047","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0002","8004"
"10:46:28.5850287 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5850424 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000051","Desired Access: Read","8076"
"10:46:28.5850462 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0002","0.0000068","Desired Access: Read","8004"
"10:46:28.5850624 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5850688 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0002","0.0000115","Desired Access: Read","8004"
"10:46:28.5850761 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5850931 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000017","","8076"
"10:46:28.5850961 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000039","Desired Access: Read","8004"
"10:46:28.5851072 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5851183 AM","firefox.exe","7904","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000013","","8004"
"10:46:28.5851209 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000047","Desired Access: Read","8076"
"10:46:28.5851349 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000090","Length: 52","8004"
"10:46:28.5851379 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5851524 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5851593 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000029","","8004"
"10:46:28.5851708 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000017","","8076"
"10:46:28.5851849 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5851900 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000055","Desired Access: Query Value, Maximum Allowed","8004"
"10:46:28.5852006 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000043","Desired Access: Read","8076"
"10:46:28.5852113 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000030","Length: 268","8004"
"10:46:28.5852173 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5852258 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000022","","8004"
"10:46:28.5852305 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5852493 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000043","Desired Access: Query Value, Maximum Allowed","8004"
"10:46:28.5852523 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","","8076"
"10:46:28.5852719 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5852745 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000042","Type: REG_MULTI_SZ, Length: 292, Data: PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02, PCI\VEN_8086&DEV_5916&SUBSYS_10941025, PCI\VEN_8086&DEV_5916&CC_030000, PCI\VEN_8086&DEV_5916&CC_0300","8004"
"10:46:28.5852847 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000038","Desired Access: Read","8076"
"10:46:28.5852988 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5852996 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000022","","8004"
"10:46:28.5853099 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5853231 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000009","","8076"
"10:46:28.5853244 AM","firefox.exe","7904","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000055","Desired Access: Read","8004"
"10:46:28.5853329 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5853427 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000026","Desired Access: Read","8076"
"10:46:28.5853474 AM","firefox.exe","7904","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video2","0.0000043","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0002","8004"
"10:46:28.5853538 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000039","Length: 144","8076"
"10:46:28.5853649 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5853688 AM","firefox.exe","7904","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","8004"
"10:46:28.5853764 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000052","","8076"
"10:46:28.5853909 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5853961 AM","firefox.exe","7904","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000051","Desired Access: Read, Maximum Allowed","8004"
"10:46:28.5854008 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000034","Desired Access: Read","8076"
"10:46:28.5854131 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000026","Length: 144","8076"
"10:46:28.5854182 AM","firefox.exe","7904","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000035","Type: REG_DWORD, Length: 4, Data: 3","8004"
"10:46:28.5854229 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5854345 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000012","","8076"
"10:46:28.5854417 AM","firefox.exe","7904","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000103","","8004"
"10:46:28.5854481 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5854579 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000034","Desired Access: Read","8076"
"10:46:28.5854703 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Length: 144","8076"
"10:46:28.5854793 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5854921 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000021","","8076"
"10:46:28.5854950 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5855049 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5855096 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Cisco Systems\VPN Client","0.0000042","Desired Access: Query Value","8004"
"10:46:28.5855185 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000043","Desired Access: Read","8076"
"10:46:28.5855352 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000029","Length: 144","8076"
"10:46:28.5855488 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000051","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5855680 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000017","","8076"
"10:46:28.5855812 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","","8076"
"10:46:28.5856043 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","","8076"
"10:46:28.5856192 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","","8076"
"10:46:28.5856491 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5856627 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000051","Desired Access: All Access","8076"
"10:46:28.5856785 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000521","Desired Access: All Access","8076"
"10:46:28.5857037 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000051","Information: Owner","8076"
"10:46:28.5857246 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000021","Information: Owner","8076"
"10:46:28.5857438 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5857574 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000043","Desired Access: Read","8076"
"10:46:28.5857728 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000060","Desired Access: Read","8076"
"10:46:28.5857916 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000034","Length: 16","8076"
"10:46:28.5858057 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000034","Type: REG_SZ, Length: 8, Data: 2.0","8076"
"10:46:28.5858214 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000052","Length: 44","8076"
"10:46:28.5858372 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000034","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","8076"
"10:46:28.5858552 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000012","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5858684 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000060","Desired Access: Maximum Allowed, Granted Access: Read","8076"
"10:46:28.5858863 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000047","Type: REG_DWORD, Length: 4, Data: 8","8076"
"10:46:28.5859554 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000026","Type: REG_DWORD, Length: 4, Data: 8","8076"
"10:46:28.5859708 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5859849 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000047","Desired Access: Read","8076"
"10:46:28.5860024 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000029","Type: REG_DWORD, Length: 4, Data: 1015","8076"
"10:46:28.5860164 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000026","Type: REG_DWORD, Length: 4, Data: 14","8076"
"10:46:28.5860301 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5860433 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000047","Desired Access: Maximum Allowed, Granted Access: Read","8076"
"10:46:28.5860604 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\DWrite.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.5860612 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000026","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5860723 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000043","Desired Access: Read","8076"
"10:46:28.5860860 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000025","Length: 144","8076"
"10:46:28.5860958 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5861133 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000055","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","8004"
"10:46:28.5861137 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000013","","8076"
"10:46:28.5861235 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5861312 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\DWrite.dll","0.0000081","","8004"
"10:46:28.5861329 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000034","Desired Access: Read","8076"
"10:46:28.5861453 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000021","Length: 144","8076"
"10:46:28.5861547 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5861662 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000008","","8076"
"10:46:28.5861747 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5861841 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000026","Desired Access: Read","8076"
"10:46:28.5861952 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000026","Length: 144","8076"
"10:46:28.5862076 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5862182 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000013","","8076"
"10:46:28.5862272 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5862362 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000030","Desired Access: Read","8076"
"10:46:28.5862473 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000025","Length: 144","8076"
"10:46:28.5862566 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5862677 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000009","","8076"
"10:46:28.5862763 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5862844 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000034","Desired Access: Read","8076"
"10:46:28.5862921 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\DWrite.dll","0.0000196","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.5862959 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000026","Length: 144","8076"
"10:46:28.5863083 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5863189 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000013","","8076"
"10:46:28.5863279 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5863369 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000025","Desired Access: Read","8076"
"10:46:28.5863501 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Length: 144","8076"
"10:46:28.5863544 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000046","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.5863599 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000021","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5863736 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000012","","8076"
"10:46:28.5863829 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5863915 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000030","Desired Access: Read","8076"
"10:46:28.5864021 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000026","SyncType: SyncTypeOther","8004"
"10:46:28.5864030 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000043","Length: 144","8076"
"10:46:28.5864149 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5864265 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000012","","8076"
"10:46:28.5864358 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000026","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5864474 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\DWrite.dll","0.0000175","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.5864504 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000055","Desired Access: Read","8076"
"10:46:28.5864696 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000029","Length: 144","8076"
"10:46:28.5864832 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5865003 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000013","","8076"
"10:46:28.5865135 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5865276 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000047","Desired Access: Read","8076"
"10:46:28.5865446 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000052","Length: 144","8076"
"10:46:28.5865583 AM","firefox.exe","7904","Load Image","C:\Windows\System32\DWrite.dll","0.0000000","Image Base: 0x7ffb33970000, Image Size: 0x31c000","8004"
"10:46:28.5865609 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000029","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5865771 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","","8076"
"10:46:28.5865916 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000038","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5865988 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\DWrite.dll","0.0000073","Name: \Windows\System32\DWrite.dll","8004"
"10:46:28.5866116 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000043","Desired Access: Read","8076"
"10:46:28.5866291 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5866453 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5866680 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000012","","8076"
"10:46:28.5866859 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5867000 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000051","Desired Access: Read","8076"
"10:46:28.5867183 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5867324 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5867490 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000017","","8076"
"10:46:28.5867627 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5867768 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000038","Desired Access: Read","8076"
"10:46:28.5867934 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5868070 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5868258 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000013","","8076"
"10:46:28.5868373 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5868467 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000039","Desired Access: Read","8076"
"10:46:28.5868600 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000021","Length: 144","8076"
"10:46:28.5868689 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000051","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5868732 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\DWrite.dll","0.0000115","","8004"
"10:46:28.5868877 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000013","","8076"
"10:46:28.5869013 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5869112 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000029","Desired Access: Read","8076"
"10:46:28.5869227 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000025","Length: 144","8076"
"10:46:28.5869329 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5869440 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000013","","8076"
"10:46:28.5869530 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","","8076"
"10:46:28.5869726 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","","8076"
"10:46:28.5869837 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","","8076"
"10:46:28.5870089 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5870182 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000052","Desired Access: All Access","8076"
"10:46:28.5870315 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000443","Desired Access: All Access","8076"
"10:46:28.5870515 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000047","Information: Owner","8076"
"10:46:28.5870707 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000017","Information: Owner","8076"
"10:46:28.5870895 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000055","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5871032 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5871130 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000059","Desired Access: Read","8076"
"10:46:28.5871275 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\DirectWrite","0.0000072","Desired Access: Query Value","8004"
"10:46:28.5871317 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000069","Desired Access: Read","8076"
"10:46:28.5871531 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000042","Length: 16","8076"
"10:46:28.5871689 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000038","Type: REG_SZ, Length: 8, Data: 2.0","8076"
"10:46:28.5871864 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000085","Length: 44","8076"
"10:46:28.5872077 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000038","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","8076"
"10:46:28.5872265 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5872410 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000072","Desired Access: Maximum Allowed, Granted Access: Read","8076"
"10:46:28.5872452 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5872589 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000025","Type: REG_DWORD, Length: 4, Data: 8","8076"
"10:46:28.5872649 AM","firefox.exe","7904","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\FontCache\Parameters","0.0000059","Desired Access: Read","8004"
"10:46:28.5872862 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\FontCache\Parameters","0.0000136","Desired Access: Read","8004"
"10:46:28.5873058 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000030","Type: REG_DWORD, Length: 4, Data: 8","8076"
"10:46:28.5873152 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\FontCache\Parameters\ClientCacheSize","0.0000030","Type: REG_DWORD, Length: 4, Data: 4194304","8004"
"10:46:28.5873242 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000025","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5873327 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\FontCache\Parameters","0.0000017","","8004"
"10:46:28.5873455 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000043","Desired Access: Read","8076"
"10:46:28.5873865 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000038","Type: REG_DWORD, Length: 4, Data: 1015","8076"
"10:46:28.5874014 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5874048 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000030","Type: REG_DWORD, Length: 4, Data: 14","8076"
"10:46:28.5874197 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000081","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5874236 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Microsoft\Avalon.Graphics","0.0000119","Desired Access: Read","8004"
"10:46:28.5874475 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000064","Desired Access: Maximum Allowed, Granted Access: Read","8076"
"10:46:28.5874492 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5874658 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\Avalon.Graphics","0.0000056","Desired Access: Read","8004"
"10:46:28.5874671 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000038","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5874837 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000052","Desired Access: Read","8076"
"10:46:28.5875038 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5875213 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000081","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5875469 AM","firefox.exe","7904","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000119","Desired Access: Read, Maximum Allowed","8004"
"10:46:28.5875533 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000047","","8076"
"10:46:28.5875712 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5875802 AM","firefox.exe","7904","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000042","Type: REG_DWORD, Length: 4, Data: 3","8004"
"10:46:28.5875878 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000047","Desired Access: Read","8076"
"10:46:28.5876024 AM","firefox.exe","7904","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","8004"
"10:46:28.5876062 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5876207 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5876267 AM","firefox.exe","7904","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000047","Desired Access: Read","8004"
"10:46:28.5876395 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000013","","8076"
"10:46:28.5876467 AM","firefox.exe","7904","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000039","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","8004"
"10:46:28.5876561 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5876706 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000047","Desired Access: Read","8076"
"10:46:28.5876732 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000055","Desired Access: Read","8004"
"10:46:28.5876890 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000038","Length: 144","8076"
"10:46:28.5876941 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000064","Desired Access: Read","8004"
"10:46:28.5877039 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5877146 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000038","Desired Access: Read","8004"
"10:46:28.5877218 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000013","","8076"
"10:46:28.5877350 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000018","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5877359 AM","firefox.exe","7904","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000021","","8004"
"10:46:28.5877496 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000042","Desired Access: Read","8076"
"10:46:28.5877525 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000116","Length: 52","8004"
"10:46:28.5877666 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000026","Length: 144","8076"
"10:46:28.5877794 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000090","","8004"
"10:46:28.5877816 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5877990 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000013","","8076"
"10:46:28.5878123 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5878170 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000047","Desired Access: Query Value, Maximum Allowed","8004"
"10:46:28.5878298 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000047","Desired Access: Read","8076"
"10:46:28.5878396 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000089","Length: 268","8004"
"10:46:28.5878473 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000042","Length: 144","8076"
"10:46:28.5878643 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5878660 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000039","","8004"
"10:46:28.5878822 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000018","","8076"
"10:46:28.5878950 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000039","Desired Access: Query Value, Maximum Allowed","8004"
"10:46:28.5878955 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5879096 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000046","Desired Access: Read","8076"
"10:46:28.5879155 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10\HardwareID","0.0000039","Type: REG_MULTI_SZ, Length: 292, Data: PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02, PCI\VEN_8086&DEV_5916&SUBSYS_10941025, PCI\VEN_8086&DEV_5916&CC_030000, PCI\VEN_8086&DEV_5916&CC_0300","8004"
"10:46:28.5879270 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000026","Length: 144","8076"
"10:46:28.5879369 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Enum\PCI\VEN_8086&DEV_5916&SUBSYS_10941025&REV_02\3&11583659&0&10","0.0000012","","8004"
"10:46:28.5879398 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5879561 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000115","","8076"
"10:46:28.5879642 AM","firefox.exe","7904","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000059","Desired Access: Read","8004"
"10:46:28.5879812 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5879855 AM","firefox.exe","7904","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000038","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","8004"
"10:46:28.5879953 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000043","Desired Access: Read","8076"
"10:46:28.5880056 AM","firefox.exe","7904","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000012","","8004"
"10:46:28.5880128 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5880248 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Microsoft\Avalon.Graphics","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5880269 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5880401 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Microsoft\Avalon.Graphics\DISPLAY1","0.0000034","Desired Access: Read","8004"
"10:46:28.5880444 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000013","","8076"
"10:46:28.5880572 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5880580 AM","firefox.exe","7904","RegCloseKey","HKCU\Software\Microsoft\Avalon.Graphics","0.0000030","","8004"
"10:46:28.5880700 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000038","Desired Access: Read","8076"
"10:46:28.5880870 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000700","Length: 144","8076"
"10:46:28.5881758 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0000021","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5881818 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000055","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5881924 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Microsoft\Avalon.Graphics\DISPLAY1","0.0000052","Desired Access: Read","8004"
"10:46:28.5882048 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000017","","8076"
"10:46:28.5882197 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5882330 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000051","Desired Access: Read","8076"
"10:46:28.5882517 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5882662 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5882825 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","","8076"
"10:46:28.5882978 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000026","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5883145 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000042","Desired Access: Read","8076"
"10:46:28.5883311 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5883448 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5883622 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000026","","8076"
"10:46:28.5883806 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5883934 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000047","Desired Access: Read","8076"
"10:46:28.5884109 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5884258 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5884288 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 5612","8004"
"10:46:28.5884433 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000021","","8076"
"10:46:28.5884574 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5884706 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000047","Desired Access: Read","8076"
"10:46:28.5884873 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000029","Length: 144","8076"
"10:46:28.5885043 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5885214 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000013","","8076"
"10:46:28.5885350 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5885487 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000047","Desired Access: Read","8076"
"10:46:28.5885662 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000060","Length: 144","8076"
"10:46:28.5885816 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5885982 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000030","","8076"
"10:46:28.5886110 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5886212 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000034","Desired Access: Read","8076"
"10:46:28.5886357 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5886498 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5886665 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000012","","8076"
"10:46:28.5887787 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","","8076"
"10:46:28.5888098 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000030","","8076"
"10:46:28.5888333 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","","8076"
"10:46:28.5888725 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5888926 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000064","Desired Access: All Access","8076"
"10:46:28.5889190 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000896","Desired Access: All Access","8076"
"10:46:28.5889515 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000042","Information: Owner","8076"
"10:46:28.5889835 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000047","Information: Owner","8076"
"10:46:28.5890227 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5890364 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000051","Desired Access: Read","8076"
"10:46:28.5890530 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000073","Desired Access: Read","8076"
"10:46:28.5891597 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000043","Length: 16","8076"
"10:46:28.5892041 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000051","Type: REG_SZ, Length: 8, Data: 2.0","8076"
"10:46:28.5892271 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000034","Length: 44","8076"
"10:46:28.5892425 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000029","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","8076"
"10:46:28.5892638 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000021","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5892804 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000077","Desired Access: Maximum Allowed, Granted Access: Read","8076"
"10:46:28.5893043 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","8076"
"10:46:28.5893585 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","8076"
"10:46:28.5893807 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000038","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5893990 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000082","Desired Access: Read","8076"
"10:46:28.5894212 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000052","Type: REG_DWORD, Length: 4, Data: 1015","8076"
"10:46:28.5894379 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000025","Type: REG_DWORD, Length: 4, Data: 14","8076"
"10:46:28.5894528 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5894677 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000073","Desired Access: Maximum Allowed, Granted Access: Read","8076"
"10:46:28.5894891 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000038","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5895061 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000056","Desired Access: Read","8076"
"10:46:28.5895258 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5895416 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5895637 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000017","","8076"
"10:46:28.5895787 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5895936 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000060","Desired Access: Read","8076"
"10:46:28.5896128 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5896273 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5896461 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000043","","8076"
"10:46:28.5896636 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000098","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5896892 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000081","Desired Access: Read","8076"
"10:46:28.5897118 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5897267 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5897446 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000018","","8076"
"10:46:28.5897587 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5897737 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000042","Desired Access: Read","8076"
"10:46:28.5897907 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5898044 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5898219 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000013","","8076"
"10:46:28.5898360 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5898496 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000043","Desired Access: Read","8076"
"10:46:28.5898663 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5898808 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000029","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5898978 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000013","","8076"
"10:46:28.5899115 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5899251 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000043","Desired Access: Read","8076"
"10:46:28.5899426 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000056","Length: 144","8076"
"10:46:28.5899601 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5899780 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000013","","8076"
"10:46:28.5899913 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5900049 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000060","Desired Access: Read","8076"
"10:46:28.5900254 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5900391 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000064","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5900600 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000145","","8076"
"10:46:28.5901534 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000077","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5901781 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000056","Desired Access: Read","8076"
"10:46:28.5902003 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000039","Length: 144","8076"
"10:46:28.5902161 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5902366 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000021","","8076"
"10:46:28.5902520 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5902665 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000047","Desired Access: Read","8076"
"10:46:28.5902848 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5909342 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\fonts","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.5909598 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\fonts","0.0000034","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: D","8004"
"10:46:28.5909700 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\fonts","0.0000107","","8004"
"10:46:28.5909969 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000051","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5910229 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000022","","8076"
"10:46:28.5910417 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5910605 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000060","Desired Access: Read","8076"
"10:46:28.5910835 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000039","Length: 144","8076"
"10:46:28.5911002 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5911219 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000017","","8076"
"10:46:28.5911437 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5911659 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000072","Desired Access: Read","8076"
"10:46:28.5911893 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000039","Length: 144","8076"
"10:46:28.5912034 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\fonts","0.0000175","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.5912047 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5912252 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000017","","8076"
"10:46:28.5912427 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5912593 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000051","Desired Access: Read","8076"
"10:46:28.5912627 AM","firefox.exe","7904","QueryDirectory","C:\Program Files\Firefox Nightly\fonts\*","0.0000150","Filter: *, 1: .","8004"
"10:46:28.5912789 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000035","Length: 144","8076"
"10:46:28.5912935 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5913122 AM","firefox.exe","7904","QueryDirectory","C:\Program Files\Firefox Nightly\fonts","0.0000162","0: .., 1: TwemojiMozilla.ttf","8004"
"10:46:28.5913208 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000034","","8076"
"10:46:28.5913387 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5913540 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000128","Desired Access: Read","8076"
"10:46:28.5913848 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5914005 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000035","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5914197 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000013","","8076"
"10:46:28.5914347 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5914492 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000081","Desired Access: Read","8076"
"10:46:28.5914731 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5914752 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000201","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.5914876 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5915047 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000012","","8076"
"10:46:28.5915179 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","","8076"
"10:46:28.5915328 AM","firefox.exe","7904","QueryInformationVolume","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000043","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","8004"
"10:46:28.5915482 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","","8076"
"10:46:28.5915593 AM","firefox.exe","7904","QueryAllInformationFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000064","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A, AllocationSize: 1,245,184, EndOfFile: 1,244,336, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0xd00000002c564, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","8004"
"10:46:28.5915635 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","","8076"
"10:46:28.5915879 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000072","","8004"
"10:46:28.5915955 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5916100 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000090","Desired Access: All Access","8076"
"10:46:28.5916309 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000837","Desired Access: All Access","8076"
"10:46:28.5916647 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000102","Information: Owner","8076"
"10:46:28.5916962 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000030","Information: Owner","8076"
"10:46:28.5917372 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5917594 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000064","Desired Access: Read","8076"
"10:46:28.5917803 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000077","Desired Access: Read","8076"
"10:46:28.5917858 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000205","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.5918042 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000047","Length: 16","8076"
"10:46:28.5918217 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000038","Type: REG_SZ, Length: 8, Data: 2.0","8076"
"10:46:28.5918392 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000029","Length: 44","8076"
"10:46:28.5918400 AM","firefox.exe","7904","QueryInformationVolume","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000081","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","8004"
"10:46:28.5918524 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000025","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","8076"
"10:46:28.5918716 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5918810 AM","firefox.exe","7904","QueryAllInformationFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000089","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A, AllocationSize: 1,245,184, EndOfFile: 1,244,336, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0xd00000002c564, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","8004"
"10:46:28.5918831 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000051","Desired Access: Maximum Allowed, Granted Access: Read","8076"
"10:46:28.5919002 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000030","Type: REG_DWORD, Length: 4, Data: 8","8076"
"10:46:28.5919207 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.5919394 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000026","AllocationSize: 1,245,184, EndOfFile: 1,244,336, NumberOfLinks: 1, DeletePending: False, Directory: False","8004"
"10:46:28.5919522 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","8076"
"10:46:28.5919684 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000064","SyncType: SyncTypeOther","8004"
"10:46:28.5919701 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000026","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5919868 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000034","Desired Access: Read","8076"
"10:46:28.5920034 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000051","Type: REG_DWORD, Length: 4, Data: 1015","8076"
"10:46:28.5920201 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000030","Type: REG_DWORD, Length: 4, Data: 14","8076"
"10:46:28.5920354 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5920491 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000055","Desired Access: Maximum Allowed, Granted Access: Read","8076"
"10:46:28.5920683 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5920824 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000042","Desired Access: Read","8076"
"10:46:28.5920999 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000029","Length: 144","8076"
"10:46:28.5921148 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5921336 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000012","","8076"
"10:46:28.5921476 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5921609 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000042","Desired Access: Read","8076"
"10:46:28.5921779 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000043","Length: 144","8076"
"10:46:28.5922018 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5922215 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","8076"
"10:46:28.5922351 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5922488 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000047","Desired Access: Read","8076"
"10:46:28.5922654 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5922791 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5922957 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000013","","8076"
"10:46:28.5923085 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5923221 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000039","Desired Access: Read","8076"
"10:46:28.5923379 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5923512 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5923687 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000012","","8076"
"10:46:28.5923819 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5923972 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000039","Desired Access: Read","8076"
"10:46:28.5924135 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000029","Length: 144","8076"
"10:46:28.5924271 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5924344 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\fonts\TwemojiMozilla.ttf","0.0000119","","8004"
"10:46:28.5924433 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000017","","8076"
"10:46:28.5924561 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5924693 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000043","Desired Access: Read","8076"
"10:46:28.5924992 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000039","Length: 144","8076"
"10:46:28.5925141 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5925180 AM","firefox.exe","7904","QueryDirectory","C:\Program Files\Firefox Nightly\fonts","0.0000072","","8004"
"10:46:28.5925304 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000012","","8076"
"10:46:28.5925436 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\fonts","0.0000081","","8004"
"10:46:28.5925466 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5925607 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000093","Desired Access: Read","8076"
"10:46:28.5925833 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5925961 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5926119 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000012","","8076"
"10:46:28.5926251 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5926387 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000043","Desired Access: Read","8076"
"10:46:28.5926554 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5926660 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5926746 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000051","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5926861 AM","firefox.exe","7904","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000158","Desired Access: Read","8004"
"10:46:28.5927010 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000026","","8076"
"10:46:28.5927168 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5927279 AM","firefox.exe","7904","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000056","Index: 0, Name: Arabic Transparent, Type: REG_SZ, Length: 12, Data: Arial","8004"
"10:46:28.5927292 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000047","Desired Access: Read","8076"
"10:46:28.5927463 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000029","Length: 144","8076"
"10:46:28.5927544 AM","firefox.exe","7904","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000047","Index: 1, Name: Arabic Transparent Bold, Type: REG_SZ, Length: 22, Data: Arial Bold","8004"
"10:46:28.5927573 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000035","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5927744 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000098","","8076"
"10:46:28.5927757 AM","firefox.exe","7904","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000047","Index: 2, Name: Arabic Transparent Bold,0, Type: REG_SZ, Length: 30, Data: Arial Bold,178","8004"
"10:46:28.5927957 AM","firefox.exe","7904","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000030","Index: 3, Name: Arabic Transparent,0, Type: REG_SZ, Length: 20, Data: Arial,178","8004"
"10:46:28.5928026 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5928141 AM","firefox.exe","7904","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000038","Index: 4, Name: Arial Baltic,186, Type: REG_SZ, Length: 20, Data: Arial,186","8004"
"10:46:28.5928222 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000051","Desired Access: Read","8076"
"10:46:28.5928299 AM","firefox.exe","7904","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000025","Index: 5, Name: Arial CE,238, Type: REG_SZ, Length: 20, Data: Arial,238","8004"
"10:46:28.5928418 AM","firefox.exe","7904","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000107","Index: 6, Name: Arial CYR,204, Type: REG_SZ, Length: 20, Data: Arial,204","8004"
"10:46:28.5928461 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000043","Length: 144","8076"
"10:46:28.5928606 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5928738 AM","firefox.exe","7904","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000064","Index: 7, Name: Arial Greek,161, Type: REG_SZ, Length: 20, Data: Arial,161","8004"
"10:46:28.5928785 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000043","","8076"
"10:46:28.5928943 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5929007 AM","firefox.exe","7904","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000060","Index: 8, Name: Arial TUR,162, Type: REG_SZ, Length: 20, Data: Arial,162","8004"
"10:46:28.5929041 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000043","Desired Access: Read","8076"
"10:46:28.5929182 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000026","Length: 144","8076"
"10:46:28.5929212 AM","firefox.exe","7904","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000047","Index: 9, Name: Courier New Baltic,186, Type: REG_SZ, Length: 32, Data: Courier New,186","8004"
"10:46:28.5929289 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5929412 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000009","","8076"
"10:46:28.5929434 AM","firefox.exe","7904","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000038","Index: 10, Name: Courier New CE,238, Type: REG_SZ, Length: 32, Data: Courier New,238","8004"
"10:46:28.5929515 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5929604 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000030","Desired Access: Read","8076"
"10:46:28.5929621 AM","firefox.exe","7904","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000035","Index: 11, Name: Courier New CYR,204, Type: REG_SZ, Length: 32, Data: Courier New,204","8004"
"10:46:28.5929784 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000042","Length: 144","8076"
"10:46:28.5929801 AM","firefox.exe","7904","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000034","Index: 12, Name: Courier New Greek,161, Type: REG_SZ, Length: 32, Data: Courier New,161","8004"
"10:46:28.5929950 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000051","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5930065 AM","firefox.exe","7904","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000039","Index: 13, Name: Courier New TUR,162, Type: REG_SZ, Length: 32, Data: Courier New,162","8004"
"10:46:28.5930146 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000013","","8076"
"10:46:28.5930279 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5930287 AM","firefox.exe","7904","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000034","Index: 14, Name: Helv, Type: REG_SZ, Length: 28, Data: MS Sans Serif","8004"
"10:46:28.5930458 AM","firefox.exe","7904","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000038","Index: 15, Name: Helvetica, Type: REG_SZ, Length: 12, Data: Arial","8004"
"10:46:28.5930466 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000047","Desired Access: Read","8076"
"10:46:28.5930637 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000068","Length: 144","8076"
"10:46:28.5930645 AM","firefox.exe","7904","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000030","Index: 16, Name: MS Shell Dlg 2, Type: REG_SZ, Length: 14, Data: Tahoma","8004"
"10:46:28.5930842 AM","firefox.exe","7904","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000034","Index: 17, Name: Tahoma Armenian, Type: REG_SZ, Length: 14, Data: Tahoma","8004"
"10:46:28.5930923 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000128","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5931017 AM","firefox.exe","7904","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000059","Index: 18, Name: Times, Type: REG_SZ, Length: 32, Data: Times New Roman","8004"
"10:46:28.5931226 AM","firefox.exe","7904","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000047","Index: 19, Name: Times New Roman Baltic,186, Type: REG_SZ, Length: 40, Data: Times New Roman,186","8004"
"10:46:28.5931234 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000030","","8076"
"10:46:28.5931401 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5931460 AM","firefox.exe","7904","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000035","Index: 20, Name: Times New Roman CE,238, Type: REG_SZ, Length: 40, Data: Times New Roman,238","8004"
"10:46:28.5931601 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000051","Desired Access: Read","8076"
"10:46:28.5931657 AM","firefox.exe","7904","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000034","Index: 21, Name: Times New Roman CYR,204, Type: REG_SZ, Length: 40, Data: Times New Roman,204","8004"
"10:46:28.5931797 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000035","Length: 144","8076"
"10:46:28.5931844 AM","firefox.exe","7904","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000060","Index: 22, Name: Times New Roman Greek,161, Type: REG_SZ, Length: 40, Data: Times New Roman,161","8004"
"10:46:28.5931947 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5932049 AM","firefox.exe","7904","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000039","Index: 23, Name: Times New Roman TUR,162, Type: REG_SZ, Length: 40, Data: Times New Roman,162","8004"
"10:46:28.5932237 AM","firefox.exe","7904","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000038","Index: 24, Name: Tms Rmn, Type: REG_SZ, Length: 18, Data: MS Serif","8004"
"10:46:28.5932292 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000017","","8076"
"10:46:28.5932433 AM","firefox.exe","7904","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000056","Index: 25, Name: MS Shell Dlg, Type: REG_SZ, Length: 42, Data: Microsoft Sans Serif","8004"
"10:46:28.5932455 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","","8076"
"10:46:28.5932629 AM","firefox.exe","7904","RegEnumValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes","0.0000026","Index: 26, Length: 2,048","8004"
"10:46:28.5932745 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000025","","8076"
"10:46:28.5932898 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000026","","8076"
"10:46:28.5933513 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5933671 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000068","Desired Access: All Access","8076"
"10:46:28.5933863 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000686","Desired Access: All Access","8076"
"10:46:28.5934114 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000051","Information: Owner","8076"
"10:46:28.5934328 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000021","Information: Owner","8076"
"10:46:28.5934690 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5934848 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000056","Desired Access: Read","8076"
"10:46:28.5935019 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000068","Desired Access: Read","8076"
"10:46:28.5935241 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000038","Length: 16","8076"
"10:46:28.5935394 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000039","Type: REG_SZ, Length: 8, Data: 2.0","8076"
"10:46:28.5935569 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000043","Length: 44","8076"
"10:46:28.5935727 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000038","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","8076"
"10:46:28.5935932 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5936073 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000064","Desired Access: Maximum Allowed, Granted Access: Read","8076"
"10:46:28.5936286 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000038","Type: REG_DWORD, Length: 4, Data: 8","8076"
"10:46:28.5936836 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000035","Type: REG_DWORD, Length: 4, Data: 8","8076"
"10:46:28.5937007 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5937144 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000047","Desired Access: Read","8076"
"10:46:28.5937314 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000034","Type: REG_DWORD, Length: 4, Data: 1015","8076"
"10:46:28.5937459 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000030","Type: REG_DWORD, Length: 4, Data: 14","8076"
"10:46:28.5937604 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5937728 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000073","Desired Access: Maximum Allowed, Granted Access: Read","8076"
"10:46:28.5937937 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5938069 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000043","Desired Access: Read","8076"
"10:46:28.5938249 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5938394 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000064","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5938624 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000017","","8076"
"10:46:28.5938769 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5938940 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000047","Desired Access: Read","8076"
"10:46:28.5939221 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000035","Length: 144","8076"
"10:46:28.5939375 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000077","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5939610 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000013","","8076"
"10:46:28.5939755 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5939896 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000051","Desired Access: Read","8076"
"10:46:28.5940083 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000026","Length: 144","8076"
"10:46:28.5940216 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5940386 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000017","","8076"
"10:46:28.5940519 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5940651 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000042","Desired Access: Read","8076"
"10:46:28.5940817 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000026","Length: 144","8076"
"10:46:28.5940979 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5941154 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000013","","8076"
"10:46:28.5941304 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5941436 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000055","Desired Access: Read","8076"
"10:46:28.5941619 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5941747 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5941909 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000013","","8076"
"10:46:28.5942037 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5942170 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000038","Desired Access: Read","8076"
"10:46:28.5942336 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5942464 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5942515 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\mscms.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.5942626 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000013","","8076"
"10:46:28.5942759 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5942891 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000038","Desired Access: Read","8076"
"10:46:28.5942912 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000034","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","8004"
"10:46:28.5943023 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\mscms.dll","0.0000060","","8004"
"10:46:28.5943074 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5943181 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5943292 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000008","","8076"
"10:46:28.5943386 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5943475 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000030","Desired Access: Read","8076"
"10:46:28.5943582 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000068","Length: 144","8076"
"10:46:28.5943727 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5943842 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000013","","8076"
"10:46:28.5943940 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5944039 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000034","Desired Access: Read","8076"
"10:46:28.5944158 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000021","Length: 144","8076"
"10:46:28.5944269 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5944380 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000008","","8076"
"10:46:28.5944465 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000056","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5944615 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000025","Desired Access: Read","8076"
"10:46:28.5944632 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\mscms.dll","0.0000196","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.5944725 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5944824 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000025","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5944930 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000013","","8076"
"10:46:28.5945024 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5945118 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000030","Desired Access: Read","8076"
"10:46:28.5945255 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000025","Length: 144","8076"
"10:46:28.5945348 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5945395 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.5945459 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000009","","8076"
"10:46:28.5945553 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000009","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5945681 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000034","Desired Access: Read","8076"
"10:46:28.5945805 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000021","Length: 144","8076"
"10:46:28.5945899 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000030","SyncType: SyncTypeOther","8004"
"10:46:28.5945937 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5946099 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000060","","8076"
"10:46:28.5946338 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5946453 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\mscms.dll","0.0000035","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.5946509 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000055","Desired Access: Read","8076"
"10:46:28.5946731 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5946880 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5947076 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000090","","8076"
"10:46:28.5947128 AM","firefox.exe","7904","Load Image","C:\Windows\System32\mscms.dll","0.0000000","Image Base: 0x7ffb2dad0000, Image Size: 0xa8000","8004"
"10:46:28.5947315 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5947456 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000043","Desired Access: Read","8076"
"10:46:28.5947546 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\mscms.dll","0.0000081","Name: \Windows\System32\mscms.dll","8004"
"10:46:28.5947669 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000035","Length: 144","8076"
"10:46:28.5947810 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5948002 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000013","","8076"
"10:46:28.5948139 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","","8076"
"10:46:28.5948378 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","","8076"
"10:46:28.5948578 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000026","","8076"
"10:46:28.5948967 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5949107 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000064","Desired Access: All Access","8076"
"10:46:28.5949295 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000529","Desired Access: All Access","8076"
"10:46:28.5949568 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000043","Information: Owner","8076"
"10:46:28.5949764 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000022","Information: Owner","8076"
"10:46:28.5949974 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5950106 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\mscms.dll","0.0000111","","8004"
"10:46:28.5950110 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000047","Desired Access: Read","8076"
"10:46:28.5950268 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000060","Desired Access: Read","8076"
"10:46:28.5950464 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000034","Length: 16","8076"
"10:46:28.5950609 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000030","Type: REG_SZ, Length: 8, Data: 2.0","8076"
"10:46:28.5950763 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000030","Length: 44","8076"
"10:46:28.5950895 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000034","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","8076"
"10:46:28.5951087 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5951224 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000059","Desired Access: Maximum Allowed, Granted Access: Read","8076"
"10:46:28.5951411 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000030","Type: REG_DWORD, Length: 4, Data: 8","8076"
"10:46:28.5951911 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000064","Type: REG_DWORD, Length: 4, Data: 8","8076"
"10:46:28.5952128 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000043","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5952320 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000043","Desired Access: Read","8076"
"10:46:28.5952508 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000030","Type: REG_DWORD, Length: 4, Data: 1015","8076"
"10:46:28.5952764 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000055","Type: REG_DWORD, Length: 4, Data: 14","8076"
"10:46:28.5953818 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5953980 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000064","Desired Access: Maximum Allowed, Granted Access: Read","8076"
"10:46:28.5954189 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5954492 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000068","Desired Access: Read","8076"
"10:46:28.5955862 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.5956216 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000042","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","8004"
"10:46:28.5956356 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000073","","8004"
"10:46:28.5959258 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000234","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.5959889 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.5960299 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000025","SyncType: SyncTypeOther","8004"
"10:46:28.5960721 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\coloradapterclient.dll","0.0000043","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.5960794 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000038","Length: 144","8076"
"10:46:28.5960973 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000495","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5961831 AM","firefox.exe","7904","Load Image","C:\Windows\System32\coloradapterclient.dll","0.0000000","Image Base: 0x7ffb2dac0000, Image Size: 0x10000","8004"
"10:46:28.5962193 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000073","","8076"
"10:46:28.5962778 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000064","Name: \Windows\System32\coloradapterclient.dll","8004"
"10:46:28.5962799 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5963102 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000077","Desired Access: Read","8076"
"10:46:28.5963332 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000099","Length: 144","8076"
"10:46:28.5964083 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5964310 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000012","","8076"
"10:46:28.5964612 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000064","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5965065 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000102","Desired Access: Read","8076"
"10:46:28.5965602 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000162","Length: 144","8076"
"10:46:28.5966170 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000162","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5966383 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000384","","8004"
"10:46:28.5966818 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000056","","8076"
"10:46:28.5967074 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5967236 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000171","Desired Access: Read","8076"
"10:46:28.5968273 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000081","Length: 144","8076"
"10:46:28.5968721 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000184","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5969378 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000047","","8076"
"10:46:28.5969805 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000026","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5969950 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000043","Desired Access: Read","8076"
"10:46:28.5970142 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5970535 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000123","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5970957 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000009","","8076"
"10:46:28.5971094 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5971226 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000047","Desired Access: Read","8076"
"10:46:28.5971396 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5971546 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5971721 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000013","","8076"
"10:46:28.5971930 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000025","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5972092 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000047","Desired Access: Read","8076"
"10:46:28.5972267 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5972403 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5972566 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000029","","8076"
"10:46:28.5972719 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5972860 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000043","Desired Access: Read","8076"
"10:46:28.5973031 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000025","Length: 144","8076"
"10:46:28.5973167 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5973342 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000017","","8076"
"10:46:28.5973479 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5973619 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000052","Desired Access: Read","8076"
"10:46:28.5973807 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5973956 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000035","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5974136 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","","8076"
"10:46:28.5974294 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5974443 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000051","Desired Access: Read","8076"
"10:46:28.5974635 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5974793 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5974998 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000017","","8076"
"10:46:28.5975138 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5975279 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000047","Desired Access: Read","8076"
"10:46:28.5975463 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5975612 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5975787 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000051","","8076"
"10:46:28.5975979 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5976128 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000068","Desired Access: Read","8076"
"10:46:28.5976350 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5976491 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000068","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5976704 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000013","","8076"
"10:46:28.5976841 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5976977 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000047","Desired Access: Read","8076"
"10:46:28.5977156 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5977284 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000035","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5977404 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.5977447 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000017","","8076"
"10:46:28.5977583 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5977720 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000047","Desired Access: Read","8076"
"10:46:28.5977732 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000043","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8004"
"10:46:28.5977878 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000068","","8004"
"10:46:28.5977895 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000047","Length: 144","8076"
"10:46:28.5978048 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5978210 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000013","","8076"
"10:46:28.5978355 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","","8076"
"10:46:28.5978620 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000021","","8076"
"10:46:28.5978778 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","","8076"
"10:46:28.5979136 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5979277 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000064","Desired Access: All Access","8076"
"10:46:28.5979460 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000521","Desired Access: All Access","8076"
"10:46:28.5979716 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000043","Information: Owner","8076"
"10:46:28.5979742 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5979926 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000017","Information: Owner","8076"
"10:46:28.5980122 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5980156 AM","firefox.exe","7904","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Services\ClusSvc","0.0000102","Desired Access: Query Value","8004"
"10:46:28.5980292 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000056","Desired Access: Read","8076"
"10:46:28.5980463 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\ClusSvc","0.0000073","Desired Access: Query Value","8004"
"10:46:28.5980472 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000068","Desired Access: Read","8076"
"10:46:28.5980681 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000034","Length: 16","8076"
"10:46:28.5980834 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000034","Type: REG_SZ, Length: 8, Data: 2.0","8076"
"10:46:28.5980924 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0001327","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5981001 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000030","Length: 44","8076"
"10:46:28.5981137 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000034","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","8076"
"10:46:28.5981338 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5981470 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000064","Desired Access: Maximum Allowed, Granted Access: Read","8076"
"10:46:28.5981654 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","8076"
"10:46:28.5982191 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000090","Type: REG_DWORD, Length: 4, Data: 8","8076"
"10:46:28.5982460 AM","firefox.exe","7904","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000111","Desired Access: Read","8004"
"10:46:28.5982503 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000025","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5982703 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000043","Desired Access: Read","8076"
"10:46:28.5982780 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000085","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.5982908 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000038","Type: REG_DWORD, Length: 4, Data: 1015","8076"
"10:46:28.5983023 AM","firefox.exe","7904","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000145","Desired Access: Read","8004"
"10:46:28.5983074 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000047","Type: REG_DWORD, Length: 4, Data: 14","8076"
"10:46:28.5983258 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5983356 AM","firefox.exe","7904","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000013","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","8004"
"10:46:28.5983411 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000069","Desired Access: Maximum Allowed, Granted Access: Read","8076"
"10:46:28.5983535 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\ri","0.0000034","Length: 12","8004"
"10:46:28.5983625 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5983710 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\ri","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","8004"
"10:46:28.5983770 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000051","Desired Access: Read","8076"
"10:46:28.5983885 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000017","","8004"
"10:46:28.5983966 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5984115 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5984354 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000022","","8076"
"10:46:28.5984512 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5985575 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000055","Desired Access: Read","8076"
"10:46:28.5985779 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000039","Length: 144","8076"
"10:46:28.5985929 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0002491","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5988668 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000124","Desired Access: Query Value, Maximum Allowed","8004"
"10:46:28.5988723 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000035","","8076"
"10:46:28.5988937 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5989035 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\DeviceDesc","0.0000038","Type: REG_SZ, Length: 114, Data: @monitor.inf,%pnpmonitor.devicedesc%;Generic PnP Monitor","8004"
"10:46:28.5989154 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000064","Desired Access: Read","8076"
"10:46:28.5989282 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000017","","8004"
"10:46:28.5989423 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000039","Length: 144","8076"
"10:46:28.5989564 AM","firefox.exe","7904","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000098","Desired Access: Read","8004"
"10:46:28.5989585 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5989811 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000035","","8076"
"10:46:28.5989875 AM","firefox.exe","7904","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000047","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","8004"
"10:46:28.5990003 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5990174 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000064","Desired Access: Read","8076"
"10:46:28.5990204 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000068","Desired Access: Read","8004"
"10:46:28.5990409 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5990447 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000073","Desired Access: Read","8004"
"10:46:28.5990579 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5990686 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000043","Desired Access: Read","8004"
"10:46:28.5990784 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","","8076"
"10:46:28.5990921 AM","firefox.exe","7904","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","8004"
"10:46:28.5990942 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000026","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5991096 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000094","Length: 52","8004"
"10:46:28.5991121 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000103","Desired Access: Read","8076"
"10:46:28.5991373 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000013","","8004"
"10:46:28.5991377 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000039","Length: 144","8076"
"10:46:28.5991531 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5991663 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000043","Desired Access: Query Value, Maximum Allowed","8004"
"10:46:28.5991723 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000034","","8076"
"10:46:28.5991898 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000025","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5991958 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\HardwareID","0.0000042","Type: REG_MULTI_SZ, Length: 34, Data: MONITOR\CMN15D2","8004"
"10:46:28.5992086 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000055","Desired Access: Read","8076"
"10:46:28.5992179 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000017","","8004"
"10:46:28.5992290 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000043","Length: 144","8076"
"10:46:28.5992444 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000047","Desired Access: Query Value, Maximum Allowed","8004"
"10:46:28.5992452 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000056","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5992670 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000085","","8076"
"10:46:28.5992700 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\Driver","0.0000047","Type: REG_SZ, Length: 88, Data: {4d36e96e-e325-11ce-bfc1-08002be10318}\0001","8004"
"10:46:28.5992896 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5992926 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000013","","8004"
"10:46:28.5993058 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000052","Desired Access: Read","8076"
"10:46:28.5993156 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000043","Desired Access: Query Value, Maximum Allowed","8004"
"10:46:28.5993272 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000038","Length: 144","8076"
"10:46:28.5993408 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\Driver","0.0000060","Type: REG_SZ, Length: 88, Data: {4d36e96e-e325-11ce-bfc1-08002be10318}\0001","8004"
"10:46:28.5993442 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5993664 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000039","","8004"
"10:46:28.5993681 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000030","","8076"
"10:46:28.5993890 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000022","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5994052 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000274","Desired Access: Read","8076"
"10:46:28.5994688 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000039","Length: 144","8076"
"10:46:28.5994872 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5995094 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000021","","8076"
"10:46:28.5995260 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5995286 AM","firefox.exe","7904","RegOpenKey","HKLM\Hardware\DeviceMap\VIDEO","0.0000068","Desired Access: Read, Maximum Allowed","8004"
"10:46:28.5995418 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000055","Desired Access: Read","8076"
"10:46:28.5995550 AM","firefox.exe","7904","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\MaxObjectNumber","0.0000038","Type: REG_DWORD, Length: 4, Data: 3","8004"
"10:46:28.5995618 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5995763 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000035","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5995768 AM","firefox.exe","7904","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000017","","8004"
"10:46:28.5995955 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","","8076"
"10:46:28.5996105 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5996263 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000047","Desired Access: Read","8076"
"10:46:28.5996446 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5996608 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000064","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5996830 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000017","","8076"
"10:46:28.5996971 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5997120 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000056","Desired Access: Read","8076"
"10:46:28.5997338 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5997491 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000035","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5997675 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000013","","8076"
"10:46:28.5997820 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5997974 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000055","Desired Access: Read","8076"
"10:46:28.5998166 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000029","Length: 144","8076"
"10:46:28.5998298 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5998490 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000017","","8076"
"10:46:28.5998635 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5998780 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000047","Desired Access: Read","8076"
"10:46:28.5998959 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.5999053 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000090","Desired Access: Query Value, Maximum Allowed","8004"
"10:46:28.5999104 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000051","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.5999300 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000047","","8076"
"10:46:28.5999373 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\DeviceDesc","0.0000034","Type: REG_SZ, Length: 114, Data: @monitor.inf,%pnpmonitor.devicedesc%;Generic PnP Monitor","8004"
"10:46:28.5999475 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.5999603 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000013","","8004"
"10:46:28.5999625 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000038","Desired Access: Read","8076"
"10:46:28.5999812 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.5999885 AM","firefox.exe","7904","RegOpenKey","HKLM\Hardware\DeviceMap\Video","0.0000051","Desired Access: Read","8004"
"10:46:28.5999945 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6000115 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000043","","8076"
"10:46:28.6000128 AM","firefox.exe","7904","RegQueryValue","HKLM\HARDWARE\DEVICEMAP\VIDEO\\Device\Video0","0.0000043","Type: REG_SZ, Length: 202, Data: \Registry\Machine\System\CurrentControlSet\Control\Video\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","8004"
"10:46:28.6000286 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","","8076"
"10:46:28.6000388 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000056","Desired Access: Read","8004"
"10:46:28.6000585 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000025","","8076"
"10:46:28.6000615 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\CONTROL\VIDEO\{E371854A-4B86-11E9-9C26-970F0F3FFEAA}\0000","0.0000119","Desired Access: Read","8004"
"10:46:28.6000815 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","","8076"
"10:46:28.6000900 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000043","Desired Access: Read","8004"
"10:46:28.6001135 AM","firefox.exe","7904","RegCloseKey","HKLM\HARDWARE\DEVICEMAP\VIDEO","0.0000013","","8004"
"10:46:28.6001361 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6001383 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001\PruningMode","0.0000964","Length: 52","8004"
"10:46:28.6001515 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000068","Desired Access: All Access","8076"
"10:46:28.6001707 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000499","Desired Access: All Access","8076"
"10:46:28.6001946 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000047","Information: Owner","8076"
"10:46:28.6002142 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000021","Information: Owner","8076"
"10:46:28.6002360 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6002501 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000072","Desired Access: Read","8076"
"10:46:28.6002530 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}\0001","0.0000047","","8004"
"10:46:28.6002688 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000064","Desired Access: Read","8076"
"10:46:28.6002833 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000043","Desired Access: Query Value, Maximum Allowed","8004"
"10:46:28.6002902 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000038","Length: 16","8076"
"10:46:28.6003055 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000034","Type: REG_SZ, Length: 8, Data: 2.0","8076"
"10:46:28.6003068 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\HardwareID","0.0000038","Type: REG_MULTI_SZ, Length: 34, Data: MONITOR\CMN15D2","8004"
"10:46:28.6003234 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000035","Length: 44","8076"
"10:46:28.6003307 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000017","","8004"
"10:46:28.6003379 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000448","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","8076"
"10:46:28.6003576 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000042","Desired Access: Query Value, Maximum Allowed","8004"
"10:46:28.6003798 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\Driver","0.0000038","Type: REG_SZ, Length: 88, Data: {4d36e96e-e325-11ce-bfc1-08002be10318}\0001","8004"
"10:46:28.6004015 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000030","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6004054 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000017","","8004"
"10:46:28.6004182 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000068","Desired Access: Maximum Allowed, Granted Access: Read","8076"
"10:46:28.6004301 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000043","Desired Access: Query Value, Maximum Allowed","8004"
"10:46:28.6004382 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000039","Type: REG_DWORD, Length: 4, Data: 8","8076"
"10:46:28.6004523 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988\Driver","0.0000034","Type: REG_SZ, Length: 88, Data: {4d36e96e-e325-11ce-bfc1-08002be10318}\0001","8004"
"10:46:28.6004732 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Enum\DISPLAY\CMN15D2\4&12dd4679&0&UID265988","0.0000013","","8004"
"10:46:28.6004898 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000047","Type: REG_DWORD, Length: 4, Data: 8","8076"
"10:46:28.6005090 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000030","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6005253 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000042","Desired Access: Read","8076"
"10:46:28.6005299 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0000022","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.6005427 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000035","Type: REG_DWORD, Length: 4, Data: 1015","8076"
"10:46:28.6005487 AM","firefox.exe","7904","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM","0.0000132","Desired Access: Enumerate Sub Keys","8004"
"10:46:28.6005577 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000064","Type: REG_DWORD, Length: 4, Data: 14","8076"
"10:46:28.6005773 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000068","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6005790 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Microsoft\Windows NT\CurrentVersion\ICM","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.6005965 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Microsoft\Windows NT\CurrentVersion\ICM\ProfileAssociations\Display","0.0000038","Desired Access: Enumerate Sub Keys","8004"
"10:46:28.6005999 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000128","Desired Access: Maximum Allowed, Granted Access: Read","8076"
"10:46:28.6006161 AM","firefox.exe","7904","RegCloseKey","HKCU\Software\Microsoft\Windows NT\CurrentVersion\ICM","0.0000043","","8004"
"10:46:28.6006277 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6006439 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000055","Desired Access: Read","8076"
"10:46:28.6006481 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.6006639 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000043","Length: 144","8076"
"10:46:28.6006661 AM","firefox.exe","7904","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Class\{4D36E96E-E325-11CE-BFC1-08002BE10318}\0001","0.0000055","Desired Access: Query Value","8004"
"10:46:28.6006797 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6006934 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4D36E96E-E325-11CE-BFC1-08002BE10318}\0001","0.0000093","Desired Access: Query Value","8004"
"10:46:28.6006976 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000026","","8076"
"10:46:28.6007160 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6007185 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e96e-e325-11ce-bfc1-08002be10318}\0001\ProfileEnumMode","0.0000034","Length: 16","8004"
"10:46:28.6007296 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000043","Desired Access: Read","8076"
"10:46:28.6007382 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e96e-e325-11ce-bfc1-08002be10318}\0001","0.0000042","","8004"
"10:46:28.6007471 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.6007608 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6007633 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.6007787 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000017","","8076"
"10:46:28.6007808 AM","firefox.exe","7904","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Class\{4D36E96E-E325-11CE-BFC1-08002BE10318}\0001","0.0000047","Desired Access: Query Value","8004"
"10:46:28.6007928 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6007992 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Class\{4D36E96E-E325-11CE-BFC1-08002BE10318}\0001","0.0000059","Desired Access: Query Value","8004"
"10:46:28.6008069 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000042","Desired Access: Read","8076"
"10:46:28.6008205 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Class\{4d36e96e-e325-11ce-bfc1-08002be10318}\0001\ICMProfile","0.0000124","Length: 12","8004"
"10:46:28.6008295 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000038","Length: 144","8076"
"10:46:28.6008440 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6008517 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\Class\{4d36e96e-e325-11ce-bfc1-08002be10318}\0001","0.0000017","","8004"
"10:46:28.6008619 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000013","","8076"
"10:46:28.6008760 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6008819 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.6008896 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000043","Desired Access: Read","8076"
"10:46:28.6009029 AM","firefox.exe","7904","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000102","Desired Access: Read","8004"
"10:46:28.6009088 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000026","Length: 144","8076"
"10:46:28.6009216 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6009289 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.6009391 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000013","","8076"
"10:46:28.6009442 AM","firefox.exe","7904","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000090","Desired Access: Read","8004"
"10:46:28.6009579 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6009715 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000043","Desired Access: Read","8076"
"10:46:28.6009720 AM","firefox.exe","7904","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000013","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","8004"
"10:46:28.6009873 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\sRGB","0.0000039","Length: 12","8004"
"10:46:28.6009878 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.6010023 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6010082 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000013","","8004"
"10:46:28.6010193 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000013","","8076"
"10:46:28.6010291 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0000018","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.6010321 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6010466 AM","firefox.exe","7904","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000056","Desired Access: Read","8004"
"10:46:28.6010505 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000042","Desired Access: Read","8076"
"10:46:28.6010675 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000035","Length: 144","8076"
"10:46:28.6010688 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.6010829 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000056","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6010859 AM","firefox.exe","7904","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000085","Desired Access: Read","8004"
"10:46:28.6011025 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000013","","8076"
"10:46:28.6011085 AM","firefox.exe","7904","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000017","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","8004"
"10:46:28.6011162 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6011222 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\sRGB","0.0000029","Length: 12","8004"
"10:46:28.6011298 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000111","Desired Access: Read","8076"
"10:46:28.6011443 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000026","","8004"
"10:46:28.6011623 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.6011699 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0000018","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.6011781 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6011874 AM","firefox.exe","7904","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000056","Desired Access: Read","8004"
"10:46:28.6011977 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000042","","8076"
"10:46:28.6012092 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.6012156 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6012275 AM","firefox.exe","7904","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000090","Desired Access: Read","8004"
"10:46:28.6012301 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000047","Desired Access: Read","8076"
"10:46:28.6012480 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000103","Length: 144","8076"
"10:46:28.6012514 AM","firefox.exe","7904","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000030","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","8004"
"10:46:28.6012694 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\camp","0.0000038","Length: 12","8004"
"10:46:28.6012702 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6012881 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\camp","0.0000064","Type: REG_SZ, Length: 18, Data: D65.camp","8004"
"10:46:28.6012886 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000021","","8076"
"10:46:28.6013090 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6013223 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000072","Desired Access: Read","8076"
"10:46:28.6013427 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000052","Length: 144","8076"
"10:46:28.6013585 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6013752 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000013","","8076"
"10:46:28.6013888 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6014021 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000038","Desired Access: Read","8076"
"10:46:28.6014187 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.6014319 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6014481 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000013","","8076"
"10:46:28.6014622 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6014763 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000043","Desired Access: Read","8076"
"10:46:28.6014929 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.6015062 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000047","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6015202 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000009","","8076"
"10:46:28.6015292 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6015377 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000030","Desired Access: Read","8076"
"10:46:28.6015493 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000021","Length: 144","8076"
"10:46:28.6015582 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000026","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6015685 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\spool\drivers\color\D65.camp","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.6015714 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000013","","8076"
"10:46:28.6015808 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6015923 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000035","Desired Access: Read","8076"
"10:46:28.6016073 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\spool\drivers\color\D65.camp","0.0000051","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 8:09:14 PM, FileAttributes: A","8004"
"10:46:28.6016171 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000038","Length: 144","8076"
"10:46:28.6016239 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\spool\drivers\color\D65.camp","0.0000073","","8004"
"10:46:28.6016363 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000043","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6016576 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000022","","8076"
"10:46:28.6016704 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000017","","8004"
"10:46:28.6016747 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6016930 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000069","Desired Access: Read","8076"
"10:46:28.6016973 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.6017114 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000025","Length: 144","8076"
"10:46:28.6017199 AM","firefox.exe","7904","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000068","Desired Access: Read","8004"
"10:46:28.6017212 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000034","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6017349 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000012","","8076"
"10:46:28.6017455 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000043","","8076"
"10:46:28.6017468 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.6017664 AM","firefox.exe","7904","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000090","Desired Access: Read","8004"
"10:46:28.6017698 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","","8076"
"10:46:28.6017805 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000013","","8076"
"10:46:28.6017929 AM","firefox.exe","7904","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000017","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","8004"
"10:46:28.6018078 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6018087 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\camp","0.0000038","Length: 12","8004"
"10:46:28.6018193 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000047","Desired Access: All Access","8076"
"10:46:28.6018262 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\camp","0.0000034","Type: REG_SZ, Length: 18, Data: D65.camp","8004"
"10:46:28.6018326 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000349","Desired Access: All Access","8076"
"10:46:28.6018501 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000034","Information: Owner","8076"
"10:46:28.6018633 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000013","Information: Owner","8076"
"10:46:28.6018803 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6018961 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000060","Desired Access: Read","8076"
"10:46:28.6019145 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000064","Desired Access: Read","8076"
"10:46:28.6019358 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000043","Length: 16","8076"
"10:46:28.6019516 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\WinSock_Registry_Version","0.0000038","Type: REG_SZ, Length: 8, Data: 2.0","8076"
"10:46:28.6019687 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000034","Length: 44","8076"
"10:46:28.6019836 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Current_Protocol_Catalog","0.0000034","Type: REG_SZ, Length: 36, Data: Protocol_Catalog9","8076"
"10:46:28.6020083 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000035","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6020263 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000123","Desired Access: Maximum Allowed, Granted Access: Read","8076"
"10:46:28.6020553 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","8076"
"10:46:28.6021061 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Serial_Access_Num","0.0000034","Type: REG_DWORD, Length: 4, Data: 8","8076"
"10:46:28.6021244 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6021398 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\00000008","0.0000042","Desired Access: Read","8076"
"10:46:28.6021479 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\spool\drivers\color\D65.camp","0.0000281","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.6021914 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\spool\drivers\color\D65.camp","0.0000047","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 8:09:14 PM, FileAttributes: A","8004"
"10:46:28.6022080 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\spool\drivers\color\D65.camp","0.0000077","","8004"
"10:46:28.6022349 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Next_Catalog_Entry_ID","0.0000043","Type: REG_DWORD, Length: 4, Data: 1015","8076"
"10:46:28.6022618 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000017","","8004"
"10:46:28.6022626 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Num_Catalog_Entries64","0.0000043","Type: REG_DWORD, Length: 4, Data: 14","8076"
"10:46:28.6022814 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.6022823 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6022955 AM","firefox.exe","7904","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000055","Desired Access: Read","8004"
"10:46:28.6022976 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000069","Desired Access: Maximum Allowed, Granted Access: Read","8076"
"10:46:28.6023164 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.6023190 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6023283 AM","firefox.exe","7904","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000073","Desired Access: Read","8004"
"10:46:28.6023330 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000056","Desired Access: Read","8076"
"10:46:28.6023480 AM","firefox.exe","7904","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000013","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","8004"
"10:46:28.6023527 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.6023582 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\rip","0.0000030","Length: 12","8004"
"10:46:28.6023676 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001\PackedCatalogItem","0.0000068","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6023702 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\rip","0.0000111","Type: REG_SZ, Length: 22, Data: Photo.gmmp","8004"
"10:46:28.6023855 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000001","0.0000013","","8076"
"10:46:28.6023953 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6024047 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000030","Desired Access: Read","8076"
"10:46:28.6024167 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000021","Length: 144","8076"
"10:46:28.6024256 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002\PackedCatalogItem","0.0000069","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6024444 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000002","0.0000013","","8076"
"10:46:28.6024563 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000026","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6024713 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000042","Desired Access: Read","8076"
"10:46:28.6024879 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.6025058 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003\PackedCatalogItem","0.0000052","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6025306 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000003","0.0000021","","8076"
"10:46:28.6025477 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000021","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6025673 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000068","Desired Access: Read","8076"
"10:46:28.6025907 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000039","Length: 144","8076"
"10:46:28.6026065 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004\PackedCatalogItem","0.0000052","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6026283 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000004","0.0000017","","8076"
"10:46:28.6026419 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\spool\drivers\color\Photo.gmmp","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.6026432 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6026590 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000051","Desired Access: Read","8076"
"10:46:28.6026744 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\spool\drivers\color\Photo.gmmp","0.0000102","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 8:09:14 PM, FileAttributes: A","8004"
"10:46:28.6026786 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000043","Length: 144","8076"
"10:46:28.6026953 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6027013 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\spool\drivers\color\Photo.gmmp","0.0000076","","8004"
"10:46:28.6027158 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000005","0.0000017","","8076"
"10:46:28.6027303 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6027452 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000094","Desired Access: Read","8076"
"10:46:28.6027499 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000026","","8004"
"10:46:28.6027717 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000051","Length: 144","8076"
"10:46:28.6027734 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0000055","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.6027909 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6027977 AM","firefox.exe","7904","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000064","Desired Access: Read","8004"
"10:46:28.6028113 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000006","0.0000017","","8076"
"10:46:28.6028305 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6028352 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.6028472 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000047","Desired Access: Read","8076"
"10:46:28.6028544 AM","firefox.exe","7904","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000094","Desired Access: Read","8004"
"10:46:28.6028651 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.6028792 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007\PackedCatalogItem","0.0000111","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6028805 AM","firefox.exe","7904","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000115","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","8004"
"10:46:28.6029061 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000007","0.0000012","","8076"
"10:46:28.6029078 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\rip","0.0000034","Length: 12","8004"
"10:46:28.6029206 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6029240 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles\rip","0.0000038","Type: REG_SZ, Length: 22, Data: Photo.gmmp","8004"
"10:46:28.6029342 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000047","Desired Access: Read","8076"
"10:46:28.6029526 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000029","Length: 144","8076"
"10:46:28.6029662 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6029867 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000008","0.0000017","","8076"
"10:46:28.6030016 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6030170 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000047","Desired Access: Read","8076"
"10:46:28.6030353 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.6030498 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009\PackedCatalogItem","0.0000039","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6030686 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000009","0.0000017","","8076"
"10:46:28.6030835 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000018","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6030981 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000046","Desired Access: Read","8076"
"10:46:28.6031164 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.6031305 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010\PackedCatalogItem","0.0000042","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6031497 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000010","0.0000021","","8076"
"10:46:28.6031650 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6031813 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000076","Desired Access: Read","8076"
"10:46:28.6032043 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000030","Length: 144","8076"
"10:46:28.6032051 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\spool\drivers\color\Photo.gmmp","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.6032184 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6032371 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000011","0.0000064","","8076"
"10:46:28.6032393 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\spool\drivers\color\Photo.gmmp","0.0000047","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 8:09:14 PM, FileAttributes: A","8004"
"10:46:28.6032517 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\spool\drivers\color\Photo.gmmp","0.0000055","","8004"
"10:46:28.6032598 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000012","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6032747 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000047","Desired Access: Read","8076"
"10:46:28.6032866 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ICM\RegisteredProfiles","0.0000009","","8004"
"10:46:28.6032990 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000039","Length: 144","8076"
"10:46:28.6033144 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6033331 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000012","0.0000013","","8076"
"10:46:28.6033485 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000013","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6033664 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000077","Desired Access: Read","8076"
"10:46:28.6033895 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000034","Length: 144","8076"
"10:46:28.6034044 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013\PackedCatalogItem","0.0000038","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6034249 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000013","0.0000021","","8076"
"10:46:28.6034402 AM","firefox.exe","7904","RegQueryKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000017","Query: HandleTags, HandleTags: 0x0","8076"
"10:46:28.6034560 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000090","Desired Access: Read","8076"
"10:46:28.6034594 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000286","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.6034752 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000022","Length: 144","8076"
"10:46:28.6034842 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014\PackedCatalogItem","0.0000030","Type: REG_BINARY, Length: 888, Data: 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73","8076"
"10:46:28.6034961 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64\000000000014","0.0000009","","8076"
"10:46:28.6035051 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries64","0.0000008","","8076"
"10:46:28.6035158 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000047","AllocationSize: 4,096, EndOfFile: 3,144, NumberOfLinks: 2, DeletePending: False, Directory: False","8004"
"10:46:28.6035239 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9","0.0000017","","8076"
"10:46:28.6035375 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Services\WinSock2\Parameters","0.0000017","","8076"
"10:46:28.6035503 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000056","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.6035729 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000039","AllocationSize: 4,096, EndOfFile: 3,144, NumberOfLinks: 2, DeletePending: False, Directory: False","8004"
"10:46:28.6036041 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000025","SyncType: SyncTypeOther","8004"
"10:46:28.6036796 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000085","","8004"
"10:46:28.6039074 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000205","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.6039650 AM","firefox.exe","7904","ReadFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000141","Offset: 0, Length: 3,144, Priority: Normal","8004"
"10:46:28.6040005 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm","0.0000064","","8004"
"10:46:28.6048418 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 5968","8004"
"10:46:28.6050855 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 936","8004"
"10:46:28.6064248 AM","firefox.exe","7904","QueryInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0000089","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","8004"
"10:46:28.6064623 AM","firefox.exe","7904","QueryAllInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0000133","CreationTime: 3/26/2020 10:35:21 AM, LastAccessTime: 3/26/2020 10:35:21 AM, LastWriteTime: 3/26/2020 10:35:21 AM, ChangeTime: 3/26/2020 10:46:21 AM, FileAttributes: A, AllocationSize: 667,648, EndOfFile: 667,473, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x58000000014bf7, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","8004"
"10:46:28.6065071 AM","firefox.exe","7904","CreateFileMapping","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.6065259 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0000030","AllocationSize: 667,648, EndOfFile: 667,473, NumberOfLinks: 1, DeletePending: False, Directory: False","8004"
"10:46:28.6065754 AM","firefox.exe","7904","CreateFileMapping","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0000043","SyncType: SyncTypeOther","8004"
"10:46:28.6085624 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000409","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.6086242 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000060","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: A","8004"
"10:46:28.6086443 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000102","","8004"
"10:46:28.6087190 AM","firefox.exe","7904","CreateFile","C:\","0.0000179","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.6087706 AM","firefox.exe","7904","QueryDirectory","C:\Program Files","0.0000179","Filter: Program Files, 1: Program Files","8004"
"10:46:28.6088098 AM","firefox.exe","7904","CloseFile","C:\","0.0000064","","8004"
"10:46:28.6089357 AM","firefox.exe","7904","CreateFile","C:\Program Files","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.6089664 AM","firefox.exe","7904","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000120","Filter: Firefox Nightly, 1: Firefox Nightly","8004"
"10:46:28.6089920 AM","firefox.exe","7904","CloseFile","C:\Program Files","0.0000043","","8004"
"10:46:28.6129963 AM","firefox.exe","7904","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0507346","Offset: 557,056, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7256"
"10:46:28.6166738 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.6167036 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0000043","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:30 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: A","8004"
"10:46:28.6167156 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0000055","","8004"
"10:46:28.6167843 AM","firefox.exe","7904","CreateFile","C:\","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.6168278 AM","firefox.exe","7904","QueryDirectory","C:\Program Files","0.0000200","Filter: Program Files, 1: Program Files","8004"
"10:46:28.6168722 AM","firefox.exe","7904","CloseFile","C:\","0.0000064","","8004"
"10:46:28.6170304 AM","firefox.exe","7904","CreateFile","C:\Program Files","0.0000175","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.6170718 AM","firefox.exe","7904","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000167","Filter: Firefox Nightly, 1: Firefox Nightly","8004"
"10:46:28.6171090 AM","firefox.exe","7904","CloseFile","C:\Program Files","0.0000064","","8004"
"10:46:28.6172284 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\browser\features","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.6172579 AM","firefox.exe","7904","QueryDirectory","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0000106","Filter: webcompat@mozilla.org.xpi, 1: webcompat@mozilla.org.xpi","8004"
"10:46:28.6172822 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\browser\features","0.0000051","","8004"
"10:46:28.6174298 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0000196","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, Impersonating: LAPTOP-49TAGD3F\diggles, OpenResult: Opened","8004"
"10:46:28.6174772 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0000051","AllocationSize: 110,592, EndOfFile: 110,579, NumberOfLinks: 1, DeletePending: False, Directory: False","8004"
"10:46:28.6175087 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.6175305 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0000034","AllocationSize: 110,592, EndOfFile: 110,579, NumberOfLinks: 1, DeletePending: False, Directory: False","8004"
"10:46:28.6175702 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0000030","SyncType: SyncTypeOther","8004"
"10:46:28.6176389 AM","firefox.exe","7904","ReadFile","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0891005","Offset: 77,824, Length: 32,755, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8004"
"10:46:28.6226603 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\allow-flashallow-digest256.vlpset","0.0000051","CreationTime: 3/26/2020 10:25:34 AM, LastAccessTime: 3/26/2020 10:25:34 AM, LastWriteTime: 3/26/2020 10:25:34 AM, ChangeTime: 3/26/2020 10:25:34 AM, FileAttributes: A","7900"
"10:46:28.6226898 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\allow-flashallow-digest256.vlpset","0.0000085","","7900"
"10:46:28.6230358 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json","0.0000277","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","120"
"10:46:28.6230776 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json","0.0000038","Attributes: A, ReparseTag: 0x0","120"
"10:46:28.6230930 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json","0.0000089","Delete: True","120"
"10:46:28.6231117 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json","0.0000640","","120"
"10:46:28.6233677 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json.tmp","0.0000252","Desired Access: Read Attributes, Delete, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","120"
"10:46:28.6234070 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json.tmp","0.0000038","Attributes: A, ReparseTag: 0x0","120"
"10:46:28.6234249 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json.tmp","0.0000026","CreationTime: 3/26/2020 10:46:26 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, FileAttributes: A","120"
"10:46:28.6235222 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000141","Desired Access: Write Data/Add File, Synchronize, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","120"
"10:46:28.6240018 AM","firefox.exe","7384","SetRenameInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json.tmp","0.0001954","ReplaceIfExists: False, FileName: C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json","120"
"10:46:28.6242138 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0001417","","120"
"10:46:28.6244139 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json","0.0000278","","120"
"10:46:28.6244869 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionCheckpoints.json","0.0006314","","120"
"10:46:28.6459534 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json","0.0000068","CreationTime: 6/19/2019 5:34:16 PM, LastAccessTime: 3/26/2020 10:35:09 AM, LastWriteTime: 3/26/2020 10:35:09 AM, ChangeTime: 3/26/2020 10:35:09 AM, FileAttributes: A","5728"
"10:46:28.6459802 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json","0.0000116","","5728"
"10:46:28.6461646 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\analytics-track-digest256.sbstore","0.0011106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.6462840 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json","0.0000239","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7572"
"10:46:28.6463412 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json","0.0405876","Offset: 0, Length: 32,768, Priority: Normal","7572"
"10:46:28.6463950 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json","0.0404399","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7572"
"10:46:28.6465072 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8844"
"10:46:28.6465665 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json","0.0000055","CreationTime: 6/19/2019 5:34:16 PM, LastAccessTime: 3/26/2020 10:35:09 AM, LastWriteTime: 3/26/2020 10:35:09 AM, ChangeTime: 3/26/2020 10:35:09 AM, AllocationSize: 122880, EndOfFile: 122197, FileAttributes: A","8844"
"10:46:28.6465895 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json","0.0403145","","8844"
"10:46:28.6473183 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\analytics-track-digest256.sbstore","0.0000106","CreationTime: 3/26/2020 10:25:33 AM, LastAccessTime: 3/26/2020 10:25:33 AM, LastWriteTime: 3/26/2020 10:25:33 AM, ChangeTime: 3/26/2020 10:25:33 AM, FileAttributes: A","7900"
"10:46:28.6473528 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\analytics-track-digest256.sbstore","0.0000137","","7900"
"10:46:28.6478734 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\analytics-track-digest256.vlpset","0.0282044","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.6579056 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 8244","7276"
"10:46:28.6591032 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000926","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8244"
"10:46:28.6592308 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000124","CreationTime: 6/19/2019 4:53:51 PM, LastAccessTime: 6/19/2019 4:53:51 PM, LastWriteTime: 3/26/2020 10:35:41 AM, ChangeTime: 3/26/2020 10:35:41 AM, AllocationSize: 81920, EndOfFile: 81920, FileAttributes: A","8244"
"10:46:28.6592658 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000107","","8244"
"10:46:28.6596187 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000674","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8244"
"10:46:28.6597044 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000047","CreationTime: 6/19/2019 4:53:51 PM, LastAccessTime: 6/19/2019 4:53:51 PM, LastWriteTime: 3/26/2020 10:35:41 AM, ChangeTime: 3/26/2020 10:35:41 AM, FileAttributes: A","8244"
"10:46:28.6597287 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000133","","8244"
"10:46:28.6600419 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions.json","0.0000644","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5244"
"10:46:28.6601354 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions.json","0.0000042","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","5244"
"10:46:28.6601575 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions.json","0.0000064","CreationTime: 6/19/2019 4:53:37 PM, LastAccessTime: 3/25/2020 10:34:02 AM, LastWriteTime: 3/25/2020 10:34:02 AM, ChangeTime: 3/25/2020 10:34:02 AM, FileAttributes: A, AllocationSize: 45,056, EndOfFile: 42,392, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0xb00000002dabf, EaSize: 0, Access: Generic Read, Position: 0, Mode: Sequential Access, Synchronous IO Non-Alert, AlignmentRequirement: Word","5244"
"10:46:28.6601784 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8244"
"10:46:28.6602207 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000043","CreationTime: 6/19/2019 4:53:51 PM, LastAccessTime: 6/19/2019 4:53:51 PM, LastWriteTime: 3/26/2020 10:35:41 AM, ChangeTime: 3/26/2020 10:35:41 AM, AllocationSize: 81920, EndOfFile: 81920, FileAttributes: A","8244"
"10:46:28.6602309 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions.json","0.0579231","Offset: 0, Length: 42,392, Priority: Normal","5244"
"10:46:28.6602407 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000069","","8244"
"10:46:28.6602838 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions.json","0.0578079","Offset: 0, Length: 42,392, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5244"
"10:46:28.6604340 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000342","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","8244"
"10:46:28.6605202 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000230","Offset: 0, Length: 100, Priority: Normal","8244"
"10:46:28.6607045 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000056","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8244"
"10:46:28.6607280 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8244"
"10:46:28.6607579 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000025","Offset: 1,073,741,824, Length: 1","8244"
"10:46:28.6611363 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-journal","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8244"
"10:46:28.6614968 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8244"
"10:46:28.6615681 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000064","AllocationSize: 81,920, EndOfFile: 81,920, NumberOfLinks: 1, DeletePending: False, Directory: False","8244"
"10:46:28.6616074 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000085","Offset: 0, Length: 4,096","8244"
"10:46:28.6649029 AM","firefox.exe","7904","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-current.bin","0.0255868","Offset: 589,824, Length: 45,056, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7256"
"10:46:28.6651359 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000375","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8244"
"10:46:28.6654081 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0004561","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","8244"
"10:46:28.6663762 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8244"
"10:46:28.6665951 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0001685","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","8244"
"10:46:28.6668050 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000077","Exclusive: True, Offset: 128, Length: 1, Fail Immediately: True","8244"
"10:46:28.6668426 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000409","EndOfFile: 0","8244"
"10:46:28.6669078 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000291","AllocationSize: 0","8244"
"10:46:28.6669607 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000035","Offset: 128, Length: 1","8244"
"10:46:28.6669953 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000034","Exclusive: False, Offset: 128, Length: 1, Fail Immediately: True","8244"
"10:46:28.6670183 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000052","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","8244"
"10:46:28.6670418 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000354","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","8244"
"10:46:28.6671088 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000064","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","8244"
"10:46:28.6671391 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000862","EndOfFile: 32,768","8244"
"10:46:28.6672462 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000256","AllocationSize: 32,768","8244"
"10:46:28.6673115 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8244"
"10:46:28.6715624 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000106","AllocationSize: 32,768, EndOfFile: 32,768, NumberOfLinks: 1, DeletePending: False, Directory: False","8244"
"10:46:28.6716468 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000056","SyncType: SyncTypeOther","8244"
"10:46:28.6717505 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000184","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8244"
"10:46:28.6718073 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000051","Exclusive: True, Offset: 121, Length: 2, Fail Immediately: True","8244"
"10:46:28.6718282 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000021","Exclusive: True, Offset: 124, Length: 4, Fail Immediately: True","8244"
"10:46:28.6718508 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000051","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","8244"
"10:46:28.6718836 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000030","Offset: 121, Length: 2","8244"
"10:46:28.6719033 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000055","Offset: 124, Length: 4","8244"
"10:46:28.6719229 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000017","Offset: 120, Length: 1","8244"
"10:46:28.6719400 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000025","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","8244"
"10:46:28.6719626 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000038","AllocationSize: 81,920, EndOfFile: 81,920, NumberOfLinks: 1, DeletePending: False, Directory: False","8244"
"10:46:28.6719890 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000120","Offset: 0, Length: 4,096","8244"
"10:46:28.6723999 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000060","Offset: 123, Length: 1","8244"
"10:46:28.6730885 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000478","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8244"
"10:46:28.6731624 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000064","CreationTime: 6/19/2019 4:53:51 PM, LastAccessTime: 6/19/2019 4:53:51 PM, LastWriteTime: 3/26/2020 10:35:41 AM, ChangeTime: 3/26/2020 10:35:41 AM, AllocationSize: 81920, EndOfFile: 81920, FileAttributes: A","8244"
"10:46:28.6731888 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000107","","8244"
"10:46:28.6735651 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8244"
"10:46:28.6736099 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000444","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","8244"
"10:46:28.6736778 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000098","","8244"
"10:46:28.6742307 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000299","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","8244"
"10:46:28.6742879 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000051","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,838, SectorsPerAllocationUnit: 8, BytesPerSector: 512","8244"
"10:46:28.6743127 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000076","","8244"
"10:46:28.6744428 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000055","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","8244"
"10:46:28.6744718 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000060","AllocationSize: 81,920, EndOfFile: 81,920, NumberOfLinks: 1, DeletePending: False, Directory: False","8244"
"10:46:28.6745000 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000034","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","8244"
"10:46:28.6746139 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000115","Offset: 20,480, Length: 4,096","8244"
"10:46:28.6746638 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000055","Offset: 49,152, Length: 4,096","8244"
"10:46:28.6746885 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000047","Offset: 53,248, Length: 4,096","8244"
"10:46:28.6747086 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000038","Offset: 57,344, Length: 4,096","8244"
"10:46:28.6747786 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000047","Offset: 61,440, Length: 4,096","8244"
"10:46:28.6748050 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000043","Offset: 65,536, Length: 4,096","8244"
"10:46:28.6748289 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000034","Offset: 69,632, Length: 4,096","8244"
"10:46:28.6748554 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000042","Offset: 73,728, Length: 4,096","8244"
"10:46:28.6748797 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000038","Offset: 77,824, Length: 4,096","8244"
"10:46:28.6749207 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000059","Offset: 45,056, Length: 4,096","8244"
"10:46:28.6761068 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\analytics-track-digest256.vlpset","0.0000072","CreationTime: 3/26/2020 10:25:33 AM, LastAccessTime: 3/26/2020 10:25:33 AM, LastWriteTime: 3/26/2020 10:25:33 AM, ChangeTime: 3/26/2020 10:25:33 AM, FileAttributes: A","7900"
"10:46:28.6761341 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\analytics-track-digest256.vlpset","0.0000115","","7900"
"10:46:28.6765454 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\base-cryptomining-track-digest256.sbstore","0.0012894","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.6773027 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000064","Offset: 120, Length: 1","8244"
"10:46:28.6773313 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000022","Offset: 123, Length: 1","8244"
"10:46:28.6773872 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000034","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","8244"
"10:46:28.6774094 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000055","AllocationSize: 81,920, EndOfFile: 81,920, NumberOfLinks: 1, DeletePending: False, Directory: False","8244"
"10:46:28.6774307 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000026","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","8244"
"10:46:28.6778595 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\base-cryptomining-track-digest256.sbstore","0.0000056","CreationTime: 3/26/2020 10:25:36 AM, LastAccessTime: 3/26/2020 10:25:36 AM, LastWriteTime: 3/26/2020 10:25:36 AM, ChangeTime: 3/26/2020 10:25:36 AM, FileAttributes: A","7900"
"10:46:28.6778804 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\base-cryptomining-track-digest256.sbstore","0.0000124","","7900"
"10:46:28.6783024 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\base-cryptomining-track-digest256.vlpset","0.0005935","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.6789296 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\base-cryptomining-track-digest256.vlpset","0.0000073","CreationTime: 3/26/2020 10:25:37 AM, LastAccessTime: 3/26/2020 10:25:37 AM, LastWriteTime: 3/26/2020 10:25:37 AM, ChangeTime: 3/26/2020 10:25:37 AM, FileAttributes: A","7900"
"10:46:28.6789578 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\base-cryptomining-track-digest256.vlpset","0.0000136","","7900"
"10:46:28.6793879 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\base-fingerprinting-track-digest256.sbstore","0.0005632","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.6795824 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.9207560","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:28.6799519 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0876328","Offset: 18,763,776, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8936"
"10:46:28.6799728 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\base-fingerprinting-track-digest256.sbstore","0.0000073","CreationTime: 3/26/2020 10:25:36 AM, LastAccessTime: 3/26/2020 10:25:36 AM, LastWriteTime: 3/26/2020 10:25:36 AM, ChangeTime: 3/26/2020 10:25:36 AM, FileAttributes: A","7900"
"10:46:28.6799946 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\base-fingerprinting-track-digest256.sbstore","0.0000094","","7900"
"10:46:28.6804643 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\base-fingerprinting-track-digest256.vlpset","0.0008841","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.6813770 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\base-fingerprinting-track-digest256.vlpset","0.0000077","CreationTime: 3/26/2020 10:25:36 AM, LastAccessTime: 3/26/2020 10:25:36 AM, LastWriteTime: 3/26/2020 10:25:36 AM, ChangeTime: 3/26/2020 10:25:36 AM, FileAttributes: A","7900"
"10:46:28.6814034 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\base-fingerprinting-track-digest256.vlpset","0.0000116","","7900"
"10:46:28.6818322 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flash-digest256.sbstore","0.0006277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.6820375 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000051","Offset: 120, Length: 1","8244"
"10:46:28.6820618 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000025","Offset: 123, Length: 1","8244"
"10:46:28.6821224 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000038","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","8244"
"10:46:28.6821471 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000064","AllocationSize: 81,920, EndOfFile: 81,920, NumberOfLinks: 1, DeletePending: False, Directory: False","8244"
"10:46:28.6821710 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000043","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","8244"
"10:46:28.6824897 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flash-digest256.sbstore","0.0000069","CreationTime: 3/26/2020 10:25:35 AM, LastAccessTime: 3/26/2020 10:25:35 AM, LastWriteTime: 3/26/2020 10:25:35 AM, ChangeTime: 3/26/2020 10:25:35 AM, FileAttributes: A","7900"
"10:46:28.6825170 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flash-digest256.sbstore","0.0000141","","7900"
"10:46:28.6829761 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flash-digest256.vlpset","0.0004566","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.6832513 AM","firefox.exe","7336","CreateFile","C:\Windows\Fonts\segoeui.ttf","0.0000261","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:28.6833089 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\Fonts\segoeui.ttf","0.0000073","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:13 PM, FileAttributes: A","7392"
"10:46:28.6833286 AM","firefox.exe","7336","CloseFile","C:\Windows\Fonts\segoeui.ttf","0.0000081","","7392"
"10:46:28.6834702 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flash-digest256.vlpset","0.0000060","CreationTime: 3/26/2020 10:25:35 AM, LastAccessTime: 3/26/2020 10:25:35 AM, LastWriteTime: 3/26/2020 10:25:35 AM, ChangeTime: 3/26/2020 10:25:35 AM, FileAttributes: A","7900"
"10:46:28.6834941 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flash-digest256.vlpset","0.0000094","","7900"
"10:46:28.6839370 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flashsubdoc-digest256.sbstore","0.0004271","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.6843914 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flashsubdoc-digest256.sbstore","0.0000064","CreationTime: 3/26/2020 10:25:35 AM, LastAccessTime: 3/26/2020 10:25:35 AM, LastWriteTime: 3/26/2020 10:25:35 AM, ChangeTime: 3/26/2020 10:25:35 AM, FileAttributes: A","7900"
"10:46:28.6844157 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flashsubdoc-digest256.sbstore","0.0000120","","7900"
"10:46:28.6848112 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flashsubdoc-digest256.vlpset","0.0004101","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.6852545 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flashsubdoc-digest256.vlpset","0.0000069","CreationTime: 3/26/2020 10:25:35 AM, LastAccessTime: 3/26/2020 10:25:35 AM, LastWriteTime: 3/26/2020 10:25:35 AM, ChangeTime: 3/26/2020 10:25:35 AM, FileAttributes: A","7900"
"10:46:28.6852835 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flashsubdoc-digest256.vlpset","0.0000133","","7900"
"10:46:28.6856885 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\content-track-digest256.sbstore","0.0004224","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.6861062 AM","firefox.exe","1008","ReadFile","C:\Windows\System32\DWrite.dll","0.0466701","Offset: 2,900,992, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7796"
"10:46:28.6861399 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\content-track-digest256.sbstore","0.0000081","CreationTime: 3/26/2020 10:25:33 AM, LastAccessTime: 3/26/2020 10:25:33 AM, LastWriteTime: 3/26/2020 10:25:33 AM, ChangeTime: 3/26/2020 10:25:33 AM, FileAttributes: A","7900"
"10:46:28.6861655 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\content-track-digest256.sbstore","0.0000115","","7900"
"10:46:28.6866160 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\content-track-digest256.vlpset","0.0258684","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.6869800 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json","0.0994971","Offset: 32,768, Length: 32,768","7572"
"10:46:28.6961350 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000111","Offset: 120, Length: 1","8244"
"10:46:28.6961721 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000026","Offset: 123, Length: 1","8244"
"10:46:28.6962519 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000038","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","8244"
"10:46:28.6962796 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000085","AllocationSize: 81,920, EndOfFile: 81,920, NumberOfLinks: 1, DeletePending: False, Directory: False","8244"
"10:46:28.6963078 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000030","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","8244"
"10:46:28.6972097 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000086","Offset: 120, Length: 1","8244"
"10:46:28.6972499 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000029","Offset: 123, Length: 1","8244"
"10:46:28.6973207 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000042","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","8244"
"10:46:28.6973599 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000073","AllocationSize: 81,920, EndOfFile: 81,920, NumberOfLinks: 1, DeletePending: False, Directory: False","8244"
"10:46:28.6973864 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000030","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","8244"
"10:46:28.6983118 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000077","Offset: 120, Length: 1","8244"
"10:46:28.6983447 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000051","Offset: 123, Length: 1","8244"
"10:46:28.6984356 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000042","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","8244"
"10:46:28.6984624 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000073","AllocationSize: 81,920, EndOfFile: 81,920, NumberOfLinks: 1, DeletePending: False, Directory: False","8244"
"10:46:28.6984872 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000025","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","8244"
"10:46:28.6997023 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000052","Offset: 120, Length: 1","8244"
"10:46:28.6997288 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000026","Offset: 123, Length: 1","8244"
"10:46:28.6998026 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000034","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","8244"
"10:46:28.6998286 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000056","AllocationSize: 81,920, EndOfFile: 81,920, NumberOfLinks: 1, DeletePending: False, Directory: False","8244"
"10:46:28.6998534 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000025","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","8244"
"10:46:28.7006704 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000086","Offset: 120, Length: 1","8244"
"10:46:28.7007007 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000026","Offset: 123, Length: 1","8244"
"10:46:28.7007545 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000030","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","8244"
"10:46:28.7007780 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000072","AllocationSize: 81,920, EndOfFile: 81,920, NumberOfLinks: 1, DeletePending: False, Directory: False","8244"
"10:46:28.7008023 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000025","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","8244"
"10:46:28.7021100 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000098","Offset: 120, Length: 1","8244"
"10:46:28.7021578 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000030","Offset: 123, Length: 1","8244"
"10:46:28.7022239 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000039","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","8244"
"10:46:28.7022508 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000081","AllocationSize: 81,920, EndOfFile: 81,920, NumberOfLinks: 1, DeletePending: False, Directory: False","8244"
"10:46:28.7023029 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000030","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","8244"
"10:46:28.7068230 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0000200","","8004"
"10:46:28.7085796 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000085","Offset: 120, Length: 1","8244"
"10:46:28.7086124 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000026","Offset: 123, Length: 1","8244"
"10:46:28.7125757 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\content-track-digest256.vlpset","0.0000094","CreationTime: 3/26/2020 10:25:33 AM, LastAccessTime: 3/26/2020 10:25:33 AM, LastWriteTime: 3/26/2020 10:25:33 AM, ChangeTime: 3/26/2020 10:25:33 AM, FileAttributes: A","7900"
"10:46:28.7126060 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\content-track-digest256.vlpset","0.0000150","","7900"
"10:46:28.7131441 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flash-digest256.sbstore","0.0007014","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.7138869 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flash-digest256.sbstore","0.0000077","CreationTime: 3/26/2020 10:25:35 AM, LastAccessTime: 3/26/2020 10:25:35 AM, LastWriteTime: 3/26/2020 10:25:35 AM, ChangeTime: 3/26/2020 10:25:35 AM, FileAttributes: A","7900"
"10:46:28.7149062 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flash-digest256.sbstore","0.0000081","","7900"
"10:46:28.7153137 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flash-digest256.vlpset","0.0004420","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.7157843 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flash-digest256.vlpset","0.0000068","CreationTime: 3/26/2020 10:25:35 AM, LastAccessTime: 3/26/2020 10:25:35 AM, LastWriteTime: 3/26/2020 10:25:35 AM, ChangeTime: 3/26/2020 10:25:35 AM, FileAttributes: A","7900"
"10:46:28.7158086 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flash-digest256.vlpset","0.0000119","","7900"
"10:46:28.7162899 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flashallow-digest256.sbstore","0.0004872","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.7168207 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flashallow-digest256.sbstore","0.0000068","CreationTime: 3/26/2020 10:25:34 AM, LastAccessTime: 3/26/2020 10:25:34 AM, LastWriteTime: 3/26/2020 10:25:34 AM, ChangeTime: 3/26/2020 10:25:34 AM, FileAttributes: A","7900"
"10:46:28.7168467 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flashallow-digest256.sbstore","0.0000136","","7900"
"10:46:28.7172029 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\Tablet PC\","0.0000214","Desired Access: Read","5728"
"10:46:28.7172529 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\Tablet PC\IsTabletPC","0.0000051","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:28.7172793 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\Tablet PC","0.0000022","","5728"
"10:46:28.7173642 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flashallow-digest256.vlpset","0.0011115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.7175810 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 7864","8004"
"10:46:28.7182022 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\extensions.json","0.0000188","","5244"
"10:46:28.7185051 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flashallow-digest256.vlpset","0.0000073","CreationTime: 3/26/2020 10:25:34 AM, LastAccessTime: 3/26/2020 10:25:34 AM, LastWriteTime: 3/26/2020 10:25:34 AM, ChangeTime: 3/26/2020 10:25:34 AM, FileAttributes: A","7900"
"10:46:28.7185316 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flashallow-digest256.vlpset","0.0000098","","7900"
"10:46:28.7190291 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flashsubdoc-digest256.sbstore","0.0000682","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.7191170 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flashsubdoc-digest256.sbstore","0.0000055","CreationTime: 3/26/2020 10:25:36 AM, LastAccessTime: 3/26/2020 10:25:36 AM, LastWriteTime: 3/26/2020 10:25:36 AM, ChangeTime: 3/26/2020 10:25:36 AM, FileAttributes: A","7900"
"10:46:28.7191362 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flashsubdoc-digest256.sbstore","0.0000081","","7900"
"10:46:28.7195419 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flashsubdoc-digest256.vlpset","0.0000581","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.7196298 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flashsubdoc-digest256.vlpset","0.0000056","CreationTime: 3/26/2020 10:25:36 AM, LastAccessTime: 3/26/2020 10:25:36 AM, LastWriteTime: 3/26/2020 10:25:36 AM, ChangeTime: 3/26/2020 10:25:36 AM, FileAttributes: A","7900"
"10:46:28.7196486 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flashsubdoc-digest256.vlpset","0.0000081","","7900"
"10:46:28.7199844 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.sbstore","0.0192184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.7208091 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\bookmarkbackups","0.0006225","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","4904"
"10:46:28.7213941 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000073","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8500"
"10:46:28.7214227 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000034","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8500"
"10:46:28.7214457 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000034","Offset: 1,073,741,824, Length: 1","8500"
"10:46:28.7218481 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite-journal","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8500"
"10:46:28.7219091 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000107","Offset: 24, Length: 16","8500"
"10:46:28.7222227 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shield-preference-experiments.json","0.0137289","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8844"
"10:46:28.7228354 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 7220","8004"
"10:46:28.7230440 AM","firefox.exe","7904","RegCloseKey","HKLM","0.0000030","","8004"
"10:46:28.7230722 AM","firefox.exe","7904","RegOpenKey","HKLM","0.0000089","Desired Access: Maximum Allowed, Granted Access: Read","8004"
"10:46:28.7230969 AM","firefox.exe","7904","RegCloseKey","HKLM","0.0000013","","8004"
"10:46:28.7231114 AM","firefox.exe","7904","RegCloseKey","HKU","0.0000017","","8004"
"10:46:28.7231584 AM","firefox.exe","7904","RegOpenKey","HKU","0.0000085","Desired Access: Maximum Allowed, Granted Access: Read","8004"
"10:46:28.7231921 AM","firefox.exe","7904","RegCloseKey","HKU","0.0000021","","8004"
"10:46:28.7232228 AM","firefox.exe","7904","RegCloseKey","HKCU","0.0000021","","8004"
"10:46:28.7237224 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 7228","8004"
"10:46:28.7239281 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 7212","8004"
"10:46:28.7248002 AM","firefox.exe","7904","RegOpenKey","HKLM","0.0000124","Desired Access: Maximum Allowed, Granted Access: Read","8004"
"10:46:28.7248889 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7249141 AM","firefox.exe","7904","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Parental Controls\Users\S-1-5-21-429253301-29906273-2566354956-1001\Web","0.0000192","Desired Access: Read","8004"
"10:46:28.7254786 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\Windows\Tablet PC\","0.0000136","Desired Access: Read","8004"
"10:46:28.7255131 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\Tablet PC\IsTabletPC","0.0000056","Type: REG_DWORD, Length: 4, Data: 0","8004"
"10:46:28.7255358 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\Tablet PC","0.0000012","","8004"
"10:46:28.7256373 AM","firefox.exe","7904","RegOpenKey","HKCU","0.0000102","Desired Access: Maximum Allowed, Granted Access: Read","8004"
"10:46:28.7256655 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7256838 AM","firefox.exe","7904","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows\DWM","0.0000073","Desired Access: Query Value","8004"
"10:46:28.7257077 AM","firefox.exe","7904","RegCloseKey","HKCU","0.0000017","","8004"
"10:46:28.7257252 AM","firefox.exe","7904","RegQueryValue","HKCU\Software\Microsoft\Windows\DWM\AccentColor","0.0000043","Type: REG_DWORD, Length: 4, Data: 4292311040","8004"
"10:46:28.7257453 AM","firefox.exe","7904","RegCloseKey","HKCU\Software\Microsoft\Windows\DWM","0.0000012","","8004"
"10:46:28.7257866 AM","firefox.exe","7904","RegOpenKey","HKCU","0.0000094","Desired Access: Maximum Allowed, Granted Access: Read","8004"
"10:46:28.7258157 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7258314 AM","firefox.exe","7904","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows\DWM","0.0000056","Desired Access: Query Value","8004"
"10:46:28.7258515 AM","firefox.exe","7904","RegCloseKey","HKCU","0.0000013","","8004"
"10:46:28.7258660 AM","firefox.exe","7904","RegQueryValue","HKCU\Software\Microsoft\Windows\DWM\AccentColor","0.0000038","Type: REG_DWORD, Length: 4, Data: 4292311040","8004"
"10:46:28.7258839 AM","firefox.exe","7904","RegCloseKey","HKCU\Software\Microsoft\Windows\DWM","0.0000013","","8004"
"10:46:28.7263626 AM","firefox.exe","7904","RegOpenKey","HKCU","0.0000094","Desired Access: Maximum Allowed, Granted Access: Read","8004"
"10:46:28.7264002 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0000021","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7264185 AM","firefox.exe","7904","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Themes\Personalize","0.0000086","Desired Access: Query Value","8004"
"10:46:28.7264475 AM","firefox.exe","7904","RegCloseKey","HKCU","0.0000018","","8004"
"10:46:28.7264633 AM","firefox.exe","7904","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Themes\Personalize\AppsUseLightTheme","0.0000039","Length: 16","8004"
"10:46:28.7264821 AM","firefox.exe","7904","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Themes\Personalize","0.0000017","","8004"
"10:46:28.7307885 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\Windows\Tablet PC\","0.0000170","Desired Access: Read","8004"
"10:46:28.7308350 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\Tablet PC\IsTabletPC","0.0000064","Type: REG_DWORD, Length: 4, Data: 0","8004"
"10:46:28.7308661 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\Tablet PC","0.0000021","","8004"
"10:46:28.7328164 AM","firefox.exe","1008","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-S-1-5-21-429253301-29906273-2566354956-1001.dat","0.0478311","Offset: 225,280, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7796"
"10:46:28.7330805 AM","firefox.exe","7904","RegOpenKey","HKCU","0.0000162","Desired Access: Maximum Allowed, Granted Access: Read","8004"
"10:46:28.7331245 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0000025","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7331484 AM","firefox.exe","7904","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows\DWM","0.0000085","Desired Access: Query Value","8004"
"10:46:28.7331791 AM","firefox.exe","7904","RegCloseKey","HKCU","0.0000025","","8004"
"10:46:28.7332004 AM","firefox.exe","7904","RegQueryValue","HKCU\Software\Microsoft\Windows\DWM\AccentColor","0.0000064","Type: REG_DWORD, Length: 4, Data: 4292311040","8004"
"10:46:28.7332252 AM","firefox.exe","7904","RegCloseKey","HKCU\Software\Microsoft\Windows\DWM","0.0000012","","8004"
"10:46:28.7332512 AM","firefox.exe","7904","RegOpenKey","HKCU","0.0000068","Desired Access: Maximum Allowed, Granted Access: Read","8004"
"10:46:28.7332729 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7332904 AM","firefox.exe","7904","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows\DWM","0.0000060","Desired Access: Query Value","8004"
"10:46:28.7333122 AM","firefox.exe","7904","RegCloseKey","HKCU","0.0000017","","8004"
"10:46:28.7333293 AM","firefox.exe","7904","RegQueryValue","HKCU\Software\Microsoft\Windows\DWM\ColorPrevalence","0.0000038","Type: REG_DWORD, Length: 4, Data: 0","8004"
"10:46:28.7333485 AM","firefox.exe","7904","RegCloseKey","HKCU\Software\Microsoft\Windows\DWM","0.0000012","","8004"
"10:46:28.7334193 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\Windows\Tablet PC\","0.0000094","Desired Access: Read","8004"
"10:46:28.7334440 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\Tablet PC\IsTabletPC","0.0000039","Type: REG_DWORD, Length: 4, Data: 0","8004"
"10:46:28.7334632 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\Tablet PC","0.0000017","","8004"
"10:46:28.7334922 AM","firefox.exe","7904","RegOpenKey","HKCU","0.0000060","Desired Access: Maximum Allowed, Granted Access: Read","8004"
"10:46:28.7335140 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7335306 AM","firefox.exe","7904","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Themes\Personalize","0.0000073","Desired Access: Query Value","8004"
"10:46:28.7335537 AM","firefox.exe","7904","RegCloseKey","HKCU","0.0000017","","8004"
"10:46:28.7335703 AM","firefox.exe","7904","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Themes\Personalize\AppsUseLightTheme","0.0000034","Length: 16","8004"
"10:46:28.7335895 AM","firefox.exe","7904","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Themes\Personalize","0.0000013","","8004"
"10:46:28.7360092 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shield-preference-experiments.json","0.0000068","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","8844"
"10:46:28.7360399 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shield-preference-experiments.json","0.0000089","CreationTime: 6/19/2019 5:49:12 PM, LastAccessTime: 3/25/2020 10:27:02 AM, LastWriteTime: 3/25/2020 10:27:03 AM, ChangeTime: 3/25/2020 10:27:03 AM, FileAttributes: A, AllocationSize: 480, EndOfFile: 480, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x1100000000acc8, EaSize: 0, Access: Generic Read, Position: 0, Mode: Sequential Access, Synchronous IO Non-Alert, AlignmentRequirement: Word","8844"
"10:46:28.7360467 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite-wal","0.0000329","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8500"
"10:46:28.7360727 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shield-preference-experiments.json","0.0001007","Offset: 0, Length: 480, Priority: Normal","8844"
"10:46:28.7361180 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000059","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8500"
"10:46:28.7361303 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shield-preference-experiments.json","0.0000128","Offset: 0, Length: 480, I/O Flags: Non-cached, Paging I/O, Priority: Normal","8844"
"10:46:28.7361986 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shield-preference-experiments.json","0.0000115","","8844"
"10:46:28.7367272 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\containers.json","0.0068020","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2444"
"10:46:28.7379249 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\content-prefs.sqlite","0.0000102","Offset: 1,073,741,826, Length: 510","8500"
"10:46:28.7392463 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.sbstore","0.0000106","CreationTime: 3/26/2020 10:25:33 AM, LastAccessTime: 3/26/2020 10:25:33 AM, LastWriteTime: 3/26/2020 10:25:33 AM, ChangeTime: 3/26/2020 10:25:33 AM, FileAttributes: A","7900"
"10:46:28.7392821 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.sbstore","0.0000150","","7900"
"10:46:28.7397143 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0125266","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.7435868 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\containers.json","0.0000068","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2444"
"10:46:28.7436175 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\containers.json","0.0000102","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 6/19/2019 4:53:48 PM, LastWriteTime: 6/19/2019 4:53:48 PM, ChangeTime: 6/19/2019 4:53:48 PM, FileAttributes: A, AllocationSize: 4,096, EndOfFile: 939, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x28000000005c54, EaSize: 0, Access: Generic Read, Position: 0, Mode: Sequential Access, Synchronous IO Non-Alert, AlignmentRequirement: Word","2444"
"10:46:28.7436512 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\containers.json","0.0118332","Offset: 0, Length: 939, Priority: Normal","2444"
"10:46:28.7437165 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\containers.json","0.0117295","Offset: 0, Length: 939, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2444"
"10:46:28.7494483 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:28.7494940 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0000059","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:30 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: A","5728"
"10:46:28.7495174 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0000081","","5728"
"10:46:28.7522878 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000090","CreationTime: 3/26/2020 10:25:34 AM, LastAccessTime: 3/26/2020 10:25:34 AM, LastWriteTime: 3/26/2020 10:25:34 AM, ChangeTime: 3/26/2020 10:25:34 AM, FileAttributes: A","7900"
"10:46:28.7523198 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000166","","7900"
"10:46:28.7524000 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing","0.0001506","0: google4, 1: mozplugin-block-digest256.sbstore, 2: mozplugin-block-digest256.vlpset, 3: mozstd-trackwhite-digest256.sbstore, 4: mozstd-trackwhite-digest256.vlpset, 5: social-track-digest256.sbstore, 6: social-track-digest256.vlpset, 7: social-tracking-protection-facebook-digest256.sbstore, 8: social-tracking-protection-facebook-digest256.vlpset, 9: social-tracking-protection-linkedin-digest256.sbstore, 10: social-tracking-protection-linkedin-digest256.vlpset, 11: social-tracking-protection-twitter-digest256.sbstore, 12: social-tracking-protection-twitter-digest256.vlpset, 13: test-block-simple.pset, 14: test-harmful-simple.pset, 15: test-malware-simple.pset, 16: test-phish-simple.pset, 17: test-track-simple.pset, 18: test-trackwhite-simple.pset, 19: test-unwanted-simple.pset","7900"
"10:46:28.7529969 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0066355","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.7555433 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\containers.json","0.0000230","","2444"
"10:46:28.7562144 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\logins.json","0.0000299","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:28.7580009 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000102","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:28.7580414 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000034","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:28.7580653 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000026","Offset: 1,073,741,824, Length: 1","5728"
"10:46:28.7585466 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-journal","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:28.7586165 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\ShutdownDuration.json","0.0000350","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4904"
"10:46:28.7586178 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000107","Offset: 24, Length: 16","5728"
"10:46:28.7586724 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\ShutdownDuration.json","0.0000060","Attributes: A, ReparseTag: 0x0","4904"
"10:46:28.7586938 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\ShutdownDuration.json","0.0000128","Delete: True","4904"
"10:46:28.7587198 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\ShutdownDuration.json","0.0000956","","4904"
"10:46:28.7589600 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-wal","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:28.7590232 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000102","AllocationSize: 294,912, EndOfFile: 294,912, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:28.7590765 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000055","Offset: 1,073,741,826, Length: 510","5728"
"10:46:28.7596743 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000072","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/26/2020 10:25:30 AM, ChangeTime: 3/26/2020 10:25:30 AM, FileAttributes: D","7900"
"10:46:28.7597003 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000141","","7900"
"10:46:28.7600638 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000324","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.7601265 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\*","0.0336709","Filter: *, 1: .","7900"
"10:46:28.7602089 AM","firefox.exe","7384","ReadFile","C:\$Directory","0.0335578","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7900"
"10:46:28.7622082 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\ShutdownDuration.json.tmp","0.0109027","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4904"
"10:46:28.7721291 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features\screenshots@mozilla.org.xpi","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:28.7721696 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser\features\screenshots@mozilla.org.xpi","0.0000047","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:30 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: A","5728"
"10:46:28.7721863 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\features\screenshots@mozilla.org.xpi","0.0000068","","5728"
"10:46:28.7726812 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 7224","8004"
"10:46:28.7728724 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features\webcompat-reporter@mozilla.org.xpi","0.0000221","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:28.7729090 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser\features\webcompat-reporter@mozilla.org.xpi","0.0000056","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:30 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: A","5728"
"10:46:28.7729248 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\features\webcompat-reporter@mozilla.org.xpi","0.0000064","","5728"
"10:46:28.7731412 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\ShutdownDuration.json.tmp","0.0000064","Attributes: A, ReparseTag: 0x0","4904"
"10:46:28.7731633 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\ShutdownDuration.json.tmp","0.0000137","Delete: True","4904"
"10:46:28.7731906 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\ShutdownDuration.json.tmp","0.0001750","","4904"
"10:46:28.7734151 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 7232","5728"
"10:46:28.7753658 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\handlers.json","0.0311241","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8844"
"10:46:28.7826473 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:28.7826938 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0000060","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:30 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: A","5728"
"10:46:28.7827168 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0000094","","5728"
"10:46:28.7835045 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features\doh-rollout@mozilla.org.xpi","0.0000281","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:28.7835510 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser\features\doh-rollout@mozilla.org.xpi","0.0000060","CreationTime: 3/25/2020 10:26:30 AM, LastAccessTime: 3/25/2020 10:26:30 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: A","5728"
"10:46:28.7835710 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\features\doh-rollout@mozilla.org.xpi","0.0000086","","5728"
"10:46:28.7868367 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json","0.0000419","Offset: 65,536, Length: 32,768","7572"
"10:46:28.7869754 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.1296637","Offset: 14,123,008, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:28.7871346 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json","0.0000136","Offset: 98,304, Length: 23,893","7572"
"10:46:28.7871832 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json","0.0000038","Offset: 122,197, Length: 8,875","7572"
"10:46:28.7872182 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json","0.0000896","","7572"
"10:46:28.7880843 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes","0.0000141","Desired Access: Maximum Allowed, Granted Access: Read","8004"
"10:46:28.7881897 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7882204 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\COM3","0.0000111","Desired Access: Read","8004"
"10:46:28.7882554 AM","firefox.exe","7904","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\COM3","0.0000021","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","8004"
"10:46:28.7882776 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\COM3\Com+Enabled","0.0000060","Type: REG_DWORD, Length: 4, Data: 1","8004"
"10:46:28.7883169 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\COM3","0.0000034","","8004"
"10:46:28.7883975 AM","firefox.exe","7904","QuerySecurityFile","C:\Windows\System32\clbcatq.dll","0.0000094","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:28.7885025 AM","firefox.exe","7904","Load Image","C:\Windows\System32\clbcatq.dll","0.0000000","Image Base: 0x7ffb46ce0000, Image Size: 0xa0000","8004"
"10:46:28.7885507 AM","firefox.exe","7904","QueryNameInformationFile","C:\Windows\System32\clbcatq.dll","0.0000102","Name: \Windows\System32\clbcatq.dll","8004"
"10:46:28.7890874 AM","firefox.exe","7904","CreateFile","C:\Windows\Registration\R00000000000d.clb","0.0000192","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","8004"
"10:46:28.7891770 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\Registration\R00000000000d.clb","0.0000047","AllocationSize: 24,576, EndOfFile: 23,144, NumberOfLinks: 1, DeletePending: False, Directory: False","8004"
"10:46:28.7892107 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\Registration\R00000000000d.clb","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.7892316 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\Registration\R00000000000d.clb","0.0000022","AllocationSize: 24,576, EndOfFile: 23,144, NumberOfLinks: 1, DeletePending: False, Directory: False","8004"
"10:46:28.7892623 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\Registration\R00000000000d.clb","0.0000018","SyncType: SyncTypeOther","8004"
"10:46:28.7894104 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Classes","0.0000055","Query: Name","8004"
"10:46:28.7894305 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Classes","0.0000012","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7894424 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7894595 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209C7-767B-42B2-9FBA-44EE4615F2C7}","0.0000072","Desired Access: Read","8004"
"10:46:28.7894825 AM","firefox.exe","7904","RegOpenKey","HKCR\CLSID\{591209C7-767B-42B2-9FBA-44EE4615F2C7}","0.0000188","Desired Access: Read","8004"
"10:46:28.7895162 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000039","Query: Name","8004"
"10:46:28.7895324 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7895499 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\TreatAs","0.0000051","Desired Access: Query Value","8004"
"10:46:28.7895657 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7895836 AM","firefox.exe","7904","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\TreatAs","0.0000034","Desired Access: Query Value","8004"
"10:46:28.7895981 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000034","Query: Name","8004"
"10:46:28.7896237 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000030","Query: Name","8004"
"10:46:28.7896370 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000012","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7896523 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000047","Desired Access: Maximum Allowed","8004"
"10:46:28.7896685 AM","firefox.exe","7904","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\(Default)","0.0000030","Length: 12","8004"
"10:46:28.7896830 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000035","Query: Name","8004"
"10:46:28.7896963 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000012","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7897108 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000038","Desired Access: Maximum Allowed","8004"
"10:46:28.7897249 AM","firefox.exe","7904","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\(Default)","0.0000025","Type: REG_SZ, Length: 50, Data: Application Registration","8004"
"10:46:28.7897398 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000030","Query: Name","8004"
"10:46:28.7897534 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7897679 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocServer32","0.0000039","Desired Access: Read","8004"
"10:46:28.7897825 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000012","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7897944 AM","firefox.exe","7904","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocServer32","0.0000090","Desired Access: Read","8004"
"10:46:28.7898174 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000030","Query: Name","8004"
"10:46:28.7898315 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7898465 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000042","Desired Access: Maximum Allowed","8004"
"10:46:28.7898618 AM","firefox.exe","7904","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\InprocServer32","0.0000026","Length: 12","8004"
"10:46:28.7898746 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000030","Query: Name","8004"
"10:46:28.7898883 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000008","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7899019 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000039","Desired Access: Maximum Allowed","8004"
"10:46:28.7899160 AM","firefox.exe","7904","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\(Default)","0.0000021","Length: 12","8004"
"10:46:28.7899292 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000034","Query: Name","8004"
"10:46:28.7899429 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7899591 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000038","Desired Access: Maximum Allowed","8004"
"10:46:28.7899732 AM","firefox.exe","7904","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\(Default)","0.0000034","Type: REG_EXPAND_SZ, Length: 68, Data: %SystemRoot%\System32\shell32.dll","8004"
"10:46:28.7899915 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000034","Query: Name","8004"
"10:46:28.7900052 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000008","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7900193 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000038","Desired Access: Maximum Allowed","8004"
"10:46:28.7900333 AM","firefox.exe","7904","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\(Default)","0.0000026","Type: REG_EXPAND_SZ, Length: 68, Data: %SystemRoot%\System32\shell32.dll","8004"
"10:46:28.7900478 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000030","Query: Name","8004"
"10:46:28.7900619 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000009","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7900756 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000038","Desired Access: Maximum Allowed","8004"
"10:46:28.7900897 AM","firefox.exe","7904","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\ThreadingModel","0.0000029","Type: REG_SZ, Length: 10, Data: Both","8004"
"10:46:28.7901106 AM","firefox.exe","7904","RegCloseKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000021","","8004"
"10:46:28.7901238 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000030","Query: Name","8004"
"10:46:28.7901374 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7901515 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocHandler32","0.0000043","Desired Access: Query Value","8004"
"10:46:28.7901660 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000009","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7901810 AM","firefox.exe","7904","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocHandler32","0.0000029","Desired Access: Query Value","8004"
"10:46:28.7901955 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000030","Query: Name","8004"
"10:46:28.7902095 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000009","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7902232 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocHandler","0.0000038","Desired Access: Query Value","8004"
"10:46:28.7902373 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7902497 AM","firefox.exe","7904","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocHandler","0.0000025","Desired Access: Query Value","8004"
"10:46:28.7902748 AM","firefox.exe","7904","RegOpenKey","HKCU","0.0000064","Desired Access: Read","8004"
"10:46:28.7902940 AM","firefox.exe","7904","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7903064 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes","0.0000055","Desired Access: Notify","8004"
"10:46:28.7903222 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes","0.0000043","Desired Access: Notify","8004"
"10:46:28.7903414 AM","firefox.exe","7904","RegCloseKey","HKCU","0.0000013","","8004"
"10:46:28.7903653 AM","firefox.exe","7904","RegCloseKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","","8004"
"10:46:28.7903905 AM","firefox.exe","7904","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7904028 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\OLE","0.0000056","Desired Access: Read","8004"
"10:46:28.7904199 AM","firefox.exe","7904","RegQueryValue","HKLM\SOFTWARE\Microsoft\Ole\MaxSxSHashCount","0.0000038","Length: 16","8004"
"10:46:28.7904348 AM","firefox.exe","7904","RegCloseKey","HKLM\SOFTWARE\Microsoft\Ole","0.0000013","","8004"
"10:46:28.7905155 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Classes","0.0000038","Query: Name","8004"
"10:46:28.7905342 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Classes","0.0000039","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7905560 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Classes","0.0000030","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7905799 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209C7-767B-42B2-9FBA-44EE4615F2C7}","0.0000072","Desired Access: Read","8004"
"10:46:28.7906068 AM","firefox.exe","7904","RegOpenKey","HKCR\CLSID\{591209C7-767B-42B2-9FBA-44EE4615F2C7}","0.0000077","Desired Access: Read","8004"
"10:46:28.7906281 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000038","Query: Name","8004"
"10:46:28.7906447 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000009","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7906605 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\TreatAs","0.0000047","Desired Access: Query Value","8004"
"10:46:28.7906763 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7906895 AM","firefox.exe","7904","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\TreatAs","0.0000026","Desired Access: Query Value","8004"
"10:46:28.7907036 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000030","Query: Name","8004"
"10:46:28.7907207 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000030","Query: Name","8004"
"10:46:28.7907352 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7907510 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000038","Desired Access: Maximum Allowed","8004"
"10:46:28.7907668 AM","firefox.exe","7904","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\(Default)","0.0000025","Length: 12","8004"
"10:46:28.7907843 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000034","Query: Name","8004"
"10:46:28.7907992 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000009","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7908146 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000038","Desired Access: Maximum Allowed","8004"
"10:46:28.7908295 AM","firefox.exe","7904","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\(Default)","0.0000026","Type: REG_SZ, Length: 50, Data: Application Registration","8004"
"10:46:28.7908440 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000030","Query: Name","8004"
"10:46:28.7908585 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7908790 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocServer32","0.0000055","Desired Access: Read","8004"
"10:46:28.7909007 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000018","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7909204 AM","firefox.exe","7904","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocServer32","0.0000055","Desired Access: Read","8004"
"10:46:28.7909396 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000034","Query: Name","8004"
"10:46:28.7909554 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000008","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7909707 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000043","Desired Access: Maximum Allowed","8004"
"10:46:28.7909869 AM","firefox.exe","7904","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\InprocServer32","0.0000026","Length: 12","8004"
"10:46:28.7910010 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000030","Query: Name","8004"
"10:46:28.7910159 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000009","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7910309 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000038","Desired Access: Maximum Allowed","8004"
"10:46:28.7910462 AM","firefox.exe","7904","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\(Default)","0.0000022","Length: 12","8004"
"10:46:28.7910607 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000035","Query: Name","8004"
"10:46:28.7910761 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000009","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7910915 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000038","Desired Access: Maximum Allowed","8004"
"10:46:28.7911068 AM","firefox.exe","7904","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\(Default)","0.0000026","Type: REG_EXPAND_SZ, Length: 68, Data: %SystemRoot%\System32\shell32.dll","8004"
"10:46:28.7911230 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000030","Query: Name","8004"
"10:46:28.7911375 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000009","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7911525 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000038","Desired Access: Maximum Allowed","8004"
"10:46:28.7911674 AM","firefox.exe","7904","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\(Default)","0.0000026","Type: REG_EXPAND_SZ, Length: 68, Data: %SystemRoot%\System32\shell32.dll","8004"
"10:46:28.7911832 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000030","Query: Name","8004"
"10:46:28.7911981 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000009","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7912135 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000038","Desired Access: Maximum Allowed","8004"
"10:46:28.7912293 AM","firefox.exe","7904","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32\ThreadingModel","0.0000025","Type: REG_SZ, Length: 10, Data: Both","8004"
"10:46:28.7912485 AM","firefox.exe","7904","RegCloseKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InProcServer32","0.0000008","","8004"
"10:46:28.7912617 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000030","Query: Name","8004"
"10:46:28.7912762 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7912920 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocHandler32","0.0000043","Desired Access: Query Value","8004"
"10:46:28.7913078 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7913214 AM","firefox.exe","7904","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocHandler32","0.0000035","Desired Access: Query Value","8004"
"10:46:28.7913368 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000030","Query: Name","8004"
"10:46:28.7913513 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7913667 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocHandler","0.0000038","Desired Access: Query Value","8004"
"10:46:28.7913816 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7913948 AM","firefox.exe","7904","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\InprocHandler","0.0000030","Desired Access: Query Value","8004"
"10:46:28.7914102 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000030","Query: Name","8004"
"10:46:28.7914251 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000009","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7914405 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\LocalServer32","0.0000038","Desired Access: Read","8004"
"10:46:28.7914554 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000009","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7914682 AM","firefox.exe","7904","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\LocalServer32","0.0000030","Desired Access: Read","8004"
"10:46:28.7914831 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000035","Query: Name","8004"
"10:46:28.7914977 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000008","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7915130 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000039","Desired Access: Maximum Allowed","8004"
"10:46:28.7915284 AM","firefox.exe","7904","RegQueryValue","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\AppID","0.0000025","Length: 112","8004"
"10:46:28.7915429 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000030","Query: Name","8004"
"10:46:28.7915578 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000009","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7915727 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\LocalServer","0.0000043","Desired Access: Query Value","8004"
"10:46:28.7915885 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7916026 AM","firefox.exe","7904","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\LocalServer","0.0000060","Desired Access: Query Value","8004"
"10:46:28.7916252 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Classes","0.0000051","Query: Name","8004"
"10:46:28.7916431 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7916547 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Classes","0.0000030","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7916786 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209C7-767B-42B2-9FBA-44EE4615F2C7}","0.0000059","Desired Access: Read","8004"
"10:46:28.7917059 AM","firefox.exe","7904","RegOpenKey","HKCR\CLSID\{591209C7-767B-42B2-9FBA-44EE4615F2C7}","0.0000085","Desired Access: Read","8004"
"10:46:28.7917353 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000043","Query: Name","8004"
"10:46:28.7917541 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000008","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7917694 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\Elevation","0.0000047","Desired Access: Read","8004"
"10:46:28.7917848 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7917976 AM","firefox.exe","7904","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\Elevation","0.0000034","Desired Access: Read","8004"
"10:46:28.7918164 AM","firefox.exe","7904","RegCloseKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000008","","8004"
"10:46:28.7918330 AM","firefox.exe","7904","RegCloseKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000009","","8004"
"10:46:28.7918522 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Classes","0.0000030","Query: Name","8004"
"10:46:28.7918671 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7918782 AM","firefox.exe","7904","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7918910 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209C7-767B-42B2-9FBA-44EE4615F2C7}","0.0000030","Desired Access: Read","8004"
"10:46:28.7919064 AM","firefox.exe","7904","RegOpenKey","HKCR\CLSID\{591209C7-767B-42B2-9FBA-44EE4615F2C7}","0.0000055","Desired Access: Read","8004"
"10:46:28.7919243 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000034","Query: Name","8004"
"10:46:28.7919388 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7919538 AM","firefox.exe","7904","RegOpenKey","HKCU\Software\Classes\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\TreatAs","0.0000038","Desired Access: Read","8004"
"10:46:28.7919683 AM","firefox.exe","7904","RegQueryKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000008","Query: HandleTags, HandleTags: 0x0","8004"
"10:46:28.7919806 AM","firefox.exe","7904","RegOpenKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}\TreatAs","0.0000030","Desired Access: Read","8004"
"10:46:28.7919964 AM","firefox.exe","7904","RegCloseKey","HKCR\CLSID\{591209c7-767b-42b2-9fba-44ee4615f2c7}","0.0000013","","8004"
"10:46:28.7938588 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000308","0: .., 1: goog-badbinurl-proto.metadata, 2: goog-badbinurl-proto.vlpset, 3: goog-downloadwhite-proto.metadata, 4: goog-downloadwhite-proto.vlpset, 5: goog-malware-proto.metadata, 6: goog-malware-proto.vlpset, 7: goog-phish-proto.metadata, 8: goog-phish-proto.vlpset, 9: goog-unwanted-proto.metadata, 10: goog-unwanted-proto.vlpset","7900"
"10:46:28.7942522 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-badbinurl-proto.metadata","0.0212626","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.8018260 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 4200","8004"
"10:46:28.8018998 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 5668","8004"
"10:46:28.8019527 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 7584","8004"
"10:46:28.8036086 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 7580","8004"
"10:46:28.8046309 AM","firefox.exe","7904","CreateFile","C:\Windows\Fonts\times.ttf","0.0000230","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8004"
"10:46:28.8047260 AM","firefox.exe","7904","QueryInformationVolume","C:\Windows\Fonts\times.ttf","0.0000043","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","8004"
"10:46:28.8047534 AM","firefox.exe","7904","QueryAllInformationFile","C:\Windows\Fonts\times.ttf","0.0000059","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 7:10:47 PM, FileAttributes: A, AllocationSize: 1,196,032, EndOfFile: 1,195,688, NumberOfLinks: 2, DeletePending: False, Directory: False, IndexNumber: 0x3000000062432, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","8004"
"10:46:28.8047875 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\Fonts\times.ttf","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:28.8048088 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\Fonts\times.ttf","0.0000026","AllocationSize: 1,196,032, EndOfFile: 1,195,688, NumberOfLinks: 2, DeletePending: False, Directory: False","8004"
"10:46:28.8048395 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\Fonts\times.ttf","0.0000022","SyncType: SyncTypeOther","8004"
"10:46:28.8052308 AM","firefox.exe","7904","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Session Manager","0.0000098","Desired Access: Query Value, Enumerate Sub Keys","8004"
"10:46:28.8052564 AM","firefox.exe","7904","RegOpenKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000081","Desired Access: Query Value, Enumerate Sub Keys","8004"
"10:46:28.8052803 AM","firefox.exe","7904","RegQueryValue","HKLM\System\CurrentControlSet\Control\Session Manager\ResourcePolicies","0.0000038","Length: 24","8004"
"10:46:28.8052995 AM","firefox.exe","7904","RegCloseKey","HKLM\System\CurrentControlSet\Control\Session Manager","0.0000013","","8004"
"10:46:28.8065326 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\handlers.json","0.0000055","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","8844"
"10:46:28.8065586 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\handlers.json","0.0000098","CreationTime: 6/19/2019 4:53:42 PM, LastAccessTime: 6/21/2019 11:28:47 AM, LastWriteTime: 6/21/2019 11:28:47 AM, ChangeTime: 6/21/2019 11:28:47 AM, FileAttributes: A, AllocationSize: 4,096, EndOfFile: 620, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0xc000000029d2d, EaSize: 0, Access: Generic Read, Position: 0, Mode: Sequential Access, Synchronous IO Non-Alert, AlignmentRequirement: Word","8844"
"10:46:28.8065914 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\handlers.json","0.0124323","Offset: 0, Length: 620, Priority: Normal","8844"
"10:46:28.8066930 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\handlers.json","0.0122765","Offset: 0, Length: 620, I/O Flags: Non-cached, Paging I/O, Priority: Normal","8844"
"10:46:28.8152613 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 572","8004"
"10:46:28.8155489 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-badbinurl-proto.metadata","0.0000064","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/26/2020 10:25:26 AM, ChangeTime: 3/26/2020 10:25:26 AM, FileAttributes: A","7900"
"10:46:28.8155702 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-badbinurl-proto.metadata","0.0000103","","7900"
"10:46:28.8158860 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-badbinurl-proto.vlpset","0.0084083","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.8190851 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\handlers.json","0.0000248","","8844"
"10:46:28.8211348 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0012753","Offset: 14,909,440, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2596"
"10:46:28.8212265 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0016163","Offset: 14,876,672, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8936"
"10:46:28.8221230 AM","firefox.exe","7336","CreateFile","C:\Windows\Fonts\segoeuib.ttf","0.0000333","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:28.8222651 AM","firefox.exe","7336","QueryInformationVolume","C:\Windows\Fonts\segoeuib.ttf","0.0000059","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","7392"
"10:46:28.8223188 AM","firefox.exe","7336","QueryAllInformationFile","C:\Windows\Fonts\segoeuib.ttf","0.0000090","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 7:31:30 PM, FileAttributes: A, AllocationSize: 917,504, EndOfFile: 914,092, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x8000000054155, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","7392"
"10:46:28.8223777 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Fonts\segoeuib.ttf","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:28.8225292 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\Fonts\segoeuib.ttf","0.0000059","AllocationSize: 917,504, EndOfFile: 914,092, NumberOfLinks: 3, DeletePending: False, Directory: False","7392"
"10:46:28.8226081 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Fonts\segoeuib.ttf","0.0000051","SyncType: SyncTypeOther","7392"
"10:46:28.8229597 AM","firefox.exe","7336","CreateFile","C:\Windows\Fonts\seguisb.ttf","0.0000264","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:28.8230587 AM","firefox.exe","7336","QueryInformationVolume","C:\Windows\Fonts\seguisb.ttf","0.0000046","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","7392"
"10:46:28.8231060 AM","firefox.exe","7336","QueryAllInformationFile","C:\Windows\Fonts\seguisb.ttf","0.0000068","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 7:31:30 PM, FileAttributes: A, AllocationSize: 942,080, EndOfFile: 941,172, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x8000000054161, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","7392"
"10:46:28.8231581 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Fonts\seguisb.ttf","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:28.8231960 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\Fonts\seguisb.ttf","0.0000039","AllocationSize: 942,080, EndOfFile: 941,172, NumberOfLinks: 3, DeletePending: False, Directory: False","7392"
"10:46:28.8232652 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Fonts\seguisb.ttf","0.0000034","SyncType: SyncTypeOther","7392"
"10:46:28.8243348 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-badbinurl-proto.vlpset","0.0000064","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/26/2020 10:25:26 AM, ChangeTime: 3/26/2020 10:25:26 AM, FileAttributes: A","7900"
"10:46:28.8243574 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-badbinurl-proto.vlpset","0.0000111","","7900"
"10:46:28.8247363 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-downloadwhite-proto.metadata","0.0040085","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.8249031 AM","firefox.exe","7904","ReadFile","C:\Program Files\Firefox Nightly\browser\features\webcompat@mozilla.org.xpi","0.0134844","Offset: 32,768, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","572"
"10:46:28.8287892 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-downloadwhite-proto.metadata","0.0000090","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 8/16/2019 1:36:44 PM, ChangeTime: 8/16/2019 1:36:44 PM, FileAttributes: A","7900"
"10:46:28.8288212 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-downloadwhite-proto.metadata","0.0000320","","7900"
"10:46:28.8292671 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-downloadwhite-proto.vlpset","0.0038481","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.8299301 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\seguisb.ttf","0.0154228","Offset: 90,112, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:28.8331374 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-downloadwhite-proto.vlpset","0.0000047","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 8/16/2019 1:36:44 PM, ChangeTime: 8/16/2019 1:36:44 PM, FileAttributes: A","7900"
"10:46:28.8331527 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-downloadwhite-proto.vlpset","0.0000086","","7900"
"10:46:28.8334412 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-malware-proto.metadata","0.0000670","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.8335210 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-malware-proto.metadata","0.0000034","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/26/2020 10:25:25 AM, ChangeTime: 3/26/2020 10:25:25 AM, FileAttributes: A","7900"
"10:46:28.8335419 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-malware-proto.metadata","0.0000055","","7900"
"10:46:28.8338026 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-malware-proto.vlpset","0.0235034","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.8456217 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\seguisb.ttf","0.0053500","Offset: 929,792, Length: 11,380, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:28.8512985 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\seguisb.ttf","0.0021965","Offset: 815,104, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:28.8523447 AM","firefox.exe","7904","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0537071","Offset: 8,015,872, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8004"
"10:46:28.8535837 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\seguisb.ttf","0.0008469","Offset: 864,256, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:28.8544925 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\seguisb.ttf","0.0005474","Offset: 860,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:28.8573529 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-malware-proto.vlpset","0.0000051","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/26/2020 10:25:25 AM, ChangeTime: 3/26/2020 10:25:25 AM, FileAttributes: A","7900"
"10:46:28.8573746 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-malware-proto.vlpset","0.0000090","","7900"
"10:46:28.8575355 AM","firefox.exe","7336","CreateFile","C:\Windows\Fonts\seguisb.ttf","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:28.8575888 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\Fonts\seguisb.ttf","0.0000047","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 7:31:30 PM, FileAttributes: A","7392"
"10:46:28.8576050 AM","firefox.exe","7336","CloseFile","C:\Windows\Fonts\seguisb.ttf","0.0000064","","7392"
"10:46:28.8577548 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.metadata","0.0000614","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.8578316 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.metadata","0.0000038","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/26/2020 10:25:24 AM, ChangeTime: 3/26/2020 10:25:24 AM, FileAttributes: A","7900"
"10:46:28.8578482 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.metadata","0.0000069","","7900"
"10:46:28.8579310 AM","firefox.exe","1008","CreateFile","C:\Windows\Fonts\seguisb.ttf","0.0000205","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7796"
"10:46:28.8579920 AM","firefox.exe","1008","QueryInformationVolume","C:\Windows\Fonts\seguisb.ttf","0.0000047","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","7796"
"10:46:28.8580151 AM","firefox.exe","1008","QueryAllInformationFile","C:\Windows\Fonts\seguisb.ttf","0.0000064","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 7:31:30 PM, FileAttributes: A, AllocationSize: 942,080, EndOfFile: 941,172, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x8000000054161, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","7796"
"10:46:28.8580407 AM","firefox.exe","1008","CloseFile","C:\Windows\Fonts\seguisb.ttf","0.0000072","","7796"
"10:46:28.8581490 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0052809","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.8582954 AM","firefox.exe","1008","CreateFile","C:\Windows\Fonts\seguisb.ttf","0.0000367","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7796"
"10:46:28.8583786 AM","firefox.exe","1008","QueryInformationVolume","C:\Windows\Fonts\seguisb.ttf","0.0000038","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","7796"
"10:46:28.8584004 AM","firefox.exe","1008","QueryAllInformationFile","C:\Windows\Fonts\seguisb.ttf","0.0000064","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 7:31:30 PM, FileAttributes: A, AllocationSize: 942,080, EndOfFile: 941,172, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x8000000054161, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","7796"
"10:46:28.8584324 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\Fonts\seguisb.ttf","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7796"
"10:46:28.8584533 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\Fonts\seguisb.ttf","0.0000038","AllocationSize: 942,080, EndOfFile: 941,172, NumberOfLinks: 3, DeletePending: False, Directory: False","7796"
"10:46:28.8584861 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\Fonts\seguisb.ttf","0.0000021","SyncType: SyncTypeOther","7796"
"10:46:28.8586495 AM","firefox.exe","1008","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0276988","Offset: 1,171,456, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7796"
"10:46:28.8634649 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000055","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/26/2020 10:25:15 AM, ChangeTime: 3/26/2020 10:25:24 AM, FileAttributes: A","7900"
"10:46:28.8634854 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000102","","7900"
"10:46:28.8638681 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-unwanted-proto.metadata","0.0112060","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.8750946 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-unwanted-proto.metadata","0.0000051","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/26/2020 10:25:25 AM, ChangeTime: 3/26/2020 10:25:25 AM, FileAttributes: A","7900"
"10:46:28.8751103 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-unwanted-proto.metadata","0.0000077","","7900"
"10:46:28.8753689 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-unwanted-proto.vlpset","0.0050637","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.8804633 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-unwanted-proto.vlpset","0.0000056","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/26/2020 10:25:25 AM, ChangeTime: 3/26/2020 10:25:25 AM, FileAttributes: A","7900"
"10:46:28.8804800 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-unwanted-proto.vlpset","0.0000089","","7900"
"10:46:28.8805290 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000064","","7900"
"10:46:28.8805486 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000047","","7900"
"10:46:28.8807906 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozplugin-block-digest256.sbstore","0.0000678","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.8808708 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozplugin-block-digest256.sbstore","0.0000038","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/26/2020 10:25:30 AM, ChangeTime: 3/26/2020 10:25:30 AM, FileAttributes: A","7900"
"10:46:28.8808832 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozplugin-block-digest256.sbstore","0.0000046","","7900"
"10:46:28.8811016 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozplugin-block-digest256.vlpset","0.0127868","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.8865105 AM","firefox.exe","1008","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0330931","Offset: 1,204,224, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7796"
"10:46:28.8939114 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozplugin-block-digest256.vlpset","0.0000047","CreationTime: 3/26/2020 10:25:31 AM, LastAccessTime: 3/26/2020 10:25:31 AM, LastWriteTime: 3/26/2020 10:25:31 AM, ChangeTime: 3/26/2020 10:25:31 AM, FileAttributes: A","7900"
"10:46:28.8939268 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozplugin-block-digest256.vlpset","0.0000081","","7900"
"10:46:28.8941947 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozstd-trackwhite-digest256.sbstore","0.0063156","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.9005282 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozstd-trackwhite-digest256.sbstore","0.0000043","CreationTime: 3/26/2020 10:25:33 AM, LastAccessTime: 3/26/2020 10:25:33 AM, LastWriteTime: 3/26/2020 10:25:33 AM, ChangeTime: 3/26/2020 10:25:33 AM, FileAttributes: A","7900"
"10:46:28.9005418 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozstd-trackwhite-digest256.sbstore","0.0000082","","7900"
"10:46:28.9007804 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozstd-trackwhite-digest256.vlpset","0.0000456","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.9008644 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozstd-trackwhite-digest256.vlpset","0.0000030","CreationTime: 3/26/2020 10:25:33 AM, LastAccessTime: 3/26/2020 10:25:33 AM, LastWriteTime: 3/26/2020 10:25:33 AM, ChangeTime: 3/26/2020 10:25:33 AM, FileAttributes: A","7900"
"10:46:28.9008759 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozstd-trackwhite-digest256.vlpset","0.0000047","","7900"
"10:46:28.9010910 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-track-digest256.sbstore","0.0008968","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.9020113 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-track-digest256.sbstore","0.0000047","CreationTime: 3/26/2020 10:25:32 AM, LastAccessTime: 3/26/2020 10:25:32 AM, LastWriteTime: 3/26/2020 10:25:32 AM, ChangeTime: 3/26/2020 10:25:32 AM, FileAttributes: A","7900"
"10:46:28.9020301 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-track-digest256.sbstore","0.0000076","","7900"
"10:46:28.9022980 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-track-digest256.vlpset","0.0003755","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.9026940 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-track-digest256.vlpset","0.0000038","CreationTime: 3/26/2020 10:25:32 AM, LastAccessTime: 3/26/2020 10:25:32 AM, LastWriteTime: 3/26/2020 10:25:32 AM, ChangeTime: 3/26/2020 10:25:32 AM, FileAttributes: A","7900"
"10:46:28.9027115 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-track-digest256.vlpset","0.0000068","","7900"
"10:46:28.9029884 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-facebook-digest256.sbstore","0.0003955","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.9034044 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-facebook-digest256.sbstore","0.0000038","CreationTime: 3/26/2020 10:25:37 AM, LastAccessTime: 3/26/2020 10:25:37 AM, LastWriteTime: 3/26/2020 10:25:37 AM, ChangeTime: 3/26/2020 10:25:37 AM, FileAttributes: A","7900"
"10:46:28.9034223 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-facebook-digest256.sbstore","0.0000072","","7900"
"10:46:28.9036796 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-facebook-digest256.vlpset","0.0003242","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.9040243 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-facebook-digest256.vlpset","0.0000043","CreationTime: 3/26/2020 10:25:37 AM, LastAccessTime: 3/26/2020 10:25:37 AM, LastWriteTime: 3/26/2020 10:25:37 AM, ChangeTime: 3/26/2020 10:25:37 AM, FileAttributes: A","7900"
"10:46:28.9040431 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-facebook-digest256.vlpset","0.0000068","","7900"
"10:46:28.9042957 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-linkedin-digest256.sbstore","0.0003473","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.9046630 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-linkedin-digest256.sbstore","0.0000043","CreationTime: 3/26/2020 10:25:37 AM, LastAccessTime: 3/26/2020 10:25:37 AM, LastWriteTime: 3/26/2020 10:25:37 AM, ChangeTime: 3/26/2020 10:25:37 AM, FileAttributes: A","7900"
"10:46:28.9046814 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-linkedin-digest256.sbstore","0.0000068","","7900"
"10:46:28.9049331 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-linkedin-digest256.vlpset","0.0014204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.9063761 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-linkedin-digest256.vlpset","0.0000043","CreationTime: 3/26/2020 10:25:37 AM, LastAccessTime: 3/26/2020 10:25:37 AM, LastWriteTime: 3/26/2020 10:25:37 AM, ChangeTime: 3/26/2020 10:25:37 AM, FileAttributes: A","7900"
"10:46:28.9063949 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-linkedin-digest256.vlpset","0.0000076","","7900"
"10:46:28.9066880 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-twitter-digest256.sbstore","0.0007112","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.9073404 AM","firefox.exe","7904","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0474995","Offset: 16,584,704, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8004"
"10:46:28.9074504 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-twitter-digest256.sbstore","0.0000056","CreationTime: 3/26/2020 10:25:38 AM, LastAccessTime: 3/26/2020 10:25:38 AM, LastWriteTime: 3/26/2020 10:25:38 AM, ChangeTime: 3/26/2020 10:25:38 AM, FileAttributes: A","7900"
"10:46:28.9074705 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-twitter-digest256.sbstore","0.0000107","","7900"
"10:46:28.9078532 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-twitter-digest256.vlpset","0.0192606","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.9197752 AM","firefox.exe","1008","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0439211","Offset: 1,236,992, Length: 20,480, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7796"
"10:46:28.9229120 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 7920","5728"
"10:46:28.9233195 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0000213","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7920"
"10:46:28.9236732 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features\screenshots@mozilla.org.xpi","0.0000264","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7920"
"10:46:28.9240452 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features\screenshots@mozilla.org.xpi","0.0000640","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7920"
"10:46:28.9242940 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features\webcompat-reporter@mozilla.org.xpi","0.0000166","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7920"
"10:46:28.9271637 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-twitter-digest256.vlpset","0.0000069","CreationTime: 3/26/2020 10:25:38 AM, LastAccessTime: 3/26/2020 10:25:38 AM, LastWriteTime: 3/26/2020 10:25:38 AM, ChangeTime: 3/26/2020 10:25:38 AM, FileAttributes: A","7900"
"10:46:28.9271876 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-twitter-digest256.vlpset","0.0000111","","7900"
"10:46:28.9275085 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-block-simple.pset","0.0091960","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.9332736 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0009929","Offset: 1,777,664, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8844"
"10:46:28.9367420 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-block-simple.pset","0.0000060","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/25/2020 10:25:03 AM, ChangeTime: 3/25/2020 10:25:03 AM, FileAttributes: A","7900"
"10:46:28.9367633 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-block-simple.pset","0.0000107","","7900"
"10:46:28.9370893 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-harmful-simple.pset","0.0000593","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.9371687 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-harmful-simple.pset","0.0000047","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/25/2020 10:25:03 AM, ChangeTime: 3/25/2020 10:25:03 AM, FileAttributes: A","7900"
"10:46:28.9371913 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-harmful-simple.pset","0.0000085","","7900"
"10:46:28.9375808 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-malware-simple.pset","0.0327834","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.9409088 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000094","Query: Name","5728"
"10:46:28.9409489 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9409694 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9409967 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\MIME\Database\Content Type\application/pdf","0.0000205","Desired Access: Query Value","5728"
"10:46:28.9410466 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\MIME\Database\Content Type\application/pdf","0.0000056","Query: Name","5728"
"10:46:28.9410718 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\MIME\Database\Content Type\application/pdf","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9410970 AM","firefox.exe","7384","RegOpenKey","HKCR\MIME\Database\Content Type\application/pdf","0.0000115","Desired Access: Maximum Allowed","5728"
"10:46:28.9411269 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\MIME\Database\Content Type\application/pdf\Extension","0.0000042","Length: 12","5728"
"10:46:28.9411482 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\MIME\Database\Content Type\application/pdf","0.0000047","Query: Name","5728"
"10:46:28.9411695 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\MIME\Database\Content Type\application/pdf","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9411909 AM","firefox.exe","7384","RegOpenKey","HKCR\MIME\Database\Content Type\application/pdf","0.0000072","Desired Access: Maximum Allowed","5728"
"10:46:28.9412148 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\MIME\Database\Content Type\application/pdf\Extension","0.0000038","Type: REG_SZ, Length: 10, Data: .pdf","5728"
"10:46:28.9412425 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\MIME\Database\Content Type\application/pdf","0.0000021","","5728"
"10:46:28.9412762 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000043","Query: Name","5728"
"10:46:28.9412967 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9413133 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9413338 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\.pdf","0.0000107","Desired Access: Query Value","5728"
"10:46:28.9413628 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\.pdf","0.0000043","Query: Name","5728"
"10:46:28.9413816 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\.pdf","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9414012 AM","firefox.exe","7384","RegOpenKey","HKCR\.pdf","0.0000158","Desired Access: Maximum Allowed, Granted Access: Read","5728"
"10:46:28.9414341 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\.pdf\Content Type","0.0000034","Length: 12","5728"
"10:46:28.9414541 AM","firefox.exe","7384","RegQueryValue","HKCR\.pdf\Content Type","0.0000039","Length: 12","5728"
"10:46:28.9414763 AM","firefox.exe","7384","RegCloseKey","HKCR\.pdf","0.0000021","","5728"
"10:46:28.9414951 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\.pdf","0.0000047","Query: Name","5728"
"10:46:28.9415156 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\.pdf","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9415365 AM","firefox.exe","7384","RegOpenKey","HKCR\.pdf","0.0000068","Desired Access: Maximum Allowed, Granted Access: Read","5728"
"10:46:28.9415595 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\.pdf\Content Type","0.0000026","Length: 44","5728"
"10:46:28.9415757 AM","firefox.exe","7384","RegQueryValue","HKCR\.pdf\Content Type","0.0000039","Type: REG_SZ, Length: 32, Data: application/pdf","5728"
"10:46:28.9415979 AM","firefox.exe","7384","RegCloseKey","HKCR\.pdf","0.0000017","","5728"
"10:46:28.9416188 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\.pdf","0.0000017","","5728"
"10:46:28.9416790 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000047","Query: Name","5728"
"10:46:28.9417024 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9417212 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9417430 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\.pdf","0.0000051","Desired Access: Read","5728"
"10:46:28.9417720 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\.pdf","0.0000042","Query: Name","5728"
"10:46:28.9417937 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\.pdf","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9418159 AM","firefox.exe","7384","RegOpenKey","HKCR\.pdf","0.0000064","Desired Access: Maximum Allowed, Granted Access: Read","5728"
"10:46:28.9418402 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\.pdf\(Default)","0.0000035","Length: 144","5728"
"10:46:28.9418582 AM","firefox.exe","7384","RegQueryValue","HKCR\.pdf\(Default)","0.0000034","Length: 144","5728"
"10:46:28.9418795 AM","firefox.exe","7384","RegCloseKey","HKCR\.pdf","0.0000013","","5728"
"10:46:28.9419132 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000043","Query: Name","5728"
"10:46:28.9419341 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9419499 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9419691 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\.pdf\OpenWithProgids","0.0000098","Desired Access: Read","5728"
"10:46:28.9420002 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\.pdf\OpenWithProgids","0.0000035","Query: Cached, SubKeys: 0, Values: 1","5728"
"10:46:28.9420194 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\.pdf\OpenWithProgids","0.0000043","Query: Name","5728"
"10:46:28.9420395 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\.pdf\OpenWithProgids","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9420604 AM","firefox.exe","7384","RegOpenKey","HKCR\.pdf\OpenWithProgids","0.0000111","Desired Access: Maximum Allowed, Granted Access: Read","5728"
"10:46:28.9420933 AM","firefox.exe","7384","RegQueryKey","HKCR\.pdf\OpenWithProgids","0.0000029","Query: Cached, SubKeys: 0, Values: 1","5728"
"10:46:28.9421120 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\.pdf\OpenWithProgids","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9421317 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\.pdf\OpenWithProgids","0.0000042","Desired Access: Query Value, Enumerate Sub Keys","5728"
"10:46:28.9421521 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\.pdf\OpenWithProgids","0.0000026","Query: Cached, SubKeys: 0, Values: 1","5728"
"10:46:28.9421696 AM","firefox.exe","7384","RegQueryKey","HKCR\.pdf\OpenWithProgids","0.0000026","Query: Cached, SubKeys: 0, Values: 1","5728"
"10:46:28.9421910 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\.pdf\OpenWithProgids","0.0000012","","5728"
"10:46:28.9422097 AM","firefox.exe","7384","RegCloseKey","HKCR\.pdf\OpenWithProgids","0.0000017","","5728"
"10:46:28.9422277 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\.pdf\OpenWithProgids","0.0000038","Query: Name","5728"
"10:46:28.9422481 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\.pdf\OpenWithProgids","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9422690 AM","firefox.exe","7384","RegOpenKey","HKCR\.pdf\OpenWithProgids","0.0000060","Desired Access: Maximum Allowed, Granted Access: Read","5728"
"10:46:28.9422959 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\.pdf\OpenWithProgids","0.0000026","Query: Cached, SubKeys: 0, Values: 1","5728"
"10:46:28.9423138 AM","firefox.exe","7384","RegQueryKey","HKCR\.pdf\OpenWithProgids","0.0000026","Query: Cached, SubKeys: 0, Values: 1","5728"
"10:46:28.9423352 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\Classes\.pdf\OpenWithProgids","0.0000038","Index: 0, Type: REG_NONE","5728"
"10:46:28.9423552 AM","firefox.exe","7384","RegEnumValue","HKCR\.pdf\OpenWithProgids","0.0000064","Index: 0, Type: REG_SZ","5728"
"10:46:28.9423838 AM","firefox.exe","7384","RegCloseKey","HKCR\.pdf\OpenWithProgids","0.0000017","","5728"
"10:46:28.9424103 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\.pdf\OpenWithProgids","0.0000055","Query: Name","5728"
"10:46:28.9424329 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\.pdf\OpenWithProgids","0.0000021","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9424551 AM","firefox.exe","7384","RegOpenKey","HKCR\.pdf\OpenWithProgids","0.0000051","Desired Access: Maximum Allowed, Granted Access: Read","5728"
"10:46:28.9424773 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\.pdf\OpenWithProgids","0.0000025","Query: Cached, SubKeys: 0, Values: 1","5728"
"10:46:28.9424948 AM","firefox.exe","7384","RegQueryKey","HKCR\.pdf\OpenWithProgids","0.0000025","Query: Cached, SubKeys: 0, Values: 1","5728"
"10:46:28.9425135 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\Classes\.pdf\OpenWithProgids","0.0000034","Index: 0, Type: REG_NONE","5728"
"10:46:28.9425319 AM","firefox.exe","7384","RegEnumValue","HKCR\.pdf\OpenWithProgids","0.0000030","Index: 0, Type: REG_SZ","5728"
"10:46:28.9425506 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\Classes\.pdf\OpenWithProgids","0.0000026","Index: 0, Length: 220","5728"
"10:46:28.9425707 AM","firefox.exe","7384","RegCloseKey","HKCR\.pdf\OpenWithProgids","0.0000013","","5728"
"10:46:28.9425920 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\.pdf\OpenWithProgids","0.0000039","Query: Name","5728"
"10:46:28.9426125 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\.pdf\OpenWithProgids","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9426338 AM","firefox.exe","7384","RegOpenKey","HKCR\.pdf\OpenWithProgids","0.0000052","Desired Access: Maximum Allowed, Granted Access: Read","5728"
"10:46:28.9426556 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\.pdf\OpenWithProgids","0.0000026","Query: Cached, SubKeys: 0, Values: 1","5728"
"10:46:28.9426744 AM","firefox.exe","7384","RegQueryKey","HKCR\.pdf\OpenWithProgids","0.0000025","Query: Cached, SubKeys: 0, Values: 1","5728"
"10:46:28.9426936 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\Classes\.pdf\OpenWithProgids","0.0000030","Index: 0, Type: REG_NONE","5728"
"10:46:28.9427124 AM","firefox.exe","7384","RegEnumValue","HKCR\.pdf\OpenWithProgids","0.0000025","Index: 0, Type: REG_SZ","5728"
"10:46:28.9427311 AM","firefox.exe","7384","RegEnumValue","HKCR\.pdf\OpenWithProgids","0.0000030","Index: 0, Name: ChromeHTML, Type: REG_SZ, Length: 2, Data: ","5728"
"10:46:28.9427525 AM","firefox.exe","7384","RegCloseKey","HKCR\.pdf\OpenWithProgids","0.0000017","","5728"
"10:46:28.9427729 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\.pdf\OpenWithProgids","0.0000039","Query: Name","5728"
"10:46:28.9427934 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\.pdf\OpenWithProgids","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9428152 AM","firefox.exe","7384","RegOpenKey","HKCR\.pdf\OpenWithProgids","0.0000060","Desired Access: Maximum Allowed, Granted Access: Read","5728"
"10:46:28.9428382 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\.pdf\OpenWithProgids","0.0000026","Query: Cached, SubKeys: 0, Values: 1","5728"
"10:46:28.9428553 AM","firefox.exe","7384","RegQueryKey","HKCR\.pdf\OpenWithProgids","0.0000025","Query: Cached, SubKeys: 0, Values: 1","5728"
"10:46:28.9428745 AM","firefox.exe","7384","RegEnumValue","HKCU\Software\Classes\.pdf\OpenWithProgids","0.0000034","Index: 0, Type: REG_NONE","5728"
"10:46:28.9428924 AM","firefox.exe","7384","RegEnumValue","HKCR\.pdf\OpenWithProgids","0.0000030","Index: 0, Type: REG_SZ","5728"
"10:46:28.9429137 AM","firefox.exe","7384","RegCloseKey","HKCR\.pdf\OpenWithProgids","0.0000013","","5728"
"10:46:28.9429381 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\.pdf\OpenWithProgids","0.0000017","","5728"
"10:46:28.9429637 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9429850 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdf\OpenWithProgids","0.0000136","Desired Access: Read","5728"
"10:46:28.9430345 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9430550 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.fileTypeAssociation\.pdf","0.0000200","Desired Access: Read","5728"
"10:46:28.9430959 AM","firefox.exe","7384","RegSetInfoKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.fileTypeAssociation\.pdf","0.0000017","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:28.9431151 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.fileTypeAssociation\.pdf","0.0000047","Index: 0, Name: AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","5728"
"10:46:28.9431365 AM","firefox.exe","7384","RegQueryKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.fileTypeAssociation\.pdf","0.0000029","Query: Cached, SubKeys: 1, Values: 0","5728"
"10:46:28.9431561 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.fileTypeAssociation\.pdf","0.0000034","Index: 0, Name: AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","5728"
"10:46:28.9431761 AM","firefox.exe","7384","RegQueryKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.fileTypeAssociation\.pdf","0.0000017","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:28.9431966 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.fileTypeAssociation\.pdf\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000141","Desired Access: Read","5728"
"10:46:28.9432440 AM","firefox.exe","7384","RegQueryKey","HKU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9432632 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000081","Desired Access: Read","5728"
"10:46:28.9432884 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000089","Desired Access: Read","5728"
"10:46:28.9433157 AM","firefox.exe","7384","RegSetInfoKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000012","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:28.9433391 AM","firefox.exe","7384","RegEnumValue","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.fileTypeAssociation\.pdf\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000034","Index: 0, Length: 256","5728"
"10:46:28.9433592 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000017","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:28.9433784 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000064","Desired Access: Read","5728"
"10:46:28.9434074 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000017","","5728"
"10:46:28.9434274 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000018","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9434479 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\AppModel\StateChange\PackageList\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000158","Desired Access: Read","5728"
"10:46:28.9434876 AM","firefox.exe","7384","RegQueryKey","HKU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9435072 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000056","Desired Access: Read","5728"
"10:46:28.9435311 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9435503 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000064","Desired Access: Read","5728"
"10:46:28.9435734 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000098","Desired Access: Read","5728"
"10:46:28.9436037 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000017","","5728"
"10:46:28.9436237 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe\PackageStatus","0.0000043","Length: 16","5728"
"10:46:28.9436468 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000017","","5728"
"10:46:28.9436664 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000013","","5728"
"10:46:28.9436847 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.fileTypeAssociation\.pdf","0.0000034","Index: 1, Length: 288","5728"
"10:46:28.9437056 AM","firefox.exe","7384","RegCloseKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.fileTypeAssociation\.pdf\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000013","","5728"
"10:46:28.9437244 AM","firefox.exe","7384","RegCloseKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.fileTypeAssociation\.pdf","0.0000013","","5728"
"10:46:28.9437483 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9437692 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.fileTypeAssociation\.pdf","0.0000111","Desired Access: Read","5728"
"10:46:28.9437982 AM","firefox.exe","7384","RegSetInfoKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.fileTypeAssociation\.pdf","0.0000017","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:28.9438170 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.fileTypeAssociation\.pdf","0.0000034","Index: 0, Name: AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","5728"
"10:46:28.9438370 AM","firefox.exe","7384","RegQueryKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.fileTypeAssociation\.pdf","0.0000030","Query: Cached, SubKeys: 1, Values: 0","5728"
"10:46:28.9438562 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.fileTypeAssociation\.pdf","0.0000035","Index: 0, Name: AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","5728"
"10:46:28.9438763 AM","firefox.exe","7384","RegQueryKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.fileTypeAssociation\.pdf","0.0000013","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:28.9438964 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.fileTypeAssociation\.pdf\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000046","Desired Access: Read","5728"
"10:46:28.9439228 AM","firefox.exe","7384","RegQueryKey","HKU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9439424 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000073","Desired Access: Read","5728"
"10:46:28.9439672 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000068","Desired Access: Read","5728"
"10:46:28.9439915 AM","firefox.exe","7384","RegSetInfoKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000013","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:28.9440111 AM","firefox.exe","7384","RegEnumValue","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.fileTypeAssociation\.pdf\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000034","Index: 0, Length: 256","5728"
"10:46:28.9440308 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000017","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:28.9440495 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000052","Desired Access: Read","5728"
"10:46:28.9440773 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000012","","5728"
"10:46:28.9440965 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9441187 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\AppModel\StateChange\PackageList\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000132","Desired Access: Read","5728"
"10:46:28.9441549 AM","firefox.exe","7384","RegQueryKey","HKU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9441733 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000051","Desired Access: Read","5728"
"10:46:28.9441963 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9442151 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000060","Desired Access: Read","5728"
"10:46:28.9442381 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000086","Desired Access: Read","5728"
"10:46:28.9442671 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000017","","5728"
"10:46:28.9442868 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe\PackageStatus","0.0000034","Length: 16","5728"
"10:46:28.9443089 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000018","","5728"
"10:46:28.9443281 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000013","","5728"
"10:46:28.9443482 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.fileTypeAssociation\.pdf","0.0000034","Index: 1, Length: 288","5728"
"10:46:28.9443695 AM","firefox.exe","7384","RegCloseKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.fileTypeAssociation\.pdf\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000013","","5728"
"10:46:28.9443887 AM","firefox.exe","7384","RegCloseKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.fileTypeAssociation\.pdf","0.0000013","","5728"
"10:46:28.9444207 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000043","Query: Name","5728"
"10:46:28.9444446 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9444625 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9444835 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000119","Desired Access: Query Value","5728"
"10:46:28.9445180 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000047","Query: Name","5728"
"10:46:28.9445411 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9445641 AM","firefox.exe","7384","RegOpenKey","HKCR\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000102","Desired Access: Maximum Allowed","5728"
"10:46:28.9445931 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\URL Protocol","0.0000030","Length: 12","5728"
"10:46:28.9446161 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000013","","5728"
"10:46:28.9446494 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9446712 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000128","Desired Access: Read","5728"
"10:46:28.9447113 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9447292 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdf","0.0000090","Desired Access: Read","5728"
"10:46:28.9447604 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdf","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9447796 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdf","0.0000038","Desired Access: Read","5728"
"10:46:28.9448026 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdf","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9448214 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdf\UserChoice","0.0000077","Desired Access: Query Value","5728"
"10:46:28.9448483 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdf\UserChoice\ProgId","0.0000038","Type: REG_SZ, Length: 74, Data: AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","5728"
"10:46:28.9448734 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdf\UserChoice","0.0000022","","5728"
"10:46:28.9448935 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdf","0.0000021","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9449135 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdf\UserChoice","0.0000043","Desired Access: Query Value","5728"
"10:46:28.9449336 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdf\UserChoice\Hash","0.0000030","Type: REG_SZ, Length: 26, Data: FBzNI0APpP4=","5728"
"10:46:28.9449532 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdf\UserChoice","0.0000013","","5728"
"10:46:28.9449707 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdf","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9449882 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdf","0.0000034","Desired Access: Read","5728"
"10:46:28.9450091 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdf","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9450262 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdf\UserChoice","0.0000038","Desired Access: Read","5728"
"10:46:28.9450458 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdf\UserChoice","0.0000034","Query: Cached, SubKeys: 0, Values: 2","5728"
"10:46:28.9450663 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdf\UserChoice","0.0000017","","5728"
"10:46:28.9451200 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdf","0.0000026","","5728"
"10:46:28.9451367 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdf","0.0000013","","5728"
"10:46:28.9451555 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pdf","0.0000017","","5728"
"10:46:28.9451802 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000060","Query: Name","5728"
"10:46:28.9452028 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9452177 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9452352 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000052","Desired Access: Read","5728"
"10:46:28.9452591 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000017","","5728"
"10:46:28.9452783 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000039","Query: Name","5728"
"10:46:28.9452997 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9453167 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9453364 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000047","Desired Access: Read","5728"
"10:46:28.9453607 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000064","Query: Name","5728"
"10:46:28.9453833 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9454004 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9454200 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\CurVer","0.0000064","Desired Access: Query Value","5728"
"10:46:28.9454473 AM","firefox.exe","7384","RegOpenKey","HKCR\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\CurVer","0.0000158","Desired Access: Query Value","5728"
"10:46:28.9454857 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000043","Query: Name","5728"
"10:46:28.9455075 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9455237 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9455412 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000038","Desired Access: Read","5728"
"10:46:28.9455680 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000017","","5728"
"10:46:28.9455902 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000043","Query: Name","5728"
"10:46:28.9456111 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9456269 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9456453 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Progid","0.0000042","Desired Access: Query Value","5728"
"10:46:28.9456687 AM","firefox.exe","7384","RegOpenKey","HKCR\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Progid","0.0000133","Desired Access: Query Value","5728"
"10:46:28.9457080 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\.pdf","0.0000017","","5728"
"10:46:28.9457285 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000012","","5728"
"10:46:28.9457635 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000046","Query: Name","5728"
"10:46:28.9457839 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9457989 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9458172 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000051","Desired Access: Query Value","5728"
"10:46:28.9458484 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000042","Query: Name","5728"
"10:46:28.9458680 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9458842 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9459013 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\shell\open\command","0.0000162","Desired Access: Query Value","5728"
"10:46:28.9459392 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell\open\command","0.0000056","Query: Name","5728"
"10:46:28.9459593 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell\open\command","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9459759 AM","firefox.exe","7384","RegOpenKey","HKCR\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell\open\command","0.0000103","Desired Access: Maximum Allowed","5728"
"10:46:28.9459998 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell\open\command\(Default)","0.0000039","Length: 12","5728"
"10:46:28.9460224 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell\open\command","0.0000133","Query: Name","5728"
"10:46:28.9460758 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell\open\command","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9461406 AM","firefox.exe","7384","RegOpenKey","HKCR\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell\open\command","0.0000414","Desired Access: Maximum Allowed","5728"
"10:46:28.9462426 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell\open\command\DelegateExecute","0.0000213","Length: 12","5728"
"10:46:28.9463424 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell\open\command","0.0000508","Query: Name","5728"
"10:46:28.9465144 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell\open\command","0.0000136","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9467486 AM","firefox.exe","7384","RegOpenKey","HKCR\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell\open\command","0.0000504","Desired Access: Maximum Allowed","5728"
"10:46:28.9468404 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell\open\command\DelegateExecute","0.0000051","Type: REG_SZ, Length: 78, Data: {4ED3A719-CEA8-4BD9-910D-E252F997AFC2}","5728"
"10:46:28.9468707 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000017","","5728"
"10:46:28.9468916 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000042","Query: Name","5728"
"10:46:28.9469112 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9469632 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9469871 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4ED3A719-CEA8-4BD9-910D-E252F997AFC2}\InProcServer32","0.0000073","Desired Access: Query Value","5728"
"10:46:28.9470144 AM","firefox.exe","7384","RegOpenKey","HKCR\CLSID\{4ED3A719-CEA8-4BD9-910D-E252F997AFC2}\InProcServer32","0.0000440","Desired Access: Query Value","5728"
"10:46:28.9470934 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4ED3A719-CEA8-4BD9-910D-E252F997AFC2}\InProcServer32","0.0000064","Query: Name","5728"
"10:46:28.9471224 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4ED3A719-CEA8-4BD9-910D-E252F997AFC2}\InProcServer32","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9471552 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4ED3A719-CEA8-4BD9-910D-E252F997AFC2}\InProcServer32","0.0000086","Desired Access: Maximum Allowed","5728"
"10:46:28.9471830 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{4ED3A719-CEA8-4BD9-910D-E252F997AFC2}\InProcServer32\(Default)","0.0000042","Length: 12","5728"
"10:46:28.9472043 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4ED3A719-CEA8-4BD9-910D-E252F997AFC2}\InProcServer32","0.0000056","Query: Name","5728"
"10:46:28.9472218 AM","firefox.exe","7384","RegQueryKey","HKCR\CLSID\{4ED3A719-CEA8-4BD9-910D-E252F997AFC2}\InProcServer32","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9472393 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\CLSID\{4ED3A719-CEA8-4BD9-910D-E252F997AFC2}\InProcServer32","0.0000051","Desired Access: Maximum Allowed","5728"
"10:46:28.9472551 AM","firefox.exe","7384","RegQueryValue","HKCR\CLSID\{4ED3A719-CEA8-4BD9-910D-E252F997AFC2}\InProcServer32\(Default)","0.0000030","Type: REG_EXPAND_SZ, Length: 66, Data: %SystemRoot%\system32\twinui.dll","5728"
"10:46:28.9472785 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell\open\command","0.0000018","","5728"
"10:46:28.9474420 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000047","Query: Name","5728"
"10:46:28.9474616 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9474748 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9474902 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000047","Desired Access: Query Value","5728"
"10:46:28.9475098 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000064","Query: Name","5728"
"10:46:28.9475290 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9475465 AM","firefox.exe","7384","RegOpenKey","HKCR\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000085","Desired Access: Maximum Allowed","5728"
"10:46:28.9475678 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\URL Protocol","0.0000022","Length: 12","5728"
"10:46:28.9475857 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000009","","5728"
"10:46:28.9476301 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9476455 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000124","Desired Access: Read","5728"
"10:46:28.9476771 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000029","Query: Name","5728"
"10:46:28.9476920 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9477035 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9477167 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000034","Desired Access: Read","5728"
"10:46:28.9477457 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9477594 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000073","Desired Access: Read","5728"
"10:46:28.9477841 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000026","Query: Name","5728"
"10:46:28.9477982 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9478093 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9478213 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000030","Desired Access: Read","5728"
"10:46:28.9478366 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000026","Query: Name","5728"
"10:46:28.9478507 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9478614 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9478733 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\CurVer","0.0000034","Desired Access: Query Value","5728"
"10:46:28.9478895 AM","firefox.exe","7384","RegOpenKey","HKCR\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\CurVer","0.0000060","Desired Access: Query Value","5728"
"10:46:28.9479079 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000030","Query: Name","5728"
"10:46:28.9479220 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9479326 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9479450 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000026","Desired Access: Read","5728"
"10:46:28.9479625 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000013","","5728"
"10:46:28.9479817 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000026","Query: Name","5728"
"10:46:28.9479962 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9480099 AM","firefox.exe","7384","RegOpenKey","HKCR\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000046","Desired Access: Maximum Allowed","5728"
"10:46:28.9480261 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\NoStaticDefaultVerb","0.0000021","Length: 12","5728"
"10:46:28.9480397 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000030","Query: Name","5728"
"10:46:28.9480538 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9480645 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9480764 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\shell","0.0000026","Desired Access: Read","5728"
"10:46:28.9480926 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell","0.0000026","Query: Name","5728"
"10:46:28.9481063 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9481195 AM","firefox.exe","7384","RegOpenKey","HKCR\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell","0.0000051","Desired Access: Maximum Allowed","5728"
"10:46:28.9481357 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell\(Default)","0.0000026","Type: REG_SZ, Length: 10, Data: open","5728"
"10:46:28.9481502 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell","0.0000030","Query: Name","5728"
"10:46:28.9481643 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9481750 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9481865 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell\open","0.0000030","Desired Access: Read","5728"
"10:46:28.9482023 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell\open","0.0000030","Query: Name","5728"
"10:46:28.9482159 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell\open","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9482292 AM","firefox.exe","7384","RegOpenKey","HKCR\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell\open","0.0000047","Desired Access: Maximum Allowed","5728"
"10:46:28.9482449 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell\open\NeverDefault","0.0000026","Length: 12","5728"
"10:46:28.9482607 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell","0.0000013","","5728"
"10:46:28.9482812 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell\open","0.0000030","Query: Name","5728"
"10:46:28.9482953 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell\open","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9483085 AM","firefox.exe","7384","RegOpenKey","HKCR\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell\open","0.0000043","Desired Access: Maximum Allowed","5728"
"10:46:28.9483277 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell\open\FriendlyAppName","0.0000115","Length: 144","5728"
"10:46:28.9483960 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000030","Query: Name","5728"
"10:46:28.9484190 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000026","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9484391 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000021","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9484719 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Application","0.0000111","Desired Access: Query Value","5728"
"10:46:28.9485052 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Application","0.0000056","Query: Name","5728"
"10:46:28.9485295 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Application","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9485573 AM","firefox.exe","7384","RegOpenKey","HKCR\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Application","0.0000072","Desired Access: Maximum Allowed","5728"
"10:46:28.9485820 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Application\ApplicationName","0.0000039","Length: 144","5728"
"10:46:28.9486025 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Application\ApplicationName","0.0000034","Type: REG_SZ, Length: 238, Data: @{Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe?ms-resource://Microsoft.MicrosoftEdge/Resources/AppName}","5728"
"10:46:28.9486268 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Application","0.0000021","","5728"
"10:46:28.9489635 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MrmCoreR.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:28.9490134 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MrmCoreR.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","5728"
"10:46:28.9490326 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MrmCoreR.dll","0.0000064","","5728"
"10:46:28.9491712 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MrmCoreR.dll","0.0000312","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:28.9492340 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\MrmCoreR.dll","0.0000059","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:28.9492707 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\MrmCoreR.dll","0.0000017","SyncType: SyncTypeOther","5728"
"10:46:28.9493650 AM","firefox.exe","7384","Load Image","C:\Windows\System32\MrmCoreR.dll","0.0000000","Image Base: 0x7ffb39d90000, Image Size: 0x11f000","5728"
"10:46:28.9493940 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\MrmCoreR.dll","0.0000051","Name: \Windows\System32\MrmCoreR.dll","5728"
"10:46:28.9495211 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MrmCoreR.dll","0.0000085","","5728"
"10:46:28.9498983 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\MrmCoreR.dll","0.0274257","Offset: 1,024,000, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:28.9555124 AM","firefox.exe","7336","CreateFile","C:\Windows\Fonts\segoeui.ttf","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:28.9555563 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\Fonts\segoeui.ttf","0.0000043","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:13 PM, FileAttributes: A","7392"
"10:46:28.9555687 AM","firefox.exe","7336","CloseFile","C:\Windows\Fonts\segoeui.ttf","0.0000060","","7392"
"10:46:28.9560278 AM","firefox.exe","7336","CreateFile","C:\Windows\Fonts\seguisb.ttf","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:28.9560632 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\Fonts\seguisb.ttf","0.0000030","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 7:31:30 PM, FileAttributes: A","7392"
"10:46:28.9560730 AM","firefox.exe","7336","CloseFile","C:\Windows\Fonts\seguisb.ttf","0.0000051","","7392"
"10:46:28.9704334 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-malware-simple.pset","0.0000102","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/25/2020 10:25:03 AM, ChangeTime: 3/25/2020 10:25:03 AM, FileAttributes: A","7900"
"10:46:28.9704688 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-malware-simple.pset","0.0000162","","7900"
"10:46:28.9709436 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-phish-simple.pset","0.0004766","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.9714629 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-phish-simple.pset","0.0000077","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/25/2020 10:25:03 AM, ChangeTime: 3/25/2020 10:25:03 AM, FileAttributes: A","7900"
"10:46:28.9714932 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-phish-simple.pset","0.0000154","","7900"
"10:46:28.9720329 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-track-simple.pset","0.0138706","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.9754966 AM","firefox.exe","7904","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0465272","Offset: 9,109,504, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8004"
"10:46:28.9776142 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000221","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:28.9776624 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000047","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","5728"
"10:46:28.9776867 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000072","","5728"
"10:46:28.9778953 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\CreateUriCacheSize","0.0000056","Length: 16","5728"
"10:46:28.9779248 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\CreateUriCacheSize","0.0000021","Length: 16","5728"
"10:46:28.9779435 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\CreateUriCacheSize","0.0000035","Length: 16","5728"
"10:46:28.9779632 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\CreateUriCacheSize","0.0000038","Length: 16","5728"
"10:46:28.9780011 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode","0.0000022","Length: 16","5728"
"10:46:28.9780178 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode","0.0000021","Length: 16","5728"
"10:46:28.9780336 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode","0.0000025","Length: 16","5728"
"10:46:28.9780489 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\EnablePunycode","0.0000034","Type: REG_DWORD, Length: 4, Data: 1","5728"
"10:46:28.9780797 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9781010 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ALLOW_REVERSE_SOLIDUS_IN_USERINFO_KB932562","0.0000047","Desired Access: Query Value","5728"
"10:46:28.9781215 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9781368 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ALLOW_REVERSE_SOLIDUS_IN_USERINFO_KB932562","0.0000039","Desired Access: Query Value","5728"
"10:46:28.9782017 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9782183 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_IETLDLIST_FOR_DOMAIN_DETERMINATION","0.0000034","Desired Access: Query Value","5728"
"10:46:28.9782350 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9782495 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_IETLDLIST_FOR_DOMAIN_DETERMINATION","0.0000030","Desired Access: Query Value","5728"
"10:46:28.9782947 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9783092 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_URI_DISABLECACHE","0.0000030","Desired Access: Query Value","5728"
"10:46:28.9783241 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9783378 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_URI_DISABLECACHE","0.0000034","Desired Access: Query Value","5728"
"10:46:28.9784295 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\MrmCoreR.dll","0.0044694","Offset: 1,019,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:28.9829829 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\MrmCoreR.dll","0.0005184","Offset: 1,007,616, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:28.9836289 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000089","Desired Access: Read","5728"
"10:46:28.9836596 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000064","Desired Access: Read","5728"
"10:46:28.9836886 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9837142 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\AppModel\Origins","0.0000201","Desired Access: Read","5728"
"10:46:28.9837539 AM","firefox.exe","7384","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModel\Origins","0.0000013","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:28.9837705 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModel\Origins\9lexZcP3btn6IUJh4YGgGJHL5rXkTaeGT/I6Jxl7LEU","0.0000150","Type: REG_DWORD, Length: 4, Data: 3","5728"
"10:46:28.9838094 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModel\Origins","0.0000038","","5728"
"10:46:28.9838776 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000060","Desired Access: Read","5728"
"10:46:28.9838994 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\StateSeparation\RedirectionMap\Keys","0.0000051","Desired Access: Read","5728"
"10:46:28.9839229 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9839425 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\AppModel\Origins","0.0000081","Desired Access: Read","5728"
"10:46:28.9839706 AM","firefox.exe","7384","RegSetInfoKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModel\Origins","0.0000018","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:28.9839933 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModel\Origins\9lexZcP3btn6IUJh4YGgGJHL5rXkTaeGT/I6Jxl7LEU","0.0000175","Type: REG_DWORD, Length: 4, Data: 3","5728"
"10:46:28.9840338 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModel\Origins","0.0000021","","5728"
"10:46:28.9845219 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\MrmCoreR.dll","0.0004851","Offset: 991,232, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:28.9850488 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000034","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9850830 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000226","Desired Access: Read","5728"
"10:46:28.9851290 AM","firefox.exe","7384","RegQueryValue","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe\Path","0.0000043","Type: REG_SZ, Length: 120, Data: C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe","5728"
"10:46:28.9851534 AM","firefox.exe","7384","RegCloseKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000017","","5728"
"10:46:28.9852071 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000056","Desired Access: Read","5728"
"10:46:28.9852302 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9852464 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\ResourcesConfig","0.0000060","Desired Access: Read","5728"
"10:46:28.9852656 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\ResourcesConfig","0.0000153","Desired Access: Read","5728"
"10:46:28.9852984 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000013","","5728"
"10:46:28.9854222 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000042","Desired Access: Read","5728"
"10:46:28.9854418 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9854563 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\ResourcesConfig","0.0000047","Desired Access: Read","5728"
"10:46:28.9854729 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\ResourcesConfig","0.0000094","Desired Access: Read","5728"
"10:46:28.9854977 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000017","","5728"
"10:46:28.9855335 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.ViewManagement.AccessibilitySettings","0.0000120","Desired Access: Read","5728"
"10:46:28.9855608 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.ViewManagement.AccessibilitySettings","0.0000030","Query: Basic, Name: Windows.UI.ViewManagement.AccessibilitySettings","5728"
"10:46:28.9855843 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.ViewManagement.AccessibilitySettings\ActivationType","0.0000030","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:28.9856018 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.ViewManagement.AccessibilitySettings\Server","0.0000026","Length: 144","5728"
"10:46:28.9856176 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.ViewManagement.AccessibilitySettings\DllPath","0.0000030","Type: REG_SZ, Length: 70, Data: C:\Windows\System32\Windows.UI.dll","5728"
"10:46:28.9856338 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.ViewManagement.AccessibilitySettings\Threading","0.0000038","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:28.9856500 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.ViewManagement.AccessibilitySettings\TrustLevel","0.0000021","Type: REG_DWORD, Length: 4, Data: 0","5728"
"10:46:28.9856649 AM","firefox.exe","7384","RegQueryKey","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.ViewManagement.AccessibilitySettings","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9856795 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.ViewManagement.AccessibilitySettings\CustomAttributes","0.0000029","Desired Access: Read","5728"
"10:46:28.9856957 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.ViewManagement.AccessibilitySettings\RemoteServer","0.0000025","Length: 144","5728"
"10:46:28.9857102 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.ViewManagement.AccessibilitySettings\ActivateAsUser","0.0000021","Length: 16","5728"
"10:46:28.9857247 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.ViewManagement.AccessibilitySettings\ActivateInSharedBroker","0.0000021","Length: 16","5728"
"10:46:28.9857392 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.ViewManagement.AccessibilitySettings\Permissions","0.0000021","Length: 140","5728"
"10:46:28.9857618 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\WindowsRuntime\ActivatableClassId\Windows.UI.ViewManagement.AccessibilitySettings","0.0000017","","5728"
"10:46:28.9859252 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9859265 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-track-simple.pset","0.0000043","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/25/2020 10:25:03 AM, ChangeTime: 3/25/2020 10:25:03 AM, FileAttributes: A","7900"
"10:46:28.9859436 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Scaling","0.0000081","Desired Access: Query Value","5728"
"10:46:28.9859453 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-track-simple.pset","0.0000068","","7900"
"10:46:28.9859743 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9859939 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Scaling","0.0000056","Desired Access: Query Value","5728"
"10:46:28.9860208 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9860353 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Scaling","0.0000043","Desired Access: Query Value","5728"
"10:46:28.9860780 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9860929 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Scaling","0.0000043","Desired Access: Query Value","5728"
"10:46:28.9861223 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9861368 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Scaling","0.0000039","Desired Access: Query Value","5728"
"10:46:28.9861539 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9861680 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Scaling","0.0000038","Desired Access: Query Value","5728"
"10:46:28.9861851 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9861996 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Scaling","0.0000042","Desired Access: Query Value","5728"
"10:46:28.9862606 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9862751 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Scaling","0.0000042","Desired Access: Query Value","5728"
"10:46:28.9862926 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9862973 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-trackwhite-simple.pset","0.0005849","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.9863062 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Scaling","0.0000039","Desired Access: Query Value","5728"
"10:46:28.9863233 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9863369 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Scaling","0.0000060","Desired Access: Query Value","5728"
"10:46:28.9864611 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000090","Desired Access: Maximum Allowed, Granted Access: All Access","5728"
"10:46:28.9865004 AM","firefox.exe","7384","RegOpenKey","HKCU\Control Panel\International\Geo","0.0000111","Desired Access: Read","5728"
"10:46:28.9865375 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000025","","5728"
"10:46:28.9865644 AM","firefox.exe","7384","RegQueryValue","HKCU\Control Panel\International\Geo\Nation","0.0000047","Type: REG_SZ, Length: 8, Data: 244","5728"
"10:46:28.9865929 AM","firefox.exe","7384","RegCloseKey","HKCU\Control Panel\International\Geo","0.0000022","","5728"
"10:46:28.9867013 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000022","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9867269 AM","firefox.exe","7384","RegOpenKey","HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Themes\Personalize","0.0000077","Desired Access: Query Value","5728"
"10:46:28.9867559 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\CurrentVersion\Themes\Personalize\SystemUsesLightTheme","0.0000034","Length: 16","5728"
"10:46:28.9867807 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\CurrentVersion\Themes\Personalize","0.0000017","","5728"
"10:46:28.9868020 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9868242 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Themes\Personalize","0.0000137","Desired Access: Query Value","5728"
"10:46:28.9868699 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\OEM","0.0000136","Desired Access: Read","5728"
"10:46:28.9869048 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\OEM\DeviceForm","0.0000035","Length: 20","5728"
"10:46:28.9869065 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-trackwhite-simple.pset","0.0000047","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/25/2020 10:25:03 AM, ChangeTime: 3/25/2020 10:25:03 AM, FileAttributes: A","7900"
"10:46:28.9869249 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-trackwhite-simple.pset","0.0000081","","7900"
"10:46:28.9869287 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\OEM","0.0000017","","5728"
"10:46:28.9869560 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows NT\CurrentVersion\OEM","0.0000064","Desired Access: Read","5728"
"10:46:28.9869808 AM","firefox.exe","7384","RegQueryValue","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\OEM\DeviceForm","0.0000025","Length: 20","5728"
"10:46:28.9870021 AM","firefox.exe","7384","RegCloseKey","HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\OEM","0.0000017","","5728"
"10:46:28.9870350 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000038","Desired Access: Read","5728"
"10:46:28.9870537 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9870683 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\ResourceQualifiers","0.0000055","Desired Access: Read","5728"
"10:46:28.9870853 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\ResourceQualifiers","0.0000132","Desired Access: Read","5728"
"10:46:28.9871139 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000013","","5728"
"10:46:28.9872018 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-unwanted-simple.pset","0.0000435","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.9872577 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-unwanted-simple.pset","0.0000030","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/25/2020 10:25:03 AM, ChangeTime: 3/25/2020 10:25:03 AM, FileAttributes: A","7900"
"10:46:28.9872701 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-unwanted-simple.pset","0.0000051","","7900"
"10:46:28.9873059 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing","0.0000051","","7900"
"10:46:28.9873234 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing","0.0000038","","7900"
"10:46:28.9873580 AM","firefox.exe","7384","CreateFile","C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\resources.pri","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:28.9873865 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\resources.pri","0.0000043","CreationTime: 4/25/2019 5:33:19 PM, LastAccessTime: 4/25/2019 5:33:19 PM, LastWriteTime: 3/14/2019 12:48:03 AM, ChangeTime: 4/25/2019 8:14:10 PM, AllocationSize: 1024000, EndOfFile: 1021024, FileAttributes: A","5728"
"10:46:28.9874032 AM","firefox.exe","7384","CloseFile","C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\resources.pri","0.0000051","","5728"
"10:46:28.9874907 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000051","Desired Access: Read","5728"
"10:46:28.9875107 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9875265 AM","firefox.exe","7384","RegCreateKey","HKCU\Software\Classes\Local Settings\MrtCache\C:%5CWindows%5CSystemApps%5CMicrosoft.MicrosoftEdge_8wekyb3d8bbwe%5Cresources.pri","0.0000055","Desired Access: Read/Write","5728"
"10:46:28.9875431 AM","firefox.exe","7384","RegCreateKey","HKCU\Software\Classes\Local Settings\MrtCache\C:%5CWindows%5CSystemApps%5CMicrosoft.MicrosoftEdge_8wekyb3d8bbwe%5Cresources.pri","0.0000141","Desired Access: Read/Write, Disposition: REG_OPENED_EXISTING_KEY","5728"
"10:46:28.9875768 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000039","Desired Access: Maximum Allowed, Granted Access: All Access","5728"
"10:46:28.9875943 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MrtCache\C:%5CWindows%5CSystemApps%5CMicrosoft.MicrosoftEdge_8wekyb3d8bbwe%5Cresources.pri\1d4da3a40c3211b\bc088d99","0.0000043","Desired Access: Read/Write","5728"
"10:46:28.9876093 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\MrtCache\C:%5CWindows%5CSystemApps%5CMicrosoft.MicrosoftEdge_8wekyb3d8bbwe%5Cresources.pri\1d4da3a40c3211b\bc088d99","0.0000094","Desired Access: Read/Write","5728"
"10:46:28.9876340 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000013","","5728"
"10:46:28.9876511 AM","firefox.exe","7384","RegSetValue","HKCU\Software\Classes\Local Settings\MrtCache\C:%5CWindows%5CSystemApps%5CMicrosoft.MicrosoftEdge_8wekyb3d8bbwe%5Cresources.pri\1d4da3a40c3211b\bc088d99\LanguageList","0.0000030","Type: REG_MULTI_SZ, Length: 84, Data: _en-US;en_standard_125_US_LTR_dark_Desktop","5728"
"10:46:28.9876686 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\MrtCache\C:%5CWindows%5CSystemApps%5CMicrosoft.MicrosoftEdge_8wekyb3d8bbwe%5Cresources.pri\1d4da3a40c3211b\bc088d99\@{Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe?ms-resource://Microsoft.MicrosoftEdge/Resources/AppName}","0.0000034","Type: REG_SZ, Length: 30, Data: Microsoft Edge","5728"
"10:46:28.9876801 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\ads-track-digest256.vlpset","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.9876844 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\MrtCache\C:%5CWindows%5CSystemApps%5CMicrosoft.MicrosoftEdge_8wekyb3d8bbwe%5Cresources.pri\1d4da3a40c3211b\bc088d99\@{Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe?ms-resource://Microsoft.MicrosoftEdge/Resources/AppName}","0.0000029","Type: REG_SZ, Length: 30, Data: Microsoft Edge","5728"
"10:46:28.9877019 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\MrtCache\C:%5CWindows%5CSystemApps%5CMicrosoft.MicrosoftEdge_8wekyb3d8bbwe%5Cresources.pri","0.0000012","","5728"
"10:46:28.9877078 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\ads-track-digest256.vlpset","0.0000030","CreationTime: 3/26/2020 10:25:32 AM, LastAccessTime: 3/26/2020 10:25:32 AM, LastWriteTime: 3/26/2020 10:25:32 AM, ChangeTime: 3/26/2020 10:25:32 AM, AllocationSize: 57344, EndOfFile: 53253, FileAttributes: A","7900"
"10:46:28.9877202 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000030","","5728"
"10:46:28.9877287 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\ads-track-digest256.vlpset","0.0000098","","7900"
"10:46:28.9877509 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\MrtCache\C:%5CWindows%5CSystemApps%5CMicrosoft.MicrosoftEdge_8wekyb3d8bbwe%5Cresources.pri\1d4da3a40c3211b\bc088d99","0.0000017","","5728"
"10:46:28.9877859 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000013","","5728"
"10:46:28.9878072 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000013","","5728"
"10:46:28.9878307 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\Shell\open","0.0000013","","5728"
"10:46:28.9878529 AM","firefox.exe","7384","RegCloseKey","HKCR\CLSID\{4ED3A719-CEA8-4BD9-910D-E252F997AFC2}\InProcServer32","0.0000017","","5728"
"10:46:28.9878793 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000056","Query: Name","5728"
"10:46:28.9879045 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9879229 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9879442 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000055","Desired Access: Query Value","5728"
"10:46:28.9879544 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\ads-track-digest256.vlpset","0.0000209","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:28.9879707 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000042","Query: Name","5728"
"10:46:28.9879924 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:28.9880146 AM","firefox.exe","7384","RegOpenKey","HKCR\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000111","Desired Access: Maximum Allowed","5728"
"10:46:28.9880300 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\ads-track-digest256.vlpset","0.0214152","Offset: 0, Length: 53,253, Priority: Normal","7900"
"10:46:28.9880423 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723\(Default)","0.0000030","Length: 12","5728"
"10:46:28.9880645 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\AppXd4nrz8ff68srnhf9t5a8sbjyar1cr723","0.0000013","","5728"
"10:46:28.9880910 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\ads-track-digest256.vlpset","0.0211981","Offset: 0, Length: 53,253, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7900"
"10:46:28.9890087 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000256","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4904"
"10:46:28.9892084 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000141","","4904"
"10:46:28.9912628 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features\doh-rollout@mozilla.org.xpi","0.0000192","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7920"
"10:46:28.9914053 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features\doh-rollout@mozilla.org.xpi","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7920"
"10:46:28.9921443 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000393","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2444"
"10:46:28.9922028 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000059","CreationTime: 3/26/2020 10:46:26 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 16384, EndOfFile: 13546, FileAttributes: A","2444"
"10:46:28.9922258 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000085","","2444"
"10:46:28.9925411 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2444"
"10:46:28.9925795 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000051","CreationTime: 3/26/2020 10:46:26 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, FileAttributes: A","2444"
"10:46:28.9925991 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000069","","2444"
"10:46:28.9929008 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2444"
"10:46:28.9929362 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000043","CreationTime: 3/26/2020 10:46:26 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, FileAttributes: A","2444"
"10:46:28.9929537 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000064","","2444"
"10:46:28.9931214 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000298","Desired Access: Generic Write, Read Attributes, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","2444"
"10:46:28.9931773 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000064","","2444"
"10:46:28.9934610 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2444"
"10:46:28.9935075 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000043","CreationTime: 3/26/2020 10:46:26 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, FileAttributes: A","2444"
"10:46:28.9935267 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000068","","2444"
"10:46:28.9938036 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2444"
"10:46:28.9938395 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000038","CreationTime: 3/26/2020 10:46:26 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, FileAttributes: A","2444"
"10:46:28.9938574 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000064","","2444"
"10:46:28.9940165 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000376","Desired Access: Generic Write, Read Attributes, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","2444"
"10:46:28.9940839 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000064","","2444"
"10:46:28.9943421 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2444"
"10:46:28.9943775 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000043","CreationTime: 3/26/2020 10:46:26 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, FileAttributes: A","2444"
"10:46:28.9943937 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000055","","2444"
"10:46:28.9945712 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000218","Desired Access: Generic Read, Disposition: Create, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: 0","2444"
"10:46:28.9947359 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0001749","Desired Access: Generic Read, Disposition: Create, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","2444"
"10:46:28.9949437 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000333","","2444"
"10:46:28.9951655 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000261","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2444"
"10:46:28.9953729 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000811","Desired Access: Generic Write, Read Attributes, Disposition: OverwriteIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Overwritten","2444"
"10:46:28.9955491 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0001152","Offset: 0, Length: 4,096, Priority: Normal","2444"
"10:46:28.9957130 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000631","Offset: 4,096, Length: 4,096, Priority: Normal","2444"
"10:46:28.9958043 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000072","Offset: 8,192, Length: 4,096","2444"
"10:46:28.9958354 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000051","Offset: 12,288, Length: 1,258","2444"
"10:46:28.9958593 AM","firefox.exe","7384","FlushBuffersFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0976663","","2444"
"10:46:28.9959711 AM","firefox.exe","7384","WriteFile","C:\$ConvertToNonresident","0.0020638","Offset: 0, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2444"
"10:46:29.0095383 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\ads-track-digest256.vlpset","0.0000102","AllocationSize: 57,344, EndOfFile: 53,253, NumberOfLinks: 1, DeletePending: False, Directory: False","7900"
"10:46:29.0097486 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\ads-track-digest256.vlpset","0.0000218","","7900"
"10:46:29.0105345 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\allow-flashallow-digest256.vlpset","0.0000329","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.0105947 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\allow-flashallow-digest256.vlpset","0.0000072","CreationTime: 3/26/2020 10:25:34 AM, LastAccessTime: 3/26/2020 10:25:34 AM, LastWriteTime: 3/26/2020 10:25:34 AM, ChangeTime: 3/26/2020 10:25:34 AM, AllocationSize: 72, EndOfFile: 69, FileAttributes: A","7900"
"10:46:29.0106199 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\allow-flashallow-digest256.vlpset","0.0000098","","7900"
"10:46:29.0108490 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\signedInUser.json","0.0000286","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: n/a","7572"
"10:46:29.0108690 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\allow-flashallow-digest256.vlpset","0.0000239","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.0109292 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\allow-flashallow-digest256.vlpset","0.0000951","Offset: 0, Length: 69, Priority: Normal","7900"
"10:46:29.0109885 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\allow-flashallow-digest256.vlpset","0.0000124","Offset: 0, Length: 69, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7900"
"10:46:29.0110568 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\allow-flashallow-digest256.vlpset","0.0000064","AllocationSize: 72, EndOfFile: 69, NumberOfLinks: 1, DeletePending: False, Directory: False","7900"
"10:46:29.0111020 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\allow-flashallow-digest256.vlpset","0.0000119","","7900"
"10:46:29.0114907 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\analytics-track-digest256.vlpset","0.0000367","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.0115227 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\downloads.json","0.0000264","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: n/a","120"
"10:46:29.0115470 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\analytics-track-digest256.vlpset","0.0000060","CreationTime: 3/26/2020 10:25:33 AM, LastAccessTime: 3/26/2020 10:25:33 AM, LastWriteTime: 3/26/2020 10:25:33 AM, ChangeTime: 3/26/2020 10:25:33 AM, AllocationSize: 12288, EndOfFile: 9797, FileAttributes: A","7900"
"10:46:29.0115837 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\analytics-track-digest256.vlpset","0.0000085","","7900"
"10:46:29.0118192 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\analytics-track-digest256.vlpset","0.0000316","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.0118896 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\analytics-track-digest256.vlpset","0.0969810","Offset: 0, Length: 9,797, Priority: Normal","7900"
"10:46:29.0119523 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\analytics-track-digest256.vlpset","0.0968761","Offset: 0, Length: 9,797, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7900"
"10:46:29.0134487 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\bookmarkbackups","0.0000960","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4904"
"10:46:29.0135814 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\bookmarkbackups\*","0.0000243","Filter: *, 1: .","4904"
"10:46:29.0198380 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000111","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7884"
"10:46:29.0199122 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000227","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7884"
"10:46:29.0200471 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.1388823","Offset: 458,752, Length: 32,768","7884"
"10:46:29.0201123 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.1387842","Offset: 458,752, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7884"
"10:46:29.0246777 AM","firefox.exe","7336","CreateFile","C:\Windows\Fonts\segoeuil.ttf","0.0000281","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:29.0247959 AM","firefox.exe","7336","QueryInformationVolume","C:\Windows\Fonts\segoeuil.ttf","0.0000059","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","7392"
"10:46:29.0248454 AM","firefox.exe","7336","QueryAllInformationFile","C:\Windows\Fonts\segoeuil.ttf","0.0000081","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 7:31:30 PM, FileAttributes: A, AllocationSize: 880,640, EndOfFile: 878,372, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x8000000054157, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","7392"
"10:46:29.0249196 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Fonts\segoeuil.ttf","0.0000056","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7392"
"10:46:29.0249572 AM","firefox.exe","7336","QueryStandardInformationFile","C:\Windows\Fonts\segoeuil.ttf","0.0000046","AllocationSize: 880,640, EndOfFile: 878,372, NumberOfLinks: 3, DeletePending: False, Directory: False","7392"
"10:46:29.0250186 AM","firefox.exe","7336","CreateFileMapping","C:\Windows\Fonts\segoeuil.ttf","0.0000068","SyncType: SyncTypeOther","7392"
"10:46:29.0253373 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.1766658","Offset: 11,497,472, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:29.0284396 AM","firefox.exe","7904","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.2303598","Offset: 11,784,192, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8004"
"10:46:29.0409149 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0909139","Offset: 13,160,448, Length: 4,096","7760"
"10:46:29.0409815 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0908174","Offset: 13,160,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:29.0935955 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0228796","","2444"
"10:46:29.1089419 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\analytics-track-digest256.vlpset","0.0000094","AllocationSize: 12,288, EndOfFile: 9,797, NumberOfLinks: 1, DeletePending: False, Directory: False","7900"
"10:46:29.1090298 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\analytics-track-digest256.vlpset","0.0000358","","7900"
"10:46:29.1094966 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\base-cryptomining-track-digest256.vlpset","0.0000268","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.1095448 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\base-cryptomining-track-digest256.vlpset","0.0000051","CreationTime: 3/26/2020 10:25:37 AM, LastAccessTime: 3/26/2020 10:25:37 AM, LastWriteTime: 3/26/2020 10:25:37 AM, ChangeTime: 3/26/2020 10:25:37 AM, AllocationSize: 4096, EndOfFile: 2277, FileAttributes: A","7900"
"10:46:29.1095674 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\base-cryptomining-track-digest256.vlpset","0.0000077","","7900"
"10:46:29.1097739 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\base-cryptomining-track-digest256.vlpset","0.0000226","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.1098332 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\base-cryptomining-track-digest256.vlpset","0.0332685","Offset: 0, Length: 2,277, Priority: Normal","7900"
"10:46:29.1099202 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\base-cryptomining-track-digest256.vlpset","0.0331393","Offset: 0, Length: 2,277, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7900"
"10:46:29.1166654 AM","firefox.exe","7384","ReadFile","C:\$Directory","0.0633332","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:29.1167282 AM","firefox.exe","1008","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3f543eee4cd06375","0.0505481","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1316"
"10:46:29.1167520 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000461","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:29.1168596 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000158","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:29.1169884 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000060","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:29.1170136 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:29.1170349 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","Offset: 1,073,741,824, Length: 1","5068"
"10:46:29.1170750 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2444"
"10:46:29.1171181 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000056","CreationTime: 3/26/2020 10:46:26 AM, LastAccessTime: 3/26/2020 10:46:29 AM, LastWriteTime: 3/26/2020 10:46:29 AM, ChangeTime: 3/26/2020 10:46:29 AM, AllocationSize: 16384, EndOfFile: 13546, FileAttributes: A","2444"
"10:46:29.1171352 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000064","","2444"
"10:46:29.1173933 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2444"
"10:46:29.1174198 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000034","CreationTime: 3/26/2020 10:46:26 AM, LastAccessTime: 3/26/2020 10:46:29 AM, LastWriteTime: 3/26/2020 10:46:29 AM, ChangeTime: 3/26/2020 10:46:29 AM, FileAttributes: A","2444"
"10:46:29.1174253 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000491","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:29.1174317 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000047","","2444"
"10:46:29.1175678 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000244","Desired Access: Read Attributes, Delete, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2444"
"10:46:29.1176071 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000038","Attributes: A, ReparseTag: 0x0","2444"
"10:46:29.1176259 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0000025","CreationTime: 3/26/2020 10:46:26 AM, LastAccessTime: 3/26/2020 10:46:29 AM, LastWriteTime: 3/26/2020 10:46:29 AM, ChangeTime: 3/26/2020 10:46:29 AM, FileAttributes: A","2444"
"10:46:29.1177304 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000200","Desired Access: Write Data/Add File, Synchronize, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","2444"
"10:46:29.1178392 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.1178930 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000051","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:29.1179173 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000089","","5068"
"10:46:29.1179898 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000056","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:29.1180201 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000090","Offset: 0, Length: 4,096","5068"
"10:46:29.1181199 AM","firefox.exe","7384","SetRenameInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs-1.js","0.0002795","ReplaceIfExists: True, FileName: C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","2444"
"10:46:29.1184135 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000269","","2444"
"10:46:29.1184864 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\prefs.js","0.0000589","","2444"
"10:46:29.1187032 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.1187416 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000043","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:29.1187591 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000055","","5068"
"10:46:29.1189050 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000265","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:29.1189690 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:29.1189895 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000068","Offset: 0, Length: 4,096","5068"
"10:46:29.1196939 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000341","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.1197524 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000059","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:29.1197763 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0120687","","5068"
"10:46:29.1318979 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.4602497","Offset: 13,176,832, Length: 4,096","7760"
"10:46:29.1319346 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.4512842","Offset: 13,176,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:29.1323450 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.1323932 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000060","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:29.1324163 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000072","","5068"
"10:46:29.1326377 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000248","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.1326855 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000047","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,838, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5068"
"10:46:29.1327068 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000069","","5068"
"10:46:29.1327939 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000060","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:29.1328779 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000052","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:29.1329074 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000119","Offset: 8,192, Length: 4,096","5068"
"10:46:29.1329735 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:29.1329970 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","Offset: 12,288, Length: 4,096","5068"
"10:46:29.1330610 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000042","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:29.1330840 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000060","Offset: 16,384, Length: 4,096","5068"
"10:46:29.1331399 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:29.1331604 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000025","Offset: 1,073,741,826, Length: 510","5068"
"10:46:29.1331877 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:29.1332039 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:29.1332295 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000145","","5068"
"10:46:29.1333178 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","Offset: 1,073,741,825, Length: 1","5068"
"10:46:29.1333340 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000022","Offset: 1,073,741,826, Length: 510","5068"
"10:46:29.1333485 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000018","Offset: 1,073,741,824, Length: 1","5068"
"10:46:29.1333673 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.4534927","","5068"
"10:46:29.1432088 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\base-cryptomining-track-digest256.vlpset","0.0000111","AllocationSize: 4,096, EndOfFile: 2,277, NumberOfLinks: 1, DeletePending: False, Directory: False","7900"
"10:46:29.1432809 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\base-cryptomining-track-digest256.vlpset","0.0000180","","7900"
"10:46:29.1437285 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\base-fingerprinting-track-digest256.vlpset","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.1437767 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\base-fingerprinting-track-digest256.vlpset","0.0000056","CreationTime: 3/26/2020 10:25:36 AM, LastAccessTime: 3/26/2020 10:25:36 AM, LastWriteTime: 3/26/2020 10:25:36 AM, ChangeTime: 3/26/2020 10:25:36 AM, AllocationSize: 4096, EndOfFile: 3429, FileAttributes: A","7900"
"10:46:29.1438010 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\base-fingerprinting-track-digest256.vlpset","0.0000081","","7900"
"10:46:29.1440242 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\base-fingerprinting-track-digest256.vlpset","0.0000230","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.1440946 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\base-fingerprinting-track-digest256.vlpset","0.0425750","Offset: 0, Length: 3,429, Priority: Normal","7900"
"10:46:29.1441522 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\base-fingerprinting-track-digest256.vlpset","0.0424990","Offset: 0, Length: 3,429, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7900"
"10:46:29.1590203 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000204","Offset: 123, Length: 1","7884"
"10:46:29.1673330 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3f543eee4cd06375","0.0067798","Offset: 0, Length: 32, Priority: Normal","1316"
"10:46:29.1673859 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3f543eee4cd06375","0.0066914","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","1316"
"10:46:29.1739912 AM","firefox.exe","7336","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-S-1-5-21-429253301-29906273-2566354956-1001.dat","0.0588066","Offset: 421,888, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:29.1741652 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3f543eee4cd06375","0.0000094","Offset: 32, Length: 32","1316"
"10:46:29.1741951 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3f543eee4cd06375","0.0000047","Offset: 64, Length: 64","1316"
"10:46:29.1742160 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3f543eee4cd06375","0.0000039","Offset: 128, Length: 128","1316"
"10:46:29.1742344 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3f543eee4cd06375","0.0000034","Offset: 256, Length: 256","1316"
"10:46:29.1742519 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3f543eee4cd06375","0.0000029","Offset: 512, Length: 512","1316"
"10:46:29.1742685 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3f543eee4cd06375","0.0000034","Offset: 1,024, Length: 1,024","1316"
"10:46:29.1742860 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3f543eee4cd06375","0.0000034","Offset: 2,048, Length: 2,048","1316"
"10:46:29.1743031 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3f543eee4cd06375","0.0357146","Offset: 4,096, Length: 4,096","1316"
"10:46:29.1802504 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\datareporting\state.json","0.0012330","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5244"
"10:46:29.1815206 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\datareporting\state.json","0.0000038","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","5244"
"10:46:29.1815372 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\datareporting\state.json","0.0000055","CreationTime: 6/19/2019 4:53:55 PM, LastAccessTime: 6/19/2019 4:53:55 PM, LastWriteTime: 6/19/2019 4:53:55 PM, ChangeTime: 6/19/2019 4:53:55 PM, FileAttributes: A, AllocationSize: 56, EndOfFile: 51, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0xe00000000a4da, EaSize: 0, Access: Generic Read, Position: 0, Mode: Sequential Access, Synchronous IO Non-Alert, AlignmentRequirement: Word","5244"
"10:46:29.1815577 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\datareporting\state.json","0.0000725","Offset: 0, Length: 51, Priority: Normal","5244"
"10:46:29.1815944 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\datareporting\state.json","0.0000064","Offset: 0, Length: 51, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5244"
"10:46:29.1816532 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\datareporting\state.json","0.0000175","","5244"
"10:46:29.1867255 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\base-fingerprinting-track-digest256.vlpset","0.0000047","AllocationSize: 4,096, EndOfFile: 3,429, NumberOfLinks: 1, DeletePending: False, Directory: False","7900"
"10:46:29.1867613 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\base-fingerprinting-track-digest256.vlpset","0.0000085","","7900"
"10:46:29.1870339 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flash-digest256.vlpset","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.1870634 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flash-digest256.vlpset","0.0000034","CreationTime: 3/26/2020 10:25:35 AM, LastAccessTime: 3/26/2020 10:25:35 AM, LastWriteTime: 3/26/2020 10:25:35 AM, ChangeTime: 3/26/2020 10:25:35 AM, AllocationSize: 8192, EndOfFile: 6661, FileAttributes: A","7900"
"10:46:29.1870766 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flash-digest256.vlpset","0.0000043","","7900"
"10:46:29.1872383 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flash-digest256.vlpset","0.0000150","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.1872818 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flash-digest256.vlpset","0.0290966","Offset: 0, Length: 6,661, Priority: Normal","7900"
"10:46:29.1873322 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flash-digest256.vlpset","0.0289075","Offset: 0, Length: 6,661, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7900"
"10:46:29.2060087 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000072","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5728"
"10:46:29.2060394 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000068","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.2060718 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0145084","Offset: 753,664, Length: 32,768","5728"
"10:46:29.2061098 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0144397","Offset: 753,664, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5728"
"10:46:29.2100659 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3f543eee4cd06375","0.0000094","Offset: 8,192, Length: 8,192","1316"
"10:46:29.2100983 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3f543eee4cd06375","0.0000055","Offset: 16,384, Length: 16,384","1316"
"10:46:29.2101572 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3f543eee4cd06375","0.0000055","Offset: 32,768, Length: 9,747","1316"
"10:46:29.2101755 AM","firefox.exe","1008","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3f543eee4cd06375","0.0000022","Offset: 42,515, Length: 23,021","1316"
"10:46:29.2103108 AM","firefox.exe","1008","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\shader-cache\3f543eee4cd06375","0.0000158","","1316"
"10:46:29.2165222 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flash-digest256.vlpset","0.0000333","AllocationSize: 8,192, EndOfFile: 6,661, NumberOfLinks: 1, DeletePending: False, Directory: False","7900"
"10:46:29.2166984 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flash-digest256.vlpset","0.0001084","","7900"
"10:46:29.2173115 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flashsubdoc-digest256.vlpset","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.2173465 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flashsubdoc-digest256.vlpset","0.0000051","CreationTime: 3/26/2020 10:25:35 AM, LastAccessTime: 3/26/2020 10:25:35 AM, LastWriteTime: 3/26/2020 10:25:35 AM, ChangeTime: 3/26/2020 10:25:35 AM, AllocationSize: 73728, EndOfFile: 73413, FileAttributes: A","7900"
"10:46:29.2173632 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flashsubdoc-digest256.vlpset","0.0000059","","7900"
"10:46:29.2176704 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flashsubdoc-digest256.vlpset","0.0000183","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.2177211 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flashsubdoc-digest256.vlpset","0.0233093","Offset: 0, Length: 65,536, Priority: Normal","7900"
"10:46:29.2177740 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flashsubdoc-digest256.vlpset","0.0232022","Offset: 0, Length: 65,536, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7900"
"10:46:29.2207633 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000222","Offset: 131,072, Length: 32,768","5728"
"10:46:29.2209079 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000051","Offset: 123, Length: 1","5728"
"10:46:29.2229196 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\addons.json","0.0480044","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","120"
"10:46:29.2252783 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2253188 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000055","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:29.2253384 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000077","","740"
"10:46:29.2256234 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2256520 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000090","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:29.2256721 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000060","","740"
"10:46:29.2259362 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2259639 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000034","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:29.2259793 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000051","","740"
"10:46:29.2262703 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2263146 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000039","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:29.2263309 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000059","","740"
"10:46:29.2266014 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2266406 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000039","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:29.2266573 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000055","","740"
"10:46:29.2269150 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2269525 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000034","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:29.2269679 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000055","","740"
"10:46:29.2272589 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2272990 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000034","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:29.2273130 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000056","","740"
"10:46:29.2275754 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2276130 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000038","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:29.2276288 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000055","","740"
"10:46:29.2278835 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2279210 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000035","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:29.2279368 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000056","","740"
"10:46:29.2282206 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000157","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2282491 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000039","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:29.2282645 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000056","","740"
"10:46:29.2286425 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2286728 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000039","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:29.2286886 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000064","","740"
"10:46:29.2289770 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000163","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2290061 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000038","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:29.2290214 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000060","","740"
"10:46:29.2298022 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000700","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2299776 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000290","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:29.2300283 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000188","","740"
"10:46:29.2315814 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0001839","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2319189 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000303","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:29.2319914 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000483","","740"
"10:46:29.2333342 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000533","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2334165 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000047","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:29.2334302 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000068","","740"
"10:46:29.2337148 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2337468 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000029","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:29.2337578 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000043","","740"
"10:46:29.2339575 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2339844 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:29.2339946 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000039","","740"
"10:46:29.2341807 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2342067 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:29.2342165 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000043","","740"
"10:46:29.2344230 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2344533 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:29.2344631 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000043","","740"
"10:46:29.2346479 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2346739 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:29.2346837 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000039","","740"
"10:46:29.2348689 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2348949 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000021","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:29.2349047 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000051","","740"
"10:46:29.2351189 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2351471 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000025","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:29.2351569 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000043","","740"
"10:46:29.2353429 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2353685 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000021","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:29.2353779 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000043","","740"
"10:46:29.2355609 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2355870 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000025","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:29.2355968 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000038","","740"
"10:46:29.2358140 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2358430 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000025","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:29.2358528 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000038","","740"
"10:46:29.2360397 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2360657 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000030","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:29.2360759 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000039","","740"
"10:46:29.2362820 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2363085 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000055","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:29.2363251 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000077","","740"
"10:46:29.2367006 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2367360 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:29.2367531 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000072","","740"
"10:46:29.2370743 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2371080 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:29.2371251 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000068","","740"
"10:46:29.2374310 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2374635 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000042","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:29.2374784 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000068","","740"
"10:46:29.2378773 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2379311 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:29.2379443 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000064","","740"
"10:46:29.2383262 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000281","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2383944 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000052","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:29.2384171 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000089","","740"
"10:46:29.2388625 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2389158 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:29.2389320 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000064","","740"
"10:46:29.2394389 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2395033 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000056","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:29.2395243 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000085","","740"
"10:46:29.2399492 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2399919 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000042","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:29.2400055 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000064","","740"
"10:46:29.2402172 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2402475 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000029","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:29.2402585 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000043","","740"
"10:46:29.2404889 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2405205 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.2405316 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000043","","740"
"10:46:29.2407394 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2407693 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000025","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.2407795 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000043","","740"
"10:46:29.2410440 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2410880 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flashsubdoc-digest256.vlpset","0.0457891","Offset: 65,536, Length: 7,877","7900"
"10:46:29.2410952 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000043","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.2411110 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000056","","740"
"10:46:29.2413606 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2413858 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000030","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:29.2413965 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000042","","740"
"10:46:29.2416085 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2416294 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000026","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:29.2416392 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000043","","740"
"10:46:29.2418227 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2418419 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000026","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:29.2418517 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000039","","740"
"10:46:29.2420864 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2421090 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000026","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:29.2421188 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000039","","740"
"10:46:29.2423087 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2423360 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000021","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:29.2423450 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000038","","740"
"10:46:29.2425216 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2425404 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000021","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:29.2425498 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000038","","740"
"10:46:29.2427678 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2427994 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000029","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:29.2428096 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000043","","740"
"10:46:29.2429965 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2430242 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000026","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:29.2430340 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000039","","740"
"10:46:29.2432098 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2432354 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000026","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:29.2432452 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000039","","740"
"10:46:29.2434816 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2435123 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:29.2435221 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000039","","740"
"10:46:29.2437235 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2437517 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:29.2437615 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000043","","740"
"10:46:29.2439407 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2439723 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000029","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:29.2439825 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000047","","740"
"10:46:29.2442995 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2443302 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000034","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:29.2443464 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000060","","740"
"10:46:29.2445790 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2445986 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:29.2446084 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000043","","740"
"10:46:29.2448068 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2448260 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:29.2448358 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000039","","740"
"10:46:29.2452066 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000457","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2452791 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000103","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:29.2453060 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000111","","740"
"10:46:29.2457493 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2457907 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:29.2458103 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000145","","740"
"10:46:29.2467669 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0001007","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2469645 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000290","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:29.2470515 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000546","","740"
"10:46:29.2480926 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2481327 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000051","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:29.2481523 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000077","","740"
"10:46:29.2484476 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2484762 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:29.2484919 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000056","","740"
"10:46:29.2487834 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2488162 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000039","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:29.2488337 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000068","","740"
"10:46:29.2492582 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2492971 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:29.2493150 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000072","","740"
"10:46:29.2496166 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2496499 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:29.2496678 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000069","","740"
"10:46:29.2499511 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2499814 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000039","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:29.2499964 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000064","","740"
"10:46:29.2503151 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2503428 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:29.2503582 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000060","","740"
"10:46:29.2506411 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2506726 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000039","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:29.2506876 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000064","","740"
"10:46:29.2510217 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2510571 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000055","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:29.2510767 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000098","","740"
"10:46:29.2515110 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2515985 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:29.2516173 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000085","","740"
"10:46:29.2519620 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2520154 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:29.2520341 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000081","","740"
"10:46:29.2524305 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2524915 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:29.2525107 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000086","","740"
"10:46:29.2529280 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2529886 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000055","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:29.2530091 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000081","","740"
"10:46:29.2533965 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2534528 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000051","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:29.2534729 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000072","","740"
"10:46:29.2539396 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2539985 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000060","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:29.2540211 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000154","","740"
"10:46:29.2545007 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2545647 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000060","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:29.2545882 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000089","","740"
"10:46:29.2549875 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2550494 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000064","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:29.2550707 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000094","","740"
"10:46:29.2554616 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2555268 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000107","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:29.2555529 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000081","","740"
"10:46:29.2559770 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2560145 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:29.2560324 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000069","","740"
"10:46:29.2563264 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2563593 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000038","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:29.2563763 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000069","","740"
"10:46:29.2566925 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2567253 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000039","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:29.2567428 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000064","","740"
"10:46:29.2571038 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2571554 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000056","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:29.2571746 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000077","","740"
"10:46:29.2574929 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2575424 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:29.2575616 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000068","","740"
"10:46:29.2579213 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2579785 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:29.2579994 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000077","","740"
"10:46:29.2584401 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2584832 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000051","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:29.2585037 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000068","","740"
"10:46:29.2588706 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2589137 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000056","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:29.2589346 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000069","","740"
"10:46:29.2594948 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0002275","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2599403 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000627","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:29.2601685 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0001170","","740"
"10:46:29.2613722 AM","firefox.exe","7904","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0072644","Offset: 11,751,424, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8004"
"10:46:29.2629858 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000389","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2630528 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000086","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:29.2630771 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000094","","740"
"10:46:29.2636054 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2636442 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000055","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:29.2636647 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000076","","740"
"10:46:29.2647766 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0001847","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2650185 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000205","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:29.2651081 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000559","","740"
"10:46:29.2658138 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2658714 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000051","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:29.2658910 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000073","","740"
"10:46:29.2662217 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2662720 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000047","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:29.2662912 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000068","","740"
"10:46:29.2665976 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2666496 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000043","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:29.2666684 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000068","","740"
"10:46:29.2670439 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2670963 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:29.2671155 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000077","","740"
"10:46:29.2674441 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2674931 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:29.2675111 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000072","","740"
"10:46:29.2678311 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2678789 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000042","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:29.2678934 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000059","","740"
"10:46:29.2682462 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2682987 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000043","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:29.2683149 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000081","","740"
"10:46:29.2685918 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2686315 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000038","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:29.2686460 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000055","","740"
"10:46:29.2688986 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2689430 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000042","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:29.2689592 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000064","","740"
"10:46:29.2693811 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0007612","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2702016 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000124","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:29.2702370 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000218","","740"
"10:46:29.2707618 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000261","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2708054 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000051","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:29.2708241 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000090","","740"
"10:46:29.2709649 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\addons.json","0.0000052","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","120"
"10:46:29.2709875 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\addons.json","0.0000073","CreationTime: 6/19/2019 4:53:42 PM, LastAccessTime: 3/25/2020 10:32:03 AM, LastWriteTime: 3/25/2020 10:32:03 AM, ChangeTime: 3/25/2020 10:32:03 AM, FileAttributes: A, AllocationSize: 24, EndOfFile: 24, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x6000000013cbb, EaSize: 0, Access: Generic Read, Position: 0, Mode: Sequential Access, Synchronous IO Non-Alert, AlignmentRequirement: Word","120"
"10:46:29.2710183 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\addons.json","0.0000904","Offset: 0, Length: 24, Priority: Normal","120"
"10:46:29.2710776 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\addons.json","0.0000123","Offset: 0, Length: 24, I/O Flags: Non-cached, Paging I/O, Priority: Normal","120"
"10:46:29.2711292 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\addons.json","0.0000090","","120"
"10:46:29.2721984 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0002868","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2725833 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000136","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:29.2726204 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000256","","740"
"10:46:29.2736593 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json","0.0000278","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7572"
"10:46:29.2737046 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json","0.0000055","CreationTime: 6/19/2019 5:34:16 PM, LastAccessTime: 3/26/2020 10:35:09 AM, LastWriteTime: 3/26/2020 10:35:09 AM, ChangeTime: 3/26/2020 10:35:09 AM, FileAttributes: A","7572"
"10:46:29.2737250 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json","0.0000082","","7572"
"10:46:29.2739465 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json.tmp","0.0009169","Desired Access: Generic Write, Read Attributes, Disposition: OverwriteIf, Options: Write Through, Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: 0, OpenResult: Created","7572"
"10:46:29.2744687 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2745110 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000055","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:29.2745310 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000086","","740"
"10:46:29.2749078 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json.tmp","0.3081582","Offset: 0, Length: 122,197, I/O Flags: Write Through, Priority: Normal","7572"
"10:46:29.2751919 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000295","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2752598 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000098","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:29.2752965 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000119","","740"
"10:46:29.2761131 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2761583 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000064","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:29.2761673 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json.tmp","0.3041373","Offset: 0, Length: 122,880, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Write Through, Priority: Normal","7572"
"10:46:29.2761809 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000086","","740"
"10:46:29.2775019 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2775685 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000068","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:29.2775898 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000094","","740"
"10:46:29.2779793 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2780369 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000064","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:29.2780570 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000077","","740"
"10:46:29.2784572 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0018829","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2789573 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2790012 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000068","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","8388"
"10:46:29.2790196 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000098","","8388"
"10:46:29.2793801 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2794211 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000046","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","8388"
"10:46:29.2794356 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000076","","8388"
"10:46:29.2806772 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000503","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:29.2808593 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000717","","740"
"10:46:29.2820579 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000874","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2821816 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000158","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","8388"
"10:46:29.2822221 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000252","","8388"
"10:46:29.2831237 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000341","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2832171 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000068","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.2832466 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000268","","740"
"10:46:29.2833447 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ntdll.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2833984 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000052","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8388"
"10:46:29.2834159 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ntdll.dll","0.0000081","","8388"
"10:46:29.2836668 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2837197 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.2837385 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000077","","740"
"10:46:29.2837803 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ntdll.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2838272 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000052","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8388"
"10:46:29.2838430 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ntdll.dll","0.0000090","","8388"
"10:46:29.2839437 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000188","Desired Access: Read","8388"
"10:46:29.2841101 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2841400 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\ntdll.dll.mui","0.0000290","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2841630 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.2841822 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000081","","740"
"10:46:29.2841989 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\ntdll.dll.mui","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.2842206 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\ntdll.dll.mui","0.0000047","AllocationSize: 442,368, EndOfFile: 440,320, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.2842543 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\ntdll.dll.mui","0.0000026","SyncType: SyncTypeOther","8388"
"10:46:29.2847680 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2848103 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ntdll.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2848261 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000055","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:29.2848478 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000090","","740"
"10:46:29.2848615 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000047","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8388"
"10:46:29.2848794 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ntdll.dll","0.0000085","","8388"
"10:46:29.2853483 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2853842 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\kernel32.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2854051 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000051","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:29.2854260 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000081","","740"
"10:46:29.2854358 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000047","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","8388"
"10:46:29.2854507 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\kernel32.dll","0.0000073","","8388"
"10:46:29.2858232 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2858245 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\kernel32.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2858735 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000047","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:29.2858757 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000047","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","8388"
"10:46:29.2858919 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\kernel32.dll","0.0000077","","8388"
"10:46:29.2858927 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000077","","740"
"10:46:29.2862972 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2863360 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000047","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:29.2863552 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000077","","740"
"10:46:29.2864440 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000200","Desired Access: Read","8388"
"10:46:29.2866646 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\kernel32.dll.mui","0.0000256","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2867196 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\kernel32.dll.mui","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.2867200 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2867405 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\kernel32.dll.mui","0.0000051","AllocationSize: 974,848, EndOfFile: 971,264, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.2867503 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000035","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:29.2867666 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000064","","740"
"10:46:29.2867755 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\kernel32.dll.mui","0.0000026","SyncType: SyncTypeOther","8388"
"10:46:29.2871079 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\kernel32.dll","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2871113 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2871429 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000038","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:29.2871616 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000069","","740"
"10:46:29.2871706 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flashsubdoc-digest256.vlpset","0.0000422","Offset: 0, Length: 65,536","7900"
"10:46:29.2871770 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000056","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","8388"
"10:46:29.2871962 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\kernel32.dll","0.0000120","","8388"
"10:46:29.2872380 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flashsubdoc-digest256.vlpset","0.0000047","AllocationSize: 73,728, EndOfFile: 73,413, NumberOfLinks: 1, DeletePending: False, Directory: False","7900"
"10:46:29.2875324 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flashsubdoc-digest256.vlpset","0.0000098","Offset: 65,536, Length: 7,877","7900"
"10:46:29.2875956 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\block-flashsubdoc-digest256.vlpset","0.0000094","","7900"
"10:46:29.2876195 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2876203 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2876536 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000043","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8388"
"10:46:29.2876681 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:29.2876732 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000081","","8388"
"10:46:29.2876835 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000064","","740"
"10:46:29.2880261 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2880308 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2880581 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000047","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8388"
"10:46:29.2880722 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000068","","8388"
"10:46:29.2880811 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000034","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:29.2880973 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000052","","740"
"10:46:29.2881571 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000520","Desired Access: Read","8388"
"10:46:29.2883572 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\KernelBase.dll.mui","0.0000286","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2884143 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\KernelBase.dll.mui","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.2884357 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\KernelBase.dll.mui","0.0000047","AllocationSize: 1,269,760, EndOfFile: 1,269,248, NumberOfLinks: 2, DeletePending: False, Directory: False","8388"
"10:46:29.2884681 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2884754 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\KernelBase.dll.mui","0.0000064","SyncType: SyncTypeOther","8388"
"10:46:29.2885163 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000039","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:29.2885334 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000068","","740"
"10:46:29.2888803 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2888956 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2889110 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000038","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8388"
"10:46:29.2889246 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000043","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.2889302 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000124","","8388"
"10:46:29.2889413 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000064","","740"
"10:46:29.2889507 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\content-track-digest256.vlpset","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.2889865 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\content-track-digest256.vlpset","0.0000038","CreationTime: 3/26/2020 10:25:33 AM, LastAccessTime: 3/26/2020 10:25:33 AM, LastWriteTime: 3/26/2020 10:25:33 AM, ChangeTime: 3/26/2020 10:25:33 AM, AllocationSize: 20480, EndOfFile: 16389, FileAttributes: A","7900"
"10:46:29.2890044 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\content-track-digest256.vlpset","0.0000077","","7900"
"10:46:29.2892993 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2893321 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000038","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.2893436 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\advapi32.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2893487 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000056","","740"
"10:46:29.2893863 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000034","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","8388"
"10:46:29.2893982 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\advapi32.dll","0.0000060","","8388"
"10:46:29.2899683 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2900079 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.2900276 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000077","","740"
"10:46:29.2900702 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\advapi32.dll","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2901342 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000052","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","8388"
"10:46:29.2901539 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\advapi32.dll","0.0000081","","8388"
"10:46:29.2902401 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000183","Desired Access: Read","8388"
"10:46:29.2903902 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2904397 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000124","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:29.2904444 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\advapi32.dll.mui","0.0000290","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2904555 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\content-track-digest256.vlpset","0.0000299","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.2904696 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000085","","740"
"10:46:29.2905059 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\advapi32.dll.mui","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.2905310 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\content-track-digest256.vlpset","0.0161033","Offset: 0, Length: 16,389, Priority: Normal","7900"
"10:46:29.2905366 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\advapi32.dll.mui","0.0000055","AllocationSize: 4,096, EndOfFile: 4,096, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.2905805 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\advapi32.dll.mui","0.0000034","SyncType: SyncTypeOther","8388"
"10:46:29.2908306 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2908869 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:29.2909048 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000068","","740"
"10:46:29.2909458 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\advapi32.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2909927 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000038","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","8388"
"10:46:29.2910059 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\advapi32.dll","0.0000064","","8388"
"10:46:29.2910379 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\content-track-digest256.vlpset","0.0155512","Offset: 0, Length: 16,389, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7900"
"10:46:29.2913323 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2913831 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:29.2914014 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000073","","740"
"10:46:29.2914159 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2914684 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000056","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","8388"
"10:46:29.2914855 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000085","","8388"
"10:46:29.2918891 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2918900 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2919437 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:29.2919476 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000051","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","8388"
"10:46:29.2919638 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000068","","740"
"10:46:29.2919659 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000077","","8388"
"10:46:29.2923324 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000325","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2923465 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2924028 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:29.2924067 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000051","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","8388"
"10:46:29.2924212 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000077","","740"
"10:46:29.2924233 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000077","","8388"
"10:46:29.2928163 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2928470 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\sechost.dll","0.0000316","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2929101 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000052","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8388"
"10:46:29.2929246 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\sechost.dll","0.0000111","","8388"
"10:46:29.2931888 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000068","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:29.2932122 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000094","","740"
"10:46:29.2932788 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\sechost.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2933266 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000042","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8388"
"10:46:29.2933402 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\sechost.dll","0.0000068","","8388"
"10:46:29.2934170 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000184","Desired Access: Read","8388"
"10:46:29.2935915 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\sechost.dll.mui","0.0000243","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2936457 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\sechost.dll.mui","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.2936679 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\sechost.dll.mui","0.0000051","AllocationSize: 4,096, EndOfFile: 2,560, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.2936700 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2937042 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\sechost.dll.mui","0.0000030","SyncType: SyncTypeOther","8388"
"10:46:29.2937208 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:29.2937392 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000076","","740"
"10:46:29.2940971 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\sechost.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2941368 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2941500 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000052","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8388"
"10:46:29.2941671 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\sechost.dll","0.0000077","","8388"
"10:46:29.2941889 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:29.2942089 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000077","","740"
"10:46:29.2946275 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000350","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2946309 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0002820","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2946923 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000051","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","8388"
"10:46:29.2947094 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000085","","8388"
"10:46:29.2949496 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:29.2949739 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000081","","740"
"10:46:29.2951160 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2951604 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000042","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","8388"
"10:46:29.2951753 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000073","","8388"
"10:46:29.2952641 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000183","Desired Access: Read","8388"
"10:46:29.2954723 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\rpcrt4.dll.mui","0.0000862","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2955909 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\rpcrt4.dll.mui","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.2956225 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\rpcrt4.dll.mui","0.0000068","AllocationSize: 24,576, EndOfFile: 22,016, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.2956839 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\rpcrt4.dll.mui","0.0000021","SyncType: SyncTypeOther","8388"
"10:46:29.2961238 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2961353 AM","firefox.exe","7904","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0216615","Offset: 16,551,936, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8004"
"10:46:29.2961874 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000051","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","8388"
"10:46:29.2962036 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000077","","8388"
"10:46:29.2963828 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2964310 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000043","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:29.2964489 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000064","","740"
"10:46:29.2965052 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2965479 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000038","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","8388"
"10:46:29.2965611 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000064","","8388"
"10:46:29.2968632 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2969106 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000042","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:29.2969281 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000064","","740"
"10:46:29.2969908 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2970462 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000047","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","8388"
"10:46:29.2970629 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000077","","8388"
"10:46:29.2972502 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2972941 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000043","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:29.2973129 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000068","","740"
"10:46:29.2974140 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000342","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2974759 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000051","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","8388"
"10:46:29.2974921 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000073","","8388"
"10:46:29.2977008 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000298","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2977588 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000042","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:29.2977797 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000077","","740"
"10:46:29.2978445 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2978795 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000051","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8388"
"10:46:29.2978957 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000077","","8388"
"10:46:29.2980882 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2981351 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000043","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:29.2981539 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000064","","740"
"10:46:29.2982264 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2982644 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8388"
"10:46:29.2982793 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000158","","8388"
"10:46:29.2984743 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2985191 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000043","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:29.2985379 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000064","","740"
"10:46:29.2985980 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2986300 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8388"
"10:46:29.2986450 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000072","","8388"
"10:46:29.2989927 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2990503 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:29.2990704 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000072","","740"
"10:46:29.2990921 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\crypt32.dll","0.0000320","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2991489 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","8388"
"10:46:29.2991634 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\crypt32.dll","0.0000068","","8388"
"10:46:29.2994245 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2994987 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000060","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:29.2995252 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000085","","740"
"10:46:29.2995329 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\crypt32.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2995760 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","8388"
"10:46:29.2995900 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\crypt32.dll","0.0000069","","8388"
"10:46:29.2996703 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000174","Desired Access: Read","8388"
"10:46:29.2998226 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\crypt32.dll.mui","0.0000230","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.2998469 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.2998751 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\crypt32.dll.mui","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.2998887 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:29.2998964 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\crypt32.dll.mui","0.0000072","AllocationSize: 40,960, EndOfFile: 40,448, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.2999075 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000085","","740"
"10:46:29.2999476 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\crypt32.dll.mui","0.0000025","SyncType: SyncTypeOther","8388"
"10:46:29.3003158 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\crypt32.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3003700 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","8388"
"10:46:29.3003785 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3003879 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\crypt32.dll","0.0000081","","8388"
"10:46:29.3004259 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000042","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:29.3004447 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000059","","740"
"10:46:29.3008005 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\msasn1.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3008376 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3008500 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","8388"
"10:46:29.3008658 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\msasn1.dll","0.0000077","","8388"
"10:46:29.3008854 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000051","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:29.3009042 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000068","","740"
"10:46:29.3012536 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\msasn1.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3012566 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3013027 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","8388"
"10:46:29.3013125 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000034","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:29.3013189 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\msasn1.dll","0.0000072","","8388"
"10:46:29.3013300 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000060","","740"
"10:46:29.3016816 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\msasn1.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3017400 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000051","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","8388"
"10:46:29.3017567 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\msasn1.dll","0.0000076","","8388"
"10:46:29.3018096 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3018561 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000055","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:29.3018761 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000068","","740"
"10:46:29.3020767 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wintrust.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3021206 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000051","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","8388"
"10:46:29.3021343 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wintrust.dll","0.0000072","","8388"
"10:46:29.3024752 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3025037 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wintrust.dll","0.0000291","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3025319 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000056","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:29.3025507 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000068","","740"
"10:46:29.3025579 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","8388"
"10:46:29.3025724 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wintrust.dll","0.0000069","","8388"
"10:46:29.3030226 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wintrust.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3030537 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3030780 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000052","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","8388"
"10:46:29.3030964 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wintrust.dll","0.0000077","","8388"
"10:46:29.3031135 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000046","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:29.3031335 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000068","","740"
"10:46:29.3035051 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3035431 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3035546 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000043","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:29.3035734 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000068","","740"
"10:46:29.3035794 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000047","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","8388"
"10:46:29.3035956 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000064","","8388"
"10:46:29.3039455 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3039915 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3039941 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:29.3040137 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000077","","740"
"10:46:29.3040252 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000047","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","8388"
"10:46:29.3040402 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000072","","8388"
"10:46:29.3045189 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000316","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3045210 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3045658 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000056","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","8388"
"10:46:29.3045718 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000051","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:29.3045829 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000094","","8388"
"10:46:29.3045893 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000068","","740"
"10:46:29.3050211 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3050271 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3050574 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000038","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","8388"
"10:46:29.3050697 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000073","","8388"
"10:46:29.3050744 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000051","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:29.3050945 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000072","","740"
"10:46:29.3054332 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000274","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3054712 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000043","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","8388"
"10:46:29.3054832 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000064","","8388"
"10:46:29.3054968 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3055463 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000043","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:29.3055642 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000064","","740"
"10:46:29.3058228 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3058544 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000042","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","8388"
"10:46:29.3058706 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000064","","8388"
"10:46:29.3059777 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3060280 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000047","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:29.3060455 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000068","","740"
"10:46:29.3062320 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\version.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3062755 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000034","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","8388"
"10:46:29.3062879 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\version.dll","0.0000064","","8388"
"10:46:29.3064496 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3065003 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000047","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:29.3065281 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000081","","740"
"10:46:29.3066932 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\content-track-digest256.vlpset","0.0000055","AllocationSize: 20,480, EndOfFile: 16,389, NumberOfLinks: 1, DeletePending: False, Directory: False","7900"
"10:46:29.3067563 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\version.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3067781 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\content-track-digest256.vlpset","0.0000115","","7900"
"10:46:29.3068028 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000052","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","8388"
"10:46:29.3068178 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\version.dll","0.0000060","","8388"
"10:46:29.3069291 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3069859 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000047","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:29.3070068 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000072","","740"
"10:46:29.3071199 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flash-digest256.vlpset","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.3071254 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\version.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3071630 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flash-digest256.vlpset","0.0000051","CreationTime: 3/26/2020 10:25:35 AM, LastAccessTime: 3/26/2020 10:25:35 AM, LastWriteTime: 3/26/2020 10:25:35 AM, ChangeTime: 3/26/2020 10:25:35 AM, AllocationSize: 104, EndOfFile: 101, FileAttributes: A","7900"
"10:46:29.3071728 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000042","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","8388"
"10:46:29.3072069 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\version.dll","0.0000102","","8388"
"10:46:29.3073690 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flash-digest256.vlpset","0.0000077","","7900"
"10:46:29.3075516 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3075538 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flash-digest256.vlpset","0.0000226","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.3076016 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000051","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:29.3076114 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flash-digest256.vlpset","0.0000887","Offset: 0, Length: 101, Priority: Normal","7900"
"10:46:29.3076195 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000064","","740"
"10:46:29.3076600 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3076703 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flash-digest256.vlpset","0.0000106","Offset: 0, Length: 101, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7900"
"10:46:29.3077078 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","8388"
"10:46:29.3077227 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000077","","8388"
"10:46:29.3077338 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flash-digest256.vlpset","0.0000052","AllocationSize: 104, EndOfFile: 101, NumberOfLinks: 1, DeletePending: False, Directory: False","7900"
"10:46:29.3077633 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flash-digest256.vlpset","0.0000077","","7900"
"10:46:29.3079804 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3080308 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000043","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:29.3080491 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000064","","740"
"10:46:29.3081025 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flashallow-digest256.vlpset","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.3081033 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3081486 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flashallow-digest256.vlpset","0.0000098","CreationTime: 3/26/2020 10:25:34 AM, LastAccessTime: 3/26/2020 10:25:34 AM, LastWriteTime: 3/26/2020 10:25:34 AM, ChangeTime: 3/26/2020 10:25:34 AM, AllocationSize: 72, EndOfFile: 69, FileAttributes: A","7900"
"10:46:29.3081746 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flashallow-digest256.vlpset","0.0000068","","7900"
"10:46:29.3082544 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000055","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","8388"
"10:46:29.3082710 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000068","","8388"
"10:46:29.3083504 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flashallow-digest256.vlpset","0.0000204","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.3083589 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3083994 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000043","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:29.3084024 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flashallow-digest256.vlpset","0.0000832","Offset: 0, Length: 69, Priority: Normal","7900"
"10:46:29.3084165 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000064","","740"
"10:46:29.3084523 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flashallow-digest256.vlpset","0.0000094","Offset: 0, Length: 69, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7900"
"10:46:29.3085134 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flashallow-digest256.vlpset","0.0000042","AllocationSize: 72, EndOfFile: 69, NumberOfLinks: 1, DeletePending: False, Directory: False","7900"
"10:46:29.3085411 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flashallow-digest256.vlpset","0.0000077","","7900"
"10:46:29.3086183 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000316","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3086729 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","8388"
"10:46:29.3086853 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000060","","8388"
"10:46:29.3088611 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flashsubdoc-digest256.vlpset","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.3088743 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3088995 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flashsubdoc-digest256.vlpset","0.0000047","CreationTime: 3/26/2020 10:25:36 AM, LastAccessTime: 3/26/2020 10:25:36 AM, LastWriteTime: 3/26/2020 10:25:36 AM, ChangeTime: 3/26/2020 10:25:36 AM, AllocationSize: 136, EndOfFile: 133, FileAttributes: A","7900"
"10:46:29.3089200 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flashsubdoc-digest256.vlpset","0.0000064","","7900"
"10:46:29.3089213 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000034","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:29.3089383 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000068","","740"
"10:46:29.3091248 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3091418 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flashsubdoc-digest256.vlpset","0.0000261","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.3091615 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000042","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","8388"
"10:46:29.3091751 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000064","","8388"
"10:46:29.3092058 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flashsubdoc-digest256.vlpset","0.0000845","Offset: 0, Length: 133, Priority: Normal","7900"
"10:46:29.3092617 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flashsubdoc-digest256.vlpset","0.0000111","Offset: 0, Length: 133, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7900"
"10:46:29.3093193 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flashsubdoc-digest256.vlpset","0.0000047","AllocationSize: 136, EndOfFile: 133, NumberOfLinks: 1, DeletePending: False, Directory: False","7900"
"10:46:29.3093407 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3093496 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\except-flashsubdoc-digest256.vlpset","0.0000081","","7900"
"10:46:29.3093910 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000043","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:29.3094111 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000072","","740"
"10:46:29.3094862 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3095165 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000038","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","8388"
"10:46:29.3095310 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000059","","8388"
"10:46:29.3096598 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.3096927 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000042","CreationTime: 3/26/2020 10:25:34 AM, LastAccessTime: 3/26/2020 10:25:34 AM, LastWriteTime: 3/26/2020 10:25:34 AM, ChangeTime: 3/26/2020 10:25:34 AM, AllocationSize: 1441792, EndOfFile: 1441669, FileAttributes: A","7900"
"10:46:29.3097085 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000051","","7900"
"10:46:29.3097349 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3097874 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000043","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:29.3098053 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000064","","740"
"10:46:29.3098497 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3098778 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000035","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","8388"
"10:46:29.3098894 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000055","","8388"
"10:46:29.3099064 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000201","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.3099593 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0213714","Offset: 0, Length: 65,536, Priority: Normal","7900"
"10:46:29.3100238 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0209877","Offset: 0, Length: 65,536, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7900"
"10:46:29.3101565 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3101906 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40429, endtime: 40429, seqnum: 0, connid: 0","0"
"10:46:29.3102708 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3102734 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3103079 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8388"
"10:46:29.3103224 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000073","","8388"
"10:46:29.3103254 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.3103459 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000072","","740"
"10:46:29.3103659 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3103869 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40429, endtime: 40429, seqnum: 0, connid: 0","0"
"10:46:29.3107222 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3107585 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8388"
"10:46:29.3107700 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000060","","8388"
"10:46:29.3107849 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3108383 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.3108579 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000064","","740"
"10:46:29.3111028 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3111335 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8388"
"10:46:29.3111472 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000059","","8388"
"10:46:29.3111928 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3112376 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000039","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.3112560 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000059","","740"
"10:46:29.3114667 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3114962 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","8388"
"10:46:29.3115098 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000064","","8388"
"10:46:29.3116276 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3116715 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000035","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:29.3117629 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3117970 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40429, endtime: 40429, seqnum: 0, connid: 0","0"
"10:46:29.3118755 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000119","","740"
"10:46:29.3119357 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000302","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3119792 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000115","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","8388"
"10:46:29.3120026 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000086","","8388"
"10:46:29.3123627 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000210","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3123785 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3123965 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000042","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","8388"
"10:46:29.3124105 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000073","","8388"
"10:46:29.3124293 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:29.3124455 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000060","","740"
"10:46:29.3125099 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3125424 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40429, endtime: 40429, seqnum: 0, connid: 0","0"
"10:46:29.3127459 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3127540 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3127787 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8388"
"10:46:29.3127933 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000072","","8388"
"10:46:29.3127958 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:29.3128116 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000051","","740"
"10:46:29.3130923 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000210","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3131226 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000039","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8388"
"10:46:29.3131337 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000056","","8388"
"10:46:29.3132139 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3132779 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000086","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:29.3133027 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000081","","740"
"10:46:29.3134081 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3134392 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8388"
"10:46:29.3134533 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000064","","8388"
"10:46:29.3136517 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3137042 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:29.3137242 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000069","","740"
"10:46:29.3137878 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3138177 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000068","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8388"
"10:46:29.3138335 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000064","","8388"
"10:46:29.3141552 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3141863 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8388"
"10:46:29.3141987 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000064","","8388"
"10:46:29.3142311 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3142700 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40429, endtime: 40429, seqnum: 0, connid: 0","0"
"10:46:29.3143962 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3144137 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40429, endtime: 40429, seqnum: 0, connid: 0","0"
"10:46:29.3144952 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3145234 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8388"
"10:46:29.3145362 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000072","","8388"
"10:46:29.3149368 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000350","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3149872 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3150111 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000055","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:29.3150311 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000150","","740"
"10:46:29.3150397 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000072","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","8388"
"10:46:29.3150580 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000073","","8388"
"10:46:29.3155133 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000285","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3155832 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000069","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","8388"
"10:46:29.3156037 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000085","","8388"
"10:46:29.3158256 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000469","Desired Access: Read","8388"
"10:46:29.3174682 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\ws2_32.dll.mui","0.0000606","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3176001 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\ws2_32.dll.mui","0.0000094","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.3176312 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\ws2_32.dll.mui","0.0000090","AllocationSize: 24,576, EndOfFile: 21,504, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.3176760 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\ws2_32.dll.mui","0.0000026","SyncType: SyncTypeOther","8388"
"10:46:29.3179312 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3179879 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40429, endtime: 40430, seqnum: 0, connid: 0","0"
"10:46:29.3181565 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000303","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3181599 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3181795 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40430, endtime: 40430, seqnum: 0, connid: 0","0"
"10:46:29.3182559 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000055","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","8388"
"10:46:29.3182717 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000081","","8388"
"10:46:29.3197424 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\winmm.dll","0.0002150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3201255 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000295","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","8388"
"10:46:29.3202006 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\winmm.dll","0.0000427","","8388"
"10:46:29.3204519 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0001997","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3208713 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000210","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:29.3209179 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000217","","740"
"10:46:29.3214119 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\winmm.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3214422 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3214815 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000081","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","8388"
"10:46:29.3214875 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000046","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:29.3215058 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\winmm.dll","0.0000205","","8388"
"10:46:29.3215088 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000162","","740"
"10:46:29.3216180 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000179","Desired Access: Read","8388"
"10:46:29.3218459 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000221","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3218988 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000047","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:29.3219163 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000068","","740"
"10:46:29.3223822 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000298","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3224449 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000055","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:29.3224637 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000085","","740"
"10:46:29.3228822 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3229449 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000082","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:29.3229671 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000103","","740"
"10:46:29.3233341 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3233887 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000055","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:29.3234062 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000077","","740"
"10:46:29.3238875 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000251","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3239459 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000064","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.3239672 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000111","","740"
"10:46:29.3243628 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3244195 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000064","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.3244400 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000085","","740"
"10:46:29.3248526 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3248893 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40430, endtime: 40430, seqnum: 0, connid: 0","0"
"10:46:29.3249541 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000261","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3250143 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000060","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.3250343 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000086","","740"
"10:46:29.3250497 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3250680 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40430, endtime: 40430, seqnum: 0, connid: 0","0"
"10:46:29.3251931 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0346423","Offset: 9,814,016, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:29.3254239 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\winmm.dll.mui","0.0000299","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3255169 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3255754 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000055","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:29.3255937 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000085","","740"
"10:46:29.3258143 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\winmm.dll.mui","0.0000081","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.3258429 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\winmm.dll.mui","0.0000051","AllocationSize: 24,576, EndOfFile: 23,552, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.3258783 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\winmm.dll.mui","0.0000047","SyncType: SyncTypeOther","8388"
"10:46:29.3259901 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3260660 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000056","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:29.3260886 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000094","","740"
"10:46:29.3262964 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\winmm.dll","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3263600 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000051","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","8388"
"10:46:29.3263745 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\winmm.dll","0.0000077","","8388"
"10:46:29.3264048 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3264381 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40430, endtime: 40430, seqnum: 0, connid: 0","0"
"10:46:29.3265063 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000227","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3265644 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:29.3265823 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000081","","740"
"10:46:29.3266557 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3266779 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40430, endtime: 40430, seqnum: 0, connid: 0","0"
"10:46:29.3268272 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wsock32.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3268801 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","8388"
"10:46:29.3268942 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wsock32.dll","0.0000072","","8388"
"10:46:29.3270751 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3271310 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000064","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:29.3271532 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000094","","740"
"10:46:29.3272197 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wsock32.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3272662 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","8388"
"10:46:29.3272816 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wsock32.dll","0.0000102","","8388"
"10:46:29.3273622 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000171","Desired Access: Read","8388"
"10:46:29.3275231 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3275299 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\wsock32.dll.mui","0.0000252","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3275606 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000047","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:29.3275794 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000068","","740"
"10:46:29.3275841 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\wsock32.dll.mui","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.3276050 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\wsock32.dll.mui","0.0000043","AllocationSize: 12,288, EndOfFile: 11,264, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.3276370 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\SysWOW64\en-US\wsock32.dll.mui","0.0000021","SyncType: SyncTypeOther","8388"
"10:46:29.3279681 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3280069 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000051","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:29.3280270 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000072","","740"
"10:46:29.3280790 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wsock32.dll","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3281324 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000038","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","8388"
"10:46:29.3281452 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wsock32.dll","0.0000055","","8388"
"10:46:29.3285582 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3286047 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","8388"
"10:46:29.3286188 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000076","","8388"
"10:46:29.3286806 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3287446 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:29.3287651 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000085","","740"
"10:46:29.3290403 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3290770 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","8388"
"10:46:29.3290907 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000076","","8388"
"10:46:29.3291722 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000196","Desired Access: Read","8388"
"10:46:29.3291811 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3292387 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:29.3293629 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\winmmbase.dll.mui","0.0000461","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3294465 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\winmmbase.dll.mui","0.0000056","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.3294700 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\winmmbase.dll.mui","0.0000047","AllocationSize: 8,192, EndOfFile: 8,192, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.3295293 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\winmmbase.dll.mui","0.0000034","SyncType: SyncTypeOther","8388"
"10:46:29.3295694 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000124","","740"
"10:46:29.3318371 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0449648","Offset: 65,536, Length: 65,536","7900"
"10:46:29.3318751 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0001032","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3321891 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000286","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:29.3322612 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000265","","740"
"10:46:29.3324805 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000474","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3325411 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","8388"
"10:46:29.3325548 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000068","","8388"
"10:46:29.3329119 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3329149 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3329725 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","8388"
"10:46:29.3329878 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000064","","8388"
"10:46:29.3329998 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000107","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:29.3330262 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000069","","740"
"10:46:29.3333829 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3334038 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3334350 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","8388"
"10:46:29.3334491 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000064","","8388"
"10:46:29.3334700 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000051","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:29.3335079 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000077","","740"
"10:46:29.3337712 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000303","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3338267 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","8388"
"10:46:29.3338403 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000064","","8388"
"10:46:29.3338425 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3338860 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000038","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:29.3339018 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000055","","740"
"10:46:29.3342183 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000210","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3342508 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000038","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8388"
"10:46:29.3342649 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000059","","8388"
"10:46:29.3342858 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3343318 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000035","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:29.3343476 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3343476 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000064","","740"
"10:46:29.3343839 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40430, endtime: 40431, seqnum: 0, connid: 0","0"
"10:46:29.3345294 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3345307 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3345482 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40431, endtime: 40431, seqnum: 0, connid: 0","0"
"10:46:29.3345571 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000034","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8388"
"10:46:29.3345699 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000056","","8388"
"10:46:29.3346386 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3346809 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000034","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:29.3346971 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000055","","740"
"10:46:29.3348238 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3348575 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000034","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","8388"
"10:46:29.3348716 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000072","","8388"
"10:46:29.3349753 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3350192 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000034","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:29.3350350 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000060","","740"
"10:46:29.3351865 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3352155 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","8388"
"10:46:29.3352287 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000055","","8388"
"10:46:29.3354058 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3354510 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:29.3354672 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000060","","740"
"10:46:29.3355333 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3355628 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","8388"
"10:46:29.3355756 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000051","","8388"
"10:46:29.3357458 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3357876 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000039","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:29.3358038 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000060","","740"
"10:46:29.3358435 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3358700 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","8388"
"10:46:29.3358824 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000059","","8388"
"10:46:29.3361396 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3361887 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:29.3362058 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000072","","740"
"10:46:29.3363086 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\user32.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3363589 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000047","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","8388"
"10:46:29.3363747 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\user32.dll","0.0000073","","8388"
"10:46:29.3367267 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3367600 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\user32.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3367809 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:29.3368005 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000077","","740"
"10:46:29.3368065 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000056","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","8388"
"10:46:29.3368146 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3368236 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\user32.dll","0.0000072","","8388"
"10:46:29.3368475 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40430, endtime: 40431, seqnum: 0, connid: 0","0"
"10:46:29.3369102 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000166","Desired Access: Read","8388"
"10:46:29.3370156 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3370378 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40431, endtime: 40431, seqnum: 0, connid: 0","0"
"10:46:29.3371167 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\user32.dll.mui","0.0000329","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3371606 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3371807 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\user32.dll.mui","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.3372012 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\user32.dll.mui","0.0000047","AllocationSize: 20,480, EndOfFile: 17,408, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.3372084 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:29.3372259 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000069","","740"
"10:46:29.3372362 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\user32.dll.mui","0.0000021","SyncType: SyncTypeOther","8388"
"10:46:29.3376500 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\user32.dll","0.0000261","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3376539 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3377029 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000052","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","8388"
"10:46:29.3377128 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000059","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:29.3377247 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\user32.dll","0.0000077","","8388"
"10:46:29.3377341 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000081","","740"
"10:46:29.3381642 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\win32u.dll","0.0002248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3381761 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0000179","AllocationSize: 643,072, EndOfFile: 639,537, NumberOfLinks: 1, DeletePending: False, Directory: False","7580"
"10:46:29.3381910 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000291","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3382252 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7580"
"10:46:29.3382465 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0000030","AllocationSize: 643,072, EndOfFile: 639,537, NumberOfLinks: 1, DeletePending: False, Directory: False","7580"
"10:46:29.3382486 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:29.3382661 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000069","","740"
"10:46:29.3382794 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0000030","SyncType: SyncTypeOther","7580"
"10:46:29.3383250 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 8808","8004"
"10:46:29.3383481 AM","firefox.exe","7904","ReadFile","C:\Program Files\Firefox Nightly\browser\features\formautofill@mozilla.org.xpi","0.0255642","Offset: 610,304, Length: 29,233, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7580"
"10:46:29.3386045 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3386540 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000051","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:29.3386715 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000072","","740"
"10:46:29.3388938 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 8852","8004"
"10:46:29.3389262 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000055","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","8388"
"10:46:29.3389437 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\win32u.dll","0.0000089","","8388"
"10:46:29.3390542 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3391041 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000043","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:29.3391212 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000068","","740"
"10:46:29.3391830 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 6460","8004"
"10:46:29.3393486 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3393810 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40432, endtime: 40432, seqnum: 0, connid: 0","0"
"10:46:29.3394591 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3394847 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40432, endtime: 40432, seqnum: 0, connid: 0","0"
"10:46:29.3394915 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 7908","8004"
"10:46:29.3395602 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3396127 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:29.3396306 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\win32u.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3396319 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000073","","740"
"10:46:29.3398619 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000055","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","8388"
"10:46:29.3398802 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\win32u.dll","0.0000090","","8388"
"10:46:29.3399886 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3400445 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:29.3400633 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000076","","740"
"10:46:29.3402258 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\win32u.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3402344 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8004"
"10:46:29.3402621 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","8004"
"10:46:29.3402775 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000064","","8004"
"10:46:29.3402787 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000034","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","8388"
"10:46:29.3402924 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\win32u.dll","0.0000047","","8388"
"10:46:29.3403291 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3403628 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40432, endtime: 40432, seqnum: 0, connid: 0","0"
"10:46:29.3404234 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000183","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8004"
"10:46:29.3404588 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3404959 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:29.3405040 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3405079 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000046","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:29.3405215 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40432, endtime: 40432, seqnum: 0, connid: 0","0"
"10:46:29.3405288 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000072","","740"
"10:46:29.3405484 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000030","SyncType: SyncTypeOther","8004"
"10:46:29.3405966 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000034","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:29.3406273 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\gdi32.dll","0.0000384","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3406691 AM","firefox.exe","7904","Load Image","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000000","Image Base: 0x7ffb3c840000, Image Size: 0x40000","8004"
"10:46:29.3406939 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000047","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","8388"
"10:46:29.3407084 AM","firefox.exe","7904","QueryNameInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000060","Name: \Program Files\Firefox Nightly\softokn3.dll","8004"
"10:46:29.3407092 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\gdi32.dll","0.0000137","","8388"
"10:46:29.3409115 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000072","","8004"
"10:46:29.3410655 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3410749 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\gdi32.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3411193 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000051","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:29.3411210 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000047","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","8388"
"10:46:29.3411389 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\gdi32.dll","0.0000064","","8388"
"10:46:29.3411415 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000076","","740"
"10:46:29.3414661 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\gdi32.dll","0.0000436","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3415323 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000042","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","8388"
"10:46:29.3415472 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\gdi32.dll","0.0000064","","8388"
"10:46:29.3415707 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8004"
"10:46:29.3415895 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3415984 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000039","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","8004"
"10:46:29.3416104 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000055","","8004"
"10:46:29.3416411 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000047","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:29.3416616 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000072","","740"
"10:46:29.3417473 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000171","Desired Access: Read Data/List Directory, Execute/Traverse, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8004"
"10:46:29.3418092 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000077","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8004"
"10:46:29.3418664 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000029","SyncType: SyncTypeOther","8004"
"10:46:29.3418962 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3419159 AM","firefox.exe","7904","QuerySecurityFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000038","Information: Owner, Group, DACL, SACL, Label, Attribute, Process Trust Label, 0x100","8004"
"10:46:29.3419312 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000043","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","8388"
"10:46:29.3419461 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000167","","8388"
"10:46:29.3419790 AM","firefox.exe","7904","Load Image","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000000","Image Base: 0x7ffb1de70000, Image Size: 0x95000","8004"
"10:46:29.3420157 AM","firefox.exe","7904","QueryNameInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000060","Name: \Program Files\Firefox Nightly\freebl3.dll","8004"
"10:46:29.3420507 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3421044 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000047","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:29.3421236 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000069","","740"
"10:46:29.3421689 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000076","","8004"
"10:46:29.3422917 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000419","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3423451 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000042","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","8388"
"10:46:29.3423617 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000068","","8388"
"10:46:29.3424035 AM","firefox.exe","7904","CreateFile","C:\","0.0000167","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","8004"
"10:46:29.3424564 AM","firefox.exe","7904","QueryNameInformationFile","C:\","0.0000052","Name: \","8004"
"10:46:29.3424859 AM","firefox.exe","7904","QueryInformationVolume","C:\","0.0000038","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Windows","8004"
"10:46:29.3425089 AM","firefox.exe","7904","QueryAttributeInformationVolume","C:\","0.0000030","FileSystemAttributes: Case Preserved, Case Sensitive, Unicode, ACLs, Compression, Named Streams, EFS, Object IDs, Reparse Points, Sparse Files, Quotas, Transactions, 0x3c00600, MaximumComponentNameLength: 255, FileSystemName: NTFS","8004"
"10:46:29.3425367 AM","firefox.exe","7904","CloseFile","C:\","0.0000059","","8004"
"10:46:29.3425567 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3425964 AM","firefox.exe","7904","CreateFile","C:\","0.0000149","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","8004"
"10:46:29.3426314 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000051","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:29.3426356 AM","firefox.exe","7904","QuerySizeInformationVolume","C:\","0.0000035","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,808, SectorsPerAllocationUnit: 8, BytesPerSector: 512","8004"
"10:46:29.3426510 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000073","","740"
"10:46:29.3426561 AM","firefox.exe","7904","CloseFile","C:\","0.0000043","","8004"
"10:46:29.3426757 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000227","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3427137 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000039","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","8388"
"10:46:29.3427278 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000060","","8388"
"10:46:29.3430017 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3430542 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:29.3430738 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000073","","740"
"10:46:29.3431195 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000405","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3431694 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000030","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","8388"
"10:46:29.3431813 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000107","","8388"
"10:46:29.3435525 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3435722 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3436016 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000043","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","8388"
"10:46:29.3436110 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000060","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:29.3436161 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000068","","8388"
"10:46:29.3436336 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000077","","740"
"10:46:29.3439391 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000346","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3439877 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000043","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","8388"
"10:46:29.3440023 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000068","","8388"
"10:46:29.3440850 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3441320 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000042","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.3441503 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000073","","740"
"10:46:29.3444430 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\shell32.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3444823 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3444861 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000034","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","8388"
"10:46:29.3444993 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\shell32.dll","0.0000056","","8388"
"10:46:29.3445236 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000035","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.3445390 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000055","","740"
"10:46:29.3448385 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\shell32.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3448705 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000030","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","8388"
"10:46:29.3448795 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\shell32.dll","0.0000042","","8388"
"10:46:29.3448983 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3449405 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000136","Desired Access: Read","8388"
"10:46:29.3449520 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000051","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.3449742 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000077","","740"
"10:46:29.3450698 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\shell32.dll.mui","0.0000239","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3451167 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\shell32.dll.mui","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.3451363 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\shell32.dll.mui","0.0000043","AllocationSize: 393,216, EndOfFile: 393,216, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.3451692 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\shell32.dll.mui","0.0000026","SyncType: SyncTypeOther","8388"
"10:46:29.3454854 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3455041 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\shell32.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3455319 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000051","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:29.3455485 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000154","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","8388"
"10:46:29.3455741 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\shell32.dll","0.0000073","","8388"
"10:46:29.3459662 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0002944","","740"
"10:46:29.3459705 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\SHCore.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3460477 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000055","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","8388"
"10:46:29.3460656 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\SHCore.dll","0.0000090","","8388"
"10:46:29.3461608 AM","firefox.exe","7904","Thread Create","","0.0000000","Thread ID: 6944","8004"
"10:46:29.3466267 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3466822 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000051","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:29.3467026 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000069","","740"
"10:46:29.3468912 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\SHCore.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3469399 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000042","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","8388"
"10:46:29.3469522 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\SHCore.dll","0.0000069","","8388"
"10:46:29.3470218 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000166","Desired Access: Read","8388"
"10:46:29.3472134 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\SHCore.dll.mui","0.0000217","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3472603 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\SHCore.dll.mui","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.3472786 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\SHCore.dll.mui","0.0000047","AllocationSize: 4,096, EndOfFile: 2,560, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.3473115 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\SHCore.dll.mui","0.0000034","SyncType: SyncTypeOther","8388"
"10:46:29.3476806 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\SHCore.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3477305 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000051","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","8388"
"10:46:29.3477458 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\SHCore.dll","0.0000073","","8388"
"10:46:29.3481166 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\combase.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3481721 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000047","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","8388"
"10:46:29.3481870 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\combase.dll","0.0000085","","8388"
"10:46:29.3483590 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3483944 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40433, endtime: 40433, seqnum: 0, connid: 0","0"
"10:46:29.3484823 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3485087 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40433, endtime: 40433, seqnum: 0, connid: 0","0"
"10:46:29.3485262 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\combase.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3485757 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000051","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","8388"
"10:46:29.3485911 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\combase.dll","0.0000076","","8388"
"10:46:29.3486798 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000179","Desired Access: Read","8388"
"10:46:29.3487080 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3487587 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:29.3487775 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000068","","740"
"10:46:29.3488360 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\combase.dll.mui","0.0000209","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3488838 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\combase.dll.mui","0.0000046","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.3489030 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\combase.dll.mui","0.0000038","AllocationSize: 40,960, EndOfFile: 38,400, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.3489315 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\combase.dll.mui","0.0000022","SyncType: SyncTypeOther","8388"
"10:46:29.3493778 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\combase.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3493911 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3494248 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40433, endtime: 40433, seqnum: 0, connid: 0","0"
"10:46:29.3494320 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000051","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","8388"
"10:46:29.3494384 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3494461 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\combase.dll","0.0000073","","8388"
"10:46:29.3494947 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000052","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:29.3495156 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000077","","740"
"10:46:29.3495814 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3496006 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40433, endtime: 40433, seqnum: 0, connid: 0","0"
"10:46:29.3499035 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000375","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3499304 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3499568 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000064","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","8388"
"10:46:29.3499756 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000132","","8388"
"10:46:29.3499841 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000064","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:29.3500084 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000073","","740"
"10:46:29.3503639 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3503707 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3503942 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000042","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","8388"
"10:46:29.3504082 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000060","","8388"
"10:46:29.3504304 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000069","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:29.3504569 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000085","","740"
"10:46:29.3504846 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000205","Desired Access: Read","8388"
"10:46:29.3506881 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\windows.storage.dll.mui","0.0000555","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3507769 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\windows.storage.dll.mui","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.3507978 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\windows.storage.dll.mui","0.0000047","AllocationSize: 32,768, EndOfFile: 29,184, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.3508289 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\windows.storage.dll.mui","0.0000030","SyncType: SyncTypeOther","8388"
"10:46:29.3509147 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3509731 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:29.3509949 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000073","","740"
"10:46:29.3511788 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3512138 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000047","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","8388"
"10:46:29.3512296 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000068","","8388"
"10:46:29.3513439 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3513947 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:29.3514139 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000068","","740"
"10:46:29.3516102 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3516588 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","8388"
"10:46:29.3516725 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000064","","8388"
"10:46:29.3517198 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3517616 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:29.3517787 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000055","","740"
"10:46:29.3519404 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3519805 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000034","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","8388"
"10:46:29.3519937 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000060","","8388"
"10:46:29.3520577 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000171","Desired Access: Read","8388"
"10:46:29.3522395 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3522566 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\shlwapi.dll.mui","0.0000239","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3522941 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000043","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:29.3523090 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\shlwapi.dll.mui","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.3523278 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\shlwapi.dll.mui","0.0000039","AllocationSize: 8,192, EndOfFile: 4,608, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.3523914 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\shlwapi.dll.mui","0.0000034","SyncType: SyncTypeOther","8388"
"10:46:29.3525347 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000120","","740"
"10:46:29.3527361 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000244","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3527980 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000055","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","8388"
"10:46:29.3528155 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000085","","8388"
"10:46:29.3530079 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3530617 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000051","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:29.3530843 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000077","","740"
"10:46:29.3532887 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3533237 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000042","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","8388"
"10:46:29.3533394 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000064","","8388"
"10:46:29.3535575 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3536070 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000047","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:29.3536262 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000072","","740"
"10:46:29.3536825 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3537141 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000042","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","8388"
"10:46:29.3537281 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000060","","8388"
"10:46:29.3541109 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3541160 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0003200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3541450 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000043","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","8388"
"10:46:29.3541591 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000068","","8388"
"10:46:29.3543677 AM","firefox.exe","7336","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0126059","Offset: 21,450,752, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6024"
"10:46:29.3544739 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000052","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:29.3544940 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000068","","740"
"10:46:29.3545136 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\profapi.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3545571 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","8388"
"10:46:29.3545712 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\profapi.dll","0.0000060","","8388"
"10:46:29.3548409 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3548575 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\profapi.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3548955 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","8388"
"10:46:29.3548981 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:29.3549100 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\profapi.dll","0.0000060","","8388"
"10:46:29.3549134 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000047","","740"
"10:46:29.3551984 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\profapi.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3552010 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3552428 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","8388"
"10:46:29.3552432 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000090","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:29.3552560 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\profapi.dll","0.0000056","","8388"
"10:46:29.3552829 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000205","","740"
"10:46:29.3555876 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\powrprof.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3556281 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","8388"
"10:46:29.3556400 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\powrprof.dll","0.0000060","","8388"
"10:46:29.3559592 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\powrprof.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3559750 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3559980 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","8388"
"10:46:29.3560117 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\powrprof.dll","0.0000059","","8388"
"10:46:29.3560138 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000030","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:29.3560296 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000047","","740"
"10:46:29.3560812 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000166","Desired Access: Read","8388"
"10:46:29.3562041 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\powrprof.dll.mui","0.0000162","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3562485 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\powrprof.dll.mui","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.3562651 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\powrprof.dll.mui","0.0000034","AllocationSize: 57,344, EndOfFile: 55,808, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.3562873 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\powrprof.dll.mui","0.0000017","SyncType: SyncTypeOther","8388"
"10:46:29.3564255 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3564857 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000055","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:29.3565062 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000089","","740"
"10:46:29.3565689 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\powrprof.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3565983 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","8388"
"10:46:29.3566073 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\powrprof.dll","0.0000047","","8388"
"10:46:29.3568731 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3569102 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\fltLib.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3569281 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000052","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:29.3569409 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","8388"
"10:46:29.3569499 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000073","","740"
"10:46:29.3569508 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\fltLib.dll","0.0000042","","8388"
"10:46:29.3571564 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\fltLib.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3571922 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","8388"
"10:46:29.3572012 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\fltLib.dll","0.0000047","","8388"
"10:46:29.3572520 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000153","Desired Access: Read","8388"
"10:46:29.3574188 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3574354 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\fltlib.dll.mui","0.0000197","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3574696 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000051","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:29.3574760 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\fltlib.dll.mui","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.3574905 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\fltlib.dll.mui","0.0000030","AllocationSize: 8,192, EndOfFile: 7,168, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.3574909 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000081","","740"
"10:46:29.3575204 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\fltlib.dll.mui","0.0000025","SyncType: SyncTypeOther","8388"
"10:46:29.3578596 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\fltLib.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3578608 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3578933 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000029","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","8388"
"10:46:29.3579065 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\fltLib.dll","0.0000047","","8388"
"10:46:29.3579120 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000052","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:29.3579325 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000073","","740"
"10:46:29.3582734 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ole32.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3583118 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3583148 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000030","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","8388"
"10:46:29.3583238 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ole32.dll","0.0000042","","8388"
"10:46:29.3583613 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000051","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:29.3583809 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000090","","740"
"10:46:29.3585742 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ole32.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3586327 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000055","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","8388"
"10:46:29.3586485 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ole32.dll","0.0000076","","8388"
"10:46:29.3587244 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000149","Desired Access: Read","8388"
"10:46:29.3587863 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3588144 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.3588285 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000056","","740"
"10:46:29.3588853 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\ole32.dll.mui","0.0000239","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3589399 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\ole32.dll.mui","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.3589672 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\ole32.dll.mui","0.0000077","AllocationSize: 32,768, EndOfFile: 30,208, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.3590052 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\ole32.dll.mui","0.0000029","SyncType: SyncTypeOther","8388"
"10:46:29.3591737 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3592095 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.3592257 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000069","","740"
"10:46:29.3594002 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ole32.dll","0.0000227","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3594463 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000047","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","8388"
"10:46:29.3594613 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ole32.dll","0.0000068","","8388"
"10:46:29.3595573 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3595841 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.3596021 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000064","","740"
"10:46:29.3599664 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\imm32.dll","0.0000261","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3600185 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000051","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","8388"
"10:46:29.3600347 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\imm32.dll","0.0000073","","8388"
"10:46:29.3600492 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3601013 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000042","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:29.3601192 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000064","","740"
"10:46:29.3603760 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\imm32.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3604234 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000051","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","8388"
"10:46:29.3604392 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\imm32.dll","0.0000072","","8388"
"10:46:29.3604405 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3604865 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000039","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:29.3605002 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000055","","740"
"10:46:29.3607639 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\imm32.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3608193 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000047","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","8388"
"10:46:29.3608347 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\imm32.dll","0.0000073","","8388"
"10:46:29.3608573 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000316","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3609205 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000059","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:29.3609397 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000068","","740"
"10:46:29.3612661 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\setupapi.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3613267 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000046","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","8388"
"10:46:29.3613424 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\setupapi.dll","0.0000069","","8388"
"10:46:29.3613924 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3614555 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:29.3614743 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000064","","740"
"10:46:29.3616829 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\setupapi.dll","0.0000508","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3617550 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","8388"
"10:46:29.3617678 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\setupapi.dll","0.0000073","","8388"
"10:46:29.3618617 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000188","Desired Access: Read","8388"
"10:46:29.3619329 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3619803 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000043","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:29.3619982 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000064","","740"
"10:46:29.3620136 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\setupapi.dll.mui","0.0000222","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3620639 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\setupapi.dll.mui","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.3620848 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\setupapi.dll.mui","0.0000043","AllocationSize: 49,152, EndOfFile: 48,640, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.3621194 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\setupapi.dll.mui","0.0000026","SyncType: SyncTypeOther","8388"
"10:46:29.3625452 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3626049 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:29.3626246 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000077","","740"
"10:46:29.3626745 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\setupapi.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3627278 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000051","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","8388"
"10:46:29.3627453 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\setupapi.dll","0.0000073","","8388"
"10:46:29.3631511 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3631673 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3632091 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000056","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:29.3632185 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000047","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","8388"
"10:46:29.3632296 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000081","","740"
"10:46:29.3632351 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000073","","8388"
"10:46:29.3636093 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3636601 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000047","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","8388"
"10:46:29.3636759 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000077","","8388"
"10:46:29.3637616 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000188","Desired Access: Read","8388"
"10:46:29.3639502 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\OLEAUT32.dll.mui","0.0000252","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a","8388"
"10:46:29.3640189 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en","0.0000132","Desired Access: Read","8388"
"10:46:29.3641546 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\features\screenshots@mozilla.org.xpi","0.0000077","AllocationSize: 344,064, EndOfFile: 340,280, NumberOfLinks: 1, DeletePending: False, Directory: False","572"
"10:46:29.3641917 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\features\screenshots@mozilla.org.xpi","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","572"
"10:46:29.3642152 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\features\screenshots@mozilla.org.xpi","0.0000038","AllocationSize: 344,064, EndOfFile: 340,280, NumberOfLinks: 1, DeletePending: False, Directory: False","572"
"10:46:29.3642510 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\features\screenshots@mozilla.org.xpi","0.0000026","SyncType: SyncTypeOther","572"
"10:46:29.3642651 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en\OLEAUT32.dll.mui","0.0000192","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a","8388"
"10:46:29.3645497 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3646047 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000056","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","8388"
"10:46:29.3646218 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000081","","8388"
"10:46:29.3649759 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000295","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3649900 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3650314 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40434, endtime: 40434, seqnum: 0, connid: 0","0"
"10:46:29.3650344 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000055","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","8388"
"10:46:29.3650497 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000073","","8388"
"10:46:29.3652400 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3652563 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40434, endtime: 40434, seqnum: 0, connid: 0","0"
"10:46:29.3653885 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3654474 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000043","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","8388"
"10:46:29.3654611 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000068","","8388"
"10:46:29.3658660 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\avrt.dll","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3659253 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000051","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","8388"
"10:46:29.3659406 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\avrt.dll","0.0000073","","8388"
"10:46:29.3662995 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\avrt.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3663562 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000064","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","8388"
"10:46:29.3663746 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\avrt.dll","0.0000068","","8388"
"10:46:29.3664198 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3664646 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000188","Desired Access: Read","8388"
"10:46:29.3664748 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000043","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:29.3664919 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000072","","740"
"10:46:29.3666118 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3666459 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40434, endtime: 40434, seqnum: 0, connid: 0","0"
"10:46:29.3667376 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3667637 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40434, endtime: 40434, seqnum: 0, connid: 0","0"
"10:46:29.3669019 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3669676 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:29.3669860 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000930","","740"
"10:46:29.3670926 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\avrt.dll.mui","0.0000278","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3671511 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\avrt.dll.mui","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.3671711 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\avrt.dll.mui","0.0000043","AllocationSize: 8,192, EndOfFile: 4,608, NumberOfLinks: 2, DeletePending: False, Directory: False","8388"
"10:46:29.3672019 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\avrt.dll.mui","0.0000021","SyncType: SyncTypeOther","8388"
"10:46:29.3675364 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\avrt.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3675906 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000059","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","8388"
"10:46:29.3676080 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\avrt.dll","0.0000086","","8388"
"10:46:29.3681631 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\usp10.dll","0.0000329","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3682536 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000060","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","8388"
"10:46:29.3682715 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\usp10.dll","0.0000077","","8388"
"10:46:29.3686086 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\usp10.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3686611 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000051","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","8388"
"10:46:29.3686773 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\usp10.dll","0.0000068","","8388"
"10:46:29.3689828 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\usp10.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3690442 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000141","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","8388"
"10:46:29.3690732 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\usp10.dll","0.0000073","","8388"
"10:46:29.3705951 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3706301 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40435, endtime: 40435, seqnum: 0, connid: 0","0"
"10:46:29.3707423 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3707671 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40435, endtime: 40435, seqnum: 0, connid: 0","0"
"10:46:29.3708354 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\d3d11.dll","0.0000371","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3709092 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000068","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","8388"
"10:46:29.3714378 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\d3d11.dll","0.0000363","","8388"
"10:46:29.3721768 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\d3d11.dll","0.0000303","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3721862 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3722327 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000047","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","8388"
"10:46:29.3722468 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\d3d11.dll","0.0000072","","8388"
"10:46:29.3722553 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000056","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:29.3722809 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000081","","740"
"10:46:29.3723129 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3723765 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40435, endtime: 40435, seqnum: 0, connid: 0","0"
"10:46:29.3724571 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3724772 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40435, endtime: 40435, seqnum: 0, connid: 0","0"
"10:46:29.3727097 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3727694 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000060","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:29.3727912 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000090","","740"
"10:46:29.3728010 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\d3d11.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3728518 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000047","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","8388"
"10:46:29.3728671 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\d3d11.dll","0.0000073","","8388"
"10:46:29.3731295 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0001472","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3733211 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000056","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:29.3733407 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000086","","740"
"10:46:29.3738122 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dxgi.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3738673 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000046","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","8388"
"10:46:29.3738792 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3738835 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dxgi.dll","0.0000068","","8388"
"10:46:29.3739249 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000042","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:29.3739419 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000056","","740"
"10:46:29.3742602 AM","firefox.exe","7904","ReadFile","C:\Program Files\Firefox Nightly\browser\features\screenshots@mozilla.org.xpi","0.0103006","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","572"
"10:46:29.3743012 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dxgi.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3743182 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3743519 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000052","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","8388"
"10:46:29.3743558 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000025","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:29.3743733 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dxgi.dll","0.0000128","","8388"
"10:46:29.3743763 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000051","","740"
"10:46:29.3747470 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dxgi.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3747748 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000546","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3748418 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000059","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","8388"
"10:46:29.3748588 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dxgi.dll","0.0000090","","8388"
"10:46:29.3748669 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000052","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:29.3748900 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000085","","740"
"10:46:29.3753192 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3753550 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3753742 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000052","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","8388"
"10:46:29.3753905 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000076","","8388"
"10:46:29.3754067 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000038","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:29.3754225 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000051","","740"
"10:46:29.3755517 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3755859 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40435, endtime: 40435, seqnum: 0, connid: 0","0"
"10:46:29.3759788 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3760091 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40435, endtime: 40435, seqnum: 0, connid: 0","0"
"10:46:29.3769218 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000716","Offset: 131,072, Length: 65,536","7900"
"10:46:29.3773813 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0435025","Offset: 196,608, Length: 65,536","7900"
"10:46:29.3782897 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0001309","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3784829 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3785333 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40435, endtime: 40436, seqnum: 0, connid: 0","0"
"10:46:29.3785388 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000086","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:29.3785666 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000136","","740"
"10:46:29.3789668 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3790948 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40435, endtime: 40436, seqnum: 0, connid: 0","0"
"10:46:29.3804396 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000448","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3805480 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000077","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","8388"
"10:46:29.3805706 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000107","","8388"
"10:46:29.3806760 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000192","Desired Access: Read","8388"
"10:46:29.3808744 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3809324 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000056","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:29.3809529 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000085","","740"
"10:46:29.3809828 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\iphlpapi.dll.mui","0.0000277","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3810442 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\iphlpapi.dll.mui","0.0000056","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.3810673 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\iphlpapi.dll.mui","0.0000047","AllocationSize: 4,096, EndOfFile: 4,096, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.3811193 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\iphlpapi.dll.mui","0.0000030","SyncType: SyncTypeOther","8388"
"10:46:29.3815106 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3815131 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000303","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3815741 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000197","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","8388"
"10:46:29.3815840 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000089","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:29.3816100 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000089","","8388"
"10:46:29.3816147 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000077","","740"
"10:46:29.3820392 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000316","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3820849 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000251","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3821036 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000056","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:29.3821241 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000081","","740"
"10:46:29.3821382 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000051","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","8388"
"10:46:29.3821574 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000077","","8388"
"10:46:29.3825636 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000290","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3825683 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0004096","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3826195 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000051","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","8388"
"10:46:29.3826348 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000077","","8388"
"10:46:29.3827287 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000213","Desired Access: Read","8388"
"10:46:29.3829446 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\dnsapi.dll.mui","0.0000282","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3830086 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\dnsapi.dll.mui","0.0000073","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.3830240 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000064","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:29.3830333 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\dnsapi.dll.mui","0.0000047","AllocationSize: 73,728, EndOfFile: 72,704, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.3830474 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000094","","740"
"10:46:29.3830675 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\dnsapi.dll.mui","0.0000030","SyncType: SyncTypeOther","8388"
"10:46:29.3835564 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000329","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3835795 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3836140 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40436, endtime: 40436, seqnum: 0, connid: 0","0"
"10:46:29.3836213 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000055","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","8388"
"10:46:29.3836384 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000093","","8388"
"10:46:29.3837719 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3837898 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40436, endtime: 40436, seqnum: 0, connid: 0","0"
"10:46:29.3841252 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\nsi.dll","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3841964 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000086","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8388"
"10:46:29.3842233 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\nsi.dll","0.0000115","","8388"
"10:46:29.3846295 AM","firefox.exe","7904","ReadFile","C:\Program Files\Firefox Nightly\browser\features\screenshots@mozilla.org.xpi","0.0100920","Offset: 311,296, Length: 28,984, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","572"
"10:46:29.3846585 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\nsi.dll","0.0000303","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3847187 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000060","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8388"
"10:46:29.3847353 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\nsi.dll","0.0000077","","8388"
"10:46:29.3851087 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\nsi.dll","0.0000268","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3851624 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8388"
"10:46:29.3851773 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\nsi.dll","0.0000073","","8388"
"10:46:29.3853019 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3853382 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40436, endtime: 40436, seqnum: 0, connid: 0","0"
"10:46:29.3854726 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3854918 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40436, endtime: 40436, seqnum: 0, connid: 0","0"
"10:46:29.3856343 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3857085 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000150","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","8388"
"10:46:29.3857337 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000077","","8388"
"10:46:29.3860934 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000320","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3861523 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000051","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","8388"
"10:46:29.3861655 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000081","","8388"
"10:46:29.3862700 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000188","Desired Access: Read","8388"
"10:46:29.3864586 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\dwmapi.dll.mui","0.0000273","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3865568 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\dwmapi.dll.mui","0.0000064","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.3865802 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\dwmapi.dll.mui","0.0000060","AllocationSize: 4,096, EndOfFile: 3,584, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.3866144 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\dwmapi.dll.mui","0.0000029","SyncType: SyncTypeOther","8388"
"10:46:29.3870082 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3870662 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000051","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","8388"
"10:46:29.3870816 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000081","","8388"
"10:46:29.3874451 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3874873 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40436, endtime: 40437, seqnum: 0, connid: 0","0"
"10:46:29.3875108 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3875582 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000051","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","8388"
"10:46:29.3875727 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000068","","8388"
"10:46:29.3876243 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3876392 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40437, endtime: 40437, seqnum: 0, connid: 0","0"
"10:46:29.3879294 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3879848 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000162","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","8388"
"10:46:29.3880185 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000090","","8388"
"10:46:29.3880706 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3881043 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000171","Desired Access: Read","8388"
"10:46:29.3881158 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000038","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:29.3881316 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000064","","740"
"10:46:29.3883176 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\uxtheme.dll.mui","0.0000269","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3883756 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\uxtheme.dll.mui","0.0000052","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.3884102 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\uxtheme.dll.mui","0.0000056","AllocationSize: 8,192, EndOfFile: 7,680, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.3884473 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\uxtheme.dll.mui","0.0000030","SyncType: SyncTypeOther","8388"
"10:46:29.3884729 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3885194 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000043","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:29.3885369 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000073","","740"
"10:46:29.3887925 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3888211 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40437, endtime: 40437, seqnum: 0, connid: 0","0"
"10:46:29.3888399 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000290","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3888804 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000303","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3888932 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000038","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","8388"
"10:46:29.3889051 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000081","","8388"
"10:46:29.3889384 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000039","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:29.3889542 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000060","","740"
"10:46:29.3890041 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3890361 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40436, endtime: 40437, seqnum: 0, connid: 0","0"
"10:46:29.3894065 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000379","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3894700 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000047","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","8388"
"10:46:29.3894841 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000069","","8388"
"10:46:29.3895225 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3895844 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000051","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:29.3896049 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000077","","740"
"10:46:29.3898536 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3898907 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000047","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","8388"
"10:46:29.3899061 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000064","","8388"
"10:46:29.3899803 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3900350 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000059","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:29.3900614 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000124","","740"
"10:46:29.3902359 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3902773 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000038","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","8388"
"10:46:29.3902910 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000059","","8388"
"10:46:29.3903912 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3904377 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000051","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:29.3904578 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000072","","740"
"10:46:29.3906784 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3907296 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000051","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","8388"
"10:46:29.3907454 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000072","","8388"
"10:46:29.3909792 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3910180 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000051","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:29.3910363 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000073","","740"
"10:46:29.3910939 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3911294 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000034","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","8388"
"10:46:29.3911392 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000047","","8388"
"10:46:29.3911972 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000141","Desired Access: Read","8388"
"10:46:29.3913359 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\dhcpcsvc.dll.mui","0.0000213","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3913790 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3913841 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3913858 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\dhcpcsvc.dll.mui","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.3914071 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\dhcpcsvc.dll.mui","0.0000047","AllocationSize: 4,096, EndOfFile: 3,072, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.3914114 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:29.3914131 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40437, endtime: 40437, seqnum: 0, connid: 0","0"
"10:46:29.3914280 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000064","","740"
"10:46:29.3914417 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\dhcpcsvc.dll.mui","0.0000025","SyncType: SyncTypeOther","8388"
"10:46:29.3915569 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3915727 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40437, endtime: 40437, seqnum: 0, connid: 0","0"
"10:46:29.3918743 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3919123 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3919247 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000042","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","8388"
"10:46:29.3919375 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000068","","8388"
"10:46:29.3919494 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000043","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:29.3919652 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000060","","740"
"10:46:29.3923483 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\userenv.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3923978 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","8388"
"10:46:29.3924128 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\userenv.dll","0.0000059","","8388"
"10:46:29.3924384 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3924725 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000043","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:29.3924917 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000060","","740"
"10:46:29.3926402 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3926683 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40437, endtime: 40437, seqnum: 0, connid: 0","0"
"10:46:29.3927797 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\userenv.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3927955 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.3928143 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40437, endtime: 40437, seqnum: 0, connid: 0","0"
"10:46:29.3928373 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","8388"
"10:46:29.3928514 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\userenv.dll","0.0000077","","8388"
"10:46:29.3928906 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000227","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3929299 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000047","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:29.3929393 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000179","Desired Access: Read","8388"
"10:46:29.3929491 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000077","","740"
"10:46:29.3931257 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\userenv.dll.mui","0.0000261","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3931739 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\userenv.dll.mui","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.3931889 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\userenv.dll.mui","0.0000034","AllocationSize: 8,192, EndOfFile: 4,608, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.3932115 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\userenv.dll.mui","0.0000013","SyncType: SyncTypeOther","8388"
"10:46:29.3932742 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3933101 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000042","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:29.3933267 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000068","","740"
"10:46:29.3934743 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\userenv.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3935178 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","8388"
"10:46:29.3935311 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\userenv.dll","0.0000064","","8388"
"10:46:29.3938323 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3938711 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000043","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:29.3938895 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000072","","740"
"10:46:29.3939718 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3940021 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000038","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","8388"
"10:46:29.3940153 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000060","","8388"
"10:46:29.3942730 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3942957 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000029","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:29.3943063 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000043","","740"
"10:46:29.3944036 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3944437 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000047","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","8388"
"10:46:29.3944603 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000077","","8388"
"10:46:29.3945303 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3945525 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000026","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:29.3945649 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000042","","740"
"10:46:29.3948094 AM","firefox.exe","7904","ReadFile","C:\Program Files\Firefox Nightly\browser\features\screenshots@mozilla.org.xpi","0.0023253","Offset: 53,248, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","572"
"10:46:29.3948418 AM","firefox.exe","7904","ReadFile","C:\Program Files\Firefox Nightly\browser\features\screenshots@mozilla.org.xpi","0.0023804","Offset: 32,768, Length: 20,480, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8808"
"10:46:29.3948729 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\features\webcompat-reporter@mozilla.org.xpi","0.0000060","AllocationSize: 28,672, EndOfFile: 26,423, NumberOfLinks: 1, DeletePending: False, Directory: False","8852"
"10:46:29.3948751 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3949079 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\features\webcompat-reporter@mozilla.org.xpi","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8852"
"10:46:29.3949101 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000042","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","8388"
"10:46:29.3949267 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000064","","8388"
"10:46:29.3949322 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\features\webcompat-reporter@mozilla.org.xpi","0.0000035","AllocationSize: 28,672, EndOfFile: 26,423, NumberOfLinks: 1, DeletePending: False, Directory: False","8852"
"10:46:29.3949689 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\features\webcompat-reporter@mozilla.org.xpi","0.0000030","SyncType: SyncTypeOther","8852"
"10:46:29.3950513 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3950594 AM","firefox.exe","7904","ReadFile","C:\Program Files\Firefox Nightly\browser\features\webcompat-reporter@mozilla.org.xpi","0.0168533","Offset: 0, Length: 26,423, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8852"
"10:46:29.3950824 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000047","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:29.3950974 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000059","","740"
"10:46:29.3955061 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3955151 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3955522 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000055","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:29.3955586 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","8388"
"10:46:29.3955714 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000132","","8388"
"10:46:29.3955727 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000059","","740"
"10:46:29.3959225 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3959831 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000158","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:29.3960173 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000256","","740"
"10:46:29.3975353 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000905","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3977508 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000184","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","8388"
"10:46:29.3977939 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000201","","8388"
"10:46:29.3979804 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000750","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3981536 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000217","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.3982274 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000700","","740"
"10:46:29.3988017 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3988448 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","8388"
"10:46:29.3988589 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000064","","8388"
"10:46:29.3989446 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3989911 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000039","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.3990073 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000060","","740"
"10:46:29.3993849 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3994161 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3994208 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000038","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.3994327 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000047","","740"
"10:46:29.3994686 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000047","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","8388"
"10:46:29.3994852 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000077","","8388"
"10:46:29.3998210 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000375","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.3998218 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.3998641 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000094","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","8388"
"10:46:29.3998841 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000222","","8388"
"10:46:29.3999149 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:29.3999353 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000081","","740"
"10:46:29.4000006 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000162","Desired Access: Read","8388"
"10:46:29.4001662 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\ntmarta.dll.mui","0.0000243","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4002199 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\ntmarta.dll.mui","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.4002417 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\ntmarta.dll.mui","0.0000047","AllocationSize: 8,192, EndOfFile: 6,656, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.4002775 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\ntmarta.dll.mui","0.0000026","SyncType: SyncTypeOther","8388"
"10:46:29.4003010 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4003496 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:29.4003671 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000077","","740"
"10:46:29.4007178 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000376","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4007759 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4007814 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000047","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","8388"
"10:46:29.4007959 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000073","","8388"
"10:46:29.4008407 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000051","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:29.4008621 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000081","","740"
"10:46:29.4012768 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4013301 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000039","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","8388"
"10:46:29.4013421 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000059","","8388"
"10:46:29.4014001 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4014598 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000051","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:29.4014794 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000077","","740"
"10:46:29.4016066 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4016458 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000035","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","8388"
"10:46:29.4016557 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000047","","8388"
"10:46:29.4017116 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000140","Desired Access: Read","8388"
"10:46:29.4018413 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\napinsp.dll.mui","0.0000166","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4018801 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\napinsp.dll.mui","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.4018959 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\napinsp.dll.mui","0.0000034","AllocationSize: 4,096, EndOfFile: 2,560, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.4019065 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4019193 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\napinsp.dll.mui","0.0000017","SyncType: SyncTypeOther","8388"
"10:46:29.4019569 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000047","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:29.4019744 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000072","","740"
"10:46:29.4021651 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4022031 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000038","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","8388"
"10:46:29.4022146 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000051","","8388"
"10:46:29.4023076 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4023584 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000051","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:29.4023797 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000064","","740"
"10:46:29.4025145 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\webauthn.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4025453 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000030","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","8388"
"10:46:29.4025551 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\webauthn.dll","0.0000042","","8388"
"10:46:29.4028533 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\webauthn.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4028772 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4028845 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000030","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","8388"
"10:46:29.4028930 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\webauthn.dll","0.0000047","","8388"
"10:46:29.4029267 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000047","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:29.4029446 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000069","","740"
"10:46:29.4029536 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000136","Desired Access: Read","8388"
"10:46:29.4030927 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\webauthn.dll.mui","0.0000200","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4031375 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\webauthn.dll.mui","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.4031541 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\webauthn.dll.mui","0.0000034","AllocationSize: 20,480, EndOfFile: 18,944, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.4031887 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\webauthn.dll.mui","0.0000017","SyncType: SyncTypeOther","8388"
"10:46:29.4032881 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4033393 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000047","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:29.4033589 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000086","","740"
"10:46:29.4035624 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\webauthn.dll","0.0000227","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4036094 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","8388"
"10:46:29.4036243 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\webauthn.dll","0.0000085","","8388"
"10:46:29.4037220 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4037672 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000043","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:29.4037852 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000064","","740"
"10:46:29.4040761 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4041077 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4041235 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000043","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","8388"
"10:46:29.4041376 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40437, endtime: 40438, seqnum: 0, connid: 0","0"
"10:46:29.4041380 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000064","","8388"
"10:46:29.4042447 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4042647 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40438, endtime: 40438, seqnum: 0, connid: 0","0"
"10:46:29.4043513 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4043659 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40438, endtime: 40438, seqnum: 0, connid: 0","0"
"10:46:29.4044222 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4044456 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4044465 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40438, endtime: 40438, seqnum: 0, connid: 0","0"
"10:46:29.4045062 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000056","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","8388"
"10:46:29.4045229 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000170","","8388"
"10:46:29.4046197 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000175","Desired Access: Read","8388"
"10:46:29.4047742 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4048087 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000034","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:29.4048113 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\bcrypt.dll.mui","0.0000525","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4048237 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000098","","740"
"10:46:29.4048958 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\bcrypt.dll.mui","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.4049180 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\bcrypt.dll.mui","0.0000051","AllocationSize: 4,096, EndOfFile: 3,584, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.4049508 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\bcrypt.dll.mui","0.0000021","SyncType: SyncTypeOther","8388"
"10:46:29.4052264 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000308","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4052738 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000047","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:29.4052917 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000077","","740"
"10:46:29.4053549 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000251","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4054543 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000060","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","8388"
"10:46:29.4054722 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000090","","8388"
"10:46:29.4056339 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000559","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4057039 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000047","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:29.4057205 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000068","","740"
"10:46:29.4059633 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4060217 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000052","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","8388"
"10:46:29.4060448 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000098","","8388"
"10:46:29.4061911 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4062274 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000047","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:29.4062440 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000073","","740"
"10:46:29.4065901 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4066084 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4066366 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000038","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:29.4066455 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000047","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","8388"
"10:46:29.4066541 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000059","","740"
"10:46:29.4066635 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000076","","8388"
"10:46:29.4067454 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000179","Desired Access: Read","8388"
"10:46:29.4069766 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\pnrpnsp.dll.mui","0.0000282","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4070376 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\pnrpnsp.dll.mui","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.4070585 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\pnrpnsp.dll.mui","0.0000056","AllocationSize: 4,096, EndOfFile: 2,560, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.4070931 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\pnrpnsp.dll.mui","0.0000026","SyncType: SyncTypeOther","8388"
"10:46:29.4072373 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4072680 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40438, endtime: 40438, seqnum: 0, connid: 0","0"
"10:46:29.4073376 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4073756 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000038","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:29.4073905 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000068","","740"
"10:46:29.4076546 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000303","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4076892 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4077143 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40439, seqnum: 0, connid: 0","0"
"10:46:29.4077178 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000055","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","8388"
"10:46:29.4077357 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000077","","8388"
"10:46:29.4078709 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4079191 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000043","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:29.4079358 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000072","","740"
"10:46:29.4083381 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000261","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4083578 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4084405 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4084631 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40439, seqnum: 0, connid: 0","0"
"10:46:29.4084990 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000060","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","8388"
"10:46:29.4085173 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000081","","8388"
"10:46:29.4085199 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4085199 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000038","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:29.4085374 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000328","","740"
"10:46:29.4085442 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40439, seqnum: 0, connid: 0","0"
"10:46:29.4088975 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4089282 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000469","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4089512 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000099","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","8388"
"10:46:29.4089717 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000081","","8388"
"10:46:29.4090003 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000039","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:29.4090157 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000059","","740"
"10:46:29.4093182 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4093715 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4093783 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000052","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","8388"
"10:46:29.4093971 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000085","","8388"
"10:46:29.4094035 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40439, seqnum: 0, connid: 0","0"
"10:46:29.4094632 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000312","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4094952 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4095110 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40439, seqnum: 0, connid: 0","0"
"10:46:29.4095400 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000047","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:29.4095571 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000064","","740"
"10:46:29.4096693 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4096877 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40439, seqnum: 0, connid: 0","0"
"10:46:29.4097419 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4097606 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40439, seqnum: 0, connid: 0","0"
"10:46:29.4098976 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4099125 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40439, seqnum: 0, connid: 0","0"
"10:46:29.4099761 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\mswsock.dll","0.0000341","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4100119 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4100269 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40439, seqnum: 0, connid: 0","0"
"10:46:29.4100384 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4100461 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000055","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","8388"
"10:46:29.4100610 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\mswsock.dll","0.0000068","","8388"
"10:46:29.4101250 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4101404 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000051","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:29.4101451 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40439, seqnum: 0, connid: 0","0"
"10:46:29.4101579 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000081","","740"
"10:46:29.4101971 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4102120 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40439, seqnum: 0, connid: 0","0"
"10:46:29.4103520 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4103674 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40439, seqnum: 0, connid: 0","0"
"10:46:29.4104126 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\mswsock.dll","0.0000298","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4104604 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4104736 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40439, seqnum: 0, connid: 0","0"
"10:46:29.4104796 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","8388"
"10:46:29.4105039 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\mswsock.dll","0.0000508","","8388"
"10:46:29.4105320 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4105803 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000059","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:29.4105982 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000081","","740"
"10:46:29.4106106 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4106280 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40439, seqnum: 0, connid: 0","0"
"10:46:29.4106677 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4106801 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40439, seqnum: 0, connid: 0","0"
"10:46:29.4107569 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4107680 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40439, seqnum: 0, connid: 0","0"
"10:46:29.4108213 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4108316 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40439, seqnum: 0, connid: 0","0"
"10:46:29.4109007 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4109186 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40439, seqnum: 0, connid: 0","0"
"10:46:29.4109643 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4109805 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40439, seqnum: 0, connid: 0","0"
"10:46:29.4110167 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\mswsock.dll","0.0000244","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4110692 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","8388"
"10:46:29.4110846 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\mswsock.dll","0.0000085","","8388"
"10:46:29.4111780 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4112459 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000051","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:29.4112634 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000072","","740"
"10:46:29.4115262 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\winrnr.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4115838 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000047","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","8388"
"10:46:29.4115944 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4115996 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\winrnr.dll","0.0000068","","8388"
"10:46:29.4116213 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40439, seqnum: 0, connid: 0","0"
"10:46:29.4116597 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4117242 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000046","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:29.4117480 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000850","","740"
"10:46:29.4117852 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4118001 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40439, seqnum: 0, connid: 0","0"
"10:46:29.4120160 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\features\doh-rollout@mozilla.org.xpi","0.0000051","AllocationSize: 61,440, EndOfFile: 58,055, NumberOfLinks: 1, DeletePending: False, Directory: False","6460"
"10:46:29.4120450 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\features\doh-rollout@mozilla.org.xpi","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","6460"
"10:46:29.4120668 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\features\doh-rollout@mozilla.org.xpi","0.0000034","AllocationSize: 61,440, EndOfFile: 58,055, NumberOfLinks: 1, DeletePending: False, Directory: False","6460"
"10:46:29.4121423 AM","firefox.exe","7904","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\features\doh-rollout@mozilla.org.xpi","0.0000030","SyncType: SyncTypeOther","6460"
"10:46:29.4122029 AM","firefox.exe","7904","ReadFile","C:\Program Files\Firefox Nightly\browser\features\doh-rollout@mozilla.org.xpi","0.0178923","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6460"
"10:46:29.4123514 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\winrnr.dll","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4124346 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4124648 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40439, seqnum: 0, connid: 0","0"
"10:46:29.4124930 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000303","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4125229 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000051","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","8388"
"10:46:29.4125327 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4125395 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\winrnr.dll","0.0000090","","8388"
"10:46:29.4125527 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000039","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:29.4125544 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40439, seqnum: 0, connid: 0","0"
"10:46:29.4125698 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000060","","740"
"10:46:29.4126210 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000175","Desired Access: Read","8388"
"10:46:29.4127836 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\winrnr.dll.mui","0.0000264","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4128403 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\winrnr.dll.mui","0.0000056","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.4128582 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\winrnr.dll.mui","0.0000039","AllocationSize: 4,096, EndOfFile: 2,560, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.4128855 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\winrnr.dll.mui","0.0000022","SyncType: SyncTypeOther","8388"
"10:46:29.4134726 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4134867 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\winrnr.dll","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4135153 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000043","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:29.4135285 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000060","","740"
"10:46:29.4135418 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000051","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","8388"
"10:46:29.4135584 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\winrnr.dll","0.0000073","","8388"
"10:46:29.4137709 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4138054 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000030","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:29.4138165 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000047","","740"
"10:46:29.4140495 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wshbth.dll","0.0000414","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4141033 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4141263 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000055","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","8388"
"10:46:29.4141446 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wshbth.dll","0.0000081","","8388"
"10:46:29.4141468 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000030","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:29.4141626 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000047","","740"
"10:46:29.4145295 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wshbth.dll","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4145581 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4145828 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000060","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:29.4145901 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000038","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","8388"
"10:46:29.4146016 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000064","","740"
"10:46:29.4146046 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wshbth.dll","0.0000055","","8388"
"10:46:29.4149826 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4149860 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wshbth.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4150121 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000038","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:29.4150261 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000060","","740"
"10:46:29.4150364 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000042","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","8388"
"10:46:29.4150513 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wshbth.dll","0.0000077","","8388"
"10:46:29.4152634 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000221","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4152996 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000039","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:29.4153154 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000068","","740"
"10:46:29.4155104 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\sspicli.dll","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4155676 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000047","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8388"
"10:46:29.4155834 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\sspicli.dll","0.0000068","","8388"
"10:46:29.4157638 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4157997 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:29.4158185 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000072","","740"
"10:46:29.4159179 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\sspicli.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4159721 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000046","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8388"
"10:46:29.4159891 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\sspicli.dll","0.0000073","","8388"
"10:46:29.4161833 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4162174 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000038","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:29.4162340 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000069","","740"
"10:46:29.4163838 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\sspicli.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4164341 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000047","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","8388"
"10:46:29.4164495 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\sspicli.dll","0.0000072","","8388"
"10:46:29.4167042 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4167383 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000043","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","740"
"10:46:29.4167550 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000068","","740"
"10:46:29.4170669 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4171061 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40439, seqnum: 0, connid: 0","0"
"10:46:29.4171927 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4172077 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40439, seqnum: 0, connid: 0","0"
"10:46:29.4173020 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4173173 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40439, seqnum: 0, connid: 0","0"
"10:46:29.4173711 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4174039 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40440, seqnum: 0, connid: 0","0"
"10:46:29.4174278 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4174679 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000043","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","740"
"10:46:29.4174752 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\devobj.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4174833 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000068","","740"
"10:46:29.4175319 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000056","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","8388"
"10:46:29.4175494 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\devobj.dll","0.0000073","","8388"
"10:46:29.4177457 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4177662 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40440, seqnum: 0, connid: 0","0"
"10:46:29.4178946 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000333","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4179590 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000047","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","740"
"10:46:29.4179748 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000077","","740"
"10:46:29.4181318 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\devobj.dll","0.0000320","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4181707 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4182001 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40440, endtime: 40440, seqnum: 0, connid: 0","0"
"10:46:29.4182355 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000056","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","8388"
"10:46:29.4182522 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\devobj.dll","0.0000072","","8388"
"10:46:29.4183499 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4183708 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40440, endtime: 40440, seqnum: 0, connid: 0","0"
"10:46:29.4184228 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4184408 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40440, endtime: 40440, seqnum: 0, connid: 0","0"
"10:46:29.4185824 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4185965 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4186110 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40440, endtime: 40440, seqnum: 0, connid: 0","0"
"10:46:29.4186178 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\devobj.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4186255 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000043","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.4186438 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000090","","740"
"10:46:29.4186592 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","8388"
"10:46:29.4186724 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\devobj.dll","0.0000052","","8388"
"10:46:29.4187471 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4187629 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40440, seqnum: 0, connid: 0","0"
"10:46:29.4190914 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4191106 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40439, endtime: 40440, seqnum: 0, connid: 0","0"
"10:46:29.4191593 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4191759 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40440, endtime: 40440, seqnum: 0, connid: 0","0"
"10:46:29.4191827 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\DWrite.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4191998 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4192361 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000047","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","8388"
"10:46:29.4192382 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000043","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.4192501 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\DWrite.dll","0.0000124","","8388"
"10:46:29.4192570 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000094","","740"
"10:46:29.4193820 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4194016 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40440, endtime: 40440, seqnum: 0, connid: 0","0"
"10:46:29.4194579 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4194737 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40440, endtime: 40440, seqnum: 0, connid: 0","0"
"10:46:29.4196021 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4196188 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4196213 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40440, endtime: 40440, seqnum: 0, connid: 0","0"
"10:46:29.4196568 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000042","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.4196666 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4196755 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000073","","740"
"10:46:29.4196811 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40440, endtime: 40440, seqnum: 0, connid: 0","0"
"10:46:29.4197323 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4197459 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40440, endtime: 40440, seqnum: 0, connid: 0","0"
"10:46:29.4198799 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4198936 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40440, endtime: 40440, seqnum: 0, connid: 0","0"
"10:46:29.4199388 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4199567 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40440, endtime: 40440, seqnum: 0, connid: 0","0"
"10:46:29.4200228 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4200369 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40440, endtime: 40440, seqnum: 0, connid: 0","0"
"10:46:29.4200873 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4201022 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40440, endtime: 40440, seqnum: 0, connid: 0","0"
"10:46:29.4201688 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\DWrite.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4201734 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4201880 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40440, endtime: 40440, seqnum: 0, connid: 0","0"
"10:46:29.4202225 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000043","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","8388"
"10:46:29.4202323 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.4202357 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\DWrite.dll","0.0000064","","8388"
"10:46:29.4202477 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40440, endtime: 40440, seqnum: 0, connid: 0","0"
"10:46:29.4202741 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4203019 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000179","Desired Access: Read","8388"
"10:46:29.4203202 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000047","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:29.4203369 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000153","","740"
"10:46:29.4204700 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\DWrite.dll.mui","0.0000239","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4205318 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\DWrite.dll.mui","0.0000069","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.4205587 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\DWrite.dll.mui","0.0000043","AllocationSize: 4,096, EndOfFile: 2,560, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.4205907 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\DWrite.dll.mui","0.0000022","SyncType: SyncTypeOther","8388"
"10:46:29.4206778 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4207341 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000034","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:29.4207482 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000059","","740"
"10:46:29.4209402 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000170","Offset: 262,144, Length: 65,536","7900"
"10:46:29.4209756 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\DWrite.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4209944 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0444122","Offset: 327,680, Length: 65,536","7900"
"10:46:29.4210315 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000047","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","8388"
"10:46:29.4210605 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\DWrite.dll","0.0000094","","8388"
"10:46:29.4211117 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4211603 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000047","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:29.4211855 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000090","","740"
"10:46:29.4215614 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\mscms.dll","0.0001007","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4216915 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000056","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","8388"
"10:46:29.4217508 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\mscms.dll","0.0000094","","8388"
"10:46:29.4218882 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4219266 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","740"
"10:46:29.4219394 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000056","","740"
"10:46:29.4220533 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\mscms.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4220905 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000029","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","8388"
"10:46:29.4221003 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\mscms.dll","0.0000047","","8388"
"10:46:29.4221557 AM","firefox.exe","7904","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000124","Desired Access: Read","8388"
"10:46:29.4221856 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4222159 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","740"
"10:46:29.4222266 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000047","","740"
"10:46:29.4222782 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\en-US\mscms.dll.mui","0.0000183","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4223311 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\mscms.dll.mui","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","8388"
"10:46:29.4223507 AM","firefox.exe","7904","QueryStandardInformationFile","C:\Windows\System32\en-US\mscms.dll.mui","0.0000034","AllocationSize: 20,480, EndOfFile: 17,408, NumberOfLinks: 4, DeletePending: False, Directory: False","8388"
"10:46:29.4223729 AM","firefox.exe","7904","CreateFileMapping","C:\Windows\System32\en-US\mscms.dll.mui","0.0000017","SyncType: SyncTypeOther","8388"
"10:46:29.4224254 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4224561 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","740"
"10:46:29.4224668 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000042","","740"
"10:46:29.4225871 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\mscms.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4226221 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000034","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","8388"
"10:46:29.4226323 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\mscms.dll","0.0000047","","8388"
"10:46:29.4227616 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4227842 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:29.4227945 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000047","","740"
"10:46:29.4229144 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4229357 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","8388"
"10:46:29.4229446 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000047","","8388"
"10:46:29.4229839 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4230048 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:29.4230752 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000115","","740"
"10:46:29.4232736 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4233031 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000038","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","8388"
"10:46:29.4233163 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000060","","8388"
"10:46:29.4234136 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000157","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4234417 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:29.4234549 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000056","","740"
"10:46:29.4235488 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4235680 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","8388"
"10:46:29.4235765 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000039","","8388"
"10:46:29.4237749 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4237971 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","740"
"10:46:29.4238087 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000046","","740"
"10:46:29.4238513 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4238825 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","8388"
"10:46:29.4238910 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000043","","8388"
"10:46:29.4240071 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4240267 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000025","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","740"
"10:46:29.4240365 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000047","","740"
"10:46:29.4240992 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4241393 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000039","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","8388"
"10:46:29.4241504 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000051","","8388"
"10:46:29.4242703 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4243002 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000038","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","740"
"10:46:29.4243164 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000060","","740"
"10:46:29.4243603 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8388"
"10:46:29.4243859 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","8388"
"10:46:29.4243940 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000043","","8388"
"10:46:29.4246744 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imagehlp.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4247072 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imagehlp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:29.4247187 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imagehlp.dll","0.0000047","","740"
"10:46:29.4249065 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imagehlp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4249338 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imagehlp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:29.4249440 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imagehlp.dll","0.0000043","","740"
"10:46:29.4251509 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imagehlp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4251787 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imagehlp.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:29.4251893 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imagehlp.dll","0.0000039","","740"
"10:46:29.4254645 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rsaenh.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4254927 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rsaenh.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.4255029 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rsaenh.dll","0.0000039","","740"
"10:46:29.4256830 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rsaenh.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4257086 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rsaenh.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.4257184 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rsaenh.dll","0.0000039","","740"
"10:46:29.4259032 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rsaenh.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4259288 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rsaenh.dll","0.0000021","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:29.4259381 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rsaenh.dll","0.0000039","","740"
"10:46:29.4262287 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4262539 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:29.4262654 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000060","","740"
"10:46:29.4264540 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4264740 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:29.4264834 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000039","","740"
"10:46:29.4266579 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4266767 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:29.4266861 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000043","","740"
"10:46:29.4269643 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4269933 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000026","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:29.4270035 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000043","","740"
"10:46:29.4272117 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4272386 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000026","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:29.4272484 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000039","","740"
"10:46:29.4274323 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4274579 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000026","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:29.4274677 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000039","","740"
"10:46:29.4277421 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sspicli.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4277698 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:29.4277796 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sspicli.dll","0.0000039","","740"
"10:46:29.4279900 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sspicli.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4280173 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:29.4280275 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sspicli.dll","0.0000039","","740"
"10:46:29.4282050 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sspicli.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4282306 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:29.4282404 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sspicli.dll","0.0000039","","740"
"10:46:29.4288199 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000251","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4288625 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000051","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:29.4288813 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000077","","740"
"10:46:29.4292329 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4292704 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000047","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:29.4292879 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000068","","740"
"10:46:29.4296288 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4296595 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000035","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:29.4296745 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000055","","740"
"10:46:29.4301715 AM","firefox.exe","7904","ReadFile","C:\Program Files\Firefox Nightly\browser\features\doh-rollout@mozilla.org.xpi","0.0503084","Offset: 32,768, Length: 25,287, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6460"
"10:46:29.4304612 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000278","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4305278 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000064","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","740"
"10:46:29.4305504 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000081","","740"
"10:46:29.4312817 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4313244 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000043","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","740"
"10:46:29.4313389 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000055","","740"
"10:46:29.4316248 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4316721 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000047","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","740"
"10:46:29.4316875 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000064","","740"
"10:46:29.4321914 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4322481 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000043","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/27/2019 7:17:12 PM, FileAttributes: A","740"
"10:46:29.4322609 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000056","","740"
"10:46:29.4325839 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4326138 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000030","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/27/2019 7:17:12 PM, FileAttributes: A","740"
"10:46:29.4326244 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000043","","740"
"10:46:29.4328186 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4328467 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000026","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/27/2019 7:17:12 PM, FileAttributes: A","740"
"10:46:29.4328570 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000042","","740"
"10:46:29.4331574 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4331864 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:36 PM, FileAttributes: A","740"
"10:46:29.4331962 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000042","","740"
"10:46:29.4333818 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4334082 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000030","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:36 PM, FileAttributes: A","740"
"10:46:29.4334185 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000038","","740"
"10:46:29.4335947 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4336203 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000030","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:36 PM, FileAttributes: A","740"
"10:46:29.4336305 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000039","","740"
"10:46:29.4339360 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4339578 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000025","CreationTime: 4/11/2018 4:34:35 PM, LastAccessTime: 4/11/2018 4:34:35 PM, LastWriteTime: 4/11/2018 4:34:35 PM, ChangeTime: 3/20/2019 7:07:22 PM, FileAttributes: A","740"
"10:46:29.4339680 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000039","","740"
"10:46:29.4341596 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4341784 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000021","CreationTime: 4/11/2018 4:34:35 PM, LastAccessTime: 4/11/2018 4:34:35 PM, LastWriteTime: 4/11/2018 4:34:35 PM, ChangeTime: 3/20/2019 7:07:22 PM, FileAttributes: A","740"
"10:46:29.4341878 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000034","","740"
"10:46:29.4343635 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4343819 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000021","CreationTime: 4/11/2018 4:34:35 PM, LastAccessTime: 4/11/2018 4:34:35 PM, LastWriteTime: 4/11/2018 4:34:35 PM, ChangeTime: 3/20/2019 7:07:22 PM, FileAttributes: A","740"
"10:46:29.4343913 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000034","","740"
"10:46:29.4346917 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4347126 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000025","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:46:36 PM, FileAttributes: A","740"
"10:46:29.4347224 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000038","","740"
"10:46:29.4349195 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4349387 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000026","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:46:36 PM, FileAttributes: A","740"
"10:46:29.4349485 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000038","","740"
"10:46:29.4351495 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4351678 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000026","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:46:36 PM, FileAttributes: A","740"
"10:46:29.4351776 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000039","","740"
"10:46:29.4354908 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MrmCoreR.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4355237 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MrmCoreR.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:29.4355343 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MrmCoreR.dll","0.0000043","","740"
"10:46:29.4357408 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MrmCoreR.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4357686 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MrmCoreR.dll","0.0000029","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:29.4357788 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MrmCoreR.dll","0.0000038","","740"
"10:46:29.4358326 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\LanguageOverlay\OverlayPackages\en-US","0.0000136","Desired Access: Read","740"
"10:46:29.4359461 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\en-US\MrmCoreR.dll.mui","0.0000149","Desired Access: Generic Read, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4359806 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\MrmCoreR.dll.mui","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","740"
"10:46:29.4359934 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\en-US\MrmCoreR.dll.mui","0.0000034","AllocationSize: 28,672, EndOfFile: 28,672, NumberOfLinks: 4, DeletePending: False, Directory: False","740"
"10:46:29.4360139 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\en-US\MrmCoreR.dll.mui","0.0000013","SyncType: SyncTypeOther","740"
"10:46:29.4362136 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MrmCoreR.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:29.4362439 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MrmCoreR.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:29.4362545 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MrmCoreR.dll","0.0000047","","740"
"10:46:29.4654744 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000167","Offset: 393,216, Length: 65,536","7900"
"10:46:29.4655320 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0447002","Offset: 458,752, Length: 65,536","7900"
"10:46:29.5036445 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\browser\features\screenshots@mozilla.org.xpi","0.0000213","","8004"
"10:46:29.5053721 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\browser\features\doh-rollout@mozilla.org.xpi","0.0000234","","8004"
"10:46:29.5057283 AM","firefox.exe","7904","Thread Exit","","0.0000000","Thread ID: 7908, User Time: 0.0000000, Kernel Time: 0.0000000","7908"
"10:46:29.5103176 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000281","Offset: 524,288, Length: 65,536","7900"
"10:46:29.5104008 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000170","Offset: 589,824, Length: 65,536","7900"
"10:46:29.5104584 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000128","Offset: 655,360, Length: 65,536","7900"
"10:46:29.5105070 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0029205","Offset: 720,896, Length: 65,536","7900"
"10:46:29.5135086 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000226","Offset: 786,432, Length: 65,536","7900"
"10:46:29.5135794 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000209","Offset: 851,968, Length: 65,536","7900"
"10:46:29.5136379 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000136","Offset: 917,504, Length: 65,536","7900"
"10:46:29.5136870 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000140","Offset: 983,040, Length: 65,536","7900"
"10:46:29.5137352 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0001267","Offset: 1,048,576, Length: 65,536","7900"
"10:46:29.5139238 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0008452","Offset: 1,114,112, Length: 65,536","7900"
"10:46:29.5140944 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0109607","Offset: 10,452,992, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2444"
"10:46:29.5148436 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000670","Offset: 1,179,648, Length: 65,536","7900"
"10:46:29.5149584 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000162","Offset: 1,245,184, Length: 65,536","7900"
"10:46:29.5150374 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000145","Offset: 1,310,720, Length: 65,536","7900"
"10:46:29.5150864 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0002995","Offset: 1,376,256, Length: 65,413","7900"
"10:46:29.5154896 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000363","Offset: 0, Length: 65,536","7900"
"10:46:29.5155540 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000073","AllocationSize: 1,441,792, EndOfFile: 1,441,669, NumberOfLinks: 1, DeletePending: False, Directory: False","7900"
"10:46:29.5158190 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000294","Offset: 65,536, Length: 65,536","7900"
"10:46:29.5160831 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000273","Offset: 131,072, Length: 65,536","7900"
"10:46:29.5163425 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000252","Offset: 196,608, Length: 65,536","7900"
"10:46:29.5169121 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000704","Offset: 262,144, Length: 65,536","7900"
"10:46:29.5172300 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000337","Offset: 327,680, Length: 65,536","7900"
"10:46:29.5174941 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000248","Offset: 393,216, Length: 65,536","7900"
"10:46:29.5177484 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000282","Offset: 458,752, Length: 65,536","7900"
"10:46:29.5180155 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000299","Offset: 524,288, Length: 65,536","7900"
"10:46:29.5182937 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000486","Offset: 589,824, Length: 65,536","7900"
"10:46:29.5185847 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000239","Offset: 655,360, Length: 65,536","7900"
"10:46:29.5188253 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000175","Offset: 720,896, Length: 65,536","7900"
"10:46:29.5190557 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000179","Offset: 786,432, Length: 65,536","7900"
"10:46:29.5192818 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000167","Offset: 851,968, Length: 65,536","7900"
"10:46:29.5195054 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000149","Offset: 917,504, Length: 65,536","7900"
"10:46:29.5197277 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000166","Offset: 983,040, Length: 65,536","7900"
"10:46:29.5199547 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000094","Offset: 1,048,576, Length: 65,536","7900"
"10:46:29.5201736 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000094","Offset: 1,114,112, Length: 65,536","7900"
"10:46:29.5203920 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000094","Offset: 1,179,648, Length: 65,536","7900"
"10:46:29.5206088 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000102","Offset: 1,245,184, Length: 65,536","7900"
"10:46:29.5208285 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000124","Offset: 1,310,720, Length: 65,536","7900"
"10:46:29.5210572 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000128","Offset: 1,376,256, Length: 65,413","7900"
"10:46:29.5212906 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google-trackwhite-digest256.vlpset","0.0000171","","7900"
"10:46:29.5216311 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.5216639 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000051","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/26/2020 10:25:30 AM, ChangeTime: 3/26/2020 10:25:30 AM, AllocationSize: 4096, EndOfFile: 4096, FileAttributes: D","7900"
"10:46:29.5216789 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000046","","7900"
"10:46:29.5219020 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.5219263 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000034","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/26/2020 10:25:30 AM, ChangeTime: 3/26/2020 10:25:30 AM, FileAttributes: D","7900"
"10:46:29.5219378 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000043","","7900"
"10:46:29.5221631 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-badbinurl-proto.vlpset","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.5221900 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-badbinurl-proto.vlpset","0.0000030","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/26/2020 10:25:26 AM, ChangeTime: 3/26/2020 10:25:26 AM, AllocationSize: 327680, EndOfFile: 324420, FileAttributes: A","7900"
"10:46:29.5222020 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-badbinurl-proto.vlpset","0.0000051","","7900"
"10:46:29.5223735 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-badbinurl-proto.vlpset","0.0000158","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.5224170 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-badbinurl-proto.vlpset","0.0389265","Offset: 0, Length: 65,536, Priority: Normal","7900"
"10:46:29.5224708 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-badbinurl-proto.vlpset","0.0380774","Offset: 0, Length: 65,536, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7900"
"10:46:29.5252232 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0221683","Offset: 10,485,760, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8844"
"10:46:29.5297254 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features\doh-rollout@mozilla.org.xpi","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5244"
"10:46:29.5297565 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser\features\doh-rollout@mozilla.org.xpi","0.0000043","CreationTime: 3/25/2020 10:26:30 AM, LastAccessTime: 3/25/2020 10:26:30 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: A","5244"
"10:46:29.5297710 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\features\doh-rollout@mozilla.org.xpi","0.0000060","","5244"
"10:46:29.5298350 AM","firefox.exe","7384","CreateFile","C:\","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5244"
"10:46:29.5298602 AM","firefox.exe","7384","QueryDirectory","C:\Program Files","0.0000452","Filter: Program Files, 1: Program Files","5244"
"10:46:29.5299263 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","5244"
"10:46:29.5300313 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5244"
"10:46:29.5300552 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000119","Filter: Firefox Nightly, 1: Firefox Nightly","5244"
"10:46:29.5300787 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000042","","5244"
"10:46:29.5301836 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features","0.0000120","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5244"
"10:46:29.5302075 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\browser\features\doh-rollout@mozilla.org.xpi","0.0000107","Filter: doh-rollout@mozilla.org.xpi, 1: doh-rollout@mozilla.org.xpi","5244"
"10:46:29.5302293 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\features","0.0000038","","5244"
"10:46:29.5303637 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features\doh-rollout@mozilla.org.xpi","0.0000175","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5244"
"10:46:29.5304029 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\features\doh-rollout@mozilla.org.xpi","0.0000047","AllocationSize: 61,440, EndOfFile: 58,055, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:29.5304268 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\features\doh-rollout@mozilla.org.xpi","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5244"
"10:46:29.5304426 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\features\doh-rollout@mozilla.org.xpi","0.0000026","AllocationSize: 61,440, EndOfFile: 58,055, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:29.5304669 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\features\doh-rollout@mozilla.org.xpi","0.0000030","SyncType: SyncTypeOther","5244"
"10:46:29.5305271 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\features\doh-rollout@mozilla.org.xpi","0.0000068","","5244"
"10:46:29.5345506 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features\webcompat-reporter@mozilla.org.xpi","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","120"
"10:46:29.5345847 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser\features\webcompat-reporter@mozilla.org.xpi","0.0000043","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:30 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: A","120"
"10:46:29.5346000 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\features\webcompat-reporter@mozilla.org.xpi","0.0000064","","120"
"10:46:29.5346542 AM","firefox.exe","7384","CreateFile","C:\","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","120"
"10:46:29.5346798 AM","firefox.exe","7384","QueryDirectory","C:\Program Files","0.0000180","Filter: Program Files, 1: Program Files","120"
"10:46:29.5347182 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","120"
"10:46:29.5348467 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000290","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","120"
"10:46:29.5349017 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000158","Filter: Firefox Nightly, 1: Firefox Nightly","120"
"10:46:29.5349311 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000047","","120"
"10:46:29.5350839 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features","0.0000188","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","120"
"10:46:29.5351223 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\browser\features\webcompat-reporter@mozilla.org.xpi","0.0000162","Filter: webcompat-reporter@mozilla.org.xpi, 1: webcompat-reporter@mozilla.org.xpi","120"
"10:46:29.5351564 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\features","0.0000060","","120"
"10:46:29.5353271 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features\webcompat-reporter@mozilla.org.xpi","0.0000196","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","120"
"10:46:29.5353706 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\features\webcompat-reporter@mozilla.org.xpi","0.0000043","AllocationSize: 28,672, EndOfFile: 26,423, NumberOfLinks: 1, DeletePending: False, Directory: False","120"
"10:46:29.5353919 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\features\webcompat-reporter@mozilla.org.xpi","0.0000035","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","120"
"10:46:29.5354064 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\features\webcompat-reporter@mozilla.org.xpi","0.0000022","AllocationSize: 28,672, EndOfFile: 26,423, NumberOfLinks: 1, DeletePending: False, Directory: False","120"
"10:46:29.5354265 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\features\webcompat-reporter@mozilla.org.xpi","0.0000017","SyncType: SyncTypeOther","120"
"10:46:29.5354773 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\features\webcompat-reporter@mozilla.org.xpi","0.0000072","","120"
"10:46:29.5435643 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\features\webcompat-reporter@mozilla.org.xpi","0.0000218","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:29.5436164 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\features\webcompat-reporter@mozilla.org.xpi","0.0000051","AllocationSize: 28,672, EndOfFile: 26,423, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.5436403 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\features\webcompat-reporter@mozilla.org.xpi","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5728"
"10:46:29.5436552 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\browser\features\webcompat-reporter@mozilla.org.xpi","0.0000021","AllocationSize: 28,672, EndOfFile: 26,423, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.5436774 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\browser\features\webcompat-reporter@mozilla.org.xpi","0.0000026","SyncType: SyncTypeOther","5728"
"10:46:29.5437405 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\features\webcompat-reporter@mozilla.org.xpi","0.0000086","","5728"
"10:46:29.5574088 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7852"
"10:46:29.5574592 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000072","CreationTime: 6/19/2019 4:53:38 PM, LastAccessTime: 6/19/2019 4:53:38 PM, LastWriteTime: 3/26/2020 10:29:02 AM, ChangeTime: 3/26/2020 10:29:02 AM, AllocationSize: 5242880, EndOfFile: 5242880, FileAttributes: A","7852"
"10:46:29.5574826 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000086","","7852"
"10:46:29.5577220 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000333","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7852"
"10:46:29.5578056 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000252","Offset: 0, Length: 100, Priority: Normal","7852"
"10:46:29.5579477 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000068","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","7852"
"10:46:29.5579716 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","7852"
"10:46:29.5579904 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000025","Offset: 1,073,741,824, Length: 1","7852"
"10:46:29.5584375 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-journal","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7852"
"10:46:29.5587844 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-wal","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7852"
"10:46:29.5588399 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-wal","0.0000072","CreationTime: 3/26/2020 10:46:27 AM, LastAccessTime: 3/26/2020 10:46:27 AM, LastWriteTime: 3/26/2020 10:46:27 AM, ChangeTime: 3/26/2020 10:46:27 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","7852"
"10:46:29.5588659 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-wal","0.0000090","","7852"
"10:46:29.5589662 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000055","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:29.5589977 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000269","Offset: 0, Length: 32,768","7852"
"10:46:29.5593903 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-wal","0.0000341","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7852"
"10:46:29.5594453 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-wal","0.0000060","CreationTime: 3/26/2020 10:46:27 AM, LastAccessTime: 3/26/2020 10:46:27 AM, LastWriteTime: 3/26/2020 10:46:27 AM, ChangeTime: 3/26/2020 10:46:27 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","7852"
"10:46:29.5594683 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-wal","0.0000090","","7852"
"10:46:29.5596885 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-wal","0.0000469","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","7852"
"10:46:29.5598165 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000068","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:29.5598485 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000051","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:29.5598741 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000171","Offset: 0, Length: 32,768","7852"
"10:46:29.5603562 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000073","Offset: 123, Length: 1","7852"
"10:46:29.5604143 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000047","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:29.5604420 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000068","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:29.5604740 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000175","Offset: 589,824, Length: 32,768","7852"
"10:46:29.5605320 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000030","Offset: 123, Length: 1","7852"
"10:46:29.5611221 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000316","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7852"
"10:46:29.5611737 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000056","CreationTime: 6/19/2019 4:53:38 PM, LastAccessTime: 6/19/2019 4:53:38 PM, LastWriteTime: 3/26/2020 10:29:03 AM, ChangeTime: 3/26/2020 10:29:03 AM, AllocationSize: 5242880, EndOfFile: 5242880, FileAttributes: A","7852"
"10:46:29.5611976 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000094","","7852"
"10:46:29.5614259 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000243","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7852"
"10:46:29.5614276 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-badbinurl-proto.vlpset","0.0660229","Offset: 65,536, Length: 65,536","7900"
"10:46:29.5615023 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000162","Offset: 0, Length: 100, Priority: Normal","7852"
"10:46:29.5615739 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000069","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","7852"
"10:46:29.5615957 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","7852"
"10:46:29.5616132 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000026","Offset: 1,073,741,824, Length: 1","7852"
"10:46:29.5619767 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-journal","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7852"
"10:46:29.5622993 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-wal","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7852"
"10:46:29.5623471 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-wal","0.0000059","CreationTime: 3/26/2020 10:46:27 AM, LastAccessTime: 3/26/2020 10:46:27 AM, LastWriteTime: 3/26/2020 10:46:27 AM, ChangeTime: 3/26/2020 10:46:27 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","7852"
"10:46:29.5623705 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-wal","0.0000081","","7852"
"10:46:29.5624311 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000051","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:29.5624789 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000158","Offset: 0, Length: 32,768","7852"
"10:46:29.5627323 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-wal","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7852"
"10:46:29.5627618 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-wal","0.0000030","CreationTime: 3/26/2020 10:46:27 AM, LastAccessTime: 3/26/2020 10:46:27 AM, LastWriteTime: 3/26/2020 10:46:27 AM, ChangeTime: 3/26/2020 10:46:27 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","7852"
"10:46:29.5627742 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-wal","0.0000055","","7852"
"10:46:29.5629022 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-wal","0.0000243","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","7852"
"10:46:29.5629602 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000043","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:29.5629798 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000034","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:29.5629965 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000085","Offset: 0, Length: 32,768","7852"
"10:46:29.5631262 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000034","Offset: 123, Length: 1","7852"
"10:46:29.5631518 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000017","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:29.5631641 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000026","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:29.5632030 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000443","Offset: 229,376, Length: 32,768","7852"
"10:46:29.5632627 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000068","Offset: 123, Length: 1","7852"
"10:46:29.5638622 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 4604","5728"
"10:46:29.5643622 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000120","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:29.5643998 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000098","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:29.5644629 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000196","Offset: 622,592, Length: 32,768","4604"
"10:46:29.5645124 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000038","Offset: 123, Length: 1","4604"
"10:46:29.5646229 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000039","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:29.5646417 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000043","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:29.5646673 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000021","Offset: 123, Length: 1","4604"
"10:46:29.5646899 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000021","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:29.5647031 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000034","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:29.5647219 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000021","Offset: 123, Length: 1","4604"
"10:46:29.5647492 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000021","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:29.5647633 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000030","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:29.5647821 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000017","Offset: 123, Length: 1","4604"
"10:46:29.5648013 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000021","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:29.5648149 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000030","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:29.5648328 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000022","Offset: 123, Length: 1","4604"
"10:46:29.5648529 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000025","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:29.5648648 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000043","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:29.5648845 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000025","Offset: 123, Length: 1","4604"
"10:46:29.5649028 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000017","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:29.5649148 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000025","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:29.5649322 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000022","Offset: 123, Length: 1","4604"
"10:46:29.5649506 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000017","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:29.5649642 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000030","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:29.5649813 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000017","Offset: 123, Length: 1","4604"
"10:46:29.5650031 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000021","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:29.5650172 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000025","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:29.5650342 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000017","Offset: 123, Length: 1","4604"
"10:46:29.5650526 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000021","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:29.5650654 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000030","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:29.5650837 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000021","Offset: 123, Length: 1","4604"
"10:46:29.5651033 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000017","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:29.5651161 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000026","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:29.5651324 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000017","Offset: 123, Length: 1","4604"
"10:46:29.5651503 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000017","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:29.5651622 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000026","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:29.5651784 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000022","Offset: 123, Length: 1","4604"
"10:46:29.5651981 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000021","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:29.5652121 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000026","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:29.5665621 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000427","Offset: 98,304, Length: 32,768","4604"
"10:46:29.5666701 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0841959","Offset: 1,245,184, Length: 32,768","4604"
"10:46:29.5667183 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0841097","Offset: 1,245,184, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Priority: Normal","4604"
"10:46:29.5740258 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.5740680 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40455, endtime: 40455, seqnum: 0, connid: 0","0"
"10:46:29.5742225 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.5742404 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40455, endtime: 40455, seqnum: 0, connid: 0","0"
"10:46:29.5754795 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.5755140 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40455, endtime: 40455, seqnum: 0, connid: 0","0"
"10:46:29.5756668 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.5756872 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40455, endtime: 40455, seqnum: 0, connid: 0","0"
"10:46:29.5764847 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.5765252 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40455, endtime: 40455, seqnum: 0, connid: 0","0"
"10:46:29.5766033 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.5766268 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40455, endtime: 40455, seqnum: 0, connid: 0","0"
"10:46:29.5779699 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.5780070 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40455, endtime: 40456, seqnum: 0, connid: 0","0"
"10:46:29.5780860 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.5781026 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40455, endtime: 40456, seqnum: 0, connid: 0","0"
"10:46:29.5835546 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json","0.0000533","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7572"
"10:46:29.5836429 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json","0.0000085","Attributes: A, ReparseTag: 0x0","7572"
"10:46:29.5836757 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json","0.0000171","Delete: True","7572"
"10:46:29.5837116 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json","0.0002675","","7572"
"10:46:29.5839479 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000043","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:29.5839825 AM","firefox.exe","7384","RegOpenKey","HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Parental Controls\Users\S-1-5-21-429253301-29906273-2566354956-1001\Web","0.0000576","Desired Access: Read","5728"
"10:46:29.5847736 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json.tmp","0.0000972","Desired Access: Read Attributes, Delete, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7572"
"10:46:29.5849126 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json.tmp","0.0000094","Attributes: A, ReparseTag: 0x0","7572"
"10:46:29.5849540 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json.tmp","0.0000056","CreationTime: 3/26/2020 10:46:29 AM, LastAccessTime: 3/26/2020 10:46:29 AM, LastWriteTime: 3/26/2020 10:46:29 AM, ChangeTime: 3/26/2020 10:46:29 AM, FileAttributes: A","7572"
"10:46:29.5852484 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000303","Desired Access: Write Data/Add File, Synchronize, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7572"
"10:46:29.5859576 AM","firefox.exe","7384","SetRenameInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json.tmp","0.0006540","ReplaceIfExists: False, FileName: C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json","7572"
"10:46:29.5866705 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test","0.0000935","","7572"
"10:46:29.5868766 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json","0.0000363","","7572"
"10:46:29.5869594 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\activity-stream.discovery_stream.json","0.0013290","","7572"
"10:46:29.5869837 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0031185","Offset: 16,678,912, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2444"
"10:46:29.5874923 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.5875362 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000064","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:29.5875546 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000076","","5068"
"10:46:29.5879373 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\idb-deleting-2918063365piupsah","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:29.5884565 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000320","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.5885094 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000064","CreationTime: 6/19/2019 4:53:50 PM, LastAccessTime: 6/19/2019 4:53:50 PM, LastWriteTime: 6/19/2019 4:53:53 PM, ChangeTime: 6/19/2019 4:53:53 PM, FileAttributes: A","5068"
"10:46:29.5885329 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000090","","5068"
"10:46:29.5890611 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.5891145 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000068","CreationTime: 6/19/2019 4:53:50 PM, LastAccessTime: 6/19/2019 4:53:50 PM, LastWriteTime: 6/19/2019 4:53:53 PM, ChangeTime: 6/19/2019 4:53:53 PM, AllocationSize: 49152, EndOfFile: 49152, FileAttributes: A","5068"
"10:46:29.5891384 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000085","","5068"
"10:46:29.5893645 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000397","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:29.5894545 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0018628","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:29.5895215 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0006191","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5068"
"10:46:29.5909338 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000256","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4904"
"10:46:29.5910746 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000102","","4904"
"10:46:29.5915913 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000098","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:29.5916275 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000034","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:29.5916489 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000025","Offset: 1,073,741,824, Length: 1","5068"
"10:46:29.5923000 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-journal","0.0000285","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:29.5923379 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0300600","Offset: 14,487,552, Length: 4,096","7760"
"10:46:29.5923925 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0299610","Offset: 14,487,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:29.5926421 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-wal","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:29.5927151 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000085","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:29.5927680 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000115","Offset: 0, Length: 4,096","5068"
"10:46:29.5928094 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5244"
"10:46:29.5928516 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000052","CreationTime: 3/25/2020 10:26:14 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:30 AM, ChangeTime: 3/25/2020 10:26:30 AM, FileAttributes: A","5244"
"10:46:29.5928713 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0000085","","5244"
"10:46:29.5929395 AM","firefox.exe","7384","CreateFile","C:\","0.0000167","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5244"
"10:46:29.5929775 AM","firefox.exe","7384","QueryDirectory","C:\Program Files","0.0000226","Filter: Program Files, 1: Program Files","5244"
"10:46:29.5930202 AM","firefox.exe","7384","CloseFile","C:\","0.0000072","","5244"
"10:46:29.5931755 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-wal","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:29.5932924 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000183","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5244"
"10:46:29.5933372 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000196","Filter: Firefox Nightly, 1: Firefox Nightly","5244"
"10:46:29.5933794 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000073","","5244"
"10:46:29.5933811 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\bookmarkbackups","0.0000175","0: .., 1: bookmarks-2020-03-26_14_FCnUzq5ofCoPHlO7g-5Xvw==.jsonlz4","4904"
"10:46:29.5933952 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-wal","0.0004258","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","5068"
"10:46:29.5943509 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:29.5945796 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0001652","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","5068"
"10:46:29.5947883 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000081","Exclusive: True, Offset: 128, Length: 1, Fail Immediately: True","5068"
"10:46:29.5948250 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000409","EndOfFile: 0","5068"
"10:46:29.5948885 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000274","AllocationSize: 0","5068"
"10:46:29.5949368 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000042","Offset: 128, Length: 1","5068"
"10:46:29.5949722 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000089","Exclusive: False, Offset: 128, Length: 1, Fail Immediately: True","5068"
"10:46:29.5950127 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000051","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:29.5960201 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000128","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","5068"
"10:46:29.5960755 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000094","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:29.5961630 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0008504","EndOfFile: 32,768","5068"
"10:46:29.5971610 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000776","AllocationSize: 32,768","5068"
"10:46:29.5972864 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000077","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5068"
"10:46:29.5973167 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000077","AllocationSize: 32,768, EndOfFile: 32,768, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:29.5973850 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000042","SyncType: SyncTypeOther","5068"
"10:46:29.5974571 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000166","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5068"
"10:46:29.5975117 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000051","Exclusive: True, Offset: 121, Length: 2, Fail Immediately: True","5068"
"10:46:29.5975322 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000021","Exclusive: True, Offset: 124, Length: 4, Fail Immediately: True","5068"
"10:46:29.5975552 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-wal","0.0000047","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:29.5975804 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000030","Offset: 121, Length: 2","5068"
"10:46:29.5975953 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000022","Offset: 124, Length: 4","5068"
"10:46:29.5976214 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000021","Offset: 120, Length: 1","5068"
"10:46:29.5976367 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000030","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:29.5977336 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000072","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:29.5977690 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000115","Offset: 0, Length: 4,096","5068"
"10:46:29.5979170 AM","firefox.exe","7384","QueryDirectory","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\bookmarkbackups","0.0000103","","4904"
"10:46:29.5980770 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\bookmarkbackups","0.0000154","","4904"
"10:46:29.5983386 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000068","Offset: 123, Length: 1","5068"
"10:46:29.5988689 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000316","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.5989218 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000060","CreationTime: 6/19/2019 4:53:50 PM, LastAccessTime: 6/19/2019 4:53:50 PM, LastWriteTime: 6/19/2019 4:53:53 PM, ChangeTime: 6/19/2019 4:53:53 PM, AllocationSize: 49152, EndOfFile: 49152, FileAttributes: A","5068"
"10:46:29.5989453 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0367305","","5068"
"10:46:29.6004135 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000089","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:28:17 PM, ChangeTime: 3/20/2019 7:09:36 PM, AllocationSize: 577536, EndOfFile: 575537, FileAttributes: A","2512"
"10:46:29.6004489 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000149","","2512"
"10:46:29.6005359 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000098","","2512"
"10:46:29.6005632 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000081","","2512"
"10:46:29.6006417 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000308","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:29.6006921 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:29.6007117 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","5244"
"10:46:29.6012408 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000341","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6013125 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000115","Offset: 24, Length: 16","5244"
"10:46:29.6016785 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6017400 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000072","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:29.6017826 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 1,073,741,826, Length: 510","5244"
"10:46:29.6018919 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:29.6019085 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:29.6019226 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5244"
"10:46:29.6022759 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000516","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6023612 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000098","Offset: 24, Length: 16","5244"
"10:46:29.6026151 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.6026637 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000068","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:28:17 PM, ChangeTime: 3/20/2019 7:09:36 PM, AllocationSize: 577536, EndOfFile: 575537, FileAttributes: A","2512"
"10:46:29.6026752 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6027175 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000098","","2512"
"10:46:29.6027311 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:29.6027678 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 1,073,741,826, Length: 510","5244"
"10:46:29.6028374 AM","firefox.exe","7384","ReadFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0816389","Offset: 249,856, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:29.6032499 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000504","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.6033575 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000085","AllocationSize: 577,536, EndOfFile: 575,537, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:29.6034168 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000098","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:29.6034509 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000056","AllocationSize: 577,536, EndOfFile: 575,537, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:29.6035077 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","SyncType: SyncTypeOther","2512"
"10:46:29.6036681 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0899116","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:29.6224794 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.5214253","Offset: 13,164,544, Length: 4,096","7760"
"10:46:29.6225391 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.5212931","Offset: 13,164,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:29.6249481 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.6249921 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40460, endtime: 40460, seqnum: 0, connid: 0","0"
"10:46:29.6250898 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.6251166 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40460, endtime: 40460, seqnum: 0, connid: 0","0"
"10:46:29.6260301 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.6260664 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40460, endtime: 40460, seqnum: 0, connid: 0","0"
"10:46:29.6261944 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.6262153 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40460, endtime: 40460, seqnum: 0, connid: 0","0"
"10:46:29.6268144 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.6268481 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40460, endtime: 40460, seqnum: 0, connid: 0","0"
"10:46:29.6269441 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.6269594 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40460, endtime: 40460, seqnum: 0, connid: 0","0"
"10:46:29.6270597 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.6270729 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40460, endtime: 40460, seqnum: 0, connid: 0","0"
"10:46:29.6271156 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.6271301 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40460, endtime: 40460, seqnum: 0, connid: 0","0"
"10:46:29.6275256 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-badbinurl-proto.vlpset","0.0000486","Offset: 131,072, Length: 65,536","7900"
"10:46:29.6276425 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-badbinurl-proto.vlpset","0.0000141","Offset: 196,608, Length: 65,536","7900"
"10:46:29.6277095 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-badbinurl-proto.vlpset","0.0000188","Offset: 262,144, Length: 62,276","7900"
"10:46:29.6277987 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-badbinurl-proto.vlpset","0.0029384","Offset: 0, Length: 65,536","7900"
"10:46:29.6308054 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-badbinurl-proto.vlpset","0.0000111","AllocationSize: 327,680, EndOfFile: 324,420, NumberOfLinks: 1, DeletePending: False, Directory: False","7900"
"10:46:29.6312453 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-badbinurl-proto.vlpset","0.0000333","Offset: 65,536, Length: 65,536","7900"
"10:46:29.6315461 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-badbinurl-proto.vlpset","0.0013423","Offset: 131,072, Length: 65,536","7900"
"10:46:29.6331802 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-badbinurl-proto.vlpset","0.0000269","Offset: 196,608, Length: 65,536","7900"
"10:46:29.6334422 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-badbinurl-proto.vlpset","0.0000439","Offset: 262,144, Length: 62,276","7900"
"10:46:29.6337754 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-badbinurl-proto.vlpset","0.0000209","","7900"
"10:46:29.6342567 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000290","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.6343053 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000060","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/26/2020 10:25:30 AM, ChangeTime: 3/26/2020 10:25:30 AM, AllocationSize: 4096, EndOfFile: 4096, FileAttributes: D","7900"
"10:46:29.6343267 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0008734","","7900"
"10:46:29.6361921 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000268","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.6362369 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000055","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:29 AM, LastWriteTime: 3/26/2020 10:46:29 AM, ChangeTime: 3/26/2020 10:46:29 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:29.6362578 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000068","","5068"
"10:46:29.6364336 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000550","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.6365108 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000043","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,830, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5068"
"10:46:29.6365274 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000051","","5068"
"10:46:29.6366093 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000060","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:29.6366384 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000051","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:29.6367941 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000247","Offset: 123, Length: 1","5068"
"10:46:29.6369255 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000039","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:29.6369490 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000060","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:29.6369788 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000171","Offset: 8,192, Length: 4,096","5068"
"10:46:29.6370480 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000038","Offset: 123, Length: 1","5068"
"10:46:29.6370911 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000025","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:29.6371077 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000038","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:29.6371316 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000094","Offset: 12,288, Length: 4,096","5068"
"10:46:29.6371721 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000026","Offset: 123, Length: 1","5068"
"10:46:29.6372135 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000030","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:29.6372310 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000034","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:29.6372626 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000495","Offset: 16,384, Length: 4,096","5068"
"10:46:29.6373552 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000025","Offset: 123, Length: 1","5068"
"10:46:29.6374866 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.6375284 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000047","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/26/2020 10:25:30 AM, ChangeTime: 3/26/2020 10:25:30 AM, FileAttributes: D","7900"
"10:46:29.6375480 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000060","","7900"
"10:46:29.6377212 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.files","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.6377626 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.files","0.0000052","CreationTime: 6/19/2019 4:53:51 PM, LastAccessTime: 6/19/2019 4:53:51 PM, LastWriteTime: 6/19/2019 4:53:51 PM, ChangeTime: 6/19/2019 4:53:51 PM, AllocationSize: 0, EndOfFile: 0, FileAttributes: D","5068"
"10:46:29.6377806 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.files","0.0000064","","5068"
"10:46:29.6381893 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-downloadwhite-proto.vlpset","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.6381970 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.files","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.6382375 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-downloadwhite-proto.vlpset","0.0000051","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 8/16/2019 1:36:44 PM, ChangeTime: 8/16/2019 1:36:44 PM, AllocationSize: 36864, EndOfFile: 32933, FileAttributes: A","7900"
"10:46:29.6382465 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.files","0.0000051","CreationTime: 6/19/2019 4:53:51 PM, LastAccessTime: 6/19/2019 4:53:51 PM, LastWriteTime: 6/19/2019 4:53:51 PM, ChangeTime: 6/19/2019 4:53:51 PM, FileAttributes: D","5068"
"10:46:29.6382576 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-downloadwhite-proto.vlpset","0.0000081","","7900"
"10:46:29.6382687 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.files","0.0000068","","5068"
"10:46:29.6386753 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.files\journals","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:29.6389091 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000222","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:29.6389803 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000077","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:29.6390196 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000166","Offset: 40,960, Length: 4,096","5068"
"10:46:29.6390640 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000030","Offset: 123, Length: 1","5068"
"10:46:29.6391194 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:29.6391382 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000026","Offset: 1,073,741,826, Length: 510","5068"
"10:46:29.6391574 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000021","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:29.6391664 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-downloadwhite-proto.vlpset","0.0013798","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.6392628 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000136","","5068"
"10:46:29.6396579 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000320","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.6397099 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000128","CreationTime: 3/26/2020 10:46:29 AM, LastAccessTime: 3/26/2020 10:46:29 AM, LastWriteTime: 3/26/2020 10:46:29 AM, ChangeTime: 3/26/2020 10:46:29 AM, FileAttributes: A","5068"
"10:46:29.6397390 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000213","","5068"
"10:46:29.6400952 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000423","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.6401690 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000069","Attributes: A, ReparseTag: 0x0","5068"
"10:46:29.6402104 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000132","Delete: True","5068"
"10:46:29.6402518 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0002035","","5068"
"10:46:29.6405121 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-wal","0.0000251","","5068"
"10:46:29.6406234 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-downloadwhite-proto.vlpset","0.0558661","Offset: 0, Length: 32,933, Priority: Normal","7900"
"10:46:29.6406913 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-downloadwhite-proto.vlpset","0.0556608","Offset: 0, Length: 32,933, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7900"
"10:46:29.6410271 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-wal","0.0000285","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.6410770 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-wal","0.0000055","CreationTime: 3/26/2020 10:46:29 AM, LastAccessTime: 3/26/2020 10:46:29 AM, LastWriteTime: 3/26/2020 10:46:29 AM, ChangeTime: 3/26/2020 10:46:29 AM, FileAttributes: A","5068"
"10:46:29.6410996 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-wal","0.0000077","","5068"
"10:46:29.6413010 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-wal","0.0000397","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.6413637 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-wal","0.0000060","Attributes: A, ReparseTag: 0x0","5068"
"10:46:29.6413893 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-wal","0.0000589","Delete: True","5068"
"10:46:29.6414827 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-wal","0.0001110","","5068"
"10:46:29.6416671 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000047","Offset: 1,073,741,826, Length: 510","5068"
"10:46:29.6416858 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000022","Offset: 1,073,741,825, Length: 1","5068"
"10:46:29.6417012 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000017","Offset: 1,073,741,826, Length: 510","5068"
"10:46:29.6417148 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000018","Offset: 1,073,741,824, Length: 1","5068"
"10:46:29.6417358 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000247","","5068"
"10:46:29.6424078 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000358","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.6424654 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000064","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:29 AM, LastWriteTime: 3/26/2020 10:46:29 AM, ChangeTime: 3/26/2020 10:46:29 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:29.6424880 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000328","","5068"
"10:46:29.6428161 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 1136","7276"
"10:46:29.6429198 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\idb-deleting-3561288849sdhlie","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:29.6433259 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000261","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.6433690 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000047","CreationTime: 6/19/2019 4:53:53 PM, LastAccessTime: 6/19/2019 4:53:53 PM, LastWriteTime: 3/25/2020 10:25:13 AM, ChangeTime: 3/25/2020 10:25:13 AM, FileAttributes: A","5068"
"10:46:29.6433887 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000081","","5068"
"10:46:29.6438537 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000534","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.6439254 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000060","CreationTime: 6/19/2019 4:53:53 PM, LastAccessTime: 6/19/2019 4:53:53 PM, LastWriteTime: 3/25/2020 10:25:13 AM, ChangeTime: 3/25/2020 10:25:13 AM, AllocationSize: 49152, EndOfFile: 49152, FileAttributes: A","5068"
"10:46:29.6439472 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000081","","5068"
"10:46:29.6441520 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000350","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:29.6442318 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0138692","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:29.6442928 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0133999","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5068"
"10:46:29.6471293 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000793","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1136"
"10:46:29.6472551 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000077","CreationTime: 6/19/2019 4:53:50 PM, LastAccessTime: 6/19/2019 4:53:50 PM, LastWriteTime: 6/19/2019 4:53:53 PM, ChangeTime: 6/19/2019 4:53:53 PM, AllocationSize: 49152, EndOfFile: 49152, FileAttributes: A","1136"
"10:46:29.6472974 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000140","","1136"
"10:46:29.6482279 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1136"
"10:46:29.6482710 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000051","CreationTime: 6/19/2019 4:53:50 PM, LastAccessTime: 6/19/2019 4:53:50 PM, LastWriteTime: 6/19/2019 4:53:53 PM, ChangeTime: 6/19/2019 4:53:53 PM, FileAttributes: A","1136"
"10:46:29.6482898 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000068","","1136"
"10:46:29.6486917 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1136"
"10:46:29.6487352 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000047","CreationTime: 6/19/2019 4:53:50 PM, LastAccessTime: 6/19/2019 4:53:50 PM, LastWriteTime: 6/19/2019 4:53:53 PM, ChangeTime: 6/19/2019 4:53:53 PM, AllocationSize: 49152, EndOfFile: 49152, FileAttributes: A","1136"
"10:46:29.6487566 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000072","","1136"
"10:46:29.6489648 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000798","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","1136"
"10:46:29.6491030 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000162","Offset: 0, Length: 100, Priority: Normal","1136"
"10:46:29.6492835 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000051","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","1136"
"10:46:29.6493082 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","1136"
"10:46:29.6493300 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000026","Offset: 1,073,741,824, Length: 1","1136"
"10:46:29.6496602 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-journal","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","1136"
"10:46:29.6499977 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-wal","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","1136"
"10:46:29.6500528 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000055","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","1136"
"10:46:29.6500835 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000077","Offset: 0, Length: 4,096","1136"
"10:46:29.6503890 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-wal","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","1136"
"10:46:29.6505584 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-wal","0.0002184","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","1136"
"10:46:29.6509360 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000060","Offset: 123, Length: 1","4604"
"10:46:29.6515982 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000268","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","1136"
"10:46:29.6517983 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0046024","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","1136"
"10:46:29.6536739 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.6537140 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40462, endtime: 40463, seqnum: 0, connid: 0","0"
"10:46:29.6538279 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.6538557 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40463, endtime: 40463, seqnum: 0, connid: 0","0"
"10:46:29.6548460 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.6548805 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40463, endtime: 40463, seqnum: 0, connid: 0","0"
"10:46:29.6549983 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.6550175 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40463, endtime: 40463, seqnum: 0, connid: 0","0"
"10:46:29.6555858 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.6556545 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40463, endtime: 40463, seqnum: 0, connid: 0","0"
"10:46:29.6558047 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.6558239 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40463, endtime: 40463, seqnum: 0, connid: 0","0"
"10:46:29.6561183 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.6561353 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40463, endtime: 40463, seqnum: 0, connid: 0","0"
"10:46:29.6561806 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.6561921 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40463, endtime: 40463, seqnum: 0, connid: 0","0"
"10:46:29.6569503 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000145","Exclusive: True, Offset: 128, Length: 1, Fail Immediately: True","1136"
"10:46:29.6570096 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000712","EndOfFile: 0","1136"
"10:46:29.6571141 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000316","AllocationSize: 0","1136"
"10:46:29.6571696 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000038","Offset: 128, Length: 1","1136"
"10:46:29.6571922 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000034","Exclusive: False, Offset: 128, Length: 1, Fail Immediately: True","1136"
"10:46:29.6572233 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000099","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:29.6572763 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000064","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:29.6573147 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000029","Offset: 123, Length: 1","4604"
"10:46:29.6573646 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000025","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:29.6573808 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000034","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:29.6574025 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000022","Offset: 123, Length: 1","4604"
"10:46:29.6582567 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000086","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","1136"
"10:46:29.6582990 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000060","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","1136"
"10:46:29.6583118 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000222","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:29.6583412 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000039","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","1136"
"10:46:29.6583638 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:29.6583762 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0002223","EndOfFile: 32,768","1136"
"10:46:29.6583856 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000136","Offset: 1,073,741,824, Length: 1","5068"
"10:46:29.6586271 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000401","AllocationSize: 32,768","1136"
"10:46:29.6589548 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-journal","0.0000303","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:29.6593375 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-wal","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:29.6593546 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000076","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","1136"
"10:46:29.6593874 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000060","AllocationSize: 32,768, EndOfFile: 32,768, NumberOfLinks: 1, DeletePending: False, Directory: False","1136"
"10:46:29.6593959 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000052","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:29.6594275 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000103","Offset: 0, Length: 4,096","5068"
"10:46:29.6594309 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000026","SyncType: SyncTypeOther","1136"
"10:46:29.6595022 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000145","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","1136"
"10:46:29.6598324 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000056","Exclusive: True, Offset: 121, Length: 2, Fail Immediately: True","1136"
"10:46:29.6598627 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000026","Exclusive: True, Offset: 124, Length: 4, Fail Immediately: True","1136"
"10:46:29.6598849 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-wal","0.0000051","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","1136"
"10:46:29.6598939 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-wal","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:29.6599105 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000030","Offset: 121, Length: 2","1136"
"10:46:29.6599267 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000021","Offset: 124, Length: 4","1136"
"10:46:29.6599421 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000017","Offset: 120, Length: 1","1136"
"10:46:29.6599596 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000021","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","1136"
"10:46:29.6599835 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000038","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","1136"
"10:46:29.6600112 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000077","Offset: 0, Length: 4,096","1136"
"10:46:29.6600803 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-wal","0.0002108","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","5068"
"10:46:29.6607506 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:29.6609546 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0001706","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","5068"
"10:46:29.6611675 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0001958","Exclusive: True, Offset: 128, Length: 1, Fail Immediately: True","5068"
"10:46:29.6614162 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000576","EndOfFile: 0","5068"
"10:46:29.6615007 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000252","AllocationSize: 0","5068"
"10:46:29.6615451 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000034","Offset: 128, Length: 1","5068"
"10:46:29.6615634 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000030","Exclusive: False, Offset: 128, Length: 1, Fail Immediately: True","5068"
"10:46:29.6615839 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000051","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:29.6615971 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000039","Offset: 123, Length: 1","1136"
"10:46:29.6617016 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000035","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","5068"
"10:46:29.6617191 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000030","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:29.6617400 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000986","EndOfFile: 32,768","5068"
"10:46:29.6618587 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000281","AllocationSize: 32,768","5068"
"10:46:29.6619530 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000064","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5068"
"10:46:29.6619764 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000047","AllocationSize: 32,768, EndOfFile: 32,768, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:29.6620135 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000026","SyncType: SyncTypeOther","5068"
"10:46:29.6620758 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000154","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5068"
"10:46:29.6621360 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000051","Exclusive: True, Offset: 121, Length: 2, Fail Immediately: True","5068"
"10:46:29.6621552 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000026","Exclusive: True, Offset: 124, Length: 4, Fail Immediately: True","5068"
"10:46:29.6621910 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-wal","0.0000158","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:29.6622294 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000034","Offset: 121, Length: 2","5068"
"10:46:29.6622482 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000017","Offset: 124, Length: 4","5068"
"10:46:29.6622627 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000021","Offset: 120, Length: 1","5068"
"10:46:29.6622836 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000030","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:29.6623058 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000043","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:29.6623267 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000324","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1136"
"10:46:29.6623293 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000089","Offset: 0, Length: 4,096","5068"
"10:46:29.6623813 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000056","CreationTime: 6/19/2019 4:53:50 PM, LastAccessTime: 6/19/2019 4:53:50 PM, LastWriteTime: 6/19/2019 4:53:53 PM, ChangeTime: 6/19/2019 4:53:53 PM, AllocationSize: 49152, EndOfFile: 49152, FileAttributes: A","1136"
"10:46:29.6624048 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000098","","1136"
"10:46:29.6626638 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000047","Offset: 123, Length: 1","5068"
"10:46:29.6627589 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000491","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","1136"
"10:46:29.6628259 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000376","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:29 AM, LastWriteTime: 3/26/2020 10:46:29 AM, ChangeTime: 3/26/2020 10:46:29 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","1136"
"10:46:29.6628805 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000205","","1136"
"10:46:29.6632423 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0003840","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","1136"
"10:46:29.6636788 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0029602","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,822, SectorsPerAllocationUnit: 8, BytesPerSector: 512","1136"
"10:46:29.6668020 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000585","","1136"
"10:46:29.6674501 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite-shm","0.0000069","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","1136"
"10:46:29.6674817 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000068","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","1136"
"10:46:29.6675180 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2918063365piupsah.sqlite","0.0000179","Offset: 24,576, Length: 4,096","1136"
"10:46:29.6677727 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000346","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.6678363 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000059","CreationTime: 6/19/2019 4:53:53 PM, LastAccessTime: 6/19/2019 4:53:53 PM, LastWriteTime: 3/25/2020 10:25:13 AM, ChangeTime: 3/25/2020 10:25:13 AM, AllocationSize: 49152, EndOfFile: 49152, FileAttributes: A","5068"
"10:46:29.6678627 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0012002","","5068"
"10:46:29.6695673 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000298","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.6696176 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000060","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:29 AM, LastWriteTime: 3/26/2020 10:46:29 AM, ChangeTime: 3/26/2020 10:46:29 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:29.6696419 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000073","","5068"
"10:46:29.6696863 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\broadcast-listeners.json","0.0000704","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2444"
"10:46:29.6698113 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\broadcast-listeners.json","0.0000043","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2444"
"10:46:29.6698365 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\broadcast-listeners.json","0.0000068","CreationTime: 6/19/2019 5:49:44 PM, LastAccessTime: 3/25/2020 10:33:51 AM, LastWriteTime: 3/25/2020 10:33:51 AM, ChangeTime: 3/25/2020 10:33:51 AM, FileAttributes: A, AllocationSize: 216, EndOfFile: 216, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0xa00000000c13c, EaSize: 0, Access: Generic Read, Position: 0, Mode: Sequential Access, Synchronous IO Non-Alert, AlignmentRequirement: Word","2444"
"10:46:29.6698664 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\broadcast-listeners.json","0.0002193","Offset: 0, Length: 216, Priority: Normal","2444"
"10:46:29.6698689 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000248","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.6699146 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000042","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,822, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5068"
"10:46:29.6699222 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\broadcast-listeners.json","0.0000103","Offset: 0, Length: 216, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2444"
"10:46:29.6699346 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000060","","5068"
"10:46:29.6700174 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000068","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:29.6700451 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000060","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:29.6700933 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000052","Offset: 123, Length: 1","5068"
"10:46:29.6701091 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\broadcast-listeners.json","0.0000107","","2444"
"10:46:29.6701765 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000035","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:29.6701979 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000059","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:29.6702269 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000132","Offset: 8,192, Length: 4,096","5068"
"10:46:29.6702717 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000025","Offset: 123, Length: 1","5068"
"10:46:29.6703152 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000026","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:29.6703459 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000043","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:29.6703694 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000081","Offset: 12,288, Length: 4,096","5068"
"10:46:29.6704816 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000043","Offset: 123, Length: 1","5068"
"10:46:29.6705396 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000030","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:29.6705576 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000046","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:29.6705814 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000640","Offset: 16,384, Length: 4,096","5068"
"10:46:29.6706672 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000026","Offset: 123, Length: 1","5068"
"10:46:29.6711702 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.files","0.0000530","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.6716818 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.files","0.0000162","CreationTime: 6/19/2019 4:53:54 PM, LastAccessTime: 6/19/2019 4:53:54 PM, LastWriteTime: 6/19/2019 4:53:54 PM, ChangeTime: 6/19/2019 4:53:54 PM, AllocationSize: 0, EndOfFile: 0, FileAttributes: D","5068"
"10:46:29.6717334 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.files","0.0000184","","5068"
"10:46:29.6722233 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.files","0.0000623","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.6723030 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.files","0.0000056","CreationTime: 6/19/2019 4:53:54 PM, LastAccessTime: 6/19/2019 4:53:54 PM, LastWriteTime: 6/19/2019 4:53:54 PM, ChangeTime: 6/19/2019 4:53:54 PM, FileAttributes: D","5068"
"10:46:29.6723244 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.files","0.0000068","","5068"
"10:46:29.6727336 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.files\journals","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:29.6728347 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000055","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:29.6728620 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000064","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:29.6729110 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000146","Offset: 40,960, Length: 4,096","5068"
"10:46:29.6729512 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000034","Offset: 123, Length: 1","5068"
"10:46:29.6729853 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:29.6730015 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000021","Offset: 1,073,741,826, Length: 510","5068"
"10:46:29.6730164 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000022","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:29.6730821 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000355","","5068"
"10:46:29.6731052 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000166","Name: \Windows\System32\sechost.dll","8024"
"10:46:29.6734743 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000345","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.6735263 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000056","CreationTime: 3/26/2020 10:46:29 AM, LastAccessTime: 3/26/2020 10:46:29 AM, LastWriteTime: 3/26/2020 10:46:29 AM, ChangeTime: 3/26/2020 10:46:29 AM, FileAttributes: A","5068"
"10:46:29.6735472 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000431","","5068"
"10:46:29.6738339 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000423","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.6739167 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000179","Attributes: A, ReparseTag: 0x0","5068"
"10:46:29.6739517 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000158","Delete: True","5068"
"10:46:29.6739837 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0001216","","5068"
"10:46:29.6741522 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-wal","0.0000243","","5068"
"10:46:29.6745584 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-wal","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.6746032 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-wal","0.0000060","CreationTime: 3/26/2020 10:46:29 AM, LastAccessTime: 3/26/2020 10:46:29 AM, LastWriteTime: 3/26/2020 10:46:29 AM, ChangeTime: 3/26/2020 10:46:29 AM, FileAttributes: A","5068"
"10:46:29.6746506 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-wal","0.0000085","","5068"
"10:46:29.6748741 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-wal","0.0000363","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.6749390 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-wal","0.0000060","Attributes: A, ReparseTag: 0x0","5068"
"10:46:29.6749633 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-wal","0.0000128","Delete: True","5068"
"10:46:29.6749906 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-wal","0.0000999","","5068"
"10:46:29.6751502 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000060","Offset: 1,073,741,826, Length: 510","5068"
"10:46:29.6751694 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000021","Offset: 1,073,741,825, Length: 1","5068"
"10:46:29.6751839 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000017","Offset: 1,073,741,826, Length: 510","5068"
"10:46:29.6751967 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000017","Offset: 1,073,741,824, Length: 1","5068"
"10:46:29.6752180 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000291","","5068"
"10:46:29.6758124 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.6758593 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000060","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:29 AM, LastWriteTime: 3/26/2020 10:46:29 AM, ChangeTime: 3/26/2020 10:46:29 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:29.6758798 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000329","","5068"
"10:46:29.6765761 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\idb-deleting-3870112724rsegmnoittet-es","0.0000363","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:29.6770309 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 4104","7276"
"10:46:29.6770459 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000106","Name: \Windows\System32\sechost.dll","8024"
"10:46:29.6770497 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000320","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:29.6771005 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000055","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","5068"
"10:46:29.6771214 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.4668401","","5068"
"10:46:29.6848518 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000085","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:29.6848821 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:29.6849055 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,824, Length: 1","5244"
"10:46:29.6851129 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000060","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:29.6851457 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000081","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:29.6851914 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000030","Offset: 123, Length: 1","4604"
"10:46:29.6853557 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000098","Name: \Windows\System32\sechost.dll","8024"
"10:46:29.6853958 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6854632 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000094","Offset: 24, Length: 16","5244"
"10:46:29.6858433 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000316","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4104"
"10:46:29.6858446 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6858950 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000059","CreationTime: 6/19/2019 4:53:53 PM, LastAccessTime: 6/19/2019 4:53:53 PM, LastWriteTime: 3/25/2020 10:25:13 AM, ChangeTime: 3/25/2020 10:25:13 AM, AllocationSize: 49152, EndOfFile: 49152, FileAttributes: A","4104"
"10:46:29.6859048 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:29.6859167 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000081","","4104"
"10:46:29.6859415 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 1,073,741,826, Length: 510","5244"
"10:46:29.6861173 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000046","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:29.6861373 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:29.6861544 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","5244"
"10:46:29.6862969 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000281","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4104"
"10:46:29.6863434 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000051","CreationTime: 6/19/2019 4:53:53 PM, LastAccessTime: 6/19/2019 4:53:53 PM, LastWriteTime: 3/25/2020 10:25:13 AM, ChangeTime: 3/25/2020 10:25:13 AM, FileAttributes: A","4104"
"10:46:29.6863660 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000073","","4104"
"10:46:29.6864641 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6865234 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000090","Offset: 24, Length: 16","5244"
"10:46:29.6868089 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6868631 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:29.6868993 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000372","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4104"
"10:46:29.6869015 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 1,073,741,826, Length: 510","5244"
"10:46:29.6869638 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000055","CreationTime: 6/19/2019 4:53:53 PM, LastAccessTime: 6/19/2019 4:53:53 PM, LastWriteTime: 3/25/2020 10:25:13 AM, ChangeTime: 3/25/2020 10:25:13 AM, AllocationSize: 49152, EndOfFile: 49152, FileAttributes: A","4104"
"10:46:29.6869987 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000103","","4104"
"10:46:29.6870713 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:29.6870926 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:29.6871084 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","5244"
"10:46:29.6873115 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000542","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","4104"
"10:46:29.6874130 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000154","Offset: 0, Length: 100, Priority: Normal","4104"
"10:46:29.6875466 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000094","Name: \Windows\System32\sechost.dll","8024"
"10:46:29.6875577 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6875782 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000047","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","4104"
"10:46:29.6876016 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","4104"
"10:46:29.6876119 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000072","Offset: 24, Length: 16","5244"
"10:46:29.6876217 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000030","Offset: 1,073,741,824, Length: 1","4104"
"10:46:29.6879323 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6879869 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:29.6880040 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-journal","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","4104"
"10:46:29.6880223 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 1,073,741,826, Length: 510","5244"
"10:46:29.6881559 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:29.6881746 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:29.6881900 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5244"
"10:46:29.6884093 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-wal","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","4104"
"10:46:29.6884626 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000047","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","4104"
"10:46:29.6884938 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000081","Offset: 0, Length: 4,096","4104"
"10:46:29.6885198 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6885727 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000077","Offset: 24, Length: 16","5244"
"10:46:29.6888377 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.6888701 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40467, endtime: 40467, seqnum: 0, connid: 0","0"
"10:46:29.6888966 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0001365","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6889734 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.6889926 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40466, endtime: 40467, seqnum: 0, connid: 0","0"
"10:46:29.6890685 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000068","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:29.6891095 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 1,073,741,826, Length: 510","5244"
"10:46:29.6893386 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:29.6893578 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:29.6893736 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","5244"
"10:46:29.6894517 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000059","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:29.6894785 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000056","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:29.6895097 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000025","Offset: 123, Length: 1","4604"
"10:46:29.6896492 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-wal","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","4104"
"10:46:29.6898860 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6898903 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-wal","0.0001497","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","4104"
"10:46:29.6899423 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000086","Offset: 24, Length: 16","5244"
"10:46:29.6903093 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6903698 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:29.6903937 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","4104"
"10:46:29.6904095 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 1,073,741,826, Length: 510","5244"
"10:46:29.6905879 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000106","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:29.6906024 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0001412","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","4104"
"10:46:29.6906148 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:29.6906318 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5244"
"10:46:29.6907748 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000051","Exclusive: True, Offset: 128, Length: 1, Fail Immediately: True","4104"
"10:46:29.6908038 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000367","EndOfFile: 0","4104"
"10:46:29.6908622 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000269","AllocationSize: 0","4104"
"10:46:29.6909096 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000025","Offset: 128, Length: 1","4104"
"10:46:29.6909335 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000025","Exclusive: False, Offset: 128, Length: 1, Fail Immediately: True","4104"
"10:46:29.6909527 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000047","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","4104"
"10:46:29.6909757 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6909877 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000029","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","4104"
"10:46:29.6910069 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000034","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","4104"
"10:46:29.6910295 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000994","EndOfFile: 32,768","4104"
"10:46:29.6910312 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000077","Offset: 24, Length: 16","5244"
"10:46:29.6911498 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000269","AllocationSize: 32,768","4104"
"10:46:29.6912061 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000064","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","4104"
"10:46:29.6912326 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000042","AllocationSize: 32,768, EndOfFile: 32,768, NumberOfLinks: 1, DeletePending: False, Directory: False","4104"
"10:46:29.6912710 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000025","SyncType: SyncTypeOther","4104"
"10:46:29.6913520 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000325","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6914485 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:29.6914890 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 1,073,741,826, Length: 510","5244"
"10:46:29.6915709 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000196","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","4104"
"10:46:29.6916763 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:29.6916942 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:29.6917104 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,824, Length: 1","5244"
"10:46:29.6921004 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6921644 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000098","Offset: 24, Length: 16","5244"
"10:46:29.6924170 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000060","Exclusive: True, Offset: 121, Length: 2, Fail Immediately: True","4104"
"10:46:29.6924434 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000026","Exclusive: True, Offset: 124, Length: 4, Fail Immediately: True","4104"
"10:46:29.6924699 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-wal","0.0000064","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","4104"
"10:46:29.6924993 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000030","Offset: 121, Length: 2","4104"
"10:46:29.6925177 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000017","Offset: 124, Length: 4","4104"
"10:46:29.6925377 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000017","Offset: 120, Length: 1","4104"
"10:46:29.6925557 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000029","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4104"
"10:46:29.6925928 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000042","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","4104"
"10:46:29.6926073 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6926201 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000077","Offset: 0, Length: 4,096","4104"
"10:46:29.6926683 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:29.6927063 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 1,073,741,826, Length: 510","5244"
"10:46:29.6928509 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:29.6928718 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:29.6928889 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","5244"
"10:46:29.6929755 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000038","Offset: 123, Length: 1","4104"
"10:46:29.6932494 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6932989 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000077","Offset: 24, Length: 16","5244"
"10:46:29.6934593 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000244","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4104"
"10:46:29.6935029 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000051","CreationTime: 6/19/2019 4:53:53 PM, LastAccessTime: 6/19/2019 4:53:53 PM, LastWriteTime: 3/25/2020 10:25:13 AM, ChangeTime: 3/25/2020 10:25:13 AM, AllocationSize: 49152, EndOfFile: 49152, FileAttributes: A","4104"
"10:46:29.6935442 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000090","","4104"
"10:46:29.6935711 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6936189 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:29.6936402 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0087873","Offset: 544,768, Length: 30,769, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:29.6936535 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","5244"
"10:46:29.6937371 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:29.6937563 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:29.6937721 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","5244"
"10:46:29.6938924 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4104"
"10:46:29.6939312 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000043","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:29 AM, LastWriteTime: 3/26/2020 10:46:29 AM, ChangeTime: 3/26/2020 10:46:29 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","4104"
"10:46:29.6939513 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000060","","4104"
"10:46:29.6940503 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6940972 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000068","Offset: 24, Length: 16","5244"
"10:46:29.6941117 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000218","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","4104"
"10:46:29.6941535 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000043","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,822, SectorsPerAllocationUnit: 8, BytesPerSector: 512","4104"
"10:46:29.6941736 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000068","","4104"
"10:46:29.6943187 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite-shm","0.0000059","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4104"
"10:46:29.6943596 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000051","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","4104"
"10:46:29.6943775 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6943899 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3561288849sdhlie.sqlite","0.0000115","Offset: 20,480, Length: 4,096","4104"
"10:46:29.6944219 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:29.6944458 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","5244"
"10:46:29.6946173 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:29.6946352 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:29.6946497 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000018","Offset: 1,073,741,824, Length: 1","5244"
"10:46:29.6949907 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000315","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6950542 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000090","Offset: 24, Length: 16","5244"
"10:46:29.6953572 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6954105 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:29.6954468 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 1,073,741,826, Length: 510","5244"
"10:46:29.6958401 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000094","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:29.6958700 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:29.6958931 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","Offset: 1,073,741,824, Length: 1","5244"
"10:46:29.6966713 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-downloadwhite-proto.vlpset","0.0000077","AllocationSize: 36,864, EndOfFile: 32,933, NumberOfLinks: 1, DeletePending: False, Directory: False","7900"
"10:46:29.6968164 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-downloadwhite-proto.vlpset","0.0000115","","7900"
"10:46:29.6968462 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000261","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6969068 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000085","Offset: 24, Length: 16","5244"
"10:46:29.6971406 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.6971795 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000055","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/26/2020 10:25:30 AM, ChangeTime: 3/26/2020 10:25:30 AM, AllocationSize: 4096, EndOfFile: 4096, FileAttributes: D","7900"
"10:46:29.6971807 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6971999 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000060","","7900"
"10:46:29.6972307 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:29.6972673 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 1,073,741,826, Length: 510","5244"
"10:46:29.6974619 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:29.6974807 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:29.6974977 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,824, Length: 1","5244"
"10:46:29.6975012 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.6975366 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000042","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/26/2020 10:25:30 AM, ChangeTime: 3/26/2020 10:25:30 AM, FileAttributes: D","7900"
"10:46:29.6975536 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000060","","7900"
"10:46:29.6977815 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6978340 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000076","Offset: 24, Length: 16","5244"
"10:46:29.6978617 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-malware-proto.vlpset","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.6978992 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-malware-proto.vlpset","0.0000047","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/26/2020 10:25:25 AM, ChangeTime: 3/26/2020 10:25:25 AM, AllocationSize: 90112, EndOfFile: 89076, FileAttributes: A","7900"
"10:46:29.6979193 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-malware-proto.vlpset","0.0000077","","7900"
"10:46:29.6980947 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-malware-proto.vlpset","0.0000213","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.6981049 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6981710 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000175","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:29.6982192 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 1,073,741,826, Length: 510","5244"
"10:46:29.6982201 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-malware-proto.vlpset","0.0498057","Offset: 0, Length: 65,536, Priority: Normal","7900"
"10:46:29.6982862 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-malware-proto.vlpset","0.0495160","Offset: 0, Length: 65,536, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7900"
"10:46:29.6983882 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:29.6984087 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:29.6984262 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","5244"
"10:46:29.6987615 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6988170 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000085","Offset: 24, Length: 16","5244"
"10:46:29.6991699 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6992351 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000069","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:29.6992846 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 1,073,741,826, Length: 510","5244"
"10:46:29.6994882 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:29.6995069 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:29.6995244 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,824, Length: 1","5244"
"10:46:29.6998790 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.6999353 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000085","Offset: 24, Length: 16","5244"
"10:46:29.7002523 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.7003014 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:29.7003560 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000124","Offset: 131,072, Length: 32,768","5244"
"10:46:29.7003918 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","5244"
"10:46:29.7005096 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:29.7005284 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:29.7005454 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,824, Length: 1","5244"
"10:46:29.7009286 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.7009832 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000072","Offset: 24, Length: 16","5244"
"10:46:29.7013019 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.7013518 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:29.7013864 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 1,073,741,826, Length: 510","5244"
"10:46:29.7015652 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:29.7015835 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:29.7016002 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","5244"
"10:46:29.7019176 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.7019799 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000094","Offset: 24, Length: 16","5244"
"10:46:29.7023148 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.7023686 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:29.7024061 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 1,073,741,826, Length: 510","5244"
"10:46:29.7025597 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:29.7025627 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0003934","Offset: 49,152, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:29.7025802 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:29.7025973 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","5244"
"10:46:29.7029454 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.7030009 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000090","Offset: 24, Length: 16","5244"
"10:46:29.7030350 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0176662","Offset: 81,920, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:29.7033158 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.7033661 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:29.7033981 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","5244"
"10:46:29.7035253 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:29.7035436 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:29.7035603 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","5244"
"10:46:29.7038158 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.7038559 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 24, Length: 16","5244"
"10:46:29.7041047 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.7041418 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:29.7041666 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","Offset: 1,073,741,826, Length: 510","5244"
"10:46:29.7042792 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:29.7042911 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:29.7043014 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Offset: 1,073,741,824, Length: 1","5244"
"10:46:29.7045224 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.7045578 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 24, Length: 16","5244"
"10:46:29.7047967 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.7048411 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:29.7048761 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 1,073,741,826, Length: 510","5244"
"10:46:29.7050276 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:29.7050463 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:29.7050634 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5244"
"10:46:29.7056147 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.7056492 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000064","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:29.7056774 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000068","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:29.7056799 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000086","Offset: 24, Length: 16","5244"
"10:46:29.7057171 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000038","Offset: 123, Length: 1","4604"
"10:46:29.7061574 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000303","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.7062291 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000059","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:29.7062653 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000052","Offset: 1,073,741,826, Length: 510","5244"
"10:46:29.7066975 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000103","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:29.7067607 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:29.7067982 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000035","Offset: 1,073,741,824, Length: 1","5244"
"10:46:29.7071882 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.7072714 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000068","Offset: 24, Length: 16","5244"
"10:46:29.7074779 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.7075146 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:29.7075428 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","5244"
"10:46:29.7076610 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:29.7076729 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:29.7076831 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5244"
"10:46:29.7078931 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.7079289 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 24, Length: 16","5244"
"10:46:29.7081316 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:29.7081708 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:29.7082092 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","5244"
"10:46:29.7127592 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0206221","Offset: 47,403,008, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:29.7167980 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 60, startime: 40467, endtime: 40469, seqnum: 0, connid: 0","0"
"10:46:29.7168305 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 93, startime: 40467, endtime: 40469, seqnum: 0, connid: 0","0"
"10:46:29.7193794 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000094","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:29.7194122 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000094","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:29.7194643 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000034","Offset: 123, Length: 1","4604"
"10:46:29.7194959 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 227, seqnum: 0, connid: 0","0"
"10:46:29.7195872 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:29.7208044 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0005419","Offset: 147,456, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:29.7210156 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000128","Name: \Windows\System32\sechost.dll","8024"
"10:46:29.7231268 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0011840","Offset: 180,224, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:29.7234139 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.7234489 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40470, endtime: 40470, seqnum: 0, connid: 0","0"
"10:46:29.7235296 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.7235488 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40469, endtime: 40470, seqnum: 0, connid: 0","0"
"10:46:29.7236136 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.7236273 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40470, endtime: 40470, seqnum: 0, connid: 0","0"
"10:46:29.7236567 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.7236665 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40470, endtime: 40470, seqnum: 0, connid: 0","0"
"10:46:29.7237433 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.7237548 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40470, endtime: 40470, seqnum: 0, connid: 0","0"
"10:46:29.7238355 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000115","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:29.7238773 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000474","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:29.7239643 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000035","Offset: 123, Length: 1","4604"
"10:46:29.7256305 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000162","Name: \Windows\System32\sechost.dll","8024"
"10:46:29.7270167 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.7270509 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40470, endtime: 40470, seqnum: 0, connid: 0","0"
"10:46:29.7271191 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.7271417 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40470, endtime: 40470, seqnum: 0, connid: 0","0"
"10:46:29.7274263 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0003606","Offset: 212,992, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:29.7278730 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0002880","Offset: 245,760, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:29.7282165 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0003183","Offset: 282,624, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:29.7286782 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0003904","Offset: 315,392, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:29.7292640 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0499337","Offset: 512,000, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:29.7338140 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0307494","Offset: 47,435,776, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:29.7403403 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000072","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:29.7403688 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000069","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:29.7404043 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000021","Offset: 123, Length: 1","4604"
"10:46:29.7424791 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 56, startime: 40470, endtime: 40472, seqnum: 0, connid: 0","0"
"10:46:29.7424996 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 93, startime: 40470, endtime: 40472, seqnum: 0, connid: 0","0"
"10:46:29.7485289 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-malware-proto.vlpset","0.0543646","Offset: 65,536, Length: 23,540","7900"
"10:46:29.7532683 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 195, seqnum: 0, connid: 0","0"
"10:46:29.7533071 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:29.7536113 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.7536429 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40473, endtime: 40473, seqnum: 0, connid: 0","0"
"10:46:29.7537901 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.7538076 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40473, endtime: 40473, seqnum: 0, connid: 0","0"
"10:46:29.7538447 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.7538566 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40473, endtime: 40473, seqnum: 0, connid: 0","0"
"10:46:29.7539138 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.7539373 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40473, endtime: 40473, seqnum: 0, connid: 0","0"
"10:46:29.7562801 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000132","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:29.7563249 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000103","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:29.7563808 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000166","Offset: 123, Length: 1","4604"
"10:46:29.7646906 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0222502","Offset: 47,468,544, Length: 65,536, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:29.7702232 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000098","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:29.7702573 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000094","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:29.7703034 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000030","Offset: 123, Length: 1","4604"
"10:46:29.7724832 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000069","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:29.7725076 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000064","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:29.7725400 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000021","Offset: 123, Length: 1","4604"
"10:46:29.7740273 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000094","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:29.7740653 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000090","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:29.7741634 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000047","Offset: 123, Length: 1","4604"
"10:46:29.7808084 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000648","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:29.7809692 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000708","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:28:17 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A, AllocationSize: 577,536, EndOfFile: 575,537, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x4000000061c39, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:29.7816515 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000328","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.7825155 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000170","AllocationSize: 577,536, EndOfFile: 575,537, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:29.7825820 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000081","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:29.7826140 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","AllocationSize: 577,536, EndOfFile: 575,537, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:29.7826507 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:29.7828201 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000209","","2512"
"10:46:29.7832532 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000422","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.7836111 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000171","AllocationSize: 577,536, EndOfFile: 575,537, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:29.7836734 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000073","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:29.7837033 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","AllocationSize: 577,536, EndOfFile: 575,537, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:29.7838232 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000320","SyncType: SyncTypeOther","2512"
"10:46:29.7850558 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000465","","2512"
"10:46:29.7867518 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000325","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.7868235 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","AllocationSize: 577,536, EndOfFile: 575,537, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:29.7868982 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000183","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:29.7871017 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0336491","Offset: 47,534,080, Length: 131,072, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:29.7871798 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000068","AllocationSize: 577,536, EndOfFile: 575,537, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:29.7872318 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000073","SyncType: SyncTypeOther","2512"
"10:46:29.7873487 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0011717","Offset: 32,768, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:29.7886258 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0003340","Offset: 114,688, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:29.7891361 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0002722","Offset: 278,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:29.7894812 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0007783","Offset: 348,160, Length: 163,840, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:29.7905001 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000166","","2512"
"10:46:29.7972880 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000115","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:29.7973575 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000098","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:29.7974070 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000034","Offset: 123, Length: 1","4604"
"10:46:29.8023051 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000248","","2512"
"10:46:29.8025488 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000166","","2512"
"10:46:29.8026221 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000082","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:29.8026537 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000094","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:29.8027032 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000034","Offset: 123, Length: 1","4604"
"10:46:29.8027536 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000029","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:29.8027719 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000047","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:29.8027962 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000022","Offset: 123, Length: 1","4604"
"10:46:29.8029643 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-malware-proto.vlpset","0.0000453","Offset: 0, Length: 65,536","7900"
"10:46:29.8030441 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-malware-proto.vlpset","0.0000064","AllocationSize: 90,112, EndOfFile: 89,076, NumberOfLinks: 1, DeletePending: False, Directory: False","7900"
"10:46:29.8032959 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-malware-proto.vlpset","0.0000123","Offset: 65,536, Length: 23,540","7900"
"10:46:29.8046748 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-malware-proto.vlpset","0.0000312","","7900"
"10:46:29.8055218 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000644","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.8056088 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000060","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/26/2020 10:25:30 AM, ChangeTime: 3/26/2020 10:25:30 AM, AllocationSize: 4096, EndOfFile: 4096, FileAttributes: D","7900"
"10:46:29.8056319 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000076","","7900"
"10:46:29.8070463 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.8070975 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000064","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/26/2020 10:25:30 AM, ChangeTime: 3/26/2020 10:25:30 AM, FileAttributes: D","7900"
"10:46:29.8071214 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000072","","7900"
"10:46:29.8074243 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000303","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8074938 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000056","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:29.8075169 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000085","","2512"
"10:46:29.8075416 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.8075813 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000055","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/26/2020 10:25:15 AM, ChangeTime: 3/26/2020 10:25:24 AM, AllocationSize: 6799360, EndOfFile: 6799164, FileAttributes: A","7900"
"10:46:29.8076014 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000068","","7900"
"10:46:29.8077916 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000299","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:29.8078492 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000210","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8078838 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0441477","Offset: 0, Length: 65,536, Priority: Normal","7900"
"10:46:29.8079013 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000055","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:29.8079214 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000076","","2512"
"10:46:29.8079747 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0425592","Offset: 0, Length: 65,536, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7900"
"10:46:29.8082806 AM","firefox.exe","7384","TCP Connect","LAPTOP-49TAGD3F.lan1:49759 -> ec2-34-212-158-50.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65700, rcvwinscale: 8, sndwinscale: 8, seqnum: 0, connid: 0","0"
"10:46:29.8086458 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8087069 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000055","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:29.8087273 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000073","","2512"
"10:46:29.8087935 AM","firefox.exe","7384","CreateFile","C:\","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8088280 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000359","Filter: Windows, 1: Windows","2512"
"10:46:29.8088895 AM","firefox.exe","7384","CloseFile","C:\","0.0000059","","2512"
"10:46:29.8090098 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000119","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8090341 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:29.8090567 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000043","","2512"
"10:46:29.8091557 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8091783 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\uxtheme.dll","0.0000239","Filter: uxtheme.dll, 1: uxtheme.dll","2512"
"10:46:29.8092137 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:29.8094497 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8094851 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000030","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","2512"
"10:46:29.8094966 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000043","","2512"
"10:46:29.8095320 AM","firefox.exe","7384","CreateFile","C:\","0.0000086","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8095517 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000102","Filter: Windows, 1: Windows","2512"
"10:46:29.8095726 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:29.8096690 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8096997 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000120","Filter: System32, 1: System32","2512"
"10:46:29.8097223 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:29.8097428 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.8097714 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40479, endtime: 40479, seqnum: 0, connid: 0","0"
"10:46:29.8098187 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:29.8098290 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40479, endtime: 40479, seqnum: 0, connid: 0","0"
"10:46:29.8098435 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8098763 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wtsapi32.dll","0.0000146","Filter: wtsapi32.dll, 1: wtsapi32.dll","2512"
"10:46:29.8099024 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000047","","2512"
"10:46:29.8102783 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8103278 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000047","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","2512"
"10:46:29.8103444 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000094","","2512"
"10:46:29.8106324 AM","firefox.exe","7384","CreateFile","C:\","0.0000260","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8106990 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000251","Filter: Windows, 1: Windows","2512"
"10:46:29.8107421 AM","firefox.exe","7384","CloseFile","C:\","0.0000098","","2512"
"10:46:29.8108782 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8109050 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000128","Filter: System32, 1: System32","2512"
"10:46:29.8109294 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000042","","2512"
"10:46:29.8110322 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000119","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8110565 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wtsapi32.dll","0.0000145","Filter: wtsapi32.dll, 1: wtsapi32.dll","2512"
"10:46:29.8110817 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:29.8112242 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000175","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8112724 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000043","AllocationSize: 65,536, EndOfFile: 64,168, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:29.8112933 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:29.8113074 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000025","AllocationSize: 65,536, EndOfFile: 64,168, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:29.8113309 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:29.8113897 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000069","","2512"
"10:46:29.8115365 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8115971 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000068","AllocationSize: 65,536, EndOfFile: 64,168, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:29.8116248 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:29.8116402 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000017","AllocationSize: 65,536, EndOfFile: 64,168, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:29.8116598 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:29.8118207 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\wtsapi32.dll","0.0218227","Offset: 32,768, Length: 31,400, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:29.8209496 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0071791","Offset: 47,665,152, Length: 262,144, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:29.8285089 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0019076","Offset: 47,927,296, Length: 307,200, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:29.8308539 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0003746","Offset: 48,234,496, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:29.8337471 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000077","AllocationSize: 65,536, EndOfFile: 64,168, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:29.8337761 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000154","","2512"
"10:46:29.8340347 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000200","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8340897 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000030","AllocationSize: 65,536, EndOfFile: 64,168, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:29.8341093 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:29.8341243 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000021","AllocationSize: 65,536, EndOfFile: 64,168, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:29.8341465 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:29.8346452 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000094","","2512"
"10:46:29.8350710 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000163","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8351090 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000034","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","2512"
"10:46:29.8351227 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000047","","2512"
"10:46:29.8353219 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8353526 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000030","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","2512"
"10:46:29.8353642 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000042","","2512"
"10:46:29.8355707 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8356005 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000030","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","2512"
"10:46:29.8356112 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000043","","2512"
"10:46:29.8356488 AM","firefox.exe","7384","CreateFile","C:\","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8356714 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000136","Filter: Windows, 1: Windows","2512"
"10:46:29.8356965 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:29.8357913 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8358143 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:29.8358356 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:29.8359308 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8359525 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wtsapi32.dll","0.0000124","Filter: wtsapi32.dll, 1: wtsapi32.dll","2512"
"10:46:29.8359756 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:29.8361881 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8362205 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:29.8362316 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000042","","2512"
"10:46:29.8362661 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8362853 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000099","Filter: Windows, 1: Windows","2512"
"10:46:29.8363092 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:29.8364010 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8364219 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:29.8364419 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:29.8365354 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8365567 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dhcpcsvc.dll","0.0000111","Filter: dhcpcsvc.dll, 1: dhcpcsvc.dll","2512"
"10:46:29.8365776 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:29.8367658 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8367952 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:29.8368059 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000042","","2512"
"10:46:29.8368396 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8368584 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000093","Filter: Windows, 1: Windows","2512"
"10:46:29.8368780 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:29.8369778 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8369983 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:29.8370184 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:29.8371105 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8371306 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dhcpcsvc.dll","0.0000115","Filter: dhcpcsvc.dll, 1: dhcpcsvc.dll","2512"
"10:46:29.8371519 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:29.8372714 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000166","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8373217 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000043","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:29.8373465 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:29.8373648 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000030","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:29.8373964 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:29.8374642 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000077","","2512"
"10:46:29.8376694 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000188","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8377228 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000042","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:29.8377416 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:29.8377544 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000021","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:29.8377757 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:29.8378431 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000081","","2512"
"10:46:29.8384942 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8385612 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000081","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:29.8385846 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000090","","2512"
"10:46:29.8388022 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8388253 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000030","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:29.8388360 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:29.8389704 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000149","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8390177 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000034","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:29.8390352 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:29.8390484 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000022","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:29.8390676 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:29.8391717 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000022","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:29.8391845 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:29.8391948 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000017","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:29.8392118 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:29.8392724 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\dhcpcsvc.dll","0.0175250","Offset: 0, Length: 84,992, Priority: Normal","2512"
"10:46:29.8393262 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\dhcpcsvc.dll","0.0174080","Offset: 32,768, Length: 52,224, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2512"
"10:46:29.8521599 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0322992","Offset: 65,536, Length: 65,536","7900"
"10:46:29.8586747 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000269","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8587336 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000230","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:29.8589461 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000588","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:29.8593774 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000222","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8594269 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000039","Information: DACL","2512"
"10:46:29.8594500 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000068","","2512"
"10:46:29.8596462 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000499","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:29.8598472 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000192","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8598873 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000034","Information: DACL","2512"
"10:46:29.8599069 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000064","","2512"
"10:46:29.8604607 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000666","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:29.8607748 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000311","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:29.8609642 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000213","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8610478 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000051","Information: DACL","2512"
"10:46:29.8612112 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000137","","2512"
"10:46:29.8614553 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000260","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:29.8616230 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000277","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:29.8616746 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000043","Information: DACL","2512"
"10:46:29.8616840 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0004791","Offset: 1,585,152, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:29.8616951 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000068","","2512"
"10:46:29.8633245 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0003998","Offset: 1,617,920, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:29.8634871 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49759 -> ec2-34-212-158-50.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 517, startime: 40479, endtime: 40484, seqnum: 0, connid: 0","0"
"10:46:29.8635814 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49759 -> ec2-34-212-158-50.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 2920, seqnum: 0, connid: 0","0"
"10:46:29.8636019 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49759 -> ec2-34-212-158-50.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 498, seqnum: 0, connid: 0","0"
"10:46:29.8637849 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000077","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:29.8638143 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:29.8638369 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,824, Length: 1","2884"
"10:46:29.8640737 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0004058","Offset: 1,658,880, Length: 73,728, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:29.8642589 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8643059 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000068","Offset: 24, Length: 16","2884"
"10:46:29.8645700 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8646254 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:29.8646651 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 1,073,741,826, Length: 510","2884"
"10:46:29.8647607 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:29.8647824 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:29.8648004 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","2884"
"10:46:29.8651110 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8651511 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","2884"
"10:46:29.8653431 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8653747 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:29.8653985 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","2884"
"10:46:29.8655479 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:29.8655598 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:29.8655705 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","2884"
"10:46:29.8656865 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0005436","Offset: 1,732,608, Length: 126,976, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:29.8658227 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8658615 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Offset: 24, Length: 16","2884"
"10:46:29.8660539 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8660876 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:29.8661128 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","2884"
"10:46:29.8662352 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:29.8662532 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:29.8662677 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","2884"
"10:46:29.8666124 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8666653 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000081","Offset: 24, Length: 16","2884"
"10:46:29.8669832 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8670327 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:29.8670660 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 1,073,741,826, Length: 510","2884"
"10:46:29.8671517 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8671679 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8671799 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8674504 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8674888 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","5728"
"10:46:29.8676804 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8677119 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8677410 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8677892 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8678007 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8678114 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8680034 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8680345 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:29.8682158 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8682444 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8682649 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8682969 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8683088 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000018","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8683178 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8683447 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0613436","Offset: 1,892,352, Length: 204,800, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:29.8685802 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8686229 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","5728"
"10:46:29.8688247 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8688546 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8688755 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8689271 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8689373 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8689463 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8691528 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8691839 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:29.8693623 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8693904 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000035","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8694101 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8694416 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8694506 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8694591 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8696388 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8696678 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5728"
"10:46:29.8698427 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8698700 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8698884 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8699204 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8699298 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8699379 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8701264 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8701550 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:29.8703359 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8703637 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8703820 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8704119 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8704208 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8704285 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8706064 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8706346 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.8708074 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8708339 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8708518 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8708889 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8709034 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8709171 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8711470 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8711773 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:29.8713544 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8713817 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8714056 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8714385 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8714474 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8714559 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8716467 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8716757 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.8718788 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8719082 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8719283 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8719718 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8719901 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000094","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8720226 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8722973 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8723340 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:29.8725218 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8725525 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8725742 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8726114 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8726212 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8726297 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8728149 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8728452 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.8730231 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8730513 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8730700 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8731042 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8731140 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8731225 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8733030 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8733320 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.8735078 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8735359 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8735543 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8735842 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8735953 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8736038 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8738547 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8738973 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000052","Offset: 24, Length: 16","5728"
"10:46:29.8741606 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8742007 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8742276 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8742673 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8742766 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8742847 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8744716 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8745015 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.8746901 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8747191 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8747379 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8747686 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8747775 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8747861 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8749734 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8750024 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.8751786 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8752059 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8752238 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8752558 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8752652 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8752733 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8754513 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8754794 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:29.8756531 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8756808 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8756983 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8757265 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8757354 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8757431 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8759206 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8759483 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:29.8761318 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8761591 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8761770 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8762082 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8762175 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8762257 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8764096 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8764377 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:29.8766122 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8766391 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8766566 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8766852 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8766941 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8767018 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8768785 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8769058 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.8770807 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8771076 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8771246 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8771558 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8771648 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8771729 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8773491 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8773768 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.8775598 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8775872 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8776046 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000018","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8776328 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8776418 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8776499 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8778350 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8778632 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.8780458 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8780731 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8780910 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000018","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8781226 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8781316 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8781397 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8783236 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8783517 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:29.8785706 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8786116 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8786397 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8786905 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8787020 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8787118 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8789196 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8789623 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Offset: 24, Length: 16","5728"
"10:46:29.8792320 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8792622 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8792823 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8793194 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8793284 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8793369 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8795904 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8796262 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","5728"
"10:46:29.8798357 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8798660 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8798882 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8799274 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8799368 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8799449 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8801271 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8801557 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.8803323 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8803596 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8803784 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8804113 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8804206 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8804288 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8806075 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8806357 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","5728"
"10:46:29.8808119 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8808392 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8808571 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8808857 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8808947 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8809028 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8810901 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8811182 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:29.8813009 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8813282 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8813457 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8813772 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8813862 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8813943 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8815722 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8816000 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.8817740 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8818009 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8818188 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8818474 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8818564 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8818645 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8820416 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8820689 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 24, Length: 16","5728"
"10:46:29.8822425 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8822694 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8822869 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8823176 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8823266 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8823347 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8825194 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8825472 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.8827281 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8827549 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8827729 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8828015 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8828104 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8828181 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8829986 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8830263 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.8832004 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8832273 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8832443 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8833135 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:29.8833305 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:29.8833433 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","2884"
"10:46:29.8835763 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8836130 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","2884"
"10:46:29.8838148 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8838472 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:29.8838728 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","2884"
"10:46:29.8839116 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:29.8839232 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:29.8839334 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","2884"
"10:46:29.8841506 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8841834 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","2884"
"10:46:29.8843660 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8844096 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:29.8844403 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","2884"
"10:46:29.8844928 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:29.8845077 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:29.8845222 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","2884"
"10:46:29.8846609 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000153","Offset: 131,072, Length: 65,536","7900"
"10:46:29.8847202 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0335373","Offset: 196,608, Length: 65,536","7900"
"10:46:29.8847334 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8847722 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","2884"
"10:46:29.8849672 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8849975 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:29.8850197 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","2884"
"10:46:29.8850705 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8850828 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8850931 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8853094 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8853423 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5728"
"10:46:29.8855261 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8855552 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8855859 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8856217 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8856315 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8856401 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8858223 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8858517 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.8860271 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8860548 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8860736 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8861162 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8861260 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8861346 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8863155 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8863441 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.8865634 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8865945 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8866154 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8866564 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8866696 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8866833 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8868740 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8869047 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:29.8871424 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8871756 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8872004 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8873113 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:29.8873318 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:29.8873497 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","2884"
"10:46:29.8876923 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8877474 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000077","Offset: 24, Length: 16","2884"
"10:46:29.8880580 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8880985 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:29.8881258 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","2884"
"10:46:29.8881694 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:29.8881809 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:29.8881907 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","2884"
"10:46:29.8883870 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8884190 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","2884"
"10:46:29.8886152 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8886455 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:29.8886660 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","2884"
"10:46:29.8887163 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8887279 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8887377 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8889497 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8889826 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5728"
"10:46:29.8891780 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8892070 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8892305 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8892676 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8892821 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8892966 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8895599 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8895919 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.8897736 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8898031 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8898223 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8898764 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:29.8898888 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:29.8898991 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","2884"
"10:46:29.8900966 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8901290 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","2884"
"10:46:29.8903108 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8903407 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:29.8903628 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","2884"
"10:46:29.8904008 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:29.8904119 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:29.8904217 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Offset: 1,073,741,824, Length: 1","2884"
"10:46:29.8906052 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8906355 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","2884"
"10:46:29.8908130 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8908416 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:29.8908620 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","2884"
"10:46:29.8909103 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8909205 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8909295 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8911163 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8911458 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.8913233 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8913510 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8913698 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8914065 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8914159 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8914244 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8916138 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8916428 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:29.8918267 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8918540 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8918728 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8919274 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:29.8919398 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:29.8919501 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","2884"
"10:46:29.8921429 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8921758 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","2884"
"10:46:29.8923558 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8923848 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:29.8924066 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","2884"
"10:46:29.8924646 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:29.8924753 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:29.8924855 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Offset: 1,073,741,824, Length: 1","2884"
"10:46:29.8926686 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8926989 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","2884"
"10:46:29.8928802 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8929096 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:29.8929301 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","2884"
"10:46:29.8929617 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:29.8929723 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:29.8929822 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Offset: 1,073,741,824, Length: 1","2884"
"10:46:29.8931874 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8932181 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","2884"
"10:46:29.8934050 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8934336 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:29.8934575 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","2884"
"10:46:29.8934967 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:29.8935082 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:29.8935176 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000013","Offset: 1,073,741,824, Length: 1","2884"
"10:46:29.8937011 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8937314 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000094","Offset: 24, Length: 16","2884"
"10:46:29.8939178 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-wal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:29.8939507 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000030","AllocationSize: 294,912, EndOfFile: 294,912, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:29.8939699 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000017","Offset: 1,073,741,826, Length: 510","2884"
"10:46:29.8940667 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000035","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8940855 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8941009 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8943893 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000849","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8945011 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Offset: 24, Length: 16","5728"
"10:46:29.8948202 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8948638 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8949393 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8951739 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000052","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:29.8951961 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:29.8952132 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","8316"
"10:46:29.8956582 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:29.8957295 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000094","Offset: 24, Length: 16","8316"
"10:46:29.8962803 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:29.8963315 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:29.8963690 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 1,073,741,826, Length: 510","8316"
"10:46:29.8964958 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8965175 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8965354 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8968567 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8969101 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000072","Offset: 24, Length: 16","5728"
"10:46:29.8974105 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8974489 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8974745 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8975142 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8975245 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8975338 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8977271 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8977591 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:29.8979409 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8979699 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8979895 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8980309 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8980416 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8980505 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8982468 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8982784 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:29.8984674 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8984973 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000029","AllocationSize: 294,912, EndOfFile: 294,912, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8985152 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8985634 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8985732 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8985817 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8987891 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8988198 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:29.8990012 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8990297 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8990506 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000018","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8990809 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.8990908 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.8990993 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.8992802 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8993092 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.8994841 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.8995119 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.8995306 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.8995900 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:29.8996036 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:29.8996151 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","8316"
"10:46:29.8998302 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:29.8998656 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","8316"
"10:46:29.9000640 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:29.9000960 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:29.9001165 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","8316"
"10:46:29.9001668 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9001779 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9001873 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9003934 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9004245 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:29.9006029 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9006314 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9006532 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9006937 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9007057 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9007151 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9008994 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9009288 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:29.9011349 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9011639 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9011853 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9012296 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9012394 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9012480 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9014310 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9014596 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.9016461 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9016734 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9016917 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9017207 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9017301 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9017386 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9019443 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9019831 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","5728"
"10:46:29.9022114 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9022745 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9023048 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9023701 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9023855 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9023991 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9026662 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9027008 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:29.9028855 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9029145 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000035","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9029367 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9029794 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9029892 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9029977 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9031799 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9032098 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.9034206 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9034492 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9034692 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9035110 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9035204 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9035289 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9037099 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9037384 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:29.9039236 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9039513 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9039697 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9039983 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9040072 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9040158 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9041937 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9042219 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.9043959 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9044228 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9044450 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9044851 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9044953 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9045039 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9046835 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9047117 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.9048870 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9049139 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9049331 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9049685 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9049779 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9049864 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9051652 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9051929 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:29.9053785 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9054054 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9054251 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9054617 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9054711 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9054797 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9056589 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9056866 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.9058624 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9058893 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9059119 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9059443 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9059541 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9059631 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9061423 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9061704 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:29.9063441 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9063714 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9063987 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9064414 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9064550 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9064665 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000018","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9066534 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9066829 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.9068689 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9068962 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9069171 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9069564 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9069657 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9069743 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9071539 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9071821 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:29.9073579 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9073847 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9074039 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9074423 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9074521 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9074603 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9076386 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9076668 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.9078571 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9078848 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9079074 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9079368 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000018","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9079462 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9079543 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9081331 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9081617 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.9083349 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9083614 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9083793 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9084168 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9084262 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9084348 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9086123 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9086413 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000068","Offset: 24, Length: 16","5728"
"10:46:29.9088584 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9088870 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9089105 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9089480 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000018","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9089574 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9089660 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9091439 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9091720 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:29.9093470 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9093739 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9093931 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9094315 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9094434 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9094554 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9097011 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9097348 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 24, Length: 16","5728"
"10:46:29.9099392 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9099695 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9099912 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9100275 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9100369 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9100454 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9102246 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9102541 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.9104392 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9104670 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9104951 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9105416 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9105515 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9105600 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9107392 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9107682 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.9109466 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9109747 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9109943 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9110315 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9110408 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9110494 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9112371 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9112657 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.9114411 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9114679 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9114871 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9115285 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9115405 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9115516 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9118588 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9119048 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 24, Length: 16","5728"
"10:46:29.9121340 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9121728 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9122197 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9122927 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9123080 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9123217 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9125640 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9125995 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","5728"
"10:46:29.9127868 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9128166 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9128427 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9128947 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9129045 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9129135 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9131234 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9131550 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.9133342 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9133628 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9133833 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9134212 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9134310 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9134400 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9136209 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9136503 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:29.9138368 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9138650 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9138854 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9139285 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9139383 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9139469 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9141291 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9141585 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.9143351 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9143620 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9143804 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9144090 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9144183 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9144269 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9146236 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9146526 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:29.9148288 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9148557 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9148740 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9149124 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9149218 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9149303 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9151095 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9151386 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.9153233 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9153515 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9153707 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9154069 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9154167 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9154253 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9156181 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9156480 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.9158234 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9158507 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9158703 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9159100 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9159198 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9159283 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9161165 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9161459 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 24, Length: 16","5728"
"10:46:29.9163477 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9163767 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9163959 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9164305 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9164399 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9164480 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9166289 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9166575 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.9168422 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9168695 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9168879 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9169267 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9169361 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9169446 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9171712 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9172079 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:29.9173973 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9174255 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9174460 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9174865 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9174959 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9175040 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9176956 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9177254 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:29.9179017 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9179294 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9179490 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9179917 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9180011 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9180096 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9181897 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9182191 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:29.9183539 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000150","Offset: 262,144, Length: 65,536","7900"
"10:46:29.9184768 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0455062","Offset: 327,680, Length: 65,536","7900"
"10:46:29.9185434 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9185835 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9186082 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9186479 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9186590 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9186684 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9188702 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9189039 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","5728"
"10:46:29.9190878 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9191172 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9191369 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9191834 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9191940 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9192026 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9193971 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9194270 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.9196045 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9196318 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9196518 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9196898 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9196992 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9197077 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9199074 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9199364 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:29.9201131 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9201408 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9201685 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9202104 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9202202 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9202283 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9204096 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9204386 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:29.9206140 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9206413 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9206609 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9206895 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9206985 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9207066 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9208922 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9209208 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.9210953 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9211221 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9211430 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000018","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9211814 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000035","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9211925 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9212019 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9213862 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9214153 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.9215898 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9216166 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9216358 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9216734 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9216828 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9216913 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9218684 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9218961 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 24, Length: 16","5728"
"10:46:29.9220681 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9220954 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9221137 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9221555 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9221649 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9221734 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9223603 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9223885 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.9225613 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9225886 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9226099 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9226381 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9226470 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9226552 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9228314 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9228621 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:29.9230374 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9230643 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9230822 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000018","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9231202 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9231300 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9231381 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9233165 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9233438 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:29.9235166 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9235431 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9235648 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9235998 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:29.9236092 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:29.9236173 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:29.9238029 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9238306 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:29.9240056 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:29.9240320 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:29.9240512 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:29.9245380 AM","firefox.exe","7384","ReadFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0127113","Offset: 233,472, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:29.9313681 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.1505244","Offset: 2,097,152, Length: 512,000, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:29.9323533 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49759 -> ec2-34-212-158-50.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 126, startime: 40487, endtime: 40491, seqnum: 0, connid: 0","0"
"10:46:29.9323853 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49759 -> ec2-34-212-158-50.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 51, seqnum: 0, connid: 0","0"
"10:46:29.9373385 AM","firefox.exe","7384","ReadFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0885624","Offset: 331,776, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:29.9640978 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000136","Offset: 393,216, Length: 65,536","7900"
"10:46:29.9642010 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000094","Offset: 458,752, Length: 65,536","7900"
"10:46:29.9642825 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000094","Offset: 524,288, Length: 65,536","7900"
"10:46:29.9643606 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.2538154","Offset: 589,824, Length: 65,536","7900"
"10:46:30.0260038 AM","firefox.exe","7384","ReadFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0318609","Offset: 176,128, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:30.0580452 AM","firefox.exe","7384","ReadFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0330650","Offset: 217,088, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:30.0749374 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0015~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000444","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.0750176 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0015~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000094","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:19:44 PM, ChangeTime: 3/20/2019 7:09:04 PM, AllocationSize: 630784, EndOfFile: 629106, FileAttributes: A","2512"
"10:46:30.0750560 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0015~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000145","","2512"
"10:46:30.0754195 AM","firefox.exe","7384","ReadFile","C:","0.0289212","Offset: 708,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:30.0913009 AM","firefox.exe","7384","ReadFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0224372","Offset: 327,680, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:30.0931347 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0042637","Offset: 2,609,152, Length: 1,024,000, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:30.1044999 AM","firefox.exe","7384","ReadFile","C:","0.0038186","Offset: 675,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:30.1088638 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.1208552","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.1145103 AM","firefox.exe","7384","ReadFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0298040","Offset: 200,704, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:30.1189963 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0761055","Offset: 3,633,152, Length: 561,152, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:30.1441074 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0389470","Offset: 655,360, Length: 4,096","7760"
"10:46:30.1441663 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0388263","Offset: 655,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.1447205 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000380","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.1447837 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000072","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:30.1448101 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0382605","","5068"
"10:46:30.1490367 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000077","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1490631 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1490815 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1494471 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1495030 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000073","Offset: 24, Length: 16","5728"
"10:46:30.1497629 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1498051 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1498414 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1499233 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1499374 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1499497 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1502177 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1502608 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","5728"
"10:46:30.1505518 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1506064 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1506461 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1507007 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1507143 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1507267 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1509921 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1510360 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Offset: 24, Length: 16","5728"
"10:46:30.1512771 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1513151 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1513496 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1514162 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1514303 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1514422 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1516893 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-journal","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1517306 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000060","Offset: 24, Length: 16","5728"
"10:46:30.1519798 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-wal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1520191 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000038","AllocationSize: 294,912, EndOfFile: 294,912, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1520417 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000030","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1521680 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1521825 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1521949 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1524551 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1524969 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 24, Length: 16","5728"
"10:46:30.1527359 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1527739 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1528016 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1528733 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1528869 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1528989 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1531442 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1531843 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","5728"
"10:46:30.1534309 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1534697 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1534958 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1535376 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1535504 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1535615 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1538124 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1538520 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 24, Length: 16","5728"
"10:46:30.1540880 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1541251 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1541545 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1542028 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000029","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1542160 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1542275 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1544716 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-journal","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1545112 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000052","Offset: 24, Length: 16","5728"
"10:46:30.1547480 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-wal","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1547860 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000039","AllocationSize: 294,912, EndOfFile: 294,912, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1548078 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000030","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1549127 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1549268 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1549388 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1551875 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1552276 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 24, Length: 16","5728"
"10:46:30.1554657 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1555139 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1555404 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1556231 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1556449 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1556654 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1560216 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1560647 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 24, Length: 16","5728"
"10:46:30.1564073 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1564504 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1564790 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1565251 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1565383 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1565499 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1567977 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1568374 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 24, Length: 16","5728"
"10:46:30.1570742 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1571113 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1571515 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1572014 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1572155 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1572274 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1574727 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-journal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1575116 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000055","Offset: 24, Length: 16","5728"
"10:46:30.1577569 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-wal","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1577949 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000038","AllocationSize: 294,912, EndOfFile: 294,912, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1578175 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000025","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1579242 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1579382 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1579527 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1582719 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1583158 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Offset: 24, Length: 16","5728"
"10:46:30.1585603 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1585991 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1586264 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1587007 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1587148 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1587267 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1589755 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1590160 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","5728"
"10:46:30.1592515 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1592886 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1593138 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1593556 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1593684 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1593795 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1596180 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1596573 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","5728"
"10:46:30.1599000 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1599372 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1599670 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1600161 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1600302 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1600413 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1602840 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-journal","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1603237 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000056","Offset: 24, Length: 16","5728"
"10:46:30.1605618 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-wal","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1605994 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000038","AllocationSize: 294,912, EndOfFile: 294,912, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1606215 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1607342 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1607478 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1607598 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1610090 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1610499 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","5728"
"10:46:30.1612897 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1613281 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1613546 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1614211 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1614343 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1614463 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1617091 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1617505 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","5728"
"10:46:30.1621503 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1622045 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1622395 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1622979 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1623128 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000018","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1623256 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1626047 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1626508 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Offset: 24, Length: 16","5728"
"10:46:30.1629042 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1629443 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1629772 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1630335 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1630476 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1630599 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000018","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1633142 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-journal","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1633556 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000060","Offset: 24, Length: 16","5728"
"10:46:30.1635958 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-wal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1636342 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000039","AllocationSize: 294,912, EndOfFile: 294,912, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1636641 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000030","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1637891 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1638036 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1638160 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1640848 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1641270 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000052","Offset: 24, Length: 16","5728"
"10:46:30.1643741 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1644138 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1644406 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1645149 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1645285 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1645405 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1647858 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1648255 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","5728"
"10:46:30.1650610 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1650986 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1651237 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1651655 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1651779 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1651894 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1654975 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1655389 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000068","Offset: 24, Length: 16","5728"
"10:46:30.1657799 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1658166 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1658478 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1659003 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1659139 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1659254 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1661772 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-journal","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1662169 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000055","Offset: 24, Length: 16","5728"
"10:46:30.1664630 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-wal","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1665010 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000043","AllocationSize: 294,912, EndOfFile: 294,912, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1665236 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1666316 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1666452 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1666572 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1669063 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1669465 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","5728"
"10:46:30.1671858 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1672234 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1672498 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1673172 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1673305 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1673424 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1675860 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1676253 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","5728"
"10:46:30.1678685 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1679060 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1679321 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1679743 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1679875 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1679986 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1682448 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1682845 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","5728"
"10:46:30.1685260 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1685627 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1685921 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1686408 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1686540 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1686651 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1689070 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-journal","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1689467 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000051","Offset: 24, Length: 16","5728"
"10:46:30.1691818 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-wal","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1692193 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000039","AllocationSize: 294,912, EndOfFile: 294,912, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1692415 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1693558 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1693695 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1693840 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1696383 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1696818 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","5728"
"10:46:30.1699323 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1699715 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1699976 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1700671 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1700803 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1700918 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1703410 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1703798 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 24, Length: 16","5728"
"10:46:30.1706235 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1706614 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1706870 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1707289 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1707417 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1707532 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1709917 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1710297 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","5728"
"10:46:30.1712835 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1713236 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1713492 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1713992 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000029","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1714128 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1714248 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1716671 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-journal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1717064 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000055","Offset: 24, Length: 16","5728"
"10:46:30.1719944 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-wal","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1720340 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000039","AllocationSize: 294,912, EndOfFile: 294,912, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1720571 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000025","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1722030 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1722171 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1722294 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1725418 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1725832 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","5728"
"10:46:30.1728242 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000798","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1729270 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1729552 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1730495 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1730632 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1730751 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1733815 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1734280 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Offset: 24, Length: 16","5728"
"10:46:30.1736703 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1737087 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1737377 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1737962 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1738085 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1738205 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1740620 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1741000 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","5728"
"10:46:30.1743436 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1743807 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1744059 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1744571 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1744712 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1744827 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1747327 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-journal","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1747720 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000055","Offset: 24, Length: 16","5728"
"10:46:30.1750088 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-wal","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1750459 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000038","AllocationSize: 294,912, EndOfFile: 294,912, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1750676 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000030","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1751944 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1752084 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1752204 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1754708 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1755109 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000052","Offset: 24, Length: 16","5728"
"10:46:30.1757477 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1757857 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1758117 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1758817 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1758945 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1759065 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1761518 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1761902 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","5728"
"10:46:30.1764897 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1765298 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1765567 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1766032 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1766164 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1766280 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1768997 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1769394 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 24, Length: 16","5728"
"10:46:30.1771749 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1772121 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1772381 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1772880 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1773017 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1773136 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1775572 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-journal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1775956 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000056","Offset: 24, Length: 16","5728"
"10:46:30.1778333 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-wal","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1778700 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000038","AllocationSize: 294,912, EndOfFile: 294,912, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1778917 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1780142 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1780283 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1780398 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1784579 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1785510 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000204","Offset: 24, Length: 16","5728"
"10:46:30.1788522 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1788944 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1789247 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1790100 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000035","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1790241 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1790361 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1792955 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1793360 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 24, Length: 16","5728"
"10:46:30.1795745 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1796129 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1796390 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1796838 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1796966 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1797081 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1799491 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1799880 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:30.1802205 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1802576 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1802832 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1803336 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1803472 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1803587 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1806753 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-journal","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1807159 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000055","Offset: 24, Length: 16","5728"
"10:46:30.1809544 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-wal","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1809919 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000039","AllocationSize: 294,912, EndOfFile: 294,912, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1810145 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1811400 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1811540 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000018","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1811660 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1814263 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1814672 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 24, Length: 16","5728"
"10:46:30.1817057 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1817428 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1817693 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1818414 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1818546 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1818666 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1821081 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1821473 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:30.1823850 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1824217 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1824464 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1824870 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1824993 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1825108 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000018","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1827472 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1827848 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","5728"
"10:46:30.1831180 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1831760 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1832200 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1832272 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0590478","Offset: 13,148,160, Length: 4,096","7760"
"10:46:30.1832771 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0589492","Offset: 13,148,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.1832921 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000038","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1833155 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000035","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1833373 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000026","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1833612 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000683","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:30.1834939 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000158","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:30.1836667 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:30.1836949 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000029","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.1837192 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","Offset: 1,073,741,824, Length: 1","5068"
"10:46:30.1837768 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-journal","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1838369 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000128","Offset: 24, Length: 16","5728"
"10:46:30.1841113 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:30.1842081 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-wal","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1842649 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000060","AllocationSize: 294,912, EndOfFile: 294,912, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1843016 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000038","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1844970 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1845209 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1845426 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1845490 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.1846088 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000064","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:30.1846408 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000094","","5068"
"10:46:30.1847180 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.1847598 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000077","Offset: 0, Length: 4,096","5068"
"10:46:30.1850781 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000405","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1851583 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000068","Offset: 24, Length: 16","5728"
"10:46:30.1852893 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.1853397 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000046","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:30.1853640 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000077","","5068"
"10:46:30.1854817 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1855321 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1855577 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000316","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:30.1855662 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1856375 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.1856712 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1856814 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000154","Offset: 0, Length: 4,096","5068"
"10:46:30.1856895 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1857045 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1859801 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1860236 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","5728"
"10:46:30.1863355 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1863683 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.1863880 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1864119 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000042","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:30.1864183 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1864319 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0558533","","5068"
"10:46:30.1864665 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1864797 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1864912 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1867417 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1867818 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","5728"
"10:46:30.1870203 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1870587 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1870898 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1871445 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000042","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1871594 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1871713 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1874167 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-journal","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1874913 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000081","Offset: 24, Length: 16","5728"
"10:46:30.1876957 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1877251 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000030","AllocationSize: 294,912, EndOfFile: 294,912, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1877422 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\key4.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1878327 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1878438 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1878531 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1880669 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1881121 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Offset: 24, Length: 16","5728"
"10:46:30.1883135 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1883447 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1883664 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1885064 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1885175 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1885269 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1887274 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1887590 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000059","Offset: 24, Length: 16","5728"
"10:46:30.1889898 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1890316 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1890610 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1892368 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1892484 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1892577 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1894638 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1894967 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5728"
"10:46:30.1896823 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1897113 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1897296 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1898546 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1898657 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1898747 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1900667 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1900978 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.1902762 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1903052 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1903227 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1904409 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1904516 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1904605 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1906683 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1906994 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.1908778 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1909068 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1909243 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1910408 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1910510 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1910604 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1912516 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1912836 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000046","Offset: 24, Length: 16","5728"
"10:46:30.1914623 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1914909 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1915084 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1916189 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1916287 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1916377 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1918258 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1918557 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:30.1920324 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1920601 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1920789 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1922064 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1922171 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1922261 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1924151 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1924454 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.1926224 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1926502 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1926677 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1927910 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1928016 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1928106 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1930005 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1930312 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.1932091 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1932377 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1932577 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1933742 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1933849 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1933938 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1935816 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1936110 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.1937877 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1938167 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1938342 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1939549 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1939656 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1939745 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1941670 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1941973 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5728"
"10:46:30.1943756 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1944042 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1944213 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1945437 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1945561 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1945655 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1948053 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1948513 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Offset: 24, Length: 16","5728"
"10:46:30.1951044 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1951504 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1952196 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1953953 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000035","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1954073 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1954175 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1957055 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1957444 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","5728"
"10:46:30.1959347 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1959649 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000035","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1959859 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1961326 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1961437 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1961527 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1963622 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1963976 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:30.1965793 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1966079 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1966263 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1967457 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1967564 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1967654 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1969561 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1969868 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.1971788 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1972083 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1972283 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1973572 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1973678 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1973768 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1975675 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1975982 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.1977766 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1978052 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1978231 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1979413 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1979519 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1979609 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1981606 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1981909 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.1983696 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1983978 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1984157 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1985343 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1985450 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1985540 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1987430 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1987733 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5728"
"10:46:30.1989640 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1989926 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1990105 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1991312 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1991419 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1991513 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1993433 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1993736 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.1995626 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1995916 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.1996100 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.1997141 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.1462909","Offset: 4,194,304, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:30.1997465 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.1997572 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.1997661 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.1999650 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.1999957 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5728"
"10:46:30.2001740 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2002026 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2002201 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2003438 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2003545 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2003639 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2005559 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2005862 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.2007718 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2008025 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2008208 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2009885 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2010060 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2010210 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2012573 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2012893 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2014745 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2015035 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2015223 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2016456 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2016563 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2016652 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2018645 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2018952 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2020757 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2021034 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2021209 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2022442 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2022549 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2022638 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2024546 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2024848 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2026696 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2026982 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2027152 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2028292 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2028398 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2028484 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2030869 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2031274 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 24, Length: 16","5728"
"10:46:30.2033407 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2033719 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2033907 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2035157 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2035259 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2035349 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2037269 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2037580 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:30.2039368 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2039650 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2039824 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2041011 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2041122 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2041211 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2043101 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2043404 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2045183 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2045465 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2045640 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2046937 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2047044 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2047133 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2049096 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2049399 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2051178 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2051460 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2051669 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2052834 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2052936 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2053026 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2054924 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2055231 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:30.2057015 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2057297 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2057484 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2058623 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2058726 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2058820 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2060710 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2061009 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.2062783 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2063065 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2063236 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2064375 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2064477 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2064567 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2066628 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2067059 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","5728"
"10:46:30.2069695 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2070015 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2070203 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2071556 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2071662 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2071752 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2073685 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2073996 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:30.2075784 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2076070 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2076245 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2077393 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2077495 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2077585 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2079470 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2079778 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.2081557 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2081834 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2082005 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2083234 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2083336 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2083426 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2085388 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2085695 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:30.2087475 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2087761 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2087935 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2089134 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2089237 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2089326 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2091229 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2091541 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5728"
"10:46:30.2093320 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2093606 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2093781 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2094937 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2095039 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2095129 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2097331 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2097646 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2099443 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2099729 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2099899 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2101073 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2101175 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2101265 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2103330 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2103633 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5728"
"10:46:30.2105472 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2105864 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2106116 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2107746 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2107861 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2107959 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2110135 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2110476 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000052","Offset: 24, Length: 16","5728"
"10:46:30.2112294 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2112588 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2112785 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2114048 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2114154 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2114244 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2116172 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2116501 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:30.2119146 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2119470 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000035","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2119680 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2121134 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2121241 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2121331 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2123276 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2123588 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:30.2125474 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2125777 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2125994 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2127607 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2127773 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2127918 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2130410 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2130820 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5728"
"10:46:30.2132629 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2132915 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2133098 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2134293 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2134395 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2134485 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2136401 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2136704 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.2138560 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2138854 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2139033 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2140138 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2140241 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2140330 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2142216 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2142515 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5728"
"10:46:30.2144337 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2144618 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2144793 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2145949 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2146060 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2146150 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2148044 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2148343 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.2150109 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2150391 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2150562 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2151688 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2151795 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2151884 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2153839 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2154141 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:30.2155972 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2156253 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000035","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2156424 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2157580 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2157683 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2157777 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2159650 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2159953 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.2161770 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2162052 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2162227 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2163362 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2163468 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2163562 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2165465 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2165760 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5728"
"10:46:30.2167539 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2167816 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2167991 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2169156 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2169263 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2169352 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2171311 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2171613 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 24, Length: 16","5728"
"10:46:30.2173461 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2173751 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2173926 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2175082 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2175189 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2175279 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2177164 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2177472 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.2179289 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2179567 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2179741 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2181034 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2181141 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2181265 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2183095 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000222","Offset: 655,360, Length: 65,536","7900"
"10:46:30.2184123 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2184388 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.1002949","Offset: 720,896, Length: 65,536","7900"
"10:46:30.2184490 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2186351 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2186653 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000035","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2186863 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2188714 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2188825 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2188915 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2190826 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2191133 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2192977 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2193271 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2193450 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2194649 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2194756 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2194845 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2196791 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2197098 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:30.2198873 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2199155 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2199330 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2200478 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2200580 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2200674 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2202560 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2202863 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.2204629 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2204923 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2205098 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2206319 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2206425 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2206519 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2208396 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2208691 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2210555 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2210837 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2211016 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2212126 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2212228 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2212322 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2214289 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2214583 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2216371 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2216648 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2216823 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2218048 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2218154 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2218244 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2220147 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2220441 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:30.2222391 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2222677 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2222852 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2223970 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2224072 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2224162 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2226137 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2226444 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:30.2228207 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2228492 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2228672 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2229900 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2230003 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2230092 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2231978 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2232277 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.2234035 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2234312 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2234483 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2235669 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2235776 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2235865 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2237734 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2238028 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2240089 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2240401 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2240584 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2241932 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2242039 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2242129 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2244049 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2244356 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2246127 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2246408 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2246664 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2247966 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2248068 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2248162 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2250056 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2250359 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2252134 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2252471 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2252702 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2254216 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2254374 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2254481 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2256870 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2257220 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:30.2259208 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2259511 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2259733 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2261107 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2261214 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2261307 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2263266 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2263582 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5728"
"10:46:30.2265357 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2265642 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000035","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2265822 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2267025 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2267131 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2267225 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2269124 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2269423 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5728"
"10:46:30.2271232 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2271513 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2271688 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2272806 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2272913 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2273002 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2274893 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2275195 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:30.2277273 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2277555 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2277730 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2278835 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2278937 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2279027 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2280921 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2281220 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.2283033 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2283323 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2283503 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2286272 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2286391 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2286485 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2289092 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2289429 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","5728"
"10:46:30.2291264 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2291554 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2291742 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2292970 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2293073 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2293162 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2295065 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2295368 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2297459 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2297566 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000051","CreationTime: 3/20/2019 7:27:24 PM, LastAccessTime: 3/20/2019 7:42:23 PM, LastWriteTime: 1/10/2019 4:08:41 AM, ChangeTime: 3/20/2019 7:42:23 PM, AllocationSize: 20480, EndOfFile: 20005, FileAttributes: A","2512"
"10:46:30.2297792 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000085","","2512"
"10:46:30.2297869 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2298129 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2299635 AM","firefox.exe","7384","ReadFile","C:","0.0004454","Offset: 1,028,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:30.2299780 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2299917 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2300027 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2302093 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2302417 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:30.2304333 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2304734 AM","firefox.exe","7384","ReadFile","C:","0.0002705","Offset: 1,032,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:30.2304764 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2305028 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2306581 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2306692 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2306782 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2309436 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2309892 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Offset: 24, Length: 16","5728"
"10:46:30.2309935 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1021_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.1065473","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.2312128 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2312448 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2312644 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2314346 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2314530 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2314658 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2316697 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2317022 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:30.2318831 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2319125 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2319313 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2320866 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2320968 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2321058 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2323119 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2323439 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5728"
"10:46:30.2325231 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2325517 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2325696 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2326912 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2327018 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2327108 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2329109 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2329421 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.2331281 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2331626 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000035","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2331806 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2333197 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2333303 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2333393 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2335543 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2335966 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:30.2337873 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2338167 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2338436 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2339848 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2339955 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2340045 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2342050 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2342357 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2344145 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2344426 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000035","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2344606 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2345796 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2345898 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2345992 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2347985 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2348292 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.2350063 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2350340 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2350515 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2351676 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2351782 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2351872 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2353975 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2354282 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2356151 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2356446 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2356710 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2358123 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2358233 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2358323 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2360354 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2360670 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5728"
"10:46:30.2362470 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2362756 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2362935 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2364403 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2364505 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2364595 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2366485 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2366784 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.2368563 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2368845 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2369015 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2370197 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2370304 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2370398 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2372288 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2372587 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5728"
"10:46:30.2374451 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2374737 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2374916 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2376277 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2376384 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2376478 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2378466 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2378769 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2380561 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2380847 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2381026 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2382238 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2382340 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2382430 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2384324 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2384636 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.2386521 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2386816 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2386995 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2388313 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2388420 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2388510 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2390801 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2391112 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:30.2392909 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2393195 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2393378 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2394603 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2394705 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2394795 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2396868 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2397180 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.2398972 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2399253 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2399432 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2401032 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2401139 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2401233 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2403435 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2403750 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2405551 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2405875 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2406144 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2408529 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2408776 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2408951 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2412301 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000345","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2413035 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000068","Offset: 24, Length: 16","5728"
"10:46:30.2415791 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2416218 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000046","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2416512 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2418389 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2418551 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2418696 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000018","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2421530 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2422387 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Offset: 24, Length: 16","5728"
"10:46:30.2424282 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000081","Offset: 65,536, Length: 4,096","7760"
"10:46:30.2425224 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004591","Offset: 14,651,392, Length: 4,096","7760"
"10:46:30.2425229 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2425574 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004024","Offset: 14,651,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.2425668 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2425950 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2426581 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.2426884 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000034","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:29 AM, LastWriteTime: 3/26/2020 10:46:29 AM, ChangeTime: 3/26/2020 10:46:29 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:30.2427016 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000039","","5068"
"10:46:30.2428070 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2428254 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2428288 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000162","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.2428407 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2428591 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000030","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,822, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5068"
"10:46:30.2428723 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000043","","5068"
"10:46:30.2429538 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.2430157 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.2430174 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0624756","Offset: 15,380,480, Length: 4,096","7760"
"10:46:30.2430502 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000069","Offset: 8,192, Length: 4,096","5068"
"10:46:30.2430511 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0624159","Offset: 15,380,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.2431010 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.2431194 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","Offset: 12,288, Length: 4,096","5068"
"10:46:30.2431765 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.2431842 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2431940 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Offset: 16,384, Length: 4,096","5068"
"10:46:30.2432311 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Offset: 24, Length: 16","5728"
"10:46:30.2432324 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:30.2432444 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Offset: 1,073,741,826, Length: 510","5068"
"10:46:30.2432546 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.2432644 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.2432798 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000072","","5068"
"10:46:30.2433165 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Offset: 1,073,741,825, Length: 1","5068"
"10:46:30.2433254 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Offset: 1,073,741,826, Length: 510","5068"
"10:46:30.2433340 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000008","Offset: 1,073,741,824, Length: 1","5068"
"10:46:30.2433446 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0621595","","5068"
"10:46:30.2434978 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2435383 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2435648 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2437786 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2437952 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2438097 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2440823 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2441254 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 24, Length: 16","5728"
"10:46:30.2443819 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2444220 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2444467 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2446101 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2446268 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2446408 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000018","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2450001 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2450449 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Offset: 24, Length: 16","5728"
"10:46:30.2453760 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2454174 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2454413 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2456034 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2456158 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2456260 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2458376 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2458722 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","5728"
"10:46:30.2460578 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2460877 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2461069 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2462353 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2462460 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2462549 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2464730 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2465186 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","5728"
"10:46:30.2467076 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2467371 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2467563 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2468877 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2468988 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2469077 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2471757 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000375","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2472589 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000068","Offset: 24, Length: 16","5728"
"10:46:30.2475460 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2475942 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2476237 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2478967 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2479113 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2479219 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2484378 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2485291 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000098","Offset: 24, Length: 16","5728"
"10:46:30.2488802 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2489361 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2489749 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2492173 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2492382 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2492548 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2495872 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2496367 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000085","Offset: 24, Length: 16","5728"
"10:46:30.2499435 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2499934 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2500271 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2502438 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000086","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2502686 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2502861 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2506931 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2507494 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000081","Offset: 24, Length: 16","5728"
"10:46:30.2510775 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000227","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2511287 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2511684 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2514278 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2514492 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2514675 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2518050 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2518558 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000072","Offset: 24, Length: 16","5728"
"10:46:30.2521754 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2522236 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2522573 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2524710 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2524868 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2524975 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2528081 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2528730 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000081","Offset: 24, Length: 16","5728"
"10:46:30.2531516 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2531930 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2532198 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2534383 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2534515 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2534622 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2538010 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000414","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2538735 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Offset: 24, Length: 16","5728"
"10:46:30.2541269 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2541632 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2541880 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2543582 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2543701 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2543795 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2545877 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2546308 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000098","Offset: 24, Length: 16","5728"
"10:46:30.2548250 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2548617 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2548915 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2550810 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2550993 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2551147 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2553301 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2553634 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2555469 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2555763 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2555947 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2557141 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2557282 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2557414 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000018","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2559672 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2560013 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:30.2562031 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2562347 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2562530 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2564088 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2564194 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2564284 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2566639 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2566972 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:30.2568798 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2569088 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2569280 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2570530 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2570637 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2570727 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2572702 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2573018 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5728"
"10:46:30.2574908 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2575202 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2575381 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000018","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2576572 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2576679 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2576768 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2578667 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2578974 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.2580817 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2581107 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2581287 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2582507 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2582609 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2582699 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2584670 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2584981 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2586791 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2587076 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2587251 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2588617 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2588719 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2588813 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2590827 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2591125 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2592994 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2593276 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2593447 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2594701 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2594808 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2594893 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2596821 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2597124 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2598916 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2599202 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2599381 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2600653 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2600764 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2600853 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2602761 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2603068 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2604851 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2605133 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2605325 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2606498 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2606622 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2606712 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2609310 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2609741 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","5728"
"10:46:30.2612045 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2612344 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2612527 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2613794 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2613905 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2613991 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2616401 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2617011 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000081","Offset: 24, Length: 16","5728"
"10:46:30.2619145 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2619478 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2619734 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2622345 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2622503 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2622631 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2626057 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2626616 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000085","Offset: 24, Length: 16","5728"
"10:46:30.2629142 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2629521 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2629782 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2635687 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000153","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2636071 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2636305 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2639556 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2640000 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Offset: 24, Length: 16","5728"
"10:46:30.2641967 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2642287 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2642535 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2644228 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2644339 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2644433 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2646451 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2646767 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Offset: 24, Length: 16","5728"
"10:46:30.2648632 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2648926 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2649110 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2650338 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2650449 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2650543 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2652480 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2652796 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2654592 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2654891 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2655066 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2656299 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2656406 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2656499 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2658428 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2658731 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2660604 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2660890 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2661065 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2662247 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2662353 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2662447 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2664367 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2664674 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:30.2666471 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2666752 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2666927 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2668066 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2668173 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2668263 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2670170 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2670473 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.2672273 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2672551 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2672755 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000018","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2673852 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2673959 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2674048 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2675934 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2676233 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5728"
"10:46:30.2678080 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2678400 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2678588 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2679783 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2679894 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2679987 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2681980 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2682287 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2684079 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2684361 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2684540 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2685679 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2685786 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2685880 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2687787 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2688103 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.2689890 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2690198 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2690373 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2691554 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2691661 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2691751 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2693739 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2694046 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2695885 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2696171 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2696363 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2697664 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2697767 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2697861 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2699768 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2700071 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5728"
"10:46:30.2701867 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2702140 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2702319 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2703493 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2703599 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2703685 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2705600 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2705907 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2707977 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2708284 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2708472 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2709769 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2709880 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2709974 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2711996 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2712312 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5728"
"10:46:30.2714168 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2714454 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2714633 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2715802 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2715904 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2715994 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2717901 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2718204 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2720056 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2720342 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2720517 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2723004 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2723141 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2723243 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2725381 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2725718 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:30.2727531 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2727817 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2728005 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2729314 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2729438 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2729532 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2731554 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2731866 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2733654 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2733940 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2734119 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2735271 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2735377 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2735467 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2737570 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2737933 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:30.2739810 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2740101 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2740280 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2741577 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2741688 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2741782 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2743693 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2744000 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2745788 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2746100 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2746274 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2747520 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2747627 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2747721 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2749692 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2749999 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2751796 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2752081 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2752256 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2753489 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2753592 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2753686 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2755572 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2755874 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2757782 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2758068 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2758238 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2759557 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2759663 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2759753 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2761673 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2761980 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2763772 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2764054 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2764229 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2765538 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2765649 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2765743 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2767936 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2768252 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.2770040 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2770326 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2770552 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2771994 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2772101 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2772190 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2774106 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2774409 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2776286 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2776572 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2776751 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2777963 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2778070 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2778159 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2780041 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2780344 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2784504 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2785063 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2785391 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2787738 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2787964 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2788131 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2791582 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000593","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2792470 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000072","Offset: 24, Length: 16","5728"
"10:46:30.2794902 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2795512 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2795768 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2799919 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2800047 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2800150 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2802415 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2802787 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","5728"
"10:46:30.2804775 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2805103 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2805590 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2807232 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2807343 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2807437 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2809387 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2809707 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:30.2811636 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2811926 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2812109 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2813389 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2813496 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2813590 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2815505 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2815821 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:30.2817605 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2817895 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2818070 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2819213 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2819320 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2819405 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2821300 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2821603 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5728"
"10:46:30.2823446 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2823732 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2823902 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2825003 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2825110 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2825199 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2827098 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2827405 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2829197 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2829479 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2829654 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2830840 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2830942 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2831032 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2832918 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2833221 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.2834974 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2835256 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2835427 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2836557 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2836660 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2836749 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2838644 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2838951 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.2840956 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2841251 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2841426 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2842706 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2842808 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2842898 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2844818 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2845120 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2846883 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2847164 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2847339 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2848508 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2848615 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2848704 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2850595 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2850893 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.2852664 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2852950 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2853125 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2854243 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2854345 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2854435 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2856333 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2856628 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5728"
"10:46:30.2858983 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2859273 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2859452 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2860672 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2860779 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2860869 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2862861 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2863352 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","5728"
"10:46:30.2865152 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2865438 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2865618 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2866842 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2866940 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2867030 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2868933 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2869231 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:30.2871002 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2871305 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2871493 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2872666 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2872773 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2872867 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2874829 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2875136 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:30.2877304 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2877739 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2877931 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2879292 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.2879407 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.2879497 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.2881601 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2881912 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:30.2883708 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.2883994 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.2884173 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.2925496 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000158","Name: \Windows\System32\sechost.dll","8024"
"10:46:30.2936342 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000141","Name: \Windows\System32\sechost.dll","8024"
"10:46:30.2970471 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.2970885 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40527, endtime: 40527, seqnum: 0, connid: 0","0"
"10:46:30.2971845 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.2972464 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40527, endtime: 40527, seqnum: 0, connid: 0","0"
"10:46:30.2973138 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.2973296 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40527, endtime: 40528, seqnum: 0, connid: 0","0"
"10:46:30.2973628 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.2973748 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40528, endtime: 40528, seqnum: 0, connid: 0","0"
"10:46:30.2974405 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.2974537 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40528, endtime: 40528, seqnum: 0, connid: 0","0"
"10:46:30.2976965 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.2977191 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40528, endtime: 40528, seqnum: 0, connid: 0","0"
"10:46:30.2978019 AM","firefox.exe","7384","ReadFile","C:\$Directory","0.0548493","Offset: 401,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:30.2978654 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.2978795 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40528, endtime: 40528, seqnum: 0, connid: 0","0"
"10:46:30.2983378 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups","0.0368406","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","5008"
"10:46:30.2985016 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000081","Name: \Windows\System32\sechost.dll","8024"
"10:46:30.2994322 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000123","Name: \Windows\System32\sechost.dll","8024"
"10:46:30.2998345 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.2998793 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000056","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:30.2998994 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000089","","740"
"10:46:30.3001037 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.3001336 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40527, endtime: 40528, seqnum: 0, connid: 0","0"
"10:46:30.3001968 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.3002121 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40528, endtime: 40528, seqnum: 0, connid: 0","0"
"10:46:30.3003167 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3003674 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000069","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:30.3004050 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0001139","","740"
"10:46:30.3010292 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3010753 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000076","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:30.3010970 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000086","","740"
"10:46:30.3013590 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3013978 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000034","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:30.3014093 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000052","","740"
"10:46:30.3016351 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3016722 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000042","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:30.3016880 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000072","","740"
"10:46:30.3018992 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3019277 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:30.3019384 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000043","","740"
"10:46:30.3021624 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3021961 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000030","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:30.3022068 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000043","","740"
"10:46:30.3024197 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3024483 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000025","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:30.3024589 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000039","","740"
"10:46:30.3026689 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3027103 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000038","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:30.3027461 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000111","","740"
"10:46:30.3030652 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3030938 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000034","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:30.3031062 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000051","","740"
"10:46:30.3033349 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3033571 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000034","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:30.3033712 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000055","","740"
"10:46:30.3035781 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3035982 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000029","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:30.3036088 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000039","","740"
"10:46:30.3038431 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3038776 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000034","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:30.3038887 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000043","","740"
"10:46:30.3041050 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3041417 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000030","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:30.3041524 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000055","","740"
"10:46:30.3043905 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3044199 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000030","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:30.3044306 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000042","","740"
"10:46:30.3046913 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3047220 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:30.3047327 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000047","","740"
"10:46:30.3049622 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3050049 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000042","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:30.3050211 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000068","","740"
"10:46:30.3053172 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3053611 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000043","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:30.3053791 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000072","","740"
"10:46:30.3055412 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004139","Offset: 450,560, Length: 4,096","7760"
"10:46:30.3055843 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003486","Offset: 450,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.3057558 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3058087 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000051","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:30.3058262 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000068","","740"
"10:46:30.3061987 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000111","Offset: 106,496, Length: 4,096","7760"
"10:46:30.3062832 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3063356 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000043","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:30.3063514 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000060","","740"
"10:46:30.3063664 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0095910","Offset: 15,065,088, Length: 4,096","7760"
"10:46:30.3064043 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0095258","Offset: 15,065,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.3065865 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3066190 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000029","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:30.3066300 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000056","","740"
"10:46:30.3068865 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3069215 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000029","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:30.3069321 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000043","","740"
"10:46:30.3071647 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3071928 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000030","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:30.3072035 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000043","","740"
"10:46:30.3073865 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3074130 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000030","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:30.3074236 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000039","","740"
"10:46:30.3076630 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3076963 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000030","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:30.3077070 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000042","","740"
"10:46:30.3080628 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3081140 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000043","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:30.3081319 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000064","","740"
"10:46:30.3083845 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3084327 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000043","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:30.3084502 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000073","","740"
"10:46:30.3087160 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000427","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3087706 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:30.3087843 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000055","","740"
"10:46:30.3089887 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3090083 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:30.3090181 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000043","","740"
"10:46:30.3091965 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3092157 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:30.3092255 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000042","","740"
"10:46:30.3094576 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3094921 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:30.3095024 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000042","","740"
"10:46:30.3097208 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3097490 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:30.3097592 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000039","","740"
"10:46:30.3101334 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3101931 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000052","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:30.3102136 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000081","","740"
"10:46:30.3105891 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3106407 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:30.3106599 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000073","","740"
"10:46:30.3107977 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0399382","Offset: 16,744,448, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","120"
"10:46:30.3109138 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3109454 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000034","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:30.3109569 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000047","","740"
"10:46:30.3111608 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3111890 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:30.3112001 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000042","","740"
"10:46:30.3114147 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3114450 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.3114557 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000042","","740"
"10:46:30.3116814 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3117104 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000025","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.3117206 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000043","","740"
"10:46:30.3119237 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3119519 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.3119625 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000039","","740"
"10:46:30.3121955 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3122173 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000025","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:30.3122271 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000042","","740"
"10:46:30.3124895 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3125112 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000026","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:30.3125210 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000039","","740"
"10:46:30.3127258 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3127446 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000026","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:30.3127544 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000039","","740"
"10:46:30.3129725 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3129934 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000025","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:30.3130032 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000038","","740"
"10:46:30.3131960 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3132139 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000026","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:30.3132233 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000039","","740"
"10:46:30.3134072 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3134256 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000025","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:30.3134350 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000038","","740"
"10:46:30.3136487 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3136786 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000030","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:30.3136893 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000038","","740"
"10:46:30.3138689 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3138953 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000026","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:30.3139056 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000038","","740"
"10:46:30.3140967 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3141228 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000025","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:30.3141330 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000038","","740"
"10:46:30.3143813 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3144129 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:30.3144236 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000042","","740"
"10:46:30.3146168 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3146437 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:30.3146540 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000038","","740"
"10:46:30.3148357 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3148609 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:30.3148711 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000039","","740"
"10:46:30.3150802 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3151002 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:30.3151101 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000038","","740"
"10:46:30.3152888 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3153068 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:30.3153161 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000039","","740"
"10:46:30.3155013 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3155197 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:30.3155290 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000039","","740"
"10:46:30.3157283 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 60, startime: 40528, endtime: 40529, seqnum: 0, connid: 0","0"
"10:46:30.3157326 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3157492 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 85, startime: 40528, endtime: 40529, seqnum: 0, connid: 0","0"
"10:46:30.3157530 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:30.3157629 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000038","","740"
"10:46:30.3159497 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3159758 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:30.3159898 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000056","","740"
"10:46:30.3160701 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000093","Offset: 122,880, Length: 4,096","7760"
"10:46:30.3162087 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0006208","Offset: 13,246,464, Length: 4,096","7760"
"10:46:30.3162437 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0005692","Offset: 13,246,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.3162723 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3163005 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:30.3163116 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000055","","740"
"10:46:30.3165432 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3165650 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:30.3165748 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000043","","740"
"10:46:30.3167519 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3167706 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:30.3167800 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000039","","740"
"10:46:30.3168658 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0793618","Offset: 12,800,000, Length: 4,096","7760"
"10:46:30.3168940 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0793025","Offset: 12,800,000, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.3169533 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3169712 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:30.3169810 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000034","","740"
"10:46:30.3171939 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3172140 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:30.3172233 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000039","","740"
"10:46:30.3173996 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3174179 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:30.3174273 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000038","","740"
"10:46:30.3176044 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3176223 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:30.3176317 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000038","","740"
"10:46:30.3178309 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3178497 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:30.3178591 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000038","","740"
"10:46:30.3180592 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3180771 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000021","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:30.3180865 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000034","","740"
"10:46:30.3182563 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000094","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3182738 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000021","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:30.3182828 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000038","","740"
"10:46:30.3184910 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3185217 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:30.3185319 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000039","","740"
"10:46:30.3187521 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3187918 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:30.3188029 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000047","","740"
"10:46:30.3188600 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000128","Offset: 786,432, Length: 65,536","7900"
"10:46:30.3189569 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.3966917","Offset: 851,968, Length: 65,536","7900"
"10:46:30.3189970 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3190243 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:30.3190345 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000039","","740"
"10:46:30.3190580 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 205, seqnum: 0, connid: 0","0"
"10:46:30.3190857 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:30.3193319 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.3193349 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3193533 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40530, endtime: 40530, seqnum: 0, connid: 0","0"
"10:46:30.3193755 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000034","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:30.3193891 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000056","","740"
"10:46:30.3194011 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.3194160 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40529, endtime: 40530, seqnum: 0, connid: 0","0"
"10:46:30.3194441 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.3194531 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40530, endtime: 40530, seqnum: 0, connid: 0","0"
"10:46:30.3194953 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.3195052 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40530, endtime: 40530, seqnum: 0, connid: 0","0"
"10:46:30.3196989 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3197492 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000043","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:30.3197629 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000059","","740"
"10:46:30.3199800 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3200091 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000029","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:30.3200197 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000043","","740"
"10:46:30.3202557 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3202851 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:30.3202953 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000043","","740"
"10:46:30.3204792 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3205057 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:30.3205155 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000038","","740"
"10:46:30.3206951 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3207212 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:30.3207310 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000038","","740"
"10:46:30.3209511 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3209716 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000026","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:30.3209814 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000039","","740"
"10:46:30.3211636 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3211815 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000026","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:30.3211913 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000039","","740"
"10:46:30.3213659 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3213838 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000025","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:30.3213936 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000034","","740"
"10:46:30.3216108 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3216398 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:30.3216500 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000039","","740"
"10:46:30.3218369 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3218633 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:30.3218736 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000038","","740"
"10:46:30.3220600 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3220856 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:30.3220959 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000034","","740"
"10:46:30.3223101 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3223305 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:30.3223404 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000038","","740"
"10:46:30.3225452 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3225639 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:30.3225733 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000039","","740"
"10:46:30.3227504 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3227687 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:30.3227781 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000039","","740"
"10:46:30.3229808 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3230000 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:30.3230098 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000038","","740"
"10:46:30.3232086 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3232265 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000022","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:30.3232355 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000038","","740"
"10:46:30.3234045 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3234254 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:30.3234395 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000055","","740"
"10:46:30.3236972 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3237279 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000030","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:30.3237381 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000043","","740"
"10:46:30.3239399 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3239668 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000026","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:30.3239771 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000038","","740"
"10:46:30.3241558 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3241814 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000022","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:30.3241912 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000039","","740"
"10:46:30.3244046 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3244327 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:30.3244426 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000038","","740"
"10:46:30.3246384 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3246648 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:30.3246751 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000038","","740"
"10:46:30.3248522 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3248778 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:30.3248876 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000038","","740"
"10:46:30.3250992 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3251274 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000029","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:30.3251376 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000038","","740"
"10:46:30.3253147 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3253403 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000025","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:30.3253501 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000051","","740"
"10:46:30.3255562 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3256240 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000060","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:30.3256436 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000077","","740"
"10:46:30.3259197 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3259431 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000030","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:30.3259542 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000052","","740"
"10:46:30.3261560 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3261770 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000025","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:30.3261872 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000043","","740"
"10:46:30.3263702 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3263894 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000026","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:30.3263992 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000039","","740"
"10:46:30.3266147 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3266343 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000026","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:30.3266442 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000038","","740"
"10:46:30.3268298 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3268477 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000025","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:30.3268575 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000038","","740"
"10:46:30.3270311 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000099","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3270491 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000025","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:30.3270584 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000035","","740"
"10:46:30.3272752 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3273055 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000025","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:30.3273157 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000039","","740"
"10:46:30.3275090 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3275355 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000025","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:30.3275453 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000038","","740"
"10:46:30.3277228 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3277484 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000021","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:30.3277582 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000038","","740"
"10:46:30.3279758 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3280035 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.3280138 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000038","","740"
"10:46:30.3283576 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3283995 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000034","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.3284152 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000060","","740"
"10:46:30.3287011 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3287442 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000043","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.3287604 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000068","","740"
"10:46:30.3290655 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3291026 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000060","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:30.3291188 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000064","","740"
"10:46:30.3295327 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3295643 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000030","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:30.3295749 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000047","","740"
"10:46:30.3297657 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3297921 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000026","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:30.3298019 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000039","","740"
"10:46:30.3300379 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3300592 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000026","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:30.3300690 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000039","","740"
"10:46:30.3302614 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3302798 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000025","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:30.3302892 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000038","","740"
"10:46:30.3304645 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3304829 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000021","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:30.3304923 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000034","","740"
"10:46:30.3307167 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3307449 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:30.3307551 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000038","","740"
"10:46:30.3310132 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3310414 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:30.3310521 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000038","","740"
"10:46:30.3312411 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3312671 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:30.3312769 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000038","","740"
"10:46:30.3314996 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3315201 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.3315295 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000038","","740"
"10:46:30.3317117 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3317300 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.3317398 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000035","","740"
"10:46:30.3319122 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3319318 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000022","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.3319412 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000034","","740"
"10:46:30.3321712 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3322087 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:30.3322190 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000043","","740"
"10:46:30.3324020 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3324281 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000021","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:30.3324379 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000038","","740"
"10:46:30.3326119 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3326367 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:30.3326465 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000038","","740"
"10:46:30.3329042 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3329324 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:30.3329426 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000039","","740"
"10:46:30.3331214 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3331466 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:30.3331564 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000034","","740"
"10:46:30.3333309 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3333561 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:30.3333654 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000039","","740"
"10:46:30.3335907 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3336189 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:30.3336287 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000038","","740"
"10:46:30.3338049 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3338301 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:30.3338403 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000034","","740"
"10:46:30.3340127 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3340383 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000021","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:30.3340477 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000038","","740"
"10:46:30.3342841 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3343122 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000026","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:30.3343220 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000039","","740"
"10:46:30.3344999 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3345255 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000022","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:30.3345354 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000038","","740"
"10:46:30.3347090 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3347338 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000025","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:30.3347436 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000034","","740"
"10:46:30.3349667 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3349936 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000026","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:30.3350030 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000038","","740"
"10:46:30.3352351 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3352756 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000034","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:30.3352923 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000059","","740"
"10:46:30.3354467 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000427","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.3355056 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000043","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:29 AM, LastWriteTime: 3/26/2020 10:46:29 AM, ChangeTime: 3/26/2020 10:46:29 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:30.3355227 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000059","","5068"
"10:46:30.3355820 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3356298 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000038","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:30.3356477 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000068","","740"
"10:46:30.3359028 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\idb-deleting-2823318777ntouromlalnodry--naod","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:30.3359097 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore.jsonlz4","0.0000337","Desired Access: Read Attributes, Delete, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5008"
"10:46:30.3359741 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore.jsonlz4","0.0000047","Attributes: A, ReparseTag: 0x0","5008"
"10:46:30.3359967 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3360048 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore.jsonlz4","0.0000034","CreationTime: 3/26/2020 10:35:36 AM, LastAccessTime: 3/26/2020 10:35:36 AM, LastWriteTime: 3/26/2020 10:35:36 AM, ChangeTime: 3/26/2020 10:35:36 AM, FileAttributes: A","5008"
"10:46:30.3360441 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000034","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:30.3360616 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000055","","740"
"10:46:30.3361640 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups","0.0000746","Desired Access: Write Data/Add File, Synchronize, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5008"
"10:46:30.3362297 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.3362693 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000039","CreationTime: 3/25/2020 10:27:09 AM, LastAccessTime: 3/25/2020 10:27:09 AM, LastWriteTime: 3/25/2020 10:27:15 AM, ChangeTime: 3/25/2020 10:27:15 AM, FileAttributes: A","5068"
"10:46:30.3362885 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000056","","5068"
"10:46:30.3363572 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3363986 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000051","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:30.3364178 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000056","","740"
"10:46:30.3366260 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.3366559 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000038","CreationTime: 3/25/2020 10:27:09 AM, LastAccessTime: 3/25/2020 10:27:09 AM, LastWriteTime: 3/25/2020 10:27:15 AM, ChangeTime: 3/25/2020 10:27:15 AM, AllocationSize: 49152, EndOfFile: 49152, FileAttributes: A","5068"
"10:46:30.3366700 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000047","","5068"
"10:46:30.3366917 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3367336 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:30.3367570 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000060","","740"
"10:46:30.3368078 AM","firefox.exe","7384","SetRenameInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore.jsonlz4","0.0489891","ReplaceIfExists: True, FileName: C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\previous.jsonlz4","5008"
"10:46:30.3368445 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0489225","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:30.3368906 AM","firefox.exe","7384","ReadFile","C:\$Directory","0.0486097","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5008"
"10:46:30.3370659 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3370984 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000042","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:30.3371112 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000055","","740"
"10:46:30.3373078 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3373352 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000025","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:30.3373454 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000038","","740"
"10:46:30.3375638 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3375724 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1021_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000051","CreationTime: 4/25/2019 5:39:19 PM, LastAccessTime: 4/25/2019 5:39:19 PM, LastWriteTime: 4/3/2019 9:55:20 AM, ChangeTime: 4/25/2019 8:12:11 PM, AllocationSize: 20480, EndOfFile: 20196, FileAttributes: A","2512"
"10:46:30.3375920 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000026","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:30.3375941 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1021_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000073","","2512"
"10:46:30.3376027 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000038","","740"
"10:46:30.3376479 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000051","","2512"
"10:46:30.3376662 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000047","","2512"
"10:46:30.3377883 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3378164 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000026","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:30.3378267 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000042","","740"
"10:46:30.3379193 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.3379517 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","CreationTime: 3/20/2019 7:27:24 PM, LastAccessTime: 3/20/2019 7:42:23 PM, LastWriteTime: 1/10/2019 4:08:41 AM, ChangeTime: 3/20/2019 7:42:23 PM, AllocationSize: 20480, EndOfFile: 20005, FileAttributes: A","2512"
"10:46:30.3379662 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000043","","2512"
"10:46:30.3380131 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3380400 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000026","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:30.3380502 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000043","","740"
"10:46:30.3380878 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.3381155 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","AllocationSize: 20,480, EndOfFile: 20,005, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:30.3381330 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:30.3381462 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000018","AllocationSize: 20,480, EndOfFile: 20,005, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:30.3381680 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:30.3382132 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0380967","Offset: 0, Length: 20,005, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:30.3382939 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3383225 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000025","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:30.3383327 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000038","","740"
"10:46:30.3385780 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3386062 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000021","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:30.3386156 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000042","","740"
"10:46:30.3387944 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3388204 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000025","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:30.3388302 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000038","","740"
"10:46:30.3390798 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3391097 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000025","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:30.3391195 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000038","","740"
"10:46:30.3392982 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3393243 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000025","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:30.3393341 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000038","","740"
"10:46:30.3395069 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3395321 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000025","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:30.3395419 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000038","","740"
"10:46:30.3397804 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3398081 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000026","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:30.3398184 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000038","","740"
"10:46:30.3400031 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3400283 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000025","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:30.3400381 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000038","","740"
"10:46:30.3402113 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3402365 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000026","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:30.3402463 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000038","","740"
"10:46:30.3404861 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3405160 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000029","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:30.3405258 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000042","","740"
"10:46:30.3407216 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3407476 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000026","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:30.3407575 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000038","","740"
"10:46:30.3409298 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3409546 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000025","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:30.3409644 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000038","","740"
"10:46:30.3414410 AM","firefox.exe","7384","TCP Connect","LAPTOP-49TAGD3F.lan1:49760 -> 72.21.91.29:http","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65700, rcvwinscale: 8, sndwinscale: 9, seqnum: 0, connid: 0","0"
"10:46:30.3417891 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.3418250 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40532, endtime: 40532, seqnum: 0, connid: 0","0"
"10:46:30.3418920 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.3419077 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40532, endtime: 40532, seqnum: 0, connid: 0","0"
"10:46:30.3420942 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3421377 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000047","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:30.3421527 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000059","","740"
"10:46:30.3423673 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3423971 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:30.3424082 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000043","","740"
"10:46:30.3426019 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3426425 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000042","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:30.3426595 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000060","","740"
"10:46:30.3430098 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3430440 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000029","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.3430551 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000046","","740"
"10:46:30.3432539 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3432820 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.3432927 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000043","","740"
"10:46:30.3434723 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3434992 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.3435090 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000043","","740"
"10:46:30.3437518 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3437808 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:30.3437911 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000042","","740"
"10:46:30.3439869 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3440138 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:30.3440236 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000043","","740"
"10:46:30.3442015 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3442271 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000021","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:30.3442365 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000038","","740"
"10:46:30.3444673 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3444968 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:30.3445066 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000038","","740"
"10:46:30.3446896 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3447156 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:30.3447255 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000038","","740"
"10:46:30.3449072 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3449328 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:30.3449426 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000039","","740"
"10:46:30.3451828 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3452131 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000026","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:30.3452230 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000038","","740"
"10:46:30.3454363 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3454653 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000030","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:30.3454755 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000039","","740"
"10:46:30.3456850 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3457294 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000064","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:30.3457512 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000132","","740"
"10:46:30.3460366 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3460810 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000042","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:30.3460985 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000068","","740"
"10:46:30.3463924 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3464338 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000043","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:30.3464509 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000060","","740"
"10:46:30.3467355 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3467760 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000039","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:30.3467927 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000055","","740"
"10:46:30.3471404 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3471878 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000038","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.3472044 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000060","","740"
"10:46:30.3474783 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3475180 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000038","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.3475342 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000056","","740"
"10:46:30.3478145 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3478551 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000034","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.3478713 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000055","","740"
"10:46:30.3482310 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3482728 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:30.3482890 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000060","","740"
"10:46:30.3485821 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3486218 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:30.3486376 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000059","","740"
"10:46:30.3489222 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000157","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3489631 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:30.3489798 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000055","","740"
"10:46:30.3493514 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3493855 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000043","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:30.3494022 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000064","","740"
"10:46:30.3496867 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000163","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3497175 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000038","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:30.3497341 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000060","","740"
"10:46:30.3500238 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3500541 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000043","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:30.3500707 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000060","","740"
"10:46:30.3504454 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3504936 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:30.3505123 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000064","","740"
"10:46:30.3507944 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3509424 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000069","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:30.3509706 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000107","","740"
"10:46:30.3514207 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3514753 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:30.3514941 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000077","","740"
"10:46:30.3519477 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000221","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3520014 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000047","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:30.3520202 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000081","","740"
"10:46:30.3523786 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3524259 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000047","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:30.3524443 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000068","","740"
"10:46:30.3527383 AM","firefox.exe","7384","ReadFile","C:\$Directory","0.0084864","Offset: 528,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:30.3527468 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3527933 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000043","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:30.3528112 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000064","","740"
"10:46:30.3532387 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000530","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3533335 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000055","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:30.3533531 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000077","","740"
"10:46:30.3538352 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3538843 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000043","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:30.3539014 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000068","","740"
"10:46:30.3539858 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0011055","Offset: 16,642,048, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","120"
"10:46:30.3541983 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3542384 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000039","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:30.3542542 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000060","","740"
"10:46:30.3546263 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3546694 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:30.3546860 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000060","","740"
"10:46:30.3549539 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3549932 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:30.3550094 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000060","","740"
"10:46:30.3553968 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3554463 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:30.3554642 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000064","","740"
"10:46:30.3560594 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3561192 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000055","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:30.3561405 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000081","","740"
"10:46:30.3564810 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3565296 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000052","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:30.3565488 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000077","","740"
"10:46:30.3569047 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000584","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3569968 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000052","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:30.3570143 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000081","","740"
"10:46:30.3574589 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3575080 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:30.3575259 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000073","","740"
"10:46:30.3578485 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000652","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3579462 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:30.3579641 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000081","","740"
"10:46:30.3582888 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3583225 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:30.3583336 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000047","","740"
"10:46:30.3584565 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.3531605","Offset: 5,242,880, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:30.3586015 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3586344 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:30.3586446 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000047","","740"
"10:46:30.3588588 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3588917 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000029","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:30.3589023 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000043","","740"
"10:46:30.3591161 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3591438 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:30.3591541 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000042","","740"
"10:46:30.3594288 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3594625 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000030","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:30.3594732 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000043","","740"
"10:46:30.3597834 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3598431 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000039","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:30.3598602 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000068","","740"
"10:46:30.3599865 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49760 -> 72.21.91.29:http","0.0000000","Length: 381, startime: 40532, endtime: 40534, seqnum: 0, connid: 0","0"
"10:46:30.3601546 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49760 -> 72.21.91.29:http","0.0000000","Length: 799, seqnum: 0, connid: 0","0"
"10:46:30.3601943 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3602425 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000047","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:30.3602596 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000068","","740"
"10:46:30.3602894 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.3603210 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40534, endtime: 40534, seqnum: 0, connid: 0","0"
"10:46:30.3604268 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.3604434 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40534, endtime: 40534, seqnum: 0, connid: 0","0"
"10:46:30.3607605 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3608202 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000055","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:30.3608403 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000081","","740"
"10:46:30.3613207 AM","firefox.exe","7384","ReadFile","C:\$Directory","0.0719199","Offset: 270,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:30.3613518 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000261","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3614154 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0006703","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:30.3618677 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.3619082 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40534, endtime: 40534, seqnum: 0, connid: 0","0"
"10:46:30.3619944 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.3620191 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40534, endtime: 40534, seqnum: 0, connid: 0","0"
"10:46:30.3621220 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000234","","740"
"10:46:30.3621979 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000141","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:30.3622401 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000035","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:30.3622619 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,824, Length: 1","2884"
"10:46:30.3629441 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000261","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3630060 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000162","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:30.3630384 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000107","","740"
"10:46:30.3634864 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3635312 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000035","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.3635445 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000051","","740"
"10:46:30.3637608 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3637924 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000029","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.3638035 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000042","","740"
"10:46:30.3640279 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3640569 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000030","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.3640680 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000038","","740"
"10:46:30.3643628 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000350","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3644217 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000034","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:30.3644345 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000060","","740"
"10:46:30.3646440 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3646875 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000034","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:30.3646986 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000043","","740"
"10:46:30.3648919 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3649196 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:30.3649294 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000039","","740"
"10:46:30.3652383 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3652708 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000029","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:30.3652814 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000043","","740"
"10:46:30.3654704 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3655148 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000030","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:30.3655255 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000038","","740"
"10:46:30.3657333 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3657619 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000025","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:30.3657721 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000043","","740"
"10:46:30.3660959 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3661360 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000035","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:30.3661497 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000055","","740"
"10:46:30.3663485 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3663814 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:30.3663916 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000039","","740"
"10:46:30.3665772 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3666037 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:30.3666139 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000039","","740"
"10:46:30.3669719 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3670350 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000056","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:30.3670576 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000090","","740"
"10:46:30.3674118 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3674626 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000046","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:30.3674822 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000072","","740"
"10:46:30.3677915 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3678393 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000047","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:30.3678581 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000077","","740"
"10:46:30.3683180 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3683692 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:30.3683867 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000081","","740"
"10:46:30.3687438 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3687908 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000059","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:30.3688074 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000094","","740"
"10:46:30.3690182 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3690502 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000030","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:30.3690621 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000047","","740"
"10:46:30.3693352 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3693676 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000026","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:30.3693783 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000043","","740"
"10:46:30.3696019 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000341","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3696607 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000039","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:30.3696757 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000064","","740"
"10:46:30.3699611 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3699970 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000064","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:30.3700166 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000085","","740"
"10:46:30.3706719 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000261","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3707330 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000055","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:30.3707539 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000081","","740"
"10:46:30.3710999 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3711498 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:30.3711682 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000072","","740"
"10:46:30.3714916 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3715385 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:30.3715577 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000073","","740"
"10:46:30.3719865 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3720113 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000029","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.3720228 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000051","","740"
"10:46:30.3722463 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3722673 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000029","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.3722779 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000047","","740"
"10:46:30.3727050 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3727357 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.3727498 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000064","","740"
"10:46:30.3732332 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3733002 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000056","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:30.3733233 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000093","","740"
"10:46:30.3736667 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3737213 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000069","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:30.3737427 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000085","","740"
"10:46:30.3740473 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3740951 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000043","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:30.3741126 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000072","","740"
"10:46:30.3746856 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3747406 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000052","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:30.3747615 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000086","","740"
"10:46:30.3750807 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3751191 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000043","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:30.3751366 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000068","","740"
"10:46:30.3754519 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3755027 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000051","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:30.3755214 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000077","","740"
"10:46:30.3759135 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3759605 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000034","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:30.3759724 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000056","","740"
"10:46:30.3762412 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3763232 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000051","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:30.3763402 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000077","","740"
"10:46:30.3765250 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000076","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:30.3765595 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000115","CreationTime: 3/20/2019 7:27:24 PM, LastAccessTime: 3/20/2019 7:42:23 PM, LastWriteTime: 1/10/2019 4:08:41 AM, ChangeTime: 3/20/2019 7:42:23 PM, FileAttributes: A, AllocationSize: 20,480, EndOfFile: 20,005, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x200000006f00e, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:30.3767306 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3767690 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000205","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.3767857 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000093","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:30.3768066 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000055","","740"
"10:46:30.3771863 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3772277 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000034","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:30.3772392 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000051","","740"
"10:46:30.3772435 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000072","AllocationSize: 20,480, EndOfFile: 20,005, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:30.3772793 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000056","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:30.3773028 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000038","AllocationSize: 20,480, EndOfFile: 20,005, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:30.3773408 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000029","SyncType: SyncTypeOther","2512"
"10:46:30.3774406 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3774542 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000116","","2512"
"10:46:30.3774722 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:30.3774833 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000042","","740"
"10:46:30.3776787 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3777077 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000243","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.3777107 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000038","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:30.3777252 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000060","","740"
"10:46:30.3777589 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000047","AllocationSize: 20,480, EndOfFile: 20,005, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:30.3777845 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:30.3778041 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","AllocationSize: 20,480, EndOfFile: 20,005, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:30.3778357 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:30.3778920 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000073","","2512"
"10:46:30.3781484 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3782005 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000051","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:30.3782167 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000068","","740"
"10:46:30.3783609 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0009365","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.3785239 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3785789 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000052","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:30.3785973 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000089","","740"
"10:46:30.3790436 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3791136 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000059","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:30.3791362 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000098","","740"
"10:46:30.3794148 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000077","AllocationSize: 20,480, EndOfFile: 20,005, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:30.3794515 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:30.3794681 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","AllocationSize: 20,480, EndOfFile: 20,005, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:30.3794933 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:30.3795842 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000111","","2512"
"10:46:30.3798884 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3799451 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000060","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:30.3799716 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000077","","740"
"10:46:30.3799904 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000081","","2512"
"10:46:30.3800377 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000047","","2512"
"10:46:30.3803334 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3803923 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000051","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:30.3804085 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000064","","740"
"10:46:30.3806619 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.3807106 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000038","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:30.3807293 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000060","","2512"
"10:46:30.3807323 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3807720 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000038","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:30.3807882 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000060","","740"
"10:46:30.3810417 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.3810877 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000500","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:30.3811684 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000102","","2512"
"10:46:30.3811769 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3812059 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:30.3812170 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000047","","740"
"10:46:30.3816015 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3816501 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:30.3816689 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000068","","740"
"10:46:30.3817320 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.3819709 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3820157 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000056","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:30.3820170 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:30.3820354 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000077","","740"
"10:46:30.3820358 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000102","","2512"
"10:46:30.3821092 AM","firefox.exe","7384","CreateFile","C:\","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.3821455 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000465","Filter: Windows, 1: Windows","2512"
"10:46:30.3822090 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:30.3823571 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.3823874 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000119","Filter: System32, 1: System32","2512"
"10:46:30.3824130 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000042","","2512"
"10:46:30.3825546 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000243","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.3825713 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3825986 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dhcpcsvc.dll","0.0001007","Filter: dhcpcsvc.dll, 1: dhcpcsvc.dll","2512"
"10:46:30.3826348 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000056","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:30.3826523 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000073","","740"
"10:46:30.3828068 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000085","","2512"
"10:46:30.3830248 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3830769 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:30.3830944 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000072","","740"
"10:46:30.3831426 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.3831848 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","2512"
"10:46:30.3832006 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000055","","2512"
"10:46:30.3832441 AM","firefox.exe","7384","CreateFile","C:\","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.3832701 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000133","Filter: Windows, 1: Windows","2512"
"10:46:30.3832957 AM","firefox.exe","7384","CloseFile","C:\","0.0000052","","2512"
"10:46:30.3834165 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3834250 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.3834579 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000158","Filter: System32, 1: System32","2512"
"10:46:30.3834634 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:30.3834809 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000073","","740"
"10:46:30.3834895 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000064","","2512"
"10:46:30.3837510 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000294","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.3838291 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\userenv.dll","0.0000243","Filter: userenv.dll, 1: userenv.dll","2512"
"10:46:30.3838747 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000086","","2512"
"10:46:30.3840458 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3840996 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000055","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:30.3841188 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000072","","740"
"10:46:30.3844870 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3845412 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000051","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:30.3845600 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000068","","740"
"10:46:30.3848091 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.3848591 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000046","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","2512"
"10:46:30.3848778 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000056","","2512"
"10:46:30.3848975 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3849312 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000029","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:30.3849435 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000043","","740"
"10:46:30.3849606 AM","firefox.exe","7384","CreateFile","C:\","0.0000188","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.3850229 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000316","Filter: Windows, 1: Windows","2512"
"10:46:30.3852136 AM","firefox.exe","7384","CloseFile","C:\","0.0000111","","2512"
"10:46:30.3853604 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.3853766 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3853894 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000128","Filter: System32, 1: System32","2512"
"10:46:30.3854133 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000051","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:30.3854176 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000085","","2512"
"10:46:30.3854316 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000636","","740"
"10:46:30.3855874 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000205","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.3856966 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\userenv.dll","0.0021598","Filter: userenv.dll, 1: userenv.dll","2512"
"10:46:30.3858156 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups","0.0000367","","5008"
"10:46:30.3858255 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3858741 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000051","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:30.3858933 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000068","","740"
"10:46:30.3859458 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\previous.jsonlz4","0.0000473","","5008"
"10:46:30.3860597 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.3861211 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000090","Offset: 24, Length: 16","2884"
"10:46:30.3861856 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3862184 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000047","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:30.3862363 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000064","","740"
"10:46:30.3864271 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.3864778 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:30.3865179 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000052","Offset: 1,073,741,826, Length: 510","2884"
"10:46:30.3870777 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\previous.jsonlz4","0.0000627","Desired Access: Read Attributes, Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5008"
"10:46:30.3870922 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000448","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3871554 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000064","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:30.3871656 AM","firefox.exe","7384","QueryRemoteProtocolInformation","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\previous.jsonlz4","0.0000051","","5008"
"10:46:30.3871767 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000077","","740"
"10:46:30.3871916 AM","firefox.exe","7384","QuerySecurityFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\previous.jsonlz4","0.0000035","Information: DACL","5008"
"10:46:30.3872143 AM","firefox.exe","7384","QueryNameInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\previous.jsonlz4","0.0000051","Name: \Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\previous.jsonlz4","5008"
"10:46:30.3873679 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups","0.0000209","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5008"
"10:46:30.3874092 AM","firefox.exe","7384","QueryRemoteProtocolInformation","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups","0.0000043","","5008"
"10:46:30.3874306 AM","firefox.exe","7384","QuerySecurityFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups","0.0000034","Information: DACL","5008"
"10:46:30.3874485 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups","0.0000051","","5008"
"10:46:30.3874971 AM","firefox.exe","7384","QueryRemoteProtocolInformation","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\previous.jsonlz4","0.0002868","","5008"
"10:46:30.3875014 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3875343 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000042","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:30.3875479 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000056","","740"
"10:46:30.3876401 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0364455","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:30.3877066 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0363508","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5068"
"10:46:30.3878227 AM","firefox.exe","7384","QuerySecurityFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\previous.jsonlz4","0.0000060","Information: Owner, Group, DACL","5008"
"10:46:30.3878487 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\previous.jsonlz4","0.0000073","CreationTime: 3/26/2020 10:35:36 AM, LastAccessTime: 3/26/2020 10:35:36 AM, LastWriteTime: 3/26/2020 10:35:36 AM, ChangeTime: 3/26/2020 10:46:30 AM, FileAttributes: A","5008"
"10:46:30.3878607 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3878841 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000077","","2512"
"10:46:30.3878978 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000089","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:30.3879016 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\previous.jsonlz4","0.0000303","","5008"
"10:46:30.3879336 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000073","","740"
"10:46:30.3884392 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000572","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3885156 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000064","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:30.3885331 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000085","","740"
"10:46:30.3889073 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3889192 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000188","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.3889465 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000047","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:30.3889696 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000072","","740"
"10:46:30.3889794 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\userenv.dll","0.0000042","AllocationSize: 151,552, EndOfFile: 147,872, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:30.3889982 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\previous.jsonlz4","0.0000371","Desired Access: Read Attributes, Read Control, Write DAC, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5008"
"10:46:30.3890067 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:30.3890255 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\userenv.dll","0.0000495","AllocationSize: 151,552, EndOfFile: 147,872, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:30.3891027 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\previous.jsonlz4","0.0000072","CreationTime: 3/26/2020 10:35:36 AM, LastAccessTime: 3/26/2020 10:35:36 AM, LastWriteTime: 3/26/2020 10:35:36 AM, ChangeTime: 3/26/2020 10:46:30 AM, FileAttributes: A","5008"
"10:46:30.3891441 AM","firefox.exe","7384","QueryNameInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\previous.jsonlz4","0.0000047","Name: \Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\previous.jsonlz4","5008"
"10:46:30.3893032 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups","0.0002027","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5008"
"10:46:30.3893079 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3893391 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000034","SyncType: SyncTypeOther","2512"
"10:46:30.3893442 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000042","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:30.3893617 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000064","","740"
"10:46:30.3895306 AM","firefox.exe","7384","QueryRemoteProtocolInformation","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups","0.0000056","","5008"
"10:46:30.3895550 AM","firefox.exe","7384","QuerySecurityFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups","0.0000136","Information: DACL, DACL Unprotected","5008"
"10:46:30.3895959 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups","0.0000094","","5008"
"10:46:30.3896386 AM","firefox.exe","7384","QueryRemoteProtocolInformation","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\previous.jsonlz4","0.0000051","","5008"
"10:46:30.3896591 AM","firefox.exe","7384","QuerySecurityFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\previous.jsonlz4","0.0000025","Information: Owner, Group, DACL, DACL Unprotected","5008"
"10:46:30.3896953 AM","firefox.exe","7384","SetSecurityFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\previous.jsonlz4","0.0000521","Information: DACL, DACL Unprotected","5008"
"10:46:30.3897047 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000098","","2512"
"10:46:30.3897679 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\previous.jsonlz4","0.0000507","","5008"
"10:46:30.3899198 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000221","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3899611 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000052","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:30.3899799 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000068","","740"
"10:46:30.3903067 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3903451 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000052","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:30.3903626 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000073","","740"
"10:46:30.3907326 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3907684 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000043","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:30.3907829 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000064","","740"
"10:46:30.3909766 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000346","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.3912723 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\userenv.dll","0.0000072","AllocationSize: 151,552, EndOfFile: 147,872, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:30.3913039 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:30.3913397 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3913999 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\userenv.dll","0.0000047","AllocationSize: 151,552, EndOfFile: 147,872, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:30.3914028 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000056","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.3914267 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000081","","740"
"10:46:30.3914387 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:30.3917992 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3918496 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000051","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.3918692 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000081","","740"
"10:46:30.3921064 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\userenv.dll","0.0153750","Offset: 118,784, Length: 29,088, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:30.3922353 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3922890 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000081","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.3923138 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000094","","740"
"10:46:30.3927409 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\recovery.jsonlz4.tmp","0.0002270","Desired Access: Generic Write, Read Attributes, Disposition: OverwriteIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: 0, OpenResult: Created","5008"
"10:46:30.3928130 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3928842 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000133","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:30.3929115 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000077","","740"
"10:46:30.3932379 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000227","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3932917 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000056","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:30.3933101 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000089","","740"
"10:46:30.3936616 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000453","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3937448 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000056","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:30.3937636 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000081","","740"
"10:46:30.3942381 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3942944 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000055","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:30.3943123 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000072","","740"
"10:46:30.3943349 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\recovery.jsonlz4.tmp","0.0000226","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5008"
"10:46:30.3946686 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3946852 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\recovery.jsonlz4.tmp","0.0004506","Offset: 0, Length: 1,322, Priority: Normal","5008"
"10:46:30.3947185 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000051","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:30.3947355 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000073","","740"
"10:46:30.3953316 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3954029 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000064","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:30.3954272 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000102","","740"
"10:46:30.3955061 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\recovery.jsonlz4.tmp","0.0001182","","5008"
"10:46:30.3960010 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000359","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3960825 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000069","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:30.3961026 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000089","","740"
"10:46:30.3964187 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0330941","Offset: 135,168, Length: 4,096","7760"
"10:46:30.3964648 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0330249","Offset: 135,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.3965139 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3965706 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000056","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:30.3965907 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000077","","740"
"10:46:30.3967925 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\recovery.jsonlz4.tmp","0.0000546","Desired Access: Read Attributes, Delete, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5008"
"10:46:30.3968702 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\recovery.jsonlz4.tmp","0.0000059","Attributes: A, ReparseTag: 0x0","5008"
"10:46:30.3968945 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\recovery.jsonlz4.tmp","0.0000034","CreationTime: 3/26/2020 10:46:30 AM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, FileAttributes: A","5008"
"10:46:30.3969167 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000281","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3969764 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000047","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:30.3969947 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000082","","740"
"10:46:30.3970835 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups","0.0000243","Desired Access: Write Data/Add File, Synchronize, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5008"
"10:46:30.3975789 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3976121 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000039","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:30.3976271 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000068","","740"
"10:46:30.3979300 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3979620 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000034","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:30.3979629 AM","firefox.exe","7384","SetRenameInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\recovery.jsonlz4.tmp","0.0001864","ReplaceIfExists: True, FileName: C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\recovery.jsonlz4","5008"
"10:46:30.3979774 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000055","","740"
"10:46:30.3981638 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups","0.0000367","","5008"
"10:46:30.3982487 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\recovery.jsonlz4","0.0000465","","5008"
"10:46:30.3982858 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3983191 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000039","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:30.3983341 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000055","","740"
"10:46:30.3988717 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3989139 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000055","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:30.3989335 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000077","","740"
"10:46:30.3992557 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\recovery.jsonlz4","0.0000371","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5008"
"10:46:30.3992949 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3993273 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000039","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:30.3993414 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000060","","740"
"10:46:30.3995663 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.3995842 AM","firefox.exe","7384","QueryInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\recovery.jsonlz4","0.0000060","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","5008"
"10:46:30.3995940 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000038","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:30.3996081 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000060","","740"
"10:46:30.3996089 AM","firefox.exe","7384","QueryAllInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\recovery.jsonlz4","0.0000081","CreationTime: 3/26/2020 10:46:30 AM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, FileAttributes: A, AllocationSize: 4,096, EndOfFile: 1,322, NumberOfLinks: 1, DeletePending: False, Directory: False, IndexNumber: 0x2a00000001026c, EaSize: 0, Access: Read Attributes, Synchronize, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","5008"
"10:46:30.3999673 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000227","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4000194 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000043","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:30.4000352 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000068","","740"
"10:46:30.4004328 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000397","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4005177 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000052","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:30.4005386 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000077","","740"
"10:46:30.4005788 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\sessionstore-backups\recovery.jsonlz4","0.0000089","","5008"
"10:46:30.4008659 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4009128 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000039","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:30.4009252 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000056","","740"
"10:46:30.4014048 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4014513 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000047","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:30.4014649 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000056","","740"
"10:46:30.4017389 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4017913 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000047","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:30.4018084 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000068","","740"
"10:46:30.4021075 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4021621 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000043","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:30.4021796 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000068","","740"
"10:46:30.4026878 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4027449 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000052","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:30.4027663 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000081","","740"
"10:46:30.4031268 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4031746 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000047","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:30.4031942 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000077","","740"
"10:46:30.4035010 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4035449 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000039","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:30.4035582 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000055","","740"
"10:46:30.4038688 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4039038 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000034","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:30.4039153 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000043","","740"
"10:46:30.4041227 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4041534 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000030","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:30.4041640 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000043","","740"
"10:46:30.4044431 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4045062 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000051","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:30.4045305 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000082","","740"
"10:46:30.4049030 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4049286 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000030","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:30.4049401 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000047","","740"
"10:46:30.4051624 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4051846 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000026","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:30.4051949 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000042","","740"
"10:46:30.4053822 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4054027 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000025","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:30.4054129 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000038","","740"
"10:46:30.4057205 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4057500 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000042","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:30.4057636 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000077","","740"
"10:46:30.4061472 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4061864 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:30.4062078 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000081","","740"
"10:46:30.4066848 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4067215 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000042","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","740"
"10:46:30.4067394 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000077","","740"
"10:46:30.4070406 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4070803 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000043","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","740"
"10:46:30.4070974 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000064","","740"
"10:46:30.4074123 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4074468 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000043","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","740"
"10:46:30.4074635 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000059","","740"
"10:46:30.4075560 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\userenv.dll","0.0000052","AllocationSize: 151,552, EndOfFile: 147,872, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:30.4075812 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000086","","2512"
"10:46:30.4078116 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000235","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.4079499 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\userenv.dll","0.0000051","AllocationSize: 151,552, EndOfFile: 147,872, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:30.4079507 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4079836 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.4079968 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000064","","740"
"10:46:30.4081363 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000068","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:30.4081670 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\userenv.dll","0.0000056","AllocationSize: 151,552, EndOfFile: 147,872, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:30.4082131 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:30.4082507 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4082724 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.4082827 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000042","","740"
"10:46:30.4084704 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4084904 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.4085003 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000038","","740"
"10:46:30.4087994 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000110","","2512"
"10:46:30.4088083 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4088424 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000030","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:30.4088531 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000047","","740"
"10:46:30.4088834 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4089073 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4089239 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4090566 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4090852 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000026","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:30.4090959 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000038","","740"
"10:46:30.4092546 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4092960 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Offset: 24, Length: 16","5728"
"10:46:30.4094022 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.4094103 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4094394 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000029","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","2512"
"10:46:30.4094513 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000047","","2512"
"10:46:30.4094658 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000115","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:30.4094918 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000056","","740"
"10:46:30.4095315 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4095686 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4096006 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4096459 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4096561 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4096646 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4097572 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.4098071 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","2512"
"10:46:30.4098259 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000060","","2512"
"10:46:30.4098682 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4098993 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:30.4099710 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4100166 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000039","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","740"
"10:46:30.4100328 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000060","","740"
"10:46:30.4101395 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4101933 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4102189 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4102603 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4102705 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4102790 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4103831 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.4104207 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","2512"
"10:46:30.4104348 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000149","","2512"
"10:46:30.4104919 AM","firefox.exe","7384","CreateFile","C:\","0.0000116","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.4105018 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4105175 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000145","Filter: Windows, 1: Windows","2512"
"10:46:30.4105461 AM","firefox.exe","7384","CloseFile","C:\","0.0000047","","2512"
"10:46:30.4105474 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","740"
"10:46:30.4105679 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000085","","740"
"10:46:30.4105700 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4106157 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000068","Offset: 24, Length: 16","5728"
"10:46:30.4107300 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.4107646 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0001310","Filter: System32, 1: System32","2512"
"10:46:30.4108610 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4109131 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","740"
"10:46:30.4109165 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4109186 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000068","","2512"
"10:46:30.4109314 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000060","","740"
"10:46:30.4109643 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4109971 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4110428 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4110534 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4110624 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4110658 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.4110970 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\userenv.dll","0.0000179","Filter: userenv.dll, 1: userenv.dll","2512"
"10:46:30.4111375 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000060","","2512"
"10:46:30.4112736 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4113077 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:30.4113709 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4114088 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:30.4114263 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000064","","740"
"10:46:30.4114472 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000308","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.4114882 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000030","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","2512"
"10:46:30.4115040 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000188","","2512"
"10:46:30.4115706 AM","firefox.exe","7384","CreateFile","C:\","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.4116038 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000154","Filter: Windows, 1: Windows","2512"
"10:46:30.4116546 AM","firefox.exe","7384","CloseFile","C:\","0.0000077","","2512"
"10:46:30.4116853 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4117301 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4117318 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4117634 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:30.4117634 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4117800 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000069","","740"
"10:46:30.4118065 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.4118197 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4118355 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4118394 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000162","Filter: System32, 1: System32","2512"
"10:46:30.4118500 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4118726 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000064","","2512"
"10:46:30.4120877 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4121205 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000051","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:30.4121231 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4121384 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000060","","740"
"10:46:30.4121713 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000068","Offset: 24, Length: 16","5728"
"10:46:30.4124294 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.4124576 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000346","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4124683 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000059","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","2512"
"10:46:30.4124870 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000064","","2512"
"10:46:30.4125314 AM","firefox.exe","7384","CreateFile","C:\","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.4125566 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000153","Filter: Windows, 1: Windows","2512"
"10:46:30.4125852 AM","firefox.exe","7384","CloseFile","C:\","0.0000042","","2512"
"10:46:30.4125950 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4126291 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000043","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","740"
"10:46:30.4126312 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4126449 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000068","","740"
"10:46:30.4126696 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4127273 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000123","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.4127383 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000035","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4127550 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000128","Filter: System32, 1: System32","2512"
"10:46:30.4127567 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4127708 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4127797 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000043","","2512"
"10:46:30.4129303 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.4129534 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4129619 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000034","AllocationSize: 4,333,568, EndOfFile: 4,332,032, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:30.4129803 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:30.4129850 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000042","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","740"
"10:46:30.4129939 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000022","AllocationSize: 4,333,568, EndOfFile: 4,332,032, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:30.4130029 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000077","","740"
"10:46:30.4130234 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:30.4130583 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4131087 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000072","Offset: 24, Length: 16","5728"
"10:46:30.4131202 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000060","","2512"
"10:46:30.4132644 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.4132866 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4132977 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000047","AllocationSize: 4,333,568, EndOfFile: 4,332,032, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:30.4133229 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000042","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","740"
"10:46:30.4133404 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000064","","740"
"10:46:30.4133826 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:30.4133929 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4134031 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000038","AllocationSize: 4,333,568, EndOfFile: 4,332,032, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:30.4134338 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4134355 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:30.4134628 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4135123 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4135273 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4135443 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4135657 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000085","","2512"
"10:46:30.4137786 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imagehlp.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4138332 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imagehlp.dll","0.0000055","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:30.4138541 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imagehlp.dll","0.0000064","","740"
"10:46:30.4138955 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4139279 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.4139433 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000068","Offset: 24, Length: 16","5728"
"10:46:30.4139543 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000035","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:30.4139663 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000043","","2512"
"10:46:30.4141664 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imagehlp.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4141860 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4142129 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imagehlp.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:30.4142176 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.4142185 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4142304 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imagehlp.dll","0.0000064","","740"
"10:46:30.4142432 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4142492 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:30.4142645 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000047","","2512"
"10:46:30.4142880 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4142974 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4143059 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4144702 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000171","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.4145116 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000038","AllocationSize: 4,333,568, EndOfFile: 4,332,032, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:30.4145197 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4145359 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:30.4145530 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5728"
"10:46:30.4145559 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000039","AllocationSize: 4,333,568, EndOfFile: 4,332,032, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:30.4145606 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imagehlp.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4145884 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:30.4146025 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imagehlp.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:30.4146212 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imagehlp.dll","0.0000064","","740"
"10:46:30.4147548 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4147846 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4147893 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000039","AllocationSize: 4,333,568, EndOfFile: 4,332,032, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:30.4148064 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4148107 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:30.4148273 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000030","AllocationSize: 4,333,568, EndOfFile: 4,332,032, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:30.4148427 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000072","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4148593 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4148657 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:30.4148683 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4150628 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4150778 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rsaenh.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4150931 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.4151072 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\D3DCompiler_47.dll","0.0322270","Offset: 0, Length: 524,288, Priority: Normal","2512"
"10:46:30.4151226 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rsaenh.dll","0.0000038","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.4151392 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rsaenh.dll","0.0000077","","740"
"10:46:30.4152297 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\D3DCompiler_47.dll","0.0319036","Offset: 32,768, Length: 491,520, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2512"
"10:46:30.4152804 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4153094 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4153316 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4153696 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4153794 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4153879 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4154123 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rsaenh.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4154443 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rsaenh.dll","0.0000030","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.4154554 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rsaenh.dll","0.0000047","","740"
"10:46:30.4155770 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4156064 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.4156687 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rsaenh.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4157011 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rsaenh.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:30.4157118 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rsaenh.dll","0.0000043","","740"
"10:46:30.4158035 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4158308 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4158492 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4158812 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4158910 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4159008 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4160416 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4160651 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:30.4160757 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000056","","740"
"10:46:30.4161811 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4162246 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000052","Offset: 24, Length: 16","5728"
"10:46:30.4162686 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4162886 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:30.4162989 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000038","","740"
"10:46:30.4164303 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4164602 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4164815 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4164879 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4165071 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:30.4165156 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4165173 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000043","","740"
"10:46:30.4165280 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4165399 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000018","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4167674 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4167994 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5728"
"10:46:30.4168250 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4168574 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000030","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:30.4168681 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000042","","740"
"10:46:30.4169982 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4170276 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4170477 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4170754 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4170810 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4170903 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4170989 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4171031 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000030","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:30.4171138 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000039","","740"
"10:46:30.4173075 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4173353 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4173374 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.4173634 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000030","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:30.4173737 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000042","","740"
"10:46:30.4175136 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4175422 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4175627 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4175959 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000018","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4176053 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4176151 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4176651 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sspicli.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4176949 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:30.4177056 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sspicli.dll","0.0000038","","740"
"10:46:30.4178118 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4178409 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.4178980 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sspicli.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4179253 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:30.4179352 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sspicli.dll","0.0000042","","740"
"10:46:30.4180273 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4180550 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4180742 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000018","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4181054 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4181148 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4181229 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4181297 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sspicli.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4181562 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000025","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:30.4181664 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sspicli.dll","0.0000043","","740"
"10:46:30.4183012 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4183315 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:30.4184672 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4184885 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000026","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:30.4184988 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000038","","740"
"10:46:30.4185180 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4185453 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4185649 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4185948 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4186042 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4186127 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4186865 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4187061 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000026","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:30.4187160 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000038","","740"
"10:46:30.4188038 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4188333 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.4189062 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4189259 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000021","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:30.4189357 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000068","","740"
"10:46:30.4190513 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4190906 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4191174 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4191593 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4191746 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4191883 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4192395 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4192685 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000025","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","740"
"10:46:30.4192792 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000038","","740"
"10:46:30.4194246 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4194554 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5728"
"10:46:30.4194793 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4195117 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000034","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","740"
"10:46:30.4195262 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000060","","740"
"10:46:30.4196559 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4196845 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4197037 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4197374 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4197472 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4197553 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4197557 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4197839 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000026","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","740"
"10:46:30.4197941 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000043","","740"
"10:46:30.4199384 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4199674 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.4200966 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4201265 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000026","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/27/2019 7:17:12 PM, FileAttributes: A","740"
"10:46:30.4201372 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000042","","740"
"10:46:30.4201525 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4201820 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4202008 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4202310 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000018","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4202426 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4202511 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4203347 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4203625 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000029","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/27/2019 7:17:12 PM, FileAttributes: A","740"
"10:46:30.4203727 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000055","","740"
"10:46:30.4204499 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4204798 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.4205643 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4205907 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000030","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/27/2019 7:17:12 PM, FileAttributes: A","740"
"10:46:30.4206014 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000038","","740"
"10:46:30.4206645 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4206918 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4207098 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4207401 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4207490 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4207576 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4208928 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4209222 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:36 PM, FileAttributes: A","740"
"10:46:30.4209325 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000038","","740"
"10:46:30.4209551 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4209833 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.4211236 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4211509 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:36 PM, FileAttributes: A","740"
"10:46:30.4211612 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000038","","740"
"10:46:30.4211987 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4212337 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4212657 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4213114 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4213250 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4213378 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4213570 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4213852 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000030","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:36 PM, FileAttributes: A","740"
"10:46:30.4213954 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000043","","740"
"10:46:30.4215486 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4215793 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:30.4216945 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4217180 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000025","CreationTime: 4/11/2018 4:34:35 PM, LastAccessTime: 4/11/2018 4:34:35 PM, LastWriteTime: 4/11/2018 4:34:35 PM, ChangeTime: 3/20/2019 7:07:22 PM, FileAttributes: A","740"
"10:46:30.4217278 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000038","","740"
"10:46:30.4217743 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4218059 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4218251 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4218584 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4218686 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4218771 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4219339 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4219535 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000026","CreationTime: 4/11/2018 4:34:35 PM, LastAccessTime: 4/11/2018 4:34:35 PM, LastWriteTime: 4/11/2018 4:34:35 PM, ChangeTime: 3/20/2019 7:07:22 PM, FileAttributes: A","740"
"10:46:30.4219633 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000039","","740"
"10:46:30.4221148 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4221579 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","5728"
"10:46:30.4222650 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4222970 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000038","CreationTime: 4/11/2018 4:34:35 PM, LastAccessTime: 4/11/2018 4:34:35 PM, LastWriteTime: 4/11/2018 4:34:35 PM, ChangeTime: 3/20/2019 7:07:22 PM, FileAttributes: A","740"
"10:46:30.4223153 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000068","","740"
"10:46:30.4224211 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4224600 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4224851 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4225316 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4225466 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4225602 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4227475 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4227770 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000034","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:46:36 PM, FileAttributes: A","740"
"10:46:30.4227889 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000047","","740"
"10:46:30.4228785 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4229344 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:30.4229958 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4230163 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000026","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:46:36 PM, FileAttributes: A","740"
"10:46:30.4230270 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000038","","740"
"10:46:30.4231541 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4231870 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4232105 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4232309 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4232501 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4232510 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000026","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:46:36 PM, FileAttributes: A","740"
"10:46:30.4232617 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4232621 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000038","","740"
"10:46:30.4232711 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4234908 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4235228 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5728"
"10:46:30.4235642 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MrmCoreR.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4235975 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MrmCoreR.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:30.4236081 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MrmCoreR.dll","0.0000039","","740"
"10:46:30.4237152 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4237468 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4237681 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4238010 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4238112 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4238125 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MrmCoreR.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4238197 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4238402 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MrmCoreR.dll","0.0000030","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:30.4238505 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MrmCoreR.dll","0.0000042","","740"
"10:46:30.4240117 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4240420 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:30.4241035 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MrmCoreR.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:30.4241436 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MrmCoreR.dll","0.0000038","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:30.4241585 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MrmCoreR.dll","0.0000064","","740"
"10:46:30.4242485 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000052","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:30.4242729 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000025","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.4242929 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000022","Offset: 1,073,741,824, Length: 1","5068"
"10:46:30.4243079 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4243505 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4243791 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4244499 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4244653 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4244794 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4245873 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-journal","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:30.4247482 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4247857 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:30.4248309 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-wal","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:30.4248753 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000043","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.4248962 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000056","Offset: 0, Length: 4,096","5068"
"10:46:30.4249828 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4250157 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4250375 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000046","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4250857 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4251010 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4251151 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4252538 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-wal","0.0000251","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:30.4253613 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4253950 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5728"
"10:46:30.4254202 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-wal","0.0149333","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","5068"
"10:46:30.4255755 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4256036 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4256233 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4256595 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4256693 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4256800 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4258797 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4259096 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:30.4260862 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4261135 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4261327 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4261664 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4261754 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4261839 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4263746 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4264032 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:30.4265781 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4266093 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4266311 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4266643 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4266733 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4266814 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4268721 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4269011 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:30.4270782 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4271051 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4271230 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4271533 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:30.4271623 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:30.4271704 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Offset: 1,073,741,824, Length: 1","5728"
"10:46:30.4273491 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4273764 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5728"
"10:46:30.4275501 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:30.4275765 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:30.4275940 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5728"
"10:46:30.4297270 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0229337","Offset: 294,912, Length: 4,096","7760"
"10:46:30.4297688 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0228403","Offset: 294,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.4299006 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49759 -> ec2-34-212-158-50.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 635, startime: 40536, endtime: 40541, seqnum: 0, connid: 0","0"
"10:46:30.4299309 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49759 -> ec2-34-212-158-50.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:30.4318287 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.4318586 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40541, endtime: 40541, seqnum: 0, connid: 0","0"
"10:46:30.4318995 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.4319102 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40541, endtime: 40541, seqnum: 0, connid: 0","0"
"10:46:30.4319699 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.4319977 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40541, endtime: 40541, seqnum: 0, connid: 0","0"
"10:46:30.4323249 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.4323424 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40541, endtime: 40541, seqnum: 0, connid: 0","0"
"10:46:30.4323966 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.4324120 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40541, endtime: 40541, seqnum: 0, connid: 0","0"
"10:46:30.4338149 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\84E17CB3A99455E8CE621F96B5AEFD36542EDADA","0.0001169","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:30.4342087 AM","firefox.exe","7384","ReadFile","C:","0.0881887","Offset: 20,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:30.4407759 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:30.4409398 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0001681","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","5068"
"10:46:30.4411493 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000055","Exclusive: True, Offset: 128, Length: 1, Fail Immediately: True","5068"
"10:46:30.4411770 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000371","EndOfFile: 0","5068"
"10:46:30.4412337 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000188","AllocationSize: 0","5068"
"10:46:30.4412683 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000021","Offset: 128, Length: 1","5068"
"10:46:30.4412820 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000017","Exclusive: False, Offset: 128, Length: 1, Fail Immediately: True","5068"
"10:46:30.4412956 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000034","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.4413101 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000017","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","5068"
"10:46:30.4413212 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000017","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.4413387 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000759","EndOfFile: 32,768","5068"
"10:46:30.4414287 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000171","AllocationSize: 32,768","5068"
"10:46:30.4414650 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5068"
"10:46:30.4414816 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000026","AllocationSize: 32,768, EndOfFile: 32,768, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.4415060 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000012","SyncType: SyncTypeOther","5068"
"10:46:30.4415546 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000111","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5068"
"10:46:30.4415879 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000021","Exclusive: True, Offset: 121, Length: 2, Fail Immediately: True","5068"
"10:46:30.4415994 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000017","Exclusive: True, Offset: 124, Length: 4, Fail Immediately: True","5068"
"10:46:30.4416135 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-wal","0.0000030","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.4416284 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000017","Offset: 121, Length: 2","5068"
"10:46:30.4416382 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000013","Offset: 124, Length: 4","5068"
"10:46:30.4416476 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000009","Offset: 120, Length: 1","5068"
"10:46:30.4416574 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000017","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:30.4416864 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000030","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.4417056 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000060","Offset: 0, Length: 4,096","5068"
"10:46:30.4419586 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000030","Offset: 123, Length: 1","5068"
"10:46:30.4423478 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.4423840 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000043","CreationTime: 3/25/2020 10:27:09 AM, LastAccessTime: 3/25/2020 10:27:09 AM, LastWriteTime: 3/25/2020 10:27:15 AM, ChangeTime: 3/25/2020 10:27:15 AM, AllocationSize: 49152, EndOfFile: 49152, FileAttributes: A","5068"
"10:46:30.4423990 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0461594","","5068"
"10:46:30.4527606 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004424","Offset: 13,332,480, Length: 4,096","7760"
"10:46:30.4527900 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003674","Offset: 13,332,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.4532935 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0018244","Offset: 13,209,600, Length: 4,096","7760"
"10:46:30.4533199 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0017477","Offset: 13,209,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.4551478 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003371","Offset: 335,872, Length: 4,096","7760"
"10:46:30.4551738 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0002680","Offset: 335,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.4555791 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0177332","Offset: 12,836,864, Length: 4,096","7760"
"10:46:30.4556052 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0176896","Offset: 12,836,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.4699749 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49759 -> ec2-34-212-158-50.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 31, startime: 40541, endtime: 40545, seqnum: 0, connid: 0","0"
"10:46:30.4700018 AM","firefox.exe","7384","TCP Disconnect","LAPTOP-49TAGD3F.lan1:49759 -> ec2-34-212-158-50.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 0, seqnum: 0, connid: 0","0"
"10:46:30.4734889 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000115","Offset: 73,728, Length: 4,096","7760"
"10:46:30.4736596 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\D3DCompiler_47.dll","0.0402565","Offset: 1,572,864, Length: 524,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:30.4746277 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0235119","Offset: 11,927,552, Length: 4,096","7760"
"10:46:30.4746738 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0234402","Offset: 11,927,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.4890644 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.4891126 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000056","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:30.4891357 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000072","","5068"
"10:46:30.4893285 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000218","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.4893673 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000035","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,815, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5068"
"10:46:30.4893823 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000047","","5068"
"10:46:30.4894433 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000038","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:30.4894612 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000034","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.4894817 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000021","Offset: 123, Length: 1","5068"
"10:46:30.4895329 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000034","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:30.4895487 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000030","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.4895832 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000103","Offset: 8,192, Length: 4,096","5068"
"10:46:30.4896140 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000017","Offset: 123, Length: 1","5068"
"10:46:30.4896387 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000017","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:30.4896532 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000021","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.4896664 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000056","Offset: 12,288, Length: 4,096","5068"
"10:46:30.4896955 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000017","Offset: 123, Length: 1","5068"
"10:46:30.4897309 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000017","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:30.4897411 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000017","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.4897539 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000081","Offset: 16,384, Length: 4,096","5068"
"10:46:30.4897727 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000013","Offset: 123, Length: 1","5068"
"10:46:30.4900253 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.files","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.4900556 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.files","0.0000029","CreationTime: 3/25/2020 10:27:12 AM, LastAccessTime: 3/25/2020 10:27:12 AM, LastWriteTime: 3/25/2020 10:27:12 AM, ChangeTime: 3/25/2020 10:27:12 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: D","5068"
"10:46:30.4900675 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.files","0.0000047","","5068"
"10:46:30.4902766 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.files","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.4903017 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.files","0.0000026","CreationTime: 3/25/2020 10:27:12 AM, LastAccessTime: 3/25/2020 10:27:12 AM, LastWriteTime: 3/25/2020 10:27:12 AM, ChangeTime: 3/25/2020 10:27:12 AM, FileAttributes: D","5068"
"10:46:30.4903128 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.files","0.0000039","","5068"
"10:46:30.4905373 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.files\journals","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:30.4905842 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000026","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:30.4905983 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000030","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.4906158 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000059","Offset: 40,960, Length: 4,096","5068"
"10:46:30.4906350 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000017","Offset: 123, Length: 1","5068"
"10:46:30.4906529 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:30.4906627 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000017","Offset: 1,073,741,826, Length: 510","5068"
"10:46:30.4906717 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000012","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.4907032 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000081","","5068"
"10:46:30.4909123 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.4909396 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000030","CreationTime: 3/26/2020 10:46:30 AM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, FileAttributes: A","5068"
"10:46:30.4909516 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000047","","5068"
"10:46:30.4911082 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000251","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.4911525 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000039","Attributes: A, ReparseTag: 0x0","5068"
"10:46:30.4911687 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000086","Delete: True","5068"
"10:46:30.4911965 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000955","","5068"
"10:46:30.4913240 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-wal","0.0000205","","5068"
"10:46:30.4915809 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-wal","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.4916159 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-wal","0.0000034","CreationTime: 3/26/2020 10:46:30 AM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, FileAttributes: A","5068"
"10:46:30.4916287 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-wal","0.0000047","","5068"
"10:46:30.4917499 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-wal","0.0000213","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.4917840 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-wal","0.0000034","Attributes: A, ReparseTag: 0x0","5068"
"10:46:30.4917985 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-wal","0.0000068","Delete: True","5068"
"10:46:30.4918151 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-wal","0.0001289","","5068"
"10:46:30.4919811 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000026","Offset: 1,073,741,826, Length: 510","5068"
"10:46:30.4919922 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000009","Offset: 1,073,741,825, Length: 1","5068"
"10:46:30.4920016 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000013","Offset: 1,073,741,826, Length: 510","5068"
"10:46:30.4920140 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000012","Offset: 1,073,741,824, Length: 1","5068"
"10:46:30.4920285 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000269","","5068"
"10:46:30.4924155 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.4924551 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000052","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:30.4924735 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000286","","5068"
"10:46:30.4925409 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 764","7276"
"10:46:30.4927786 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\idb-deleting-3870112724rsegmnoittet-es","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:30.4930759 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","764"
"10:46:30.4930900 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.4931212 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000038","CreationTime: 3/25/2020 10:27:09 AM, LastAccessTime: 3/25/2020 10:27:09 AM, LastWriteTime: 3/25/2020 10:27:15 AM, ChangeTime: 3/25/2020 10:27:15 AM, AllocationSize: 49152, EndOfFile: 49152, FileAttributes: A","764"
"10:46:30.4931233 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","5068"
"10:46:30.4931365 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0050240","","5068"
"10:46:30.4931378 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000064","","764"
"10:46:30.4933656 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000163","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","764"
"10:46:30.4933930 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000029","CreationTime: 3/25/2020 10:27:09 AM, LastAccessTime: 3/25/2020 10:27:09 AM, LastWriteTime: 3/25/2020 10:27:15 AM, ChangeTime: 3/25/2020 10:27:15 AM, FileAttributes: A","764"
"10:46:30.4934053 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000043","","764"
"10:46:30.4936878 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","764"
"10:46:30.4937151 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000030","CreationTime: 3/25/2020 10:27:09 AM, LastAccessTime: 3/25/2020 10:27:09 AM, LastWriteTime: 3/25/2020 10:27:15 AM, ChangeTime: 3/25/2020 10:27:15 AM, AllocationSize: 49152, EndOfFile: 49152, FileAttributes: A","764"
"10:46:30.4937279 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000047","","764"
"10:46:30.4938512 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000239","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","764"
"10:46:30.4939041 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000107","Offset: 0, Length: 100, Priority: Normal","764"
"10:46:30.4940065 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000038","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","764"
"10:46:30.4940219 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","764"
"10:46:30.4940342 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000017","Offset: 1,073,741,824, Length: 1","764"
"10:46:30.4942437 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-journal","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","764"
"10:46:30.4944494 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-wal","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","764"
"10:46:30.4944852 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000039","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","764"
"10:46:30.4945040 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000047","Offset: 0, Length: 4,096","764"
"10:46:30.4947139 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-wal","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","764"
"10:46:30.4948359 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-wal","0.0001417","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","764"
"10:46:30.4952541 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","764"
"10:46:30.4953902 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000985","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","764"
"10:46:30.4955148 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000042","Exclusive: True, Offset: 128, Length: 1, Fail Immediately: True","764"
"10:46:30.4955370 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000260","EndOfFile: 0","764"
"10:46:30.4955766 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000180","AllocationSize: 0","764"
"10:46:30.4956078 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000021","Offset: 128, Length: 1","764"
"10:46:30.4956206 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000017","Exclusive: False, Offset: 128, Length: 1, Fail Immediately: True","764"
"10:46:30.4956338 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000030","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","764"
"10:46:30.4956479 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000013","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","764"
"10:46:30.4956586 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000017","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","764"
"10:46:30.4956722 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000644","EndOfFile: 32,768","764"
"10:46:30.4957486 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000162","AllocationSize: 32,768","764"
"10:46:30.4957836 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","764"
"10:46:30.4957989 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000022","AllocationSize: 32,768, EndOfFile: 32,768, NumberOfLinks: 1, DeletePending: False, Directory: False","764"
"10:46:30.4958228 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000017","SyncType: SyncTypeOther","764"
"10:46:30.4958693 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000098","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","764"
"10:46:30.4959022 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000021","Exclusive: True, Offset: 121, Length: 2, Fail Immediately: True","764"
"10:46:30.4959133 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000017","Exclusive: True, Offset: 124, Length: 4, Fail Immediately: True","764"
"10:46:30.4959329 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-wal","0.0000026","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","764"
"10:46:30.4959483 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000017","Offset: 121, Length: 2","764"
"10:46:30.4959585 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000013","Offset: 124, Length: 4","764"
"10:46:30.4959683 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000009","Offset: 120, Length: 1","764"
"10:46:30.4959781 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000013","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","764"
"10:46:30.4959931 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000021","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","764"
"10:46:30.4960101 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000056","Offset: 0, Length: 4,096","764"
"10:46:30.4962311 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000026","Offset: 123, Length: 1","764"
"10:46:30.4965554 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","764"
"10:46:30.4965866 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000034","CreationTime: 3/25/2020 10:27:09 AM, LastAccessTime: 3/25/2020 10:27:09 AM, LastWriteTime: 3/25/2020 10:27:15 AM, ChangeTime: 3/25/2020 10:27:15 AM, AllocationSize: 49152, EndOfFile: 49152, FileAttributes: A","764"
"10:46:30.4966006 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000081","","764"
"10:46:30.4968895 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","764"
"10:46:30.4969241 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000034","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","764"
"10:46:30.4969364 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000047","","764"
"10:46:30.4970508 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000141","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","764"
"10:46:30.4970785 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000026","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,815, SectorsPerAllocationUnit: 8, BytesPerSector: 512","764"
"10:46:30.4970917 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000039","","764"
"10:46:30.4972266 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite-shm","0.0000025","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","764"
"10:46:30.4972564 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000034","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 1, DeletePending: False, Directory: False","764"
"10:46:30.4972778 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\2823318777ntouromlalnodry--naod.sqlite","0.0000085","Offset: 20,480, Length: 4,096","764"
"10:46:30.4984848 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0307606","Offset: 12,976,128, Length: 4,096","7760"
"10:46:30.4985360 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0306586","Offset: 12,976,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.4986235 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.4986597 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:30.4986755 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0305810","","5068"
"10:46:30.5175483 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\D3DCompiler_47.dll","0.0265626","Offset: 2,097,152, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:30.5224614 AM","firefox.exe","7384","ReadFile","C:","0.0408128","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:30.5293704 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0217643","Offset: 229,376, Length: 4,096","7760"
"10:46:30.5294020 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0217109","Offset: 229,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.5294920 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000294","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:30.5295556 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000098","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:30.5296575 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000107","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:30.5296814 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.5296942 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Offset: 1,073,741,824, Length: 1","5068"
"10:46:30.5299212 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:30.5301427 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000174","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.5301729 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000039","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:30.5301887 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000056","","5068"
"10:46:30.5302267 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.5302438 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","Offset: 0, Length: 4,096","5068"
"10:46:30.5304614 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.5304917 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000030","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:30.5305053 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000047","","5068"
"10:46:30.5306359 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000217","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:30.5306858 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.5307024 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000039","Offset: 0, Length: 4,096","5068"
"10:46:30.5311603 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.5311901 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:30.5312042 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0199446","","5068"
"10:46:30.5512925 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0022823","Offset: 245,760, Length: 4,096","7760"
"10:46:30.5513292 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0021914","Offset: 245,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.5513425 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\D3DCompiler_47.dll","0.0218526","Offset: 3,145,728, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:30.5515400 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.5515690 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000039","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:30.5515823 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000042","","5068"
"10:46:30.5516962 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000149","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.5517248 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000029","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,815, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5068"
"10:46:30.5517380 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000038","","5068"
"10:46:30.5517871 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.5518400 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.5518557 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","Offset: 8,192, Length: 4,096","5068"
"10:46:30.5518890 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000022","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.5519023 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000029","Offset: 12,288, Length: 4,096","5068"
"10:46:30.5519411 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.5519539 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","Offset: 16,384, Length: 4,096","5068"
"10:46:30.5519876 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:30.5520012 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Offset: 1,073,741,826, Length: 510","5068"
"10:46:30.5520111 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000012","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.5520209 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.5520358 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000060","","5068"
"10:46:30.5520712 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Offset: 1,073,741,825, Length: 1","5068"
"10:46:30.5520810 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Offset: 1,073,741,826, Length: 510","5068"
"10:46:30.5520908 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000009","Offset: 1,073,741,824, Length: 1","5068"
"10:46:30.5521019 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0015258","","5068"
"10:46:30.5536414 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0023257","Offset: 208,896, Length: 4,096","7760"
"10:46:30.5536802 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0022323","Offset: 208,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.5544977 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000251","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.5545463 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000137","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:30.5545740 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000077","","5068"
"10:46:30.5548181 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\idb-deleting-3870112724rsegmnoittet-es","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:30.5550596 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.5550903 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","5068"
"10:46:30.5551035 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0009054","","5068"
"10:46:30.5561787 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004685","Offset: 221,184, Length: 4,096","7760"
"10:46:30.5562636 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003555","Offset: 221,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.5565572 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000311","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.5566135 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000068","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:30.5566421 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000141","","5068"
"10:46:30.5568772 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003750","Offset: 270,336, Length: 4,096","7760"
"10:46:30.5569258 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003051","Offset: 270,336, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.5569736 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000410","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:30.5570816 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000106","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:30.5571695 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:30.5571835 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.5572015 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Offset: 1,073,741,824, Length: 1","5068"
"10:46:30.5573973 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0318567","Offset: 7,884,800, Length: 4,096","7760"
"10:46:30.5574353 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0317636","Offset: 7,884,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.5575236 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:30.5578035 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.5578351 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000085","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:30.5578577 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000136","","5068"
"10:46:30.5579059 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.5579238 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","Offset: 0, Length: 4,096","5068"
"10:46:30.5581346 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.5581619 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000025","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:30.5581747 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000047","","5068"
"10:46:30.5582959 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000230","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:30.5583471 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.5583637 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","Offset: 0, Length: 4,096","5068"
"10:46:30.5588249 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.5588535 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:30.5588667 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0304346","","5068"
"10:46:30.5636778 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\0103A1AC8AAB5A501ED96C1FDBF2A0590E1E931C","0.0000692","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:30.5641937 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\84E17CB3A99455E8CE621F96B5AEFD36542EDADA","0.0000644","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:30.5644232 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\84E17CB3A99455E8CE621F96B5AEFD36542EDADA","0.0191821","Desired Access: Generic Read/Write, Disposition: OverwriteIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","6572"
"10:46:30.5806042 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\D3DCompiler_47.dll","0.0158976","Offset: 4,194,304, Length: 137,728, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:30.5838289 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000209","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:30.5838724 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000039","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,815, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:30.5838912 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000055","","6572"
"10:46:30.5839475 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\84E17CB3A99455E8CE621F96B5AEFD36542EDADA","0.0000717","Offset: 0, Length: 471, Priority: Normal","6572"
"10:46:30.5841865 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000187","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:30.5842236 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000030","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,815, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:30.5842381 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000047","","6572"
"10:46:30.5844809 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000170","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:30.5845116 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000030","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,815, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:30.5845235 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000043","","6572"
"10:46:30.5845769 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\84E17CB3A99455E8CE621F96B5AEFD36542EDADA","0.0009049","Offset: 471, Length: 805, Priority: Normal","6572"
"10:46:30.5855177 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\84E17CB3A99455E8CE621F96B5AEFD36542EDADA","0.0000477","EndOfFile: 1,276","6572"
"10:46:30.5855795 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\84E17CB3A99455E8CE621F96B5AEFD36542EDADA","0.0000218","AllocationSize: 1,276","6572"
"10:46:30.5857745 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000201","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:30.5858129 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000034","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,814, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:30.5858283 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000047","","6572"
"10:46:30.5858756 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\84E17CB3A99455E8CE621F96B5AEFD36542EDADA","0.0000640","","6572"
"10:46:30.5894097 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0017724","Offset: 262,144, Length: 4,096","7760"
"10:46:30.5894520 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0016533","Offset: 262,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.5898095 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.5898581 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000052","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:30.5898761 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000059","","5068"
"10:46:30.5900476 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000205","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.5900851 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000030","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,814, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5068"
"10:46:30.5901001 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000051","","5068"
"10:46:30.5901675 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000042","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.5902315 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.5902541 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000077","Offset: 8,192, Length: 4,096","5068"
"10:46:30.5902942 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.5903079 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","Offset: 12,288, Length: 4,096","5068"
"10:46:30.5903573 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000022","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.5903753 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Offset: 16,384, Length: 4,096","5068"
"10:46:30.5904098 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000039","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:30.5904239 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Offset: 1,073,741,826, Length: 510","5068"
"10:46:30.5904337 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.5904435 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.5904593 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000081","","5068"
"10:46:30.5904964 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Offset: 1,073,741,825, Length: 1","5068"
"10:46:30.5905054 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Offset: 1,073,741,826, Length: 510","5068"
"10:46:30.5905139 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000009","Offset: 1,073,741,824, Length: 1","5068"
"10:46:30.5905242 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0006946","","5068"
"10:46:30.5913233 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000107","Offset: 90,112, Length: 4,096","7760"
"10:46:30.5914547 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004408","Offset: 290,816, Length: 4,096","7760"
"10:46:30.5915076 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003495","Offset: 290,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.5919740 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0142575","Offset: 12,959,744, Length: 4,096","7760"
"10:46:30.5920734 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0140822","Offset: 12,959,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.5921754 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.5922159 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000043","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:30.5922304 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000051","","5068"
"10:46:30.5924766 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\idb-deleting-3870112724rsegmnoittet-es","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:30.5927168 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.5927548 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","5068"
"10:46:30.5927680 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0135096","","5068"
"10:46:30.5980621 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000179","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.5980996 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000158","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:30.5982336 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000192","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:30.5983488 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000115","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.5983766 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000021","Information: DACL","2512"
"10:46:30.5983902 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000047","","2512"
"10:46:30.5985020 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:30.5986023 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000106","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.5986257 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000017","Information: DACL","2512"
"10:46:30.5986372 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000039","","2512"
"10:46:30.5989897 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000153","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:30.5991309 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:30.5992393 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000119","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.5992653 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000021","Information: DACL","2512"
"10:46:30.5992777 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000038","","2512"
"10:46:30.5993843 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:30.5994833 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000107","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.5995068 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000017","Information: DACL","2512"
"10:46:30.5995179 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:30.6064299 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0013116","Offset: 278,528, Length: 4,096","7760"
"10:46:30.6064743 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0012121","Offset: 278,528, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.6067985 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000303","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.6068455 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000042","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:30.6068613 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0009322","","5068"
"10:46:30.6079668 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004236","Offset: 139,264, Length: 4,096","7760"
"10:46:30.6080098 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003516","Offset: 139,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.6081353 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000367","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:30.6082185 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000124","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:30.6083243 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:30.6083495 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.6083729 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","Offset: 1,073,741,824, Length: 1","5068"
"10:46:30.6085666 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0190836","Offset: 12,873,728, Length: 4,096","7760"
"10:46:30.6086119 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0189824","Offset: 12,873,728, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.6088158 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:30.6090479 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.6090799 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000060","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:30.6091051 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000064","","5068"
"10:46:30.6091490 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000035","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.6091682 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000060","Offset: 0, Length: 4,096","5068"
"10:46:30.6093790 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.6094102 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000030","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:30.6094238 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000043","","5068"
"10:46:30.6095463 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000230","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:30.6095988 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000029","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.6096145 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","Offset: 0, Length: 4,096","5068"
"10:46:30.6100762 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.6101061 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000029","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:30.6101193 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0175744","","5068"
"10:46:30.6168163 AM","firefox.exe","7384","ReadFile","C:","0.0218406","Offset: 188,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:30.6277974 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000124","Offset: 118,784, Length: 4,096","7760"
"10:46:30.6278832 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0010461","Offset: 368,640, Length: 4,096","7760"
"10:46:30.6279181 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0009622","Offset: 368,640, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.6281447 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.6281810 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000047","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:30.6281959 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000047","","5068"
"10:46:30.6283363 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000170","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.6283691 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000034","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,814, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5068"
"10:46:30.6283832 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000043","","5068"
"10:46:30.6284587 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.6285219 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000025","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.6285436 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000073","Offset: 8,192, Length: 4,096","5068"
"10:46:30.6286025 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.6286192 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000042","Offset: 12,288, Length: 4,096","5068"
"10:46:30.6286661 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.6286780 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Offset: 16,384, Length: 4,096","5068"
"10:46:30.6287194 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000039","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:30.6287335 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Offset: 1,073,741,826, Length: 510","5068"
"10:46:30.6287437 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.6287536 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.6287693 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000090","","5068"
"10:46:30.6288103 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Offset: 1,073,741,825, Length: 1","5068"
"10:46:30.6288193 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000008","Offset: 1,073,741,826, Length: 510","5068"
"10:46:30.6288274 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000012","Offset: 1,073,741,824, Length: 1","5068"
"10:46:30.6288380 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0001272","","5068"
"10:46:30.6289656 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000073","Offset: 86,016, Length: 4,096","7760"
"10:46:30.6298091 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.6298522 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000060","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:30.6298723 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000068","","5068"
"10:46:30.6302273 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\idb-deleting-3870112724rsegmnoittet-es","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:30.6306057 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000533","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.6306906 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000068","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","5068"
"10:46:30.6307192 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000102","","5068"
"10:46:30.6311254 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.6311672 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:30.6311860 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000077","","5068"
"10:46:30.6312210 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000064","Name: \Windows\System32\sechost.dll","8024"
"10:46:30.6314061 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000291","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:30.6314825 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000128","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:30.6316173 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:30.6316361 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000022","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.6316519 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Offset: 1,073,741,824, Length: 1","5068"
"10:46:30.6319305 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:30.6322714 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.6322889 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000081","Name: \Windows\System32\sechost.dll","8024"
"10:46:30.6323213 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000056","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:30.6323465 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000098","","5068"
"10:46:30.6324246 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000055","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.6324596 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000102","Offset: 0, Length: 4,096","5068"
"10:46:30.6328470 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.6328956 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000052","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:30.6329247 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000221","","5068"
"10:46:30.6331444 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000328","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:30.6332289 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000059","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.6332575 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000102","Offset: 0, Length: 4,096","5068"
"10:46:30.6332916 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6333300 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40561, endtime: 40561, seqnum: 0, connid: 0","0"
"10:46:30.6333995 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6334170 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40561, endtime: 40561, seqnum: 0, connid: 0","0"
"10:46:30.6334751 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6334887 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40561, endtime: 40561, seqnum: 0, connid: 0","0"
"10:46:30.6335173 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6335271 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40561, endtime: 40561, seqnum: 0, connid: 0","0"
"10:46:30.6335843 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6335958 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40561, endtime: 40561, seqnum: 0, connid: 0","0"
"10:46:30.6336031 AM","firefox.exe","7384","ReadFile","C:","0.0505468","Offset: 1,015,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:30.6336402 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6336517 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40561, endtime: 40561, seqnum: 0, connid: 0","0"
"10:46:30.6336982 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6337093 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40561, endtime: 40561, seqnum: 0, connid: 0","0"
"10:46:30.6338578 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000085","Name: \Windows\System32\sechost.dll","8024"
"10:46:30.6340549 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.6340903 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:30.6341052 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","","5068"
"10:46:30.6343207 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.6343459 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000025","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:30.6343574 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000034","","5068"
"10:46:30.6344756 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000175","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.6345076 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000034","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,814, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5068"
"10:46:30.6345247 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000046","","5068"
"10:46:30.6346194 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.6346842 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.6347060 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000072","Offset: 8,192, Length: 4,096","5068"
"10:46:30.6347482 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000022","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.6347653 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","Offset: 12,288, Length: 4,096","5068"
"10:46:30.6348246 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.6348476 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","Offset: 16,384, Length: 4,096","5068"
"10:46:30.6348579 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000081","Name: \Windows\System32\sechost.dll","8024"
"10:46:30.6349078 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:30.6349253 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Offset: 1,073,741,826, Length: 510","5068"
"10:46:30.6349372 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000022","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.6349492 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.6349709 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000103","","5068"
"10:46:30.6350273 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Offset: 1,073,741,825, Length: 1","5068"
"10:46:30.6350379 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","Offset: 1,073,741,826, Length: 510","5068"
"10:46:30.6350507 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Offset: 1,073,741,824, Length: 1","5068"
"10:46:30.6350704 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000098","","5068"
"10:46:30.6356412 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.6356860 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000060","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:30.6357057 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000076","","5068"
"10:46:30.6360479 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6360649 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\idb-deleting-3870112724rsegmnoittet-es","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:30.6360764 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40561, endtime: 40561, seqnum: 0, connid: 0","0"
"10:46:30.6361008 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000085","Name: \Windows\System32\sechost.dll","8024"
"10:46:30.6361460 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6361626 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40561, endtime: 40561, seqnum: 0, connid: 0","0"
"10:46:30.6362599 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6362723 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40561, endtime: 40561, seqnum: 0, connid: 0","0"
"10:46:30.6362983 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6363103 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40561, endtime: 40561, seqnum: 0, connid: 0","0"
"10:46:30.6363670 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6363785 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40561, endtime: 40561, seqnum: 0, connid: 0","0"
"10:46:30.6364860 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6364980 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40561, endtime: 40561, seqnum: 0, connid: 0","0"
"10:46:30.6365001 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.6365385 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6365530 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40561, endtime: 40561, seqnum: 0, connid: 0","0"
"10:46:30.6365650 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000055","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","5068"
"10:46:30.6366759 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000158","","5068"
"10:46:30.6372916 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.6373338 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:30.6373449 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000094","Name: \Windows\System32\sechost.dll","8024"
"10:46:30.6373518 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000072","","5068"
"10:46:30.6375476 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000333","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:30.6376214 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000145","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:30.6377477 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:30.6377703 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.6377899 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","Offset: 1,073,741,824, Length: 1","5068"
"10:46:30.6380750 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0115759","Offset: 12,886,016, Length: 4,096","7760"
"10:46:30.6381176 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0114902","Offset: 12,886,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.6381206 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6381513 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40561, endtime: 40562, seqnum: 0, connid: 0","0"
"10:46:30.6381594 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000290","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:30.6382243 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6382401 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40561, endtime: 40562, seqnum: 0, connid: 0","0"
"10:46:30.6384718 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.6385046 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000038","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:30.6385200 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000064","","5068"
"10:46:30.6385733 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.6386019 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000081","Offset: 0, Length: 4,096","5068"
"10:46:30.6386040 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000064","Name: \Windows\System32\sechost.dll","8024"
"10:46:30.6389560 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.6390004 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000043","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:30.6390367 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000072","","5068"
"10:46:30.6392035 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000307","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:30.6392073 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.1004046","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.6392773 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.6393157 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","Offset: 0, Length: 4,096","5068"
"10:46:30.6394979 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000145","Name: \Windows\System32\sechost.dll","8024"
"10:46:30.6398849 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.6399177 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:30.6399348 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0097314","","5068"
"10:46:30.6400820 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6401106 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40562, endtime: 40562, seqnum: 0, connid: 0","0"
"10:46:30.6401703 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6401938 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40562, endtime: 40562, seqnum: 0, connid: 0","0"
"10:46:30.6498633 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0221155","Offset: 12,926,976, Length: 4,096","7760"
"10:46:30.6499026 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0220216","Offset: 12,926,976, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.6500558 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.6500856 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000047","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:30.6500997 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000043","","5068"
"10:46:30.6502136 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000154","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.6502431 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000025","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,814, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5068"
"10:46:30.6502559 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000038","","5068"
"10:46:30.6503079 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.6503621 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.6503788 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000068","Offset: 8,192, Length: 4,096","5068"
"10:46:30.6504410 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.6504573 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","Offset: 12,288, Length: 4,096","5068"
"10:46:30.6505050 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000035","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.6505238 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","Offset: 16,384, Length: 4,096","5068"
"10:46:30.6505720 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:30.6505921 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000025","Offset: 1,073,741,826, Length: 510","5068"
"10:46:30.6506079 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.6506224 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.6506446 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000089","","5068"
"10:46:30.6506958 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000025","Offset: 1,073,741,825, Length: 1","5068"
"10:46:30.6507103 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Offset: 1,073,741,826, Length: 510","5068"
"10:46:30.6507235 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Offset: 1,073,741,824, Length: 1","5068"
"10:46:30.6507397 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0213116","","5068"
"10:46:30.6545874 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 60, startime: 40562, endtime: 40563, seqnum: 0, connid: 0","0"
"10:46:30.6546092 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 103, startime: 40562, endtime: 40563, seqnum: 0, connid: 0","0"
"10:46:30.6555734 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 359, seqnum: 0, connid: 0","0"
"10:46:30.6555986 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:30.6559011 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6559404 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40563, endtime: 40563, seqnum: 0, connid: 0","0"
"10:46:30.6560120 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6560338 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40563, endtime: 40563, seqnum: 0, connid: 0","0"
"10:46:30.6560684 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6560824 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40563, endtime: 40563, seqnum: 0, connid: 0","0"
"10:46:30.6561511 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6561635 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40563, endtime: 40563, seqnum: 0, connid: 0","0"
"10:46:30.6591370 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 60, startime: 40562, endtime: 40564, seqnum: 0, connid: 0","0"
"10:46:30.6591600 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 105, startime: 40562, endtime: 40564, seqnum: 0, connid: 0","0"
"10:46:30.6607288 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 332, seqnum: 0, connid: 0","0"
"10:46:30.6607536 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:30.6610484 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6610787 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40564, endtime: 40564, seqnum: 0, connid: 0","0"
"10:46:30.6611594 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6611858 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40563, endtime: 40564, seqnum: 0, connid: 0","0"
"10:46:30.6612357 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6612515 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40564, endtime: 40564, seqnum: 0, connid: 0","0"
"10:46:30.6613258 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6613411 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40564, endtime: 40564, seqnum: 0, connid: 0","0"
"10:46:30.6721759 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0010176","Offset: 143,360, Length: 4,096","7760"
"10:46:30.6722267 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0009216","Offset: 143,360, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.6730433 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000687","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.6731572 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000133","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:30.6732072 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000162","","5068"
"10:46:30.6734107 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0006093","Offset: 282,624, Length: 4,096","7760"
"10:46:30.6734922 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004970","Offset: 282,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.6739363 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\idb-deleting-3870112724rsegmnoittet-es","0.0000521","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:30.6743293 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0482817","Offset: 13,922,304, Length: 4,096","7760"
"10:46:30.6744044 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0471826","Offset: 13,922,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.6747316 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000444","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.6748050 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000086","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","5068"
"10:46:30.6748375 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0479317","","5068"
"10:46:30.6843120 AM","firefox.exe","7384","ReadFile","C:","0.1724662","Offset: 843,776, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:30.6869774 AM","firefox.exe","7384","TCP Connect","LAPTOP-49TAGD3F.lan1:49761 -> server-13-227-74-93.sfo20.r.cloudfront.net:https","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65700, rcvwinscale: 8, sndwinscale: 8, seqnum: 0, connid: 0","0"
"10:46:30.6877740 AM","firefox.exe","7384","TCP Connect","LAPTOP-49TAGD3F.lan1:49762 -> server-13-227-74-8.sfo20.r.cloudfront.net:https","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65700, rcvwinscale: 8, sndwinscale: 8, seqnum: 0, connid: 0","0"
"10:46:30.6902670 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6903280 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40567, endtime: 40567, seqnum: 0, connid: 0","0"
"10:46:30.6904424 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6904765 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40567, endtime: 40567, seqnum: 0, connid: 0","0"
"10:46:30.6934913 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6935327 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40567, endtime: 40567, seqnum: 0, connid: 0","0"
"10:46:30.6936215 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.6936466 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40567, endtime: 40567, seqnum: 0, connid: 0","0"
"10:46:30.7127362 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49761 -> server-13-227-74-93.sfo20.r.cloudfront.net:https","0.0000000","Length: 517, startime: 40567, endtime: 40569, seqnum: 0, connid: 0","0"
"10:46:30.7127916 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49762 -> server-13-227-74-8.sfo20.r.cloudfront.net:https","0.0000000","Length: 517, startime: 40567, endtime: 40569, seqnum: 0, connid: 0","0"
"10:46:30.7128245 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49762 -> server-13-227-74-8.sfo20.r.cloudfront.net:https","0.0000000","Length: 2920, seqnum: 0, connid: 0","0"
"10:46:30.7128544 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49762 -> server-13-227-74-8.sfo20.r.cloudfront.net:https","0.0000000","Length: 984, seqnum: 0, connid: 0","0"
"10:46:30.7128765 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49761 -> server-13-227-74-93.sfo20.r.cloudfront.net:https","0.0000000","Length: 2920, seqnum: 0, connid: 0","0"
"10:46:30.7131526 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49761 -> server-13-227-74-93.sfo20.r.cloudfront.net:https","0.0000000","Length: 846, seqnum: 0, connid: 0","0"
"10:46:30.7132563 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000153","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:30.7133224 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000077","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:30.7133698 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 1,073,741,824, Length: 1","2884"
"10:46:30.7140204 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000418","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.7141190 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000124","Offset: 24, Length: 16","2884"
"10:46:30.7145960 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000354","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.7146771 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000089","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:30.7147321 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Offset: 1,073,741,826, Length: 510","2884"
"10:46:30.7148495 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:30.7148763 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:30.7149083 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 1,073,741,824, Length: 1","2884"
"10:46:30.7154191 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000349","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.7155052 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000141","Offset: 24, Length: 16","2884"
"10:46:30.7159413 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000316","Offset: 917,504, Length: 65,536","7900"
"10:46:30.7161926 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0004962","Offset: 983,040, Length: 65,536","7900"
"10:46:30.7162088 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000465","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.7163031 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000085","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:30.7163547 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Offset: 1,073,741,826, Length: 510","2884"
"10:46:30.7167289 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000086","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:30.7167754 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:30.7168189 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000052","Offset: 1,073,741,824, Length: 1","2884"
"10:46:30.7169516 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0002863","Offset: 1,048,576, Length: 65,536","7900"
"10:46:30.7174828 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0114403","Offset: 1,114,112, Length: 65,536","7900"
"10:46:30.7175447 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000410","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.7176445 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000141","Offset: 24, Length: 16","2884"
"10:46:30.7181348 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000333","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.7182129 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000081","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:30.7182628 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 1,073,741,826, Length: 510","2884"
"10:46:30.7184484 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:30.7184765 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:30.7185009 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,824, Length: 1","2884"
"10:46:30.7189975 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.7190764 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000111","Offset: 24, Length: 16","2884"
"10:46:30.7195330 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000315","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.7196047 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000081","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:30.7196529 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 1,073,741,826, Length: 510","2884"
"10:46:30.7200855 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000094","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:30.7201316 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:30.7201704 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 1,073,741,824, Length: 1","8316"
"10:46:30.7208842 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000482","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:30.7209930 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000137","Offset: 24, Length: 16","8316"
"10:46:30.7219146 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000670","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:30.7220734 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000128","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:30.7221544 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000086","Offset: 1,073,741,826, Length: 510","8316"
"10:46:30.7227334 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0023910","Offset: 356,352, Length: 4,096","7760"
"10:46:30.7230325 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0020450","Offset: 356,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.7234732 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000107","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:30.7235300 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:30.7235774 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 1,073,741,824, Length: 1","8316"
"10:46:30.7239200 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000682","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.7240441 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000128","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:30.7240987 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0011657","","5068"
"10:46:30.7243552 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000507","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:30.7244734 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000187","Offset: 24, Length: 16","8316"
"10:46:30.7252017 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000465","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:30.7252354 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0040832","Offset: 159,744, Length: 4,096","7760"
"10:46:30.7253126 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000120","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:30.7253873 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000072","Offset: 1,073,741,826, Length: 510","8316"
"10:46:30.7257495 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000828","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:30.7259334 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000282","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:30.7262777 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000116","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:30.7263298 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000055","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.7263737 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000060","Offset: 1,073,741,824, Length: 1","5068"
"10:46:30.7271579 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000628","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:30.7272339 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.7272970 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40570, endtime: 40570, seqnum: 0, connid: 0","0"
"10:46:30.7276205 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0013777","Offset: 159,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.7277083 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.7277655 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40571, endtime: 40571, seqnum: 0, connid: 0","0"
"10:46:30.7281943 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000145","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","8244"
"10:46:30.7283552 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000123","AllocationSize: 81,920, EndOfFile: 81,920, NumberOfLinks: 1, DeletePending: False, Directory: False","8244"
"10:46:30.7284298 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000073","Offset: 123, Length: 1","8244"
"10:46:30.7285177 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000064","Exclusive: True, Offset: 121, Length: 1, Fail Immediately: True","8244"
"10:46:30.7285288 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.7285595 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000047","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","8244"
"10:46:30.7285787 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40571, endtime: 40571, seqnum: 0, connid: 0","0"
"10:46:30.7285992 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000047","Exclusive: True, Offset: 124, Length: 4, Fail Immediately: True","8244"
"10:46:30.7286393 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0016453","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.7286765 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0001152","EndOfFile: 0","8244"
"10:46:30.7288539 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000116","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:30.7288697 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000777","AllocationSize: 0","8244"
"10:46:30.7289115 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000163","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:30.7289687 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 1,073,741,824, Length: 1","2884"
"10:46:30.7290165 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000081","Offset: 124, Length: 4","8244"
"10:46:30.7290660 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000051","Offset: 120, Length: 1","8244"
"10:46:30.7291040 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000042","Offset: 121, Length: 1","8244"
"10:46:30.7292648 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000350","Offset: 1,179,648, Length: 65,536","7900"
"10:46:30.7296433 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0005512","Offset: 1,245,184, Length: 65,536","7900"
"10:46:30.7296842 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0008483","Offset: 212,992, Length: 4,096","7760"
"10:46:30.7298054 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000542","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.7299227 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000141","Offset: 24, Length: 16","2884"
"10:46:30.7301463 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003392","Offset: 212,992, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.7303456 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000132","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:30.7304053 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000260","","5068"
"10:46:30.7305222 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000320","Offset: 1,310,720, Length: 65,536","7900"
"10:46:30.7307146 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000538","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.7308328 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0446512","Offset: 1,376,256, Length: 65,536","7900"
"10:46:30.7308345 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000107","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:30.7309062 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0610463","Offset: 12,779,520, Length: 4,096","7760"
"10:46:30.7309088 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000089","Offset: 1,073,741,826, Length: 510","2884"
"10:46:30.7309258 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000099","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.7309792 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0608995","Offset: 12,779,520, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.7309903 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000141","Offset: 0, Length: 4,096","5068"
"10:46:30.7315530 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000103","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:30.7316047 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000059","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:30.7316490 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 1,073,741,824, Length: 1","2884"
"10:46:30.7319119 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000631","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.7320262 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000124","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:30.7321154 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000183","","5068"
"10:46:30.7323684 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000469","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.7324802 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000141","Offset: 24, Length: 16","2884"
"10:46:30.7325770 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000781","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:30.7327481 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000111","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.7328292 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000145","Offset: 0, Length: 4,096","5068"
"10:46:30.7331829 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000585","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.7333054 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000119","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:30.7333800 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000086","Offset: 1,073,741,826, Length: 510","2884"
"10:46:30.7335430 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000077","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:30.7335874 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:30.7336275 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 1,073,741,824, Length: 1","2884"
"10:46:30.7346122 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000389","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.7346856 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000649","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.7347010 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000111","Offset: 24, Length: 16","2884"
"10:46:30.7347961 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000116","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:30.7348512 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0571350","","5068"
"10:46:30.7351708 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000332","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.7352476 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000076","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:30.7352958 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000059","Offset: 1,073,741,826, Length: 510","2884"
"10:46:30.7355859 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000077","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:30.7356192 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:30.7356439 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,824, Length: 1","2884"
"10:46:30.7361239 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000350","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.7362054 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000115","Offset: 24, Length: 16","2884"
"10:46:30.7366534 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000325","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.7367281 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000077","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:30.7367742 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 1,073,741,826, Length: 510","2884"
"10:46:30.7369495 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:30.7369764 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:30.7370007 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,824, Length: 1","2884"
"10:46:30.7375392 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000499","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.7376493 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000153","Offset: 24, Length: 16","2884"
"10:46:30.7381207 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000333","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.7381963 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000076","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:30.7382432 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 1,073,741,826, Length: 510","2884"
"10:46:30.7387228 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000093","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:30.7387513 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0260361","Offset: 6,291,456, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:30.7387697 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:30.7388115 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 1,073,741,824, Length: 1","8316"
"10:46:30.7395855 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000516","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:30.7396772 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000115","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, AllocationSize: 294912, EndOfFile: 291839, FileAttributes: A","2512"
"10:46:30.7397003 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000162","Offset: 24, Length: 16","8316"
"10:46:30.7397284 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000184","","2512"
"10:46:30.7403902 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000461","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:30.7403932 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000375","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.7404593 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000072","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:20:29 PM, ChangeTime: 3/20/2019 7:06:10 PM, AllocationSize: 454656, EndOfFile: 452785, FileAttributes: A","2512"
"10:46:30.7404913 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000111","","2512"
"10:46:30.7404960 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000111","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:30.7405664 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000072","Offset: 1,073,741,826, Length: 510","8316"
"10:46:30.7405860 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000120","","2512"
"10:46:30.7406253 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000094","","2512"
"10:46:30.7411317 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.7411902 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000068","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, AllocationSize: 294912, EndOfFile: 291839, FileAttributes: A","2512"
"10:46:30.7412183 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000103","","2512"
"10:46:30.7415264 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000307","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.7415951 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000072","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:30.7416356 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000068","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:30.7416672 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:30.7417158 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","SyncType: SyncTypeOther","2512"
"10:46:30.7417918 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000985","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:30.7418758 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0571730","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:30.7419394 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000090","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:30.7419919 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 1,073,741,824, Length: 1","8316"
"10:46:30.7427505 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000610","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:30.7428836 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000154","Offset: 24, Length: 16","8316"
"10:46:30.7436252 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000478","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:30.7437412 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000115","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:30.7438193 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000077","Offset: 1,073,741,826, Length: 510","8316"
"10:46:30.7456552 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.7458148 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40572, endtime: 40572, seqnum: 0, connid: 0","0"
"10:46:30.7461673 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.7462074 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40572, endtime: 40572, seqnum: 0, connid: 0","0"
"10:46:30.7464838 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000128","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:30.7465257 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:30.7465564 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,824, Length: 1","2884"
"10:46:30.7472361 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000490","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.7473457 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000154","Offset: 24, Length: 16","2884"
"10:46:30.7478257 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000354","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.7479093 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000120","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:30.7479725 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Offset: 1,073,741,826, Length: 510","2884"
"10:46:30.7483177 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.7483629 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40572, endtime: 40573, seqnum: 0, connid: 0","0"
"10:46:30.7484277 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.7484503 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40573, endtime: 40573, seqnum: 0, connid: 0","0"
"10:46:30.7490455 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.7490882 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40573, endtime: 40573, seqnum: 0, connid: 0","0"
"10:46:30.7513218 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49762 -> server-13-227-74-8.sfo20.r.cloudfront.net:https","0.0000000","Length: 126, startime: 40571, endtime: 40573, seqnum: 0, connid: 0","0"
"10:46:30.7513850 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49762 -> server-13-227-74-8.sfo20.r.cloudfront.net:https","0.0000000","Length: 170, seqnum: 0, connid: 0","0"
"10:46:30.7520518 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000163","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:30.7521261 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:30.7521824 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 1,073,741,824, Length: 1","2884"
"10:46:30.7531898 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000584","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.7533340 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000179","Offset: 24, Length: 16","2884"
"10:46:30.7540649 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000507","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.7541886 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000124","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:30.7542769 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000077","Offset: 1,073,741,826, Length: 510","2884"
"10:46:30.7648442 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49761 -> server-13-227-74-93.sfo20.r.cloudfront.net:https","0.0000000","Length: 126, startime: 40572, endtime: 40574, seqnum: 0, connid: 0","0"
"10:46:30.7648792 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49761 -> server-13-227-74-93.sfo20.r.cloudfront.net:https","0.0000000","Length: 170, seqnum: 0, connid: 0","0"
"10:46:30.7649005 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49761 -> server-13-227-74-93.sfo20.r.cloudfront.net:https","0.0000000","Length: 69, seqnum: 0, connid: 0","0"
"10:46:30.7651638 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000068","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:30.7651919 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:30.7652137 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","2884"
"10:46:30.7656066 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.7656711 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000132","Offset: 24, Length: 16","2884"
"10:46:30.7659424 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.7659842 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:30.7660128 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","2884"
"10:46:30.7674742 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49762 -> server-13-227-74-8.sfo20.r.cloudfront.net:https","0.0000000","Length: 447, startime: 40572, endtime: 40575, seqnum: 0, connid: 0","0"
"10:46:30.7675040 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49762 -> server-13-227-74-8.sfo20.r.cloudfront.net:https","0.0000000","Length: 833, seqnum: 0, connid: 0","0"
"10:46:30.7676871 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.7677161 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40574, endtime: 40575, seqnum: 0, connid: 0","0"
"10:46:30.7677797 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.7677950 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40575, endtime: 40575, seqnum: 0, connid: 0","0"
"10:46:30.7710744 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000149","Name: \Windows\System32\sechost.dll","8024"
"10:46:30.7721854 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000107","Name: \Windows\System32\sechost.dll","8024"
"10:46:30.7730166 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.7730460 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40575, endtime: 40575, seqnum: 0, connid: 0","0"
"10:46:30.7731663 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.7731842 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40575, endtime: 40575, seqnum: 0, connid: 0","0"
"10:46:30.7732312 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.7732491 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40575, endtime: 40575, seqnum: 0, connid: 0","0"
"10:46:30.7732918 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.7733024 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40575, endtime: 40575, seqnum: 0, connid: 0","0"
"10:46:30.7733238 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.7733310 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40575, endtime: 40575, seqnum: 0, connid: 0","0"
"10:46:30.7733912 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.7734023 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40575, endtime: 40575, seqnum: 0, connid: 0","0"
"10:46:30.7737794 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000124","Name: \Windows\System32\sechost.dll","8024"
"10:46:30.7744041 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000081","Name: \Windows\System32\sechost.dll","8024"
"10:46:30.7746302 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49761 -> server-13-227-74-93.sfo20.r.cloudfront.net:https","0.0000000","Length: 177, startime: 40573, endtime: 40575, seqnum: 0, connid: 0","0"
"10:46:30.7746520 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49761 -> server-13-227-74-93.sfo20.r.cloudfront.net:https","0.0000000","Length: 300, startime: 40573, endtime: 40575, seqnum: 0, connid: 0","0"
"10:46:30.7746695 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49761 -> server-13-227-74-93.sfo20.r.cloudfront.net:https","0.0000000","Length: 38, seqnum: 0, connid: 0","0"
"10:46:30.7746891 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49761 -> server-13-227-74-93.sfo20.r.cloudfront.net:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:30.7746989 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49761 -> server-13-227-74-93.sfo20.r.cloudfront.net:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:30.7747087 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49761 -> server-13-227-74-93.sfo20.r.cloudfront.net:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:30.7747177 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49761 -> server-13-227-74-93.sfo20.r.cloudfront.net:https","0.0000000","Length: 1335, seqnum: 0, connid: 0","0"
"10:46:30.7747266 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49761 -> server-13-227-74-93.sfo20.r.cloudfront.net:https","0.0000000","Length: 38, seqnum: 0, connid: 0","0"
"10:46:30.7751456 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.7751708 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40575, endtime: 40575, seqnum: 0, connid: 0","0"
"10:46:30.7752284 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.7752416 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40575, endtime: 40575, seqnum: 0, connid: 0","0"
"10:46:30.7757122 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000205","Offset: 1,441,792, Length: 65,536","7900"
"10:46:30.7758117 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.2859272","Offset: 1,507,328, Length: 65,536","7900"
"10:46:30.7759226 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0286221","Offset: 15,335,424, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5728"
"10:46:30.7764845 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.4490080","Offset: 7,340,032, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:30.7909665 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 60, startime: 40575, endtime: 40577, seqnum: 0, connid: 0","0"
"10:46:30.7909895 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 98, startime: 40575, endtime: 40577, seqnum: 0, connid: 0","0"
"10:46:30.7921462 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0026978","Offset: 385,024, Length: 4,096","7760"
"10:46:30.7921897 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0026172","Offset: 385,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.7924001 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.7924376 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000038","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:30.7924525 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000047","","5068"
"10:46:30.7926718 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000278","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.7927222 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000047","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,814, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5068"
"10:46:30.7927401 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000056","","5068"
"10:46:30.7928455 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.7929159 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.7929389 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000081","Offset: 8,192, Length: 4,096","5068"
"10:46:30.7929808 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.7929982 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000035","Offset: 12,288, Length: 4,096","5068"
"10:46:30.7930366 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000022","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.7930486 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Offset: 16,384, Length: 4,096","5068"
"10:46:30.7930832 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:30.7930972 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Offset: 1,073,741,826, Length: 510","5068"
"10:46:30.7931066 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.7931169 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.7931331 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000089","","5068"
"10:46:30.7931723 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Offset: 1,073,741,825, Length: 1","5068"
"10:46:30.7931817 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Offset: 1,073,741,826, Length: 510","5068"
"10:46:30.7931902 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Offset: 1,073,741,824, Length: 1","5068"
"10:46:30.7932009 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0016964","","5068"
"10:46:30.7940577 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 463, seqnum: 0, connid: 0","0"
"10:46:30.7940837 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:30.7949741 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003990","Offset: 163,840, Length: 4,096","7760"
"10:46:30.7950181 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003268","Offset: 163,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.7954000 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.7954349 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000047","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:30.7954439 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000081","Offset: 81,920, Length: 4,096","7760"
"10:46:30.7954503 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000043","","5068"
"10:46:30.7955450 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004971","Offset: 376,832, Length: 4,096","7760"
"10:46:30.7955856 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004377","Offset: 376,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.7957242 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\idb-deleting-3870112724rsegmnoittet-es","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:30.7959691 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.7959994 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","5068"
"10:46:30.7960263 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000593","","5068"
"10:46:30.7961539 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0748148","Offset: 12,689,408, Length: 4,096","7760"
"10:46:30.7961842 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0747269","Offset: 12,689,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.7964244 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.7964572 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:30.7964722 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0745404","","5068"
"10:46:30.7991444 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0631604","Offset: 262,144, Length: 29,695, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:30.8056703 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 5124","5728"
"10:46:30.8065825 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000145","Name: \Windows\System32\sechost.dll","8024"
"10:46:30.8073803 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000154","Name: \Windows\System32\sechost.dll","8024"
"10:46:30.8080383 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.8080686 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40579, endtime: 40579, seqnum: 0, connid: 0","0"
"10:46:30.8081372 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.8081616 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40579, endtime: 40579, seqnum: 0, connid: 0","0"
"10:46:30.8125626 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 5316","5728"
"10:46:30.8192357 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000068","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:30.8192562 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:30.8192707 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5316"
"10:46:30.8195532 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:30.8195954 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","5316"
"10:46:30.8197865 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:30.8198194 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:30.8198437 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","5316"
"10:46:30.8198915 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:30.8199022 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:30.8199111 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5316"
"10:46:30.8201257 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:30.8201590 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5316"
"10:46:30.8204048 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:30.8204402 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:30.8204624 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5316"
"10:46:30.8206305 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:30.8206416 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:30.8206514 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5316"
"10:46:30.8208613 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:30.8208967 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 24, Length: 16","5316"
"10:46:30.8210781 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:30.8211079 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:30.8211271 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5316"
"10:46:30.8212415 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:30.8212513 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:30.8212603 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5316"
"10:46:30.8214463 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:30.8214766 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5316"
"10:46:30.8216532 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:30.8216814 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:30.8216993 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5316"
"10:46:30.8217782 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:30.8217889 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:30.8217979 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5316"
"10:46:30.8219835 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:30.8220129 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5316"
"10:46:30.8221887 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:30.8222168 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:30.8222339 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5316"
"10:46:30.8222732 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:30.8222830 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:30.8222919 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5316"
"10:46:30.8224814 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:30.8225108 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5316"
"10:46:30.8226870 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:30.8227148 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:30.8227323 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5316"
"10:46:30.8228513 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:30.8228615 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:30.8228705 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5316"
"10:46:30.8230685 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:30.8230988 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5316"
"10:46:30.8232763 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:30.8233040 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:30.8233215 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5316"
"10:46:30.8233855 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:30.8233957 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:30.8234047 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5316"
"10:46:30.8235869 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:30.8236167 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000154","Offset: 24, Length: 16","5316"
"10:46:30.8238096 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:30.8238377 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:30.8238548 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5316"
"10:46:30.8239350 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:30.8239453 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:30.8239542 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5316"
"10:46:30.8241385 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:30.8241680 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5316"
"10:46:30.8243446 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:30.8243724 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:30.8243903 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5316"
"10:46:30.8244871 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:30.8244974 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:30.8245072 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5316"
"10:46:30.8246928 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:30.8247222 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5316"
"10:46:30.8249091 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:30.8249467 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:30.8249714 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 60, startime: 40579, endtime: 40580, seqnum: 0, connid: 0","0"
"10:46:30.8249731 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","5316"
"10:46:30.8249949 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 113, startime: 40579, endtime: 40580, seqnum: 0, connid: 0","0"
"10:46:30.8251028 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:30.8251148 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:30.8251246 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5316"
"10:46:30.8253221 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:30.8253533 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5316"
"10:46:30.8255342 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:30.8255628 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:30.8255815 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5316"
"10:46:30.8256818 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:30.8256929 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:30.8257031 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5316"
"10:46:30.8258960 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:30.8259267 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5316"
"10:46:30.8261336 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:30.8261648 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:30.8261844 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5316"
"10:46:30.8302574 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 451, seqnum: 0, connid: 0","0"
"10:46:30.8302860 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:30.8305671 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.8305906 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40581, endtime: 40581, seqnum: 0, connid: 0","0"
"10:46:30.8306461 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.8306614 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40581, endtime: 40581, seqnum: 0, connid: 0","0"
"10:46:30.8306870 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.8306947 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40581, endtime: 40581, seqnum: 0, connid: 0","0"
"10:46:30.8307378 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.8307472 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40581, endtime: 40581, seqnum: 0, connid: 0","0"
"10:46:30.8312677 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49761 -> server-13-227-74-93.sfo20.r.cloudfront.net:https","0.0000000","Length: 38, startime: 40574, endtime: 40581, seqnum: 0, connid: 0","0"
"10:46:30.8611041 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\66FBB24C787EF71B6675C33194023E740024755B","0.0240389","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:30.8624998 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0358084","Offset: 32,768, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:30.8657975 AM","firefox.exe","7384","TCP Connect","LAPTOP-49TAGD3F.lan1:49763 -> ec2-52-88-126-42.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65700, rcvwinscale: 8, sndwinscale: 8, seqnum: 0, connid: 0","0"
"10:46:30.8661444 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.8661695 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40584, endtime: 40584, seqnum: 0, connid: 0","0"
"10:46:30.8662493 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.8662600 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40584, endtime: 40584, seqnum: 0, connid: 0","0"
"10:46:30.8688443 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\addonStartup.json.lz4.tmp","0.0117338","Desired Access: Generic Write, Read Attributes, Disposition: OverwriteIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: 0, OpenResult: Created","4904"
"10:46:30.8710378 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0200773","Offset: 12,808,192, Length: 4,096","7760"
"10:46:30.8710980 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0199364","Offset: 12,808,192, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.8808806 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000512","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:30.8809954 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000204","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:30.8811366 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000115","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:30.8811729 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000029","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.8812373 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Offset: 1,073,741,824, Length: 1","5068"
"10:46:30.8812471 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\addonStartup.json.lz4.tmp","0.0000081","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","4904"
"10:46:30.8814762 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\addonStartup.json.lz4.tmp","0.0001097","Offset: 0, Length: 1,988, Priority: Normal","4904"
"10:46:30.8816008 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:30.8816303 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\addonStartup.json.lz4.tmp","0.0000499","","4904"
"10:46:30.8820241 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000456","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.8820928 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000055","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:30.8821184 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000068","","5068"
"10:46:30.8821777 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.8821990 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\addonStartup.json.lz4.tmp","0.0000324","Desired Access: Read Attributes, Delete, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4904"
"10:46:30.8822063 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000081","Offset: 0, Length: 4,096","5068"
"10:46:30.8822493 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\addonStartup.json.lz4.tmp","0.0000052","Attributes: A, ReparseTag: 0x0","4904"
"10:46:30.8822737 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\addonStartup.json.lz4.tmp","0.0000034","CreationTime: 3/26/2020 10:46:30 AM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, FileAttributes: A","4904"
"10:46:30.8824793 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000171","Desired Access: Write Data/Add File, Synchronize, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","4904"
"10:46:30.8825638 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.8826001 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000038","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:30.8826176 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000055","","5068"
"10:46:30.8827733 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000260","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:30.8828339 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.8828535 AM","firefox.exe","7384","SetRenameInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\addonStartup.json.lz4.tmp","0.0002325","ReplaceIfExists: True, FileName: C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\addonStartup.json.lz4","4904"
"10:46:30.8828612 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000077","Offset: 0, Length: 4,096","5068"
"10:46:30.8830963 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000196","","4904"
"10:46:30.8831458 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\addonStartup.json.lz4","0.0000298","","4904"
"10:46:30.8834636 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000278","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.8835097 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000060","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:30.8835328 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0076215","","5068"
"10:46:30.8851891 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\66FBB24C787EF71B6675C33194023E740024755B","0.0000072","CreationTime: 3/25/2020 10:25:14 AM, LastAccessTime: 3/25/2020 10:25:14 AM, LastWriteTime: 3/26/2020 10:35:12 AM, ChangeTime: 3/26/2020 10:35:12 AM, AllocationSize: 16384, EndOfFile: 14199, FileAttributes: A","6572"
"10:46:30.8852134 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\66FBB24C787EF71B6675C33194023E740024755B","0.0000107","","6572"
"10:46:30.8854408 AM","firefox.exe","7384","ReadFile","C:","0.0010910","Offset: 569,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:30.8866124 AM","firefox.exe","7384","ReadFile","C:","0.0004690","Offset: 323,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:30.8873766 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B555235EB5230B93242A83F624CFE5AF42CB966B","0.0150046","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:30.8913173 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0440628","Offset: 12,857,344, Length: 4,096","7760"
"10:46:30.8913591 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0438759","Offset: 12,857,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.8915665 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.8916027 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000043","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:30.8916172 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000047","","5068"
"10:46:30.8917593 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000184","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.8917956 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000034","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,814, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5068"
"10:46:30.8918105 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000043","","5068"
"10:46:30.8918711 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.8919671 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.8919889 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000081","Offset: 8,192, Length: 4,096","5068"
"10:46:30.8920350 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000029","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.8920503 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000039","Offset: 12,288, Length: 4,096","5068"
"10:46:30.8920930 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.8921062 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","Offset: 16,384, Length: 4,096","5068"
"10:46:30.8921403 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000035","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:30.8921540 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Offset: 1,073,741,826, Length: 510","5068"
"10:46:30.8921689 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.8921787 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.8921945 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000090","","5068"
"10:46:30.8922427 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000018","Offset: 1,073,741,825, Length: 1","5068"
"10:46:30.8922526 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","Offset: 1,073,741,826, Length: 510","5068"
"10:46:30.8922641 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Offset: 1,073,741,824, Length: 1","5068"
"10:46:30.8922747 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0431306","","5068"
"10:46:30.8984145 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0221867","Offset: 77,824, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:30.9024141 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B555235EB5230B93242A83F624CFE5AF42CB966B","0.0000064","CreationTime: 3/25/2020 10:31:41 AM, LastAccessTime: 3/26/2020 10:35:12 AM, LastWriteTime: 3/26/2020 10:35:16 AM, ChangeTime: 3/26/2020 10:35:16 AM, AllocationSize: 12288, EndOfFile: 9827, FileAttributes: A","6572"
"10:46:30.9024367 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B555235EB5230B93242A83F624CFE5AF42CB966B","0.0000111","","6572"
"10:46:30.9026833 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\66FBB24C787EF71B6675C33194023E740024755B","0.0000307","Desired Access: Generic Read/Write, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:30.9027456 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\66FBB24C787EF71B6675C33194023E740024755B","0.0667644","Offset: 12,288, Length: 1,911, Priority: Normal","6572"
"10:46:30.9027989 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\66FBB24C787EF71B6675C33194023E740024755B","0.0666326","Offset: 12,288, Length: 1,911, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:30.9045807 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49763 -> ec2-52-88-126-42.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 213, startime: 40584, endtime: 40588, seqnum: 0, connid: 0","0"
"10:46:30.9081404 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49763 -> ec2-52-88-126-42.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:30.9081647 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49763 -> ec2-52-88-126-42.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:30.9081754 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49763 -> ec2-52-88-126-42.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 483, seqnum: 0, connid: 0","0"
"10:46:30.9083550 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000068","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:30.9083789 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:30.9083951 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","2884"
"10:46:30.9087731 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.9088503 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000090","Offset: 24, Length: 16","2884"
"10:46:30.9091166 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.9091610 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:30.9091891 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","2884"
"10:46:30.9092561 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:30.9092676 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:30.9092770 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","2884"
"10:46:30.9094720 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.9095040 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","2884"
"10:46:30.9096849 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.9097143 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:30.9097331 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","2884"
"10:46:30.9098590 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:30.9098709 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:30.9098812 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","2884"
"10:46:30.9100715 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.9101035 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","2884"
"10:46:30.9102874 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.9103172 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:30.9103356 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","2884"
"10:46:30.9104115 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:30.9104277 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:30.9104418 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","2884"
"10:46:30.9106816 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.9107174 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","2884"
"10:46:30.9109047 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.9109346 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:30.9109551 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","2884"
"10:46:30.9111748 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:30.9111940 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:30.9112081 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","8316"
"10:46:30.9115072 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:30.9115477 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","8316"
"10:46:30.9117427 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:30.9117751 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000035","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:30.9117969 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","8316"
"10:46:30.9120055 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:30.9120192 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:30.9120307 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","8316"
"10:46:30.9122402 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:30.9122748 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","8316"
"10:46:30.9124629 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:30.9124949 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:30.9125146 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","8316"
"10:46:30.9134379 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000102","Name: \Windows\System32\sechost.dll","8024"
"10:46:30.9146812 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.9147076 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40589, endtime: 40589, seqnum: 0, connid: 0","0"
"10:46:30.9147874 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.9148117 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40589, endtime: 40589, seqnum: 0, connid: 0","0"
"10:46:30.9148553 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.9148676 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40589, endtime: 40589, seqnum: 0, connid: 0","0"
"10:46:30.9149214 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.9149316 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40589, endtime: 40589, seqnum: 0, connid: 0","0"
"10:46:30.9207006 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0006600","Offset: 126,976, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:30.9214712 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0081676","Offset: 159,744, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:30.9297131 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0005615","Offset: 229,376, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:30.9304734 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000068","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:30.9304999 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000089","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, FileAttributes: A, AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x300000006193f, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:30.9307115 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000222","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9307699 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:30.9307921 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:30.9308083 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000022","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:30.9308288 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:30.9309432 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000106","","2512"
"10:46:30.9311420 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000205","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9312120 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000111","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:30.9312674 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000069","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:30.9312883 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:30.9313092 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:30.9313570 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000081","","2512"
"10:46:30.9316416 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9316736 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:30.9316877 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:30.9316984 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:30.9317159 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:30.9317875 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0109330","Offset: 65,536, Length: 61,440, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:30.9344841 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49760 -> 72.21.91.29:http","0.0000000","Length: 381, startime: 40589, endtime: 40591, seqnum: 0, connid: 0","0"
"10:46:30.9345464 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49760 -> 72.21.91.29:http","0.0000000","Length: 799, seqnum: 0, connid: 0","0"
"10:46:30.9347320 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.9347640 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40591, endtime: 40591, seqnum: 0, connid: 0","0"
"10:46:30.9348574 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.9348770 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40591, endtime: 40591, seqnum: 0, connid: 0","0"
"10:46:30.9355205 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0224030","Offset: 12,939,264, Length: 4,096","7760"
"10:46:30.9355554 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0223109","Offset: 12,939,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.9355870 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.9356190 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40591, endtime: 40591, seqnum: 0, connid: 0","0"
"10:46:30.9357666 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:30.9357897 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40591, endtime: 40591, seqnum: 0, connid: 0","0"
"10:46:30.9359386 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:30.9359629 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:30.9359834 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","2884"
"10:46:30.9360000 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000350","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.9360534 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000055","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:30.9360734 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000068","","5068"
"10:46:30.9363904 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.9364421 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","2884"
"10:46:30.9364672 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\idb-deleting-3870112724rsegmnoittet-es","0.0000346","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:30.9366742 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:30.9367096 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:30.9367347 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","2884"
"10:46:30.9367552 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.9367932 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","5068"
"10:46:30.9368077 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0211653","","5068"
"10:46:30.9428834 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0013402","Offset: 192,512, Length: 36,864, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:30.9444032 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000154","","2512"
"10:46:30.9487066 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000209","","2512"
"10:46:30.9487881 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","","2512"
"10:46:30.9491759 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9492071 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000043","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","2512"
"10:46:30.9492212 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000047","","2512"
"10:46:30.9494243 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9494464 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000030","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","2512"
"10:46:30.9494584 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000038","","2512"
"10:46:30.9496901 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9497101 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000030","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","2512"
"10:46:30.9497212 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000034","","2512"
"10:46:30.9497575 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9497797 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000132","Filter: Windows, 1: Windows","2512"
"10:46:30.9498048 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:30.9499013 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9499239 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000115","Filter: System32, 1: System32","2512"
"10:46:30.9499465 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:30.9501654 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9501987 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:30.9502102 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000042","","2512"
"10:46:30.9502456 AM","firefox.exe","7384","CreateFile","C:\","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9502674 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000192","Filter: Windows, 1: Windows","2512"
"10:46:30.9503318 AM","firefox.exe","7384","CloseFile","C:\","0.0000166","","2512"
"10:46:30.9504820 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9505114 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000124","Filter: System32, 1: System32","2512"
"10:46:30.9505362 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000046","","2512"
"10:46:30.9506411 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9506650 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\cryptsp.dll","0.0000137","Filter: cryptsp.dll, 1: cryptsp.dll","2512"
"10:46:30.9506898 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:30.9508715 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9509039 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000035","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:30.9509150 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000047","","2512"
"10:46:30.9509513 AM","firefox.exe","7384","CreateFile","C:\","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9509709 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:30.9509910 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:30.9510904 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9511117 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:30.9511318 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:30.9512256 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000099","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9512466 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\cryptsp.dll","0.0000119","Filter: cryptsp.dll, 1: cryptsp.dll","2512"
"10:46:30.9512687 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:30.9513938 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000123","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9514322 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptsp.dll","0.0000034","AllocationSize: 81,920, EndOfFile: 79,696, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:30.9514501 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:30.9514624 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptsp.dll","0.0000022","AllocationSize: 81,920, EndOfFile: 79,696, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:30.9514821 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:30.9515320 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000055","","2512"
"10:46:30.9516604 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9516975 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptsp.dll","0.0000030","AllocationSize: 81,920, EndOfFile: 79,696, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:30.9517125 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:30.9517240 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptsp.dll","0.0000017","AllocationSize: 81,920, EndOfFile: 79,696, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:30.9517423 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:30.9517957 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptsp.dll","0.0000021","AllocationSize: 81,920, EndOfFile: 79,696, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:30.9518085 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000055","","2512"
"10:46:30.9519446 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9519813 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptsp.dll","0.0000025","AllocationSize: 81,920, EndOfFile: 79,696, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:30.9519949 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:30.9520060 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptsp.dll","0.0000017","AllocationSize: 81,920, EndOfFile: 79,696, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:30.9520235 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:30.9522940 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000056","","2512"
"10:46:30.9526362 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9526695 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:30.9526819 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000047","","2512"
"10:46:30.9527058 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49763 -> ec2-52-88-126-42.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 126, startime: 40589, endtime: 40593, seqnum: 0, connid: 0","0"
"10:46:30.9527343 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49763 -> ec2-52-88-126-42.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 51, seqnum: 0, connid: 0","0"
"10:46:30.9529012 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9529323 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:30.9529434 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000043","","2512"
"10:46:30.9531469 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9531747 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:30.9531853 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000039","","2512"
"10:46:30.9532216 AM","firefox.exe","7384","CreateFile","C:\","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9532429 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000124","Filter: Windows, 1: Windows","2512"
"10:46:30.9532664 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:30.9533586 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9533807 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000103","Filter: System32, 1: System32","2512"
"10:46:30.9534012 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:30.9534951 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9535156 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\cryptsp.dll","0.0000123","Filter: cryptsp.dll, 1: cryptsp.dll","2512"
"10:46:30.9535386 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:30.9537549 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9537758 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:30.9537865 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000038","","2512"
"10:46:30.9538825 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9539043 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\xul.dll","0.0000093","Filter: xul.dll, 1: xul.dll","2512"
"10:46:30.9539247 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000039","","2512"
"10:46:30.9540864 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9541052 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:30.9541150 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000039","","2512"
"10:46:30.9542144 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000099","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9542354 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\xul.dll","0.0000085","Filter: xul.dll, 1: xul.dll","2512"
"10:46:30.9542546 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000038","","2512"
"10:46:30.9543595 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9543855 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000030","AllocationSize: 109,776,896, EndOfFile: 109,775,560, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:30.9544022 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:30.9544141 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000017","AllocationSize: 109,776,896, EndOfFile: 109,775,560, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:30.9544333 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:30.9546027 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000081","","2512"
"10:46:30.9547789 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000167","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9548186 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000039","AllocationSize: 109,776,896, EndOfFile: 109,775,560, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:30.9548348 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:30.9548468 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000017","AllocationSize: 109,776,896, EndOfFile: 109,775,560, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:30.9548651 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:30.9549603 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\xul.dll","0.0372757","Offset: 109,744,128, Length: 31,432, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:30.9580634 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0216406","Offset: 12,906,496, Length: 4,096","7760"
"10:46:30.9581057 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0215432","Offset: 12,906,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.9584547 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.9585059 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:30.9585242 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0212212","","5068"
"10:46:30.9697247 AM","firefox.exe","7384","ReadFile","C:","0.0269534","Offset: 233,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:30.9802151 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000657","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:30.9803734 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000342","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:30.9805850 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000073","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:30.9806141 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000025","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.9806350 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000025","Offset: 1,073,741,824, Length: 1","5068"
"10:46:30.9810429 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000285","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:30.9814405 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000290","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.9814913 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000064","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:30.9815165 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000093","","5068"
"10:46:30.9815805 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.9816095 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000085","Offset: 0, Length: 4,096","5068"
"10:46:30.9819662 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.9820165 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000060","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:30.9820434 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000081","","5068"
"10:46:30.9822563 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000397","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:30.9823408 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.9823681 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000072","Offset: 0, Length: 4,096","5068"
"10:46:30.9830943 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.9831408 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:30.9831638 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000090","","5068"
"10:46:30.9835103 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.9835504 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000051","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:30.9835700 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000077","","5068"
"10:46:30.9837624 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000226","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:30.9838060 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000046","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,814, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5068"
"10:46:30.9838264 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000073","","5068"
"10:46:30.9838956 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000055","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.9840547 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.9840841 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000099","Offset: 8,192, Length: 4,096","5068"
"10:46:30.9841490 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.9841733 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000060","Offset: 12,288, Length: 4,096","5068"
"10:46:30.9842356 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:30.9842574 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","Offset: 16,384, Length: 4,096","5068"
"10:46:30.9843107 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:30.9843320 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Offset: 1,073,741,826, Length: 510","5068"
"10:46:30.9843585 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.9843764 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:30.9843999 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000106","","5068"
"10:46:30.9844575 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000025","Offset: 1,073,741,825, Length: 1","5068"
"10:46:30.9844754 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Offset: 1,073,741,826, Length: 510","5068"
"10:46:30.9844899 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Offset: 1,073,741,824, Length: 1","5068"
"10:46:30.9845091 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000090","","5068"
"10:46:30.9852110 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000106","Offset: 77,824, Length: 4,096","7760"
"10:46:30.9852660 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0266868","Offset: 12,783,616, Length: 4,096","7760"
"10:46:30.9852980 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0265733","Offset: 12,783,616, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:30.9924157 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000132","AllocationSize: 109,776,896, EndOfFile: 109,775,560, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:30.9924746 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000234","","2512"
"10:46:30.9929208 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000389","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9930113 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000077","AllocationSize: 109,776,896, EndOfFile: 109,775,560, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:30.9930518 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000064","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:30.9930817 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000047","AllocationSize: 109,776,896, EndOfFile: 109,775,560, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:30.9931282 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000038","SyncType: SyncTypeOther","2512"
"10:46:30.9939530 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000183","","2512"
"10:46:30.9947547 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000298","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9948093 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000072","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:30.9948370 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000107","","2512"
"10:46:30.9952500 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9952957 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000059","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:30.9953200 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000090","","2512"
"10:46:30.9957590 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9958021 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000056","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:30.9958243 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000090","","2512"
"10:46:30.9960428 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000230","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9960953 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\xul.dll","0.0000256","Filter: xul.dll, 1: xul.dll","2512"
"10:46:30.9961486 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000089","","2512"
"10:46:30.9965573 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9965991 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000060","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:30.9966209 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000085","","2512"
"10:46:30.9968411 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000234","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9968927 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\xul.dll","0.0000226","Filter: xul.dll, 1: xul.dll","2512"
"10:46:30.9969413 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000090","","2512"
"10:46:30.9972707 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\09303C7A3F0AE07B6776096B98D9A4418F764393","0.0000427","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:30.9974491 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KBDUS.DLL","0.0000371","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9975408 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KBDUS.DLL","0.0000081","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","2512"
"10:46:30.9975698 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KBDUS.DLL","0.0000115","","2512"
"10:46:30.9976645 AM","firefox.exe","7384","CreateFile","C:\","0.0000218","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9977140 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000243","Filter: Windows, 1: Windows","2512"
"10:46:30.9977635 AM","firefox.exe","7384","CloseFile","C:\","0.0000090","","2512"
"10:46:30.9979180 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\0103A1AC8AAB5A501ED96C1FDBF2A0590E1E931C","0.0000354","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:30.9979841 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000222","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9980332 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000239","Filter: System32, 1: System32","2512"
"10:46:30.9980874 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000106","","2512"
"10:46:30.9982759 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B555235EB5230B93242A83F624CFE5AF42CB966B","0.0000487","Desired Access: Generic Read/Write, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:30.9983310 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000230","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9983762 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B555235EB5230B93242A83F624CFE5AF42CB966B","0.0278080","Offset: 8,192, Length: 1,635, Priority: Normal","6572"
"10:46:30.9983813 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\KBDUS.DLL","0.0000299","Filter: KBDUS.DLL, 1: KBDUS.DLL","2512"
"10:46:30.9984338 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000085","","2512"
"10:46:30.9984688 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B555235EB5230B93242A83F624CFE5AF42CB966B","0.0276655","Offset: 8,192, Length: 1,635, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:30.9988353 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KBDUS.DLL","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9988997 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KBDUS.DLL","0.0000064","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","2512"
"10:46:30.9989232 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KBDUS.DLL","0.0000094","","2512"
"10:46:30.9990013 AM","firefox.exe","7384","CreateFile","C:\","0.0000188","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9990439 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000227","Filter: Windows, 1: Windows","2512"
"10:46:30.9990896 AM","firefox.exe","7384","CloseFile","C:\","0.0000081","","2512"
"10:46:30.9992889 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000209","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9993341 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000217","Filter: System32, 1: System32","2512"
"10:46:30.9993785 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000085","","2512"
"10:46:30.9995824 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000209","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9996272 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\KBDUS.DLL","0.0000239","Filter: KBDUS.DLL, 1: KBDUS.DLL","2512"
"10:46:30.9996733 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000081","","2512"
"10:46:30.9999156 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KBDUS.DLL","0.0000261","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:30.9999946 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KBDUS.DLL","0.0000064","AllocationSize: 12,288, EndOfFile: 9,728, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.0000321 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KBDUS.DLL","0.0000060","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.0000590 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KBDUS.DLL","0.0000047","AllocationSize: 12,288, EndOfFile: 9,728, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.0001012 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KBDUS.DLL","0.0000039","SyncType: SyncTypeOther","2512"
"10:46:31.0001989 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KBDUS.DLL","0.0000120","","2512"
"10:46:31.0004750 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KBDUS.DLL","0.0000260","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.0005565 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KBDUS.DLL","0.0000060","AllocationSize: 12,288, EndOfFile: 9,728, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.0005881 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KBDUS.DLL","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.0006124 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KBDUS.DLL","0.0000042","AllocationSize: 12,288, EndOfFile: 9,728, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.0006538 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KBDUS.DLL","0.0000034","SyncType: SyncTypeOther","2512"
"10:46:31.0007536 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KBDUS.DLL","0.0000162","","2512"
"10:46:31.0012665 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000298","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.0013181 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000060","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:31.0013424 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000081","","2512"
"10:46:31.0018271 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000380","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.0018962 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000086","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:31.0019342 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000115","","2512"
"10:46:31.0022512 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KBDUS.DLL","0.0000269","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.0023370 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KBDUS.DLL","0.0000064","AllocationSize: 12,288, EndOfFile: 9,728, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.0023720 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KBDUS.DLL","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.0023971 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KBDUS.DLL","0.0000043","AllocationSize: 12,288, EndOfFile: 9,728, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.0024381 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KBDUS.DLL","0.0000034","SyncType: SyncTypeOther","2512"
"10:46:31.0025981 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KBDUS.DLL","0.0000047","AllocationSize: 12,288, EndOfFile: 9,728, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.0026262 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KBDUS.DLL","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.0026480 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KBDUS.DLL","0.0000034","AllocationSize: 12,288, EndOfFile: 9,728, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.0026856 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KBDUS.DLL","0.0000029","SyncType: SyncTypeOther","2512"
"10:46:31.0027363 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\KBDUS.DLL","0.0000371","Offset: 0, Length: 9,728, Priority: Normal","2512"
"10:46:31.0032261 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000278","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.0032837 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000265","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:31.0035350 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000380","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:31.0037727 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000243","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.0038269 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000055","Information: DACL","2512"
"10:46:31.0038538 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000085","","2512"
"10:46:31.0040901 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000291","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:31.0043248 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000239","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.0043760 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000047","Information: DACL","2512"
"10:46:31.0044008 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000081","","2512"
"10:46:31.0050945 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000320","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:31.0053808 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000329","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:31.0056146 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000252","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.0056688 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000051","Information: DACL","2512"
"10:46:31.0056948 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000090","","2512"
"10:46:31.0059291 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000294","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:31.0061437 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000230","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.0061932 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000038","Information: DACL","2512"
"10:46:31.0062175 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000081","","2512"
"10:46:31.0072645 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0015~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000333","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.0073230 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0015~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000081","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:19:44 PM, ChangeTime: 3/20/2019 7:09:04 PM, AllocationSize: 630784, EndOfFile: 629106, FileAttributes: A","2512"
"10:46:31.0073520 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0015~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000115","","2512"
"10:46:31.0077940 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0773616","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.0120577 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0017835","Offset: 204,800, Length: 4,096","7760"
"10:46:31.0121286 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0016716","Offset: 204,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.0141881 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004104","Offset: 249,856, Length: 4,096","7760"
"10:46:31.0142546 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003051","Offset: 249,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.0144330 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49763 -> ec2-52-88-126-42.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 764, startime: 40591, endtime: 40599, seqnum: 0, connid: 0","0"
"10:46:31.0148302 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0202270","Offset: 12,963,840, Length: 4,096","7760"
"10:46:31.0149096 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0200870","Offset: 12,963,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.0263157 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\66FBB24C787EF71B6675C33194023E740024755B","0.1519775","Offset: 5,340, Length: 6,948","6572"
"10:46:31.0263972 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\66FBB24C787EF71B6675C33194023E740024755B","0.1518120","Offset: 4,096, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:31.0352057 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0021410","Offset: 172,032, Length: 4,096","7760"
"10:46:31.0352505 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0020369","Offset: 172,032, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.0374896 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0959618","Offset: 12,877,824, Length: 4,096","7760"
"10:46:31.0375344 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0958525","Offset: 12,877,824, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.0618942 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000392","Offset: 1,572,864, Length: 65,536","7900"
"10:46:31.0620874 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0019013","Offset: 1,638,400, Length: 65,536","7900"
"10:46:31.0641081 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000197","Offset: 1,703,936, Length: 65,536","7900"
"10:46:31.0641948 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000123","Offset: 1,769,472, Length: 65,536","7900"
"10:46:31.0642890 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000116","Offset: 1,835,008, Length: 65,536","7900"
"10:46:31.0643974 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0455813","Offset: 1,900,544, Length: 65,536","7900"
"10:46:31.0764525 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000128","Name: \Windows\System32\sechost.dll","8024"
"10:46:31.0772712 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000094","Name: \Windows\System32\sechost.dll","8024"
"10:46:31.0779334 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:31.0780192 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40606, endtime: 40606, seqnum: 0, connid: 0","0"
"10:46:31.0781280 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:31.0781485 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40606, endtime: 40606, seqnum: 0, connid: 0","0"
"10:46:31.0783661 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000158","Name: \Windows\System32\sechost.dll","8024"
"10:46:31.0792314 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000098","Name: \Windows\System32\sechost.dll","8024"
"10:46:31.0798641 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:31.0798974 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40606, endtime: 40606, seqnum: 0, connid: 0","0"
"10:46:31.0799733 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:31.0799955 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40606, endtime: 40606, seqnum: 0, connid: 0","0"
"10:46:31.0800800 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000132","Name: \Windows\System32\sechost.dll","8024"
"10:46:31.0809316 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000107","Name: \Windows\System32\sechost.dll","8024"
"10:46:31.0815439 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:31.0815785 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40606, endtime: 40606, seqnum: 0, connid: 0","0"
"10:46:31.0816736 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:31.0817073 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40606, endtime: 40606, seqnum: 0, connid: 0","0"
"10:46:31.0818054 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000124","Name: \Windows\System32\sechost.dll","8024"
"10:46:31.0827910 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000380","Name: \Windows\System32\sechost.dll","8024"
"10:46:31.0834447 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:31.0834810 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40606, endtime: 40606, seqnum: 0, connid: 0","0"
"10:46:31.0836094 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:31.0836388 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40606, endtime: 40606, seqnum: 0, connid: 0","0"
"10:46:31.0838714 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000153","Name: \Windows\System32\sechost.dll","8024"
"10:46:31.0846206 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49763 -> ec2-52-88-126-42.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 270, seqnum: 0, connid: 0","0"
"10:46:31.0847810 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:31.0847989 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000141","Name: \Windows\System32\sechost.dll","8024"
"10:46:31.0848173 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40606, endtime: 40606, seqnum: 0, connid: 0","0"
"10:46:31.0849060 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:31.0849265 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40606, endtime: 40606, seqnum: 0, connid: 0","0"
"10:46:31.0851983 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000085","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:22:04 PM, ChangeTime: 3/20/2019 7:07:20 PM, AllocationSize: 307200, EndOfFile: 303891, FileAttributes: A","2512"
"10:46:31.0852333 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000175","","2512"
"10:46:31.0855678 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000154","","2512"
"10:46:31.0856105 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0008234","","2512"
"10:46:31.0860576 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:31.0860913 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40606, endtime: 40606, seqnum: 0, connid: 0","0"
"10:46:31.0862040 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:31.0862330 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40606, endtime: 40606, seqnum: 0, connid: 0","0"
"10:46:31.0862338 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000128","Name: \Windows\System32\sechost.dll","8024"
"10:46:31.0869728 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.0870189 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000068","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:22:04 PM, ChangeTime: 3/20/2019 7:07:20 PM, AllocationSize: 307200, EndOfFile: 303891, FileAttributes: A","2512"
"10:46:31.0870436 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000081","","2512"
"10:46:31.0872612 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000290","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.0873018 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000094","Name: \Windows\System32\sechost.dll","8024"
"10:46:31.0873167 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","AllocationSize: 307,200, EndOfFile: 303,891, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.0873427 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.0873641 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","AllocationSize: 307,200, EndOfFile: 303,891, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.0873961 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:31.0874588 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0571009","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:31.0880864 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:31.0881240 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40606, endtime: 40607, seqnum: 0, connid: 0","0"
"10:46:31.0882101 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:31.0882404 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000137","Name: \Windows\System32\sechost.dll","8024"
"10:46:31.0882417 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40606, endtime: 40607, seqnum: 0, connid: 0","0"
"10:46:31.0891322 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000111","Name: \Windows\System32\sechost.dll","8024"
"10:46:31.0897927 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:31.0898247 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40607, endtime: 40607, seqnum: 0, connid: 0","0"
"10:46:31.0899049 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:31.0899326 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40606, endtime: 40607, seqnum: 0, connid: 0","0"
"10:46:31.0991836 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 60, startime: 40606, endtime: 40608, seqnum: 0, connid: 0","0"
"10:46:31.0992096 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 81, startime: 40606, endtime: 40608, seqnum: 0, connid: 0","0"
"10:46:31.0992297 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 204, seqnum: 0, connid: 0","0"
"10:46:31.0992429 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:31.1002110 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 60, startime: 40606, endtime: 40608, seqnum: 0, connid: 0","0"
"10:46:31.1002375 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 90, startime: 40606, endtime: 40608, seqnum: 0, connid: 0","0"
"10:46:31.1002481 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 60, startime: 40606, endtime: 40608, seqnum: 0, connid: 0","0"
"10:46:31.1002554 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 87, startime: 40606, endtime: 40608, seqnum: 0, connid: 0","0"
"10:46:31.1002618 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 60, startime: 40606, endtime: 40608, seqnum: 0, connid: 0","0"
"10:46:31.1002673 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 83, startime: 40606, endtime: 40608, seqnum: 0, connid: 0","0"
"10:46:31.1050605 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 56, startime: 40606, endtime: 40608, seqnum: 0, connid: 0","0"
"10:46:31.1050857 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 87, startime: 40606, endtime: 40608, seqnum: 0, connid: 0","0"
"10:46:31.1050968 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 56, startime: 40607, endtime: 40608, seqnum: 0, connid: 0","0"
"10:46:31.1051040 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 83, startime: 40607, endtime: 40608, seqnum: 0, connid: 0","0"
"10:46:31.1062740 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 331, seqnum: 0, connid: 0","0"
"10:46:31.1063188 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:31.1074353 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000141","Name: \Windows\System32\sechost.dll","8024"
"10:46:31.1081564 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000081","Name: \Windows\System32\sechost.dll","8024"
"10:46:31.1088561 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:31.1088911 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40608, endtime: 40609, seqnum: 0, connid: 0","0"
"10:46:31.1089671 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:31.1089846 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40609, endtime: 40609, seqnum: 0, connid: 0","0"
"10:46:31.1096177 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 331, seqnum: 0, connid: 0","0"
"10:46:31.1096395 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:31.1096502 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 331, seqnum: 0, connid: 0","0"
"10:46:31.1096578 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:31.1102228 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000238","Offset: 1,966,080, Length: 65,536","7900"
"10:46:31.1103136 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0068480","Offset: 2,031,616, Length: 65,536","7900"
"10:46:31.1105231 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000120","Name: \Windows\System32\sechost.dll","8024"
"10:46:31.1111943 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 60, startime: 40607, endtime: 40609, seqnum: 0, connid: 0","0"
"10:46:31.1112216 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 88, startime: 40607, endtime: 40609, seqnum: 0, connid: 0","0"
"10:46:31.1113210 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000102","Name: \Windows\System32\sechost.dll","8024"
"10:46:31.1120630 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:31.1121295 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40609, endtime: 40609, seqnum: 0, connid: 0","0"
"10:46:31.1122170 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:31.1122473 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40609, endtime: 40609, seqnum: 0, connid: 0","0"
"10:46:31.1142479 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 332, seqnum: 0, connid: 0","0"
"10:46:31.1142735 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:31.1157361 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000133","Name: \Windows\System32\sechost.dll","8024"
"10:46:31.1163296 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:31.1163578 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40609, endtime: 40609, seqnum: 0, connid: 0","0"
"10:46:31.1164316 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:31.1164576 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40609, endtime: 40609, seqnum: 0, connid: 0","0"
"10:46:31.1168775 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 205, seqnum: 0, connid: 0","0"
"10:46:31.1168984 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:31.1173106 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0001177","Offset: 2,097,152, Length: 65,536","7900"
"10:46:31.1175602 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0174425","Offset: 2,162,688, Length: 65,536","7900"
"10:46:31.1231900 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 322, seqnum: 0, connid: 0","0"
"10:46:31.1232135 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:31.1325626 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 56, startime: 40609, endtime: 40611, seqnum: 0, connid: 0","0"
"10:46:31.1325891 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 85, startime: 40609, endtime: 40611, seqnum: 0, connid: 0","0"
"10:46:31.1326006 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 60, startime: 40609, endtime: 40611, seqnum: 0, connid: 0","0"
"10:46:31.1326087 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 91, startime: 40609, endtime: 40611, seqnum: 0, connid: 0","0"
"10:46:31.1326147 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 60, startime: 40609, endtime: 40611, seqnum: 0, connid: 0","0"
"10:46:31.1326198 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 100, startime: 40609, endtime: 40611, seqnum: 0, connid: 0","0"
"10:46:31.1336912 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0216687","Offset: 12,881,920, Length: 4,096","7760"
"10:46:31.1337368 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0215945","Offset: 12,881,920, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.1351405 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000201","Offset: 2,228,224, Length: 65,536","7900"
"10:46:31.1352613 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0005739","Offset: 2,293,760, Length: 65,536","7900"
"10:46:31.1359947 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000205","Offset: 2,359,296, Length: 65,536","7900"
"10:46:31.1361389 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0004306","Offset: 2,424,832, Length: 65,536","7900"
"10:46:31.1367802 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000214","Offset: 2,490,368, Length: 65,536","7900"
"10:46:31.1368984 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0005299","Offset: 2,555,904, Length: 65,536","7900"
"10:46:31.1375930 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000197","Offset: 2,621,440, Length: 65,536","7900"
"10:46:31.1377159 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.1215575","Offset: 2,686,976, Length: 65,536","7900"
"10:46:31.1378563 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 195, seqnum: 0, connid: 0","0"
"10:46:31.1378857 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:31.1408191 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 323, seqnum: 0, connid: 0","0"
"10:46:31.1408502 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:31.1408639 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 323, seqnum: 0, connid: 0","0"
"10:46:31.1408750 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:31.1447026 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0018325","Offset: 274,432, Length: 29,459, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:31.1466815 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0039611","Offset: 32,768, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:31.1507715 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0006601","Offset: 90,112, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:31.1516163 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0005329","Offset: 122,880, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:31.1522883 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0005845","Offset: 155,648, Length: 65,536, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:31.1530230 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0005159","Offset: 221,184, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:31.1537048 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0004800","Offset: 253,952, Length: 20,480, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:31.1543167 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000072","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:31.1543504 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000102","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:22:04 PM, ChangeTime: 3/20/2019 7:07:20 PM, FileAttributes: A, AllocationSize: 307,200, EndOfFile: 303,891, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x3000000060d4f, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:31.1546418 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000277","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.1547049 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000052","AllocationSize: 307,200, EndOfFile: 303,891, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.1547352 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.1547591 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","AllocationSize: 307,200, EndOfFile: 303,891, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.1548039 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","SyncType: SyncTypeOther","2512"
"10:46:31.1549848 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000197","","2512"
"10:46:31.1553902 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000260","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.1554456 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","AllocationSize: 307,200, EndOfFile: 303,891, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.1554712 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000035","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.1554883 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 307,200, EndOfFile: 303,891, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.1555156 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:31.1555412 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0932072","Offset: 13,828,096, Length: 4,096","7760"
"10:46:31.1555689 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000077","","2512"
"10:46:31.1556189 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0930147","Offset: 13,828,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.1559094 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000192","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.1559500 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","AllocationSize: 307,200, EndOfFile: 303,891, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.1559683 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.1559820 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","AllocationSize: 307,200, EndOfFile: 303,891, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.1560050 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:31.1561228 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0008362","Offset: 65,536, Length: 24,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:31.1572547 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000188","","2512"
"10:46:31.1627591 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KBDUS.DLL","0.0000192","","2512"
"10:46:31.1628837 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0018~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000069","","2512"
"10:46:31.1635476 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KBDUS.DLL","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.1635993 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KBDUS.DLL","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","2512"
"10:46:31.1636176 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KBDUS.DLL","0.0000055","","2512"
"10:46:31.1637883 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KBDUS.DLL","0.0000158","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.1638361 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KBDUS.DLL","0.0000034","SyncType: SyncTypeOther","2512"
"10:46:31.1639069 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KBDUS.DLL","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.1639312 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KBDUS.DLL","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:31.1639709 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\KBDUS.DLL","0.0000055","Name: \Windows\System32\KBDUS.DLL","2512"
"10:46:31.1640016 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KBDUS.DLL","0.0000064","","2512"
"10:46:31.1642734 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KBDUS.DLL","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.1643114 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KBDUS.DLL","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","2512"
"10:46:31.1643259 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KBDUS.DLL","0.0000055","","2512"
"10:46:31.1644603 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KBDUS.DLL","0.0000149","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.1645059 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KBDUS.DLL","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.1645307 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KBDUS.DLL","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:31.1645648 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\KBDUS.DLL","0.0000051","Name: \Windows\System32\KBDUS.DLL","2512"
"10:46:31.1645908 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KBDUS.DLL","0.0000060","","2512"
"10:46:31.1648780 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KBDUS.DLL","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.1649151 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KBDUS.DLL","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","2512"
"10:46:31.1649292 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KBDUS.DLL","0.0000055","","2512"
"10:46:31.1649770 AM","firefox.exe","7384","CreateFile","C:\","0.0000119","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.1650047 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000175","Filter: Windows, 1: Windows","2512"
"10:46:31.1650371 AM","firefox.exe","7384","CloseFile","C:\","0.0000047","","2512"
"10:46:31.1651570 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.1651860 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000128","Filter: System32, 1: System32","2512"
"10:46:31.1652125 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000047","","2512"
"10:46:31.1653328 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.1653605 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\KBDUS.DLL","0.0000218","Filter: KBDUS.DLL, 1: KBDUS.DLL","2512"
"10:46:31.1653955 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000051","","2512"
"10:46:31.1656374 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\KBDUS.DLL","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2512"
"10:46:31.1658981 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.1659391 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000043","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:31.1659540 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000056","","2512"
"10:46:31.1660005 AM","firefox.exe","7384","CreateFile","C:\","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.1660253 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000128","Filter: Windows, 1: Windows","2512"
"10:46:31.1660517 AM","firefox.exe","7384","CloseFile","C:\","0.0000052","","2512"
"10:46:31.1661699 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.1661977 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000123","Filter: System32, 1: System32","2512"
"10:46:31.1662233 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000046","","2512"
"10:46:31.1663850 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000192","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.1664238 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\DWrite.dll","0.0000205","Filter: DWrite.dll, 1: DWrite.dll","2512"
"10:46:31.1664626 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000064","","2512"
"10:46:31.1667097 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.1667515 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000042","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:31.1667660 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000059","","2512"
"10:46:31.1668129 AM","firefox.exe","7384","CreateFile","C:\","0.0000166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.1668547 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000209","Filter: Windows, 1: Windows","2512"
"10:46:31.1668940 AM","firefox.exe","7384","CloseFile","C:\","0.0000059","","2512"
"10:46:31.1670305 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.1670574 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000132","Filter: System32, 1: System32","2512"
"10:46:31.1670834 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000051","","2512"
"10:46:31.1672016 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.1672281 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\DWrite.dll","0.0000145","Filter: DWrite.dll, 1: DWrite.dll","2512"
"10:46:31.1672558 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000047","","2512"
"10:46:31.1674038 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000167","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.1674512 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000038","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.1674738 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.1674900 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000026","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.1675152 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:31.1676069 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000069","","2512"
"10:46:31.1677729 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000158","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.1678215 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000035","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.1678412 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.1678561 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000026","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.1678800 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:31.1679602 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000068","","2512"
"10:46:31.1682192 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.1682486 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000035","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:31.1682623 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000047","","2512"
"10:46:31.1684850 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.1685128 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000029","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:31.1685256 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000046","","2512"
"10:46:31.1686642 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000154","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.1687099 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000034","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.1687286 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.1687432 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000021","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.1687662 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:31.1688874 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000030","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.1689036 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.1689164 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000021","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.1689386 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:31.1691455 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DWrite.dll","0.0195606","Offset: 0, Length: 524,288, Priority: Normal","2512"
"10:46:31.1692697 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DWrite.dll","0.0191880","Offset: 32,768, Length: 491,520, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2512"
"10:46:31.1789055 AM","firefox.exe","7384","ReadFile","C:","0.0260135","Offset: 122,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:31.2050154 AM","firefox.exe","7384","ReadFile","C:","0.0263373","Offset: 339,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:31.2323405 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\8AB558F1D90FA1F641D7460FD77CC7F99121FF6E","0.0000857","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:31.2325461 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B555235EB5230B93242A83F624CFE5AF42CB966B","0.0504389","Offset: 11, Length: 8,181","6572"
"10:46:31.2326460 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B555235EB5230B93242A83F624CFE5AF42CB966B","0.0503134","Offset: 0, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:31.2471535 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DWrite.dll","0.0519318","Offset: 1,572,864, Length: 524,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:31.2488725 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0934316","Offset: 12,890,112, Length: 4,096","7760"
"10:46:31.2489702 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0933130","Offset: 12,890,112, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.2566464 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0187068","Offset: 8,388,608, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:31.2596779 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000234","Offset: 2,752,512, Length: 65,536","7900"
"10:46:31.2598033 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.2754833","Offset: 2,818,048, Length: 65,536","7900"
"10:46:31.2831501 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\66FBB24C787EF71B6675C33194023E740024755B","0.0571035","Offset: 0, Length: 5,340","6572"
"10:46:31.2831979 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\66FBB24C787EF71B6675C33194023E740024755B","0.0570096","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:31.2929763 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0668617","Offset: 9,437,184, Length: 1,015,808, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:31.3037880 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DWrite.dll","0.0255390","Offset: 2,097,152, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:31.3383297 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DWrite.dll","0.0011883","Offset: 3,145,728, Length: 67,072, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:31.3403585 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B555235EB5230B93242A83F624CFE5AF42CB966B","0.0000175","Offset: 0, Length: 11","6572"
"10:46:31.3408611 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\09303C7A3F0AE07B6776096B98D9A4418F764393","0.0000325","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:31.3409196 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000269","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.3409776 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000444","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:31.3410962 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\09303C7A3F0AE07B6776096B98D9A4418F764393","0.0002091","Desired Access: Generic Read/Write, Disposition: OverwriteIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","6572"
"10:46:31.3412033 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000265","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:31.3414064 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000201","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.3414542 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000043","Information: DACL","2512"
"10:46:31.3414777 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000230","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:31.3414798 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000073","","2512"
"10:46:31.3415208 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000042","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,815, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:31.3415421 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000068","","6572"
"10:46:31.3415950 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\09303C7A3F0AE07B6776096B98D9A4418F764393","0.0000879","Offset: 0, Length: 471, Priority: Normal","6572"
"10:46:31.3416880 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000256","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:31.3418450 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000231","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:31.3418664 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000187","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.3418890 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000042","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,815, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:31.3419073 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000039","Information: DACL","2512"
"10:46:31.3419103 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000064","","6572"
"10:46:31.3419299 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000052","","2512"
"10:46:31.3420400 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\66FBB24C787EF71B6675C33194023E740024755B","0.0000444","Offset: 5,340, Length: 8,859, Priority: Normal","6572"
"10:46:31.3421108 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\66FBB24C787EF71B6675C33194023E740024755B","0.0000547","EndOfFile: 14,199","6572"
"10:46:31.3421855 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\66FBB24C787EF71B6675C33194023E740024755B","0.0000376","AllocationSize: 14,199","6572"
"10:46:31.3422772 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B555235EB5230B93242A83F624CFE5AF42CB966B","0.0000384","Offset: 11, Length: 9,816, Priority: Normal","6572"
"10:46:31.3423387 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B555235EB5230B93242A83F624CFE5AF42CB966B","0.0000469","EndOfFile: 9,827","6572"
"10:46:31.3423540 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000103","Offset: 98,304, Length: 4,096","7760"
"10:46:31.3424035 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B555235EB5230B93242A83F624CFE5AF42CB966B","0.0000346","AllocationSize: 9,827","6572"
"10:46:31.3425157 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000261","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:31.3426071 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0017868","Offset: 147,456, Length: 4,096","7760"
"10:46:31.3426715 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0016870","Offset: 147,456, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.3426894 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000277","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:31.3427410 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000034","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,815, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:31.3427547 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000252","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:31.3427572 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000069","","6572"
"10:46:31.3428123 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\09303C7A3F0AE07B6776096B98D9A4418F764393","0.0019520","Offset: 471, Length: 805, Priority: Normal","6572"
"10:46:31.3429125 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000167","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.3429509 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000035","Information: DACL","2512"
"10:46:31.3429689 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000055","","2512"
"10:46:31.3431161 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000187","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:31.3432462 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000149","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.3432773 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000026","Information: DACL","2512"
"10:46:31.3432927 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000051","","2512"
"10:46:31.3445160 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0745562","Offset: 12,820,480, Length: 4,096","7760"
"10:46:31.3447545 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0742260","Offset: 12,820,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.3448176 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\09303C7A3F0AE07B6776096B98D9A4418F764393","0.0000700","EndOfFile: 1,276","6572"
"10:46:31.3449247 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\09303C7A3F0AE07B6776096B98D9A4418F764393","0.0000363","AllocationSize: 1,276","6572"
"10:46:31.3452187 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000307","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:31.3452733 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000047","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,814, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:31.3452916 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000077","","6572"
"10:46:31.3453531 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\66FBB24C787EF71B6675C33194023E740024755B","0.0000422","","6572"
"10:46:31.3454260 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B555235EB5230B93242A83F624CFE5AF42CB966B","0.0000218","","6572"
"10:46:31.3454717 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\09303C7A3F0AE07B6776096B98D9A4418F764393","0.0000563","","6572"
"10:46:31.3707534 AM","firefox.exe","7384","ReadFile","C:","0.0005099","Offset: 757,760, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:31.3714276 AM","firefox.exe","7384","ReadFile","C:","0.0004454","Offset: 753,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:31.3725331 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0413679","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.3900524 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0157761","Offset: 10,518,528, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:31.4062462 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0218475","Offset: 10,551,296, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:31.4140247 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000210","CreationTime: 3/20/2019 7:27:26 PM, LastAccessTime: 3/20/2019 7:42:46 PM, LastWriteTime: 1/10/2019 4:06:49 AM, ChangeTime: 3/20/2019 7:42:30 PM, AllocationSize: 28672, EndOfFile: 26225, FileAttributes: A","2512"
"10:46:31.4141425 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000384","","2512"
"10:46:31.4147100 AM","firefox.exe","7384","ReadFile","C:","0.0005538","Offset: 802,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:31.4154844 AM","firefox.exe","7384","ReadFile","C:","0.0006387","Offset: 765,952, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:31.4172294 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1405_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0456790","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.4196512 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0008738","Offset: 274,432, Length: 4,096","7760"
"10:46:31.4197826 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0006524","Offset: 274,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.4211727 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0210048","Offset: 5,537,792, Length: 4,096","7760"
"10:46:31.4213604 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0207198","Offset: 5,537,792, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.4284115 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0222733","Offset: 10,584,064, Length: 86,016, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:31.4427446 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0643158","Offset: 12,845,056, Length: 4,096","7760"
"10:46:31.4429076 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0640675","Offset: 12,845,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.4562674 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0283132","Offset: 10,670,080, Length: 172,032, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:31.4630868 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1405_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000256","CreationTime: 4/25/2019 5:40:17 PM, LastAccessTime: 4/25/2019 5:40:17 PM, LastWriteTime: 4/3/2019 9:55:05 AM, ChangeTime: 4/25/2019 8:12:15 PM, AllocationSize: 28672, EndOfFile: 26417, FileAttributes: A","2512"
"10:46:31.4631943 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1405_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000405","","2512"
"10:46:31.4634857 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000324","","2512"
"10:46:31.4636094 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000333","","2512"
"10:46:31.4650431 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000721","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.4651698 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000158","CreationTime: 3/20/2019 7:27:26 PM, LastAccessTime: 3/20/2019 7:42:46 PM, LastWriteTime: 1/10/2019 4:06:49 AM, ChangeTime: 3/20/2019 7:42:30 PM, AllocationSize: 28672, EndOfFile: 26225, FileAttributes: A","2512"
"10:46:31.4652338 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000256","","2512"
"10:46:31.4659403 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000670","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.4661020 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000145","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.4661844 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000132","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.4662445 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000099","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.4663431 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000077","SyncType: SyncTypeOther","2512"
"10:46:31.4665424 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0270127","Offset: 0, Length: 26,225, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:31.4923660 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0032623","Offset: 10,842,112, Length: 344,064, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:31.4938811 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000247","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:31.4939911 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000342","CreationTime: 3/20/2019 7:27:26 PM, LastAccessTime: 3/20/2019 7:42:46 PM, LastWriteTime: 1/10/2019 4:06:49 AM, ChangeTime: 3/20/2019 7:42:30 PM, FileAttributes: A, AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x200000006f2f0, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:31.4948150 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000837","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.4949942 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000154","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.4950855 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000141","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.4951512 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000103","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.4952481 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000077","SyncType: SyncTypeOther","2512"
"10:46:31.4955463 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000329","","2512"
"10:46:31.4965046 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000960","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.4967077 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000192","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.4968212 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000179","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.4969125 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000162","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.4970653 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000115","SyncType: SyncTypeOther","2512"
"10:46:31.4973213 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000375","","2512"
"10:46:31.4987344 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000883","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.4989797 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000188","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.4991210 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000217","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.4992101 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000175","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.4993748 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000137","SyncType: SyncTypeOther","2512"
"10:46:31.5005729 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000521","","2512"
"10:46:31.5024387 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000389","","2512"
"10:46:31.5026273 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000205","","2512"
"10:46:31.5039743 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000734","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5041518 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000171","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:31.5042175 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000222","","2512"
"10:46:31.5055914 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0001711","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5059058 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000239","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:31.5059971 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000290","","2512"
"10:46:31.5073300 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000922","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5075442 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0442347","Offset: 12,967,936, Length: 4,096","7760"
"10:46:31.5075587 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000192","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:31.5076466 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000342","","2512"
"10:46:31.5077111 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0440303","Offset: 12,967,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.5079227 AM","firefox.exe","7384","CreateFile","C:\","0.0000563","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5080434 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000615","Filter: Windows, 1: Windows","2512"
"10:46:31.5081680 AM","firefox.exe","7384","CloseFile","C:\","0.0000226","","2512"
"10:46:31.5086651 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000529","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5087777 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000521","Filter: System32, 1: System32","2512"
"10:46:31.5088848 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000196","","2512"
"10:46:31.5093610 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000499","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5094702 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\DWrite.dll","0.0000563","Filter: DWrite.dll, 1: DWrite.dll","2512"
"10:46:31.5095799 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000183","","2512"
"10:46:31.5104631 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\dwrite.dll","0.0000486","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2512"
"10:46:31.5113881 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000618","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5115404 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000153","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:31.5115984 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000218","","2512"
"10:46:31.5117806 AM","firefox.exe","7384","CreateFile","C:\","0.0000422","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5118800 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000512","Filter: Windows, 1: Windows","2512"
"10:46:31.5119858 AM","firefox.exe","7384","CloseFile","C:\","0.0000197","","2512"
"10:46:31.5125934 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000649","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5126753 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0908904","Offset: 11,186,176, Length: 688,128, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:31.5127334 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000657","Filter: System32, 1: System32","2512"
"10:46:31.5128707 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0001059","","2512"
"10:46:31.5136511 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000730","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5137962 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\psapi.dll","0.0000665","Filter: psapi.dll, 1: psapi.dll","2512"
"10:46:31.5139229 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000201","","2512"
"10:46:31.5147442 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000598","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5148846 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000145","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:31.5149350 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000200","","2512"
"10:46:31.5151069 AM","firefox.exe","7384","CreateFile","C:\","0.0001054","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5153450 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000682","Filter: Windows, 1: Windows","2512"
"10:46:31.5154926 AM","firefox.exe","7384","CloseFile","C:\","0.0000312","","2512"
"10:46:31.5160298 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000542","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5161428 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000474","Filter: System32, 1: System32","2512"
"10:46:31.5162457 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000192","","2512"
"10:46:31.5166775 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000490","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5167794 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\psapi.dll","0.0000525","Filter: psapi.dll, 1: psapi.dll","2512"
"10:46:31.5168810 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000171","","2512"
"10:46:31.5173806 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000576","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5175449 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\psapi.dll","0.0000136","AllocationSize: 20,480, EndOfFile: 18,712, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.5176170 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\psapi.dll","0.0000119","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.5176686 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\psapi.dll","0.0000094","AllocationSize: 20,480, EndOfFile: 18,712, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.5177497 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\psapi.dll","0.0000068","SyncType: SyncTypeOther","2512"
"10:46:31.5179327 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000260","","2512"
"10:46:31.5185215 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000559","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5186866 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\psapi.dll","0.0000128","AllocationSize: 20,480, EndOfFile: 18,712, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.5187489 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\psapi.dll","0.0000098","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.5187954 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\psapi.dll","0.0000081","AllocationSize: 20,480, EndOfFile: 18,712, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.5188739 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\psapi.dll","0.0000060","SyncType: SyncTypeOther","2512"
"10:46:31.5190864 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\psapi.dll","0.0000090","AllocationSize: 20,480, EndOfFile: 18,712, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.5191406 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000248","","2512"
"10:46:31.5196607 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000542","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5198160 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\psapi.dll","0.0000120","AllocationSize: 20,480, EndOfFile: 18,712, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.5200042 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\psapi.dll","0.0000119","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.5200661 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\psapi.dll","0.0000123","AllocationSize: 20,480, EndOfFile: 18,712, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.5201855 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\psapi.dll","0.0000167","SyncType: SyncTypeOther","2512"
"10:46:31.5218363 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000363","","2512"
"10:46:31.5233134 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000598","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5234564 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000162","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:31.5235127 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000205","","2512"
"10:46:31.5243336 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000490","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5244539 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000119","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:31.5245000 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000179","","2512"
"10:46:31.5253465 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000482","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5254642 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000120","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:31.5255099 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000183","","2512"
"10:46:31.5256780 AM","firefox.exe","7384","CreateFile","C:\","0.0000397","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5257706 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000491","Filter: Windows, 1: Windows","2512"
"10:46:31.5258687 AM","firefox.exe","7384","CloseFile","C:\","0.0000167","","2512"
"10:46:31.5262660 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000426","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5263590 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000435","Filter: System32, 1: System32","2512"
"10:46:31.5264481 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000171","","2512"
"10:46:31.5268479 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000418","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5269371 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\psapi.dll","0.0000495","Filter: psapi.dll, 1: psapi.dll","2512"
"10:46:31.5270305 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000167","","2512"
"10:46:31.5285341 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\psapi.dll","0.0000555","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2512"
"10:46:31.5296755 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000695","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5298419 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000174","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","2512"
"10:46:31.5299029 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000239","","2512"
"10:46:31.5300927 AM","firefox.exe","7384","CreateFile","C:\","0.0000440","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5302143 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000559","Filter: Windows, 1: Windows","2512"
"10:46:31.5303193 AM","firefox.exe","7384","CloseFile","C:\","0.0000171","","2512"
"10:46:31.5308863 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000269","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5309439 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000256","Filter: System32, 1: System32","2512"
"10:46:31.5309977 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000102","","2512"
"10:46:31.5312289 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000180","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5312673 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\NapiNSP.dll","0.0000218","Filter: NapiNSP.dll, 1: NapiNSP.dll","2512"
"10:46:31.5313083 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000064","","2512"
"10:46:31.5316424 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5316961 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000056","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","2512"
"10:46:31.5317153 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000077","","2512"
"10:46:31.5317772 AM","firefox.exe","7384","CreateFile","C:\","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5318105 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000166","Filter: Windows, 1: Windows","2512"
"10:46:31.5318451 AM","firefox.exe","7384","CloseFile","C:\","0.0000064","","2512"
"10:46:31.5320038 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000162","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5320388 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000166","Filter: System32, 1: System32","2512"
"10:46:31.5320733 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000064","","2512"
"10:46:31.5322316 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000162","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5322666 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\NapiNSP.dll","0.0000196","Filter: NapiNSP.dll, 1: NapiNSP.dll","2512"
"10:46:31.5323037 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000064","","2512"
"10:46:31.5325119 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000214","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5325755 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000056","AllocationSize: 69,632, EndOfFile: 67,072, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.5326062 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.5326276 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000034","AllocationSize: 69,632, EndOfFile: 67,072, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.5326621 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:31.5327726 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000098","","2512"
"10:46:31.5329868 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000205","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5330512 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000047","AllocationSize: 69,632, EndOfFile: 67,072, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.5330764 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.5330960 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000030","AllocationSize: 69,632, EndOfFile: 67,072, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.5331285 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:31.5333717 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000209","","2512"
"10:46:31.5340317 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000354","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5340991 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000086","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:31.5341333 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000119","","2512"
"10:46:31.5346367 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000325","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5346990 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000081","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:31.5347306 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000094","","2512"
"10:46:31.5355187 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000401","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5355374 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000359","Offset: 2,883,584, Length: 65,536","7900"
"10:46:31.5356475 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000098","AllocationSize: 69,632, EndOfFile: 67,072, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.5356962 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000076","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.5357235 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.1983302","Offset: 2,949,120, Length: 65,536","7900"
"10:46:31.5357264 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000043","AllocationSize: 69,632, EndOfFile: 67,072, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.5357631 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:31.5359184 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000077","AllocationSize: 69,632, EndOfFile: 67,072, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.5359445 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.5359628 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000034","AllocationSize: 69,632, EndOfFile: 67,072, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.5359982 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:31.5360994 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\NapiNSP.dll","0.0249596","Offset: 0, Length: 67,072, Priority: Normal","2512"
"10:46:31.5361804 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\NapiNSP.dll","0.0248111","Offset: 32,768, Length: 34,304, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2512"
"10:46:31.5519795 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0212873","Offset: 12,894,208, Length: 4,096","7760"
"10:46:31.5520328 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0212020","Offset: 12,894,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.5627515 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000312","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5628173 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000264","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:31.5630387 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000324","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:31.5632490 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000214","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5632964 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000047","Information: DACL","2512"
"10:46:31.5633207 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000077","","2512"
"10:46:31.5635149 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000238","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:31.5636889 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000201","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5637316 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000034","Information: DACL","2512"
"10:46:31.5637517 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000064","","2512"
"10:46:31.5641621 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000256","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:31.5643801 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000329","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:31.5645973 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000209","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5646404 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000034","Information: DACL","2512"
"10:46:31.5646613 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000068","","2512"
"10:46:31.5648546 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000235","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:31.5650227 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000201","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5650696 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000047","Information: DACL","2512"
"10:46:31.5650974 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000098","","2512"
"10:46:31.5660348 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000324","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5660881 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000068","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:29:46 PM, ChangeTime: 3/20/2019 7:10:41 PM, AllocationSize: 462848, EndOfFile: 460400, FileAttributes: A","2512"
"10:46:31.5661116 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000098","","2512"
"10:46:31.5661773 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000081","","2512"
"10:46:31.5662037 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000064","","2512"
"10:46:31.5665438 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5665967 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000055","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:29:46 PM, ChangeTime: 3/20/2019 7:10:41 PM, AllocationSize: 462848, EndOfFile: 460400, FileAttributes: A","2512"
"10:46:31.5666180 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000077","","2512"
"10:46:31.5668207 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000247","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5668753 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000055","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.5669047 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.5669261 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.5669585 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:31.5675076 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000060","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:31.5675349 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000077","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:29:46 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A, AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x30000000623b7, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:31.5677457 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000252","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5677994 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.5678280 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.5678485 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.5678809 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:31.5679889 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000102","","2512"
"10:46:31.5682244 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000243","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5682769 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.5683033 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.5683221 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.5683541 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:31.5684202 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000090","","2512"
"10:46:31.5689506 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000235","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5690022 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.5690274 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.5690457 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000035","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.5690773 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:31.5696060 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000102","","2512"
"10:46:31.5785327 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0006208","Offset: 323,584, Length: 4,096","7760"
"10:46:31.5786142 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0005064","Offset: 323,584, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.5792247 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004549","Offset: 315,392, Length: 4,096","7760"
"10:46:31.5792815 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003763","Offset: 315,392, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.5798933 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004054","Offset: 237,568, Length: 4,096","7760"
"10:46:31.5799309 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003396","Offset: 237,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.5805052 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004454","Offset: 307,200, Length: 4,096","7760"
"10:46:31.5805534 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003708","Offset: 307,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.5811034 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003750","Offset: 360,448, Length: 4,096","7760"
"10:46:31.5811507 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0002995","Offset: 360,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.5814797 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000209","","2512"
"10:46:31.5816559 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000094","","2512"
"10:46:31.5816700 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0357316","Offset: 12,902,400, Length: 4,096","7760"
"10:46:31.5817169 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0356421","Offset: 12,902,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.5823492 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5824179 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000068","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","2512"
"10:46:31.5824427 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000085","","2512"
"10:46:31.5827951 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5828480 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000051","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","2512"
"10:46:31.5828676 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000077","","2512"
"10:46:31.5832367 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5832862 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","2512"
"10:46:31.5833050 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000072","","2512"
"10:46:31.5833707 AM","firefox.exe","7384","CreateFile","C:\","0.0000162","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5834086 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000218","Filter: Windows, 1: Windows","2512"
"10:46:31.5834509 AM","firefox.exe","7384","CloseFile","C:\","0.0000068","","2512"
"10:46:31.5836309 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000180","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5836693 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000184","Filter: System32, 1: System32","2512"
"10:46:31.5837069 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000068","","2512"
"10:46:31.5838716 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000175","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5839091 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\NapiNSP.dll","0.0000188","Filter: NapiNSP.dll, 1: NapiNSP.dll","2512"
"10:46:31.5839471 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000064","","2512"
"10:46:31.5842705 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5843200 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000051","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","2512"
"10:46:31.5843383 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000073","","2512"
"10:46:31.5843977 AM","firefox.exe","7384","CreateFile","C:\","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5844305 AM","firefox.exe","7384","QueryDirectory","C:\WINDOWS","0.0000162","Filter: WINDOWS, 1: Windows","2512"
"10:46:31.5844646 AM","firefox.exe","7384","CloseFile","C:\","0.0000064","","2512"
"10:46:31.5846191 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000162","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5846541 AM","firefox.exe","7384","QueryDirectory","C:\Windows\system32","0.0000166","Filter: system32, 1: System32","2512"
"10:46:31.5846878 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000064","","2512"
"10:46:31.5848461 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5848815 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\napinsp.dll","0.0000183","Filter: napinsp.dll, 1: NapiNSP.dll","2512"
"10:46:31.5849229 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000064","","2512"
"10:46:31.5852932 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5853483 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000051","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","2512"
"10:46:31.5853675 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000072","","2512"
"10:46:31.5854289 AM","firefox.exe","7384","CreateFile","C:\","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5854613 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000163","Filter: Windows, 1: Windows","2512"
"10:46:31.5854955 AM","firefox.exe","7384","CloseFile","C:\","0.0000068","","2512"
"10:46:31.5856521 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5856875 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000162","Filter: System32, 1: System32","2512"
"10:46:31.5857212 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000064","","2512"
"10:46:31.5858816 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5859174 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\pnrpnsp.dll","0.0000218","Filter: pnrpnsp.dll, 1: pnrpnsp.dll","2512"
"10:46:31.5859567 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000064","","2512"
"10:46:31.5862575 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5863070 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000051","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","2512"
"10:46:31.5863253 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000073","","2512"
"10:46:31.5863842 AM","firefox.exe","7384","CreateFile","C:\","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5864158 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000158","Filter: Windows, 1: Windows","2512"
"10:46:31.5864491 AM","firefox.exe","7384","CloseFile","C:\","0.0000064","","2512"
"10:46:31.5866048 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5866394 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000158","Filter: System32, 1: System32","2512"
"10:46:31.5866722 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000064","","2512"
"10:46:31.5868314 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000162","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5868664 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\pnrpnsp.dll","0.0000196","Filter: pnrpnsp.dll, 1: pnrpnsp.dll","2512"
"10:46:31.5869030 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000064","","2512"
"10:46:31.5871061 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000209","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5871693 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000051","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.5872000 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.5872226 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000034","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.5872576 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:31.5873395 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000094","","2512"
"10:46:31.5875576 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000213","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5876369 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000068","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.5876745 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.5877052 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000047","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.5877585 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000043","SyncType: SyncTypeOther","2512"
"10:46:31.5879181 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000247","","2512"
"10:46:31.5883981 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5884446 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000081","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:31.5884698 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000081","","2512"
"10:46:31.5887782 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000210","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5888149 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000047","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:31.5888333 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000060","","2512"
"10:46:31.5890240 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000230","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.5890948 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000056","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.5891238 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.5891452 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000034","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.5891785 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000029","SyncType: SyncTypeOther","2512"
"10:46:31.5893350 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000043","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.5893572 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.5893752 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000029","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.5894054 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:31.5895023 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\pnrpnsp.dll","0.0431177","Offset: 0, Length: 84,992, Priority: Normal","2512"
"10:46:31.5895765 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\pnrpnsp.dll","0.0429714","Offset: 32,768, Length: 52,224, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2512"
"10:46:31.6140741 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0776082","Offset: 11,874,304, Length: 708,608, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:31.6177110 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0024973","Offset: 303,104, Length: 4,096","7760"
"10:46:31.6177874 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0023846","Offset: 303,104, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.6205334 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0005137","Offset: 131,072, Length: 4,096","7760"
"10:46:31.6206144 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003973","Offset: 131,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.6212766 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0176700","Offset: 12,840,960, Length: 4,096","7760"
"10:46:31.6213244 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0175813","Offset: 12,840,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.6342128 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000298","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.6342755 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000264","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:31.6345460 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000303","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:31.6347397 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000205","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.6347871 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000046","Information: DACL","2512"
"10:46:31.6348114 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000072","","2512"
"10:46:31.6350038 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000235","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:31.6351736 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000188","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.6352154 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000034","Information: DACL","2512"
"10:46:31.6352363 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000069","","2512"
"10:46:31.6356511 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000273","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:31.6358699 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000256","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:31.6360671 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000200","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.6361101 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000039","Information: DACL","2512"
"10:46:31.6361311 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000068","","2512"
"10:46:31.6363162 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000226","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:31.6364860 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000192","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.6365257 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000034","Information: DACL","2512"
"10:46:31.6365453 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000064","","2512"
"10:46:31.6390354 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0014511","Offset: 344,064, Length: 4,096","7760"
"10:46:31.6390985 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0013462","Offset: 344,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.6408048 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0006156","Offset: 380,928, Length: 4,096","7760"
"10:46:31.6408922 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004869","Offset: 380,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.6416001 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0655275","Offset: 12,767,232, Length: 4,096","7760"
"10:46:31.6416585 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0654388","Offset: 12,767,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.6604566 AM","firefox.exe","7384","ReadFile","C:","0.0017413","Offset: 135,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:31.6623195 AM","firefox.exe","7384","ReadFile","C:","0.0004036","Offset: 389,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:31.6632061 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-PeerToPeer-Full-Package~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0777682","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.6979274 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0986092","Offset: 12,582,912, Length: 905,216, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:31.7072923 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0016295","Offset: 167,936, Length: 4,096","7760"
"10:46:31.7073303 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0015629","Offset: 167,936, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.7090749 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.1053412","Offset: 12,775,424, Length: 4,096","7760"
"10:46:31.7091125 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.1052703","Offset: 12,775,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.7342001 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000252","Offset: 3,014,656, Length: 65,536","7900"
"10:46:31.7343379 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0229022","Offset: 3,080,192, Length: 65,536","7900"
"10:46:31.7410315 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-PeerToPeer-Full-Package~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000098","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 2:46:43 PM, ChangeTime: 3/20/2019 6:59:18 PM, AllocationSize: 20480, EndOfFile: 18721, FileAttributes: A","2512"
"10:46:31.7410703 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-PeerToPeer-Full-Package~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000162","","2512"
"10:46:31.7413485 AM","firefox.exe","7384","ReadFile","C:","0.0373223","Offset: 1,146,880, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:31.7577163 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0004335","Offset: 3,145,728, Length: 65,536","7900"
"10:46:31.7585103 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.3304038","Offset: 3,211,264, Length: 65,536","7900"
"10:46:31.7783832 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:31.7785206 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40676, endtime: 40676, seqnum: 0, connid: 0","0"
"10:46:31.7789080 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:31.7790270 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40676, endtime: 40676, seqnum: 0, connid: 0","0"
"10:46:31.7792502 AM","firefox.exe","7384","ReadFile","C:","0.0062460","Offset: 1,142,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:31.7866255 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0409238","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.8146132 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0230225","Offset: 12,951,552, Length: 4,096","7760"
"10:46:31.8146700 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0229350","Offset: 12,951,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.8275984 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000094","CreationTime: 4/25/2019 5:43:24 PM, LastAccessTime: 4/25/2019 5:43:24 PM, LastWriteTime: 4/3/2019 9:59:09 AM, ChangeTime: 4/25/2019 8:12:34 PM, AllocationSize: 12288, EndOfFile: 11272, FileAttributes: A","2512"
"10:46:31.8276359 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000150","","2512"
"10:46:31.8277294 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000990","","2512"
"10:46:31.8278608 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000124","","2512"
"10:46:31.8286851 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000435","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.8287632 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000090","CreationTime: 4/25/2019 5:43:24 PM, LastAccessTime: 4/25/2019 5:43:24 PM, LastWriteTime: 4/3/2019 9:59:09 AM, ChangeTime: 4/25/2019 8:12:34 PM, AllocationSize: 12288, EndOfFile: 11272, FileAttributes: A","2512"
"10:46:31.8288033 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000128","","2512"
"10:46:31.8291173 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0001536","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.8293080 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000111","AllocationSize: 12,288, EndOfFile: 11,272, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.8293610 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.8293853 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","AllocationSize: 12,288, EndOfFile: 11,272, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.8294215 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:31.8295047 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0877975","Offset: 0, Length: 11,272, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:31.8306508 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0497250","Offset: 14,680,064, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:31.8403361 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000201","Offset: 13,348,864, Length: 4,096","7760"
"10:46:31.8403771 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","Offset: 94,208, Length: 4,096","7760"
"10:46:31.8403933 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0005820","Offset: 176,128, Length: 4,096","7760"
"10:46:31.8404193 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0005270","Offset: 176,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.8410841 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0182076","Offset: 233,472, Length: 4,096","7760"
"10:46:31.8411220 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0181436","Offset: 233,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.8594418 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003469","Offset: 241,664, Length: 4,096","7760"
"10:46:31.8594866 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0002885","Offset: 241,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.8599197 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0425259","Offset: 12,791,808, Length: 4,096","7760"
"10:46:31.8599517 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0424726","Offset: 12,791,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.8901828 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0041195","Offset: 15,728,640, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:31.9025771 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0035438","Offset: 626,688, Length: 4,096","7760"
"10:46:31.9026291 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0034633","Offset: 626,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.9027353 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0573492","Offset: 16,777,216, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:31.9061828 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0007505","Offset: 299,008, Length: 4,096","7760"
"10:46:31.9062216 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0006827","Offset: 299,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.9070801 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0176218","Offset: 12,832,768, Length: 4,096","7760"
"10:46:31.9071176 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0175629","Offset: 12,832,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.9161028 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:31.9161387 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40689, endtime: 40689, seqnum: 0, connid: 0","0"
"10:46:31.9162091 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:31.9162261 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40689, endtime: 40689, seqnum: 0, connid: 0","0"
"10:46:31.9162645 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:31.9162739 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40689, endtime: 40689, seqnum: 0, connid: 0","0"
"10:46:31.9163247 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:31.9163337 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40689, endtime: 40689, seqnum: 0, connid: 0","0"
"10:46:31.9174025 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000068","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:31.9174298 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000089","CreationTime: 4/25/2019 5:43:24 PM, LastAccessTime: 4/25/2019 5:43:24 PM, LastWriteTime: 4/3/2019 9:59:09 AM, ChangeTime: 4/25/2019 8:12:34 PM, FileAttributes: A, AllocationSize: 12,288, EndOfFile: 11,272, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x12000000019a27, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:31.9176969 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000226","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9177472 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000038","AllocationSize: 12,288, EndOfFile: 11,272, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.9177690 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.9177839 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","AllocationSize: 12,288, EndOfFile: 11,272, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.9178048 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:31.9179025 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000107","","2512"
"10:46:31.9181069 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000205","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9181585 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","AllocationSize: 12,288, EndOfFile: 11,272, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.9181769 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.9181901 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","AllocationSize: 12,288, EndOfFile: 11,272, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.9182106 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:31.9182541 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000077","","2512"
"10:46:31.9184452 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000150","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9184768 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","AllocationSize: 12,288, EndOfFile: 11,272, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.9184960 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.9185071 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","AllocationSize: 12,288, EndOfFile: 11,272, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:31.9185250 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:31.9185754 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000055","","2512"
"10:46:31.9187725 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000072","","2512"
"10:46:31.9188045 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","","2512"
"10:46:31.9190840 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9191215 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000034","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","2512"
"10:46:31.9191339 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000047","","2512"
"10:46:31.9193357 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9193651 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000030","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","2512"
"10:46:31.9193762 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000056","","2512"
"10:46:31.9196804 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9197214 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000043","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","2512"
"10:46:31.9197389 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000064","","2512"
"10:46:31.9197961 AM","firefox.exe","7384","CreateFile","C:\","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9198281 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000179","Filter: Windows, 1: Windows","2512"
"10:46:31.9198635 AM","firefox.exe","7384","CloseFile","C:\","0.0000059","","2512"
"10:46:31.9200064 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9200388 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000346","Filter: System32, 1: System32","2512"
"10:46:31.9200858 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000042","","2512"
"10:46:31.9201860 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9202086 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\pnrpnsp.dll","0.0000141","Filter: pnrpnsp.dll, 1: pnrpnsp.dll","2512"
"10:46:31.9202338 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:31.9204297 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9204582 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000035","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","2512"
"10:46:31.9204689 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000047","","2512"
"10:46:31.9205048 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9205231 AM","firefox.exe","7384","QueryDirectory","C:\WINDOWS","0.0000098","Filter: WINDOWS, 1: Windows","2512"
"10:46:31.9205432 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:31.9206336 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9206541 AM","firefox.exe","7384","QueryDirectory","C:\Windows\system32","0.0000098","Filter: system32, 1: System32","2512"
"10:46:31.9206741 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000035","","2512"
"10:46:31.9207672 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9207872 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\pnrpnsp.dll","0.0000128","Filter: pnrpnsp.dll, 1: pnrpnsp.dll","2512"
"10:46:31.9208098 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:31.9210398 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9210709 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000030","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:31.9210820 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000043","","2512"
"10:46:31.9211170 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9211354 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:31.9211554 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:31.9212442 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9212642 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:31.9212843 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:31.9213752 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9213956 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\bcrypt.dll","0.0000111","Filter: bcrypt.dll, 1: bcrypt.dll","2512"
"10:46:31.9214170 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:31.9215881 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9216162 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000030","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:31.9216265 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000042","","2512"
"10:46:31.9216606 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9216789 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000090","Filter: Windows, 1: Windows","2512"
"10:46:31.9216977 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:31.9217860 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9218061 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000089","Filter: System32, 1: System32","2512"
"10:46:31.9218257 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:31.9219157 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9219358 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\bcrypt.dll","0.0000115","Filter: bcrypt.dll, 1: bcrypt.dll","2512"
"10:46:31.9219576 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:31.9220693 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000116","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9221043 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcrypt.dll","0.0000030","AllocationSize: 139,264, EndOfFile: 137,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.9221210 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcrypt.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.9221338 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcrypt.dll","0.0000017","AllocationSize: 139,264, EndOfFile: 137,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.9221534 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcrypt.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:31.9221973 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000056","","2512"
"10:46:31.9223219 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9223595 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcrypt.dll","0.0000025","AllocationSize: 139,264, EndOfFile: 137,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.9223744 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcrypt.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.9223859 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcrypt.dll","0.0000017","AllocationSize: 139,264, EndOfFile: 137,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.9224043 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcrypt.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:31.9224555 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcrypt.dll","0.0000017","AllocationSize: 139,264, EndOfFile: 137,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.9224683 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000051","","2512"
"10:46:31.9225907 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9226249 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcrypt.dll","0.0000025","AllocationSize: 139,264, EndOfFile: 137,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.9226377 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcrypt.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.9226483 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcrypt.dll","0.0000017","AllocationSize: 139,264, EndOfFile: 137,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.9226667 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcrypt.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:31.9229500 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000051","","2512"
"10:46:31.9232862 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9233182 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000034","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:31.9233306 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000047","","2512"
"10:46:31.9235375 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9235661 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000030","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:31.9235772 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000043","","2512"
"10:46:31.9237837 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9238131 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000030","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:31.9238238 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000043","","2512"
"10:46:31.9238609 AM","firefox.exe","7384","CreateFile","C:\","0.0000086","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9238814 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000124","Filter: Windows, 1: Windows","2512"
"10:46:31.9239100 AM","firefox.exe","7384","CloseFile","C:\","0.0000055","","2512"
"10:46:31.9240495 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9240815 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000141","Filter: System32, 1: System32","2512"
"10:46:31.9241122 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000060","","2512"
"10:46:31.9242351 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9242577 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\bcrypt.dll","0.0000124","Filter: bcrypt.dll, 1: bcrypt.dll","2512"
"10:46:31.9242816 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:31.9244920 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9245248 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000030","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","2512"
"10:46:31.9245359 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000043","","2512"
"10:46:31.9245722 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9245914 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000102","Filter: Windows, 1: Windows","2512"
"10:46:31.9246123 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:31.9247044 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9247249 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000103","Filter: System32, 1: System32","2512"
"10:46:31.9247458 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:31.9248290 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0013871","Offset: 217,088, Length: 4,096","7760"
"10:46:31.9248427 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9248615 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0013358","Offset: 217,088, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.9248644 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\webauthn.dll","0.0000128","Filter: webauthn.dll, 1: webauthn.dll","2512"
"10:46:31.9248875 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:31.9250748 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9251055 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","2512"
"10:46:31.9251162 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000042","","2512"
"10:46:31.9251512 AM","firefox.exe","7384","CreateFile","C:\","0.0000076","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9251695 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:31.9251896 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:31.9252792 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9252996 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000099","Filter: System32, 1: System32","2512"
"10:46:31.9253197 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:31.9254110 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9254315 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\webauthn.dll","0.0000111","Filter: webauthn.dll, 1: webauthn.dll","2512"
"10:46:31.9254528 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:31.9255629 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9255987 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\webauthn.dll","0.0000030","AllocationSize: 286,720, EndOfFile: 284,160, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.9256154 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.9256282 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\webauthn.dll","0.0000017","AllocationSize: 286,720, EndOfFile: 284,160, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.9256482 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:31.9256969 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000051","","2512"
"10:46:31.9258257 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9258663 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\webauthn.dll","0.0000025","AllocationSize: 286,720, EndOfFile: 284,160, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.9258812 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.9258931 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\webauthn.dll","0.0000017","AllocationSize: 286,720, EndOfFile: 284,160, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.9259119 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:31.9259541 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000052","","2512"
"10:46:31.9261705 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9262084 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000043","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:31.9262251 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000064","","2512"
"10:46:31.9263189 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003913","Offset: 339,968, Length: 4,096","7760"
"10:46:31.9263497 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003439","Offset: 339,968, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.9264158 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9264380 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000025","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:31.9264487 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:31.9265707 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9266112 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\webauthn.dll","0.0000026","AllocationSize: 286,720, EndOfFile: 284,160, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.9266270 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.9266385 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\webauthn.dll","0.0000022","AllocationSize: 286,720, EndOfFile: 284,160, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.9266590 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:31.9267593 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\webauthn.dll","0.0000021","AllocationSize: 286,720, EndOfFile: 284,160, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.9267716 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:31.9267819 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\webauthn.dll","0.0000013","AllocationSize: 286,720, EndOfFile: 284,160, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:31.9267985 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:31.9268288 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0009784","Offset: 364,544, Length: 4,096","7760"
"10:46:31.9268565 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0009199","Offset: 364,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.9268864 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\webauthn.dll","0.0574439","Offset: 0, Length: 284,160, Priority: Normal","2512"
"10:46:31.9269504 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\webauthn.dll","0.0572378","Offset: 32,768, Length: 251,392, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2512"
"10:46:31.9279697 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0006251","Offset: 389,120, Length: 4,096","7760"
"10:46:31.9280128 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0005380","Offset: 389,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.9287373 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0405628","Offset: 12,914,688, Length: 4,096","7760"
"10:46:31.9287748 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0404656","Offset: 12,914,688, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.9697161 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0006725","Offset: 438,272, Length: 4,096","7760"
"10:46:31.9698083 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0005299","Offset: 438,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.9705878 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000235","Offset: 491,520, Length: 4,096","7760"
"10:46:31.9708494 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000230","Offset: 12,595,200, Length: 4,096","7760"
"10:46:31.9709210 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0005381","Offset: 258,048, Length: 4,096","7760"
"10:46:31.9709842 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004207","Offset: 258,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.9782887 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000154","Offset: 120, Length: 1","7760"
"10:46:31.9783574 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000060","Offset: 123, Length: 1","7760"
"10:46:31.9785319 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000043","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:31.9785712 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000094","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:31.9786083 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000034","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7760"
"10:46:31.9786928 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004241","Offset: 499,712, Length: 4,096","7760"
"10:46:31.9787376 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003558","Offset: 499,712, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.9791689 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0210121","Offset: 6,844,416, Length: 4,096","7760"
"10:46:31.9792107 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0209375","Offset: 6,844,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:31.9822721 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0514347","Offset: 17,825,792, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:31.9871113 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000210","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9871561 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000184","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:31.9873110 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000226","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:31.9874471 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000141","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9874796 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000029","Information: DACL","2512"
"10:46:31.9874966 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000051","","2512"
"10:46:31.9876434 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:31.9877718 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000137","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9878008 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000026","Information: DACL","2512"
"10:46:31.9878153 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000047","","2512"
"10:46:31.9881277 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000179","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:31.9882881 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000183","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:31.9884216 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000137","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9884507 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000025","Information: DACL","2512"
"10:46:31.9884652 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000047","","2512"
"10:46:31.9886043 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000162","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:31.9887280 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000128","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:31.9887553 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000026","Information: DACL","2512"
"10:46:31.9887685 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000047","","2512"
"10:46:32.0002514 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0499645","Offset: 9,965,568, Length: 4,096","7760"
"10:46:32.0003056 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0498381","Offset: 9,965,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.0150350 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0598482","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.0503840 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0700894","Offset: 6,750,208, Length: 4,096","7760"
"10:46:32.0505192 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0698808","Offset: 6,750,208, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.0750214 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000214","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:14:21 PM, ChangeTime: 3/20/2019 7:05:46 PM, AllocationSize: 405504, EndOfFile: 404923, FileAttributes: A","2512"
"10:46:32.0751068 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000354","","2512"
"10:46:32.0753461 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000226","","2512"
"10:46:32.0754187 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000196","","2512"
"10:46:32.0764222 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000610","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.0765297 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000119","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:14:21 PM, ChangeTime: 3/20/2019 7:05:46 PM, AllocationSize: 405504, EndOfFile: 404923, FileAttributes: A","2512"
"10:46:32.0765800 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0001468","","2512"
"10:46:32.0773788 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000614","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.0775119 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000132","AllocationSize: 405,504, EndOfFile: 404,923, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.0775810 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000115","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.0776331 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000085","AllocationSize: 405,504, EndOfFile: 404,923, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.0778780 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000128","SyncType: SyncTypeOther","2512"
"10:46:32.0782854 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0554608","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.0836085 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0238943","Offset: 18,874,368, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:32.0890447 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000243","Offset: 3,276,800, Length: 65,536","7900"
"10:46:32.0892184 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0777067","Offset: 3,342,336, Length: 65,536","7900"
"10:46:32.1206595 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0013077","Offset: 151,552, Length: 4,096","7760"
"10:46:32.1208178 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0010948","Offset: 151,552, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.1221370 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0005752","Offset: 466,944, Length: 4,096","7760"
"10:46:32.1222531 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004113","Offset: 466,944, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.1228440 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0005090","Offset: 651,264, Length: 4,096","7760"
"10:46:32.1229438 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003631","Offset: 651,264, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.1237221 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004906","Offset: 442,368, Length: 4,096","7760"
"10:46:32.1238279 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003354","Offset: 442,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.1245353 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004757","Offset: 507,904, Length: 4,096","7760"
"10:46:32.1246347 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003303","Offset: 507,904, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.1257035 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0228280","Offset: 15,712,256, Length: 4,096","7760"
"10:46:32.1258187 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0226659","Offset: 15,712,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.1338426 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0023309","Offset: 372,736, Length: 32,187, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.1363702 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0070942","Offset: 32,768, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.1385731 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0526977","Offset: 19,922,944, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:32.1435984 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0066551","Offset: 102,400, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.1486723 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0017954","Offset: 516,096, Length: 4,096","7760"
"10:46:32.1487384 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0016875","Offset: 516,096, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.1505253 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0004574","Offset: 135,168, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.1507604 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0005222","Offset: 475,136, Length: 4,096","7760"
"10:46:32.1508236 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004202","Offset: 475,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.1511542 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0004476","Offset: 167,936, Length: 65,536, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.1515655 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004689","Offset: 524,288, Length: 4,096","7760"
"10:46:32.1516244 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003797","Offset: 524,288, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.1518006 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0004105","Offset: 253,952, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.1523412 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0006183","Offset: 290,816, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.1523596 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0005909","Offset: 528,384, Length: 4,096","7760"
"10:46:32.1524150 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004873","Offset: 528,384, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.1531489 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0005094","Offset: 323,584, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.1533068 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0005824","Offset: 434,176, Length: 4,096","7760"
"10:46:32.1533985 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004480","Offset: 434,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.1538465 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0004143","Offset: 356,352, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.1541080 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0463958","Offset: 12,980,224, Length: 4,096","7760"
"10:46:32.1542096 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0462738","Offset: 12,980,224, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.1544366 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000102","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:32.1544984 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000141","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:14:21 PM, ChangeTime: 3/20/2019 7:05:46 PM, FileAttributes: A, AllocationSize: 405,504, EndOfFile: 404,923, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x30000000603f8, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:32.1548615 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000367","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.1549409 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","AllocationSize: 405,504, EndOfFile: 404,923, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.1549844 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000141","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.1550245 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","AllocationSize: 405,504, EndOfFile: 404,923, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.1550655 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","SyncType: SyncTypeOther","2512"
"10:46:32.1552084 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000141","","2512"
"10:46:32.1554977 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000290","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.1555608 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000056","AllocationSize: 405,504, EndOfFile: 404,923, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.1555916 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.1556133 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","AllocationSize: 405,504, EndOfFile: 404,923, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.1556504 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:32.1557272 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000111","","2512"
"10:46:32.1563305 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000286","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.1563937 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","AllocationSize: 405,504, EndOfFile: 404,923, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.1564223 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.1564436 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","AllocationSize: 405,504, EndOfFile: 404,923, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.1564786 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:32.1566185 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0006959","Offset: 65,536, Length: 36,864, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.1575960 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0006311","Offset: 233,472, Length: 57,344, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.1585898 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000247","","2512"
"10:46:32.1671918 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000294","Offset: 3,407,872, Length: 65,536","7900"
"10:46:32.1674021 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0005355","Offset: 3,473,408, Length: 65,536","7900"
"10:46:32.1681684 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000218","Offset: 3,538,944, Length: 65,536","7900"
"10:46:32.1683391 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.1657414","Offset: 3,604,480, Length: 65,536","7900"
"10:46:32.1700970 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000217","","2512"
"10:46:32.1702698 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000098","","2512"
"10:46:32.1710373 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000333","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.1711171 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000073","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","2512"
"10:46:32.1711453 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000089","","2512"
"10:46:32.1715626 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000251","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.1716244 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000060","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","2512"
"10:46:32.1716479 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000085","","2512"
"10:46:32.1720584 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.1721155 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000056","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","2512"
"10:46:32.1721381 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000086","","2512"
"10:46:32.1722154 AM","firefox.exe","7384","CreateFile","C:\","0.0000192","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.1722614 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000252","Filter: Windows, 1: Windows","2512"
"10:46:32.1723105 AM","firefox.exe","7384","CloseFile","C:\","0.0000085","","2512"
"10:46:32.1725034 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000217","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.1725499 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000222","Filter: System32, 1: System32","2512"
"10:46:32.1725951 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000077","","2512"
"10:46:32.1727867 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000205","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.1728306 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\webauthn.dll","0.0000248","Filter: webauthn.dll, 1: webauthn.dll","2512"
"10:46:32.1728771 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000077","","2512"
"10:46:32.1732889 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\webauthn.dll","0.0000298","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2512"
"10:46:32.1737399 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000392","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.1738333 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000090","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","2512"
"10:46:32.1738687 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000132","","2512"
"10:46:32.1739796 AM","firefox.exe","7384","CreateFile","C:\","0.0000252","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.1740394 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000286","Filter: Windows, 1: Windows","2512"
"10:46:32.1741012 AM","firefox.exe","7384","CloseFile","C:\","0.0000116","","2512"
"10:46:32.1743449 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000213","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.1743905 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000218","Filter: System32, 1: System32","2512"
"10:46:32.1744340 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000086","","2512"
"10:46:32.1747024 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000248","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.1747523 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\nlaapi.dll","0.0000265","Filter: nlaapi.dll, 1: nlaapi.dll","2512"
"10:46:32.1748014 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000077","","2512"
"10:46:32.1751641 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.1752234 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000059","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","2512"
"10:46:32.1752456 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000089","","2512"
"10:46:32.1753177 AM","firefox.exe","7384","CreateFile","C:\","0.0000166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.1753556 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000192","Filter: Windows, 1: Windows","2512"
"10:46:32.1753957 AM","firefox.exe","7384","CloseFile","C:\","0.0000069","","2512"
"10:46:32.1755801 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000200","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.1756219 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000196","Filter: System32, 1: System32","2512"
"10:46:32.1756620 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000072","","2512"
"10:46:32.1758484 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000197","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.1758911 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\nlaapi.dll","0.0000230","Filter: nlaapi.dll, 1: nlaapi.dll","2512"
"10:46:32.1759346 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000077","","2512"
"10:46:32.1761629 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000247","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.1762380 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nlaapi.dll","0.0000060","AllocationSize: 81,920, EndOfFile: 80,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:32.1762730 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.1762977 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nlaapi.dll","0.0000043","AllocationSize: 81,920, EndOfFile: 80,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:32.1763387 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000034","SyncType: SyncTypeOther","2512"
"10:46:32.1764304 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000111","","2512"
"10:46:32.1766804 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000248","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.1767564 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nlaapi.dll","0.0000051","AllocationSize: 81,920, EndOfFile: 80,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:32.1767858 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.1768080 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nlaapi.dll","0.0000039","AllocationSize: 81,920, EndOfFile: 80,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:32.1768451 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:32.1769271 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000102","","2512"
"10:46:32.1773183 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.1773640 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000055","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:32.1773861 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000073","","2512"
"10:46:32.1777322 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000251","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.1777757 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000051","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:32.1777962 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000064","","2512"
"10:46:32.1780061 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000226","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.1780786 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nlaapi.dll","0.0000056","AllocationSize: 81,920, EndOfFile: 80,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:32.1781085 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.1781315 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nlaapi.dll","0.0000039","AllocationSize: 81,920, EndOfFile: 80,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:32.1781678 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000034","SyncType: SyncTypeOther","2512"
"10:46:32.1783103 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nlaapi.dll","0.0000047","AllocationSize: 81,920, EndOfFile: 80,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:32.1783355 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.1783551 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nlaapi.dll","0.0000034","AllocationSize: 81,920, EndOfFile: 80,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:32.1783892 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:32.1784908 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\nlaapi.dll","0.0345229","Offset: 0, Length: 80,896, Priority: Normal","2512"
"10:46:32.1785795 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\nlaapi.dll","0.0343834","Offset: 32,768, Length: 48,128, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2512"
"10:46:32.2005811 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0014792","Offset: 532,480, Length: 4,096","7760"
"10:46:32.2006165 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0014272","Offset: 532,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.2021768 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004113","Offset: 401,408, Length: 4,096","7760"
"10:46:32.2022054 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003673","Offset: 401,408, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.2026794 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003187","Offset: 446,464, Length: 4,096","7760"
"10:46:32.2027076 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0002747","Offset: 446,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.2030980 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0216055","Offset: 12,636,160, Length: 4,096","7760"
"10:46:32.2031261 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0215471","Offset: 12,636,160, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.2032550 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0397120","Offset: 20,971,520, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:32.2138730 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000231","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.2139204 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000205","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:32.2140881 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000213","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:32.2142156 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000252","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.2142583 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000026","Information: DACL","2512"
"10:46:32.2142737 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000042","","2512"
"10:46:32.2143897 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:32.2144925 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.2145169 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000017","Information: DACL","2512"
"10:46:32.2145284 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:32.2148087 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000166","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:32.2149469 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000163","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:32.2150656 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000119","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.2150912 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000021","Information: DACL","2512"
"10:46:32.2151035 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000043","","2512"
"10:46:32.2152153 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:32.2153156 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000115","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.2153395 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:32.2153510 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:32.2247808 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0013529","Offset: 536,576, Length: 4,096","7760"
"10:46:32.2248192 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0012842","Offset: 536,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.2263185 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004885","Offset: 540,672, Length: 4,096","7760"
"10:46:32.2263590 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004186","Offset: 540,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.2268847 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004578","Offset: 421,888, Length: 4,096","7760"
"10:46:32.2269256 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003827","Offset: 421,888, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.2275409 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0005602","Offset: 454,656, Length: 4,096","7760"
"10:46:32.2276087 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004621","Offset: 454,656, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.2282730 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0005009","Offset: 548,864, Length: 4,096","7760"
"10:46:32.2283140 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004301","Offset: 548,864, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.2289570 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0265404","Offset: 12,546,048, Length: 4,096","7760"
"10:46:32.2289997 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0264644","Offset: 12,546,048, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.2526575 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.1729180","Offset: 22,020,096, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:32.2591633 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0184990","Offset: 12,570,624, Length: 4,096","7760"
"10:46:32.2592026 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0184081","Offset: 12,570,624, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.2711616 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0791174","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.2778684 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0327838","Offset: 12,574,720, Length: 4,096","7760"
"10:46:32.2779081 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0327134","Offset: 12,574,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.3120705 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000081","Offset: 120, Length: 1","7760"
"10:46:32.3120995 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000021","Offset: 123, Length: 1","7760"
"10:46:32.3121810 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000038","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:32.3122062 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000076","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:32.3122301 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000029","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7760"
"10:46:32.3122992 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000217","Offset: 13,410,304, Length: 4,096","7760"
"10:46:32.3123508 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.1398308","Offset: 12,771,328, Length: 4,096","7760"
"10:46:32.3123879 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.1397399","Offset: 12,771,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.3179039 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\distribution\searchplugins\common\","0.0000614","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","4904"
"10:46:32.3267154 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\distribution\searchplugins\locale\en-US\","0.0000418","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","4904"
"10:46:32.3349074 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000551","Offset: 3,670,016, Length: 65,536","7900"
"10:46:32.3352965 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0436583","Offset: 3,735,552, Length: 65,536","7900"
"10:46:32.3503451 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000115","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:25:49 PM, ChangeTime: 3/20/2019 7:08:49 PM, AllocationSize: 249856, EndOfFile: 246781, FileAttributes: A","2512"
"10:46:32.3503920 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000192","","2512"
"10:46:32.3505034 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000124","","2512"
"10:46:32.3505431 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000098","","2512"
"10:46:32.3511395 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000350","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.3511997 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000068","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:25:49 PM, ChangeTime: 3/20/2019 7:08:49 PM, AllocationSize: 249856, EndOfFile: 246781, FileAttributes: A","2512"
"10:46:32.3512270 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000124","","2512"
"10:46:32.3515385 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000303","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.3516187 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000085","AllocationSize: 249,856, EndOfFile: 246,781, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.3516678 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000059","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.3516946 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","AllocationSize: 249,856, EndOfFile: 246,781, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.3517377 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","SyncType: SyncTypeOther","2512"
"10:46:32.3518371 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0531683","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.3791443 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000303","Offset: 3,801,088, Length: 65,536","7900"
"10:46:32.3793000 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.4626105","Offset: 3,866,624, Length: 65,536","7900"
"10:46:32.3852955 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\search.json.mozlz4.tmp","0.0001737","Desired Access: Generic Write, Read Attributes, Disposition: OverwriteIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: 0, OpenResult: Created","4904"
"10:46:32.3856428 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\search.json.mozlz4.tmp","0.0000069","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","4904"
"10:46:32.3857017 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\search.json.mozlz4.tmp","0.0001246","Offset: 0, Length: 572, Priority: Normal","4904"
"10:46:32.3858754 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\search.json.mozlz4.tmp","0.0000627","","4904"
"10:46:32.3861975 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\search.json.mozlz4.tmp","0.0000363","Desired Access: Read Attributes, Delete, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4904"
"10:46:32.3862538 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\search.json.mozlz4.tmp","0.0000060","Attributes: A, ReparseTag: 0x0","4904"
"10:46:32.3862803 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\search.json.mozlz4.tmp","0.0000038","CreationTime: 3/26/2020 10:46:32 AM, LastAccessTime: 3/26/2020 10:46:32 AM, LastWriteTime: 3/26/2020 10:46:32 AM, ChangeTime: 3/26/2020 10:46:32 AM, FileAttributes: A","4904"
"10:46:32.3864198 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000205","Desired Access: Write Data/Add File, Synchronize, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","4904"
"10:46:32.3869075 AM","firefox.exe","7384","SetRenameInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\search.json.mozlz4.tmp","0.0003008","ReplaceIfExists: True, FileName: C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\search.json.mozlz4","4904"
"10:46:32.3872245 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test","0.0000294","","4904"
"10:46:32.3873000 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\search.json.mozlz4","0.0001720","","4904"
"10:46:32.3926466 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000119","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7884"
"10:46:32.3929781 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000141","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7884"
"10:46:32.3930826 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0489776","Offset: 720,896, Length: 32,768","7884"
"10:46:32.3931449 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0488521","Offset: 720,896, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7884"
"10:46:32.4005015 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000444","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7852"
"10:46:32.4005762 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000102","CreationTime: 6/19/2019 4:53:38 PM, LastAccessTime: 6/19/2019 4:53:38 PM, LastWriteTime: 3/26/2020 10:29:02 AM, ChangeTime: 3/26/2020 10:29:02 AM, AllocationSize: 5242880, EndOfFile: 5242880, FileAttributes: A","7852"
"10:46:32.4006103 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0414968","","7852"
"10:46:32.4050720 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0564694","Offset: 217,088, Length: 29,693, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.4087947 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 2784","1168"
"10:46:32.4091535 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 6924","1168"
"10:46:32.4092094 AM","firefox.exe","1008","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-S-1-5-21-429253301-29906273-2566354956-1001.dat","0.0879997","Offset: 258,048, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7292"
"10:46:32.4355510 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.4284605","Offset: 23,068,672, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:32.4421238 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000158","Offset: 98,304, Length: 32,768","7884"
"10:46:32.4421622 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0790507","Offset: 1,212,416, Length: 32,768","7884"
"10:46:32.4421984 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0786873","Offset: 1,212,416, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7884"
"10:46:32.4424066 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000248","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7852"
"10:46:32.4424890 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000136","Offset: 0, Length: 100, Priority: Normal","7852"
"10:46:32.4426068 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000046","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","7852"
"10:46:32.4426238 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","7852"
"10:46:32.4426362 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000017","Offset: 1,073,741,824, Length: 1","7852"
"10:46:32.4428896 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-journal","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7852"
"10:46:32.4431132 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-wal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7852"
"10:46:32.4431426 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-wal","0.0000039","CreationTime: 3/26/2020 10:46:27 AM, LastAccessTime: 3/26/2020 10:46:27 AM, LastWriteTime: 3/26/2020 10:46:27 AM, ChangeTime: 3/26/2020 10:46:27 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","7852"
"10:46:32.4431572 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-wal","0.0000051","","7852"
"10:46:32.4432310 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000034","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.4432689 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000099","Offset: 0, Length: 32,768","7852"
"10:46:32.4434597 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-wal","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7852"
"10:46:32.4434840 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-wal","0.0000025","CreationTime: 3/26/2020 10:46:27 AM, LastAccessTime: 3/26/2020 10:46:27 AM, LastWriteTime: 3/26/2020 10:46:27 AM, ChangeTime: 3/26/2020 10:46:27 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","7852"
"10:46:32.4434964 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-wal","0.0000042","","7852"
"10:46:32.4436248 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-wal","0.0000222","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","7852"
"10:46:32.4436768 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000030","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.4436922 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000055","Offset: 0, Length: 32,768","7852"
"10:46:32.4439836 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000030","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.4440143 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000081","Offset: 589,824, Length: 32,768","7852"
"10:46:32.4443851 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7852"
"10:46:32.4444154 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000034","CreationTime: 6/19/2019 4:53:38 PM, LastAccessTime: 6/19/2019 4:53:38 PM, LastWriteTime: 3/26/2020 10:29:03 AM, ChangeTime: 3/26/2020 10:29:03 AM, AllocationSize: 5242880, EndOfFile: 5242880, FileAttributes: A","7852"
"10:46:32.4444291 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000059","","7852"
"10:46:32.4447013 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000375","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7852"
"10:46:32.4447900 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000141","Offset: 0, Length: 100, Priority: Normal","7852"
"10:46:32.4448451 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000042","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","7852"
"10:46:32.4448608 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000022","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","7852"
"10:46:32.4448724 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000012","Offset: 1,073,741,824, Length: 1","7852"
"10:46:32.4450955 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-journal","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7852"
"10:46:32.4453242 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-wal","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7852"
"10:46:32.4453524 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-wal","0.0000038","CreationTime: 3/26/2020 10:46:27 AM, LastAccessTime: 3/26/2020 10:46:27 AM, LastWriteTime: 3/26/2020 10:46:27 AM, ChangeTime: 3/26/2020 10:46:27 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","7852"
"10:46:32.4453664 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-wal","0.0000056","","7852"
"10:46:32.4454044 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000034","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.4454398 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000094","Offset: 0, Length: 32,768","7852"
"10:46:32.4456340 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-wal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7852"
"10:46:32.4456579 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-wal","0.0000025","CreationTime: 3/26/2020 10:46:27 AM, LastAccessTime: 3/26/2020 10:46:27 AM, LastWriteTime: 3/26/2020 10:46:27 AM, ChangeTime: 3/26/2020 10:46:27 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","7852"
"10:46:32.4456698 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-wal","0.0000043","","7852"
"10:46:32.4457816 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-wal","0.0000209","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","7852"
"10:46:32.4458358 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000081","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.4458597 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000025","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.4458750 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000056","Offset: 0, Length: 32,768","7852"
"10:46:32.4459847 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000025","Offset: 123, Length: 1","7852"
"10:46:32.4460077 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000017","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.4460188 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000021","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.4460470 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000077","Offset: 229,376, Length: 32,768","7852"
"10:46:32.4460692 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000017","Offset: 123, Length: 1","7852"
"10:46:32.4468521 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 2520","5728"
"10:46:32.4522541 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0020083","Offset: 700,416, Length: 4,096","7760"
"10:46:32.4522904 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0019191","Offset: 700,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.4543371 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0006212","Offset: 15,466,496, Length: 4,096","7760"
"10:46:32.4543751 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0005124","Offset: 15,466,496, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.4551346 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0767075","Offset: 12,730,368, Length: 4,096","7760"
"10:46:32.4551713 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0764216","Offset: 12,730,368, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.4616732 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0095992","Offset: 32,768, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.4713692 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0006661","Offset: 65,536, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.4721202 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0056316","Offset: 98,304, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.4778371 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0004258","Offset: 143,360, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.4783747 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0005009","Offset: 176,128, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.4789797 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0004369","Offset: 208,896, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.4795327 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:32.4795591 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000086","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:25:49 PM, ChangeTime: 3/20/2019 7:08:49 PM, FileAttributes: A, AllocationSize: 249,856, EndOfFile: 246,781, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x5000000061736, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:32.4798369 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000252","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.4798941 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000046","AllocationSize: 249,856, EndOfFile: 246,781, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.4799167 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.4799316 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 249,856, EndOfFile: 246,781, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.4799529 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:32.4800826 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000111","","2512"
"10:46:32.4802874 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000227","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.4803374 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","AllocationSize: 249,856, EndOfFile: 246,781, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.4803574 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.4803702 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","AllocationSize: 249,856, EndOfFile: 246,781, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.4803903 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:32.4804368 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000068","","2512"
"10:46:32.4807064 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000150","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.4807389 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","AllocationSize: 249,856, EndOfFile: 246,781, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.4807534 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.4807649 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 249,856, EndOfFile: 246,781, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.4807828 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:32.4809138 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0004348","Offset: 131,072, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.4815457 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000166","","2512"
"10:46:32.4851233 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000136","","2512"
"10:46:32.4851997 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","","2512"
"10:46:32.4855948 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.4856357 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","2512"
"10:46:32.4856507 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000046","","2512"
"10:46:32.4858601 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.4858896 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000034","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","2512"
"10:46:32.4859015 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000043","","2512"
"10:46:32.4861059 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.4861345 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","2512"
"10:46:32.4861452 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000042","","2512"
"10:46:32.4861827 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.4862053 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000132","Filter: Windows, 1: Windows","2512"
"10:46:32.4862305 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:32.4863256 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.4863487 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000106","Filter: System32, 1: System32","2512"
"10:46:32.4863704 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:32.4864720 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.4864942 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\nlaapi.dll","0.0000119","Filter: nlaapi.dll, 1: nlaapi.dll","2512"
"10:46:32.4865172 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:32.4867519 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.4867809 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","2512"
"10:46:32.4867920 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000043","","2512"
"10:46:32.4868261 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.4868445 AM","firefox.exe","7384","QueryDirectory","C:\WINDOWS","0.0000102","Filter: WINDOWS, 1: Windows","2512"
"10:46:32.4868654 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:32.4869558 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.4869767 AM","firefox.exe","7384","QueryDirectory","C:\Windows\system32","0.0000098","Filter: system32, 1: System32","2512"
"10:46:32.4869968 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:32.4870885 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.4871094 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\NLAapi.dll","0.0000115","Filter: NLAapi.dll, 1: nlaapi.dll","2512"
"10:46:32.4871312 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:32.4873385 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.4873705 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000030","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:32.4873812 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000043","","2512"
"10:46:32.4874153 AM","firefox.exe","7384","CreateFile","C:\","0.0000082","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.4874341 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:32.4874537 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:32.4875446 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.4875651 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:32.4875847 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:32.4876824 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000099","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.4877033 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\netprofm.dll","0.0000120","Filter: netprofm.dll, 1: netprofm.dll","2512"
"10:46:32.4877255 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:32.4878962 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.4879248 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000025","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:32.4879350 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000043","","2512"
"10:46:32.4879683 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.4879862 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:32.4880054 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:32.4880942 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.4881138 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:32.4881334 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:32.4882243 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.4882439 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\netprofm.dll","0.0000137","Filter: netprofm.dll, 1: netprofm.dll","2512"
"10:46:32.4882674 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:32.4883847 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.4884214 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\netprofm.dll","0.0000034","AllocationSize: 208,896, EndOfFile: 206,336, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:32.4884402 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\netprofm.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.4884534 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\netprofm.dll","0.0000022","AllocationSize: 208,896, EndOfFile: 206,336, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:32.4884739 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\netprofm.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:32.4885230 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000055","","2512"
"10:46:32.4886467 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.4886847 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\netprofm.dll","0.0000030","AllocationSize: 208,896, EndOfFile: 206,336, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:32.4887047 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\netprofm.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.4887163 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\netprofm.dll","0.0000017","AllocationSize: 208,896, EndOfFile: 206,336, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:32.4887350 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\netprofm.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:32.4887773 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000055","","2512"
"10:46:32.4889740 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.4889966 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000030","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:32.4890072 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000039","","2512"
"10:46:32.4891894 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.4892108 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000029","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:32.4892210 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:32.4893311 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.4893673 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\netprofm.dll","0.0000030","AllocationSize: 208,896, EndOfFile: 206,336, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:32.4893827 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\netprofm.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.4893938 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\netprofm.dll","0.0000021","AllocationSize: 208,896, EndOfFile: 206,336, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:32.4894121 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\netprofm.dll","0.0000018","SyncType: SyncTypeOther","2512"
"10:46:32.4894889 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\netprofm.dll","0.0000026","AllocationSize: 208,896, EndOfFile: 206,336, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:32.4895017 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\netprofm.dll","0.0000018","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.4895116 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\netprofm.dll","0.0000017","AllocationSize: 208,896, EndOfFile: 206,336, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:32.4895291 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\netprofm.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:32.4896169 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\netprofm.dll","0.0199450","Offset: 0, Length: 206,336, Priority: Normal","2512"
"10:46:32.4896737 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\netprofm.dll","0.0178125","Offset: 32,768, Length: 173,568, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2512"
"10:46:32.5162047 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000465","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.5162896 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000504","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:32.5165682 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000265","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:32.5170525 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000243","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.5171174 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000102","Information: DACL","2512"
"10:46:32.5171617 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000141","","2512"
"10:46:32.5176285 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0004719","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:32.5184725 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000179","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.5185109 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000034","Information: DACL","2512"
"10:46:32.5185279 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000051","","2512"
"10:46:32.5189013 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000307","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:32.5192251 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000422","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:32.5195293 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0005069","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.5202602 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000435","Information: DACL","2512"
"10:46:32.5204172 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000990","","2512"
"10:46:32.5216341 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0490031","Offset: 950,272, Length: 32,768","7884"
"10:46:32.5217885 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0487877","Offset: 950,272, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7884"
"10:46:32.5221810 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000602","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:32.5227600 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000333","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.5228923 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000077","Information: DACL","2512"
"10:46:32.5229234 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000350","","2512"
"10:46:32.5326370 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0210240","Offset: 12,734,464, Length: 4,096","7760"
"10:46:32.5328004 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0207915","Offset: 12,734,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.5539695 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000550","Offset: 13,746,176, Length: 4,096","7760"
"10:46:32.5540514 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0309329","Offset: 12,918,784, Length: 4,096","7760"
"10:46:32.5541179 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0308349","Offset: 12,918,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.5708646 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000167","Offset: 1,245,184, Length: 32,768","7884"
"10:46:32.5711129 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000056","Offset: 123, Length: 1","7884"
"10:46:32.5832358 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000201","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.5833370 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000200","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.5835127 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000786","Offset: 163,840, Length: 32,768","7852"
"10:46:32.5836988 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000196","Offset: 131,072, Length: 32,768","7852"
"10:46:32.5838071 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0301970","Offset: 196,608, Length: 32,768","7852"
"10:46:32.5838844 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0300591","Offset: 196,608, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7852"
"10:46:32.5851669 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0219107","Offset: 12,935,168, Length: 4,096","7760"
"10:46:32.5852139 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0218180","Offset: 12,935,168, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.5986970 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.5987286 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:25:49 PM, ChangeTime: 3/20/2019 7:08:49 PM, AllocationSize: 249856, EndOfFile: 246781, FileAttributes: A","2512"
"10:46:32.5987448 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000055","","2512"
"10:46:32.5988442 AM","firefox.exe","7384","ReadFile","C:","0.0005508","Offset: 847,872, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.5994808 AM","firefox.exe","7384","ReadFile","C:","0.0009988","Offset: 806,912, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.6007399 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0560022","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.6071936 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0013948","Offset: 708,608, Length: 4,096","7760"
"10:46:32.6072226 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0013253","Offset: 708,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.6087100 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0593042","Offset: 12,984,320, Length: 4,096","7760"
"10:46:32.6087369 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0592231","Offset: 12,984,320, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.6140732 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000132","Offset: 65,536, Length: 32,768","7852"
"10:46:32.6141223 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0661172","Offset: 294,912, Length: 32,768","7852"
"10:46:32.6141675 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0660037","Offset: 294,912, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7852"
"10:46:32.6567792 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000060","CreationTime: 3/20/2019 7:27:28 PM, LastAccessTime: 3/20/2019 7:42:46 PM, LastWriteTime: 1/10/2019 4:09:04 AM, ChangeTime: 3/20/2019 7:42:34 PM, AllocationSize: 16384, EndOfFile: 13495, FileAttributes: A","2512"
"10:46:32.6568022 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000103","","2512"
"10:46:32.6569528 AM","firefox.exe","7384","ReadFile","C:","0.0009502","Offset: 819,200, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.6581445 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0339359","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.6681908 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0133308","Offset: 14,032,896, Length: 4,096","7760"
"10:46:32.6682531 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0132152","Offset: 14,032,896, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.6803487 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000060","Offset: 123, Length: 1","7852"
"10:46:32.6806141 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000149","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.6806909 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000183","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.6810182 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000102","Offset: 123, Length: 1","7852"
"10:46:32.6811636 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000069","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.6812038 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000123","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.6814286 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0175369","Offset: 262,144, Length: 32,768","7852"
"10:46:32.6815344 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0173577","Offset: 262,144, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7852"
"10:46:32.6820102 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000217","Offset: 14,159,872, Length: 4,096","7760"
"10:46:32.6887788 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000128","Offset: 120, Length: 1","7760"
"10:46:32.6888402 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000064","Offset: 123, Length: 1","7760"
"10:46:32.6890557 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000081","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:32.6891146 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000154","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:32.6891658 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000060","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7760"
"10:46:32.6893126 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0270029","Offset: 12,824,576, Length: 4,096","7760"
"10:46:32.6894141 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0268672","Offset: 12,824,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.6921674 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000154","CreationTime: 4/25/2019 5:40:46 PM, LastAccessTime: 4/25/2019 5:40:46 PM, LastWriteTime: 4/3/2019 9:55:40 AM, ChangeTime: 4/25/2019 8:12:22 PM, AllocationSize: 16384, EndOfFile: 13687, FileAttributes: A","2512"
"10:46:32.6922459 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000533","","2512"
"10:46:32.6925753 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000260","","2512"
"10:46:32.6926610 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000312","","2512"
"10:46:32.6938258 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000632","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.6939440 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000145","CreationTime: 3/20/2019 7:27:28 PM, LastAccessTime: 3/20/2019 7:42:46 PM, LastWriteTime: 1/10/2019 4:09:04 AM, ChangeTime: 3/20/2019 7:42:34 PM, AllocationSize: 16384, EndOfFile: 13495, FileAttributes: A","2512"
"10:46:32.6940046 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000214","","2512"
"10:46:32.6947726 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000649","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.6949117 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000137","AllocationSize: 16,384, EndOfFile: 13,495, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.6949851 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000120","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.6950419 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000093","AllocationSize: 16,384, EndOfFile: 13,495, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.6951353 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000085","SyncType: SyncTypeOther","2512"
"10:46:32.6952936 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0078592","Offset: 0, Length: 13,495, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.6991733 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000145","Offset: 123, Length: 1","7852"
"10:46:32.6992765 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000077","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.6993252 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000140","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.6994442 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000047","Offset: 123, Length: 1","7852"
"10:46:32.6995176 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000038","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.6995453 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000064","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.6996110 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0139538","Offset: 360,448, Length: 32,768","7852"
"10:46:32.6996836 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0138231","Offset: 360,448, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7852"
"10:46:32.7033000 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000077","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:32.7033324 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000107","CreationTime: 3/20/2019 7:27:28 PM, LastAccessTime: 3/20/2019 7:42:46 PM, LastWriteTime: 1/10/2019 4:09:04 AM, ChangeTime: 3/20/2019 7:42:34 PM, FileAttributes: A, AllocationSize: 16,384, EndOfFile: 13,495, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x200000006f440, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:32.7035948 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000265","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7036503 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000051","AllocationSize: 16,384, EndOfFile: 13,495, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.7036784 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.7036981 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","AllocationSize: 16,384, EndOfFile: 13,495, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.7037258 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:32.7038252 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000103","","2512"
"10:46:32.7040522 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000209","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7040970 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000043","AllocationSize: 16,384, EndOfFile: 13,495, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.7041183 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.7041346 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000025","AllocationSize: 16,384, EndOfFile: 13,495, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.7041602 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:32.7042109 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000077","","2512"
"10:46:32.7044149 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000192","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7044614 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000038","AllocationSize: 16,384, EndOfFile: 13,495, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.7045049 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.7045203 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","AllocationSize: 16,384, EndOfFile: 13,495, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.7045454 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:32.7046175 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000082","","2512"
"10:46:32.7048893 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000090","","2512"
"10:46:32.7049324 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1546_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000047","","2512"
"10:46:32.7053036 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7053570 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000047","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:32.7053745 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000059","","2512"
"10:46:32.7056543 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7056991 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000047","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:32.7057158 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000060","","2512"
"10:46:32.7060349 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7060759 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000043","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:32.7060917 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000060","","2512"
"10:46:32.7061450 AM","firefox.exe","7384","CreateFile","C:\","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7061762 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000183","Filter: Windows, 1: Windows","2512"
"10:46:32.7062116 AM","firefox.exe","7384","CloseFile","C:\","0.0000059","","2512"
"10:46:32.7063605 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7063929 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000158","Filter: System32, 1: System32","2512"
"10:46:32.7064245 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:32.7065636 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7065943 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\netprofm.dll","0.0000183","Filter: netprofm.dll, 1: netprofm.dll","2512"
"10:46:32.7066280 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000055","","2512"
"10:46:32.7068972 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7069390 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000043","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:32.7069544 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000060","","2512"
"10:46:32.7070013 AM","firefox.exe","7384","CreateFile","C:\","0.0000116","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7070278 AM","firefox.exe","7384","QueryDirectory","C:\WINDOWS","0.0000141","Filter: WINDOWS, 1: Windows","2512"
"10:46:32.7070568 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:32.7071848 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7072134 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000149","Filter: System32, 1: System32","2512"
"10:46:32.7072522 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000115","","2512"
"10:46:32.7075790 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000205","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7076243 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\netprofm.dll","0.0000256","Filter: netprofm.dll, 1: netprofm.dll","2512"
"10:46:32.7076733 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000081","","2512"
"10:46:32.7080262 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7080723 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2512"
"10:46:32.7080885 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000064","","2512"
"10:46:32.7081401 AM","firefox.exe","7384","CreateFile","C:\","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7081734 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000162","Filter: Windows, 1: Windows","2512"
"10:46:32.7082105 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:32.7083406 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7083714 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000136","Filter: System32, 1: System32","2512"
"10:46:32.7083999 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000047","","2512"
"10:46:32.7085331 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000140","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7085634 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\mswsock.dll","0.0000170","Filter: mswsock.dll, 1: mswsock.dll","2512"
"10:46:32.7085954 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000051","","2512"
"10:46:32.7088377 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7088791 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2512"
"10:46:32.7088940 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000060","","2512"
"10:46:32.7089405 AM","firefox.exe","7384","CreateFile","C:\","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7089657 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000154","Filter: Windows, 1: Windows","2512"
"10:46:32.7089960 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:32.7091231 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7091522 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000132","Filter: System32, 1: System32","2512"
"10:46:32.7091799 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000047","","2512"
"10:46:32.7093228 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000133","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7093514 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\mswsock.dll","0.0000158","Filter: mswsock.dll, 1: mswsock.dll","2512"
"10:46:32.7093817 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000051","","2512"
"10:46:32.7095443 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000175","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7095963 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mswsock.dll","0.0000047","AllocationSize: 405,504, EndOfFile: 401,968, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:32.7096211 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.7096394 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mswsock.dll","0.0000026","AllocationSize: 405,504, EndOfFile: 401,968, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:32.7096676 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:32.7097457 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000076","","2512"
"10:46:32.7099488 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000174","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7100051 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mswsock.dll","0.0000038","AllocationSize: 405,504, EndOfFile: 401,968, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:32.7100264 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.7100426 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mswsock.dll","0.0000026","AllocationSize: 405,504, EndOfFile: 401,968, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:32.7100686 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:32.7101318 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\mswsock.dll","0.0192952","Offset: 372,736, Length: 29,232, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.7136915 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000089","Offset: 123, Length: 1","7852"
"10:46:32.7137585 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000051","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7137943 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000098","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7138818 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000034","Offset: 123, Length: 1","7852"
"10:46:32.7139466 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000034","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7139705 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000056","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7140230 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000030","Offset: 123, Length: 1","7852"
"10:46:32.7140537 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000026","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7140733 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000039","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7141322 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000030","Offset: 123, Length: 1","7852"
"10:46:32.7141710 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000026","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7141890 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000042","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7142338 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0210795","Offset: 327,680, Length: 32,768","7852"
"10:46:32.7142892 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0209857","Offset: 327,680, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7852"
"10:46:32.7163855 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0285103","Offset: 3,231,744, Length: 4,096","7760"
"10:46:32.7165288 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0283090","Offset: 3,231,744, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.7295434 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mswsock.dll","0.0000099","AllocationSize: 405,504, EndOfFile: 401,968, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:32.7295844 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000175","","2512"
"10:46:32.7298805 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000243","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7299761 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mswsock.dll","0.0000042","AllocationSize: 405,504, EndOfFile: 401,968, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:32.7300030 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.7300222 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mswsock.dll","0.0000029","AllocationSize: 405,504, EndOfFile: 401,968, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:32.7300542 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:32.7305610 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000090","","2512"
"10:46:32.7311469 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7311964 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000046","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2512"
"10:46:32.7312147 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000068","","2512"
"10:46:32.7315560 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000487","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7316636 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000128","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2512"
"10:46:32.7317045 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000094","","2512"
"10:46:32.7322221 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000328","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7323206 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000068","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2512"
"10:46:32.7323612 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000166","","2512"
"10:46:32.7324951 AM","firefox.exe","7384","CreateFile","C:\","0.0000188","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7325416 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0002791","Filter: Windows, 1: Windows","2512"
"10:46:32.7328548 AM","firefox.exe","7384","CloseFile","C:\","0.0000102","","2512"
"10:46:32.7330826 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000227","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7331398 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000388","Filter: System32, 1: System32","2512"
"10:46:32.7332179 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000495","","2512"
"10:46:32.7334863 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000209","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7335311 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\mswsock.dll","0.0000251","Filter: mswsock.dll, 1: mswsock.dll","2512"
"10:46:32.7335784 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000073","","2512"
"10:46:32.7341135 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000320","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7341869 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000068","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2512"
"10:46:32.7342056 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000086","","2512"
"10:46:32.7342658 AM","firefox.exe","7384","CreateFile","C:\","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7342957 AM","firefox.exe","7384","QueryDirectory","C:\WINDOWS","0.0000149","Filter: WINDOWS, 1: Windows","2512"
"10:46:32.7343225 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:32.7344249 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7344480 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000106","Filter: System32, 1: System32","2512"
"10:46:32.7344693 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000043","","2512"
"10:46:32.7345662 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7345930 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\mswsock.dll","0.0000154","Filter: mswsock.dll, 1: mswsock.dll","2512"
"10:46:32.7346208 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000047","","2512"
"10:46:32.7348486 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7349002 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000069","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","2512"
"10:46:32.7349152 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000047","","2512"
"10:46:32.7349502 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7349698 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000107","Filter: Windows, 1: Windows","2512"
"10:46:32.7349911 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:32.7350829 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7351038 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:32.7351238 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:32.7352164 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7352394 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\winrnr.dll","0.0000197","Filter: winrnr.dll, 1: winrnr.dll","2512"
"10:46:32.7352727 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000056","","2512"
"10:46:32.7354297 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000056","Offset: 123, Length: 1","7852"
"10:46:32.7354707 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7354771 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000034","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7355036 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000064","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7355044 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000034","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","2512"
"10:46:32.7355155 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000043","","2512"
"10:46:32.7355492 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000026","Offset: 123, Length: 1","7852"
"10:46:32.7355505 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7355710 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000132","Filter: Windows, 1: Windows","2512"
"10:46:32.7356013 AM","firefox.exe","7384","CloseFile","C:\","0.0000785","","2512"
"10:46:32.7356025 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000030","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7356192 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000038","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7356606 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000025","Offset: 123, Length: 1","7852"
"10:46:32.7356819 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000021","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7356964 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000030","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7357532 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000012","Offset: 123, Length: 1","7852"
"10:46:32.7357805 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000017","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7357920 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000021","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7358253 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000012","Offset: 123, Length: 1","7852"
"10:46:32.7358385 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7358406 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000013","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7358492 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000017","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7358692 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000145","Filter: System32, 1: System32","2512"
"10:46:32.7358799 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000013","Offset: 123, Length: 1","7852"
"10:46:32.7358999 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000060","","2512"
"10:46:32.7359012 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000013","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7359097 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000018","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7359388 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000012","Offset: 123, Length: 1","7852"
"10:46:32.7359511 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000013","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7359597 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000021","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7359921 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000013","Offset: 123, Length: 1","7852"
"10:46:32.7360134 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000013","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7360215 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000022","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7360386 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000017","Offset: 123, Length: 1","7852"
"10:46:32.7360497 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000162","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7360582 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000013","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7360663 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000022","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7360838 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\winrnr.dll","0.0000201","Filter: winrnr.dll, 1: winrnr.dll","2512"
"10:46:32.7360907 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0217352","Offset: 393,216, Length: 32,768","7852"
"10:46:32.7361214 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000064","","2512"
"10:46:32.7361222 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0216410","Offset: 393,216, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7852"
"10:46:32.7362972 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000209","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7363543 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winrnr.dll","0.0000047","AllocationSize: 32,768, EndOfFile: 31,232, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:32.7363799 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.7363991 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winrnr.dll","0.0000034","AllocationSize: 32,768, EndOfFile: 31,232, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:32.7364320 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:32.7365054 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000089","","2512"
"10:46:32.7367085 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000196","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7367652 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winrnr.dll","0.0000043","AllocationSize: 32,768, EndOfFile: 31,232, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:32.7367883 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.7368070 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winrnr.dll","0.0000030","AllocationSize: 32,768, EndOfFile: 31,232, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:32.7368399 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:32.7369090 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000094","","2512"
"10:46:32.7372171 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7372520 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000039","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:32.7372700 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000051","","2512"
"10:46:32.7375153 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7375460 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000039","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:32.7375627 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000046","","2512"
"10:46:32.7377081 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000167","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7377585 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winrnr.dll","0.0000038","AllocationSize: 32,768, EndOfFile: 31,232, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:32.7377807 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.7377977 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winrnr.dll","0.0000026","AllocationSize: 32,768, EndOfFile: 31,232, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:32.7378276 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:32.7379390 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winrnr.dll","0.0000034","AllocationSize: 32,768, EndOfFile: 31,232, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:32.7379582 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.7379748 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winrnr.dll","0.0000026","AllocationSize: 32,768, EndOfFile: 31,232, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:32.7380038 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:32.7380401 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\winrnr.dll","0.0000384","Offset: 0, Length: 31,232, Priority: Normal","2512"
"10:46:32.7386532 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000205","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7386993 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000200","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:32.7388704 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000196","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:32.7389869 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000153","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7390206 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000059","Information: DACL","2512"
"10:46:32.7390376 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000043","","2512"
"10:46:32.7391558 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000150","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:32.7392552 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7392791 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000017","Information: DACL","2512"
"10:46:32.7392907 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:32.7396226 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000162","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:32.7397515 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000153","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:32.7398568 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000116","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7398812 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000021","Information: DACL","2512"
"10:46:32.7398931 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000038","","2512"
"10:46:32.7400036 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:32.7401005 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000106","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7401231 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:32.7401342 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:32.7406172 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0057574","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7449619 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0613347","Offset: 12,726,272, Length: 4,096","7760"
"10:46:32.7450029 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0612553","Offset: 12,726,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.7464147 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000068","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:21:19 PM, ChangeTime: 3/20/2019 7:08:08 PM, AllocationSize: 335872, EndOfFile: 333889, FileAttributes: A","2512"
"10:46:32.7464510 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000111","","2512"
"10:46:32.7465184 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000073","","2512"
"10:46:32.7465414 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000056","","2512"
"10:46:32.7468636 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7468951 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:21:19 PM, ChangeTime: 3/20/2019 7:08:08 PM, AllocationSize: 335872, EndOfFile: 333889, FileAttributes: A","2512"
"10:46:32.7469092 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","","2512"
"10:46:32.7470551 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000163","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7470914 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 335,872, EndOfFile: 333,889, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.7471093 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.7471234 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 335,872, EndOfFile: 333,889, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.7471456 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:32.7472015 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0240487","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.7579143 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000055","Offset: 123, Length: 1","7852"
"10:46:32.7579573 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000026","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7579757 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000055","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7580167 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000017","Offset: 123, Length: 1","7852"
"10:46:32.7580674 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000026","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7580807 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000038","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7581421 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000077","Offset: 123, Length: 1","7852"
"10:46:32.7581801 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000017","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7581920 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000039","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7582496 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000021","Offset: 123, Length: 1","7852"
"10:46:32.7582876 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000021","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7582978 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000030","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7583401 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000030","Offset: 123, Length: 1","7852"
"10:46:32.7583661 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000026","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7583810 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000043","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7584352 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000026","Offset: 123, Length: 1","7852"
"10:46:32.7584753 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000026","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7584911 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000038","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7585453 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000034","Offset: 123, Length: 1","7852"
"10:46:32.7585786 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000025","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7585948 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000102","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7586639 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000047","Offset: 123, Length: 1","7852"
"10:46:32.7587292 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000030","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7587437 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000038","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7587834 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000017","Offset: 123, Length: 1","7852"
"10:46:32.7588021 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000013","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7588107 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000021","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7588333 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000013","Offset: 123, Length: 1","7852"
"10:46:32.7588538 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000013","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7588619 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000017","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7588956 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000013","Offset: 123, Length: 1","7852"
"10:46:32.7589088 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000013","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7589169 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000017","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7589348 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000013","Offset: 123, Length: 1","7852"
"10:46:32.7589532 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000013","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7589613 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000021","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7589873 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000009","Offset: 123, Length: 1","7852"
"10:46:32.7589997 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000008","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7590074 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000017","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7590266 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000008","Offset: 123, Length: 1","7852"
"10:46:32.7590432 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000013","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7590513 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000017","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7590752 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000013","Offset: 123, Length: 1","7852"
"10:46:32.7590876 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000013","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7590957 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000017","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7591136 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000013","Offset: 123, Length: 1","7852"
"10:46:32.7591303 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000012","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7591384 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000017","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7591610 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000013","Offset: 123, Length: 1","7852"
"10:46:32.7591733 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000013","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7591815 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000017","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7592071 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000012","Offset: 123, Length: 1","7852"
"10:46:32.7592258 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000013","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7592339 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000017","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7592489 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000012","Offset: 123, Length: 1","7852"
"10:46:32.7592668 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000008","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7592745 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000017","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7592992 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000013","Offset: 123, Length: 1","7852"
"10:46:32.7593120 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000013","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7852"
"10:46:32.7593201 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite","0.0000017","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7852"
"10:46:32.7593397 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\favicons.sqlite-shm","0.0000009","Offset: 123, Length: 1","7852"
"10:46:32.7713146 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0020066","Offset: 303,104, Length: 30,785, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.7734445 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0021611","Offset: 32,768, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.7751170 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 9080","5728"
"10:46:32.7757498 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0006575","Offset: 65,536, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.7759938 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000073","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","8244"
"10:46:32.7760280 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000081","AllocationSize: 81,920, EndOfFile: 81,920, NumberOfLinks: 1, DeletePending: False, Directory: False","8244"
"10:46:32.7760553 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000034","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","8244"
"10:46:32.7765485 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.7765899 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000055","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:32.7766112 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000069","","5068"
"10:46:32.7766343 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0004749","Offset: 106,496, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.7769073 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\idb-deleting-3870112724rsegmnoittet-es","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:32.7772367 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000470","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.7773024 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000056","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","5068"
"10:46:32.7773242 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0290475","","5068"
"10:46:32.7786221 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0004442","Offset: 163,840, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.7792323 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0009203","Offset: 200,704, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.7796047 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000077","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7884"
"10:46:32.7796389 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000098","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7884"
"10:46:32.7796837 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0114658","Offset: 1,048,576, Length: 32,768","7884"
"10:46:32.7797276 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0113861","Offset: 1,048,576, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7884"
"10:46:32.7799764 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000059","Offset: 120, Length: 1","8244"
"10:46:32.7800003 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000021","Offset: 123, Length: 1","8244"
"10:46:32.7802336 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0003823","Offset: 233,472, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.7809880 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0004203","Offset: 266,240, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.7814966 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0003106","Offset: 299,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.7819591 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000068","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:32.7819847 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000098","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:21:19 PM, ChangeTime: 3/20/2019 7:08:08 PM, FileAttributes: A, AllocationSize: 335,872, EndOfFile: 333,889, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x3000000061276, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:32.7822176 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000231","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7822650 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","AllocationSize: 335,872, EndOfFile: 333,889, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.7822880 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000035","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.7823030 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 335,872, EndOfFile: 333,889, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.7823243 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:32.7824391 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000077","","2512"
"10:46:32.7826102 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000175","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7826486 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","AllocationSize: 335,872, EndOfFile: 333,889, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.7826661 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.7826780 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000022","AllocationSize: 335,872, EndOfFile: 333,889, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.7826976 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000018","SyncType: SyncTypeOther","2512"
"10:46:32.7827399 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000060","","2512"
"10:46:32.7845144 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000333","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7845912 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000068","AllocationSize: 335,872, EndOfFile: 333,889, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.7846390 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.7846624 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","AllocationSize: 335,872, EndOfFile: 333,889, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.7846991 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:32.7848323 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0009395","Offset: 98,304, Length: 65,536, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.7859053 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0003264","Offset: 196,608, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:32.7864587 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000184","","2512"
"10:46:32.7912161 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000072","Offset: 123, Length: 1","7884"
"10:46:32.7940538 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000094","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7884"
"10:46:32.7940897 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000089","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7884"
"10:46:32.7941353 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000205","Offset: 753,664, Length: 32,768","7884"
"10:46:32.7944481 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000051","Offset: 123, Length: 1","7884"
"10:46:32.7970861 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000252","","2512"
"10:46:32.7979971 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000230","","2512"
"10:46:32.7987139 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000303","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7987856 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000064","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","2512"
"10:46:32.7988116 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000089","","2512"
"10:46:32.7992319 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.7993799 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000085","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","2512"
"10:46:32.7994106 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000137","","2512"
"10:46:32.8006706 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000678","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.8007789 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000060","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","2512"
"10:46:32.8008033 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000106","","2512"
"10:46:32.8012184 AM","firefox.exe","7384","CreateFile","C:\","0.0000307","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.8016451 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000362","Filter: Windows, 1: Windows","2512"
"10:46:32.8017176 AM","firefox.exe","7384","CloseFile","C:\","0.0000128","","2512"
"10:46:32.8019484 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000222","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.8019958 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000213","Filter: System32, 1: System32","2512"
"10:46:32.8020402 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000068","","2512"
"10:46:32.8023017 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000209","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.8024191 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\winrnr.dll","0.0000264","Filter: winrnr.dll, 1: winrnr.dll","2512"
"10:46:32.8025411 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000094","","2512"
"10:46:32.8040882 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.8041539 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000060","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","2512"
"10:46:32.8041765 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000077","","2512"
"10:46:32.8042478 AM","firefox.exe","7384","CreateFile","C:\","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.8042819 AM","firefox.exe","7384","QueryDirectory","C:\WINDOWS","0.0000209","Filter: WINDOWS, 1: Windows","2512"
"10:46:32.8043233 AM","firefox.exe","7384","CloseFile","C:\","0.0000059","","2512"
"10:46:32.8044756 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.8045123 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000183","Filter: System32, 1: System32","2512"
"10:46:32.8045490 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000060","","2512"
"10:46:32.8047000 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000167","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.8047367 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\winrnr.dll","0.0000218","Filter: winrnr.dll, 1: winrnr.dll","2512"
"10:46:32.8047760 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000059","","2512"
"10:46:32.8057244 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000423","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.8058111 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000072","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:32.8058345 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000103","","2512"
"10:46:32.8059096 AM","firefox.exe","7384","CreateFile","C:\","0.0000162","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.8059467 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000222","Filter: Windows, 1: Windows","2512"
"10:46:32.8059877 AM","firefox.exe","7384","CloseFile","C:\","0.0000068","","2512"
"10:46:32.8061528 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000188","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.8061912 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000201","Filter: System32, 1: System32","2512"
"10:46:32.8062271 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000068","","2512"
"10:46:32.8063546 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0013756","Offset: 667,648, Length: 4,096","7760"
"10:46:32.8068658 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8069114 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000060","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:32.8069191 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0007868","Offset: 667,648, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.8069323 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0008052","","5068"
"10:46:32.8071290 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000290","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.8072395 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wshbth.dll","0.0000235","Filter: wshbth.dll, 1: wshbth.dll","2512"
"10:46:32.8072856 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000158","","2512"
"10:46:32.8075890 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.8076423 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000051","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:32.8076602 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000094","","2512"
"10:46:32.8078958 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0012783","Offset: 614,400, Length: 4,096","7760"
"10:46:32.8079371 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003653","Offset: 614,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.8079977 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000427","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:32.8080822 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000205","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:32.8082414 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000059","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:32.8082623 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:32.8083275 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000039","Offset: 1,073,741,824, Length: 1","5068"
"10:46:32.8087154 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000281","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:32.8091267 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8091894 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000064","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:32.8092146 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000085","","5068"
"10:46:32.8092163 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003418","Offset: 622,592, Length: 4,096","7760"
"10:46:32.8092551 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0002799","Offset: 622,592, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.8092765 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000046","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:32.8093016 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000086","Offset: 0, Length: 4,096","5068"
"10:46:32.8093887 AM","firefox.exe","7384","CreateFile","C:\","0.0000183","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.8094347 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000197","Filter: Windows, 1: Windows","2512"
"10:46:32.8094766 AM","firefox.exe","7384","CloseFile","C:\","0.0000064","","2512"
"10:46:32.8096033 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003149","Offset: 675,840, Length: 4,096","7760"
"10:46:32.8096357 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0002616","Offset: 675,840, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.8096553 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8097010 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000047","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:32.8097232 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000068","","5068"
"10:46:32.8098294 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000162","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.8098657 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0004864","Filter: System32, 1: System32","2512"
"10:46:32.8099497 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000367","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:32.8100325 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:32.8100564 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000073","Offset: 0, Length: 4,096","5068"
"10:46:32.8104895 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000153","","2512"
"10:46:32.8108338 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000712","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8109311 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000059","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:32.8109537 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000098","","5068"
"10:46:32.8113556 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8113991 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000047","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:32.8114162 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000064","","5068"
"10:46:32.8116065 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000239","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8116509 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000046","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,798, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5068"
"10:46:32.8116718 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000068","","5068"
"10:46:32.8117609 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000060","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:32.8118544 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000042","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:32.8118842 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000150","Offset: 8,192, Length: 4,096","5068"
"10:46:32.8119645 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:32.8119875 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000077","Offset: 12,288, Length: 4,096","5068"
"10:46:32.8120592 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:32.8120856 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000090","Offset: 16,384, Length: 4,096","5068"
"10:46:32.8121586 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:32.8121791 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Offset: 1,073,741,826, Length: 510","5068"
"10:46:32.8121957 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:32.8122132 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:32.8122435 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000158","","5068"
"10:46:32.8123177 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","Offset: 1,073,741,825, Length: 1","5068"
"10:46:32.8123348 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Offset: 1,073,741,826, Length: 510","5068"
"10:46:32.8123497 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000022","Offset: 1,073,741,824, Length: 1","5068"
"10:46:32.8123711 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000115","","5068"
"10:46:32.8152566 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000295","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8153082 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000064","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:32.8153326 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000072","","5068"
"10:46:32.8157413 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\idb-deleting-3870112724rsegmnoittet-es","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:32.8161437 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000290","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8161923 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000060","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","5068"
"10:46:32.8162153 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000116","","5068"
"10:46:32.8166932 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8167431 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:32.8167632 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000081","","5068"
"10:46:32.8169872 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000367","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:32.8170742 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000162","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:32.8172095 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:32.8172338 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:32.8172551 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000022","Offset: 1,073,741,824, Length: 1","5068"
"10:46:32.8178435 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000316","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:32.8182740 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8183256 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000064","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:32.8183508 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000085","","5068"
"10:46:32.8184161 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:32.8184481 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000085","Offset: 0, Length: 4,096","5068"
"10:46:32.8188854 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8189319 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000047","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:32.8189550 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000068","","5068"
"10:46:32.8191879 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000363","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:32.8192801 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:32.8193193 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000090","Offset: 0, Length: 4,096","5068"
"10:46:32.8200848 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000281","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8201091 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000218","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.8201330 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:32.8201569 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000090","","5068"
"10:46:32.8201603 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wshbth.dll","0.0000260","Filter: wshbth.dll, 1: wshbth.dll","2512"
"10:46:32.8202132 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000077","","2512"
"10:46:32.8204351 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000222","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.8204795 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000721","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8204999 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wshbth.dll","0.0000052","AllocationSize: 65,536, EndOfFile: 63,488, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.8205277 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.8205699 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000043","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:32.8205883 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000068","","5068"
"10:46:32.8206881 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wshbth.dll","0.0000068","AllocationSize: 65,536, EndOfFile: 63,488, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.8207295 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:32.8207922 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000218","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8208144 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000094","","2512"
"10:46:32.8208349 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000042","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,798, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5068"
"10:46:32.8208566 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000056","","5068"
"10:46:32.8209304 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:32.8210060 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000315","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:32.8210636 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000089","Offset: 8,192, Length: 4,096","5068"
"10:46:32.8211237 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000039","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:32.8211591 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","Offset: 12,288, Length: 4,096","5068"
"10:46:32.8211613 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000286","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.8212287 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:32.8212423 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wshbth.dll","0.0000047","AllocationSize: 65,536, EndOfFile: 63,488, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.8212564 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","Offset: 16,384, Length: 4,096","5068"
"10:46:32.8212701 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.8212914 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wshbth.dll","0.0000034","AllocationSize: 65,536, EndOfFile: 63,488, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.8213123 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:32.8213268 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:32.8213315 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","Offset: 1,073,741,826, Length: 510","5068"
"10:46:32.8213473 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:32.8213622 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:32.8214143 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000128","","5068"
"10:46:32.8214885 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Offset: 1,073,741,825, Length: 1","5068"
"10:46:32.8215133 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Offset: 1,073,741,826, Length: 510","5068"
"10:46:32.8215414 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Offset: 1,073,741,824, Length: 1","5068"
"10:46:32.8215589 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000086","","5068"
"10:46:32.8215598 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000106","","2512"
"10:46:32.8215828 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\segoeuil.ttf","0.0660417","Offset: 868,352, Length: 10,020, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:32.8219041 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.8219399 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000047","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:32.8219613 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000059","","2512"
"10:46:32.8220987 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000238","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8221691 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000051","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:32.8221917 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000064","","5068"
"10:46:32.8223687 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.8223952 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000102","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:32.8224199 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000060","","2512"
"10:46:32.8225381 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\idb-deleting-3870112724rsegmnoittet-es","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:32.8225556 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000149","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.8226102 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wshbth.dll","0.0000043","AllocationSize: 65,536, EndOfFile: 63,488, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.8226345 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.8226529 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wshbth.dll","0.0000034","AllocationSize: 65,536, EndOfFile: 63,488, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.8226755 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:32.8227847 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wshbth.dll","0.0000026","AllocationSize: 65,536, EndOfFile: 63,488, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.8227988 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:32.8228091 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wshbth.dll","0.0000017","AllocationSize: 65,536, EndOfFile: 63,488, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:32.8228274 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:32.8228786 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\wshbth.dll","0.0670572","Offset: 0, Length: 63,488, Priority: Normal","2512"
"10:46:32.8229353 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\wshbth.dll","0.0669318","Offset: 32,768, Length: 30,720, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2512"
"10:46:32.8229392 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000311","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8229921 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","5068"
"10:46:32.8230134 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000081","","5068"
"10:46:32.8235515 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000524","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8236240 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000055","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:32.8236453 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000077","","5068"
"10:46:32.8238433 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000358","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:32.8239222 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000610","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:32.8241266 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000055","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:32.8241688 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:32.8241889 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Offset: 1,073,741,824, Length: 1","5068"
"10:46:32.8245678 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:32.8249377 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000047","Offset: 120, Length: 1","7760"
"10:46:32.8249467 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0002483","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8249616 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000021","Offset: 123, Length: 1","7760"
"10:46:32.8250226 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:32.8250499 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000056","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:32.8250712 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000026","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7760"
"10:46:32.8252240 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000064","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:32.8252504 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000103","","5068"
"10:46:32.8253183 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:32.8253490 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000111","Offset: 0, Length: 4,096","5068"
"10:46:32.8257279 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8257612 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000034","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:32.8257752 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000056","","5068"
"10:46:32.8259306 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000268","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:32.8259950 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:32.8260146 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000056","Offset: 0, Length: 4,096","5068"
"10:46:32.8265804 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8266149 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:32.8266299 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000098","","5068"
"10:46:32.8269554 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8269942 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000047","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:32.8270126 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000060","","5068"
"10:46:32.8271828 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000222","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8272255 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000043","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,798, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5068"
"10:46:32.8272455 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000056","","5068"
"10:46:32.8273215 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:32.8273991 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000039","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:32.8274277 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000086","Offset: 8,192, Length: 4,096","5068"
"10:46:32.8274832 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:32.8275050 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000128","Offset: 12,288, Length: 4,096","5068"
"10:46:32.8276031 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:32.8276257 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000055","Offset: 16,384, Length: 4,096","5068"
"10:46:32.8277025 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:32.8277243 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","Offset: 1,073,741,826, Length: 510","5068"
"10:46:32.8277622 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000022","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:32.8277797 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000022","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:32.8278053 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000154","","5068"
"10:46:32.8278723 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","Offset: 1,073,741,825, Length: 1","5068"
"10:46:32.8278872 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000022","Offset: 1,073,741,826, Length: 510","5068"
"10:46:32.8279013 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Offset: 1,073,741,824, Length: 1","5068"
"10:46:32.8279278 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000256","","5068"
"10:46:32.8286339 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8286808 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000184","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:32.8287197 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000077","","5068"
"10:46:32.8291229 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\idb-deleting-3870112724rsegmnoittet-es","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:32.8295069 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000320","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8295589 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000056","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","5068"
"10:46:32.8295922 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000107","","5068"
"10:46:32.8301358 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000324","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8301921 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000056","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:32.8302156 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000089","","5068"
"10:46:32.8304332 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000350","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:32.8305232 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000175","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:32.8306717 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000055","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:32.8306956 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000025","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:32.8307156 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000094","Offset: 1,073,741,824, Length: 1","5068"
"10:46:32.8312268 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:32.8316044 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8316534 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000064","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:32.8316825 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000098","","5068"
"10:46:32.8317482 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:32.8317802 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000098","Offset: 0, Length: 4,096","5068"
"10:46:32.8334442 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000345","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8335035 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000072","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:32.8336434 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000243","","5068"
"10:46:32.8348867 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000103","Offset: 120, Length: 1","7760"
"10:46:32.8349332 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000039","Offset: 123, Length: 1","7760"
"10:46:32.8350002 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000043","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:32.8350258 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000086","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:32.8350518 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000026","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7760"
"10:46:32.8356338 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0001515","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:32.8359069 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000081","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:32.8359547 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0001595","Offset: 0, Length: 4,096","5068"
"10:46:32.8384417 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0002407","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8389285 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000124","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:32.8398655 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000081","Offset: 120, Length: 1","7760"
"10:46:32.8398979 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","Offset: 123, Length: 1","7760"
"10:46:32.8401155 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000056","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:32.8401471 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000085","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:32.8401757 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7760"
"10:46:32.8404407 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000234","","5068"
"10:46:32.8408567 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8408925 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000047","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:32.8409070 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000047","","5068"
"10:46:32.8410376 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000183","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:32.8410713 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000042","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,798, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5068"
"10:46:32.8410862 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000038","","5068"
"10:46:32.8411481 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000042","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:32.8412129 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:32.8412347 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000077","Offset: 8,192, Length: 4,096","5068"
"10:46:32.8412791 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:32.8412936 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Offset: 12,288, Length: 4,096","5068"
"10:46:32.8413375 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:32.8413541 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000035","Offset: 16,384, Length: 4,096","5068"
"10:46:32.8413934 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:32.8414079 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Offset: 1,073,741,826, Length: 510","5068"
"10:46:32.8414181 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:32.8414288 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:32.8414728 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000123","","5068"
"10:46:32.8415205 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Offset: 1,073,741,825, Length: 1","5068"
"10:46:32.8415316 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Offset: 1,073,741,826, Length: 510","5068"
"10:46:32.8415419 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Offset: 1,073,741,824, Length: 1","5068"
"10:46:32.8415534 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000060","","5068"
"10:46:32.8420133 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000201","Offset: 3,932,160, Length: 65,536","7900"
"10:46:32.8421567 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0007509","Offset: 3,997,696, Length: 65,536","7900"
"10:46:32.8430659 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000559","Offset: 4,063,232, Length: 65,536","7900"
"10:46:32.8431841 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0073959","Offset: 4,128,768, Length: 65,536","7900"
"10:46:32.8438843 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000081","Offset: 120, Length: 1","7760"
"10:46:32.8439231 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000034","Offset: 123, Length: 1","7760"
"10:46:32.8439961 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000038","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:32.8440238 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000085","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:32.8440511 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7760"
"10:46:32.8493264 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000086","Offset: 120, Length: 1","7760"
"10:46:32.8493580 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000026","Offset: 123, Length: 1","7760"
"10:46:32.8495257 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000132","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:32.8495632 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000081","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:32.8496025 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7760"
"10:46:32.8506619 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0002330","Offset: 4,194,304, Length: 65,536","7900"
"10:46:32.8510169 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0013555","Offset: 4,259,840, Length: 65,536","7900"
"10:46:32.8523848 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000077","Offset: 120, Length: 1","7760"
"10:46:32.8524159 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","Offset: 123, Length: 1","7760"
"10:46:32.8524991 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000047","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:32.8525277 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000077","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:32.8525537 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000026","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7760"
"10:46:32.8532825 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0173338","Offset: 13,172,736, Length: 4,096","7760"
"10:46:32.8533358 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0172621","Offset: 13,172,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.8535231 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0001071","Offset: 4,325,376, Length: 65,536","7900"
"10:46:32.8537638 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000145","Offset: 4,390,912, Length: 65,536","7900"
"10:46:32.8539080 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000141","Offset: 4,456,448, Length: 65,536","7900"
"10:46:32.8540565 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0002653","Offset: 4,521,984, Length: 65,536","7900"
"10:46:32.8544678 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000157","Offset: 4,587,520, Length: 65,536","7900"
"10:46:32.8545962 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.1615682","Offset: 4,653,056, Length: 65,536","7900"
"10:46:32.8707080 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0016917","Offset: 409,600, Length: 4,096","7760"
"10:46:32.8707468 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0016414","Offset: 409,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.8729092 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000047","Offset: 120, Length: 1","7760"
"10:46:32.8729301 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000021","Offset: 123, Length: 1","7760"
"10:46:32.8729881 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000034","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:32.8730120 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000068","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:32.8730346 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7760"
"10:46:32.8731093 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0231070","Offset: 15,736,832, Length: 4,096","7760"
"10:46:32.8732292 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0229645","Offset: 15,736,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.8743667 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.4158030","Offset: 24,117,248, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:32.8783385 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000158","Name: \Windows\System32\sechost.dll","8024"
"10:46:32.8794909 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:32.8795703 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40786, endtime: 40786, seqnum: 0, connid: 0","0"
"10:46:32.8798131 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:32.8798455 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40786, endtime: 40786, seqnum: 0, connid: 0","0"
"10:46:32.8799718 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:32.8799918 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40786, endtime: 40786, seqnum: 0, connid: 0","0"
"10:46:32.8800601 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:32.8800729 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40786, endtime: 40786, seqnum: 0, connid: 0","0"
"10:46:32.8879633 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\segoeuil.ttf","0.0208478","Offset: 749,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:32.8906406 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000184","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.8906794 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000154","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:32.8908100 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000192","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:32.8909231 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000115","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.8909504 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000025","Information: DACL","2512"
"10:46:32.8909649 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000042","","2512"
"10:46:32.8910818 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:32.8911803 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000107","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.8912034 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:32.8912149 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:32.8915985 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000158","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:32.8917282 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:32.8918344 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000120","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.8918592 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000025","Information: DACL","2512"
"10:46:32.8918711 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000039","","2512"
"10:46:32.8919774 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:32.8920746 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.8920973 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:32.8921083 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000039","","2512"
"10:46:32.8962718 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.1287826","Offset: 12,537,856, Length: 4,096","7760"
"10:46:32.8963097 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.1286795","Offset: 12,537,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:32.9028753 AM","firefox.exe","7384","ReadFile","C:\$Directory","0.0352081","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","9080"
"10:46:32.9028791 AM","firefox.exe","7384","ReadFile","C:","0.0777879","Offset: 397,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:32.9089276 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\segoeuil.ttf","0.0020347","Offset: 786,432, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:32.9111223 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\segoeuil.ttf","0.0003563","Offset: 819,200, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:32.9136627 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49762 -> server-13-227-74-8.sfo20.r.cloudfront.net:https","0.0000000","Length: 474, startime: 40786, endtime: 40789, seqnum: 0, connid: 0","0"
"10:46:32.9136913 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49762 -> server-13-227-74-8.sfo20.r.cloudfront.net:https","0.0000000","Length: 815, seqnum: 0, connid: 0","0"
"10:46:32.9137075 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49762 -> server-13-227-74-8.sfo20.r.cloudfront.net:https","0.0000000","Length: 359, seqnum: 0, connid: 0","0"
"10:46:32.9138978 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:32.9139204 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40789, endtime: 40789, seqnum: 0, connid: 0","0"
"10:46:32.9139721 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:32.9139814 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40789, endtime: 40789, seqnum: 0, connid: 0","0"
"10:46:32.9152683 AM","firefox.exe","7336","CreateFile","C:\Windows\Fonts\segoeuil.ttf","0.0000350","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:32.9153387 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\Fonts\segoeuil.ttf","0.0000059","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 7:31:30 PM, FileAttributes: A","7392"
"10:46:32.9153532 AM","firefox.exe","7336","CloseFile","C:\Windows\Fonts\segoeuil.ttf","0.0000068","","7392"
"10:46:32.9159134 AM","firefox.exe","1008","CreateFile","C:\Windows\Fonts\segoeuil.ttf","0.0000260","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4012"
"10:46:32.9159876 AM","firefox.exe","1008","QueryInformationVolume","C:\Windows\Fonts\segoeuil.ttf","0.0000047","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","4012"
"10:46:32.9160124 AM","firefox.exe","1008","QueryAllInformationFile","C:\Windows\Fonts\segoeuil.ttf","0.0000077","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 7:31:30 PM, FileAttributes: A, AllocationSize: 880,640, EndOfFile: 878,372, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x8000000054157, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","4012"
"10:46:32.9160401 AM","firefox.exe","1008","CloseFile","C:\Windows\Fonts\segoeuil.ttf","0.0000085","","4012"
"10:46:32.9162415 AM","firefox.exe","1008","CreateFile","C:\Windows\Fonts\segoeuil.ttf","0.0000222","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4012"
"10:46:32.9163042 AM","firefox.exe","1008","QueryInformationVolume","C:\Windows\Fonts\segoeuil.ttf","0.0000039","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","4012"
"10:46:32.9163260 AM","firefox.exe","1008","QueryAllInformationFile","C:\Windows\Fonts\segoeuil.ttf","0.0000059","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 7:31:30 PM, FileAttributes: A, AllocationSize: 880,640, EndOfFile: 878,372, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x8000000054157, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","4012"
"10:46:32.9163588 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\Fonts\segoeuil.ttf","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","4012"
"10:46:32.9163802 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\Fonts\segoeuil.ttf","0.0000038","AllocationSize: 880,640, EndOfFile: 878,372, NumberOfLinks: 3, DeletePending: False, Directory: False","4012"
"10:46:32.9164147 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\Fonts\segoeuil.ttf","0.0000030","SyncType: SyncTypeOther","4012"
"10:46:32.9165013 AM","firefox.exe","1008","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0159267","Offset: 15,097,856, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","4012"
"10:46:32.9168252 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings","0.0084574","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","4904"
"10:46:32.9234641 AM","firefox.exe","7336","CreateFile","C:\Windows\Fonts\segoeuil.ttf","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:32.9235059 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\Fonts\segoeuil.ttf","0.0000043","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 7:31:30 PM, FileAttributes: A","7392"
"10:46:32.9235132 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0011~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.3540732","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:32.9235183 AM","firefox.exe","7336","CloseFile","C:\Windows\Fonts\segoeuil.ttf","0.0000056","","7392"
"10:46:32.9244578 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9244885 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000039","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","7396"
"10:46:32.9244996 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000060","","7396"
"10:46:32.9247036 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9247253 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000030","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","7396"
"10:46:32.9247343 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000056","","7396"
"10:46:32.9249468 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9249651 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","7396"
"10:46:32.9249732 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000039","","7396"
"10:46:32.9251815 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntdll.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9252135 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000029","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:32.9252224 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntdll.dll","0.0000043","","7396"
"10:46:32.9255147 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntdll.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9255655 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000051","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:32.9255834 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntdll.dll","0.0000136","","7396"
"10:46:32.9258991 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntdll.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9259435 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000051","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:32.9259593 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntdll.dll","0.0000064","","7396"
"10:46:32.9259879 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main","0.0172740","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","4904"
"10:46:32.9262315 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel32.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9262656 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000030","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:32.9262746 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel32.dll","0.0000051","","7396"
"10:46:32.9264862 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9265139 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000030","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:32.9265229 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel32.dll","0.0000043","","7396"
"10:46:32.9267132 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9267401 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000025","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:32.9267486 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel32.dll","0.0000034","","7396"
"10:46:32.9269483 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9269675 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000025","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:32.9269756 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000038","","7396"
"10:46:32.9271650 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9271825 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:32.9271906 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000034","","7396"
"10:46:32.9273813 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9273988 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:32.9274069 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000035","","7396"
"10:46:32.9276288 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\advapi32.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9276625 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000026","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","7396"
"10:46:32.9276706 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\advapi32.dll","0.0000043","","7396"
"10:46:32.9279151 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\advapi32.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9279548 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000030","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","7396"
"10:46:32.9279650 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\advapi32.dll","0.0000051","","7396"
"10:46:32.9282287 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\advapi32.dll","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9282927 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000051","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","7396"
"10:46:32.9283072 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\advapi32.dll","0.0000090","","7396"
"10:46:32.9290910 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9291426 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000056","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:32.9291554 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000064","","7396"
"10:46:32.9293888 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9294178 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:32.9294264 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000047","","7396"
"10:46:32.9296260 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9296525 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:32.9296610 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000039","","7396"
"10:46:32.9298769 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sechost.dll","0.0000440","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9299593 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000051","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:32.9299734 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sechost.dll","0.0000064","","7396"
"10:46:32.9301756 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sechost.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9302025 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:32.9302110 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sechost.dll","0.0000043","","7396"
"10:46:32.9303894 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sechost.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9304150 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000025","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:32.9304226 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sechost.dll","0.0000039","","7396"
"10:46:32.9306436 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9306722 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000026","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","7396"
"10:46:32.9306803 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000047","","7396"
"10:46:32.9309163 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9309432 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000025","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","7396"
"10:46:32.9309513 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000038","","7396"
"10:46:32.9311330 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9311591 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000025","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","7396"
"10:46:32.9311676 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000043","","7396"
"10:46:32.9313728 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9314014 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000026","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:32.9314099 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000047","","7396"
"10:46:32.9316169 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9316429 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000026","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:32.9316510 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000038","","7396"
"10:46:32.9318724 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9319070 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000030","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:32.9319155 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000047","","7396"
"10:46:32.9321378 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9321579 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:32.9321660 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000038","","7396"
"10:46:32.9323460 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9323699 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:32.9323780 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000056","","7396"
"10:46:32.9326038 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9326276 AM","firefox.exe","1008","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0329981","Offset: 15,130,624, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","4012"
"10:46:32.9326315 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:32.9326430 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000056","","7396"
"10:46:32.9329046 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\crypt32.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9329383 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000029","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:32.9329476 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\crypt32.dll","0.0000043","","7396"
"10:46:32.9331546 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\crypt32.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9331938 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000052","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:32.9332062 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\crypt32.dll","0.0000043","","7396"
"10:46:32.9333910 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\crypt32.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9334166 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:32.9334247 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\crypt32.dll","0.0000042","","7396"
"10:46:32.9336393 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msasn1.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9336687 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:32.9336773 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msasn1.dll","0.0000038","","7396"
"10:46:32.9338658 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msasn1.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9338910 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:32.9338995 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msasn1.dll","0.0000035","","7396"
"10:46:32.9340847 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msasn1.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9341095 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:32.9341176 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msasn1.dll","0.0000042","","7396"
"10:46:32.9343202 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wintrust.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9343501 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:32.9343582 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wintrust.dll","0.0000043","","7396"
"10:46:32.9346360 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wintrust.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9346671 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:32.9346757 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wintrust.dll","0.0000042","","7396"
"10:46:32.9348736 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wintrust.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9349018 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000025","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:32.9349099 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wintrust.dll","0.0000038","","7396"
"10:46:32.9351168 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9351382 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000025","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","7396"
"10:46:32.9351463 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000038","","7396"
"10:46:32.9353353 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9353536 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000022","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","7396"
"10:46:32.9353613 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000034","","7396"
"10:46:32.9355597 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9355768 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000021","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","7396"
"10:46:32.9355840 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000034","","7396"
"10:46:32.9357961 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9358166 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000025","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","7396"
"10:46:32.9358247 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000034","","7396"
"10:46:32.9360077 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9360248 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000025","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","7396"
"10:46:32.9360325 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000038","","7396"
"10:46:32.9362565 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9362757 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000025","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","7396"
"10:46:32.9362842 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000038","","7396"
"10:46:32.9364911 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\version.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9365329 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000026","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","7396"
"10:46:32.9365410 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\version.dll","0.0000039","","7396"
"10:46:32.9367552 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\version.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9367834 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000030","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","7396"
"10:46:32.9367919 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\version.dll","0.0000039","","7396"
"10:46:32.9369754 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\version.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9370010 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000025","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","7396"
"10:46:32.9370091 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\version.dll","0.0000038","","7396"
"10:46:32.9372122 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9372412 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","7396"
"10:46:32.9372493 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000038","","7396"
"10:46:32.9374626 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9374882 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","7396"
"10:46:32.9374963 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000039","","7396"
"10:46:32.9376777 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9377020 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","7396"
"10:46:32.9377097 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000038","","7396"
"10:46:32.9379657 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9379849 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","7396"
"10:46:32.9379930 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000038","","7396"
"10:46:32.9382123 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9382306 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","7396"
"10:46:32.9382387 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000039","","7396"
"10:46:32.9383821 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0112913","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","9080"
"10:46:32.9384406 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9384585 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","7396"
"10:46:32.9384666 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000038","","7396"
"10:46:32.9386714 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9386910 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:32.9386991 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000034","","7396"
"10:46:32.9388881 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9389120 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:32.9389244 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000060","","7396"
"10:46:32.9393058 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000227","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9393413 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:32.9393558 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000072","","7396"
"10:46:32.9397193 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9397543 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:32.9397684 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000093","","7396"
"10:46:32.9400666 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9400986 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:32.9401122 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000069","","7396"
"10:46:32.9404719 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9405078 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000051","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:32.9405244 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000102","","7396"
"10:46:32.9408845 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9409097 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:32.9409186 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000052","","7396"
"10:46:32.9411141 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9411341 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:32.9411426 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000039","","7396"
"10:46:32.9413278 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9413457 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:32.9413547 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000051","","7396"
"10:46:32.9416662 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9416905 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:32.9417003 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000047","","7396"
"10:46:32.9419124 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9419303 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:32.9419384 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000038","","7396"
"10:46:32.9421099 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9421265 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:32.9421346 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000035","","7396"
"10:46:32.9423574 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9423928 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:32.9424013 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000043","","7396"
"10:46:32.9425852 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9426108 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:32.9426189 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000039","","7396"
"10:46:32.9428122 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9428374 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:32.9428459 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000038","","7396"
"10:46:32.9430524 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmm.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9430934 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:32.9431019 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmm.dll","0.0000038","","7396"
"10:46:32.9433088 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmm.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9433468 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000043","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:32.9433605 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmm.dll","0.0000064","","7396"
"10:46:32.9436613 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmm.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9437056 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000043","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:32.9437201 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmm.dll","0.0000064","","7396"
"10:46:32.9437509 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs","0.0100488","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","4904"
"10:46:32.9440589 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wsock32.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9440943 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:32.9441037 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wsock32.dll","0.0000047","","7396"
"10:46:32.9443943 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wsock32.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9444416 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000043","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:32.9444540 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wsock32.dll","0.0000064","","7396"
"10:46:32.9447868 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wsock32.dll","0.0000465","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9448807 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000055","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:32.9448969 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wsock32.dll","0.0000081","","7396"
"10:46:32.9458381 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000487","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9459094 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000064","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:32.9459281 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000103","","7396"
"10:46:32.9462823 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9463083 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000038","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:32.9463185 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000052","","7396"
"10:46:32.9465707 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9465955 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000029","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:32.9466044 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000043","","7396"
"10:46:32.9468579 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9468928 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:32.9469018 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000047","","7396"
"10:46:32.9471075 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9471369 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:32.9471454 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000039","","7396"
"10:46:32.9473340 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9473613 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:32.9473707 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000038","","7396"
"10:46:32.9475994 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9476195 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000025","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:32.9476271 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000043","","7396"
"10:46:32.9478106 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9478285 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:32.9478366 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000039","","7396"
"10:46:32.9480158 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9480329 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:32.9480406 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000038","","7396"
"10:46:32.9482654 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9482842 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:32.9482919 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000034","","7396"
"10:46:32.9485137 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9485317 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000021","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:32.9485393 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000039","","7396"
"10:46:32.9487100 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9487267 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:32.9487343 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000034","","7396"
"10:46:32.9489754 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\user32.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9490155 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000043","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:32.9490262 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\user32.dll","0.0000106","","7396"
"10:46:32.9493108 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\user32.dll","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9493394 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000025","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:32.9493479 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\user32.dll","0.0000043","","7396"
"10:46:32.9496137 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\user32.dll","0.0000448","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9496943 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000060","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:32.9497131 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\user32.dll","0.0000085","","7396"
"10:46:32.9501675 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\win32u.dll","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9502234 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000051","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:32.9502383 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\win32u.dll","0.0000077","","7396"
"10:46:32.9503506 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000106","","9080"
"10:46:32.9509522 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\win32u.dll","0.0000439","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9510349 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000064","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:32.9510528 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\win32u.dll","0.0000103","","7396"
"10:46:32.9511843 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0062703","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","9080"
"10:46:32.9513899 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\win32u.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9514347 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000034","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:32.9514445 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\win32u.dll","0.0000056","","7396"
"10:46:32.9517236 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9517547 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000030","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:32.9517637 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32.dll","0.0000047","","7396"
"10:46:32.9519518 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9519783 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000025","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:32.9519868 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32.dll","0.0000039","","7396"
"10:46:32.9521720 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9521972 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000025","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:32.9522057 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32.dll","0.0000043","","7396"
"10:46:32.9524271 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9524463 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000026","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:32.9524544 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000039","","7396"
"10:46:32.9526396 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9526571 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000026","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:32.9526652 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000039","","7396"
"10:46:32.9528700 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9528871 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000025","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:32.9528948 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000042","","7396"
"10:46:32.9531115 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9531320 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000038","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:32.9531410 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000064","","7396"
"10:46:32.9533411 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9533590 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000025","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:32.9533667 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000038","","7396"
"10:46:32.9535399 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9535629 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000034","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:32.9535744 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000052","","7396"
"10:46:32.9538462 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shell32.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9538812 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000030","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","7396"
"10:46:32.9538902 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shell32.dll","0.0000047","","7396"
"10:46:32.9542366 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shell32.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9542750 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000034","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","7396"
"10:46:32.9542857 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shell32.dll","0.0000060","","7396"
"10:46:32.9543326 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 8756","7392"
"10:46:32.9545652 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shell32.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9546168 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000051","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","7396"
"10:46:32.9546313 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shell32.dll","0.0000073","","7396"
"10:46:32.9547273 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 8068","7392"
"10:46:32.9549876 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\SHCore.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9550456 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000055","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:32.9550622 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\SHCore.dll","0.0000073","","7396"
"10:46:32.9553997 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\SHCore.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9554518 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000051","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:32.9554654 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\SHCore.dll","0.0000064","","7396"
"10:46:32.9557475 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\SHCore.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9557918 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:32.9558072 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\SHCore.dll","0.0000068","","7396"
"10:46:32.9561519 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\combase.dll","0.0000210","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9561959 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000043","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:32.9562108 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\combase.dll","0.0000069","","7396"
"10:46:32.9564950 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\combase.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9565364 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000042","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:32.9565509 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\combase.dll","0.0000064","","7396"
"10:46:32.9568338 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\combase.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9568743 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000034","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:32.9568854 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\combase.dll","0.0000060","","7396"
"10:46:32.9571461 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9571691 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000026","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:32.9571777 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000042","","7396"
"10:46:32.9573965 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000436","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9574631 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000064","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:32.9574831 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000103","","7396"
"10:46:32.9576589 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000090","","9080"
"10:46:32.9577259 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:32.9577622 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000043","CreationTime: 8/19/2019 3:32:46 PM, LastAccessTime: 8/19/2019 3:32:46 PM, LastWriteTime: 8/19/2019 3:32:46 PM, ChangeTime: 8/19/2019 3:32:46 PM, FileAttributes: A","5728"
"10:46:32.9577797 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000068","","5728"
"10:46:32.9578121 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9578458 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000504","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:32.9580924 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000346","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","2444"
"10:46:32.9581611 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0194885","Offset: 0, Length: 27,852, Priority: Normal","2444"
"10:46:32.9581675 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0314279","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","9080"
"10:46:32.9581974 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000094","","7396"
"10:46:32.9582264 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0193745","Offset: 0, Length: 27,852, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2444"
"10:46:32.9586518 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9587132 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000056","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","7396"
"10:46:32.9587290 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000231","","7396"
"10:46:32.9591868 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shlwapi.dll","0.0002479","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9594748 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000073","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","7396"
"10:46:32.9594940 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000107","","7396"
"10:46:32.9600376 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9600824 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","7396"
"10:46:32.9600944 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000059","","7396"
"10:46:32.9604702 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9605086 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:32.9605227 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000073","","7396"
"10:46:32.9610906 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9611273 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000056","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:32.9611422 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000077","","7396"
"10:46:32.9614648 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000440","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9616346 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000094","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:32.9616632 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000248","","7396"
"10:46:32.9624449 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\profapi.dll","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9624973 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:32.9625084 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\profapi.dll","0.0000052","","7396"
"10:46:32.9627111 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\profapi.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9627393 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:32.9627478 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\profapi.dll","0.0000043","","7396"
"10:46:32.9629317 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\profapi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9629573 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:32.9629654 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\profapi.dll","0.0000043","","7396"
"10:46:32.9631937 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\powrprof.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9632278 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:32.9632372 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\powrprof.dll","0.0000038","","7396"
"10:46:32.9634117 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\powrprof.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9634369 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:32.9634450 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\powrprof.dll","0.0000038","","7396"
"10:46:32.9636340 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\powrprof.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9636587 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:32.9636668 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\powrprof.dll","0.0000039","","7396"
"10:46:32.9638823 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\fltLib.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9639113 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:32.9639194 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\fltLib.dll","0.0000039","","7396"
"10:46:32.9640931 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\fltLib.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9641178 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:32.9641259 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\fltLib.dll","0.0000039","","7396"
"10:46:32.9643026 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\fltLib.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9643269 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000021","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:32.9643346 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\fltLib.dll","0.0000038","","7396"
"10:46:32.9645616 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ole32.dll","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9645897 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000026","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","7396"
"10:46:32.9645978 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ole32.dll","0.0000039","","7396"
"10:46:32.9647736 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ole32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9647979 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000026","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","7396"
"10:46:32.9648060 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ole32.dll","0.0000039","","7396"
"10:46:32.9649831 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ole32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9650070 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000026","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","7396"
"10:46:32.9650151 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ole32.dll","0.0000034","","7396"
"10:46:32.9652280 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\imm32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9652549 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000026","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","7396"
"10:46:32.9652630 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\imm32.dll","0.0000034","","7396"
"10:46:32.9654337 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\imm32.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9654571 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000026","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","7396"
"10:46:32.9654648 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\imm32.dll","0.0000039","","7396"
"10:46:32.9656368 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\imm32.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9656602 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000026","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","7396"
"10:46:32.9656679 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\imm32.dll","0.0000038","","7396"
"10:46:32.9658151 AM","firefox.exe","1008","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0005197","Offset: 15,163,392, Length: 24,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","4012"
"10:46:32.9660630 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\setupapi.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9661010 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000034","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:32.9661129 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\setupapi.dll","0.0000047","","7396"
"10:46:32.9663083 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\setupapi.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9663344 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000029","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:32.9663429 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\setupapi.dll","0.0000043","","7396"
"10:46:32.9666467 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\setupapi.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9666825 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:32.9666940 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\setupapi.dll","0.0000060","","7396"
"10:46:32.9670285 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9670669 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000039","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:32.9670793 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000051","","7396"
"10:46:32.9673234 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9673609 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000030","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:32.9673716 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000047","","7396"
"10:46:32.9675418 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9675666 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000025","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:32.9675743 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000038","","7396"
"10:46:32.9677488 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9677727 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000025","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:32.9677808 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000042","","7396"
"10:46:32.9682680 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9683179 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000047","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:32.9683329 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000094","","7396"
"10:46:32.9687190 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\avrt.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9687706 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000051","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","7396"
"10:46:32.9687864 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\avrt.dll","0.0000073","","7396"
"10:46:32.9691303 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\avrt.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9692741 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000081","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","7396"
"10:46:32.9692954 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\avrt.dll","0.0000107","","7396"
"10:46:32.9698010 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\avrt.dll","0.0000542","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9698953 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000064","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","7396"
"10:46:32.9699145 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\avrt.dll","0.0000090","","7396"
"10:46:32.9704952 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\usp10.dll","0.0001592","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9707260 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000116","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","7396"
"10:46:32.9707691 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\usp10.dll","0.0000145","","7396"
"10:46:32.9723644 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\usp10.dll","0.0000491","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9724873 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000261","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","7396"
"10:46:32.9725317 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\usp10.dll","0.0000346","","7396"
"10:46:32.9736683 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\usp10.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9737238 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000047","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","7396"
"10:46:32.9737366 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\usp10.dll","0.0000085","","7396"
"10:46:32.9741381 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\d3d11.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9741710 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000034","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:32.9741808 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\d3d11.dll","0.0000047","","7396"
"10:46:32.9743967 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\d3d11.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9744235 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000026","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:32.9744321 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\d3d11.dll","0.0000042","","7396"
"10:46:32.9746062 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\d3d11.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9746313 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000026","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:32.9746399 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\d3d11.dll","0.0000038","","7396"
"10:46:32.9748860 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dxgi.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9749146 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000030","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:32.9749232 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dxgi.dll","0.0000042","","7396"
"10:46:32.9750994 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dxgi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9751237 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000021","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:32.9751314 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dxgi.dll","0.0000038","","7396"
"10:46:32.9753016 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dxgi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9753315 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000034","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:32.9753443 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dxgi.dll","0.0000051","","7396"
"10:46:32.9756873 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9757287 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000039","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","7396"
"10:46:32.9757424 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000055","","7396"
"10:46:32.9759510 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9759770 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","7396"
"10:46:32.9759851 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000043","","7396"
"10:46:32.9761601 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9761848 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000022","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","7396"
"10:46:32.9761925 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000038","","7396"
"10:46:32.9764417 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9764703 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:32.9764788 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000034","","7396"
"10:46:32.9766546 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9766793 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:32.9766874 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000039","","7396"
"10:46:32.9768560 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9768803 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:32.9768880 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000038","","7396"
"10:46:32.9771158 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nsi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9771427 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:32.9771512 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nsi.dll","0.0000039","","7396"
"10:46:32.9773232 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nsi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9773475 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000021","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:32.9773552 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nsi.dll","0.0000038","","7396"
"10:46:32.9775344 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nsi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9775587 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:32.9775668 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nsi.dll","0.0000034","","7396"
"10:46:32.9777012 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000060","Offset: 27,852, Length: 4,916","2444"
"10:46:32.9777460 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000090","","2444"
"10:46:32.9778710 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9779026 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","7396"
"10:46:32.9779111 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000039","","7396"
"10:46:32.9780937 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9781210 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","7396"
"10:46:32.9781291 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000039","","7396"
"10:46:32.9792927 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dwmapi.dll","0.0002252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9797552 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000337","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","7396"
"10:46:32.9798341 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dwmapi.dll","0.0001080","","7396"
"10:46:32.9810604 AM","firefox.exe","7384","ReadFile","C:","0.0005828","Offset: 503,808, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:32.9816765 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9817251 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000047","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","7396"
"10:46:32.9817375 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000059","","7396"
"10:46:32.9820634 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\254256B27E0C48CF9B80B695F0B3B8CA84610495","0.0000653","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:32.9821492 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\254256B27E0C48CF9B80B695F0B3B8CA84610495","0.0000051","CreationTime: 3/25/2020 10:31:44 AM, LastAccessTime: 3/25/2020 10:31:44 AM, LastWriteTime: 3/26/2020 10:35:16 AM, ChangeTime: 3/26/2020 10:35:16 AM, AllocationSize: 12288, EndOfFile: 10114, FileAttributes: A","6572"
"10:46:32.9821714 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\254256B27E0C48CF9B80B695F0B3B8CA84610495","0.0000081","","6572"
"10:46:32.9822840 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9823331 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000060","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","7396"
"10:46:32.9823506 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000068","","7396"
"10:46:32.9823864 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\254256B27E0C48CF9B80B695F0B3B8CA84610495","0.0000308","Desired Access: Generic Read/Write, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:32.9824479 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\254256B27E0C48CF9B80B695F0B3B8CA84610495","0.0127415","Offset: 8,192, Length: 1,922, Priority: Normal","6572"
"10:46:32.9825055 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\254256B27E0C48CF9B80B695F0B3B8CA84610495","0.0125623","Offset: 8,192, Length: 1,922, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:32.9826796 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000221","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9827269 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000047","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","7396"
"10:46:32.9827414 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000073","","7396"
"10:46:32.9831212 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9831792 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000051","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","7396"
"10:46:32.9831967 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000064","","7396"
"10:46:32.9834638 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9835098 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000043","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","7396"
"10:46:32.9835239 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000069","","7396"
"10:46:32.9837978 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9838384 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000042","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","7396"
"10:46:32.9838529 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000060","","7396"
"10:46:32.9841968 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9842420 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000038","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:32.9842561 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000060","","7396"
"10:46:32.9845206 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9845607 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000039","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:32.9845744 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000064","","7396"
"10:46:32.9848492 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9848918 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000039","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:32.9849059 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000060","","7396"
"10:46:32.9853752 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\userenv.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9854179 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","7396"
"10:46:32.9854324 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\userenv.dll","0.0000201","","7396"
"10:46:32.9860332 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\userenv.dll","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9860844 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","7396"
"10:46:32.9860967 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\userenv.dll","0.0000064","","7396"
"10:46:32.9863822 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\userenv.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9864210 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","7396"
"10:46:32.9864308 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\userenv.dll","0.0000051","","7396"
"10:46:32.9867820 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9868059 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000029","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","7396"
"10:46:32.9868152 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000043","","7396"
"10:46:32.9870013 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9870200 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000026","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","7396"
"10:46:32.9870281 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000039","","7396"
"10:46:32.9872031 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9872210 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000026","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","7396"
"10:46:32.9872287 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000034","","7396"
"10:46:32.9874962 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9875256 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","7396"
"10:46:32.9875342 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000038","","7396"
"10:46:32.9877108 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9877356 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","7396"
"10:46:32.9877437 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000038","","7396"
"10:46:32.9879259 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9879523 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","7396"
"10:46:32.9879604 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000047","","7396"
"10:46:32.9882049 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9882322 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","7396"
"10:46:32.9882403 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000038","","7396"
"10:46:32.9884216 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9884468 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","7396"
"10:46:32.9884549 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000039","","7396"
"10:46:32.9886235 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9886473 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","7396"
"10:46:32.9886555 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000034","","7396"
"10:46:32.9888884 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9889153 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","7396"
"10:46:32.9889234 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000034","","7396"
"10:46:32.9891030 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9891269 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","7396"
"10:46:32.9891350 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000039","","7396"
"10:46:32.9893134 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9893373 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","7396"
"10:46:32.9893454 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000034","","7396"
"10:46:32.9896056 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\webauthn.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9896483 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000038","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","7396"
"10:46:32.9896611 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\webauthn.dll","0.0000060","","7396"
"10:46:32.9897204 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","120"
"10:46:32.9897814 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000128","CreationTime: 8/19/2019 3:32:46 PM, LastAccessTime: 8/19/2019 3:32:46 PM, LastWriteTime: 8/19/2019 3:32:46 PM, ChangeTime: 8/19/2019 3:32:46 PM, AllocationSize: 28672, EndOfFile: 27852, FileAttributes: A","120"
"10:46:32.9898002 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000081","","9080"
"10:46:32.9898113 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000077","","120"
"10:46:32.9899205 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:32.9899628 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000042","CreationTime: 3/25/2020 10:26:31 AM, LastAccessTime: 3/25/2020 10:26:31 AM, LastWriteTime: 3/25/2020 10:26:31 AM, ChangeTime: 3/25/2020 10:26:31 AM, FileAttributes: A","5728"
"10:46:32.9899820 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000068","","5728"
"10:46:32.9900157 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\webauthn.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9900515 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","7396"
"10:46:32.9900652 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\webauthn.dll","0.0000064","","7396"
"10:46:32.9902516 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000205","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5316"
"10:46:32.9903062 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0092899","Offset: 0, Length: 21,830, Priority: Normal","5316"
"10:46:32.9903587 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\webauthn.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9903655 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0087796","Offset: 0, Length: 21,830, I/O Flags: Non-cached, Paging I/O, Priority: Normal","5316"
"10:46:32.9904022 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000043","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","7396"
"10:46:32.9904056 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8844"
"10:46:32.9904159 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\webauthn.dll","0.0000064","","7396"
"10:46:32.9904449 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000047","CreationTime: 3/25/2020 10:26:31 AM, LastAccessTime: 3/25/2020 10:26:31 AM, LastWriteTime: 3/25/2020 10:26:31 AM, ChangeTime: 3/25/2020 10:26:31 AM, AllocationSize: 24576, EndOfFile: 21830, FileAttributes: A","8844"
"10:46:32.9904645 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0091478","","8844"
"10:46:32.9905737 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0172284","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:32.9907726 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000618","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","9080"
"10:46:32.9908801 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9909262 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000047","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:32.9909317 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000077","","9080"
"10:46:32.9909407 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000055","","7396"
"10:46:32.9912372 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9912820 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000043","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:32.9912965 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000069","","7396"
"10:46:32.9915009 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0136845","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","9080"
"10:46:32.9915175 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9915478 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:32.9915568 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000043","","7396"
"10:46:32.9918171 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9918465 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000030","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","7396"
"10:46:32.9918555 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000038","","7396"
"10:46:32.9920513 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9920778 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000025","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","7396"
"10:46:32.9920859 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000038","","7396"
"10:46:32.9922574 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9922821 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000026","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","7396"
"10:46:32.9922902 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000039","","7396"
"10:46:32.9925287 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9925560 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","7396"
"10:46:32.9925642 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000042","","7396"
"10:46:32.9927412 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9927655 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","7396"
"10:46:32.9927736 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000039","","7396"
"10:46:32.9929409 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9929648 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000021","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","7396"
"10:46:32.9929725 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000034","","7396"
"10:46:32.9932097 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mswsock.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9932357 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","7396"
"10:46:32.9932443 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mswsock.dll","0.0000038","","7396"
"10:46:32.9934205 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mswsock.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9934448 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","7396"
"10:46:32.9934529 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mswsock.dll","0.0000034","","7396"
"10:46:32.9936496 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mswsock.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9936739 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","7396"
"10:46:32.9936820 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mswsock.dll","0.0000039","","7396"
"10:46:32.9939146 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winrnr.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9939419 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000025","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","7396"
"10:46:32.9939504 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winrnr.dll","0.0000034","","7396"
"10:46:32.9941258 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winrnr.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9941505 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000026","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","7396"
"10:46:32.9941586 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winrnr.dll","0.0000038","","7396"
"10:46:32.9943421 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winrnr.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9943664 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000026","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","7396"
"10:46:32.9943745 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winrnr.dll","0.0000038","","7396"
"10:46:32.9946134 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wshbth.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9946420 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000030","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:32.9946506 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wshbth.dll","0.0000068","","7396"
"10:46:32.9955086 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\254256B27E0C48CF9B80B695F0B3B8CA84610495","0.0875436","Offset: 330, Length: 7,862","6572"
"10:46:32.9957415 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\254256B27E0C48CF9B80B695F0B3B8CA84610495","0.0872560","Offset: 0, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:32.9965091 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wshbth.dll","0.0000662","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9966047 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000055","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:32.9966209 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wshbth.dll","0.0000081","","7396"
"10:46:32.9969883 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wshbth.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9970403 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000056","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:32.9970570 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wshbth.dll","0.0000076","","7396"
"10:46:32.9975088 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sspicli.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:32.9996498 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000107","Offset: 21,830, Length: 10,938","5316"
"10:46:32.9996925 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000119","","5316"
"10:46:32.9998533 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000205","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:32.9999822 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sspicli.dll","0.0000132","","7396"
"10:46:33.0010907 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sspicli.dll","0.0000345","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:33.0012532 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000081","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:33.0012767 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sspicli.dll","0.0000107","","7396"
"10:46:33.0053006 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sspicli.dll","0.0006438","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:33.0056837 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000312","","9080"
"10:46:33.0060114 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000077","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:33.0060302 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sspicli.dll","0.0000102","","7396"
"10:46:33.0062934 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0418668","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","9080"
"10:46:33.0064748 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\devobj.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:33.0065123 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","7396"
"10:46:33.0065234 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\devobj.dll","0.0000051","","7396"
"10:46:33.0067316 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\devobj.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:33.0067602 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","7396"
"10:46:33.0067692 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\devobj.dll","0.0000043","","7396"
"10:46:33.0069450 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\devobj.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:33.0069710 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","7396"
"10:46:33.0069795 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\devobj.dll","0.0000043","","7396"
"10:46:33.0072210 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\DWrite.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:33.0072556 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000025","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:33.0072641 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\DWrite.dll","0.0000043","","7396"
"10:46:33.0074621 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\DWrite.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:33.0074877 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000026","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:33.0074962 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\DWrite.dll","0.0000039","","7396"
"10:46:33.0076682 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\DWrite.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:33.0076989 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000034","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:33.0077100 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\DWrite.dll","0.0000047","","7396"
"10:46:33.0078341 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000043","CreationTime: 3/25/2020 10:31:45 AM, LastAccessTime: 3/25/2020 10:31:45 AM, LastWriteTime: 3/25/2020 10:31:45 AM, ChangeTime: 3/25/2020 10:31:45 AM, FileAttributes: A","5728"
"10:46:33.0078551 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000076","","5728"
"10:46:33.0079976 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mscms.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:33.0080424 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000038","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","7396"
"10:46:33.0080556 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mscms.dll","0.0000064","","7396"
"10:46:33.0081290 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000217","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7572"
"10:46:33.0082075 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0286106","Offset: 0, Length: 10,005, Priority: Normal","7572"
"10:46:33.0082958 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0284566","Offset: 0, Length: 10,005, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7572"
"10:46:33.0083291 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2444"
"10:46:33.0083709 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000051","CreationTime: 3/25/2020 10:31:45 AM, LastAccessTime: 3/25/2020 10:31:45 AM, LastWriteTime: 3/25/2020 10:31:45 AM, ChangeTime: 3/25/2020 10:31:45 AM, AllocationSize: 12288, EndOfFile: 10005, FileAttributes: A","2444"
"10:46:33.0083914 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0284382","","2444"
"10:46:33.0085083 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mscms.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:33.0085416 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000029","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","7396"
"10:46:33.0085509 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mscms.dll","0.0000047","","7396"
"10:46:33.0087621 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mscms.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:33.0087899 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","7396"
"10:46:33.0087988 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mscms.dll","0.0000043","","7396"
"10:46:33.0090851 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:33.0091052 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000025","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","7396"
"10:46:33.0091133 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000038","","7396"
"10:46:33.0092925 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:33.0093100 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000021","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","7396"
"10:46:33.0093177 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000034","","7396"
"10:46:33.0094977 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:33.0095148 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000025","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","7396"
"10:46:33.0095225 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000038","","7396"
"10:46:33.0097738 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:33.0098015 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:33.0098100 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000039","","7396"
"10:46:33.0099858 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:33.0100101 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:33.0100178 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000039","","7396"
"10:46:33.0102094 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:33.0102337 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:33.0102418 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000039","","7396"
"10:46:33.0104850 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:33.0105042 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:33.0105123 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000039","","7396"
"10:46:33.0106903 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:33.0107077 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:33.0107154 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000039","","7396"
"10:46:33.0109134 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:33.0109313 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:33.0109390 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000038","","7396"
"10:46:33.0111805 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:33.0111988 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","7396"
"10:46:33.0112069 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000035","","7396"
"10:46:33.0113797 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:33.0113977 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000021","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","7396"
"10:46:33.0114053 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000047","","7396"
"10:46:33.0133100 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0001071","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:33.0134632 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000170","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","7396"
"10:46:33.0135011 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000265","","7396"
"10:46:33.0163163 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000281","Offset: 4,718,592, Length: 65,536","7900"
"10:46:33.0165791 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0428003","Offset: 4,784,128, Length: 65,536","7900"
"10:46:33.0251261 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0450347","Offset: 12,722,176, Length: 4,096","7760"
"10:46:33.0251752 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0449609","Offset: 12,722,176, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.0368650 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000068","Offset: 10,005, Length: 22,763","7572"
"10:46:33.0369166 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000111","","7572"
"10:46:33.0483291 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000111","","9080"
"10:46:33.0484763 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:33.0485105 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000042","CreationTime: 6/21/2019 11:32:22 AM, LastAccessTime: 6/21/2019 11:32:22 AM, LastWriteTime: 6/21/2019 11:32:22 AM, ChangeTime: 6/21/2019 11:32:22 AM, FileAttributes: A","5728"
"10:46:33.0485254 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000055","","5728"
"10:46:33.0488475 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000265","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","120"
"10:46:33.0489009 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.1233298","Desired Access: Read Attributes, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","9080"
"10:46:33.0489248 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0902192","Offset: 0, Length: 26,973, Priority: Normal","120"
"10:46:33.0489811 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0899931","Offset: 0, Length: 26,973, I/O Flags: Non-cached, Paging I/O, Priority: Normal","120"
"10:46:33.0594852 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000124","Offset: 4,849,664, Length: 65,536","7900"
"10:46:33.0595479 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0448777","Offset: 4,915,200, Length: 65,536","7900"
"10:46:33.0703324 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0213913","Offset: 12,640,256, Length: 4,096","7760"
"10:46:33.0703665 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0212988","Offset: 12,640,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.0832019 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\254256B27E0C48CF9B80B695F0B3B8CA84610495","0.0000094","Offset: 0, Length: 330","6572"
"10:46:33.0919281 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0222780","Offset: 12,713,984, Length: 4,096","7760"
"10:46:33.0919652 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0221445","Offset: 12,713,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.1049061 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000610","Offset: 4,980,736, Length: 65,536","7900"
"10:46:33.1053587 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0439553","Offset: 5,046,272, Length: 65,536","7900"
"10:46:33.1148798 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0148391","Offset: 12,718,080, Length: 4,096","7760"
"10:46:33.1150249 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0146078","Offset: 12,718,080, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.1301528 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0011716","Offset: 598,016, Length: 4,096","7760"
"10:46:33.1304050 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0008524","Offset: 598,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.1319623 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0007057","Offset: 12,644,352, Length: 4,096","7760"
"10:46:33.1320720 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004659","Offset: 12,644,352, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.1335469 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0011900","Offset: 15,622,144, Length: 4,096","7760"
"10:46:33.1337091 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0008930","Offset: 15,622,144, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.1350198 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0008678","Offset: 12,648,448, Length: 4,096","7760"
"10:46:33.1351704 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0005833","Offset: 12,648,448, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.1369146 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0006652","Offset: 12,652,544, Length: 4,096","7760"
"10:46:33.1370921 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004160","Offset: 12,652,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.1384161 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0007326","Offset: 12,685,312, Length: 4,096","7760"
"10:46:33.1385483 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0005278","Offset: 12,685,312, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.1392967 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000265","Offset: 26,973, Length: 5,795","120"
"10:46:33.1394405 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000508","","120"
"10:46:33.1397695 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0177813","Offset: 12,587,008, Length: 4,096","7760"
"10:46:33.1399107 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0174985","Offset: 12,587,008, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.1498593 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000593","Offset: 5,111,808, Length: 65,536","7900"
"10:46:33.1502548 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0330723","Offset: 5,177,344, Length: 65,536","7900"
"10:46:33.1580970 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0009595","Offset: 12,693,504, Length: 4,096","7760"
"10:46:33.1582454 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0006776","Offset: 12,693,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.1728784 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000533","","9080"
"10:46:33.1732906 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000900","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5316"
"10:46:33.1734681 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000222","CreationTime: 6/21/2019 11:32:22 AM, LastAccessTime: 6/21/2019 11:32:22 AM, LastWriteTime: 6/21/2019 11:32:22 AM, ChangeTime: 6/21/2019 11:32:22 AM, AllocationSize: 28672, EndOfFile: 26973, FileAttributes: A","5316"
"10:46:33.1735555 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000308","","5316"
"10:46:33.1739549 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000772","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:33.1740884 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000158","CreationTime: 6/19/2019 5:34:27 PM, LastAccessTime: 6/19/2019 5:34:27 PM, LastWriteTime: 6/19/2019 5:34:27 PM, ChangeTime: 6/19/2019 5:34:27 PM, FileAttributes: A","5728"
"10:46:33.1741499 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000230","","5728"
"10:46:33.1754440 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0001109","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7572"
"10:46:33.1757085 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0188843","Offset: 0, Length: 8,158, Priority: Normal","7572"
"10:46:33.1757827 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000807","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2444"
"10:46:33.1759321 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000179","CreationTime: 6/19/2019 5:34:27 PM, LastAccessTime: 6/19/2019 5:34:27 PM, LastWriteTime: 6/19/2019 5:34:27 PM, ChangeTime: 6/19/2019 5:34:27 PM, AllocationSize: 8192, EndOfFile: 8158, FileAttributes: A","2444"
"10:46:33.1759444 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0184991","Offset: 0, Length: 8,158, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7572"
"10:46:33.1760059 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0187904","","2444"
"10:46:33.1799065 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000964","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:33.1800742 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000187","CreationTime: 8/19/2019 3:32:46 PM, LastAccessTime: 8/19/2019 3:32:46 PM, LastWriteTime: 8/19/2019 3:32:46 PM, ChangeTime: 8/19/2019 3:32:46 PM, AllocationSize: 28672, EndOfFile: 27852, FileAttributes: A","5728"
"10:46:33.1801471 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000273","","5728"
"10:46:33.1811400 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000657","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:33.1812756 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000158","CreationTime: 8/19/2019 3:32:46 PM, LastAccessTime: 8/19/2019 3:32:46 PM, LastWriteTime: 8/19/2019 3:32:46 PM, ChangeTime: 8/19/2019 3:32:46 PM, FileAttributes: A","5728"
"10:46:33.1813341 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000209","","5728"
"10:46:33.1831624 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000955","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.1833518 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000243","CreationTime: 8/19/2019 3:32:46 PM, LastAccessTime: 8/19/2019 3:32:46 PM, LastWriteTime: 8/19/2019 3:32:46 PM, ChangeTime: 8/19/2019 3:32:46 PM, AllocationSize: 28672, EndOfFile: 27852, FileAttributes: A","7276"
"10:46:33.1834606 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000482","","7276"
"10:46:33.1839189 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0009237","Offset: 5,242,880, Length: 65,536","7900"
"10:46:33.1851669 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000972","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:33.1851997 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0210082","Offset: 5,308,416, Length: 65,536","7900"
"10:46:33.1853098 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000921","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.1853469 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000213","CreationTime: 3/26/2020 10:35:22 AM, LastAccessTime: 3/26/2020 10:35:22 AM, LastWriteTime: 3/26/2020 10:35:22 AM, ChangeTime: 3/26/2020 10:35:22 AM, FileAttributes: A","5728"
"10:46:33.1854438 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000328","","5728"
"10:46:33.1854715 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000166","CreationTime: 8/19/2019 3:32:46 PM, LastAccessTime: 8/19/2019 3:32:46 PM, LastWriteTime: 8/19/2019 3:32:46 PM, ChangeTime: 8/19/2019 3:32:46 PM, FileAttributes: A","7276"
"10:46:33.1855560 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000243","","7276"
"10:46:33.1866849 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\254256B27E0C48CF9B80B695F0B3B8CA84610495","0.0002240","Offset: 330, Length: 9,784, Priority: Normal","6572"
"10:46:33.1871978 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\254256B27E0C48CF9B80B695F0B3B8CA84610495","0.0002231","EndOfFile: 10,114","6572"
"10:46:33.1872358 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0001160","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","8844"
"10:46:33.1875016 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0528952","Offset: 0, Length: 32,768, Priority: Normal","8844"
"10:46:33.1875114 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\254256B27E0C48CF9B80B695F0B3B8CA84610495","0.0001438","AllocationSize: 10,114","6572"
"10:46:33.1877384 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0504141","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Priority: Normal","8844"
"10:46:33.1878041 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\254256B27E0C48CF9B80B695F0B3B8CA84610495","0.0001455","","6572"
"10:46:33.1879278 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0001003","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","120"
"10:46:33.1880959 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000188","CreationTime: 3/26/2020 10:35:22 AM, LastAccessTime: 3/26/2020 10:35:22 AM, LastWriteTime: 3/26/2020 10:35:22 AM, ChangeTime: 3/26/2020 10:35:22 AM, AllocationSize: 118784, EndOfFile: 115566, FileAttributes: A","120"
"10:46:33.1881680 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0527813","","120"
"10:46:33.1891332 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 7564","5728"
"10:46:33.1911265 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000837","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:33.1912772 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000174","CreationTime: 3/25/2020 10:26:31 AM, LastAccessTime: 3/25/2020 10:26:31 AM, LastWriteTime: 3/25/2020 10:26:31 AM, ChangeTime: 3/25/2020 10:26:31 AM, AllocationSize: 24576, EndOfFile: 21830, FileAttributes: A","5728"
"10:46:33.1913522 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000265","","5728"
"10:46:33.1923250 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000666","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:33.1924411 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000141","CreationTime: 3/25/2020 10:26:31 AM, LastAccessTime: 3/25/2020 10:26:31 AM, LastWriteTime: 3/25/2020 10:26:31 AM, ChangeTime: 3/25/2020 10:26:31 AM, FileAttributes: A","5728"
"10:46:33.1925000 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000209","","5728"
"10:46:33.1939438 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000815","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.1942480 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000265","CreationTime: 3/25/2020 10:26:31 AM, LastAccessTime: 3/25/2020 10:26:31 AM, LastWriteTime: 3/25/2020 10:26:31 AM, ChangeTime: 3/25/2020 10:26:31 AM, AllocationSize: 24576, EndOfFile: 21830, FileAttributes: A","7276"
"10:46:33.1944955 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000444","","7276"
"10:46:33.1947361 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0002650","Offset: 8,158, Length: 24,610","7572"
"10:46:33.1951445 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000418","","7572"
"10:46:33.1958532 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000870","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:33.1960008 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000162","CreationTime: 8/16/2019 1:36:57 PM, LastAccessTime: 8/16/2019 1:36:57 PM, LastWriteTime: 8/16/2019 1:36:57 PM, ChangeTime: 8/16/2019 1:36:57 PM, FileAttributes: A","5728"
"10:46:33.1960699 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000256","","5728"
"10:46:33.1971942 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0001600","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.1974515 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000234","CreationTime: 3/25/2020 10:26:31 AM, LastAccessTime: 3/25/2020 10:26:31 AM, LastWriteTime: 3/25/2020 10:26:31 AM, ChangeTime: 3/25/2020 10:26:31 AM, FileAttributes: A","7276"
"10:46:33.1975492 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000379","","7276"
"10:46:33.1979647 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0005662","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7564"
"10:46:33.1983150 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 4556","5728"
"10:46:33.1986611 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0157670","Offset: 0, Length: 32,768, Priority: Normal","7564"
"10:46:33.1988701 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0153976","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7564"
"10:46:33.1994423 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0001024","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5316"
"10:46:33.1996313 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000183","CreationTime: 8/16/2019 1:36:57 PM, LastAccessTime: 8/16/2019 1:36:57 PM, LastWriteTime: 8/16/2019 1:36:57 PM, ChangeTime: 8/16/2019 1:36:57 PM, AllocationSize: 53248, EndOfFile: 50353, FileAttributes: A","5316"
"10:46:33.1997030 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0155588","","5316"
"10:46:33.2000537 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0001015","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.2002355 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000243","CreationTime: 8/19/2019 3:32:46 PM, LastAccessTime: 8/19/2019 3:32:46 PM, LastWriteTime: 8/19/2019 3:32:46 PM, ChangeTime: 8/19/2019 3:32:46 PM, FileAttributes: A","7276"
"10:46:33.2003340 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000384","","7276"
"10:46:33.2030404 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0001216","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:33.2033053 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000269","CreationTime: 6/19/2019 5:53:45 PM, LastAccessTime: 6/19/2019 5:53:45 PM, LastWriteTime: 6/19/2019 5:53:45 PM, ChangeTime: 6/19/2019 5:53:45 PM, FileAttributes: A","5728"
"10:46:33.2034282 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000461","","5728"
"10:46:33.2052761 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0001058","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","2444"
"10:46:33.2057395 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0176597","Offset: 0, Length: 32,768, Priority: Normal","2444"
"10:46:33.2060078 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0173069","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2444"
"10:46:33.2070809 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000576","Offset: 5,373,952, Length: 65,536","7900"
"10:46:33.2074653 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0001498","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:33.2075703 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000904","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4556"
"10:46:33.2077350 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0429837","Offset: 5,439,488, Length: 65,536","7900"
"10:46:33.2077422 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000252","CreationTime: 6/19/2019 5:53:45 PM, LastAccessTime: 6/19/2019 5:53:45 PM, LastWriteTime: 6/19/2019 5:53:45 PM, ChangeTime: 6/19/2019 5:53:45 PM, AllocationSize: 98304, EndOfFile: 98093, FileAttributes: A","4556"
"10:46:33.2077939 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000166","CreationTime: 6/21/2019 11:32:22 AM, LastAccessTime: 6/21/2019 11:32:22 AM, LastWriteTime: 6/21/2019 11:32:22 AM, ChangeTime: 6/21/2019 11:32:22 AM, AllocationSize: 28672, EndOfFile: 26973, FileAttributes: A","5728"
"10:46:33.2078434 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0157060","","4556"
"10:46:33.2078801 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000273","","5728"
"10:46:33.2088861 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000666","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:33.2090009 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000132","CreationTime: 6/21/2019 11:32:22 AM, LastAccessTime: 6/21/2019 11:32:22 AM, LastWriteTime: 6/21/2019 11:32:22 AM, ChangeTime: 6/21/2019 11:32:22 AM, FileAttributes: A","5728"
"10:46:33.2090551 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000269","","5728"
"10:46:33.2099831 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 8512","5728"
"10:46:33.2107097 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0001097","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.2109013 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000222","CreationTime: 6/21/2019 11:32:22 AM, LastAccessTime: 6/21/2019 11:32:22 AM, LastWriteTime: 6/21/2019 11:32:22 AM, ChangeTime: 6/21/2019 11:32:22 AM, AllocationSize: 28672, EndOfFile: 26973, FileAttributes: A","7276"
"10:46:33.2109836 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000329","","7276"
"10:46:33.2112733 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 2720","5728"
"10:46:33.2127577 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0001050","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.2129450 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000192","CreationTime: 6/21/2019 11:32:22 AM, LastAccessTime: 6/21/2019 11:32:22 AM, LastWriteTime: 6/21/2019 11:32:22 AM, ChangeTime: 6/21/2019 11:32:22 AM, FileAttributes: A","7276"
"10:46:33.2130312 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000316","","7276"
"10:46:33.2142638 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000978","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.2144396 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000197","CreationTime: 3/25/2020 10:26:31 AM, LastAccessTime: 3/25/2020 10:26:31 AM, LastWriteTime: 3/25/2020 10:26:31 AM, ChangeTime: 3/25/2020 10:26:31 AM, FileAttributes: A","7276"
"10:46:33.2145258 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000367","","7276"
"10:46:33.2146726 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0013180","Offset: 32,768, Length: 17,585","7564"
"10:46:33.2161476 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000273","Offset: 50,353, Length: 15,183","7564"
"10:46:33.2162995 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000610","","7564"
"10:46:33.2182319 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000866","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:33.2183842 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000183","CreationTime: 6/19/2019 5:34:27 PM, LastAccessTime: 6/19/2019 5:34:27 PM, LastWriteTime: 6/19/2019 5:34:27 PM, ChangeTime: 6/19/2019 5:34:27 PM, AllocationSize: 8192, EndOfFile: 8158, FileAttributes: A","5728"
"10:46:33.2184554 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000256","","5728"
"10:46:33.2198579 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0002334","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:33.2201263 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000093","CreationTime: 6/19/2019 5:34:27 PM, LastAccessTime: 6/19/2019 5:34:27 PM, LastWriteTime: 6/19/2019 5:34:27 PM, ChangeTime: 6/19/2019 5:34:27 PM, FileAttributes: A","5728"
"10:46:33.2201664 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000158","","5728"
"10:46:33.2213132 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000581","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.2214280 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000128","CreationTime: 6/19/2019 5:34:27 PM, LastAccessTime: 6/19/2019 5:34:27 PM, LastWriteTime: 6/19/2019 5:34:27 PM, ChangeTime: 6/19/2019 5:34:27 PM, AllocationSize: 8192, EndOfFile: 8158, FileAttributes: A","7276"
"10:46:33.2214843 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000184","","7276"
"10:46:33.2222796 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000525","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.2223914 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000128","CreationTime: 6/19/2019 5:34:27 PM, LastAccessTime: 6/19/2019 5:34:27 PM, LastWriteTime: 6/19/2019 5:34:27 PM, ChangeTime: 6/19/2019 5:34:27 PM, FileAttributes: A","7276"
"10:46:33.2224392 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000184","","7276"
"10:46:33.2235102 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0009126","Offset: 32,768, Length: 32,768","2444"
"10:46:33.2245418 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000913","Offset: 65,536, Length: 32,557","2444"
"10:46:33.2247070 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000132","Offset: 98,093, Length: 211","2444"
"10:46:33.2247739 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000209","","2444"
"10:46:33.2249510 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000499","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.2250265 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000090","CreationTime: 6/21/2019 11:32:22 AM, LastAccessTime: 6/21/2019 11:32:22 AM, LastWriteTime: 6/21/2019 11:32:22 AM, ChangeTime: 6/21/2019 11:32:22 AM, FileAttributes: A","7276"
"10:46:33.2250555 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000116","","7276"
"10:46:33.2271449 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000679","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.2272512 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000102","CreationTime: 6/19/2019 5:34:27 PM, LastAccessTime: 6/19/2019 5:34:27 PM, LastWriteTime: 6/19/2019 5:34:27 PM, ChangeTime: 6/19/2019 5:34:27 PM, FileAttributes: A","7276"
"10:46:33.2272909 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000153","","7276"
"10:46:33.2285858 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0001113","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:33.2287360 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000213","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:33.2288251 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000308","","5068"
"10:46:33.2295949 AM","firefox.exe","7384","Thread Exit","","0.0000000","Thread ID: 2444, User Time: 0.0000000, Kernel Time: 0.0312500","2444"
"10:46:33.2297937 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\idb-deleting-3870112724rsegmnoittet-es","0.0000870","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:33.2305928 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000888","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:33.2307251 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000124","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","5068"
"10:46:33.2307742 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000196","","5068"
"10:46:33.2313732 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000380","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:33.2314415 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000128","CreationTime: 8/16/2019 1:36:57 PM, LastAccessTime: 8/16/2019 1:36:57 PM, LastWriteTime: 8/16/2019 1:36:57 PM, ChangeTime: 8/16/2019 1:36:57 PM, AllocationSize: 53248, EndOfFile: 50353, FileAttributes: A","5728"
"10:46:33.2314812 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000132","","5728"
"10:46:33.2318131 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000627","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:33.2319394 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000119","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:33.2319876 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000179","","5068"
"10:46:33.2320089 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000406","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:33.2320781 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000076","CreationTime: 8/16/2019 1:36:57 PM, LastAccessTime: 8/16/2019 1:36:57 PM, LastWriteTime: 8/16/2019 1:36:57 PM, ChangeTime: 8/16/2019 1:36:57 PM, FileAttributes: A","5728"
"10:46:33.2321088 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000124","","5728"
"10:46:33.2324608 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000764","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:33.2326549 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000312","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:33.2330197 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000115","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:33.2330730 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000060","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:33.2331277 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000153","Offset: 1,073,741,824, Length: 1","5068"
"10:46:33.2331985 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000516","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.2333209 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000107","CreationTime: 8/16/2019 1:36:57 PM, LastAccessTime: 8/16/2019 1:36:57 PM, LastWriteTime: 8/16/2019 1:36:57 PM, ChangeTime: 8/16/2019 1:36:57 PM, AllocationSize: 53248, EndOfFile: 50353, FileAttributes: A","7276"
"10:46:33.2333653 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000167","","7276"
"10:46:33.2337988 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000478","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:33.2338816 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000089","CreationTime: 6/19/2019 5:53:45 PM, LastAccessTime: 6/19/2019 5:53:45 PM, LastWriteTime: 6/19/2019 5:53:45 PM, ChangeTime: 6/19/2019 5:53:45 PM, AllocationSize: 98304, EndOfFile: 98093, FileAttributes: A","5728"
"10:46:33.2339230 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000153","","5728"
"10:46:33.2339652 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000627","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:33.2342361 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000986","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.2343740 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000110","CreationTime: 8/16/2019 1:36:57 PM, LastAccessTime: 8/16/2019 1:36:57 PM, LastWriteTime: 8/16/2019 1:36:57 PM, ChangeTime: 8/16/2019 1:36:57 PM, FileAttributes: A","7276"
"10:46:33.2344183 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000171","","7276"
"10:46:33.2348326 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000610","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:33.2349389 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000111","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:33.2349896 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000175","","5068"
"10:46:33.2351210 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000099","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:33.2351697 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000512","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:33.2351825 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000158","Offset: 0, Length: 4,096","5068"
"10:46:33.2352593 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000107","CreationTime: 6/19/2019 5:53:45 PM, LastAccessTime: 6/19/2019 5:53:45 PM, LastWriteTime: 6/19/2019 5:53:45 PM, ChangeTime: 6/19/2019 5:53:45 PM, FileAttributes: A","5728"
"10:46:33.2353041 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000166","","5728"
"10:46:33.2359885 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000635","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:33.2361007 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000119","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:33.2361536 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000179","","5068"
"10:46:33.2366396 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000802","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:33.2368555 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000136","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:33.2369216 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000175","Offset: 0, Length: 4,096","5068"
"10:46:33.2376239 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000559","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.2377254 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000120","CreationTime: 6/19/2019 5:53:45 PM, LastAccessTime: 6/19/2019 5:53:45 PM, LastWriteTime: 6/19/2019 5:53:45 PM, ChangeTime: 6/19/2019 5:53:45 PM, AllocationSize: 98304, EndOfFile: 98093, FileAttributes: A","7276"
"10:46:33.2377779 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000196","","7276"
"10:46:33.2386440 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000726","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:33.2387144 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000512","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.2387635 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000124","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:33.2388075 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000115","CreationTime: 6/19/2019 5:53:45 PM, LastAccessTime: 6/19/2019 5:53:45 PM, LastWriteTime: 6/19/2019 5:53:45 PM, ChangeTime: 6/19/2019 5:53:45 PM, FileAttributes: A","7276"
"10:46:33.2388177 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000188","","5068"
"10:46:33.2388544 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000175","","7276"
"10:46:33.2396015 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000554","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:33.2396941 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000149","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:30 AM, LastWriteTime: 3/26/2020 10:46:30 AM, ChangeTime: 3/26/2020 10:46:30 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:33.2397380 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000154","","5068"
"10:46:33.2399970 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000495","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.2400823 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000094","CreationTime: 8/16/2019 1:36:57 PM, LastAccessTime: 8/16/2019 1:36:57 PM, LastWriteTime: 8/16/2019 1:36:57 PM, ChangeTime: 8/16/2019 1:36:57 PM, FileAttributes: A","7276"
"10:46:33.2401224 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000150","","7276"
"10:46:33.2401250 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000461","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:33.2402167 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000086","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,798, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5068"
"10:46:33.2402590 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000132","","5068"
"10:46:33.2404066 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000107","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:33.2404702 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0202594","Offset: 32,768, Length: 32,768","8844"
"10:46:33.2405854 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000085","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:33.2406455 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000171","Offset: 8,192, Length: 4,096","5068"
"10:46:33.2407629 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000081","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:33.2408128 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000119","Offset: 12,288, Length: 4,096","5068"
"10:46:33.2409523 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000085","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:33.2410120 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000128","Offset: 16,384, Length: 4,096","5068"
"10:46:33.2411426 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000107","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:33.2411874 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000068","Offset: 1,073,741,826, Length: 510","5068"
"10:46:33.2412237 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:33.2412570 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:33.2413086 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000234","","5068"
"10:46:33.2414387 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000056","Offset: 1,073,741,825, Length: 1","5068"
"10:46:33.2414728 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","Offset: 1,073,741,826, Length: 510","5068"
"10:46:33.2415014 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","Offset: 1,073,741,824, Length: 1","5068"
"10:46:33.2415390 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000209","","5068"
"10:46:33.2426325 AM","firefox.exe","7384","Thread Exit","","0.0000000","Thread ID: 120, User Time: 0.0312500, Kernel Time: 0.0156250","120"
"10:46:33.2434944 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000559","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:33.2435976 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000116","CreationTime: 3/26/2020 10:35:22 AM, LastAccessTime: 3/26/2020 10:35:22 AM, LastWriteTime: 3/26/2020 10:35:22 AM, ChangeTime: 3/26/2020 10:35:22 AM, AllocationSize: 118784, EndOfFile: 115566, FileAttributes: A","5728"
"10:46:33.2436493 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0171938","","5728"
"10:46:33.2436975 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000917","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.2438443 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000119","CreationTime: 6/19/2019 5:53:45 PM, LastAccessTime: 6/19/2019 5:53:45 PM, LastWriteTime: 6/19/2019 5:53:45 PM, ChangeTime: 6/19/2019 5:53:45 PM, FileAttributes: A","7276"
"10:46:33.2438916 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000184","","7276"
"10:46:33.2455855 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000734","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.2514577 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0001673","Offset: 5,505,024, Length: 65,536","7900"
"10:46:33.2519539 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.1189216","Offset: 5,570,560, Length: 65,536","7900"
"10:46:33.2562236 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000226","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.2608892 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000247","Offset: 65,536, Length: 32,768","8844"
"10:46:33.2609455 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000090","Offset: 98,304, Length: 17,262","8844"
"10:46:33.2609690 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000025","Offset: 115,566, Length: 15,506","8844"
"10:46:33.2609946 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000123","","8844"
"10:46:33.2613082 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:33.2613662 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000060","CreationTime: 3/26/2020 10:35:22 AM, LastAccessTime: 3/26/2020 10:35:22 AM, LastWriteTime: 3/26/2020 10:35:22 AM, ChangeTime: 3/26/2020 10:35:22 AM, FileAttributes: A","5728"
"10:46:33.2613880 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000076","","5728"
"10:46:33.2620216 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0001450","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.2622831 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000721","CreationTime: 3/26/2020 10:35:22 AM, LastAccessTime: 3/26/2020 10:35:22 AM, LastWriteTime: 3/26/2020 10:35:22 AM, ChangeTime: 3/26/2020 10:35:22 AM, AllocationSize: 118784, EndOfFile: 115566, FileAttributes: A","7276"
"10:46:33.2624397 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000619","","7276"
"10:46:33.2640644 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.2641131 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000064","CreationTime: 3/26/2020 10:35:22 AM, LastAccessTime: 3/26/2020 10:35:22 AM, LastWriteTime: 3/26/2020 10:35:22 AM, ChangeTime: 3/26/2020 10:35:22 AM, FileAttributes: A","7276"
"10:46:33.2641336 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000085","","7276"
"10:46:33.2674014 AM","firefox.exe","7384","Thread Exit","","0.0000000","Thread ID: 8844, User Time: 0.0156250, Kernel Time: 0.0156250","8844"
"10:46:33.2674991 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000363","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.2675704 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000068","CreationTime: 3/26/2020 10:35:22 AM, LastAccessTime: 3/26/2020 10:35:22 AM, LastWriteTime: 3/26/2020 10:35:22 AM, ChangeTime: 3/26/2020 10:35:22 AM, FileAttributes: A","7276"
"10:46:33.2675926 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000085","","7276"
"10:46:33.2712986 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000102","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:33.2713357 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000081","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:33.2714121 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000183","Offset: 1,212,416, Length: 32,768","4604"
"10:46:33.2714633 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000038","Offset: 123, Length: 1","4604"
"10:46:33.2714995 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0417272","Offset: 7,409,664, Length: 4,096","7760"
"10:46:33.2715072 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000030","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:33.2715239 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000038","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:33.2715537 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000022","Offset: 123, Length: 1","4604"
"10:46:33.2715729 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0414469","Offset: 7,409,664, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.2715819 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000026","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:33.2716617 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000064","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:33.2717073 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000039","Offset: 123, Length: 1","4604"
"10:46:33.2717615 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000043","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:33.2717811 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000047","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:33.2718652 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000030","Offset: 123, Length: 1","4604"
"10:46:33.2719053 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000030","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:33.2719219 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000039","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:33.2719885 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000030","Offset: 123, Length: 1","4604"
"10:46:33.2720205 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000026","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:33.2720346 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000038","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:33.2720781 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000034","Offset: 123, Length: 1","4604"
"10:46:33.2721046 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000251","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2721135 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000026","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:33.2721268 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000038","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:33.2721814 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000047","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:33.2721822 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000026","Offset: 123, Length: 1","4604"
"10:46:33.2721997 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000137","","740"
"10:46:33.2722108 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000021","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:33.2722240 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000030","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:33.2722594 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000082","Offset: 123, Length: 1","4604"
"10:46:33.2722923 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000021","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:33.2723047 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000034","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:33.2723486 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000030","Offset: 123, Length: 1","4604"
"10:46:33.2723734 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000017","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:33.2723845 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000025","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:33.2724340 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000042","Offset: 123, Length: 1","4604"
"10:46:33.2726964 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2727207 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000303","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.2727279 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000039","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:33.2727441 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000077","","740"
"10:46:33.2730151 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2730607 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000039","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","740"
"10:46:33.2730752 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000052","","740"
"10:46:33.2733248 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2733607 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:33.2733718 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000051","","740"
"10:46:33.2735821 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2736111 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:33.2736214 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000042","","740"
"10:46:33.2738070 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2738338 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:33.2738441 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000051","","740"
"10:46:33.2740967 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2741419 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000068","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:33.2741611 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000073","","740"
"10:46:33.2745541 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2746134 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000051","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:33.2746351 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000081","","740"
"10:46:33.2749940 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2750443 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000047","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:33.2750635 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000068","","740"
"10:46:33.2754390 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2754718 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000043","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:33.2754863 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000154","","740"
"10:46:33.2758737 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000244","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2759138 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000047","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:33.2759309 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000073","","740"
"10:46:33.2762573 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2762927 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000047","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:33.2763106 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000073","","740"
"10:46:33.2766605 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2767147 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000047","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:33.2767343 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000073","","740"
"10:46:33.2770769 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2771247 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000047","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:33.2771426 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000069","","740"
"10:46:33.2774737 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2775254 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000047","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","740"
"10:46:33.2775446 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000072","","740"
"10:46:33.2776192 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0011~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:16:17 PM, ChangeTime: 3/20/2019 7:05:53 PM, AllocationSize: 303104, EndOfFile: 302781, FileAttributes: A","2512"
"10:46:33.2776448 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0011~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000099","","2512"
"10:46:33.2779832 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2780395 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000051","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:33.2780553 AM","firefox.exe","7384","ReadFile","C:","0.0054370","Offset: 1,052,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:33.2780583 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000081","","740"
"10:46:33.2784218 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2784721 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000060","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:33.2784922 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000077","","740"
"10:46:33.2788071 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2788544 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:33.2788728 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000072","","740"
"10:46:33.2792436 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2793007 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000056","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:33.2793195 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000081","","740"
"10:46:33.2796800 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2797372 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000051","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:33.2797547 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000085","","740"
"10:46:33.2801788 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2802321 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000052","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:33.2802496 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000073","","740"
"10:46:33.2807156 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2807736 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000055","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:33.2807928 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000085","","740"
"10:46:33.2813176 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000734","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2816180 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000371","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:33.2817067 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000862","","740"
"10:46:33.2836660 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000315","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2837347 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000059","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","740"
"10:46:33.2837547 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000090","","740"
"10:46:33.2840926 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0349381","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.2841746 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2842211 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000064","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:33.2842403 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000072","","740"
"10:46:33.2844587 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2844886 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000025","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:33.2844992 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000039","","740"
"10:46:33.2846891 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2847177 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000026","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:33.2847284 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000042","","740"
"10:46:33.2850697 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2851068 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:33.2851243 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000068","","740"
"10:46:33.2853871 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2854089 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:33.2854191 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000043","","740"
"10:46:33.2856082 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2856329 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:33.2856440 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000047","","740"
"10:46:33.2859892 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2860510 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:33.2860668 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000068","","740"
"10:46:33.2863800 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2864367 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000035","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:33.2864504 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000055","","740"
"10:46:33.2866505 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2866791 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:33.2866893 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000043","","740"
"10:46:33.2869116 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2869411 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000029","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:33.2869513 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000047","","740"
"10:46:33.2871535 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2871817 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:33.2871919 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000039","","740"
"10:46:33.2873980 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2874245 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:33.2874343 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000038","","740"
"10:46:33.2876997 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2877325 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.2877436 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000047","","740"
"10:46:33.2879608 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2879924 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.2880030 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000043","","740"
"10:46:33.2882373 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2882735 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000039","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.2882872 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000047","","740"
"10:46:33.2886298 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2886703 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000043","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:33.2886874 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000077","","740"
"10:46:33.2890373 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000196","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.2891243 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2891666 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000055","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:33.2891879 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000081","","740"
"10:46:33.2894226 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2894482 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000029","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","740"
"10:46:33.2894597 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000047","","740"
"10:46:33.2897187 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2897430 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000030","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:33.2897537 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000042","","740"
"10:46:33.2899576 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2899823 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000035","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:33.2899956 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000055","","740"
"10:46:33.2902447 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2902725 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000030","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","740"
"10:46:33.2902849 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000051","","740"
"10:46:33.2906262 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2906710 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000034","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:33.2906842 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000056","","740"
"10:46:33.2909833 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2910311 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000043","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:33.2910490 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000068","","740"
"10:46:33.2913724 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2914168 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000043","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","740"
"10:46:33.2914330 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000064","","740"
"10:46:33.2918029 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2918516 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:33.2918674 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000064","","740"
"10:46:33.2922006 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2922450 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:33.2922620 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000069","","740"
"10:46:33.2925773 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2926251 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:33.2926435 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000072","","740"
"10:46:33.2930215 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2930569 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:33.2930757 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000072","","740"
"10:46:33.2934174 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2934512 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000046","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:33.2934699 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000073","","740"
"10:46:33.2938168 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2938514 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000042","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","740"
"10:46:33.2938693 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000068","","740"
"10:46:33.2942256 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2942622 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:33.2942802 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000068","","740"
"10:46:33.2946313 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2946663 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:33.2946829 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000069","","740"
"10:46:33.2950051 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2950422 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:33.2950605 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000064","","740"
"10:46:33.2965884 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0001088","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2967134 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000060","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:33.2967326 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000082","","740"
"10:46:33.2970552 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2970881 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:33.2971060 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000068","","740"
"10:46:33.2974153 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2974452 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000042","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:33.2974618 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000068","","740"
"10:46:33.2978262 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2978565 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:33.2978706 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000055","","740"
"10:46:33.2982443 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2982823 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000051","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:33.2983002 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000077","","740"
"10:46:33.2986266 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2986646 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000051","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:33.2986825 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000081","","740"
"10:46:33.2991100 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2991493 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000051","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:33.2991668 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000085","","740"
"10:46:33.2995410 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.2995777 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000064","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:33.2995947 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000073","","740"
"10:46:33.3016739 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000529","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3017549 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000077","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:33.3017818 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000137","","740"
"10:46:33.3022034 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000371","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3022866 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000055","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:33.3023062 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000077","","740"
"10:46:33.3026219 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3026625 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:33.3026744 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000051","","740"
"10:46:33.3027576 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000277","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.3029594 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3029957 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:33.3030072 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000047","","740"
"10:46:33.3031382 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.2853538","Offset: 25,165,824, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:33.3032820 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3033161 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:33.3033272 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000043","","740"
"10:46:33.3035222 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3035516 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000026","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:33.3035619 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000043","","740"
"10:46:33.3037697 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3037983 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000025","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:33.3038085 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000038","","740"
"10:46:33.3040602 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3040901 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:33.3041003 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000043","","740"
"10:46:33.3042996 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3043431 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000039","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:33.3043576 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000047","","740"
"10:46:33.3048487 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3049059 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000051","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:33.3049251 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000077","","740"
"10:46:33.3053274 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3053637 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000043","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:33.3053816 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000073","","740"
"10:46:33.3056999 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3057302 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000043","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:33.3057464 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000068","","740"
"10:46:33.3063873 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3064188 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000043","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","740"
"10:46:33.3064338 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000060","","740"
"10:46:33.3067179 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3067563 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000035","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:33.3067683 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000047","","740"
"10:46:33.3069701 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3070000 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:33.3070106 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000043","","740"
"10:46:33.3072107 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3072385 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","740"
"10:46:33.3072491 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000043","","740"
"10:46:33.3075060 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3075316 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000034","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:33.3075440 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000055","","740"
"10:46:33.3077394 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3077594 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:33.3077692 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000043","","740"
"10:46:33.3079557 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3079745 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000025","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:33.3079843 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000043","","740"
"10:46:33.3082522 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3082736 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:33.3082838 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000038","","740"
"10:46:33.3085052 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3085249 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:33.3085347 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000038","","740"
"10:46:33.3087536 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3087775 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:33.3087890 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000043","","740"
"10:46:33.3091960 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3092498 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000047","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:33.3092673 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000072","","740"
"10:46:33.3096001 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3096479 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000055","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:33.3096649 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000069","","740"
"10:46:33.3099879 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3100344 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000047","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:33.3100519 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000068","","740"
"10:46:33.3104197 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3104692 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:33.3104880 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000072","","740"
"10:46:33.3108532 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3109035 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:33.3109210 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000073","","740"
"10:46:33.3112905 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3113473 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000060","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:33.3113673 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000086","","740"
"10:46:33.3130488 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3131589 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000068","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:33.3131815 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000086","","740"
"10:46:33.3135369 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3135493 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0356677","Offset: 11,653,120, Length: 4,096","7760"
"10:46:33.3135881 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000047","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:33.3136073 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0355781","Offset: 11,653,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.3136078 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000076","","740"
"10:46:33.3139205 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000303","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3139948 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000051","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:33.3140131 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000077","","740"
"10:46:33.3144039 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3144410 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000047","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:33.3144581 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000073","","740"
"10:46:33.3148980 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3149364 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000047","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:33.3149552 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000072","","740"
"10:46:33.3153055 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3153409 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000051","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:33.3153571 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000073","","740"
"10:46:33.3157927 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3158307 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000047","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:33.3158486 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000077","","740"
"10:46:33.3161592 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3161959 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000047","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:33.3162113 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000094","","740"
"10:46:33.3166341 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000986","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3168393 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000521","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:33.3169699 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000819","","740"
"10:46:33.3191165 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000179","CreationTime: 3/20/2019 7:27:26 PM, LastAccessTime: 3/20/2019 7:42:31 PM, LastWriteTime: 1/10/2019 4:09:14 AM, ChangeTime: 3/20/2019 7:42:31 PM, AllocationSize: 40960, EndOfFile: 39200, FileAttributes: A","2512"
"10:46:33.3191745 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000277","","2512"
"10:46:33.3192009 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000905","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3194429 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000230","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:33.3194958 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000217","","740"
"10:46:33.3200283 AM","firefox.exe","7384","ReadFile","C:","0.0008311","Offset: 1,056,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:33.3206896 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3207455 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000068","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:33.3208692 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000171","","740"
"10:46:33.3212652 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3213189 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000051","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","740"
"10:46:33.3213373 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000068","","740"
"10:46:33.3217503 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3218220 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000055","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.3218403 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000077","","740"
"10:46:33.3220182 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000248","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.3222409 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000261","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3223032 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000052","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.3223254 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000073","","740"
"10:46:33.3224841 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1456_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0031151","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.3226540 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3227022 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.3227214 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000068","","740"
"10:46:33.3231310 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000281","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3231992 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000167","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:33.3232351 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000085","","740"
"10:46:33.3238781 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3239425 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000060","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:33.3239660 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000076","","740"
"10:46:33.3241161 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000248","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.3244878 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3245462 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000052","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:33.3245654 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000077","","740"
"10:46:33.3251192 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3251478 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000034","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:33.3251598 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000051","","740"
"10:46:33.3253804 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3254017 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000030","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:33.3254124 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000042","","740"
"10:46:33.3256223 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1456_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000047","CreationTime: 4/25/2019 5:40:33 PM, LastAccessTime: 4/25/2019 5:40:33 PM, LastWriteTime: 4/3/2019 9:55:09 AM, ChangeTime: 4/25/2019 8:12:16 PM, AllocationSize: 40960, EndOfFile: 40463, FileAttributes: A","2512"
"10:46:33.3256432 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3256483 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1456_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000077","","2512"
"10:46:33.3256769 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000034","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","740"
"10:46:33.3256906 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000055","","740"
"10:46:33.3257157 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000060","","2512"
"10:46:33.3257379 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000051","","2512"
"10:46:33.3260754 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3260775 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.3261125 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000043","CreationTime: 3/20/2019 7:27:26 PM, LastAccessTime: 3/20/2019 7:42:31 PM, LastWriteTime: 1/10/2019 4:09:14 AM, ChangeTime: 3/20/2019 7:42:31 PM, AllocationSize: 40960, EndOfFile: 39200, FileAttributes: A","2512"
"10:46:33.3261313 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000077","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:33.3261360 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000072","","2512"
"10:46:33.3261526 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000056","","740"
"10:46:33.3263365 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000197","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.3263792 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000043","AllocationSize: 40,960, EndOfFile: 39,200, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:33.3264065 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:33.3264270 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","AllocationSize: 40,960, EndOfFile: 39,200, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:33.3264475 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3264914 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:33.3265217 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000085","","740"
"10:46:33.3267867 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000076","SyncType: SyncTypeOther","2512"
"10:46:33.3268340 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3268886 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0616552","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:33.3268938 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000055","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:33.3269134 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000077","","740"
"10:46:33.3273179 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3273541 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000073","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.3273746 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000073","","740"
"10:46:33.3278606 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3279071 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000051","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.3279263 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000094","","740"
"10:46:33.3286030 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000311","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3286994 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000222","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.3287523 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000290","","740"
"10:46:33.3306608 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3307312 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000064","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:33.3307530 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000089","","740"
"10:46:33.3311126 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3311621 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:33.3311809 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000073","","740"
"10:46:33.3314783 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3315158 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:33.3315286 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000047","","740"
"10:46:33.3318290 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3318858 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:33.3319033 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000081","","740"
"10:46:33.3322271 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3323065 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:33.3323222 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000069","","740"
"10:46:33.3326380 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3326917 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000056","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:33.3327135 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000090","","740"
"10:46:33.3331274 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3331854 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000060","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:33.3332046 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000077","","740"
"10:46:33.3336756 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000563","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3337968 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000188","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:33.3338420 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000346","","740"
"10:46:33.3353725 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000388","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3354463 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","740"
"10:46:33.3354617 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000085","","740"
"10:46:33.3359907 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3360445 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000055","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:33.3360641 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000077","","740"
"10:46:33.3363730 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000384","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3364319 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000038","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:33.3364438 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000056","","740"
"10:46:33.3366563 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3366875 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000030","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","740"
"10:46:33.3367016 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000064","","740"
"10:46:33.3370045 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3370361 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000029","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:33.3370467 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000047","","740"
"10:46:33.3372592 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3372874 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000025","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:33.3372976 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000047","","740"
"10:46:33.3374815 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3375084 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000025","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","740"
"10:46:33.3375190 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000039","","740"
"10:46:33.3377533 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3377827 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:33.3377930 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000042","","740"
"10:46:33.3382004 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3382529 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:33.3382708 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000073","","740"
"10:46:33.3386049 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3386561 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:33.3386740 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000073","","740"
"10:46:33.3391254 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000210","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3391741 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000051","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:33.3391916 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000068","","740"
"10:46:33.3395342 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3395828 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000052","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:33.3396020 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000069","","740"
"10:46:33.3399378 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3399886 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000043","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:33.3400061 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000077","","740"
"10:46:33.3401460 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000231","Offset: 0, Length: 4,096, Priority: Normal","8652"
"10:46:33.3402015 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000068","Offset: 4,096, Length: 4,096","8652"
"10:46:33.3402254 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000038","Offset: 8,192, Length: 4,096","8652"
"10:46:33.3402437 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000035","Offset: 12,288, Length: 4,096","8652"
"10:46:33.3402600 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000055","Offset: 16,384, Length: 4,096","8652"
"10:46:33.3402787 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000034","Offset: 20,480, Length: 4,096","8652"
"10:46:33.3402949 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000039","Offset: 24,576, Length: 3,276","8652"
"10:46:33.3403112 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000025","Offset: 27,852, Length: 4,096","8652"
"10:46:33.3403265 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000022","Offset: 27,852, Length: 4,096","8652"
"10:46:33.3403487 AM","firefox.exe","7336","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000128","","8652"
"10:46:33.3404097 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000103","Offset: 0, Length: 4,096, Priority: Normal","8652"
"10:46:33.3404191 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3404383 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000043","Offset: 4,096, Length: 4,096","8652"
"10:46:33.3404579 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000039","Offset: 8,192, Length: 4,096","8652"
"10:46:33.3404763 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000081","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:33.3404780 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000051","Offset: 12,288, Length: 4,096","8652"
"10:46:33.3405032 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000635","","740"
"10:46:33.3405053 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000055","Offset: 16,384, Length: 4,096","8652"
"10:46:33.3405279 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000111","Offset: 20,480, Length: 4,096","8652"
"10:46:33.3405509 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000035","Offset: 24,576, Length: 3,276","8652"
"10:46:33.3405655 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000021","Offset: 27,852, Length: 4,096","8652"
"10:46:33.3405800 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000021","Offset: 27,852, Length: 4,096","8652"
"10:46:33.3405979 AM","firefox.exe","7336","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\d4a4a2e64d8f01a5b9e64d8e6b6ff667.png","0.0000081","","8652"
"10:46:33.3411073 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3411636 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000064","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:33.3411837 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000072","","740"
"10:46:33.3415933 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3416432 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:33.3416616 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000076","","740"
"10:46:33.3419986 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3420460 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000051","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:33.3420648 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000072","","740"
"10:46:33.3423933 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3424385 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","740"
"10:46:33.3424581 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000069","","740"
"10:46:33.3428490 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3429006 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000051","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:33.3429202 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000077","","740"
"10:46:33.3432543 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3433025 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000047","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:33.3433217 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000068","","740"
"10:46:33.3436643 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3437138 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000047","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:33.3437335 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000076","","740"
"10:46:33.3443666 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000401","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3444520 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000055","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:33.3444733 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000141","","740"
"10:46:33.3452144 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0002001","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3457354 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000388","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:33.3458570 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000874","","740"
"10:46:33.3480198 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000298","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3481136 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000167","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:33.3481465 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000085","","740"
"10:46:33.3487912 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000268","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3488535 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000051","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:33.3488718 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000073","","740"
"10:46:33.3492038 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000238","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3492584 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000055","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:33.3492784 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000086","","740"
"10:46:33.3495110 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0010077","Offset: 12,660,736, Length: 4,096","7760"
"10:46:33.3495754 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0009041","Offset: 12,660,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.3496146 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000244","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3496714 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000051","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:33.3496889 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000081","","740"
"10:46:33.3503344 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000346","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3503613 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000260","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.3504142 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000124","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:33.3504424 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000123","","740"
"10:46:33.3508323 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0007215","Offset: 688,128, Length: 4,096","7760"
"10:46:33.3508904 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0006135","Offset: 688,128, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.3531381 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000503","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3532379 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000499","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.3532661 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000119","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:33.3532998 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000132","","740"
"10:46:33.3554438 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000328","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3555534 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000056","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:33.3555705 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000068","","740"
"10:46:33.3559233 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3559630 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000039","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.3559754 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000051","","740"
"10:46:33.3562719 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3563193 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000043","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.3563351 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000136","","740"
"10:46:33.3565638 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3565953 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.3566060 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000047","","740"
"10:46:33.3570860 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3571236 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000046","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:33.3572033 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000107","","740"
"10:46:33.3580857 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3581501 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000060","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:33.3581723 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000085","","740"
"10:46:33.3586071 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3586856 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000089","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:33.3587172 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000115","","740"
"10:46:33.3591681 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000056","Offset: 120, Length: 1","7760"
"10:46:33.3591899 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000026","Offset: 123, Length: 1","7760"
"10:46:33.3593324 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000043","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:33.3593610 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000077","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:33.3593857 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000026","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7760"
"10:46:33.3603112 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000397","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3604874 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000081","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:33.3605151 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000111","","740"
"10:46:33.3608351 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000077","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7884"
"10:46:33.3608676 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000068","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7884"
"10:46:33.3610485 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0383719","Offset: 851,968, Length: 32,768","7884"
"10:46:33.3611658 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0382136","Offset: 851,968, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7884"
"10:46:33.3630747 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0007846","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3642173 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000354","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:33.3643265 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000521","","740"
"10:46:33.3652033 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3652652 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000064","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","740"
"10:46:33.3652878 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000081","","740"
"10:46:33.3657465 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3658011 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000051","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:33.3658195 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000076","","740"
"10:46:33.3663289 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000316","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3664334 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000116","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:33.3664642 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000093","","740"
"10:46:33.3670534 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000303","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3671242 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000068","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","740"
"10:46:33.3671472 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000094","","740"
"10:46:33.3683402 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000341","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3684170 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000081","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:33.3684422 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000098","","740"
"10:46:33.3688270 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3689290 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000060","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:33.3689503 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000103","","740"
"10:46:33.3711468 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000559","Offset: 5,636,096, Length: 65,536","7900"
"10:46:33.3716106 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0345003","Offset: 5,701,632, Length: 65,536","7900"
"10:46:33.3728386 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000563","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3729640 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000081","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","740"
"10:46:33.3730071 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000341","","740"
"10:46:33.3736710 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000281","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3737410 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000064","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.3737649 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000098","","740"
"10:46:33.3742542 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000261","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3743178 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000060","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.3743400 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000090","","740"
"10:46:33.3746267 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000593","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.3749595 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3750060 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000043","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.3750222 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000060","","740"
"10:46:33.3753926 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0002052","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3755790 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000060","Offset: 120, Length: 1","7760"
"10:46:33.3756038 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000025","Offset: 123, Length: 1","7760"
"10:46:33.3756328 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000055","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:33.3756524 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000090","","740"
"10:46:33.3756622 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000043","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:33.3756861 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:33.3757058 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000029","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7760"
"10:46:33.3761107 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000315","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3761887 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000060","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:33.3762139 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000103","","740"
"10:46:33.3766423 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0001370","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3768172 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000056","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","740"
"10:46:33.3768360 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000081","","740"
"10:46:33.3772938 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3773322 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000043","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:33.3773467 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000060","","740"
"10:46:33.3778306 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3778702 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000052","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:33.3778894 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000073","","740"
"10:46:33.3782282 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0005517","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3790257 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000588","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","740"
"10:46:33.3791835 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0001178","","740"
"10:46:33.3811061 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000290","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3811731 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000064","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:33.3811953 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000093","","740"
"10:46:33.3816505 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3817128 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000064","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:33.3817337 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000090","","740"
"10:46:33.3834400 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3835215 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000055","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","740"
"10:46:33.3835415 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000077","","740"
"10:46:33.3841836 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0001861","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3844674 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000196","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:33.3845284 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000499","","740"
"10:46:33.3882647 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000700","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3884192 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000111","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:33.3884537 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000154","","740"
"10:46:33.3887733 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000073","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:33.3888190 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000162","CreationTime: 3/20/2019 7:27:26 PM, LastAccessTime: 3/20/2019 7:42:31 PM, LastWriteTime: 1/10/2019 4:09:14 AM, ChangeTime: 3/20/2019 7:42:31 PM, FileAttributes: A, AllocationSize: 40,960, EndOfFile: 39,200, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x200000006f356, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:33.3890485 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3891099 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000056","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","740"
"10:46:33.3891317 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000085","","740"
"10:46:33.3891786 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000278","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.3892358 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000051","AllocationSize: 40,960, EndOfFile: 39,200, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:33.3892665 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:33.3892862 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","AllocationSize: 40,960, EndOfFile: 39,200, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:33.3893194 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:33.3894585 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000107","","2512"
"10:46:33.3895857 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3896433 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000055","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:33.3896638 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000098","","740"
"10:46:33.3897090 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000230","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.3897593 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000047","AllocationSize: 40,960, EndOfFile: 39,200, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:33.3897841 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:33.3898024 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","AllocationSize: 40,960, EndOfFile: 39,200, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:33.3898323 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:33.3898899 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0001945","","2512"
"10:46:33.3900819 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3901450 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000064","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:33.3901676 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000090","","740"
"10:46:33.3903464 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000243","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.3904684 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000602","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3905542 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000038","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:33.3905683 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000064","","740"
"10:46:33.3908162 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000239","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.3908678 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000043","AllocationSize: 40,960, EndOfFile: 39,200, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:33.3908968 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:33.3909182 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","AllocationSize: 40,960, EndOfFile: 39,200, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:33.3909352 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3909566 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:33.3909851 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000039","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:33.3910014 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000076","","740"
"10:46:33.3910214 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0017404","Offset: 32,768, Length: 6,432, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:33.3912812 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3913478 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:33.3913632 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000089","","740"
"10:46:33.3914818 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000060","Offset: 120, Length: 1","7760"
"10:46:33.3915078 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000026","Offset: 123, Length: 1","7760"
"10:46:33.3915727 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000034","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:33.3915970 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000060","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:33.3916345 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000026","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7760"
"10:46:33.3917493 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3918014 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000046","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:33.3918214 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000081","","740"
"10:46:33.3923462 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3924179 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000068","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:33.3924422 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000098","","740"
"10:46:33.3928015 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000251","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3928655 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000059","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:33.3928821 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000137","","2512"
"10:46:33.3928868 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000077","","740"
"10:46:33.3932712 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3933241 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000052","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","740"
"10:46:33.3933408 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000072","","740"
"10:46:33.3937960 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3938570 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000060","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:33.3938775 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000120","","740"
"10:46:33.3943302 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3943938 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000060","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:33.3944168 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000081","","740"
"10:46:33.3947889 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3948473 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000056","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","740"
"10:46:33.3948670 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000081","","740"
"10:46:33.3973860 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0001054","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3975426 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000072","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:33.3975661 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000098","","740"
"10:46:33.3979326 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3979842 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:33.3980030 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000076","","740"
"10:46:33.3983780 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3984301 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000051","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","740"
"10:46:33.3984497 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000072","","740"
"10:46:33.3990812 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3991503 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000059","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:33.3991720 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000086","","740"
"10:46:33.3994980 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000154","Offset: 131,072, Length: 32,768","7884"
"10:46:33.3995629 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0110532","Offset: 884,736, Length: 32,768","7884"
"10:46:33.3995705 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000308","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.3996030 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0109790","Offset: 884,736, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7884"
"10:46:33.3996422 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000060","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:33.3996631 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000090","","740"
"10:46:33.4000830 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000251","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4001427 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000060","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","740"
"10:46:33.4001645 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000085","","740"
"10:46:33.4006824 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000359","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4007558 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000056","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:33.4007742 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000081","","740"
"10:46:33.4031183 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000469","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4032749 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000175","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:33.4033401 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000726","","740"
"10:46:33.4037625 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0001370","","2512"
"10:46:33.4043509 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000636","","2512"
"10:46:33.4050583 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000359","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4051339 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000072","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","740"
"10:46:33.4051560 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000081","","740"
"10:46:33.4055063 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000431","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4055848 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000056","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:33.4056062 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000077","","2512"
"10:46:33.4056441 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4056902 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000043","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.4057081 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000069","","740"
"10:46:33.4060171 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4060640 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000051","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.4060815 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000077","","740"
"10:46:33.4062449 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000205","Offset: 5,767,168, Length: 65,536","7900"
"10:46:33.4063942 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0234492","Offset: 5,832,704, Length: 65,536","7900"
"10:46:33.4064070 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4064134 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4064574 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000042","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.4064744 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000073","","740"
"10:46:33.4064834 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000055","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:33.4065094 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000098","","2512"
"10:46:33.4068896 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4069301 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000235","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.4069382 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:33.4069561 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000069","","740"
"10:46:33.4072902 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4073320 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000039","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:33.4073487 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000060","","740"
"10:46:33.4074984 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000060","Offset: 120, Length: 1","7760"
"10:46:33.4075270 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","Offset: 123, Length: 1","7760"
"10:46:33.4075987 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000039","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:33.4076205 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000653","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4076252 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000059","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:33.4076563 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000039","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7760"
"10:46:33.4077199 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","740"
"10:46:33.4077378 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000081","","740"
"10:46:33.4077493 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0124135","Offset: 13,152,256, Length: 4,096","7760"
"10:46:33.4077958 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0122206","Offset: 13,152,256, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.4082908 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4083518 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000051","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:33.4083680 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000072","","740"
"10:46:33.4083944 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0002518","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4086978 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000060","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:33.4087260 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000106","","2512"
"10:46:33.4089086 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4089615 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000043","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:33.4089781 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000069","","740"
"10:46:33.4090012 AM","firefox.exe","7384","CreateFile","C:\","0.0000183","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4090383 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000162","Filter: Windows, 1: Windows","2512"
"10:46:33.4090707 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:33.4091923 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4092205 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000123","Filter: System32, 1: System32","2512"
"10:46:33.4092452 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000047","","2512"
"10:46:33.4093237 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4093506 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000226","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4093758 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000047","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:33.4093899 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wshbth.dll","0.0000153","Filter: wshbth.dll, 1: wshbth.dll","2512"
"10:46:33.4093954 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000073","","740"
"10:46:33.4094176 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000055","","2512"
"10:46:33.4097214 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4097564 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000038","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:33.4097683 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000051","","2512"
"10:46:33.4098080 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4098293 AM","firefox.exe","7384","QueryDirectory","C:\WINDOWS","0.0000120","Filter: WINDOWS, 1: Windows","2512"
"10:46:33.4098528 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:33.4098933 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4099462 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:33.4099620 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4099671 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000077","","740"
"10:46:33.4099863 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:33.4100077 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:33.4101216 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4101463 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wshbth.dll","0.0000133","Filter: wshbth.dll, 1: wshbth.dll","2512"
"10:46:33.4101707 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:33.4103708 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4104220 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:33.4104403 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000073","","740"
"10:46:33.4104804 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4105261 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000042","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","2512"
"10:46:33.4105431 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000581","","2512"
"10:46:33.4106639 AM","firefox.exe","7384","CreateFile","C:\","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4107023 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000452","Filter: Windows, 1: Windows","2512"
"10:46:33.4107693 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4107735 AM","firefox.exe","7384","CloseFile","C:\","0.0024670","","2512"
"10:46:33.4108149 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","740"
"10:46:33.4108307 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000064","","740"
"10:46:33.4108563 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000060","Offset: 123, Length: 1","7884"
"10:46:33.4109340 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000034","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7884"
"10:46:33.4109553 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000047","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7884"
"10:46:33.4110854 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000056","Offset: 123, Length: 1","7884"
"10:46:33.4111311 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000034","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7884"
"10:46:33.4111503 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000043","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7884"
"10:46:33.4112608 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000030","Offset: 123, Length: 1","7884"
"10:46:33.4112962 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000056","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7884"
"10:46:33.4113022 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4113163 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000038","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","7884"
"10:46:33.4113594 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000046","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:33.4113777 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000085","","740"
"10:46:33.4114135 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000026","Offset: 123, Length: 1","7884"
"10:46:33.4119319 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0002070","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4124337 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000358","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:33.4125451 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000938","","740"
"10:46:33.4137658 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000234","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4138003 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4138170 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000239","Filter: System32, 1: System32","2512"
"10:46:33.4138562 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000056","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","740"
"10:46:33.4138763 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000076","","2512"
"10:46:33.4138805 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000081","","740"
"10:46:33.4140751 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4141126 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\npmproxy.dll","0.0000201","Filter: npmproxy.dll, 1: npmproxy.dll","2512"
"10:46:33.4141510 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000073","","2512"
"10:46:33.4143465 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4143938 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:33.4144117 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000069","","740"
"10:46:33.4147181 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4147906 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:33.4148073 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000076","","740"
"10:46:33.4151593 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4152083 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4152181 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000052","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","740"
"10:46:33.4152373 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000086","","740"
"10:46:33.4156235 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000076","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","2512"
"10:46:33.4156572 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000111","","2512"
"10:46:33.4156943 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4157515 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000042","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:33.4157694 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000068","","740"
"10:46:33.4158581 AM","firefox.exe","7384","CreateFile","C:\","0.0000235","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4159034 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000192","Filter: Windows, 1: Windows","2512"
"10:46:33.4159405 AM","firefox.exe","7384","CloseFile","C:\","0.0000068","","2512"
"10:46:33.4162353 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4162874 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000187","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4162912 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000055","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:33.4163113 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000085","","740"
"10:46:33.4163305 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000204","Filter: System32, 1: System32","2512"
"10:46:33.4163714 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000060","","2512"
"10:46:33.4165613 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000170","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4165967 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\npmproxy.dll","0.0000371","Filter: npmproxy.dll, 1: npmproxy.dll","2512"
"10:46:33.4166526 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000102","","2512"
"10:46:33.4167328 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4167887 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000055","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","740"
"10:46:33.4168079 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000068","","740"
"10:46:33.4191994 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000460","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4192006 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000504","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4192877 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000055","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:33.4193048 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000119","","740"
"10:46:33.4193180 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\npmproxy.dll","0.0000055","AllocationSize: 40,960, EndOfFile: 39,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:33.4193572 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\npmproxy.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:33.4193854 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\npmproxy.dll","0.0000043","AllocationSize: 40,960, EndOfFile: 39,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:33.4194306 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\npmproxy.dll","0.0000043","SyncType: SyncTypeOther","2512"
"10:46:33.4196337 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000900","","2512"
"10:46:33.4205579 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0276160","Offset: 3,158,016, Length: 4,096","7760"
"10:46:33.4207435 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000763","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4207836 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0273502","Offset: 3,158,016, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.4208958 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000162","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:33.4209295 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000119","","740"
"10:46:33.4210724 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000295","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4211676 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\npmproxy.dll","0.0000047","AllocationSize: 40,960, EndOfFile: 39,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:33.4211983 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\npmproxy.dll","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:33.4212218 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\npmproxy.dll","0.0000038","AllocationSize: 40,960, EndOfFile: 39,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:33.4212568 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\npmproxy.dll","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:33.4213532 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000145","","2512"
"10:46:33.4213792 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4214223 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000038","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:33.4214389 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000060","","740"
"10:46:33.4216489 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4216826 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000042","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:33.4217005 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000051","","2512"
"10:46:33.4218281 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4218571 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.4218729 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000059","","740"
"10:46:33.4219808 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4220124 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000038","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:33.4220294 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000043","","2512"
"10:46:33.4221869 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4222180 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.4222210 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000162","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4222338 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000056","","740"
"10:46:33.4222761 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\npmproxy.dll","0.0000042","AllocationSize: 40,960, EndOfFile: 39,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:33.4223021 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\npmproxy.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:33.4223209 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\npmproxy.dll","0.0000034","AllocationSize: 40,960, EndOfFile: 39,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:33.4223529 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\npmproxy.dll","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:33.4224898 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\npmproxy.dll","0.0000039","AllocationSize: 40,960, EndOfFile: 39,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:33.4225116 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\npmproxy.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:33.4225240 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4225291 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\npmproxy.dll","0.0000030","AllocationSize: 40,960, EndOfFile: 39,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:33.4225538 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.4225611 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\npmproxy.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:33.4225705 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000059","","740"
"10:46:33.4225986 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\npmproxy.dll","0.0141364","Offset: 0, Length: 39,936, Priority: Normal","2512"
"10:46:33.4226566 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\npmproxy.dll","0.0114313","Offset: 32,768, Length: 7,168, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2512"
"10:46:33.4228956 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4229336 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000029","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:33.4229446 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000047","","740"
"10:46:33.4232075 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4232382 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000034","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:33.4232497 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000043","","740"
"10:46:33.4234375 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4234665 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:33.4234767 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000038","","740"
"10:46:33.4238031 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4238539 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:33.4238645 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000043","","740"
"10:46:33.4240706 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4240984 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000029","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:33.4241086 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000038","","740"
"10:46:33.4243083 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4243356 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:33.4243458 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000043","","740"
"10:46:33.4246082 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4246535 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000029","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:33.4246650 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000038","","740"
"10:46:33.4248463 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4248745 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:33.4248843 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000042","","740"
"10:46:33.4251074 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4251672 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000068","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","740"
"10:46:33.4251855 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000102","","740"
"10:46:33.4256591 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4256967 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000029","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:33.4257073 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000047","","740"
"10:46:33.4259138 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4259441 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:33.4259539 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000043","","740"
"10:46:33.4261553 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4261831 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","740"
"10:46:33.4261933 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000038","","740"
"10:46:33.4264693 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4264996 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000026","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:33.4265095 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000042","","740"
"10:46:33.4267224 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4267492 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000026","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:33.4267595 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000042","","740"
"10:46:33.4269553 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4269818 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000025","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","740"
"10:46:33.4269916 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000038","","740"
"10:46:33.4273060 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4273368 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000025","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:33.4273466 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000038","","740"
"10:46:33.4275906 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4276222 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000026","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:33.4276324 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000043","","740"
"10:46:33.4278782 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4279243 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000047","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:33.4279388 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000055","","740"
"10:46:33.4283138 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4283646 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:33.4283804 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000068","","740"
"10:46:33.4301882 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000930","Offset: 5,898,240, Length: 65,536","7900"
"10:46:33.4303140 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000350","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4303627 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0102844","Offset: 5,963,776, Length: 65,536","7900"
"10:46:33.4303900 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:33.4304045 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000077","","740"
"10:46:33.4306554 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4306861 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","740"
"10:46:33.4306968 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000042","","740"
"10:46:33.4309796 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4310095 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:33.4310198 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000042","","740"
"10:46:33.4312493 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4312932 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:33.4313112 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000076","","740"
"10:46:33.4316580 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4317114 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000051","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","740"
"10:46:33.4317306 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000077","","740"
"10:46:33.4322750 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4323522 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000073","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:33.4323761 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000103","","740"
"10:46:33.4327708 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4328228 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000047","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:33.4328420 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000069","","740"
"10:46:33.4331283 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000222","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.4331539 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4331953 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000043","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","740"
"10:46:33.4332120 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000064","","740"
"10:46:33.4336689 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4337112 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000051","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:33.4337308 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000085","","740"
"10:46:33.4341630 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4342125 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000060","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:33.4342334 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000085","","740"
"10:46:33.4349758 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0001843","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4352677 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000430","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","740"
"10:46:33.4353850 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000700","","740"
"10:46:33.4368711 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000968","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4369957 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000072","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:33.4370170 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000171","","740"
"10:46:33.4384480 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000841","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4385692 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000119","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:33.4385957 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000264","","740"
"10:46:33.4391337 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000273","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4391537 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4391874 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000064","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:33.4391947 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000260","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:33.4392028 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000060","","740"
"10:46:33.4394400 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000308","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:33.4396286 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000491","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4396602 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000252","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4396930 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000047","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:33.4397058 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000035","Information: DACL","2512"
"10:46:33.4397114 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000064","","740"
"10:46:33.4397250 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000052","","2512"
"10:46:33.4399243 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000269","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:33.4400890 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4400958 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000137","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4401223 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000047","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:33.4401282 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000030","Information: DACL","2512"
"10:46:33.4401402 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000060","","740"
"10:46:33.4401466 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000043","","2512"
"10:46:33.4404457 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4405050 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000055","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:33.4405225 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000068","","740"
"10:46:33.4405579 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000260","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:33.4407461 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000209","Offset: 6,029,312, Length: 65,536","7900"
"10:46:33.4408374 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0588476","Offset: 6,094,848, Length: 65,536","7900"
"10:46:33.4410388 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4410430 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000256","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:33.4410746 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000043","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:33.4410917 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000072","","740"
"10:46:33.4412359 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000183","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4412756 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000034","Information: DACL","2512"
"10:46:33.4412943 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000056","","2512"
"10:46:33.4414462 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4414774 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000038","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:33.4414782 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000214","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:33.4414940 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000060","","740"
"10:46:33.4416570 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000171","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4416924 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000030","Information: DACL","2512"
"10:46:33.4417108 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000055","","2512"
"10:46:33.4418012 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4418302 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000043","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","740"
"10:46:33.4418456 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000064","","740"
"10:46:33.4422676 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4423060 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000034","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.4423179 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000051","","740"
"10:46:33.4425615 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4426093 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000047","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.4426332 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000077","","740"
"10:46:33.4429669 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000281","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4430228 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000042","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.4430398 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000068","","740"
"10:46:33.4433709 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4434174 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:33.4434336 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000060","","740"
"10:46:33.4436726 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4437020 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:33.4437127 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000038","","740"
"10:46:33.4439213 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4439563 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","740"
"10:46:33.4439687 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000051","","740"
"10:46:33.4442917 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4443254 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000030","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:33.4443360 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000052","","740"
"10:46:33.4445942 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4446257 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000035","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:33.4446368 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000047","","740"
"10:46:33.4448433 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000163","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4448830 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000039","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:33.4448954 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000064","","740"
"10:46:33.4469443 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000328","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4470223 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000073","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:33.4470462 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000094","","740"
"10:46:33.4474106 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4474571 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000051","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:33.4474750 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000073","","740"
"10:46:33.4477912 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4478454 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000051","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","740"
"10:46:33.4478633 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000072","","740"
"10:46:33.4483604 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0024460","Offset: 405,504, Length: 4,096","7760"
"10:46:33.4484141 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0021922","Offset: 405,504, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.4485430 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4485882 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000060","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:33.4486078 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000086","","740"
"10:46:33.4490281 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000333","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4490780 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000060","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:33.4490989 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000086","","740"
"10:46:33.4494663 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4495077 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000055","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:33.4495252 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000273","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7276"
"10:46:33.4495282 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000081","","740"
"10:46:33.4501131 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000538","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4502031 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000124","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:33.4502531 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000290","","740"
"10:46:33.4518646 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0087215","Offset: 13,144,064, Length: 4,096","7760"
"10:46:33.4522358 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0083285","Offset: 13,144,064, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.4542411 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000798","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4543768 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000154","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:33.4544139 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0001174","","740"
"10:46:33.4549554 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4549925 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000047","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:33.4550100 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000072","","740"
"10:46:33.4554396 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4554482 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000162","Offset: 0, Length: 4,096, Priority: Normal","8652"
"10:46:33.4555343 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000060","Offset: 4,096, Length: 4,096","8652"
"10:46:33.4555442 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000085","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:33.4555553 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000029","Offset: 8,192, Length: 4,096","8652"
"10:46:33.4555702 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000025","Offset: 12,288, Length: 4,096","8652"
"10:46:33.4555757 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000107","","740"
"10:46:33.4555851 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000026","Offset: 16,384, Length: 4,096","8652"
"10:46:33.4556009 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000034","Offset: 20,480, Length: 1,350","8652"
"10:46:33.4556146 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000025","Offset: 21,830, Length: 4,096","8652"
"10:46:33.4556274 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000021","Offset: 21,830, Length: 4,096","8652"
"10:46:33.4556487 AM","firefox.exe","7336","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000090","","8652"
"10:46:33.4557059 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000102","Offset: 0, Length: 4,096, Priority: Normal","8652"
"10:46:33.4557357 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000047","Offset: 4,096, Length: 4,096","8652"
"10:46:33.4557545 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000034","Offset: 8,192, Length: 4,096","8652"
"10:46:33.4557707 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000034","Offset: 12,288, Length: 4,096","8652"
"10:46:33.4558031 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000035","Offset: 16,384, Length: 4,096","8652"
"10:46:33.4558223 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000039","Offset: 20,480, Length: 1,350","8652"
"10:46:33.4558381 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000026","Offset: 21,830, Length: 4,096","8652"
"10:46:33.4558526 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000022","Offset: 21,830, Length: 4,096","8652"
"10:46:33.4558718 AM","firefox.exe","7336","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\7401b68119f9919e402069016e957add.png","0.0000064","","8652"
"10:46:33.4559256 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000107","Offset: 0, Length: 4,096, Priority: Normal","8652"
"10:46:33.4559538 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000042","Offset: 4,096, Length: 4,096","8652"
"10:46:33.4559721 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000034","Offset: 8,192, Length: 4,096","8652"
"10:46:33.4559845 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4559883 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000030","Offset: 12,288, Length: 4,096","8652"
"10:46:33.4560045 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000034","Offset: 16,384, Length: 4,096","8652"
"10:46:33.4560225 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000034","Offset: 20,480, Length: 4,096","8652"
"10:46:33.4560412 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000047","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:33.4560442 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000081","Offset: 24,576, Length: 2,397","8652"
"10:46:33.4560604 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000073","","740"
"10:46:33.4560771 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000030","Offset: 26,973, Length: 4,096","8652"
"10:46:33.4560950 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000021","Offset: 26,973, Length: 4,096","8652"
"10:46:33.4561112 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4561159 AM","firefox.exe","7336","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000090","","8652"
"10:46:33.4561611 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000051","CreationTime: 4/25/2019 5:40:46 PM, LastAccessTime: 4/25/2019 5:40:46 PM, LastWriteTime: 4/3/2019 9:55:40 AM, ChangeTime: 4/25/2019 8:12:22 PM, AllocationSize: 16384, EndOfFile: 13687, FileAttributes: A","2512"
"10:46:33.4561722 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000098","Offset: 0, Length: 4,096, Priority: Normal","8652"
"10:46:33.4561833 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000073","","2512"
"10:46:33.4562046 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000043","Offset: 4,096, Length: 4,096","8652"
"10:46:33.4562238 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000035","Offset: 8,192, Length: 4,096","8652"
"10:46:33.4562401 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000072","","2512"
"10:46:33.4562422 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000030","Offset: 12,288, Length: 4,096","8652"
"10:46:33.4562588 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000039","Offset: 16,384, Length: 4,096","8652"
"10:46:33.4562644 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000055","","2512"
"10:46:33.4562759 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000034","Offset: 20,480, Length: 4,096","8652"
"10:46:33.4562934 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000034","Offset: 24,576, Length: 2,397","8652"
"10:46:33.4563087 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000026","Offset: 26,973, Length: 4,096","8652"
"10:46:33.4563493 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000025","Offset: 26,973, Length: 4,096","8652"
"10:46:33.4563681 AM","firefox.exe","7336","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\5a0d62bec921a16524c8462ba60e78b0.png","0.0000068","","8652"
"10:46:33.4563902 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4564175 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000103","Offset: 0, Length: 4,096, Priority: Normal","8652"
"10:46:33.4564367 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000043","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:33.4564453 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000047","Offset: 4,096, Length: 4,062","8652"
"10:46:33.4564542 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000064","","740"
"10:46:33.4564623 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000022","Offset: 8,158, Length: 4,096","8652"
"10:46:33.4564769 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000021","Offset: 8,158, Length: 4,096","8652"
"10:46:33.4564965 AM","firefox.exe","7336","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000064","","8652"
"10:46:33.4565387 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000081","Offset: 0, Length: 4,096, Priority: Normal","8652"
"10:46:33.4565622 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000034","Offset: 4,096, Length: 4,096","8652"
"10:46:33.4565775 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000030","Offset: 8,192, Length: 4,096","8652"
"10:46:33.4565925 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000030","Offset: 12,288, Length: 4,096","8652"
"10:46:33.4566070 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000030","Offset: 16,384, Length: 4,096","8652"
"10:46:33.4566215 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000034","Offset: 20,480, Length: 4,096","8652"
"10:46:33.4566377 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000034","Offset: 24,576, Length: 4,096","8652"
"10:46:33.4566548 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000030","Offset: 28,672, Length: 4,096","8652"
"10:46:33.4566710 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000030","Offset: 32,768, Length: 4,096","8652"
"10:46:33.4566872 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000030","Offset: 36,864, Length: 4,096","8652"
"10:46:33.4567030 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000038","Offset: 40,960, Length: 4,096","8652"
"10:46:33.4567196 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000030","Offset: 45,056, Length: 4,096","8652"
"10:46:33.4567354 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000039","Offset: 49,152, Length: 1,201","8652"
"10:46:33.4567512 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000026","Offset: 50,353, Length: 4,096","8652"
"10:46:33.4567649 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000025","Offset: 50,353, Length: 4,096","8652"
"10:46:33.4567823 AM","firefox.exe","7336","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000069","","8652"
"10:46:33.4568301 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000081","Offset: 0, Length: 4,096, Priority: Normal","8652"
"10:46:33.4568621 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000047","Offset: 4,096, Length: 4,062","8652"
"10:46:33.4568805 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4568839 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000021","Offset: 8,158, Length: 4,096","8652"
"10:46:33.4568967 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000021","Offset: 8,158, Length: 4,096","8652"
"10:46:33.4569129 AM","firefox.exe","7336","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\4af571948e263e5aba1122ae11868a46.png","0.0000068","","8652"
"10:46:33.4569304 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000043","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:33.4569466 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000056","","740"
"10:46:33.4569586 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000076","Offset: 0, Length: 4,096, Priority: Normal","8652"
"10:46:33.4569854 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000035","Offset: 4,096, Length: 4,096","8652"
"10:46:33.4570072 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000034","Offset: 8,192, Length: 4,096","8652"
"10:46:33.4570281 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000034","Offset: 12,288, Length: 4,096","8652"
"10:46:33.4570511 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000035","Offset: 16,384, Length: 4,096","8652"
"10:46:33.4570755 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000034","Offset: 20,480, Length: 4,096","8652"
"10:46:33.4570964 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000034","Offset: 24,576, Length: 4,096","8652"
"10:46:33.4571173 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000030","Offset: 28,672, Length: 4,096","8652"
"10:46:33.4571382 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000038","Offset: 32,768, Length: 4,096","8652"
"10:46:33.4571591 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000072","Offset: 36,864, Length: 4,096","8652"
"10:46:33.4571881 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000034","Offset: 40,960, Length: 4,096","8652"
"10:46:33.4572094 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000039","Offset: 45,056, Length: 4,096","8652"
"10:46:33.4572308 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000038","Offset: 49,152, Length: 1,201","8652"
"10:46:33.4572495 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000026","Offset: 50,353, Length: 4,096","8652"
"10:46:33.4572641 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000021","Offset: 50,353, Length: 4,096","8652"
"10:46:33.4572666 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4572811 AM","firefox.exe","7336","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\0cc8fdf9edddca2b1dac0cc687826cce.png","0.0000068","","8652"
"10:46:33.4573093 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000034","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:33.4573259 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000060","","740"
"10:46:33.4573310 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000081","Offset: 0, Length: 4,096, Priority: Normal","8652"
"10:46:33.4573575 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000034","Offset: 4,096, Length: 4,096","8652"
"10:46:33.4573788 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000039","Offset: 8,192, Length: 4,096","8652"
"10:46:33.4574006 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000038","Offset: 12,288, Length: 4,096","8652"
"10:46:33.4574211 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000055","Offset: 16,384, Length: 4,096","8652"
"10:46:33.4574445 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000034","Offset: 20,480, Length: 4,096","8652"
"10:46:33.4574654 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000035","Offset: 24,576, Length: 4,096","8652"
"10:46:33.4574868 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000034","Offset: 28,672, Length: 4,096","8652"
"10:46:33.4575073 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000034","Offset: 32,768, Length: 4,096","8652"
"10:46:33.4575290 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000039","Offset: 36,864, Length: 4,096","8652"
"10:46:33.4575508 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000034","Offset: 40,960, Length: 4,096","8652"
"10:46:33.4575751 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000030","Offset: 45,056, Length: 4,096","8652"
"10:46:33.4576024 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000043","Offset: 49,152, Length: 4,096","8652"
"10:46:33.4576246 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000034","Offset: 53,248, Length: 4,096","8652"
"10:46:33.4576417 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4576463 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000030","Offset: 57,344, Length: 4,096","8652"
"10:46:33.4576673 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000034","Offset: 61,440, Length: 4,096","8652"
"10:46:33.4576835 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000038","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","740"
"10:46:33.4576937 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000081","Offset: 0, Length: 4,096, Priority: Normal","8652"
"10:46:33.4577001 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000064","","740"
"10:46:33.4577227 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000030","Offset: 4,096, Length: 4,096","8652"
"10:46:33.4577479 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000038","Offset: 8,192, Length: 4,096","8652"
"10:46:33.4577697 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000034","Offset: 12,288, Length: 4,096","8652"
"10:46:33.4577876 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000030","Offset: 16,384, Length: 4,096","8652"
"10:46:33.4578051 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000030","Offset: 20,480, Length: 4,096","8652"
"10:46:33.4578260 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000030","Offset: 24,576, Length: 4,096","8652"
"10:46:33.4578439 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000030","Offset: 28,672, Length: 4,096","8652"
"10:46:33.4578614 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000030","Offset: 32,768, Length: 4,096","8652"
"10:46:33.4578806 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000034","Offset: 36,864, Length: 4,096","8652"
"10:46:33.4579028 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000038","Offset: 40,960, Length: 4,096","8652"
"10:46:33.4579241 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000034","Offset: 45,056, Length: 4,096","8652"
"10:46:33.4579450 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000034","Offset: 49,152, Length: 4,096","8652"
"10:46:33.4579668 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000059","Offset: 53,248, Length: 4,096","8652"
"10:46:33.4579907 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000047","Offset: 57,344, Length: 4,096","8652"
"10:46:33.4580120 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000034","Offset: 61,440, Length: 4,096","8652"
"10:46:33.4580406 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000089","Offset: 0, Length: 4,096, Priority: Normal","8652"
"10:46:33.4580717 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000039","Offset: 4,096, Length: 4,096","8652"
"10:46:33.4580931 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000034","Offset: 8,192, Length: 4,096","8652"
"10:46:33.4581144 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000030","Offset: 12,288, Length: 4,096","8652"
"10:46:33.4581276 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4581349 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000034","Offset: 16,384, Length: 4,096","8652"
"10:46:33.4581558 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000030","Offset: 20,480, Length: 4,096","8652"
"10:46:33.4581716 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000038","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:33.4581831 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000034","Offset: 24,576, Length: 4,096","8652"
"10:46:33.4581882 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000064","","740"
"10:46:33.4582031 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000035","Offset: 28,672, Length: 4,096","8652"
"10:46:33.4582228 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000034","Offset: 32,768, Length: 4,096","8652"
"10:46:33.4582428 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000034","Offset: 36,864, Length: 4,096","8652"
"10:46:33.4582629 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000034","Offset: 40,960, Length: 4,096","8652"
"10:46:33.4582846 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000039","Offset: 45,056, Length: 4,096","8652"
"10:46:33.4583051 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000034","Offset: 49,152, Length: 4,096","8652"
"10:46:33.4583256 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000034","Offset: 53,248, Length: 4,096","8652"
"10:46:33.4583478 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000034","Offset: 57,344, Length: 4,096","8652"
"10:46:33.4583691 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000034","Offset: 61,440, Length: 4,096","8652"
"10:46:33.4583956 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000077","Offset: 0, Length: 4,096, Priority: Normal","8652"
"10:46:33.4584289 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000038","Offset: 4,096, Length: 4,096","8652"
"10:46:33.4584463 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000030","Offset: 8,192, Length: 4,096","8652"
"10:46:33.4584621 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000034","Offset: 12,288, Length: 4,096","8652"
"10:46:33.4584783 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000035","Offset: 16,384, Length: 4,096","8652"
"10:46:33.4584958 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4585069 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000133","Offset: 20,480, Length: 4,096","8652"
"10:46:33.4585470 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000052","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:33.4585543 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000051","Offset: 24,576, Length: 4,096","8652"
"10:46:33.4585667 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000068","","740"
"10:46:33.4585782 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000034","Offset: 28,672, Length: 4,096","8652"
"10:46:33.4588606 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4588986 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000034","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","740"
"10:46:33.4589114 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000056","","740"
"10:46:33.4593219 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4593705 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000043","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:33.4593876 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000064","","740"
"10:46:33.4598032 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4598518 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000043","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:33.4598714 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000068","","740"
"10:46:33.4601556 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4602000 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000042","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","740"
"10:46:33.4602174 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000064","","740"
"10:46:33.4606411 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0608897","Offset: 14,610,432, Length: 4,096","7760"
"10:46:33.4606868 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0604242","Offset: 14,610,432, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.4608212 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000281","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4608510 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000094","Offset: 32,768, Length: 4,096","8652"
"10:46:33.4608668 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000056","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:33.4608869 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000081","","740"
"10:46:33.4608873 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000047","Offset: 36,864, Length: 4,096","8652"
"10:46:33.4609074 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000038","Offset: 40,960, Length: 4,096","8652"
"10:46:33.4610588 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000090","Offset: 45,056, Length: 4,096","8652"
"10:46:33.4610913 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000047","Offset: 49,152, Length: 4,096","8652"
"10:46:33.4611122 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000038","Offset: 53,248, Length: 4,096","8652"
"10:46:33.4611309 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000035","Offset: 57,344, Length: 4,096","8652"
"10:46:33.4612235 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4612606 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000047","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:33.4612786 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000119","","740"
"10:46:33.4614795 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000115","Offset: 61,440, Length: 4,096","8652"
"10:46:33.4616446 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4616809 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000043","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:33.4616988 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000128","","740"
"10:46:33.4636193 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4636700 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000060","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:33.4636905 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000085","","740"
"10:46:33.4640668 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4640988 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000043","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","740"
"10:46:33.4641163 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000064","","740"
"10:46:33.4645605 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4645980 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000047","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","740"
"10:46:33.4646172 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000069","","740"
"10:46:33.4649074 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4649372 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000043","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","740"
"10:46:33.4649535 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000064","","740"
"10:46:33.4652632 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4652961 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000042","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","740"
"10:46:33.4653119 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000068","","740"
"10:46:33.4656020 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000303","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4656583 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000056","CreationTime: 4/25/2019 5:40:46 PM, LastAccessTime: 4/25/2019 5:40:46 PM, LastWriteTime: 4/3/2019 9:55:40 AM, ChangeTime: 4/25/2019 8:12:22 PM, AllocationSize: 16384, EndOfFile: 13687, FileAttributes: A","2512"
"10:46:33.4658307 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4658695 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.4658879 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000081","","740"
"10:46:33.4661848 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000128","","2512"
"10:46:33.4662522 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4662919 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000056","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.4663115 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000069","","740"
"10:46:33.4664946 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000251","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4665526 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000055","AllocationSize: 16,384, EndOfFile: 13,687, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:33.4665820 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000056","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:33.4666047 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","AllocationSize: 16,384, EndOfFile: 13,687, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:33.4666418 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:33.4666524 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4666913 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000051","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.4667096 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000073","","740"
"10:46:33.4667284 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0251311","Offset: 0, Length: 13,687, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:33.4682187 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0002633","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4687542 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000205","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:33.4688139 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000261","","740"
"10:46:33.4709882 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000555","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4711022 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000081","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:33.4711286 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000098","","740"
"10:46:33.4715766 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4716278 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000047","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","740"
"10:46:33.4716440 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000064","","740"
"10:46:33.4720801 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4721313 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","740"
"10:46:33.4721496 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000205","","740"
"10:46:33.4724718 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4725136 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000042","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","740"
"10:46:33.4725294 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000059","","740"
"10:46:33.4728139 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000163","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4728540 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000039","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","740"
"10:46:33.4728698 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000060","","740"
"10:46:33.4732799 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4733097 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000039","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:33.4733251 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000060","","740"
"10:46:33.4735896 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4736306 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000055","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:33.4736481 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000081","","740"
"10:46:33.4739450 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4739753 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","740"
"10:46:33.4739915 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000064","","740"
"10:46:33.4743905 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4744233 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000043","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","740"
"10:46:33.4744408 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000060","","740"
"10:46:33.4747348 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4747655 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000039","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","740"
"10:46:33.4747826 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000055","","740"
"10:46:33.4750428 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4750723 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000043","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","740"
"10:46:33.4750894 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000059","","740"
"10:46:33.4755237 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imagehlp.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4755762 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imagehlp.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:33.4755954 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imagehlp.dll","0.0000064","","740"
"10:46:33.4758915 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imagehlp.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4759359 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imagehlp.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:33.4759538 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imagehlp.dll","0.0000060","","740"
"10:46:33.4762234 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imagehlp.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4762682 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imagehlp.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","740"
"10:46:33.4762874 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imagehlp.dll","0.0000069","","740"
"10:46:33.4767666 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rsaenh.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4768097 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rsaenh.dll","0.0000051","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.4768297 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rsaenh.dll","0.0000069","","740"
"10:46:33.4771574 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rsaenh.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4772039 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rsaenh.dll","0.0000047","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.4772227 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rsaenh.dll","0.0000068","","740"
"10:46:33.4775444 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rsaenh.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4775930 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rsaenh.dll","0.0000047","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","740"
"10:46:33.4776127 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rsaenh.dll","0.0000068","","740"
"10:46:33.4781042 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4781481 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000052","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:33.4781682 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000081","","740"
"10:46:33.4790463 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0002922","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4795049 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000465","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:33.4796253 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000473","","740"
"10:46:33.4806847 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4807320 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000069","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","740"
"10:46:33.4807546 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000090","","740"
"10:46:33.4812556 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000251","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4813166 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000055","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:33.4813375 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000111","","740"
"10:46:33.4817970 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4818512 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000051","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:33.4818712 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000069","","740"
"10:46:33.4821882 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000210","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4822591 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000042","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","740"
"10:46:33.4822774 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000064","","740"
"10:46:33.4827276 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sspicli.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4827779 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000043","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:33.4827962 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sspicli.dll","0.0000073","","740"
"10:46:33.4831670 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sspicli.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4832174 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000051","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:33.4832370 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sspicli.dll","0.0000068","","740"
"10:46:33.4835263 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sspicli.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4835736 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000039","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","740"
"10:46:33.4835920 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sspicli.dll","0.0000068","","740"
"10:46:33.4842465 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4842956 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000059","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:33.4843186 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000085","","740"
"10:46:33.4847090 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000324","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4847568 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000051","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:33.4847760 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000081","","740"
"10:46:33.4873262 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4873757 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000059","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","740"
"10:46:33.4873987 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000085","","740"
"10:46:33.4908321 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000384","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4909157 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000081","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","740"
"10:46:33.4909405 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000111","","740"
"10:46:33.4915766 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0001677","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4918548 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000094","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","740"
"10:46:33.4918855 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000145","","740"
"10:46:33.4923096 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000064","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:33.4923404 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000102","CreationTime: 4/25/2019 5:40:46 PM, LastAccessTime: 4/25/2019 5:40:46 PM, LastWriteTime: 4/3/2019 9:55:40 AM, ChangeTime: 4/25/2019 8:12:22 PM, FileAttributes: A, AllocationSize: 16,384, EndOfFile: 13,687, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x60000000180fe, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:33.4925494 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4925755 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000264","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4926160 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000051","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","740"
"10:46:33.4926314 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000046","AllocationSize: 16,384, EndOfFile: 13,687, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:33.4926420 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000081","","740"
"10:46:33.4926621 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:33.4926843 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","AllocationSize: 16,384, EndOfFile: 13,687, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:33.4927197 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:33.4928310 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000090","","2512"
"10:46:33.4930904 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000252","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4931425 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000051","AllocationSize: 16,384, EndOfFile: 13,687, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:33.4931685 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:33.4931877 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","AllocationSize: 16,384, EndOfFile: 13,687, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:33.4931894 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4932180 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:33.4932449 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000294","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/27/2019 7:17:12 PM, FileAttributes: A","740"
"10:46:33.4932901 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000081","","740"
"10:46:33.4933819 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000106","","2512"
"10:46:33.4937548 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4938102 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000052","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/27/2019 7:17:12 PM, FileAttributes: A","740"
"10:46:33.4938299 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000076","","740"
"10:46:33.4940214 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000576","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.4941827 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4942326 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000043","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/27/2019 7:17:12 PM, FileAttributes: A","740"
"10:46:33.4942506 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000072","","740"
"10:46:33.4947374 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4947903 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000388","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:36 PM, FileAttributes: A","740"
"10:46:33.4948445 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000089","","740"
"10:46:33.4966902 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000982","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4968788 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000073","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:36 PM, FileAttributes: A","740"
"10:46:33.4969027 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000128","","740"
"10:46:33.4973413 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000495","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4973430 AM","firefox.exe","7336","Thread Create","","0.0000000","Thread ID: 4612","7392"
"10:46:33.4974271 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000055","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:36 PM, FileAttributes: A","740"
"10:46:33.4974826 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000115","","740"
"10:46:33.4980027 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4980436 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000086","CreationTime: 4/11/2018 4:34:35 PM, LastAccessTime: 4/11/2018 4:34:35 PM, LastWriteTime: 4/11/2018 4:34:35 PM, ChangeTime: 3/20/2019 7:07:22 PM, FileAttributes: A","740"
"10:46:33.4980675 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000226","","740"
"10:46:33.4981149 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000119","Offset: 65,536, Length: 4,096","8652"
"10:46:33.4981546 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000047","Offset: 69,632, Length: 4,096","8652"
"10:46:33.4981759 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000038","Offset: 73,728, Length: 4,096","8652"
"10:46:33.4981955 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000034","Offset: 77,824, Length: 4,096","8652"
"10:46:33.4982134 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000030","Offset: 81,920, Length: 4,096","8652"
"10:46:33.4982314 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000034","Offset: 86,016, Length: 4,096","8652"
"10:46:33.4982489 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000029","Offset: 90,112, Length: 4,096","8652"
"10:46:33.4982655 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000043","Offset: 94,208, Length: 3,885","8652"
"10:46:33.4982821 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000026","Offset: 98,093, Length: 4,096","8652"
"10:46:33.4982971 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000025","Offset: 98,093, Length: 4,096","8652"
"10:46:33.4983201 AM","firefox.exe","7336","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000107","","8652"
"10:46:33.4983777 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000047","Offset: 65,536, Length: 4,096","8652"
"10:46:33.4983978 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000034","Offset: 69,632, Length: 4,096","8652"
"10:46:33.4984144 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000034","Offset: 73,728, Length: 4,096","8652"
"10:46:33.4984148 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.4984315 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000034","Offset: 77,824, Length: 4,096","8652"
"10:46:33.4984477 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0012877","CreationTime: 4/11/2018 4:34:35 PM, LastAccessTime: 4/11/2018 4:34:35 PM, LastWriteTime: 4/11/2018 4:34:35 PM, ChangeTime: 3/20/2019 7:07:22 PM, FileAttributes: A","740"
"10:46:33.4984485 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000034","Offset: 81,920, Length: 4,096","8652"
"10:46:33.4984669 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000034","Offset: 86,016, Length: 4,096","8652"
"10:46:33.4984869 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000034","Offset: 90,112, Length: 4,096","8652"
"10:46:33.4985147 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000038","Offset: 94,208, Length: 3,885","8652"
"10:46:33.4985292 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000025","Offset: 98,093, Length: 4,096","8652"
"10:46:33.4985420 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000021","Offset: 98,093, Length: 4,096","8652"
"10:46:33.4985595 AM","firefox.exe","7336","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\9979ba46bd619e96ecf1c596639f8949.png","0.0000145","","8652"
"10:46:33.4986201 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000153","Offset: 65,536, Length: 4,096","8652"
"10:46:33.4986670 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000047","Offset: 69,632, Length: 4,096","8652"
"10:46:33.4988982 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000269","Offset: 73,728, Length: 4,096","8652"
"10:46:33.4989814 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000325","Offset: 77,824, Length: 4,096","8652"
"10:46:33.4990378 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000047","Offset: 81,920, Length: 4,096","8652"
"10:46:33.4990574 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000038","Offset: 86,016, Length: 4,096","8652"
"10:46:33.4990757 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000030","Offset: 90,112, Length: 4,096","8652"
"10:46:33.4990928 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000043","Offset: 94,208, Length: 4,096","8652"
"10:46:33.4991103 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000038","Offset: 98,304, Length: 4,096","8652"
"10:46:33.4991299 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000034","Offset: 102,400, Length: 4,096","8652"
"10:46:33.4991470 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000030","Offset: 106,496, Length: 4,096","8652"
"10:46:33.4991615 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000026","Offset: 110,592, Length: 4,096","8652"
"10:46:33.4991867 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000034","Offset: 114,688, Length: 878","8652"
"10:46:33.4991995 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000017","Offset: 115,566, Length: 4,096","8652"
"10:46:33.4992101 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000017","Offset: 115,566, Length: 4,096","8652"
"10:46:33.4992298 AM","firefox.exe","7336","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000128","","8652"
"10:46:33.4992852 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000034","Offset: 65,536, Length: 4,096","8652"
"10:46:33.4993023 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000030","Offset: 69,632, Length: 4,096","8652"
"10:46:33.4993185 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000030","Offset: 73,728, Length: 4,096","8652"
"10:46:33.4993339 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000030","Offset: 77,824, Length: 4,096","8652"
"10:46:33.4993492 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000030","Offset: 81,920, Length: 4,096","8652"
"10:46:33.4993851 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000038","Offset: 86,016, Length: 4,096","8652"
"10:46:33.4994030 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000030","Offset: 90,112, Length: 4,096","8652"
"10:46:33.4994188 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000030","Offset: 94,208, Length: 4,096","8652"
"10:46:33.4994341 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000030","Offset: 98,304, Length: 4,096","8652"
"10:46:33.4994495 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000034","Offset: 102,400, Length: 4,096","8652"
"10:46:33.4994653 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000030","Offset: 106,496, Length: 4,096","8652"
"10:46:33.4994811 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000025","Offset: 110,592, Length: 4,096","8652"
"10:46:33.4994964 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000030","Offset: 114,688, Length: 878","8652"
"10:46:33.4995088 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000017","Offset: 115,566, Length: 4,096","8652"
"10:46:33.4995195 AM","firefox.exe","7336","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000017","Offset: 115,566, Length: 4,096","8652"
"10:46:33.4995370 AM","firefox.exe","7336","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\thumbnails\03688800640a51cbab4aff548201f9b9.png","0.0000093","","8652"
"10:46:33.4997686 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000094","","740"
"10:46:33.4998271 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000209","Offset: 6,160,384, Length: 65,536","7900"
"10:46:33.4999419 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000222","Offset: 6,225,920, Length: 65,536","7900"
"10:46:33.5001825 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0001489","Offset: 6,291,456, Length: 65,536","7900"
"10:46:33.5002222 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.5002713 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000055","CreationTime: 4/11/2018 4:34:35 PM, LastAccessTime: 4/11/2018 4:34:35 PM, LastWriteTime: 4/11/2018 4:34:35 PM, ChangeTime: 3/20/2019 7:07:22 PM, FileAttributes: A","740"
"10:46:33.5002930 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000081","","740"
"10:46:33.5006160 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000341","Offset: 6,356,992, Length: 65,536","7900"
"10:46:33.5007666 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000171","Offset: 6,422,528, Length: 65,536","7900"
"10:46:33.5008861 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0759583","Offset: 6,488,064, Length: 65,536","7900"
"10:46:33.5011899 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.5012167 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000073","AllocationSize: 16,384, EndOfFile: 13,687, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:33.5012360 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000055","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:46:36 PM, FileAttributes: A","740"
"10:46:33.5012526 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:33.5012564 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000090","","740"
"10:46:33.5012876 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000060","AllocationSize: 16,384, EndOfFile: 13,687, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:33.5013302 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000035","SyncType: SyncTypeOther","2512"
"10:46:33.5025501 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.5025987 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000060","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:46:36 PM, FileAttributes: A","740"
"10:46:33.5026205 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000081","","740"
"10:46:33.5032328 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000132","","2512"
"10:46:33.5033983 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000525","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.5034956 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000089","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:46:36 PM, FileAttributes: A","740"
"10:46:33.5035216 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000124","","740"
"10:46:33.5039909 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0010475","","2512"
"10:46:33.5043387 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MrmCoreR.dll","0.0000431","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.5044530 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MrmCoreR.dll","0.0000192","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:33.5045110 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MrmCoreR.dll","0.0000410","","740"
"10:46:33.5053853 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1573_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0001301","","2512"
"10:46:33.5067899 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MrmCoreR.dll","0.0000921","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.5070903 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MrmCoreR.dll","0.0001006","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:33.5078608 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MrmCoreR.dll","0.0001835","","740"
"10:46:33.5087922 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.5088148 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MrmCoreR.dll","0.0000244","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","740"
"10:46:33.5088528 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000047","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","2512"
"10:46:33.5088695 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000055","","2512"
"10:46:33.5088720 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MrmCoreR.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","740"
"10:46:33.5088942 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MrmCoreR.dll","0.0000077","","740"
"10:46:33.5091732 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.5092099 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000030","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","2512"
"10:46:33.5092227 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000047","","2512"
"10:46:33.5096468 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000291","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.5097249 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000060","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","2512"
"10:46:33.5097595 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000124","","2512"
"10:46:33.5098303 AM","firefox.exe","7384","CreateFile","C:\","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.5098619 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000166","Filter: Windows, 1: Windows","2512"
"10:46:33.5098930 AM","firefox.exe","7384","CloseFile","C:\","0.0000047","","2512"
"10:46:33.5100065 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.5100334 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000128","Filter: System32, 1: System32","2512"
"10:46:33.5100586 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000042","","2512"
"10:46:33.5101751 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000119","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.5101998 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\npmproxy.dll","0.0000137","Filter: npmproxy.dll, 1: npmproxy.dll","2512"
"10:46:33.5102254 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:33.5107993 AM","firefox.exe","7336","Thread Exit","","0.0000000","Thread ID: 4612, User Time: 0.0000000, Kernel Time: 0.0000000","4612"
"10:46:33.5110331 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.5110928 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000060","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","2512"
"10:46:33.5111124 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000081","","2512"
"10:46:33.5111858 AM","firefox.exe","7384","CreateFile","C:\","0.0000175","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.5112229 AM","firefox.exe","7384","QueryDirectory","C:\WINDOWS","0.0000210","Filter: WINDOWS, 1: Windows","2512"
"10:46:33.5112626 AM","firefox.exe","7384","CloseFile","C:\","0.0000060","","2512"
"10:46:33.5114256 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000175","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.5114627 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000209","Filter: System32, 1: System32","2512"
"10:46:33.5115033 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000064","","2512"
"10:46:33.5132927 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000853","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.5134647 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\npmproxy.dll","0.0000955","Filter: npmproxy.dll, 1: npmproxy.dll","2512"
"10:46:33.5136251 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000213","","2512"
"10:46:33.5145002 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.5145676 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000064","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:33.5145915 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000089","","2512"
"10:46:33.5146644 AM","firefox.exe","7384","CreateFile","C:\","0.0000163","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.5148714 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000290","Filter: Windows, 1: Windows","2512"
"10:46:33.5149247 AM","firefox.exe","7384","CloseFile","C:\","0.0000098","","2512"
"10:46:33.5151082 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000192","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.5151483 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000192","Filter: System32, 1: System32","2512"
"10:46:33.5151858 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000073","","2512"
"10:46:33.5153471 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000188","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.5153894 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wbemcomn.dll","0.0000230","Filter: wbemcomn.dll, 1: wbemcomn.dll","2512"
"10:46:33.5154286 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000068","","2512"
"10:46:33.5158391 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000328","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.5159137 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000064","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:33.5159372 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000098","","2512"
"10:46:33.5160456 AM","firefox.exe","7384","CreateFile","C:\","0.0000294","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.5160985 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000397","Filter: Windows, 1: Windows","2512"
"10:46:33.5161842 AM","firefox.exe","7384","CloseFile","C:\","0.0000265","","2512"
"10:46:33.5164279 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000290","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.5164795 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000247","Filter: System32, 1: System32","2512"
"10:46:33.5165281 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000081","","2512"
"10:46:33.5167120 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000218","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.5167555 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wbemcomn.dll","0.0000256","Filter: wbemcomn.dll, 1: wbemcomn.dll","2512"
"10:46:33.5168020 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000077","","2512"
"10:46:33.5170487 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000239","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.5171216 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000051","AllocationSize: 487,424, EndOfFile: 485,888, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:33.5217117 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000593","Offset: 413,696, Length: 4,096","7760"
"10:46:33.5223172 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0005606","Offset: 458,752, Length: 4,096","7760"
"10:46:33.5224447 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003751","Offset: 458,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.5226866 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbemcomn.dll","0.0000103","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:33.5227174 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000059","AllocationSize: 487,424, EndOfFile: 485,888, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:33.5227472 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbemcomn.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:33.5230015 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000218","","2512"
"10:46:33.5230450 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0042433","Offset: 15,409,152, Length: 4,096","7760"
"10:46:33.5230826 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0041758","Offset: 15,409,152, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.5235336 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000256","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.5236027 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000047","AllocationSize: 487,424, EndOfFile: 485,888, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:33.5236279 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbemcomn.dll","0.0000132","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:33.5236680 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000055","AllocationSize: 487,424, EndOfFile: 485,888, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:33.5237222 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbemcomn.dll","0.0000034","SyncType: SyncTypeOther","2512"
"10:46:33.5239730 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000154","","2512"
"10:46:33.5243741 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.5244155 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000055","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:33.5244364 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000073","","2512"
"10:46:33.5247922 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.5248328 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000051","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:33.5248516 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000068","","2512"
"10:46:33.5251835 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000205","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.5252424 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000042","AllocationSize: 487,424, EndOfFile: 485,888, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:33.5252633 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbemcomn.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:33.5252791 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000021","AllocationSize: 487,424, EndOfFile: 485,888, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:33.5253145 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbemcomn.dll","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:33.5254898 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000030","AllocationSize: 487,424, EndOfFile: 485,888, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:33.5255044 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbemcomn.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:33.5255150 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000017","AllocationSize: 487,424, EndOfFile: 485,888, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:33.5255329 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbemcomn.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:33.5256964 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\wbemcomn.dll","0.0977823","Offset: 0, Length: 485,888, Priority: Normal","2512"
"10:46:33.5257855 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\wbemcomn.dll","0.0904488","Offset: 32,768, Length: 453,120, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2512"
"10:46:33.5273825 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0034181","Offset: 565,248, Length: 4,096","7760"
"10:46:33.5274397 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0033353","Offset: 565,248, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.5308663 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004813","Offset: 12,763,136, Length: 4,096","7760"
"10:46:33.5309030 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003366","Offset: 12,763,136, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.5316411 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0016875","Offset: 544,768, Length: 4,096","7760"
"10:46:33.5317021 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0015800","Offset: 544,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.5384772 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000068","Offset: 120, Length: 1","7760"
"10:46:33.5385117 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000026","Offset: 123, Length: 1","7760"
"10:46:33.5385911 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","7760"
"10:46:33.5386120 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Offset: 1,073,741,826, Length: 510","7760"
"10:46:33.5386427 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","7760"
"10:46:33.5387020 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000222","","7760"
"10:46:33.5391961 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:33.5392447 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000056","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, FileAttributes: A","7760"
"10:46:33.5392665 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000081","","7760"
"10:46:33.5395170 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000367","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:33.5395780 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000068","Attributes: A, ReparseTag: 0x0","7760"
"10:46:33.5396049 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000132","Delete: True","7760"
"10:46:33.5396373 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0001280","","7760"
"10:46:33.5398152 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000324","","7760"
"10:46:33.5401791 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:33.5402120 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000038","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:28 AM, LastWriteTime: 3/26/2020 10:46:28 AM, ChangeTime: 3/26/2020 10:46:28 AM, FileAttributes: A","7760"
"10:46:33.5402257 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000059","","7760"
"10:46:33.5402547 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000076","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.5403656 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000247","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:33.5404142 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000039","Attributes: A, ReparseTag: 0x0","7760"
"10:46:33.5404317 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000103","Delete: True","7760"
"10:46:33.5404761 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000870","","7760"
"10:46:33.5410423 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000158","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.5411583 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","Offset: 1,073,741,826, Length: 510","7760"
"10:46:33.5411801 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Offset: 1,073,741,825, Length: 1","7760"
"10:46:33.5411985 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000012","Offset: 1,073,741,826, Length: 510","7760"
"10:46:33.5412091 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000009","Offset: 1,073,741,824, Length: 1","7760"
"10:46:33.5412262 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000247","","7760"
"10:46:33.5418683 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.5418969 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40852, endtime: 40852, seqnum: 0, connid: 0","0"
"10:46:33.5419677 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.5419865 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40852, endtime: 40852, seqnum: 0, connid: 0","0"
"10:46:33.5421896 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000068","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:33.5422148 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:33.5422331 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:33.5425254 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:33.5425715 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","5728"
"10:46:33.5427733 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:33.5428095 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:33.5428390 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5728"
"10:46:33.5429819 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:33.5429964 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:33.5430122 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,824, Length: 1","5728"
"10:46:33.5433028 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:33.5433514 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","5728"
"10:46:33.5435549 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:33.5435904 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:33.5436147 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","5728"
"10:46:33.5449088 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\254256B27E0C48CF9B80B695F0B3B8CA84610495","0.0000465","Desired Access: Generic Read/Write, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:33.5450035 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\254256B27E0C48CF9B80B695F0B3B8CA84610495","0.0003541","Offset: 330, Length: 9,784, Priority: Normal","6572"
"10:46:33.5455607 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\254256B27E0C48CF9B80B695F0B3B8CA84610495","0.0003742","EndOfFile: 10,114","6572"
"10:46:33.5460992 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\254256B27E0C48CF9B80B695F0B3B8CA84610495","0.0001937","AllocationSize: 10,114","6572"
"10:46:33.5465126 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\254256B27E0C48CF9B80B695F0B3B8CA84610495","0.0001762","","6572"
"10:46:33.5480998 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings","0.0000290","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","4904"
"10:46:33.5485265 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main","0.0000217","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","4904"
"10:46:33.5488145 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs","0.0000187","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","4904"
"10:46:33.5505693 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0001400","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:33.5508748 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000342","CreationTime: 3/25/2020 10:31:45 AM, LastAccessTime: 3/25/2020 10:31:45 AM, LastWriteTime: 3/25/2020 10:31:45 AM, ChangeTime: 3/25/2020 10:31:45 AM, FileAttributes: A","5728"
"10:46:33.5510011 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000935","","5728"
"10:46:33.5537903 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0001053","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","4556"
"10:46:33.5539528 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000235","Offset: 0, Length: 10,005, Priority: Normal","4556"
"10:46:33.5539921 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000311","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5316"
"10:46:33.5539998 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000102","Offset: 10,005, Length: 22,763","4556"
"10:46:33.5540390 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000060","CreationTime: 3/25/2020 10:31:45 AM, LastAccessTime: 3/25/2020 10:31:45 AM, LastWriteTime: 3/25/2020 10:31:45 AM, ChangeTime: 3/25/2020 10:31:45 AM, AllocationSize: 12288, EndOfFile: 10005, FileAttributes: A","5316"
"10:46:33.5540620 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000099","","5316"
"10:46:33.5540706 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000089","","4556"
"10:46:33.5562393 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:33.5562752 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000102","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","7760"
"10:46:33.5562995 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000132","","7760"
"10:46:33.5565440 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:33.5565717 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","7760"
"10:46:33.5565849 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","","7760"
"10:46:33.5568827 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:33.5569109 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","7760"
"10:46:33.5569237 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","","7760"
"10:46:33.5570462 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000234","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","7760"
"10:46:33.5571131 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000393","Offset: 0, Length: 100, Priority: Normal","7760"
"10:46:33.5572569 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000039","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","7760"
"10:46:33.5572727 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","7760"
"10:46:33.5572902 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","Offset: 1,073,741,824, Length: 1","7760"
"10:46:33.5574984 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:33.5577062 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:33.5577408 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:33.5577608 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","Offset: 0, Length: 4,096","7760"
"10:46:33.5579788 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:33.5580992 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0001019","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","7760"
"10:46:33.5584273 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:33.5585442 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000789","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","7760"
"10:46:33.5586445 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000046","Exclusive: True, Offset: 128, Length: 1, Fail Immediately: True","7760"
"10:46:33.5586658 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000260","EndOfFile: 0","7760"
"10:46:33.5587055 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000170","AllocationSize: 0","7760"
"10:46:33.5587358 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000021","Offset: 128, Length: 1","7760"
"10:46:33.5587481 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Exclusive: False, Offset: 128, Length: 1, Fail Immediately: True","7760"
"10:46:33.5587605 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:33.5587742 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000012","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7760"
"10:46:33.5587848 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:33.5587981 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000601","EndOfFile: 32,768","7760"
"10:46:33.5588706 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000162","AllocationSize: 32,768","7760"
"10:46:33.5589175 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7760"
"10:46:33.5589380 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000034","AllocationSize: 32,768, EndOfFile: 32,768, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:33.5589670 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","SyncType: SyncTypeOther","7760"
"10:46:33.5590195 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000128","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7760"
"10:46:33.5590728 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000047","Exclusive: True, Offset: 121, Length: 2, Fail Immediately: True","7760"
"10:46:33.5591326 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000042","Exclusive: True, Offset: 124, Length: 4, Fail Immediately: True","7760"
"10:46:33.5591611 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000052","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:33.5591876 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000026","Offset: 121, Length: 2","7760"
"10:46:33.5592051 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000021","Offset: 124, Length: 4","7760"
"10:46:33.5592205 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000021","Offset: 120, Length: 1","7760"
"10:46:33.5592431 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000021","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:33.5592682 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:33.5593109 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000077","Offset: 0, Length: 4,096","7760"
"10:46:33.5595771 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000039","Offset: 123, Length: 1","7760"
"10:46:33.5599202 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:33.5599530 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000035","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","7760"
"10:46:33.5599675 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000060","","7760"
"10:46:33.5601736 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:33.5601988 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000026","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:33 AM, LastWriteTime: 3/26/2020 10:46:33 AM, ChangeTime: 3/26/2020 10:46:33 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","7760"
"10:46:33.5602099 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000034","","7760"
"10:46:33.5603174 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000145","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:33.5603451 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000030","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,798, SectorsPerAllocationUnit: 8, BytesPerSector: 512","7760"
"10:46:33.5603588 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000034","","7760"
"10:46:33.5604749 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000029","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:33.5604906 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000035","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:33.5605115 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000090","Offset: 20,480, Length: 4,096","7760"
"10:46:33.5605367 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000073","Offset: 1,654,784, Length: 4,096","7760"
"10:46:33.5605559 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000039","Offset: 12,787,712, Length: 4,096","7760"
"10:46:33.5605696 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","Offset: 12,378,112, Length: 4,096","7760"
"10:46:33.5605841 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","Offset: 12,509,184, Length: 4,096","7760"
"10:46:33.5605973 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","Offset: 11,808,768, Length: 4,096","7760"
"10:46:33.5635349 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000120","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.5643912 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000103","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.5652932 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.5653316 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40853, endtime: 40854, seqnum: 0, connid: 0","0"
"10:46:33.5654221 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.5654434 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40854, endtime: 40854, seqnum: 0, connid: 0","0"
"10:46:33.5657241 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000090","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:33.5657634 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:33.5657933 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","Offset: 1,073,741,824, Length: 1","5728"
"10:46:33.5662400 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000281","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:33.5663155 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000098","Offset: 24, Length: 16","5728"
"10:46:33.5682709 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000981","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:33.5684501 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000115","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:33.5685180 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 1,073,741,826, Length: 510","5728"
"10:46:33.5687309 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:33.5687509 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:33.5687680 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5728"
"10:46:33.5693372 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0001617","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:33.5696038 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000103","Offset: 24, Length: 16","5728"
"10:46:33.5699452 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:33.5699912 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:33.5700352 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 1,073,741,826, Length: 510","5728"
"10:46:33.5703065 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.5703351 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40855, endtime: 40855, seqnum: 0, connid: 0","0"
"10:46:33.5703961 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.5704145 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40855, endtime: 40855, seqnum: 0, connid: 0","0"
"10:46:33.5769579 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000140","Offset: 6,553,600, Length: 65,536","7900"
"10:46:33.5770513 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0231757","Offset: 6,619,136, Length: 65,536","7900"
"10:46:33.5958451 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49762 -> server-13-227-74-8.sfo20.r.cloudfront.net:https","0.0000000","Length: 529, startime: 40855, endtime: 40857, seqnum: 0, connid: 0","0"
"10:46:33.5959872 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49762 -> server-13-227-74-8.sfo20.r.cloudfront.net:https","0.0000000","Length: 666, seqnum: 0, connid: 0","0"
"10:46:33.5965910 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.5966793 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40857, endtime: 40857, seqnum: 0, connid: 0","0"
"10:46:33.5967650 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.5967817 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40857, endtime: 40857, seqnum: 0, connid: 0","0"
"10:46:33.5986778 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B555235EB5230B93242A83F624CFE5AF42CB966B","0.0000448","Desired Access: Generic Read/Write, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:33.5989666 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000239","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:33.5990127 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000039","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,798, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:33.5990294 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000055","","6572"
"10:46:33.5990729 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B555235EB5230B93242A83F624CFE5AF42CB966B","0.0000525","Offset: 11, Length: 9,817, Priority: Normal","6572"
"10:46:33.5991458 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B555235EB5230B93242A83F624CFE5AF42CB966B","0.0000401","EndOfFile: 9,828","6572"
"10:46:33.5991983 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B555235EB5230B93242A83F624CFE5AF42CB966B","0.0000235","AllocationSize: 9,828","6572"
"10:46:33.5992504 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B555235EB5230B93242A83F624CFE5AF42CB966B","0.0000277","","6572"
"10:46:33.6003900 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000269","Offset: 6,684,672, Length: 65,536","7900"
"10:46:33.6012489 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000230","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.6013171 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0041831","Offset: 26,214,400, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:33.6014981 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000712","Offset: 0, Length: 65,536","7900"
"10:46:33.6017186 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000077","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","8244"
"10:46:33.6017506 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000090","AllocationSize: 81,920, EndOfFile: 81,920, NumberOfLinks: 1, DeletePending: False, Directory: False","8244"
"10:46:33.6017788 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000038","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","8244"
"10:46:33.6020979 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000448","AllocationSize: 6,799,360, EndOfFile: 6,799,164, NumberOfLinks: 1, DeletePending: False, Directory: False","7900"
"10:46:33.6035699 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0001929","Offset: 65,536, Length: 65,536","7900"
"10:46:33.6065694 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0001664","Offset: 131,072, Length: 65,536","7900"
"10:46:33.6066825 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000128","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.6069679 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000269","Offset: 196,608, Length: 65,536","7900"
"10:46:33.6072137 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000252","Offset: 262,144, Length: 65,536","7900"
"10:46:33.6074548 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000251","Offset: 327,680, Length: 65,536","7900"
"10:46:33.6076945 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000184","Offset: 393,216, Length: 65,536","7900"
"10:46:33.6079284 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000362","Offset: 458,752, Length: 65,536","7900"
"10:46:33.6081788 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000269","Offset: 524,288, Length: 65,536","7900"
"10:46:33.6084216 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000243","Offset: 589,824, Length: 65,536","7900"
"10:46:33.6085841 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000069","Offset: 120, Length: 1","8244"
"10:46:33.6086144 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000034","Offset: 123, Length: 1","8244"
"10:46:33.6088738 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.6089105 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40859, endtime: 40859, seqnum: 0, connid: 0","0"
"10:46:33.6089908 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.6090164 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40859, endtime: 40859, seqnum: 0, connid: 0","0"
"10:46:33.6090330 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000128","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.6090646 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.6090821 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40859, endtime: 40859, seqnum: 0, connid: 0","0"
"10:46:33.6091512 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.6091657 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40859, endtime: 40859, seqnum: 0, connid: 0","0"
"10:46:33.6095109 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0001574","Offset: 655,360, Length: 65,536","7900"
"10:46:33.6098953 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000119","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.6098996 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000256","Offset: 720,896, Length: 65,536","7900"
"10:46:33.6101402 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000192","Offset: 786,432, Length: 65,536","7900"
"10:46:33.6103668 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000149","Offset: 851,968, Length: 65,536","7900"
"10:46:33.6108190 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000325","Offset: 917,504, Length: 65,536","7900"
"10:46:33.6109667 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.6109965 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40859, endtime: 40859, seqnum: 0, connid: 0","0"
"10:46:33.6110644 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.6110814 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40859, endtime: 40859, seqnum: 0, connid: 0","0"
"10:46:33.6111407 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.6111531 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40859, endtime: 40859, seqnum: 0, connid: 0","0"
"10:46:33.6111787 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.6111868 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40859, endtime: 40859, seqnum: 0, connid: 0","0"
"10:46:33.6112397 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.6112508 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40859, endtime: 40859, seqnum: 0, connid: 0","0"
"10:46:33.6114761 AM","firefox.exe","7384","ReadFile","C:","0.0615949","Offset: 704,512, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:33.6115657 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0016823","Offset: 983,040, Length: 65,536","7900"
"10:46:33.6139205 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0003481","Offset: 1,048,576, Length: 65,536","7900"
"10:46:33.6147597 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000359","Offset: 1,114,112, Length: 65,536","7900"
"10:46:33.6150251 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000235","Offset: 1,179,648, Length: 65,536","7900"
"10:46:33.6153088 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000111","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.6153822 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000239","Offset: 1,245,184, Length: 65,536","7900"
"10:46:33.6156369 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000256","Offset: 1,310,720, Length: 65,536","7900"
"10:46:33.6161003 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.6161426 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40859, endtime: 40859, seqnum: 0, connid: 0","0"
"10:46:33.6162723 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.6162898 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40859, endtime: 40859, seqnum: 0, connid: 0","0"
"10:46:33.6169895 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000145","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.6172425 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0001203","Offset: 1,376,256, Length: 65,536","7900"
"10:46:33.6177327 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000431","Offset: 1,441,792, Length: 65,536","7900"
"10:46:33.6181022 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000389","Offset: 1,507,328, Length: 65,536","7900"
"10:46:33.6187055 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0014336","Offset: 1,572,864, Length: 65,536","7900"
"10:46:33.6220233 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.6220860 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40860, endtime: 40860, seqnum: 0, connid: 0","0"
"10:46:33.6222921 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.6223169 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40860, endtime: 40860, seqnum: 0, connid: 0","0"
"10:46:33.6223817 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.6223992 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40860, endtime: 40860, seqnum: 0, connid: 0","0"
"10:46:33.6230460 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.6230657 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40860, endtime: 40860, seqnum: 0, connid: 0","0"
"10:46:33.6230823 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000384","Offset: 1,638,400, Length: 65,536","7900"
"10:46:33.6234697 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000324","Offset: 1,703,936, Length: 65,536","7900"
"10:46:33.6237197 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000184","Offset: 1,769,472, Length: 65,536","7900"
"10:46:33.6239540 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000213","Offset: 1,835,008, Length: 65,536","7900"
"10:46:33.6241903 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000180","Offset: 1,900,544, Length: 65,536","7900"
"10:46:33.6244225 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000174","Offset: 1,966,080, Length: 65,536","7900"
"10:46:33.6246533 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000170","Offset: 2,031,616, Length: 65,536","7900"
"10:46:33.6248824 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0001370","Offset: 2,097,152, Length: 65,536","7900"
"10:46:33.6252340 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000179","Offset: 2,162,688, Length: 65,536","7900"
"10:46:33.6254652 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000175","Offset: 2,228,224, Length: 65,536","7900"
"10:46:33.6256713 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0369985","Offset: 27,262,976, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:33.6256965 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000188","Offset: 2,293,760, Length: 65,536","7900"
"10:46:33.6259260 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000167","Offset: 2,359,296, Length: 65,536","7900"
"10:46:33.6261475 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000132","Offset: 2,424,832, Length: 65,536","7900"
"10:46:33.6263642 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000124","Offset: 2,490,368, Length: 65,536","7900"
"10:46:33.6265912 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000158","Offset: 2,555,904, Length: 65,536","7900"
"10:46:33.6268229 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000209","Offset: 2,621,440, Length: 65,536","7900"
"10:46:33.6270861 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000167","Offset: 2,686,976, Length: 65,536","7900"
"10:46:33.6271651 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000187","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.6272039 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000158","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:33.6273443 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000379","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:33.6273985 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000234","Offset: 2,752,512, Length: 65,536","7900"
"10:46:33.6275461 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000145","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.6275789 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000026","Information: DACL","2512"
"10:46:33.6275939 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000047","","2512"
"10:46:33.6276425 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000235","Offset: 2,818,048, Length: 65,536","7900"
"10:46:33.6277189 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000217","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:33.6278324 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000124","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.6278584 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:33.6278704 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:33.6279416 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000341","Offset: 2,883,584, Length: 65,536","7900"
"10:46:33.6284877 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0002467","Offset: 2,949,120, Length: 65,536","7900"
"10:46:33.6292468 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0001625","Offset: 3,014,656, Length: 65,536","7900"
"10:46:33.6298074 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000815","Offset: 3,080,192, Length: 65,536","7900"
"10:46:33.6303297 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0002150","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:33.6303706 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0003849","Offset: 3,145,728, Length: 65,536","7900"
"10:46:33.6308408 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000294","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:33.6309799 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000183","Offset: 3,211,264, Length: 65,536","7900"
"10:46:33.6310166 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000196","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.6310597 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000038","Information: DACL","2512"
"10:46:33.6310810 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000064","","2512"
"10:46:33.6312090 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000145","Offset: 3,276,800, Length: 65,536","7900"
"10:46:33.6312542 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000214","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:33.6314104 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000179","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.6314398 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000163","Offset: 3,342,336, Length: 65,536","7900"
"10:46:33.6314484 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000034","Information: DACL","2512"
"10:46:33.6314667 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000060","","2512"
"10:46:33.6316852 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000371","Offset: 3,407,872, Length: 65,536","7900"
"10:46:33.6319501 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000303","Offset: 3,473,408, Length: 65,536","7900"
"10:46:33.6322241 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000230","Offset: 3,538,944, Length: 65,536","7900"
"10:46:33.6324831 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000268","Offset: 3,604,480, Length: 65,536","7900"
"10:46:33.6327335 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000265","Offset: 3,670,016, Length: 65,536","7900"
"10:46:33.6329865 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000657","Offset: 3,735,552, Length: 65,536","7900"
"10:46:33.6332796 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000320","Offset: 3,801,088, Length: 65,536","7900"
"10:46:33.6335489 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000281","Offset: 3,866,624, Length: 65,536","7900"
"10:46:33.6340267 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0001174","Offset: 3,932,160, Length: 65,536","7900"
"10:46:33.6348681 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0001536","Offset: 3,997,696, Length: 65,536","7900"
"10:46:33.6353498 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000649","Offset: 4,063,232, Length: 65,536","7900"
"10:46:33.6356907 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000559","Offset: 4,128,768, Length: 65,536","7900"
"10:46:33.6361225 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0004126","Offset: 4,194,304, Length: 65,536","7900"
"10:46:33.6370539 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 56, startime: 40859, endtime: 40861, seqnum: 0, connid: 0","0"
"10:46:33.6371879 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 98, startime: 40859, endtime: 40861, seqnum: 0, connid: 0","0"
"10:46:33.6374516 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000482","Offset: 4,259,840, Length: 65,536","7900"
"10:46:33.6376116 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.6376598 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000056","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:29:46 PM, ChangeTime: 3/20/2019 7:10:41 PM, AllocationSize: 462848, EndOfFile: 460400, FileAttributes: A","2512"
"10:46:33.6376820 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000077","","2512"
"10:46:33.6377323 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000286","Offset: 4,325,376, Length: 65,536","7900"
"10:46:33.6378437 AM","firefox.exe","7384","ReadFile","C:","0.0003170","Offset: 610,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:33.6379960 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000167","Offset: 4,390,912, Length: 65,536","7900"
"10:46:33.6382196 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000188","Offset: 4,456,448, Length: 65,536","7900"
"10:46:33.6383937 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.2952562","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.6384449 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000153","Offset: 4,521,984, Length: 65,536","7900"
"10:46:33.6386650 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000128","Offset: 4,587,520, Length: 65,536","7900"
"10:46:33.6388903 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000132","Offset: 4,653,056, Length: 65,536","7900"
"10:46:33.6391075 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000145","Offset: 4,718,592, Length: 65,536","7900"
"10:46:33.6393264 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000128","Offset: 4,784,128, Length: 65,536","7900"
"10:46:33.6395427 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000124","Offset: 4,849,664, Length: 65,536","7900"
"10:46:33.6397586 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000124","Offset: 4,915,200, Length: 65,536","7900"
"10:46:33.6399745 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000145","Offset: 4,980,736, Length: 65,536","7900"
"10:46:33.6401925 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000196","Offset: 5,046,272, Length: 65,536","7900"
"10:46:33.6404276 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000354","Offset: 5,111,808, Length: 65,536","7900"
"10:46:33.6406699 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000137","Offset: 5,177,344, Length: 65,536","7900"
"10:46:33.6408871 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000930","Offset: 5,242,880, Length: 65,536","7900"
"10:46:33.6411841 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000123","Offset: 5,308,416, Length: 65,536","7900"
"10:46:33.6413240 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 482, seqnum: 0, connid: 0","0"
"10:46:33.6413535 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:33.6413671 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 60, startime: 40860, endtime: 40862, seqnum: 0, connid: 0","0"
"10:46:33.6413748 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 92, startime: 40860, endtime: 40862, seqnum: 0, connid: 0","0"
"10:46:33.6414030 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000230","Offset: 5,373,952, Length: 65,536","7900"
"10:46:33.6416410 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000184","Offset: 5,439,488, Length: 65,536","7900"
"10:46:33.6418902 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000277","Offset: 5,505,024, Length: 65,536","7900"
"10:46:33.6421454 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000200","Offset: 5,570,560, Length: 65,536","7900"
"10:46:33.6423169 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000098","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.6423817 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000197","Offset: 5,636,096, Length: 65,536","7900"
"10:46:33.6426202 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000188","Offset: 5,701,632, Length: 65,536","7900"
"10:46:33.6428600 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000226","Offset: 5,767,168, Length: 65,536","7900"
"10:46:33.6430759 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000064","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.6431007 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000200","Offset: 5,832,704, Length: 65,536","7900"
"10:46:33.6433456 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000192","Offset: 5,898,240, Length: 65,536","7900"
"10:46:33.6435794 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000171","Offset: 5,963,776, Length: 65,536","7900"
"10:46:33.6436630 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.6436903 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40862, endtime: 40862, seqnum: 0, connid: 0","0"
"10:46:33.6437535 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.6437680 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40861, endtime: 40862, seqnum: 0, connid: 0","0"
"10:46:33.6438094 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000204","Offset: 6,029,312, Length: 65,536","7900"
"10:46:33.6440479 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000900","Offset: 6,094,848, Length: 65,536","7900"
"10:46:33.6443751 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000278","Offset: 6,160,384, Length: 65,536","7900"
"10:46:33.6446239 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000226","Offset: 6,225,920, Length: 65,536","7900"
"10:46:33.6449912 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0004822","Offset: 6,291,456, Length: 65,536","7900"
"10:46:33.6459956 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49763 -> ec2-52-88-126-42.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 764, startime: 40859, endtime: 40862, seqnum: 0, connid: 0","0"
"10:46:33.6460221 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0001386","Offset: 6,356,992, Length: 65,536","7900"
"10:46:33.6465396 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000516","Offset: 6,422,528, Length: 65,536","7900"
"10:46:33.6468976 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000567","Offset: 6,488,064, Length: 65,536","7900"
"10:46:33.6473140 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000316","Offset: 6,553,600, Length: 65,536","7900"
"10:46:33.6475674 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000163","Offset: 6,619,136, Length: 65,536","7900"
"10:46:33.6478042 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000107","Offset: 6,684,672, Length: 65,536","7900"
"10:46:33.6480423 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000167","Offset: 6,750,208, Length: 48,956","7900"
"10:46:33.6482394 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-phish-proto.vlpset","0.0000231","","7900"
"10:46:33.6485748 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:33.6486072 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000052","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/26/2020 10:25:30 AM, ChangeTime: 3/26/2020 10:25:30 AM, AllocationSize: 4096, EndOfFile: 4096, FileAttributes: D","7900"
"10:46:33.6486222 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000042","","7900"
"10:46:33.6488240 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:33.6488551 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000081","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/26/2020 10:25:30 AM, ChangeTime: 3/26/2020 10:25:30 AM, FileAttributes: D","7900"
"10:46:33.6488722 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4","0.0000055","","7900"
"10:46:33.6490992 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-unwanted-proto.vlpset","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:33.6491286 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-unwanted-proto.vlpset","0.0000030","CreationTime: 3/26/2020 10:25:30 AM, LastAccessTime: 3/26/2020 10:25:30 AM, LastWriteTime: 3/26/2020 10:25:25 AM, ChangeTime: 3/26/2020 10:25:25 AM, AllocationSize: 81920, EndOfFile: 79604, FileAttributes: A","7900"
"10:46:33.6491401 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-unwanted-proto.vlpset","0.0000052","","7900"
"10:46:33.6492728 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-unwanted-proto.vlpset","0.0000214","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:33.6493351 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-unwanted-proto.vlpset","0.0616876","Offset: 0, Length: 65,536, Priority: Normal","7900"
"10:46:33.6494068 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-unwanted-proto.vlpset","0.0615694","Offset: 0, Length: 65,536, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7900"
"10:46:33.6495476 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 323, seqnum: 0, connid: 0","0"
"10:46:33.6495890 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:33.6502350 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.6503020 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40863, endtime: 40863, seqnum: 0, connid: 0","0"
"10:46:33.6507141 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.6508613 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40862, endtime: 40863, seqnum: 0, connid: 0","0"
"10:46:33.6511297 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.6512197 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40863, endtime: 40863, seqnum: 0, connid: 0","0"
"10:46:33.6517172 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.6517624 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40863, endtime: 40863, seqnum: 0, connid: 0","0"
"10:46:33.6663207 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 56, startime: 40862, endtime: 40864, seqnum: 0, connid: 0","0"
"10:46:33.6664095 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 113, startime: 40862, endtime: 40864, seqnum: 0, connid: 0","0"
"10:46:33.6693049 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 451, seqnum: 0, connid: 0","0"
"10:46:33.6693373 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:33.6719323 AM","firefox.exe","7384","TCP Connect","LAPTOP-49TAGD3F.lan1:49764 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65700, rcvwinscale: 8, sndwinscale: 8, seqnum: 0, connid: 0","0"
"10:46:33.6734589 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.6734632 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\379144A330545D387B35A59DFEBCEBA6972BDC15","0.0236595","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:33.6734909 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40865, endtime: 40865, seqnum: 0, connid: 0","0"
"10:46:33.6735498 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.6735639 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40865, endtime: 40865, seqnum: 0, connid: 0","0"
"10:46:33.6748289 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0164579","Offset: 28,311,552, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:33.6944198 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49764 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 517, startime: 40865, endtime: 40867, seqnum: 0, connid: 0","0"
"10:46:33.6944641 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49764 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 2920, seqnum: 0, connid: 0","0"
"10:46:33.6945968 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49764 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 952, seqnum: 0, connid: 0","0"
"10:46:33.6948029 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000128","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:33.6948490 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:33.6948737 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000035","Offset: 1,073,741,824, Length: 1","2884"
"10:46:33.6953328 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0001229","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:33.6956814 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000662","Offset: 24, Length: 16","2884"
"10:46:33.6971598 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\379144A330545D387B35A59DFEBCEBA6972BDC15","0.0000073","CreationTime: 3/25/2020 10:31:51 AM, LastAccessTime: 3/26/2020 10:26:20 AM, LastWriteTime: 3/26/2020 10:35:16 AM, ChangeTime: 3/26/2020 10:35:16 AM, AllocationSize: 12288, EndOfFile: 9387, FileAttributes: A","6572"
"10:46:33.6971752 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000559","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:33.6971987 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\379144A330545D387B35A59DFEBCEBA6972BDC15","0.0000221","","6572"
"10:46:33.6972716 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:33.6973113 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 1,073,741,826, Length: 510","2884"
"10:46:33.6974056 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:33.6974227 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:33.6974389 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","2884"
"10:46:33.6974913 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\379144A330545D387B35A59DFEBCEBA6972BDC15","0.0000487","Desired Access: Generic Read/Write, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:33.6975720 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\379144A330545D387B35A59DFEBCEBA6972BDC15","0.0097719","Offset: 8,192, Length: 1,195, Priority: Normal","6572"
"10:46:33.6976334 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\379144A330545D387B35A59DFEBCEBA6972BDC15","0.0096884","Offset: 8,192, Length: 1,195, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:33.6977482 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:33.6977977 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000081","Offset: 24, Length: 16","2884"
"10:46:33.6980883 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:33.6981377 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:33.6981710 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 1,073,741,826, Length: 510","2884"
"10:46:33.6983856 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000035","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:33.6984010 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:33.6984138 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","2884"
"10:46:33.6986579 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:33.6986997 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Offset: 24, Length: 16","2884"
"10:46:33.6988955 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:33.6989279 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:33.6989514 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","2884"
"10:46:33.6991332 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:33.6991524 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:33.6991682 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","2884"
"10:46:33.6995065 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:33.6995692 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000086","Offset: 24, Length: 16","2884"
"10:46:33.6998982 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:33.6999502 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:33.6999874 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 1,073,741,826, Length: 510","2884"
"10:46:33.7003342 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000090","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:33.7003650 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:33.7003859 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,824, Length: 1","8316"
"10:46:33.7010429 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0001084","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:33.7012460 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000162","Offset: 24, Length: 16","8316"
"10:46:33.7017666 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:33.7018498 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000098","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:33.7019355 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000162","Offset: 1,073,741,826, Length: 510","8316"
"10:46:33.7031076 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000106","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:33.7031379 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:33.7031583 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,824, Length: 1","8316"
"10:46:33.7035718 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:33.7036336 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000090","Offset: 24, Length: 16","8316"
"10:46:33.7041047 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:33.7041538 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000059","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:33.7041700 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0388604","Offset: 29,360,128, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:33.7041943 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 1,073,741,826, Length: 510","8316"
"10:46:33.7047118 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.7047396 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40868, endtime: 40868, seqnum: 0, connid: 0","0"
"10:46:33.7047955 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.7048142 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40868, endtime: 40868, seqnum: 0, connid: 0","0"
"10:46:33.7049218 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:33.7049384 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:33.7049516 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","2884"
"10:46:33.7052042 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:33.7052443 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 24, Length: 16","2884"
"10:46:33.7054530 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:33.7054854 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:33.7055076 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","2884"
"10:46:33.7073832 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\379144A330545D387B35A59DFEBCEBA6972BDC15","0.0109218","Offset: 0, Length: 8,192","6572"
"10:46:33.7074105 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\379144A330545D387B35A59DFEBCEBA6972BDC15","0.0108702","Offset: 0, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:33.7111345 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-unwanted-proto.vlpset","0.0550998","Offset: 65,536, Length: 14,068","7900"
"10:46:33.7186263 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","6572"
"10:46:33.7186489 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","6572"
"10:46:33.7186639 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","6572"
"10:46:33.7189664 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:33.7190086 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Offset: 24, Length: 16","6572"
"10:46:33.7192036 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:33.7192373 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","6572"
"10:46:33.7192620 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","6572"
"10:46:33.7193772 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","6572"
"10:46:33.7193892 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","6572"
"10:46:33.7193999 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","6572"
"10:46:33.7195940 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:33.7196277 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","6572"
"10:46:33.7198124 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:33.7198423 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","6572"
"10:46:33.7198611 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","6572"
"10:46:33.7200190 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.7200492 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40868, endtime: 40870, seqnum: 0, connid: 0","0"
"10:46:33.7201132 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.7201354 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40870, endtime: 40870, seqnum: 0, connid: 0","0"
"10:46:33.7202092 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.7202203 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40870, endtime: 40870, seqnum: 0, connid: 0","0"
"10:46:33.7206436 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.7206624 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40870, endtime: 40870, seqnum: 0, connid: 0","0"
"10:46:33.7209260 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000103","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.7217538 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000089","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.7219159 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49764 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 126, startime: 40868, endtime: 40870, seqnum: 0, connid: 0","0"
"10:46:33.7219355 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49764 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 448, startime: 40868, endtime: 40870, seqnum: 0, connid: 0","0"
"10:46:33.7224373 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.7224595 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40870, endtime: 40870, seqnum: 0, connid: 0","0"
"10:46:33.7225196 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.7225410 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40870, endtime: 40870, seqnum: 0, connid: 0","0"
"10:46:33.7226011 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.7226148 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40870, endtime: 40870, seqnum: 0, connid: 0","0"
"10:46:33.7226455 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.7226566 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40870, endtime: 40870, seqnum: 0, connid: 0","0"
"10:46:33.7226959 AM","firefox.exe","7384","ReadFile","C:","0.0312230","Offset: 286,720, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:33.7227168 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.7227287 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40870, endtime: 40870, seqnum: 0, connid: 0","0"
"10:46:33.7227842 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.7227953 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40870, endtime: 40870, seqnum: 0, connid: 0","0"
"10:46:33.7228452 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.7228546 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40870, endtime: 40870, seqnum: 0, connid: 0","0"
"10:46:33.7228721 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.7228776 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40870, endtime: 40870, seqnum: 0, connid: 0","0"
"10:46:33.7229092 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.7229173 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40870, endtime: 40870, seqnum: 0, connid: 0","0"
"10:46:33.7230978 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49764 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 170, seqnum: 0, connid: 0","0"
"10:46:33.7231618 AM","firefox.exe","7384","TCP Disconnect","LAPTOP-49TAGD3F.lan1:49764 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 0, seqnum: 0, connid: 0","0"
"10:46:33.7297845 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49763 -> ec2-52-88-126-42.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 270, seqnum: 0, connid: 0","0"
"10:46:33.7299744 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.7300047 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40870, endtime: 40871, seqnum: 0, connid: 0","0"
"10:46:33.7300785 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.7300917 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40871, endtime: 40871, seqnum: 0, connid: 0","0"
"10:46:33.7372759 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.7373143 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40871, endtime: 40871, seqnum: 0, connid: 0","0"
"10:46:33.7373933 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.7374155 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40872, endtime: 40872, seqnum: 0, connid: 0","0"
"10:46:33.7482268 AM","firefox.exe","7384","TCP Connect","LAPTOP-49TAGD3F.lan1:49765 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65700, rcvwinscale: 8, sndwinscale: 8, seqnum: 0, connid: 0","0"
"10:46:33.7500896 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.7501562 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40872, endtime: 40873, seqnum: 0, connid: 0","0"
"10:46:33.7503012 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.7503285 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40873, endtime: 40873, seqnum: 0, connid: 0","0"
"10:46:33.7539940 AM","firefox.exe","7384","ReadFile","C:","0.0346411","Offset: 118,784, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:33.7563492 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0275785","Offset: 30,408,704, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:33.7663614 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-unwanted-proto.vlpset","0.0000964","Offset: 0, Length: 65,536","7900"
"10:46:33.7665129 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-unwanted-proto.vlpset","0.0000102","AllocationSize: 81,920, EndOfFile: 79,604, NumberOfLinks: 1, DeletePending: False, Directory: False","7900"
"10:46:33.7667492 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-unwanted-proto.vlpset","0.0000197","Offset: 65,536, Length: 14,068","7900"
"10:46:33.7668431 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\google4\goog-unwanted-proto.vlpset","0.0000196","","7900"
"10:46:33.7672019 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozplugin-block-digest256.vlpset","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:33.7672344 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozplugin-block-digest256.vlpset","0.0000038","CreationTime: 3/26/2020 10:25:31 AM, LastAccessTime: 3/26/2020 10:25:31 AM, LastWriteTime: 3/26/2020 10:25:31 AM, ChangeTime: 3/26/2020 10:25:31 AM, AllocationSize: 4096, EndOfFile: 3045, FileAttributes: A","7900"
"10:46:33.7672489 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozplugin-block-digest256.vlpset","0.0000047","","7900"
"10:46:33.7674558 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozplugin-block-digest256.vlpset","0.0000158","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:33.7675023 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozplugin-block-digest256.vlpset","0.0329229","Offset: 0, Length: 3,045, Priority: Normal","7900"
"10:46:33.7675467 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozplugin-block-digest256.vlpset","0.0328359","Offset: 0, Length: 3,045, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7900"
"10:46:33.7686680 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49765 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 517, startime: 40872, endtime: 40875, seqnum: 0, connid: 0","0"
"10:46:33.7699053 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49765 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 2920, seqnum: 0, connid: 0","0"
"10:46:33.7709310 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49765 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 952, seqnum: 0, connid: 0","0"
"10:46:33.7711170 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000073","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:33.7711405 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:33.7711559 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","2884"
"10:46:33.7715194 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:33.7715749 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000068","Offset: 24, Length: 16","2884"
"10:46:33.7718249 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:33.7718688 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:33.7718978 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","2884"
"10:46:33.7721884 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:33.7722072 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:33.7722204 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","8316"
"10:46:33.7724798 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:33.7725174 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","8316"
"10:46:33.7727089 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:33.7727414 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:33.7727618 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","8316"
"10:46:33.7729679 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:33.7729812 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:33.7729922 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","8316"
"10:46:33.7731928 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:33.7732265 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","8316"
"10:46:33.7734091 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:33.7734398 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:33.7734594 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","8316"
"10:46:33.7739049 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.7739288 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40875, endtime: 40875, seqnum: 0, connid: 0","0"
"10:46:33.7744045 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.7744246 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40875, endtime: 40875, seqnum: 0, connid: 0","0"
"10:46:33.7745189 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:33.7745351 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:33.7745479 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","2884"
"10:46:33.7748116 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000174","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:33.7748504 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","2884"
"10:46:33.7750377 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:33.7750693 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:33.7750914 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","2884"
"10:46:33.7889313 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\E283E5539B1A9A07019BC1E8CD9F2EC704A01362","0.0262144","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:33.7943448 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0403384","Offset: 31,457,280, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:33.8001415 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49765 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 126, startime: 40875, endtime: 40878, seqnum: 0, connid: 0","0"
"10:46:33.8001795 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49765 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 407, startime: 40875, endtime: 40878, seqnum: 0, connid: 0","0"
"10:46:33.8001995 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49765 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 170, seqnum: 0, connid: 0","0"
"10:46:33.8005464 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozplugin-block-digest256.vlpset","0.0000111","AllocationSize: 4,096, EndOfFile: 3,045, NumberOfLinks: 1, DeletePending: False, Directory: False","7900"
"10:46:33.8006040 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozplugin-block-digest256.vlpset","0.0000171","","7900"
"10:46:33.8006893 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:33.8007154 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:33.8007367 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,824, Length: 1","2884"
"10:46:33.8010179 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozstd-trackwhite-digest256.vlpset","0.0000593","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:33.8010418 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:33.8010883 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000089","Offset: 24, Length: 16","2884"
"10:46:33.8011152 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozstd-trackwhite-digest256.vlpset","0.0000085","CreationTime: 3/26/2020 10:25:33 AM, LastAccessTime: 3/26/2020 10:25:33 AM, LastWriteTime: 3/26/2020 10:25:33 AM, ChangeTime: 3/26/2020 10:25:33 AM, AllocationSize: 229376, EndOfFile: 228837, FileAttributes: A","7900"
"10:46:33.8011437 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozstd-trackwhite-digest256.vlpset","0.0000090","","7900"
"10:46:33.8013289 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozstd-trackwhite-digest256.vlpset","0.0000175","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:33.8013759 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozstd-trackwhite-digest256.vlpset","0.0379921","Offset: 0, Length: 65,536, Priority: Normal","7900"
"10:46:33.8013823 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:33.8014275 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozstd-trackwhite-digest256.vlpset","0.0378940","Offset: 0, Length: 65,536, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7900"
"10:46:33.8014313 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:33.8014616 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","2884"
"10:46:33.8024762 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49765 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 653, seqnum: 0, connid: 0","0"
"10:46:33.8025023 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49765 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 4380, seqnum: 0, connid: 0","0"
"10:46:33.8033577 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49765 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 2920, seqnum: 0, connid: 0","0"
"10:46:33.8033825 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49765 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 975, seqnum: 0, connid: 0","0"
"10:46:33.8035310 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.8035651 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40878, endtime: 40878, seqnum: 0, connid: 0","0"
"10:46:33.8036402 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.8036590 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40878, endtime: 40878, seqnum: 0, connid: 0","0"
"10:46:33.8071896 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000094","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","8244"
"10:46:33.8072250 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000086","AllocationSize: 81,920, EndOfFile: 81,920, NumberOfLinks: 1, DeletePending: False, Directory: False","8244"
"10:46:33.8072519 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000030","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","8244"
"10:46:33.8091677 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000153","Offset: 4,096, Length: 4,096","8244"
"10:46:33.8100329 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000073","Offset: 123, Length: 1","8244"
"10:46:33.8100641 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000038","Exclusive: False, Offset: 124, Length: 1, Fail Immediately: True","8244"
"10:46:33.8100948 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0001011","Offset: 0, Length: 32, Priority: Normal","8244"
"10:46:33.8102369 AM","firefox.exe","7384","FlushBuffersFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.1757920","","8244"
"10:46:33.8103034 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000111","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8244"
"10:46:33.8103636 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000324","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:33.8104127 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000051","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:33 AM, LastWriteTime: 3/26/2020 10:46:33 AM, ChangeTime: 3/26/2020 10:46:33 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:33.8104319 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000064","","5068"
"10:46:33.8108679 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\idb-deleting-3870112724rsegmnoittet-es","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:33.8112920 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:33.8113402 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000056","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","5068"
"10:46:33.8113616 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000085","","5068"
"10:46:33.8127768 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:33.8128203 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000052","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:33.8128374 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000073","","5068"
"10:46:33.8130175 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000401","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:33.8131096 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000175","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:33.8132457 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000039","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:33.8132611 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:33.8132743 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Offset: 1,073,741,824, Length: 1","5068"
"10:46:33.8135090 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:33.8137936 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:33.8138465 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000111","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:33 AM, LastWriteTime: 3/26/2020 10:46:33 AM, ChangeTime: 3/26/2020 10:46:33 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:33.8138755 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000060","","5068"
"10:46:33.8139220 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:33.8139455 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000072","Offset: 0, Length: 4,096","5068"
"10:46:33.8141720 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:33.8142006 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000030","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:33 AM, LastWriteTime: 3/26/2020 10:46:33 AM, ChangeTime: 3/26/2020 10:46:33 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:33.8142143 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000047","","5068"
"10:46:33.8143478 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000248","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:33.8144071 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:33.8144250 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000060","Offset: 0, Length: 4,096","5068"
"10:46:33.8151777 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\E283E5539B1A9A07019BC1E8CD9F2EC704A01362","0.0000068","CreationTime: 3/25/2020 10:25:14 AM, LastAccessTime: 3/25/2020 10:25:14 AM, LastWriteTime: 3/26/2020 10:35:16 AM, ChangeTime: 3/26/2020 10:35:16 AM, AllocationSize: 20480, EndOfFile: 17598, FileAttributes: A","6572"
"10:46:33.8151790 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:33.8152033 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\E283E5539B1A9A07019BC1E8CD9F2EC704A01362","0.0000102","","6572"
"10:46:33.8152306 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:33.8152481 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000085","","5068"
"10:46:33.8154567 AM","firefox.exe","7384","ReadFile","C:","0.1119400","Offset: 884,736, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:33.8157584 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000742","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:33.8159034 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000184","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:33 AM, LastWriteTime: 3/26/2020 10:46:33 AM, ChangeTime: 3/26/2020 10:46:33 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:33.8160050 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000640","","5068"
"10:46:33.8164905 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000227","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:33.8165328 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000047","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,798, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5068"
"10:46:33.8165481 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000043","","5068"
"10:46:33.8166211 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000085","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:33.8167397 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000060","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:33.8167858 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000222","Offset: 8,192, Length: 4,096","5068"
"10:46:33.8168639 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:33.8168873 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000073","Offset: 12,288, Length: 4,096","5068"
"10:46:33.8169556 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:33.8169774 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000059","Offset: 16,384, Length: 4,096","5068"
"10:46:33.8170341 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:33.8170550 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","Offset: 1,073,741,826, Length: 510","5068"
"10:46:33.8170700 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:33.8170849 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:33.8171066 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000530","","5068"
"10:46:33.8172044 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Offset: 1,073,741,825, Length: 1","5068"
"10:46:33.8172150 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Offset: 1,073,741,826, Length: 510","5068"
"10:46:33.8172236 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000008","Offset: 1,073,741,824, Length: 1","5068"
"10:46:33.8172342 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","","5068"
"10:46:33.8183256 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000064","Offset: 123, Length: 1","7760"
"10:46:33.8183662 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000025","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:33.8183901 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000059","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:33.8184076 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7760"
"10:46:33.8185138 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000132","Offset: 24,576, Length: 4,096","7760"
"10:46:33.8185437 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000072","Offset: 823,296, Length: 4,096","7760"
"10:46:33.8185637 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000039","Offset: 12,824,576, Length: 4,096","7760"
"10:46:33.8185825 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000055","Offset: 6,844,416, Length: 4,096","7760"
"10:46:33.8185991 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","Offset: 9,965,568, Length: 4,096","7760"
"10:46:33.8186149 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","Offset: 6,750,208, Length: 4,096","7760"
"10:46:33.8186298 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000035","Offset: 151,552, Length: 4,096","7760"
"10:46:33.8186435 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000239","Offset: 3,231,744, Length: 4,096","7760"
"10:46:33.8186785 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000153","Offset: 12,726,272, Length: 4,096","7760"
"10:46:33.8187126 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","Offset: 614,400, Length: 4,096","7760"
"10:46:33.8187276 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Offset: 622,592, Length: 4,096","7760"
"10:46:33.8187425 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000025","Offset: 675,840, Length: 4,096","7760"
"10:46:33.8188615 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0960232","Offset: 479,232, Length: 4,096","7760"
"10:46:33.8188893 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0959651","Offset: 479,232, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.8394329 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozstd-trackwhite-digest256.vlpset","0.0882697","Offset: 65,536, Length: 65,536","7900"
"10:46:33.8446062 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.1188703","Offset: 32,505,856, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:33.8841979 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.8842282 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40886, endtime: 40886, seqnum: 0, connid: 0","0"
"10:46:33.8843362 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.8843541 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40886, endtime: 40886, seqnum: 0, connid: 0","0"
"10:46:33.9150366 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0153929","Offset: 12,664,832, Length: 4,096","7760"
"10:46:33.9150754 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0153306","Offset: 12,664,832, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.9275175 AM","firefox.exe","7384","ReadFile","C:","0.0030570","Offset: 188,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:33.9277560 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozstd-trackwhite-digest256.vlpset","0.0000234","Offset: 131,072, Length: 65,536","7900"
"10:46:33.9278276 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozstd-trackwhite-digest256.vlpset","0.0000145","Offset: 196,608, Length: 32,229","7900"
"10:46:33.9278874 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozstd-trackwhite-digest256.vlpset","0.0000149","Offset: 0, Length: 65,536","7900"
"10:46:33.9279236 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozstd-trackwhite-digest256.vlpset","0.0000064","AllocationSize: 229,376, EndOfFile: 228,837, NumberOfLinks: 1, DeletePending: False, Directory: False","7900"
"10:46:33.9281523 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozstd-trackwhite-digest256.vlpset","0.0000141","Offset: 65,536, Length: 65,536","7900"
"10:46:33.9285952 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozstd-trackwhite-digest256.vlpset","0.0001195","Offset: 131,072, Length: 65,536","7900"
"10:46:33.9291034 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozstd-trackwhite-digest256.vlpset","0.0000546","Offset: 196,608, Length: 32,229","7900"
"10:46:33.9293133 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\mozstd-trackwhite-digest256.vlpset","0.0000478","","7900"
"10:46:33.9298462 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-track-digest256.vlpset","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:33.9298923 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-track-digest256.vlpset","0.0000060","CreationTime: 3/26/2020 10:25:32 AM, LastAccessTime: 3/26/2020 10:25:32 AM, LastWriteTime: 3/26/2020 10:25:32 AM, ChangeTime: 3/26/2020 10:25:32 AM, AllocationSize: 4096, EndOfFile: 2085, FileAttributes: A","7900"
"10:46:33.9299136 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-track-digest256.vlpset","0.0000077","","7900"
"10:46:33.9301180 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-track-digest256.vlpset","0.0000209","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:33.9301782 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-track-digest256.vlpset","0.0156117","Offset: 0, Length: 2,085, Priority: Normal","7900"
"10:46:33.9302328 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-track-digest256.vlpset","0.0154999","Offset: 0, Length: 2,085, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7900"
"10:46:33.9305993 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0009190","Offset: 487,424, Length: 4,096","7760"
"10:46:33.9306343 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0008601","Offset: 487,424, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.9308992 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\A4487AE3761F2F78FF348F07F868F626A4515353","0.0000414","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:33.9311599 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\E283E5539B1A9A07019BC1E8CD9F2EC704A01362","0.0000359","Desired Access: Generic Read/Write, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:33.9312354 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\E283E5539B1A9A07019BC1E8CD9F2EC704A01362","0.0070298","Offset: 16,384, Length: 1,214, Priority: Normal","6572"
"10:46:33.9313378 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\E283E5539B1A9A07019BC1E8CD9F2EC704A01362","0.0068992","Offset: 16,384, Length: 1,214, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:33.9316314 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0548114","Offset: 552,960, Length: 4,096","7760"
"10:46:33.9316728 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0547456","Offset: 552,960, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.9337391 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000154","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:32:49 PM, ChangeTime: 3/20/2019 7:10:28 PM, AllocationSize: 225280, EndOfFile: 223609, FileAttributes: A","2512"
"10:46:33.9338138 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000256","","2512"
"10:46:33.9339141 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000093","","2512"
"10:46:33.9339409 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000064","","2512"
"10:46:33.9342742 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.9343062 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:32:49 PM, ChangeTime: 3/20/2019 7:10:28 PM, AllocationSize: 225280, EndOfFile: 223609, FileAttributes: A","2512"
"10:46:33.9343194 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","","2512"
"10:46:33.9344576 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000175","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:33.9344956 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:33.9345285 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:33.9345430 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000029","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:33.9345656 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:33.9346607 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0684566","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:33.9383475 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\E283E5539B1A9A07019BC1E8CD9F2EC704A01362","0.1427292","Offset: 8,246, Length: 8,138","6572"
"10:46:33.9383821 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\E283E5539B1A9A07019BC1E8CD9F2EC704A01362","0.1426596","Offset: 8,192, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:33.9458488 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-track-digest256.vlpset","0.0000068","AllocationSize: 4,096, EndOfFile: 2,085, NumberOfLinks: 1, DeletePending: False, Directory: False","7900"
"10:46:33.9458885 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-track-digest256.vlpset","0.0000145","","7900"
"10:46:33.9462080 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-facebook-digest256.vlpset","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:33.9462405 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-facebook-digest256.vlpset","0.0000038","CreationTime: 3/26/2020 10:25:37 AM, LastAccessTime: 3/26/2020 10:25:37 AM, LastWriteTime: 3/26/2020 10:25:37 AM, ChangeTime: 3/26/2020 10:25:37 AM, AllocationSize: 456, EndOfFile: 453, FileAttributes: A","7900"
"10:46:33.9462545 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-facebook-digest256.vlpset","0.0000047","","7900"
"10:46:33.9464295 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-facebook-digest256.vlpset","0.0000179","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:33.9464794 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-facebook-digest256.vlpset","0.0000730","Offset: 0, Length: 453, Priority: Normal","7900"
"10:46:33.9465280 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-facebook-digest256.vlpset","0.0000090","Offset: 0, Length: 453, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7900"
"10:46:33.9465801 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-facebook-digest256.vlpset","0.0000034","AllocationSize: 456, EndOfFile: 453, NumberOfLinks: 1, DeletePending: False, Directory: False","7900"
"10:46:33.9466040 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-facebook-digest256.vlpset","0.0000068","","7900"
"10:46:33.9468485 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-linkedin-digest256.vlpset","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:33.9468788 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-linkedin-digest256.vlpset","0.0000034","CreationTime: 3/26/2020 10:25:37 AM, LastAccessTime: 3/26/2020 10:25:37 AM, LastWriteTime: 3/26/2020 10:25:37 AM, ChangeTime: 3/26/2020 10:25:37 AM, AllocationSize: 136, EndOfFile: 133, FileAttributes: A","7900"
"10:46:33.9468911 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-linkedin-digest256.vlpset","0.0000047","","7900"
"10:46:33.9470170 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-linkedin-digest256.vlpset","0.0000149","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:33.9470567 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-linkedin-digest256.vlpset","0.0000614","Offset: 0, Length: 133, Priority: Normal","7900"
"10:46:33.9470955 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-linkedin-digest256.vlpset","0.0000068","Offset: 0, Length: 133, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7900"
"10:46:33.9471800 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-linkedin-digest256.vlpset","0.0000034","AllocationSize: 136, EndOfFile: 133, NumberOfLinks: 1, DeletePending: False, Directory: False","7900"
"10:46:33.9472116 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-linkedin-digest256.vlpset","0.0000059","","7900"
"10:46:33.9474368 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-twitter-digest256.vlpset","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:33.9474650 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-twitter-digest256.vlpset","0.0000034","CreationTime: 3/26/2020 10:25:38 AM, LastAccessTime: 3/26/2020 10:25:38 AM, LastWriteTime: 3/26/2020 10:25:38 AM, ChangeTime: 3/26/2020 10:25:38 AM, AllocationSize: 264, EndOfFile: 261, FileAttributes: A","7900"
"10:46:33.9474774 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-twitter-digest256.vlpset","0.0000042","","7900"
"10:46:33.9476032 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-twitter-digest256.vlpset","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7900"
"10:46:33.9476506 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-twitter-digest256.vlpset","0.0000610","Offset: 0, Length: 261, Priority: Normal","7900"
"10:46:33.9476886 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-twitter-digest256.vlpset","0.0000077","Offset: 0, Length: 261, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7900"
"10:46:33.9477368 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-twitter-digest256.vlpset","0.0000043","AllocationSize: 264, EndOfFile: 261, NumberOfLinks: 1, DeletePending: False, Directory: False","7900"
"10:46:33.9477598 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\social-tracking-protection-twitter-digest256.vlpset","0.0000069","","7900"
"10:46:33.9480675 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-block-simple.vlpset","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7900"
"10:46:33.9484028 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-harmful-simple.vlpset","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7900"
"10:46:33.9488128 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-malware-simple.vlpset","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7900"
"10:46:33.9491883 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-phish-simple.vlpset","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7900"
"10:46:33.9494456 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-track-simple.vlpset","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7900"
"10:46:33.9497063 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-trackwhite-simple.vlpset","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7900"
"10:46:33.9499047 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\safebrowsing\test-unwanted-simple.vlpset","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7900"
"10:46:33.9511258 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000120","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9517355 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000068","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9525624 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9525952 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40893, endtime: 40893, seqnum: 0, connid: 0","0"
"10:46:33.9526682 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9526870 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40893, endtime: 40893, seqnum: 0, connid: 0","0"
"10:46:33.9527463 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9527587 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40893, endtime: 40893, seqnum: 0, connid: 0","0"
"10:46:33.9527868 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9527971 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40893, endtime: 40893, seqnum: 0, connid: 0","0"
"10:46:33.9528615 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9528734 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40893, endtime: 40893, seqnum: 0, connid: 0","0"
"10:46:33.9537891 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000140","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9544786 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000422","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:33.9545647 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000116","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:33 AM, LastWriteTime: 3/26/2020 10:46:33 AM, ChangeTime: 3/26/2020 10:46:33 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:33.9545933 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000094","","5068"
"10:46:33.9547802 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9548092 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40893, endtime: 40893, seqnum: 0, connid: 0","0"
"10:46:33.9548745 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9548911 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40893, endtime: 40893, seqnum: 0, connid: 0","0"
"10:46:33.9549436 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9549556 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40893, endtime: 40893, seqnum: 0, connid: 0","0"
"10:46:33.9549820 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9549923 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40893, endtime: 40893, seqnum: 0, connid: 0","0"
"10:46:33.9549970 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\idb-deleting-3870112724rsegmnoittet-es","0.0000268","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:33.9550477 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9550584 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40893, endtime: 40893, seqnum: 0, connid: 0","0"
"10:46:33.9552325 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000085","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9553750 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000392","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:33.9554339 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000055","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","5068"
"10:46:33.9554565 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0309978","","5068"
"10:46:33.9559288 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000077","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9566388 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9566652 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40893, endtime: 40893, seqnum: 0, connid: 0","0"
"10:46:33.9567288 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9567450 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40893, endtime: 40893, seqnum: 0, connid: 0","0"
"10:46:33.9567966 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9568082 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40893, endtime: 40893, seqnum: 0, connid: 0","0"
"10:46:33.9568274 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000115","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9568338 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9568440 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40893, endtime: 40893, seqnum: 0, connid: 0","0"
"10:46:33.9569029 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9569144 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40893, endtime: 40893, seqnum: 0, connid: 0","0"
"10:46:33.9575540 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000098","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9582017 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9582277 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40893, endtime: 40894, seqnum: 0, connid: 0","0"
"10:46:33.9582836 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9582998 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40893, endtime: 40894, seqnum: 0, connid: 0","0"
"10:46:33.9585131 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000124","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9595533 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000116","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9603030 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9603431 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40894, endtime: 40894, seqnum: 0, connid: 0","0"
"10:46:33.9603444 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000124","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9604237 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9604502 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40894, endtime: 40894, seqnum: 0, connid: 0","0"
"10:46:33.9605129 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9605304 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40894, endtime: 40894, seqnum: 0, connid: 0","0"
"10:46:33.9605603 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9605731 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40894, endtime: 40894, seqnum: 0, connid: 0","0"
"10:46:33.9606725 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9606866 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40894, endtime: 40894, seqnum: 0, connid: 0","0"
"10:46:33.9630716 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9631100 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40894, endtime: 40894, seqnum: 0, connid: 0","0"
"10:46:33.9632291 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9632466 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40894, endtime: 40894, seqnum: 0, connid: 0","0"
"10:46:33.9632999 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9633127 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40894, endtime: 40894, seqnum: 0, connid: 0","0"
"10:46:33.9633392 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9633494 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40894, endtime: 40894, seqnum: 0, connid: 0","0"
"10:46:33.9634074 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9634168 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40894, endtime: 40894, seqnum: 0, connid: 0","0"
"10:46:33.9639582 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000141","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9654968 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000179","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9674778 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9675324 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40894, endtime: 40895, seqnum: 0, connid: 0","0"
"10:46:33.9676233 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9676434 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40894, endtime: 40895, seqnum: 0, connid: 0","0"
"10:46:33.9677116 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9677253 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40895, endtime: 40895, seqnum: 0, connid: 0","0"
"10:46:33.9677543 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9677663 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40895, endtime: 40895, seqnum: 0, connid: 0","0"
"10:46:33.9678439 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9678571 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40895, endtime: 40895, seqnum: 0, connid: 0","0"
"10:46:33.9683171 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000145","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9691828 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9692097 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40895, endtime: 40895, seqnum: 0, connid: 0","0"
"10:46:33.9692711 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9692882 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40895, endtime: 40895, seqnum: 0, connid: 0","0"
"10:46:33.9693232 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9693351 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40895, endtime: 40895, seqnum: 0, connid: 0","0"
"10:46:33.9693953 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9694059 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40895, endtime: 40895, seqnum: 0, connid: 0","0"
"10:46:33.9694341 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9694431 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40895, endtime: 40895, seqnum: 0, connid: 0","0"
"10:46:33.9694874 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9694985 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40895, endtime: 40895, seqnum: 0, connid: 0","0"
"10:46:33.9696316 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000124","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9705131 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9705490 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40895, endtime: 40895, seqnum: 0, connid: 0","0"
"10:46:33.9706309 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9706552 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40895, endtime: 40895, seqnum: 0, connid: 0","0"
"10:46:33.9709321 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000137","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9723913 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9724220 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40895, endtime: 40895, seqnum: 0, connid: 0","0"
"10:46:33.9724865 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9724963 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000153","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9725044 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40895, endtime: 40895, seqnum: 0, connid: 0","0"
"10:46:33.9733372 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000111","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9740472 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9740758 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40895, endtime: 40895, seqnum: 0, connid: 0","0"
"10:46:33.9741436 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9741603 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40895, endtime: 40895, seqnum: 0, connid: 0","0"
"10:46:33.9742682 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000111","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9749057 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000085","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9756084 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9756353 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40895, endtime: 40895, seqnum: 0, connid: 0","0"
"10:46:33.9756997 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9757176 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40895, endtime: 40895, seqnum: 0, connid: 0","0"
"10:46:33.9758213 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000107","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9764366 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000076","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9767694 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.1190798","Offset: 33,554,432, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:33.9771687 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9771973 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40895, endtime: 40895, seqnum: 0, connid: 0","0"
"10:46:33.9772861 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000174","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9773782 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9774047 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40896, endtime: 40896, seqnum: 0, connid: 0","0"
"10:46:33.9792419 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000132","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9793942 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 60, startime: 40894, endtime: 40896, seqnum: 0, connid: 0","0"
"10:46:33.9794215 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 97, startime: 40894, endtime: 40896, seqnum: 0, connid: 0","0"
"10:46:33.9801289 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9801626 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40896, endtime: 40896, seqnum: 0, connid: 0","0"
"10:46:33.9802497 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9802804 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40895, endtime: 40896, seqnum: 0, connid: 0","0"
"10:46:33.9805842 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000175","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9815340 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000123","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9817699 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 332, seqnum: 0, connid: 0","0"
"10:46:33.9818143 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:33.9827478 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9828242 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40896, endtime: 40896, seqnum: 0, connid: 0","0"
"10:46:33.9830384 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9830819 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40895, endtime: 40896, seqnum: 0, connid: 0","0"
"10:46:33.9834006 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000286","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9842902 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000141","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9847412 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9847758 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40896, endtime: 40896, seqnum: 0, connid: 0","0"
"10:46:33.9848492 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9848701 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40896, endtime: 40896, seqnum: 0, connid: 0","0"
"10:46:33.9849136 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9849294 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40896, endtime: 40896, seqnum: 0, connid: 0","0"
"10:46:33.9849904 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9850019 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40896, endtime: 40896, seqnum: 0, connid: 0","0"
"10:46:33.9850335 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9850476 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40896, endtime: 40896, seqnum: 0, connid: 0","0"
"10:46:33.9850898 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9850979 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40896, endtime: 40896, seqnum: 0, connid: 0","0"
"10:46:33.9851209 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9851337 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40896, endtime: 40896, seqnum: 0, connid: 0","0"
"10:46:33.9851756 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9851828 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40896, endtime: 40896, seqnum: 0, connid: 0","0"
"10:46:33.9852054 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9852169 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40896, endtime: 40896, seqnum: 0, connid: 0","0"
"10:46:33.9852613 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9852737 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40896, endtime: 40896, seqnum: 0, connid: 0","0"
"10:46:33.9853074 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000132","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9856231 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9856440 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40896, endtime: 40896, seqnum: 0, connid: 0","0"
"10:46:33.9857063 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9857243 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40896, endtime: 40896, seqnum: 0, connid: 0","0"
"10:46:33.9861249 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000226","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9861774 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000921","Offset: 32, Length: 24, Priority: Normal","8244"
"10:46:33.9863212 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0036403","Offset: 56, Length: 4,096, Priority: Normal","8244"
"10:46:33.9866685 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0032448","Offset: 12,673,024, Length: 4,096","7760"
"10:46:33.9867346 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0031518","Offset: 12,673,024, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.9869752 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000295","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:33.9870235 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000055","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:33.9870503 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0028873","","5068"
"10:46:33.9873695 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9873993 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40896, endtime: 40897, seqnum: 0, connid: 0","0"
"10:46:33.9874181 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000103","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9874672 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9874843 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40896, endtime: 40897, seqnum: 0, connid: 0","0"
"10:46:33.9887903 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9888163 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40897, endtime: 40897, seqnum: 0, connid: 0","0"
"10:46:33.9888782 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9888987 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40897, endtime: 40897, seqnum: 0, connid: 0","0"
"10:46:33.9899824 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0004531","Offset: 573,440, Length: 4,096","7760"
"10:46:33.9900020 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000128","Offset: 4,152, Length: 24","8244"
"10:46:33.9900366 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003686","Offset: 573,440, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.9900669 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000721","Offset: 4,176, Length: 4,096, Priority: Normal","8244"
"10:46:33.9901684 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000090","Offset: 8,272, Length: 24","8244"
"10:46:33.9901936 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000047","Offset: 8,296, Length: 4,096","8244"
"10:46:33.9902128 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000038","Offset: 12,392, Length: 24","8244"
"10:46:33.9902427 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000362","Offset: 12,416, Length: 4,096, Priority: Normal","8244"
"10:46:33.9902678 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000453","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:33.9902990 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000051","Offset: 16,512, Length: 24","8244"
"10:46:33.9903160 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000056","Offset: 16,536, Length: 4,096","8244"
"10:46:33.9903630 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000141","Offset: 20,632, Length: 24","8244"
"10:46:33.9903988 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000107","Offset: 20,656, Length: 4,096","8244"
"10:46:33.9904052 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000410","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:33.9904504 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000086","Offset: 24,752, Length: 24","8244"
"10:46:33.9904854 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000107","Offset: 24,776, Length: 4,096","8244"
"10:46:33.9904901 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003806","Offset: 483,328, Length: 4,096","7760"
"10:46:33.9905243 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000089","Offset: 28,872, Length: 24","8244"
"10:46:33.9905362 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003089","Offset: 483,328, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.9905661 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000059","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:33.9905729 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000717","Offset: 28,896, Length: 4,096, Priority: Normal","8244"
"10:46:33.9906134 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:33.9906356 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","Offset: 1,073,741,824, Length: 1","5068"
"10:46:33.9906817 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000081","Offset: 32,992, Length: 24","8244"
"10:46:33.9907035 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000072","Offset: 33,016, Length: 4,096","8244"
"10:46:33.9907256 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000047","Offset: 37,112, Length: 24","8244"
"10:46:33.9907423 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000051","Offset: 37,136, Length: 4,096","8244"
"10:46:33.9907611 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000046","Offset: 41,232, Length: 24","8244"
"10:46:33.9907773 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000051","Offset: 41,256, Length: 4,096","8244"
"10:46:33.9907973 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000039","Offset: 45,352, Length: 24","8244"
"10:46:33.9908255 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000094","Offset: 45,376, Length: 4,096","8244"
"10:46:33.9908989 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000055","Offset: 120, Length: 1","8244"
"10:46:33.9909240 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000022","Offset: 124, Length: 1","8244"
"10:46:33.9910414 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0003136","Offset: 557,056, Length: 4,096","7760"
"10:46:33.9910738 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0002598","Offset: 557,056, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.9911092 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:33.9911574 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9912227 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40897, endtime: 40897, seqnum: 0, connid: 0","0"
"10:46:33.9912829 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9912987 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40897, endtime: 40897, seqnum: 0, connid: 0","0"
"10:46:33.9914198 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9914352 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40897, endtime: 40897, seqnum: 0, connid: 0","0"
"10:46:33.9914676 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0002978","Offset: 569,344, Length: 4,096","7760"
"10:46:33.9914787 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9914915 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40897, endtime: 40897, seqnum: 0, connid: 0","0"
"10:46:33.9915064 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0002334","Offset: 569,344, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.9915252 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9915355 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40897, endtime: 40897, seqnum: 0, connid: 0","0"
"10:46:33.9915832 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9915952 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40897, endtime: 40897, seqnum: 0, connid: 0","0"
"10:46:33.9916208 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9916298 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40897, endtime: 40897, seqnum: 0, connid: 0","0"
"10:46:33.9916771 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9916831 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:33.9916874 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40897, endtime: 40897, seqnum: 0, connid: 0","0"
"10:46:33.9917253 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000081","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:33 AM, LastWriteTime: 3/26/2020 10:46:33 AM, ChangeTime: 3/26/2020 10:46:33 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:33.9917944 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000137","","5068"
"10:46:33.9918730 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:33.9918785 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0002654","Offset: 12,681,216, Length: 4,096","7760"
"10:46:33.9918998 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000069","Offset: 0, Length: 4,096","5068"
"10:46:33.9919092 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0002189","Offset: 12,681,216, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.9921806 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0002846","Offset: 12,746,752, Length: 4,096","7760"
"10:46:33.9922147 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0002368","Offset: 12,746,752, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","7760"
"10:46:33.9922663 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:33.9923000 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000035","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:33 AM, LastWriteTime: 3/26/2020 10:46:33 AM, ChangeTime: 3/26/2020 10:46:33 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:33.9923150 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000055","","5068"
"10:46:33.9924737 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000337","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:33.9925454 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:33.9925654 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000056","Offset: 0, Length: 4,096","5068"
"10:46:33.9933556 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:33.9934060 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000055","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:33.9934294 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000094","","5068"
"10:46:33.9937951 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:33.9938326 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000039","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:33 AM, LastWriteTime: 3/26/2020 10:46:33 AM, ChangeTime: 3/26/2020 10:46:33 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:33.9938463 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000047","","5068"
"10:46:33.9942789 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000064","Offset: 120, Length: 1","7760"
"10:46:33.9943088 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000038","Offset: 123, Length: 1","7760"
"10:46:33.9943271 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000273","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:33.9943984 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000055","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,782, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5068"
"10:46:33.9944206 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000072","","5068"
"10:46:33.9944854 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000043","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:33.9945076 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:33.9945315 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000021","Offset: 123, Length: 1","5068"
"10:46:33.9945891 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000021","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:33.9946066 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:33.9946288 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000132","Offset: 8,192, Length: 4,096","5068"
"10:46:33.9946646 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Offset: 123, Length: 1","5068"
"10:46:33.9946928 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000026","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:33.9947658 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","7760"
"10:46:33.9947820 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000025","Offset: 1,073,741,826, Length: 510","7760"
"10:46:33.9947960 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","7760"
"10:46:33.9948114 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","7760"
"10:46:33.9948357 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000145","","7760"
"10:46:33.9949279 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Offset: 1,073,741,825, Length: 1","7760"
"10:46:33.9949526 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Offset: 1,073,741,826, Length: 510","7760"
"10:46:33.9949701 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","Offset: 1,073,741,824, Length: 1","7760"
"10:46:33.9950094 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000401","","7760"
"10:46:33.9961622 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9961981 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40897, endtime: 40897, seqnum: 0, connid: 0","0"
"10:46:33.9963636 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9963833 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40897, endtime: 40897, seqnum: 0, connid: 0","0"
"10:46:33.9964345 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9964477 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40897, endtime: 40897, seqnum: 0, connid: 0","0"
"10:46:33.9965241 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9965339 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40897, endtime: 40897, seqnum: 0, connid: 0","0"
"10:46:33.9967237 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000154","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:33.9967899 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000196","Offset: 12,288, Length: 4,096","5068"
"10:46:33.9968850 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000056","Offset: 123, Length: 1","5068"
"10:46:33.9970855 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000073","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:33.9971521 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000073","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:33.9971875 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000162","Offset: 16,384, Length: 4,096","5068"
"10:46:33.9972319 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9972690 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40897, endtime: 40897, seqnum: 0, connid: 0","0"
"10:46:33.9973330 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9973509 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40897, endtime: 40898, seqnum: 0, connid: 0","0"
"10:46:33.9973838 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9973962 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40897, endtime: 40898, seqnum: 0, connid: 0","0"
"10:46:33.9974576 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:33.9974691 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40898, endtime: 40898, seqnum: 0, connid: 0","0"
"10:46:33.9975306 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000119","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9975694 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000055","Offset: 123, Length: 1","5068"
"10:46:33.9976074 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:33.9976223 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Offset: 1,073,741,826, Length: 510","5068"
"10:46:33.9976338 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:33.9976859 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000162","","5068"
"10:46:33.9980174 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:33.9980545 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000051","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:33 AM, LastWriteTime: 3/26/2020 10:46:33 AM, ChangeTime: 3/26/2020 10:46:33 AM, FileAttributes: A","5068"
"10:46:33.9980737 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000077","","5068"
"10:46:33.9983199 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000354","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:33.9983771 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000064","Attributes: A, ReparseTag: 0x0","5068"
"10:46:33.9984014 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000132","Delete: True","5068"
"10:46:33.9984321 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0001169","","5068"
"10:46:33.9986075 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000298","","5068"
"10:46:33.9990269 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000089","Name: \Windows\System32\sechost.dll","8024"
"10:46:33.9993631 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000350","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:33.9994181 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000060","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:33 AM, LastWriteTime: 3/26/2020 10:46:33 AM, ChangeTime: 3/26/2020 10:46:33 AM, FileAttributes: A","5068"
"10:46:33.9994420 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000081","","5068"
"10:46:33.9996771 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000726","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:33.9997761 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000064","Attributes: A, ReparseTag: 0x0","5068"
"10:46:33.9998009 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000145","Delete: True","5068"
"10:46:33.9998303 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0001429","","5068"
"10:46:34.0000355 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000056","Offset: 1,073,741,826, Length: 510","5068"
"10:46:34.0000500 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Offset: 1,073,741,825, Length: 1","5068"
"10:46:34.0000607 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Offset: 1,073,741,826, Length: 510","5068"
"10:46:34.0000701 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Offset: 1,073,741,824, Length: 1","5068"
"10:46:34.0001038 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000345","","5068"
"10:46:34.0002493 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0002937 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40898, endtime: 40898, seqnum: 0, connid: 0","0"
"10:46:34.0008701 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0009076 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40898, endtime: 40898, seqnum: 0, connid: 0","0"
"10:46:34.0013723 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0014235 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40898, endtime: 40898, seqnum: 0, connid: 0","0"
"10:46:34.0015225 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0015592 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40898, endtime: 40898, seqnum: 0, connid: 0","0"
"10:46:34.0018134 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000342","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:34.0018672 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000060","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:34 AM, LastWriteTime: 3/26/2020 10:46:34 AM, ChangeTime: 3/26/2020 10:46:34 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:34.0018873 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000392","","5068"
"10:46:34.0024982 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\idb-deleting-3870112724rsegmnoittet-es","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:34.0025571 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0025904 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","7760"
"10:46:34.0026100 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","","7760"
"10:46:34.0028037 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:34.0028468 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000039","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","5068"
"10:46:34.0028618 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000059","","5068"
"10:46:34.0028938 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0029232 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","7760"
"10:46:34.0029360 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","","7760"
"10:46:34.0032355 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0341735","Offset: 192,512, Length: 31,097, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:34.0034250 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0034719 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","7760"
"10:46:34.0034813 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:34.0034902 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000077","","7760"
"10:46:34.0035240 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:34.0035466 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000059","","5068"
"10:46:34.0037049 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000571","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","7760"
"10:46:34.0037539 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000252","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:34.0038064 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000107","Offset: 0, Length: 100, Priority: Normal","7760"
"10:46:34.0038120 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000089","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:34.0039408 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:34.0039446 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000039","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","7760"
"10:46:34.0039664 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:34.0039792 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Offset: 1,073,741,824, Length: 1","5068"
"10:46:34.0041917 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:34.0044042 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:34.0044379 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:34.0044609 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","Offset: 0, Length: 4,096","5068"
"10:46:34.0046614 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:34.0047801 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000998","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","5068"
"10:46:34.0051043 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:34.0052200 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000780","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","5068"
"10:46:34.0053194 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000038","Exclusive: True, Offset: 128, Length: 1, Fail Immediately: True","5068"
"10:46:34.0053398 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000359","EndOfFile: 0","5068"
"10:46:34.0053898 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000175","AllocationSize: 0","5068"
"10:46:34.0054196 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Offset: 128, Length: 1","5068"
"10:46:34.0054312 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000029","Exclusive: False, Offset: 128, Length: 1, Fail Immediately: True","5068"
"10:46:34.0054440 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000029","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:34.0054563 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000013","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","5068"
"10:46:34.0054666 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000021","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:34.0054806 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000768","EndOfFile: 32,768","5068"
"10:46:34.0055766 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000252","AllocationSize: 32,768","5068"
"10:46:34.0056261 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5068"
"10:46:34.0056488 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000034","AllocationSize: 32,768, EndOfFile: 32,768, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:34.0056854 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000035","SyncType: SyncTypeOther","5068"
"10:46:34.0057507 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","7760"
"10:46:34.0057593 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000157","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5068"
"10:46:34.0057789 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000025","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","7760"
"10:46:34.0058006 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","Offset: 1,073,741,824, Length: 1","7760"
"10:46:34.0058207 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000034","Exclusive: True, Offset: 121, Length: 2, Fail Immediately: True","5068"
"10:46:34.0058403 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000022","Exclusive: True, Offset: 124, Length: 4, Fail Immediately: True","5068"
"10:46:34.0058604 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000051","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:34.0058851 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000026","Offset: 121, Length: 2","5068"
"10:46:34.0059018 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Offset: 124, Length: 4","5068"
"10:46:34.0059167 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Offset: 120, Length: 1","5068"
"10:46:34.0059325 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000025","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:34.0059551 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:34.0059875 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","Offset: 0, Length: 4,096","5068"
"10:46:34.0061829 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000329","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:34.0063156 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000034","Offset: 123, Length: 1","5068"
"10:46:34.0067052 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0067470 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000038","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:34 AM, LastWriteTime: 3/26/2020 10:46:34 AM, ChangeTime: 3/26/2020 10:46:34 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","7760"
"10:46:34.0067692 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000064","","7760"
"10:46:34.0068165 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:34.0068328 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:34.0068383 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","Offset: 0, Length: 4,096","7760"
"10:46:34.0068660 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000035","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:34.0068810 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000055","","5068"
"10:46:34.0070807 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0071071 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:34.0071118 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000030","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:34 AM, LastWriteTime: 3/26/2020 10:46:34 AM, ChangeTime: 3/26/2020 10:46:34 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","7760"
"10:46:34.0071259 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000051","","7760"
"10:46:34.0071340 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000030","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:34 AM, LastWriteTime: 3/26/2020 10:46:34 AM, ChangeTime: 3/26/2020 10:46:34 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:34.0071459 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000043","","5068"
"10:46:34.0072628 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000256","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","7760"
"10:46:34.0072654 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000145","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:34.0072931 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000030","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,782, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5068"
"10:46:34.0073064 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000038","","5068"
"10:46:34.0073170 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:34.0073349 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:34.0073490 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:34.0073529 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000042","Offset: 0, Length: 4,096","7760"
"10:46:34.0073938 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:34.0074113 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","Offset: 8,192, Length: 4,096","5068"
"10:46:34.0074463 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:34.0074604 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Offset: 12,288, Length: 4,096","5068"
"10:46:34.0075069 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:34.0075210 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Offset: 16,384, Length: 4,096","5068"
"10:46:34.0075636 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:34.0075760 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Offset: 1,073,741,826, Length: 510","5068"
"10:46:34.0075871 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000026","Offset: 123, Length: 1","7760"
"10:46:34.0075892 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:34.0075991 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:34.0076140 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000064","","5068"
"10:46:34.0076490 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Offset: 1,073,741,825, Length: 1","5068"
"10:46:34.0076584 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000012","Offset: 1,073,741,826, Length: 510","5068"
"10:46:34.0076665 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000012","Offset: 1,073,741,824, Length: 1","5068"
"10:46:34.0076771 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","","5068"
"10:46:34.0077569 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0077898 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40899, endtime: 40899, seqnum: 0, connid: 0","0"
"10:46:34.0078824 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0079067 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40899, endtime: 40899, seqnum: 0, connid: 0","0"
"10:46:34.0079101 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0079609 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","7760"
"10:46:34.0079617 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0079775 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40899, endtime: 40899, seqnum: 0, connid: 0","0"
"10:46:34.0079835 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000085","","7760"
"10:46:34.0080581 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0080735 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40899, endtime: 40899, seqnum: 0, connid: 0","0"
"10:46:34.0084110 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0084191 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:34.0084426 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000064","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:34 AM, LastWriteTime: 3/26/2020 10:46:34 AM, ChangeTime: 3/26/2020 10:46:34 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","7760"
"10:46:34.0084507 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000034","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:34 AM, LastWriteTime: 3/26/2020 10:46:34 AM, ChangeTime: 3/26/2020 10:46:34 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:34.0084643 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000052","","5068"
"10:46:34.0084652 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000072","","7760"
"10:46:34.0086226 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000175","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0086670 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000137","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,782, SectorsPerAllocationUnit: 8, BytesPerSector: 512","7760"
"10:46:34.0087016 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000055","","7760"
"10:46:34.0088663 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000081","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:34.0089004 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\idb-deleting-3870112724rsegmnoittet-es","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:34.0089059 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000039","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:34.0089298 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000107","Offset: 20,480, Length: 4,096","7760"
"10:46:34.0089588 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000154","Offset: 1,654,784, Length: 4,096","7760"
"10:46:34.0089887 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Offset: 12,787,712, Length: 4,096","7760"
"10:46:34.0090028 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","Offset: 12,378,112, Length: 4,096","7760"
"10:46:34.0090190 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Offset: 12,509,184, Length: 4,096","7760"
"10:46:34.0090331 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000042","Offset: 11,808,768, Length: 4,096","7760"
"10:46:34.0092895 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:34.0093356 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","5068"
"10:46:34.0093569 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000090","","5068"
"10:46:34.0097857 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000056","Offset: 123, Length: 1","7760"
"10:46:34.0097964 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:34.0098254 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000026","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:34.0098433 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000060","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:34.0098437 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:34.0098629 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000018","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7760"
"10:46:34.0098693 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000090","","5068"
"10:46:34.0099858 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000120","Offset: 24,576, Length: 4,096","7760"
"10:46:34.0100136 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000072","Offset: 823,296, Length: 4,096","7760"
"10:46:34.0100336 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","Offset: 12,824,576, Length: 4,096","7760"
"10:46:34.0100545 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","Offset: 6,844,416, Length: 4,096","7760"
"10:46:34.0100865 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000482","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:34.0101736 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000132","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:34.0101744 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000128","Offset: 9,965,568, Length: 4,096","7760"
"10:46:34.0102222 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000085","Offset: 6,750,208, Length: 4,096","7760"
"10:46:34.0102499 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000060","Offset: 151,552, Length: 4,096","7760"
"10:46:34.0102734 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000418","Offset: 3,231,744, Length: 4,096","7760"
"10:46:34.0102824 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000042","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:34.0103041 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:34.0103225 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000025","Offset: 1,073,741,824, Length: 1","5068"
"10:46:34.0104027 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000260","Offset: 12,726,272, Length: 4,096","7760"
"10:46:34.0104620 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000089","Offset: 667,648, Length: 4,096","7760"
"10:46:34.0107568 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000115","Offset: 614,400, Length: 4,096","7760"
"10:46:34.0107739 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:34.0107888 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","Offset: 622,592, Length: 4,096","7760"
"10:46:34.0108127 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","Offset: 675,840, Length: 4,096","7760"
"10:46:34.0111732 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:34.0112257 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000056","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:34 AM, LastWriteTime: 3/26/2020 10:46:34 AM, ChangeTime: 3/26/2020 10:46:34 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:34.0112765 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000085","","5068"
"10:46:34.0113375 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:34.0113644 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000226","Offset: 0, Length: 4,096","5068"
"10:46:34.0121874 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000214","Offset: 120, Length: 1","7760"
"10:46:34.0122740 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000086","Offset: 123, Length: 1","7760"
"10:46:34.0125812 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000824","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:34.0126111 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000047","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:34.0126376 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:34.0126615 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000029","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7760"
"10:46:34.0126918 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000055","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:34 AM, LastWriteTime: 3/26/2020 10:46:34 AM, ChangeTime: 3/26/2020 10:46:34 AM, AllocationSize: 0, EndOfFile: 0, FileAttributes: A","5068"
"10:46:34.0127182 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000102","","5068"
"10:46:34.0129896 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000345","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:34.0130642 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:34.0130873 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000077","Offset: 0, Length: 4,096","5068"
"10:46:34.0138856 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:34.0139227 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:34.0139385 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000068","","5068"
"10:46:34.0142107 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:34.0142538 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000051","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:34 AM, LastWriteTime: 3/26/2020 10:46:34 AM, ChangeTime: 3/26/2020 10:46:34 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:34.0142704 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000060","","5068"
"10:46:34.0144876 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000286","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:34.0145396 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000052","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,782, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5068"
"10:46:34.0145699 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000099","","5068"
"10:46:34.0147820 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000068","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:34.0148814 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:34.0149151 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000196","Offset: 8,192, Length: 4,096","5068"
"10:46:34.0149936 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:34.0150115 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000056","Offset: 12,288, Length: 4,096","5068"
"10:46:34.0150627 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000022","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:34.0150768 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000039","Offset: 16,384, Length: 4,096","5068"
"10:46:34.0151178 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000042","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:34.0151331 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Offset: 1,073,741,826, Length: 510","5068"
"10:46:34.0151430 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000012","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:34.0151528 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:34.0151707 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000111","","5068"
"10:46:34.0152283 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000025","Offset: 1,073,741,825, Length: 1","5068"
"10:46:34.0152419 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000022","Offset: 1,073,741,826, Length: 510","5068"
"10:46:34.0152547 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Offset: 1,073,741,824, Length: 1","5068"
"10:46:34.0152692 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000086","","5068"
"10:46:34.0155850 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000051","Offset: 120, Length: 1","7760"
"10:46:34.0156102 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000029","Offset: 123, Length: 1","7760"
"10:46:34.0157070 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000094","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","7760"
"10:46:34.0157458 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","Offset: 1,073,741,826, Length: 510","7760"
"10:46:34.0157697 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","7760"
"10:46:34.0158495 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000273","","7760"
"10:46:34.0163654 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 60, startime: 40897, endtime: 40899, seqnum: 0, connid: 0","0"
"10:46:34.0163952 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 101, startime: 40897, endtime: 40899, seqnum: 0, connid: 0","0"
"10:46:34.0164247 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000495","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0164268 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 323, seqnum: 0, connid: 0","0"
"10:46:34.0164481 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:34.0165271 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000093","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:34 AM, LastWriteTime: 3/26/2020 10:46:34 AM, ChangeTime: 3/26/2020 10:46:34 AM, FileAttributes: A","7760"
"10:46:34.0165659 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000171","","7760"
"10:46:34.0177392 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0001417","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0179918 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000162","Attributes: A, ReparseTag: 0x0","7760"
"10:46:34.0180528 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000261","Delete: True","7760"
"10:46:34.0181049 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0002449","","7760"
"10:46:34.0184867 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000598","","7760"
"10:46:34.0190307 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0190674 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000043","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:34 AM, LastWriteTime: 3/26/2020 10:46:34 AM, ChangeTime: 3/26/2020 10:46:34 AM, FileAttributes: A","7760"
"10:46:34.0190832 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000060","","7760"
"10:46:34.0192206 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000269","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0192646 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000038","Attributes: A, ReparseTag: 0x0","7760"
"10:46:34.0192816 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000103","Delete: True","7760"
"10:46:34.0193034 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000951","","7760"
"10:46:34.0194655 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","Offset: 1,073,741,826, Length: 510","7760"
"10:46:34.0194830 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Offset: 1,073,741,825, Length: 1","7760"
"10:46:34.0194984 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Offset: 1,073,741,826, Length: 510","7760"
"10:46:34.0195125 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Offset: 1,073,741,824, Length: 1","7760"
"10:46:34.0195338 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000495","","7760"
"10:46:34.0195453 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000149","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.0201260 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0201712 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","7760"
"10:46:34.0201926 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000072","","7760"
"10:46:34.0204396 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000068","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.0205527 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0205949 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","7760"
"10:46:34.0206162 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000111","","7760"
"10:46:34.0209776 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0210207 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","7760"
"10:46:34.0210425 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000072","","7760"
"10:46:34.0211381 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0211679 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40900, endtime: 40900, seqnum: 0, connid: 0","0"
"10:46:34.0212289 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000320","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","7760"
"10:46:34.0212835 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0212981 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40900, endtime: 40900, seqnum: 0, connid: 0","0"
"10:46:34.0213168 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000141","Offset: 0, Length: 100, Priority: Normal","7760"
"10:46:34.0214303 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000039","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","7760"
"10:46:34.0214559 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000022","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","7760"
"10:46:34.0214704 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Offset: 1,073,741,824, Length: 1","7760"
"10:46:34.0217217 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0217371 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:34.0217456 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40900, endtime: 40900, seqnum: 0, connid: 0","0"
"10:46:34.0217921 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0218049 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40900, endtime: 40900, seqnum: 0, connid: 0","0"
"10:46:34.0218391 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0218476 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40900, endtime: 40900, seqnum: 0, connid: 0","0"
"10:46:34.0218933 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0219026 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40900, endtime: 40900, seqnum: 0, connid: 0","0"
"10:46:34.0219722 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:34.0220131 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000099","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:34.0220494 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","Offset: 0, Length: 4,096","7760"
"10:46:34.0222555 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:34.0223694 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0001058","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","7760"
"10:46:34.0227167 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:34.0228439 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000917","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","7760"
"10:46:34.0229582 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000043","Exclusive: True, Offset: 128, Length: 1, Fail Immediately: True","7760"
"10:46:34.0229800 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000252","EndOfFile: 0","7760"
"10:46:34.0230192 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000171","AllocationSize: 0","7760"
"10:46:34.0230495 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Offset: 128, Length: 1","7760"
"10:46:34.0230619 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Exclusive: False, Offset: 128, Length: 1, Fail Immediately: True","7760"
"10:46:34.0230743 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:34.0230871 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7760"
"10:46:34.0230977 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000013","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:34.0231152 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000610","EndOfFile: 32,768","7760"
"10:46:34.0231886 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000162","AllocationSize: 32,768","7760"
"10:46:34.0232232 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7760"
"10:46:34.0232385 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000022","AllocationSize: 32,768, EndOfFile: 32,768, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:34.0232629 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","SyncType: SyncTypeOther","7760"
"10:46:34.0233102 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000098","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7760"
"10:46:34.0233405 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000021","Exclusive: True, Offset: 121, Length: 2, Fail Immediately: True","7760"
"10:46:34.0233584 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Exclusive: True, Offset: 124, Length: 4, Fail Immediately: True","7760"
"10:46:34.0233712 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000026","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:34.0233862 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Offset: 121, Length: 2","7760"
"10:46:34.0233964 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000013","Offset: 124, Length: 4","7760"
"10:46:34.0234062 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000009","Offset: 120, Length: 1","7760"
"10:46:34.0234156 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:34.0234297 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:34.0234455 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000042","Offset: 0, Length: 4,096","7760"
"10:46:34.0237130 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000026","Offset: 123, Length: 1","7760"
"10:46:34.0240364 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0240680 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","7760"
"10:46:34.0240821 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000059","","7760"
"10:46:34.0242847 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0243099 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000026","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:34 AM, LastWriteTime: 3/26/2020 10:46:34 AM, ChangeTime: 3/26/2020 10:46:34 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","7760"
"10:46:34.0243214 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000039","","7760"
"10:46:34.0244285 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000137","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0244558 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000030","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,782, SectorsPerAllocationUnit: 8, BytesPerSector: 512","7760"
"10:46:34.0244695 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000034","","7760"
"10:46:34.0246013 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:34.0246162 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000035","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:34.0246410 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000094","Offset: 20,480, Length: 4,096","7760"
"10:46:34.0246670 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000077","Offset: 1,654,784, Length: 4,096","7760"
"10:46:34.0246866 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","Offset: 12,787,712, Length: 4,096","7760"
"10:46:34.0246994 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000052","Offset: 12,378,112, Length: 4,096","7760"
"10:46:34.0247144 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Offset: 12,509,184, Length: 4,096","7760"
"10:46:34.0247280 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","Offset: 11,808,768, Length: 4,096","7760"
"10:46:34.0250045 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000051","Offset: 123, Length: 1","7760"
"10:46:34.0250301 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","7760"
"10:46:34.0250489 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Offset: 1,073,741,826, Length: 510","7760"
"10:46:34.0250642 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","7760"
"10:46:34.0251150 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000150","","7760"
"10:46:34.0256855 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000290","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0257392 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000060","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:34 AM, LastWriteTime: 3/26/2020 10:46:34 AM, ChangeTime: 3/26/2020 10:46:34 AM, FileAttributes: A","7760"
"10:46:34.0257657 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000077","","7760"
"10:46:34.0257700 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:34.0258079 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000039","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:34 AM, LastWriteTime: 3/26/2020 10:46:34 AM, ChangeTime: 3/26/2020 10:46:34 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:34.0258250 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000060","","5068"
"10:46:34.0260537 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000260","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0261002 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000043","Attributes: A, ReparseTag: 0x0","7760"
"10:46:34.0261194 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000098","Delete: True","7760"
"10:46:34.0261433 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0001020","","7760"
"10:46:34.0261953 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\idb-deleting-3870112724rsegmnoittet-es","0.0000760","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:34.0262828 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000226","","7760"
"10:46:34.0269689 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000345","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:34.0269753 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000354","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0270222 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","5068"
"10:46:34.0270350 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000056","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:34 AM, LastWriteTime: 3/26/2020 10:46:34 AM, ChangeTime: 3/26/2020 10:46:34 AM, FileAttributes: A","7760"
"10:46:34.0270423 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000085","","5068"
"10:46:34.0270585 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000077","","7760"
"10:46:34.0273892 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000456","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0274707 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000068","Attributes: A, ReparseTag: 0x0","7760"
"10:46:34.0274975 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000128","Delete: True","7760"
"10:46:34.0275278 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0001609","","7760"
"10:46:34.0275568 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0001498","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:34.0277271 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:34.0277463 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000200","","5068"
"10:46:34.0277621 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000072","Offset: 1,073,741,826, Length: 510","7760"
"10:46:34.0277872 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","Offset: 1,073,741,825, Length: 1","7760"
"10:46:34.0278043 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Offset: 1,073,741,826, Length: 510","7760"
"10:46:34.0278184 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","Offset: 1,073,741,824, Length: 1","7760"
"10:46:34.0278389 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000098","","7760"
"10:46:34.0280044 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000397","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","5068"
"10:46:34.0280859 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000145","Offset: 0, Length: 100, Priority: Normal","5068"
"10:46:34.0282305 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000060","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:34.0282604 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:34.0282792 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000025","Offset: 1,073,741,824, Length: 1","5068"
"10:46:34.0295374 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:34.0298997 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:34.0299449 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:34.0299696 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000060","Offset: 0, Length: 4,096","5068"
"10:46:34.0301928 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:34.0303366 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0001881","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","5068"
"10:46:34.0309429 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5068"
"10:46:34.0311498 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0003055","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","5068"
"10:46:34.0315018 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000073","Exclusive: True, Offset: 128, Length: 1, Fail Immediately: True","5068"
"10:46:34.0315398 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000439","EndOfFile: 0","5068"
"10:46:34.0316085 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000298","AllocationSize: 0","5068"
"10:46:34.0316699 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000043","Offset: 128, Length: 1","5068"
"10:46:34.0316904 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","Exclusive: False, Offset: 128, Length: 1, Fail Immediately: True","5068"
"10:46:34.0317092 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000051","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:34.0317305 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000026","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","5068"
"10:46:34.0317535 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000034","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:34.0317753 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000998","EndOfFile: 32,768","5068"
"10:46:34.0318977 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000286","AllocationSize: 32,768","5068"
"10:46:34.0319571 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","5068"
"10:46:34.0319822 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000047","AllocationSize: 32,768, EndOfFile: 32,768, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:34.0320245 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000034","SyncType: SyncTypeOther","5068"
"10:46:34.0321260 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000145","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5068"
"10:46:34.0321738 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000038","Exclusive: True, Offset: 121, Length: 2, Fail Immediately: True","5068"
"10:46:34.0321909 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000025","Exclusive: True, Offset: 124, Length: 4, Fail Immediately: True","5068"
"10:46:34.0322118 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000038","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:34.0322348 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000026","Offset: 121, Length: 2","5068"
"10:46:34.0322510 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Offset: 124, Length: 4","5068"
"10:46:34.0322660 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Offset: 120, Length: 1","5068"
"10:46:34.0322826 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000047","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:34.0323103 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000039","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:34.0323453 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000145","Offset: 0, Length: 4,096","5068"
"10:46:34.0327797 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0328915 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40901, endtime: 40901, seqnum: 0, connid: 0","0"
"10:46:34.0332891 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0333143 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000303","Offset: 123, Length: 1","5068"
"10:46:34.0334436 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40901, endtime: 40901, seqnum: 0, connid: 0","0"
"10:46:34.0336650 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0337047 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40901, endtime: 40901, seqnum: 0, connid: 0","0"
"10:46:34.0339138 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0339364 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40901, endtime: 40901, seqnum: 0, connid: 0","0"
"10:46:34.0342448 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:34.0342841 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","5068"
"10:46:34.0343003 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","","5068"
"10:46:34.0345256 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:34.0345508 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000042","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:34 AM, LastWriteTime: 3/26/2020 10:46:34 AM, ChangeTime: 3/26/2020 10:46:34 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","5068"
"10:46:34.0345640 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000038","","5068"
"10:46:34.0346847 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000145","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:34.0347129 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000034","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,782, SectorsPerAllocationUnit: 8, BytesPerSector: 512","5068"
"10:46:34.0347261 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000039","","5068"
"10:46:34.0347824 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000039","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:34.0348004 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:34.0348375 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000021","Offset: 123, Length: 1","5068"
"10:46:34.0348887 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000021","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:34.0349049 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:34.0349267 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","Offset: 8,192, Length: 4,096","5068"
"10:46:34.0349523 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Offset: 123, Length: 1","5068"
"10:46:34.0349753 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:34.0349855 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000022","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:34.0350000 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","Offset: 12,288, Length: 4,096","5068"
"10:46:34.0350278 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000013","Offset: 123, Length: 1","5068"
"10:46:34.0350530 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000012","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","5068"
"10:46:34.0350623 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000022","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","5068"
"10:46:34.0350751 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","Offset: 16,384, Length: 4,096","5068"
"10:46:34.0351080 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Offset: 123, Length: 1","5068"
"10:46:34.0351263 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5068"
"10:46:34.0351357 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Offset: 1,073,741,826, Length: 510","5068"
"10:46:34.0351447 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5068"
"10:46:34.0351780 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000085","","5068"
"10:46:34.0354242 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:34.0354532 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:34 AM, LastWriteTime: 3/26/2020 10:46:34 AM, ChangeTime: 3/26/2020 10:46:34 AM, FileAttributes: A","5068"
"10:46:34.0354651 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000051","","5068"
"10:46:34.0356217 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000290","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:34.0356644 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000042","Attributes: A, ReparseTag: 0x0","5068"
"10:46:34.0356806 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000089","Delete: True","5068"
"10:46:34.0356998 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000798","","5068"
"10:46:34.0358124 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000231","","5068"
"10:46:34.0360748 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:34.0361021 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000030","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:34 AM, LastWriteTime: 3/26/2020 10:46:34 AM, ChangeTime: 3/26/2020 10:46:34 AM, FileAttributes: A","5068"
"10:46:34.0361141 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000042","","5068"
"10:46:34.0362306 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000243","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5068"
"10:46:34.0362672 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000039","Attributes: A, ReparseTag: 0x0","5068"
"10:46:34.0362818 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000068","Delete: True","5068"
"10:46:34.0362988 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000704","","5068"
"10:46:34.0364029 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","Offset: 1,073,741,826, Length: 510","5068"
"10:46:34.0364136 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000013","Offset: 1,073,741,825, Length: 1","5068"
"10:46:34.0364230 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000008","Offset: 1,073,741,826, Length: 510","5068"
"10:46:34.0364315 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000009","Offset: 1,073,741,824, Length: 1","5068"
"10:46:34.0364430 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000137","","5068"
"10:46:34.0372025 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0372375 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","7760"
"10:46:34.0372528 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000060","","7760"
"10:46:34.0375263 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0098061","Offset: 36,864, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:34.0375639 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0375929 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, FileAttributes: A","7760"
"10:46:34.0376104 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","","7760"
"10:46:34.0379014 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0379300 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","7760"
"10:46:34.0379487 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000052","","7760"
"10:46:34.0380721 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000234","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","7760"
"10:46:34.0381258 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000094","Offset: 0, Length: 100, Priority: Normal","7760"
"10:46:34.0382154 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","7760"
"10:46:34.0382295 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","7760"
"10:46:34.0382423 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Offset: 1,073,741,824, Length: 1","7760"
"10:46:34.0384509 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-journal","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:34.0386732 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:34.0387240 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000038","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:34.0387445 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","Offset: 0, Length: 4,096","7760"
"10:46:34.0389608 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:34.0390743 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0001024","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","7760"
"10:46:34.0394062 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7760"
"10:46:34.0395385 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000900","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","7760"
"10:46:34.0396533 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000047","Exclusive: True, Offset: 128, Length: 1, Fail Immediately: True","7760"
"10:46:34.0396755 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000256","EndOfFile: 0","7760"
"10:46:34.0397220 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000175","AllocationSize: 0","7760"
"10:46:34.0397531 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000022","Offset: 128, Length: 1","7760"
"10:46:34.0397655 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Exclusive: False, Offset: 128, Length: 1, Fail Immediately: True","7760"
"10:46:34.0397779 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:34.0397907 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000012","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7760"
"10:46:34.0398009 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:34.0398146 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000588","EndOfFile: 32,768","7760"
"10:46:34.0398939 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000171","AllocationSize: 32,768","7760"
"10:46:34.0399289 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7760"
"10:46:34.0399451 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000026","AllocationSize: 32,768, EndOfFile: 32,768, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:34.0399694 AM","firefox.exe","7384","CreateFileMapping","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000013","SyncType: SyncTypeOther","7760"
"10:46:34.0400159 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000103","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7760"
"10:46:34.0400462 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000022","Exclusive: True, Offset: 121, Length: 2, Fail Immediately: True","7760"
"10:46:34.0400573 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000013","Exclusive: True, Offset: 124, Length: 4, Fail Immediately: True","7760"
"10:46:34.0400697 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000021","AllocationSize: 0, EndOfFile: 0, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:34.0400842 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Offset: 121, Length: 2","7760"
"10:46:34.0400945 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000012","Offset: 124, Length: 4","7760"
"10:46:34.0401043 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000008","Offset: 120, Length: 1","7760"
"10:46:34.0401201 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:34.0401346 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000021","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:34.0401508 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000042","Offset: 0, Length: 4,096","7760"
"10:46:34.0403790 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000026","Offset: 123, Length: 1","7760"
"10:46:34.0408061 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0408415 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000035","CreationTime: 6/19/2019 4:53:49 PM, LastAccessTime: 6/19/2019 4:53:49 PM, LastWriteTime: 3/25/2020 10:46:06 AM, ChangeTime: 3/25/2020 10:46:06 AM, AllocationSize: 15794176, EndOfFile: 15794176, FileAttributes: A","7760"
"10:46:34.0408556 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000064","","7760"
"10:46:34.0410852 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0411116 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000030","CreationTime: 6/19/2019 4:53:48 PM, LastAccessTime: 3/26/2020 10:46:34 AM, LastWriteTime: 3/26/2020 10:46:34 AM, ChangeTime: 3/26/2020 10:46:34 AM, AllocationSize: 8192, EndOfFile: 8192, FileAttributes: D","7760"
"10:46:34.0411236 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000038","","7760"
"10:46:34.0412482 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000149","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0412767 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000035","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,782, SectorsPerAllocationUnit: 8, BytesPerSector: 512","7760"
"10:46:34.0412904 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb","0.0000038","","7760"
"10:46:34.0413655 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000030","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","7760"
"10:46:34.0413817 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","AllocationSize: 15,794,176, EndOfFile: 15,794,176, NumberOfLinks: 1, DeletePending: False, Directory: False","7760"
"10:46:34.0413954 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","7760"
"10:46:34.0415076 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000102","Offset: 24,576, Length: 4,096","7760"
"10:46:34.0415336 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000077","Offset: 823,296, Length: 4,096","7760"
"10:46:34.0415528 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","Offset: 12,824,576, Length: 4,096","7760"
"10:46:34.0415673 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000026","Offset: 20,480, Length: 4,096","7760"
"10:46:34.0415810 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000025","Offset: 1,654,784, Length: 4,096","7760"
"10:46:34.0415985 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000046","Offset: 6,844,416, Length: 4,096","7760"
"10:46:34.0416211 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000051","Offset: 9,965,568, Length: 4,096","7760"
"10:46:34.0416377 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","Offset: 6,750,208, Length: 4,096","7760"
"10:46:34.0416599 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000034","Offset: 151,552, Length: 4,096","7760"
"10:46:34.0416740 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000200","Offset: 3,231,744, Length: 4,096","7760"
"10:46:34.0417051 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000145","Offset: 12,726,272, Length: 4,096","7760"
"10:46:34.0417299 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000042","Offset: 667,648, Length: 4,096","7760"
"10:46:34.0418041 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000043","Offset: 614,400, Length: 4,096","7760"
"10:46:34.0418186 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","Offset: 622,592, Length: 4,096","7760"
"10:46:34.0418327 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000030","Offset: 675,840, Length: 4,096","7760"
"10:46:34.0424851 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000051","Offset: 120, Length: 1","7760"
"10:46:34.0425077 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000017","Offset: 123, Length: 1","7760"
"10:46:34.0427748 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000055","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","7760"
"10:46:34.0427995 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000047","Offset: 1,073,741,826, Length: 510","7760"
"10:46:34.0428204 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","7760"
"10:46:34.0428840 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000171","","7760"
"10:46:34.0433077 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0433576 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000060","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:34 AM, LastWriteTime: 3/26/2020 10:46:34 AM, ChangeTime: 3/26/2020 10:46:34 AM, FileAttributes: A","7760"
"10:46:34.0433926 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000090","","7760"
"10:46:34.0436661 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000367","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0437262 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000056","Attributes: A, ReparseTag: 0x0","7760"
"10:46:34.0437476 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0000128","Delete: True","7760"
"10:46:34.0437740 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-shm","0.0002065","","7760"
"10:46:34.0440701 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000487","","7760"
"10:46:34.0445779 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000341","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0446321 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000059","CreationTime: 3/26/2020 10:46:23 AM, LastAccessTime: 3/26/2020 10:46:34 AM, LastWriteTime: 3/26/2020 10:46:34 AM, ChangeTime: 3/26/2020 10:46:34 AM, FileAttributes: A","7760"
"10:46:34.0446542 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000077","","7760"
"10:46:34.0448974 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0001805","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7760"
"10:46:34.0451846 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000422","Attributes: A, ReparseTag: 0x0","7760"
"10:46:34.0453062 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0000593","Delete: True","7760"
"10:46:34.0454231 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite-wal","0.0003729","","7760"
"10:46:34.0458958 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000052","Offset: 1,073,741,826, Length: 510","7760"
"10:46:34.0459133 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000022","Offset: 1,073,741,825, Length: 1","7760"
"10:46:34.0459283 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Offset: 1,073,741,826, Length: 510","7760"
"10:46:34.0459419 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000017","Offset: 1,073,741,824, Length: 1","7760"
"10:46:34.0459744 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\3870112724rsegmnoittet-es.sqlite","0.0000294","","7760"
"10:46:34.0474587 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0110904","Offset: 69,632, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:34.0476866 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 60, startime: 40900, endtime: 40903, seqnum: 0, connid: 0","0"
"10:46:34.0477083 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 109, startime: 40900, endtime: 40903, seqnum: 0, connid: 0","0"
"10:46:34.0502854 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 195, seqnum: 0, connid: 0","0"
"10:46:34.0503195 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:34.0506476 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0506779 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40903, endtime: 40903, seqnum: 0, connid: 0","0"
"10:46:34.0507381 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0507522 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40903, endtime: 40903, seqnum: 0, connid: 0","0"
"10:46:34.0507769 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0507859 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40903, endtime: 40903, seqnum: 0, connid: 0","0"
"10:46:34.0508140 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0508221 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40903, endtime: 40903, seqnum: 0, connid: 0","0"
"10:46:34.0508597 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0508674 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40903, endtime: 40903, seqnum: 0, connid: 0","0"
"10:46:34.0509659 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0509775 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40903, endtime: 40903, seqnum: 0, connid: 0","0"
"10:46:34.0510120 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0510218 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40903, endtime: 40903, seqnum: 0, connid: 0","0"
"10:46:34.0510534 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0510628 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40903, endtime: 40903, seqnum: 0, connid: 0","0"
"10:46:34.0510888 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0510982 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40903, endtime: 40903, seqnum: 0, connid: 0","0"
"10:46:34.0511247 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0511366 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40903, endtime: 40903, seqnum: 0, connid: 0","0"
"10:46:34.0514860 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0514976 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40903, endtime: 40903, seqnum: 0, connid: 0","0"
"10:46:34.0515151 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0515215 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40903, endtime: 40903, seqnum: 0, connid: 0","0"
"10:46:34.0515419 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0515479 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40903, endtime: 40903, seqnum: 0, connid: 0","0"
"10:46:34.0515637 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0515692 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40903, endtime: 40903, seqnum: 0, connid: 0","0"
"10:46:34.0515859 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0515919 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40903, endtime: 40903, seqnum: 0, connid: 0","0"
"10:46:34.0516226 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0516290 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40903, endtime: 40903, seqnum: 0, connid: 0","0"
"10:46:34.0586873 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0005645","Offset: 102,400, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:34.0593192 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0019247","Offset: 135,168, Length: 57,344, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:34.0624390 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000120","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:34.0624770 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000119","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:32:49 PM, ChangeTime: 3/20/2019 7:10:28 PM, FileAttributes: A, AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x300000006228d, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:34.0628708 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000303","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.0629600 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000102","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.0629967 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000772","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.0630914 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.0631242 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:34.0633457 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000328","","2512"
"10:46:34.0636350 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0001079","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.0638184 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000060","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.0638474 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.0638684 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.0639033 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:34.0639703 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000098","","2512"
"10:46:34.0643676 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000273","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.0644256 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.0644529 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.0644738 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.0645079 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","SyncType: SyncTypeOther","2512"
"10:46:34.0647264 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0005052","Offset: 32,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:34.0653698 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000200","","2512"
"10:46:34.0712962 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000226","","2512"
"10:46:34.0714165 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000077","","2512"
"10:46:34.0717476 AM","firefox.exe","7384","TCP Connect","LAPTOP-49TAGD3F.lan1:49766 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65700, rcvwinscale: 8, sndwinscale: 7, seqnum: 0, connid: 0","0"
"10:46:34.0723385 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.0724013 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000051","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:34.0724264 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000073","","2512"
"10:46:34.0728813 AM","firefox.exe","7384","TCP Connect","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65700, rcvwinscale: 8, sndwinscale: 7, seqnum: 0, connid: 0","0"
"10:46:34.0729188 AM","firefox.exe","7384","TCP Connect","LAPTOP-49TAGD3F.lan1:49769 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65700, rcvwinscale: 8, sndwinscale: 7, seqnum: 0, connid: 0","0"
"10:46:34.0730063 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.0730664 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:34.0730912 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000077","","2512"
"10:46:34.0734236 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.0734701 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000042","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:34.0734931 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000060","","2512"
"10:46:34.0735533 AM","firefox.exe","7384","CreateFile","C:\","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.0735874 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000179","Filter: Windows, 1: Windows","2512"
"10:46:34.0736211 AM","firefox.exe","7384","CloseFile","C:\","0.0000060","","2512"
"10:46:34.0748196 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000312","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.0748866 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000316","Filter: System32, 1: System32","2512"
"10:46:34.0749451 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000093","","2512"
"10:46:34.0751793 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000252","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.0752271 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wbemcomn.dll","0.0000286","Filter: wbemcomn.dll, 1: wbemcomn.dll","2512"
"10:46:34.0752770 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000085","","2512"
"10:46:34.0754763 AM","firefox.exe","7384","TCP Connect","LAPTOP-49TAGD3F.lan1:49768 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65700, rcvwinscale: 8, sndwinscale: 7, seqnum: 0, connid: 0","0"
"10:46:34.0755300 AM","firefox.exe","7384","TCP Connect","LAPTOP-49TAGD3F.lan1:49771 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65700, rcvwinscale: 8, sndwinscale: 7, seqnum: 0, connid: 0","0"
"10:46:34.0755535 AM","firefox.exe","7384","TCP Connect","LAPTOP-49TAGD3F.lan1:49770 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65700, rcvwinscale: 8, sndwinscale: 7, seqnum: 0, connid: 0","0"
"10:46:34.0761653 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.0762306 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000051","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:34.0762519 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000077","","2512"
"10:46:34.0763164 AM","firefox.exe","7384","CreateFile","C:\","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.0763488 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000183","Filter: Windows, 1: Windows","2512"
"10:46:34.0764960 AM","firefox.exe","7384","CloseFile","C:\","0.0000094","","2512"
"10:46:34.0766731 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000153","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.0767076 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000158","Filter: System32, 1: System32","2512"
"10:46:34.0767405 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:34.0768779 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.0769090 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wbem","0.0000201","Filter: wbem, 1: wbem","2512"
"10:46:34.0769448 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000052","","2512"
"10:46:34.0770963 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem","0.0000162","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.0771313 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wbem\wbemprox.dll","0.0000149","Filter: wbemprox.dll, 1: wbemprox.dll","2512"
"10:46:34.0771667 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem","0.0000051","","2512"
"10:46:34.0776104 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.0776663 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000056","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:34.0781126 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0068084","","2512"
"10:46:34.0814658 AM","firefox.exe","7384","ReadFile","C:","0.0198234","Offset: 364,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:34.0843727 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0844119 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40906, endtime: 40906, seqnum: 0, connid: 0","0"
"10:46:34.0844896 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.0845097 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40906, endtime: 40906, seqnum: 0, connid: 0","0"
"10:46:34.0850187 AM","firefox.exe","7384","CreateFile","C:\","0.0000281","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.0850712 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000285","Filter: Windows, 1: Windows","2512"
"10:46:34.0851206 AM","firefox.exe","7384","CloseFile","C:\","0.0000082","","2512"
"10:46:34.0852909 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000175","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.0853289 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000157","Filter: System32, 1: System32","2512"
"10:46:34.0854266 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000081","","2512"
"10:46:34.0857193 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000175","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.0857560 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wbem","0.0000371","Filter: wbem, 1: wbem","2512"
"10:46:34.0858114 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000060","","2512"
"10:46:34.0861276 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem","0.0000196","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.0861677 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wbem\wbemprox.dll","0.0000200","Filter: wbemprox.dll, 1: wbemprox.dll","2512"
"10:46:34.0862099 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem","0.0000073","","2512"
"10:46:34.0863981 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000196","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.0864600 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000055","AllocationSize: 45,056, EndOfFile: 43,520, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.0864890 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\wbemprox.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.0865107 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000030","AllocationSize: 45,056, EndOfFile: 43,520, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.0865449 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\wbemprox.dll","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:34.0866208 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000081","","2512"
"10:46:34.0877045 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000222","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.0877728 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000047","AllocationSize: 45,056, EndOfFile: 43,520, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.0877997 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\wbemprox.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.0878197 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000030","AllocationSize: 45,056, EndOfFile: 43,520, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.0878590 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\wbemprox.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:34.0879302 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000086","","2512"
"10:46:34.0887008 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.0887401 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000042","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:34.0887601 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000060","","2512"
"10:46:34.0890584 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.0890938 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000038","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:34.0891117 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000055","","2512"
"10:46:34.0892708 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000175","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.0893289 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000038","AllocationSize: 45,056, EndOfFile: 43,520, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.0893532 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\wbemprox.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.0893720 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000029","AllocationSize: 45,056, EndOfFile: 43,520, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.0894040 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\wbemprox.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:34.0904984 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000081","AllocationSize: 45,056, EndOfFile: 43,520, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.0905368 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\wbemprox.dll","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.0905589 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000035","AllocationSize: 45,056, EndOfFile: 43,520, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.0905935 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\wbemprox.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:34.0906592 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\wbem\wbemprox.dll","0.0285940","Offset: 0, Length: 43,520, Priority: Normal","2512"
"10:46:34.0907228 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\wbem\wbemprox.dll","0.0217331","Offset: 32,768, Length: 10,752, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2512"
"10:46:34.1017125 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7F347B9AF978EDEA2F853A5A2889171EF0D32C03","0.0163230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:34.1026106 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49766 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 517, startime: 40905, endtime: 40908, seqnum: 0, connid: 0","0"
"10:46:34.1026434 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 517, startime: 40905, endtime: 40908, seqnum: 0, connid: 0","0"
"10:46:34.1026669 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.1026823 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.1026929 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 204, seqnum: 0, connid: 0","0"
"10:46:34.1027049 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49766 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.1027177 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49766 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.1027279 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49766 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 204, seqnum: 0, connid: 0","0"
"10:46:34.1028683 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49769 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 517, startime: 40906, endtime: 40908, seqnum: 0, connid: 0","0"
"10:46:34.1029323 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49771 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 517, startime: 40906, endtime: 40908, seqnum: 0, connid: 0","0"
"10:46:34.1034946 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000086","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.1035241 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.1035463 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.1039793 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000295","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1040544 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000098","Offset: 24, Length: 16","2884"
"10:46:34.1041218 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49768 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 517, startime: 40906, endtime: 40908, seqnum: 0, connid: 0","0"
"10:46:34.1041538 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49770 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 517, startime: 40906, endtime: 40908, seqnum: 0, connid: 0","0"
"10:46:34.1041713 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49771 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.1043736 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1044290 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.1044683 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.1045950 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.1046163 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.1046334 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000073","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.1050341 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000251","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1050938 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000077","Offset: 24, Length: 16","2884"
"10:46:34.1054036 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000285","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1054637 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.1055000 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.1057368 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.1057594 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.1057786 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.1060994 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1061442 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000256","Offset: 24, Length: 16","2884"
"10:46:34.1063000 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49771 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.1063320 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49770 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 2920, seqnum: 0, connid: 0","0"
"10:46:34.1063516 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49768 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 2920, seqnum: 0, connid: 0","0"
"10:46:34.1063653 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49768 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 204, seqnum: 0, connid: 0","0"
"10:46:34.1063759 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49771 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 204, seqnum: 0, connid: 0","0"
"10:46:34.1063862 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49770 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 204, seqnum: 0, connid: 0","0"
"10:46:34.1064002 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49769 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 2920, seqnum: 0, connid: 0","0"
"10:46:34.1064578 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000244","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1065129 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.1065466 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.1065500 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49769 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 204, seqnum: 0, connid: 0","0"
"10:46:34.1067249 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.1067450 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.1067625 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.1071068 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1071614 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000077","Offset: 24, Length: 16","2884"
"10:46:34.1074742 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000298","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1075365 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000059","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.1075740 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000431","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.1079260 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:34.1079478 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:34.1079670 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","8316"
"10:46:34.1084218 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:34.1084815 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000081","Offset: 24, Length: 16","8316"
"10:46:34.1088442 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:34.1089052 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:34.1089453 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","8316"
"10:46:34.1094573 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0268139","Offset: 34,603,008, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:34.1100150 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000072","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:34.1100564 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:34.1101946 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000098","Offset: 1,073,741,824, Length: 1","8316"
"10:46:34.1105991 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:34.1106618 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000085","Offset: 24, Length: 16","8316"
"10:46:34.1111670 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:34.1112374 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000068","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:34.1112860 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 1,073,741,826, Length: 510","8316"
"10:46:34.1116935 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000192","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.1117643 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000115","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.1118309 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000094","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.1137278 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000606","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1138315 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000094","Offset: 24, Length: 16","2884"
"10:46:34.1141643 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1142206 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.1142603 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.1144327 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 4692","2884"
"10:46:34.1145376 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000120","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.1165003 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000158","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.1168284 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000073","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.1168600 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.1168941 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.1181238 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7F347B9AF978EDEA2F853A5A2889171EF0D32C03","0.0000196","CreationTime: 3/26/2020 10:25:12 AM, LastAccessTime: 3/26/2020 10:25:12 AM, LastWriteTime: 3/26/2020 10:35:23 AM, ChangeTime: 3/26/2020 10:35:23 AM, AllocationSize: 53248, EndOfFile: 51850, FileAttributes: A","6572"
"10:46:34.1181357 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0002266","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1184318 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1184724 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000196","Offset: 24, Length: 16","2884"
"10:46:34.1184826 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40910, endtime: 40910, seqnum: 0, connid: 0","0"
"10:46:34.1187949 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1188316 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40910, endtime: 40910, seqnum: 0, connid: 0","0"
"10:46:34.1191107 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7F347B9AF978EDEA2F853A5A2889171EF0D32C03","0.0000196","","6572"
"10:46:34.1191512 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000422","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1192562 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000081","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.1193120 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.1195570 AM","firefox.exe","7384","ReadFile","C:","0.0269393","Offset: 950,272, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:34.1196163 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 7532","2884"
"10:46:34.1197276 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000073","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","4692"
"10:46:34.1197507 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","4692"
"10:46:34.1197673 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","4692"
"10:46:34.1201701 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","4692"
"10:46:34.1202366 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000086","Offset: 24, Length: 16","4692"
"10:46:34.1205472 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000210","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","4692"
"10:46:34.1205967 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","4692"
"10:46:34.1206300 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000073","Offset: 1,073,741,826, Length: 510","4692"
"10:46:34.1206356 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000234","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1206834 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0001693","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:34.1208404 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","7532"
"10:46:34.1208630 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","7532"
"10:46:34.1208822 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,824, Length: 1","7532"
"10:46:34.1209978 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000213","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:34.1211348 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000141","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1211689 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000047","Information: DACL","2512"
"10:46:34.1211860 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000068","","2512"
"10:46:34.1212466 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7532"
"10:46:34.1212995 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000076","Offset: 24, Length: 16","7532"
"10:46:34.1213174 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000153","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:34.1214258 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000123","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1214518 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:34.1214642 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000042","","2512"
"10:46:34.1216092 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7532"
"10:46:34.1216604 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","7532"
"10:46:34.1217014 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 1,073,741,826, Length: 510","7532"
"10:46:34.1219211 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","4692"
"10:46:34.1219480 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","4692"
"10:46:34.1219702 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000132","Offset: 1,073,741,824, Length: 1","4692"
"10:46:34.1223691 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","4692"
"10:46:34.1224263 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000094","Offset: 24, Length: 16","4692"
"10:46:34.1224728 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000247","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:34.1226763 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","4692"
"10:46:34.1227053 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000290","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:34.1227160 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","4692"
"10:46:34.1227425 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","4692"
"10:46:34.1229208 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000226","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1229741 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000043","Information: DACL","2512"
"10:46:34.1229835 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","7532"
"10:46:34.1229963 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000064","","2512"
"10:46:34.1230040 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","7532"
"10:46:34.1230223 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,824, Length: 1","7532"
"10:46:34.1231768 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000201","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:34.1233163 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000196","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1233530 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000026","Information: DACL","2512"
"10:46:34.1233679 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000060","","2512"
"10:46:34.1234221 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7532"
"10:46:34.1234708 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000068","Offset: 24, Length: 16","7532"
"10:46:34.1237861 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7532"
"10:46:34.1238403 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","7532"
"10:46:34.1238821 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 1,073,741,826, Length: 510","7532"
"10:46:34.1240613 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.1240856 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.1241035 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000081","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.1241061 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.1243621 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1244086 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000072","Offset: 24, Length: 16","2884"
"10:46:34.1246936 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1247324 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.1247576 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.1248762 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000077","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.1248920 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 6432","2884"
"10:46:34.1253485 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","6432"
"10:46:34.1253741 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","6432"
"10:46:34.1253933 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,824, Length: 1","6432"
"10:46:34.1256933 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1257278 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40910, endtime: 40910, seqnum: 0, connid: 0","0"
"10:46:34.1257359 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000099","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.1257743 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000325","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6432"
"10:46:34.1258678 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000119","Offset: 24, Length: 16","6432"
"10:46:34.1258908 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1259100 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40910, endtime: 40910, seqnum: 0, connid: 0","0"
"10:46:34.1262898 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6432"
"10:46:34.1263367 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","6432"
"10:46:34.1263661 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000035","Offset: 1,073,741,826, Length: 510","6432"
"10:46:34.1266674 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000102","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.1266725 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","6432"
"10:46:34.1266942 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","6432"
"10:46:34.1267126 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","6432"
"10:46:34.1269793 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6432"
"10:46:34.1270241 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","6432"
"10:46:34.1272382 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6432"
"10:46:34.1272848 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","6432"
"10:46:34.1273121 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","6432"
"10:46:34.1275250 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.1275463 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.1275642 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.1276598 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1276969 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40911, endtime: 40911, seqnum: 0, connid: 0","0"
"10:46:34.1278437 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1278629 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40911, endtime: 40911, seqnum: 0, connid: 0","0"
"10:46:34.1279115 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1279760 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000081","Offset: 24, Length: 16","2884"
"10:46:34.1283403 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0001003","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1286172 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000380","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.1288549 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000311","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.1297406 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 8252","2884"
"10:46:34.1303597 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000167","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.1307454 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000073","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8252"
"10:46:34.1307745 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8252"
"10:46:34.1307966 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,824, Length: 1","8252"
"10:46:34.1312105 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000085","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.1313906 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000298","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8252"
"10:46:34.1314618 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000090","Offset: 24, Length: 16","8252"
"10:46:34.1319120 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8252"
"10:46:34.1319717 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8252"
"10:46:34.1320045 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 1,073,741,826, Length: 510","8252"
"10:46:34.1323194 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1323570 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40911, endtime: 40911, seqnum: 0, connid: 0","0"
"10:46:34.1324837 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000077","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8252"
"10:46:34.1325072 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1325114 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8252"
"10:46:34.1325298 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40911, endtime: 40911, seqnum: 0, connid: 0","0"
"10:46:34.1325319 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,824, Length: 1","8252"
"10:46:34.1330503 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8252"
"10:46:34.1331036 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000090","Offset: 24, Length: 16","8252"
"10:46:34.1334317 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8252"
"10:46:34.1334872 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8252"
"10:46:34.1335184 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 1,073,741,826, Length: 510","8252"
"10:46:34.1338665 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000090","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.1339011 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.1339228 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.1346371 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1347391 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000183","Offset: 24, Length: 16","2884"
"10:46:34.1351363 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000281","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1352011 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000069","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.1352383 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.1354230 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000162","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.1357148 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1357460 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40911, endtime: 40911, seqnum: 0, connid: 0","0"
"10:46:34.1362196 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1362541 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40911, endtime: 40911, seqnum: 0, connid: 0","0"
"10:46:34.1362917 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1363032 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40911, endtime: 40911, seqnum: 0, connid: 0","0"
"10:46:34.1363527 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1363647 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40911, endtime: 40911, seqnum: 0, connid: 0","0"
"10:46:34.1363890 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1363979 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40911, endtime: 40911, seqnum: 0, connid: 0","0"
"10:46:34.1364393 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1364444 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000111","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.1364500 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40911, endtime: 40911, seqnum: 0, connid: 0","0"
"10:46:34.1364752 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1364850 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40911, endtime: 40911, seqnum: 0, connid: 0","0"
"10:46:34.1365690 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1365805 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40911, endtime: 40911, seqnum: 0, connid: 0","0"
"10:46:34.1366386 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1366501 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40911, endtime: 40911, seqnum: 0, connid: 0","0"
"10:46:34.1366919 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1367022 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40911, endtime: 40911, seqnum: 0, connid: 0","0"
"10:46:34.1367418 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1367525 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40911, endtime: 40911, seqnum: 0, connid: 0","0"
"10:46:34.1368028 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1368139 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40911, endtime: 40911, seqnum: 0, connid: 0","0"
"10:46:34.1368344 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1368442 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40911, endtime: 40911, seqnum: 0, connid: 0","0"
"10:46:34.1368720 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1368818 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40911, endtime: 40911, seqnum: 0, connid: 0","0"
"10:46:34.1369074 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1369172 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40911, endtime: 40911, seqnum: 0, connid: 0","0"
"10:46:34.1369684 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1369791 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40911, endtime: 40911, seqnum: 0, connid: 0","0"
"10:46:34.1372427 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1372641 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40911, endtime: 40911, seqnum: 0, connid: 0","0"
"10:46:34.1373656 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1373780 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40911, endtime: 40912, seqnum: 0, connid: 0","0"
"10:46:34.1377778 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1377983 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40911, endtime: 40912, seqnum: 0, connid: 0","0"
"10:46:34.1378593 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1378716 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40912, endtime: 40912, seqnum: 0, connid: 0","0"
"10:46:34.1378960 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1379062 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40912, endtime: 40912, seqnum: 0, connid: 0","0"
"10:46:34.1379907 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1380026 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40912, endtime: 40912, seqnum: 0, connid: 0","0"
"10:46:34.1380453 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1380555 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40912, endtime: 40912, seqnum: 0, connid: 0","0"
"10:46:34.1381046 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1381153 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40912, endtime: 40912, seqnum: 0, connid: 0","0"
"10:46:34.1381366 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1381460 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40912, endtime: 40912, seqnum: 0, connid: 0","0"
"10:46:34.1381925 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1382032 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40912, endtime: 40912, seqnum: 0, connid: 0","0"
"10:46:34.1463943 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0296457","Offset: 35,651,584, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:34.1468803 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\69852764590870F506F66E4FAFC263C8630728D2","0.0028361","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:34.1497535 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\69852764590870F506F66E4FAFC263C8630728D2","0.0000068","CreationTime: 3/26/2020 10:25:12 AM, LastAccessTime: 3/26/2020 10:25:12 AM, LastWriteTime: 3/26/2020 10:35:23 AM, ChangeTime: 3/26/2020 10:35:23 AM, AllocationSize: 20480, EndOfFile: 18099, FileAttributes: A","6572"
"10:46:34.1497744 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\69852764590870F506F66E4FAFC263C8630728D2","0.0000119","","6572"
"10:46:34.1502249 AM","firefox.exe","7384","ReadFile","C:","0.0003371","Offset: 229,376, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:34.1508108 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B9C8559E103415356D42B7D83A7F183CA163363B","0.0000938","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:34.1509183 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B9C8559E103415356D42B7D83A7F183CA163363B","0.0000051","CreationTime: 3/26/2020 10:25:12 AM, LastAccessTime: 3/26/2020 10:25:12 AM, LastWriteTime: 3/26/2020 10:35:23 AM, ChangeTime: 3/26/2020 10:35:23 AM, AllocationSize: 24576, EndOfFile: 23800, FileAttributes: A","6572"
"10:46:34.1509345 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B9C8559E103415356D42B7D83A7F183CA163363B","0.0000064","","6572"
"10:46:34.1512221 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\09F8AAAB9AA62DCD65EEBD9FAE58BC470027FE74","0.0003827","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:34.1516167 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\09F8AAAB9AA62DCD65EEBD9FAE58BC470027FE74","0.0000034","CreationTime: 3/26/2020 10:25:12 AM, LastAccessTime: 3/26/2020 10:25:12 AM, LastWriteTime: 3/26/2020 10:35:23 AM, ChangeTime: 3/26/2020 10:35:23 AM, AllocationSize: 32768, EndOfFile: 31959, FileAttributes: A","6572"
"10:46:34.1516291 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\09F8AAAB9AA62DCD65EEBD9FAE58BC470027FE74","0.0000055","","6572"
"10:46:34.1517609 AM","firefox.exe","7384","ReadFile","C:","0.0344871","Offset: 544,768, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:34.1564521 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49760 -> 72.21.91.29:http","0.0000000","Length: 381, startime: 40911, endtime: 40913, seqnum: 0, connid: 0","0"
"10:46:34.1564799 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49760 -> 72.21.91.29:http","0.0000000","Length: 799, seqnum: 0, connid: 0","0"
"10:46:34.1566267 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1566493 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40913, endtime: 40913, seqnum: 0, connid: 0","0"
"10:46:34.1567180 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1567286 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40913, endtime: 40913, seqnum: 0, connid: 0","0"
"10:46:34.1572492 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1572713 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40913, endtime: 40913, seqnum: 0, connid: 0","0"
"10:46:34.1573204 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1573332 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40913, endtime: 40914, seqnum: 0, connid: 0","0"
"10:46:34.1574339 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000073","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:34.1574552 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:34.1574693 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","8316"
"10:46:34.1577565 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:34.1578175 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000085","Offset: 24, Length: 16","8316"
"10:46:34.1580278 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:34.1580607 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:34.1580867 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","8316"
"10:46:34.1582164 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.1582322 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.1582446 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.1584797 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1585164 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","2884"
"10:46:34.1587075 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1587391 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.1587596 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.1588684 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:34.1588867 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:34.1589016 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000018","Offset: 1,073,741,824, Length: 1","8316"
"10:46:34.1591222 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:34.1591632 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","8316"
"10:46:34.1592575 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1592810 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40914, endtime: 40914, seqnum: 0, connid: 0","0"
"10:46:34.1593108 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1593194 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40914, endtime: 40914, seqnum: 0, connid: 0","0"
"10:46:34.1593936 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:34.1594422 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000158","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:34.1594951 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 1,073,741,826, Length: 510","8316"
"10:46:34.1597089 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1597281 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40914, endtime: 40914, seqnum: 0, connid: 0","0"
"10:46:34.1602448 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1602823 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40914, endtime: 40914, seqnum: 0, connid: 0","0"
"10:46:34.1607474 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1607837 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40914, endtime: 40914, seqnum: 0, connid: 0","0"
"10:46:34.1610542 AM","firefox.exe","7384","TCP Connect","LAPTOP-49TAGD3F.lan1:49775 -> 72.21.91.29:http","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65700, rcvwinscale: 8, sndwinscale: 9, seqnum: 0, connid: 0","0"
"10:46:34.1610589 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000119","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.1610853 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.1610994 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.1614058 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1614535 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000069","Offset: 24, Length: 16","2884"
"10:46:34.1616848 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1617360 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.1617731 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.1631705 AM","firefox.exe","7384","TCP Connect","LAPTOP-49TAGD3F.lan1:49774 -> 72.21.91.29:http","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65700, rcvwinscale: 8, sndwinscale: 9, seqnum: 0, connid: 0","0"
"10:46:34.1632097 AM","firefox.exe","7384","TCP Connect","LAPTOP-49TAGD3F.lan1:49772 -> 72.21.91.29:http","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65700, rcvwinscale: 8, sndwinscale: 9, seqnum: 0, connid: 0","0"
"10:46:34.1632332 AM","firefox.exe","7384","TCP Connect","LAPTOP-49TAGD3F.lan1:49773 -> 72.21.91.29:http","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65700, rcvwinscale: 8, sndwinscale: 9, seqnum: 0, connid: 0","0"
"10:46:34.1637273 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1637925 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40914, endtime: 40914, seqnum: 0, connid: 0","0"
"10:46:34.1638343 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1638454 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40914, endtime: 40914, seqnum: 0, connid: 0","0"
"10:46:34.1638749 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1638843 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40914, endtime: 40914, seqnum: 0, connid: 0","0"
"10:46:34.1639389 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1639551 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40914, endtime: 40914, seqnum: 0, connid: 0","0"
"10:46:34.1640686 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1640835 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40914, endtime: 40914, seqnum: 0, connid: 0","0"
"10:46:34.1641292 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1641398 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40914, endtime: 40914, seqnum: 0, connid: 0","0"
"10:46:34.1650034 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1650457 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40914, endtime: 40914, seqnum: 0, connid: 0","0"
"10:46:34.1651173 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1651340 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40914, endtime: 40914, seqnum: 0, connid: 0","0"
"10:46:34.1656246 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000380","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1656899 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000081","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:29:46 PM, ChangeTime: 3/20/2019 7:10:41 PM, AllocationSize: 462848, EndOfFile: 460400, FileAttributes: A","2512"
"10:46:34.1657147 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000106","","2512"
"10:46:34.1660884 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1661196 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:32:49 PM, ChangeTime: 3/20/2019 7:10:28 PM, AllocationSize: 225280, EndOfFile: 223609, FileAttributes: A","2512"
"10:46:34.1661405 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000060","","2512"
"10:46:34.1661891 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000051","","2512"
"10:46:34.1662164 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000094","","2512"
"10:46:34.1665697 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0001830","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1668035 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000077","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:32:49 PM, ChangeTime: 3/20/2019 7:10:28 PM, AllocationSize: 225280, EndOfFile: 223609, FileAttributes: A","2512"
"10:46:34.1668628 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000141","","2512"
"10:46:34.1671120 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000201","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1672549 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000124","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.1673202 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.1673360 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.1673565 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:34.1677132 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:34.1677345 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000068","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:32:49 PM, ChangeTime: 3/20/2019 7:10:28 PM, FileAttributes: A, AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x300000006228d, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:34.1679939 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000209","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1680584 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000046","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.1680814 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.1680968 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.1681241 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:34.1682870 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000090","","2512"
"10:46:34.1685558 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000180","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1685947 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.1686113 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.1686233 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.1686420 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:34.1686843 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","","2512"
"10:46:34.1689390 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000158","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1689714 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.1689872 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.1689979 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.1690162 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:34.1691899 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000059","","2512"
"10:46:34.1723289 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000081","","2512"
"10:46:34.1723984 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","","2512"
"10:46:34.1728392 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1728831 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000038","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:34.1728963 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000047","","2512"
"10:46:34.1730917 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1731237 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:34.1731348 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000043","","2512"
"10:46:34.1733392 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1733691 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:34.1733797 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000043","","2512"
"10:46:34.1734160 AM","firefox.exe","7384","CreateFile","C:\","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1734391 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000285","Filter: Windows, 1: Windows","2512"
"10:46:34.1734800 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:34.1736063 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49760 -> 72.21.91.29:http","0.0000000","Length: 381, startime: 40913, endtime: 40915, seqnum: 0, connid: 0","0"
"10:46:34.1736503 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49760 -> 72.21.91.29:http","0.0000000","Length: 799, seqnum: 0, connid: 0","0"
"10:46:34.1738231 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1738295 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000192","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1738495 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40915, endtime: 40915, seqnum: 0, connid: 0","0"
"10:46:34.1738700 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000213","Filter: System32, 1: System32","2512"
"10:46:34.1739246 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1739374 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40915, endtime: 40915, seqnum: 0, connid: 0","0"
"10:46:34.1739865 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000115","","2512"
"10:46:34.1741857 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000755","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1743594 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wbem","0.0000281","Filter: wbem, 1: wbem","2512"
"10:46:34.1744059 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000072","","2512"
"10:46:34.1745313 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1745531 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40915, endtime: 40915, seqnum: 0, connid: 0","0"
"10:46:34.1745996 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem","0.0000200","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1746128 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1746350 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40915, endtime: 40915, seqnum: 0, connid: 0","0"
"10:46:34.1746410 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wbem\wbemprox.dll","0.0000179","Filter: wbemprox.dll, 1: wbemprox.dll","2512"
"10:46:34.1746768 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem","0.0000060","","2512"
"10:46:34.1747976 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.1748197 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.1748415 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.1749746 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1750263 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000051","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:34.1750467 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000069","","2512"
"10:46:34.1751039 AM","firefox.exe","7384","CreateFile","C:\","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1751346 AM","firefox.exe","7384","QueryDirectory","C:\WINDOWS","0.0000154","Filter: WINDOWS, 1: Windows","2512"
"10:46:34.1751671 AM","firefox.exe","7384","CloseFile","C:\","0.0000123","","2512"
"10:46:34.1751722 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1752174 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Offset: 24, Length: 16","2884"
"10:46:34.1753407 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1753719 AM","firefox.exe","7384","QueryDirectory","C:\Windows\system32","0.0000132","Filter: system32, 1: System32","2512"
"10:46:34.1753996 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000047","","2512"
"10:46:34.1754320 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1754653 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.1754892 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.1755105 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1755353 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wbem","0.0000162","Filter: wbem, 1: wbem","2512"
"10:46:34.1755630 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000043","","2512"
"10:46:34.1756684 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1756927 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wbem\wbemprox.dll","0.0000124","Filter: wbemprox.dll, 1: wbemprox.dll","2512"
"10:46:34.1757157 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem","0.0000043","","2512"
"10:46:34.1759594 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000533","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1760511 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000051","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:34.1760686 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000077","","2512"
"10:46:34.1761727 AM","firefox.exe","7384","CreateFile","C:\","0.0002304","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1762738 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1763050 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40915, endtime: 40915, seqnum: 0, connid: 0","0"
"10:46:34.1763455 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1763570 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40915, endtime: 40915, seqnum: 0, connid: 0","0"
"10:46:34.1763813 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1763895 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40915, endtime: 40915, seqnum: 0, connid: 0","0"
"10:46:34.1764479 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1764611 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40915, endtime: 40915, seqnum: 0, connid: 0","0"
"10:46:34.1765674 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1765785 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40915, endtime: 40915, seqnum: 0, connid: 0","0"
"10:46:34.1766109 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1766228 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40915, endtime: 40915, seqnum: 0, connid: 0","0"
"10:46:34.1767491 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000295","Filter: Windows, 1: Windows","2512"
"10:46:34.1768037 AM","firefox.exe","7384","CloseFile","C:\","0.0000120","","2512"
"10:46:34.1769002 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1769151 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40915, endtime: 40915, seqnum: 0, connid: 0","0"
"10:46:34.1772863 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000209","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1773516 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000192","Filter: System32, 1: System32","2512"
"10:46:34.1773861 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000060","","2512"
"10:46:34.1775265 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1775525 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wbem","0.0000214","Filter: wbem, 1: wbem","2512"
"10:46:34.1775858 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000043","","2512"
"10:46:34.1777096 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1777352 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wbem\wbemsvc.dll","0.0000132","Filter: wbemsvc.dll, 1: wbemsvc.dll","2512"
"10:46:34.1777591 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem","0.0000042","","2512"
"10:46:34.1779592 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1779976 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000042","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:34.1780099 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000052","","2512"
"10:46:34.1780479 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1780718 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000154","Filter: Windows, 1: Windows","2512"
"10:46:34.1781025 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:34.1790531 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0003350","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1794278 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000302","Filter: System32, 1: System32","2512"
"10:46:34.1794836 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000291","","2512"
"10:46:34.1797785 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000401","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1798536 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wbem","0.0000418","Filter: wbem, 1: wbem","2512"
"10:46:34.1799325 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000094","","2512"
"10:46:34.1801066 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1801339 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wbem\wbemsvc.dll","0.0000124","Filter: wbemsvc.dll, 1: wbemsvc.dll","2512"
"10:46:34.1801578 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem","0.0000042","","2512"
"10:46:34.1802824 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000140","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1803272 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000038","AllocationSize: 65,536, EndOfFile: 62,976, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.1803468 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\wbemsvc.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.1803600 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000022","AllocationSize: 65,536, EndOfFile: 62,976, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.1803805 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\wbemsvc.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:34.1804701 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000060","","2512"
"10:46:34.1807931 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000209","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1808626 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000052","AllocationSize: 65,536, EndOfFile: 62,976, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.1808882 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\wbemsvc.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.1810401 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 80, startime: 40914, endtime: 40916, seqnum: 0, connid: 0","0"
"10:46:34.1810644 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 170, startime: 40914, endtime: 40916, seqnum: 0, connid: 0","0"
"10:46:34.1810747 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 411, startime: 40914, endtime: 40916, seqnum: 0, connid: 0","0"
"10:46:34.1810871 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 199, startime: 40914, endtime: 40916, seqnum: 0, connid: 0","0"
"10:46:34.1810943 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 221, startime: 40914, endtime: 40916, seqnum: 0, connid: 0","0"
"10:46:34.1811003 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 240, startime: 40914, endtime: 40916, seqnum: 0, connid: 0","0"
"10:46:34.1811071 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 224, startime: 40914, endtime: 40916, seqnum: 0, connid: 0","0"
"10:46:34.1811131 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 216, startime: 40914, endtime: 40916, seqnum: 0, connid: 0","0"
"10:46:34.1811182 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 242, startime: 40914, endtime: 40916, seqnum: 0, connid: 0","0"
"10:46:34.1811711 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000068","AllocationSize: 65,536, EndOfFile: 62,976, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.1812210 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\wbemsvc.dll","0.0000090","SyncType: SyncTypeOther","2512"
"10:46:34.1813290 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000119","","2512"
"10:46:34.1817096 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 574, seqnum: 0, connid: 0","0"
"10:46:34.1817416 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 70, seqnum: 0, connid: 0","0"
"10:46:34.1821128 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000089","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.1821465 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.1821712 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.1823645 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1824114 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000060","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:34.1824349 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000073","","2512"
"10:46:34.1826167 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1827169 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000167","Offset: 24, Length: 16","2884"
"10:46:34.1828466 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0001041","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1829862 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000089","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:34.1830199 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000183","","2512"
"10:46:34.1840067 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000581","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1840503 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000443","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.1840917 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 3138, seqnum: 0, connid: 0","0"
"10:46:34.1841369 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.1841424 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000086","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.1841535 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000051","AllocationSize: 65,536, EndOfFile: 62,976, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.1841539 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 632, seqnum: 0, connid: 0","0"
"10:46:34.1841795 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\wbemsvc.dll","0.0000056","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.1842000 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000030","AllocationSize: 65,536, EndOfFile: 62,976, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.1842009 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.1842243 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\wbemsvc.dll","0.0000018","SyncType: SyncTypeOther","2512"
"10:46:34.1848161 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000094","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.1848507 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.1848720 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.1849288 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 2920, seqnum: 0, connid: 0","0"
"10:46:34.1849411 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000086","AllocationSize: 65,536, EndOfFile: 62,976, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.1849621 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1264, seqnum: 0, connid: 0","0"
"10:46:34.1849710 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\wbemsvc.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.1849736 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 445, seqnum: 0, connid: 0","0"
"10:46:34.1849838 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 2092, seqnum: 0, connid: 0","0"
"10:46:34.1849911 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000030","AllocationSize: 65,536, EndOfFile: 62,976, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.1849941 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.1850030 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 632, seqnum: 0, connid: 0","0"
"10:46:34.1850222 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\wbemsvc.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:34.1851075 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0196899","Offset: 0, Length: 62,976, Priority: Normal","2512"
"10:46:34.1851797 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0129548","Offset: 32,768, Length: 30,208, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2512"
"10:46:34.1852744 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1853187 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000052","Offset: 24, Length: 16","2884"
"10:46:34.1855359 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1855705 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.1855978 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.1863146 AM","firefox.exe","7384","ReadFile","C:","0.0005824","Offset: 700,416, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:34.1864413 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1864742 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40916, endtime: 40916, seqnum: 0, connid: 0","0"
"10:46:34.1865433 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1865672 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40916, endtime: 40916, seqnum: 0, connid: 0","0"
"10:46:34.1866107 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1866261 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40916, endtime: 40916, seqnum: 0, connid: 0","0"
"10:46:34.1866615 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1866726 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40916, endtime: 40916, seqnum: 0, connid: 0","0"
"10:46:34.1867267 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1867404 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40916, endtime: 40916, seqnum: 0, connid: 0","0"
"10:46:34.1872392 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1872648 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40916, endtime: 40916, seqnum: 0, connid: 0","0"
"10:46:34.1873424 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\F7C4AA2955320E031409ABB58451107FA9D23AF3","0.0002223","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:34.1874764 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1874952 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40916, endtime: 40917, seqnum: 0, connid: 0","0"
"10:46:34.1875907 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\F7C4AA2955320E031409ABB58451107FA9D23AF3","0.0000064","CreationTime: 3/26/2020 10:25:12 AM, LastAccessTime: 3/26/2020 10:25:12 AM, LastWriteTime: 3/26/2020 10:35:23 AM, ChangeTime: 3/26/2020 10:35:23 AM, AllocationSize: 32768, EndOfFile: 31501, FileAttributes: A","6572"
"10:46:34.1876117 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\F7C4AA2955320E031409ABB58451107FA9D23AF3","0.0000106","","6572"
"10:46:34.1877409 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1877576 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40917, endtime: 40917, seqnum: 0, connid: 0","0"
"10:46:34.1877896 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1877985 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40917, endtime: 40917, seqnum: 0, connid: 0","0"
"10:46:34.1878485 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1878600 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40917, endtime: 40917, seqnum: 0, connid: 0","0"
"10:46:34.1879001 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1879206 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40917, endtime: 40917, seqnum: 0, connid: 0","0"
"10:46:34.1880759 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1880904 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40917, endtime: 40917, seqnum: 0, connid: 0","0"
"10:46:34.1882717 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\0103A1AC8AAB5A501ED96C1FDBF2A0590E1E931C","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:34.1885776 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1885990 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40917, endtime: 40917, seqnum: 0, connid: 0","0"
"10:46:34.1886839 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1887031 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40917, endtime: 40917, seqnum: 0, connid: 0","0"
"10:46:34.1887748 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\0103A1AC8AAB5A501ED96C1FDBF2A0590E1E931C","0.0001395","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:34.1888251 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1888379 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40917, endtime: 40917, seqnum: 0, connid: 0","0"
"10:46:34.1888810 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1888964 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40917, endtime: 40917, seqnum: 0, connid: 0","0"
"10:46:34.1889113 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49768 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 80, startime: 40914, endtime: 40917, seqnum: 0, connid: 0","0"
"10:46:34.1889318 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49768 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 187, startime: 40914, endtime: 40917, seqnum: 0, connid: 0","0"
"10:46:34.1889476 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49768 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 574, seqnum: 0, connid: 0","0"
"10:46:34.1889612 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49768 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 70, seqnum: 0, connid: 0","0"
"10:46:34.1890359 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1890525 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40917, endtime: 40917, seqnum: 0, connid: 0","0"
"10:46:34.1890982 AM","firefox.exe","7384","ReadFile","C:","0.0019622","Offset: 614,400, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:34.1893627 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.1893874 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.1894062 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.1897394 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1897851 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000068","Offset: 24, Length: 16","2884"
"10:46:34.1899908 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1900181 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.1013518","Offset: 36,700,160, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:34.1900270 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.1900565 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.1903816 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.1903965 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.1904093 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.1906457 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1906854 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","2884"
"10:46:34.1908855 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.1909192 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.1909426 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.1913510 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1913813 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40917, endtime: 40917, seqnum: 0, connid: 0","0"
"10:46:34.1914137 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\302CC90EFF72B66AB97EBA35CF577497A1BBD95A","0.0134477","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:34.1952985 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 199, startime: 40914, endtime: 40917, seqnum: 0, connid: 0","0"
"10:46:34.1953676 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 231, startime: 40914, endtime: 40917, seqnum: 0, connid: 0","0"
"10:46:34.1954888 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49774 -> 72.21.91.29:http","0.0000000","Length: 381, startime: 40914, endtime: 40917, seqnum: 0, connid: 0","0"
"10:46:34.1956095 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 357, startime: 40914, endtime: 40917, seqnum: 0, connid: 0","0"
"10:46:34.1956206 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 216, startime: 40914, endtime: 40917, seqnum: 0, connid: 0","0"
"10:46:34.1956334 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49773 -> 72.21.91.29:http","0.0000000","Length: 381, startime: 40914, endtime: 40917, seqnum: 0, connid: 0","0"
"10:46:34.1956437 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49772 -> 72.21.91.29:http","0.0000000","Length: 381, startime: 40914, endtime: 40917, seqnum: 0, connid: 0","0"
"10:46:34.1979404 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49773 -> 72.21.91.29:http","0.0000000","Length: 799, seqnum: 0, connid: 0","0"
"10:46:34.1979848 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49772 -> 72.21.91.29:http","0.0000000","Length: 799, seqnum: 0, connid: 0","0"
"10:46:34.1980061 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49774 -> 72.21.91.29:http","0.0000000","Length: 799, seqnum: 0, connid: 0","0"
"10:46:34.1981439 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1981857 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40918, endtime: 40918, seqnum: 0, connid: 0","0"
"10:46:34.1983073 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1983317 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40918, endtime: 40918, seqnum: 0, connid: 0","0"
"10:46:34.1988048 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1988987 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40918, endtime: 40918, seqnum: 0, connid: 0","0"
"10:46:34.1992674 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1993066 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40918, endtime: 40918, seqnum: 0, connid: 0","0"
"10:46:34.1994205 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1994397 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40918, endtime: 40918, seqnum: 0, connid: 0","0"
"10:46:34.1998583 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1998847 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40918, endtime: 40918, seqnum: 0, connid: 0","0"
"10:46:34.1999560 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.1999735 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40918, endtime: 40918, seqnum: 0, connid: 0","0"
"10:46:34.2002389 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000128","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.2002751 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000052","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.2003012 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.2009045 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 199, startime: 40915, endtime: 40918, seqnum: 0, connid: 0","0"
"10:46:34.2009382 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.2009770 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000427","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.2010658 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000123","Offset: 24, Length: 16","2884"
"10:46:34.2012552 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2012842 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40918, endtime: 40918, seqnum: 0, connid: 0","0"
"10:46:34.2014195 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.2014728 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000090","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.2015125 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.2016763 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2017019 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40918, endtime: 40918, seqnum: 0, connid: 0","0"
"10:46:34.2020599 AM","firefox.exe","7384","Thread Exit","","0.0000000","Thread ID: 8252, User Time: 0.0000000, Kernel Time: 0.0000000","8252"
"10:46:34.2022792 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2023082 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40918, endtime: 40918, seqnum: 0, connid: 0","0"
"10:46:34.2023696 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2023948 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2024055 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40918, endtime: 40918, seqnum: 0, connid: 0","0"
"10:46:34.2024272 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40918, endtime: 40918, seqnum: 0, connid: 0","0"
"10:46:34.2024371 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2024482 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40918, endtime: 40918, seqnum: 0, connid: 0","0"
"10:46:34.2024554 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2024639 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2024686 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40918, endtime: 40918, seqnum: 0, connid: 0","0"
"10:46:34.2024750 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40918, endtime: 40918, seqnum: 0, connid: 0","0"
"10:46:34.2026389 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2026530 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40918, endtime: 40918, seqnum: 0, connid: 0","0"
"10:46:34.2028868 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000102","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.2029218 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.2029439 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.2033749 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.2034355 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000081","Offset: 24, Length: 16","2884"
"10:46:34.2037171 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.2037653 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.2038041 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.2045179 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000077","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.2045482 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.2045695 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.2048913 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\302CC90EFF72B66AB97EBA35CF577497A1BBD95A","0.0000064","CreationTime: 3/26/2020 10:25:12 AM, LastAccessTime: 3/26/2020 10:25:12 AM, LastWriteTime: 3/26/2020 10:35:23 AM, ChangeTime: 3/26/2020 10:35:23 AM, AllocationSize: 24576, EndOfFile: 23021, FileAttributes: A","6572"
"10:46:34.2049318 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\302CC90EFF72B66AB97EBA35CF577497A1BBD95A","0.0000107","","6572"
"10:46:34.2050461 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000261","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.2051084 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000081","Offset: 24, Length: 16","2884"
"10:46:34.2053550 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\0103A1AC8AAB5A501ED96C1FDBF2A0590E1E931C","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:34.2054395 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.2054924 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.2055283 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.2056780 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\0103A1AC8AAB5A501ED96C1FDBF2A0590E1E931C","0.0000312","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:34.2060266 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\0103A1AC8AAB5A501ED96C1FDBF2A0590E1E931C","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:34.2062271 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2062647 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40918, endtime: 40918, seqnum: 0, connid: 0","0"
"10:46:34.2064738 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7E4E68E40F5A59B95E0A61BB431BA54BA580C4B9","0.0000648","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:34.2065565 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7E4E68E40F5A59B95E0A61BB431BA54BA580C4B9","0.0000056","CreationTime: 3/26/2020 10:25:18 AM, LastAccessTime: 3/26/2020 10:25:18 AM, LastWriteTime: 3/26/2020 10:35:23 AM, ChangeTime: 3/26/2020 10:35:23 AM, AllocationSize: 36864, EndOfFile: 34399, FileAttributes: A","6572"
"10:46:34.2065779 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7E4E68E40F5A59B95E0A61BB431BA54BA580C4B9","0.0000081","","6572"
"10:46:34.2066888 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2067165 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40918, endtime: 40918, seqnum: 0, connid: 0","0"
"10:46:34.2067554 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2067711 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40918, endtime: 40918, seqnum: 0, connid: 0","0"
"10:46:34.2067741 AM","firefox.exe","7384","ReadFile","C:","0.0364165","Offset: 876,544, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:34.2068019 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2068125 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40918, endtime: 40918, seqnum: 0, connid: 0","0"
"10:46:34.2070566 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2070771 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40918, endtime: 40918, seqnum: 0, connid: 0","0"
"10:46:34.2071112 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2071223 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40918, endtime: 40918, seqnum: 0, connid: 0","0"
"10:46:34.2071470 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2071564 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40918, endtime: 40918, seqnum: 0, connid: 0","0"
"10:46:34.2073036 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2073190 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40918, endtime: 40918, seqnum: 0, connid: 0","0"
"10:46:34.2082414 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.2082751 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 411, seqnum: 0, connid: 0","0"
"10:46:34.2082918 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49766 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 80, startime: 40915, endtime: 40919, seqnum: 0, connid: 0","0"
"10:46:34.2083020 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49766 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 187, startime: 40915, endtime: 40919, seqnum: 0, connid: 0","0"
"10:46:34.2083140 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49766 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 287, seqnum: 0, connid: 0","0"
"10:46:34.2083251 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49766 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 287, seqnum: 0, connid: 0","0"
"10:46:34.2083340 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49766 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 70, seqnum: 0, connid: 0","0"
"10:46:34.2083464 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1046, seqnum: 0, connid: 0","0"
"10:46:34.2083549 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1046, seqnum: 0, connid: 0","0"
"10:46:34.2083643 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1046, seqnum: 0, connid: 0","0"
"10:46:34.2083741 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.2083844 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 632, seqnum: 0, connid: 0","0"
"10:46:34.2085171 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.2085435 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.2085589 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 218, seqnum: 0, connid: 0","0"
"10:46:34.2085700 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.2085798 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.2085887 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 218, seqnum: 0, connid: 0","0"
"10:46:34.2087018 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2087274 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2087377 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40919, endtime: 40919, seqnum: 0, connid: 0","0"
"10:46:34.2087620 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40919, endtime: 40919, seqnum: 0, connid: 0","0"
"10:46:34.2088251 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.2088362 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2088503 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40919, endtime: 40919, seqnum: 0, connid: 0","0"
"10:46:34.2088994 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1264, seqnum: 0, connid: 0","0"
"10:46:34.2089126 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 5840, seqnum: 0, connid: 0","0"
"10:46:34.2089851 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000086","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.2090188 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.2090291 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2090474 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.2090517 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40919, endtime: 40919, seqnum: 0, connid: 0","0"
"10:46:34.2091076 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2091229 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40919, endtime: 40919, seqnum: 0, connid: 0","0"
"10:46:34.2091938 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2092044 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40919, endtime: 40919, seqnum: 0, connid: 0","0"
"10:46:34.2092484 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2092650 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40919, endtime: 40919, seqnum: 0, connid: 0","0"
"10:46:34.2094732 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.2095359 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000103","Offset: 24, Length: 16","2884"
"10:46:34.2098483 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.2099008 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.2099409 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.2102451 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000081","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.2102707 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.2102890 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.2106807 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.2107460 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 4380, seqnum: 0, connid: 0","0"
"10:46:34.2107541 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000128","Offset: 24, Length: 16","2884"
"10:46:34.2107925 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 240, seqnum: 0, connid: 0","0"
"10:46:34.2108070 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.2108177 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 632, seqnum: 0, connid: 0","0"
"10:46:34.2108275 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 2920, seqnum: 0, connid: 0","0"
"10:46:34.2108360 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 218, seqnum: 0, connid: 0","0"
"10:46:34.2108471 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.2110711 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.2110835 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.2111261 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.2111633 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.2115822 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2116215 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40919, endtime: 40919, seqnum: 0, connid: 0","0"
"10:46:34.2118438 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49768 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 24, startime: 40917, endtime: 40919, seqnum: 0, connid: 0","0"
"10:46:34.2118788 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49768 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 24, seqnum: 0, connid: 0","0"
"10:46:34.2119428 AM","firefox.exe","7384","TCP Disconnect","LAPTOP-49TAGD3F.lan1:49768 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 0, seqnum: 0, connid: 0","0"
"10:46:34.2132573 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2132949 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40919, endtime: 40919, seqnum: 0, connid: 0","0"
"10:46:34.2133640 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2133849 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40919, endtime: 40919, seqnum: 0, connid: 0","0"
"10:46:34.2134284 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2134451 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40919, endtime: 40919, seqnum: 0, connid: 0","0"
"10:46:34.2135052 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2135197 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40919, endtime: 40919, seqnum: 0, connid: 0","0"
"10:46:34.2135552 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2135692 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40919, endtime: 40919, seqnum: 0, connid: 0","0"
"10:46:34.2166976 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2167296 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40919, endtime: 40919, seqnum: 0, connid: 0","0"
"10:46:34.2168870 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2169083 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40919, endtime: 40919, seqnum: 0, connid: 0","0"
"10:46:34.2172970 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2173184 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40919, endtime: 40919, seqnum: 0, connid: 0","0"
"10:46:34.2173785 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2173964 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40919, endtime: 40920, seqnum: 0, connid: 0","0"
"10:46:34.2219093 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 31, startime: 40916, endtime: 40920, seqnum: 0, connid: 0","0"
"10:46:34.2220258 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 2920, seqnum: 0, connid: 0","0"
"10:46:34.2220591 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49770 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 80, startime: 40918, endtime: 40920, seqnum: 0, connid: 0","0"
"10:46:34.2220744 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49770 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 574, seqnum: 0, connid: 0","0"
"10:46:34.2223564 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2224012 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40920, endtime: 40920, seqnum: 0, connid: 0","0"
"10:46:34.2227759 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000473","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.2228531 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.2228770 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.2229534 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2229862 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40920, endtime: 40920, seqnum: 0, connid: 0","0"
"10:46:34.2230494 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2230707 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40920, endtime: 40920, seqnum: 0, connid: 0","0"
"10:46:34.2232780 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000274","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.2233395 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000089","Offset: 24, Length: 16","2884"
"10:46:34.2236642 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.2237248 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000059","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.2237708 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.2240802 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.2241109 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.2241391 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.2241843 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000217","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.2242295 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000201","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:34.2244002 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000879","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:34.2244783 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.2245350 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000073","Offset: 24, Length: 16","2884"
"10:46:34.2246976 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000256","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.2247479 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000039","Information: DACL","2512"
"10:46:34.2247718 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000068","","2512"
"10:46:34.2248580 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.2249041 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.2249322 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000052","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.2249672 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000273","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:34.2251592 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000179","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.2251955 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000026","Information: DACL","2512"
"10:46:34.2252100 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000043","","2512"
"10:46:34.2252621 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2253307 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40920, endtime: 40920, seqnum: 0, connid: 0","0"
"10:46:34.2255176 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000222","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:34.2256708 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000201","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:34.2257988 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000128","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.2258261 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000026","Information: DACL","2512"
"10:46:34.2258393 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000043","","2512"
"10:46:34.2259942 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000196","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:34.2261444 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000162","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.2261811 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000030","Information: DACL","2512"
"10:46:34.2261973 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000102","","2512"
"10:46:34.2295701 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 245, startime: 40918, endtime: 40921, seqnum: 0, connid: 0","0"
"10:46:34.2296307 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 224, startime: 40918, endtime: 40921, seqnum: 0, connid: 0","0"
"10:46:34.2296435 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 240, startime: 40919, endtime: 40921, seqnum: 0, connid: 0","0"
"10:46:34.2296640 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.2320128 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 4380, seqnum: 0, connid: 0","0"
"10:46:34.2320892 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49771 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 80, startime: 40918, endtime: 40921, seqnum: 0, connid: 0","0"
"10:46:34.2321007 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49771 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 187, startime: 40918, endtime: 40921, seqnum: 0, connid: 0","0"
"10:46:34.2321118 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49771 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 574, seqnum: 0, connid: 0","0"
"10:46:34.2321280 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49769 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 80, startime: 40918, endtime: 40921, seqnum: 0, connid: 0","0"
"10:46:34.2321348 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49769 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 187, startime: 40918, endtime: 40921, seqnum: 0, connid: 0","0"
"10:46:34.2321416 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49769 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 574, seqnum: 0, connid: 0","0"
"10:46:34.2321514 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1126, seqnum: 0, connid: 0","0"
"10:46:34.2321604 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49769 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 70, seqnum: 0, connid: 0","0"
"10:46:34.2321711 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49770 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 187, startime: 40918, endtime: 40921, seqnum: 0, connid: 0","0"
"10:46:34.2321869 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49770 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 70, seqnum: 0, connid: 0","0"
"10:46:34.2322381 AM","firefox.exe","7384","TCP Disconnect","LAPTOP-49TAGD3F.lan1:49770 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 0, seqnum: 0, connid: 0","0"
"10:46:34.2323618 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49771 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 70, seqnum: 0, connid: 0","0"
"10:46:34.2323810 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 4184, seqnum: 0, connid: 0","0"
"10:46:34.2324066 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2324313 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40921, endtime: 40921, seqnum: 0, connid: 0","0"
"10:46:34.2324429 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.2324561 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 632, seqnum: 0, connid: 0","0"
"10:46:34.2324650 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2324847 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40921, endtime: 40921, seqnum: 0, connid: 0","0"
"10:46:34.2325111 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.2325453 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 2920, seqnum: 0, connid: 0","0"
"10:46:34.2325564 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 850, seqnum: 0, connid: 0","0"
"10:46:34.2325679 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 4380, seqnum: 0, connid: 0","0"
"10:46:34.2325700 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40921, endtime: 40921, seqnum: 0, connid: 0","0"
"10:46:34.2327539 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000107","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.2327885 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.2328132 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.2332646 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.2333295 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000089","Offset: 24, Length: 16","2884"
"10:46:34.2336584 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000329","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.2337399 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.2337796 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.2340906 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.2341141 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.2341350 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.2345109 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000461","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.2345800 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 14600, seqnum: 0, connid: 0","0"
"10:46:34.2345975 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000094","Offset: 24, Length: 16","2884"
"10:46:34.2349372 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.2349943 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000069","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.2350353 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.2352247 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2352567 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40921, endtime: 40921, seqnum: 0, connid: 0","0"
"10:46:34.2355742 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.2356019 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.2356228 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.2360217 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000261","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.2360836 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000090","Offset: 24, Length: 16","2884"
"10:46:34.2364092 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.2364646 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.2365035 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.2368107 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.2368345 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 2920, seqnum: 0, connid: 0","0"
"10:46:34.2368363 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.2368567 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.2368704 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49766 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 24, startime: 40919, endtime: 40921, seqnum: 0, connid: 0","0"
"10:46:34.2368917 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49766 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 24, seqnum: 0, connid: 0","0"
"10:46:34.2369549 AM","firefox.exe","7384","TCP Disconnect","LAPTOP-49TAGD3F.lan1:49766 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 0, seqnum: 0, connid: 0","0"
"10:46:34.2369719 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 4380, seqnum: 0, connid: 0","0"
"10:46:34.2370381 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 4380, seqnum: 0, connid: 0","0"
"10:46:34.2371183 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 2920, seqnum: 0, connid: 0","0"
"10:46:34.2372744 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.2373401 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000086","Offset: 24, Length: 16","2884"
"10:46:34.2376567 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.2377122 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.2377536 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.2385011 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2386086 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40922, endtime: 40922, seqnum: 0, connid: 0","0"
"10:46:34.2387238 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2387490 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40922, endtime: 40922, seqnum: 0, connid: 0","0"
"10:46:34.2387989 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2388113 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40922, endtime: 40922, seqnum: 0, connid: 0","0"
"10:46:34.2388420 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2388527 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40922, endtime: 40922, seqnum: 0, connid: 0","0"
"10:46:34.2388565 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 13140, seqnum: 0, connid: 0","0"
"10:46:34.2388847 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 344, seqnum: 0, connid: 0","0"
"10:46:34.2389256 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2389487 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40922, endtime: 40922, seqnum: 0, connid: 0","0"
"10:46:34.2392486 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2392708 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40922, endtime: 40922, seqnum: 0, connid: 0","0"
"10:46:34.2393288 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2393463 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40922, endtime: 40922, seqnum: 0, connid: 0","0"
"10:46:34.2393899 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2394031 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40922, endtime: 40922, seqnum: 0, connid: 0","0"
"10:46:34.2404301 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2404651 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40922, endtime: 40922, seqnum: 0, connid: 0","0"
"10:46:34.2405337 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2405572 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40922, endtime: 40922, seqnum: 0, connid: 0","0"
"10:46:34.2406016 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2406174 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40922, endtime: 40922, seqnum: 0, connid: 0","0"
"10:46:34.2406861 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2407027 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40922, endtime: 40922, seqnum: 0, connid: 0","0"
"10:46:34.2407471 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2407620 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40922, endtime: 40922, seqnum: 0, connid: 0","0"
"10:46:34.2408776 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2408917 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40922, endtime: 40922, seqnum: 0, connid: 0","0"
"10:46:34.2409263 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2409370 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40922, endtime: 40922, seqnum: 0, connid: 0","0"
"10:46:34.2409694 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2409792 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40922, endtime: 40922, seqnum: 0, connid: 0","0"
"10:46:34.2410146 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2410274 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40922, endtime: 40922, seqnum: 0, connid: 0","0"
"10:46:34.2418475 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2418705 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40922, endtime: 40922, seqnum: 0, connid: 0","0"
"10:46:34.2419226 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2419469 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40922, endtime: 40922, seqnum: 0, connid: 0","0"
"10:46:34.2419938 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2420040 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40922, endtime: 40922, seqnum: 0, connid: 0","0"
"10:46:34.2420493 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2420621 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40922, endtime: 40922, seqnum: 0, connid: 0","0"
"10:46:34.2435639 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\97CFA549897ECA75A30A13A2EA3204AB0C02DCA2","0.0000854","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:34.2436702 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\97CFA549897ECA75A30A13A2EA3204AB0C02DCA2","0.0000077","CreationTime: 3/26/2020 10:25:25 AM, LastAccessTime: 3/26/2020 10:25:25 AM, LastWriteTime: 3/26/2020 10:35:23 AM, ChangeTime: 3/26/2020 10:35:23 AM, AllocationSize: 28672, EndOfFile: 28267, FileAttributes: A","6572"
"10:46:34.2436945 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\97CFA549897ECA75A30A13A2EA3204AB0C02DCA2","0.0000081","","6572"
"10:46:34.2446596 AM","firefox.exe","7384","ReadFile","C:","0.0007842","Offset: 716,800, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:34.2455467 AM","firefox.exe","7384","ReadFile","C:","0.0157670","Offset: 98,304, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:34.2480640 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2480990 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40923, endtime: 40923, seqnum: 0, connid: 0","0"
"10:46:34.2481664 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2481839 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40923, endtime: 40923, seqnum: 0, connid: 0","0"
"10:46:34.2482876 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2483012 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40923, endtime: 40923, seqnum: 0, connid: 0","0"
"10:46:34.2483511 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2483738 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40923, endtime: 40923, seqnum: 0, connid: 0","0"
"10:46:34.2485026 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2485188 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40923, endtime: 40923, seqnum: 0, connid: 0","0"
"10:46:34.2485653 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2485798 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40923, endtime: 40923, seqnum: 0, connid: 0","0"
"10:46:34.2487066 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2487177 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40923, endtime: 40923, seqnum: 0, connid: 0","0"
"10:46:34.2487582 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2487701 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40923, endtime: 40923, seqnum: 0, connid: 0","0"
"10:46:34.2492203 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2492386 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40923, endtime: 40923, seqnum: 0, connid: 0","0"
"10:46:34.2492958 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2493133 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40923, endtime: 40923, seqnum: 0, connid: 0","0"
"10:46:34.2496589 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2496815 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40923, endtime: 40923, seqnum: 0, connid: 0","0"
"10:46:34.2497451 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2497638 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40923, endtime: 40923, seqnum: 0, connid: 0","0"
"10:46:34.2499337 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2499486 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40923, endtime: 40923, seqnum: 0, connid: 0","0"
"10:46:34.2500028 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2500186 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40923, endtime: 40923, seqnum: 0, connid: 0","0"
"10:46:34.2515567 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.2516134 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 4380, seqnum: 0, connid: 0","0"
"10:46:34.2516348 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1116, seqnum: 0, connid: 0","0"
"10:46:34.2516561 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 7300, seqnum: 0, connid: 0","0"
"10:46:34.2518656 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.2525717 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2526234 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40923, endtime: 40923, seqnum: 0, connid: 0","0"
"10:46:34.2527305 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2527608 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40923, endtime: 40923, seqnum: 0, connid: 0","0"
"10:46:34.2532800 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2533218 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40923, endtime: 40923, seqnum: 0, connid: 0","0"
"10:46:34.2534110 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2534328 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40923, endtime: 40923, seqnum: 0, connid: 0","0"
"10:46:34.2534810 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2534968 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40923, endtime: 40923, seqnum: 0, connid: 0","0"
"10:46:34.2535633 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2535774 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40923, endtime: 40923, seqnum: 0, connid: 0","0"
"10:46:34.2537455 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2537647 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40923, endtime: 40923, seqnum: 0, connid: 0","0"
"10:46:34.2538253 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2538500 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40923, endtime: 40923, seqnum: 0, connid: 0","0"
"10:46:34.2539840 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2540011 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40923, endtime: 40923, seqnum: 0, connid: 0","0"
"10:46:34.2540548 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2540723 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40923, endtime: 40923, seqnum: 0, connid: 0","0"
"10:46:34.2542328 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2542438 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40923, endtime: 40923, seqnum: 0, connid: 0","0"
"10:46:34.2542950 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2543096 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40923, endtime: 40923, seqnum: 0, connid: 0","0"
"10:46:34.2589572 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.2590507 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.2590759 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.2590904 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.2593242 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.2593425 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.2598660 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2598993 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40924, endtime: 40924, seqnum: 0, connid: 0","0"
"10:46:34.2599667 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2599855 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40924, endtime: 40924, seqnum: 0, connid: 0","0"
"10:46:34.2621679 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 5840, seqnum: 0, connid: 0","0"
"10:46:34.2623271 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 396, seqnum: 0, connid: 0","0"
"10:46:34.2623902 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 3138, seqnum: 0, connid: 0","0"
"10:46:34.2624307 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.2624632 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 632, seqnum: 0, connid: 0","0"
"10:46:34.2631083 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1046, seqnum: 0, connid: 0","0"
"10:46:34.2632068 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 4380, seqnum: 0, connid: 0","0"
"10:46:34.2632329 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 850, seqnum: 0, connid: 0","0"
"10:46:34.2635712 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 2920, seqnum: 0, connid: 0","0"
"10:46:34.2637654 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 2920, seqnum: 0, connid: 0","0"
"10:46:34.2638464 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 2920, seqnum: 0, connid: 0","0"
"10:46:34.2638584 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1074, seqnum: 0, connid: 0","0"
"10:46:34.2638746 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49769 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 24, startime: 40922, endtime: 40924, seqnum: 0, connid: 0","0"
"10:46:34.2638916 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49769 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 24, seqnum: 0, connid: 0","0"
"10:46:34.2639646 AM","firefox.exe","7384","TCP Disconnect","LAPTOP-49TAGD3F.lan1:49769 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 0, seqnum: 0, connid: 0","0"
"10:46:34.2640086 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 13140, seqnum: 0, connid: 0","0"
"10:46:34.2641596 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 344, seqnum: 0, connid: 0","0"
"10:46:34.2641737 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49771 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 24, startime: 40922, endtime: 40924, seqnum: 0, connid: 0","0"
"10:46:34.2641869 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49771 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 24, seqnum: 0, connid: 0","0"
"10:46:34.2642372 AM","firefox.exe","7384","TCP Disconnect","LAPTOP-49TAGD3F.lan1:49771 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 0, seqnum: 0, connid: 0","0"
"10:46:34.2646084 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\38ED2A82492971F77141EDA89A442BD4E0CD8F8B","0.0013594","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:34.2649575 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2649860 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40924, endtime: 40924, seqnum: 0, connid: 0","0"
"10:46:34.2650458 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2650628 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40924, endtime: 40924, seqnum: 0, connid: 0","0"
"10:46:34.2651844 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2651994 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40924, endtime: 40924, seqnum: 0, connid: 0","0"
"10:46:34.2652412 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2652540 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40924, endtime: 40924, seqnum: 0, connid: 0","0"
"10:46:34.2653124 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 8108","5728"
"10:46:34.2654336 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2654468 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40924, endtime: 40924, seqnum: 0, connid: 0","0"
"10:46:34.2654848 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2654972 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40924, endtime: 40924, seqnum: 0, connid: 0","0"
"10:46:34.2655258 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2655339 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40924, endtime: 40924, seqnum: 0, connid: 0","0"
"10:46:34.2655569 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2655646 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40924, endtime: 40924, seqnum: 0, connid: 0","0"
"10:46:34.2655825 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2655902 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40924, endtime: 40924, seqnum: 0, connid: 0","0"
"10:46:34.2656060 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2656128 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40924, endtime: 40924, seqnum: 0, connid: 0","0"
"10:46:34.2656879 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2656969 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40924, endtime: 40924, seqnum: 0, connid: 0","0"
"10:46:34.2660007 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\38ED2A82492971F77141EDA89A442BD4E0CD8F8B","0.0000076","CreationTime: 3/26/2020 10:25:25 AM, LastAccessTime: 3/26/2020 10:25:25 AM, LastWriteTime: 3/26/2020 10:35:23 AM, ChangeTime: 3/26/2020 10:35:23 AM, AllocationSize: 36864, EndOfFile: 35212, FileAttributes: A","6572"
"10:46:34.2660254 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\38ED2A82492971F77141EDA89A442BD4E0CD8F8B","0.0000124","","6572"
"10:46:34.2663458 AM","firefox.exe","7384","ReadFile","C:","0.0003853","Offset: 131,072, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:34.2674296 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\10C3083018BCA42703DAE9AE639211B450C1D474","0.0000367","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:34.2676783 AM","firefox.exe","7384","ReadFile","C:","0.0004292","Offset: 425,984, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:34.2679493 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2679838 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40925, endtime: 40925, seqnum: 0, connid: 0","0"
"10:46:34.2680487 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2680653 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40925, endtime: 40925, seqnum: 0, connid: 0","0"
"10:46:34.2681080 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2681310 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40925, endtime: 40925, seqnum: 0, connid: 0","0"
"10:46:34.2685675 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\D652B687A3BF02666D458DDC134B6DEEED3143DD","0.0000350","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:34.2688546 AM","firefox.exe","7384","ReadFile","C:","0.0004096","Offset: 409,600, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:34.2697989 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\964BC5D43CA85EB2633DCAE15B06E48A51101A99","0.0000349","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:34.2727062 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 13140, seqnum: 0, connid: 0","0"
"10:46:34.2728875 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1116, seqnum: 0, connid: 0","0"
"10:46:34.2776376 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 4380, seqnum: 0, connid: 0","0"
"10:46:34.2790558 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 8760, seqnum: 0, connid: 0","0"
"10:46:34.2814934 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2815335 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40926, endtime: 40926, seqnum: 0, connid: 0","0"
"10:46:34.2817071 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 4380, seqnum: 0, connid: 0","0"
"10:46:34.2817310 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 344, seqnum: 0, connid: 0","0"
"10:46:34.2817451 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 8760, seqnum: 0, connid: 0","0"
"10:46:34.2817703 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2817980 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40926, endtime: 40926, seqnum: 0, connid: 0","0"
"10:46:34.2818420 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 7300, seqnum: 0, connid: 0","0"
"10:46:34.2819264 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2819290 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 2920, seqnum: 0, connid: 0","0"
"10:46:34.2819444 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40926, endtime: 40926, seqnum: 0, connid: 0","0"
"10:46:34.2821270 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2821419 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40926, endtime: 40926, seqnum: 0, connid: 0","0"
"10:46:34.2821884 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2822016 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40926, endtime: 40926, seqnum: 0, connid: 0","0"
"10:46:34.2824026 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2824154 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40926, endtime: 40926, seqnum: 0, connid: 0","0"
"10:46:34.2826552 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 13140, seqnum: 0, connid: 0","0"
"10:46:34.2827499 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2827627 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40926, endtime: 40926, seqnum: 0, connid: 0","0"
"10:46:34.2833558 AM","firefox.exe","7384","ReadFile","C:","0.0003964","Offset: 733,184, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:34.2841575 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\D80F7ACF1CAE1B8737D69E180D9DDE43EF7A6199","0.0000311","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:34.2843751 AM","firefox.exe","7384","ReadFile","C:","0.0006302","Offset: 446,464, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:34.2854797 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\92BD7EF3A9C01DFDC846865600F258B5F069FAA3","0.0000512","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:34.2857630 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\254256B27E0C48CF9B80B695F0B3B8CA84610495","0.0000431","Desired Access: Generic Read/Write, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:34.2858441 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\254256B27E0C48CF9B80B695F0B3B8CA84610495","0.0000171","Offset: 0, Length: 330, Priority: Normal","6572"
"10:46:34.2859136 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\E283E5539B1A9A07019BC1E8CD9F2EC704A01362","0.0283943","Offset: 0, Length: 8,246","6572"
"10:46:34.2859525 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\E283E5539B1A9A07019BC1E8CD9F2EC704A01362","0.0137463","Offset: 0, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:34.2865549 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2865916 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40926, endtime: 40926, seqnum: 0, connid: 0","0"
"10:46:34.2866356 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2866467 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40926, endtime: 40926, seqnum: 0, connid: 0","0"
"10:46:34.2866876 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2867013 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40926, endtime: 40926, seqnum: 0, connid: 0","0"
"10:46:34.2872649 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2872841 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40926, endtime: 40926, seqnum: 0, connid: 0","0"
"10:46:34.2873310 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2873455 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40926, endtime: 40927, seqnum: 0, connid: 0","0"
"10:46:34.2873771 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2873856 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40926, endtime: 40927, seqnum: 0, connid: 0","0"
"10:46:34.2874083 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2874155 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40927, endtime: 40927, seqnum: 0, connid: 0","0"
"10:46:34.2874624 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2874727 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40927, endtime: 40927, seqnum: 0, connid: 0","0"
"10:46:34.2876101 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.2887207 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 2920, seqnum: 0, connid: 0","0"
"10:46:34.2887847 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2888163 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40927, endtime: 40927, seqnum: 0, connid: 0","0"
"10:46:34.2888649 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2888760 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40927, endtime: 40927, seqnum: 0, connid: 0","0"
"10:46:34.2888956 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2889037 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40927, endtime: 40927, seqnum: 0, connid: 0","0"
"10:46:34.2889208 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2889285 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40927, endtime: 40927, seqnum: 0, connid: 0","0"
"10:46:34.2890386 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2890548 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40927, endtime: 40927, seqnum: 0, connid: 0","0"
"10:46:34.2896628 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 5840, seqnum: 0, connid: 0","0"
"10:46:34.2903454 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2903809 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40927, endtime: 40927, seqnum: 0, connid: 0","0"
"10:46:34.2904619 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2904862 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40927, endtime: 40927, seqnum: 0, connid: 0","0"
"10:46:34.2906270 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 2920, seqnum: 0, connid: 0","0"
"10:46:34.2906287 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2906492 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40927, endtime: 40927, seqnum: 0, connid: 0","0"
"10:46:34.2906573 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1296, seqnum: 0, connid: 0","0"
"10:46:34.2907038 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2907196 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40927, endtime: 40927, seqnum: 0, connid: 0","0"
"10:46:34.2908783 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2908967 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40927, endtime: 40927, seqnum: 0, connid: 0","0"
"10:46:34.2909522 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2909701 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40927, endtime: 40927, seqnum: 0, connid: 0","0"
"10:46:34.2927309 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2928239 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40927, endtime: 40927, seqnum: 0, connid: 0","0"
"10:46:34.2929268 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2929584 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40927, endtime: 40927, seqnum: 0, connid: 0","0"
"10:46:34.2930113 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2930270 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40927, endtime: 40927, seqnum: 0, connid: 0","0"
"10:46:34.2930881 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2931017 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40927, endtime: 40927, seqnum: 0, connid: 0","0"
"10:46:34.2931354 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2931555 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40927, endtime: 40927, seqnum: 0, connid: 0","0"
"10:46:34.2932186 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2932314 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40927, endtime: 40927, seqnum: 0, connid: 0","0"
"10:46:34.2957765 AM","firefox.exe","7384","Thread Exit","","0.0000000","Thread ID: 8108, User Time: 0.0000000, Kernel Time: 0.0000000","8108"
"10:46:34.2967570 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2967873 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40927, endtime: 40927, seqnum: 0, connid: 0","0"
"10:46:34.2968504 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.2968688 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40927, endtime: 40927, seqnum: 0, connid: 0","0"
"10:46:34.3026194 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 2920, seqnum: 0, connid: 0","0"
"10:46:34.3026527 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1431, seqnum: 0, connid: 0","0"
"10:46:34.3026701 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 4184, seqnum: 0, connid: 0","0"
"10:46:34.3026838 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.3026953 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 632, seqnum: 0, connid: 0","0"
"10:46:34.3027060 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.3028873 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 2920, seqnum: 0, connid: 0","0"
"10:46:34.3029057 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 850, seqnum: 0, connid: 0","0"
"10:46:34.3046810 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 10220, seqnum: 0, connid: 0","0"
"10:46:34.3047007 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1286, seqnum: 0, connid: 0","0"
"10:46:34.3047143 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.3047945 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 7300, seqnum: 0, connid: 0","0"
"10:46:34.3048756 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 2920, seqnum: 0, connid: 0","0"
"10:46:34.3086106 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.3086512 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.3086670 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.3086793 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.3086904 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.3087011 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.3087109 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 1460, seqnum: 0, connid: 0","0"
"10:46:34.3087211 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 4380, seqnum: 0, connid: 0","0"
"10:46:34.3088112 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 7300, seqnum: 0, connid: 0","0"
"10:46:34.3106190 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 13140, seqnum: 0, connid: 0","0"
"10:46:34.3106433 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 0, seqnum: 0, connid: 0","0"
"10:46:34.3128683 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49767 -> a104-123-205-39.deploy.static.akamaitechnologies.com:https","0.0000000","Length: 492, seqnum: 0, connid: 0","0"
"10:46:34.3146928 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7F347B9AF978EDEA2F853A5A2889171EF0D32C03","0.0000375","Desired Access: Generic Read/Write, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:34.3147653 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7F347B9AF978EDEA2F853A5A2889171EF0D32C03","0.0140463","Offset: 49,152, Length: 2,698, Priority: Normal","6572"
"10:46:34.3148242 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7F347B9AF978EDEA2F853A5A2889171EF0D32C03","0.0131324","Offset: 49,152, Length: 2,698, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:34.3151775 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3152099 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40929, endtime: 40929, seqnum: 0, connid: 0","0"
"10:46:34.3152513 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3152628 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40929, endtime: 40929, seqnum: 0, connid: 0","0"
"10:46:34.3152662 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 3572","5728"
"10:46:34.3152837 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3152918 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40929, endtime: 40929, seqnum: 0, connid: 0","0"
"10:46:34.3153567 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3153772 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40929, endtime: 40929, seqnum: 0, connid: 0","0"
"10:46:34.3154087 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3154177 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40929, endtime: 40929, seqnum: 0, connid: 0","0"
"10:46:34.3154420 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3154531 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40929, endtime: 40929, seqnum: 0, connid: 0","0"
"10:46:34.3154697 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3154783 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40929, endtime: 40929, seqnum: 0, connid: 0","0"
"10:46:34.3155209 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3155299 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40929, endtime: 40929, seqnum: 0, connid: 0","0"
"10:46:34.3155487 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3155559 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40929, endtime: 40929, seqnum: 0, connid: 0","0"
"10:46:34.3156485 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3156596 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40929, endtime: 40929, seqnum: 0, connid: 0","0"
"10:46:34.3160824 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings","0.0000303","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","4904"
"10:46:34.3163785 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main","0.0000218","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","4904"
"10:46:34.3166503 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs","0.0000209","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","4904"
"10:46:34.3234369 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0087053","Offset: 37,748,736, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:34.3269706 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3270102 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40930, endtime: 40930, seqnum: 0, connid: 0","0"
"10:46:34.3270943 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3271203 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40930, endtime: 40930, seqnum: 0, connid: 0","0"
"10:46:34.3271826 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3272027 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40930, endtime: 40930, seqnum: 0, connid: 0","0"
"10:46:34.3273068 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3273260 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40930, endtime: 40931, seqnum: 0, connid: 0","0"
"10:46:34.3274002 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3274198 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40931, endtime: 40931, seqnum: 0, connid: 0","0"
"10:46:34.3276677 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3276869 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40931, endtime: 40931, seqnum: 0, connid: 0","0"
"10:46:34.3292694 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\69852764590870F506F66E4FAFC263C8630728D2","0.0000401","Desired Access: Generic Read/Write, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:34.3293496 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\69852764590870F506F66E4FAFC263C8630728D2","0.0111041","Offset: 16,384, Length: 1,715, Priority: Normal","6572"
"10:46:34.3294218 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\69852764590870F506F66E4FAFC263C8630728D2","0.0094592","Offset: 16,384, Length: 1,715, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:34.3294606 AM","firefox.exe","7384","Thread Exit","","0.0000000","Thread ID: 3572, User Time: 0.0000000, Kernel Time: 0.0000000","3572"
"10:46:34.3296304 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:34.3296850 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000056","CreationTime: 3/25/2020 10:31:45 AM, LastAccessTime: 3/25/2020 10:31:45 AM, LastWriteTime: 3/25/2020 10:31:45 AM, ChangeTime: 3/25/2020 10:31:45 AM, FileAttributes: A","5728"
"10:46:34.3297063 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000082","","5728"
"10:46:34.3300059 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000234","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","5316"
"10:46:34.3300613 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000150","Offset: 0, Length: 10,005, Priority: Normal","5316"
"10:46:34.3300946 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000043","Offset: 10,005, Length: 22,763","5316"
"10:46:34.3301296 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000081","","5316"
"10:46:34.3302414 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7572"
"10:46:34.3302781 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000051","CreationTime: 3/25/2020 10:31:45 AM, LastAccessTime: 3/25/2020 10:31:45 AM, LastWriteTime: 3/25/2020 10:31:45 AM, ChangeTime: 3/25/2020 10:31:45 AM, AllocationSize: 12288, EndOfFile: 10005, FileAttributes: A","7572"
"10:46:34.3302977 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000064","","7572"
"10:46:34.3367835 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000085","Exclusive: True, Offset: 124, Length: 1, Fail Immediately: True","8244"
"10:46:34.3368133 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000022","Offset: 124, Length: 1","8244"
"10:46:34.3368304 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000026","Exclusive: False, Offset: 124, Length: 1, Fail Immediately: True","8244"
"10:46:34.3368948 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000039","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","8244"
"10:46:34.3407732 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B9C8559E103415356D42B7D83A7F183CA163363B","0.0000440","Desired Access: Generic Read/Write, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:34.3408599 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B9C8559E103415356D42B7D83A7F183CA163363B","0.0093171","Offset: 20,480, Length: 3,320, Priority: Normal","6572"
"10:46:34.3409239 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B9C8559E103415356D42B7D83A7F183CA163363B","0.0065066","Offset: 20,480, Length: 3,320, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:34.3498903 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0231816","Offset: 38,797,312, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:34.3507547 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\09F8AAAB9AA62DCD65EEBD9FAE58BC470027FE74","0.0000491","Desired Access: Generic Read/Write, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:34.3508699 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\09F8AAAB9AA62DCD65EEBD9FAE58BC470027FE74","0.0333530","Offset: 28,672, Length: 3,287, Priority: Normal","6572"
"10:46:34.3509501 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\09F8AAAB9AA62DCD65EEBD9FAE58BC470027FE74","0.0293466","Offset: 28,672, Length: 3,287, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:34.3529533 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3529947 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40933, endtime: 40933, seqnum: 0, connid: 0","0"
"10:46:34.3530869 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3531133 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40933, endtime: 40933, seqnum: 0, connid: 0","0"
"10:46:34.3533283 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3533493 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40933, endtime: 40933, seqnum: 0, connid: 0","0"
"10:46:34.3534013 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3534145 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40933, endtime: 40933, seqnum: 0, connid: 0","0"
"10:46:34.3543750 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3544146 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40933, endtime: 40933, seqnum: 0, connid: 0","0"
"10:46:34.3545866 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3546058 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40933, endtime: 40933, seqnum: 0, connid: 0","0"
"10:46:34.3547782 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3548016 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40933, endtime: 40933, seqnum: 0, connid: 0","0"
"10:46:34.3548631 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3548780 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40933, endtime: 40933, seqnum: 0, connid: 0","0"
"10:46:34.3553550 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3553836 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40933, endtime: 40933, seqnum: 0, connid: 0","0"
"10:46:34.3554604 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3554843 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40933, endtime: 40933, seqnum: 0, connid: 0","0"
"10:46:34.3556362 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3556524 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40933, endtime: 40933, seqnum: 0, connid: 0","0"
"10:46:34.3557092 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3557211 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40933, endtime: 40933, seqnum: 0, connid: 0","0"
"10:46:34.3558837 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3559041 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40933, endtime: 40933, seqnum: 0, connid: 0","0"
"10:46:34.3559596 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3559741 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40933, endtime: 40933, seqnum: 0, connid: 0","0"
"10:46:34.3562514 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3562702 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40933, endtime: 40933, seqnum: 0, connid: 0","0"
"10:46:34.3563231 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3563449 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40933, endtime: 40933, seqnum: 0, connid: 0","0"
"10:46:34.3570753 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000350","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.3571389 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000068","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:29:46 PM, ChangeTime: 3/20/2019 7:10:41 PM, AllocationSize: 462848, EndOfFile: 460400, FileAttributes: A","2512"
"10:46:34.3571658 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000090","","2512"
"10:46:34.3575912 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.3576394 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000055","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:32:49 PM, ChangeTime: 3/20/2019 7:10:28 PM, AllocationSize: 225280, EndOfFile: 223609, FileAttributes: A","2512"
"10:46:34.3577243 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000354","","2512"
"10:46:34.3578382 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000086","","2512"
"10:46:34.3580183 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000102","","2512"
"10:46:34.3582465 AM","firefox.exe","7384","Thread Create","","0.0000000","Thread ID: 212","5728"
"10:46:34.3583566 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3583929 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40934, endtime: 40934, seqnum: 0, connid: 0","0"
"10:46:34.3584650 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3584829 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40934, endtime: 40934, seqnum: 0, connid: 0","0"
"10:46:34.3586954 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3587116 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40934, endtime: 40934, seqnum: 0, connid: 0","0"
"10:46:34.3587722 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3587961 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40934, endtime: 40934, seqnum: 0, connid: 0","0"
"10:46:34.3589348 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3589518 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40934, endtime: 40934, seqnum: 0, connid: 0","0"
"10:46:34.3590034 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3590180 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40934, endtime: 40934, seqnum: 0, connid: 0","0"
"10:46:34.3591451 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000798","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","212"
"10:46:34.3592155 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.3592462 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000060","CreationTime: 3/25/2020 10:27:09 AM, LastAccessTime: 3/25/2020 10:27:09 AM, LastWriteTime: 3/26/2020 10:35:17 AM, ChangeTime: 3/26/2020 10:35:17 AM, AllocationSize: 65536, EndOfFile: 65536, FileAttributes: A","212"
"10:46:34.3592637 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:32:49 PM, ChangeTime: 3/20/2019 7:10:28 PM, AllocationSize: 225280, EndOfFile: 223609, FileAttributes: A","2512"
"10:46:34.3592748 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000090","","212"
"10:46:34.3594992 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3595227 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40934, endtime: 40934, seqnum: 0, connid: 0","0"
"10:46:34.3595231 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000474","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Opened","212"
"10:46:34.3595790 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3595948 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40934, endtime: 40934, seqnum: 0, connid: 0","0"
"10:46:34.3596196 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0319876","Offset: 0, Length: 100, Priority: Normal","212"
"10:46:34.3596929 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0318819","Offset: 0, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Priority: Normal","212"
"10:46:34.3597710 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3597945 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40934, endtime: 40934, seqnum: 0, connid: 0","0"
"10:46:34.3598542 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3598713 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40934, endtime: 40934, seqnum: 0, connid: 0","0"
"10:46:34.3599306 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000154","","2512"
"10:46:34.3602566 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000307","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.3603218 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.3603517 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.3603718 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.3604016 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:34.3607920 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3608223 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40934, endtime: 40934, seqnum: 0, connid: 0","0"
"10:46:34.3608953 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.3609124 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40934, endtime: 40934, seqnum: 0, connid: 0","0"
"10:46:34.3846304 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\F7C4AA2955320E031409ABB58451107FA9D23AF3","0.0000367","Desired Access: Generic Read/Write, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:34.3847042 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\F7C4AA2955320E031409ABB58451107FA9D23AF3","0.0225779","Offset: 28,672, Length: 2,829, Priority: Normal","6572"
"10:46:34.3848591 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\F7C4AA2955320E031409ABB58451107FA9D23AF3","0.0223914","Offset: 28,672, Length: 2,829, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:34.3862342 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000124","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:34.3863895 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000154","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:32:49 PM, ChangeTime: 3/20/2019 7:10:28 PM, FileAttributes: A, AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x300000006228d, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:34.3868563 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000328","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.3869292 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000077","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.3870065 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.3870287 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.3870628 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:34.3872603 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000124","","2512"
"10:46:34.3917668 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000107","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","212"
"10:46:34.3917979 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000047","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","212"
"10:46:34.3918193 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000030","Offset: 1,073,741,824, Length: 1","212"
"10:46:34.3922856 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite-journal","0.0000290","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","212"
"10:46:34.3926274 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite-wal","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","212"
"10:46:34.3926811 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000077","AllocationSize: 65,536, EndOfFile: 65,536, NumberOfLinks: 1, DeletePending: False, Directory: False","212"
"10:46:34.3927166 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0651055","Offset: 0, Length: 32,768","212"
"10:46:34.3983042 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000683","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.3984296 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000086","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.3984672 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.3984928 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.3985295 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:34.4001167 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000251","","2512"
"10:46:34.4008066 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000307","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4008766 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000059","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.4009090 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.4009312 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.4009657 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:34.4035368 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0001161","","2512"
"10:46:34.4041401 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0176683","Offset: 39,845,888, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:34.4072420 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000307","","2512"
"10:46:34.4073931 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000115","","2512"
"10:46:34.4076124 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\302CC90EFF72B66AB97EBA35CF577497A1BBD95A","0.0000405","Desired Access: Generic Read/Write, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:34.4077054 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\302CC90EFF72B66AB97EBA35CF577497A1BBD95A","0.0219652","Offset: 20,480, Length: 2,541, Priority: Normal","6572"
"10:46:34.4078180 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\302CC90EFF72B66AB97EBA35CF577497A1BBD95A","0.0206477","Offset: 20,480, Length: 2,541, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:34.4080207 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4080629 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000043","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:34.4080774 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000052","","2512"
"10:46:34.4083164 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000401","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4084149 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000069","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:34.4084439 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000107","","2512"
"10:46:34.4088523 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000221","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4089069 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000051","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:34.4089269 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000073","","2512"
"10:46:34.4089905 AM","firefox.exe","7384","CreateFile","C:\","0.0000166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4090272 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000209","Filter: Windows, 1: Windows","2512"
"10:46:34.4090673 AM","firefox.exe","7384","CloseFile","C:\","0.0000073","","2512"
"10:46:34.4094577 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000179","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4094982 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000192","Filter: System32, 1: System32","2512"
"10:46:34.4095405 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000089","","2512"
"10:46:34.4096966 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4097231 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wbem","0.0000175","Filter: wbem, 1: wbem","2512"
"10:46:34.4097525 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000043","","2512"
"10:46:34.4099040 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4099356 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wbem\wbemsvc.dll","0.0000158","Filter: wbemsvc.dll, 1: wbemsvc.dll","2512"
"10:46:34.4099650 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem","0.0000051","","2512"
"10:46:34.4102172 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4102611 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:34.4102739 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000051","","2512"
"10:46:34.4103153 AM","firefox.exe","7384","CreateFile","C:\","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4103383 AM","firefox.exe","7384","QueryDirectory","C:\WINDOWS","0.0000107","Filter: WINDOWS, 1: Windows","2512"
"10:46:34.4103597 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:34.4104595 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000179","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4104924 AM","firefox.exe","7384","QueryDirectory","C:\Windows\system32","0.0000132","Filter: system32, 1: System32","2512"
"10:46:34.4105261 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000042","","2512"
"10:46:34.4106251 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4106468 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wbem","0.0000158","Filter: wbem, 1: wbem","2512"
"10:46:34.4106733 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:34.4112629 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000039","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4112919 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000316","Desired Access: Read","5728"
"10:46:34.4113316 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem","0.0000196","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4113461 AM","firefox.exe","7384","RegSetInfoKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000017","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:34.4113632 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000047","Index: 0, Name: AppXq0fevzme2pys62n3e0fbqa7peapykr8v","5728"
"10:46:34.4113726 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wbem\wbemsvc.dll","0.0000222","Filter: wbemsvc.dll, 1: wbemsvc.dll","2512"
"10:46:34.4113820 AM","firefox.exe","7384","RegQueryKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000038","Query: Cached, SubKeys: 1, Values: 0","5728"
"10:46:34.4113990 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000034","Index: 0, Name: AppXq0fevzme2pys62n3e0fbqa7peapykr8v","5728"
"10:46:34.4114123 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem","0.0000059","","2512"
"10:46:34.4114161 AM","firefox.exe","7384","RegQueryKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000017","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:34.4114344 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000103","Desired Access: Read","5728"
"10:46:34.4114664 AM","firefox.exe","7384","RegQueryKey","HKU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4114822 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000098","Desired Access: Read","5728"
"10:46:34.4115066 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000243","Desired Access: Read","5728"
"10:46:34.4115479 AM","firefox.exe","7384","RegSetInfoKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000013","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:34.4115684 AM","firefox.exe","7384","RegEnumValue","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000039","Index: 0, Length: 256","5728"
"10:46:34.4115859 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000017","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:34.4116013 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000128","Desired Access: Read","5728"
"10:46:34.4116375 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000017","","5728"
"10:46:34.4116550 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4116627 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4116712 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\AppModel\StateChange\PackageList\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000222","Desired Access: Read","5728"
"10:46:34.4117028 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000039","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","2512"
"10:46:34.4117173 AM","firefox.exe","7384","RegQueryKey","HKU","0.0000022","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4117220 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000094","","2512"
"10:46:34.4117344 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000064","Desired Access: Read","5728"
"10:46:34.4117557 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4117711 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000068","Desired Access: Read","5728"
"10:46:34.4117916 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000098","Desired Access: Read","5728"
"10:46:34.4118189 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000021","","5728"
"10:46:34.4118351 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe\PackageStatus","0.0000047","Length: 16","5728"
"10:46:34.4118470 AM","firefox.exe","7384","CreateFile","C:\","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4118551 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000013","","5728"
"10:46:34.4118705 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000013","","5728"
"10:46:34.4118824 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000163","Filter: Windows, 1: Windows","2512"
"10:46:34.4118854 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000034","Index: 1, Length: 288","5728"
"10:46:34.4119034 AM","firefox.exe","7384","RegCloseKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000017","","5728"
"10:46:34.4119162 AM","firefox.exe","7384","CloseFile","C:\","0.0000064","","2512"
"10:46:34.4119183 AM","firefox.exe","7384","RegCloseKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000013","","5728"
"10:46:34.4119388 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4119546 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000106","Desired Access: Read","5728"
"10:46:34.4119789 AM","firefox.exe","7384","RegSetInfoKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000013","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:34.4119925 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000034","Index: 0, Name: AppXq0fevzme2pys62n3e0fbqa7peapykr8v","5728"
"10:46:34.4120083 AM","firefox.exe","7384","RegQueryKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000026","Query: Cached, SubKeys: 1, Values: 0","5728"
"10:46:34.4120232 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000030","Index: 0, Name: AppXq0fevzme2pys62n3e0fbqa7peapykr8v","5728"
"10:46:34.4120386 AM","firefox.exe","7384","RegQueryKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000013","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:34.4120540 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000047","Desired Access: Read","5728"
"10:46:34.4120736 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4120770 AM","firefox.exe","7384","RegQueryKey","HKU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4120924 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000076","Desired Access: Read","5728"
"10:46:34.4121056 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000119","Filter: System32, 1: System32","2512"
"10:46:34.4121128 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000073","Desired Access: Read","5728"
"10:46:34.4121291 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000162","","2512"
"10:46:34.4121338 AM","firefox.exe","7384","RegSetInfoKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000085","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:34.4121581 AM","firefox.exe","7384","RegEnumValue","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000038","Index: 0, Length: 256","5728"
"10:46:34.4121760 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000017","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:34.4121905 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000047","Desired Access: Read","5728"
"10:46:34.4122114 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000017","","5728"
"10:46:34.4122272 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4122421 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\AppModel\StateChange\PackageList\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000124","Desired Access: Read","5728"
"10:46:34.4122575 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4122741 AM","firefox.exe","7384","RegQueryKey","HKU","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4122805 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wbem","0.0000158","Filter: wbem, 1: wbem","2512"
"10:46:34.4122895 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000047","Desired Access: Read","5728"
"10:46:34.4123074 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:34.4123091 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4123245 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000059","Desired Access: Read","5728"
"10:46:34.4123428 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000081","Desired Access: Read","5728"
"10:46:34.4123671 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000017","","5728"
"10:46:34.4123821 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe\PackageStatus","0.0000030","Length: 16","5728"
"10:46:34.4123983 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000013","","5728"
"10:46:34.4124102 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem","0.0000116","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4124124 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000017","","5728"
"10:46:34.4124286 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000034","Index: 1, Length: 288","5728"
"10:46:34.4124337 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wbem\fastprox.dll","0.0000124","Filter: fastprox.dll, 1: fastprox.dll","2512"
"10:46:34.4124448 AM","firefox.exe","7384","RegCloseKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000021","","5728"
"10:46:34.4124597 AM","firefox.exe","7384","RegCloseKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000013","","5728"
"10:46:34.4125041 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4125178 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000106","Desired Access: Read","5728"
"10:46:34.4125527 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000043","Query: Name","5728"
"10:46:34.4125690 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4125796 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4125886 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem","0.0000081","","2512"
"10:46:34.4125903 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\http","0.0000094","Desired Access: Read","5728"
"10:46:34.4126206 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4126308 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000141","Desired Access: Read","5728"
"10:46:34.4126573 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4126667 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000064","Desired Access: Query Value","5728"
"10:46:34.4126837 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice\ProgId","0.0000034","Type: REG_SZ, Length: 56, Data: FirefoxURL-6F193CCC56814779","5728"
"10:46:34.4126970 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000012","","5728"
"10:46:34.4127068 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4127162 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000021","Desired Access: Query Value","5728"
"10:46:34.4127264 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice\Hash","0.0000026","Type: REG_SZ, Length: 26, Data: WGuVFWKHpGI=","5728"
"10:46:34.4127371 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000012","","5728"
"10:46:34.4127477 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4127571 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000026","Desired Access: Read","5728"
"10:46:34.4127678 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4127767 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000022","Desired Access: Read","5728"
"10:46:34.4127870 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000021","Query: Cached, SubKeys: 0, Values: 2","5728"
"10:46:34.4127981 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000008","","5728"
"10:46:34.4128361 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000008","","5728"
"10:46:34.4128527 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000008","","5728"
"10:46:34.4128668 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000068","Query: Name","5728"
"10:46:34.4128813 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4128902 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4128979 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4129077 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779","0.0000043","Desired Access: Read","5728"
"10:46:34.4129231 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000111","Desired Access: Read","5728"
"10:46:34.4129359 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000055","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","2512"
"10:46:34.4129453 AM","firefox.exe","7384","RegCloseKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000013","","5728"
"10:46:34.4129538 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000073","","2512"
"10:46:34.4129568 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000026","Query: Name","5728"
"10:46:34.4129675 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4129760 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4129854 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779","0.0000034","Desired Access: Read","5728"
"10:46:34.4129978 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000038","Desired Access: Read","5728"
"10:46:34.4130093 AM","firefox.exe","7384","CreateFile","C:\","0.0000153","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4130110 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000030","Query: Name","5728"
"10:46:34.4130221 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4130349 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779\CurVer","0.0000042","Desired Access: Query Value","5728"
"10:46:34.4130434 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000184","Filter: Windows, 1: Windows","2512"
"10:46:34.4130473 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000038","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4130707 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779\CurVer","0.0000056","Desired Access: Query Value","5728"
"10:46:34.4130916 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000030","Query: Name","5728"
"10:46:34.4131027 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4131189 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779","0.0000056","Desired Access: Read","5728"
"10:46:34.4131223 AM","firefox.exe","7384","CloseFile","C:\","0.0000086","","2512"
"10:46:34.4131369 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4131509 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000039","Desired Access: Read","5728"
"10:46:34.4131697 AM","firefox.exe","7384","RegCloseKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000017","","5728"
"10:46:34.4131902 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000047","Query: Name","5728"
"10:46:34.4132068 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4132243 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779\Progid","0.0000064","Desired Access: Query Value","5728"
"10:46:34.4132418 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4132559 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779\Progid","0.0000047","Desired Access: Query Value","5728"
"10:46:34.4132794 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\http","0.0000017","","5728"
"10:46:34.4132956 AM","firefox.exe","7384","RegCloseKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000013","","5728"
"10:46:34.4133178 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000034","Query: Name","5728"
"10:46:34.4133331 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4133438 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4133570 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000043","Desired Access: Read","5728"
"10:46:34.4133741 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000158","Desired Access: Read","5728"
"10:46:34.4134069 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000056","Query: Name","5728"
"10:46:34.4134244 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000017","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4134406 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000047","Desired Access: Maximum Allowed","5728"
"10:46:34.4134551 AM","firefox.exe","7384","RegQueryValue","HKCR\FirefoxURL-6F193CCC56814779\shell\open\command\(Default)","0.0000035","Type: REG_SZ, Length: 128, Data: ""C:\Program Files\Firefox Nightly\firefox.exe"" -osint -url ""%1""","5728"
"10:46:34.4134684 AM","firefox.exe","7384","RegCloseKey","HKCR\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000013","","5728"
"10:46:34.4137939 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000320","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4138558 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000320","Filter: System32, 1: System32","2512"
"10:46:34.4139138 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000090","","2512"
"10:46:34.4143213 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0002858","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4147991 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wbem","0.0006844","Filter: wbem, 1: wbem","2512"
"10:46:34.4156026 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000375","","2512"
"10:46:34.4163778 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem","0.0000269","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4164311 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wbem\fastprox.dll","0.0000222","Filter: fastprox.dll, 1: fastprox.dll","2512"
"10:46:34.4164772 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem","0.0000081","","2512"
"10:46:34.4167217 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000239","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4167938 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000060","AllocationSize: 974,848, EndOfFile: 973,312, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.4168224 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\fastprox.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.4168442 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000034","AllocationSize: 974,848, EndOfFile: 973,312, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.4168770 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\fastprox.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:34.4169747 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000154","","2512"
"10:46:34.4173737 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000183","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4174342 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000039","AllocationSize: 974,848, EndOfFile: 973,312, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.4174543 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\fastprox.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.4174684 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000021","AllocationSize: 974,848, EndOfFile: 973,312, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.4174901 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\fastprox.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:34.4175584 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000068","","2512"
"10:46:34.4177858 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000346","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4178310 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000030","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:34.4178430 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000038","","2512"
"10:46:34.4180196 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4180414 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:34.4180546 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000039","","2512"
"10:46:34.4181677 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000136","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4182142 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000030","AllocationSize: 974,848, EndOfFile: 973,312, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.4182308 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\fastprox.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.4182432 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000017","AllocationSize: 974,848, EndOfFile: 973,312, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.4182620 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\fastprox.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:34.4184228 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000030","AllocationSize: 974,848, EndOfFile: 973,312, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.4184390 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\fastprox.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.4184518 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000018","AllocationSize: 974,848, EndOfFile: 973,312, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.4184736 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wbem\fastprox.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:34.4186788 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\wbem\fastprox.dll","0.0180907","Offset: 0, Length: 524,288, Priority: Normal","2512"
"10:46:34.4187983 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\wbem\fastprox.dll","0.0177528","Offset: 32,768, Length: 491,520, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2512"
"10:46:34.4299983 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7E4E68E40F5A59B95E0A61BB431BA54BA580C4B9","0.0000401","Desired Access: Generic Read/Write, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:34.4301383 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7E4E68E40F5A59B95E0A61BB431BA54BA580C4B9","0.0188476","Offset: 32,768, Length: 1,631, Priority: Normal","6572"
"10:46:34.4302381 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7E4E68E40F5A59B95E0A61BB431BA54BA580C4B9","0.0187222","Offset: 32,768, Length: 1,631, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:34.4333459 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0402582","Offset: 40,894,464, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:34.4492457 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\97CFA549897ECA75A30A13A2EA3204AB0C02DCA2","0.0000311","Desired Access: Generic Read/Write, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:34.4493144 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\97CFA549897ECA75A30A13A2EA3204AB0C02DCA2","0.1098352","Offset: 24,576, Length: 3,691, Priority: Normal","6572"
"10:46:34.4493686 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\97CFA549897ECA75A30A13A2EA3204AB0C02DCA2","0.1097239","Offset: 24,576, Length: 3,691, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:34.4579416 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000060","Offset: 1,073,741,826, Length: 510","212"
"10:46:34.4672293 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000030","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4672528 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000145","Desired Access: Read","5728"
"10:46:34.4672813 AM","firefox.exe","7384","RegSetInfoKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000013","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:34.4672937 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000043","Index: 0, Name: AppXq0fevzme2pys62n3e0fbqa7peapykr8v","5728"
"10:46:34.4673074 AM","firefox.exe","7384","RegQueryKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000030","Query: Cached, SubKeys: 1, Values: 0","5728"
"10:46:34.4673193 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000022","Index: 0, Name: AppXq0fevzme2pys62n3e0fbqa7peapykr8v","5728"
"10:46:34.4673300 AM","firefox.exe","7384","RegQueryKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000013","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:34.4673424 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000034","Desired Access: Read","5728"
"10:46:34.4673603 AM","firefox.exe","7384","RegQueryKey","HKU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4673709 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000077","Desired Access: Read","5728"
"10:46:34.4673880 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000077","Desired Access: Read","5728"
"10:46:34.4674051 AM","firefox.exe","7384","RegSetInfoKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000008","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:34.4674162 AM","firefox.exe","7384","RegEnumValue","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000030","Index: 0, Length: 256","5728"
"10:46:34.4674277 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000008","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:34.4674375 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000038","Desired Access: Read","5728"
"10:46:34.4674554 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000013","","5728"
"10:46:34.4674657 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000012","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4674755 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\AppModel\StateChange\PackageList\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000128","Desired Access: Read","5728"
"10:46:34.4675028 AM","firefox.exe","7384","RegQueryKey","HKU","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4675122 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000038","Desired Access: Read","5728"
"10:46:34.4675250 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4675339 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000052","Desired Access: Read","5728"
"10:46:34.4675484 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000090","Desired Access: Read","5728"
"10:46:34.4675715 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000017","","5728"
"10:46:34.4675843 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe\PackageStatus","0.0000038","Length: 16","5728"
"10:46:34.4675975 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000009","","5728"
"10:46:34.4676065 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000012","","5728"
"10:46:34.4676154 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000026","Index: 1, Length: 288","5728"
"10:46:34.4676261 AM","firefox.exe","7384","RegCloseKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000013","","5728"
"10:46:34.4676351 AM","firefox.exe","7384","RegCloseKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000008","","5728"
"10:46:34.4676483 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4676577 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000059","Desired Access: Read","5728"
"10:46:34.4676726 AM","firefox.exe","7384","RegSetInfoKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000013","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:34.4676833 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000021","Index: 0, Name: AppXq0fevzme2pys62n3e0fbqa7peapykr8v","5728"
"10:46:34.4676935 AM","firefox.exe","7384","RegQueryKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000021","Query: Cached, SubKeys: 1, Values: 0","5728"
"10:46:34.4677033 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000022","Index: 0, Name: AppXq0fevzme2pys62n3e0fbqa7peapykr8v","5728"
"10:46:34.4677131 AM","firefox.exe","7384","RegQueryKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000013","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:34.4677225 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000030","Desired Access: Read","5728"
"10:46:34.4677366 AM","firefox.exe","7384","RegQueryKey","HKU","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4677460 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000051","Desired Access: Read","5728"
"10:46:34.4677584 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000047","Desired Access: Read","5728"
"10:46:34.4677712 AM","firefox.exe","7384","RegSetInfoKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000008","KeySetInformationClass: KeySetHandleTagsInformation, Length: 0","5728"
"10:46:34.4677810 AM","firefox.exe","7384","RegEnumValue","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000034","Index: 0, Length: 256","5728"
"10:46:34.4677921 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000008","Query: HandleTags, HandleTags: 0x100","5728"
"10:46:34.4678015 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000034","Desired Access: Read","5728"
"10:46:34.4678143 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000008","","5728"
"10:46:34.4678241 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4678330 AM","firefox.exe","7384","RegOpenKey","HKLM\Software\Microsoft\Windows\CurrentVersion\AppModel\StateChange\PackageList\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000077","Desired Access: Read","5728"
"10:46:34.4678522 AM","firefox.exe","7384","RegQueryKey","HKU","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4678612 AM","firefox.exe","7384","RegOpenKey","HKCU","0.0000034","Desired Access: Read","5728"
"10:46:34.4678731 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4678821 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000038","Desired Access: Read","5728"
"10:46:34.4678932 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000051","Desired Access: Read","5728"
"10:46:34.4679073 AM","firefox.exe","7384","RegCloseKey","HKCU","0.0000012","","5728"
"10:46:34.4679171 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe\PackageStatus","0.0000025","Length: 16","5728"
"10:46:34.4679277 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe","0.0000009","","5728"
"10:46:34.4679367 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages","0.0000009","","5728"
"10:46:34.4679461 AM","firefox.exe","7384","RegEnumKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000026","Index: 1, Length: 288","5728"
"10:46:34.4679563 AM","firefox.exe","7384","RegCloseKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000009","","5728"
"10:46:34.4679649 AM","firefox.exe","7384","RegCloseKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\http","0.0000012","","5728"
"10:46:34.4679875 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4679973 AM","firefox.exe","7384","RegOpenKey","HKCR\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\PackageRepository\Extensions\windows.protocol\AppXq0fevzme2pys62n3e0fbqa7peapykr8v","0.0000068","Desired Access: Read","5728"
"10:46:34.4680195 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000042","Query: Name","5728"
"10:46:34.4680502 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4680587 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4680685 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\http","0.0000030","Desired Access: Read","5728"
"10:46:34.4680856 AM","firefox.exe","7384","RegQueryKey","HKCU","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4680950 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000051","Desired Access: Read","5728"
"10:46:34.4681095 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4681185 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000025","Desired Access: Query Value","5728"
"10:46:34.4681296 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice\ProgId","0.0000038","Type: REG_SZ, Length: 56, Data: FirefoxURL-6F193CCC56814779","5728"
"10:46:34.4681424 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000008","","5728"
"10:46:34.4681513 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4681603 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000021","Desired Access: Query Value","5728"
"10:46:34.4681705 AM","firefox.exe","7384","RegQueryValue","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice\Hash","0.0000022","Type: REG_SZ, Length: 26, Data: WGuVFWKHpGI=","5728"
"10:46:34.4681808 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000012","","5728"
"10:46:34.4681901 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4681991 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000026","Desired Access: Read","5728"
"10:46:34.4682093 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4682183 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000021","Desired Access: Read","5728"
"10:46:34.4682281 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000022","Query: Cached, SubKeys: 0, Values: 2","5728"
"10:46:34.4682388 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http\UserChoice","0.0000013","","5728"
"10:46:34.4682695 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000013","","5728"
"10:46:34.4682806 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Microsoft\Windows\Shell\Associations\UrlAssociations\http","0.0000009","","5728"
"10:46:34.4682900 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000030","Query: Name","5728"
"10:46:34.4683015 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4683092 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4683186 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779","0.0000038","Desired Access: Read","5728"
"10:46:34.4683331 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000042","Desired Access: Read","5728"
"10:46:34.4683467 AM","firefox.exe","7384","RegCloseKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000009","","5728"
"10:46:34.4683561 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000026","Query: Name","5728"
"10:46:34.4683668 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4683745 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4683830 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779","0.0000030","Desired Access: Read","5728"
"10:46:34.4683962 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000047","Desired Access: Read","5728"
"10:46:34.4684124 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000052","Query: Name","5728"
"10:46:34.4684261 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4684415 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779\CurVer","0.0000042","Desired Access: Query Value","5728"
"10:46:34.4684538 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4684632 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779\CurVer","0.0000026","Desired Access: Query Value","5728"
"10:46:34.4684747 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000030","Query: Name","5728"
"10:46:34.4684854 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4684965 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779","0.0000038","Desired Access: Read","5728"
"10:46:34.4685076 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4685170 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000021","Desired Access: Read","5728"
"10:46:34.4685281 AM","firefox.exe","7384","RegCloseKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000012","","5728"
"10:46:34.4685387 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000026","Query: Name","5728"
"10:46:34.4685485 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4685596 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779\Progid","0.0000035","Desired Access: Query Value","5728"
"10:46:34.4685703 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4685788 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779\Progid","0.0000035","Desired Access: Query Value","5728"
"10:46:34.4685921 AM","firefox.exe","7384","RegCloseKey","HKCU\Software\Classes\http","0.0000012","","5728"
"10:46:34.4686010 AM","firefox.exe","7384","RegCloseKey","HKCR\FirefoxURL-6F193CCC56814779","0.0000009","","5728"
"10:46:34.4686305 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000030","Query: Name","5728"
"10:46:34.4686424 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000013","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4686497 AM","firefox.exe","7384","RegQueryKey","HKCU\Software\Classes","0.0000008","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4686578 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000030","Desired Access: Read","5728"
"10:46:34.4686689 AM","firefox.exe","7384","RegOpenKey","HKCR\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000051","Desired Access: Read","5728"
"10:46:34.4686829 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000035","Query: Name","5728"
"10:46:34.4686936 AM","firefox.exe","7384","RegQueryKey","HKCR\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000009","Query: HandleTags, HandleTags: 0x0","5728"
"10:46:34.4687039 AM","firefox.exe","7384","RegOpenKey","HKCU\Software\Classes\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000038","Desired Access: Maximum Allowed","5728"
"10:46:34.4687149 AM","firefox.exe","7384","RegQueryValue","HKCR\FirefoxURL-6F193CCC56814779\shell\open\command\(Default)","0.0000030","Type: REG_SZ, Length: 128, Data: ""C:\Program Files\Firefox Nightly\firefox.exe"" -osint -url ""%1""","5728"
"10:46:34.4687256 AM","firefox.exe","7384","RegCloseKey","HKCR\FirefoxURL-6F193CCC56814779\shell\open\command","0.0000013","","5728"
"10:46:34.4730303 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000111","Offset: 120, Length: 1","8244"
"10:46:34.4730981 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000055","Offset: 124, Length: 1","8244"
"10:46:34.4731216 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4731557 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40945, endtime: 40945, seqnum: 0, connid: 0","0"
"10:46:34.4732159 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4732308 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40945, endtime: 40945, seqnum: 0, connid: 0","0"
"10:46:34.4734198 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4734339 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40945, endtime: 40945, seqnum: 0, connid: 0","0"
"10:46:34.4734748 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4734881 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40945, endtime: 40945, seqnum: 0, connid: 0","0"
"10:46:34.4737176 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4737313 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40945, endtime: 40945, seqnum: 0, connid: 0","0"
"10:46:34.4737718 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4737825 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40945, endtime: 40945, seqnum: 0, connid: 0","0"
"10:46:34.4739903 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4740043 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40945, endtime: 40945, seqnum: 0, connid: 0","0"
"10:46:34.4740598 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4740705 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40945, endtime: 40945, seqnum: 0, connid: 0","0"
"10:46:34.4741524 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4741635 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40945, endtime: 40945, seqnum: 0, connid: 0","0"
"10:46:34.4741968 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4742057 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40945, endtime: 40945, seqnum: 0, connid: 0","0"
"10:46:34.4742945 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4743056 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40945, endtime: 40945, seqnum: 0, connid: 0","0"
"10:46:34.4743359 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4743448 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40945, endtime: 40945, seqnum: 0, connid: 0","0"
"10:46:34.4744400 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4744511 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40945, endtime: 40945, seqnum: 0, connid: 0","0"
"10:46:34.4744814 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4744903 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40945, endtime: 40945, seqnum: 0, connid: 0","0"
"10:46:34.4745778 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4745884 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40945, endtime: 40945, seqnum: 0, connid: 0","0"
"10:46:34.4746204 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4746298 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40945, endtime: 40945, seqnum: 0, connid: 0","0"
"10:46:34.4757703 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000090","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","212"
"10:46:34.4758002 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","212"
"10:46:34.4758181 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000026","Offset: 1,073,741,824, Length: 1","212"
"10:46:34.4761253 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite-journal","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","212"
"10:46:34.4761710 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000072","Offset: 24, Length: 16","212"
"10:46:34.4763783 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite-wal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","212"
"10:46:34.4764120 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000039","AllocationSize: 65,536, EndOfFile: 65,536, NumberOfLinks: 1, DeletePending: False, Directory: False","212"
"10:46:34.4764440 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000026","Offset: 1,073,741,826, Length: 510","212"
"10:46:34.4769134 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000064","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","212"
"10:46:34.4769321 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","212"
"10:46:34.4769466 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000017","Offset: 1,073,741,824, Length: 1","212"
"10:46:34.4777449 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite-journal","0.0000295","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","212"
"10:46:34.4778102 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000103","Offset: 24, Length: 16","212"
"10:46:34.4780957 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite-wal","0.0000315","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","212"
"10:46:34.4781447 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4781789 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40946, endtime: 40946, seqnum: 0, connid: 0","0"
"10:46:34.4782488 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4782659 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40946, endtime: 40946, seqnum: 0, connid: 0","0"
"10:46:34.4783602 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000085","AllocationSize: 65,536, EndOfFile: 65,536, NumberOfLinks: 1, DeletePending: False, Directory: False","212"
"10:46:34.4783913 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000056","Exclusive: True, Offset: 1,073,741,825, Length: 1, Fail Immediately: True","212"
"10:46:34.4787630 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite-journal","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","212"
"10:46:34.4789477 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite-journal","0.0001702","Desired Access: Generic Read/Write, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","212"
"10:46:34.4791606 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite-journal","0.0000751","Offset: 0, Length: 512, Priority: Normal","212"
"10:46:34.4792788 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite-journal","0.0000179","Offset: 512, Length: 4, Priority: Normal","212"
"10:46:34.4793296 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite-journal","0.0006690","Offset: 516, Length: 32,768, Priority: Normal","212"
"10:46:34.4800336 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite-journal","0.0000102","Offset: 33,284, Length: 4","212"
"10:46:34.4800656 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000055","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","212"
"10:46:34.4800856 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000030","Offset: 1,073,741,826, Length: 510","212"
"10:46:34.4801010 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000021","Exclusive: True, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","212"
"10:46:34.4801185 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000098","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.4801232 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite-journal","0.0000038","Offset: 33,792, Length: 8","212"
"10:46:34.4801667 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite-journal","0.0000414","Offset: 0, Length: 12, Priority: Normal","212"
"10:46:34.4802298 AM","firefox.exe","7384","FlushBuffersFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite-journal","0.2626286","","212"
"10:46:34.4802981 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite-journal","0.0065494","Offset: 0, Length: 36,864, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","212"
"10:46:34.4809774 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000170","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.4817932 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4818294 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40946, endtime: 40946, seqnum: 0, connid: 0","0"
"10:46:34.4819280 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4819557 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4819672 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40946, endtime: 40946, seqnum: 0, connid: 0","0"
"10:46:34.4820295 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40946, endtime: 40946, seqnum: 0, connid: 0","0"
"10:46:34.4820423 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4820547 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40946, endtime: 40946, seqnum: 0, connid: 0","0"
"10:46:34.4820816 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4820969 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40946, endtime: 40946, seqnum: 0, connid: 0","0"
"10:46:34.4821328 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4821447 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40946, endtime: 40946, seqnum: 0, connid: 0","0"
"10:46:34.4822254 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4822386 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40946, endtime: 40946, seqnum: 0, connid: 0","0"
"10:46:34.4822881 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4822996 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40946, endtime: 40946, seqnum: 0, connid: 0","0"
"10:46:34.4823521 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4823628 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40946, endtime: 40946, seqnum: 0, connid: 0","0"
"10:46:34.4823862 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4823956 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40946, endtime: 40946, seqnum: 0, connid: 0","0"
"10:46:34.4824434 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4824541 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40946, endtime: 40946, seqnum: 0, connid: 0","0"
"10:46:34.4826098 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\segoeuib.ttf","0.0039407","Offset: 114,688, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:34.4843843 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000124","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.4852957 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000183","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.4863508 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4863858 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40946, endtime: 40946, seqnum: 0, connid: 0","0"
"10:46:34.4864635 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4864873 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40946, endtime: 40946, seqnum: 0, connid: 0","0"
"10:46:34.4865522 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4865680 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40946, endtime: 40946, seqnum: 0, connid: 0","0"
"10:46:34.4865987 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4866107 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40946, endtime: 40946, seqnum: 0, connid: 0","0"
"10:46:34.4866823 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4866956 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40946, endtime: 40946, seqnum: 0, connid: 0","0"
"10:46:34.4867122 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\segoeuib.ttf","0.0606798","Offset: 876,544, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:34.4867463 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4867583 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40946, endtime: 40946, seqnum: 0, connid: 0","0"
"10:46:34.4868120 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4868236 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40946, endtime: 40946, seqnum: 0, connid: 0","0"
"10:46:34.4868466 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4868568 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40946, endtime: 40946, seqnum: 0, connid: 0","0"
"10:46:34.4869063 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4869174 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40946, endtime: 40946, seqnum: 0, connid: 0","0"
"10:46:34.4870237 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0334050","Offset: 41,943,040, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:34.4892667 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000192","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4893059 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000158","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:34.4894382 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000200","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:34.4895542 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000120","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4895815 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000026","Information: DACL","2512"
"10:46:34.4895960 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000047","","2512"
"10:46:34.4897065 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:34.4898060 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000115","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4898299 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:34.4898422 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:34.4901908 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000158","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:34.4903525 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000171","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:34.4904617 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000120","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4904873 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000026","Information: DACL","2512"
"10:46:34.4904997 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000039","","2512"
"10:46:34.4906072 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:34.4907045 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.4907276 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:34.4907387 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:34.4931037 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4931352 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40947, endtime: 40947, seqnum: 0, connid: 0","0"
"10:46:34.4932031 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4932219 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40947, endtime: 40947, seqnum: 0, connid: 0","0"
"10:46:34.4981337 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4981618 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40948, endtime: 40948, seqnum: 0, connid: 0","0"
"10:46:34.4982233 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.4982399 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40948, endtime: 40948, seqnum: 0, connid: 0","0"
"10:46:34.5009693 AM","firefox.exe","7384","TCP Connect","LAPTOP-49TAGD3F.lan1:49776 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65700, rcvwinscale: 8, sndwinscale: 8, seqnum: 0, connid: 0","0"
"10:46:34.5061904 AM","firefox.exe","7384","TCP Connect","LAPTOP-49TAGD3F.lan1:49777 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65700, rcvwinscale: 8, sndwinscale: 8, seqnum: 0, connid: 0","0"
"10:46:34.5074312 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.5074563 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40948, endtime: 40949, seqnum: 0, connid: 0","0"
"10:46:34.5075088 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.5075195 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40949, endtime: 40949, seqnum: 0, connid: 0","0"
"10:46:34.5272319 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49776 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 517, startime: 40948, endtime: 40950, seqnum: 0, connid: 0","0"
"10:46:34.5272618 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49776 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 2920, seqnum: 0, connid: 0","0"
"10:46:34.5273459 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49776 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 952, seqnum: 0, connid: 0","0"
"10:46:34.5275084 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000090","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.5275425 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.5275669 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.5280251 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.5280857 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000094","Offset: 24, Length: 16","2884"
"10:46:34.5281079 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49777 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 517, startime: 40948, endtime: 40951, seqnum: 0, connid: 0","0"
"10:46:34.5284176 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.5284684 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.5285060 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.5287871 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:34.5288055 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:34.5288191 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","8316"
"10:46:34.5290606 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49777 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 2920, seqnum: 0, connid: 0","0"
"10:46:34.5291169 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:34.5291647 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Offset: 24, Length: 16","8316"
"10:46:34.5293691 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:34.5294032 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:34.5294263 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","8316"
"10:46:34.5304516 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","8316"
"10:46:34.5304737 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","8316"
"10:46:34.5304887 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49777 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 952, seqnum: 0, connid: 0","0"
"10:46:34.5304934 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","8316"
"10:46:34.5307558 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:34.5307959 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","8316"
"10:46:34.5310041 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","8316"
"10:46:34.5310374 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","8316"
"10:46:34.5310604 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","8316"
"10:46:34.5316479 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.5316714 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40951, endtime: 40951, seqnum: 0, connid: 0","0"
"10:46:34.5327022 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.2378303","Offset: 42,991,616, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:34.5330798 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.5330995 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40951, endtime: 40951, seqnum: 0, connid: 0","0"
"10:46:34.5332091 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.5332262 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.5332390 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.5335078 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.5335492 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","2884"
"10:46:34.5337463 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.5337902 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000052","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.5338231 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.5342156 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.5342318 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.5342446 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.5344985 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.5345378 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","2884"
"10:46:34.5347276 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.5347600 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000035","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.5347814 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.5349683 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","4692"
"10:46:34.5349853 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","4692"
"10:46:34.5349977 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","4692"
"10:46:34.5352336 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","4692"
"10:46:34.5352780 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000073","Offset: 24, Length: 16","4692"
"10:46:34.5354995 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","4692"
"10:46:34.5355327 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","4692"
"10:46:34.5355536 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","4692"
"10:46:34.5358207 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","4692"
"10:46:34.5358335 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","4692"
"10:46:34.5358451 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","4692"
"10:46:34.5360516 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","4692"
"10:46:34.5360866 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000106","Offset: 24, Length: 16","4692"
"10:46:34.5362790 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","4692"
"10:46:34.5363101 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","4692"
"10:46:34.5363298 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","4692"
"10:46:34.5367675 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.5367914 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40951, endtime: 40951, seqnum: 0, connid: 0","0"
"10:46:34.5371054 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.5371319 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40951, endtime: 40951, seqnum: 0, connid: 0","0"
"10:46:34.5372462 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.5372629 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.5372748 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.5375509 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.5375906 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","2884"
"10:46:34.5377826 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.5378146 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.5378372 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.5477171 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\segoeuib.ttf","0.2007512","Offset: 770,048, Length: 28,672, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:34.5549465 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49776 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 126, startime: 40951, endtime: 40953, seqnum: 0, connid: 0","0"
"10:46:34.5549670 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49776 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 416, startime: 40951, endtime: 40953, seqnum: 0, connid: 0","0"
"10:46:34.5549794 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49777 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 126, startime: 40951, endtime: 40953, seqnum: 0, connid: 0","0"
"10:46:34.5549858 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49777 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 416, startime: 40952, endtime: 40953, seqnum: 0, connid: 0","0"
"10:46:34.5549964 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49777 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 170, seqnum: 0, connid: 0","0"
"10:46:34.5550046 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49776 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 170, seqnum: 0, connid: 0","0"
"10:46:34.5553267 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.5553506 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.5553676 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000018","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.5556475 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.5556915 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","2884"
"10:46:34.5559035 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.5559381 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.5559633 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.5561438 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49777 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 515, seqnum: 0, connid: 0","0"
"10:46:34.5561732 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49776 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 549, seqnum: 0, connid: 0","0"
"10:46:34.5561830 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49777 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 636, seqnum: 0, connid: 0","0"
"10:46:34.5561898 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49776 -> server-13-227-74-108.sfo20.r.cloudfront.net:https","0.0000000","Length: 522, seqnum: 0, connid: 0","0"
"10:46:34.5563144 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:34.5563289 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:34.5563413 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","2884"
"10:46:34.5565619 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.5566003 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","2884"
"10:46:34.5568038 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:34.5568367 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:34.5568588 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","2884"
"10:46:34.5571055 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.5571294 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40953, endtime: 40953, seqnum: 0, connid: 0","0"
"10:46:34.5571776 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.5571899 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40953, endtime: 40953, seqnum: 0, connid: 0","0"
"10:46:34.5573307 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.5573418 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40953, endtime: 40954, seqnum: 0, connid: 0","0"
"10:46:34.5573721 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.5573828 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40954, endtime: 40954, seqnum: 0, connid: 0","0"
"10:46:34.5574395 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.5574634 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40954, endtime: 40954, seqnum: 0, connid: 0","0"
"10:46:34.5575172 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.5575326 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40954, endtime: 40954, seqnum: 0, connid: 0","0"
"10:46:34.5575594 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.5575701 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40954, endtime: 40954, seqnum: 0, connid: 0","0"
"10:46:34.5576119 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.5576243 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40954, endtime: 40954, seqnum: 0, connid: 0","0"
"10:46:34.5578867 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.5579025 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40954, endtime: 40954, seqnum: 0, connid: 0","0"
"10:46:34.5579515 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.5579729 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40954, endtime: 40954, seqnum: 0, connid: 0","0"
"10:46:34.5580211 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.5580322 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40954, endtime: 40954, seqnum: 0, connid: 0","0"
"10:46:34.5580527 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.5580608 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40954, endtime: 40954, seqnum: 0, connid: 0","0"
"10:46:34.5581124 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.5581235 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40954, endtime: 40954, seqnum: 0, connid: 0","0"
"10:46:34.5593770 AM","firefox.exe","7384","ReadFile","C:","0.1962917","Offset: 28,672, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:34.7431464 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0001720","Offset: 0, Length: 32,768, Priority: Normal","212"
"10:46:34.7434144 AM","firefox.exe","7384","FlushBuffersFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.3575138","","212"
"10:46:34.7436465 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.3007957","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","212"
"10:46:34.7488992 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\segoeuib.ttf","0.0027337","Offset: 806,912, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:34.7517169 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0001255","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.7519448 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\segoeuib.ttf","0.0004987","Offset: 802,816, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:34.7519827 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000470","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:29:46 PM, ChangeTime: 3/20/2019 7:10:41 PM, AllocationSize: 462848, EndOfFile: 460400, FileAttributes: A","2512"
"10:46:34.7523010 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000568","","2512"
"10:46:34.7528344 AM","firefox.exe","7336","ReadFile","C:\Windows\Fonts\segoeuib.ttf","0.0004552","Offset: 839,680, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7392"
"10:46:34.7540930 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000798","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.7542360 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000153","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:32:49 PM, ChangeTime: 3/20/2019 7:10:28 PM, AllocationSize: 225280, EndOfFile: 223609, FileAttributes: A","2512"
"10:46:34.7543042 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000248","","2512"
"10:46:34.7544971 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000222","","2512"
"10:46:34.7545734 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000188","","2512"
"10:46:34.7556905 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0002346","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.7560433 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000209","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:32:49 PM, ChangeTime: 3/20/2019 7:10:28 PM, AllocationSize: 225280, EndOfFile: 223609, FileAttributes: A","2512"
"10:46:34.7561368 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000332","","2512"
"10:46:34.7569530 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\982FDF372CA79C591695F9759FD5DDBCE231E0D0","0.0002974","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:34.7569615 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000900","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.7571608 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000204","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.7572747 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000188","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.7573220 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\982FDF372CA79C591695F9759FD5DDBCE231E0D0","0.0000192","CreationTime: 3/25/2020 10:25:15 AM, LastAccessTime: 3/25/2020 10:25:15 AM, LastWriteTime: 3/26/2020 10:35:23 AM, ChangeTime: 3/26/2020 10:35:23 AM, AllocationSize: 12288, EndOfFile: 9648, FileAttributes: A","6572"
"10:46:34.7573613 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000141","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.7574116 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\982FDF372CA79C591695F9759FD5DDBCE231E0D0","0.0000342","","6572"
"10:46:34.7575136 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000124","SyncType: SyncTypeOther","2512"
"10:46:34.7581767 AM","firefox.exe","7384","ReadFile","C:","0.0372779","Offset: 901,120, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:34.7592194 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000192","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:34.7593060 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000303","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:32:49 PM, ChangeTime: 3/20/2019 7:10:28 PM, FileAttributes: A, AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x300000006228d, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:34.7600122 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000840","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.7601837 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000141","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.7602669 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000119","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.7603258 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000098","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.7604226 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000081","SyncType: SyncTypeOther","2512"
"10:46:34.7609214 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000516","","2512"
"10:46:34.7620926 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000806","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.7622692 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000158","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.7623490 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000128","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.7624071 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000098","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.7625385 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000123","SyncType: SyncTypeOther","2512"
"10:46:34.7627851 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000375","","2512"
"10:46:34.7640749 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000768","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.7642362 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000145","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.7643117 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000111","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.7643659 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000085","AllocationSize: 225,280, EndOfFile: 223,609, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.7644555 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000068","SyncType: SyncTypeOther","2512"
"10:46:34.7652632 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000315","","2512"
"10:46:34.7659740 AM","firefox.exe","7336","CreateFile","C:\Windows\Fonts\segoeuib.ttf","0.0000836","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:34.7661600 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\Fonts\segoeuib.ttf","0.0000171","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 7:31:30 PM, FileAttributes: A","7392"
"10:46:34.7662134 AM","firefox.exe","7336","CloseFile","C:\Windows\Fonts\segoeuib.ttf","0.0000243","","7392"
"10:46:34.7680357 AM","firefox.exe","1008","CreateFile","C:\Windows\Fonts\segoeuib.ttf","0.0000631","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7796"
"10:46:34.7682255 AM","firefox.exe","1008","QueryInformationVolume","C:\Windows\Fonts\segoeuib.ttf","0.0000120","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","7796"
"10:46:34.7682912 AM","firefox.exe","1008","QueryAllInformationFile","C:\Windows\Fonts\segoeuib.ttf","0.0000201","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 7:31:30 PM, FileAttributes: A, AllocationSize: 917,504, EndOfFile: 914,092, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x8000000054155, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","7796"
"10:46:34.7683719 AM","firefox.exe","1008","CloseFile","C:\Windows\Fonts\segoeuib.ttf","0.0000230","","7796"
"10:46:34.7689786 AM","firefox.exe","1008","CreateFile","C:\Windows\Fonts\segoeuib.ttf","0.0000627","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Random Access, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7796"
"10:46:34.7691539 AM","firefox.exe","1008","QueryInformationVolume","C:\Windows\Fonts\segoeuib.ttf","0.0000116","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","7796"
"10:46:34.7692171 AM","firefox.exe","1008","QueryAllInformationFile","C:\Windows\Fonts\segoeuib.ttf","0.0000196","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 7:31:30 PM, FileAttributes: A, AllocationSize: 917,504, EndOfFile: 914,092, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x8000000054155, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","7796"
"10:46:34.7693093 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\Fonts\segoeuib.ttf","0.0000132","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","7796"
"10:46:34.7693698 AM","firefox.exe","1008","QueryStandardInformationFile","C:\Windows\Fonts\segoeuib.ttf","0.0000116","AllocationSize: 917,504, EndOfFile: 914,092, NumberOfLinks: 3, DeletePending: False, Directory: False","7796"
"10:46:34.7694675 AM","firefox.exe","1008","CreateFileMapping","C:\Windows\Fonts\segoeuib.ttf","0.0000090","SyncType: SyncTypeOther","7796"
"10:46:34.7698319 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000730","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.7699467 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000149","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","7396"
"10:46:34.7700013 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000273","","7396"
"10:46:34.7703947 AM","firefox.exe","1008","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0199787","Offset: 1,089,536, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7796"
"10:46:34.7710134 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0001770","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.7712233 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000115","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","7396"
"10:46:34.7712578 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000184","","7396"
"10:46:34.7721440 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0005415","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.7727529 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000175","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","7396"
"10:46:34.7728109 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000295","","7396"
"10:46:34.7739028 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntdll.dll","0.0000729","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.7740538 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000141","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:34.7741003 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntdll.dll","0.0000209","","7396"
"10:46:34.7750368 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntdll.dll","0.0000670","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.7751913 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000183","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:34.7752416 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntdll.dll","0.0000205","","7396"
"10:46:34.7766488 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntdll.dll","0.0000943","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.7768348 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000149","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:34.7768822 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntdll.dll","0.0000226","","7396"
"10:46:34.7787659 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel32.dll","0.0000789","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.7789315 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000622","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:34.7790659 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel32.dll","0.0000285","","7396"
"10:46:34.7800523 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel32.dll","0.0000585","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.7801807 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000128","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:34.7802217 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel32.dll","0.0000200","","7396"
"10:46:34.7809935 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel32.dll","0.0000461","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.7811006 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000137","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:34.7811446 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel32.dll","0.0000192","","7396"
"10:46:34.7820585 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000580","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.7821489 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000120","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:34.7821899 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000188","","7396"
"10:46:34.7830834 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000524","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.7831674 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000111","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:34.7832079 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000180","","7396"
"10:46:34.7842409 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000563","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.7843305 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000119","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:34.7843719 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000222","","7396"
"10:46:34.7853127 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\advapi32.dll","0.0000610","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.7854492 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000128","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","7396"
"10:46:34.7854923 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\advapi32.dll","0.0000192","","7396"
"10:46:34.7863832 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\advapi32.dll","0.0000559","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.7865078 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000115","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","7396"
"10:46:34.7865496 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\advapi32.dll","0.0000179","","7396"
"10:46:34.7873927 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\advapi32.dll","0.0000550","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.7875134 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000116","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","7396"
"10:46:34.7875552 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\advapi32.dll","0.0000175","","7396"
"10:46:34.7884773 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000717","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.7886172 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000115","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:34.7886629 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000188","","7396"
"10:46:34.7895183 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000517","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.7896387 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000119","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:34.7896809 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000179","","7396"
"10:46:34.7905342 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000538","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.7906541 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000120","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:34.7906925 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000175","","7396"
"10:46:34.7908594 AM","firefox.exe","1008","ReadFile","C:\Windows\ServiceProfiles\LocalService\AppData\Local\FontCache\~FontCache-FontFace.dat","0.0215659","Offset: 1,122,304, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7796"
"10:46:34.7916760 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sechost.dll","0.0000695","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.7918232 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000149","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:34.7918680 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sechost.dll","0.0000222","","7396"
"10:46:34.7928438 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sechost.dll","0.0000661","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.7929837 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000145","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:34.7930268 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sechost.dll","0.0000222","","7396"
"10:46:34.7940965 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sechost.dll","0.0000670","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.7942403 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000149","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:34.7943354 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sechost.dll","0.0000278","","7396"
"10:46:34.7959026 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000631","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.7960378 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000141","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","7396"
"10:46:34.7960839 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000256","","7396"
"10:46:34.7962755 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\EE197B20CAB0419D1C0BD23EE03034F880EDC296","0.0529886","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:34.7967115 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000201","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.7970128 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000635","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.7971459 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000141","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","7396"
"10:46:34.7971881 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000201","","7396"
"10:46:34.7978776 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.7979322 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000056","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","7396"
"10:46:34.7979501 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000081","","7396"
"10:46:34.7983469 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.7984267 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000090","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:34.7984536 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000141","","7396"
"10:46:34.7987770 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000094","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.7988969 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000290","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.7989588 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000060","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:34.7989776 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000089","","7396"
"10:46:34.7993492 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.7994166 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000073","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:34.7994341 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000081","","7396"
"10:46:34.7997976 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.7998364 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000052","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:34.7998518 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000081","","7396"
"10:46:34.7998531 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.7998915 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40978, endtime: 40978, seqnum: 0, connid: 0","0"
"10:46:34.7999922 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8000220 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40978, endtime: 40978, seqnum: 0, connid: 0","0"
"10:46:34.8000775 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8000980 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40978, endtime: 40978, seqnum: 0, connid: 0","0"
"10:46:34.8001940 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8002029 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000461","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8002149 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40978, endtime: 40978, seqnum: 0, connid: 0","0"
"10:46:34.8002635 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000052","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:34.8002802 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000089","","7396"
"10:46:34.8008127 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8008472 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000051","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:34.8008634 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000081","","7396"
"10:46:34.8009786 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000081","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.8012709 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\crypt32.dll","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8013319 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000056","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:34.8013498 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\crypt32.dll","0.0000081","","7396"
"10:46:34.8017180 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\crypt32.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8017765 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000060","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:34.8017957 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\crypt32.dll","0.0000085","","7396"
"10:46:34.8020176 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000072","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.8021805 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\crypt32.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8022352 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:34.8022527 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\crypt32.dll","0.0000106","","7396"
"10:46:34.8023926 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0757206","Offset: 44,040,192, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:34.8028777 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8029161 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40978, endtime: 40978, seqnum: 0, connid: 0","0"
"10:46:34.8029899 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8030083 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40978, endtime: 40978, seqnum: 0, connid: 0","0"
"10:46:34.8031504 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msasn1.dll","0.0000362","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8032255 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000068","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:34.8032438 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msasn1.dll","0.0000090","","7396"
"10:46:34.8037268 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msasn1.dll","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8037908 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000064","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:34.8038117 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msasn1.dll","0.0000085","","7396"
"10:46:34.8041552 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msasn1.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8042085 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000055","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:34.8042264 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msasn1.dll","0.0000077","","7396"
"10:46:34.8046228 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wintrust.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8046774 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000051","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:34.8046949 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wintrust.dll","0.0000077","","7396"
"10:46:34.8050631 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wintrust.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8051122 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:34.8051288 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wintrust.dll","0.0000073","","7396"
"10:46:34.8054663 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wintrust.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8055145 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:34.8055312 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wintrust.dll","0.0000072","","7396"
"10:46:34.8058273 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000119","","2512"
"10:46:34.8059096 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8059497 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000043","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","7396"
"10:46:34.8059672 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000064","","7396"
"10:46:34.8061140 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package02~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000102","","2512"
"10:46:34.8063529 AM","firefox.exe","7336","CreateFile","C:\Windows\Fonts\segoeuib.ttf","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7392"
"10:46:34.8063627 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8064011 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\Fonts\segoeuib.ttf","0.0000043","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 7:31:30 PM, FileAttributes: A","7392"
"10:46:34.8064037 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000051","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","7396"
"10:46:34.8064156 AM","firefox.exe","7336","CloseFile","C:\Windows\Fonts\segoeuib.ttf","0.0000060","","7392"
"10:46:34.8064220 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000077","","7396"
"10:46:34.8068491 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000410","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8069042 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000158","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","7396"
"10:46:34.8069370 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000116","","7396"
"10:46:34.8076014 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000652","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8076026 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000811","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8077003 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000069","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","7396"
"10:46:34.8077212 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000103","","7396"
"10:46:34.8078224 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000072","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","2512"
"10:46:34.8078497 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000098","","2512"
"10:46:34.8081364 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8081547 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8081791 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000055","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","7396"
"10:46:34.8081919 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40979, endtime: 40979, seqnum: 0, connid: 0","0"
"10:46:34.8082055 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000094","","7396"
"10:46:34.8082081 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8082670 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000055","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","2512"
"10:46:34.8082849 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8082917 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000090","","2512"
"10:46:34.8083130 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40979, endtime: 40979, seqnum: 0, connid: 0","0"
"10:46:34.8084927 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8085170 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40979, endtime: 40979, seqnum: 0, connid: 0","0"
"10:46:34.8085818 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8086062 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40979, endtime: 40979, seqnum: 0, connid: 0","0"
"10:46:34.8086138 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0001664","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8087982 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000064","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","7396"
"10:46:34.8088174 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000098","","7396"
"10:46:34.8100321 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\version.dll","0.0000362","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8100564 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000098","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.8101131 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000064","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","7396"
"10:46:34.8101328 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\version.dll","0.0000098","","7396"
"10:46:34.8102386 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8102770 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40979, endtime: 40979, seqnum: 0, connid: 0","0"
"10:46:34.8104498 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8104754 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40979, endtime: 40979, seqnum: 0, connid: 0","0"
"10:46:34.8107075 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8107293 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40979, endtime: 40979, seqnum: 0, connid: 0","0"
"10:46:34.8107851 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8108031 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40979, endtime: 40979, seqnum: 0, connid: 0","0"
"10:46:34.8111581 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\version.dll","0.0000328","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8112285 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000072","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","7396"
"10:46:34.8112481 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\version.dll","0.0000085","","7396"
"10:46:34.8113112 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000094","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.8115502 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0002607","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8116765 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\version.dll","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8117379 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000064","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","7396"
"10:46:34.8117588 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\version.dll","0.0000094","","7396"
"10:46:34.8121765 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8122136 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40979, endtime: 40979, seqnum: 0, connid: 0","0"
"10:46:34.8122251 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000303","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8122857 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000052","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","7396"
"10:46:34.8122981 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8123011 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000077","","7396"
"10:46:34.8123241 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40979, endtime: 40979, seqnum: 0, connid: 0","0"
"10:46:34.8123903 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000081","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.8126770 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8127303 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","7396"
"10:46:34.8127435 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000086","","7396"
"10:46:34.8130917 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000265","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8131472 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000055","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","7396"
"10:46:34.8131651 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000077","","7396"
"10:46:34.8136144 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000281","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8136570 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000056","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","7396"
"10:46:34.8136745 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000090","","7396"
"10:46:34.8137710 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000115","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.8140534 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8140940 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000055","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","7396"
"10:46:34.8141119 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000085","","7396"
"10:46:34.8145091 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8145466 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000056","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","7396"
"10:46:34.8145774 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000094","","7396"
"10:46:34.8148393 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8148820 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40979, endtime: 40979, seqnum: 0, connid: 0","0"
"10:46:34.8149946 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8150121 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40979, endtime: 40979, seqnum: 0, connid: 0","0"
"10:46:34.8150902 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000278","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8151316 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000064","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:34.8151500 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000085","","7396"
"10:46:34.8153317 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000081","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.8155813 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8156201 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000052","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:34.8156376 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000081","","7396"
"10:46:34.8159798 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8160148 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:34.8160306 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000077","","7396"
"10:46:34.8164078 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000102","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.8164406 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8164786 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:34.8164948 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000077","","7396"
"10:46:34.8168131 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8168477 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0015334","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:34.8175380 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8175781 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40980, endtime: 40980, seqnum: 0, connid: 0","0"
"10:46:34.8176562 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8176775 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40980, endtime: 40980, seqnum: 0, connid: 0","0"
"10:46:34.8182228 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000149","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.8184097 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000213","","7396"
"10:46:34.8188999 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000278","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8189422 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000059","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:34.8189592 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000205","","7396"
"10:46:34.8194734 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000115","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.8199692 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000315","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8200174 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000064","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:34.8200361 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000094","","7396"
"10:46:34.8204261 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8204675 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40980, endtime: 40980, seqnum: 0, connid: 0","0"
"10:46:34.8205601 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8205878 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40980, endtime: 40980, seqnum: 0, connid: 0","0"
"10:46:34.8206663 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000116","Name: \Windows\System32\sechost.dll","8024"
"10:46:34.8211655 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000303","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8212193 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000072","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:34.8212402 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000102","","7396"
"10:46:34.8219788 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000136","Name: \Windows\System32\sechost.dll","2956"
"10:46:34.8221383 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8221819 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40980, endtime: 40980, seqnum: 0, connid: 0","0"
"10:46:34.8222800 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8223069 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40980, endtime: 40980, seqnum: 0, connid: 0","0"
"10:46:34.8224182 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8224366 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40980, endtime: 40980, seqnum: 0, connid: 0","0"
"10:46:34.8224741 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000431","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8224899 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8225095 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 40980, endtime: 40980, seqnum: 0, connid: 0","0"
"10:46:34.8225377 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000098","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:34.8225833 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000188","","7396"
"10:46:34.8231116 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8231401 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40980, endtime: 40980, seqnum: 0, connid: 0","0"
"10:46:34.8232118 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8232319 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40980, endtime: 40980, seqnum: 0, connid: 0","0"
"10:46:34.8233915 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000174","Name: \Windows\System32\sechost.dll","2956"
"10:46:34.8243621 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8244082 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000068","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:34.8244283 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000102","","7396"
"10:46:34.8247342 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000106","Name: \Windows\System32\sechost.dll","2956"
"10:46:34.8248336 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8248737 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000051","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:34.8248916 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000086","","7396"
"10:46:34.8252671 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000456","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8253285 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000060","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:34.8253452 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000089","","7396"
"10:46:34.8255909 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8256285 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40980, endtime: 40980, seqnum: 0, connid: 0","0"
"10:46:34.8257151 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8257424 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40980, endtime: 40980, seqnum: 0, connid: 0","0"
"10:46:34.8258320 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000111","Name: \Windows\System32\sechost.dll","2956"
"10:46:34.8269345 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000162","Name: \Windows\System32\sechost.dll","2956"
"10:46:34.8271717 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000499","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8272417 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 56, startime: 40978, endtime: 40980, seqnum: 0, connid: 0","0"
"10:46:34.8272686 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000068","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:34.8272780 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 98, startime: 40978, endtime: 40980, seqnum: 0, connid: 0","0"
"10:46:34.8272912 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000115","","7396"
"10:46:34.8280711 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8281091 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40981, endtime: 40981, seqnum: 0, connid: 0","0"
"10:46:34.8281898 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8282128 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40981, endtime: 40981, seqnum: 0, connid: 0","0"
"10:46:34.8291822 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000141","Name: \Windows\System32\sechost.dll","2956"
"10:46:34.8306700 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000149","Name: \Windows\System32\sechost.dll","2956"
"10:46:34.8311828 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8312396 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000059","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:34.8315028 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8315395 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40981, endtime: 40981, seqnum: 0, connid: 0","0"
"10:46:34.8316577 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8316752 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40981, endtime: 40981, seqnum: 0, connid: 0","0"
"10:46:34.8325733 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000154","Name: \Windows\System32\sechost.dll","2956"
"10:46:34.8349140 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000167","Name: \Windows\System32\sechost.dll","2956"
"10:46:34.8363515 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 56, startime: 40979, endtime: 40981, seqnum: 0, connid: 0","0"
"10:46:34.8363899 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 88, startime: 40979, endtime: 40981, seqnum: 0, connid: 0","0"
"10:46:34.8366578 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 474, seqnum: 0, connid: 0","0"
"10:46:34.8366792 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:34.8369778 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 60, startime: 40979, endtime: 40981, seqnum: 0, connid: 0","0"
"10:46:34.8369910 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 84, startime: 40979, endtime: 40981, seqnum: 0, connid: 0","0"
"10:46:34.8369996 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 60, startime: 40980, endtime: 40981, seqnum: 0, connid: 0","0"
"10:46:34.8370085 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 86, startime: 40980, endtime: 40981, seqnum: 0, connid: 0","0"
"10:46:34.8430617 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8431060 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40982, endtime: 40982, seqnum: 0, connid: 0","0"
"10:46:34.8433394 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8433637 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40982, endtime: 40982, seqnum: 0, connid: 0","0"
"10:46:34.8433800 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 56, startime: 40980, endtime: 40982, seqnum: 0, connid: 0","0"
"10:46:34.8434051 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 90, startime: 40980, endtime: 40982, seqnum: 0, connid: 0","0"
"10:46:34.8434175 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 56, startime: 40980, endtime: 40982, seqnum: 0, connid: 0","0"
"10:46:34.8434265 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 79, startime: 40980, endtime: 40982, seqnum: 0, connid: 0","0"
"10:46:34.8434482 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49763 -> ec2-52-88-126-42.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 761, startime: 40978, endtime: 40982, seqnum: 0, connid: 0","0"
"10:46:34.8436185 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ws2_32.dll","0.0001689","","7396"
"10:46:34.8437559 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000093","Name: \Windows\System32\sechost.dll","2956"
"10:46:34.8451993 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000081","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:34.8452304 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000081","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:34.8453051 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000038","Offset: 123, Length: 1","4604"
"10:46:34.8453443 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000030","Exclusive: False, Offset: 123, Length: 1, Fail Immediately: True","4604"
"10:46:34.8453618 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite","0.0000039","AllocationSize: 5,242,880, EndOfFile: 5,242,880, NumberOfLinks: 1, DeletePending: False, Directory: False","4604"
"10:46:34.8453746 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000116","Name: \Windows\System32\sechost.dll","2956"
"10:46:34.8453832 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\places.sqlite-shm","0.0000021","Offset: 123, Length: 1","4604"
"10:46:34.8456963 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8457574 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000046","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:34.8457736 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000089","","7396"
"10:46:34.8462071 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8462408 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40982, endtime: 40982, seqnum: 0, connid: 0","0"
"10:46:34.8463223 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8463432 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40982, endtime: 40982, seqnum: 0, connid: 0","0"
"10:46:34.8468360 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmm.dll","0.0000315","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8468974 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000137","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:34.8469239 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmm.dll","0.0000136","","7396"
"10:46:34.8472362 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmm.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8472767 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000039","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:34.8472904 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmm.dll","0.0000059","","7396"
"10:46:34.8475485 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmm.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8475839 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000039","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:34.8475967 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmm.dll","0.0000056","","7396"
"10:46:34.8480332 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 203, seqnum: 0, connid: 0","0"
"10:46:34.8480750 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:34.8482278 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 332, seqnum: 0, connid: 0","0"
"10:46:34.8482470 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:34.8483447 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 332, seqnum: 0, connid: 0","0"
"10:46:34.8483596 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:34.8483720 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 60, startime: 40980, endtime: 40983, seqnum: 0, connid: 0","0"
"10:46:34.8483831 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 205, seqnum: 0, connid: 0","0"
"10:46:34.8483924 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 82, startime: 40980, endtime: 40983, seqnum: 0, connid: 0","0"
"10:46:34.8484010 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 60, startime: 40981, endtime: 40983, seqnum: 0, connid: 0","0"
"10:46:34.8484091 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 77, startime: 40981, endtime: 40983, seqnum: 0, connid: 0","0"
"10:46:34.8484180 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:34.8493089 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\EE197B20CAB0419D1C0BD23EE03034F880EDC296","0.0000103","CreationTime: 8/16/2019 1:36:40 PM, LastAccessTime: 8/16/2019 1:36:40 PM, LastWriteTime: 3/26/2020 10:35:23 AM, ChangeTime: 3/26/2020 10:35:23 AM, AllocationSize: 12288, EndOfFile: 9697, FileAttributes: A","6572"
"10:46:34.8493388 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\EE197B20CAB0419D1C0BD23EE03034F880EDC296","0.0000171","","6572"
"10:46:34.8498491 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\38ED2A82492971F77141EDA89A442BD4E0CD8F8B","0.0000546","Desired Access: Generic Read/Write, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:34.8499267 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 195, seqnum: 0, connid: 0","0"
"10:46:34.8499600 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\38ED2A82492971F77141EDA89A442BD4E0CD8F8B","0.0181978","Offset: 32,768, Length: 2,444, Priority: Normal","6572"
"10:46:34.8499732 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:34.8503086 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\38ED2A82492971F77141EDA89A442BD4E0CD8F8B","0.0167292","Offset: 32,768, Length: 2,444, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:34.8509994 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000119","Name: \Windows\System32\sechost.dll","2956"
"10:46:34.8513441 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wsock32.dll","0.0000299","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8514086 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000064","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:34.8514261 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wsock32.dll","0.0000089","","7396"
"10:46:34.8514534 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 331, seqnum: 0, connid: 0","0"
"10:46:34.8514922 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:34.8515058 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 203, seqnum: 0, connid: 0","0"
"10:46:34.8521795 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:34.8524774 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wsock32.dll","0.0000328","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8525435 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000060","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:34.8525614 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wsock32.dll","0.0000081","","7396"
"10:46:34.8530913 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000090","Name: \Windows\System32\sechost.dll","2956"
"10:46:34.8531276 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wsock32.dll","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8531933 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000060","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:34.8532099 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wsock32.dll","0.0000086","","7396"
"10:46:34.8537484 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000324","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8537953 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000069","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:34.8538128 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000077","","7396"
"10:46:34.8542147 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8542587 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40983, endtime: 40983, seqnum: 0, connid: 0","0"
"10:46:34.8543986 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.8544251 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40983, endtime: 40983, seqnum: 0, connid: 0","0"
"10:46:34.8551338 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 56, startime: 40981, endtime: 40983, seqnum: 0, connid: 0","0"
"10:46:34.8552042 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 82, startime: 40981, endtime: 40983, seqnum: 0, connid: 0","0"
"10:46:34.8555617 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmmbase.dll","0.0001387","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8557188 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000085","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:34.8557435 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000525","","7396"
"10:46:34.8588381 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmmbase.dll","0.0001476","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8589106 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000128","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","2512"
"10:46:34.8589508 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000516","","2512"
"10:46:34.8590028 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","7396"
"10:46:34.8590207 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000077","","7396"
"10:46:34.8590775 AM","firefox.exe","7384","CreateFile","C:\","0.0000192","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8591180 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000290","Filter: Windows, 1: Windows","2512"
"10:46:34.8591675 AM","firefox.exe","7384","CloseFile","C:\","0.0000077","","2512"
"10:46:34.8593373 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000167","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8593719 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000166","Filter: System32, 1: System32","2512"
"10:46:34.8594052 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000059","","2512"
"10:46:34.8594376 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8595067 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:34.8595216 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000081","","7396"
"10:46:34.8598519 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8599082 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:34.8599227 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000064","","7396"
"10:46:34.8602619 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0028344","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8607056 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 204, seqnum: 0, connid: 0","0"
"10:46:34.8607406 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:34.8618777 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 56, startime: 40982, endtime: 40984, seqnum: 0, connid: 0","0"
"10:46:34.8620006 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 87, startime: 40982, endtime: 40984, seqnum: 0, connid: 0","0"
"10:46:34.8633057 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000333","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","7396"
"10:46:34.8633851 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000934","","7396"
"10:46:34.8665382 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 204, seqnum: 0, connid: 0","0"
"10:46:34.8665672 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:34.8665808 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 56, startime: 40982, endtime: 40984, seqnum: 0, connid: 0","0"
"10:46:34.8665890 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 113, startime: 40982, endtime: 40984, seqnum: 0, connid: 0","0"
"10:46:34.8680972 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8682026 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7F347B9AF978EDEA2F853A5A2889171EF0D32C03","0.0208692","Offset: 42,800, Length: 6,352","6572"
"10:46:34.8682372 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7F347B9AF978EDEA2F853A5A2889171EF0D32C03","0.0207560","Offset: 40,960, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:34.8683302 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0023978","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:34.8707464 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000094","","7396"
"10:46:34.8711385 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8711743 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000039","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:34.8711884 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000064","","7396"
"10:46:34.8714653 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8715076 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000055","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","7396"
"10:46:34.8715229 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000064","","7396"
"10:46:34.8715763 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000226","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8716258 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wbem","0.0000311","Filter: wbem, 1: wbem","2512"
"10:46:34.8716817 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000072","","2512"
"10:46:34.8718481 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8718783 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:34.8718843 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem","0.0005688","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8719065 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000073","","7396"
"10:46:34.8722265 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8722513 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:34.8722615 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000047","","7396"
"10:46:34.8724859 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wbem\fastprox.dll","0.0000214","Filter: fastprox.dll, 1: fastprox.dll","2512"
"10:46:34.8724919 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8725171 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:34.8725299 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem","0.0000068","","2512"
"10:46:34.8725311 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000052","","7396"
"10:46:34.8728452 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8728959 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\user32.dll","0.0000210","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8729062 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","2512"
"10:46:34.8729267 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000064","","2512"
"10:46:34.8729382 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000038","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:34.8729514 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\user32.dll","0.0000047","","7396"
"10:46:34.8729813 AM","firefox.exe","7384","CreateFile","C:\","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8730124 AM","firefox.exe","7384","QueryDirectory","C:\WINDOWS","0.0000162","Filter: WINDOWS, 1: Windows","2512"
"10:46:34.8730504 AM","firefox.exe","7384","CloseFile","C:\","0.0000060","","2512"
"10:46:34.8731912 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8732236 AM","firefox.exe","7384","QueryDirectory","C:\Windows\system32","0.0000145","Filter: system32, 1: System32","2512"
"10:46:34.8732411 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\user32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8732548 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000051","","2512"
"10:46:34.8732799 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000039","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:34.8732932 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\user32.dll","0.0000055","","7396"
"10:46:34.8735935 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\user32.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8736354 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000047","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:34.8736503 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\user32.dll","0.0000064","","7396"
"10:46:34.8738892 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000197","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8739319 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wbem","0.0000260","Filter: wbem, 1: wbem","2512"
"10:46:34.8739793 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000068","","2512"
"10:46:34.8740292 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\win32u.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8740838 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000043","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:34.8740991 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\win32u.dll","0.0000073","","7396"
"10:46:34.8741589 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem","0.0000183","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8741977 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wbem\fastprox.dll","0.0000162","Filter: fastprox.dll, 1: fastprox.dll","2512"
"10:46:34.8742323 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem","0.0000059","","2512"
"10:46:34.8744264 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\win32u.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8744738 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000042","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:34.8744900 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\win32u.dll","0.0000064","","7396"
"10:46:34.8747033 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8747396 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000042","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 3/20/2019 7:51:16 PM, FileAttributes: A","2512"
"10:46:34.8747596 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000086","","2512"
"10:46:34.8748369 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\win32u.dll","0.0000486","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8748548 AM","firefox.exe","7384","CreateFile","C:\","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8748893 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000180","Filter: Windows, 1: Windows","2512"
"10:46:34.8749171 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000042","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:34.8749256 AM","firefox.exe","7384","CloseFile","C:\","0.0000064","","2512"
"10:46:34.8749311 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\win32u.dll","0.0000052","","7396"
"10:46:34.8750805 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8751219 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000239","Filter: System32, 1: System32","2512"
"10:46:34.8751633 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000059","","2512"
"10:46:34.8752708 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8753143 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000043","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:34.8753284 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32.dll","0.0000064","","7396"
"10:46:34.8753301 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 453, seqnum: 0, connid: 0","0"
"10:46:34.8753612 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:34.8756351 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8756808 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000043","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:34.8756957 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32.dll","0.0000069","","7396"
"10:46:34.8760401 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8760597 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8760785 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000046","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 3/20/2019 7:51:16 PM, FileAttributes: A","2512"
"10:46:34.8760977 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000106","","2512"
"10:46:34.8761045 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000068","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:34.8761215 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32.dll","0.0000073","","7396"
"10:46:34.8761625 AM","firefox.exe","7384","CreateFile","C:\","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8761937 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000187","Filter: Windows, 1: Windows","2512"
"10:46:34.8762308 AM","firefox.exe","7384","CloseFile","C:\","0.0000055","","2512"
"10:46:34.8763810 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8764151 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000149","Filter: System32, 1: System32","2512"
"10:46:34.8764467 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000064","","2512"
"10:46:34.8764778 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8765094 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000047","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:34.8765248 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000064","","7396"
"10:46:34.8765875 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000136","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8766182 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000030","AllocationSize: 143,360, EndOfFile: 140,048, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.8766370 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ResourcePolicyClient.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.8766502 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000021","AllocationSize: 143,360, EndOfFile: 140,048, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.8766711 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ResourcePolicyClient.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:34.8767287 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000060","","2512"
"10:46:34.8768776 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8769070 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000103","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:34.8769113 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000149","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8769348 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000072","","7396"
"10:46:34.8769446 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000030","AllocationSize: 143,360, EndOfFile: 140,048, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.8769608 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ResourcePolicyClient.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.8769728 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000017","AllocationSize: 143,360, EndOfFile: 140,048, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.8769920 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ResourcePolicyClient.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:34.8770760 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0173133","Offset: 110,592, Length: 29,456, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:34.8772778 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8773098 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000201","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:34.8773422 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000201","","7396"
"10:46:34.8777489 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8777732 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000034","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:34.8777830 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000051","","7396"
"10:46:34.8779857 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8780049 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000029","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:34.8780134 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000038","","7396"
"10:46:34.8782536 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8782818 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000038","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:34.8782950 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000060","","7396"
"10:46:34.8786444 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shell32.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8786944 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000042","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","7396"
"10:46:34.8787089 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shell32.dll","0.0000059","","7396"
"10:46:34.8789913 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shell32.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8790370 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000042","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","7396"
"10:46:34.8790549 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shell32.dll","0.0000064","","7396"
"10:46:34.8793506 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shell32.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8794001 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000055","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","7396"
"10:46:34.8794201 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shell32.dll","0.0000077","","7396"
"10:46:34.8797764 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\SHCore.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8798229 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000038","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:34.8798374 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\SHCore.dll","0.0000055","","7396"
"10:46:34.8799684 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 56, startime: 40983, endtime: 40986, seqnum: 0, connid: 0","0"
"10:46:34.8799957 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 93, startime: 40983, endtime: 40986, seqnum: 0, connid: 0","0"
"10:46:34.8801587 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\SHCore.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8802065 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:34.8802231 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\SHCore.dll","0.0000158","","7396"
"10:46:34.8806715 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\SHCore.dll","0.0000406","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8807701 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000149","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:34.8808110 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\SHCore.dll","0.0000393","","7396"
"10:46:34.8825254 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\combase.dll","0.0000329","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8825903 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000055","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:34.8826069 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\combase.dll","0.0000077","","7396"
"10:46:34.8829546 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\combase.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8829947 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000039","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:34.8830088 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\combase.dll","0.0000060","","7396"
"10:46:34.8832768 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\combase.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8833152 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000038","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:34.8833284 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\combase.dll","0.0000055","","7396"
"10:46:34.8836637 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8836936 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000039","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:34.8837073 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000055","","7396"
"10:46:34.8839884 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000163","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8840149 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000038","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:34.8840281 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000056","","7396"
"10:46:34.8842888 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8843144 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000056","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","7396"
"10:46:34.8843302 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000055","","7396"
"10:46:34.8847133 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8847556 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","7396"
"10:46:34.8847692 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000056","","7396"
"10:46:34.8850325 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8850713 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000039","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","7396"
"10:46:34.8850850 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000055","","7396"
"10:46:34.8853423 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8854033 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000051","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","7396"
"10:46:34.8854195 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000077","","7396"
"10:46:34.8857032 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8857275 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:34.8857369 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000047","","7396"
"10:46:34.8859229 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8859421 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:34.8859507 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000038","","7396"
"10:46:34.8861384 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8861559 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:34.8861640 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000039","","7396"
"10:46:34.8864008 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\profapi.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8864311 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:34.8864396 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\profapi.dll","0.0000043","","7396"
"10:46:34.8866261 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\profapi.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8866521 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:34.8866602 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\profapi.dll","0.0000043","","7396"
"10:46:34.8868403 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\profapi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8868655 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:34.8868736 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\profapi.dll","0.0000038","","7396"
"10:46:34.8871040 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\powrprof.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8871317 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:34.8871402 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\powrprof.dll","0.0000039","","7396"
"10:46:34.8873143 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\powrprof.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8873391 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:34.8873472 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\powrprof.dll","0.0000038","","7396"
"10:46:34.8875311 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\powrprof.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8875554 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:34.8875631 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\powrprof.dll","0.0000038","","7396"
"10:46:34.8878024 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\fltLib.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8878297 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:34.8878378 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\fltLib.dll","0.0000039","","7396"
"10:46:34.8880196 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\fltLib.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8880448 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:34.8880529 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\fltLib.dll","0.0000038","","7396"
"10:46:34.8882321 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\fltLib.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8882564 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","7396"
"10:46:34.8882641 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\fltLib.dll","0.0000038","","7396"
"10:46:34.8886451 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 198, seqnum: 0, connid: 0","0"
"10:46:34.8886924 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:34.8891106 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0412642","Offset: 45,088,768, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:34.8891912 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\69852764590870F506F66E4FAFC263C8630728D2","0.0214712","Offset: 9,021, Length: 7,363","6572"
"10:46:34.8892236 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\69852764590870F506F66E4FAFC263C8630728D2","0.0213744","Offset: 8,192, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:34.8894558 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ole32.dll","0.0001092","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8895914 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000043","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","7396"
"10:46:34.8896034 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ole32.dll","0.0000072","","7396"
"10:46:34.8898423 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ole32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8898705 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000030","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","7396"
"10:46:34.8898794 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ole32.dll","0.0000047","","7396"
"10:46:34.8900761 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ole32.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8901026 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000030","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","7396"
"10:46:34.8901111 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ole32.dll","0.0000047","","7396"
"10:46:34.8903479 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\imm32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8903748 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000030","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","7396"
"10:46:34.8903833 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\imm32.dll","0.0000060","","7396"
"10:46:34.8905694 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\imm32.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8905937 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000025","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","7396"
"10:46:34.8906018 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\imm32.dll","0.0000042","","7396"
"10:46:34.8907818 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\imm32.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8908053 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000026","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","7396"
"10:46:34.8908134 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\imm32.dll","0.0000038","","7396"
"10:46:34.8910336 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\setupapi.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8910617 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:34.8910698 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\setupapi.dll","0.0000039","","7396"
"10:46:34.8912503 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\setupapi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8912742 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:34.8912823 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\setupapi.dll","0.0000039","","7396"
"10:46:34.8914555 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\setupapi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8914794 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:34.8914875 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\setupapi.dll","0.0000039","","7396"
"10:46:34.8917051 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8917316 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000026","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:34.8917397 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000038","","7396"
"10:46:34.8919181 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8919419 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000026","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:34.8919496 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000039","","7396"
"10:46:34.8921135 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8921369 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000026","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:34.8921446 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000039","","7396"
"10:46:34.8923187 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8923503 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000034","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:34.8923609 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000056","","7396"
"10:46:34.8925482 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8925726 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000025","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","7396"
"10:46:34.8925807 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000034","","7396"
"10:46:34.8928038 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\avrt.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8928315 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000022","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","7396"
"10:46:34.8928392 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\avrt.dll","0.0000039","","7396"
"10:46:34.8930270 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\avrt.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8930526 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000025","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","7396"
"10:46:34.8930607 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\avrt.dll","0.0000038","","7396"
"10:46:34.8932454 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\avrt.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8932702 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000025","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","7396"
"10:46:34.8932778 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\avrt.dll","0.0000039","","7396"
"10:46:34.8935010 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\usp10.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8935283 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000026","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","7396"
"10:46:34.8935368 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\usp10.dll","0.0000034","","7396"
"10:46:34.8937288 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\usp10.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8937664 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000038","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","7396"
"10:46:34.8937779 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\usp10.dll","0.0000055","","7396"
"10:46:34.8940475 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\usp10.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8940881 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000042","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","7396"
"10:46:34.8941009 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\usp10.dll","0.0000064","","7396"
"10:46:34.8944567 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\d3d11.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8944661 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000051","AllocationSize: 143,360, EndOfFile: 140,048, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.8945011 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000158","","2512"
"10:46:34.8945019 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000043","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:34.8945152 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\d3d11.dll","0.0000064","","7396"
"10:46:34.8954846 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000418","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8956446 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000175","AllocationSize: 143,360, EndOfFile: 140,048, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.8956514 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\d3d11.dll","0.0000815","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8957171 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ResourcePolicyClient.dll","0.0000166","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.8957773 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000064","AllocationSize: 143,360, EndOfFile: 140,048, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.8958191 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000132","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:34.8958310 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ResourcePolicyClient.dll","0.0000039","SyncType: SyncTypeOther","2512"
"10:46:34.8958545 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\d3d11.dll","0.0000192","","7396"
"10:46:34.8963451 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000423","","2512"
"10:46:34.8965862 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\d3d11.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8966169 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000034","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:34.8966263 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\d3d11.dll","0.0000047","","7396"
"10:46:34.8969677 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dxgi.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8970009 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000030","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:34.8970099 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dxgi.dll","0.0000047","","7396"
"10:46:34.8970359 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8970637 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000029","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 3/20/2019 7:51:16 PM, FileAttributes: A","2512"
"10:46:34.8970769 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000047","","2512"
"10:46:34.8972672 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8972778 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dxgi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8972988 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ResourcePolicyClient.dll","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.8973060 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000030","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:34.8973150 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dxgi.dll","0.0000042","","7396"
"10:46:34.8973222 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ResourcePolicyClient.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:34.8973696 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000047","Name: \Windows\System32\ResourcePolicyClient.dll","2512"
"10:46:34.8973948 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000055","","2512"
"10:46:34.8975454 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dxgi.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8975812 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000034","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:34.8975944 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dxgi.dll","0.0000056","","7396"
"10:46:34.8977395 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8977660 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000029","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 3/20/2019 7:51:16 PM, FileAttributes: A","2512"
"10:46:34.8977770 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000047","","2512"
"10:46:34.8979174 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8979255 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8979486 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","7396"
"10:46:34.8979537 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ResourcePolicyClient.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.8979580 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000042","","7396"
"10:46:34.8979746 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ResourcePolicyClient.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:34.8980036 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000043","Name: \Windows\System32\ResourcePolicyClient.dll","2512"
"10:46:34.8980254 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000047","","2512"
"10:46:34.8982890 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8983279 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000034","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","7396"
"10:46:34.8983432 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000056","","7396"
"10:46:34.8983966 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8984188 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000029","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 3/20/2019 7:51:16 PM, FileAttributes: A","2512"
"10:46:34.8984298 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ResourcePolicyClient.dll","0.0000043","","2512"
"10:46:34.8984708 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8984934 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000137","Filter: Windows, 1: Windows","2512"
"10:46:34.8985190 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:34.8985668 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8985962 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","7396"
"10:46:34.8986056 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000043","","7396"
"10:46:34.8986257 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8986492 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000106","Filter: System32, 1: System32","2512"
"10:46:34.8986709 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:34.8988633 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8988796 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\ext-ms-win-core-resourcepolicy-l1-1-0.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2512"
"10:46:34.8988945 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:34.8989034 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000043","","7396"
"10:46:34.8991804 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000277","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8992264 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8992273 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000034","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:34.8992375 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000051","","7396"
"10:46:34.8992537 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","2512"
"10:46:34.8992661 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000043","","2512"
"10:46:34.8993071 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8993297 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000153","Filter: Windows, 1: Windows","2512"
"10:46:34.8993587 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:34.8994504 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8994696 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000209","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8994854 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000034","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:34.8994948 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000051","","7396"
"10:46:34.8995046 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000162","Filter: System32, 1: System32","2512"
"10:46:34.8995388 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000064","","2512"
"10:46:34.8999351 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.8999432 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nsi.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.8999603 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","2512"
"10:46:34.8999727 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000047","","2512"
"10:46:34.8999778 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:34.8999889 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nsi.dll","0.0000051","","7396"
"10:46:34.9000124 AM","firefox.exe","7384","CreateFile","C:\","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9000337 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000124","Filter: Windows, 1: Windows","2512"
"10:46:34.9000580 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:34.9001741 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9001933 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nsi.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9001997 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000132","Filter: System32, 1: System32","2512"
"10:46:34.9002240 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:34.9002257 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:34.9002338 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nsi.dll","0.0000043","","7396"
"10:46:34.9003946 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000154","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9004279 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000034","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.9004591 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nsi.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9004864 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:34.9004932 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.9004958 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nsi.dll","0.0000042","","7396"
"10:46:34.9005073 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000021","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.9005282 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:34.9005768 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000060","","2512"
"10:46:34.9007961 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9008269 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000029","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.9008439 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.9008559 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000021","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.9008738 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9008759 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:34.9009084 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000034","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","7396"
"10:46:34.9009186 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000060","","2512"
"10:46:34.9009194 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000056","","7396"
"10:46:34.9011358 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9011507 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9011797 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000047","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:34.9011921 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000034","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","7396"
"10:46:34.9012015 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000059","","2512"
"10:46:34.9012049 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000051","","7396"
"10:46:34.9014558 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9014652 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9014809 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:34.9014925 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000038","","2512"
"10:46:34.9014954 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","7396"
"10:46:34.9015057 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000043","","7396"
"10:46:34.9016025 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9016345 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000030","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.9016516 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.9016640 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000021","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.9016840 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:34.9017613 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9017689 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000026","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.9017826 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.9017924 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000026","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","7396"
"10:46:34.9017928 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000022","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.9018031 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000038","","7396"
"10:46:34.9018129 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:34.9018786 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\coloradapterclient.dll","0.0142767","Offset: 0, Length: 49,152, Priority: Normal","2512"
"10:46:34.9019285 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\coloradapterclient.dll","0.0141611","Offset: 32,768, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2512"
"10:46:34.9020045 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9020322 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000026","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","7396"
"10:46:34.9020403 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000038","","7396"
"10:46:34.9022216 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9022472 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000022","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","7396"
"10:46:34.9022549 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000039","","7396"
"10:46:34.9025173 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9025468 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000025","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","7396"
"10:46:34.9025553 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000043","","7396"
"10:46:34.9027345 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9027601 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000026","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","7396"
"10:46:34.9027682 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000038","","7396"
"10:46:34.9029559 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9029803 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000025","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","7396"
"10:46:34.9029884 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000038","","7396"
"10:46:34.9032158 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9032427 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000025","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:34.9032508 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000038","","7396"
"10:46:34.9034342 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9034590 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000025","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:34.9034671 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000038","","7396"
"10:46:34.9036569 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9036817 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:34.9036894 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000038","","7396"
"10:46:34.9039185 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\userenv.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9039445 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","7396"
"10:46:34.9039531 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\userenv.dll","0.0000046","","7396"
"10:46:34.9041404 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\userenv.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9041647 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","7396"
"10:46:34.9041732 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\userenv.dll","0.0000039","","7396"
"10:46:34.9043627 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\userenv.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9043865 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","7396"
"10:46:34.9043947 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\userenv.dll","0.0000038","","7396"
"10:46:34.9046272 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9046472 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000026","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","7396"
"10:46:34.9046549 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000039","","7396"
"10:46:34.9048461 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9048636 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000025","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","7396"
"10:46:34.9048717 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000034","","7396"
"10:46:34.9050679 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9050850 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000021","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","7396"
"10:46:34.9050927 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000034","","7396"
"10:46:34.9053308 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9053602 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","7396"
"10:46:34.9053700 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000056","","7396"
"10:46:34.9056614 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9056956 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","7396"
"10:46:34.9057062 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000051","","7396"
"10:46:34.9058940 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9059217 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","7396"
"10:46:34.9059311 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000038","","7396"
"10:46:34.9061700 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9061982 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","7396"
"10:46:34.9062067 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000038","","7396"
"10:46:34.9064021 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9064273 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","7396"
"10:46:34.9064358 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000039","","7396"
"10:46:34.9066065 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9066308 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000021","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","7396"
"10:46:34.9066385 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000038","","7396"
"10:46:34.9068774 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9069056 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","7396"
"10:46:34.9069137 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000043","","7396"
"10:46:34.9070946 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9071189 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","7396"
"10:46:34.9071275 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000038","","7396"
"10:46:34.9072947 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9073237 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000039","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","7396"
"10:46:34.9073344 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000043","","7396"
"10:46:34.9075738 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\webauthn.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9076023 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","7396"
"10:46:34.9076104 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\webauthn.dll","0.0000043","","7396"
"10:46:34.9077986 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\webauthn.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9078234 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","7396"
"10:46:34.9078319 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\webauthn.dll","0.0000034","","7396"
"10:46:34.9080013 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\webauthn.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9080252 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","7396"
"10:46:34.9080333 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\webauthn.dll","0.0000038","","7396"
"10:46:34.9082842 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9083140 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000034","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:34.9083260 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000055","","7396"
"10:46:34.9085384 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9085640 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000030","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:34.9085726 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000038","","7396"
"10:46:34.9087411 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9087654 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","7396"
"10:46:34.9087735 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000039","","7396"
"10:46:34.9090065 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9090342 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000030","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","7396"
"10:46:34.9090428 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000038","","7396"
"10:46:34.9092318 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9092570 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000025","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","7396"
"10:46:34.9092651 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000034","","7396"
"10:46:34.9094481 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9094724 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000026","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","7396"
"10:46:34.9094805 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000039","","7396"
"10:46:34.9097250 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9097515 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","7396"
"10:46:34.9097600 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000034","","7396"
"10:46:34.9099413 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9099656 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","7396"
"10:46:34.9099738 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000038","","7396"
"10:46:34.9101491 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9101730 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","7396"
"10:46:34.9101811 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000039","","7396"
"10:46:34.9104230 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mswsock.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9104503 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","7396"
"10:46:34.9104584 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mswsock.dll","0.0000039","","7396"
"10:46:34.9107068 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mswsock.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9107490 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","7396"
"10:46:34.9107622 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mswsock.dll","0.0000064","","7396"
"10:46:34.9107981 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B9C8559E103415356D42B7D83A7F183CA163363B","0.0415254","Offset: 14,693, Length: 5,787","6572"
"10:46:34.9108352 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B9C8559E103415356D42B7D83A7F183CA163363B","0.0414520","Offset: 12,288, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:34.9110059 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mswsock.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9110332 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","7396"
"10:46:34.9110417 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mswsock.dll","0.0000043","","7396"
"10:46:34.9112943 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winrnr.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9113280 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000026","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","7396"
"10:46:34.9113365 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winrnr.dll","0.0000043","","7396"
"10:46:34.9115200 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winrnr.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9115456 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000026","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","7396"
"10:46:34.9115537 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winrnr.dll","0.0000038","","7396"
"10:46:34.9117303 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winrnr.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9117547 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000025","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","7396"
"10:46:34.9117628 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winrnr.dll","0.0000038","","7396"
"10:46:34.9120021 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wshbth.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9120282 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:34.9120363 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wshbth.dll","0.0000038","","7396"
"10:46:34.9122155 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wshbth.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9122394 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000046","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:34.9122500 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wshbth.dll","0.0000043","","7396"
"10:46:34.9124962 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wshbth.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9125325 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000038","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","7396"
"10:46:34.9125453 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wshbth.dll","0.0000055","","7396"
"10:46:34.9128785 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sspicli.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9129079 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:34.9129165 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sspicli.dll","0.0000042","","7396"
"10:46:34.9131098 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sspicli.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9131354 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000029","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:34.9131439 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sspicli.dll","0.0000038","","7396"
"10:46:34.9133261 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sspicli.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9133504 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","7396"
"10:46:34.9133585 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sspicli.dll","0.0000038","","7396"
"10:46:34.9136047 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\devobj.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9136320 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","7396"
"10:46:34.9136405 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\devobj.dll","0.0000039","","7396"
"10:46:34.9138210 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\devobj.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9138458 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","7396"
"10:46:34.9138539 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\devobj.dll","0.0000038","","7396"
"10:46:34.9140198 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\devobj.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9140429 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000021","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","7396"
"10:46:34.9140506 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\devobj.dll","0.0000038","","7396"
"10:46:34.9142903 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\DWrite.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9143189 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000026","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:34.9143270 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\DWrite.dll","0.0000039","","7396"
"10:46:34.9145293 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\DWrite.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9145536 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000026","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:34.9145617 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\DWrite.dll","0.0000034","","7396"
"10:46:34.9147290 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\DWrite.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9147524 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000022","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","7396"
"10:46:34.9147601 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\DWrite.dll","0.0000038","","7396"
"10:46:34.9149952 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mscms.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9150221 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000025","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","7396"
"10:46:34.9150302 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mscms.dll","0.0000034","","7396"
"10:46:34.9152102 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mscms.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9152346 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000025","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","7396"
"10:46:34.9152427 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mscms.dll","0.0000038","","7396"
"10:46:34.9154138 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mscms.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9154372 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","7396"
"10:46:34.9154453 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mscms.dll","0.0000039","","7396"
"10:46:34.9156864 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9157056 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","7396"
"10:46:34.9157141 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0004489","","7396"
"10:46:34.9165060 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9165393 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000047","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","7396"
"10:46:34.9165551 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000064","","7396"
"10:46:34.9168239 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9168542 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000043","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","7396"
"10:46:34.9168678 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000060","","7396"
"10:46:34.9169489 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000171","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9169865 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000187","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:34.9171511 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000205","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:34.9173158 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9173231 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000128","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9173508 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:34.9173508 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000026","Information: DACL","2512"
"10:46:34.9173615 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000051","","7396"
"10:46:34.9173662 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000043","","2512"
"10:46:34.9176162 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000205","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:34.9177233 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9177545 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000029","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:34.9177643 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000042","","7396"
"10:46:34.9177707 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000145","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9178022 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000026","Information: DACL","2512"
"10:46:34.9178176 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:34.9179674 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9179947 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","7396"
"10:46:34.9180032 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000043","","7396"
"10:46:34.9181496 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000170","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:34.9182840 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9183070 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000179","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:34.9183232 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:34.9183322 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000042","","7396"
"10:46:34.9184290 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000124","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9184572 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000021","Information: DACL","2512"
"10:46:34.9184725 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000039","","2512"
"10:46:34.9185331 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9185540 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:34.9185634 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000039","","7396"
"10:46:34.9186099 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:34.9187174 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000116","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9187426 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000022","Information: DACL","2512"
"10:46:34.9187435 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9187550 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:34.9187610 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","7396"
"10:46:34.9187695 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000038","","7396"
"10:46:34.9190106 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9190285 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000030","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","7396"
"10:46:34.9190366 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000038","","7396"
"10:46:34.9192209 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9192376 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000021","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","7396"
"10:46:34.9192452 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000034","","7396"
"10:46:34.9194325 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7396"
"10:46:34.9194500 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","7396"
"10:46:34.9194581 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000035","","7396"
"10:46:34.9397457 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0924857","Offset: 46,137,344, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:34.9471719 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9472056 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, AllocationSize: 294912, EndOfFile: 291839, FileAttributes: A","2512"
"10:46:34.9472218 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000055","","2512"
"10:46:34.9474513 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9474761 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:20:29 PM, ChangeTime: 3/20/2019 7:06:10 PM, AllocationSize: 454656, EndOfFile: 452785, FileAttributes: A","2512"
"10:46:34.9474953 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","","2512"
"10:46:34.9475345 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000052","","2512"
"10:46:34.9475512 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:34.9477684 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9477918 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, AllocationSize: 294912, EndOfFile: 291839, FileAttributes: A","2512"
"10:46:34.9478033 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","","2512"
"10:46:34.9479211 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9479501 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.9479680 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.9479804 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.9479988 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:34.9482880 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000035","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:34.9483043 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000046","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, FileAttributes: A, AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x300000006193f, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:34.9484480 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000175","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9484830 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.9485001 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.9485120 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.9485329 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:34.9486115 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000068","","2512"
"10:46:34.9487604 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000149","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9487928 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.9488077 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.9488188 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.9488376 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:34.9488747 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000056","","2512"
"10:46:34.9491546 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000137","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9491849 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.9491994 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.9492101 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:34.9492284 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:34.9494900 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","","2512"
"10:46:34.9525001 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\09F8AAAB9AA62DCD65EEBD9FAE58BC470027FE74","0.0405206","Offset: 22,875, Length: 5,797","6572"
"10:46:34.9525500 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\09F8AAAB9AA62DCD65EEBD9FAE58BC470027FE74","0.0404186","Offset: 20,480, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:34.9544713 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.9545174 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40993, endtime: 40993, seqnum: 0, connid: 0","0"
"10:46:34.9546002 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.9546266 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40993, endtime: 40993, seqnum: 0, connid: 0","0"
"10:46:34.9554151 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000286","","2512"
"10:46:34.9555311 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000090","","2512"
"10:46:34.9566618 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9567966 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000171","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","2512"
"10:46:34.9568286 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000077","","2512"
"10:46:34.9570748 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9570987 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","2512"
"10:46:34.9571107 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000047","","2512"
"10:46:34.9573415 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9573624 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","2512"
"10:46:34.9573735 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000043","","2512"
"10:46:34.9574200 AM","firefox.exe","7384","CreateFile","C:\","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9574447 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000154","Filter: Windows, 1: Windows","2512"
"10:46:34.9574729 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:34.9575710 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9576043 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000239","Filter: System32, 1: System32","2512"
"10:46:34.9576427 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:34.9578915 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000763","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9583621 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000094","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","2512"
"10:46:34.9583915 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000120","","2512"
"10:46:34.9585037 AM","firefox.exe","7384","CreateFile","C:\","0.0000222","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9585507 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000286","Filter: Windows, 1: Windows","2512"
"10:46:34.9585997 AM","firefox.exe","7384","CloseFile","C:\","0.0000069","","2512"
"10:46:34.9587627 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9587973 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000158","Filter: System32, 1: System32","2512"
"10:46:34.9588301 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000064","","2512"
"10:46:34.9589726 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9590055 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\mscms.dll","0.0000175","Filter: mscms.dll, 1: mscms.dll","2512"
"10:46:34.9590396 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000056","","2512"
"10:46:34.9593067 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9593528 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000047","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","2512"
"10:46:34.9593703 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000068","","2512"
"10:46:34.9594236 AM","firefox.exe","7384","CreateFile","C:\","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9594484 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000128","Filter: Windows, 1: Windows","2512"
"10:46:34.9594753 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:34.9595870 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9596088 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:34.9596297 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:34.9597257 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9597466 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\mscms.dll","0.0000124","Filter: mscms.dll, 1: mscms.dll","2512"
"10:46:34.9597692 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:34.9598955 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9599361 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000038","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.9599553 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.9599685 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000021","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.9599894 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:34.9600568 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000064","","2512"
"10:46:34.9602014 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9602394 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000030","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.9602544 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.9602684 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000026","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.9602923 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:34.9603892 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000072","","2512"
"10:46:34.9608124 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9608555 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000051","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:34.9608769 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000064","","2512"
"10:46:34.9611636 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9611964 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000039","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:34.9612126 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000056","","2512"
"10:46:34.9613829 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000192","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:34.9614426 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000043","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.9614661 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.9614832 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000029","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.9615105 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:34.9616355 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000034","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.9616542 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:34.9616688 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000025","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:34.9616939 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:34.9619098 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\mscms.dll","0.0607873","Offset: 0, Length: 524,288, Priority: Normal","2512"
"10:46:34.9620033 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\mscms.dll","0.0603200","Offset: 32,768, Length: 491,520, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2512"
"10:46:34.9931530 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\F7C4AA2955320E031409ABB58451107FA9D23AF3","0.0122875","Offset: 22,391, Length: 6,281","6572"
"10:46:34.9931969 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\F7C4AA2955320E031409ABB58451107FA9D23AF3","0.0121873","Offset: 20,480, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:34.9969511 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49763 -> ec2-52-88-126-42.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 270, seqnum: 0, connid: 0","0"
"10:46:34.9971385 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.9971645 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40997, endtime: 40997, seqnum: 0, connid: 0","0"
"10:46:34.9972306 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:34.9972426 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 40997, endtime: 40997, seqnum: 0, connid: 0","0"
"10:46:35.0057196 AM","firefox.exe","7384","ReadFile","C:","0.0007168","Offset: 536,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:35.0067470 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B37332B4BBAA6E2E4C54C27075AE3A2CE0778D9C","0.0000550","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:35.0068545 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\302CC90EFF72B66AB97EBA35CF577497A1BBD95A","0.0373876","Offset: 13,946, Length: 6,534","6572"
"10:46:35.0068861 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\302CC90EFF72B66AB97EBA35CF577497A1BBD95A","0.0371601","Offset: 12,288, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:35.0340443 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000487","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0341395 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000341","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:35.0344351 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000393","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:35.0347078 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000273","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0347709 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000098","Information: DACL","2512"
"10:46:35.0348208 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000713","","2512"
"10:46:35.0352787 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000452","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:35.0356375 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000384","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0357190 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000072","Information: DACL","2512"
"10:46:35.0357612 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000128","","2512"
"10:46:35.0364243 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000520","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:35.0369068 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000521","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:35.0372733 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000401","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0373655 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000072","Information: DACL","2512"
"10:46:35.0374120 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000132","","2512"
"10:46:35.0382466 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000469","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:35.0385900 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000389","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0386741 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000072","Information: DACL","2512"
"10:46:35.0387163 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000128","","2512"
"10:46:35.0445830 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7E4E68E40F5A59B95E0A61BB431BA54BA580C4B9","0.0311262","Offset: 25,352, Length: 7,416","6572"
"10:46:35.0446662 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7E4E68E40F5A59B95E0A61BB431BA54BA580C4B9","0.0310157","Offset: 24,576, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:35.0519503 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000516","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0520655 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000119","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, AllocationSize: 294912, EndOfFile: 291839, FileAttributes: A","2512"
"10:46:35.0521179 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000175","","2512"
"10:46:35.0528539 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000444","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0529363 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000098","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:20:29 PM, ChangeTime: 3/20/2019 7:06:10 PM, AllocationSize: 454656, EndOfFile: 452785, FileAttributes: A","2512"
"10:46:35.0529811 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000149","","2512"
"10:46:35.0531035 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000137","","2512"
"10:46:35.0531543 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000124","","2512"
"10:46:35.0538728 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000457","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0539577 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000098","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, AllocationSize: 294912, EndOfFile: 291839, FileAttributes: A","2512"
"10:46:35.0540034 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000149","","2512"
"10:46:35.0544915 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0001109","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0548298 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000209","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.0549028 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000200","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.0549608 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000081","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.0550308 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000119","SyncType: SyncTypeOther","2512"
"10:46:35.0558065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\browser\omni.ja","0.0484084","Offset: 47,185,920, Length: 217,088, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5244"
"10:46:35.0560074 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000086","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:35.0560450 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000119","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, FileAttributes: A, AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x300000006193f, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:35.0566039 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000401","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0566867 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000072","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.0567272 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.0567579 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.0568023 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","SyncType: SyncTypeOther","2512"
"10:46:35.0569470 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000162","","2512"
"10:46:35.0573860 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000474","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0574884 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000094","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.0575498 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000081","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.0575895 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.0576633 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000056","SyncType: SyncTypeOther","2512"
"10:46:35.0577905 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000175","","2512"
"10:46:35.0583848 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000346","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0584591 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.0584919 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000056","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.0585231 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.0585645 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","SyncType: SyncTypeOther","2512"
"10:46:35.0590206 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000136","","2512"
"10:46:35.0679725 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000183","","2512"
"10:46:35.0680689 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","","2512"
"10:46:35.0685404 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0685907 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000051","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","2512"
"10:46:35.0686086 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000060","","2512"
"10:46:35.0688591 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0688970 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000035","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","2512"
"10:46:35.0689116 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000055","","2512"
"10:46:35.0691697 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0692051 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000038","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","2512"
"10:46:35.0692192 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000051","","2512"
"10:46:35.0692653 AM","firefox.exe","7384","CreateFile","C:\","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0692981 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000278","Filter: Windows, 1: Windows","2512"
"10:46:35.0693472 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:35.0694679 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000162","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0694999 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000137","Filter: System32, 1: System32","2512"
"10:46:35.0695272 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000052","","2512"
"10:46:35.0696497 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0696779 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\mscms.dll","0.0000200","Filter: mscms.dll, 1: mscms.dll","2512"
"10:46:35.0697116 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000047","","2512"
"10:46:35.0699513 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mscms.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2512"
"10:46:35.0702244 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0702641 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000043","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","2512"
"10:46:35.0702786 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000060","","2512"
"10:46:35.0703243 AM","firefox.exe","7384","CreateFile","C:\","0.0000110","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0703499 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000145","Filter: Windows, 1: Windows","2512"
"10:46:35.0703780 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:35.0705069 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0705346 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000128","Filter: System32, 1: System32","2512"
"10:46:35.0705606 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000047","","2512"
"10:46:35.0706788 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000120","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0707048 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\urlmon.dll","0.0000145","Filter: urlmon.dll, 1: urlmon.dll","2512"
"10:46:35.0707326 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000047","","2512"
"10:46:35.0709604 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0709958 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000039","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","2512"
"10:46:35.0710095 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000055","","2512"
"10:46:35.0710521 AM","firefox.exe","7384","CreateFile","C:\","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0710756 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000115","Filter: Windows, 1: Windows","2512"
"10:46:35.0710999 AM","firefox.exe","7384","CloseFile","C:\","0.0000047","","2512"
"10:46:35.0712139 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000119","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0712395 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000115","Filter: System32, 1: System32","2512"
"10:46:35.0712638 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000047","","2512"
"10:46:35.0714438 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000133","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0714750 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\urlmon.dll","0.0000149","Filter: urlmon.dll, 1: urlmon.dll","2512"
"10:46:35.0715036 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000047","","2512"
"10:46:35.0716512 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000158","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0716973 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\urlmon.dll","0.0000042","AllocationSize: 1,806,336, EndOfFile: 1,803,776, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.0717207 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\urlmon.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.0717369 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\urlmon.dll","0.0000026","AllocationSize: 1,806,336, EndOfFile: 1,803,776, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.0717672 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\urlmon.dll","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:35.0718560 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000068","","2512"
"10:46:35.0720134 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000150","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0720608 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\urlmon.dll","0.0000034","AllocationSize: 1,806,336, EndOfFile: 1,803,776, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.0720800 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\urlmon.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.0720941 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\urlmon.dll","0.0000025","AllocationSize: 1,806,336, EndOfFile: 1,803,776, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.0721180 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\urlmon.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.0721884 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000064","","2512"
"10:46:35.0724363 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0724657 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000064","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:35.0724823 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000052","","2512"
"10:46:35.0726965 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0727234 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:35.0727366 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000043","","2512"
"10:46:35.0728651 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000140","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.0729094 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\urlmon.dll","0.0000034","AllocationSize: 1,806,336, EndOfFile: 1,803,776, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.0729278 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\urlmon.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.0729419 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\urlmon.dll","0.0000025","AllocationSize: 1,806,336, EndOfFile: 1,803,776, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.0729645 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\urlmon.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:35.0730750 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\urlmon.dll","0.0000030","AllocationSize: 1,806,336, EndOfFile: 1,803,776, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.0730903 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\urlmon.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.0731023 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\urlmon.dll","0.0000021","AllocationSize: 1,806,336, EndOfFile: 1,803,776, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.0731240 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\urlmon.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:35.0733480 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\urlmon.dll","0.0410813","Offset: 0, Length: 524,288, Priority: Normal","2512"
"10:46:35.0734551 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\urlmon.dll","0.0407369","Offset: 32,768, Length: 491,520, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2512"
"10:46:35.0758534 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\97CFA549897ECA75A30A13A2EA3204AB0C02DCA2","0.0659295","Offset: 19,179, Length: 5,397","6572"
"10:46:35.0759285 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\97CFA549897ECA75A30A13A2EA3204AB0C02DCA2","0.0658297","Offset: 16,384, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:35.1010234 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite-journal","0.0001267","","212"
"10:46:35.1014629 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite-journal","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","212"
"10:46:35.1015904 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite-journal","0.0000064","CreationTime: 3/26/2020 10:46:34 AM, LastAccessTime: 3/26/2020 10:46:34 AM, LastWriteTime: 3/26/2020 10:46:34 AM, ChangeTime: 3/26/2020 10:46:34 AM, FileAttributes: A","212"
"10:46:35.1016152 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite-journal","0.0000102","","212"
"10:46:35.1018904 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite-journal","0.0000375","Desired Access: Read Attributes, Delete, Disposition: Open, Options: Non-Directory File, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","212"
"10:46:35.1019493 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite-journal","0.0000055","Attributes: A, ReparseTag: 0x0","212"
"10:46:35.1019693 AM","firefox.exe","7384","SetDispositionInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite-journal","0.0000107","Delete: True","212"
"10:46:35.1019915 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite-journal","0.0001254","","212"
"10:46:35.1021498 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000034","Offset: 1,073,741,826, Length: 510","212"
"10:46:35.1021634 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","212"
"10:46:35.1021724 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000009","Offset: 1,073,741,825, Length: 1","212"
"10:46:35.1021797 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000008","Offset: 1,073,741,824, Length: 1","212"
"10:46:35.1021886 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000013","Offset: 1,073,741,826, Length: 510","212"
"10:46:35.1030539 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000051","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","212"
"10:46:35.1030710 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","212"
"10:46:35.1030829 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000017","Offset: 1,073,741,824, Length: 1","212"
"10:46:35.1033628 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite-journal","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","212"
"10:46:35.1034029 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000098","Offset: 24, Length: 16","212"
"10:46:35.1035996 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","212"
"10:46:35.1036307 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000039","AllocationSize: 65,536, EndOfFile: 65,536, NumberOfLinks: 1, DeletePending: False, Directory: False","212"
"10:46:35.1036683 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000081","Offset: 32,768, Length: 32,768","212"
"10:46:35.1037033 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000025","Offset: 1,073,741,826, Length: 510","212"
"10:46:35.1068636 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000073","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","212"
"10:46:35.1068841 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","212"
"10:46:35.1068982 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000021","Offset: 1,073,741,824, Length: 1","212"
"10:46:35.1072105 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite-journal","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","212"
"10:46:35.1072561 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000069","Offset: 24, Length: 16","212"
"10:46:35.1074848 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite-wal","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","212"
"10:46:35.1075202 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000043","AllocationSize: 65,536, EndOfFile: 65,536, NumberOfLinks: 1, DeletePending: False, Directory: False","212"
"10:46:35.1075813 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\protections.sqlite","0.0000059","Offset: 1,073,741,826, Length: 510","212"
"10:46:35.1130225 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5728"
"10:46:35.1130597 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000042","CreationTime: 3/25/2020 10:31:45 AM, LastAccessTime: 3/25/2020 10:31:45 AM, LastWriteTime: 3/25/2020 10:31:45 AM, ChangeTime: 3/25/2020 10:31:45 AM, FileAttributes: A","5728"
"10:46:35.1130772 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000064","","5728"
"10:46:35.1133669 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000251","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","4556"
"10:46:35.1134266 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000183","Offset: 0, Length: 10,005, Priority: Normal","4556"
"10:46:35.1134646 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000042","Offset: 10,005, Length: 22,763","4556"
"10:46:35.1135508 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","8512"
"10:46:35.1135520 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000099","","4556"
"10:46:35.1136049 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000052","CreationTime: 3/25/2020 10:31:45 AM, LastAccessTime: 3/25/2020 10:31:45 AM, LastWriteTime: 3/25/2020 10:31:45 AM, ChangeTime: 3/25/2020 10:31:45 AM, AllocationSize: 12288, EndOfFile: 10005, FileAttributes: A","8512"
"10:46:35.1136263 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\settings\main\ms-language-packs\asrouter.ftl","0.0000077","","8512"
"10:46:35.1264830 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:35.1265044 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:35.1265189 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5244"
"10:46:35.1268107 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1268572 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 24, Length: 16","5244"
"10:46:35.1270531 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1270868 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:35.1271341 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 1,073,741,826, Length: 510","5244"
"10:46:35.1272071 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:35.1272186 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:35.1272284 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5244"
"10:46:35.1274588 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1275002 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Offset: 24, Length: 16","5244"
"10:46:35.1277323 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000542","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1278846 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000171","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:35.1280084 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 1,073,741,826, Length: 510","5244"
"10:46:35.1286381 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000124","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:35.1286603 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:35.1286787 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 1,073,741,824, Length: 1","5244"
"10:46:35.1291100 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1291446 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","5244"
"10:46:35.1293285 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1293605 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:35.1293874 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5244"
"10:46:35.1294804 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:35.1294910 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:35.1295000 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5244"
"10:46:35.1296873 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1297168 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5244"
"10:46:35.1299006 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1299292 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:35.1299514 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5244"
"10:46:35.1313112 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:35.1313244 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:35.1313351 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5244"
"10:46:35.1315446 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1315775 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000046","Offset: 24, Length: 16","5244"
"10:46:35.1318458 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1318893 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:35.1319124 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","5244"
"10:46:35.1320267 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:35.1320383 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:35.1320481 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5244"
"10:46:35.1322627 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1322985 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","5244"
"10:46:35.1325281 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1325716 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:35.1325980 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5244"
"10:46:35.1327337 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:35.1327444 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:35.1327538 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5244"
"10:46:35.1329577 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1329906 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5244"
"10:46:35.1331728 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1332022 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:35.1332316 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000035","Offset: 1,073,741,826, Length: 510","5244"
"10:46:35.1333503 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:35.1333622 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:35.1333720 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5244"
"10:46:35.1335725 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1336045 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5244"
"10:46:35.1337863 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1338162 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:35.1338396 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5244"
"10:46:35.1339207 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:35.1339314 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:35.1339412 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Offset: 1,073,741,824, Length: 1","5244"
"10:46:35.1341285 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1341588 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5244"
"10:46:35.1343363 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1343653 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:35.1343836 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5244"
"10:46:35.1344502 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:35.1344609 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:35.1344707 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Offset: 1,073,741,824, Length: 1","5244"
"10:46:35.1346674 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1346972 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5244"
"10:46:35.1348807 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1349101 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:35.1349285 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5244"
"10:46:35.1350061 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:35.1350177 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:35.1350275 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5244"
"10:46:35.1352156 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1352455 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5244"
"10:46:35.1354251 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1354537 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:35.1354716 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5244"
"10:46:35.1355416 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:35.1355519 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:35.1355617 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5244"
"10:46:35.1357477 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1357780 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5244"
"10:46:35.1359649 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1359939 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:35.1360118 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5244"
"10:46:35.1360784 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:35.1360890 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:35.1360988 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5244"
"10:46:35.1362943 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1363245 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5244"
"10:46:35.1365042 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1365336 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:35.1365515 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5244"
"10:46:35.1366249 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:35.1366360 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:35.1366458 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Offset: 1,073,741,824, Length: 1","5244"
"10:46:35.1368575 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1368903 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5244"
"10:46:35.1370712 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1371011 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:35.1371194 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5244"
"10:46:35.1371941 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:35.1372056 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:35.1372159 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5244"
"10:46:35.1374040 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1374433 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000102","Offset: 24, Length: 16","5244"
"10:46:35.1376511 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1376818 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:35.1377010 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5244"
"10:46:35.1377765 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:35.1377876 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:35.1377974 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5244"
"10:46:35.1379924 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1380398 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","5244"
"10:46:35.1382288 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1382603 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:35.1382795 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5244"
"10:46:35.1383559 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:35.1383670 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:35.1383768 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5244"
"10:46:35.1385667 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1385983 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5244"
"10:46:35.1387775 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.1388073 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:35.1388291 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5244"
"10:46:35.1401014 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\urlmon.dll","0.0168602","Offset: 1,572,864, Length: 230,912, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.1421264 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\982FDF372CA79C591695F9759FD5DDBCE231E0D0","0.0000371","Desired Access: Generic Read/Write, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:35.1421968 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\982FDF372CA79C591695F9759FD5DDBCE231E0D0","0.0217229","Offset: 8,192, Length: 1,456, Priority: Normal","6572"
"10:46:35.1422599 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\982FDF372CA79C591695F9759FD5DDBCE231E0D0","0.0216329","Offset: 8,192, Length: 1,456, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:35.1589332 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000184","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.1589720 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000150","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:35.1591090 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000196","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:35.1592259 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000124","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.1592536 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000030","Information: DACL","2512"
"10:46:35.1592682 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000046","","2512"
"10:46:35.1593787 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:35.1594764 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000115","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.1595003 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:35.1595118 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:35.1597486 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000162","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:35.1598715 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:35.1599837 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000115","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.1600080 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000021","Information: DACL","2512"
"10:46:35.1600315 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000042","","2512"
"10:46:35.1601505 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:35.1602478 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000998","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.1603647 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000034","Information: DACL","2512"
"10:46:35.1603809 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000055","","2512"
"10:46:35.1642132 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\EE197B20CAB0419D1C0BD23EE03034F880EDC296","0.0000393","Desired Access: Generic Read/Write, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:35.1642883 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\EE197B20CAB0419D1C0BD23EE03034F880EDC296","0.0217464","Offset: 8,192, Length: 1,505, Priority: Normal","6572"
"10:46:35.1643732 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\EE197B20CAB0419D1C0BD23EE03034F880EDC296","0.0216372","Offset: 8,192, Length: 1,505, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:35.1793032 AM","firefox.exe","7384","ReadFile","C:","0.0013858","Offset: 892,928, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.1807487 AM","firefox.exe","7384","ReadFile","C:","0.0003516","Offset: 1,089,536, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.1813367 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0419175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.1861077 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\38ED2A82492971F77141EDA89A442BD4E0CD8F8B","0.0263189","Offset: 25,946, Length: 6,822","6572"
"10:46:35.1861443 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\38ED2A82492971F77141EDA89A442BD4E0CD8F8B","0.0262554","Offset: 24,576, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:35.2125717 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7F347B9AF978EDEA2F853A5A2889171EF0D32C03","0.0320005","Offset: 0, Length: 42,800","6572"
"10:46:35.2126212 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7F347B9AF978EDEA2F853A5A2889171EF0D32C03","0.0319079","Offset: 0, Length: 40,960, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:35.2233049 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000060","CreationTime: 4/25/2019 5:41:27 PM, LastAccessTime: 4/25/2019 5:41:27 PM, LastWriteTime: 4/3/2019 9:56:07 AM, ChangeTime: 4/25/2019 8:12:25 PM, AllocationSize: 110592, EndOfFile: 106993, FileAttributes: A","2512"
"10:46:35.2233280 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000102","","2512"
"10:46:35.2234193 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000064","","2512"
"10:46:35.2234398 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000046","","2512"
"10:46:35.2236911 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2237179 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","CreationTime: 4/25/2019 5:41:27 PM, LastAccessTime: 4/25/2019 5:41:27 PM, LastWriteTime: 4/3/2019 9:56:07 AM, ChangeTime: 4/25/2019 8:12:25 PM, AllocationSize: 110592, EndOfFile: 106993, FileAttributes: A","2512"
"10:46:35.2237303 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000043","","2512"
"10:46:35.2238481 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000123","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2238767 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000029","AllocationSize: 110,592, EndOfFile: 106,993, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.2238937 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.2239065 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000022","AllocationSize: 110,592, EndOfFile: 106,993, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.2239266 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.2239752 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0049861","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.2290184 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0006311","Offset: 77,824, Length: 29,169, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.2297177 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0039672","Offset: 45,056, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.2337476 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000047","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:35.2337702 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000068","CreationTime: 4/25/2019 5:41:27 PM, LastAccessTime: 4/25/2019 5:41:27 PM, LastWriteTime: 4/3/2019 9:56:07 AM, ChangeTime: 4/25/2019 8:12:25 PM, FileAttributes: A, AllocationSize: 110,592, EndOfFile: 106,993, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x1d00000001874a, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:35.2339558 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000179","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2339951 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","AllocationSize: 110,592, EndOfFile: 106,993, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.2340147 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.2340288 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","AllocationSize: 110,592, EndOfFile: 106,993, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.2340488 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","SyncType: SyncTypeOther","2512"
"10:46:35.2341372 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000093","","2512"
"10:46:35.2343441 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000192","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2343957 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","AllocationSize: 110,592, EndOfFile: 106,993, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.2344128 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.2344252 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","AllocationSize: 110,592, EndOfFile: 106,993, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.2344444 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:35.2344810 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000056","","2512"
"10:46:35.2346799 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2347093 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","AllocationSize: 110,592, EndOfFile: 106,993, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.2347230 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.2347336 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000022","AllocationSize: 110,592, EndOfFile: 106,993, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.2347520 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.2348177 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0003720","Offset: 32,768, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.2352828 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000089","","2512"
"10:46:35.2367193 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000073","","2512"
"10:46:35.2367769 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000039","","2512"
"10:46:35.2372808 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2373227 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000042","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","2512"
"10:46:35.2373372 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000051","","2512"
"10:46:35.2375428 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2375808 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000030","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","2512"
"10:46:35.2375923 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000047","","2512"
"10:46:35.2378001 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2378283 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000029","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","2512"
"10:46:35.2378393 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000039","","2512"
"10:46:35.2378760 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2378987 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000136","Filter: Windows, 1: Windows","2512"
"10:46:35.2379247 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:35.2380207 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2380429 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:35.2380642 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:35.2381589 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2381798 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\urlmon.dll","0.0000111","Filter: urlmon.dll, 1: urlmon.dll","2512"
"10:46:35.2382012 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:35.2384132 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2384439 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000030","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","2512"
"10:46:35.2384550 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000043","","2512"
"10:46:35.2384892 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2385084 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000093","Filter: Windows, 1: Windows","2512"
"10:46:35.2385280 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:35.2386278 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2386487 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:35.2386688 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:35.2387618 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2387823 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\iertutil.dll","0.0000200","Filter: iertutil.dll, 1: iertutil.dll","2512"
"10:46:35.2388130 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:35.2389939 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2390229 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000030","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","2512"
"10:46:35.2390340 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000039","","2512"
"10:46:35.2390677 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2390861 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:35.2391061 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:35.2391949 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2392162 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:35.2392367 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:35.2393352 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2393549 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\iertutil.dll","0.0000106","Filter: iertutil.dll, 1: iertutil.dll","2512"
"10:46:35.2393753 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:35.2394876 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2395243 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\iertutil.dll","0.0000029","AllocationSize: 2,768,896, EndOfFile: 2,768,448, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.2395430 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\iertutil.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.2395575 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\iertutil.dll","0.0000017","AllocationSize: 2,768,896, EndOfFile: 2,768,448, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.2395780 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\iertutil.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:35.2396625 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000055","","2512"
"10:46:35.2397896 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2398280 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\iertutil.dll","0.0000026","AllocationSize: 2,768,896, EndOfFile: 2,768,448, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.2398430 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\iertutil.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.2398553 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\iertutil.dll","0.0000018","AllocationSize: 2,768,896, EndOfFile: 2,768,448, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.2398741 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\iertutil.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.2399390 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\iertutil.dll","0.0121114","Offset: 2,732,032, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.2447027 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\69852764590870F506F66E4FAFC263C8630728D2","0.0185989","Offset: 0, Length: 9,021","6572"
"10:46:35.2447458 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\69852764590870F506F66E4FAFC263C8630728D2","0.0185353","Offset: 0, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:35.2521562 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\iertutil.dll","0.0000059","AllocationSize: 2,768,896, EndOfFile: 2,768,448, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.2521805 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000115","","2512"
"10:46:35.2524062 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000179","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2524574 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\iertutil.dll","0.0000030","AllocationSize: 2,768,896, EndOfFile: 2,768,448, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.2524762 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\iertutil.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.2524898 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\iertutil.dll","0.0000022","AllocationSize: 2,768,896, EndOfFile: 2,768,448, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.2525150 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\iertutil.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:35.2532625 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\iertutil.dll","0.0004113","Offset: 2,764,800, Length: 3,648, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.2538219 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000077","","2512"
"10:46:35.2545519 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2545882 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000034","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","2512"
"10:46:35.2546014 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000051","","2512"
"10:46:35.2548113 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2548412 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000030","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","2512"
"10:46:35.2548527 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000043","","2512"
"10:46:35.2550665 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2550950 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000030","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","2512"
"10:46:35.2551061 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000043","","2512"
"10:46:35.2551437 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2551663 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000137","Filter: Windows, 1: Windows","2512"
"10:46:35.2551915 AM","firefox.exe","7384","CloseFile","C:\","0.0000042","","2512"
"10:46:35.2552858 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2553084 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:35.2553301 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:35.2554244 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2554458 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\iertutil.dll","0.0000115","Filter: iertutil.dll, 1: iertutil.dll","2512"
"10:46:35.2554680 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:35.2556924 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2557244 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","2512"
"10:46:35.2557355 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000047","","2512"
"10:46:35.2557709 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2557901 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000102","Filter: Windows, 1: Windows","2512"
"10:46:35.2558110 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:35.2559014 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2559232 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:35.2559433 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:35.2560354 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2560559 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wscapi.dll","0.0000115","Filter: wscapi.dll, 1: wscapi.dll","2512"
"10:46:35.2560781 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:35.2562470 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2562752 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","2512"
"10:46:35.2562854 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000043","","2512"
"10:46:35.2563179 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2563362 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000090","Filter: Windows, 1: Windows","2512"
"10:46:35.2563554 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:35.2564446 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2564651 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:35.2564847 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:35.2565927 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2566136 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wscapi.dll","0.0000119","Filter: wscapi.dll, 1: wscapi.dll","2512"
"10:46:35.2566362 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:35.2567480 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2567838 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wscapi.dll","0.0000030","AllocationSize: 290,816, EndOfFile: 289,816, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.2568013 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wscapi.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.2568149 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wscapi.dll","0.0000018","AllocationSize: 290,816, EndOfFile: 289,816, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.2568350 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wscapi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.2568853 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000056","","2512"
"10:46:35.2570074 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2570458 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wscapi.dll","0.0000030","AllocationSize: 290,816, EndOfFile: 289,816, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.2570607 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wscapi.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.2570722 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wscapi.dll","0.0000017","AllocationSize: 290,816, EndOfFile: 289,816, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.2570910 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wscapi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.2571456 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wscapi.dll","0.0000021","AllocationSize: 290,816, EndOfFile: 289,816, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.2571584 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000051","","2512"
"10:46:35.2572796 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2573137 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wscapi.dll","0.0000026","AllocationSize: 290,816, EndOfFile: 289,816, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.2573269 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wscapi.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.2573376 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wscapi.dll","0.0000017","AllocationSize: 290,816, EndOfFile: 289,816, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.2573555 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wscapi.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:35.2576760 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000055","","2512"
"10:46:35.2580702 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2581197 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","2512"
"10:46:35.2581359 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000056","","2512"
"10:46:35.2583326 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2583625 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","2512"
"10:46:35.2583740 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000043","","2512"
"10:46:35.2585809 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2586091 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","2512"
"10:46:35.2586193 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000043","","2512"
"10:46:35.2586547 AM","firefox.exe","7384","CreateFile","C:\","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2586765 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000128","Filter: Windows, 1: Windows","2512"
"10:46:35.2587055 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:35.2587989 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2588211 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000103","Filter: System32, 1: System32","2512"
"10:46:35.2588420 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:35.2589342 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2589560 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wscapi.dll","0.0000179","Filter: wscapi.dll, 1: wscapi.dll","2512"
"10:46:35.2589850 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:35.2591723 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2592017 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","2512"
"10:46:35.2592124 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000043","","2512"
"10:46:35.2592461 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2592649 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:35.2592845 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:35.2593732 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000099","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2593941 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:35.2594138 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:35.2595192 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2595422 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wscapi.dll","0.0000124","Filter: wscapi.dll, 1: wscapi.dll","2512"
"10:46:35.2595652 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000043","","2512"
"10:46:35.2597760 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2597986 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:35.2598093 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000043","","2512"
"10:46:35.2598434 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2598622 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:35.2598818 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:35.2599812 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000099","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2600021 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000103","Filter: System32, 1: System32","2512"
"10:46:35.2600222 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:35.2602112 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2602308 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:35.2602411 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000042","","2512"
"10:46:35.2602756 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2602936 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000102","Filter: Windows, 1: Windows","2512"
"10:46:35.2603175 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:35.2604523 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2604757 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000141","Filter: System32, 1: System32","2512"
"10:46:35.2605009 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000047","","2512"
"10:46:35.2606242 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2606528 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000039","AllocationSize: 323,584, EndOfFile: 320,832, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.2606716 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\BCP47Langs.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.2606848 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000017","AllocationSize: 323,584, EndOfFile: 320,832, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.2607053 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\BCP47Langs.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:35.2607744 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000064","","2512"
"10:46:35.2609045 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2609327 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000030","AllocationSize: 323,584, EndOfFile: 320,832, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.2609476 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\BCP47Langs.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.2609592 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000021","AllocationSize: 323,584, EndOfFile: 320,832, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.2609784 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\BCP47Langs.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:35.2610210 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\BCP47Langs.dll","0.0155256","Offset: 290,816, Length: 30,016, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.2633587 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B9C8559E103415356D42B7D83A7F183CA163363B","0.0077039","Offset: 0, Length: 14,693","6572"
"10:46:35.2633878 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B9C8559E103415356D42B7D83A7F183CA163363B","0.0076565","Offset: 0, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:35.2711177 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\09F8AAAB9AA62DCD65EEBD9FAE58BC470027FE74","0.0018231","Offset: 0, Length: 22,875","6572"
"10:46:35.2711458 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\09F8AAAB9AA62DCD65EEBD9FAE58BC470027FE74","0.0017763","Offset: 0, Length: 20,480, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:35.2729989 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\F7C4AA2955320E031409ABB58451107FA9D23AF3","0.0003985","Offset: 0, Length: 22,391","6572"
"10:46:35.2730236 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\F7C4AA2955320E031409ABB58451107FA9D23AF3","0.0003507","Offset: 0, Length: 20,480, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:35.2734430 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\302CC90EFF72B66AB97EBA35CF577497A1BBD95A","0.0003695","Offset: 0, Length: 13,946","6572"
"10:46:35.2734644 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\302CC90EFF72B66AB97EBA35CF577497A1BBD95A","0.0003357","Offset: 0, Length: 12,288, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:35.2738466 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7E4E68E40F5A59B95E0A61BB431BA54BA580C4B9","0.0139171","Offset: 0, Length: 25,352","6572"
"10:46:35.2738646 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7E4E68E40F5A59B95E0A61BB431BA54BA580C4B9","0.0138743","Offset: 0, Length: 24,576, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:35.2766102 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000059","AllocationSize: 323,584, EndOfFile: 320,832, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.2766319 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000111","","2512"
"10:46:35.2768299 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000158","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2768645 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000034","AllocationSize: 323,584, EndOfFile: 320,832, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.2768824 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\BCP47Langs.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.2768952 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000021","AllocationSize: 323,584, EndOfFile: 320,832, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.2769165 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\BCP47Langs.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:35.2773718 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000141","","2512"
"10:46:35.2780301 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2780608 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000039","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:35.2780753 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000052","","2512"
"10:46:35.2782853 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2783066 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:35.2783173 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000042","","2512"
"10:46:35.2785489 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2785690 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:35.2785797 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000038","","2512"
"10:46:35.2786176 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2786407 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000136","Filter: Windows, 1: Windows","2512"
"10:46:35.2786667 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:35.2787619 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2787857 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:35.2788075 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:35.2790289 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2790618 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:35.2790729 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000038","","2512"
"10:46:35.2791070 AM","firefox.exe","7384","CreateFile","C:\","0.0000086","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2791267 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:35.2791471 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:35.2792448 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000099","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2792657 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000099","Filter: System32, 1: System32","2512"
"10:46:35.2792858 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:35.2793805 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2794014 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\BCP47mrm.dll","0.0000120","Filter: BCP47mrm.dll, 1: BCP47mrm.dll","2512"
"10:46:35.2794236 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:35.2796079 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2796365 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:35.2796476 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000043","","2512"
"10:46:35.2796809 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2796992 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000099","Filter: Windows, 1: Windows","2512"
"10:46:35.2797189 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:35.2798076 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2798281 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:35.2798477 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:35.2799377 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2799578 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\BCP47mrm.dll","0.0000111","Filter: BCP47mrm.dll, 1: BCP47mrm.dll","2512"
"10:46:35.2799791 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:35.2800986 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2801370 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000043","AllocationSize: 159,744, EndOfFile: 158,144, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.2801656 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\BCP47mrm.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.2801784 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000017","AllocationSize: 159,744, EndOfFile: 158,144, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.2801984 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\BCP47mrm.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:35.2802518 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000055","","2512"
"10:46:35.2803832 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.2804314 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000055","AllocationSize: 159,744, EndOfFile: 158,144, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.2804544 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\BCP47mrm.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.2804694 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000030","AllocationSize: 159,744, EndOfFile: 158,144, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.2804945 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\BCP47mrm.dll","0.0000018","SyncType: SyncTypeOther","2512"
"10:46:35.2805376 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\BCP47mrm.dll","0.0219760","Offset: 126,976, Length: 31,168, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.2878405 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\97CFA549897ECA75A30A13A2EA3204AB0C02DCA2","0.0221670","Offset: 0, Length: 19,179","6572"
"10:46:35.2878738 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\97CFA549897ECA75A30A13A2EA3204AB0C02DCA2","0.0220847","Offset: 0, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:35.3026309 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000068","AllocationSize: 159,744, EndOfFile: 158,144, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.3026573 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000120","","2512"
"10:46:35.3028839 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000184","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.3029360 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000029","AllocationSize: 159,744, EndOfFile: 158,144, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.3029547 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\BCP47mrm.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.3029692 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000017","AllocationSize: 159,744, EndOfFile: 158,144, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.3029978 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\BCP47mrm.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:35.3033268 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000068","","2512"
"10:46:35.3037428 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.3037778 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000038","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:35.3037910 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000047","","2512"
"10:46:35.3039856 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.3040154 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:35.3040265 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000043","","2512"
"10:46:35.3042373 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.3042659 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:35.3042766 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000042","","2512"
"10:46:35.3043132 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.3043354 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000137","Filter: Windows, 1: Windows","2512"
"10:46:35.3043606 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:35.3044604 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.3044950 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000162","Filter: System32, 1: System32","2512"
"10:46:35.3045249 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000047","","2512"
"10:46:35.3046315 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.3046546 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\BCP47mrm.dll","0.0000294","Filter: BCP47mrm.dll, 1: BCP47mrm.dll","2512"
"10:46:35.3047049 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000094","","2512"
"10:46:35.3050697 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.3050949 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000034","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:35.3051064 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000051","","2512"
"10:46:35.3051448 AM","firefox.exe","7384","CreateFile","C:\","0.0000086","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.3051649 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000119","Filter: Windows, 1: Windows","2512"
"10:46:35.3051879 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:35.3052822 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.3053040 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:35.3053244 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000043","","2512"
"10:46:35.3055548 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.3055758 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000029","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:35.3055864 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000043","","2512"
"10:46:35.3056210 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.3056398 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:35.3056602 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:35.3057515 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.3057724 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:35.3057921 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:35.3059128 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.3059401 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000030","AllocationSize: 1,589,248, EndOfFile: 1,587,712, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.3059568 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\Windows.Globalization.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.3059691 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000022","AllocationSize: 1,589,248, EndOfFile: 1,587,712, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.3059892 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\Windows.Globalization.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.3060562 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000055","","2512"
"10:46:35.3061829 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.3062119 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000026","AllocationSize: 1,589,248, EndOfFile: 1,587,712, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.3062264 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\Windows.Globalization.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.3062375 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000021","AllocationSize: 1,589,248, EndOfFile: 1,587,712, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.3062567 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\Windows.Globalization.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.3063143 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000051","","2512"
"10:46:35.3065251 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.3065486 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000029","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:35.3065596 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000039","","2512"
"10:46:35.3067307 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.3067521 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000025","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:35.3067619 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:35.3068651 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.3068916 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000030","AllocationSize: 1,589,248, EndOfFile: 1,587,712, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.3069061 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\Windows.Globalization.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.3069176 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000017","AllocationSize: 1,589,248, EndOfFile: 1,587,712, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.3069355 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\Windows.Globalization.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.3070298 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000022","AllocationSize: 1,589,248, EndOfFile: 1,587,712, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.3070422 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\Windows.Globalization.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.3070520 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000017","AllocationSize: 1,589,248, EndOfFile: 1,587,712, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.3070687 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\Windows.Globalization.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:35.3072500 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\Windows.Globalization.dll","0.0156309","Offset: 0, Length: 524,288, Priority: Normal","2512"
"10:46:35.3073319 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\Windows.Globalization.dll","0.0153447","Offset: 32,768, Length: 491,520, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2512"
"10:46:35.3100848 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\982FDF372CA79C591695F9759FD5DDBCE231E0D0","0.0330940","Offset: 493, Length: 7,699","6572"
"10:46:35.3101159 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\982FDF372CA79C591695F9759FD5DDBCE231E0D0","0.0330130","Offset: 0, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:35.3433102 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\EE197B20CAB0419D1C0BD23EE03034F880EDC296","0.0076711","Offset: 607, Length: 7,585","6572"
"10:46:35.3433520 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\EE197B20CAB0419D1C0BD23EE03034F880EDC296","0.0076019","Offset: 0, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:35.3511293 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\38ED2A82492971F77141EDA89A442BD4E0CD8F8B","0.0371580","Offset: 0, Length: 25,946","6572"
"10:46:35.3511741 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\38ED2A82492971F77141EDA89A442BD4E0CD8F8B","0.0370821","Offset: 0, Length: 24,576, I/O Flags: Non-cached, Paging I/O, Priority: Normal","6572"
"10:46:35.3869480 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\Windows.Globalization.dll","0.0099785","Offset: 1,572,864, Length: 14,848, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.3884102 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\982FDF372CA79C591695F9759FD5DDBCE231E0D0","0.0000098","Offset: 0, Length: 493","6572"
"10:46:35.3884482 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\EE197B20CAB0419D1C0BD23EE03034F880EDC296","0.0000051","Offset: 0, Length: 607","6572"
"10:46:35.3887605 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\10C3083018BCA42703DAE9AE639211B450C1D474","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:35.3888949 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\10C3083018BCA42703DAE9AE639211B450C1D474","0.0001195","Desired Access: Generic Read/Write, Disposition: OverwriteIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","6572"
"10:46:35.3891223 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000145","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:35.3891543 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000030","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,790, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:35.3891680 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000051","","6572"
"10:46:35.3892145 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\10C3083018BCA42703DAE9AE639211B450C1D474","0.0000563","Offset: 0, Length: 471, Priority: Normal","6572"
"10:46:35.3893689 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000137","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:35.3893937 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000025","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,790, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:35.3894052 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000038","","6572"
"10:46:35.3897819 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\D652B687A3BF02666D458DDC134B6DEEED3143DD","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:35.3899526 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\D652B687A3BF02666D458DDC134B6DEEED3143DD","0.0001314","Desired Access: Generic Read/Write, Disposition: OverwriteIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","6572"
"10:46:35.3901945 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000141","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:35.3902227 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000025","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,790, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:35.3902355 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000038","","6572"
"10:46:35.3902662 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\D652B687A3BF02666D458DDC134B6DEEED3143DD","0.0000512","Offset: 0, Length: 471, Priority: Normal","6572"
"10:46:35.3904147 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000132","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:35.3904390 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000026","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,790, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:35.3904501 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000038","","6572"
"10:46:35.3907321 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\964BC5D43CA85EB2633DCAE15B06E48A51101A99","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:35.3908512 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\964BC5D43CA85EB2633DCAE15B06E48A51101A99","0.0000934","Desired Access: Generic Read/Write, Disposition: OverwriteIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","6572"
"10:46:35.3910427 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000128","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:35.3910679 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000026","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,790, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:35.3910799 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000038","","6572"
"10:46:35.3911157 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\964BC5D43CA85EB2633DCAE15B06E48A51101A99","0.0000457","Offset: 0, Length: 471, Priority: Normal","6572"
"10:46:35.3912569 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000124","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:35.3912804 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000026","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,790, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:35.3912911 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000038","","6572"
"10:46:35.3915599 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\D80F7ACF1CAE1B8737D69E180D9DDE43EF7A6199","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:35.3916742 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\D80F7ACF1CAE1B8737D69E180D9DDE43EF7A6199","0.0001489","Desired Access: Generic Read/Write, Disposition: OverwriteIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","6572"
"10:46:35.3919225 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000133","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:35.3919486 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000021","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,790, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:35.3919605 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000038","","6572"
"10:46:35.3919904 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\D80F7ACF1CAE1B8737D69E180D9DDE43EF7A6199","0.0000478","Offset: 0, Length: 471, Priority: Normal","6572"
"10:46:35.3921333 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000145","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:35.3921585 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000021","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,790, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:35.3921687 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000039","","6572"
"10:46:35.3924222 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\92BD7EF3A9C01DFDC846865600F258B5F069FAA3","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:35.3925391 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\92BD7EF3A9C01DFDC846865600F258B5F069FAA3","0.0178786","Desired Access: Generic Read/Write, Disposition: OverwriteIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","6572"
"10:46:35.3973694 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000183","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.3974073 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000150","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:35.3975366 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000188","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:35.3976531 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000124","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.3976813 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000029","Information: DACL","2512"
"10:46:35.3976958 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000042","","2512"
"10:46:35.3978071 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000133","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:35.3979040 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.3979274 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000022","Information: DACL","2512"
"10:46:35.3979394 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:35.3981920 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000153","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:35.3983157 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:35.3984211 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000128","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.3984484 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000021","Information: DACL","2512"
"10:46:35.3984604 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000042","","2512"
"10:46:35.3985653 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:35.3986605 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000102","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.3986826 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000018","Information: DACL","2512"
"10:46:35.3986937 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000039","","2512"
"10:46:35.4079866 AM","firefox.exe","7384","ReadFile","C:","0.0012108","Offset: 745,472, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.4094342 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1357_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0282198","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.4105713 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000192","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:35.4106093 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000038","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,790, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:35.4106242 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000047","","6572"
"10:46:35.4106626 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\92BD7EF3A9C01DFDC846865600F258B5F069FAA3","0.0000725","Offset: 0, Length: 471, Priority: Normal","6572"
"10:46:35.4108866 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000149","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:35.4109152 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000030","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,790, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:35.4109271 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000043","","6572"
"10:46:35.4110167 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\254256B27E0C48CF9B80B695F0B3B8CA84610495","0.0000427","Offset: 330, Length: 9,784, Priority: Normal","6572"
"10:46:35.4110803 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\254256B27E0C48CF9B80B695F0B3B8CA84610495","0.0000666","EndOfFile: 10,114","6572"
"10:46:35.4111575 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\254256B27E0C48CF9B80B695F0B3B8CA84610495","0.0000291","AllocationSize: 10,114","6572"
"10:46:35.4112194 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\E283E5539B1A9A07019BC1E8CD9F2EC704A01362","0.0000239","Offset: 8,246, Length: 9,352, Priority: Normal","6572"
"10:46:35.4112552 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\E283E5539B1A9A07019BC1E8CD9F2EC704A01362","0.0000278","EndOfFile: 17,598","6572"
"10:46:35.4113000 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\E283E5539B1A9A07019BC1E8CD9F2EC704A01362","0.0000192","AllocationSize: 17,598","6572"
"10:46:35.4113747 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7F347B9AF978EDEA2F853A5A2889171EF0D32C03","0.0000201","Offset: 42,800, Length: 9,050, Priority: Normal","6572"
"10:46:35.4114118 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7F347B9AF978EDEA2F853A5A2889171EF0D32C03","0.0000235","EndOfFile: 51,850","6572"
"10:46:35.4114434 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7F347B9AF978EDEA2F853A5A2889171EF0D32C03","0.0000158","AllocationSize: 51,850","6572"
"10:46:35.4114882 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\69852764590870F506F66E4FAFC263C8630728D2","0.0000188","Offset: 9,021, Length: 9,078, Priority: Normal","6572"
"10:46:35.4115172 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\69852764590870F506F66E4FAFC263C8630728D2","0.0000218","EndOfFile: 18,099","6572"
"10:46:35.4115471 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\69852764590870F506F66E4FAFC263C8630728D2","0.0000149","AllocationSize: 18,099","6572"
"10:46:35.4115863 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B9C8559E103415356D42B7D83A7F183CA163363B","0.0000184","Offset: 14,693, Length: 9,107, Priority: Normal","6572"
"10:46:35.4116145 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B9C8559E103415356D42B7D83A7F183CA163363B","0.0000226","EndOfFile: 23,800","6572"
"10:46:35.4116452 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B9C8559E103415356D42B7D83A7F183CA163363B","0.0000269","AllocationSize: 23,800","6572"
"10:46:35.4117131 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\09F8AAAB9AA62DCD65EEBD9FAE58BC470027FE74","0.0000200","Offset: 22,875, Length: 9,084, Priority: Normal","6572"
"10:46:35.4117438 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\09F8AAAB9AA62DCD65EEBD9FAE58BC470027FE74","0.0000209","EndOfFile: 31,959","6572"
"10:46:35.4117728 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\09F8AAAB9AA62DCD65EEBD9FAE58BC470027FE74","0.0000158","AllocationSize: 31,959","6572"
"10:46:35.4118227 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\F7C4AA2955320E031409ABB58451107FA9D23AF3","0.0000167","Offset: 22,391, Length: 9,110, Priority: Normal","6572"
"10:46:35.4118487 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\F7C4AA2955320E031409ABB58451107FA9D23AF3","0.0000214","EndOfFile: 31,501","6572"
"10:46:35.4118782 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\F7C4AA2955320E031409ABB58451107FA9D23AF3","0.0000145","AllocationSize: 31,501","6572"
"10:46:35.4119144 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\302CC90EFF72B66AB97EBA35CF577497A1BBD95A","0.0000171","Offset: 13,946, Length: 9,075, Priority: Normal","6572"
"10:46:35.4119413 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\302CC90EFF72B66AB97EBA35CF577497A1BBD95A","0.0000209","EndOfFile: 23,021","6572"
"10:46:35.4119703 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\302CC90EFF72B66AB97EBA35CF577497A1BBD95A","0.0000150","AllocationSize: 23,021","6572"
"10:46:35.4120087 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7E4E68E40F5A59B95E0A61BB431BA54BA580C4B9","0.0000171","Offset: 25,352, Length: 9,047, Priority: Normal","6572"
"10:46:35.4120356 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7E4E68E40F5A59B95E0A61BB431BA54BA580C4B9","0.0000205","EndOfFile: 34,399","6572"
"10:46:35.4120642 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7E4E68E40F5A59B95E0A61BB431BA54BA580C4B9","0.0000154","AllocationSize: 34,399","6572"
"10:46:35.4121043 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\97CFA549897ECA75A30A13A2EA3204AB0C02DCA2","0.0000179","Offset: 19,179, Length: 9,088, Priority: Normal","6572"
"10:46:35.4121320 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\97CFA549897ECA75A30A13A2EA3204AB0C02DCA2","0.0000218","EndOfFile: 28,267","6572"
"10:46:35.4121679 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\97CFA549897ECA75A30A13A2EA3204AB0C02DCA2","0.0000153","AllocationSize: 28,267","6572"
"10:46:35.4122101 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\38ED2A82492971F77141EDA89A442BD4E0CD8F8B","0.0000175","Offset: 25,946, Length: 9,266, Priority: Normal","6572"
"10:46:35.4122379 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\38ED2A82492971F77141EDA89A442BD4E0CD8F8B","0.0000217","EndOfFile: 35,212","6572"
"10:46:35.4122677 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\38ED2A82492971F77141EDA89A442BD4E0CD8F8B","0.0000162","AllocationSize: 35,212","6572"
"10:46:35.4123087 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\982FDF372CA79C591695F9759FD5DDBCE231E0D0","0.0000171","Offset: 493, Length: 9,155, Priority: Normal","6572"
"10:46:35.4123356 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\982FDF372CA79C591695F9759FD5DDBCE231E0D0","0.0000217","EndOfFile: 9,648","6572"
"10:46:35.4123654 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\982FDF372CA79C591695F9759FD5DDBCE231E0D0","0.0000154","AllocationSize: 9,648","6572"
"10:46:35.4124030 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\EE197B20CAB0419D1C0BD23EE03034F880EDC296","0.0000166","Offset: 607, Length: 9,090, Priority: Normal","6572"
"10:46:35.4124290 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\EE197B20CAB0419D1C0BD23EE03034F880EDC296","0.0000209","EndOfFile: 9,697","6572"
"10:46:35.4124576 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\EE197B20CAB0419D1C0BD23EE03034F880EDC296","0.0000154","AllocationSize: 9,697","6572"
"10:46:35.4126291 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000226","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:35.4126645 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000030","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,790, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:35.4126765 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000042","","6572"
"10:46:35.4127153 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\10C3083018BCA42703DAE9AE639211B450C1D474","0.0005726","Offset: 471, Length: 805, Priority: Normal","6572"
"10:46:35.4133028 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\10C3083018BCA42703DAE9AE639211B450C1D474","0.0000290","EndOfFile: 1,276","6572"
"10:46:35.4133404 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\10C3083018BCA42703DAE9AE639211B450C1D474","0.0000170","AllocationSize: 1,276","6572"
"10:46:35.4134714 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000145","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:35.4134978 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000021","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,789, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:35.4135089 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000038","","6572"
"10:46:35.4136173 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000124","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:35.4136395 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000017","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,789, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:35.4136493 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000034","","6572"
"10:46:35.4136898 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\D652B687A3BF02666D458DDC134B6DEEED3143DD","0.0004408","Offset: 471, Length: 805, Priority: Normal","6572"
"10:46:35.4141455 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\D652B687A3BF02666D458DDC134B6DEEED3143DD","0.0000303","EndOfFile: 1,276","6572"
"10:46:35.4141886 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\D652B687A3BF02666D458DDC134B6DEEED3143DD","0.0000183","AllocationSize: 1,276","6572"
"10:46:35.4143076 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000133","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:35.4143311 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000021","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,788, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:35.4143413 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000039","","6572"
"10:46:35.4144450 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000120","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:35.4144668 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000017","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,788, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:35.4144762 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000034","","6572"
"10:46:35.4145120 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\964BC5D43CA85EB2633DCAE15B06E48A51101A99","0.0004058","Offset: 471, Length: 805, Priority: Normal","6572"
"10:46:35.4149374 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\964BC5D43CA85EB2633DCAE15B06E48A51101A99","0.0000290","EndOfFile: 1,276","6572"
"10:46:35.4149754 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\964BC5D43CA85EB2633DCAE15B06E48A51101A99","0.0000170","AllocationSize: 1,276","6572"
"10:46:35.4150987 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000149","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:35.4151243 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000025","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,787, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:35.4151354 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000038","","6572"
"10:46:35.4152403 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000120","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:35.4152621 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000017","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,787, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:35.4152715 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000034","","6572"
"10:46:35.4153082 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\D80F7ACF1CAE1B8737D69E180D9DDE43EF7A6199","0.0003827","Offset: 471, Length: 805, Priority: Normal","6572"
"10:46:35.4157054 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\D80F7ACF1CAE1B8737D69E180D9DDE43EF7A6199","0.0000299","EndOfFile: 1,276","6572"
"10:46:35.4157442 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\D80F7ACF1CAE1B8737D69E180D9DDE43EF7A6199","0.0000179","AllocationSize: 1,276","6572"
"10:46:35.4158820 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000184","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:35.4159153 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000034","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,786, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:35.4159298 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000115","","6572"
"10:46:35.4160531 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000124","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:35.4160796 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000021","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,786, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:35.4160898 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000039","","6572"
"10:46:35.4161265 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\92BD7EF3A9C01DFDC846865600F258B5F069FAA3","0.0003861","Offset: 471, Length: 805, Priority: Normal","6572"
"10:46:35.4165280 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\92BD7EF3A9C01DFDC846865600F258B5F069FAA3","0.0000303","EndOfFile: 1,276","6572"
"10:46:35.4165673 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\92BD7EF3A9C01DFDC846865600F258B5F069FAA3","0.0000174","AllocationSize: 1,276","6572"
"10:46:35.4166829 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000132","Desired Access: Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Open For Free Space Query, Attributes: n/a, ShareMode: None, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:35.4167063 AM","firefox.exe","7384","QuerySizeInformationVolume","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000022","TotalAllocationUnits: 243,898,367, AvailableAllocationUnits: 226,184,785, SectorsPerAllocationUnit: 8, BytesPerSector: 512","6572"
"10:46:35.4167166 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2","0.0000038","","6572"
"10:46:35.4167695 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\254256B27E0C48CF9B80B695F0B3B8CA84610495","0.0000264","","6572"
"10:46:35.4168198 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\E283E5539B1A9A07019BC1E8CD9F2EC704A01362","0.0000167","","6572"
"10:46:35.4168480 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7F347B9AF978EDEA2F853A5A2889171EF0D32C03","0.0000149","","6572"
"10:46:35.4168753 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\69852764590870F506F66E4FAFC263C8630728D2","0.0000141","","6572"
"10:46:35.4169001 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\B9C8559E103415356D42B7D83A7F183CA163363B","0.0000149","","6572"
"10:46:35.4169257 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\09F8AAAB9AA62DCD65EEBD9FAE58BC470027FE74","0.0000136","","6572"
"10:46:35.4169491 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\F7C4AA2955320E031409ABB58451107FA9D23AF3","0.0000137","","6572"
"10:46:35.4169730 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\302CC90EFF72B66AB97EBA35CF577497A1BBD95A","0.0000141","","6572"
"10:46:35.4169973 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7E4E68E40F5A59B95E0A61BB431BA54BA580C4B9","0.0000141","","6572"
"10:46:35.4170208 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\97CFA549897ECA75A30A13A2EA3204AB0C02DCA2","0.0000230","","6572"
"10:46:35.4170605 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\38ED2A82492971F77141EDA89A442BD4E0CD8F8B","0.0000239","","6572"
"10:46:35.4170963 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\982FDF372CA79C591695F9759FD5DDBCE231E0D0","0.0000632","","6572"
"10:46:35.4171714 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\EE197B20CAB0419D1C0BD23EE03034F880EDC296","0.0000145","","6572"
"10:46:35.4171957 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\10C3083018BCA42703DAE9AE639211B450C1D474","0.0000448","","6572"
"10:46:35.4172508 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\D652B687A3BF02666D458DDC134B6DEEED3143DD","0.0000384","","6572"
"10:46:35.4172998 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\964BC5D43CA85EB2633DCAE15B06E48A51101A99","0.0000355","","6572"
"10:46:35.4173455 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\D80F7ACF1CAE1B8737D69E180D9DDE43EF7A6199","0.0000346","","6572"
"10:46:35.4173907 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\92BD7EF3A9C01DFDC846865600F258B5F069FAA3","0.0000427","","6572"
"10:46:35.4338972 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000119","Name: \Windows\System32\sechost.dll","2956"
"10:46:35.4345052 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000073","Name: \Windows\System32\sechost.dll","2956"
"10:46:35.4352075 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000077","Name: \Windows\System32\sechost.dll","2956"
"10:46:35.4356883 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000069","Name: \Windows\System32\sechost.dll","2956"
"10:46:35.4364179 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.4364517 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 41041, endtime: 41041, seqnum: 0, connid: 0","0"
"10:46:35.4365280 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.4365468 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 41041, endtime: 41041, seqnum: 0, connid: 0","0"
"10:46:35.4366044 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.4366193 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 41041, endtime: 41041, seqnum: 0, connid: 0","0"
"10:46:35.4366492 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.4366599 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 41041, endtime: 41041, seqnum: 0, connid: 0","0"
"10:46:35.4367776 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.4367904 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 41041, endtime: 41041, seqnum: 0, connid: 0","0"
"10:46:35.4369692 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000137","Name: \Windows\System32\sechost.dll","2956"
"10:46:35.4376881 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1357_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000069","CreationTime: 3/20/2019 7:27:25 PM, LastAccessTime: 3/20/2019 7:42:46 PM, LastWriteTime: 1/10/2019 4:08:45 AM, ChangeTime: 3/20/2019 7:42:30 PM, AllocationSize: 53248, EndOfFile: 53235, FileAttributes: A","2512"
"10:46:35.4377154 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1357_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000133","","2512"
"10:46:35.4378946 AM","firefox.exe","7384","ReadFile","C:","0.0024470","Offset: 761,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.4380986 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.4381242 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 41042, endtime: 41042, seqnum: 0, connid: 0","0"
"10:46:35.4381852 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.4381946 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000089","Name: \Windows\System32\sechost.dll","2956"
"10:46:35.4382023 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 41042, endtime: 41042, seqnum: 0, connid: 0","0"
"10:46:35.4392293 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000111","Name: \Windows\System32\sechost.dll","2956"
"10:46:35.4397195 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.4397430 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 41042, endtime: 41042, seqnum: 0, connid: 0","0"
"10:46:35.4397972 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.4398112 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 41042, endtime: 41042, seqnum: 0, connid: 0","0"
"10:46:35.4407013 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0236633","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.4612090 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 56, startime: 41042, endtime: 41044, seqnum: 0, connid: 0","0"
"10:46:35.4612342 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 93, startime: 41042, endtime: 41044, seqnum: 0, connid: 0","0"
"10:46:35.4612478 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 56, startime: 41042, endtime: 41044, seqnum: 0, connid: 0","0"
"10:46:35.4612568 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 93, startime: 41042, endtime: 41044, seqnum: 0, connid: 0","0"
"10:46:35.4644146 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000059","CreationTime: 4/25/2019 5:40:12 PM, LastAccessTime: 4/25/2019 5:40:12 PM, LastWriteTime: 4/3/2019 9:55:05 AM, ChangeTime: 4/25/2019 8:12:14 PM, AllocationSize: 53248, EndOfFile: 53217, FileAttributes: A","2512"
"10:46:35.4644368 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000102","","2512"
"10:46:35.4644961 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000059","","2512"
"10:46:35.4645148 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000047","","2512"
"10:46:35.4647768 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.4648037 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","CreationTime: 4/25/2019 5:40:12 PM, LastAccessTime: 4/25/2019 5:40:12 PM, LastWriteTime: 4/3/2019 9:55:05 AM, ChangeTime: 4/25/2019 8:12:14 PM, AllocationSize: 53248, EndOfFile: 53217, FileAttributes: A","2512"
"10:46:35.4648161 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000042","","2512"
"10:46:35.4649364 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000179","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.4649718 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","AllocationSize: 53,248, EndOfFile: 53,217, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.4649897 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.4650025 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000022","AllocationSize: 53,248, EndOfFile: 53,217, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.4650239 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.4650836 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0345579","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.4764449 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 341, seqnum: 0, connid: 0","0"
"10:46:35.4764743 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:35.4785667 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 195, seqnum: 0, connid: 0","0"
"10:46:35.4785949 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49756 -> 104.16.249.249:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:35.4787928 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.4788159 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 41046, endtime: 41046, seqnum: 0, connid: 0","0"
"10:46:35.4788756 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.4788910 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 41046, endtime: 41046, seqnum: 0, connid: 0","0"
"10:46:35.4789187 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.4789272 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 41046, endtime: 41046, seqnum: 0, connid: 0","0"
"10:46:35.4789814 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.4789929 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 41046, endtime: 41046, seqnum: 0, connid: 0","0"
"10:46:35.4996927 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0005086","Offset: 32,768, Length: 20,449, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.5003323 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000064","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:35.5003626 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000111","CreationTime: 4/25/2019 5:40:12 PM, LastAccessTime: 4/25/2019 5:40:12 PM, LastWriteTime: 4/3/2019 9:55:05 AM, ChangeTime: 4/25/2019 8:12:14 PM, FileAttributes: A, AllocationSize: 53,248, EndOfFile: 53,217, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0xc000000017e57, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:35.5006036 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000214","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5006493 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000038","AllocationSize: 53,248, EndOfFile: 53,217, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.5006698 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.5006847 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","AllocationSize: 53,248, EndOfFile: 53,217, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.5007047 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000018","SyncType: SyncTypeOther","2512"
"10:46:35.5007841 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000077","","2512"
"10:46:35.5010085 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000158","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5010422 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000035","AllocationSize: 53,248, EndOfFile: 53,217, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.5010585 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.5010704 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","AllocationSize: 53,248, EndOfFile: 53,217, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.5010887 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:35.5011254 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000056","","2512"
"10:46:35.5012850 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5013153 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","AllocationSize: 53,248, EndOfFile: 53,217, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.5013298 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.5013409 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","AllocationSize: 53,248, EndOfFile: 53,217, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.5013588 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:35.5014548 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000064","","2512"
"10:46:35.5021618 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000064","","2512"
"10:46:35.5021972 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1384_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000039","","2512"
"10:46:35.5024648 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000157","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5024912 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000034","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:35.5025032 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000042","","2512"
"10:46:35.5027340 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5027557 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000030","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:35.5027668 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000043","","2512"
"10:46:35.5029768 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5029972 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000026","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:35.5030070 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000039","","2512"
"10:46:35.5030429 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5030655 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000128","Filter: Windows, 1: Windows","2512"
"10:46:35.5030898 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:35.5031837 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5032072 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000106","Filter: System32, 1: System32","2512"
"10:46:35.5032289 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:35.5034239 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5034444 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000025","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:35.5034542 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000043","","2512"
"10:46:35.5034875 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5035058 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:35.5035254 AM","firefox.exe","7384","CloseFile","C:\","0.0000035","","2512"
"10:46:35.5036142 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5036342 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000099","Filter: System32, 1: System32","2512"
"10:46:35.5036543 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:35.5038638 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5038966 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000030","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","2512"
"10:46:35.5039073 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000043","","2512"
"10:46:35.5039410 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5039598 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:35.5039798 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:35.5040686 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5040895 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:35.5041091 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:35.5042009 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5042213 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\propsys.dll","0.0000111","Filter: propsys.dll, 1: propsys.dll","2512"
"10:46:35.5042427 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:35.5044214 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5044500 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000026","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","2512"
"10:46:35.5044603 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000042","","2512"
"10:46:35.5044927 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5045110 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000090","Filter: Windows, 1: Windows","2512"
"10:46:35.5045298 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:35.5046186 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5046386 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:35.5046587 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:35.5047508 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5047709 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\propsys.dll","0.0000107","Filter: propsys.dll, 1: propsys.dll","2512"
"10:46:35.5047918 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:35.5049049 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5049407 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\propsys.dll","0.0000030","AllocationSize: 1,794,048, EndOfFile: 1,792,712, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5049569 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\propsys.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.5049697 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\propsys.dll","0.0000021","AllocationSize: 1,794,048, EndOfFile: 1,792,712, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5049919 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\propsys.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:35.5050687 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000055","","2512"
"10:46:35.5051916 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5052283 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\propsys.dll","0.0000030","AllocationSize: 1,794,048, EndOfFile: 1,792,712, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5052436 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\propsys.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.5052552 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\propsys.dll","0.0000017","AllocationSize: 1,794,048, EndOfFile: 1,792,712, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5052735 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\propsys.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:35.5053238 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\propsys.dll","0.0077526","Offset: 1,761,280, Length: 31,432, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.5131609 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\propsys.dll","0.0000059","AllocationSize: 1,794,048, EndOfFile: 1,792,712, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5131869 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000111","","2512"
"10:46:35.5133866 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000222","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5134595 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\propsys.dll","0.0000030","AllocationSize: 1,794,048, EndOfFile: 1,792,712, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5134775 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\propsys.dll","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.5134911 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\propsys.dll","0.0000017","AllocationSize: 1,794,048, EndOfFile: 1,792,712, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5135107 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\propsys.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.5142118 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000072","","2512"
"10:46:35.5147993 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5148385 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000056","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","2512"
"10:46:35.5148611 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000069","","2512"
"10:46:35.5150971 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5151278 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000030","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","2512"
"10:46:35.5151398 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000042","","2512"
"10:46:35.5153710 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5154013 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000030","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","2512"
"10:46:35.5154124 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000038","","2512"
"10:46:35.5154563 AM","firefox.exe","7384","CreateFile","C:\","0.0000209","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5155225 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000170","Filter: Windows, 1: Windows","2512"
"10:46:35.5155540 AM","firefox.exe","7384","CloseFile","C:\","0.0000052","","2512"
"10:46:35.5156991 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000120","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5157243 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000124","Filter: System32, 1: System32","2512"
"10:46:35.5157486 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000043","","2512"
"10:46:35.5158574 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5158817 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\propsys.dll","0.0000192","Filter: propsys.dll, 1: propsys.dll","2512"
"10:46:35.5159120 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:35.5161283 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5161629 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000034","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","2512"
"10:46:35.5161744 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000043","","2512"
"10:46:35.5162094 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5162282 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000102","Filter: Windows, 1: Windows","2512"
"10:46:35.5162491 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:35.5163395 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5163600 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000103","Filter: System32, 1: System32","2512"
"10:46:35.5163805 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:35.5164735 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5164936 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\MMDevAPI.dll","0.0000111","Filter: MMDevAPI.dll, 1: MMDevAPI.dll","2512"
"10:46:35.5165145 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:35.5166941 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5167257 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000025","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","2512"
"10:46:35.5167363 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000043","","2512"
"10:46:35.5167696 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5167880 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000089","Filter: Windows, 1: Windows","2512"
"10:46:35.5168114 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:35.5169036 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5169237 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000093","Filter: System32, 1: System32","2512"
"10:46:35.5169433 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:35.5170337 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5170538 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\MMDevAPI.dll","0.0000107","Filter: MMDevAPI.dll, 1: MMDevAPI.dll","2512"
"10:46:35.5170743 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:35.5171865 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5172232 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000034","AllocationSize: 471,040, EndOfFile: 469,576, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5172411 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\MMDevAPI.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.5172539 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000021","AllocationSize: 471,040, EndOfFile: 469,576, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5172739 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\MMDevAPI.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:35.5173367 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000059","","2512"
"10:46:35.5174621 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5174988 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000030","AllocationSize: 471,040, EndOfFile: 469,576, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5175137 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\MMDevAPI.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.5175257 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000021","AllocationSize: 471,040, EndOfFile: 469,576, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5175449 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\MMDevAPI.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:35.5175884 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\MMDevAPI.dll","0.0129169","Offset: 438,272, Length: 31,304, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.5180906 AM","firefox.exe","7384","TCP Connect","LAPTOP-49TAGD3F.lan1:49778 -> ec2-34-212-158-50.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 0, mss: 1460, sackopt: 1, tsopt: 0, wsopt: 1, rcvwin: 65700, rcvwinscale: 8, sndwinscale: 8, seqnum: 0, connid: 0","0"
"10:46:35.5194107 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.5194346 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 41050, endtime: 41050, seqnum: 0, connid: 0","0"
"10:46:35.5194721 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.5194815 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 41050, endtime: 41050, seqnum: 0, connid: 0","0"
"10:46:35.5306551 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000106","AllocationSize: 471,040, EndOfFile: 469,576, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5306948 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000166","","2512"
"10:46:35.5309904 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000244","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5310600 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000043","AllocationSize: 471,040, EndOfFile: 469,576, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5310864 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\MMDevAPI.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.5311078 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000030","AllocationSize: 471,040, EndOfFile: 469,576, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5311411 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\MMDevAPI.dll","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:35.5318425 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000085","","2512"
"10:46:35.5324765 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5325252 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000047","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","2512"
"10:46:35.5325452 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000068","","2512"
"10:46:35.5328490 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5328934 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000038","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","2512"
"10:46:35.5329113 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000060","","2512"
"10:46:35.5332219 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5332659 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000038","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","2512"
"10:46:35.5332834 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000064","","2512"
"10:46:35.5333401 AM","firefox.exe","7384","CreateFile","C:\","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5333832 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000252","Filter: Windows, 1: Windows","2512"
"10:46:35.5334259 AM","firefox.exe","7384","CloseFile","C:\","0.0000064","","2512"
"10:46:35.5335692 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5336025 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000171","Filter: System32, 1: System32","2512"
"10:46:35.5336366 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000060","","2512"
"10:46:35.5337821 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000150","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5338141 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\MMDevAPI.dll","0.0000162","Filter: MMDevAPI.dll, 1: MMDevAPI.dll","2512"
"10:46:35.5338470 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000051","","2512"
"10:46:35.5341230 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5341666 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000038","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","2512"
"10:46:35.5341836 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000068","","2512"
"10:46:35.5342348 AM","firefox.exe","7384","CreateFile","C:\","0.0000120","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5342626 AM","firefox.exe","7384","QueryDirectory","C:\WINDOWS","0.0000136","Filter: WINDOWS, 1: Windows","2512"
"10:46:35.5342916 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:35.5344264 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5344571 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000132","Filter: System32, 1: System32","2512"
"10:46:35.5344861 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000056","","2512"
"10:46:35.5346274 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000162","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5346611 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\MMDevApi.dll","0.0000162","Filter: MMDevApi.dll, 1: MMDevAPI.dll","2512"
"10:46:35.5346926 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000060","","2512"
"10:46:35.5350122 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000294","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5350707 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000042","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","2512"
"10:46:35.5350882 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000064","","2512"
"10:46:35.5351398 AM","firefox.exe","7384","CreateFile","C:\","0.0000119","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5351684 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000136","Filter: Windows, 1: Windows","2512"
"10:46:35.5351978 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:35.5353420 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5353736 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000145","Filter: System32, 1: System32","2512"
"10:46:35.5354043 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000056","","2512"
"10:46:35.5355455 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5355767 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\AudioSes.dll","0.0000166","Filter: AudioSes.dll, 1: AudioSes.dll","2512"
"10:46:35.5356095 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000056","","2512"
"10:46:35.5358736 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5359176 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000043","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","2512"
"10:46:35.5359347 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000059","","2512"
"10:46:35.5359846 AM","firefox.exe","7384","CreateFile","C:\","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5360119 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000132","Filter: Windows, 1: Windows","2512"
"10:46:35.5360456 AM","firefox.exe","7384","CloseFile","C:\","0.0000055","","2512"
"10:46:35.5361800 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5362107 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000132","Filter: System32, 1: System32","2512"
"10:46:35.5362393 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000060","","2512"
"10:46:35.5363771 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5364083 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\AudioSes.dll","0.0000230","Filter: AudioSes.dll, 1: AudioSes.dll","2512"
"10:46:35.5364475 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000060","","2512"
"10:46:35.5366118 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000179","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5366651 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\AudioSes.dll","0.0000056","AllocationSize: 1,212,416, EndOfFile: 1,209,696, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5366992 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\AudioSes.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.5367184 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\AudioSes.dll","0.0000030","AllocationSize: 1,212,416, EndOfFile: 1,209,696, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5367543 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\AudioSes.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:35.5368456 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000077","","2512"
"10:46:35.5370389 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000179","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5370922 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\AudioSes.dll","0.0000043","AllocationSize: 1,212,416, EndOfFile: 1,209,696, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5371144 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\AudioSes.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.5371323 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\AudioSes.dll","0.0000030","AllocationSize: 1,212,416, EndOfFile: 1,209,696, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5371639 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\AudioSes.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:35.5372356 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\AudioSes.dll","0.0036074","Offset: 1,179,648, Length: 30,048, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.5409169 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\AudioSes.dll","0.0000055","AllocationSize: 1,212,416, EndOfFile: 1,209,696, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5409407 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000103","","2512"
"10:46:35.5411255 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000171","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5411737 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\AudioSes.dll","0.0000034","AllocationSize: 1,212,416, EndOfFile: 1,209,696, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5411921 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\AudioSes.dll","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.5412057 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\AudioSes.dll","0.0000021","AllocationSize: 1,212,416, EndOfFile: 1,209,696, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5412262 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\AudioSes.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.5417540 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000059","","2512"
"10:46:35.5422340 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5422694 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000038","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","2512"
"10:46:35.5422830 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000043","","2512"
"10:46:35.5425011 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5425314 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000029","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","2512"
"10:46:35.5425429 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000038","","2512"
"10:46:35.5427562 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5427848 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000026","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","2512"
"10:46:35.5427955 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000038","","2512"
"10:46:35.5428322 AM","firefox.exe","7384","CreateFile","C:\","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5428543 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000137","Filter: Windows, 1: Windows","2512"
"10:46:35.5428799 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:35.5429742 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5429960 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:35.5430178 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:35.5431458 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5431786 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\AudioSes.dll","0.0000171","Filter: AudioSes.dll, 1: AudioSes.dll","2512"
"10:46:35.5432119 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000055","","2512"
"10:46:35.5434491 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\AUDIOSES.DLL","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2512"
"10:46:35.5438711 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5439044 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000051","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:35.5439214 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000064","","2512"
"10:46:35.5439761 AM","firefox.exe","7384","CreateFile","C:\","0.0000140","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5440081 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000179","Filter: Windows, 1: Windows","2512"
"10:46:35.5440499 AM","firefox.exe","7384","CloseFile","C:\","0.0000141","","2512"
"10:46:35.5442124 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000116","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5442372 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000124","Filter: System32, 1: System32","2512"
"10:46:35.5442611 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000042","","2512"
"10:46:35.5445606 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5445841 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000034","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:35.5445952 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000046","","2512"
"10:46:35.5446318 AM","firefox.exe","7384","CreateFile","C:\","0.0000082","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5446510 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000107","Filter: Windows, 1: Windows","2512"
"10:46:35.5446728 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:35.5447667 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5447880 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:35.5448085 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:35.5449267 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5449553 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\InputHost.dll","0.0000029","AllocationSize: 495,616, EndOfFile: 491,744, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5449728 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\InputHost.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.5449851 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\InputHost.dll","0.0000022","AllocationSize: 495,616, EndOfFile: 491,744, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5450056 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\InputHost.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:35.5450658 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000051","","2512"
"10:46:35.5452117 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5452403 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\InputHost.dll","0.0000025","AllocationSize: 495,616, EndOfFile: 491,744, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5452548 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\InputHost.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.5452663 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\InputHost.dll","0.0000017","AllocationSize: 495,616, EndOfFile: 491,744, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5452846 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\InputHost.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:35.5453294 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\InputHost.dll","0.0083811","Offset: 462,848, Length: 28,896, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.5537822 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\InputHost.dll","0.0000059","AllocationSize: 495,616, EndOfFile: 491,744, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5538073 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000111","","2512"
"10:46:35.5540091 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000158","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5540458 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\InputHost.dll","0.0000034","AllocationSize: 495,616, EndOfFile: 491,744, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5540638 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\InputHost.dll","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.5540774 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\InputHost.dll","0.0000021","AllocationSize: 495,616, EndOfFile: 491,744, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5540983 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\InputHost.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.5544738 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000060","","2512"
"10:46:35.5548817 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5549056 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000034","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:35.5549179 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000043","","2512"
"10:46:35.5551142 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5551338 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:35.5551441 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000038","","2512"
"10:46:35.5551812 AM","firefox.exe","7384","CreateFile","C:\","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5552030 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000136","Filter: Windows, 1: Windows","2512"
"10:46:35.5552286 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:35.5553305 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5553536 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000115","Filter: System32, 1: System32","2512"
"10:46:35.5553758 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:35.5556010 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5556236 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000030","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:35.5556343 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000039","","2512"
"10:46:35.5556680 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5556864 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:35.5557103 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:35.5558238 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5558455 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:35.5558660 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:35.5560401 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5560601 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000030","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:35.5560704 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000042","","2512"
"10:46:35.5561028 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5561207 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:35.5561403 AM","firefox.exe","7384","CloseFile","C:\","0.0000035","","2512"
"10:46:35.5562287 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5562487 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:35.5562692 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:35.5563891 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5564164 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000047","AllocationSize: 1,130,496, EndOfFile: 1,128,616, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5564356 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\Windows.UI.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.5564501 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000030","AllocationSize: 1,130,496, EndOfFile: 1,128,616, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5564740 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\Windows.UI.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:35.5565593 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000077","","2512"
"10:46:35.5567774 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5568102 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000030","AllocationSize: 1,130,496, EndOfFile: 1,128,616, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5568264 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\Windows.UI.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.5568384 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000017","AllocationSize: 1,130,496, EndOfFile: 1,128,616, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5568584 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\Windows.UI.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:35.5569071 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\Windows.UI.dll","0.0136653","Offset: 1,097,728, Length: 30,888, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.5599313 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000085","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:35.5599616 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:35.5599799 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5244"
"10:46:35.5602705 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.5603213 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000085","Offset: 24, Length: 16","5244"
"10:46:35.5606152 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.5606647 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:35.5606997 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 1,073,741,826, Length: 510","5244"
"10:46:35.5607850 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:35.5607995 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000018","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:35.5608094 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5244"
"10:46:35.5610244 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.5610602 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 24, Length: 16","5244"
"10:46:35.5612450 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.5612744 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:35.5612936 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5244"
"10:46:35.5614434 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:35.5614545 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:35.5614639 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5244"
"10:46:35.5616678 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.5617037 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5244"
"10:46:35.5618888 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.5619183 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:35.5619366 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5244"
"10:46:35.5620173 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5244"
"10:46:35.5620275 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5244"
"10:46:35.5620365 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Offset: 1,073,741,824, Length: 1","5244"
"10:46:35.5622225 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.5622528 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5244"
"10:46:35.5624307 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5244"
"10:46:35.5624589 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5244"
"10:46:35.5624763 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5244"
"10:46:35.5631099 AM","firefox.exe","7384","Thread Exit","","0.0000000","Thread ID: 5244, User Time: 1.1718750, Kernel Time: 0.0781250","5244"
"10:46:35.5631633 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5316"
"10:46:35.5632034 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000094","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","5316"
"10:46:35.5632303 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\omni.ja","0.0000081","","5316"
"10:46:35.5632819 AM","firefox.exe","7384","CreateFile","C:\","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5316"
"10:46:35.5633071 AM","firefox.exe","7384","QueryDirectory","C:\Program Files","0.0000162","Filter: Program Files, 1: Program Files","5316"
"10:46:35.5633374 AM","firefox.exe","7384","CloseFile","C:\","0.0000042","","5316"
"10:46:35.5634423 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","5316"
"10:46:35.5634658 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly","0.0000115","Filter: Firefox Nightly, 1: Firefox Nightly","5316"
"10:46:35.5634884 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000043","","5316"
"10:46:35.5645482 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:35.5645640 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:35.5645764 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5316"
"10:46:35.5648175 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5648563 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","5316"
"10:46:35.5650445 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5650794 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:35.5651012 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5316"
"10:46:35.5651477 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:35.5651580 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:35.5651669 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5316"
"10:46:35.5652173 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49778 -> ec2-34-212-158-50.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 517, startime: 41050, endtime: 41054, seqnum: 0, connid: 0","0"
"10:46:35.5652454 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49778 -> ec2-34-212-158-50.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 2920, seqnum: 0, connid: 0","0"
"10:46:35.5652612 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49778 -> ec2-34-212-158-50.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 498, seqnum: 0, connid: 0","0"
"10:46:35.5653559 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5653875 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5316"
"10:46:35.5655654 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5655940 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:35.5656132 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5316"
"10:46:35.5657322 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:35.5657510 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:35.5657647 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","2884"
"10:46:35.5660057 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000163","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:35.5660433 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","2884"
"10:46:35.5662489 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:35.5662822 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:35.5663070 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","2884"
"10:46:35.5663727 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:35.5663893 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:35.5664021 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","2884"
"10:46:35.5666039 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:35.5666372 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","2884"
"10:46:35.5668211 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:35.5668510 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:35.5668710 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","2884"
"10:46:35.5669785 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:35.5669956 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:35.5670076 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5316"
"10:46:35.5672409 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5672759 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5316"
"10:46:35.5674718 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5675029 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:35.5675264 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5316"
"10:46:35.5676348 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:35.5676531 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:35.5676668 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,824, Length: 1","2884"
"10:46:35.5679036 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000157","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:35.5679398 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","2884"
"10:46:35.5681514 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:35.5681856 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:35.5682069 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","2884"
"10:46:35.5683140 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:35.5683311 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:35.5683439 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","5316"
"10:46:35.5685896 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5686255 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5316"
"10:46:35.5688260 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5688576 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:35.5688785 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","5316"
"10:46:35.5689561 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:35.5689749 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:35.5689886 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","2884"
"10:46:35.5692220 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:35.5692587 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","2884"
"10:46:35.5694566 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:35.5694895 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:35.5695095 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","2884"
"10:46:35.5696264 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:35.5696491 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:35.5696742 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,824, Length: 1","5316"
"10:46:35.5699221 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5699601 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5316"
"10:46:35.5701525 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5701837 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:35.5702033 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5316"
"10:46:35.5702588 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:35.5702711 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:35.5702818 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5316"
"10:46:35.5704734 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5705041 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5316"
"10:46:35.5706620 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000055","AllocationSize: 1,130,496, EndOfFile: 1,128,616, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5706893 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000089","","2512"
"10:46:35.5707716 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5708147 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:35.5708497 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","5316"
"10:46:35.5708936 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000214","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5709355 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","6432"
"10:46:35.5709401 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000043","AllocationSize: 1,130,496, EndOfFile: 1,128,616, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5709568 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","6432"
"10:46:35.5709662 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\Windows.UI.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.5709743 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","6432"
"10:46:35.5709837 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000030","AllocationSize: 1,130,496, EndOfFile: 1,128,616, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5710097 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\Windows.UI.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:35.5712704 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6432"
"10:46:35.5713173 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 24, Length: 16","6432"
"10:46:35.5715567 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000068","","2512"
"10:46:35.5716006 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6432"
"10:46:35.5716454 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","6432"
"10:46:35.5716860 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000059","Offset: 1,073,741,826, Length: 510","6432"
"10:46:35.5717777 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:35.5717973 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:35.5718131 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5316"
"10:46:35.5720823 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5721182 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","5316"
"10:46:35.5723085 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5723409 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:35.5723627 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","5316"
"10:46:35.5724540 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","6432"
"10:46:35.5724727 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","6432"
"10:46:35.5724868 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","6432"
"10:46:35.5727129 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6432"
"10:46:35.5727488 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","6432"
"10:46:35.5727526 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5727829 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000034","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:35.5727996 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000055","","2512"
"10:46:35.5729574 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6432"
"10:46:35.5729907 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","6432"
"10:46:35.5730116 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","6432"
"10:46:35.5730210 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5730526 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000042","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:35.5730705 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000064","","2512"
"10:46:35.5730978 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000094","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:35.5731191 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:35.5731302 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5316"
"10:46:35.5733564 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000157","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5733922 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5316"
"10:46:35.5734455 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5734818 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000051","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:35.5735023 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000077","","2512"
"10:46:35.5735586 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.5735620 AM","firefox.exe","7384","CreateFile","C:\","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5735910 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 41055, endtime: 41055, seqnum: 0, connid: 0","0"
"10:46:35.5735983 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000200","Filter: Windows, 1: Windows","2512"
"10:46:35.5736094 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5736350 AM","firefox.exe","7384","CloseFile","C:\","0.0000055","","2512"
"10:46:35.5736503 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000073","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:35.5736572 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.5736823 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 41055, endtime: 41055, seqnum: 0, connid: 0","0"
"10:46:35.5736849 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 1,073,741,826, Length: 510","5316"
"10:46:35.5737711 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000119","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5737958 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000205","Filter: System32, 1: System32","2512"
"10:46:35.5738082 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000073","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","2884"
"10:46:35.5738317 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","2884"
"10:46:35.5738364 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000076","","2512"
"10:46:35.5738449 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","2884"
"10:46:35.5740608 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:35.5740889 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5740966 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","2884"
"10:46:35.5741158 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000051","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:35.5741291 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000068","","2512"
"10:46:35.5741679 AM","firefox.exe","7384","CreateFile","C:\","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5741888 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000115","Filter: Windows, 1: Windows","2512"
"10:46:35.5742123 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:35.5742980 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2884"
"10:46:35.5743223 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5743300 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","2884"
"10:46:35.5743450 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000110","Filter: System32, 1: System32","2512"
"10:46:35.5743505 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","2884"
"10:46:35.5743671 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:35.5744286 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:35.5744478 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:35.5744627 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5316"
"10:46:35.5747170 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5747426 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000034","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","2512"
"10:46:35.5747452 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5747546 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000046","","2512"
"10:46:35.5747819 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","5316"
"10:46:35.5747930 AM","firefox.exe","7384","CreateFile","C:\","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5748134 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000124","Filter: Windows, 1: Windows","2512"
"10:46:35.5748382 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:35.5749389 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000123","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5749645 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000115","Filter: System32, 1: System32","2512"
"10:46:35.5749807 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5749871 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:35.5750110 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:35.5750323 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 1,073,741,826, Length: 510","5316"
"10:46:35.5752017 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000102","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:35.5752047 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5752363 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000051","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","2512"
"10:46:35.5752431 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:35.5752508 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000047","","2512"
"10:46:35.5752644 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,824, Length: 1","5316"
"10:46:35.5752875 AM","firefox.exe","7384","CreateFile","C:\","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5753084 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000111","Filter: Windows, 1: Windows","2512"
"10:46:35.5753327 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:35.5754419 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5754637 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000106","Filter: System32, 1: System32","2512"
"10:46:35.5754850 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:35.5755413 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5755887 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000072","Offset: 24, Length: 16","5316"
"10:46:35.5756271 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000136","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5756779 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DataExchange.dll","0.0000047","AllocationSize: 344,064, EndOfFile: 343,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5757026 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DataExchange.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.5757184 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DataExchange.dll","0.0000021","AllocationSize: 344,064, EndOfFile: 343,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5757410 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DataExchange.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.5758404 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000064","","2512"
"10:46:35.5758976 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5759462 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:35.5759774 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5759804 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","5316"
"10:46:35.5760090 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DataExchange.dll","0.0000025","AllocationSize: 344,064, EndOfFile: 343,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5760239 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DataExchange.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.5760354 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DataExchange.dll","0.0000017","AllocationSize: 344,064, EndOfFile: 343,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5760550 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DataExchange.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:35.5760597 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:35.5760764 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:35.5760943 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5316"
"10:46:35.5761041 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000055","","2512"
"10:46:35.5763251 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5763494 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000030","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:35.5763610 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000038","","2512"
"10:46:35.5764318 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5764796 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000068","Offset: 24, Length: 16","5316"
"10:46:35.5765653 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5765943 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:35.5766050 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:35.5767223 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5767514 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DataExchange.dll","0.0000029","AllocationSize: 344,064, EndOfFile: 343,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5767667 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DataExchange.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.5767740 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5767787 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DataExchange.dll","0.0000021","AllocationSize: 344,064, EndOfFile: 343,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5767974 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DataExchange.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:35.5768183 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:35.5768486 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","5316"
"10:46:35.5771311 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DataExchange.dll","0.0000136","AllocationSize: 344,064, EndOfFile: 343,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5771678 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:35.5771695 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DataExchange.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.5771895 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:35.5771925 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DataExchange.dll","0.0000030","AllocationSize: 344,064, EndOfFile: 343,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.5772070 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,824, Length: 1","5316"
"10:46:35.5772271 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DataExchange.dll","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:35.5773777 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0097540","Offset: 0, Length: 343,040, Priority: Normal","2512"
"10:46:35.5775471 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DataExchange.dll","0.0094332","Offset: 32,768, Length: 310,272, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2512"
"10:46:35.5775936 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5776589 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000059","Offset: 24, Length: 16","5316"
"10:46:35.5778705 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5779051 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:35.5779311 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","5316"
"10:46:35.5780552 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:35.5780659 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:35.5780753 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5316"
"10:46:35.5782716 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5783036 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","5316"
"10:46:35.5784883 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5785169 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:35.5785370 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5316"
"10:46:35.5786300 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:35.5786453 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:35.5786547 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Offset: 1,073,741,824, Length: 1","5316"
"10:46:35.5788501 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5788949 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Offset: 24, Length: 16","5316"
"10:46:35.5790967 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5791266 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:35.5791454 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5316"
"10:46:35.5792388 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:35.5792495 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:35.5792589 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5316"
"10:46:35.5794487 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5794786 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5316"
"10:46:35.5796621 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5796911 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:35.5797090 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5316"
"10:46:35.5797875 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:35.5797982 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:35.5798080 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Offset: 1,073,741,824, Length: 1","5316"
"10:46:35.5799936 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5800239 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5316"
"10:46:35.5802044 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5802325 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:35.5802505 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5316"
"10:46:35.5803196 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:35.5803298 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:35.5803392 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5316"
"10:46:35.5805329 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5805628 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 24, Length: 16","5316"
"10:46:35.5807484 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5807770 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:35.5807949 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5316"
"10:46:35.5808738 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:35.5808849 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:35.5808947 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Offset: 1,073,741,824, Length: 1","5316"
"10:46:35.5810837 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5811136 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5316"
"10:46:35.5812911 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5813197 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:35.5813414 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5316"
"10:46:35.5814336 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:35.5814443 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000008","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:35.5814532 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5316"
"10:46:35.5816759 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5817088 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000073","Offset: 24, Length: 16","5316"
"10:46:35.5818948 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5819230 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:35.5819413 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5316"
"10:46:35.5820147 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:35.5820250 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:35.5820339 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5316"
"10:46:35.5822174 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5822477 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5316"
"10:46:35.5824363 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5824653 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:35.5824832 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5316"
"10:46:35.5825792 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:35.5825903 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:35.5825997 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5316"
"10:46:35.5827895 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5828198 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 24, Length: 16","5316"
"10:46:35.5829965 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5830255 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:35.5830438 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5316"
"10:46:35.5831198 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:35.5831305 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:35.5831403 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5316"
"10:46:35.5833263 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5833604 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","Offset: 24, Length: 16","5316"
"10:46:35.5836506 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5837107 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:35.5837436 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","5316"
"10:46:35.5838741 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:35.5838929 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:35.5839104 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 1,073,741,824, Length: 1","5316"
"10:46:35.5842159 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5842641 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Offset: 24, Length: 16","5316"
"10:46:35.5845555 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5846025 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:35.5846310 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","5316"
"10:46:35.5847526 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000035","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:35.5847710 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:35.5847881 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","5316"
"10:46:35.5850782 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5851260 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","5316"
"10:46:35.5854016 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:35.5854447 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:35.5854724 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,826, Length: 510","5316"
"10:46:35.5875507 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0143134","Offset: 23,085,056, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:35.5899102 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000201","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5899815 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000200","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:35.5901223 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000204","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:35.5902456 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000123","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5902746 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000030","Information: DACL","2512"
"10:46:35.5902895 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000043","","2512"
"10:46:35.5904388 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000231","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:35.5906778 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000307","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5907371 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000042","Information: DACL","2512"
"10:46:35.5907605 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000167","","2512"
"10:46:35.5912610 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000312","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:35.5914722 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000218","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:35.5915985 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000201","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5916412 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000030","Information: DACL","2512"
"10:46:35.5916561 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000047","","2512"
"10:46:35.5917777 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:35.5918784 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000120","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.5919032 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:35.5919151 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:35.6019580 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0220450","Offset: 23,117,824, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:35.6108169 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49778 -> ec2-34-212-158-50.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 126, startime: 41055, endtime: 41059, seqnum: 0, connid: 0","0"
"10:46:35.6108463 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49778 -> ec2-34-212-158-50.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 51, seqnum: 0, connid: 0","0"
"10:46:35.6139670 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0414136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.6240897 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0664086","Offset: 23,150,592, Length: 65,536, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:35.6545968 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49778 -> ec2-34-212-158-50.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 635, startime: 41055, endtime: 41063, seqnum: 0, connid: 0","0"
"10:46:35.6554629 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000145","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:15:26 PM, ChangeTime: 3/20/2019 7:07:49 PM, AllocationSize: 479232, EndOfFile: 476542, FileAttributes: A","2512"
"10:46:35.6555227 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000256","","2512"
"10:46:35.6556852 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000188","","2512"
"10:46:35.6557424 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000153","","2512"
"10:46:35.6565411 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000440","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.6566179 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000162","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:15:26 PM, ChangeTime: 3/20/2019 7:07:49 PM, AllocationSize: 479232, EndOfFile: 476542, FileAttributes: A","2512"
"10:46:35.6566811 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000157","","2512"
"10:46:35.6570518 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000376","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.6571342 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000081","AllocationSize: 479,232, EndOfFile: 476,542, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.6572046 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000081","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.6572400 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000060","AllocationSize: 479,232, EndOfFile: 476,542, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.6572955 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","SyncType: SyncTypeOther","2512"
"10:46:35.6574119 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0208551","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.6784279 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0028812","Offset: 446,464, Length: 30,078, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.6816326 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0023910","Offset: 32,768, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.6842169 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0006839","Offset: 184,320, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.6850962 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0005944","Offset: 217,088, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.6859846 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0006212","Offset: 253,952, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.6868187 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0005734","Offset: 286,720, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.6876742 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0005619","Offset: 319,488, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.6884968 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0004885","Offset: 352,256, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.6892140 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0015151","Offset: 385,024, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.6907940 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0113668","Offset: 23,216,128, Length: 110,592, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:35.6909335 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0008158","Offset: 417,792, Length: 28,672, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.6920347 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000141","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:35.6920957 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000188","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:15:26 PM, ChangeTime: 3/20/2019 7:07:49 PM, FileAttributes: A, AllocationSize: 479,232, EndOfFile: 476,542, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x300000006101a, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:35.6926162 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000619","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.6927583 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000103","AllocationSize: 479,232, EndOfFile: 476,542, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.6928279 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000115","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.6928833 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000094","AllocationSize: 479,232, EndOfFile: 476,542, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.6929717 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000072","SyncType: SyncTypeOther","2512"
"10:46:35.6932306 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000239","","2512"
"10:46:35.6937426 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000525","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.6938617 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000081","AllocationSize: 479,232, EndOfFile: 476,542, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.6939069 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000068","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.6939385 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","AllocationSize: 479,232, EndOfFile: 476,542, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.6939893 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","SyncType: SyncTypeOther","2512"
"10:46:35.6940955 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000149","","2512"
"10:46:35.6950653 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000444","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.6951758 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000086","AllocationSize: 479,232, EndOfFile: 476,542, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.6952193 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000069","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.6952505 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","AllocationSize: 479,232, EndOfFile: 476,542, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.6953004 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","SyncType: SyncTypeOther","2512"
"10:46:35.6956767 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0005308","Offset: 249,856, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.6964405 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0005568","Offset: 151,552, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.6971615 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0005812","Offset: 118,784, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.6979180 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0006016","Offset: 86,016, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.6986907 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0006157","Offset: 65,536, Length: 20,480, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.6997907 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000332","","2512"
"10:46:35.7191780 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000380","","2512"
"10:46:35.7194182 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000154","","2512"
"10:46:35.7203658 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000440","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.7204482 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000102","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","2512"
"10:46:35.7204857 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000124","","2512"
"10:46:35.7210259 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.7210869 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000073","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","2512"
"10:46:35.7211176 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000107","","2512"
"10:46:35.7216932 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000311","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.7217491 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000072","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","2512"
"10:46:35.7217772 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000111","","2512"
"10:46:35.7218758 AM","firefox.exe","7384","CreateFile","C:\","0.0000239","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.7219338 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000342","Filter: Windows, 1: Windows","2512"
"10:46:35.7220017 AM","firefox.exe","7384","CloseFile","C:\","0.0000106","","2512"
"10:46:35.7222632 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000286","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.7223247 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000285","Filter: System32, 1: System32","2512"
"10:46:35.7223840 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000106","","2512"
"10:46:35.7229233 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.7229787 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000077","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","2512"
"10:46:35.7230069 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000107","","2512"
"10:46:35.7230961 AM","firefox.exe","7384","CreateFile","C:\","0.0000217","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.7231464 AM","firefox.exe","7384","QueryDirectory","C:\WINDOWS","0.0000269","Filter: WINDOWS, 1: Windows","2512"
"10:46:35.7232019 AM","firefox.exe","7384","CloseFile","C:\","0.0000102","","2512"
"10:46:35.7234609 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000324","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.7235249 AM","firefox.exe","7384","QueryDirectory","C:\Windows\system32","0.0000273","Filter: system32, 1: System32","2512"
"10:46:35.7235808 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000106","","2512"
"10:46:35.7241704 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000384","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.7242613 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000081","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","2512"
"10:46:35.7242912 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000119","","2512"
"10:46:35.7244055 AM","firefox.exe","7384","CreateFile","C:\","0.0000282","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.7244648 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000269","Filter: Windows, 1: Windows","2512"
"10:46:35.7245301 AM","firefox.exe","7384","CloseFile","C:\","0.0000111","","2512"
"10:46:35.7247844 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000256","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.7248416 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000260","Filter: System32, 1: System32","2512"
"10:46:35.7248966 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000102","","2512"
"10:46:35.7251530 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000256","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.7252098 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\twinapi.dll","0.0000311","Filter: twinapi.dll, 1: twinapi.dll","2512"
"10:46:35.7252699 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000103","","2512"
"10:46:35.7257410 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.7258233 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000081","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","2512"
"10:46:35.7258523 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000111","","2512"
"10:46:35.7259424 AM","firefox.exe","7384","CreateFile","C:\","0.0000209","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.7259919 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0001135","Filter: Windows, 1: Windows","2512"
"10:46:35.7261455 AM","firefox.exe","7384","CloseFile","C:\","0.0000166","","2512"
"10:46:35.7267210 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000555","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.7268653 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000763","Filter: System32, 1: System32","2512"
"10:46:35.7270223 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000226","","2512"
"10:46:35.7274063 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000375","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.7274805 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\twinapi.dll","0.0000585","Filter: twinapi.dll, 1: twinapi.dll","2512"
"10:46:35.7275735 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000128","","2512"
"10:46:35.7279882 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000709","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.7281431 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\twinapi.dll","0.0000094","AllocationSize: 614,400, EndOfFile: 613,376, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.7281922 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\twinapi.dll","0.0000085","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.7282310 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\twinapi.dll","0.0000073","AllocationSize: 614,400, EndOfFile: 613,376, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.7283095 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\twinapi.dll","0.0000068","SyncType: SyncTypeOther","2512"
"10:46:35.7285561 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000081","","2512"
"10:46:35.7287153 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000153","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.7287601 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\twinapi.dll","0.0000034","AllocationSize: 614,400, EndOfFile: 613,376, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.7287767 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\twinapi.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.7287891 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\twinapi.dll","0.0000021","AllocationSize: 614,400, EndOfFile: 613,376, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.7288091 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\twinapi.dll","0.0000018","SyncType: SyncTypeOther","2512"
"10:46:35.7288612 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000060","","2512"
"10:46:35.7290750 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.7291001 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000030","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:35.7291117 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000038","","2512"
"10:46:35.7292909 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.7293130 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:35.7293233 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000038","","2512"
"10:46:35.7294321 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.7294713 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\twinapi.dll","0.0000030","AllocationSize: 614,400, EndOfFile: 613,376, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.7294875 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\twinapi.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.7294991 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\twinapi.dll","0.0000017","AllocationSize: 614,400, EndOfFile: 613,376, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.7295178 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\twinapi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.7296057 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\twinapi.dll","0.0000026","AllocationSize: 614,400, EndOfFile: 613,376, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.7296185 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\twinapi.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.7296292 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\twinapi.dll","0.0000013","AllocationSize: 614,400, EndOfFile: 613,376, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.7296467 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\twinapi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.7298370 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0137353","Offset: 0, Length: 524,288, Priority: Normal","2512"
"10:46:35.7299232 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\twinapi.dll","0.0133837","Offset: 32,768, Length: 491,520, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2512"
"10:46:35.7325898 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0210411","Offset: 1,372,160, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:35.7483680 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000192","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.7484085 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000167","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:35.7486159 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000230","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:35.7487439 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000128","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.7487733 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000030","Information: DACL","2512"
"10:46:35.7487883 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000047","","2512"
"10:46:35.7489052 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:35.7490084 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000120","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.7490332 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:35.7490451 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000039","","2512"
"10:46:35.7493289 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000162","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:35.7494590 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000153","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:35.7495767 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000120","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.7496023 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000022","Information: DACL","2512"
"10:46:35.7496147 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000043","","2512"
"10:46:35.7497419 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:35.7498443 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000115","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.7498682 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:35.7498797 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:35.7537781 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0220536","Offset: 1,404,928, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:35.7672723 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0501330","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.7759158 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0333432","Offset: 1,437,696, Length: 65,536, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:35.8095406 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0225634","Offset: 1,503,232, Length: 131,072, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:35.8175568 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000192","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:28:59 PM, ChangeTime: 3/20/2019 7:11:07 PM, AllocationSize: 196608, EndOfFile: 194577, FileAttributes: A","2512"
"10:46:35.8176417 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000316","","2512"
"10:46:35.8178392 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000201","","2512"
"10:46:35.8179037 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000166","","2512"
"10:46:35.8188863 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000542","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.8189814 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000103","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:28:59 PM, ChangeTime: 3/20/2019 7:11:07 PM, AllocationSize: 196608, EndOfFile: 194577, FileAttributes: A","2512"
"10:46:35.8190254 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000166","","2512"
"10:46:35.8196129 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000730","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.8197665 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000141","AllocationSize: 196,608, EndOfFile: 194,577, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.8198488 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000133","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.8199128 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000116","AllocationSize: 196,608, EndOfFile: 194,577, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.8200302 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000085","SyncType: SyncTypeOther","2512"
"10:46:35.8202316 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0265992","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.8382070 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0602540","Offset: 1,634,304, Length: 262,144, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:35.8470271 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0448611","Offset: 163,840, Length: 30,737, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.8653452 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.8654135 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41084, endtime: 41084, seqnum: 0, connid: 0","0"
"10:46:35.8656319 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.8656793 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41084, endtime: 41084, seqnum: 0, connid: 0","0"
"10:46:35.8681672 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.8682261 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41085, endtime: 41085, seqnum: 0, connid: 0","0"
"10:46:35.8684633 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.8684970 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41085, endtime: 41085, seqnum: 0, connid: 0","0"
"10:46:35.8701435 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000252","Name: \Windows\System32\sechost.dll","2956"
"10:46:35.8718677 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000222","Name: \Windows\System32\sechost.dll","2956"
"10:46:35.8732403 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.8733102 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41085, endtime: 41085, seqnum: 0, connid: 0","0"
"10:46:35.8734139 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.8734446 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41085, endtime: 41085, seqnum: 0, connid: 0","0"
"10:46:35.8735534 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.8736025 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41085, endtime: 41085, seqnum: 0, connid: 0","0"
"10:46:35.8737062 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.8737318 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41085, endtime: 41085, seqnum: 0, connid: 0","0"
"10:46:35.8737898 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0001656","Name: \Windows\System32\sechost.dll","2956"
"10:46:35.8738363 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.8738649 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41085, endtime: 41085, seqnum: 0, connid: 0","0"
"10:46:35.8741303 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.8741636 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41085, endtime: 41085, seqnum: 0, connid: 0","0"
"10:46:35.8742788 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.8743099 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41085, endtime: 41085, seqnum: 0, connid: 0","0"
"10:46:35.8744341 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.8744657 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41085, endtime: 41085, seqnum: 0, connid: 0","0"
"10:46:35.8745489 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.8745766 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41085, endtime: 41085, seqnum: 0, connid: 0","0"
"10:46:35.8757132 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000239","Name: \Windows\System32\sechost.dll","2956"
"10:46:35.8773222 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.8773909 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 41085, endtime: 41086, seqnum: 0, connid: 0","0"
"10:46:35.8775658 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.8776170 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 41086, endtime: 41086, seqnum: 0, connid: 0","0"
"10:46:35.8780505 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000179","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:35.8781226 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:35.8781730 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 1,073,741,824, Length: 1","5728"
"10:46:35.8787097 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:35.8787635 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000072","Offset: 24, Length: 16","5728"
"10:46:35.8789794 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:35.8790178 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:35.8790481 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000029","Offset: 1,073,741,826, Length: 510","5728"
"10:46:35.8792311 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:35.8792469 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:35.8792610 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5728"
"10:46:35.8794798 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:35.8795182 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5728"
"10:46:35.8797102 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:35.8797452 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:35.8797691 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,826, Length: 510","5728"
"10:46:35.8803477 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.8803857 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41086, endtime: 41086, seqnum: 0, connid: 0","0"
"10:46:35.8804608 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.8804868 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41086, endtime: 41086, seqnum: 0, connid: 0","0"
"10:46:35.8805354 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.8805521 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41086, endtime: 41086, seqnum: 0, connid: 0","0"
"10:46:35.8805858 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.8805973 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41086, endtime: 41086, seqnum: 0, connid: 0","0"
"10:46:35.8806609 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.8806784 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41086, endtime: 41086, seqnum: 0, connid: 0","0"
"10:46:35.8809493 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7E4E68E40F5A59B95E0A61BB431BA54BA580C4B9","0.0000469","Desired Access: Generic Read/Write, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:35.8810380 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7E4E68E40F5A59B95E0A61BB431BA54BA580C4B9","0.0000922","Offset: 25,352, Length: 9,047, Priority: Normal","6572"
"10:46:35.8811643 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7E4E68E40F5A59B95E0A61BB431BA54BA580C4B9","0.0000495","EndOfFile: 34,399","6572"
"10:46:35.8812313 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7E4E68E40F5A59B95E0A61BB431BA54BA580C4B9","0.0000295","AllocationSize: 34,399","6572"
"10:46:35.8812957 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\7E4E68E40F5A59B95E0A61BB431BA54BA580C4B9","0.0000487","","6572"
"10:46:35.8822886 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.8823240 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41086, endtime: 41086, seqnum: 0, connid: 0","0"
"10:46:35.8824243 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.8824486 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41086, endtime: 41086, seqnum: 0, connid: 0","0"
"10:46:35.8829533 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.8829785 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41086, endtime: 41086, seqnum: 0, connid: 0","0"
"10:46:35.8830459 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.8830673 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41086, endtime: 41086, seqnum: 0, connid: 0","0"
"10:46:35.8832367 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.8832533 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41086, endtime: 41086, seqnum: 0, connid: 0","0"
"10:46:35.8833433 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:35.8833583 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41086, endtime: 41086, seqnum: 0, connid: 0","0"
"10:46:35.8920465 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0013551","Offset: 32,768, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.8935735 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0003559","Offset: 65,536, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.8942413 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0195464","Offset: 98,304, Length: 65,536, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:35.9008128 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0318835","Offset: 1,896,448, Length: 200,704, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:35.9139767 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:35.9140041 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000085","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:28:59 PM, ChangeTime: 3/20/2019 7:11:07 PM, FileAttributes: A, AllocationSize: 196,608, EndOfFile: 194,577, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x300000006274b, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:35.9142477 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000252","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9143044 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","AllocationSize: 196,608, EndOfFile: 194,577, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9143684 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000069","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9143923 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","AllocationSize: 196,608, EndOfFile: 194,577, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9144205 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:35.9145344 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000132","","2512"
"10:46:35.9147712 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000290","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9148297 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","AllocationSize: 196,608, EndOfFile: 194,577, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9148535 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9148715 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","AllocationSize: 196,608, EndOfFile: 194,577, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9149022 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:35.9149658 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000140","","2512"
"10:46:35.9152247 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000150","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9152585 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","AllocationSize: 196,608, EndOfFile: 194,577, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9152747 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9152862 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 196,608, EndOfFile: 194,577, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9153050 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:35.9154517 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000056","","2512"
"10:46:35.9181304 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000072","","2512"
"10:46:35.9181875 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00116~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","","2512"
"10:46:35.9184845 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9185225 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000029","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","2512"
"10:46:35.9185344 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000043","","2512"
"10:46:35.9187494 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9187823 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","2512"
"10:46:35.9187942 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000039","","2512"
"10:46:35.9189969 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9190251 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","2512"
"10:46:35.9190357 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000039","","2512"
"10:46:35.9190720 AM","firefox.exe","7384","CreateFile","C:\","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9191057 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000167","Filter: Windows, 1: Windows","2512"
"10:46:35.9191339 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:35.9192265 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9192491 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000106","Filter: System32, 1: System32","2512"
"10:46:35.9192708 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:35.9193634 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9193848 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\twinapi.dll","0.0000110","Filter: twinapi.dll, 1: twinapi.dll","2512"
"10:46:35.9194065 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:35.9195972 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9196262 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","2512"
"10:46:35.9196365 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000038","","2512"
"10:46:35.9196693 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9196877 AM","firefox.exe","7384","QueryDirectory","C:\WINDOWS","0.0000098","Filter: WINDOWS, 1: Windows","2512"
"10:46:35.9197073 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:35.9197995 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9198200 AM","firefox.exe","7384","QueryDirectory","C:\Windows\system32","0.0000093","Filter: system32, 1: System32","2512"
"10:46:35.9198396 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:35.9199381 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9199586 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\twinapi.dll","0.0000107","Filter: twinapi.dll, 1: twinapi.dll","2512"
"10:46:35.9199795 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:35.9202500 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9202654 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Keyboard Layouts","0.0000072","Desired Access: Enumerate Sub Keys","2512"
"10:46:35.9202820 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000056","Desired Access: Enumerate Sub Keys","2512"
"10:46:35.9202987 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 0, Name: 00000401","2512"
"10:46:35.9203106 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9203196 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000401","0.0000068","Desired Access: Query Value","2512"
"10:46:35.9203371 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000401\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDA1.DLL","2512"
"10:46:35.9203516 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000401","0.0000030","","2512"
"10:46:35.9203635 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 1, Name: 00000402","2512"
"10:46:35.9203729 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9203819 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000402","0.0000042","Desired Access: Query Value","2512"
"10:46:35.9203942 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000402\Layout File","0.0000026","Type: REG_SZ, Length: 20, Data: KBDBU.DLL","2512"
"10:46:35.9204049 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000402","0.0000013","","2512"
"10:46:35.9204143 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 2, Name: 00000404","2512"
"10:46:35.9204245 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9204331 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000404","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9204506 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000404\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:35.9204617 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000404","0.0000008","","2512"
"10:46:35.9204710 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 3, Name: 00000405","2512"
"10:46:35.9204796 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9204881 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000405","0.0000051","Desired Access: Query Value","2512"
"10:46:35.9205043 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000405\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDCZ.DLL","2512"
"10:46:35.9205184 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000405","0.0000013","","2512"
"10:46:35.9205304 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 4, Name: 00000406","2512"
"10:46:35.9205432 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9205564 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000406","0.0000064","Desired Access: Query Value","2512"
"10:46:35.9205747 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000406\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDDA.DLL","2512"
"10:46:35.9205897 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000406","0.0000012","","2512"
"10:46:35.9206025 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 5, Name: 00000407","2512"
"10:46:35.9206157 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9206285 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000407","0.0000064","Desired Access: Query Value","2512"
"10:46:35.9206473 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000407\Layout File","0.0000025","Type: REG_SZ, Length: 20, Data: KBDGR.DLL","2512"
"10:46:35.9206613 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000407","0.0000013","","2512"
"10:46:35.9206733 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 6, Name: 00000408","2512"
"10:46:35.9206865 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9206993 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000408","0.0000064","Desired Access: Query Value","2512"
"10:46:35.9207172 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000408\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDHE.DLL","2512"
"10:46:35.9207309 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000408","0.0000043","","2512"
"10:46:35.9207454 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 7, Name: 00000409","2512"
"10:46:35.9207654 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9207795 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000409","0.0000064","Desired Access: Query Value","2512"
"10:46:35.9207979 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000409\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:35.9208085 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000409","0.0000009","","2512"
"10:46:35.9208166 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 8, Name: 0000040a","2512"
"10:46:35.9208252 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9208333 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040a","0.0000051","Desired Access: Query Value","2512"
"10:46:35.9208465 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040a\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDSP.DLL","2512"
"10:46:35.9208559 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040a","0.0000009","","2512"
"10:46:35.9208640 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 9, Name: 0000040b","2512"
"10:46:35.9208725 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9208806 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040b","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9208930 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040b\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDFI.DLL","2512"
"10:46:35.9209024 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040b","0.0000009","","2512"
"10:46:35.9209101 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 10, Name: 0000040c","2512"
"10:46:35.9209182 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9209263 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040c","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9209382 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040c\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDFR.DLL","2512"
"10:46:35.9209476 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040c","0.0000009","","2512"
"10:46:35.9209553 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 11, Name: 0000040d","2512"
"10:46:35.9209634 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9209715 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040d","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9209835 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040d\Layout File","0.0000017","Type: REG_SZ, Length: 22, Data: KBDHEB.DLL","2512"
"10:46:35.9209929 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040d","0.0000008","","2512"
"10:46:35.9210005 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 12, Name: 0000040e","2512"
"10:46:35.9210086 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9210168 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040e","0.0000051","Desired Access: Query Value","2512"
"10:46:35.9210291 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040e\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDHU.DLL","2512"
"10:46:35.9210385 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040e","0.0000013","","2512"
"10:46:35.9210470 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000018","Index: 13, Name: 0000040f","2512"
"10:46:35.9210552 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9210633 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040f","0.0000042","Desired Access: Query Value","2512"
"10:46:35.9210752 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040f\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDIC.DLL","2512"
"10:46:35.9210842 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040f","0.0000012","","2512"
"10:46:35.9210923 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 14, Name: 00000410","2512"
"10:46:35.9211004 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9211085 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000410","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9211204 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000410\Layout File","0.0000017","Type: REG_SZ, Length: 20, Data: KBDIT.DLL","2512"
"10:46:35.9211294 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000410","0.0000008","","2512"
"10:46:35.9211371 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 15, Name: 00000411","2512"
"10:46:35.9211452 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9211533 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000411","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9211652 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000411\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDJPN.DLL","2512"
"10:46:35.9211746 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000411","0.0000009","","2512"
"10:46:35.9211823 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 16, Name: 00000412","2512"
"10:46:35.9211904 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9211985 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000412","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9212105 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000412\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDKOR.DLL","2512"
"10:46:35.9212194 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000412","0.0000013","","2512"
"10:46:35.9212280 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 17, Name: 00000413","2512"
"10:46:35.9212365 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9212446 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000413","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9212570 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000413\Layout File","0.0000017","Type: REG_SZ, Length: 20, Data: KBDNE.DLL","2512"
"10:46:35.9212659 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000413","0.0000009","","2512"
"10:46:35.9212736 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 18, Name: 00000414","2512"
"10:46:35.9212821 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9212898 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000414","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9213022 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000414\Layout File","0.0000017","Type: REG_SZ, Length: 20, Data: KBDNO.DLL","2512"
"10:46:35.9213112 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000414","0.0000008","","2512"
"10:46:35.9213188 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 19, Name: 00000415","2512"
"10:46:35.9213269 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9213346 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000415","0.0000056","Desired Access: Query Value","2512"
"10:46:35.9213474 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000415\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDPL1.DLL","2512"
"10:46:35.9213568 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000415","0.0000013","","2512"
"10:46:35.9213645 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 20, Name: 00000416","2512"
"10:46:35.9213730 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9213807 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000416","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9213931 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000416\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDBR.DLL","2512"
"10:46:35.9214020 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000416","0.0000013","","2512"
"10:46:35.9214097 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 21, Name: 00000418","2512"
"10:46:35.9214182 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9214264 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000418","0.0000042","Desired Access: Query Value","2512"
"10:46:35.9214383 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000418\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDRO.DLL","2512"
"10:46:35.9214473 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000418","0.0000012","","2512"
"10:46:35.9214554 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 22, Name: 00000419","2512"
"10:46:35.9214639 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9214716 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000419","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9214835 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000419\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDRU.DLL","2512"
"10:46:35.9214925 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000419","0.0000013","","2512"
"10:46:35.9215002 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 23, Name: 0000041a","2512"
"10:46:35.9215087 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9215168 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041a","0.0000038","Desired Access: Query Value","2512"
"10:46:35.9215283 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041a\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDCR.DLL","2512"
"10:46:35.9215377 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041a","0.0000009","","2512"
"10:46:35.9215454 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 24, Name: 0000041b","2512"
"10:46:35.9215539 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9215616 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041b","0.0000077","Desired Access: Query Value","2512"
"10:46:35.9215770 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041b\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDSL.DLL","2512"
"10:46:35.9215864 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041b","0.0000008","","2512"
"10:46:35.9215936 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 25, Name: 0000041c","2512"
"10:46:35.9216021 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9216102 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041c","0.0000039","Desired Access: Query Value","2512"
"10:46:35.9216218 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041c\Layout File","0.0000017","Type: REG_SZ, Length: 20, Data: KBDAL.DLL","2512"
"10:46:35.9216303 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041c","0.0000013","","2512"
"10:46:35.9216380 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 26, Name: 0000041d","2512"
"10:46:35.9216465 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9216542 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041d","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9216666 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041d\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDSW.DLL","2512"
"10:46:35.9216755 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041d","0.0000013","","2512"
"10:46:35.9216832 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 27, Name: 0000041e","2512"
"10:46:35.9216917 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9216998 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041e","0.0000052","Desired Access: Query Value","2512"
"10:46:35.9217152 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041e\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDTH0.DLL","2512"
"10:46:35.9217284 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041e","0.0000013","","2512"
"10:46:35.9217400 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 28, Name: 0000041f","2512"
"10:46:35.9217523 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9217869 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041f","0.0000068","Desired Access: Query Value","2512"
"10:46:35.9218057 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041f\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDTUQ.DLL","2512"
"10:46:35.9218210 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041f","0.0000013","","2512"
"10:46:35.9218330 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 29, Name: 00000420","2512"
"10:46:35.9218445 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9218564 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000420","0.0000052","Desired Access: Query Value","2512"
"10:46:35.9218697 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000420\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDURDU.DLL","2512"
"10:46:35.9218790 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000420","0.0000009","","2512"
"10:46:35.9218872 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 30, Name: 00000422","2512"
"10:46:35.9218957 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9219038 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000422","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9219157 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000422\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDUR.DLL","2512"
"10:46:35.9219247 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000422","0.0000013","","2512"
"10:46:35.9219328 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 31, Name: 00000423","2512"
"10:46:35.9219422 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9219503 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000423","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9219622 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000423\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDBLR.DLL","2512"
"10:46:35.9219721 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000423","0.0000008","","2512"
"10:46:35.9219797 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 32, Name: 00000424","2512"
"10:46:35.9219883 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9219989 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000424","0.0000060","Desired Access: Query Value","2512"
"10:46:35.9220169 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000424\Layout File","0.0000025","Type: REG_SZ, Length: 20, Data: KBDCR.DLL","2512"
"10:46:35.9220305 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000424","0.0000013","","2512"
"10:46:35.9220442 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 33, Name: 00000425","2512"
"10:46:35.9220565 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9220693 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000425","0.0000056","Desired Access: Query Value","2512"
"10:46:35.9220868 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000425\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDEST.DLL","2512"
"10:46:35.9221009 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000425","0.0000013","","2512"
"10:46:35.9221124 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 34, Name: 00000426","2512"
"10:46:35.9221252 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9221380 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000426","0.0000060","Desired Access: Query Value","2512"
"10:46:35.9221560 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000426\Layout File","0.0000025","Type: REG_SZ, Length: 20, Data: KBDLV.DLL","2512"
"10:46:35.9221700 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000426","0.0000013","","2512"
"10:46:35.9221816 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 35, Name: 00000427","2512"
"10:46:35.9221939 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9222067 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000427","0.0000060","Desired Access: Query Value","2512"
"10:46:35.9222242 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000427\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDLT.DLL","2512"
"10:46:35.9222387 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000427","0.0000013","","2512"
"10:46:35.9222507 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 36, Name: 00000428","2512"
"10:46:35.9222630 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9222758 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000428","0.0000060","Desired Access: Query Value","2512"
"10:46:35.9222933 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000428\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDTAJIK.DLL","2512"
"10:46:35.9223074 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000428","0.0000013","","2512"
"10:46:35.9223194 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 37, Name: 00000429","2512"
"10:46:35.9223313 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9223407 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000429","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9223531 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000429\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDFA.DLL","2512"
"10:46:35.9223625 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000429","0.0000008","","2512"
"10:46:35.9223706 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 38, Name: 0000042a","2512"
"10:46:35.9223787 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9223868 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042a","0.0000081","Desired Access: Query Value","2512"
"10:46:35.9224030 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042a\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDVNTC.DLL","2512"
"10:46:35.9224124 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042a","0.0000008","","2512"
"10:46:35.9224201 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 39, Name: 0000042b","2512"
"10:46:35.9224282 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9224363 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042b","0.0000042","Desired Access: Query Value","2512"
"10:46:35.9224478 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042b\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: kbdarme.dll","2512"
"10:46:35.9224572 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042b","0.0000008","","2512"
"10:46:35.9224649 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 40, Name: 0000042c","2512"
"10:46:35.9224730 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9224806 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042c","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9224922 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042c\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDAZEL.DLL","2512"
"10:46:35.9225016 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042c","0.0000008","","2512"
"10:46:35.9225092 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 41, Name: 0000042e","2512"
"10:46:35.9225173 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9225250 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042e","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9225370 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042e\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDSORST.DLL","2512"
"10:46:35.9225464 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042e","0.0000008","","2512"
"10:46:35.9225553 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 42, Name: 0000042f","2512"
"10:46:35.9225638 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9225720 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042f","0.0000042","Desired Access: Query Value","2512"
"10:46:35.9225839 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042f\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDMAC.DLL","2512"
"10:46:35.9225929 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042f","0.0000012","","2512"
"10:46:35.9226010 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 43, Name: 00000432","2512"
"10:46:35.9226091 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9226172 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000432","0.0000042","Desired Access: Query Value","2512"
"10:46:35.9226287 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000432\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDNSO.DLL","2512"
"10:46:35.9226381 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000432","0.0000008","","2512"
"10:46:35.9226458 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 44, Name: 00000437","2512"
"10:46:35.9226539 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9226620 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000437","0.0000042","Desired Access: Query Value","2512"
"10:46:35.9226739 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000437\Layout File","0.0000017","Type: REG_SZ, Length: 22, Data: kbdgeo.dll","2512"
"10:46:35.9226829 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000437","0.0000008","","2512"
"10:46:35.9226906 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 45, Name: 00000438","2512"
"10:46:35.9226987 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9227064 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000438","0.0000046","Desired Access: Query Value","2512"
"10:46:35.9227187 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000438\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDFO.DLL","2512"
"10:46:35.9227277 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000438","0.0000013","","2512"
"10:46:35.9227354 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 46, Name: 00000439","2512"
"10:46:35.9227439 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9227537 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000439","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9227661 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000439\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINDEV.DLL","2512"
"10:46:35.9227755 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000439","0.0000008","","2512"
"10:46:35.9227840 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 47, Name: 0000043a","2512"
"10:46:35.9227921 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9228002 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043a","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9228126 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043a\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDMLT47.DLL","2512"
"10:46:35.9228216 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043a","0.0000012","","2512"
"10:46:35.9228292 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 48, Name: 0000043b","2512"
"10:46:35.9228373 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9228454 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043b","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9228570 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043b\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDNO1.DLL","2512"
"10:46:35.9228664 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043b","0.0000008","","2512"
"10:46:35.9228740 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 49, Name: 0000043f","2512"
"10:46:35.9228821 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9228902 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043f","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9229022 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043f\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDKAZ.DLL","2512"
"10:46:35.9229112 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043f","0.0000008","","2512"
"10:46:35.9229188 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 50, Name: 00000440","2512"
"10:46:35.9229269 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9229350 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000440","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9229466 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000440\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDKYR.DLL","2512"
"10:46:35.9229560 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000440","0.0000008","","2512"
"10:46:35.9229636 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 51, Name: 00000442","2512"
"10:46:35.9229717 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9229798 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000442","0.0000039","Desired Access: Query Value","2512"
"10:46:35.9229914 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000442\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDTURME.DLL","2512"
"10:46:35.9230003 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000442","0.0000013","","2512"
"10:46:35.9230080 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 52, Name: 00000444","2512"
"10:46:35.9230161 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9230242 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000444","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9230362 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000444\Layout File","0.0000017","Type: REG_SZ, Length: 22, Data: KBDTAT.DLL","2512"
"10:46:35.9230451 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000444","0.0000009","","2512"
"10:46:35.9230528 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 53, Name: 00000445","2512"
"10:46:35.9230609 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9230690 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000445","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9230814 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000445\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINBEN.DLL","2512"
"10:46:35.9230904 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000445","0.0000008","","2512"
"10:46:35.9230980 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 54, Name: 00000446","2512"
"10:46:35.9231061 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9231143 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000446","0.0000042","Desired Access: Query Value","2512"
"10:46:35.9231262 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000446\Layout File","0.0000017","Type: REG_SZ, Length: 26, Data: KBDINPUN.DLL","2512"
"10:46:35.9231352 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000446","0.0000008","","2512"
"10:46:35.9231428 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 55, Name: 00000447","2512"
"10:46:35.9231509 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9231591 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000447","0.0000042","Desired Access: Query Value","2512"
"10:46:35.9231710 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000447\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINGUJ.DLL","2512"
"10:46:35.9231800 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000447","0.0000012","","2512"
"10:46:35.9231885 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 56, Name: 00000448","2512"
"10:46:35.9231966 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9232043 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000448","0.0000060","Desired Access: Query Value","2512"
"10:46:35.9232188 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000448\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINORI.DLL","2512"
"10:46:35.9232282 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000448","0.0000013","","2512"
"10:46:35.9232367 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 57, Name: 00000449","2512"
"10:46:35.9232448 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9232529 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000449","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9232649 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000449\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINTAM.DLL","2512"
"10:46:35.9232743 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000449","0.0000008","","2512"
"10:46:35.9232819 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 58, Name: 0000044a","2512"
"10:46:35.9232900 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9232977 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044a","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9233097 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044a\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINTEL.DLL","2512"
"10:46:35.9233191 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044a","0.0000008","","2512"
"10:46:35.9233272 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 59, Name: 0000044b","2512"
"10:46:35.9233353 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9233429 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044b","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9233553 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044b\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDINKAN.DLL","2512"
"10:46:35.9233643 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044b","0.0000008","","2512"
"10:46:35.9233724 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 60, Name: 0000044c","2512"
"10:46:35.9233809 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9233899 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044c","0.0000042","Desired Access: Query Value","2512"
"10:46:35.9234018 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044c\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDINMAL.DLL","2512"
"10:46:35.9234108 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044c","0.0000013","","2512"
"10:46:35.9234197 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 61, Name: 0000044d","2512"
"10:46:35.9234283 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9234364 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044d","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9234526 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044d\Layout File","0.0000026","Type: REG_SZ, Length: 26, Data: KBDINASA.DLL","2512"
"10:46:35.9234667 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044d","0.0000013","","2512"
"10:46:35.9234791 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 62, Name: 0000044e","2512"
"10:46:35.9234914 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9235038 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044e","0.0000068","Desired Access: Query Value","2512"
"10:46:35.9235221 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044e\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDINMAR.DLL","2512"
"10:46:35.9235362 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044e","0.0000013","","2512"
"10:46:35.9235486 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 63, Name: 00000450","2512"
"10:46:35.9235618 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9235742 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000450","0.0000060","Desired Access: Query Value","2512"
"10:46:35.9235921 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000450\Layout File","0.0000026","Type: REG_SZ, Length: 22, Data: KBDMON.DLL","2512"
"10:46:35.9236058 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000450","0.0000013","","2512"
"10:46:35.9236177 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 64, Name: 00000451","2512"
"10:46:35.9236301 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9236429 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000451","0.0000068","Desired Access: Query Value","2512"
"10:46:35.9236617 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000451\Layout File","0.0000025","Type: REG_SZ, Length: 26, Data: KBDTIPRC.DLL","2512"
"10:46:35.9236757 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000451","0.0000013","","2512"
"10:46:35.9236903 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 65, Name: 00000452","2512"
"10:46:35.9237026 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9237154 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000452","0.0000064","Desired Access: Query Value","2512"
"10:46:35.9237338 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000452\Layout File","0.0000025","Type: REG_SZ, Length: 22, Data: KBDUKX.DLL","2512"
"10:46:35.9237474 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000452","0.0000073","","2512"
"10:46:35.9237658 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 66, Name: 00000453","2512"
"10:46:35.9237781 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9237914 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000453","0.0000064","Desired Access: Query Value","2512"
"10:46:35.9238101 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000453\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDKHMR.DLL","2512"
"10:46:35.9238217 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000453","0.0000008","","2512"
"10:46:35.9238302 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 67, Name: 00000454","2512"
"10:46:35.9238383 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9238468 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000454","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9238592 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000454\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDLAO.DLL","2512"
"10:46:35.9238686 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000454","0.0000009","","2512"
"10:46:35.9238763 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 68, Name: 0000045a","2512"
"10:46:35.9238848 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9238925 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045a","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9239044 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045a\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDSYR1.DLL","2512"
"10:46:35.9239134 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045a","0.0000009","","2512"
"10:46:35.9239215 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 69, Name: 0000045b","2512"
"10:46:35.9239296 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9239377 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045b","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9239497 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045b\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDSN1.DLL","2512"
"10:46:35.9239586 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045b","0.0000013","","2512"
"10:46:35.9239663 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 70, Name: 0000045c","2512"
"10:46:35.9239748 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9239829 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045c","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9239949 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045c\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDCHER.DLL","2512"
"10:46:35.9240039 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045c","0.0000008","","2512"
"10:46:35.9240115 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 71, Name: 00000461","2512"
"10:46:35.9240196 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9240277 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000461","0.0000064","Desired Access: Query Value","2512"
"10:46:35.9240418 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000461\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDNEPR.DLL","2512"
"10:46:35.9240512 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000461","0.0000009","","2512"
"10:46:35.9240589 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 72, Name: 00000463","2512"
"10:46:35.9240670 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9240751 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000463","0.0000038","Desired Access: Query Value","2512"
"10:46:35.9240866 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000463\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDPASH.DLL","2512"
"10:46:35.9240960 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000463","0.0000009","","2512"
"10:46:35.9241037 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 73, Name: 00000465","2512"
"10:46:35.9241118 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9241199 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000465","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9241319 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000465\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDDIV1.DLL","2512"
"10:46:35.9241412 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000465","0.0000009","","2512"
"10:46:35.9241489 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 74, Name: 00000468","2512"
"10:46:35.9241575 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9241651 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000468","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9241771 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000468\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDHAU.DLL","2512"
"10:46:35.9241860 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000468","0.0000009","","2512"
"10:46:35.9241937 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 75, Name: 0000046a","2512"
"10:46:35.9242018 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9242099 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046a","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9242215 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046a\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDYBA.DLL","2512"
"10:46:35.9242304 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046a","0.0000013","","2512"
"10:46:35.9242381 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 76, Name: 0000046c","2512"
"10:46:35.9242462 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9242543 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046c","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9242663 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046c\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDNSO.DLL","2512"
"10:46:35.9242752 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046c","0.0000009","","2512"
"10:46:35.9242829 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 77, Name: 0000046d","2512"
"10:46:35.9242910 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9242991 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046d","0.0000038","Desired Access: Query Value","2512"
"10:46:35.9243106 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046d\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDBASH.DLL","2512"
"10:46:35.9243196 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046d","0.0000008","","2512"
"10:46:35.9243273 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 78, Name: 0000046e","2512"
"10:46:35.9243354 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9243435 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046e","0.0000051","Desired Access: Query Value","2512"
"10:46:35.9243563 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046e\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDSF.DLL","2512"
"10:46:35.9243652 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046e","0.0000013","","2512"
"10:46:35.9243729 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 79, Name: 0000046f","2512"
"10:46:35.9243810 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9243891 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046f","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9244066 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046f\Layout File","0.0000026","Type: REG_SZ, Length: 26, Data: KBDGRLND.DLL","2512"
"10:46:35.9244164 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046f","0.0000009","","2512"
"10:46:35.9244241 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 80, Name: 00000470","2512"
"10:46:35.9244327 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9244408 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000470","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9244527 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000470\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDIBO.DLL","2512"
"10:46:35.9244621 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000470","0.0000008","","2512"
"10:46:35.9244698 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 81, Name: 00000474","2512"
"10:46:35.9244779 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9244860 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000474","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9244984 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000474\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDGN.DLL","2512"
"10:46:35.9245073 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000474","0.0000013","","2512"
"10:46:35.9245150 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 82, Name: 00000475","2512"
"10:46:35.9245235 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9245312 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000475","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9245432 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000475\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDHAW.DLL","2512"
"10:46:35.9245521 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000475","0.0000009","","2512"
"10:46:35.9245598 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 83, Name: 00000480","2512"
"10:46:35.9245679 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9245760 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000480","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9245880 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000480\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDUGHR.DLL","2512"
"10:46:35.9245969 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000480","0.0000009","","2512"
"10:46:35.9246046 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 84, Name: 00000481","2512"
"10:46:35.9246127 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9246208 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000481","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9246323 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000481\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDMAORI.DLL","2512"
"10:46:35.9246417 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000481","0.0000009","","2512"
"10:46:35.9246494 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 85, Name: 00000485","2512"
"10:46:35.9246579 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9246656 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000485","0.0000051","Desired Access: Query Value","2512"
"10:46:35.9246784 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000485\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDYAK.DLL","2512"
"10:46:35.9246874 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000485","0.0000013","","2512"
"10:46:35.9246951 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 86, Name: 00000488","2512"
"10:46:35.9247036 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9247117 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000488","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9247232 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000488\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDWOL.DLL","2512"
"10:46:35.9247326 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000488","0.0000009","","2512"
"10:46:35.9247403 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 87, Name: 00000492","2512"
"10:46:35.9247501 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9247582 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000492","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9247701 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000492\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDKURD.DLL","2512"
"10:46:35.9247791 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000492","0.0000013","","2512"
"10:46:35.9247872 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 88, Name: 00000804","2512"
"10:46:35.9247953 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9248034 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000804","0.0000051","Desired Access: Query Value","2512"
"10:46:35.9248162 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000804\Layout File","0.0000017","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:35.9248252 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000804","0.0000008","","2512"
"10:46:35.9248329 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 89, Name: 00000807","2512"
"10:46:35.9248423 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9248499 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000807","0.0000073","Desired Access: Query Value","2512"
"10:46:35.9248653 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000807\Layout File","0.0000026","Type: REG_SZ, Length: 20, Data: KBDSG.DLL","2512"
"10:46:35.9248755 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000807","0.0000009","","2512"
"10:46:35.9248832 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 90, Name: 00000809","2512"
"10:46:35.9248913 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9249020 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000809","0.0000055","Desired Access: Query Value","2512"
"10:46:35.9249195 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000809\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDUK.DLL","2512"
"10:46:35.9249336 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000809","0.0000017","","2512"
"10:46:35.9249455 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 91, Name: 0000080a","2512"
"10:46:35.9249579 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9249711 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080a","0.0000060","Desired Access: Query Value","2512"
"10:46:35.9249890 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080a\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDLA.DLL","2512"
"10:46:35.9250031 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080a","0.0000013","","2512"
"10:46:35.9250151 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 92, Name: 0000080c","2512"
"10:46:35.9250279 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9250402 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080c","0.0000064","Desired Access: Query Value","2512"
"10:46:35.9250581 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080c\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDBE.DLL","2512"
"10:46:35.9250722 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080c","0.0000013","","2512"
"10:46:35.9250842 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 93, Name: 00000813","2512"
"10:46:35.9250970 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9251093 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000813","0.0000060","Desired Access: Query Value","2512"
"10:46:35.9251273 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000813\Layout File","0.0000025","Type: REG_SZ, Length: 20, Data: KBDBE.DLL","2512"
"10:46:35.9251409 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000813","0.0000013","","2512"
"10:46:35.9251529 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 94, Name: 00000816","2512"
"10:46:35.9251657 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9251785 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000816","0.0000059","Desired Access: Query Value","2512"
"10:46:35.9251960 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000816\Layout File","0.0000029","Type: REG_SZ, Length: 20, Data: KBDPO.DLL","2512"
"10:46:35.9252100 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000816","0.0000013","","2512"
"10:46:35.9252220 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 95, Name: 0000081a","2512"
"10:46:35.9252335 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9252459 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000081a","0.0000051","Desired Access: Query Value","2512"
"10:46:35.9252587 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000081a\Layout File","0.0000025","Type: REG_SZ, Length: 22, Data: KBDYCL.DLL","2512"
"10:46:35.9252689 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000081a","0.0000009","","2512"
"10:46:35.9252770 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 96, Name: 0000082c","2512"
"10:46:35.9252851 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9252932 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000082c","0.0000052","Desired Access: Query Value","2512"
"10:46:35.9253056 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000082c\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDAZE.DLL","2512"
"10:46:35.9253150 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000082c","0.0000009","","2512"
"10:46:35.9253227 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 97, Name: 0000083b","2512"
"10:46:35.9253308 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9253389 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000083b","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9253513 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000083b\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDFI1.DLL","2512"
"10:46:35.9253602 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000083b","0.0000013","","2512"
"10:46:35.9253679 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 98, Name: 00000843","2512"
"10:46:35.9253764 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9253841 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000843","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9253961 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000843\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDUZB.DLL","2512"
"10:46:35.9254050 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000843","0.0000009","","2512"
"10:46:35.9254127 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 99, Name: 00000850","2512"
"10:46:35.9254208 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9254285 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000850","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9254409 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000850\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDMONMO.DLL","2512"
"10:46:35.9254498 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000850","0.0000013","","2512"
"10:46:35.9254575 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 100, Name: 0000085d","2512"
"10:46:35.9254656 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9254737 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085d","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9254857 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085d\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDIULAT.DLL","2512"
"10:46:35.9254946 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085d","0.0000013","","2512"
"10:46:35.9255023 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 101, Name: 0000085f","2512"
"10:46:35.9255108 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9255185 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085f","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9255300 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085f\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDTZM.DLL","2512"
"10:46:35.9255390 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085f","0.0000013","","2512"
"10:46:35.9255467 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 102, Name: 00000c04","2512"
"10:46:35.9255552 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9255629 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c04","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9255748 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c04\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:35.9255842 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c04","0.0000009","","2512"
"10:46:35.9255919 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 103, Name: 00000c0c","2512"
"10:46:35.9256000 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9256077 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c0c","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9256196 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c0c\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDFC.DLL","2512"
"10:46:35.9256290 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c0c","0.0000009","","2512"
"10:46:35.9256367 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 104, Name: 00000c1a","2512"
"10:46:35.9256448 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9256525 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c1a","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9256644 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c1a\Layout File","0.0000026","Type: REG_SZ, Length: 22, Data: KBDYCC.DLL","2512"
"10:46:35.9256743 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c1a","0.0000008","","2512"
"10:46:35.9256819 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000039","Index: 105, Name: 00000C51","2512"
"10:46:35.9256922 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9257003 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000C51","0.0000051","Desired Access: Query Value","2512"
"10:46:35.9257131 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000C51\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDDZO.DLL","2512"
"10:46:35.9257225 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000C51","0.0000008","","2512"
"10:46:35.9257301 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000018","Index: 106, Name: 00001004","2512"
"10:46:35.9257383 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9257502 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001004","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9257626 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001004\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:35.9257720 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001004","0.0000008","","2512"
"10:46:35.9257796 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 107, Name: 00001009","2512"
"10:46:35.9257877 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9257959 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001009","0.0000042","Desired Access: Query Value","2512"
"10:46:35.9258078 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001009\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDCA.DLL","2512"
"10:46:35.9258172 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001009","0.0000008","","2512"
"10:46:35.9258249 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 108, Name: 0000100c","2512"
"10:46:35.9258330 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9258411 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000100c","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9258535 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000100c\Layout File","0.0000017","Type: REG_SZ, Length: 20, Data: KBDSF.DLL","2512"
"10:46:35.9258624 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000100c","0.0000009","","2512"
"10:46:35.9258701 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 109, Name: 0000105f","2512"
"10:46:35.9258782 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9258863 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000105f","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9258987 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000105f\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDTIFI.DLL","2512"
"10:46:35.9259076 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000105f","0.0000009","","2512"
"10:46:35.9259153 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 110, Name: 00001404","2512"
"10:46:35.9259239 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9259315 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001404","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9259435 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001404\Layout File","0.0000017","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:35.9259524 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001404","0.0000009","","2512"
"10:46:35.9259601 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 111, Name: 00001809","2512"
"10:46:35.9259682 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9259763 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001809","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9259883 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001809\Layout File","0.0000017","Type: REG_SZ, Length: 20, Data: KBDIR.DLL","2512"
"10:46:35.9259972 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001809","0.0000009","","2512"
"10:46:35.9260049 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 112, Name: 0000201a","2512"
"10:46:35.9260130 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9260211 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000201a","0.0000039","Desired Access: Query Value","2512"
"10:46:35.9260327 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000201a\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDBHC.DLL","2512"
"10:46:35.9260416 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000201a","0.0000009","","2512"
"10:46:35.9260493 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 113, Name: 00004009","2512"
"10:46:35.9260574 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9260655 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00004009","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9260775 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00004009\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDINEN.DLL","2512"
"10:46:35.9260868 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00004009","0.0000009","","2512"
"10:46:35.9260945 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 114, Name: 00010401","2512"
"10:46:35.9261026 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9261103 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010401","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9261227 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010401\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDA2.DLL","2512"
"10:46:35.9261321 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010401","0.0000008","","2512"
"10:46:35.9261393 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 115, Name: 00010402","2512"
"10:46:35.9261474 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9261555 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010402","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9261675 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010402\Layout File","0.0000017","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:35.9261764 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010402","0.0000009","","2512"
"10:46:35.9261841 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 116, Name: 00010405","2512"
"10:46:35.9261922 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9262003 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010405","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9262123 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010405\Layout File","0.0000017","Type: REG_SZ, Length: 22, Data: KBDCZ1.DLL","2512"
"10:46:35.9262212 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010405","0.0000009","","2512"
"10:46:35.9262289 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 117, Name: 00010407","2512"
"10:46:35.9262370 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9262451 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010407","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9262567 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010407\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDGR1.DLL","2512"
"10:46:35.9262660 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010407","0.0000009","","2512"
"10:46:35.9262737 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 118, Name: 00010408","2512"
"10:46:35.9262827 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9262908 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010408","0.0000051","Desired Access: Query Value","2512"
"10:46:35.9263036 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010408\Layout File","0.0000060","Type: REG_SZ, Length: 26, Data: KBDHE220.DLL","2512"
"10:46:35.9263168 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010408","0.0000013","","2512"
"10:46:35.9263253 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000018","Index: 119, Name: 00010409","2512"
"10:46:35.9263335 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9263416 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010409","0.0000042","Desired Access: Query Value","2512"
"10:46:35.9263535 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010409\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDDV.DLL","2512"
"10:46:35.9263629 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010409","0.0000008","","2512"
"10:46:35.9263740 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 120, Name: 0001040a","2512"
"10:46:35.9263868 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9263992 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040a","0.0000064","Desired Access: Query Value","2512"
"10:46:35.9264167 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040a\Layout File","0.0000029","Type: REG_SZ, Length: 20, Data: KBDES.DLL","2512"
"10:46:35.9264312 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040a","0.0000012","","2512"
"10:46:35.9264431 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 121, Name: 0001040e","2512"
"10:46:35.9264555 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9264683 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040e","0.0000060","Desired Access: Query Value","2512"
"10:46:35.9264858 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040e\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDHU1.DLL","2512"
"10:46:35.9264994 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040e","0.0000017","","2512"
"10:46:35.9265114 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 122, Name: 00010410","2512"
"10:46:35.9265242 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9265370 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010410","0.0000059","Desired Access: Query Value","2512"
"10:46:35.9265549 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010410\Layout File","0.0000026","Type: REG_SZ, Length: 26, Data: KBDIT142.DLL","2512"
"10:46:35.9265694 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010410","0.0000013","","2512"
"10:46:35.9265809 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 123, Name: 00010415","2512"
"10:46:35.9265937 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9266061 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010415","0.0000060","Desired Access: Query Value","2512"
"10:46:35.9266240 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010415\Layout File","0.0000026","Type: REG_SZ, Length: 20, Data: KBDPL.DLL","2512"
"10:46:35.9266377 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010415","0.0000012","","2512"
"10:46:35.9266496 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 124, Name: 00010416","2512"
"10:46:35.9266620 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9266752 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010416","0.0000056","Desired Access: Query Value","2512"
"10:46:35.9266927 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010416\Layout File","0.0000026","Type: REG_SZ, Length: 20, Data: KBDBR.DLL","2512"
"10:46:35.9267029 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010416","0.0000009","","2512"
"10:46:35.9267106 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 125, Name: 00010418","2512"
"10:46:35.9267192 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9267273 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010418","0.0000042","Desired Access: Query Value","2512"
"10:46:35.9267452 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010418\Layout File","0.0000025","Type: REG_SZ, Length: 24, Data: KBDROST.DLL","2512"
"10:46:35.9267550 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010418","0.0000009","","2512"
"10:46:35.9267635 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 126, Name: 00010419","2512"
"10:46:35.9267721 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9267802 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010419","0.0000064","Desired Access: Query Value","2512"
"10:46:35.9267947 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010419\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDRU1.DLL","2512"
"10:46:35.9268036 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010419","0.0000013","","2512"
"10:46:35.9268113 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 127, Name: 0001041b","2512"
"10:46:35.9268194 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9268275 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041b","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9268399 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041b\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDSL1.DLL","2512"
"10:46:35.9268493 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041b","0.0000008","","2512"
"10:46:35.9268570 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 128, Name: 0001041e","2512"
"10:46:35.9268655 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9268736 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041e","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9268860 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041e\Layout File","0.0000017","Type: REG_SZ, Length: 22, Data: KBDTH1.DLL","2512"
"10:46:35.9268949 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041e","0.0000013","","2512"
"10:46:35.9269086 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 129, Name: 0001041f","2512"
"10:46:35.9269171 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9269257 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041f","0.0000042","Desired Access: Query Value","2512"
"10:46:35.9269380 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041f\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDTUF.DLL","2512"
"10:46:35.9269474 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041f","0.0000013","","2512"
"10:46:35.9269555 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 130, Name: 00010426","2512"
"10:46:35.9269636 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9269713 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010426","0.0000056","Desired Access: Query Value","2512"
"10:46:35.9269871 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010426\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDLV1.DLL","2512"
"10:46:35.9270008 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010426","0.0000012","","2512"
"10:46:35.9272316 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 131, Name: 00010427","2512"
"10:46:35.9272444 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9272542 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010427","0.0000064","Desired Access: Query Value","2512"
"10:46:35.9272696 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010427\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDLT1.DLL","2512"
"10:46:35.9272798 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010427","0.0000009","","2512"
"10:46:35.9272879 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 132, Name: 0001042b","2512"
"10:46:35.9272964 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9273045 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042b","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9273169 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042b\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: kbdarmw.dll","2512"
"10:46:35.9273263 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042b","0.0000009","","2512"
"10:46:35.9273340 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 133, Name: 0001042c","2512"
"10:46:35.9273425 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9273506 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042c","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9273630 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042c\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDAZST.DLL","2512"
"10:46:35.9273724 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042c","0.0000008","","2512"
"10:46:35.9273801 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 134, Name: 0001042e","2512"
"10:46:35.9273882 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9273963 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042e","0.0000042","Desired Access: Query Value","2512"
"10:46:35.9274082 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042e\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDSOREX.DLL","2512"
"10:46:35.9274176 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042e","0.0000009","","2512"
"10:46:35.9274253 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 135, Name: 0001042f","2512"
"10:46:35.9274334 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9274415 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042f","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9274535 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042f\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDMACST.DLL","2512"
"10:46:35.9274624 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042f","0.0000013","","2512"
"10:46:35.9274705 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 136, Name: 00010437","2512"
"10:46:35.9274786 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9274867 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010437","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9274991 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010437\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: kbdgeoqw.dll","2512"
"10:46:35.9275115 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010437","0.0000013","","2512"
"10:46:35.9275209 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 137, Name: 00010439","2512"
"10:46:35.9275294 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9275375 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010439","0.0000051","Desired Access: Query Value","2512"
"10:46:35.9275503 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010439\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINHIN.DLL","2512"
"10:46:35.9275597 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010439","0.0000008","","2512"
"10:46:35.9275674 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 138, Name: 0001043a","2512"
"10:46:35.9275755 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9275836 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043a","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9275955 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043a\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDMLT48.DLL","2512"
"10:46:35.9276049 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043a","0.0000009","","2512"
"10:46:35.9276126 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 139, Name: 0001043b","2512"
"10:46:35.9276207 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9276288 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043b","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9276408 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043b\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDSMSNO.DLL","2512"
"10:46:35.9276501 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043b","0.0000009","","2512"
"10:46:35.9276578 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 140, Name: 00010444","2512"
"10:46:35.9276664 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9276740 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010444","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9276864 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010444\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDTT102.DLL","2512"
"10:46:35.9276954 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010444","0.0000008","","2512"
"10:46:35.9277039 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 141, Name: 00010445","2512"
"10:46:35.9277124 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9277205 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010445","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9277329 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010445\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDINBE1.DLL","2512"
"10:46:35.9277449 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010445","0.0000008","","2512"
"10:46:35.9277530 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 142, Name: 00010451","2512"
"10:46:35.9277611 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9277692 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010451","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9277816 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010451\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDTIPRD.DLL","2512"
"10:46:35.9277909 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010451","0.0000009","","2512"
"10:46:35.9277995 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 143, Name: 00010453","2512"
"10:46:35.9278076 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9278157 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010453","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9278281 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010453\Layout File","0.0000017","Type: REG_SZ, Length: 22, Data: KBDKNI.DLL","2512"
"10:46:35.9278370 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010453","0.0000009","","2512"
"10:46:35.9278447 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 144, Name: 0001045a","2512"
"10:46:35.9278532 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9278609 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045a","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9278729 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045a\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDSYR2.DLL","2512"
"10:46:35.9278823 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045a","0.0000008","","2512"
"10:46:35.9278899 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 145, Name: 0001045b","2512"
"10:46:35.9278980 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9279061 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045b","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9279185 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045b\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDSW09.DLL","2512"
"10:46:35.9279275 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045b","0.0000008","","2512"
"10:46:35.9279352 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 146, Name: 0001045c","2512"
"10:46:35.9279437 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9279514 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045c","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9279633 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045c\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDCHERP.DLL","2512"
"10:46:35.9279727 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045c","0.0000009","","2512"
"10:46:35.9279808 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 147, Name: 0001045d","2512"
"10:46:35.9279893 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9279987 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045d","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9280111 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045d\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINUK2.DLL","2512"
"10:46:35.9280205 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045d","0.0000008","","2512"
"10:46:35.9280286 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 148, Name: 00010465","2512"
"10:46:35.9280380 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9280465 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010465","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9280593 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010465\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDDIV2.DLL","2512"
"10:46:35.9280721 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010465","0.0000013","","2512"
"10:46:35.9280832 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 149, Name: 00010480","2512"
"10:46:35.9280964 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9281088 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010480","0.0000064","Desired Access: Query Value","2512"
"10:46:35.9281272 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010480\Layout File","0.0000029","Type: REG_SZ, Length: 26, Data: KBDUGHR1.DLL","2512"
"10:46:35.9281412 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010480","0.0000017","","2512"
"10:46:35.9281532 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 150, Name: 0001080c","2512"
"10:46:35.9281660 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9281792 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001080c","0.0000060","Desired Access: Query Value","2512"
"10:46:35.9281971 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001080c\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDBENE.DLL","2512"
"10:46:35.9282112 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001080c","0.0000013","","2512"
"10:46:35.9282227 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 151, Name: 0001083b","2512"
"10:46:35.9282355 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9282483 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001083b","0.0000064","Desired Access: Query Value","2512"
"10:46:35.9282663 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001083b\Layout File","0.0000029","Type: REG_SZ, Length: 22, Data: KBDFI1.DLL","2512"
"10:46:35.9282803 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001083b","0.0000013","","2512"
"10:46:35.9282923 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 152, Name: 00010850","2512"
"10:46:35.9283047 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9283166 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010850","0.0000098","Desired Access: Query Value","2512"
"10:46:35.9283384 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010850\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDMONST.DLL","2512"
"10:46:35.9283520 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010850","0.0000022","","2512"
"10:46:35.9283652 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 153, Name: 00010c00","2512"
"10:46:35.9283776 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9283904 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010c00","0.0000064","Desired Access: Query Value","2512"
"10:46:35.9284083 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010c00\Layout File","0.0000026","Type: REG_SZ, Length: 24, Data: KBDMYAN.DLL","2512"
"10:46:35.9284186 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010c00","0.0000008","","2512"
"10:46:35.9284267 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 154, Name: 00011009","2512"
"10:46:35.9284348 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9284433 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011009","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9284553 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011009\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDCAN.DLL","2512"
"10:46:35.9284642 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011009","0.0000013","","2512"
"10:46:35.9284719 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 155, Name: 0001105f","2512"
"10:46:35.9284804 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9284886 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001105f","0.0000042","Desired Access: Query Value","2512"
"10:46:35.9285005 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001105f\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDTIFI2.DLL","2512"
"10:46:35.9285095 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001105f","0.0000008","","2512"
"10:46:35.9285171 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 156, Name: 00011809","2512"
"10:46:35.9285257 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9285334 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011809","0.0000042","Desired Access: Query Value","2512"
"10:46:35.9285453 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011809\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDGAE.DLL","2512"
"10:46:35.9285543 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011809","0.0000012","","2512"
"10:46:35.9285619 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 157, Name: 00020401","2512"
"10:46:35.9285700 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9285782 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020401","0.0000042","Desired Access: Query Value","2512"
"10:46:35.9285897 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020401\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDA3.DLL","2512"
"10:46:35.9285991 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020401","0.0000008","","2512"
"10:46:35.9286067 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 158, Name: 00020402","2512"
"10:46:35.9286148 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9286230 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020402","0.0000038","Desired Access: Query Value","2512"
"10:46:35.9286345 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020402\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDBGPH.DLL","2512"
"10:46:35.9286434 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020402","0.0000013","","2512"
"10:46:35.9286511 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 159, Name: 00020405","2512"
"10:46:35.9286592 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9286673 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020405","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9286793 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020405\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDCZ2.DLL","2512"
"10:46:35.9286887 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020405","0.0000008","","2512"
"10:46:35.9286968 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 160, Name: 00020408","2512"
"10:46:35.9287049 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9287130 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020408","0.0000042","Desired Access: Query Value","2512"
"10:46:35.9287245 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020408\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDHE319.DLL","2512"
"10:46:35.9287339 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020408","0.0000008","","2512"
"10:46:35.9287475 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 161, Name: 00020409","2512"
"10:46:35.9287561 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9287638 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020409","0.0000046","Desired Access: Query Value","2512"
"10:46:35.9287761 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020409\Layout File","0.0000017","Type: REG_SZ, Length: 22, Data: KBDUSX.DLL","2512"
"10:46:35.9287851 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020409","0.0000008","","2512"
"10:46:35.9287928 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 162, Name: 0002040d","2512"
"10:46:35.9288009 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9288090 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002040d","0.0000042","Desired Access: Query Value","2512"
"10:46:35.9288209 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002040d\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: kbdhebl3.dll","2512"
"10:46:35.9288299 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002040d","0.0000013","","2512"
"10:46:35.9288380 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 163, Name: 00020418","2512"
"10:46:35.9288465 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9288542 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020418","0.0000051","Desired Access: Query Value","2512"
"10:46:35.9288666 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020418\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDROPR.DLL","2512"
"10:46:35.9288760 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020418","0.0000008","","2512"
"10:46:35.9288832 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 164, Name: 00020419","2512"
"10:46:35.9288918 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9288999 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020419","0.0000042","Desired Access: Query Value","2512"
"10:46:35.9289118 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020419\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDRUM.DLL","2512"
"10:46:35.9289208 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020419","0.0000008","","2512"
"10:46:35.9289284 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 165, Name: 0002041e","2512"
"10:46:35.9289366 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9289447 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002041e","0.0000051","Desired Access: Query Value","2512"
"10:46:35.9289570 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002041e\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDTH2.DLL","2512"
"10:46:35.9289664 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002041e","0.0000009","","2512"
"10:46:35.9289741 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 166, Name: 00020422","2512"
"10:46:35.9289826 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9289903 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020422","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9290027 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020422\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDUR1.DLL","2512"
"10:46:35.9290116 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020422","0.0000013","","2512"
"10:46:35.9290193 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 167, Name: 00020426","2512"
"10:46:35.9290279 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9290355 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020426","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9290475 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020426\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDLVST.DLL","2512"
"10:46:35.9290569 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020426","0.0000008","","2512"
"10:46:35.9290646 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 168, Name: 00020427","2512"
"10:46:35.9290727 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9290803 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020427","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9290923 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020427\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDLT2.DLL","2512"
"10:46:35.9291012 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020427","0.0000013","","2512"
"10:46:35.9291089 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 169, Name: 0002042b","2512"
"10:46:35.9291175 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9291256 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042b","0.0000042","Desired Access: Query Value","2512"
"10:46:35.9291375 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042b\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: kbdarmph.dll","2512"
"10:46:35.9291465 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042b","0.0000013","","2512"
"10:46:35.9291550 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 170, Name: 0002042e","2512"
"10:46:35.9291635 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9291716 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042e","0.0000064","Desired Access: Query Value","2512"
"10:46:35.9291853 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042e\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDSORS1.DLL","2512"
"10:46:35.9291947 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042e","0.0000008","","2512"
"10:46:35.9292019 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 171, Name: 00020437","2512"
"10:46:35.9292105 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9292182 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020437","0.0000064","Desired Access: Query Value","2512"
"10:46:35.9292463 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020437\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: kbdgeoer.dll","2512"
"10:46:35.9292608 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020437","0.0000017","","2512"
"10:46:35.9292732 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 172, Name: 00020445","2512"
"10:46:35.9292864 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9292988 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020445","0.0000068","Desired Access: Query Value","2512"
"10:46:35.9293171 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020445\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDINBE2.DLL","2512"
"10:46:35.9293312 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020445","0.0000009","","2512"
"10:46:35.9293398 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 173, Name: 00020449","2512"
"10:46:35.9293483 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9293564 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020449","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9293688 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020449\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDTAM99.DLL","2512"
"10:46:35.9293782 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020449","0.0000008","","2512"
"10:46:35.9293858 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 174, Name: 0002083b","2512"
"10:46:35.9293939 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9294020 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002083b","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9294144 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002083b\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDSMSFI.DLL","2512"
"10:46:35.9294234 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002083b","0.0000013","","2512"
"10:46:35.9294311 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 175, Name: 00020c00","2512"
"10:46:35.9294396 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9294473 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020c00","0.0000042","Desired Access: Query Value","2512"
"10:46:35.9294592 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020c00\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDNTL.DLL","2512"
"10:46:35.9294686 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020c00","0.0000009","","2512"
"10:46:35.9294763 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 176, Name: 00030402","2512"
"10:46:35.9294844 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9294925 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030402","0.0000055","Desired Access: Query Value","2512"
"10:46:35.9295057 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030402\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDBULG.DLL","2512"
"10:46:35.9295151 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030402","0.0000009","","2512"
"10:46:35.9295228 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 177, Name: 00030408","2512"
"10:46:35.9295318 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9295403 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030408","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9295531 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030408\Layout File","0.0000025","Type: REG_SZ, Length: 26, Data: KBDHELA2.DLL","2512"
"10:46:35.9295663 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030408","0.0000013","","2512"
"10:46:35.9295778 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 178, Name: 00030409","2512"
"10:46:35.9295906 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9296034 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030409","0.0000060","Desired Access: Query Value","2512"
"10:46:35.9296214 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030409\Layout File","0.0000025","Type: REG_SZ, Length: 22, Data: KBDUSL.DLL","2512"
"10:46:35.9296354 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030409","0.0000013","","2512"
"10:46:35.9296478 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 179, Name: 0003041e","2512"
"10:46:35.9296602 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9296726 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003041e","0.0000064","Desired Access: Query Value","2512"
"10:46:35.9296909 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003041e\Layout File","0.0000026","Type: REG_SZ, Length: 22, Data: KBDTH3.DLL","2512"
"10:46:35.9297050 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003041e","0.0000013","","2512"
"10:46:35.9297165 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 180, Name: 0003042b","2512"
"10:46:35.9297293 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9297523 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003042b","0.0000064","Desired Access: Query Value","2512"
"10:46:35.9297707 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003042b\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: kbdarmty.dll","2512"
"10:46:35.9297852 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003042b","0.0000013","","2512"
"10:46:35.9297967 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 181, Name: 00030437","2512"
"10:46:35.9298095 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9298219 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030437","0.0000060","Desired Access: Query Value","2512"
"10:46:35.9298402 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030437\Layout File","0.0000026","Type: REG_SZ, Length: 26, Data: kbdgeome.dll","2512"
"10:46:35.9298539 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030437","0.0000013","","2512"
"10:46:35.9298654 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 182, Name: 00030c00","2512"
"10:46:35.9298782 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9298910 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030c00","0.0000064","Desired Access: Query Value","2512"
"10:46:35.9299068 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030c00\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDTAILE.DLL","2512"
"10:46:35.9299162 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030c00","0.0000008","","2512"
"10:46:35.9299243 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 183, Name: 00040402","2512"
"10:46:35.9299324 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9299405 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040402","0.0000051","Desired Access: Query Value","2512"
"10:46:35.9299537 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040402\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDBGPH1.DLL","2512"
"10:46:35.9299627 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040402","0.0000013","","2512"
"10:46:35.9299704 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 184, Name: 00040408","2512"
"10:46:35.9299789 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9299870 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040408","0.0000056","Desired Access: Query Value","2512"
"10:46:35.9300011 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040408\Layout File","0.0000025","Type: REG_SZ, Length: 26, Data: KBDHELA3.DLL","2512"
"10:46:35.9300105 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040408","0.0000008","","2512"
"10:46:35.9300182 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 185, Name: 00040409","2512"
"10:46:35.9300263 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9300344 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040409","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9300467 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040409\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDUSR.DLL","2512"
"10:46:35.9300557 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040409","0.0000013","","2512"
"10:46:35.9300634 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 186, Name: 00040437","2512"
"10:46:35.9300719 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9300800 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040437","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9300924 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040437\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: kbdgeooa.dll","2512"
"10:46:35.9301014 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040437","0.0000012","","2512"
"10:46:35.9301090 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 187, Name: 00040c00","2512"
"10:46:35.9301171 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9301252 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040c00","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9301372 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040c00\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDOGHAM.DLL","2512"
"10:46:35.9301462 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040c00","0.0000012","","2512"
"10:46:35.9301538 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 188, Name: 00050408","2512"
"10:46:35.9301619 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9301700 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050408","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9301820 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050408\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDGKL.DLL","2512"
"10:46:35.9301910 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050408","0.0000012","","2512"
"10:46:35.9301986 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 189, Name: 00050409","2512"
"10:46:35.9302067 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9302148 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050409","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9302268 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050409\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDUSA.DLL","2512"
"10:46:35.9302362 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050409","0.0000008","","2512"
"10:46:35.9302439 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 190, Name: 00050429","2512"
"10:46:35.9302520 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9302601 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050429","0.0000042","Desired Access: Query Value","2512"
"10:46:35.9302720 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050429\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: kbdfar.dll","2512"
"10:46:35.9302810 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050429","0.0000013","","2512"
"10:46:35.9302891 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 191, Name: 00060408","2512"
"10:46:35.9302972 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9303049 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00060408","0.0000051","Desired Access: Query Value","2512"
"10:46:35.9303172 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00060408\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDHEPT.DLL","2512"
"10:46:35.9303266 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00060408","0.0000009","","2512"
"10:46:35.9303343 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 192, Name: 00070c00","2512"
"10:46:35.9303424 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9303505 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00070c00","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9303625 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00070c00\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: kbdlisub.dll","2512"
"10:46:35.9303714 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00070c00","0.0000009","","2512"
"10:46:35.9303791 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 193, Name: 00080c00","2512"
"10:46:35.9303872 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9303953 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00080c00","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9304073 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00080c00\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: kbdlisus.dll","2512"
"10:46:35.9304162 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00080c00","0.0000013","","2512"
"10:46:35.9304239 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 194, Name: 00090c00","2512"
"10:46:35.9304320 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9304401 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00090c00","0.0000039","Desired Access: Query Value","2512"
"10:46:35.9304516 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00090c00\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: kbdnko.dll","2512"
"10:46:35.9304606 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00090c00","0.0000013","","2512"
"10:46:35.9304683 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 195, Name: 000a0c00","2512"
"10:46:35.9304764 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9304845 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000a0c00","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9304964 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000a0c00\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: kbdphags.dll","2512"
"10:46:35.9305054 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000a0c00","0.0000013","","2512"
"10:46:35.9305131 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 196, Name: 000b0c00","2512"
"10:46:35.9305216 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9305293 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000b0c00","0.0000043","Desired Access: Query Value","2512"
"10:46:35.9305412 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000b0c00\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDBUG.DLL","2512"
"10:46:35.9305502 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000b0c00","0.0000009","","2512"
"10:46:35.9305579 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 197, Name: 000c0c00","2512"
"10:46:35.9305660 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9305741 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000c0c00","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9305865 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000c0c00\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDGTHC.DLL","2512"
"10:46:35.9305954 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000c0c00","0.0000013","","2512"
"10:46:35.9306031 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 198, Name: 000d0c00","2512"
"10:46:35.9306112 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9306193 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000d0c00","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9306317 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000d0c00\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDOLCH.DLL","2512"
"10:46:35.9306407 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000d0c00","0.0000012","","2512"
"10:46:35.9306483 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 199, Name: 000e0c00","2512"
"10:46:35.9306569 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9306646 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000e0c00","0.0000051","Desired Access: Query Value","2512"
"10:46:35.9306774 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000e0c00\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDOSM.DLL","2512"
"10:46:35.9306863 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000e0c00","0.0000013","","2512"
"10:46:35.9306940 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 200, Name: 000f0c00","2512"
"10:46:35.9307025 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9307102 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000f0c00","0.0000051","Desired Access: Query Value","2512"
"10:46:35.9307230 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000f0c00\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDOLDIT.DLL","2512"
"10:46:35.9307341 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000f0c00","0.0000009","","2512"
"10:46:35.9307418 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 201, Name: 00100c00","2512"
"10:46:35.9307503 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9307580 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00100c00","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9307699 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00100c00\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDSORA.DLL","2512"
"10:46:35.9307793 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00100c00","0.0000009","","2512"
"10:46:35.9307870 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 202, Name: 00110c00","2512"
"10:46:35.9307955 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9308032 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00110c00","0.0000060","Desired Access: Query Value","2512"
"10:46:35.9308164 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00110c00\Layout File","0.0000035","Type: REG_SZ, Length: 22, Data: KBDJAV.DLL","2512"
"10:46:35.9308267 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00110c00","0.0000008","","2512"
"10:46:35.9308344 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 203, Name: 00120c00","2512"
"10:46:35.9308425 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9308506 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00120c00","0.0000051","Desired Access: Query Value","2512"
"10:46:35.9308630 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00120c00\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDFTHRK.DLL","2512"
"10:46:35.9308723 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00120c00","0.0000009","","2512"
"10:46:35.9308796 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 204, Name: 00130c00","2512"
"10:46:35.9308881 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:35.9308962 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00130c00","0.0000047","Desired Access: Query Value","2512"
"10:46:35.9309082 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00130c00\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDMYAN.DLL","2512"
"10:46:35.9309176 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00130c00","0.0000008","","2512"
"10:46:35.9309252 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000018","Index: 205, Length: 288","2512"
"10:46:35.9309346 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","","2512"
"10:46:35.9311970 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9312269 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000043","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","2512"
"10:46:35.9312401 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000056","","2512"
"10:46:35.9315115 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9315426 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000039","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","2512"
"10:46:35.9315601 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000056","","2512"
"10:46:35.9318358 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9318584 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:35.9318695 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000042","","2512"
"10:46:35.9320414 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9320602 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:35.9320704 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000039","","2512"
"10:46:35.9321814 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000110","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9322082 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000026","AllocationSize: 90,112, EndOfFile: 87,200, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:35.9322249 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9322372 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000022","AllocationSize: 90,112, EndOfFile: 87,200, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:35.9322569 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:35.9323064 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000051","","2512"
"10:46:35.9324250 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9324608 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000026","AllocationSize: 90,112, EndOfFile: 87,200, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:35.9324762 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9324873 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000017","AllocationSize: 90,112, EndOfFile: 87,200, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:35.9325056 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:35.9325521 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000022","AllocationSize: 90,112, EndOfFile: 87,200, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:35.9325649 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000051","","2512"
"10:46:35.9326801 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9327062 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000025","AllocationSize: 90,112, EndOfFile: 87,200, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:35.9327185 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9327322 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000017","AllocationSize: 90,112, EndOfFile: 87,200, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:35.9327501 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:35.9331815 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000068","","2512"
"10:46:35.9335356 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9335582 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:35.9335697 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000039","","2512"
"10:46:35.9337673 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9337950 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:35.9338095 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000060","","2512"
"10:46:35.9340668 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9340877 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:35.9340984 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000042","","2512"
"10:46:35.9343283 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000146","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9343629 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000030","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","2512"
"10:46:35.9343740 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000043","","2512"
"10:46:35.9344111 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9344337 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000128","Filter: Windows, 1: Windows","2512"
"10:46:35.9344589 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:35.9345515 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9345737 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000106","Filter: System32, 1: System32","2512"
"10:46:35.9345950 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:35.9346876 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9347089 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\shell32.dll","0.0000158","Filter: shell32.dll, 1: shell32.dll","2512"
"10:46:35.9347358 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:35.9349154 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9349496 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000025","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","2512"
"10:46:35.9349602 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000039","","2512"
"10:46:35.9349939 AM","firefox.exe","7384","CreateFile","C:\","0.0000082","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9350131 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000111","Filter: Windows, 1: Windows","2512"
"10:46:35.9350375 AM","firefox.exe","7384","CloseFile","C:\","0.0000055","","2512"
"10:46:35.9351603 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9351821 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:35.9352034 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:35.9352960 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9353169 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\shell32.dll","0.0000116","Filter: shell32.dll, 1: shell32.dll","2512"
"10:46:35.9353387 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:35.9354582 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000123","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9354957 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shell32.dll","0.0000030","AllocationSize: 21,389,312, EndOfFile: 21,388,752, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9355128 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shell32.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9355251 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shell32.dll","0.0000022","AllocationSize: 21,389,312, EndOfFile: 21,388,752, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9355469 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shell32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.9355503 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0124416","Offset: 2,097,152, Length: 724,992, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:35.9356625 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000056","","2512"
"10:46:35.9357952 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000133","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9358345 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shell32.dll","0.0000030","AllocationSize: 21,389,312, EndOfFile: 21,388,752, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9358494 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shell32.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9358609 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shell32.dll","0.0000017","AllocationSize: 21,389,312, EndOfFile: 21,388,752, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9358810 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shell32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.9360290 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shell32.dll","0.0000039","AllocationSize: 21,389,312, EndOfFile: 21,388,752, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9360495 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000077","","2512"
"10:46:35.9362991 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9363379 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shell32.dll","0.0000026","AllocationSize: 21,389,312, EndOfFile: 21,388,752, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9363529 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shell32.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9363644 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shell32.dll","0.0000017","AllocationSize: 21,389,312, EndOfFile: 21,388,752, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9363832 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shell32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.9411687 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000077","","2512"
"10:46:35.9443819 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9444267 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000047","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","2512"
"10:46:35.9444433 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000060","","2512"
"10:46:35.9446627 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9446938 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000030","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","2512"
"10:46:35.9447062 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000047","","2512"
"10:46:35.9449289 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9449579 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000030","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","2512"
"10:46:35.9449699 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000042","","2512"
"10:46:35.9450147 AM","firefox.exe","7384","CreateFile","C:\","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9450385 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000128","Filter: Windows, 1: Windows","2512"
"10:46:35.9450641 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:35.9451593 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9451819 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:35.9452037 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:35.9452992 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000099","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9453201 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\shell32.dll","0.0000116","Filter: shell32.dll, 1: shell32.dll","2512"
"10:46:35.9453428 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:35.9455608 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9455915 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000034","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","2512"
"10:46:35.9456026 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000043","","2512"
"10:46:35.9456367 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9456555 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000102","Filter: Windows, 1: Windows","2512"
"10:46:35.9456764 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:35.9457694 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9457899 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:35.9458104 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:35.9459025 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9459230 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dwmapi.dll","0.0000107","Filter: dwmapi.dll, 1: dwmapi.dll","2512"
"10:46:35.9459439 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:35.9461172 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9461449 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","2512"
"10:46:35.9461556 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000042","","2512"
"10:46:35.9461884 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9462063 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:35.9462260 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:35.9463365 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9463578 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:35.9463774 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:35.9464696 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9464896 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dwmapi.dll","0.0000150","Filter: dwmapi.dll, 1: dwmapi.dll","2512"
"10:46:35.9465148 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:35.9466441 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9466868 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dwmapi.dll","0.0000029","AllocationSize: 147,456, EndOfFile: 146,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9467188 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9467328 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dwmapi.dll","0.0000022","AllocationSize: 147,456, EndOfFile: 146,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9467529 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.9468041 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000055","","2512"
"10:46:35.9469291 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9469662 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dwmapi.dll","0.0000026","AllocationSize: 147,456, EndOfFile: 146,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9469807 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9469918 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dwmapi.dll","0.0000017","AllocationSize: 147,456, EndOfFile: 146,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9470106 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.9470784 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dwmapi.dll","0.0000022","AllocationSize: 147,456, EndOfFile: 146,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9470917 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000051","","2512"
"10:46:35.9472201 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9472559 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dwmapi.dll","0.0000022","AllocationSize: 147,456, EndOfFile: 146,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9472692 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9472798 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dwmapi.dll","0.0000017","AllocationSize: 147,456, EndOfFile: 146,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9472982 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.9475636 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000059","","2512"
"10:46:35.9478989 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9479505 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","2512"
"10:46:35.9479633 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000052","","2512"
"10:46:35.9481681 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9481967 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","2512"
"10:46:35.9482078 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000056","","2512"
"10:46:35.9484928 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9485334 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","2512"
"10:46:35.9485500 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000064","","2512"
"10:46:35.9486025 AM","firefox.exe","7384","CreateFile","C:\","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9486298 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000119","Filter: Windows, 1: Windows","2512"
"10:46:35.9486537 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:35.9487535 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9487757 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:35.9487971 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:35.9488922 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9489135 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dwmapi.dll","0.0000111","Filter: dwmapi.dll, 1: dwmapi.dll","2512"
"10:46:35.9489396 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:35.9491674 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9491998 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000030","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","2512"
"10:46:35.9492109 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000043","","2512"
"10:46:35.9492455 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9492647 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:35.9492852 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:35.9493748 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9493957 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:35.9494149 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:35.9495062 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9495267 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\pnrpnsp.dll","0.0000123","Filter: pnrpnsp.dll, 1: pnrpnsp.dll","2512"
"10:46:35.9495493 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:35.9497293 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9497579 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000030","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","2512"
"10:46:35.9497686 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000038","","2512"
"10:46:35.9498014 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9498194 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000093","Filter: Windows, 1: Windows","2512"
"10:46:35.9498390 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:35.9499273 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9499474 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000093","Filter: System32, 1: System32","2512"
"10:46:35.9499670 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:35.9500638 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9500839 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\pnrpnsp.dll","0.0000119","Filter: pnrpnsp.dll, 1: pnrpnsp.dll","2512"
"10:46:35.9501061 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:35.9502294 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9502656 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000030","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9502823 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9502942 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000022","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9503139 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.9503591 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000055","","2512"
"10:46:35.9504832 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9505204 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000025","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9505349 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9505460 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000017","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9505652 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.9506078 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000052","","2512"
"10:46:35.9508075 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9508306 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000025","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:35.9508412 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000039","","2512"
"10:46:35.9510277 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9510490 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:35.9510588 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:35.9511629 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9511988 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000030","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9512133 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9512244 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000017","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9512423 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.9513191 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000025","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9513315 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9513413 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000013","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9513579 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:35.9514138 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\pnrpnsp.dll","0.0000243","Offset: 0, Length: 84,992, Priority: Normal","2512"
"10:46:35.9522735 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9523021 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000133","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:35.9524263 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000294","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:35.9525551 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9525803 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000026","Information: DACL","2512"
"10:46:35.9525931 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000039","","2512"
"10:46:35.9527117 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000133","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:35.9528103 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000107","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9528329 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:35.9528440 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:35.9532165 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000375","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:35.9534371 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000230","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:35.9536043 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000145","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9536355 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000025","Information: DACL","2512"
"10:46:35.9536495 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000047","","2512"
"10:46:35.9537699 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:35.9538206 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0035456","Offset: 2,822,144, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:35.9539021 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000128","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9539286 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000025","Information: DACL","2512"
"10:46:35.9539410 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:35.9543924 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-PeerToPeer-Full-Package~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9544201 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-PeerToPeer-Full-Package~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 2:46:43 PM, ChangeTime: 3/20/2019 6:59:18 PM, AllocationSize: 20480, EndOfFile: 18721, FileAttributes: A","2512"
"10:46:35.9544342 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-PeerToPeer-Full-Package~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","","2512"
"10:46:35.9546424 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9546671 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","CreationTime: 4/25/2019 5:43:24 PM, LastAccessTime: 4/25/2019 5:43:24 PM, LastWriteTime: 4/3/2019 9:59:09 AM, ChangeTime: 4/25/2019 8:12:34 PM, AllocationSize: 12288, EndOfFile: 11272, FileAttributes: A","2512"
"10:46:35.9546791 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000043","","2512"
"10:46:35.9547188 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000059","","2512"
"10:46:35.9547410 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000055","","2512"
"10:46:35.9549718 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9549953 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000029","CreationTime: 4/25/2019 5:43:24 PM, LastAccessTime: 4/25/2019 5:43:24 PM, LastWriteTime: 4/3/2019 9:59:09 AM, ChangeTime: 4/25/2019 8:12:34 PM, AllocationSize: 12288, EndOfFile: 11272, FileAttributes: A","2512"
"10:46:35.9550068 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000042","","2512"
"10:46:35.9551245 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9551523 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","AllocationSize: 12,288, EndOfFile: 11,272, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9551681 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9551804 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","AllocationSize: 12,288, EndOfFile: 11,272, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9551988 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:35.9552632 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:35.9552773 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000042","CreationTime: 4/25/2019 5:43:24 PM, LastAccessTime: 4/25/2019 5:43:24 PM, LastWriteTime: 4/3/2019 9:59:09 AM, ChangeTime: 4/25/2019 8:12:34 PM, FileAttributes: A, AllocationSize: 12,288, EndOfFile: 11,272, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x12000000019a27, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:35.9554100 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000149","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9554398 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","AllocationSize: 12,288, EndOfFile: 11,272, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9554573 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9554684 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","AllocationSize: 12,288, EndOfFile: 11,272, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9554859 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.9555405 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000060","","2512"
"10:46:35.9557108 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000153","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9557453 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","AllocationSize: 12,288, EndOfFile: 11,272, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9557603 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9557718 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","AllocationSize: 12,288, EndOfFile: 11,272, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9557901 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:35.9558243 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000051","","2512"
"10:46:35.9559480 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9559813 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","AllocationSize: 12,288, EndOfFile: 11,272, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9560129 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9560235 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000022","AllocationSize: 12,288, EndOfFile: 11,272, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9560419 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.9560884 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000055","","2512"
"10:46:35.9562189 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000060","","2512"
"10:46:35.9562582 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000038","","2512"
"10:46:35.9565372 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9565825 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000029","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","2512"
"10:46:35.9565944 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000043","","2512"
"10:46:35.9569285 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9569694 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000039","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","2512"
"10:46:35.9569852 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000056","","2512"
"10:46:35.9572199 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9572510 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000030","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","2512"
"10:46:35.9572630 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000043","","2512"
"10:46:35.9573014 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9573236 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000136","Filter: Windows, 1: Windows","2512"
"10:46:35.9573500 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:35.9574503 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9574733 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:35.9574951 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:35.9575898 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9576184 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\pnrpnsp.dll","0.0000222","Filter: pnrpnsp.dll, 1: pnrpnsp.dll","2512"
"10:46:35.9576577 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000149","","2512"
"10:46:35.9579222 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9579559 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000034","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:35.9579674 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000047","","2512"
"10:46:35.9580033 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9580229 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000106","Filter: Windows, 1: Windows","2512"
"10:46:35.9580446 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:35.9581385 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9581598 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000103","Filter: System32, 1: System32","2512"
"10:46:35.9581825 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:35.9582857 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9583062 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\winmm.dll","0.0000115","Filter: winmm.dll, 1: winmm.dll","2512"
"10:46:35.9583284 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:35.9584995 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9585272 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:35.9585379 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000038","","2512"
"10:46:35.9585707 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9585886 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:35.9586087 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:35.9587017 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9587218 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:35.9587414 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:35.9588327 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9588527 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\winmm.dll","0.0000111","Filter: winmm.dll, 1: winmm.dll","2512"
"10:46:35.9588741 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:35.9590012 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000137","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9590430 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmm.dll","0.0000035","AllocationSize: 126,976, EndOfFile: 123,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9590610 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9590733 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmm.dll","0.0000022","AllocationSize: 126,976, EndOfFile: 123,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9590934 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.9591459 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000055","","2512"
"10:46:35.9592717 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9593473 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmm.dll","0.0000042","AllocationSize: 126,976, EndOfFile: 123,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9593707 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9593874 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmm.dll","0.0000029","AllocationSize: 126,976, EndOfFile: 123,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9594164 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:35.9594817 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmm.dll","0.0000025","AllocationSize: 126,976, EndOfFile: 123,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9594962 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000068","","2512"
"10:46:35.9596378 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9596801 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmm.dll","0.0000025","AllocationSize: 126,976, EndOfFile: 123,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9596941 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9597052 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmm.dll","0.0000017","AllocationSize: 126,976, EndOfFile: 123,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9597232 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:35.9600099 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000055","","2512"
"10:46:35.9603926 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9604267 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:35.9604387 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000051","","2512"
"10:46:35.9606891 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9608146 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000064","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:35.9608705 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000149","","2512"
"10:46:35.9614021 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9614533 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:35.9614733 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000073","","2512"
"10:46:35.9615326 AM","firefox.exe","7384","CreateFile","C:\","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9615659 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000188","Filter: Windows, 1: Windows","2512"
"10:46:35.9616030 AM","firefox.exe","7384","CloseFile","C:\","0.0000060","","2512"
"10:46:35.9617528 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000162","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9617865 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000158","Filter: System32, 1: System32","2512"
"10:46:35.9618185 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000056","","2512"
"10:46:35.9619619 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9619934 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\winmm.dll","0.0000171","Filter: winmm.dll, 1: winmm.dll","2512"
"10:46:35.9620259 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000055","","2512"
"10:46:35.9623472 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9623954 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000042","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","2512"
"10:46:35.9624137 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000064","","2512"
"10:46:35.9624662 AM","firefox.exe","7384","CreateFile","C:\","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9624990 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000154","Filter: Windows, 1: Windows","2512"
"10:46:35.9625306 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:35.9626663 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9626996 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000141","Filter: System32, 1: System32","2512"
"10:46:35.9627294 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000056","","2512"
"10:46:35.9628685 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000150","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9629001 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wtsapi32.dll","0.0000158","Filter: wtsapi32.dll, 1: wtsapi32.dll","2512"
"10:46:35.9629317 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000051","","2512"
"10:46:35.9631975 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9632406 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000060","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","2512"
"10:46:35.9632598 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000064","","2512"
"10:46:35.9633148 AM","firefox.exe","7384","CreateFile","C:\","0.0000120","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9633430 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000128","Filter: Windows, 1: Windows","2512"
"10:46:35.9633716 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:35.9635068 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9635371 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000128","Filter: System32, 1: System32","2512"
"10:46:35.9635649 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:35.9637048 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9637360 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wtsapi32.dll","0.0000149","Filter: wtsapi32.dll, 1: wtsapi32.dll","2512"
"10:46:35.9637662 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000052","","2512"
"10:46:35.9639429 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000179","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9639958 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000047","AllocationSize: 65,536, EndOfFile: 64,168, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9640227 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9640423 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000030","AllocationSize: 65,536, EndOfFile: 64,168, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9640743 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:35.9641712 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000076","","2512"
"10:46:35.9643533 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000192","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9644084 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000042","AllocationSize: 65,536, EndOfFile: 64,168, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9644306 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9644485 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000030","AllocationSize: 65,536, EndOfFile: 64,168, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9644801 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:35.9645577 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000030","AllocationSize: 65,536, EndOfFile: 64,168, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9645769 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000073","","2512"
"10:46:35.9647557 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000175","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9648060 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000039","AllocationSize: 65,536, EndOfFile: 64,168, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9648265 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9648440 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000026","AllocationSize: 65,536, EndOfFile: 64,168, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9648739 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.9653872 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000085","","2512"
"10:46:35.9659184 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9659661 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000043","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","2512"
"10:46:35.9659849 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000064","","2512"
"10:46:35.9662729 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9663160 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000043","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","2512"
"10:46:35.9663339 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000060","","2512"
"10:46:35.9666330 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9666774 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000038","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","2512"
"10:46:35.9666945 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000064","","2512"
"10:46:35.9667474 AM","firefox.exe","7384","CreateFile","C:\","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9667760 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000947","Filter: Windows, 1: Windows","2512"
"10:46:35.9668890 AM","firefox.exe","7384","CloseFile","C:\","0.0000069","","2512"
"10:46:35.9670477 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9670815 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000149","Filter: System32, 1: System32","2512"
"10:46:35.9671126 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:35.9672615 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9672931 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wtsapi32.dll","0.0000175","Filter: wtsapi32.dll, 1: wtsapi32.dll","2512"
"10:46:35.9673268 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000055","","2512"
"10:46:35.9676749 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9677232 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000042","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:35.9677415 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000068","","2512"
"10:46:35.9677944 AM","firefox.exe","7384","CreateFile","C:\","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9678234 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000141","Filter: Windows, 1: Windows","2512"
"10:46:35.9678537 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:35.9679920 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000140","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9680231 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000137","Filter: System32, 1: System32","2512"
"10:46:35.9680525 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000056","","2512"
"10:46:35.9681916 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9682219 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\DWrite.dll","0.0000162","Filter: DWrite.dll, 1: DWrite.dll","2512"
"10:46:35.9682723 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000051","","2512"
"10:46:35.9685547 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9685978 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000043","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:35.9686153 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000060","","2512"
"10:46:35.9686674 AM","firefox.exe","7384","CreateFile","C:\","0.0000119","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9686955 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000133","Filter: Windows, 1: Windows","2512"
"10:46:35.9687245 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:35.9688598 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9688901 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000132","Filter: System32, 1: System32","2512"
"10:46:35.9689191 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000051","","2512"
"10:46:35.9690663 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9690970 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\DWrite.dll","0.0000137","Filter: DWrite.dll, 1: DWrite.dll","2512"
"10:46:35.9691252 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000055","","2512"
"10:46:35.9692976 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000175","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9693479 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000043","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9693722 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9693906 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000034","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9694221 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:35.9695510 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000081","","2512"
"10:46:35.9697353 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000175","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9697882 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000039","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9698100 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9698275 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000030","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9698586 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:35.9699789 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000077","","2512"
"10:46:35.9702674 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9703007 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000038","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:35.9703177 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000056","","2512"
"10:46:35.9705707 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9706019 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000038","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:35.9706185 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000047","","2512"
"10:46:35.9707704 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000162","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9708178 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000038","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9708391 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9708472 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0303075","Offset: 3,870,720, Length: 323,584, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:35.9708545 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000025","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9708801 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:35.9710068 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000026","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9710200 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9710307 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000013","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:35.9710478 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:35.9711420 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DWrite.dll","0.0001101","Offset: 0, Length: 524,288, Priority: Normal","2512"
"10:46:35.9938595 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000196","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9939000 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000154","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:35.9940724 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000205","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:35.9941910 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000124","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9942196 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000030","Information: DACL","2512"
"10:46:35.9942346 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000042","","2512"
"10:46:35.9943455 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:35.9944453 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000115","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9944696 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000022","Information: DACL","2512"
"10:46:35.9944816 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:35.9947312 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000141","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:35.9948536 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000150","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:35.9949659 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000153","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9949966 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000021","Information: DACL","2512"
"10:46:35.9950090 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000038","","2512"
"10:46:35.9951207 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000133","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:35.9952197 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9952462 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000025","Information: DACL","2512"
"10:46:35.9952603 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000042","","2512"
"10:46:35.9956797 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9957083 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000042","CreationTime: 3/20/2019 7:27:26 PM, LastAccessTime: 3/20/2019 7:42:46 PM, LastWriteTime: 1/10/2019 4:06:49 AM, ChangeTime: 3/20/2019 7:42:30 PM, AllocationSize: 28672, EndOfFile: 26225, FileAttributes: A","2512"
"10:46:35.9957223 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000056","","2512"
"10:46:35.9959306 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1405_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9959544 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1405_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","CreationTime: 4/25/2019 5:40:17 PM, LastAccessTime: 4/25/2019 5:40:17 PM, LastWriteTime: 4/3/2019 9:55:05 AM, ChangeTime: 4/25/2019 8:12:15 PM, AllocationSize: 28672, EndOfFile: 26417, FileAttributes: A","2512"
"10:46:35.9959660 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1405_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000042","","2512"
"10:46:35.9959997 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000042","","2512"
"10:46:35.9960150 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:35.9962019 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9962241 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","CreationTime: 3/20/2019 7:27:26 PM, LastAccessTime: 3/20/2019 7:42:46 PM, LastWriteTime: 1/10/2019 4:06:49 AM, ChangeTime: 3/20/2019 7:42:30 PM, AllocationSize: 28672, EndOfFile: 26225, FileAttributes: A","2512"
"10:46:35.9962403 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000047","","2512"
"10:46:35.9963534 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9963811 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9963986 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9964106 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9964298 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:35.9964929 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:35.9965117 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000042","CreationTime: 3/20/2019 7:27:26 PM, LastAccessTime: 3/20/2019 7:42:46 PM, LastWriteTime: 1/10/2019 4:06:49 AM, ChangeTime: 3/20/2019 7:42:30 PM, FileAttributes: A, AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x200000006f2f0, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:35.9966371 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9966670 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000025","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9966815 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9966922 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9967101 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.9967685 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000060","","2512"
"10:46:35.9969490 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000192","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9969917 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000042","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9970134 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000035","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9970292 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9970544 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:35.9970966 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000060","","2512"
"10:46:35.9972669 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9972980 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9973117 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:35.9973223 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000022","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:35.9973403 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:35.9974363 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000089","","2512"
"10:46:35.9980839 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000090","","2512"
"10:46:35.9981479 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000060","","2512"
"10:46:35.9985708 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9986245 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000047","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:35.9986450 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000060","","2512"
"10:46:35.9989317 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9989782 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000043","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:35.9989966 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000068","","2512"
"10:46:35.9993183 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9993639 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000043","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:35.9993819 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000064","","2512"
"10:46:35.9994399 AM","firefox.exe","7384","CreateFile","C:\","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9994740 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000179","Filter: Windows, 1: Windows","2512"
"10:46:35.9995099 AM","firefox.exe","7384","CloseFile","C:\","0.0000055","","2512"
"10:46:35.9996541 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000153","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9996878 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000158","Filter: System32, 1: System32","2512"
"10:46:35.9997206 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000056","","2512"
"10:46:35.9998640 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:35.9998969 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\DWrite.dll","0.0000264","Filter: DWrite.dll, 1: DWrite.dll","2512"
"10:46:35.9999412 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000056","","2512"
"10:46:36.0002689 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0003039 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000038","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.0003218 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000064","","2512"
"10:46:36.0004682 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0005023 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000158","Filter: lgpllibs.dll, 1: lgpllibs.dll","2512"
"10:46:36.0005360 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000060","","2512"
"10:46:36.0007929 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0008240 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000038","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.0008415 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000060","","2512"
"10:46:36.0009925 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0010258 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000154","Filter: lgpllibs.dll, 1: lgpllibs.dll","2512"
"10:46:36.0010587 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000055","","2512"
"10:46:36.0012225 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000171","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0012635 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000042","AllocationSize: 40,960, EndOfFile: 39,112, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.0012891 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0013083 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000034","AllocationSize: 40,960, EndOfFile: 39,112, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.0013407 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:36.0014064 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000077","","2512"
"10:46:36.0016513 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000252","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0017085 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000047","AllocationSize: 40,960, EndOfFile: 39,112, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.0017345 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0017546 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000030","AllocationSize: 40,960, EndOfFile: 39,112, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.0017878 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:36.0018672 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000034","AllocationSize: 40,960, EndOfFile: 39,112, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.0018881 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000085","","2512"
"10:46:36.0020874 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000179","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0022546 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F.lan1:49778 -> ec2-34-212-158-50.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 31, seqnum: 0, connid: 0","0"
"10:46:36.0024936 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000072","AllocationSize: 40,960, EndOfFile: 39,112, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.0025883 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:36.0026164 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 41098, endtime: 41098, seqnum: 0, connid: 0","0"
"10:46:36.0026561 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:36.0026676 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 41098, endtime: 41098, seqnum: 0, connid: 0","0"
"10:46:36.0027261 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:36.0027402 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 41098, endtime: 41098, seqnum: 0, connid: 0","0"
"10:46:36.0028016 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0003896","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0028148 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:36.0028264 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 41098, endtime: 41098, seqnum: 0, connid: 0","0"
"10:46:36.0028648 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:36.0028754 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 41098, endtime: 41098, seqnum: 0, connid: 0","0"
"10:46:36.0032547 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000077","AllocationSize: 40,960, EndOfFile: 39,112, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.0032901 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:36.0035816 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000123","","2512"
"10:46:36.0039835 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0040116 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000034","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.0040240 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000051","","2512"
"10:46:36.0042399 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0042608 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000051","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.0042779 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000081","","2512"
"10:46:36.0044212 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0174221","Offset: 4,194,304, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:36.0048189 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0048560 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000060","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.0048773 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000090","","2512"
"10:46:36.0050395 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0050753 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000175","Filter: lgpllibs.dll, 1: lgpllibs.dll","2512"
"10:46:36.0051124 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000060","","2512"
"10:46:36.0054499 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0054998 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","2512"
"10:46:36.0055195 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000068","","2512"
"10:46:36.0055784 AM","firefox.exe","7384","CreateFile","C:\","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0056112 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000162","Filter: Windows, 1: Windows","2512"
"10:46:36.0056449 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:36.0057925 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0058280 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000145","Filter: System32, 1: System32","2512"
"10:46:36.0058578 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000056","","2512"
"10:46:36.0060076 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000153","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0060413 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\avrt.dll","0.0000179","Filter: avrt.dll, 1: avrt.dll","2512"
"10:46:36.0060758 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000056","","2512"
"10:46:36.0063574 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0064018 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000043","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","2512"
"10:46:36.0064210 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000064","","2512"
"10:46:36.0064756 AM","firefox.exe","7384","CreateFile","C:\","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0065055 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000158","Filter: Windows, 1: Windows","2512"
"10:46:36.0065388 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:36.0066847 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0067176 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000149","Filter: System32, 1: System32","2512"
"10:46:36.0067496 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:36.0068929 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0069249 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\avrt.dll","0.0000175","Filter: avrt.dll, 1: avrt.dll","2512"
"10:46:36.0069595 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000055","","2512"
"10:46:36.0071310 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000171","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0071843 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\avrt.dll","0.0000043","AllocationSize: 32,768, EndOfFile: 30,056, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0072108 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0072304 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\avrt.dll","0.0000030","AllocationSize: 32,768, EndOfFile: 30,056, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0072624 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:36.0073303 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000076","","2512"
"10:46:36.0075269 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000171","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0075833 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\avrt.dll","0.0000042","AllocationSize: 32,768, EndOfFile: 30,056, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0076076 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0076268 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\avrt.dll","0.0000030","AllocationSize: 32,768, EndOfFile: 30,056, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0076592 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:36.0077313 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\avrt.dll","0.0000034","AllocationSize: 32,768, EndOfFile: 30,056, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0077527 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000072","","2512"
"10:46:36.0079383 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000170","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0079899 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\avrt.dll","0.0000038","AllocationSize: 32,768, EndOfFile: 30,056, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0080125 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0080304 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\avrt.dll","0.0000030","AllocationSize: 32,768, EndOfFile: 30,056, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0080628 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:36.0085608 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000081","","2512"
"10:46:36.0090617 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0091112 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000042","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","2512"
"10:46:36.0091321 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000068","","2512"
"10:46:36.0094171 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0094606 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000038","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","2512"
"10:46:36.0094794 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000064","","2512"
"10:46:36.0098075 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0098514 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000043","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","2512"
"10:46:36.0098698 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000059","","2512"
"10:46:36.0099244 AM","firefox.exe","7384","CreateFile","C:\","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0099543 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000157","Filter: Windows, 1: Windows","2512"
"10:46:36.0099871 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:36.0101275 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0101616 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000158","Filter: System32, 1: System32","2512"
"10:46:36.0101949 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:36.0104765 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000256","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0105349 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\avrt.dll","0.0000244","Filter: avrt.dll, 1: avrt.dll","2512"
"10:46:36.0105819 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000077","","2512"
"10:46:36.0109441 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0109962 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:36.0110167 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000072","","2512"
"10:46:36.0110743 AM","firefox.exe","7384","CreateFile","C:\","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0111058 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000150","Filter: Windows, 1: Windows","2512"
"10:46:36.0111383 AM","firefox.exe","7384","CloseFile","C:\","0.0000059","","2512"
"10:46:36.0112880 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000162","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0113226 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000158","Filter: System32, 1: System32","2512"
"10:46:36.0113559 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:36.0115035 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000192","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0115410 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\msasn1.dll","0.0000256","Filter: msasn1.dll, 1: msasn1.dll","2512"
"10:46:36.0115845 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000060","","2512"
"10:46:36.0118644 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0119097 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:36.0119289 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000064","","2512"
"10:46:36.0119801 AM","firefox.exe","7384","CreateFile","C:\","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0120108 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000154","Filter: Windows, 1: Windows","2512"
"10:46:36.0120428 AM","firefox.exe","7384","CloseFile","C:\","0.0000060","","2512"
"10:46:36.0121849 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0122164 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000146","Filter: System32, 1: System32","2512"
"10:46:36.0122450 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000047","","2512"
"10:46:36.0123449 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0123671 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\msasn1.dll","0.0000175","Filter: msasn1.dll, 1: msasn1.dll","2512"
"10:46:36.0123956 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:36.0125318 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000140","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0125723 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msasn1.dll","0.0000034","AllocationSize: 65,536, EndOfFile: 65,184, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0125902 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msasn1.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0126026 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msasn1.dll","0.0000021","AllocationSize: 65,536, EndOfFile: 65,184, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0126218 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msasn1.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.0126717 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000060","","2512"
"10:46:36.0128018 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0128398 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msasn1.dll","0.0000026","AllocationSize: 65,536, EndOfFile: 65,184, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0128543 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msasn1.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0128654 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msasn1.dll","0.0000017","AllocationSize: 65,536, EndOfFile: 65,184, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0128838 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msasn1.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.0129332 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msasn1.dll","0.0000022","AllocationSize: 65,536, EndOfFile: 65,184, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0129460 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000052","","2512"
"10:46:36.0130758 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000123","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0131107 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msasn1.dll","0.0000030","AllocationSize: 65,536, EndOfFile: 65,184, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0131240 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msasn1.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0131346 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msasn1.dll","0.0000017","AllocationSize: 65,536, EndOfFile: 65,184, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0131521 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msasn1.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.0134209 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000056","","2512"
"10:46:36.0137580 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0137900 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:36.0138019 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000043","","2512"
"10:46:36.0139982 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0140268 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:36.0140375 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000042","","2512"
"10:46:36.0142683 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0142956 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:36.0143063 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000038","","2512"
"10:46:36.0143408 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0143604 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000111","Filter: Windows, 1: Windows","2512"
"10:46:36.0143831 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.0144774 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0144983 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000132","Filter: System32, 1: System32","2512"
"10:46:36.0145222 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.0146169 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0146378 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\msasn1.dll","0.0000119","Filter: msasn1.dll, 1: msasn1.dll","2512"
"10:46:36.0146600 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:36.0148835 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0149053 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.0149160 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000038","","2512"
"10:46:36.0149497 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0149680 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:36.0149876 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.0150772 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0150973 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:36.0151165 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.0152906 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0153102 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.0153200 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000039","","2512"
"10:46:36.0153520 AM","firefox.exe","7384","CreateFile","C:\","0.0000073","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0153699 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000090","Filter: Windows, 1: Windows","2512"
"10:46:36.0153887 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.0154809 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0155009 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:36.0155265 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.0156340 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0156596 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KernelBase.dll","0.0000026","AllocationSize: 2,572,288, EndOfFile: 2,571,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0156746 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KernelBase.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0156878 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KernelBase.dll","0.0000021","AllocationSize: 2,572,288, EndOfFile: 2,571,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0157070 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KernelBase.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.0158115 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000073","","2512"
"10:46:36.0159869 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000158","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0160244 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KernelBase.dll","0.0000039","AllocationSize: 2,572,288, EndOfFile: 2,571,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0160462 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KernelBase.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0160633 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KernelBase.dll","0.0000030","AllocationSize: 2,572,288, EndOfFile: 2,571,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0160936 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KernelBase.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:36.0161746 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KernelBase.dll","0.0000022","AllocationSize: 2,572,288, EndOfFile: 2,571,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0161874 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000060","","2512"
"10:46:36.0163231 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0163496 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KernelBase.dll","0.0000025","AllocationSize: 2,572,288, EndOfFile: 2,571,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0163628 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KernelBase.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0163730 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KernelBase.dll","0.0000022","AllocationSize: 2,572,288, EndOfFile: 2,571,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0163918 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KernelBase.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.0171991 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000055","","2512"
"10:46:36.0178583 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0178822 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000029","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.0178937 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000047","","2512"
"10:46:36.0180891 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0181096 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000025","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.0181198 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000043","","2512"
"10:46:36.0183366 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0183566 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.0183669 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000038","","2512"
"10:46:36.0184023 AM","firefox.exe","7384","CreateFile","C:\","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0184232 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000119","Filter: Windows, 1: Windows","2512"
"10:46:36.0184475 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.0185559 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0185781 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000110","Filter: System32, 1: System32","2512"
"10:46:36.0185998 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.0188174 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0188558 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000030","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:36.0188665 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000047","","2512"
"10:46:36.0189006 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0189198 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000103","Filter: Windows, 1: Windows","2512"
"10:46:36.0189407 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.0190393 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0190610 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000124","Filter: System32, 1: System32","2512"
"10:46:36.0190849 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.0191814 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0192023 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\uxtheme.dll","0.0000119","Filter: uxtheme.dll, 1: uxtheme.dll","2512"
"10:46:36.0192245 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:36.0193938 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0194233 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000025","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:36.0194335 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000043","","2512"
"10:46:36.0194664 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0194847 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000137","Filter: Windows, 1: Windows","2512"
"10:46:36.0195120 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:36.0196400 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0196618 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:36.0196835 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.0197774 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0197987 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\uxtheme.dll","0.0000120","Filter: uxtheme.dll, 1: uxtheme.dll","2512"
"10:46:36.0198209 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:36.0199498 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0199873 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\uxtheme.dll","0.0000034","AllocationSize: 602,112, EndOfFile: 599,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0200053 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0200185 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\uxtheme.dll","0.0000017","AllocationSize: 602,112, EndOfFile: 599,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0200390 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:36.0200897 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000052","","2512"
"10:46:36.0202186 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0202553 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\uxtheme.dll","0.0000025","AllocationSize: 602,112, EndOfFile: 599,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0202698 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0202805 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\uxtheme.dll","0.0000017","AllocationSize: 602,112, EndOfFile: 599,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0202988 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.0203419 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000051","","2512"
"10:46:36.0205859 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0206098 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000030","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:36.0206209 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000039","","2512"
"10:46:36.0207912 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0208117 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000029","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:36.0208219 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000030","","2512"
"10:46:36.0209256 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0209717 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\uxtheme.dll","0.0000042","AllocationSize: 602,112, EndOfFile: 599,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0209943 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0210113 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\uxtheme.dll","0.0000030","AllocationSize: 602,112, EndOfFile: 599,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0210412 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:36.0211538 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\uxtheme.dll","0.0000035","AllocationSize: 602,112, EndOfFile: 599,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0211735 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0211893 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\uxtheme.dll","0.0000021","AllocationSize: 602,112, EndOfFile: 599,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0212178 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.0214175 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\uxtheme.dll","0.0001617","Offset: 0, Length: 524,288, Priority: Normal","2512"
"10:46:36.0258519 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0258860 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000141","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:36.0260102 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000187","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.0261309 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000115","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0261569 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000026","Information: DACL","2512"
"10:46:36.0261706 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000043","","2512"
"10:46:36.0262807 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.0263788 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0264023 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000017","Information: DACL","2512"
"10:46:36.0264129 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000039","","2512"
"10:46:36.0266711 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000145","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:36.0268324 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000153","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.0269394 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000124","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0269676 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000034","Information: DACL","2512"
"10:46:36.0270022 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000098","","2512"
"10:46:36.0272923 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000184","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.0274015 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000128","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0274267 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000026","Information: DACL","2512"
"10:46:36.0274387 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:36.0279174 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0279464 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:28:17 PM, ChangeTime: 3/20/2019 7:09:36 PM, AllocationSize: 577536, EndOfFile: 575537, FileAttributes: A","2512"
"10:46:36.0279596 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","","2512"
"10:46:36.0279976 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000047","","2512"
"10:46:36.0280134 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:36.0282186 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0282421 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:28:17 PM, ChangeTime: 3/20/2019 7:09:36 PM, AllocationSize: 577536, EndOfFile: 575537, FileAttributes: A","2512"
"10:46:36.0282583 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","","2512"
"10:46:36.0283854 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000137","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0284144 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000035","AllocationSize: 577,536, EndOfFile: 575,537, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0284319 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0284435 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 577,536, EndOfFile: 575,537, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0284618 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.0287976 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:36.0288198 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:28:17 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A, AllocationSize: 577,536, EndOfFile: 575,537, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x4000000061c39, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:36.0289900 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000158","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0290224 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 577,536, EndOfFile: 575,537, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0290382 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0290497 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000018","AllocationSize: 577,536, EndOfFile: 575,537, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0290685 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.0291440 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000073","","2512"
"10:46:36.0293036 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000149","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0293356 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","AllocationSize: 577,536, EndOfFile: 575,537, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0293501 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0293612 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 577,536, EndOfFile: 575,537, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0293796 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.0294184 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","","2512"
"10:46:36.0296458 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0296757 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","AllocationSize: 577,536, EndOfFile: 575,537, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0296953 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0297060 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 577,536, EndOfFile: 575,537, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0297239 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.0301471 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000060","","2512"
"10:46:36.0311353 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0054724","Offset: 5,242,880, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:36.0384121 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000294","","2512"
"10:46:36.0384701 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F.lan1:49778 -> ec2-34-212-158-50.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 31, startime: 41098, endtime: 41102, seqnum: 0, connid: 0","0"
"10:46:36.0385073 AM","firefox.exe","7384","TCP Disconnect","LAPTOP-49TAGD3F.lan1:49778 -> ec2-34-212-158-50.us-west-2.compute.amazonaws.com:https","0.0000000","Length: 0, seqnum: 0, connid: 0","0"
"10:46:36.0386557 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000090","","2512"
"10:46:36.0391844 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0392287 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000043","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:36.0392437 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000051","","2512"
"10:46:36.0394702 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0395044 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000030","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:36.0395167 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000043","","2512"
"10:46:36.0397932 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0398248 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000030","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:36.0398359 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000068","","2512"
"10:46:36.0398879 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0399110 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000141","Filter: Windows, 1: Windows","2512"
"10:46:36.0399379 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.0400347 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0400578 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000115","Filter: System32, 1: System32","2512"
"10:46:36.0400804 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.0401836 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0402050 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\uxtheme.dll","0.0000123","Filter: uxtheme.dll, 1: uxtheme.dll","2512"
"10:46:36.0402280 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.0404537 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0404861 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:36.0404972 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000043","","2512"
"10:46:36.0405335 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0405527 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:36.0405732 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.0406649 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0406867 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:36.0407080 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.0408006 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0408211 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wsock32.dll","0.0000128","Filter: wsock32.dll, 1: wsock32.dll","2512"
"10:46:36.0408441 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.0410276 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0410574 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:36.0410685 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000039","","2512"
"10:46:36.0411018 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0411210 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:36.0411406 AM","firefox.exe","7384","CloseFile","C:\","0.0000035","","2512"
"10:46:36.0412307 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0412857 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000141","Filter: System32, 1: System32","2512"
"10:46:36.0413169 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000064","","2512"
"10:46:36.0414453 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0414683 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wsock32.dll","0.0000141","Filter: wsock32.dll, 1: wsock32.dll","2512"
"10:46:36.0414935 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000043","","2512"
"10:46:36.0416211 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0416595 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wsock32.dll","0.0000034","AllocationSize: 20,480, EndOfFile: 18,432, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0416774 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0416902 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wsock32.dll","0.0000017","AllocationSize: 20,480, EndOfFile: 18,432, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0417098 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.0417627 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000060","","2512"
"10:46:36.0418894 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0419257 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wsock32.dll","0.0000026","AllocationSize: 20,480, EndOfFile: 18,432, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0419406 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0419517 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wsock32.dll","0.0000022","AllocationSize: 20,480, EndOfFile: 18,432, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0419705 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.0420123 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000051","","2512"
"10:46:36.0422090 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0422321 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000025","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:36.0422423 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000038","","2512"
"10:46:36.0424091 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0424300 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000137","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:36.0424548 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000038","","2512"
"10:46:36.0425606 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0425977 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wsock32.dll","0.0000030","AllocationSize: 20,480, EndOfFile: 18,432, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0426126 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0426233 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wsock32.dll","0.0000021","AllocationSize: 20,480, EndOfFile: 18,432, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0426417 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:36.0427193 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wsock32.dll","0.0000021","AllocationSize: 20,480, EndOfFile: 18,432, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0427317 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0427415 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wsock32.dll","0.0000017","AllocationSize: 20,480, EndOfFile: 18,432, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0427586 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:36.0427935 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\wsock32.dll","0.0000222","Offset: 0, Length: 18,432, Priority: Normal","2512"
"10:46:36.0431515 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0431788 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000128","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:36.0433158 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000200","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.0434446 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0005568","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0440360 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000047","Information: DACL","2512"
"10:46:36.0440573 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000099","","2512"
"10:46:36.0442481 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000209","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.0443675 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000133","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0443961 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:36.0444093 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000039","","2512"
"10:46:36.0446581 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000196","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:36.0447925 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.0449196 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000124","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0449457 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000025","Information: DACL","2512"
"10:46:36.0449580 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000039","","2512"
"10:46:36.0450732 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.0451722 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000107","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0451948 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000022","Information: DACL","2512"
"10:46:36.0452059 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000039","","2512"
"10:46:36.0456189 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0456475 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:29:46 PM, ChangeTime: 3/20/2019 7:10:41 PM, AllocationSize: 462848, EndOfFile: 460400, FileAttributes: A","2512"
"10:46:36.0456612 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","","2512"
"10:46:36.0456970 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000043","","2512"
"10:46:36.0457120 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:36.0459355 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0459594 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:29:46 PM, ChangeTime: 3/20/2019 7:10:41 PM, AllocationSize: 462848, EndOfFile: 460400, FileAttributes: A","2512"
"10:46:36.0459709 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","","2512"
"10:46:36.0460938 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0461292 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0461467 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0461591 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0461787 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.0465457 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:36.0465619 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:29:46 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A, AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x30000000623b7, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:36.0467133 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000158","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0467466 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0467671 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0467684 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0324822","Offset: 6,291,456, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:36.0467820 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0468085 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:36.0468934 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","","2512"
"10:46:36.0470555 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000158","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0471123 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0471276 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0471387 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000022","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0471571 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.0471959 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000055","","2512"
"10:46:36.0475564 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000150","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0476004 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0476157 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0476273 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0476456 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.0479434 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000060","","2512"
"10:46:36.0542649 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000086","","2512"
"10:46:36.0543417 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","","2512"
"10:46:36.0547970 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0548362 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000039","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:36.0548499 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000043","","2512"
"10:46:36.0550598 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0550897 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:36.0551008 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000042","","2512"
"10:46:36.0553064 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0553346 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:36.0553452 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000056","","2512"
"10:46:36.0553879 AM","firefox.exe","7384","CreateFile","C:\","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0554169 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000162","Filter: Windows, 1: Windows","2512"
"10:46:36.0554451 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:36.0555402 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0555628 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000120","Filter: System32, 1: System32","2512"
"10:46:36.0555855 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.0556806 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0557028 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wsock32.dll","0.0000149","Filter: wsock32.dll, 1: wsock32.dll","2512"
"10:46:36.0557284 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.0559375 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0559686 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:36.0559793 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000042","","2512"
"10:46:36.0560130 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0560318 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:36.0560518 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.0561418 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0561632 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.0561828 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.0562741 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0562950 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\shlwapi.dll","0.0000115","Filter: shlwapi.dll, 1: shlwapi.dll","2512"
"10:46:36.0563168 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.0564985 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0565280 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:36.0565386 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000039","","2512"
"10:46:36.0565715 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0565894 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:36.0566086 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.0566965 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0567170 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.0567366 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.0568279 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0568480 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\shlwapi.dll","0.0000115","Filter: shlwapi.dll, 1: shlwapi.dll","2512"
"10:46:36.0568693 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:36.0569883 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0570238 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shlwapi.dll","0.0000029","AllocationSize: 327,680, EndOfFile: 326,496, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0570408 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shlwapi.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0570528 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shlwapi.dll","0.0000021","AllocationSize: 327,680, EndOfFile: 326,496, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0570728 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shlwapi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.0571206 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000051","","2512"
"10:46:36.0572499 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0572870 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shlwapi.dll","0.0000030","AllocationSize: 327,680, EndOfFile: 326,496, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0573015 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shlwapi.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0573126 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shlwapi.dll","0.0000017","AllocationSize: 327,680, EndOfFile: 326,496, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0573310 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shlwapi.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:36.0573856 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shlwapi.dll","0.0000017","AllocationSize: 327,680, EndOfFile: 326,496, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0573996 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000056","","2512"
"10:46:36.0576364 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000154","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0576812 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shlwapi.dll","0.0000035","AllocationSize: 327,680, EndOfFile: 326,496, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0576992 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shlwapi.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0577124 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shlwapi.dll","0.0000021","AllocationSize: 327,680, EndOfFile: 326,496, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0577337 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shlwapi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.0580640 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000059","","2512"
"10:46:36.0584838 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0585179 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:36.0585307 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000047","","2512"
"10:46:36.0587313 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0587611 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:36.0587727 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000042","","2512"
"10:46:36.0589822 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0590116 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:36.0590223 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000042","","2512"
"10:46:36.0590581 AM","firefox.exe","7384","CreateFile","C:\","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0590786 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000115","Filter: Windows, 1: Windows","2512"
"10:46:36.0591016 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.0591951 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0592164 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:36.0592377 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.0593325 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0593529 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\shlwapi.dll","0.0000120","Filter: shlwapi.dll, 1: shlwapi.dll","2512"
"10:46:36.0593755 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:36.0596008 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0596341 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","2512"
"10:46:36.0596452 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000043","","2512"
"10:46:36.0596802 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0596994 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000115","Filter: Windows, 1: Windows","2512"
"10:46:36.0597263 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.0598449 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0598765 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000136","Filter: System32, 1: System32","2512"
"10:46:36.0599050 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000060","","2512"
"10:46:36.0600471 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0600787 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\NapiNSP.dll","0.0000341","Filter: NapiNSP.dll, 1: NapiNSP.dll","2512"
"10:46:36.0601278 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000047","","2512"
"10:46:36.0603693 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0604192 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","2512"
"10:46:36.0604362 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000069","","2512"
"10:46:36.0604938 AM","firefox.exe","7384","CreateFile","C:\","0.0000150","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0605267 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000171","Filter: Windows, 1: Windows","2512"
"10:46:36.0605630 AM","firefox.exe","7384","CloseFile","C:\","0.0000247","","2512"
"10:46:36.0609367 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000214","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0609785 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000222","Filter: System32, 1: System32","2512"
"10:46:36.0610203 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000069","","2512"
"10:46:36.0611889 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000170","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0612239 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\NapiNSP.dll","0.0000187","Filter: NapiNSP.dll, 1: NapiNSP.dll","2512"
"10:46:36.0612589 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000064","","2512"
"10:46:36.0614594 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000188","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0615080 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000039","AllocationSize: 69,632, EndOfFile: 67,072, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0615272 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0615409 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000017","AllocationSize: 69,632, EndOfFile: 67,072, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0615609 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.0616079 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000059","","2512"
"10:46:36.0617632 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0618024 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000026","AllocationSize: 69,632, EndOfFile: 67,072, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0618174 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0618289 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000017","AllocationSize: 69,632, EndOfFile: 67,072, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0618477 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.0618882 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000055","","2512"
"10:46:36.0620947 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0621182 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000029","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:36.0621293 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:36.0623008 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0623221 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:36.0623323 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000035","","2512"
"10:46:36.0624429 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0624825 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000030","AllocationSize: 69,632, EndOfFile: 67,072, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0624970 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0625081 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000017","AllocationSize: 69,632, EndOfFile: 67,072, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0625261 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.0626007 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000022","AllocationSize: 69,632, EndOfFile: 67,072, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0626127 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0626225 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000017","AllocationSize: 69,632, EndOfFile: 67,072, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0626395 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.0626903 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\NapiNSP.dll","0.0000201","Offset: 0, Length: 67,072, Priority: Normal","2512"
"10:46:36.0633022 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000123","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0633278 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000128","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:36.0634523 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000188","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.0635620 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0635863 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000030","Information: DACL","2512"
"10:46:36.0635991 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000039","","2512"
"10:46:36.0637054 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.0638184 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0638415 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:36.0638530 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:36.0640877 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000260","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:36.0642255 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.0643338 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000116","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0643582 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000021","Information: DACL","2512"
"10:46:36.0643697 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000064","","2512"
"10:46:36.0644815 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.0645775 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000106","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0645997 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000017","Information: DACL","2512"
"10:46:36.0646099 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:36.0650400 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0650673 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:29:46 PM, ChangeTime: 3/20/2019 7:10:41 PM, AllocationSize: 462848, EndOfFile: 460400, FileAttributes: A","2512"
"10:46:36.0650805 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","","2512"
"10:46:36.0651151 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000042","","2512"
"10:46:36.0651304 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:36.0653438 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0653672 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000098","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:29:46 PM, ChangeTime: 3/20/2019 7:10:41 PM, AllocationSize: 462848, EndOfFile: 460400, FileAttributes: A","2512"
"10:46:36.0653864 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","","2512"
"10:46:36.0655170 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000196","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0655580 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000046","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0655823 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0656006 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0656309 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:36.0660085 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:36.0660247 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:29:46 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A, AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x30000000623b7, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:36.0661502 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000153","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0661817 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0661971 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0662082 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0662261 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.0662863 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000059","","2512"
"10:46:36.0664352 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000149","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0664668 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0664813 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0664919 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0665098 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.0665474 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","","2512"
"10:46:36.0668828 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0669207 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0669348 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0669455 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0669630 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:36.0672604 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000059","","2512"
"10:46:36.0736075 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000093","","2512"
"10:46:36.0736971 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","","2512"
"10:46:36.0741032 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0741421 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000034","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","2512"
"10:46:36.0741544 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000047","","2512"
"10:46:36.0743588 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0743891 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","2512"
"10:46:36.0744002 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000043","","2512"
"10:46:36.0746123 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0746404 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","2512"
"10:46:36.0746511 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000043","","2512"
"10:46:36.0746874 AM","firefox.exe","7384","CreateFile","C:\","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0747091 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000128","Filter: Windows, 1: Windows","2512"
"10:46:36.0747334 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.0748269 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000123","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0748520 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:36.0748734 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.0749677 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0749890 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\NapiNSP.dll","0.0000111","Filter: NapiNSP.dll, 1: NapiNSP.dll","2512"
"10:46:36.0750103 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:36.0752228 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0752544 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","2512"
"10:46:36.0752655 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000043","","2512"
"10:46:36.0752992 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0753180 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:36.0753376 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.0754532 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0754741 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.0754938 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.0755910 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0756119 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\nlaapi.dll","0.0000111","Filter: nlaapi.dll, 1: nlaapi.dll","2512"
"10:46:36.0756337 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.0758035 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0758317 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","2512"
"10:46:36.0758423 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000043","","2512"
"10:46:36.0758752 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0758935 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000090","Filter: Windows, 1: Windows","2512"
"10:46:36.0759127 AM","firefox.exe","7384","CloseFile","C:\","0.0000035","","2512"
"10:46:36.0760011 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0760207 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000089","Filter: System32, 1: System32","2512"
"10:46:36.0760399 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000051","","2512"
"10:46:36.0761423 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0761734 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\nlaapi.dll","0.0000162","Filter: nlaapi.dll, 1: nlaapi.dll","2512"
"10:46:36.0762059 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000055","","2512"
"10:46:36.0763735 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000171","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0764213 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nlaapi.dll","0.0000030","AllocationSize: 81,920, EndOfFile: 80,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0764384 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0764508 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nlaapi.dll","0.0000021","AllocationSize: 81,920, EndOfFile: 80,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0764712 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.0765173 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000073","","2512"
"10:46:36.0766581 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0766965 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nlaapi.dll","0.0000026","AllocationSize: 81,920, EndOfFile: 80,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0767110 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0767226 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nlaapi.dll","0.0000017","AllocationSize: 81,920, EndOfFile: 80,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0767418 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:36.0767904 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000068","","2512"
"10:46:36.0770148 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0770387 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000030","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:36.0770494 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000042","","2512"
"10:46:36.0772226 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0772444 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000025","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:36.0772542 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:36.0773992 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000188","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0775426 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nlaapi.dll","0.0000213","AllocationSize: 81,920, EndOfFile: 80,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0775998 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0776284 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nlaapi.dll","0.0000431","AllocationSize: 81,920, EndOfFile: 80,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0778127 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000034","SyncType: SyncTypeOther","2512"
"10:46:36.0779386 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nlaapi.dll","0.0000042","AllocationSize: 81,920, EndOfFile: 80,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0779765 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0779949 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nlaapi.dll","0.0000030","AllocationSize: 81,920, EndOfFile: 80,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0780252 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:36.0781045 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\nlaapi.dll","0.0000286","Offset: 0, Length: 80,896, Priority: Normal","2512"
"10:46:36.0794242 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000213","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0794694 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000209","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:36.0796469 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000248","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.0798185 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000157","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0798560 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000034","Information: DACL","2512"
"10:46:36.0798765 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000060","","2512"
"10:46:36.0800395 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000183","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.0801833 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000153","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0802170 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000029","Information: DACL","2512"
"10:46:36.0802349 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000051","","2512"
"10:46:36.0805468 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000196","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:36.0807273 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000204","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.0808868 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000171","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0809244 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000030","Information: DACL","2512"
"10:46:36.0809436 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000059","","2512"
"10:46:36.0810989 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000183","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.0812691 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000158","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0813037 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000030","Information: DACL","2512"
"10:46:36.0813216 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000051","","2512"
"10:46:36.0818993 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0819415 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000052","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:25:49 PM, ChangeTime: 3/20/2019 7:08:49 PM, AllocationSize: 249856, EndOfFile: 246781, FileAttributes: A","2512"
"10:46:36.0819633 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000073","","2512"
"10:46:36.0820162 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000056","","2512"
"10:46:36.0820384 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000051","","2512"
"10:46:36.0823456 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0823814 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:25:49 PM, ChangeTime: 3/20/2019 7:08:49 PM, AllocationSize: 249856, EndOfFile: 246781, FileAttributes: A","2512"
"10:46:36.0823998 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000055","","2512"
"10:46:36.0825879 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000188","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0826285 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","AllocationSize: 249,856, EndOfFile: 246,781, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0826532 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0826716 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","AllocationSize: 249,856, EndOfFile: 246,781, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0827010 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:36.0831179 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:36.0831507 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:25:49 PM, ChangeTime: 3/20/2019 7:08:49 PM, FileAttributes: A, AllocationSize: 249,856, EndOfFile: 246,781, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x5000000061736, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:36.0833269 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000218","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0833717 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","AllocationSize: 249,856, EndOfFile: 246,781, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0833956 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0834135 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 249,856, EndOfFile: 246,781, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0834763 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","SyncType: SyncTypeOther","2512"
"10:46:36.0835782 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000090","","2512"
"10:46:36.0837809 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000201","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0838249 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","AllocationSize: 249,856, EndOfFile: 246,781, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0838487 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000035","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0838667 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 249,856, EndOfFile: 246,781, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0838978 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:36.0839520 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000073","","2512"
"10:46:36.0842575 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000196","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0843151 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","AllocationSize: 249,856, EndOfFile: 246,781, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0843398 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000035","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0843578 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000029","AllocationSize: 249,856, EndOfFile: 246,781, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.0843885 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:36.0846193 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000077","","2512"
"10:46:36.0887388 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0033788","Offset: 7,340,032, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:36.0906686 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000265","","2512"
"10:46:36.0907923 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000060","","2512"
"10:46:36.0913159 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0913743 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000056","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","2512"
"10:46:36.0913991 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000068","","2512"
"10:46:36.0917400 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0918023 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000046","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","2512"
"10:46:36.0918261 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000069","","2512"
"10:46:36.0921781 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0922268 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","2512"
"10:46:36.0922494 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000060","","2512"
"10:46:36.0923202 AM","firefox.exe","7384","CreateFile","C:\","0.0000188","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0923620 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000188","Filter: Windows, 1: Windows","2512"
"10:46:36.0924009 AM","firefox.exe","7384","CloseFile","C:\","0.0000055","","2512"
"10:46:36.0925575 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000162","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0925959 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000149","Filter: System32, 1: System32","2512"
"10:46:36.0926317 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000060","","2512"
"10:46:36.0927861 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0928228 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\nlaapi.dll","0.0000180","Filter: nlaapi.dll, 1: nlaapi.dll","2512"
"10:46:36.0928617 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000059","","2512"
"10:46:36.0931911 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0932299 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000042","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.0932525 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000064","","2512"
"10:46:36.0935477 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000197","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0935913 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000196","Filter: msvcp140.dll, 1: msvcp140.dll","2512"
"10:46:36.0938106 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000085","","2512"
"10:46:36.0941058 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0941404 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000051","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.0941587 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000069","","2512"
"10:46:36.0943140 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000611","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0943955 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000192","Filter: msvcp140.dll, 1: msvcp140.dll","2512"
"10:46:36.0944318 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000068","","2512"
"10:46:36.0946076 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000175","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0946507 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000047","AllocationSize: 626,688, EndOfFile: 625,808, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.0946771 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0946963 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000030","AllocationSize: 626,688, EndOfFile: 625,808, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.0947279 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:36.0948103 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000081","","2512"
"10:46:36.0950006 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000174","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0950419 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000039","AllocationSize: 626,688, EndOfFile: 625,808, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.0950650 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0950829 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000030","AllocationSize: 626,688, EndOfFile: 625,808, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.0951140 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:36.0952015 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000030","AllocationSize: 626,688, EndOfFile: 625,808, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.0952216 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000072","","2512"
"10:46:36.0954238 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000179","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0954626 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000039","AllocationSize: 626,688, EndOfFile: 625,808, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.0954835 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000035","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0954998 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000029","AllocationSize: 626,688, EndOfFile: 625,808, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.0955305 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:36.0963714 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000103","","2512"
"10:46:36.0969427 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0969777 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.0969974 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000064","","2512"
"10:46:36.0973028 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0973353 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.0973528 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000064","","2512"
"10:46:36.0976612 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0976903 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.0977073 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000056","","2512"
"10:46:36.0978648 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0978993 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000171","Filter: msvcp140.dll, 1: msvcp140.dll","2512"
"10:46:36.0979339 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000055","","2512"
"10:46:36.0982518 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0983132 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000038","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.0983303 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000064","","2512"
"10:46:36.0983823 AM","firefox.exe","7384","CreateFile","C:\","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0984126 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000149","Filter: Windows, 1: Windows","2512"
"10:46:36.0984438 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:36.0985816 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0986131 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000137","Filter: System32, 1: System32","2512"
"10:46:36.0986430 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000056","","2512"
"10:46:36.0987812 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0988128 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\kernel32.dll","0.0000175","Filter: kernel32.dll, 1: kernel32.dll","2512"
"10:46:36.0988465 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000060","","2512"
"10:46:36.0991085 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0991516 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000043","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.0991691 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000060","","2512"
"10:46:36.0992194 AM","firefox.exe","7384","CreateFile","C:\","0.0000120","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0992476 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000136","Filter: Windows, 1: Windows","2512"
"10:46:36.0992766 AM","firefox.exe","7384","CloseFile","C:\","0.0000085","","2512"
"10:46:36.0994204 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0994537 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000145","Filter: System32, 1: System32","2512"
"10:46:36.0994840 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000059","","2512"
"10:46:36.0996278 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0996589 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\kernel32.dll","0.0000158","Filter: kernel32.dll, 1: kernel32.dll","2512"
"10:46:36.0996905 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000059","","2512"
"10:46:36.0998637 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000179","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.0999187 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel32.dll","0.0000052","AllocationSize: 720,896, EndOfFile: 719,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0999460 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel32.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.0999648 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel32.dll","0.0000030","AllocationSize: 720,896, EndOfFile: 719,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.0999964 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel32.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:36.1000753 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000073","","2512"
"10:46:36.1002545 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000171","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1003134 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel32.dll","0.0000043","AllocationSize: 720,896, EndOfFile: 719,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1003360 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel32.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1003544 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel32.dll","0.0000025","AllocationSize: 720,896, EndOfFile: 719,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1003855 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel32.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:36.1004713 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel32.dll","0.0000030","AllocationSize: 720,896, EndOfFile: 719,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1004905 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000072","","2512"
"10:46:36.1006650 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000171","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1007145 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel32.dll","0.0000038","AllocationSize: 720,896, EndOfFile: 719,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1007354 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel32.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1007529 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel32.dll","0.0000030","AllocationSize: 720,896, EndOfFile: 719,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1007836 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel32.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:36.1015674 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000089","","2512"
"10:46:36.1022159 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1022616 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000042","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.1022863 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000064","","2512"
"10:46:36.1025837 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1026272 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000043","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.1026451 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000060","","2512"
"10:46:36.1029468 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1029886 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000039","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.1030057 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000060","","2512"
"10:46:36.1030582 AM","firefox.exe","7384","CreateFile","C:\","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1030902 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000140","Filter: Windows, 1: Windows","2512"
"10:46:36.1031217 AM","firefox.exe","7384","CloseFile","C:\","0.0000064","","2512"
"10:46:36.1032655 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000196","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1033022 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000141","Filter: System32, 1: System32","2512"
"10:46:36.1033325 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000060","","2512"
"10:46:36.1034870 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1035190 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\kernel32.dll","0.0000166","Filter: kernel32.dll, 1: kernel32.dll","2512"
"10:46:36.1035514 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000055","","2512"
"10:46:36.1038641 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1039111 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000042","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","2512"
"10:46:36.1039290 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000064","","2512"
"10:46:36.1039810 AM","firefox.exe","7384","CreateFile","C:\","0.0000120","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1040101 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000183","Filter: Windows, 1: Windows","2512"
"10:46:36.1040608 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:36.1042021 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000157","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1042358 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000140","Filter: System32, 1: System32","2512"
"10:46:36.1042656 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000094","","2512"
"10:46:36.1044145 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1044461 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\webauthn.dll","0.0000162","Filter: webauthn.dll, 1: webauthn.dll","2512"
"10:46:36.1044777 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000060","","2512"
"10:46:36.1047584 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1048032 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000043","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","2512"
"10:46:36.1048207 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000060","","2512"
"10:46:36.1048723 AM","firefox.exe","7384","CreateFile","C:\","0.0000120","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1049005 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000137","Filter: Windows, 1: Windows","2512"
"10:46:36.1049295 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:36.1050682 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1050998 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000140","Filter: System32, 1: System32","2512"
"10:46:36.1051296 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000056","","2512"
"10:46:36.1052760 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1053093 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\webauthn.dll","0.0000170","Filter: webauthn.dll, 1: webauthn.dll","2512"
"10:46:36.1053417 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000060","","2512"
"10:46:36.1055298 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000180","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1055823 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\webauthn.dll","0.0000047","AllocationSize: 286,720, EndOfFile: 284,160, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1056071 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1056246 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\webauthn.dll","0.0000030","AllocationSize: 286,720, EndOfFile: 284,160, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1056544 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:36.1057065 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0492109","Offset: 8,388,608, Length: 1,019,904, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:36.1057304 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000068","","2512"
"10:46:36.1058917 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1059309 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\webauthn.dll","0.0000030","AllocationSize: 286,720, EndOfFile: 284,160, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1059463 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1059578 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\webauthn.dll","0.0000017","AllocationSize: 286,720, EndOfFile: 284,160, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1059766 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:36.1060175 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000056","","2512"
"10:46:36.1062168 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1062402 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:36.1062509 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000039","","2512"
"10:46:36.1064344 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1064557 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:36.1064660 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:36.1065790 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1066153 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\webauthn.dll","0.0000030","AllocationSize: 286,720, EndOfFile: 284,160, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1066298 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1066409 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\webauthn.dll","0.0000017","AllocationSize: 286,720, EndOfFile: 284,160, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1066588 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.1067330 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\webauthn.dll","0.0000022","AllocationSize: 286,720, EndOfFile: 284,160, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1067450 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1067548 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\webauthn.dll","0.0000013","AllocationSize: 286,720, EndOfFile: 284,160, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1067714 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.1068781 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\webauthn.dll","0.0000593","Offset: 0, Length: 284,160, Priority: Normal","2512"
"10:46:36.1090046 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1090311 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000128","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:36.1091450 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000188","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.1092606 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1092854 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000025","Information: DACL","2512"
"10:46:36.1092982 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000038","","2512"
"10:46:36.1094057 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.1095119 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000107","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1095341 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:36.1095452 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:36.1097897 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000141","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:36.1099143 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.1100171 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000115","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1100406 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000021","Information: DACL","2512"
"10:46:36.1100564 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000038","","2512"
"10:46:36.1101639 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.1103196 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000175","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1103550 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000525","Information: DACL","2512"
"10:46:36.1104340 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000072","","2512"
"10:46:36.1109831 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1110142 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:14:21 PM, ChangeTime: 3/20/2019 7:05:46 PM, AllocationSize: 405504, EndOfFile: 404923, FileAttributes: A","2512"
"10:46:36.1110287 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","","2512"
"10:46:36.1110735 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000047","","2512"
"10:46:36.1110893 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:36.1113987 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1114243 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000029","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:14:21 PM, ChangeTime: 3/20/2019 7:05:46 PM, AllocationSize: 405504, EndOfFile: 404923, FileAttributes: A","2512"
"10:46:36.1114362 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","","2512"
"10:46:36.1115569 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000133","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1115860 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","AllocationSize: 405,504, EndOfFile: 404,923, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1116269 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1116448 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000022","AllocationSize: 405,504, EndOfFile: 404,923, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1116645 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:36.1119627 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:36.1119781 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:14:21 PM, ChangeTime: 3/20/2019 7:05:46 PM, FileAttributes: A, AllocationSize: 405,504, EndOfFile: 404,923, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x30000000603f8, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:36.1121009 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000150","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1121329 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","AllocationSize: 405,504, EndOfFile: 404,923, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1121487 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1121603 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 405,504, EndOfFile: 404,923, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1121782 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.1122460 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000094","","2512"
"10:46:36.1123881 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000136","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1124184 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 405,504, EndOfFile: 404,923, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1124329 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1124436 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 405,504, EndOfFile: 404,923, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1124623 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.1124999 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","","2512"
"10:46:36.1127175 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1127520 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 405,504, EndOfFile: 404,923, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1127670 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1127776 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 405,504, EndOfFile: 404,923, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1127956 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:36.1130464 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000060","","2512"
"10:46:36.1186908 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000094","","2512"
"10:46:36.1187830 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","","2512"
"10:46:36.1194618 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1195015 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000034","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","2512"
"10:46:36.1195147 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000047","","2512"
"10:46:36.1197251 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1197554 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","2512"
"10:46:36.1197664 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000043","","2512"
"10:46:36.1199721 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1200003 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000029","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","2512"
"10:46:36.1200109 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000039","","2512"
"10:46:36.1200468 AM","firefox.exe","7384","CreateFile","C:\","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1200690 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000132","Filter: Windows, 1: Windows","2512"
"10:46:36.1200941 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.1201884 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1202102 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000106","Filter: System32, 1: System32","2512"
"10:46:36.1202354 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000042","","2512"
"10:46:36.1203318 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1203531 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\webauthn.dll","0.0000111","Filter: webauthn.dll, 1: webauthn.dll","2512"
"10:46:36.1203749 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.1205942 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1206253 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000030","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:36.1206364 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000043","","2512"
"10:46:36.1206706 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1206893 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000111","Filter: Windows, 1: Windows","2512"
"10:46:36.1207111 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.1208024 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1208233 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:36.1208434 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.1209351 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1209560 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\usp10.dll","0.0000111","Filter: usp10.dll, 1: usp10.dll","2512"
"10:46:36.1209769 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.1211971 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1212393 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000043","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:36.1212568 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000060","","2512"
"10:46:36.1213080 AM","firefox.exe","7384","CreateFile","C:\","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1213357 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000133","Filter: Windows, 1: Windows","2512"
"10:46:36.1213630 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:36.1214586 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1214795 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.1214996 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.1216045 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1216250 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\usp10.dll","0.0000205","Filter: usp10.dll, 1: usp10.dll","2512"
"10:46:36.1216566 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000043","","2512"
"10:46:36.1217812 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1218183 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\usp10.dll","0.0000030","AllocationSize: 81,920, EndOfFile: 79,360, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1218354 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1218477 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\usp10.dll","0.0000022","AllocationSize: 81,920, EndOfFile: 79,360, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1218678 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.1219139 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000051","","2512"
"10:46:36.1220380 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1220743 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\usp10.dll","0.0000030","AllocationSize: 81,920, EndOfFile: 79,360, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1220892 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1221003 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\usp10.dll","0.0000017","AllocationSize: 81,920, EndOfFile: 79,360, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1221191 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.1221592 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000051","","2512"
"10:46:36.1223593 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1223823 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:36.1223926 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000038","","2512"
"10:46:36.1225615 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1225825 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000025","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:36.1225927 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:36.1226938 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1227297 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\usp10.dll","0.0000025","AllocationSize: 81,920, EndOfFile: 79,360, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1227437 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1227548 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\usp10.dll","0.0000022","AllocationSize: 81,920, EndOfFile: 79,360, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1227719 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.1228453 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\usp10.dll","0.0000025","AllocationSize: 81,920, EndOfFile: 79,360, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1228577 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1228670 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\usp10.dll","0.0000017","AllocationSize: 81,920, EndOfFile: 79,360, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1228837 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.1229370 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\usp10.dll","0.0000393","Offset: 0, Length: 79,360, Priority: Normal","2512"
"10:46:36.1236781 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1237050 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000124","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:36.1238177 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000187","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.1239256 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000115","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1239503 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000022","Information: DACL","2512"
"10:46:36.1239627 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000039","","2512"
"10:46:36.1240852 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.1241816 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1242046 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000022","Information: DACL","2512"
"10:46:36.1242191 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000052","","2512"
"10:46:36.1244969 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000192","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:36.1246330 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000162","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.1247772 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000124","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1248045 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000030","Information: DACL","2512"
"10:46:36.1248178 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000042","","2512"
"10:46:36.1249261 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.1250234 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1250460 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000017","Information: DACL","2512"
"10:46:36.1250567 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:36.1254671 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1254940 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:20:29 PM, ChangeTime: 3/20/2019 7:06:10 PM, AllocationSize: 454656, EndOfFile: 452785, FileAttributes: A","2512"
"10:46:36.1255073 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","","2512"
"10:46:36.1255422 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000039","","2512"
"10:46:36.1255567 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000035","","2512"
"10:46:36.1257999 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1258230 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:20:29 PM, ChangeTime: 3/20/2019 7:06:10 PM, AllocationSize: 454656, EndOfFile: 452785, FileAttributes: A","2512"
"10:46:36.1258349 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","","2512"
"10:46:36.1259565 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1259843 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","AllocationSize: 454,656, EndOfFile: 452,785, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1260013 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1260129 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 454,656, EndOfFile: 452,785, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1260329 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.1265172 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:36.1265347 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:20:29 PM, ChangeTime: 3/20/2019 7:06:10 PM, FileAttributes: A, AllocationSize: 454,656, EndOfFile: 452,785, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x3000000060657, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:36.1266746 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000150","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1267066 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","AllocationSize: 454,656, EndOfFile: 452,785, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1267305 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1267459 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 454,656, EndOfFile: 452,785, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1267651 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.1268453 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000141","","2512"
"10:46:36.1272016 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000285","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1272634 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","AllocationSize: 454,656, EndOfFile: 452,785, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1272929 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1273133 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000035","AllocationSize: 454,656, EndOfFile: 452,785, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1273462 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:36.1274140 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000094","","2512"
"10:46:36.1280011 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000175","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1280408 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","AllocationSize: 454,656, EndOfFile: 452,785, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1280587 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1280715 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 454,656, EndOfFile: 452,785, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1280916 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.1284214 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000068","","2512"
"10:46:36.1347800 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000098","","2512"
"10:46:36.1348713 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000098","","2512"
"10:46:36.1353991 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1354392 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000039","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:36.1354537 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000043","","2512"
"10:46:36.1356517 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1356820 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000038","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:36.1356944 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000042","","2512"
"10:46:36.1359047 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1359333 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000026","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:36.1359444 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000038","","2512"
"10:46:36.1359807 AM","firefox.exe","7384","CreateFile","C:\","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1360033 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000128","Filter: Windows, 1: Windows","2512"
"10:46:36.1360280 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.1361223 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1361445 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:36.1361663 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.1362721 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1362934 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\usp10.dll","0.0000124","Filter: usp10.dll, 1: usp10.dll","2512"
"10:46:36.1363164 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:36.1365575 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1365882 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000030","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:36.1365993 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000043","","2512"
"10:46:36.1366339 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1366531 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:36.1366740 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.1367640 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1367849 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:36.1368054 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.1368976 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1369180 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\user32.dll","0.0000111","Filter: user32.dll, 1: user32.dll","2512"
"10:46:36.1369394 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.1371254 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1371536 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000030","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:36.1371642 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000043","","2512"
"10:46:36.1371992 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1372176 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:36.1372368 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.1373242 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1373443 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.1373639 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.1374548 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1374744 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\user32.dll","0.0000107","Filter: user32.dll, 1: user32.dll","2512"
"10:46:36.1374953 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.1376037 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1376391 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\user32.dll","0.0000034","AllocationSize: 1,642,496, EndOfFile: 1,639,560, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1376566 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\user32.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1376694 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\user32.dll","0.0000021","AllocationSize: 1,642,496, EndOfFile: 1,639,560, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1376907 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\user32.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:36.1377582 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000059","","2512"
"10:46:36.1378840 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1379220 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\user32.dll","0.0000026","AllocationSize: 1,642,496, EndOfFile: 1,639,560, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1379369 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\user32.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1379484 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\user32.dll","0.0000018","AllocationSize: 1,642,496, EndOfFile: 1,639,560, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1379668 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\user32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.1380321 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\user32.dll","0.0000017","AllocationSize: 1,642,496, EndOfFile: 1,639,560, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1380449 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000051","","2512"
"10:46:36.1381912 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1382275 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\user32.dll","0.0000021","AllocationSize: 1,642,496, EndOfFile: 1,639,560, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1382407 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\user32.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1382514 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\user32.dll","0.0000017","AllocationSize: 1,642,496, EndOfFile: 1,639,560, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1382693 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\user32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.1389055 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000059","","2512"
"10:46:36.1394699 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1395032 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000034","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:36.1395160 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000047","","2512"
"10:46:36.1397076 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1397494 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000030","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:36.1397609 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000047","","2512"
"10:46:36.1399653 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1399926 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000030","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:36.1400033 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000042","","2512"
"10:46:36.1400374 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1400583 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000107","Filter: Windows, 1: Windows","2512"
"10:46:36.1400805 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.1401940 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1402170 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:36.1402392 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.1403335 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1403540 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\user32.dll","0.0000111","Filter: user32.dll, 1: user32.dll","2512"
"10:46:36.1403758 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:36.1405788 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1406100 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:36.1406207 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000042","","2512"
"10:46:36.1406552 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1406740 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:36.1406940 AM","firefox.exe","7384","CloseFile","C:\","0.0000035","","2512"
"10:46:36.1407836 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1408037 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:36.1408242 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.1409151 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1409355 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\IPHLPAPI.DLL","0.0000111","Filter: IPHLPAPI.DLL, 1: IPHLPAPI.DLL","2512"
"10:46:36.1409573 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.1411348 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1411630 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000029","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:36.1411749 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000043","","2512"
"10:46:36.1412078 AM","firefox.exe","7384","CreateFile","C:\","0.0000076","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1412257 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:36.1412487 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.1413375 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1413575 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:36.1413763 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.1414667 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000099","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1414872 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\IPHLPAPI.DLL","0.0000107","Filter: IPHLPAPI.DLL, 1: IPHLPAPI.DLL","2512"
"10:46:36.1415077 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.1416135 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1416485 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000030","AllocationSize: 221,184, EndOfFile: 219,616, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1416647 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1416767 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000021","AllocationSize: 221,184, EndOfFile: 219,616, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1416963 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.1417402 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000052","","2512"
"10:46:36.1418610 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1418964 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000026","AllocationSize: 221,184, EndOfFile: 219,616, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1419105 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1419220 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000017","AllocationSize: 221,184, EndOfFile: 219,616, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1419408 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.1419915 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000026","AllocationSize: 221,184, EndOfFile: 219,616, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1420043 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000052","","2512"
"10:46:36.1421319 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1421678 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000025","AllocationSize: 221,184, EndOfFile: 219,616, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1421810 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1421917 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000017","AllocationSize: 221,184, EndOfFile: 219,616, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1422109 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.1425121 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000055","","2512"
"10:46:36.1428491 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1428811 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:36.1428931 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000043","","2512"
"10:46:36.1430911 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1431197 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000025","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:36.1431303 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000043","","2512"
"10:46:36.1433462 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000990","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1434687 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000038","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:36.1434840 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000060","","2512"
"10:46:36.1435339 AM","firefox.exe","7384","CreateFile","C:\","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1435625 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000158","Filter: Windows, 1: Windows","2512"
"10:46:36.1435950 AM","firefox.exe","7384","CloseFile","C:\","0.0000055","","2512"
"10:46:36.1437370 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1437703 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000150","Filter: System32, 1: System32","2512"
"10:46:36.1438015 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000068","","2512"
"10:46:36.1439461 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000171","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1439802 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\IPHLPAPI.DLL","0.0000244","Filter: IPHLPAPI.DLL, 1: IPHLPAPI.DLL","2512"
"10:46:36.1440203 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000064","","2512"
"10:46:36.1443770 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1444005 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:36.1444120 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000047","","2512"
"10:46:36.1445153 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1445375 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\xul.dll","0.0000111","Filter: xul.dll, 1: xul.dll","2512"
"10:46:36.1445605 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000038","","2512"
"10:46:36.1447269 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1447461 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:36.1447563 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000039","","2512"
"10:46:36.1448489 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1448694 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\xul.dll","0.0000090","Filter: xul.dll, 1: xul.dll","2512"
"10:46:36.1448895 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000034","","2512"
"10:46:36.1449983 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1450243 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000034","AllocationSize: 109,776,896, EndOfFile: 109,775,560, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.1450414 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1450533 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000021","AllocationSize: 109,776,896, EndOfFile: 109,775,560, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.1450729 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.1451941 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000056","","2512"
"10:46:36.1453131 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000116","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1453405 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000025","AllocationSize: 109,776,896, EndOfFile: 109,775,560, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.1453545 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1453656 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000022","AllocationSize: 109,776,896, EndOfFile: 109,775,560, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.1453844 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.1454992 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000021","AllocationSize: 109,776,896, EndOfFile: 109,775,560, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.1455120 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000051","","2512"
"10:46:36.1456306 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1456558 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000025","AllocationSize: 109,776,896, EndOfFile: 109,775,560, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.1456686 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1456792 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000017","AllocationSize: 109,776,896, EndOfFile: 109,775,560, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.1456967 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.1460214 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000051","","2512"
"10:46:36.1463499 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1463721 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:36.1463841 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000042","","2512"
"10:46:36.1465825 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1466025 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:36.1466132 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000038","","2512"
"10:46:36.1468282 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1468470 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:36.1468573 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000038","","2512"
"10:46:36.1469528 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1469750 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\xul.dll","0.0000103","Filter: xul.dll, 1: xul.dll","2512"
"10:46:36.1469976 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000039","","2512"
"10:46:36.1472071 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1472400 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000030","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","2512"
"10:46:36.1472506 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000043","","2512"
"10:46:36.1472856 AM","firefox.exe","7384","CreateFile","C:\","0.0000086","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1473053 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000102","Filter: Windows, 1: Windows","2512"
"10:46:36.1473262 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.1474170 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1474409 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000103","Filter: System32, 1: System32","2512"
"10:46:36.1474614 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.1475604 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1475809 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\rpcrt4.dll","0.0000115","Filter: rpcrt4.dll, 1: rpcrt4.dll","2512"
"10:46:36.1476026 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:36.1477925 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1478207 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000030","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","2512"
"10:46:36.1478313 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000043","","2512"
"10:46:36.1478646 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1478825 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:36.1479022 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.1479909 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1480105 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.1480297 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000035","","2512"
"10:46:36.1481198 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1481402 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\rpcrt4.dll","0.0000103","Filter: rpcrt4.dll, 1: rpcrt4.dll","2512"
"10:46:36.1481752 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:36.1482845 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1483190 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000030","AllocationSize: 1,191,936, EndOfFile: 1,188,000, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1483348 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rpcrt4.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1483463 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000022","AllocationSize: 1,191,936, EndOfFile: 1,188,000, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1483660 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rpcrt4.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:36.1484218 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000056","","2512"
"10:46:36.1485409 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1485759 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000030","AllocationSize: 1,191,936, EndOfFile: 1,188,000, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1485900 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rpcrt4.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1486010 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000022","AllocationSize: 1,191,936, EndOfFile: 1,188,000, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1486198 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rpcrt4.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.1486791 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000017","AllocationSize: 1,191,936, EndOfFile: 1,188,000, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1486915 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000051","","2512"
"10:46:36.1488186 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1488532 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000021","AllocationSize: 1,191,936, EndOfFile: 1,188,000, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1488660 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rpcrt4.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1488767 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000017","AllocationSize: 1,191,936, EndOfFile: 1,188,000, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1488942 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rpcrt4.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.1494015 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000051","","2512"
"10:46:36.1498512 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1498823 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000034","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","2512"
"10:46:36.1498943 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000047","","2512"
"10:46:36.1500897 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1501170 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000030","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","2512"
"10:46:36.1501281 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000038","","2512"
"10:46:36.1503342 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1503610 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000026","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","2512"
"10:46:36.1503713 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000043","","2512"
"10:46:36.1504054 AM","firefox.exe","7384","CreateFile","C:\","0.0000086","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1504255 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000111","Filter: Windows, 1: Windows","2512"
"10:46:36.1504477 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.1505462 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1505680 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000106","Filter: System32, 1: System32","2512"
"10:46:36.1505897 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.1506819 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1507024 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\rpcrt4.dll","0.0000119","Filter: rpcrt4.dll, 1: rpcrt4.dll","2512"
"10:46:36.1507246 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.1509341 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1509644 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000029","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.1509750 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000043","","2512"
"10:46:36.1510083 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1510266 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000090","Filter: Windows, 1: Windows","2512"
"10:46:36.1510454 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.1511354 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1511568 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.1511764 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.1512681 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1512882 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\ucrtbase.dll","0.0000111","Filter: ucrtbase.dll, 1: ucrtbase.dll","2512"
"10:46:36.1513091 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:36.1515020 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1515301 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000030","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.1515408 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000038","","2512"
"10:46:36.1515741 AM","firefox.exe","7384","CreateFile","C:\","0.0000076","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1515920 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:36.1516116 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.1516999 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1517196 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000093","Filter: System32, 1: System32","2512"
"10:46:36.1517392 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.1518292 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1518493 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\ucrtbase.dll","0.0000106","Filter: ucrtbase.dll, 1: ucrtbase.dll","2512"
"10:46:36.1518714 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:36.1520007 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1520357 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000030","AllocationSize: 1,015,808, EndOfFile: 1,014,344, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1520519 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ucrtbase.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1520639 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000017","AllocationSize: 1,015,808, EndOfFile: 1,014,344, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1520826 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ucrtbase.dll","0.0000018","SyncType: SyncTypeOther","2512"
"10:46:36.1521334 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000056","","2512"
"10:46:36.1522550 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1522904 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000030","AllocationSize: 1,015,808, EndOfFile: 1,014,344, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1523045 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ucrtbase.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1523152 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000017","AllocationSize: 1,015,808, EndOfFile: 1,014,344, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1523331 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ucrtbase.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.1523924 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000021","AllocationSize: 1,015,808, EndOfFile: 1,014,344, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1524048 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000051","","2512"
"10:46:36.1525221 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1525558 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000026","AllocationSize: 1,015,808, EndOfFile: 1,014,344, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1525691 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ucrtbase.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1525793 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000017","AllocationSize: 1,015,808, EndOfFile: 1,014,344, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1525968 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ucrtbase.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.1530601 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000056","","2512"
"10:46:36.1534804 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1535116 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000029","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.1535235 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000043","","2512"
"10:46:36.1537181 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1537462 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000026","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.1537569 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000043","","2512"
"10:46:36.1539519 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1539792 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000025","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.1539894 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000043","","2512"
"10:46:36.1540248 AM","firefox.exe","7384","CreateFile","C:\","0.0000086","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1540453 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000115","Filter: Windows, 1: Windows","2512"
"10:46:36.1540679 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.1541622 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1541836 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:36.1542036 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.1542962 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1543171 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\ucrtbase.dll","0.0000440","Filter: ucrtbase.dll, 1: ucrtbase.dll","2512"
"10:46:36.1543713 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000043","","2512"
"10:46:36.1553846 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1554422 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000051","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.1554627 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000073","","2512"
"10:46:36.1555263 AM","firefox.exe","7384","CreateFile","C:\","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1555574 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000184","Filter: Windows, 1: Windows","2512"
"10:46:36.1555941 AM","firefox.exe","7384","CloseFile","C:\","0.0000060","","2512"
"10:46:36.1557490 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1557827 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000154","Filter: System32, 1: System32","2512"
"10:46:36.1558147 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000056","","2512"
"10:46:36.1559572 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1559892 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\d3d11.dll","0.0000188","Filter: d3d11.dll, 1: d3d11.dll","2512"
"10:46:36.1560238 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000055","","2512"
"10:46:36.1562926 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1563361 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000043","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.1563536 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000068","","2512"
"10:46:36.1564048 AM","firefox.exe","7384","CreateFile","C:\","0.0000119","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1564338 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000145","Filter: Windows, 1: Windows","2512"
"10:46:36.1564645 AM","firefox.exe","7384","CloseFile","C:\","0.0000060","","2512"
"10:46:36.1566181 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000150","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1566505 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000141","Filter: System32, 1: System32","2512"
"10:46:36.1566804 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000056","","2512"
"10:46:36.1568212 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1568515 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\d3d11.dll","0.0000175","Filter: d3d11.dll, 1: d3d11.dll","2512"
"10:46:36.1568912 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000060","","2512"
"10:46:36.1570623 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000170","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1571126 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\d3d11.dll","0.0000047","AllocationSize: 3,182,592, EndOfFile: 3,179,760, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1571399 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1571591 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\d3d11.dll","0.0000034","AllocationSize: 3,182,592, EndOfFile: 3,179,760, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1571916 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:36.1573490 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000098","","2512"
"10:46:36.1575423 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000171","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1575956 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\d3d11.dll","0.0000039","AllocationSize: 3,182,592, EndOfFile: 3,179,760, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1576182 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1576370 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\d3d11.dll","0.0000026","AllocationSize: 3,182,592, EndOfFile: 3,179,760, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1576686 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:36.1578060 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\d3d11.dll","0.0000030","AllocationSize: 3,182,592, EndOfFile: 3,179,760, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1578256 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000077","","2512"
"10:46:36.1580086 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000175","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1580590 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\d3d11.dll","0.0000038","AllocationSize: 3,182,592, EndOfFile: 3,179,760, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1580799 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1580970 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\d3d11.dll","0.0000029","AllocationSize: 3,182,592, EndOfFile: 3,179,760, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1581277 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000145","SyncType: SyncTypeOther","2512"
"10:46:36.1592430 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000089","","2512"
"10:46:36.1600097 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1600600 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000090","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.1600792 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000052","","2512"
"10:46:36.1603498 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1603805 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000030","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.1603920 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000047","","2512"
"10:46:36.1606821 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1607146 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000029","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.1607265 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000047","","2512"
"10:46:36.1607675 AM","firefox.exe","7384","CreateFile","C:\","0.0000123","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1607982 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000141","Filter: Windows, 1: Windows","2512"
"10:46:36.1608255 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:36.1609245 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1609471 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:36.1609688 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.1610627 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1610840 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\d3d11.dll","0.0000128","Filter: d3d11.dll, 1: d3d11.dll","2512"
"10:46:36.1611071 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:36.1613409 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1613738 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000029","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.1613848 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000047","","2512"
"10:46:36.1614198 AM","firefox.exe","7384","CreateFile","C:\","0.0000086","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1614390 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:36.1614595 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.1615713 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1615931 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:36.1616161 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.1617087 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1617296 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dhcpcsvc.dll","0.0000119","Filter: dhcpcsvc.dll, 1: dhcpcsvc.dll","2512"
"10:46:36.1617518 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.1619212 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1619506 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.1619613 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000042","","2512"
"10:46:36.1619937 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1620120 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:36.1620312 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.1621230 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1621435 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000089","Filter: System32, 1: System32","2512"
"10:46:36.1621627 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.1622531 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1622732 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dhcpcsvc.dll","0.0000102","Filter: dhcpcsvc.dll, 1: dhcpcsvc.dll","2512"
"10:46:36.1622932 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:36.1624161 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1624596 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000034","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:36.1624775 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1624899 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000021","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:36.1625100 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.1625586 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000056","","2512"
"10:46:36.1626828 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1627203 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000026","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:36.1627353 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1627463 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000018","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:36.1627647 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.1628048 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000055","","2512"
"10:46:36.1630002 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1630233 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000025","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:36.1630339 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000039","","2512"
"10:46:36.1632148 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1632366 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000025","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:36.1632468 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000030","","2512"
"10:46:36.1633761 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1634145 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000026","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:36.1634299 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1634410 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000021","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:36.1634593 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.1635361 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000026","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:36.1635489 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1635587 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000013","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:36.1635758 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.1636150 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\dhcpcsvc.dll","0.0000248","Offset: 0, Length: 84,992, Priority: Normal","2512"
"10:46:36.1643668 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1643933 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000124","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:36.1645174 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000197","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.1646275 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1646523 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000030","Information: DACL","2512"
"10:46:36.1646655 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000043","","2512"
"10:46:36.1647734 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000133","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.1648780 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000102","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1649002 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000029","Information: DACL","2512"
"10:46:36.1649130 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:36.1651702 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000145","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:36.1652914 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.1653964 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000115","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1654211 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000026","Information: DACL","2512"
"10:46:36.1654335 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000038","","2512"
"10:46:36.1655508 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.1656490 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000106","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1656720 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000017","Information: DACL","2512"
"10:46:36.1656831 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:36.1660325 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0162091","Offset: 9,441,280, Length: 647,168, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:36.1661354 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0015~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1661627 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0015~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:19:44 PM, ChangeTime: 3/20/2019 7:09:04 PM, AllocationSize: 630784, EndOfFile: 629106, FileAttributes: A","2512"
"10:46:36.1661755 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0015~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","","2512"
"10:46:36.1663956 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1664204 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","CreationTime: 3/20/2019 7:27:24 PM, LastAccessTime: 3/20/2019 7:42:23 PM, LastWriteTime: 1/10/2019 4:08:41 AM, ChangeTime: 3/20/2019 7:42:23 PM, AllocationSize: 20480, EndOfFile: 20005, FileAttributes: A","2512"
"10:46:36.1664319 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000043","","2512"
"10:46:36.1666277 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1021_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1666495 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1021_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","CreationTime: 4/25/2019 5:39:19 PM, LastAccessTime: 4/25/2019 5:39:19 PM, LastWriteTime: 4/3/2019 9:55:20 AM, ChangeTime: 4/25/2019 8:12:11 PM, AllocationSize: 20480, EndOfFile: 20196, FileAttributes: A","2512"
"10:46:36.1666606 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1021_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000038","","2512"
"10:46:36.1666939 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:36.1667088 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:36.1668974 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1669221 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","CreationTime: 3/20/2019 7:27:24 PM, LastAccessTime: 3/20/2019 7:42:23 PM, LastWriteTime: 1/10/2019 4:08:41 AM, ChangeTime: 3/20/2019 7:42:23 PM, AllocationSize: 20480, EndOfFile: 20005, FileAttributes: A","2512"
"10:46:36.1669332 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000043","","2512"
"10:46:36.1670476 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1670745 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000029","AllocationSize: 20,480, EndOfFile: 20,005, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1670915 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1671056 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","AllocationSize: 20,480, EndOfFile: 20,005, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1671244 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.1671965 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:36.1672106 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000042","CreationTime: 3/20/2019 7:27:24 PM, LastAccessTime: 3/20/2019 7:42:23 PM, LastWriteTime: 1/10/2019 4:08:41 AM, ChangeTime: 3/20/2019 7:42:23 PM, FileAttributes: A, AllocationSize: 20,480, EndOfFile: 20,005, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x200000006f00e, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:36.1673228 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1673522 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","AllocationSize: 20,480, EndOfFile: 20,005, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1673667 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1673774 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","AllocationSize: 20,480, EndOfFile: 20,005, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1673962 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:36.1674499 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000060","","2512"
"10:46:36.1675839 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1676125 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000025","AllocationSize: 20,480, EndOfFile: 20,005, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1676266 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1676372 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","AllocationSize: 20,480, EndOfFile: 20,005, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1676547 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.1676871 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000052","","2512"
"10:46:36.1678198 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1678471 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","AllocationSize: 20,480, EndOfFile: 20,005, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1678599 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1678719 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","AllocationSize: 20,480, EndOfFile: 20,005, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1678894 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.1679427 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000069","","2512"
"10:46:36.1683088 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000073","","2512"
"10:46:36.1683545 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000038","","2512"
"10:46:36.1686160 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1686531 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000034","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.1686655 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000043","","2512"
"10:46:36.1688673 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1688968 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000029","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.1689078 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000039","","2512"
"10:46:36.1691301 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1691587 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.1691694 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000043","","2512"
"10:46:36.1692061 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1692270 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000124","Filter: Windows, 1: Windows","2512"
"10:46:36.1692513 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.1693448 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1693665 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:36.1693878 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.1694813 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1695022 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dhcpcsvc.dll","0.0000115","Filter: dhcpcsvc.dll, 1: dhcpcsvc.dll","2512"
"10:46:36.1695240 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:36.1697373 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1697599 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000030","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","2512"
"10:46:36.1697706 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000038","","2512"
"10:46:36.1698034 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1698213 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:36.1698414 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.1699301 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1699506 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.1699702 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000035","","2512"
"10:46:36.1700692 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1700897 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\msvcp140.dll","0.0000145","Filter: msvcp140.dll, 1: msvcp140.dll","2512"
"10:46:36.1701149 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.1702860 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1703060 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000026","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","2512"
"10:46:36.1703158 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000039","","2512"
"10:46:36.1703478 AM","firefox.exe","7384","CreateFile","C:\","0.0000073","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1703653 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000090","Filter: Windows, 1: Windows","2512"
"10:46:36.1703841 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.1704712 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1704912 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.1705108 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.1706009 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1706209 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\msvcp140.dll","0.0000111","Filter: msvcp140.dll, 1: msvcp140.dll","2512"
"10:46:36.1706418 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.1707634 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1707899 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp140.dll","0.0000030","AllocationSize: 679,936, EndOfFile: 675,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.1708052 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1708168 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp140.dll","0.0000021","AllocationSize: 679,936, EndOfFile: 675,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.1708360 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.1708846 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000055","","2512"
"10:46:36.1710041 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1710314 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp140.dll","0.0000025","AllocationSize: 679,936, EndOfFile: 675,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.1710454 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1710565 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp140.dll","0.0000017","AllocationSize: 679,936, EndOfFile: 675,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.1710753 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.1711432 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp140.dll","0.0000021","AllocationSize: 679,936, EndOfFile: 675,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.1711564 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000051","","2512"
"10:46:36.1712754 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1713014 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp140.dll","0.0000022","AllocationSize: 679,936, EndOfFile: 675,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.1713138 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1713245 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp140.dll","0.0000017","AllocationSize: 679,936, EndOfFile: 675,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.1713420 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.1717682 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000051","","2512"
"10:46:36.1720899 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1721138 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000030","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","2512"
"10:46:36.1721253 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000047","","2512"
"10:46:36.1723131 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1723336 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000025","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","2512"
"10:46:36.1723438 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000038","","2512"
"10:46:36.1725418 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1725618 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000026","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","2512"
"10:46:36.1725738 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000051","","2512"
"10:46:36.1726224 AM","firefox.exe","7384","CreateFile","C:\","0.0000120","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1726514 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000145","Filter: Windows, 1: Windows","2512"
"10:46:36.1726826 AM","firefox.exe","7384","CloseFile","C:\","0.0000055","","2512"
"10:46:36.1728204 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1728515 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000145","Filter: System32, 1: System32","2512"
"10:46:36.1728784 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000043","","2512"
"10:46:36.1729757 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1729974 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\msvcp140.dll","0.0000128","Filter: msvcp140.dll, 1: msvcp140.dll","2512"
"10:46:36.1730209 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:36.1732355 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1732688 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000030","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","2512"
"10:46:36.1732799 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000047","","2512"
"10:46:36.1733149 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1733337 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:36.1733541 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.1734493 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1734702 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:36.1734903 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.1735828 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1736029 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\version.dll","0.0000115","Filter: version.dll, 1: version.dll","2512"
"10:46:36.1736247 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:36.1737992 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1738277 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000030","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","2512"
"10:46:36.1738380 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000043","","2512"
"10:46:36.1738704 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1738888 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000089","Filter: Windows, 1: Windows","2512"
"10:46:36.1739075 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.1739950 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1740146 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.1740343 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.1741273 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1741473 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\version.dll","0.0000141","Filter: version.dll, 1: version.dll","2512"
"10:46:36.1741721 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.1742792 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1743133 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\version.dll","0.0000030","AllocationSize: 32,768, EndOfFile: 30,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1743291 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\version.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1743406 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\version.dll","0.0000021","AllocationSize: 32,768, EndOfFile: 30,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1743598 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\version.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.1744037 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000052","","2512"
"10:46:36.1745275 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1745633 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\version.dll","0.0000026","AllocationSize: 32,768, EndOfFile: 30,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1745774 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\version.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1745885 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\version.dll","0.0000017","AllocationSize: 32,768, EndOfFile: 30,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1746060 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\version.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.1746521 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\version.dll","0.0000017","AllocationSize: 32,768, EndOfFile: 30,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1746640 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000056","","2512"
"10:46:36.1747882 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000123","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1748223 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\version.dll","0.0000026","AllocationSize: 32,768, EndOfFile: 30,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1748351 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\version.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1748453 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\version.dll","0.0000018","AllocationSize: 32,768, EndOfFile: 30,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1748624 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\version.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.1751227 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000055","","2512"
"10:46:36.1754346 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1754661 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000030","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","2512"
"10:46:36.1754781 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000047","","2512"
"10:46:36.1756705 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1756987 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000030","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","2512"
"10:46:36.1757098 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000038","","2512"
"10:46:36.1759227 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1759508 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000030","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","2512"
"10:46:36.1759611 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000038","","2512"
"10:46:36.1759952 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1760148 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000107","Filter: Windows, 1: Windows","2512"
"10:46:36.1760370 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.1761347 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1761569 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000103","Filter: System32, 1: System32","2512"
"10:46:36.1761778 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.1762700 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1762913 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\version.dll","0.0000111","Filter: version.dll, 1: version.dll","2512"
"10:46:36.1763131 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.1765179 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1765482 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:36.1765593 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000051","","2512"
"10:46:36.1765938 AM","firefox.exe","7384","CreateFile","C:\","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1766139 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:36.1766429 AM","firefox.exe","7384","CloseFile","C:\","0.0000055","","2512"
"10:46:36.1767764 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1768072 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000136","Filter: System32, 1: System32","2512"
"10:46:36.1768375 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:36.1769740 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1769966 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\cryptsp.dll","0.0000154","Filter: cryptsp.dll, 1: cryptsp.dll","2512"
"10:46:36.1770226 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:36.1772249 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1772586 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:36.1772709 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000073","","2512"
"10:46:36.1773098 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1773294 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000111","Filter: Windows, 1: Windows","2512"
"10:46:36.1773512 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.1774420 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000116","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1774813 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000175","Filter: System32, 1: System32","2512"
"10:46:36.1775086 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.1776016 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1776225 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\cryptsp.dll","0.0000128","Filter: cryptsp.dll, 1: cryptsp.dll","2512"
"10:46:36.1776456 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:36.1777642 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000123","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1778013 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptsp.dll","0.0000030","AllocationSize: 81,920, EndOfFile: 79,696, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1778188 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1778312 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptsp.dll","0.0000017","AllocationSize: 81,920, EndOfFile: 79,696, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1778504 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:36.1779007 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000051","","2512"
"10:46:36.1780317 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1780684 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptsp.dll","0.0000252","AllocationSize: 81,920, EndOfFile: 79,696, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1781064 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1781179 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptsp.dll","0.0000017","AllocationSize: 81,920, EndOfFile: 79,696, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1781367 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:36.1781849 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptsp.dll","0.0000021","AllocationSize: 81,920, EndOfFile: 79,696, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1781977 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000051","","2512"
"10:46:36.1783325 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1783675 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptsp.dll","0.0000025","AllocationSize: 81,920, EndOfFile: 79,696, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1783803 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1783910 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptsp.dll","0.0000017","AllocationSize: 81,920, EndOfFile: 79,696, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1784084 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.1786790 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000055","","2512"
"10:46:36.1790169 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1790484 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:36.1790600 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000047","","2512"
"10:46:36.1792780 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1793070 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:36.1793177 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000042","","2512"
"10:46:36.1795963 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1796232 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:36.1796334 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000043","","2512"
"10:46:36.1796684 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1796893 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000115","Filter: Windows, 1: Windows","2512"
"10:46:36.1797119 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.1798079 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1798305 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000103","Filter: System32, 1: System32","2512"
"10:46:36.1798514 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.1799453 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1799662 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\cryptsp.dll","0.0000124","Filter: cryptsp.dll, 1: cryptsp.dll","2512"
"10:46:36.1799888 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:36.1802115 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1802427 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","2512"
"10:46:36.1802534 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000042","","2512"
"10:46:36.1802875 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1803063 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000093","Filter: Windows, 1: Windows","2512"
"10:46:36.1803259 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.1804146 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1804351 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.1804547 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000035","","2512"
"10:46:36.1805452 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1805657 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dbghelp.dll","0.0000162","Filter: dbghelp.dll, 1: dbghelp.dll","2512"
"10:46:36.1805921 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:36.1807662 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1807939 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","2512"
"10:46:36.1808042 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000042","","2512"
"10:46:36.1808366 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1808545 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000090","Filter: Windows, 1: Windows","2512"
"10:46:36.1808750 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.1809795 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1810103 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000128","Filter: System32, 1: System32","2512"
"10:46:36.1810388 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000056","","2512"
"10:46:36.1811856 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1812168 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dbghelp.dll","0.0000162","Filter: dbghelp.dll, 1: dbghelp.dll","2512"
"10:46:36.1812445 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000043","","2512"
"10:46:36.1813593 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000123","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1813955 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dbghelp.dll","0.0000030","AllocationSize: 1,728,512, EndOfFile: 1,728,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1814113 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1814237 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dbghelp.dll","0.0000017","AllocationSize: 1,728,512, EndOfFile: 1,728,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1814425 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.1815039 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000056","","2512"
"10:46:36.1816311 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1816669 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dbghelp.dll","0.0000030","AllocationSize: 1,728,512, EndOfFile: 1,728,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1816814 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1816921 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dbghelp.dll","0.0000017","AllocationSize: 1,728,512, EndOfFile: 1,728,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1817100 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.1817663 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000047","","2512"
"10:46:36.1819801 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1820040 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000025","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:36.1820146 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000039","","2512"
"10:46:36.1821926 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1822135 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000025","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:36.1822237 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000030","","2512"
"10:46:36.1823265 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1823624 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dbghelp.dll","0.0000025","AllocationSize: 1,728,512, EndOfFile: 1,728,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1823773 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1823897 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dbghelp.dll","0.0000017","AllocationSize: 1,728,512, EndOfFile: 1,728,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1824084 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.1825032 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dbghelp.dll","0.0000021","AllocationSize: 1,728,512, EndOfFile: 1,728,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1825155 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1825254 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dbghelp.dll","0.0000012","AllocationSize: 1,728,512, EndOfFile: 1,728,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.1825420 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.1826875 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\dbghelp.dll","0.0001527","Offset: 0, Length: 524,288, Priority: Normal","2512"
"10:46:36.1879312 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0156835","Offset: 10,088,448, Length: 397,312, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:36.1948198 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1948548 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000149","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:36.1949832 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000213","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.1951180 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000120","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1951457 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000030","Information: DACL","2512"
"10:46:36.1951594 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000043","","2512"
"10:46:36.1952780 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.1953766 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1954000 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000017","Information: DACL","2512"
"10:46:36.1954116 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:36.1956471 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000153","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:36.1957738 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000175","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.1958796 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000115","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1959039 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000022","Information: DACL","2512"
"10:46:36.1959159 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000042","","2512"
"10:46:36.1960196 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.1961211 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1961441 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000022","Information: DACL","2512"
"10:46:36.1961552 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000039","","2512"
"10:46:36.1966015 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1966301 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:27:21 PM, ChangeTime: 3/20/2019 7:07:51 PM, AllocationSize: 323584, EndOfFile: 319494, FileAttributes: A","2512"
"10:46:36.1966442 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","","2512"
"10:46:36.1968533 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0015~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1968776 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0015~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:19:44 PM, ChangeTime: 3/20/2019 7:09:04 PM, AllocationSize: 630784, EndOfFile: 629106, FileAttributes: A","2512"
"10:46:36.1968900 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0015~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","","2512"
"10:46:36.1969237 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000042","","2512"
"10:46:36.1969386 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:36.1971511 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1971733 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:27:21 PM, ChangeTime: 3/20/2019 7:07:51 PM, AllocationSize: 323584, EndOfFile: 319494, FileAttributes: A","2512"
"10:46:36.1971852 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","","2512"
"10:46:36.1973038 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1973316 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000029","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1973482 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1973601 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000022","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1973785 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","SyncType: SyncTypeOther","2512"
"10:46:36.1978235 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:36.1978448 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:27:21 PM, ChangeTime: 3/20/2019 7:07:51 PM, FileAttributes: A, AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x3000000061084, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:36.1979775 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000150","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1980091 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1980287 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1980411 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1980603 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.1981222 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000059","","2512"
"10:46:36.1982753 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1983061 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1983206 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1983312 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000022","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1983496 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.1983867 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000068","","2512"
"10:46:36.1985715 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000136","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.1986005 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1986214 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.1986320 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.1986500 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:36.1988851 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","","2512"
"10:46:36.2033540 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000115","","2512"
"10:46:36.2034329 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","","2512"
"10:46:36.2038911 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000163","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2039304 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","2512"
"10:46:36.2039436 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000043","","2512"
"10:46:36.2041638 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2041941 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","2512"
"10:46:36.2042056 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000043","","2512"
"10:46:36.2044117 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2044398 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","2512"
"10:46:36.2044505 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000038","","2512"
"10:46:36.2044872 AM","firefox.exe","7384","CreateFile","C:\","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2045102 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000137","Filter: Windows, 1: Windows","2512"
"10:46:36.2045358 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.2046301 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2046523 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:36.2046737 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.2047773 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2047982 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dbghelp.dll","0.0000124","Filter: dbghelp.dll, 1: dbghelp.dll","2512"
"10:46:36.2048221 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.2050495 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2050726 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000030","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","2512"
"10:46:36.2050833 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000038","","2512"
"10:46:36.2051170 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2051357 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:36.2051558 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.2052458 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2052659 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.2052855 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.2054596 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2054792 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000030","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","2512"
"10:46:36.2054894 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000039","","2512"
"10:46:36.2055210 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2055385 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:36.2055586 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.2056456 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2056661 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.2056857 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.2058060 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2058342 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000030","AllocationSize: 4,333,568, EndOfFile: 4,332,032, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2058513 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2058632 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000017","AllocationSize: 4,333,568, EndOfFile: 4,332,032, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2058824 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.2060010 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000068","","2512"
"10:46:36.2061384 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2061687 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000030","AllocationSize: 4,333,568, EndOfFile: 4,332,032, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2061841 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2062028 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000039","AllocationSize: 4,333,568, EndOfFile: 4,332,032, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2062340 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:36.2063193 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000056","","2512"
"10:46:36.2065305 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2065535 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000030","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:36.2065646 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000052","","2512"
"10:46:36.2067537 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2067754 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:36.2067857 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:36.2068923 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2069209 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000026","AllocationSize: 4,333,568, EndOfFile: 4,332,032, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2069350 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2069457 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000017","AllocationSize: 4,333,568, EndOfFile: 4,332,032, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2069631 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.2070975 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000026","AllocationSize: 4,333,568, EndOfFile: 4,332,032, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2071108 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2071210 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000017","AllocationSize: 4,333,568, EndOfFile: 4,332,032, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2071381 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.2072418 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0207070","Offset: 10,485,760, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:36.2073429 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\D3DCompiler_47.dll","0.0001301","Offset: 0, Length: 524,288, Priority: Normal","2512"
"10:46:36.2372228 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0141769","Offset: 11,534,336, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:36.2374967 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000180","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2375334 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000150","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:36.2376678 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000197","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.2378125 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000175","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2378513 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000038","Information: DACL","2512"
"10:46:36.2378667 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000051","","2512"
"10:46:36.2380087 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000150","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.2381171 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000115","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2381419 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000029","Information: DACL","2512"
"10:46:36.2381547 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:36.2384793 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000158","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:36.2386082 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.2387157 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000120","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2387409 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000021","Information: DACL","2512"
"10:46:36.2387528 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000039","","2512"
"10:46:36.2388680 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000133","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.2389709 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000123","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2389952 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:36.2390067 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:36.2394355 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2394632 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, AllocationSize: 294912, EndOfFile: 291839, FileAttributes: A","2512"
"10:46:36.2394769 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","","2512"
"10:46:36.2396881 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2397120 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:20:29 PM, ChangeTime: 3/20/2019 7:06:10 PM, AllocationSize: 454656, EndOfFile: 452785, FileAttributes: A","2512"
"10:46:36.2397235 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","","2512"
"10:46:36.2397572 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000043","","2512"
"10:46:36.2397721 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000035","","2512"
"10:46:36.2399833 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2400055 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, AllocationSize: 294912, EndOfFile: 291839, FileAttributes: A","2512"
"10:46:36.2400209 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","","2512"
"10:46:36.2401451 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2401736 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2401907 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2402031 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2402214 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.2405244 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:36.2405410 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, FileAttributes: A, AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x300000006193f, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:36.2406652 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000149","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2406959 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2407117 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2407228 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2407415 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.2408047 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000060","","2512"
"10:46:36.2409557 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000167","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2409903 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2410065 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2410180 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000022","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2410359 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.2410790 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000077","","2512"
"10:46:36.2413999 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2414323 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2414498 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2414609 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2414797 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.2416900 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000060","","2512"
"10:46:36.2459315 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000167","","2512"
"10:46:36.2460386 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000056","","2512"
"10:46:36.2465062 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2465348 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000039","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","2512"
"10:46:36.2465481 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000046","","2512"
"10:46:36.2467695 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2467917 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000025","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","2512"
"10:46:36.2468028 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000038","","2512"
"10:46:36.2470323 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2470532 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000026","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","2512"
"10:46:36.2470635 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000042","","2512"
"10:46:36.2471002 AM","firefox.exe","7384","CreateFile","C:\","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2471232 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000132","Filter: Windows, 1: Windows","2512"
"10:46:36.2471479 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:36.2472422 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2472649 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000110","Filter: System32, 1: System32","2512"
"10:46:36.2472870 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.2475046 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2475379 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000034","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:36.2475490 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000043","","2512"
"10:46:36.2475836 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2476023 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000099","Filter: Windows, 1: Windows","2512"
"10:46:36.2476224 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.2477129 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2477342 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:36.2477542 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.2478473 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2478686 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wshbth.dll","0.0000111","Filter: wshbth.dll, 1: wshbth.dll","2512"
"10:46:36.2478942 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000055","","2512"
"10:46:36.2480772 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2481054 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000030","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:36.2481161 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000042","","2512"
"10:46:36.2481493 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2481677 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:36.2481873 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.2482773 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2482978 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.2483174 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000035","","2512"
"10:46:36.2484079 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2484279 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wshbth.dll","0.0000146","Filter: wshbth.dll, 1: wshbth.dll","2512"
"10:46:36.2484531 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:36.2485636 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2486003 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wshbth.dll","0.0000030","AllocationSize: 65,536, EndOfFile: 63,488, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2486178 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2486298 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wshbth.dll","0.0000025","AllocationSize: 65,536, EndOfFile: 63,488, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2486494 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.2486933 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000056","","2512"
"10:46:36.2488162 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2488525 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wshbth.dll","0.0000030","AllocationSize: 65,536, EndOfFile: 63,488, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2488670 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2488777 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wshbth.dll","0.0000021","AllocationSize: 65,536, EndOfFile: 63,488, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2489007 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.2489395 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000051","","2512"
"10:46:36.2491366 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2491597 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000025","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:36.2491703 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000039","","2512"
"10:46:36.2493440 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2493743 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000038","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:36.2493909 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000052","","2512"
"10:46:36.2495509 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000158","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2496013 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wshbth.dll","0.0000038","AllocationSize: 65,536, EndOfFile: 63,488, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2496226 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2496363 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wshbth.dll","0.0000017","AllocationSize: 65,536, EndOfFile: 63,488, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2496542 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.2497289 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wshbth.dll","0.0000021","AllocationSize: 65,536, EndOfFile: 63,488, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2497408 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2497502 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wshbth.dll","0.0000017","AllocationSize: 65,536, EndOfFile: 63,488, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2497668 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.2498202 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\wshbth.dll","0.0000204","Offset: 0, Length: 63,488, Priority: Normal","2512"
"10:46:36.2504290 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2504555 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000123","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:36.2505732 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000188","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.2506829 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000119","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2507123 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000060","Information: DACL","2512"
"10:46:36.2507281 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000043","","2512"
"10:46:36.2508331 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000140","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.2509350 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000107","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2509581 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000017","Information: DACL","2512"
"10:46:36.2509687 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000039","","2512"
"10:46:36.2512218 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000153","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:36.2513532 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.2514765 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000124","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2515021 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000021","Information: DACL","2512"
"10:46:36.2515153 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000034","","2512"
"10:46:36.2516258 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.2517325 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2517560 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000017","Information: DACL","2512"
"10:46:36.2517670 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000035","","2512"
"10:46:36.2522061 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0011~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2522342 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0011~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:16:17 PM, ChangeTime: 3/20/2019 7:05:53 PM, AllocationSize: 303104, EndOfFile: 302781, FileAttributes: A","2512"
"10:46:36.2522479 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0011~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","","2512"
"10:46:36.2524574 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2524817 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","CreationTime: 3/20/2019 7:27:26 PM, LastAccessTime: 3/20/2019 7:42:31 PM, LastWriteTime: 1/10/2019 4:09:14 AM, ChangeTime: 3/20/2019 7:42:31 PM, AllocationSize: 40960, EndOfFile: 39200, FileAttributes: A","2512"
"10:46:36.2524937 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000042","","2512"
"10:46:36.2526916 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1456_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2527138 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1456_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","CreationTime: 4/25/2019 5:40:33 PM, LastAccessTime: 4/25/2019 5:40:33 PM, LastWriteTime: 4/3/2019 9:55:09 AM, ChangeTime: 4/25/2019 8:12:16 PM, AllocationSize: 40960, EndOfFile: 40463, FileAttributes: A","2512"
"10:46:36.2527249 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1456_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000043","","2512"
"10:46:36.2527667 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000060","","2512"
"10:46:36.2527881 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000051","","2512"
"10:46:36.2530240 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2530475 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","CreationTime: 3/20/2019 7:27:26 PM, LastAccessTime: 3/20/2019 7:42:31 PM, LastWriteTime: 1/10/2019 4:09:14 AM, ChangeTime: 3/20/2019 7:42:31 PM, AllocationSize: 40960, EndOfFile: 39200, FileAttributes: A","2512"
"10:46:36.2530594 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000043","","2512"
"10:46:36.2532237 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2532518 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000035","AllocationSize: 40,960, EndOfFile: 39,200, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2532685 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2532804 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000022","AllocationSize: 40,960, EndOfFile: 39,200, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2532988 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.2533926 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:36.2534067 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000043","CreationTime: 3/20/2019 7:27:26 PM, LastAccessTime: 3/20/2019 7:42:31 PM, LastWriteTime: 1/10/2019 4:09:14 AM, ChangeTime: 3/20/2019 7:42:31 PM, FileAttributes: A, AllocationSize: 40,960, EndOfFile: 39,200, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x200000006f356, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:36.2535249 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2535544 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000025","AllocationSize: 40,960, EndOfFile: 39,200, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2535684 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2535791 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","AllocationSize: 40,960, EndOfFile: 39,200, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2535962 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.2536525 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000064","","2512"
"10:46:36.2537907 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2538206 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","AllocationSize: 40,960, EndOfFile: 39,200, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2538351 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2538458 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","AllocationSize: 40,960, EndOfFile: 39,200, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2538633 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:36.2539021 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000051","","2512"
"10:46:36.2540715 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000209","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2541240 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000038","AllocationSize: 40,960, EndOfFile: 39,200, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2541410 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2541517 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","AllocationSize: 40,960, EndOfFile: 39,200, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2541700 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.2542357 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000060","","2512"
"10:46:36.2547273 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000064","","2512"
"10:46:36.2547729 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000039","","2512"
"10:46:36.2550733 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2551091 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000034","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:36.2551215 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000047","","2512"
"10:46:36.2553225 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2553510 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000030","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:36.2553621 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000043","","2512"
"10:46:36.2555729 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2556006 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:36.2556113 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000039","","2512"
"10:46:36.2556540 AM","firefox.exe","7384","CreateFile","C:\","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2556783 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000128","Filter: Windows, 1: Windows","2512"
"10:46:36.2557026 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.2557952 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2558174 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:36.2558392 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.2559377 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2559590 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wshbth.dll","0.0000116","Filter: wshbth.dll, 1: wshbth.dll","2512"
"10:46:36.2559812 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:36.2561890 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2562185 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000029","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","2512"
"10:46:36.2562291 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000043","","2512"
"10:46:36.2562624 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2562808 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000093","Filter: Windows, 1: Windows","2512"
"10:46:36.2563004 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.2563900 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2564105 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000093","Filter: System32, 1: System32","2512"
"10:46:36.2564297 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.2565205 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2565406 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\ole32.dll","0.0000111","Filter: ole32.dll, 1: ole32.dll","2512"
"10:46:36.2565619 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.2567288 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2567561 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000025","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","2512"
"10:46:36.2567663 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000038","","2512"
"10:46:36.2567987 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2568171 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000089","Filter: Windows, 1: Windows","2512"
"10:46:36.2568359 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.2569293 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2569498 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:36.2569698 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.2570607 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2570808 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\ole32.dll","0.0000106","Filter: ole32.dll, 1: ole32.dll","2512"
"10:46:36.2571017 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.2572113 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2572463 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ole32.dll","0.0000026","AllocationSize: 1,380,352, EndOfFile: 1,376,672, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2572621 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ole32.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2572740 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ole32.dll","0.0000022","AllocationSize: 1,380,352, EndOfFile: 1,376,672, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2572962 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ole32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.2573585 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000056","","2512"
"10:46:36.2574810 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2575172 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ole32.dll","0.0000026","AllocationSize: 1,380,352, EndOfFile: 1,376,672, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2575317 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ole32.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2575428 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ole32.dll","0.0000022","AllocationSize: 1,380,352, EndOfFile: 1,376,672, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2575612 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ole32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.2576354 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ole32.dll","0.0000022","AllocationSize: 1,380,352, EndOfFile: 1,376,672, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2576478 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000055","","2512"
"10:46:36.2577758 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2578108 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ole32.dll","0.0000025","AllocationSize: 1,380,352, EndOfFile: 1,376,672, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2578236 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ole32.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2578338 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ole32.dll","0.0000022","AllocationSize: 1,380,352, EndOfFile: 1,376,672, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2578517 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ole32.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.2584610 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000064","","2512"
"10:46:36.2589713 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2590046 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000030","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","2512"
"10:46:36.2590165 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000052","","2512"
"10:46:36.2592175 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2592623 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000038","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","2512"
"10:46:36.2592772 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000052","","2512"
"10:46:36.2594919 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2595192 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000029","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","2512"
"10:46:36.2595298 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000039","","2512"
"10:46:36.2595648 AM","firefox.exe","7384","CreateFile","C:\","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2595879 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000153","Filter: Windows, 1: Windows","2512"
"10:46:36.2596156 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.2597090 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2597312 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:36.2597534 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.2598460 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2598741 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\ole32.dll","0.0000858","Filter: ole32.dll, 1: ole32.dll","2512"
"10:46:36.2600026 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000175","","2512"
"10:46:36.2604036 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2604352 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000034","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.2604484 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000052","","2512"
"10:46:36.2604920 AM","firefox.exe","7384","CreateFile","C:\","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2605146 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000128","Filter: Windows, 1: Windows","2512"
"10:46:36.2605397 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.2606464 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2606699 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:36.2606921 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.2608725 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2608935 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000025","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.2609037 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000038","","2512"
"10:46:36.2609378 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2609570 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000103","Filter: Windows, 1: Windows","2512"
"10:46:36.2609779 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.2610227 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0301057","Offset: 12,582,912, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:36.2610688 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2610897 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:36.2611098 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.2612459 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2612762 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000034","AllocationSize: 643,072, EndOfFile: 641,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2612945 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp_win.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2613069 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000021","AllocationSize: 643,072, EndOfFile: 641,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2613291 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp_win.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.2613986 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000073","","2512"
"10:46:36.2615416 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000123","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2615727 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000043","AllocationSize: 643,072, EndOfFile: 641,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2615915 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp_win.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2616026 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000025","AllocationSize: 643,072, EndOfFile: 641,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2616218 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp_win.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.2616772 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000018","AllocationSize: 643,072, EndOfFile: 641,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2616896 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000051","","2512"
"10:46:36.2618116 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2618368 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000026","AllocationSize: 643,072, EndOfFile: 641,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2618500 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp_win.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2618607 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000017","AllocationSize: 643,072, EndOfFile: 641,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2618803 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp_win.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.2622652 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000051","","2512"
"10:46:36.2626991 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2627222 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000029","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.2627337 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000047","","2512"
"10:46:36.2629308 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2629513 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000025","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.2629619 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000039","","2512"
"10:46:36.2631642 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2631830 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000025","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.2631928 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000038","","2512"
"10:46:36.2632303 AM","firefox.exe","7384","CreateFile","C:\","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2632534 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000128","Filter: Windows, 1: Windows","2512"
"10:46:36.2632777 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.2633698 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2633916 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:36.2634129 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.2636241 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2636459 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.2636557 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000043","","2512"
"10:46:36.2636894 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2637082 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:36.2637282 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.2638225 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2638430 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:36.2638648 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.2640632 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2640888 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.2640990 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000038","","2512"
"10:46:36.2641310 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2641494 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:36.2641694 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.2642582 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2642782 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.2642983 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.2644079 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2644339 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000030","AllocationSize: 495,616, EndOfFile: 494,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2644497 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcryptprimitives.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2644621 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000017","AllocationSize: 495,616, EndOfFile: 494,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2644809 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcryptprimitives.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.2645265 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000056","","2512"
"10:46:36.2646524 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2646797 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000026","AllocationSize: 495,616, EndOfFile: 494,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2646938 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcryptprimitives.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2647049 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000017","AllocationSize: 495,616, EndOfFile: 494,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2647232 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcryptprimitives.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.2647740 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000021","AllocationSize: 495,616, EndOfFile: 494,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2647864 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000051","","2512"
"10:46:36.2649084 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2649340 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000021","AllocationSize: 495,616, EndOfFile: 494,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2649468 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcryptprimitives.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2649570 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000017","AllocationSize: 495,616, EndOfFile: 494,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2649745 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcryptprimitives.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.2653308 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000051","","2512"
"10:46:36.2657075 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2657323 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.2657434 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000042","","2512"
"10:46:36.2659311 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2659512 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.2659618 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000043","","2512"
"10:46:36.2661654 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2661841 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.2661939 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000039","","2512"
"10:46:36.2662285 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2662486 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000110","Filter: Windows, 1: Windows","2512"
"10:46:36.2662712 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.2663663 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2663885 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:36.2664094 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.2666283 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2666500 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.2666607 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000039","","2512"
"10:46:36.2666936 AM","firefox.exe","7384","CreateFile","C:\","0.0000076","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2667123 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000099","Filter: Windows, 1: Windows","2512"
"10:46:36.2667328 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.2668224 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2668429 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:36.2668651 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.2670422 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2670618 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000025","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.2670720 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000039","","2512"
"10:46:36.2671040 AM","firefox.exe","7384","CreateFile","C:\","0.0000073","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2671215 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:36.2671416 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.2672290 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2672491 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:36.2672687 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.2673775 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2674031 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000030","AllocationSize: 61,440, EndOfFile: 57,960, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2674185 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel.appcore.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2674304 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000022","AllocationSize: 61,440, EndOfFile: 57,960, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2674496 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel.appcore.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.2674914 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000052","","2512"
"10:46:36.2676088 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2676361 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000025","AllocationSize: 61,440, EndOfFile: 57,960, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2676502 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel.appcore.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2676608 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000017","AllocationSize: 61,440, EndOfFile: 57,960, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2676787 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel.appcore.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.2677248 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000017","AllocationSize: 61,440, EndOfFile: 57,960, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2677888 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000069","","2512"
"10:46:36.2680713 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000239","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2681289 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000051","AllocationSize: 61,440, EndOfFile: 57,960, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2681562 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel.appcore.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2681762 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000026","AllocationSize: 61,440, EndOfFile: 57,960, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2682057 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel.appcore.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.2684924 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000073","","2512"
"10:46:36.2688534 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2688781 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.2688901 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000046","","2512"
"10:46:36.2691047 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2691260 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.2691367 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000042","","2512"
"10:46:36.2693415 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2693611 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.2693713 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000039","","2512"
"10:46:36.2694072 AM","firefox.exe","7384","CreateFile","C:\","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2694281 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000132","Filter: Windows, 1: Windows","2512"
"10:46:36.2694533 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.2695458 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2695680 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:36.2695898 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.2698053 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2698407 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000025","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.2698509 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000038","","2512"
"10:46:36.2698838 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2699025 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:36.2699226 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.2700113 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2700318 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.2700549 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.2702302 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2702494 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000030","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.2702592 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000043","","2512"
"10:46:36.2702921 AM","firefox.exe","7384","CreateFile","C:\","0.0000072","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2703096 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000089","Filter: Windows, 1: Windows","2512"
"10:46:36.2703283 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.2704162 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2704363 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.2704555 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.2705639 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2705895 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32full.dll","0.0000030","AllocationSize: 1,638,400, EndOfFile: 1,634,912, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2706053 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32full.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2706172 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32full.dll","0.0000021","AllocationSize: 1,638,400, EndOfFile: 1,634,912, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2706364 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32full.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.2707085 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000051","","2512"
"10:46:36.2708408 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000158","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2708736 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32full.dll","0.0000026","AllocationSize: 1,638,400, EndOfFile: 1,634,912, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2708881 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32full.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2708992 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32full.dll","0.0000022","AllocationSize: 1,638,400, EndOfFile: 1,634,912, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2709176 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32full.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.2709829 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32full.dll","0.0000021","AllocationSize: 1,638,400, EndOfFile: 1,634,912, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2709952 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000056","","2512"
"10:46:36.2711185 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2711437 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32full.dll","0.0000026","AllocationSize: 1,638,400, EndOfFile: 1,634,912, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2711561 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32full.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2711663 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32full.dll","0.0000017","AllocationSize: 1,638,400, EndOfFile: 1,634,912, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2711838 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32full.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.2717875 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000052","","2512"
"10:46:36.2722825 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2723055 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000030","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.2723175 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000047","","2512"
"10:46:36.2725052 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2725253 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000025","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.2725359 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000039","","2512"
"10:46:36.2727301 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2727493 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000025","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.2727591 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000038","","2512"
"10:46:36.2727928 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2728128 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000154","Filter: Windows, 1: Windows","2512"
"10:46:36.2728397 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.2729332 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2729541 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:36.2729750 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.2731849 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2732190 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2512"
"10:46:36.2732301 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000043","","2512"
"10:46:36.2732685 AM","firefox.exe","7384","CreateFile","C:\","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2732967 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000136","Filter: Windows, 1: Windows","2512"
"10:46:36.2733261 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:36.2734635 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2734938 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000141","Filter: System32, 1: System32","2512"
"10:46:36.2735237 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:36.2736333 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2736551 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\mswsock.dll","0.0000128","Filter: mswsock.dll, 1: mswsock.dll","2512"
"10:46:36.2736824 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000042","","2512"
"10:46:36.2738607 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2738906 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2512"
"10:46:36.2739013 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000047","","2512"
"10:46:36.2739354 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2739550 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:36.2739755 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.2740715 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2740920 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.2741112 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.2742080 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2742289 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\mswsock.dll","0.0000111","Filter: mswsock.dll, 1: mswsock.dll","2512"
"10:46:36.2742503 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.2743599 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2743958 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mswsock.dll","0.0000030","AllocationSize: 405,504, EndOfFile: 401,968, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2744120 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2744244 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mswsock.dll","0.0000017","AllocationSize: 405,504, EndOfFile: 401,968, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2744431 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.2744905 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000055","","2512"
"10:46:36.2746117 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2746475 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mswsock.dll","0.0000026","AllocationSize: 405,504, EndOfFile: 401,968, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2746616 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2746731 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mswsock.dll","0.0000017","AllocationSize: 405,504, EndOfFile: 401,968, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2746910 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.2747422 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mswsock.dll","0.0000017","AllocationSize: 405,504, EndOfFile: 401,968, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2747542 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000051","","2512"
"10:46:36.2748924 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2749265 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mswsock.dll","0.0000026","AllocationSize: 405,504, EndOfFile: 401,968, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2749393 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2749500 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mswsock.dll","0.0000017","AllocationSize: 405,504, EndOfFile: 401,968, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2749679 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.2753080 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000055","","2512"
"10:46:36.2758033 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2758469 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2512"
"10:46:36.2758609 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000052","","2512"
"10:46:36.2760756 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2761084 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2512"
"10:46:36.2761208 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000047","","2512"
"10:46:36.2763354 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2763636 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000029","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2512"
"10:46:36.2763746 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000043","","2512"
"10:46:36.2764143 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2764365 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000132","Filter: Windows, 1: Windows","2512"
"10:46:36.2764617 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.2765654 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2765884 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:36.2766097 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.2767062 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2767275 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\mswsock.dll","0.0000119","Filter: mswsock.dll, 1: mswsock.dll","2512"
"10:46:36.2767505 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:36.2769950 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2770172 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","2512"
"10:46:36.2770279 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000042","","2512"
"10:46:36.2770620 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2770808 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:36.2771008 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.2771917 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2772126 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000103","Filter: System32, 1: System32","2512"
"10:46:36.2772331 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.2774153 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2774345 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","2512"
"10:46:36.2774447 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000039","","2512"
"10:46:36.2774772 AM","firefox.exe","7384","CreateFile","C:\","0.0000072","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2774951 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000089","Filter: Windows, 1: Windows","2512"
"10:46:36.2775143 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.2776073 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2776367 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000137","Filter: System32, 1: System32","2512"
"10:46:36.2776662 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:36.2778368 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000163","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2778744 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptbase.dll","0.0000043","AllocationSize: 32,768, EndOfFile: 31,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2778983 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2779119 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptbase.dll","0.0000022","AllocationSize: 32,768, EndOfFile: 31,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2779320 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.2779802 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000060","","2512"
"10:46:36.2781155 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2781445 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptbase.dll","0.0000025","AllocationSize: 32,768, EndOfFile: 31,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2781585 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2781696 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptbase.dll","0.0000017","AllocationSize: 32,768, EndOfFile: 31,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2781880 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.2782349 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptbase.dll","0.0000017","AllocationSize: 32,768, EndOfFile: 31,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2782494 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000051","","2512"
"10:46:36.2783732 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2783988 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptbase.dll","0.0000021","AllocationSize: 32,768, EndOfFile: 31,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2784111 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2784218 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptbase.dll","0.0000017","AllocationSize: 32,768, EndOfFile: 31,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2784397 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.2786983 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000047","","2512"
"10:46:36.2790575 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2790840 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000047","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","2512"
"10:46:36.2790976 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000047","","2512"
"10:46:36.2792905 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2793110 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","2512"
"10:46:36.2793216 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000039","","2512"
"10:46:36.2795260 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2795452 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","2512"
"10:46:36.2795550 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000043","","2512"
"10:46:36.2795896 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2796105 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000119","Filter: Windows, 1: Windows","2512"
"10:46:36.2796340 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.2797270 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2797492 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:36.2797701 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.2799924 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2800244 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000029","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.2800350 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000043","","2512"
"10:46:36.2800687 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2800875 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:36.2801076 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.2801984 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000099","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2802198 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:36.2802398 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.2803324 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2803533 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\bcrypt.dll","0.0000115","Filter: bcrypt.dll, 1: bcrypt.dll","2512"
"10:46:36.2803751 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.2805611 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2805893 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000030","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.2805995 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000047","","2512"
"10:46:36.2806324 AM","firefox.exe","7384","CreateFile","C:\","0.0000076","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2806503 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:36.2806699 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.2807582 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2807783 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:36.2808039 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.2808960 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2809165 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\bcrypt.dll","0.0000145","Filter: bcrypt.dll, 1: bcrypt.dll","2512"
"10:46:36.2809413 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:36.2810496 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2810851 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcrypt.dll","0.0000029","AllocationSize: 139,264, EndOfFile: 137,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2811008 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcrypt.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2811132 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcrypt.dll","0.0000021","AllocationSize: 139,264, EndOfFile: 137,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2811324 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcrypt.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.2811789 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000068","","2512"
"10:46:36.2813091 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000123","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2813462 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcrypt.dll","0.0000030","AllocationSize: 139,264, EndOfFile: 137,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2813607 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcrypt.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2813722 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcrypt.dll","0.0000017","AllocationSize: 139,264, EndOfFile: 137,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2813910 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcrypt.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.2814396 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcrypt.dll","0.0000021","AllocationSize: 139,264, EndOfFile: 137,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2814524 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000051","","2512"
"10:46:36.2815757 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2816107 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcrypt.dll","0.0000038","AllocationSize: 139,264, EndOfFile: 137,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2816252 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcrypt.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2816359 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcrypt.dll","0.0000017","AllocationSize: 139,264, EndOfFile: 137,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2816547 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcrypt.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:36.2820988 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000068","","2512"
"10:46:36.2824538 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2824867 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000034","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.2824995 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000047","","2512"
"10:46:36.2827068 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2827358 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.2827469 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000043","","2512"
"10:46:36.2829863 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2830251 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000039","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.2830400 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000064","","2512"
"10:46:36.2830874 AM","firefox.exe","7384","CreateFile","C:\","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2831117 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000137","Filter: Windows, 1: Windows","2512"
"10:46:36.2831378 AM","firefox.exe","7384","CloseFile","C:\","0.0000042","","2512"
"10:46:36.2832427 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2832649 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000124","Filter: System32, 1: System32","2512"
"10:46:36.2832879 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.2833848 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2834066 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\bcrypt.dll","0.0000128","Filter: bcrypt.dll, 1: bcrypt.dll","2512"
"10:46:36.2834300 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:36.2836715 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2836963 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000029","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","2512"
"10:46:36.2837069 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000043","","2512"
"10:46:36.2837406 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2837594 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000102","Filter: Windows, 1: Windows","2512"
"10:46:36.2837803 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.2838746 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2838955 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.2839151 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.2840956 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2841152 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000026","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","2512"
"10:46:36.2841251 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000038","","2512"
"10:46:36.2841566 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2841741 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000090","Filter: Windows, 1: Windows","2512"
"10:46:36.2841929 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.2842812 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2843008 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:36.2843235 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.2844370 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2844643 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000029","AllocationSize: 90,112, EndOfFile: 89,248, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.2844813 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2844941 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000017","AllocationSize: 90,112, EndOfFile: 89,248, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.2845142 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.2845637 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000051","","2512"
"10:46:36.2846848 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000116","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2847122 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000029","AllocationSize: 90,112, EndOfFile: 89,248, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.2847262 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2847373 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000022","AllocationSize: 90,112, EndOfFile: 89,248, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.2847557 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.2848052 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000021","AllocationSize: 90,112, EndOfFile: 89,248, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.2848171 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000056","","2512"
"10:46:36.2849511 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2849763 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000021","AllocationSize: 90,112, EndOfFile: 89,248, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.2849886 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2849989 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000017","AllocationSize: 90,112, EndOfFile: 89,248, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.2850164 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:36.2854366 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000052","","2512"
"10:46:36.2857716 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2858100 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000030","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","2512"
"10:46:36.2858215 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000047","","2512"
"10:46:36.2860190 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2860425 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000030","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","2512"
"10:46:36.2860532 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000042","","2512"
"10:46:36.2862537 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2862725 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000025","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","2512"
"10:46:36.2862827 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000039","","2512"
"10:46:36.2863156 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2863356 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000111","Filter: Windows, 1: Windows","2512"
"10:46:36.2863582 AM","firefox.exe","7384","CloseFile","C:\","0.0000052","","2512"
"10:46:36.2864521 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2864820 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000251","Filter: System32, 1: System32","2512"
"10:46:36.2865234 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:36.2868271 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2868510 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","2512"
"10:46:36.2868617 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000043","","2512"
"10:46:36.2868971 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2869163 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000103","Filter: Windows, 1: Windows","2512"
"10:46:36.2869372 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.2870285 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2870494 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:36.2870695 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.2872414 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2872615 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000025","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","2512"
"10:46:36.2872717 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000039","","2512"
"10:46:36.2873042 AM","firefox.exe","7384","CreateFile","C:\","0.0000072","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2873221 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000085","Filter: Windows, 1: Windows","2512"
"10:46:36.2873408 AM","firefox.exe","7384","CloseFile","C:\","0.0000035","","2512"
"10:46:36.2874296 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2874492 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.2874688 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000035","","2512"
"10:46:36.2875858 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000110","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2876122 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000026","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2876284 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2876399 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000017","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2876587 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.2877005 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000052","","2512"
"10:46:36.2878392 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2878678 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000025","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2878814 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2878925 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000017","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2879109 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.2879489 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000055","","2512"
"10:46:36.2881430 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2881741 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:36.2881848 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:36.2883533 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2883742 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:36.2883841 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:36.2884903 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000107","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2885167 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000026","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2885304 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2885411 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000021","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2885590 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.2886302 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000022","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2886422 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2886520 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000013","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.2886686 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.2886921 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\coloradapterclient.dll","0.0000230","Offset: 0, Length: 49,152, Priority: Normal","2512"
"10:46:36.2891951 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2892212 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000128","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:36.2893385 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000192","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.2894520 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000107","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2894759 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000026","Information: DACL","2512"
"10:46:36.2894887 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000038","","2512"
"10:46:36.2895924 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.2896879 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000103","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2897097 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:36.2897208 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:36.2899951 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000146","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:36.2901197 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.2902614 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000119","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2902857 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000021","Information: DACL","2512"
"10:46:36.2902977 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000034","","2512"
"10:46:36.2904090 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.2905494 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000166","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2905818 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000034","Information: DACL","2512"
"10:46:36.2906002 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000076","","2512"
"10:46:36.2910708 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2911079 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, AllocationSize: 294912, EndOfFile: 291839, FileAttributes: A","2512"
"10:46:36.2911215 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000060","","2512"
"10:46:36.2913767 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2914014 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:20:29 PM, ChangeTime: 3/20/2019 7:06:10 PM, AllocationSize: 454656, EndOfFile: 452785, FileAttributes: A","2512"
"10:46:36.2914138 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","","2512"
"10:46:36.2914663 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000043","","2512"
"10:46:36.2914821 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:36.2916805 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2917257 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, AllocationSize: 294912, EndOfFile: 291839, FileAttributes: A","2512"
"10:46:36.2917398 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","","2512"
"10:46:36.2918831 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2919130 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2919301 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2919420 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000022","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2919604 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.2922386 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:36.2922573 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000052","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, FileAttributes: A, AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x300000006193f, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:36.2923994 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000149","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2924310 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2924472 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2924583 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2924771 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.2925381 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000060","","2512"
"10:46:36.2926742 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000136","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2927041 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2927233 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2927339 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2927518 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.2928035 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000059","","2512"
"10:46:36.2930343 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000137","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2930629 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2930782 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.2930885 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.2931060 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.2933338 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000060","","2512"
"10:46:36.2981176 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000504","","2512"
"10:46:36.2983796 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000132","","2512"
"10:46:36.2991028 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2991455 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000055","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","2512"
"10:46:36.2991664 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000076","","2512"
"10:46:36.2994697 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2995017 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000043","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","2512"
"10:46:36.2995196 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000064","","2512"
"10:46:36.2998405 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2998712 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000043","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","2512"
"10:46:36.2998883 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000060","","2512"
"10:46:36.2999433 AM","firefox.exe","7384","CreateFile","C:\","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.2999757 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000188","Filter: Windows, 1: Windows","2512"
"10:46:36.3000120 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:36.3001511 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3001840 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000153","Filter: System32, 1: System32","2512"
"10:46:36.3002151 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000056","","2512"
"10:46:36.3005488 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3005987 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000038","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:36.3006166 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000068","","2512"
"10:46:36.3006687 AM","firefox.exe","7384","CreateFile","C:\","0.0000179","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3007036 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000154","Filter: Windows, 1: Windows","2512"
"10:46:36.3007352 AM","firefox.exe","7384","CloseFile","C:\","0.0000060","","2512"
"10:46:36.3008863 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3009183 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000145","Filter: System32, 1: System32","2512"
"10:46:36.3009485 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000056","","2512"
"10:46:36.3010898 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3011213 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\win32u.dll","0.0000188","Filter: win32u.dll, 1: win32u.dll","2512"
"10:46:36.3011559 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000060","","2512"
"10:46:36.3014200 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0401899","Offset: 13,631,488, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:36.3014268 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000163","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3014674 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000038","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:36.3014857 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000073","","2512"
"10:46:36.3015433 AM","firefox.exe","7384","CreateFile","C:\","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3015702 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000115","Filter: Windows, 1: Windows","2512"
"10:46:36.3015928 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.3016884 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3017089 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:36.3017293 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.3018322 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3018531 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\win32u.dll","0.0000128","Filter: win32u.dll, 1: win32u.dll","2512"
"10:46:36.3018765 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:36.3019994 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3020374 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\win32u.dll","0.0000034","AllocationSize: 126,976, EndOfFile: 124,048, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:36.3020553 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\win32u.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3020685 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\win32u.dll","0.0000022","AllocationSize: 126,976, EndOfFile: 124,048, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:36.3020886 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\win32u.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.3021368 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000056","","2512"
"10:46:36.3022627 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3023002 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\win32u.dll","0.0000030","AllocationSize: 126,976, EndOfFile: 124,048, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:36.3023152 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\win32u.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3023267 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\win32u.dll","0.0000021","AllocationSize: 126,976, EndOfFile: 124,048, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:36.3023455 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\win32u.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.3023949 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\win32u.dll","0.0000022","AllocationSize: 126,976, EndOfFile: 124,048, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:36.3024077 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000052","","2512"
"10:46:36.3025375 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000123","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3025716 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\win32u.dll","0.0000025","AllocationSize: 126,976, EndOfFile: 124,048, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:36.3025848 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\win32u.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3025955 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\win32u.dll","0.0000017","AllocationSize: 126,976, EndOfFile: 124,048, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:36.3026134 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\win32u.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.3028950 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000051","","2512"
"10:46:36.3032423 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3032735 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000029","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:36.3032854 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000043","","2512"
"10:46:36.3035188 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3035478 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:36.3035585 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000038","","2512"
"10:46:36.3037688 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3037970 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000030","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:36.3038076 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000043","","2512"
"10:46:36.3038426 AM","firefox.exe","7384","CreateFile","C:\","0.0000086","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3038631 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000111","Filter: Windows, 1: Windows","2512"
"10:46:36.3038853 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.3039770 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3039988 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:36.3040201 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.3041123 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3041323 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\win32u.dll","0.0000128","Filter: win32u.dll, 1: win32u.dll","2512"
"10:46:36.3041554 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:36.3043708 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3044011 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000030","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.3044118 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000043","","2512"
"10:46:36.3044451 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3044634 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:36.3044835 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.3045731 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3045931 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000099","Filter: System32, 1: System32","2512"
"10:46:36.3046128 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.3047036 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3047241 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\gdi32.dll","0.0000222","Filter: gdi32.dll, 1: gdi32.dll","2512"
"10:46:36.3047570 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:36.3049281 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3049558 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000030","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.3049665 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000042","","2512"
"10:46:36.3049993 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3050168 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000090","Filter: Windows, 1: Windows","2512"
"10:46:36.3050360 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.3051235 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3051431 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.3051627 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000035","","2512"
"10:46:36.3052532 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3052732 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\gdi32.dll","0.0000146","Filter: gdi32.dll, 1: gdi32.dll","2512"
"10:46:36.3052980 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:36.3054200 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3054610 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32.dll","0.0000038","AllocationSize: 155,648, EndOfFile: 155,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3054832 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32.dll","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3055011 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32.dll","0.0000030","AllocationSize: 155,648, EndOfFile: 155,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3055301 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:36.3056956 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000141","","2512"
"10:46:36.3058906 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000158","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3059384 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32.dll","0.0000039","AllocationSize: 155,648, EndOfFile: 155,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3059563 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3059696 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32.dll","0.0000021","AllocationSize: 155,648, EndOfFile: 155,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3059896 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.3060468 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32.dll","0.0000021","AllocationSize: 155,648, EndOfFile: 155,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3060609 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000055","","2512"
"10:46:36.3062166 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000137","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3062537 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32.dll","0.0000026","AllocationSize: 155,648, EndOfFile: 155,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3062678 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3062785 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32.dll","0.0000021","AllocationSize: 155,648, EndOfFile: 155,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3062964 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.3065844 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000055","","2512"
"10:46:36.3069326 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3069654 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000034","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.3069782 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000047","","2512"
"10:46:36.3071694 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3071984 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000030","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.3072099 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000038","","2512"
"10:46:36.3074211 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3074488 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000030","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.3074595 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000043","","2512"
"10:46:36.3074958 AM","firefox.exe","7384","CreateFile","C:\","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3075175 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000128","Filter: Windows, 1: Windows","2512"
"10:46:36.3075423 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.3076357 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3076579 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:36.3076792 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.3077744 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3077953 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\gdi32.dll","0.0000119","Filter: gdi32.dll, 1: gdi32.dll","2512"
"10:46:36.3078179 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:36.3080235 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3080543 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000029","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.3080649 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000043","","2512"
"10:46:36.3080999 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3081183 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:36.3081383 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.3082292 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3082501 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:36.3082702 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.3083619 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3083824 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\sechost.dll","0.0000111","Filter: sechost.dll, 1: sechost.dll","2512"
"10:46:36.3084037 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:36.3085791 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3086077 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000025","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.3086179 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000043","","2512"
"10:46:36.3086507 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3086687 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000089","Filter: Windows, 1: Windows","2512"
"10:46:36.3086874 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.3087779 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3087975 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:36.3088197 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.3089106 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3089306 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\sechost.dll","0.0000120","Filter: sechost.dll, 1: sechost.dll","2512"
"10:46:36.3089524 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:36.3090599 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3090945 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\sechost.dll","0.0000030","AllocationSize: 368,640, EndOfFile: 368,448, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3091103 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\sechost.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3091222 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\sechost.dll","0.0000021","AllocationSize: 368,640, EndOfFile: 368,448, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3091414 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\sechost.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.3091871 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000055","","2512"
"10:46:36.3093053 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3093411 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\sechost.dll","0.0000026","AllocationSize: 368,640, EndOfFile: 368,448, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3093552 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\sechost.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3093663 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\sechost.dll","0.0000017","AllocationSize: 368,640, EndOfFile: 368,448, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3093846 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\sechost.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.3094345 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\sechost.dll","0.0000022","AllocationSize: 368,640, EndOfFile: 368,448, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3094469 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000051","","2512"
"10:46:36.3095694 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3096039 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\sechost.dll","0.0000026","AllocationSize: 368,640, EndOfFile: 368,448, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3096171 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\sechost.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3096274 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\sechost.dll","0.0000017","AllocationSize: 368,640, EndOfFile: 368,448, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3096453 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\sechost.dll","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:36.3099875 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000090","","2512"
"10:46:36.3105545 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3105989 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000043","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.3106151 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000064","","2512"
"10:46:36.3108762 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3109129 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000039","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.3109279 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000051","","2512"
"10:46:36.3111463 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3111745 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000025","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.3111851 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000043","","2512"
"10:46:36.3112231 AM","firefox.exe","7384","CreateFile","C:\","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3112457 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000150","Filter: Windows, 1: Windows","2512"
"10:46:36.3112735 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.3113840 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3114079 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000115","Filter: System32, 1: System32","2512"
"10:46:36.3114305 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.3115248 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3115461 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\sechost.dll","0.0000128","Filter: sechost.dll, 1: sechost.dll","2512"
"10:46:36.3115704 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:36.3117931 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3118247 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000030","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","2512"
"10:46:36.3118358 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000043","","2512"
"10:46:36.3118704 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3118891 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000099","Filter: Windows, 1: Windows","2512"
"10:46:36.3119092 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.3120001 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3120206 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:36.3120406 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.3121323 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3121533 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\advapi32.dll","0.0000162","Filter: advapi32.dll, 1: advapi32.dll","2512"
"10:46:36.3121797 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:36.3123602 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3123879 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000030","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","2512"
"10:46:36.3123986 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000043","","2512"
"10:46:36.3124327 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3124506 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000099","Filter: Windows, 1: Windows","2512"
"10:46:36.3124707 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.3125590 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3125791 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.3125983 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.3126891 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3127152 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\advapi32.dll","0.0000119","Filter: advapi32.dll, 1: advapi32.dll","2512"
"10:46:36.3127374 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:36.3128615 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3128986 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\advapi32.dll","0.0000030","AllocationSize: 647,168, EndOfFile: 645,320, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3129161 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\advapi32.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3129289 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\advapi32.dll","0.0000017","AllocationSize: 647,168, EndOfFile: 645,320, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3129486 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\advapi32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.3130066 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000055","","2512"
"10:46:36.3131785 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000188","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3132605 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\advapi32.dll","0.0000029","AllocationSize: 647,168, EndOfFile: 645,320, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3132779 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\advapi32.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3132903 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\advapi32.dll","0.0000017","AllocationSize: 647,168, EndOfFile: 645,320, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3133099 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\advapi32.dll","0.0000018","SyncType: SyncTypeOther","2512"
"10:46:36.3133744 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\advapi32.dll","0.0000025","AllocationSize: 647,168, EndOfFile: 645,320, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3133889 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000055","","2512"
"10:46:36.3135305 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000133","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3135681 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\advapi32.dll","0.0000025","AllocationSize: 647,168, EndOfFile: 645,320, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3135813 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\advapi32.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3135920 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\advapi32.dll","0.0000017","AllocationSize: 647,168, EndOfFile: 645,320, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3136099 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\advapi32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.3140293 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000064","","2512"
"10:46:36.3144726 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3145063 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000034","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","2512"
"10:46:36.3145183 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000051","","2512"
"10:46:36.3147145 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3147436 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000029","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","2512"
"10:46:36.3147546 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000043","","2512"
"10:46:36.3149641 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3149927 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000030","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","2512"
"10:46:36.3150034 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000043","","2512"
"10:46:36.3150397 AM","firefox.exe","7384","CreateFile","C:\","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3150614 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000120","Filter: Windows, 1: Windows","2512"
"10:46:36.3150849 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.3151860 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3152129 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000145","Filter: System32, 1: System32","2512"
"10:46:36.3152428 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000059","","2512"
"10:46:36.3153917 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3154232 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\advapi32.dll","0.0000175","Filter: advapi32.dll, 1: advapi32.dll","2512"
"10:46:36.3154565 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000060","","2512"
"10:46:36.3156869 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3157317 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000030","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.3157428 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000047","","2512"
"10:46:36.3157778 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3157974 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000103","Filter: Windows, 1: Windows","2512"
"10:46:36.3158183 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.3159101 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3159310 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:36.3159514 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000035","","2512"
"10:46:36.3160436 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3160645 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\combase.dll","0.0000111","Filter: combase.dll, 1: combase.dll","2512"
"10:46:36.3160858 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000035","","2512"
"10:46:36.3162642 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3162924 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000029","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.3163030 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000043","","2512"
"10:46:36.3163359 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3163538 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:36.3163738 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.3164622 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3164822 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.3165023 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.3165978 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000099","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3166183 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\combase.dll","0.0000107","Filter: combase.dll, 1: combase.dll","2512"
"10:46:36.3166392 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.3167519 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3167864 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\combase.dll","0.0000034","AllocationSize: 3,293,184, EndOfFile: 3,291,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3168035 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\combase.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3168159 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\combase.dll","0.0000021","AllocationSize: 3,293,184, EndOfFile: 3,291,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3168355 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\combase.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.3169144 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000056","","2512"
"10:46:36.3170650 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3171022 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\combase.dll","0.0000025","AllocationSize: 3,293,184, EndOfFile: 3,291,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3171162 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\combase.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3171278 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\combase.dll","0.0000017","AllocationSize: 3,293,184, EndOfFile: 3,291,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3171461 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\combase.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.3172285 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\combase.dll","0.0000021","AllocationSize: 3,293,184, EndOfFile: 3,291,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3172413 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000055","","2512"
"10:46:36.3173722 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3174077 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\combase.dll","0.0000021","AllocationSize: 3,293,184, EndOfFile: 3,291,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3174209 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\combase.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3174311 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\combase.dll","0.0000017","AllocationSize: 3,293,184, EndOfFile: 3,291,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3174486 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\combase.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.3184078 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000059","","2512"
"10:46:36.3191476 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3191813 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000034","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.3191941 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000051","","2512"
"10:46:36.3193921 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3194211 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000030","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.3194322 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000043","","2512"
"10:46:36.3196319 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3196592 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000030","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.3196699 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000042","","2512"
"10:46:36.3197074 AM","firefox.exe","7384","CreateFile","C:\","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3197283 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000115","Filter: Windows, 1: Windows","2512"
"10:46:36.3197513 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:36.3198461 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3198674 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:36.3198887 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.3199830 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3200039 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\combase.dll","0.0000154","Filter: combase.dll, 1: combase.dll","2512"
"10:46:36.3200300 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000042","","2512"
"10:46:36.3202565 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3202877 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:36.3202988 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000042","","2512"
"10:46:36.3203329 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3203517 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:36.3203717 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.3204617 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3204822 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.3205083 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000064","","2512"
"10:46:36.3207293 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000170","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3207647 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\fltLib.dll","0.0000192","Filter: fltLib.dll, 1: fltLib.dll","2512"
"10:46:36.3208009 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000060","","2512"
"10:46:36.3210245 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3210574 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:36.3210685 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000047","","2512"
"10:46:36.3211035 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3211235 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000111","Filter: Windows, 1: Windows","2512"
"10:46:36.3211448 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.3212361 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3212571 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:36.3212780 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.3213697 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3213902 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\fltLib.dll","0.0000115","Filter: fltLib.dll, 1: fltLib.dll","2512"
"10:46:36.3214119 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.3215276 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3215651 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\fltLib.dll","0.0000030","AllocationSize: 32,768, EndOfFile: 31,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3215822 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\fltLib.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3215945 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\fltLib.dll","0.0000022","AllocationSize: 32,768, EndOfFile: 31,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3216142 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\fltLib.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.3216611 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000056","","2512"
"10:46:36.3218177 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3218561 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\fltLib.dll","0.0000030","AllocationSize: 32,768, EndOfFile: 31,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3218710 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\fltLib.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3218825 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\fltLib.dll","0.0000018","AllocationSize: 32,768, EndOfFile: 31,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3219009 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\fltLib.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.3219487 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\fltLib.dll","0.0000021","AllocationSize: 32,768, EndOfFile: 31,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3219615 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000051","","2512"
"10:46:36.3220831 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3221176 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\fltLib.dll","0.0000026","AllocationSize: 32,768, EndOfFile: 31,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3221309 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\fltLib.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3221415 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\fltLib.dll","0.0000017","AllocationSize: 32,768, EndOfFile: 31,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3221595 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\fltLib.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:36.3224176 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000051","","2512"
"10:46:36.3227448 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3227777 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:36.3227892 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000047","","2512"
"10:46:36.3229778 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3230060 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000029","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:36.3230166 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000043","","2512"
"10:46:36.3232227 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3232504 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:36.3232607 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000042","","2512"
"10:46:36.3232948 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3233149 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000106","Filter: Windows, 1: Windows","2512"
"10:46:36.3233371 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.3234296 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000099","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3234510 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:36.3234719 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.3235657 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3235862 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\fltLib.dll","0.0000115","Filter: fltLib.dll, 1: fltLib.dll","2512"
"10:46:36.3236080 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:36.3238162 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3238461 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000030","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.3238567 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000043","","2512"
"10:46:36.3238904 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3239088 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:36.3239416 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.3240364 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3240568 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.3240769 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.3241729 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3241934 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dxgi.dll","0.0000106","Filter: dxgi.dll, 1: dxgi.dll","2512"
"10:46:36.3242143 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.3243824 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3244097 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000026","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.3244199 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000043","","2512"
"10:46:36.3244524 AM","firefox.exe","7384","CreateFile","C:\","0.0000076","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3244699 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000093","Filter: Windows, 1: Windows","2512"
"10:46:36.3244891 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.3245770 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3245974 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.3246166 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.3247143 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3247344 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dxgi.dll","0.0000115","Filter: dxgi.dll, 1: dxgi.dll","2512"
"10:46:36.3247562 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.3249008 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000171","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3249494 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dxgi.dll","0.0000039","AllocationSize: 749,568, EndOfFile: 748,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3249720 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000035","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3249900 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dxgi.dll","0.0000030","AllocationSize: 749,568, EndOfFile: 748,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3250207 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:36.3250936 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000073","","2512"
"10:46:36.3252430 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3252805 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dxgi.dll","0.0000026","AllocationSize: 749,568, EndOfFile: 748,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3252950 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3253061 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dxgi.dll","0.0000017","AllocationSize: 749,568, EndOfFile: 748,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3253245 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.3253782 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dxgi.dll","0.0000022","AllocationSize: 749,568, EndOfFile: 748,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3253906 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000051","","2512"
"10:46:36.3255186 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3255527 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dxgi.dll","0.0000026","AllocationSize: 749,568, EndOfFile: 748,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3255660 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3255766 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dxgi.dll","0.0000017","AllocationSize: 749,568, EndOfFile: 748,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3255946 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:36.3263668 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000111","","2512"
"10:46:36.3272283 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000260","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3272923 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000064","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.3273200 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000085","","2512"
"10:46:36.3276528 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3277031 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000035","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.3277164 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000051","","2512"
"10:46:36.3280603 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3280927 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000038","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.3281080 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000064","","2512"
"10:46:36.3281930 AM","firefox.exe","7384","CreateFile","C:\","0.0000209","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3282501 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000256","Filter: Windows, 1: Windows","2512"
"10:46:36.3282966 AM","firefox.exe","7384","CloseFile","C:\","0.0000077","","2512"
"10:46:36.3284528 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3284878 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000149","Filter: System32, 1: System32","2512"
"10:46:36.3285198 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:36.3286614 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000167","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3286964 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dxgi.dll","0.0000171","Filter: dxgi.dll, 1: dxgi.dll","2512"
"10:46:36.3287297 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000055","","2512"
"10:46:36.3290535 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3291099 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000047","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","2512"
"10:46:36.3291282 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000068","","2512"
"10:46:36.3291811 AM","firefox.exe","7384","CreateFile","C:\","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3292101 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000133","Filter: Windows, 1: Windows","2512"
"10:46:36.3292391 AM","firefox.exe","7384","CloseFile","C:\","0.0000052","","2512"
"10:46:36.3293757 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3294073 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000136","Filter: System32, 1: System32","2512"
"10:46:36.3294363 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000059","","2512"
"10:46:36.3295865 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000140","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3296180 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\imm32.dll","0.0000158","Filter: imm32.dll, 1: imm32.dll","2512"
"10:46:36.3296496 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000051","","2512"
"10:46:36.3299184 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3299602 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000043","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","2512"
"10:46:36.3299773 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000064","","2512"
"10:46:36.3300276 AM","firefox.exe","7384","CreateFile","C:\","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3300554 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000123","Filter: Windows, 1: Windows","2512"
"10:46:36.3300831 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:36.3302175 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3302478 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000132","Filter: System32, 1: System32","2512"
"10:46:36.3302768 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:36.3304155 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000140","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3304466 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\imm32.dll","0.0000149","Filter: imm32.dll, 1: imm32.dll","2512"
"10:46:36.3304769 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000056","","2512"
"10:46:36.3306412 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000166","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3306932 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\imm32.dll","0.0000064","AllocationSize: 176,128, EndOfFile: 173,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3307346 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\imm32.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3307547 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\imm32.dll","0.0000030","AllocationSize: 176,128, EndOfFile: 173,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3307858 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\imm32.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:36.3308583 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000073","","2512"
"10:46:36.3310495 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000171","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3311011 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\imm32.dll","0.0000039","AllocationSize: 176,128, EndOfFile: 173,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3311233 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\imm32.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3311408 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\imm32.dll","0.0000030","AllocationSize: 176,128, EndOfFile: 173,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3311715 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\imm32.dll","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:36.3312432 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\imm32.dll","0.0000030","AllocationSize: 176,128, EndOfFile: 173,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3312624 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000073","","2512"
"10:46:36.3314450 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000162","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3314949 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\imm32.dll","0.0000043","AllocationSize: 176,128, EndOfFile: 173,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3315171 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\imm32.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3315338 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\imm32.dll","0.0000025","AllocationSize: 176,128, EndOfFile: 173,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3315649 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\imm32.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:36.3321268 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000077","","2512"
"10:46:36.3326572 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3327045 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000043","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","2512"
"10:46:36.3327242 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000064","","2512"
"10:46:36.3329998 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3330412 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000038","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","2512"
"10:46:36.3330591 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000055","","2512"
"10:46:36.3333723 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3334132 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000039","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","2512"
"10:46:36.3334303 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000060","","2512"
"10:46:36.3334806 AM","firefox.exe","7384","CreateFile","C:\","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3335101 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000149","Filter: Windows, 1: Windows","2512"
"10:46:36.3335421 AM","firefox.exe","7384","CloseFile","C:\","0.0000055","","2512"
"10:46:36.3336927 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3337247 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000145","Filter: System32, 1: System32","2512"
"10:46:36.3337558 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000052","","2512"
"10:46:36.3338962 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3339282 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\imm32.dll","0.0000158","Filter: imm32.dll, 1: imm32.dll","2512"
"10:46:36.3339594 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000055","","2512"
"10:46:36.3342751 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3343062 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.3343229 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000060","","2512"
"10:46:36.3344671 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3344995 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\nss3.dll","0.0000141","Filter: nss3.dll, 1: nss3.dll","2512"
"10:46:36.3345298 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000056","","2512"
"10:46:36.3347824 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3348123 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.3348272 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000064","","2512"
"10:46:36.3350030 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3350346 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\nss3.dll","0.0000136","Filter: nss3.dll, 1: nss3.dll","2512"
"10:46:36.3350649 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000055","","2512"
"10:46:36.3352325 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000167","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3352701 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000038","AllocationSize: 2,195,456, EndOfFile: 2,193,608, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.3352923 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3353102 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000030","AllocationSize: 2,195,456, EndOfFile: 2,193,608, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.3353405 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:36.3354510 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000072","","2512"
"10:46:36.3356767 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000303","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3357424 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000051","AllocationSize: 2,195,456, EndOfFile: 2,193,608, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.3357701 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000035","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3357864 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000025","AllocationSize: 2,195,456, EndOfFile: 2,193,608, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.3358094 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.3358998 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000022","AllocationSize: 2,195,456, EndOfFile: 2,193,608, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.3359156 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000073","","2512"
"10:46:36.3360846 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000136","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3361153 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000026","AllocationSize: 2,195,456, EndOfFile: 2,193,608, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.3361290 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3361401 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000017","AllocationSize: 2,195,456, EndOfFile: 2,193,608, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.3361588 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.3364473 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000059","","2512"
"10:46:36.3368180 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3368415 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.3368539 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000047","","2512"
"10:46:36.3370408 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3370608 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.3370715 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000042","","2512"
"10:46:36.3372703 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3372891 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.3372993 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000039","","2512"
"10:46:36.3374009 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3374243 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\nss3.dll","0.0000120","Filter: nss3.dll, 1: nss3.dll","2512"
"10:46:36.3374486 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000043","","2512"
"10:46:36.3376744 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3377068 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.3377179 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000042","","2512"
"10:46:36.3377537 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3377738 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000119","Filter: Windows, 1: Windows","2512"
"10:46:36.3377968 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.3379056 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3379282 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:36.3379500 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.3380426 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3380639 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\nsi.dll","0.0000115","Filter: nsi.dll, 1: nsi.dll","2512"
"10:46:36.3380861 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.3383088 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3383374 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.3383481 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000038","","2512"
"10:46:36.3383809 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3383993 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000093","Filter: Windows, 1: Windows","2512"
"10:46:36.3384189 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.3385089 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3385290 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000089","Filter: System32, 1: System32","2512"
"10:46:36.3385482 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.3386399 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3386617 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\nsi.dll","0.0000102","Filter: nsi.dll, 1: nsi.dll","2512"
"10:46:36.3386821 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000035","","2512"
"10:46:36.3387931 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000123","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3388285 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nsi.dll","0.0000030","AllocationSize: 28,672, EndOfFile: 24,888, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.3388456 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nsi.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3388575 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nsi.dll","0.0000021","AllocationSize: 28,672, EndOfFile: 24,888, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.3388776 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nsi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.3389224 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000051","","2512"
"10:46:36.3390994 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3391361 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nsi.dll","0.0000030","AllocationSize: 28,672, EndOfFile: 24,888, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.3391510 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nsi.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3391617 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nsi.dll","0.0000021","AllocationSize: 28,672, EndOfFile: 24,888, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.3391801 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nsi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.3392274 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nsi.dll","0.0000022","AllocationSize: 28,672, EndOfFile: 24,888, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.3392402 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000051","","2512"
"10:46:36.3393601 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3393934 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nsi.dll","0.0000021","AllocationSize: 28,672, EndOfFile: 24,888, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.3394062 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nsi.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3394169 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nsi.dll","0.0000017","AllocationSize: 28,672, EndOfFile: 24,888, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.3394344 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nsi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.3397258 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000064","","2512"
"10:46:36.3401307 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3401652 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000035","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.3401776 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000047","","2512"
"10:46:36.3403781 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000261","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3404340 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.3404524 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000064","","2512"
"10:46:36.3407063 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3407873 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.3407997 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000051","","2512"
"10:46:36.3408415 AM","firefox.exe","7384","CreateFile","C:\","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3408680 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000166","Filter: Windows, 1: Windows","2512"
"10:46:36.3408978 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:36.3409960 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3410190 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:36.3410408 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.3411359 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3411577 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\nsi.dll","0.0000170","Filter: nsi.dll, 1: nsi.dll","2512"
"10:46:36.3411858 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.3414077 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3414521 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:36.3414636 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000043","","2512"
"10:46:36.3414977 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3415169 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:36.3415374 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.3416667 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3416880 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000103","Filter: System32, 1: System32","2512"
"10:46:36.3417128 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.3418066 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3418271 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\crypt32.dll","0.0000120","Filter: crypt32.dll, 1: crypt32.dll","2512"
"10:46:36.3418497 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.3420293 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3420579 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:36.3420686 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000043","","2512"
"10:46:36.3421015 AM","firefox.exe","7384","CreateFile","C:\","0.0000076","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3421202 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:36.3421399 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.3422363 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3422568 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:36.3422772 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000052","","2512"
"10:46:36.3423988 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3424296 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\crypt32.dll","0.0000170","Filter: crypt32.dll, 1: crypt32.dll","2512"
"10:46:36.3424620 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000051","","2512"
"10:46:36.3426284 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000188","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3426783 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\crypt32.dll","0.0000038","AllocationSize: 1,961,984, EndOfFile: 1,960,688, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3426988 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\crypt32.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3427133 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\crypt32.dll","0.0000021","AllocationSize: 1,961,984, EndOfFile: 1,960,688, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3427363 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\crypt32.dll","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:36.3428101 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000060","","2512"
"10:46:36.3430004 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000163","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3430516 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\crypt32.dll","0.0000039","AllocationSize: 1,961,984, EndOfFile: 1,960,688, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3430751 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\crypt32.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3430917 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\crypt32.dll","0.0000030","AllocationSize: 1,961,984, EndOfFile: 1,960,688, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3431199 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\crypt32.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:36.3432424 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\crypt32.dll","0.0000042","AllocationSize: 1,961,984, EndOfFile: 1,960,688, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3432599 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000072","","2512"
"10:46:36.3435346 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000397","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3436375 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\crypt32.dll","0.0000059","AllocationSize: 1,961,984, EndOfFile: 1,960,688, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3436665 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\crypt32.dll","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3436887 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\crypt32.dll","0.0000029","AllocationSize: 1,961,984, EndOfFile: 1,960,688, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3437241 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\crypt32.dll","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:36.3451184 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000171","","2512"
"10:46:36.3461821 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3462371 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000056","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:36.3462580 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000069","","2512"
"10:46:36.3465682 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3466130 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:36.3466365 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000068","","2512"
"10:46:36.3469569 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3470022 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:36.3470196 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000069","","2512"
"10:46:36.3470755 AM","firefox.exe","7384","CreateFile","C:\","0.0000133","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3471075 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000180","Filter: Windows, 1: Windows","2512"
"10:46:36.3471438 AM","firefox.exe","7384","CloseFile","C:\","0.0000064","","2512"
"10:46:36.3472884 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3473217 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000150","Filter: System32, 1: System32","2512"
"10:46:36.3473533 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:36.3474971 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3475291 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\crypt32.dll","0.0000252","Filter: crypt32.dll, 1: crypt32.dll","2512"
"10:46:36.3475700 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000060","","2512"
"10:46:36.3478947 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3479438 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:36.3479622 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000068","","2512"
"10:46:36.3480146 AM","firefox.exe","7384","CreateFile","C:\","0.0000133","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3480454 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000149","Filter: Windows, 1: Windows","2512"
"10:46:36.3480769 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:36.3482164 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000146","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3482480 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000137","Filter: System32, 1: System32","2512"
"10:46:36.3482775 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000051","","2512"
"10:46:36.3484323 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000150","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3484648 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\powrprof.dll","0.0000166","Filter: powrprof.dll, 1: powrprof.dll","2512"
"10:46:36.3484963 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000069","","2512"
"10:46:36.3487822 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3488257 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:36.3488436 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000064","","2512"
"10:46:36.3488948 AM","firefox.exe","7384","CreateFile","C:\","0.0000133","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3489247 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000128","Filter: Windows, 1: Windows","2512"
"10:46:36.3489537 AM","firefox.exe","7384","CloseFile","C:\","0.0000060","","2512"
"10:46:36.3490937 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3491244 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000136","Filter: System32, 1: System32","2512"
"10:46:36.3491538 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000056","","2512"
"10:46:36.3492998 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000140","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3493309 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\powrprof.dll","0.0000162","Filter: powrprof.dll, 1: powrprof.dll","2512"
"10:46:36.3493633 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000056","","2512"
"10:46:36.3495370 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000179","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3495907 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\powrprof.dll","0.0000047","AllocationSize: 303,104, EndOfFile: 300,208, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3496227 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\powrprof.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3496432 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\powrprof.dll","0.0000030","AllocationSize: 303,104, EndOfFile: 300,208, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3496765 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\powrprof.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:36.3497520 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000081","","2512"
"10:46:36.3499598 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000175","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3500136 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\powrprof.dll","0.0000042","AllocationSize: 303,104, EndOfFile: 300,208, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3500362 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\powrprof.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3500545 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\powrprof.dll","0.0000026","AllocationSize: 303,104, EndOfFile: 300,208, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3500857 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\powrprof.dll","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:36.3501667 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\powrprof.dll","0.0000035","AllocationSize: 303,104, EndOfFile: 300,208, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3501868 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000077","","2512"
"10:46:36.3503660 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000175","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3504176 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\powrprof.dll","0.0000034","AllocationSize: 303,104, EndOfFile: 300,208, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3504377 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\powrprof.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3504552 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\powrprof.dll","0.0000030","AllocationSize: 303,104, EndOfFile: 300,208, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3504859 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\powrprof.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:36.3510273 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000124","","2512"
"10:46:36.3514574 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3515069 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000077","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:36.3515248 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000047","","2512"
"10:46:36.3517360 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3517659 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:36.3517774 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000043","","2512"
"10:46:36.3519937 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3520223 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:36.3520334 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000043","","2512"
"10:46:36.3520714 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3520940 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000137","Filter: Windows, 1: Windows","2512"
"10:46:36.3521196 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.3522160 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3522386 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:36.3522608 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.3523568 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3523786 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\powrprof.dll","0.0000115","Filter: powrprof.dll, 1: powrprof.dll","2512"
"10:46:36.3524012 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:36.3526256 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3526576 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","2512"
"10:46:36.3526691 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000039","","2512"
"10:46:36.3527041 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3527233 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:36.3527438 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.3528347 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3528560 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.3528757 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.3529751 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3529960 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\mscms.dll","0.0000153","Filter: mscms.dll, 1: mscms.dll","2512"
"10:46:36.3530220 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000043","","2512"
"10:46:36.3531948 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3532234 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","2512"
"10:46:36.3532341 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000038","","2512"
"10:46:36.3532669 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3532848 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:36.3533040 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.3533919 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3534120 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.3534316 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.3535221 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3535421 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\mscms.dll","0.0000107","Filter: mscms.dll, 1: mscms.dll","2512"
"10:46:36.3535626 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:36.3537055 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3537145 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0018679","Offset: 14,680,064, Length: 360,448, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:36.3537435 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000034","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3537623 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3537751 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000017","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3537943 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.3538463 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000056","","2512"
"10:46:36.3539833 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3540204 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000030","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3540353 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3540469 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000021","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3540656 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.3541117 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000051","","2512"
"10:46:36.3543067 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3543293 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000030","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:36.3543404 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000038","","2512"
"10:46:36.3545094 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3545307 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000021","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:36.3545426 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000052","","2512"
"10:46:36.3546570 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3546937 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000025","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3547086 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3547197 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000017","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3547381 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:36.3548451 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000039","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3548592 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3548725 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000034","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3548985 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.3550457 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\mscms.dll","0.0001177","Offset: 0, Length: 524,288, Priority: Normal","2512"
"10:46:36.3593162 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0227170","Offset: 15,040,512, Length: 720,896, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:36.3602980 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000200","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3603423 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000197","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:36.3605147 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000222","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.3607076 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000204","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3607472 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000035","Information: DACL","2512"
"10:46:36.3607622 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000047","","2512"
"10:46:36.3609000 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000171","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.3610075 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000115","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3610318 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000022","Information: DACL","2512"
"10:46:36.3610438 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:36.3612831 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000180","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:36.3614128 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000163","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.3615204 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000115","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3615451 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000021","Information: DACL","2512"
"10:46:36.3615583 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000047","","2512"
"10:46:36.3617004 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.3618041 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3618271 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000022","Information: DACL","2512"
"10:46:36.3618387 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:36.3622376 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3622649 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, AllocationSize: 294912, EndOfFile: 291839, FileAttributes: A","2512"
"10:46:36.3622785 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000052","","2512"
"10:46:36.3624910 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3625145 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:20:29 PM, ChangeTime: 3/20/2019 7:06:10 PM, AllocationSize: 454656, EndOfFile: 452785, FileAttributes: A","2512"
"10:46:36.3625260 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","","2512"
"10:46:36.3625610 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:36.3625789 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000039","","2512"
"10:46:36.3627803 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3628033 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, AllocationSize: 294912, EndOfFile: 291839, FileAttributes: A","2512"
"10:46:36.3628149 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","","2512"
"10:46:36.3629403 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3629689 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.3629851 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3629975 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.3630158 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.3633324 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:36.3633491 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000046","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, FileAttributes: A, AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x300000006193f, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:36.3634771 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000149","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3635082 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.3635244 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3635359 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.3635551 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.3636187 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000060","","2512"
"10:46:36.3637616 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3637924 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.3638069 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3638175 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000022","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.3638359 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.3638717 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","","2512"
"10:46:36.3641789 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3642131 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.3642276 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3642378 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.3642557 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.3644725 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000059","","2512"
"10:46:36.3686227 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000392","","2512"
"10:46:36.3688518 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","","2512"
"10:46:36.3692354 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3692755 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000042","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","2512"
"10:46:36.3692895 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000047","","2512"
"10:46:36.3694965 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3695259 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","2512"
"10:46:36.3695374 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000043","","2512"
"10:46:36.3697474 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3697751 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","2512"
"10:46:36.3697862 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000042","","2512"
"10:46:36.3698310 AM","firefox.exe","7384","CreateFile","C:\","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3698540 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000124","Filter: Windows, 1: Windows","2512"
"10:46:36.3698783 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.3699735 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3699961 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:36.3700174 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.3701117 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3701326 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\mscms.dll","0.0000120","Filter: mscms.dll, 1: mscms.dll","2512"
"10:46:36.3701552 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:36.3703635 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3703950 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:36.3704061 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000043","","2512"
"10:46:36.3704398 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3704586 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:36.3704791 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.3705725 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3705934 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.3706131 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.3707069 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3707274 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\setupapi.dll","0.0000111","Filter: setupapi.dll, 1: setupapi.dll","2512"
"10:46:36.3707487 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000035","","2512"
"10:46:36.3709190 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3709471 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:36.3709578 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000043","","2512"
"10:46:36.3709907 AM","firefox.exe","7384","CreateFile","C:\","0.0000076","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3710086 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000089","Filter: Windows, 1: Windows","2512"
"10:46:36.3710274 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.3711221 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3711430 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.3711622 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.3712535 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3712740 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\setupapi.dll","0.0000102","Filter: setupapi.dll, 1: setupapi.dll","2512"
"10:46:36.3712979 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.3714067 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3714463 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\setupapi.dll","0.0000056","AllocationSize: 4,534,272, EndOfFile: 4,530,784, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3714813 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\setupapi.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3714946 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\setupapi.dll","0.0000021","AllocationSize: 4,534,272, EndOfFile: 4,530,784, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3715146 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\setupapi.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.3716183 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000060","","2512"
"10:46:36.3717480 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3717864 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\setupapi.dll","0.0000026","AllocationSize: 4,534,272, EndOfFile: 4,530,784, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3718013 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\setupapi.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3718124 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\setupapi.dll","0.0000022","AllocationSize: 4,534,272, EndOfFile: 4,530,784, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3718316 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\setupapi.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.3719336 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\setupapi.dll","0.0000021","AllocationSize: 4,534,272, EndOfFile: 4,530,784, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3719468 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000056","","2512"
"10:46:36.3720962 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3721324 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\setupapi.dll","0.0000026","AllocationSize: 4,534,272, EndOfFile: 4,530,784, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3721461 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\setupapi.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3721567 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\setupapi.dll","0.0000018","AllocationSize: 4,534,272, EndOfFile: 4,530,784, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3721751 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\setupapi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.3735050 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000090","","2512"
"10:46:36.3744142 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3744514 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000034","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:36.3744646 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000047","","2512"
"10:46:36.3746638 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3746933 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:36.3747044 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000042","","2512"
"10:46:36.3749288 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3749570 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000029","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:36.3749681 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000038","","2512"
"10:46:36.3750043 AM","firefox.exe","7384","CreateFile","C:\","0.0000086","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3750257 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000123","Filter: Windows, 1: Windows","2512"
"10:46:36.3750495 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.3751554 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3751886 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000145","Filter: System32, 1: System32","2512"
"10:46:36.3752194 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000059","","2512"
"10:46:36.3753610 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3753926 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\setupapi.dll","0.0000158","Filter: setupapi.dll, 1: setupapi.dll","2512"
"10:46:36.3754237 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000056","","2512"
"10:46:36.3756776 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3757105 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:36.3757215 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000047","","2512"
"10:46:36.3757570 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3757770 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:36.3757975 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.3758888 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3759097 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.3759289 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.3760219 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3760428 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\cfgmgr32.dll","0.0000115","Filter: cfgmgr32.dll, 1: cfgmgr32.dll","2512"
"10:46:36.3760646 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.3762357 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3762643 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:36.3762749 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000043","","2512"
"10:46:36.3763082 AM","firefox.exe","7384","CreateFile","C:\","0.0000073","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3763261 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:36.3763453 AM","firefox.exe","7384","CloseFile","C:\","0.0000035","","2512"
"10:46:36.3764349 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3764554 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:36.3764746 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.3765745 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3765945 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\cfgmgr32.dll","0.0000115","Filter: cfgmgr32.dll, 1: cfgmgr32.dll","2512"
"10:46:36.3766163 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.3767545 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3767925 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000030","AllocationSize: 290,816, EndOfFile: 286,744, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3768108 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cfgmgr32.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3768236 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000022","AllocationSize: 290,816, EndOfFile: 286,744, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3768437 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cfgmgr32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.3768953 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000060","","2512"
"10:46:36.3770429 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3770839 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000026","AllocationSize: 290,816, EndOfFile: 286,744, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3770997 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cfgmgr32.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3771163 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000026","AllocationSize: 290,816, EndOfFile: 286,744, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3771377 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cfgmgr32.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:36.3771957 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000021","AllocationSize: 290,816, EndOfFile: 286,744, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3772110 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000090","","2512"
"10:46:36.3773467 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3773984 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000021","AllocationSize: 290,816, EndOfFile: 286,744, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3774116 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cfgmgr32.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3774222 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000018","AllocationSize: 290,816, EndOfFile: 286,744, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3774402 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cfgmgr32.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:36.3777734 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000060","","2512"
"10:46:36.3781493 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3781826 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:36.3781949 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000047","","2512"
"10:46:36.3784142 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3784428 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:36.3784539 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000043","","2512"
"10:46:36.3786656 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3786933 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:36.3787040 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000042","","2512"
"10:46:36.3787402 AM","firefox.exe","7384","CreateFile","C:\","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3787620 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000132","Filter: Windows, 1: Windows","2512"
"10:46:36.3787872 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.3788840 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3789062 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:36.3789271 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.3790205 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3790423 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\cfgmgr32.dll","0.0000154","Filter: cfgmgr32.dll, 1: cfgmgr32.dll","2512"
"10:46:36.3790683 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.3792804 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3793115 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.3793222 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000043","","2512"
"10:46:36.3793559 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3793751 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:36.3793952 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.3794848 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3795052 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.3795261 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.3796247 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3796537 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wintrust.dll","0.0000231","Filter: wintrust.dll, 1: wintrust.dll","2512"
"10:46:36.3796925 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000060","","2512"
"10:46:36.3799609 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3799933 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.3800049 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000042","","2512"
"10:46:36.3800398 AM","firefox.exe","7384","CreateFile","C:\","0.0000082","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3800590 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000099","Filter: Windows, 1: Windows","2512"
"10:46:36.3800795 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.3801713 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3801917 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.3802114 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.3803031 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3803232 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wintrust.dll","0.0000110","Filter: wintrust.dll, 1: wintrust.dll","2512"
"10:46:36.3803445 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.3804618 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3804985 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wintrust.dll","0.0000030","AllocationSize: 352,256, EndOfFile: 349,656, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3805147 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wintrust.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3805271 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wintrust.dll","0.0000047","AllocationSize: 352,256, EndOfFile: 349,656, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3805497 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wintrust.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.3805971 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000051","","2512"
"10:46:36.3807293 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000163","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3807797 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wintrust.dll","0.0000038","AllocationSize: 352,256, EndOfFile: 349,656, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3808006 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wintrust.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3808177 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wintrust.dll","0.0000029","AllocationSize: 352,256, EndOfFile: 349,656, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3808462 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wintrust.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:36.3809248 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wintrust.dll","0.0000034","AllocationSize: 352,256, EndOfFile: 349,656, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3809401 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000064","","2512"
"10:46:36.3810903 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3811296 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wintrust.dll","0.0000025","AllocationSize: 352,256, EndOfFile: 349,656, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3811432 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wintrust.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3811539 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wintrust.dll","0.0000017","AllocationSize: 352,256, EndOfFile: 349,656, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3811718 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wintrust.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.3814982 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000064","","2512"
"10:46:36.3818920 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3819244 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.3819364 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000047","","2512"
"10:46:36.3821442 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3821745 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000025","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.3821856 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000042","","2512"
"10:46:36.3823925 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3824202 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.3824309 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000038","","2512"
"10:46:36.3824672 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3824881 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000119","Filter: Windows, 1: Windows","2512"
"10:46:36.3825115 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.3826101 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3826323 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000106","Filter: System32, 1: System32","2512"
"10:46:36.3826536 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.3827539 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3827756 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wintrust.dll","0.0000120","Filter: wintrust.dll, 1: wintrust.dll","2512"
"10:46:36.3827978 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:36.3830141 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3830359 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:36.3830466 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000038","","2512"
"10:46:36.3830799 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3830986 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000120","Filter: Windows, 1: Windows","2512"
"10:46:36.3831212 AM","firefox.exe","7384","CloseFile","C:\","0.0000035","","2512"
"10:46:36.3832108 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000099","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3832313 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:36.3832514 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.3834199 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3834395 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000026","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:36.3834493 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000039","","2512"
"10:46:36.3834813 AM","firefox.exe","7384","CreateFile","C:\","0.0000073","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3834988 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000090","Filter: Windows, 1: Windows","2512"
"10:46:36.3835176 AM","firefox.exe","7384","CloseFile","C:\","0.0000167","","2512"
"10:46:36.3836260 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3836460 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.3836657 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.3837839 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3838107 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmmbase.dll","0.0000030","AllocationSize: 163,840, EndOfFile: 162,240, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3838269 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3838389 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmmbase.dll","0.0000021","AllocationSize: 163,840, EndOfFile: 162,240, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3838585 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.3839042 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000081","","2512"
"10:46:36.3840642 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3840923 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmmbase.dll","0.0000030","AllocationSize: 163,840, EndOfFile: 162,240, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3841068 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3841175 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmmbase.dll","0.0000021","AllocationSize: 163,840, EndOfFile: 162,240, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3841363 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.3841888 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmmbase.dll","0.0000021","AllocationSize: 163,840, EndOfFile: 162,240, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3842020 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000051","","2512"
"10:46:36.3843330 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3843586 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmmbase.dll","0.0000025","AllocationSize: 163,840, EndOfFile: 162,240, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3843718 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3843825 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmmbase.dll","0.0000017","AllocationSize: 163,840, EndOfFile: 162,240, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3844004 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.3846965 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000055","","2512"
"10:46:36.3850639 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3850873 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000034","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:36.3850993 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000047","","2512"
"10:46:36.3852879 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3853079 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000026","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:36.3853186 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000042","","2512"
"10:46:36.3855195 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3855400 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000026","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:36.3855503 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000038","","2512"
"10:46:36.3855848 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3856053 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000115","Filter: Windows, 1: Windows","2512"
"10:46:36.3856292 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.3857222 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3857440 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000106","Filter: System32, 1: System32","2512"
"10:46:36.3857653 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.3859769 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3860102 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:36.3860209 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000047","","2512"
"10:46:36.3860554 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3860742 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:36.3860943 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.3861843 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3862052 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.3862248 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.3863187 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3863387 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\profapi.dll","0.0000111","Filter: profapi.dll, 1: profapi.dll","2512"
"10:46:36.3863605 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.3866233 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3866784 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000055","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:36.3867010 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000077","","2512"
"10:46:36.3867637 AM","firefox.exe","7384","CreateFile","C:\","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3867970 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000170","Filter: Windows, 1: Windows","2512"
"10:46:36.3868320 AM","firefox.exe","7384","CloseFile","C:\","0.0000059","","2512"
"10:46:36.3869822 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3870142 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000149","Filter: System32, 1: System32","2512"
"10:46:36.3870500 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000060","","2512"
"10:46:36.3872104 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3872433 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\profapi.dll","0.0000175","Filter: profapi.dll, 1: profapi.dll","2512"
"10:46:36.3872770 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000055","","2512"
"10:46:36.3874600 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000184","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3875518 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\profapi.dll","0.0000051","AllocationSize: 118,784, EndOfFile: 115,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3875778 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\profapi.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3875953 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\profapi.dll","0.0000030","AllocationSize: 118,784, EndOfFile: 115,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3876247 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\profapi.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:36.3876947 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000089","","2512"
"10:46:36.3878590 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3879016 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\profapi.dll","0.0000030","AllocationSize: 118,784, EndOfFile: 115,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3879170 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\profapi.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3879285 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\profapi.dll","0.0000017","AllocationSize: 118,784, EndOfFile: 115,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3879468 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\profapi.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.3880062 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\profapi.dll","0.0000025","AllocationSize: 118,784, EndOfFile: 115,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3880198 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000060","","2512"
"10:46:36.3881491 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000136","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3881866 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\profapi.dll","0.0000026","AllocationSize: 118,784, EndOfFile: 115,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3882331 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\profapi.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3882515 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\profapi.dll","0.0000034","AllocationSize: 118,784, EndOfFile: 115,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3882792 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\profapi.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:36.3886833 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000089","","2512"
"10:46:36.3887682 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0046592","Offset: 15,761,408, Length: 983,040, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:36.3890801 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3891176 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:36.3891326 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000051","","2512"
"10:46:36.3894265 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3894700 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:36.3894884 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000064","","2512"
"10:46:36.3897145 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3897431 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:36.3897542 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000038","","2512"
"10:46:36.3897964 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3898195 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000124","Filter: Windows, 1: Windows","2512"
"10:46:36.3898442 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.3899381 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3899607 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:36.3899825 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.3900772 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3900985 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\profapi.dll","0.0000162","Filter: profapi.dll, 1: profapi.dll","2512"
"10:46:36.3901254 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:36.3903370 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3903690 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000034","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.3903801 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000047","","2512"
"10:46:36.3904147 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3904335 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000093","Filter: Windows, 1: Windows","2512"
"10:46:36.3904531 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.3905534 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3905747 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:36.3905964 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.3906886 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3907095 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dnsapi.dll","0.0000107","Filter: dnsapi.dll, 1: dnsapi.dll","2512"
"10:46:36.3907304 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:36.3909160 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3909446 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.3909553 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000042","","2512"
"10:46:36.3909890 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3910073 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:36.3910270 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.3911204 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3911404 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:36.3911596 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000035","","2512"
"10:46:36.3912505 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3912706 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dnsapi.dll","0.0000106","Filter: dnsapi.dll, 1: dnsapi.dll","2512"
"10:46:36.3912915 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.3914114 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3914532 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dnsapi.dll","0.0000030","AllocationSize: 770,048, EndOfFile: 766,704, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3914703 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3914822 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dnsapi.dll","0.0000021","AllocationSize: 770,048, EndOfFile: 766,704, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3915070 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.3915637 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000055","","2512"
"10:46:36.3917002 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3917391 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dnsapi.dll","0.0000025","AllocationSize: 770,048, EndOfFile: 766,704, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3917536 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3917651 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dnsapi.dll","0.0000017","AllocationSize: 770,048, EndOfFile: 766,704, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3917834 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.3918389 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dnsapi.dll","0.0000021","AllocationSize: 770,048, EndOfFile: 766,704, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3918517 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000055","","2512"
"10:46:36.3919725 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000123","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3920074 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dnsapi.dll","0.0000026","AllocationSize: 770,048, EndOfFile: 766,704, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3920207 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3920309 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dnsapi.dll","0.0000021","AllocationSize: 770,048, EndOfFile: 766,704, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3920488 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.3924687 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000051","","2512"
"10:46:36.3928778 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3929098 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.3929218 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000043","","2512"
"10:46:36.3931163 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3931454 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000025","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.3931565 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000042","","2512"
"10:46:36.3933600 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3933937 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000025","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.3934043 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000039","","2512"
"10:46:36.3934491 AM","firefox.exe","7384","CreateFile","C:\","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3935230 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000260","Filter: Windows, 1: Windows","2512"
"10:46:36.3935771 AM","firefox.exe","7384","CloseFile","C:\","0.0000103","","2512"
"10:46:36.3937367 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000457","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3938020 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000132","Filter: System32, 1: System32","2512"
"10:46:36.3938285 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000046","","2512"
"10:46:36.3939351 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3939607 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dnsapi.dll","0.0000150","Filter: dnsapi.dll, 1: dnsapi.dll","2512"
"10:46:36.3940290 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000094","","2512"
"10:46:36.3943669 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3944027 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000035","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","2512"
"10:46:36.3944151 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000047","","2512"
"10:46:36.3944535 AM","firefox.exe","7384","CreateFile","C:\","0.0000086","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3944744 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000115","Filter: Windows, 1: Windows","2512"
"10:46:36.3945064 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:36.3946165 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3946391 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000115","Filter: System32, 1: System32","2512"
"10:46:36.3946613 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.3947637 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3947855 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\userenv.dll","0.0000128","Filter: userenv.dll, 1: userenv.dll","2512"
"10:46:36.3948089 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.3949834 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3950120 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","2512"
"10:46:36.3950227 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000043","","2512"
"10:46:36.3950555 AM","firefox.exe","7384","CreateFile","C:\","0.0000082","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3950743 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:36.3950939 AM","firefox.exe","7384","CloseFile","C:\","0.0000035","","2512"
"10:46:36.3951840 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3952045 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000093","Filter: System32, 1: System32","2512"
"10:46:36.3952237 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.3953231 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3953435 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\userenv.dll","0.0000116","Filter: userenv.dll, 1: userenv.dll","2512"
"10:46:36.3953653 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.3954865 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000149","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3955262 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\userenv.dll","0.0000034","AllocationSize: 151,552, EndOfFile: 147,872, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3955441 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3955569 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\userenv.dll","0.0000017","AllocationSize: 151,552, EndOfFile: 147,872, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3955761 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.3956328 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000060","","2512"
"10:46:36.3958090 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000184","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3958619 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\userenv.dll","0.0000035","AllocationSize: 151,552, EndOfFile: 147,872, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3959183 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000072","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3959460 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\userenv.dll","0.0000051","AllocationSize: 151,552, EndOfFile: 147,872, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3959844 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:36.3960749 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\userenv.dll","0.0000038","AllocationSize: 151,552, EndOfFile: 147,872, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3960970 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000099","","2512"
"10:46:36.3963142 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000205","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3963710 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\userenv.dll","0.0000042","AllocationSize: 151,552, EndOfFile: 147,872, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3963931 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000035","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.3964115 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\userenv.dll","0.0000026","AllocationSize: 151,552, EndOfFile: 147,872, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.3964426 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:36.3970037 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000090","","2512"
"10:46:36.3975708 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3976198 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","2512"
"10:46:36.3976394 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000069","","2512"
"10:46:36.3979484 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3979936 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","2512"
"10:46:36.3980119 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000069","","2512"
"10:46:36.3983426 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3983857 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","2512"
"10:46:36.3984028 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000064","","2512"
"10:46:36.3984578 AM","firefox.exe","7384","CreateFile","C:\","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3984881 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000175","Filter: Windows, 1: Windows","2512"
"10:46:36.3985244 AM","firefox.exe","7384","CloseFile","C:\","0.0000059","","2512"
"10:46:36.3986660 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3986980 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000154","Filter: System32, 1: System32","2512"
"10:46:36.3987292 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000059","","2512"
"10:46:36.3988708 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3989020 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\userenv.dll","0.0000170","Filter: userenv.dll, 1: userenv.dll","2512"
"10:46:36.3989348 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000056","","2512"
"10:46:36.3992591 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3993064 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:36.3993244 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000068","","2512"
"10:46:36.3993777 AM","firefox.exe","7384","CreateFile","C:\","0.0000119","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3994063 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000141","Filter: Windows, 1: Windows","2512"
"10:46:36.3994361 AM","firefox.exe","7384","CloseFile","C:\","0.0000060","","2512"
"10:46:36.3995769 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3996081 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000136","Filter: System32, 1: System32","2512"
"10:46:36.3996380 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:36.3997783 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.3998099 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\ws2_32.dll","0.0000162","Filter: ws2_32.dll, 1: ws2_32.dll","2512"
"10:46:36.3998428 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000055","","2512"
"10:46:36.4001248 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4001687 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000047","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:36.4001875 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000068","","2512"
"10:46:36.4002400 AM","firefox.exe","7384","CreateFile","C:\","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4002690 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000145","Filter: Windows, 1: Windows","2512"
"10:46:36.4002997 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:36.4004397 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000140","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4004708 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000149","Filter: System32, 1: System32","2512"
"10:46:36.4005024 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000072","","2512"
"10:46:36.4006513 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4006829 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\ws2_32.dll","0.0000243","Filter: ws2_32.dll, 1: ws2_32.dll","2512"
"10:46:36.4007238 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000060","","2512"
"10:46:36.4008932 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000171","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4009457 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ws2_32.dll","0.0000047","AllocationSize: 434,176, EndOfFile: 430,408, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4009709 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ws2_32.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.4009892 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ws2_32.dll","0.0000034","AllocationSize: 434,176, EndOfFile: 430,408, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4010221 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ws2_32.dll","0.0000029","SyncType: SyncTypeOther","2512"
"10:46:36.4010976 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000081","","2512"
"10:46:36.4012853 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000188","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4013378 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ws2_32.dll","0.0000038","AllocationSize: 434,176, EndOfFile: 430,408, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4013600 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ws2_32.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.4013783 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ws2_32.dll","0.0000034","AllocationSize: 434,176, EndOfFile: 430,408, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4014103 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ws2_32.dll","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:36.4014922 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ws2_32.dll","0.0000035","AllocationSize: 434,176, EndOfFile: 430,408, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4015144 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000077","","2512"
"10:46:36.4017184 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000179","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4017692 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ws2_32.dll","0.0000038","AllocationSize: 434,176, EndOfFile: 430,408, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4017901 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ws2_32.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.4018076 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ws2_32.dll","0.0000029","AllocationSize: 434,176, EndOfFile: 430,408, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4018378 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ws2_32.dll","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:36.4025030 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000064","","2512"
"10:46:36.4028819 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4029148 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:36.4029276 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000047","","2512"
"10:46:36.4031319 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4031695 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:36.4031857 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000068","","2512"
"10:46:36.4035112 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4035441 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:36.4035556 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000047","","2512"
"10:46:36.4035957 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4036179 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000128","Filter: Windows, 1: Windows","2512"
"10:46:36.4036431 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.4037387 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4037613 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:36.4037830 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.4038782 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4038995 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\ws2_32.dll","0.0000205","Filter: ws2_32.dll, 1: ws2_32.dll","2512"
"10:46:36.4039349 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000043","","2512"
"10:46:36.4041670 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4041982 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.4042093 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000042","","2512"
"10:46:36.4042434 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4042622 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:36.4042822 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.4043731 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4043936 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.4044132 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.4045075 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4045276 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\SHCore.dll","0.0000179","Filter: SHCore.dll, 1: SHCore.dll","2512"
"10:46:36.4045561 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:36.4047260 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4047541 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.4047644 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000038","","2512"
"10:46:36.4047968 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4048147 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:36.4048343 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.4049303 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4049504 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.4049700 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.4050605 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4050809 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\SHCore.dll","0.0000103","Filter: SHCore.dll, 1: SHCore.dll","2512"
"10:46:36.4051010 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:36.4052111 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4052482 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\SHCore.dll","0.0000030","AllocationSize: 679,936, EndOfFile: 678,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4052653 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\SHCore.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.4052789 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\SHCore.dll","0.0000026","AllocationSize: 679,936, EndOfFile: 678,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4053020 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\SHCore.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.4053591 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000073","","2512"
"10:46:36.4055481 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000180","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4055516 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0458756","Offset: 16,777,216, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:36.4056173 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\SHCore.dll","0.0000051","AllocationSize: 679,936, EndOfFile: 678,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4056446 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\SHCore.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.4056621 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\SHCore.dll","0.0000030","AllocationSize: 679,936, EndOfFile: 678,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4056919 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\SHCore.dll","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:36.4057491 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\SHCore.dll","0.0000021","AllocationSize: 679,936, EndOfFile: 678,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4057623 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000060","","2512"
"10:46:36.4058997 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4059356 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\SHCore.dll","0.0000021","AllocationSize: 679,936, EndOfFile: 678,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4059488 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\SHCore.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.4059595 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\SHCore.dll","0.0000017","AllocationSize: 679,936, EndOfFile: 678,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4059769 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\SHCore.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.4063742 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000051","","2512"
"10:46:36.4068136 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4068461 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.4068580 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000047","","2512"
"10:46:36.4070475 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4070756 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.4070867 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000043","","2512"
"10:46:36.4073261 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4073542 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.4073649 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000043","","2512"
"10:46:36.4073999 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4074204 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000111","Filter: Windows, 1: Windows","2512"
"10:46:36.4074430 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.4075381 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4075599 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:36.4075812 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.4076738 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4076947 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\SHCore.dll","0.0000103","Filter: SHCore.dll, 1: SHCore.dll","2512"
"10:46:36.4077152 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:36.4079208 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4079430 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.4079537 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000038","","2512"
"10:46:36.4080488 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4080719 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000111","Filter: mozglue.dll, 1: mozglue.dll","2512"
"10:46:36.4080945 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000034","","2512"
"10:46:36.4082575 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4082767 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.4082865 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000038","","2512"
"10:46:36.4083868 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4084081 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000098","Filter: mozglue.dll, 1: mozglue.dll","2512"
"10:46:36.4084286 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000038","","2512"
"10:46:36.4085352 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000116","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4085613 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000030","AllocationSize: 569,344, EndOfFile: 566,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.4085762 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.4085882 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000017","AllocationSize: 569,344, EndOfFile: 566,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.4086069 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.4086539 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000051","","2512"
"10:46:36.4087750 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000116","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4088019 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000026","AllocationSize: 569,344, EndOfFile: 566,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.4088151 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.4088258 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000017","AllocationSize: 569,344, EndOfFile: 566,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.4088442 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:36.4088966 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000017","AllocationSize: 569,344, EndOfFile: 566,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.4089090 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000051","","2512"
"10:46:36.4090221 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000136","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4090498 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000026","AllocationSize: 569,344, EndOfFile: 566,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.4090626 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.4090728 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000018","AllocationSize: 569,344, EndOfFile: 566,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.4090908 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:36.4093523 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000051","","2512"
"10:46:36.4096800 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4097030 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.4097146 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000046","","2512"
"10:46:36.4098984 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4099181 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.4099283 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000039","","2512"
"10:46:36.4102052 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4102355 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.4102513 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000060","","2512"
"10:46:36.4104015 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4104369 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000196","Filter: mozglue.dll, 1: mozglue.dll","2512"
"10:46:36.4104736 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000064","","2512"
"10:46:36.4108055 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000355","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4108691 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000043","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.4108858 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000068","","2512"
"10:46:36.4109416 AM","firefox.exe","7384","CreateFile","C:\","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4109728 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000166","Filter: Windows, 1: Windows","2512"
"10:46:36.4110056 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:36.4111422 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4111699 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000115","Filter: System32, 1: System32","2512"
"10:46:36.4111930 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000042","","2512"
"10:46:36.4112932 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4113154 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\oleaut32.dll","0.0000209","Filter: oleaut32.dll, 1: oleaut32.dll","2512"
"10:46:36.4113474 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000043","","2512"
"10:46:36.4115603 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4116030 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000038","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.4116183 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000064","","2512"
"10:46:36.4116661 AM","firefox.exe","7384","CreateFile","C:\","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4116939 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000136","Filter: Windows, 1: Windows","2512"
"10:46:36.4117195 AM","firefox.exe","7384","CloseFile","C:\","0.0000042","","2512"
"10:46:36.4118172 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4118381 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:36.4118581 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.4119516 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4119725 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\oleaut32.dll","0.0000183","Filter: oleaut32.dll, 1: oleaut32.dll","2512"
"10:46:36.4120011 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:36.4121227 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4121602 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\oleaut32.dll","0.0000034","AllocationSize: 786,432, EndOfFile: 786,080, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4121777 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\oleaut32.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.4121901 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\oleaut32.dll","0.0000021","AllocationSize: 786,432, EndOfFile: 786,080, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4122101 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\oleaut32.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.4122690 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000051","","2512"
"10:46:36.4123991 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4124363 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\oleaut32.dll","0.0000029","AllocationSize: 786,432, EndOfFile: 786,080, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4124525 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\oleaut32.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.4124640 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\oleaut32.dll","0.0000017","AllocationSize: 786,432, EndOfFile: 786,080, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4124819 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\oleaut32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.4125391 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\oleaut32.dll","0.0000021","AllocationSize: 786,432, EndOfFile: 786,080, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4125519 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000051","","2512"
"10:46:36.4126807 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4127153 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\oleaut32.dll","0.0000026","AllocationSize: 786,432, EndOfFile: 786,080, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4127281 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\oleaut32.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.4127388 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\oleaut32.dll","0.0000017","AllocationSize: 786,432, EndOfFile: 786,080, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4127563 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\oleaut32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.4131727 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000055","","2512"
"10:46:36.4136083 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4136399 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000030","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.4136514 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000047","","2512"
"10:46:36.4138622 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4138912 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000026","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.4139019 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000038","","2512"
"10:46:36.4140811 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4141084 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000021","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.4141182 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000043","","2512"
"10:46:36.4142914 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4143174 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000026","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.4143277 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000038","","2512"
"10:46:36.4145508 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4145777 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000026","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.4145879 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000039","","2512"
"10:46:36.4146221 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4146417 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000107","Filter: Windows, 1: Windows","2512"
"10:46:36.4146639 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.4147556 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4147765 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000103","Filter: System32, 1: System32","2512"
"10:46:36.4147974 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.4148913 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4149118 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\oleaut32.dll","0.0000115","Filter: oleaut32.dll, 1: oleaut32.dll","2512"
"10:46:36.4149335 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:36.4151371 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4151674 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000051","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","2512"
"10:46:36.4151806 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000043","","2512"
"10:46:36.4152186 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4152373 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:36.4152574 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.4153470 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4153675 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:36.4153879 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000035","","2512"
"10:46:36.4154818 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4155023 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\winrnr.dll","0.0000179","Filter: winrnr.dll, 1: winrnr.dll","2512"
"10:46:36.4155305 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:36.4157348 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4157647 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000030","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","2512"
"10:46:36.4157754 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000042","","2512"
"10:46:36.4158086 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4158270 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:36.4158466 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.4159362 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4159558 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.4159755 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.4160668 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4160868 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\winrnr.dll","0.0000115","Filter: winrnr.dll, 1: winrnr.dll","2512"
"10:46:36.4161086 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:36.4162170 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4162515 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winrnr.dll","0.0000026","AllocationSize: 32,768, EndOfFile: 31,232, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4162673 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.4162793 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winrnr.dll","0.0000021","AllocationSize: 32,768, EndOfFile: 31,232, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4162980 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.4163394 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000051","","2512"
"10:46:36.4164585 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4164964 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winrnr.dll","0.0000030","AllocationSize: 32,768, EndOfFile: 31,232, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4165105 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.4165220 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winrnr.dll","0.0000022","AllocationSize: 32,768, EndOfFile: 31,232, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4165404 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.4165818 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000051","","2512"
"10:46:36.4167750 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4167985 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:36.4168087 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000039","","2512"
"10:46:36.4169867 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4170076 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000025","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:36.4170174 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:36.4171168 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4171518 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winrnr.dll","0.0000025","AllocationSize: 32,768, EndOfFile: 31,232, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4171659 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.4171765 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winrnr.dll","0.0000022","AllocationSize: 32,768, EndOfFile: 31,232, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4171940 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.4172691 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winrnr.dll","0.0000022","AllocationSize: 32,768, EndOfFile: 31,232, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4172811 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.4172905 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winrnr.dll","0.0000017","AllocationSize: 32,768, EndOfFile: 31,232, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4173075 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.4173344 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\winrnr.dll","0.0000205","Offset: 0, Length: 31,232, Priority: Normal","2512"
"10:46:36.4176996 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4177252 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000120","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:36.4178357 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000184","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.4179428 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000107","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4179672 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000025","Information: DACL","2512"
"10:46:36.4179791 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000038","","2512"
"10:46:36.4180926 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.4181912 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000149","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4182223 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000030","Information: DACL","2512"
"10:46:36.4182372 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000052","","2512"
"10:46:36.4185649 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000209","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:36.4187134 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000188","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.4188252 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000124","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4188508 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000025","Information: DACL","2512"
"10:46:36.4188627 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000043","","2512"
"10:46:36.4189796 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000184","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.4190820 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4191051 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000017","Information: DACL","2512"
"10:46:36.4191162 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:36.4195697 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000252","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4196132 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000056","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:21:19 PM, ChangeTime: 3/20/2019 7:08:08 PM, AllocationSize: 335872, EndOfFile: 333889, FileAttributes: A","2512"
"10:46:36.4196337 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000077","","2512"
"10:46:36.4196819 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000051","","2512"
"10:46:36.4196990 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:36.4199456 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4199695 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:21:19 PM, ChangeTime: 3/20/2019 7:08:08 PM, AllocationSize: 335872, EndOfFile: 333889, FileAttributes: A","2512"
"10:46:36.4199866 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","","2512"
"10:46:36.4201035 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4201316 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 335,872, EndOfFile: 333,889, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.4201487 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.4201602 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000022","AllocationSize: 335,872, EndOfFile: 333,889, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.4201781 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.4204875 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:36.4205126 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:21:19 PM, ChangeTime: 3/20/2019 7:08:08 PM, FileAttributes: A, AllocationSize: 335,872, EndOfFile: 333,889, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x3000000061276, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:36.4206424 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000149","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4206735 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 335,872, EndOfFile: 333,889, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.4206893 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.4207004 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 335,872, EndOfFile: 333,889, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.4207187 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.4207793 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000060","","2512"
"10:46:36.4209338 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4209692 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 335,872, EndOfFile: 333,889, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.4209837 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.4209948 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 335,872, EndOfFile: 333,889, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.4210123 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.4210494 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000055","","2512"
"10:46:36.4213212 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000136","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4213502 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 335,872, EndOfFile: 333,889, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.4213643 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.4213745 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 335,872, EndOfFile: 333,889, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.4213924 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.4216830 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000055","","2512"
"10:46:36.4264105 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000128","","2512"
"10:46:36.4265146 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","","2512"
"10:46:36.4273329 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4273747 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000043","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","2512"
"10:46:36.4273888 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000047","","2512"
"10:46:36.4275957 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4276256 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000030","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","2512"
"10:46:36.4276371 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000043","","2512"
"10:46:36.4278428 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4278714 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000030","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","2512"
"10:46:36.4278825 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000042","","2512"
"10:46:36.4279187 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4279418 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000145","Filter: Windows, 1: Windows","2512"
"10:46:36.4279682 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.4280732 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4280958 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:36.4281176 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.4282119 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4282340 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\winrnr.dll","0.0000116","Filter: winrnr.dll, 1: winrnr.dll","2512"
"10:46:36.4282562 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:36.4284691 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4284905 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000030","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.4285007 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000043","","2512"
"10:46:36.4285336 AM","firefox.exe","7384","CreateFile","C:\","0.0000076","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4285519 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000103","Filter: Windows, 1: Windows","2512"
"10:46:36.4285767 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.4286663 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4286863 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.4287059 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000035","","2512"
"10:46:36.4288779 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4288975 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000026","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.4289078 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000034","","2512"
"10:46:36.4289393 AM","firefox.exe","7384","CreateFile","C:\","0.0000073","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4289568 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000090","Filter: Windows, 1: Windows","2512"
"10:46:36.4289773 AM","firefox.exe","7384","CloseFile","C:\","0.0000047","","2512"
"10:46:36.4290878 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4291083 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:36.4291283 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000035","","2512"
"10:46:36.4292410 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4292704 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\windows.storage.dll","0.0000030","AllocationSize: 7,438,336, EndOfFile: 7,436,016, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4292871 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\windows.storage.dll","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.4292994 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\windows.storage.dll","0.0000022","AllocationSize: 7,438,336, EndOfFile: 7,436,016, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4293195 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\windows.storage.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.4294232 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000055","","2512"
"10:46:36.4295512 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4295793 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\windows.storage.dll","0.0000026","AllocationSize: 7,438,336, EndOfFile: 7,436,016, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4295938 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\windows.storage.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.4296049 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\windows.storage.dll","0.0000017","AllocationSize: 7,438,336, EndOfFile: 7,436,016, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4296228 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\windows.storage.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.4297252 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\windows.storage.dll","0.0000026","AllocationSize: 7,438,336, EndOfFile: 7,436,016, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4297385 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000051","","2512"
"10:46:36.4299015 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4299279 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\windows.storage.dll","0.0000026","AllocationSize: 7,438,336, EndOfFile: 7,436,016, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4299411 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\windows.storage.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.4299514 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\windows.storage.dll","0.0000021","AllocationSize: 7,438,336, EndOfFile: 7,436,016, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4299697 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\windows.storage.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.4318104 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000064","","2512"
"10:46:36.4330498 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4330746 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000030","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.4330865 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000047","","2512"
"10:46:36.4333272 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4333489 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000026","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.4333600 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000043","","2512"
"10:46:36.4336344 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4336561 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000026","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.4336668 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000043","","2512"
"10:46:36.4337052 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4337278 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000132","Filter: Windows, 1: Windows","2512"
"10:46:36.4337534 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.4338673 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4338908 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000115","Filter: System32, 1: System32","2512"
"10:46:36.4339134 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:36.4341370 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4341703 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:36.4341818 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000043","","2512"
"10:46:36.4342159 AM","firefox.exe","7384","CreateFile","C:\","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4342355 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000103","Filter: Windows, 1: Windows","2512"
"10:46:36.4342565 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.4343546 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4343755 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:36.4343977 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.4344911 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4345120 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\msvcrt.dll","0.0000120","Filter: msvcrt.dll, 1: msvcrt.dll","2512"
"10:46:36.4345342 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.4347215 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4347535 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:36.4347638 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000047","","2512"
"10:46:36.4347983 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4348167 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:36.4348367 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:36.4349344 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4349558 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000093","Filter: System32, 1: System32","2512"
"10:46:36.4349758 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.4350675 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000099","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4350885 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\msvcrt.dll","0.0000106","Filter: msvcrt.dll, 1: msvcrt.dll","2512"
"10:46:36.4351098 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:36.4352284 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4352647 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcrt.dll","0.0000030","AllocationSize: 638,976, EndOfFile: 636,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4352822 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcrt.dll","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.4352945 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcrt.dll","0.0000022","AllocationSize: 638,976, EndOfFile: 636,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4353142 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcrt.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:36.4353675 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000060","","2512"
"10:46:36.4355023 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4355390 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcrt.dll","0.0000030","AllocationSize: 638,976, EndOfFile: 636,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4355535 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcrt.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.4355650 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcrt.dll","0.0000017","AllocationSize: 638,976, EndOfFile: 636,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4355834 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcrt.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.4356499 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcrt.dll","0.0000030","AllocationSize: 638,976, EndOfFile: 636,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4356649 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000055","","2512"
"10:46:36.4357942 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4358287 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcrt.dll","0.0000026","AllocationSize: 638,976, EndOfFile: 636,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4358419 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcrt.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.4358522 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcrt.dll","0.0000017","AllocationSize: 638,976, EndOfFile: 636,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.4358693 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcrt.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.4362579 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000056","","2512"
"10:46:36.4367128 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4367443 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000035","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:36.4367567 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000047","","2512"
"10:46:36.4369560 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4369850 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:36.4369965 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000038","","2512"
"10:46:36.4372026 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4372299 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:36.4372397 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000043","","2512"
"10:46:36.4372743 AM","firefox.exe","7384","CreateFile","C:\","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4372969 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000119","Filter: Windows, 1: Windows","2512"
"10:46:36.4373199 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.4374138 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4374373 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000140","Filter: System32, 1: System32","2512"
"10:46:36.4374471 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:36.4374663 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000051","","2512"
"10:46:36.4374765 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 41142, endtime: 41142, seqnum: 0, connid: 0","0"
"10:46:36.4375422 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:36.4375665 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 41142, endtime: 41142, seqnum: 0, connid: 0","0"
"10:46:36.4376045 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4376365 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\msvcrt.dll","0.0000184","Filter: msvcrt.dll, 1: msvcrt.dll","2512"
"10:46:36.4376668 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000043","","2512"
"10:46:36.4378806 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4378981 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Keyboard Layouts","0.0000081","Desired Access: Enumerate Sub Keys","2512"
"10:46:36.4379164 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000073","Desired Access: Enumerate Sub Keys","2512"
"10:46:36.4379544 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000059","Index: 0, Name: 00000401","2512"
"10:46:36.4379766 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4379962 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000401","0.0000055","Desired Access: Query Value","2512"
"10:46:36.4380162 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000401\Layout File","0.0000047","Type: REG_SZ, Length: 20, Data: KBDA1.DLL","2512"
"10:46:36.4380606 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000401","0.0000026","","2512"
"10:46:36.4380760 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 1, Name: 00000402","2512"
"10:46:36.4380892 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4381041 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000402","0.0000073","Desired Access: Query Value","2512"
"10:46:36.4381238 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000402\Layout File","0.0000042","Type: REG_SZ, Length: 20, Data: KBDBU.DLL","2512"
"10:46:36.4381383 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000402","0.0000012","","2512"
"10:46:36.4381485 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 2, Name: 00000404","2512"
"10:46:36.4381575 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4381664 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000404","0.0000026","Desired Access: Query Value","2512"
"10:46:36.4381762 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000404\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:36.4381865 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000404","0.0000013","","2512"
"10:46:36.4381950 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 3, Name: 00000405","2512"
"10:46:36.4382035 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4382117 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000405","0.0000025","Desired Access: Query Value","2512"
"10:46:36.4382227 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000405\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDCZ.DLL","2512"
"10:46:36.4382326 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000405","0.0000012","","2512"
"10:46:36.4382407 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 4, Name: 00000406","2512"
"10:46:36.4382488 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4382569 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000406","0.0000025","Desired Access: Query Value","2512"
"10:46:36.4382663 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000406\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDDA.DLL","2512"
"10:46:36.4382757 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000406","0.0000012","","2512"
"10:46:36.4382838 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 5, Name: 00000407","2512"
"10:46:36.4382919 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4383000 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000407","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4383175 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000407\Layout File","0.0000055","Type: REG_SZ, Length: 20, Data: KBDGR.DLL","2512"
"10:46:36.4383311 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000407","0.0000009","","2512"
"10:46:36.4383397 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 6, Name: 00000408","2512"
"10:46:36.4383478 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4383563 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000408","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4383653 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000408\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDHE.DLL","2512"
"10:46:36.4383746 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000408","0.0000009","","2512"
"10:46:36.4383883 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 7, Name: 00000409","2512"
"10:46:36.4384002 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4384096 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000409","0.0000026","Desired Access: Query Value","2512"
"10:46:36.4384105 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4384194 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000409\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:36.4384288 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000409","0.0000009","","2512"
"10:46:36.4384369 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 8, Name: 0000040a","2512"
"10:46:36.4384386 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000035","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","4408"
"10:46:36.4384459 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4384493 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000056","","4408"
"10:46:36.4384544 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040a","0.0000026","Desired Access: Query Value","2512"
"10:46:36.4384642 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040a\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDSP.DLL","2512"
"10:46:36.4384749 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040a","0.0000009","","2512"
"10:46:36.4384834 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 9, Name: 0000040b","2512"
"10:46:36.4384915 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4384992 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040b","0.0000022","Desired Access: Query Value","2512"
"10:46:36.4385082 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040b\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDFI.DLL","2512"
"10:46:36.4385176 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040b","0.0000008","","2512"
"10:46:36.4385253 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 10, Name: 0000040c","2512"
"10:46:36.4385334 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4385415 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040c","0.0000025","Desired Access: Query Value","2512"
"10:46:36.4385504 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040c\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDFR.DLL","2512"
"10:46:36.4385594 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040c","0.0000008","","2512"
"10:46:36.4385671 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 11, Name: 0000040d","2512"
"10:46:36.4385752 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4385829 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040d","0.0000025","Desired Access: Query Value","2512"
"10:46:36.4385927 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040d\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDHEB.DLL","2512"
"10:46:36.4386038 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040d","0.0000008","","2512"
"10:46:36.4386114 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 12, Name: 0000040e","2512"
"10:46:36.4386195 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4386277 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040e","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4386366 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040e\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDHU.DLL","2512"
"10:46:36.4386456 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040e","0.0000008","","2512"
"10:46:36.4386533 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 13, Name: 0000040f","2512"
"10:46:36.4386614 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4386690 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040f","0.0000022","Desired Access: Query Value","2512"
"10:46:36.4386742 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4386789 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040f\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDIC.DLL","2512"
"10:46:36.4386882 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040f","0.0000009","","2512"
"10:46:36.4386942 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000030","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","4408"
"10:46:36.4386963 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 14, Name: 00000410","2512"
"10:46:36.4387036 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000043","","4408"
"10:46:36.4387057 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4387138 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000410","0.0000026","Desired Access: Query Value","2512"
"10:46:36.4387237 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000410\Layout File","0.0000017","Type: REG_SZ, Length: 20, Data: KBDIT.DLL","2512"
"10:46:36.4387326 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000410","0.0000009","","2512"
"10:46:36.4387407 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 15, Name: 00000411","2512"
"10:46:36.4387488 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4387569 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000411","0.0000022","Desired Access: Query Value","2512"
"10:46:36.4387655 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000411\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDJPN.DLL","2512"
"10:46:36.4387749 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000411","0.0000008","","2512"
"10:46:36.4387825 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 16, Name: 00000412","2512"
"10:46:36.4387911 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4387988 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000412","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4388077 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000412\Layout File","0.0000017","Type: REG_SZ, Length: 22, Data: KBDKOR.DLL","2512"
"10:46:36.4388171 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000412","0.0000021","","2512"
"10:46:36.4388273 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 17, Name: 00000413","2512"
"10:46:36.4388363 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4388470 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000413","0.0000030","Desired Access: Query Value","2512"
"10:46:36.4388572 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000413\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDNE.DLL","2512"
"10:46:36.4388683 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000413","0.0000013","","2512"
"10:46:36.4388798 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 18, Name: 00000414","2512"
"10:46:36.4388930 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4389054 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000414","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4389169 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4389195 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000414\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDNO.DLL","2512"
"10:46:36.4389349 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000414","0.0000017","","2512"
"10:46:36.4389383 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000030","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","4408"
"10:46:36.4389468 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000043","","4408"
"10:46:36.4389489 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 19, Name: 00000415","2512"
"10:46:36.4389626 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4389754 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000415","0.0000030","Desired Access: Query Value","2512"
"10:46:36.4389890 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000415\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDPL1.DLL","2512"
"10:46:36.4390036 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000415","0.0000012","","2512"
"10:46:36.4390155 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 20, Name: 00000416","2512"
"10:46:36.4390283 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4390411 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000416","0.0000030","Desired Access: Query Value","2512"
"10:46:36.4390548 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000416\Layout File","0.0000029","Type: REG_SZ, Length: 20, Data: KBDBR.DLL","2512"
"10:46:36.4390693 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000416","0.0000012","","2512"
"10:46:36.4390816 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 21, Name: 00000418","2512"
"10:46:36.4390944 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4391089 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000418","0.0000030","Desired Access: Query Value","2512"
"10:46:36.4391273 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000418\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDRO.DLL","2512"
"10:46:36.4391422 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000418","0.0000022","","2512"
"10:46:36.4391691 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 22, Name: 00000419","2512"
"10:46:36.4391823 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4391845 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntdll.dll","0.0000204","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4391956 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000419","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4392101 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000419\Layout File","0.0000029","Type: REG_SZ, Length: 20, Data: KBDRU.DLL","2512"
"10:46:36.4392241 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000419","0.0000013","","2512"
"10:46:36.4392271 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000034","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","4408"
"10:46:36.4392365 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 23, Name: 0000041a","2512"
"10:46:36.4392374 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntdll.dll","0.0000047","","4408"
"10:46:36.4392514 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4392604 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041a","0.0000026","Desired Access: Query Value","2512"
"10:46:36.4392702 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041a\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDCR.DLL","2512"
"10:46:36.4392796 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041a","0.0000013","","2512"
"10:46:36.4392881 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 24, Name: 0000041b","2512"
"10:46:36.4392967 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4393044 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041b","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4393150 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041b\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDSL.DLL","2512"
"10:46:36.4393240 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041b","0.0000008","","2512"
"10:46:36.4393317 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 25, Name: 0000041c","2512"
"10:46:36.4393398 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4393479 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041c","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4393564 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041c\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDAL.DLL","2512"
"10:46:36.4393658 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041c","0.0000008","","2512"
"10:46:36.4393743 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 26, Name: 0000041d","2512"
"10:46:36.4393833 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4393918 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041d","0.0000022","Desired Access: Query Value","2512"
"10:46:36.4394004 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041d\Layout File","0.0000025","Type: REG_SZ, Length: 20, Data: KBDSW.DLL","2512"
"10:46:36.4394097 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041d","0.0000009","","2512"
"10:46:36.4394174 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 27, Name: 0000041e","2512"
"10:46:36.4394255 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4394332 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041e","0.0000026","Desired Access: Query Value","2512"
"10:46:36.4394426 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041e\Layout File","0.0000017","Type: REG_SZ, Length: 22, Data: KBDTH0.DLL","2512"
"10:46:36.4394516 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041e","0.0000008","","2512"
"10:46:36.4394575 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntdll.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4394601 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 28, Name: 0000041f","2512"
"10:46:36.4394682 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4394763 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041f","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4394853 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000025","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","4408"
"10:46:36.4394857 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041f\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDTUQ.DLL","2512"
"10:46:36.4394938 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntdll.dll","0.0000047","","4408"
"10:46:36.4394951 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041f","0.0000008","","2512"
"10:46:36.4395032 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 29, Name: 00000420","2512"
"10:46:36.4395121 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4395198 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000420","0.0000022","Desired Access: Query Value","2512"
"10:46:36.4395284 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000420\Layout File","0.0000025","Type: REG_SZ, Length: 24, Data: KBDURDU.DLL","2512"
"10:46:36.4395377 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000420","0.0000009","","2512"
"10:46:36.4395454 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 30, Name: 00000422","2512"
"10:46:36.4395535 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4395616 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000422","0.0000022","Desired Access: Query Value","2512"
"10:46:36.4395702 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000422\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDUR.DLL","2512"
"10:46:36.4395791 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000422","0.0000009","","2512"
"10:46:36.4395868 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 31, Name: 00000423","2512"
"10:46:36.4395949 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4396034 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000423","0.0000026","Desired Access: Query Value","2512"
"10:46:36.4396128 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000423\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDBLR.DLL","2512"
"10:46:36.4396218 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000423","0.0000021","","2512"
"10:46:36.4396308 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 32, Name: 00000424","2512"
"10:46:36.4396389 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4396470 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000424","0.0000025","Desired Access: Query Value","2512"
"10:46:36.4396559 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000424\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDCR.DLL","2512"
"10:46:36.4396649 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000424","0.0000008","","2512"
"10:46:36.4396738 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 33, Name: 00000425","2512"
"10:46:36.4396802 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntdll.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4396828 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4396905 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000425","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4396994 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000425\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDEST.DLL","2512"
"10:46:36.4397063 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000102","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","4408"
"10:46:36.4397093 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000425","0.0000034","","2512"
"10:46:36.4397204 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 34, Name: 00000426","2512"
"10:46:36.4397250 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntdll.dll","0.0000056","","4408"
"10:46:36.4397289 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4397374 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000426","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4397481 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000426\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDLV.DLL","2512"
"10:46:36.4397575 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000426","0.0000008","","2512"
"10:46:36.4397652 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 35, Name: 00000427","2512"
"10:46:36.4397741 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4397818 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000427","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4397908 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000427\Layout File","0.0000017","Type: REG_SZ, Length: 20, Data: KBDLT.DLL","2512"
"10:46:36.4397997 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000427","0.0000009","","2512"
"10:46:36.4398074 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 36, Name: 00000428","2512"
"10:46:36.4398155 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4398232 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000428","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4398321 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000428\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDTAJIK.DLL","2512"
"10:46:36.4398411 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000428","0.0000013","","2512"
"10:46:36.4398488 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 37, Name: 00000429","2512"
"10:46:36.4398573 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4398650 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000429","0.0000026","Desired Access: Query Value","2512"
"10:46:36.4398744 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000429\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDFA.DLL","2512"
"10:46:36.4398846 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000429","0.0000009","","2512"
"10:46:36.4398923 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 38, Name: 0000042a","2512"
"10:46:36.4399008 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4399085 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042a","0.0000026","Desired Access: Query Value","2512"
"10:46:36.4399179 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042a\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDVNTC.DLL","2512"
"10:46:36.4399269 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042a","0.0000008","","2512"
"10:46:36.4399345 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 39, Name: 0000042b","2512"
"10:46:36.4399426 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4399503 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042b","0.0000022","Desired Access: Query Value","2512"
"10:46:36.4399623 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042b\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: kbdarme.dll","2512"
"10:46:36.4399627 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel32.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4399721 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042b","0.0000008","","2512"
"10:46:36.4399798 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 40, Name: 0000042c","2512"
"10:46:36.4399883 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4399994 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000043","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","4408"
"10:46:36.4400007 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042c","0.0000025","Desired Access: Query Value","2512"
"10:46:36.4400105 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042c\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDAZEL.DLL","2512"
"10:46:36.4400118 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel32.dll","0.0000051","","4408"
"10:46:36.4400203 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042c","0.0000013","","2512"
"10:46:36.4400288 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 41, Name: 0000042e","2512"
"10:46:36.4400369 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4400446 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042e","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4400549 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042e\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDSORST.DLL","2512"
"10:46:36.4400642 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042e","0.0000013","","2512"
"10:46:36.4400758 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 42, Name: 0000042f","2512"
"10:46:36.4400873 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4401005 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042f","0.0000030","Desired Access: Query Value","2512"
"10:46:36.4401137 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042f\Layout File","0.0000026","Type: REG_SZ, Length: 22, Data: KBDMAC.DLL","2512"
"10:46:36.4401282 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042f","0.0000013","","2512"
"10:46:36.4401402 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 43, Name: 00000432","2512"
"10:46:36.4401530 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4401662 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000432","0.0000030","Desired Access: Query Value","2512"
"10:46:36.4401799 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000432\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDNSO.DLL","2512"
"10:46:36.4401940 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000432","0.0000012","","2512"
"10:46:36.4402059 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 44, Name: 00000437","2512"
"10:46:36.4402187 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4402213 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4402315 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000437","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4402456 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000437\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: kbdgeo.dll","2512"
"10:46:36.4402541 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000043","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","4408"
"10:46:36.4402609 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000437","0.0000017","","2512"
"10:46:36.4402661 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel32.dll","0.0000055","","4408"
"10:46:36.4402733 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 45, Name: 00000438","2512"
"10:46:36.4402870 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4402993 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000438","0.0000035","Desired Access: Query Value","2512"
"10:46:36.4403130 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000438\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDFO.DLL","2512"
"10:46:36.4403271 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000438","0.0000013","","2512"
"10:46:36.4403390 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 46, Name: 00000439","2512"
"10:46:36.4403518 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4403646 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000439","0.0000030","Desired Access: Query Value","2512"
"10:46:36.4403791 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000439\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDINDEV.DLL","2512"
"10:46:36.4404047 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000439","0.0000030","","2512"
"10:46:36.4404278 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000042","Index: 47, Name: 0000043a","2512"
"10:46:36.4404478 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4404666 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043a","0.0000051","Desired Access: Query Value","2512"
"10:46:36.4404862 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043a\Layout File","0.0000043","Type: REG_SZ, Length: 26, Data: KBDMLT47.DLL","2512"
"10:46:36.4405003 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel32.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4405058 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043a","0.0000022","","2512"
"10:46:36.4405216 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 48, Name: 0000043b","2512"
"10:46:36.4405374 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4405404 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000038","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","4408"
"10:46:36.4405541 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043b","0.0000042","Desired Access: Query Value","2512"
"10:46:36.4405549 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel32.dll","0.0000064","","4408"
"10:46:36.4405720 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043b\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDNO1.DLL","2512"
"10:46:36.4405895 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043b","0.0000017","","2512"
"10:46:36.4406027 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 49, Name: 0000043f","2512"
"10:46:36.4406164 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4406313 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043f","0.0000038","Desired Access: Query Value","2512"
"10:46:36.4406475 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043f\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDKAZ.DLL","2512"
"10:46:36.4406646 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043f","0.0000017","","2512"
"10:46:36.4406782 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 50, Name: 00000440","2512"
"10:46:36.4406932 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4407085 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000440","0.0000039","Desired Access: Query Value","2512"
"10:46:36.4407243 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000440\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDKYR.DLL","2512"
"10:46:36.4407414 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000440","0.0000012","","2512"
"10:46:36.4407542 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 51, Name: 00000442","2512"
"10:46:36.4407687 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4407849 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000442","0.0000038","Desired Access: Query Value","2512"
"10:46:36.4408002 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000442\Layout File","0.0000035","Type: REG_SZ, Length: 26, Data: KBDTURME.DLL","2512"
"10:46:36.4408173 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000442","0.0000013","","2512"
"10:46:36.4408310 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 52, Name: 00000444","2512"
"10:46:36.4408455 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000324","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4408672 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4408920 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000444","0.0000042","Desired Access: Query Value","2512"
"10:46:36.4408980 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000042","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","4408"
"10:46:36.4409090 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000444\Layout File","0.0000035","Type: REG_SZ, Length: 22, Data: KBDTAT.DLL","2512"
"10:46:36.4409201 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000133","","4408"
"10:46:36.4409244 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000444","0.0000009","","2512"
"10:46:36.4409342 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 53, Name: 00000445","2512"
"10:46:36.4409436 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4409530 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000445","0.0000026","Desired Access: Query Value","2512"
"10:46:36.4409628 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000445\Layout File","0.0000064","Type: REG_SZ, Length: 26, Data: KBDINBEN.DLL","2512"
"10:46:36.4409812 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000445","0.0000012","","2512"
"10:46:36.4409935 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 54, Name: 00000446","2512"
"10:46:36.4410059 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4410183 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000446","0.0000038","Desired Access: Query Value","2512"
"10:46:36.4410319 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000446\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDINPUN.DLL","2512"
"10:46:36.4410464 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000446","0.0000017","","2512"
"10:46:36.4410571 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 55, Name: 00000447","2512"
"10:46:36.4410699 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4410818 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000447","0.0000030","Desired Access: Query Value","2512"
"10:46:36.4410946 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000447\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDINGUJ.DLL","2512"
"10:46:36.4411083 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000447","0.0000013","","2512"
"10:46:36.4411224 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 56, Name: 00000448","2512"
"10:46:36.4411335 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4411424 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000448","0.0000026","Desired Access: Query Value","2512"
"10:46:36.4411518 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000448\Layout File","0.0000026","Type: REG_SZ, Length: 26, Data: KBDINORI.DLL","2512"
"10:46:36.4411616 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000448","0.0000013","","2512"
"10:46:36.4411706 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 57, Name: 00000449","2512"
"10:46:36.4411796 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4411881 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000449","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4411970 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000449\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDINTAM.DLL","2512"
"10:46:36.4412064 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000449","0.0000009","","2512"
"10:46:36.4412141 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 58, Name: 0000044a","2512"
"10:46:36.4412226 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4412308 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044a","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4412397 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044a\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINTEL.DLL","2512"
"10:46:36.4412491 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044a","0.0000009","","2512"
"10:46:36.4412576 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 59, Name: 0000044b","2512"
"10:46:36.4412662 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4412726 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4412747 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044b","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4412837 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044b\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINKAN.DLL","2512"
"10:46:36.4412939 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044b","0.0000009","","2512"
"10:46:36.4412977 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","4408"
"10:46:36.4413024 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 60, Name: 0000044c","2512"
"10:46:36.4413076 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000046","","4408"
"10:46:36.4413114 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000077","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4413289 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044c","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4413400 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044c\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINMAL.DLL","2512"
"10:46:36.4413498 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044c","0.0000013","","2512"
"10:46:36.4413592 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 61, Name: 0000044d","2512"
"10:46:36.4413711 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4413831 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044d","0.0000051","Desired Access: Query Value","2512"
"10:46:36.4413959 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044d\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINASA.DLL","2512"
"10:46:36.4414053 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044d","0.0000008","","2512"
"10:46:36.4414159 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 62, Name: 0000044e","2512"
"10:46:36.4414245 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4414326 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044e","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4414415 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044e\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDINMAR.DLL","2512"
"10:46:36.4414509 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044e","0.0000009","","2512"
"10:46:36.4414594 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 63, Name: 00000450","2512"
"10:46:36.4414680 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4414757 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000450","0.0000025","Desired Access: Query Value","2512"
"10:46:36.4414846 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000450\Layout File","0.0000026","Type: REG_SZ, Length: 22, Data: KBDMON.DLL","2512"
"10:46:36.4414944 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000450","0.0000009","","2512"
"10:46:36.4415021 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 64, Name: 00000451","2512"
"10:46:36.4415102 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4415183 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000451","0.0000022","Desired Access: Query Value","2512"
"10:46:36.4415277 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000451\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDTIPRC.DLL","2512"
"10:46:36.4415286 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4415375 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000451","0.0000009","","2512"
"10:46:36.4415533 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000043","Index: 65, Name: 00000452","2512"
"10:46:36.4415593 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000055","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","4408"
"10:46:36.4415678 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4415781 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000085","","4408"
"10:46:36.4415815 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000452","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4415960 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000452\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDUKX.DLL","2512"
"10:46:36.4416101 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000452","0.0000025","","2512"
"10:46:36.4416233 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 66, Name: 00000453","2512"
"10:46:36.4416361 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4416493 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000453","0.0000043","Desired Access: Query Value","2512"
"10:46:36.4416647 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000453\Layout File","0.0000034","Type: REG_SZ, Length: 24, Data: KBDKHMR.DLL","2512"
"10:46:36.4416805 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000453","0.0000012","","2512"
"10:46:36.4416933 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 67, Name: 00000454","2512"
"10:46:36.4417065 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4417206 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000454","0.0000038","Desired Access: Query Value","2512"
"10:46:36.4417355 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000454\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDLAO.DLL","2512"
"10:46:36.4417509 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000454","0.0000017","","2512"
"10:46:36.4417645 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 68, Name: 0000045a","2512"
"10:46:36.4417782 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4417914 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045a","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4418059 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045a\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDSYR1.DLL","2512"
"10:46:36.4418221 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045a","0.0000017","","2512"
"10:46:36.4418353 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 69, Name: 0000045b","2512"
"10:46:36.4418490 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4418631 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045b","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4418780 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045b\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDSN1.DLL","2512"
"10:46:36.4418938 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045b","0.0000013","","2512"
"10:46:36.4419070 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 70, Name: 0000045c","2512"
"10:46:36.4419211 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4419292 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\advapi32.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4419348 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045c","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4419493 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045c\Layout File","0.0000029","Type: REG_SZ, Length: 24, Data: KBDCHER.DLL","2512"
"10:46:36.4419642 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045c","0.0000013","","2512"
"10:46:36.4419766 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000042","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","4408"
"10:46:36.4419774 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 71, Name: 00000461","2512"
"10:46:36.4419911 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4419915 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\advapi32.dll","0.0000068","","4408"
"10:46:36.4420047 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000461","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4420192 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000461\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDNEPR.DLL","2512"
"10:46:36.4420333 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000461","0.0000017","","2512"
"10:46:36.4420461 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 72, Name: 00000463","2512"
"10:46:36.4420593 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4420730 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000463","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4420875 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000463\Layout File","0.0000034","Type: REG_SZ, Length: 24, Data: KBDPASH.DLL","2512"
"10:46:36.4421029 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000463","0.0000012","","2512"
"10:46:36.4421161 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 73, Name: 00000465","2512"
"10:46:36.4421302 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4421447 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000465","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4421596 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000465\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDDIV1.DLL","2512"
"10:46:36.4421745 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000465","0.0000013","","2512"
"10:46:36.4421882 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 74, Name: 00000468","2512"
"10:46:36.4422023 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4422164 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000468","0.0000038","Desired Access: Query Value","2512"
"10:46:36.4422326 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000468\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDHAU.DLL","2512"
"10:46:36.4422484 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000468","0.0000012","","2512"
"10:46:36.4422616 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 75, Name: 0000046a","2512"
"10:46:36.4422757 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4422778 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\advapi32.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4422893 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046a","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4423038 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046a\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDYBA.DLL","2512"
"10:46:36.4423188 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000042","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","4408"
"10:46:36.4423196 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046a","0.0000013","","2512"
"10:46:36.4423333 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 76, Name: 0000046c","2512"
"10:46:36.4423333 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\advapi32.dll","0.0000064","","4408"
"10:46:36.4423469 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4423601 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046c","0.0000171","Desired Access: Query Value","2512"
"10:46:36.4423896 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046c\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDNSO.DLL","2512"
"10:46:36.4424058 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046c","0.0000013","","2512"
"10:46:36.4424199 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 77, Name: 0000046d","2512"
"10:46:36.4424340 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4424480 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046d","0.0000039","Desired Access: Query Value","2512"
"10:46:36.4424630 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046d\Layout File","0.0000034","Type: REG_SZ, Length: 24, Data: KBDBASH.DLL","2512"
"10:46:36.4424788 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046d","0.0000017","","2512"
"10:46:36.4424924 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 78, Name: 0000046e","2512"
"10:46:36.4425065 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4425201 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046e","0.0000039","Desired Access: Query Value","2512"
"10:46:36.4425351 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046e\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDSF.DLL","2512"
"10:46:36.4425504 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046e","0.0000013","","2512"
"10:46:36.4425637 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 79, Name: 0000046f","2512"
"10:46:36.4425777 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4425914 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046f","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4426063 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046f\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: KBDGRLND.DLL","2512"
"10:46:36.4426178 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\advapi32.dll","0.0000521","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4426221 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046f","0.0000013","","2512"
"10:46:36.4426358 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000042","Index: 80, Name: 00000470","2512"
"10:46:36.4426477 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4426567 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000470","0.0000030","Desired Access: Query Value","2512"
"10:46:36.4426665 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000470\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDIBO.DLL","2512"
"10:46:36.4426767 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000470","0.0000009","","2512"
"10:46:36.4426853 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 81, Name: 00000474","2512"
"10:46:36.4426938 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4427010 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000047","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","4408"
"10:46:36.4427023 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000474","0.0000022","Desired Access: Query Value","2512"
"10:46:36.4427113 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000474\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDGN.DLL","2512"
"10:46:36.4427160 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\advapi32.dll","0.0000072","","4408"
"10:46:36.4427215 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000474","0.0000009","","2512"
"10:46:36.4427296 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 82, Name: 00000475","2512"
"10:46:36.4427386 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4427467 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000475","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4427557 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000475\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDHAW.DLL","2512"
"10:46:36.4427650 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000475","0.0000009","","2512"
"10:46:36.4427723 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 83, Name: 00000480","2512"
"10:46:36.4427808 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4427889 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000480","0.0000022","Desired Access: Query Value","2512"
"10:46:36.4427979 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000480\Layout File","0.0000017","Type: REG_SZ, Length: 24, Data: KBDUGHR.DLL","2512"
"10:46:36.4428069 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000480","0.0000012","","2512"
"10:46:36.4428150 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 84, Name: 00000481","2512"
"10:46:36.4428231 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4428312 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000481","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4428401 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000481\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDMAORI.DLL","2512"
"10:46:36.4428495 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000481","0.0000009","","2512"
"10:46:36.4428572 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 85, Name: 00000485","2512"
"10:46:36.4428657 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4428734 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000485","0.0000022","Desired Access: Query Value","2512"
"10:46:36.4428828 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000485\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDYAK.DLL","2512"
"10:46:36.4428922 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000485","0.0000008","","2512"
"10:46:36.4428999 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 86, Name: 00000488","2512"
"10:46:36.4429080 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4429161 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000488","0.0000017","Desired Access: Query Value","2512"
"10:46:36.4429246 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000488\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDWOL.DLL","2512"
"10:46:36.4429340 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000488","0.0000009","","2512"
"10:46:36.4429417 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 87, Name: 00000492","2512"
"10:46:36.4429502 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4429562 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4429588 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000492","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4429677 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000492\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDKURD.DLL","2512"
"10:46:36.4429771 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000492","0.0000009","","2512"
"10:46:36.4429848 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 88, Name: 00000804","2512"
"10:46:36.4429882 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","4408"
"10:46:36.4429937 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4429976 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000081","","4408"
"10:46:36.4430023 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000804","0.0000059","Desired Access: Query Value","2512"
"10:46:36.4430159 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000804\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:36.4430253 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000804","0.0000009","","2512"
"10:46:36.4430330 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 89, Name: 00000807","2512"
"10:46:36.4430415 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4430492 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000807","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4430582 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000807\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDSG.DLL","2512"
"10:46:36.4430676 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000807","0.0000008","","2512"
"10:46:36.4430752 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 90, Name: 00000809","2512"
"10:46:36.4430838 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4430914 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000809","0.0000022","Desired Access: Query Value","2512"
"10:46:36.4431004 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000809\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDUK.DLL","2512"
"10:46:36.4431094 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000809","0.0000012","","2512"
"10:46:36.4431175 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 91, Name: 0000080a","2512"
"10:46:36.4431264 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4431345 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080a","0.0000039","Desired Access: Query Value","2512"
"10:46:36.4431490 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080a\Layout File","0.0000043","Type: REG_SZ, Length: 20, Data: KBDLA.DLL","2512"
"10:46:36.4431648 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080a","0.0000017","","2512"
"10:46:36.4431781 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 92, Name: 0000080c","2512"
"10:46:36.4431879 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4431964 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080c","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4432054 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080c\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDBE.DLL","2512"
"10:46:36.4432118 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4432152 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080c","0.0000013","","2512"
"10:46:36.4432233 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 93, Name: 00000813","2512"
"10:46:36.4432318 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4432399 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000813","0.0000017","Desired Access: Query Value","2512"
"10:46:36.4432489 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000813\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDBE.DLL","2512"
"10:46:36.4432514 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000039","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","4408"
"10:46:36.4432587 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000813","0.0000009","","2512"
"10:46:36.4432655 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000060","","4408"
"10:46:36.4432668 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 94, Name: 00000816","2512"
"10:46:36.4432753 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4432839 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000816","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4432928 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000816\Layout File","0.0000039","Type: REG_SZ, Length: 20, Data: KBDPO.DLL","2512"
"10:46:36.4433035 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000816","0.0000009","","2512"
"10:46:36.4433112 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 95, Name: 0000081a","2512"
"10:46:36.4433193 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4433274 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000081a","0.0000038","Desired Access: Query Value","2512"
"10:46:36.4433385 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000081a\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDYCL.DLL","2512"
"10:46:36.4433474 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000081a","0.0000009","","2512"
"10:46:36.4433577 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000060","Index: 96, Name: 0000082c","2512"
"10:46:36.4433743 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4433867 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000082c","0.0000038","Desired Access: Query Value","2512"
"10:46:36.4434008 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000082c\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDAZE.DLL","2512"
"10:46:36.4434157 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000082c","0.0000013","","2512"
"10:46:36.4434281 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 97, Name: 0000083b","2512"
"10:46:36.4434413 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4434562 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000083b","0.0000039","Desired Access: Query Value","2512"
"10:46:36.4434712 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000083b\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDFI1.DLL","2512"
"10:46:36.4434865 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000083b","0.0000017","","2512"
"10:46:36.4434998 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 98, Name: 00000843","2512"
"10:46:36.4435138 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4435275 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000843","0.0000038","Desired Access: Query Value","2512"
"10:46:36.4435424 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000843\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDUZB.DLL","2512"
"10:46:36.4435578 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000843","0.0000013","","2512"
"10:46:36.4435706 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 99, Name: 00000850","2512"
"10:46:36.4435842 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4435979 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000850","0.0000038","Desired Access: Query Value","2512"
"10:46:36.4436133 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000850\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: KBDMONMO.DLL","2512"
"10:46:36.4436295 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000850","0.0000013","","2512"
"10:46:36.4436427 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 100, Name: 0000085d","2512"
"10:46:36.4436564 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4436610 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4436704 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085d","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4436845 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085d\Layout File","0.0000039","Type: REG_SZ, Length: 26, Data: KBDIULAT.DLL","2512"
"10:46:36.4437007 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085d","0.0000013","","2512"
"10:46:36.4437046 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000051","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","4408"
"10:46:36.4437135 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 101, Name: 0000085f","2512"
"10:46:36.4437199 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000069","","4408"
"10:46:36.4437272 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4437408 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085f","0.0000039","Desired Access: Query Value","2512"
"10:46:36.4437562 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085f\Layout File","0.0000038","Type: REG_SZ, Length: 22, Data: KBDTZM.DLL","2512"
"10:46:36.4437716 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085f","0.0000017","","2512"
"10:46:36.4437839 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 102, Name: 00000c04","2512"
"10:46:36.4437967 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4438100 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c04","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4438240 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c04\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:36.4438394 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c04","0.0000013","","2512"
"10:46:36.4438518 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 103, Name: 00000c0c","2512"
"10:46:36.4438650 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4438786 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c0c","0.0000039","Desired Access: Query Value","2512"
"10:46:36.4438974 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c0c\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDFC.DLL","2512"
"10:46:36.4439128 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c0c","0.0000013","","2512"
"10:46:36.4439256 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 104, Name: 00000c1a","2512"
"10:46:36.4439397 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4439537 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c1a","0.0000035","Desired Access: Query Value","2512"
"10:46:36.4439687 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c1a\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDYCC.DLL","2512"
"10:46:36.4439840 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c1a","0.0000017","","2512"
"10:46:36.4439973 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 105, Name: 00000C51","2512"
"10:46:36.4440109 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4440250 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000C51","0.0000038","Desired Access: Query Value","2512"
"10:46:36.4440404 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000C51\Layout File","0.0000047","Type: REG_SZ, Length: 22, Data: KBDDZO.DLL","2512"
"10:46:36.4440574 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sechost.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4440950 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","4408"
"10:46:36.4441048 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sechost.dll","0.0000047","","4408"
"10:46:36.4441752 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000C51","0.0000034","","2512"
"10:46:36.4442021 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 106, Name: 00001004","2512"
"10:46:36.4442179 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4442324 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001004","0.0000038","Desired Access: Query Value","2512"
"10:46:36.4442473 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001004\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:36.4442627 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001004","0.0000008","","2512"
"10:46:36.4442733 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 107, Name: 00001009","2512"
"10:46:36.4442827 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4442925 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001009","0.0000026","Desired Access: Query Value","2512"
"10:46:36.4443028 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001009\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDCA.DLL","2512"
"10:46:36.4443134 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001009","0.0000009","","2512"
"10:46:36.4443215 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 108, Name: 0000100c","2512"
"10:46:36.4443254 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sechost.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4443305 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4443399 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000100c","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4443493 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000100c\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDSF.DLL","2512"
"10:46:36.4443548 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","4408"
"10:46:36.4443599 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000100c","0.0000009","","2512"
"10:46:36.4443676 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sechost.dll","0.0000047","","4408"
"10:46:36.4443710 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 109, Name: 0000105f","2512"
"10:46:36.4443800 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4443889 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000105f","0.0000022","Desired Access: Query Value","2512"
"10:46:36.4443979 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000105f\Layout File","0.0000026","Type: REG_SZ, Length: 24, Data: KBDTIFI.DLL","2512"
"10:46:36.4444077 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000105f","0.0000013","","2512"
"10:46:36.4444158 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 110, Name: 00001404","2512"
"10:46:36.4444244 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4444333 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001404","0.0000022","Desired Access: Query Value","2512"
"10:46:36.4444427 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001404\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:36.4444521 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001404","0.0000008","","2512"
"10:46:36.4444598 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 111, Name: 00001809","2512"
"10:46:36.4444679 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4444760 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001809","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4444854 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001809\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDIR.DLL","2512"
"10:46:36.4444956 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001809","0.0000009","","2512"
"10:46:36.4445029 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 112, Name: 0000201a","2512"
"10:46:36.4445110 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4445191 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000201a","0.0000017","Desired Access: Query Value","2512"
"10:46:36.4445276 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000201a\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDBHC.DLL","2512"
"10:46:36.4445370 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000201a","0.0000009","","2512"
"10:46:36.4445447 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 113, Name: 00004009","2512"
"10:46:36.4445528 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4445566 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sechost.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4445613 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00004009","0.0000022","Desired Access: Query Value","2512"
"10:46:36.4445707 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00004009\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDINEN.DLL","2512"
"10:46:36.4445801 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00004009","0.0000008","","2512"
"10:46:36.4445831 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000025","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","4408"
"10:46:36.4445882 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 114, Name: 00010401","2512"
"10:46:36.4445920 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sechost.dll","0.0000039","","4408"
"10:46:36.4445972 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4446057 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010401","0.0000047","Desired Access: Query Value","2512"
"10:46:36.4446176 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010401\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDA2.DLL","2512"
"10:46:36.4446266 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010401","0.0000009","","2512"
"10:46:36.4446343 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 115, Name: 00010402","2512"
"10:46:36.4446424 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4446505 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010402","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4446595 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010402\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:36.4446684 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010402","0.0000009","","2512"
"10:46:36.4446761 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 116, Name: 00010405","2512"
"10:46:36.4446859 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4446940 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010405","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4447030 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010405\Layout File","0.0000025","Type: REG_SZ, Length: 22, Data: KBDCZ1.DLL","2512"
"10:46:36.4447153 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010405","0.0000009","","2512"
"10:46:36.4447230 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 117, Name: 00010407","2512"
"10:46:36.4447316 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4447397 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010407","0.0000025","Desired Access: Query Value","2512"
"10:46:36.4447486 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010407\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDGR1.DLL","2512"
"10:46:36.4447580 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010407","0.0000009","","2512"
"10:46:36.4447661 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 118, Name: 00010408","2512"
"10:46:36.4447768 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4447883 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010408","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4448020 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010408\Layout File","0.0000029","Type: REG_SZ, Length: 26, Data: KBDHE220.DLL","2512"
"10:46:36.4448160 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010408","0.0000013","","2512"
"10:46:36.4448280 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 119, Name: 00010409","2512"
"10:46:36.4448416 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4448433 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4448544 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010409","0.0000069","Desired Access: Query Value","2512"
"10:46:36.4448724 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010409\Layout File","0.0000025","Type: REG_SZ, Length: 20, Data: KBDDV.DLL","2512"
"10:46:36.4448783 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000026","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","4408"
"10:46:36.4448873 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010409","0.0000030","","2512"
"10:46:36.4448963 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000068","","4408"
"10:46:36.4449009 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 120, Name: 0001040a","2512"
"10:46:36.4449146 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4449278 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040a","0.0000030","Desired Access: Query Value","2512"
"10:46:36.4449419 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040a\Layout File","0.0000026","Type: REG_SZ, Length: 20, Data: KBDES.DLL","2512"
"10:46:36.4449564 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040a","0.0000013","","2512"
"10:46:36.4449696 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 121, Name: 0001040e","2512"
"10:46:36.4449824 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4449948 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040e","0.0000039","Desired Access: Query Value","2512"
"10:46:36.4450093 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040e\Layout File","0.0000026","Type: REG_SZ, Length: 22, Data: KBDHU1.DLL","2512"
"10:46:36.4450238 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040e","0.0000013","","2512"
"10:46:36.4450362 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 122, Name: 00010410","2512"
"10:46:36.4450507 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4450631 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010410","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4450767 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010410\Layout File","0.0000026","Type: REG_SZ, Length: 26, Data: KBDIT142.DLL","2512"
"10:46:36.4450908 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010410","0.0000017","","2512"
"10:46:36.4451032 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 123, Name: 00010415","2512"
"10:46:36.4451066 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4451164 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4451288 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010415","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4451331 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000029","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","4408"
"10:46:36.4451420 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000039","","4408"
"10:46:36.4451437 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010415\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDPL.DLL","2512"
"10:46:36.4451595 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010415","0.0000013","","2512"
"10:46:36.4451715 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 124, Name: 00010416","2512"
"10:46:36.4451843 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4451971 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010416","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4452064 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010416\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDBR.DLL","2512"
"10:46:36.4452158 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010416","0.0000009","","2512"
"10:46:36.4452239 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 125, Name: 00010418","2512"
"10:46:36.4452320 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4452397 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010418","0.0000026","Desired Access: Query Value","2512"
"10:46:36.4452491 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010418\Layout File","0.0000017","Type: REG_SZ, Length: 24, Data: KBDROST.DLL","2512"
"10:46:36.4452589 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010418","0.0000009","","2512"
"10:46:36.4452666 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 126, Name: 00010419","2512"
"10:46:36.4452747 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4452824 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010419","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4452913 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010419\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDRU1.DLL","2512"
"10:46:36.4453003 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010419","0.0000013","","2512"
"10:46:36.4453080 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 127, Name: 0001041b","2512"
"10:46:36.4453165 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4453246 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041b","0.0000022","Desired Access: Query Value","2512"
"10:46:36.4453251 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4453336 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041b\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDSL1.DLL","2512"
"10:46:36.4453430 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041b","0.0000008","","2512"
"10:46:36.4453498 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000026","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","4408"
"10:46:36.4453511 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 128, Name: 0001041e","2512"
"10:46:36.4453609 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4453660 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000068","","4408"
"10:46:36.4453707 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041e","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4453801 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041e\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDTH1.DLL","2512"
"10:46:36.4453899 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041e","0.0000009","","2512"
"10:46:36.4454023 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 129, Name: 0001041f","2512"
"10:46:36.4454104 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4454185 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041f","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4454270 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041f\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDTUF.DLL","2512"
"10:46:36.4454364 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041f","0.0000009","","2512"
"10:46:36.4454441 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 130, Name: 00010426","2512"
"10:46:36.4454522 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4454603 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010426","0.0000017","Desired Access: Query Value","2512"
"10:46:36.4454688 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010426\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDLV1.DLL","2512"
"10:46:36.4454778 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010426","0.0000009","","2512"
"10:46:36.4454855 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 131, Name: 00010427","2512"
"10:46:36.4454936 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4455021 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010427","0.0000022","Desired Access: Query Value","2512"
"10:46:36.4455111 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010427\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDLT1.DLL","2512"
"10:46:36.4455200 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010427","0.0000009","","2512"
"10:46:36.4455277 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 132, Name: 0001042b","2512"
"10:46:36.4455358 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4455439 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042b","0.0000017","Desired Access: Query Value","2512"
"10:46:36.4455525 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042b\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: kbdarmw.dll","2512"
"10:46:36.4455614 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042b","0.0000009","","2512"
"10:46:36.4455695 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000098","Index: 133, Name: 0001042c","2512"
"10:46:36.4455712 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4455866 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4455947 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042c","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4456037 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000030","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","4408"
"10:46:36.4456041 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042c\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDAZST.DLL","2512"
"10:46:36.4456126 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000039","","4408"
"10:46:36.4456148 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042c","0.0000008","","2512"
"10:46:36.4456229 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 134, Name: 0001042e","2512"
"10:46:36.4456318 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4456399 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042e","0.0000017","Desired Access: Query Value","2512"
"10:46:36.4456485 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042e\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDSOREX.DLL","2512"
"10:46:36.4456579 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042e","0.0000008","","2512"
"10:46:36.4456655 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 135, Name: 0001042f","2512"
"10:46:36.4456749 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4456826 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042f","0.0000051","Desired Access: Query Value","2512"
"10:46:36.4456945 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042f\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDMACST.DLL","2512"
"10:46:36.4457039 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042f","0.0000009","","2512"
"10:46:36.4457180 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 136, Name: 00010437","2512"
"10:46:36.4457261 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4457347 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010437","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4457432 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010437\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: kbdgeoqw.dll","2512"
"10:46:36.4457534 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010437","0.0000013","","2512"
"10:46:36.4457615 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 137, Name: 00010439","2512"
"10:46:36.4457696 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4457777 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010439","0.0000022","Desired Access: Query Value","2512"
"10:46:36.4457863 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010439\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINHIN.DLL","2512"
"10:46:36.4457957 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010439","0.0000008","","2512"
"10:46:36.4458033 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000018","Index: 138, Name: 0001043a","2512"
"10:46:36.4458076 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4458119 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4458196 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043a","0.0000038","Desired Access: Query Value","2512"
"10:46:36.4458307 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043a\Layout File","0.0000017","Type: REG_SZ, Length: 26, Data: KBDMLT48.DLL","2512"
"10:46:36.4458396 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043a","0.0000009","","2512"
"10:46:36.4458430 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000034","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","4408"
"10:46:36.4458477 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 139, Name: 0001043b","2512"
"10:46:36.4458528 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000069","","4408"
"10:46:36.4458567 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4458665 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043b","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4458767 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043b\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDSMSNO.DLL","2512"
"10:46:36.4458861 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043b","0.0000009","","2512"
"10:46:36.4458934 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 140, Name: 00010444","2512"
"10:46:36.4459023 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4459100 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010444","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4459211 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010444\Layout File","0.0000026","Type: REG_SZ, Length: 26, Data: KBDTT102.DLL","2512"
"10:46:36.4459313 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010444","0.0000009","","2512"
"10:46:36.4459412 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 141, Name: 00010445","2512"
"10:46:36.4459518 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4459646 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010445","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4459783 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010445\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDINBE1.DLL","2512"
"10:46:36.4459924 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010445","0.0000012","","2512"
"10:46:36.4460060 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 142, Name: 00010451","2512"
"10:46:36.4460192 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4460316 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010451","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4460453 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010451\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDTIPRD.DLL","2512"
"10:46:36.4460593 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010451","0.0000013","","2512"
"10:46:36.4460713 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 143, Name: 00010453","2512"
"10:46:36.4460726 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4460913 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4461054 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000039","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","4408"
"10:46:36.4461152 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010453","0.0000056","Desired Access: Query Value","2512"
"10:46:36.4461195 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000056","","4408"
"10:46:36.4461379 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010453\Layout File","0.0000038","Type: REG_SZ, Length: 22, Data: KBDKNI.DLL","2512"
"10:46:36.4461588 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010453","0.0000017","","2512"
"10:46:36.4461741 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 144, Name: 0001045a","2512"
"10:46:36.4461899 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4462061 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045a","0.0000043","Desired Access: Query Value","2512"
"10:46:36.4462232 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045a\Layout File","0.0000034","Type: REG_SZ, Length: 24, Data: KBDSYR2.DLL","2512"
"10:46:36.4462407 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045a","0.0000017","","2512"
"10:46:36.4462552 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 145, Name: 0001045b","2512"
"10:46:36.4462705 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000018","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4462863 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045b","0.0000043","Desired Access: Query Value","2512"
"10:46:36.4463030 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045b\Layout File","0.0000034","Type: REG_SZ, Length: 24, Data: KBDSW09.DLL","2512"
"10:46:36.4463196 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045b","0.0000013","","2512"
"10:46:36.4463337 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 146, Name: 0001045c","2512"
"10:46:36.4463482 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4463636 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045c","0.0000038","Desired Access: Query Value","2512"
"10:46:36.4463798 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045c\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: KBDCHERP.DLL","2512"
"10:46:36.4463964 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045c","0.0000013","","2512"
"10:46:36.4464122 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 147, Name: 0001045d","2512"
"10:46:36.4464259 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4464267 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4464404 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045d","0.0000439","Desired Access: Query Value","2512"
"10:46:36.4464549 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","4408"
"10:46:36.4464647 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000047","","4408"
"10:46:36.4465078 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045d\Layout File","0.0000038","Type: REG_SZ, Length: 26, Data: KBDINUK2.DLL","2512"
"10:46:36.4465261 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045d","0.0000017","","2512"
"10:46:36.4465440 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000035","Index: 148, Name: 00010465","2512"
"10:46:36.4465568 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4465696 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010465","0.0000035","Desired Access: Query Value","2512"
"10:46:36.4465812 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010465\Layout File","0.0000025","Type: REG_SZ, Length: 24, Data: KBDDIV2.DLL","2512"
"10:46:36.4465931 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010465","0.0000013","","2512"
"10:46:36.4466016 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 149, Name: 00010480","2512"
"10:46:36.4466106 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4466200 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010480","0.0000025","Desired Access: Query Value","2512"
"10:46:36.4466302 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010480\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDUGHR1.DLL","2512"
"10:46:36.4466400 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010480","0.0000009","","2512"
"10:46:36.4466533 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 150, Name: 0001080c","2512"
"10:46:36.4466627 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4466695 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4466767 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001080c","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4466917 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001080c\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDBENE.DLL","2512"
"10:46:36.4467066 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001080c","0.0000013","","2512"
"10:46:36.4467139 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000051","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","4408"
"10:46:36.4467194 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 151, Name: 0001083b","2512"
"10:46:36.4467309 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000090","","4408"
"10:46:36.4467335 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4467471 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001083b","0.0000039","Desired Access: Query Value","2512"
"10:46:36.4467621 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001083b\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDFI1.DLL","2512"
"10:46:36.4467774 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001083b","0.0000013","","2512"
"10:46:36.4467907 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 152, Name: 00010850","2512"
"10:46:36.4468043 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4468180 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010850","0.0000051","Desired Access: Query Value","2512"
"10:46:36.4468346 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010850\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: KBDMONST.DLL","2512"
"10:46:36.4468504 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010850","0.0000013","","2512"
"10:46:36.4468636 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 153, Name: 00010c00","2512"
"10:46:36.4468777 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4468913 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010c00","0.0000035","Desired Access: Query Value","2512"
"10:46:36.4469063 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010c00\Layout File","0.0000034","Type: REG_SZ, Length: 24, Data: KBDMYAN.DLL","2512"
"10:46:36.4469221 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010c00","0.0000012","","2512"
"10:46:36.4469353 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 154, Name: 00011009","2512"
"10:46:36.4469489 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4469626 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011009","0.0000038","Desired Access: Query Value","2512"
"10:46:36.4469780 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011009\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDCAN.DLL","2512"
"10:46:36.4469937 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011009","0.0000018","","2512"
"10:46:36.4470074 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 155, Name: 0001105f","2512"
"10:46:36.4470219 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4470356 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001105f","0.0000038","Desired Access: Query Value","2512"
"10:46:36.4470509 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001105f\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: KBDTIFI2.DLL","2512"
"10:46:36.4470586 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4470663 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001105f","0.0000013","","2512"
"10:46:36.4470795 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 156, Name: 00011809","2512"
"10:46:36.4470880 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","4408"
"10:46:36.4470932 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4471025 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000064","","4408"
"10:46:36.4471068 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011809","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4471213 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011809\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDGAE.DLL","2512"
"10:46:36.4471363 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011809","0.0000012","","2512"
"10:46:36.4471482 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 157, Name: 00020401","2512"
"10:46:36.4471610 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4471738 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020401","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4471887 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020401\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDA3.DLL","2512"
"10:46:36.4472037 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020401","0.0000012","","2512"
"10:46:36.4472165 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 158, Name: 00020402","2512"
"10:46:36.4472301 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4472442 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020402","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4472587 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020402\Layout File","0.0000034","Type: REG_SZ, Length: 24, Data: KBDBGPH.DLL","2512"
"10:46:36.4472745 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020402","0.0000013","","2512"
"10:46:36.4472877 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 159, Name: 00020405","2512"
"10:46:36.4473018 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4473150 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020405","0.0000039","Desired Access: Query Value","2512"
"10:46:36.4473300 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020405\Layout File","0.0000029","Type: REG_SZ, Length: 22, Data: KBDCZ2.DLL","2512"
"10:46:36.4473457 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020405","0.0000018","","2512"
"10:46:36.4473628 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000047","Index: 160, Name: 00020408","2512"
"10:46:36.4473786 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4473927 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020408","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4474076 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020408\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: KBDHE319.DLL","2512"
"10:46:36.4474234 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020408","0.0000013","","2512"
"10:46:36.4474272 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\crypt32.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4474366 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 161, Name: 00020409","2512"
"10:46:36.4474499 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4474627 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020409","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4474720 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","4408"
"10:46:36.4474772 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020409\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDUSX.DLL","2512"
"10:46:36.4474870 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\crypt32.dll","0.0000064","","4408"
"10:46:36.4474929 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020409","0.0000013","","2512"
"10:46:36.4475057 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 162, Name: 0002040d","2512"
"10:46:36.4475190 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4475313 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002040d","0.0000035","Desired Access: Query Value","2512"
"10:46:36.4475459 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002040d\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: kbdhebl3.dll","2512"
"10:46:36.4475612 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002040d","0.0000017","","2512"
"10:46:36.4475757 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 163, Name: 00020418","2512"
"10:46:36.4475907 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4476039 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020418","0.0000038","Desired Access: Query Value","2512"
"10:46:36.4476188 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020418\Layout File","0.0000034","Type: REG_SZ, Length: 24, Data: KBDROPR.DLL","2512"
"10:46:36.4476346 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020418","0.0000013","","2512"
"10:46:36.4476491 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 164, Name: 00020419","2512"
"10:46:36.4476628 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4476764 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020419","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4476909 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020419\Layout File","0.0000047","Type: REG_SZ, Length: 22, Data: KBDRUM.DLL","2512"
"10:46:36.4477084 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020419","0.0000013","","2512"
"10:46:36.4477216 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 165, Name: 0002041e","2512"
"10:46:36.4477353 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4477489 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002041e","0.0000039","Desired Access: Query Value","2512"
"10:46:36.4477643 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002041e\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDTH2.DLL","2512"
"10:46:36.4477801 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002041e","0.0000013","","2512"
"10:46:36.4477929 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\crypt32.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4477993 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000051","Index: 166, Name: 00020422","2512"
"10:46:36.4478206 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4478275 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000029","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","4408"
"10:46:36.4478373 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\crypt32.dll","0.0000047","","4408"
"10:46:36.4478385 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020422","0.0000047","Desired Access: Query Value","2512"
"10:46:36.4478573 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020422\Layout File","0.0000039","Type: REG_SZ, Length: 22, Data: KBDUR1.DLL","2512"
"10:46:36.4478757 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020422","0.0000017","","2512"
"10:46:36.4478906 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 167, Name: 00020426","2512"
"10:46:36.4479051 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4479196 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020426","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4479345 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020426\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDLVST.DLL","2512"
"10:46:36.4479508 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020426","0.0000012","","2512"
"10:46:36.4479636 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 168, Name: 00020427","2512"
"10:46:36.4479793 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4479926 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020427","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4480071 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020427\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDLT2.DLL","2512"
"10:46:36.4480220 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020427","0.0000013","","2512"
"10:46:36.4480335 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\crypt32.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4480344 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 169, Name: 0002042b","2512"
"10:46:36.4480476 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4480608 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","4408"
"10:46:36.4480613 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042b","0.0000030","Desired Access: Query Value","2512"
"10:46:36.4480698 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\crypt32.dll","0.0000043","","4408"
"10:46:36.4480758 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042b\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: kbdarmph.dll","2512"
"10:46:36.4480907 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042b","0.0000013","","2512"
"10:46:36.4481018 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 170, Name: 0002042e","2512"
"10:46:36.4481108 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4481189 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042e","0.0000025","Desired Access: Query Value","2512"
"10:46:36.4481283 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042e\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDSORS1.DLL","2512"
"10:46:36.4481381 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042e","0.0000008","","2512"
"10:46:36.4481457 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 171, Name: 00020437","2512"
"10:46:36.4481539 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4481620 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020437","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4481726 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020437\Layout File","0.0000026","Type: REG_SZ, Length: 26, Data: kbdgeoer.dll","2512"
"10:46:36.4481824 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020437","0.0000009","","2512"
"10:46:36.4481918 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 172, Name: 00020445","2512"
"10:46:36.4482068 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4482157 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020445","0.0000022","Desired Access: Query Value","2512"
"10:46:36.4482247 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020445\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINBE2.DLL","2512"
"10:46:36.4482341 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020445","0.0000012","","2512"
"10:46:36.4482422 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 173, Name: 00020449","2512"
"10:46:36.4482507 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4482588 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020449","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4482678 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020449\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDTAM99.DLL","2512"
"10:46:36.4482763 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msasn1.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4482776 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020449","0.0000008","","2512"
"10:46:36.4482853 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 174, Name: 0002083b","2512"
"10:46:36.4482938 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4483066 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002083b","0.0000030","Desired Access: Query Value","2512"
"10:46:36.4483207 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002083b\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDSMSFI.DLL","2512"
"10:46:36.4483313 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000052","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","4408"
"10:46:36.4483356 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002083b","0.0000013","","2512"
"10:46:36.4483552 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000035","Index: 175, Name: 00020c00","2512"
"10:46:36.4483693 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4483821 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020c00","0.0000039","Desired Access: Query Value","2512"
"10:46:36.4483907 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msasn1.dll","0.0000098","","4408"
"10:46:36.4483966 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020c00\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDNTL.DLL","2512"
"10:46:36.4484120 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020c00","0.0000013","","2512"
"10:46:36.4484244 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 176, Name: 00030402","2512"
"10:46:36.4484376 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4484512 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030402","0.0000039","Desired Access: Query Value","2512"
"10:46:36.4484657 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030402\Layout File","0.0000035","Type: REG_SZ, Length: 24, Data: KBDBULG.DLL","2512"
"10:46:36.4484824 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030402","0.0000013","","2512"
"10:46:36.4484943 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 177, Name: 00030408","2512"
"10:46:36.4485071 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4485225 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030408","0.0000030","Desired Access: Query Value","2512"
"10:46:36.4485366 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030408\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDHELA2.DLL","2512"
"10:46:36.4485507 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030408","0.0000017","","2512"
"10:46:36.4485626 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 178, Name: 00030409","2512"
"10:46:36.4485741 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4485861 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030409","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4486001 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030409\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDUSL.DLL","2512"
"10:46:36.4486121 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030409","0.0000008","","2512"
"10:46:36.4486206 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 179, Name: 0003041e","2512"
"10:46:36.4486292 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4486381 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003041e","0.0000026","Desired Access: Query Value","2512"
"10:46:36.4486518 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003041e\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDTH3.DLL","2512"
"10:46:36.4486620 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003041e","0.0000009","","2512"
"10:46:36.4486697 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 180, Name: 0003042b","2512"
"10:46:36.4486782 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4486863 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003042b","0.0000022","Desired Access: Query Value","2512"
"10:46:36.4486957 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003042b\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: kbdarmty.dll","2512"
"10:46:36.4487051 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003042b","0.0000009","","2512"
"10:46:36.4487128 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 181, Name: 00030437","2512"
"10:46:36.4487213 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4487290 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030437","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4487380 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030437\Layout File","0.0000025","Type: REG_SZ, Length: 26, Data: kbdgeome.dll","2512"
"10:46:36.4487478 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msasn1.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4487508 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030437","0.0000008","","2512"
"10:46:36.4487584 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 182, Name: 00030c00","2512"
"10:46:36.4487670 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4487751 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030c00","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4487840 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030c00\Layout File","0.0000026","Type: REG_SZ, Length: 26, Data: KBDTAILE.DLL","2512"
"10:46:36.4487862 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000034","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","4408"
"10:46:36.4487943 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030c00","0.0000013","","2512"
"10:46:36.4487977 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msasn1.dll","0.0000051","","4408"
"10:46:36.4488024 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 183, Name: 00040402","2512"
"10:46:36.4488113 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4488199 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040402","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4488288 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040402\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDBGPH1.DLL","2512"
"10:46:36.4488382 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040402","0.0000009","","2512"
"10:46:36.4488459 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 184, Name: 00040408","2512"
"10:46:36.4488540 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4488621 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040408","0.0000022","Desired Access: Query Value","2512"
"10:46:36.4488711 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040408\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDHELA3.DLL","2512"
"10:46:36.4488805 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040408","0.0000008","","2512"
"10:46:36.4488877 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 185, Name: 00040409","2512"
"10:46:36.4488963 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4489039 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040409","0.0000022","Desired Access: Query Value","2512"
"10:46:36.4489129 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040409\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDUSR.DLL","2512"
"10:46:36.4489227 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040409","0.0000009","","2512"
"10:46:36.4489300 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 186, Name: 00040437","2512"
"10:46:36.4489398 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4489479 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040437","0.0000017","Desired Access: Query Value","2512"
"10:46:36.4489564 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040437\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: kbdgeooa.dll","2512"
"10:46:36.4489658 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040437","0.0000009","","2512"
"10:46:36.4489735 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 187, Name: 00040c00","2512"
"10:46:36.4489816 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4489897 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040c00","0.0000038","Desired Access: Query Value","2512"
"10:46:36.4489991 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msasn1.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4490016 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040c00\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDOGHAM.DLL","2512"
"10:46:36.4490110 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040c00","0.0000009","","2512"
"10:46:36.4490187 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 188, Name: 00050408","2512"
"10:46:36.4490277 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000051","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4490371 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000038","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","4408"
"10:46:36.4490405 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050408","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4490486 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msasn1.dll","0.0000047","","4408"
"10:46:36.4490503 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050408\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDGKL.DLL","2512"
"10:46:36.4490601 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050408","0.0000008","","2512"
"10:46:36.4490708 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 189, Name: 00050409","2512"
"10:46:36.4490793 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4490925 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050409","0.0000051","Desired Access: Query Value","2512"
"10:46:36.4491092 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050409\Layout File","0.0000029","Type: REG_SZ, Length: 22, Data: KBDUSA.DLL","2512"
"10:46:36.4491245 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050409","0.0000013","","2512"
"10:46:36.4491348 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 190, Name: 00050429","2512"
"10:46:36.4491433 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4491514 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050429","0.0000030","Desired Access: Query Value","2512"
"10:46:36.4491612 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050429\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: kbdfar.dll","2512"
"10:46:36.4491706 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050429","0.0000013","","2512"
"10:46:36.4491783 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 191, Name: 00060408","2512"
"10:46:36.4491868 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4491949 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00060408","0.0000022","Desired Access: Query Value","2512"
"10:46:36.4492039 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00060408\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDHEPT.DLL","2512"
"10:46:36.4492128 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00060408","0.0000013","","2512"
"10:46:36.4492210 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000051","Index: 192, Name: 00070c00","2512"
"10:46:36.4492367 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4492495 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00070c00","0.0000035","Desired Access: Query Value","2512"
"10:46:36.4492632 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00070c00\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: kbdlisub.dll","2512"
"10:46:36.4492781 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00070c00","0.0000013","","2512"
"10:46:36.4492909 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 193, Name: 00080c00","2512"
"10:46:36.4493042 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4493178 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00080c00","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4493323 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00080c00\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: kbdlisus.dll","2512"
"10:46:36.4493609 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00080c00","0.0000017","","2512"
"10:46:36.4493771 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 194, Name: 00090c00","2512"
"10:46:36.4493852 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wintrust.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4493908 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4494044 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00090c00","0.0000034","Desired Access: Query Value","2512"
"10:46:36.4494189 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00090c00\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: kbdnko.dll","2512"
"10:46:36.4494347 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00090c00","0.0000026","","2512"
"10:46:36.4494411 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000047","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","4408"
"10:46:36.4494492 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 195, Name: 000a0c00","2512"
"10:46:36.4494590 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4494595 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wintrust.dll","0.0000055","","4408"
"10:46:36.4494680 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000a0c00","0.0000026","Desired Access: Query Value","2512"
"10:46:36.4494778 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000a0c00\Layout File","0.0000026","Type: REG_SZ, Length: 26, Data: kbdphags.dll","2512"
"10:46:36.4494876 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000a0c00","0.0000009","","2512"
"10:46:36.4494953 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 196, Name: 000b0c00","2512"
"10:46:36.4495038 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4495119 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000b0c00","0.0000022","Desired Access: Query Value","2512"
"10:46:36.4495209 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000b0c00\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDBUG.DLL","2512"
"10:46:36.4495316 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000b0c00","0.0000008","","2512"
"10:46:36.4495401 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 197, Name: 000c0c00","2512"
"10:46:36.4495486 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4495567 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000c0c00","0.0000022","Desired Access: Query Value","2512"
"10:46:36.4495657 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000c0c00\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDGTHC.DLL","2512"
"10:46:36.4495751 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000c0c00","0.0000008","","2512"
"10:46:36.4495828 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 198, Name: 000d0c00","2512"
"10:46:36.4495909 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4495994 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000d0c00","0.0000056","Desired Access: Query Value","2512"
"10:46:36.4496118 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000d0c00\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDOLCH.DLL","2512"
"10:46:36.4496212 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000d0c00","0.0000008","","2512"
"10:46:36.4496288 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 199, Name: 000e0c00","2512"
"10:46:36.4496370 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4496451 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000e0c00","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4496540 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000e0c00\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDOSM.DLL","2512"
"10:46:36.4496630 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000e0c00","0.0000013","","2512"
"10:46:36.4496707 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 200, Name: 000f0c00","2512"
"10:46:36.4496754 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wintrust.dll","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4496796 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4496877 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000f0c00","0.0000022","Desired Access: Query Value","2512"
"10:46:36.4496971 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000f0c00\Layout File","0.0000017","Type: REG_SZ, Length: 26, Data: KBDOLDIT.DLL","2512"
"10:46:36.4497056 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","4408"
"10:46:36.4497065 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000f0c00","0.0000009","","2512"
"10:46:36.4497146 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 201, Name: 00100c00","2512"
"10:46:36.4497150 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wintrust.dll","0.0000043","","4408"
"10:46:36.4497240 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4497325 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00100c00","0.0000022","Desired Access: Query Value","2512"
"10:46:36.4497415 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00100c00\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDSORA.DLL","2512"
"10:46:36.4497504 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00100c00","0.0000009","","2512"
"10:46:36.4497581 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 202, Name: 00110c00","2512"
"10:46:36.4497662 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4497743 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00110c00","0.0000022","Desired Access: Query Value","2512"
"10:46:36.4497829 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00110c00\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDJAV.DLL","2512"
"10:46:36.4497923 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00110c00","0.0000008","","2512"
"10:46:36.4497999 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 203, Name: 00120c00","2512"
"10:46:36.4498080 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4498162 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00120c00","0.0000025","Desired Access: Query Value","2512"
"10:46:36.4498264 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00120c00\Layout File","0.0000026","Type: REG_SZ, Length: 26, Data: KBDFTHRK.DLL","2512"
"10:46:36.4498358 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00120c00","0.0000013","","2512"
"10:46:36.4498452 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 204, Name: 00130c00","2512"
"10:46:36.4498537 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:36.4498614 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00130c00","0.0000021","Desired Access: Query Value","2512"
"10:46:36.4498703 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00130c00\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDMYAN.DLL","2512"
"10:46:36.4498793 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00130c00","0.0000009","","2512"
"10:46:36.4498870 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 205, Length: 288","2512"
"10:46:36.4498964 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","","2512"
"10:46:36.4498994 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wintrust.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4499271 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000025","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","4408"
"10:46:36.4499378 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wintrust.dll","0.0000042","","4408"
"10:46:36.4501229 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4501455 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4501481 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000034","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","2512"
"10:46:36.4501600 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000052","","2512"
"10:46:36.4501664 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000026","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","4408"
"10:46:36.4501818 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000068","","4408"
"10:46:36.4504634 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4504958 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000039","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","2512"
"10:46:36.4505138 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000059","","2512"
"10:46:36.4505155 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4505428 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000034","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","4408"
"10:46:36.4505551 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000052","","4408"
"10:46:36.4507975 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4508244 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000038","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","4408"
"10:46:36.4508376 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000060","","4408"
"10:46:36.4509494 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4509703 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000025","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","2512"
"10:46:36.4509810 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000038","","2512"
"10:46:36.4511499 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4511764 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4511802 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000038","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","4408"
"10:46:36.4511917 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000056","","4408"
"10:46:36.4511998 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","2512"
"10:46:36.4512101 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000042","","2512"
"10:46:36.4514366 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4514524 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4514720 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000069","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","4408"
"10:46:36.4514750 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","2512"
"10:46:36.4514853 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000077","","2512"
"10:46:36.4514891 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000073","","4408"
"10:46:36.4518488 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4518505 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4518795 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000039","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","4408"
"10:46:36.4518932 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000068","","4408"
"10:46:36.4518944 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.4519102 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000052","","2512"
"10:46:36.4522123 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\version.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4522396 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4522533 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000038","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","4408"
"10:46:36.4522674 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\version.dll","0.0000059","","4408"
"10:46:36.4522763 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.4522917 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000051","","2512"
"10:46:36.4526066 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\version.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4526364 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntdll.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4526479 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000039","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","4408"
"10:46:36.4526612 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\version.dll","0.0000059","","4408"
"10:46:36.4526740 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000034","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.4526893 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntdll.dll","0.0000051","","2512"
"10:46:36.4529662 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\version.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4530059 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000039","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","4408"
"10:46:36.4530196 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\version.dll","0.0000055","","4408"
"10:46:36.4530226 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4530622 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000039","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.4530776 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000051","","2512"
"10:46:36.4533989 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4534339 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000157","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4534411 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","4408"
"10:46:36.4534548 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000055","","4408"
"10:46:36.4534731 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000030","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.4534880 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000052","","2512"
"10:46:36.4538302 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4538349 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4538738 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","4408"
"10:46:36.4538848 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000035","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.4538912 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000069","","4408"
"10:46:36.4539049 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000055","","2512"
"10:46:36.4542893 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4543218 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000038","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.4543550 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000060","","2512"
"10:46:36.4543572 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4543990 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","4408"
"10:46:36.4544114 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000055","","4408"
"10:46:36.4547109 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4547544 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000060","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.4547565 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000308","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4547749 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000098","","2512"
"10:46:36.4548069 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000038","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","4408"
"10:46:36.4548205 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000056","","4408"
"10:46:36.4551866 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4552280 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4552293 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000060","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","4408"
"10:46:36.4552498 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000089","","4408"
"10:46:36.4552549 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000034","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.4552694 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000051","","2512"
"10:46:36.4556184 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4556239 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4556483 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000042","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","4408"
"10:46:36.4556628 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000128","","4408"
"10:46:36.4556658 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000029","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","2512"
"10:46:36.4556803 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000038","","2512"
"10:46:36.4560617 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4561142 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000043","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","2512"
"10:46:36.4561325 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000069","","2512"
"10:46:36.4561637 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4561935 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000035","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","4408"
"10:46:36.4562068 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000059","","4408"
"10:46:36.4564841 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4565421 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000047","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","2512"
"10:46:36.4565443 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4565618 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000072","","2512"
"10:46:36.4565912 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","4408"
"10:46:36.4566049 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000064","","4408"
"10:46:36.4569086 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4569321 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4569590 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000064","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:36.4569633 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","4408"
"10:46:36.4569752 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000043","","4408"
"10:46:36.4569906 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000093","","2512"
"10:46:36.4571979 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4572193 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000042","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","4408"
"10:46:36.4572291 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000042","","4408"
"10:46:36.4573571 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4574066 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000042","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:36.4574258 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000068","","2512"
"10:46:36.4574373 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4574552 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","4408"
"10:46:36.4574633 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000038","","4408"
"10:46:36.4576395 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4576566 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000021","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","4408"
"10:46:36.4576643 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000038","","4408"
"10:46:36.4577210 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4577637 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000042","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:36.4577816 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000064","","2512"
"10:46:36.4578733 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4578921 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","4408"
"10:46:36.4579015 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000038","","4408"
"10:46:36.4580803 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4580884 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4580978 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","4408"
"10:46:36.4581054 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000039","","4408"
"10:46:36.4581353 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000047","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.4581528 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000068","","2512"
"10:46:36.4583115 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4583324 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","4408"
"10:46:36.4583405 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000039","","4408"
"10:46:36.4584532 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4584958 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000039","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.4585146 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000064","","2512"
"10:46:36.4585428 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4585611 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","4408"
"10:46:36.4585718 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000038","","4408"
"10:46:36.4587672 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4587860 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000021","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","4408"
"10:46:36.4587937 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000038","","4408"
"10:46:36.4588077 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4588500 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000042","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.4588679 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000060","","2512"
"10:46:36.4589703 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4589886 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","4408"
"10:46:36.4589972 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000038","","4408"
"10:46:36.4592203 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4592668 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000039","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","2512"
"10:46:36.4592860 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000056","","2512"
"10:46:36.4592958 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4593372 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","4408"
"10:46:36.4593500 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000056","","4408"
"10:46:36.4596368 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000157","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4596542 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4596777 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000039","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","2512"
"10:46:36.4596880 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000029","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","4408"
"10:46:36.4596952 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000060","","2512"
"10:46:36.4596999 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000043","","4408"
"10:46:36.4600092 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4600510 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000035","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","4408"
"10:46:36.4600630 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000055","","4408"
"10:46:36.4601739 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4602328 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000047","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","2512"
"10:46:36.4602503 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000068","","2512"
"10:46:36.4605153 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmm.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4605566 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000035","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","4408"
"10:46:36.4605682 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmm.dll","0.0000047","","4408"
"10:46:36.4606249 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4606770 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000047","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.4606974 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000073","","2512"
"10:46:36.4607764 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmm.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4608139 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","4408"
"10:46:36.4608233 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmm.dll","0.0000043","","4408"
"10:46:36.4610516 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4611331 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000047","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.4611518 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000064","","2512"
"10:46:36.4611804 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmm.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4612184 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000038","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","4408"
"10:46:36.4612316 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmm.dll","0.0000060","","4408"
"10:46:36.4614740 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4615188 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000038","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.4615350 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000064","","2512"
"10:46:36.4616464 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wsock32.dll","0.0001194","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4617901 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000043","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","4408"
"10:46:36.4618046 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wsock32.dll","0.0000060","","4408"
"10:46:36.4618682 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4618998 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.4619169 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000055","","2512"
"10:46:36.4620845 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wsock32.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4621370 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000047","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","4408"
"10:46:36.4621541 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wsock32.dll","0.0000072","","4408"
"10:46:36.4621558 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4621767 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.4621869 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000039","","2512"
"10:46:36.4624165 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4624442 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000039","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.4624600 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000056","","2512"
"10:46:36.4626388 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wsock32.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4626780 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000039","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","4408"
"10:46:36.4626921 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wsock32.dll","0.0000056","","4408"
"10:46:36.4627830 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4628282 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:36.4628449 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000059","","2512"
"10:46:36.4630010 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0140664","Offset: 17,825,792, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:36.4630642 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4630932 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000038","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","4408"
"10:46:36.4631068 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000060","","4408"
"10:46:36.4631533 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4632485 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000051","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:36.4632690 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000076","","2512"
"10:46:36.4636107 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4636478 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000043","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","4408"
"10:46:36.4636636 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000069","","4408"
"10:46:36.4637515 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4638480 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000055","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:36.4638906 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000081","","2512"
"10:46:36.4645170 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000746","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4646066 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000042","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","4408"
"10:46:36.4646198 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000072","","4408"
"10:46:36.4650452 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4650887 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000034","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:36.4651036 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000056","","2512"
"10:46:36.4651420 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4651787 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","4408"
"10:46:36.4651894 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000051","","4408"
"10:46:36.4653997 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4654360 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000034","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:36.4654497 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000047","","2512"
"10:46:36.4654514 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4654817 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","4408"
"10:46:36.4654906 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000043","","4408"
"10:46:36.4657270 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4657372 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4657552 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000029","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","4408"
"10:46:36.4657645 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000043","","4408"
"10:46:36.4657684 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:36.4657803 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000047","","2512"
"10:46:36.4659903 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4660159 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000038","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","4408"
"10:46:36.4660287 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000055","","4408"
"10:46:36.4660479 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4660961 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000038","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.4661144 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000056","","2512"
"10:46:36.4662829 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4663098 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000039","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","4408"
"10:46:36.4663226 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000056","","4408"
"10:46:36.4664024 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4664425 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000034","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.4664592 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000055","","2512"
"10:46:36.4665667 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4665923 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000034","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","4408"
"10:46:36.4666051 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000055","","4408"
"10:46:36.4667241 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4667642 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000039","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.4667809 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000051","","2512"
"10:46:36.4668884 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4669153 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","4408"
"10:46:36.4669281 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000051","","4408"
"10:46:36.4670842 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4671201 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000042","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","2512"
"10:46:36.4671359 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000051","","2512"
"10:46:36.4671871 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4672045 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","4408"
"10:46:36.4672144 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000038","","4408"
"10:46:36.4673914 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4674247 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000043","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","2512"
"10:46:36.4674324 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4674426 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000060","","2512"
"10:46:36.4674507 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","4408"
"10:46:36.4674593 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000038","","4408"
"10:46:36.4678591 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\user32.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4678667 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4678923 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000030","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","4408"
"10:46:36.4678992 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000029","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","2512"
"10:46:36.4679026 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\user32.dll","0.0000047","","4408"
"10:46:36.4679149 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000056","","2512"
"10:46:36.4681428 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\user32.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4681739 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000026","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","4408"
"10:46:36.4681829 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\user32.dll","0.0000043","","4408"
"10:46:36.4682140 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4682388 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000030","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","2512"
"10:46:36.4682503 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000047","","2512"
"10:46:36.4683984 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\user32.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4684257 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000025","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","4408"
"10:46:36.4684346 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\user32.dll","0.0000039","","4408"
"10:46:36.4684914 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4685136 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000025","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","2512"
"10:46:36.4685247 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000042","","2512"
"10:46:36.4687141 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\win32u.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4687461 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","4408"
"10:46:36.4687551 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\win32u.dll","0.0000042","","4408"
"10:46:36.4687819 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4688024 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000026","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","2512"
"10:46:36.4688144 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000051","","2512"
"10:46:36.4689594 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\win32u.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4689961 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000043","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","4408"
"10:46:36.4690064 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\win32u.dll","0.0000042","","4408"
"10:46:36.4690857 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4691245 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000030","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","2512"
"10:46:36.4691361 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000051","","2512"
"10:46:36.4692269 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\win32u.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4692700 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000039","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","4408"
"10:46:36.4692837 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\win32u.dll","0.0000060","","4408"
"10:46:36.4694185 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4694544 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000034","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","2512"
"10:46:36.4694706 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000055","","2512"
"10:46:36.4695704 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4696058 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000030","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","4408"
"10:46:36.4696148 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32.dll","0.0000047","","4408"
"10:46:36.4697197 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4697564 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000035","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","2512"
"10:46:36.4697684 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000051","","2512"
"10:46:36.4698712 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4699015 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000026","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","4408"
"10:46:36.4699100 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32.dll","0.0000043","","4408"
"10:46:36.4700474 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4700841 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","2512"
"10:46:36.4700978 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000042","","2512"
"10:46:36.4701678 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32.dll","0.0000157","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4702002 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000030","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","4408"
"10:46:36.4702091 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32.dll","0.0000043","","4408"
"10:46:36.4703657 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4703960 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","2512"
"10:46:36.4704080 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000047","","2512"
"10:46:36.4704754 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4704967 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000030","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","4408"
"10:46:36.4705070 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000042","","4408"
"10:46:36.4706375 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4706678 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","2512"
"10:46:36.4706785 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000042","","2512"
"10:46:36.4707297 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4707480 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000026","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","4408"
"10:46:36.4707574 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000038","","4408"
"10:46:36.4709170 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4709486 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000038","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","2512"
"10:46:36.4709656 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000064","","2512"
"10:46:36.4711367 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4711666 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000042","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","4408"
"10:46:36.4711785 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000051","","4408"
"10:46:36.4712835 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4713065 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","2512"
"10:46:36.4713176 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000043","","2512"
"10:46:36.4715164 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000163","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4715399 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000026","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","4408"
"10:46:36.4715484 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000047","","4408"
"10:46:36.4716867 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4717144 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","2512"
"10:46:36.4717285 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000055","","2512"
"10:46:36.4717635 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4717818 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000039","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","4408"
"10:46:36.4717912 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000043","","4408"
"10:46:36.4720775 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4721031 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.4721142 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000043","","2512"
"10:46:36.4721419 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4721722 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000043","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","4408"
"10:46:36.4721867 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000069","","4408"
"10:46:36.4723194 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4723493 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.4723600 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000042","","2512"
"10:46:36.4724995 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shell32.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4725486 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000046","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","4408"
"10:46:36.4725635 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shell32.dll","0.0000064","","4408"
"10:46:36.4726420 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4726744 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.4726923 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000056","","2512"
"10:46:36.4728395 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shell32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4728788 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000098","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","4408"
"10:46:36.4728971 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shell32.dll","0.0000047","","4408"
"10:46:36.4729646 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000174","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4729914 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000034","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:36.4730068 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000060","","2512"
"10:46:36.4730426 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000043","Exclusive: False, Offset: 124, Length: 1, Fail Immediately: True","8244"
"10:46:36.4730862 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000042","Offset: 124, Length: 1","8244"
"10:46:36.4731356 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000030","Exclusive: True, Offset: 121, Length: 1, Fail Immediately: True","8244"
"10:46:36.4731548 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000022","Exclusive: True, Offset: 120, Length: 1, Fail Immediately: True","8244"
"10:46:36.4731804 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000022","Exclusive: True, Offset: 123, Length: 1, Fail Immediately: True","8244"
"10:46:36.4732060 AM","firefox.exe","7384","FlushBuffersFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0874737","","8244"
"10:46:36.4732325 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shell32.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4732368 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4732683 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:36.4732769 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000042","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","4408"
"10:46:36.4732786 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0015458","Offset: 0, Length: 53,248, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8244"
"10:46:36.4732803 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000047","","2512"
"10:46:36.4732901 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shell32.dll","0.0000064","","4408"
"10:46:36.4734800 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4734992 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:36.4735098 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000043","","2512"
"10:46:36.4735482 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\SHCore.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4735777 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","4408"
"10:46:36.4735866 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\SHCore.dll","0.0000043","","4408"
"10:46:36.4737355 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4737564 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.4737671 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000043","","2512"
"10:46:36.4737876 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\SHCore.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4738136 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","4408"
"10:46:36.4738222 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\SHCore.dll","0.0000038","","4408"
"10:46:36.4739578 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4739817 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.4739924 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000043","","2512"
"10:46:36.4740154 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\SHCore.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4740406 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","4408"
"10:46:36.4740491 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\SHCore.dll","0.0000043","","4408"
"10:46:36.4741742 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4741929 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.4742040 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000043","","2512"
"10:46:36.4742894 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\combase.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4743175 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000030","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","4408"
"10:46:36.4743265 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\combase.dll","0.0000038","","4408"
"10:46:36.4744195 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4744391 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.4744494 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000106","","2512"
"10:46:36.4745338 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\combase.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4745611 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000026","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","4408"
"10:46:36.4745697 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\combase.dll","0.0000038","","4408"
"10:46:36.4746815 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4747011 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.4747130 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000043","","2512"
"10:46:36.4747915 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\combase.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4748368 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000042","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","4408"
"10:46:36.4748538 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\combase.dll","0.0000060","","4408"
"10:46:36.4749396 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4749784 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000039","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.4749946 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000060","","2512"
"10:46:36.4754119 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4754401 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000034","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","4408"
"10:46:36.4754512 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000051","","4408"
"10:46:36.4755135 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4756082 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000055","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:36.4756308 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000073","","2512"
"10:46:36.4758527 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4758894 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000042","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","4408"
"10:46:36.4759034 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000069","","4408"
"10:46:36.4759354 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4759777 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:36.4759935 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000064","","2512"
"10:46:36.4762849 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4763088 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000030","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","4408"
"10:46:36.4763186 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000043","","4408"
"10:46:36.4763267 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4763630 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:36.4763758 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000047","","2512"
"10:46:36.4767312 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000388","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4767973 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","4408"
"10:46:36.4768139 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000064","","4408"
"10:46:36.4768327 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4768809 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000047","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:36.4769001 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000064","","2512"
"10:46:36.4772709 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4772807 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4773170 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","4408"
"10:46:36.4773187 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000107","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:36.4773315 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000055","","4408"
"10:46:36.4773567 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000115","","2512"
"10:46:36.4776878 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000221","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4776984 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4777343 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:36.4777411 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","4408"
"10:46:36.4777475 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000047","","2512"
"10:46:36.4777569 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000068","","4408"
"10:46:36.4780794 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4781166 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000029","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:36.4781281 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000047","","2512"
"10:46:36.4781712 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4782070 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000039","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","4408"
"10:46:36.4782224 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000059","","4408"
"10:46:36.4784425 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4784946 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000043","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:36.4785163 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000069","","2512"
"10:46:36.4787019 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4787365 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000043","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","4408"
"10:46:36.4787519 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000055","","4408"
"10:46:36.4789434 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4789955 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000038","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:36.4790143 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000064","","2512"
"10:46:36.4790723 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4790983 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000034","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","4408"
"10:46:36.4791107 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000055","","4408"
"10:46:36.4793616 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4793842 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:36.4793953 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000042","","2512"
"10:46:36.4795045 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\profapi.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4795450 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","4408"
"10:46:36.4795583 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\profapi.dll","0.0000051","","4408"
"10:46:36.4797140 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4797422 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000034","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:36.4797584 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000059","","2512"
"10:46:36.4798646 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\profapi.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4799043 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","4408"
"10:46:36.4799167 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\profapi.dll","0.0000055","","4408"
"10:46:36.4801569 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4801867 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000039","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:36.4802042 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000060","","2512"
"10:46:36.4802537 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\profapi.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4802900 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","4408"
"10:46:36.4803041 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\profapi.dll","0.0000055","","4408"
"10:46:36.4805452 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4806015 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000042","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:36.4806194 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000060","","2512"
"10:46:36.4806625 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\powrprof.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4807244 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","4408"
"10:46:36.4807380 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\powrprof.dll","0.0000064","","4408"
"10:46:36.4809313 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4809748 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:36.4809919 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000064","","2512"
"10:46:36.4810674 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\powrprof.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4811049 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000035","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","4408"
"10:46:36.4811177 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\powrprof.dll","0.0000056","","4408"
"10:46:36.4813178 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4813609 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:36.4813772 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000064","","2512"
"10:46:36.4814433 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\powrprof.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4814791 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","4408"
"10:46:36.4814928 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\powrprof.dll","0.0000064","","4408"
"10:46:36.4816997 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4817292 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000034","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.4817449 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000064","","2512"
"10:46:36.4818380 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\fltLib.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4818785 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","4408"
"10:46:36.4818917 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\fltLib.dll","0.0000051","","4408"
"10:46:36.4820176 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4820449 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000034","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.4820607 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000055","","2512"
"10:46:36.4821558 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\fltLib.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4821929 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000035","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","4408"
"10:46:36.4822057 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\fltLib.dll","0.0000056","","4408"
"10:46:36.4823175 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4823444 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.4823559 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000043","","2512"
"10:46:36.4825159 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\fltLib.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4825633 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","4408"
"10:46:36.4825744 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4825791 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\fltLib.dll","0.0000072","","4408"
"10:46:36.4825957 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:36.4826060 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000042","","2512"
"10:46:36.4828193 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4828381 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:36.4828496 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000034","","2512"
"10:46:36.4829511 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ole32.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4829964 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000042","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","4408"
"10:46:36.4830113 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ole32.dll","0.0000060","","4408"
"10:46:36.4830335 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4830514 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:36.4830608 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000038","","2512"
"10:46:36.4833471 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ole32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4833859 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000038","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","4408"
"10:46:36.4833949 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4833991 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ole32.dll","0.0000056","","4408"
"10:46:36.4834337 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000038","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:36.4834495 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000059","","2512"
"10:46:36.4837149 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ole32.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4837524 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000038","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","4408"
"10:46:36.4837656 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ole32.dll","0.0000056","","4408"
"10:46:36.4837686 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4838062 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000034","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:36.4838211 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000055","","2512"
"10:46:36.4841445 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\imm32.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4841496 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4841859 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000038","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","4408"
"10:46:36.4841974 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000030","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:36.4841996 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\imm32.dll","0.0000059","","4408"
"10:46:36.4842128 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000051","","2512"
"10:46:36.4845319 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\imm32.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4845580 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000157","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4845682 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000038","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","4408"
"10:46:36.4845818 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\imm32.dll","0.0000060","","4408"
"10:46:36.4845964 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000029","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:36.4846109 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000051","","2512"
"10:46:36.4848925 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\imm32.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4849070 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4849292 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000106","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","4408"
"10:46:36.4849437 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000034","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:36.4849501 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\imm32.dll","0.0000123","","4408"
"10:46:36.4849582 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000055","","2512"
"10:46:36.4853033 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000163","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4853481 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000043","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:36.4853550 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\setupapi.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4853652 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000060","","2512"
"10:46:36.4853934 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000034","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","4408"
"10:46:36.4854053 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\setupapi.dll","0.0000056","","4408"
"10:46:36.4857714 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\setupapi.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4857757 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000230","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4858068 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","4408"
"10:46:36.4858162 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\setupapi.dll","0.0000047","","4408"
"10:46:36.4858341 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000051","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.4858550 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000073","","2512"
"10:46:36.4862113 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\setupapi.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4862501 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4862565 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","4408"
"10:46:36.4862710 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\setupapi.dll","0.0000060","","4408"
"10:46:36.4862919 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000030","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.4863073 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000055","","2512"
"10:46:36.4866473 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4866559 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4866917 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000039","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.4867088 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000060","","2512"
"10:46:36.4867250 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000038","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","4408"
"10:46:36.4867374 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000051","","4408"
"10:46:36.4870578 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4870843 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4870962 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000038","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","4408"
"10:46:36.4871094 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000060","","4408"
"10:46:36.4871124 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000030","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.4871282 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000047","","2512"
"10:46:36.4874124 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000157","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4874456 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4874482 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000034","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","4408"
"10:46:36.4874614 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000056","","4408"
"10:46:36.4874725 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000034","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.4874875 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000046","","2512"
"10:46:36.4875634 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.1260273","Offset: 18,874,368, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:36.4877968 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4878087 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4878177 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000026","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.4878279 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000039","","2512"
"10:46:36.4878424 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000035","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","4408"
"10:46:36.4878527 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000047","","4408"
"10:46:36.4889083 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4889475 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000034","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","4408"
"10:46:36.4889526 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4889590 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000051","","4408"
"10:46:36.4889808 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000034","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.4889949 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000051","","2512"
"10:46:36.4893311 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\avrt.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4893545 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4893631 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","4408"
"10:46:36.4893725 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\avrt.dll","0.0000047","","4408"
"10:46:36.4893776 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000030","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.4893900 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000042","","2512"
"10:46:36.4896669 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\avrt.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4896792 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4896959 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","4408"
"10:46:36.4897014 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000026","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.4897053 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\avrt.dll","0.0000042","","4408"
"10:46:36.4897129 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000150","","2512"
"10:46:36.4899515 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\avrt.dll","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4899822 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","4408"
"10:46:36.4899916 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\avrt.dll","0.0000042","","4408"
"10:46:36.4900312 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4900645 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000030","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","2512"
"10:46:36.4900769 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000043","","2512"
"10:46:36.4902787 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\usp10.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4903128 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000030","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","4408"
"10:46:36.4903261 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\usp10.dll","0.0000059","","4408"
"10:46:36.4903410 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4903879 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000039","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","2512"
"10:46:36.4904054 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000064","","2512"
"10:46:36.4906085 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\usp10.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4906397 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000025","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","4408"
"10:46:36.4906482 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\usp10.dll","0.0000047","","4408"
"10:46:36.4906772 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4907071 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000030","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","2512"
"10:46:36.4907186 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000051","","2512"
"10:46:36.4908483 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\usp10.dll","0.0000248","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4908935 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000030","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","4408"
"10:46:36.4909029 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\usp10.dll","0.0000043","","4408"
"10:46:36.4909917 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4910237 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000038","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.4910356 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000047","","2512"
"10:46:36.4912182 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\d3d11.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4912536 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000026","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","4408"
"10:46:36.4912626 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\d3d11.dll","0.0000043","","4408"
"10:46:36.4913014 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4913339 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000029","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.4913458 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000047","","2512"
"10:46:36.4915071 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\d3d11.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4915357 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000025","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","4408"
"10:46:36.4915442 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\d3d11.dll","0.0000038","","4408"
"10:46:36.4915818 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4916108 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.4916219 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000042","","2512"
"10:46:36.4917354 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\d3d11.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4917691 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000025","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","4408"
"10:46:36.4917776 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\d3d11.dll","0.0000051","","4408"
"10:46:36.4919807 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4920280 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000052","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.4920468 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000060","","2512"
"10:46:36.4920908 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dxgi.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4921296 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000030","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","4408"
"10:46:36.4921386 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dxgi.dll","0.0000046","","4408"
"10:46:36.4923958 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4924202 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dxgi.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4924402 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000043","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.4924586 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000064","","2512"
"10:46:36.4924603 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000034","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","4408"
"10:46:36.4924735 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dxgi.dll","0.0000051","","4408"
"10:46:36.4927423 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dxgi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4927487 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4927709 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000030","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","4408"
"10:46:36.4927803 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000029","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.4927811 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dxgi.dll","0.0000043","","4408"
"10:46:36.4927926 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000047","","2512"
"10:46:36.4930785 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4931037 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4931084 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","4408"
"10:46:36.4931242 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000081","","4408"
"10:46:36.4931318 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000039","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.4931480 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000052","","2512"
"10:46:36.4938000 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4938397 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4938439 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000043","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","4408"
"10:46:36.4938606 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000060","","4408"
"10:46:36.4938764 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000034","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.4938896 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000051","","2512"
"10:46:36.4941516 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4941733 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4941840 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","4408"
"10:46:36.4941964 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000047","","4408"
"10:46:36.4941985 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000030","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:36.4942113 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000047","","2512"
"10:46:36.4945236 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4945415 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4945654 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000034","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","4408"
"10:46:36.4945752 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:36.4945757 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000047","","4408"
"10:46:36.4945868 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000047","","2512"
"10:46:36.4949644 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000187","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4949695 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4950104 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","4408"
"10:46:36.4950113 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000034","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:36.4950203 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000042","","4408"
"10:46:36.4950275 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000056","","2512"
"10:46:36.4952903 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4953206 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","4408"
"10:46:36.4953296 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000043","","4408"
"10:46:36.4953304 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4953637 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:36.4953761 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000047","","2512"
"10:46:36.4956231 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nsi.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4956564 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","4408"
"10:46:36.4956637 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4956658 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nsi.dll","0.0000043","","4408"
"10:46:36.4956931 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.4957042 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000043","","2512"
"10:46:36.4959082 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nsi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4959355 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","4408"
"10:46:36.4959440 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nsi.dll","0.0000043","","4408"
"10:46:36.4959555 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4959768 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.4959875 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000043","","2512"
"10:46:36.4961654 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nsi.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4961953 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","4408"
"10:46:36.4962038 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nsi.dll","0.0000043","","4408"
"10:46:36.4962235 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4962444 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.4962550 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000043","","2512"
"10:46:36.4964833 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4965234 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","4408"
"10:46:36.4965324 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000038","","4408"
"10:46:36.4965533 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4965878 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:36.4966002 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000039","","2512"
"10:46:36.4967773 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4968067 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","4408"
"10:46:36.4968157 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000038","","4408"
"10:46:36.4968447 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4968780 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:36.4968895 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000047","","2512"
"10:46:36.4971254 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4971647 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000034","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","4408"
"10:46:36.4971775 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000055","","4408"
"10:46:36.4971826 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4972108 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:36.4972214 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000043","","2512"
"10:46:36.4975372 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4975645 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4975845 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000107","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","4408"
"10:46:36.4976101 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000081","","4408"
"10:46:36.4976191 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:36.4976357 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000056","","2512"
"10:46:36.4979280 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4979540 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4979613 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000030","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","4408"
"10:46:36.4979711 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000047","","4408"
"10:46:36.4979865 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000029","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:36.4979984 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000047","","2512"
"10:46:36.4982851 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4982881 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4983146 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:36.4983222 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000035","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","4408"
"10:46:36.4983261 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000042","","2512"
"10:46:36.4983338 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000051","","4408"
"10:46:36.4986742 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4986841 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4987045 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000030","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","4408"
"10:46:36.4987139 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000039","","4408"
"10:46:36.4987207 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:36.4987335 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000047","","2512"
"10:46:36.4989806 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4990092 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4990117 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000030","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","4408"
"10:46:36.4990207 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000038","","4408"
"10:46:36.4990403 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:36.4990518 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000043","","2512"
"10:46:36.4992818 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4993236 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000030","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","4408"
"10:46:36.4993326 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000043","","4408"
"10:46:36.4994094 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4994474 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:36.4994619 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000055","","2512"
"10:46:36.4995745 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4996039 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","4408"
"10:46:36.4996129 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000038","","4408"
"10:46:36.4998122 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000264","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.4998617 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000034","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","2512"
"10:46:36.4998740 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000051","","2512"
"10:46:36.4998838 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.4999107 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","4408"
"10:46:36.4999193 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000038","","4408"
"10:46:36.5002111 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5002320 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5002580 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000034","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","2512"
"10:46:36.5002602 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000029","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","4408"
"10:46:36.5002695 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000039","","4408"
"10:46:36.5002742 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000064","","2512"
"10:46:36.5006105 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5006122 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\userenv.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5006429 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000030","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","2512"
"10:46:36.5006561 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000043","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","4408"
"10:46:36.5006702 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000124","","2512"
"10:46:36.5006706 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\userenv.dll","0.0000064","","4408"
"10:46:36.5009249 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\userenv.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5009535 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","4408"
"10:46:36.5009923 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\userenv.dll","0.0000077","","4408"
"10:46:36.5010363 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5010794 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000038","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","2512"
"10:46:36.5010951 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000120","","2512"
"10:46:36.5013017 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\userenv.dll","0.0000157","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5013345 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","4408"
"10:46:36.5013448 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\userenv.dll","0.0000046","","4408"
"10:46:36.5013883 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5014181 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000030","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","2512"
"10:46:36.5014288 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000047","","2512"
"10:46:36.5017505 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5017590 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5017800 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000029","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","2512"
"10:46:36.5017885 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000094","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","4408"
"10:46:36.5017915 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000094","","2512"
"10:46:36.5018158 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000068","","4408"
"10:46:36.5021371 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5021409 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5021627 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000030","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","4408"
"10:46:36.5021695 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:36.5021721 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000047","","4408"
"10:46:36.5021810 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000043","","2512"
"10:46:36.5024276 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5024477 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5024507 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000034","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","4408"
"10:46:36.5024626 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000051","","4408"
"10:46:36.5024784 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:36.5024891 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000042","","2512"
"10:46:36.5028104 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5028296 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000448","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5028688 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000111","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:36.5028927 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000055","","2512"
"10:46:36.5029021 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","4408"
"10:46:36.5029145 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000055","","4408"
"10:46:36.5032072 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5032136 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5032362 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","4408"
"10:46:36.5032456 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000042","","4408"
"10:46:36.5032473 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000029","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.5032622 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000051","","2512"
"10:46:36.5034943 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5035165 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5035225 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000029","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","4408"
"10:46:36.5035314 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000039","","4408"
"10:46:36.5035464 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000029","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.5035574 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000043","","2512"
"10:46:36.5038408 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5038459 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5038706 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000030","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.5038749 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","4408"
"10:46:36.5038821 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000043","","2512"
"10:46:36.5038843 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000042","","4408"
"10:46:36.5041522 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5041569 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5041795 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","4408"
"10:46:36.5041872 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000026","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.5041885 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000038","","4408"
"10:46:36.5041987 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000043","","2512"
"10:46:36.5044330 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5044394 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5044590 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","4408"
"10:46:36.5044680 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000042","","4408"
"10:46:36.5044684 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000025","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.5044808 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000106","","2512"
"10:46:36.5048012 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5048076 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5048374 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","4408"
"10:46:36.5048490 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000038","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","2512"
"10:46:36.5048511 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000051","","4408"
"10:46:36.5048618 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000047","","2512"
"10:46:36.5050994 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5051195 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5051276 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","4408"
"10:46:36.5051365 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000043","","4408"
"10:46:36.5051489 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000026","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","2512"
"10:46:36.5051600 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000038","","2512"
"10:46:36.5054075 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5054275 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5054373 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","4408"
"10:46:36.5054463 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000043","","4408"
"10:46:36.5054617 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000034","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","2512"
"10:46:36.5054745 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000042","","2512"
"10:46:36.5057582 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\webauthn.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5057787 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5057885 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","4408"
"10:46:36.5057974 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\webauthn.dll","0.0000039","","4408"
"10:46:36.5058188 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000064","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:36.5058363 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000055","","2512"
"10:46:36.5060368 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\webauthn.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5060748 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","4408"
"10:46:36.5060837 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\webauthn.dll","0.0000043","","4408"
"10:46:36.5061213 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5061605 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000030","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:36.5061716 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000047","","2512"
"10:46:36.5063146 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\webauthn.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5063461 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","4408"
"10:46:36.5063547 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\webauthn.dll","0.0000038","","4408"
"10:46:36.5064144 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5064430 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000030","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:36.5064537 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000042","","2512"
"10:46:36.5067191 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5067447 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5067485 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000030","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","4408"
"10:46:36.5067575 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000042","","4408"
"10:46:36.5067749 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000030","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.5067856 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000039","","2512"
"10:46:36.5069768 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5070139 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000025","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","4408"
"10:46:36.5070241 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000043","","4408"
"10:46:36.5070561 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5070962 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000034","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.5071099 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000047","","2512"
"10:46:36.5072503 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5072780 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000064","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","4408"
"10:46:36.5072908 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000047","","4408"
"10:46:36.5073731 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5074013 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000030","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.5074141 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000043","","2512"
"10:46:36.5076624 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5077132 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000034","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","4408"
"10:46:36.5077234 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000051","","4408"
"10:46:36.5077320 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5077610 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000034","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.5077725 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000043","","2512"
"10:46:36.5080174 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5080281 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5080567 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000038","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","4408"
"10:46:36.5080699 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000060","","4408"
"10:46:36.5080729 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000038","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.5080929 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000056","","2512"
"10:46:36.5083412 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5083621 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5083707 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000030","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","4408"
"10:46:36.5083796 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000039","","4408"
"10:46:36.5083924 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000030","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.5084044 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000047","","2512"
"10:46:36.5087816 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5088473 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000051","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","4408"
"10:46:36.5088631 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000085","","4408"
"10:46:36.5088951 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5089305 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000034","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:36.5089428 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000047","","2512"
"10:46:36.5091395 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5091732 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","4408"
"10:46:36.5091826 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000043","","4408"
"10:46:36.5092104 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5092407 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000029","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:36.5092517 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000047","","2512"
"10:46:36.5094045 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5094352 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","4408"
"10:46:36.5094437 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000043","","4408"
"10:46:36.5094775 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5095056 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:36.5095159 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000042","","2512"
"10:46:36.5097309 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mswsock.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5097620 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","4408"
"10:46:36.5097706 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mswsock.dll","0.0000042","","4408"
"10:46:36.5098636 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5099092 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000035","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.5099208 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000115","","2512"
"10:46:36.5101268 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mswsock.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5101776 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000060","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","4408"
"10:46:36.5101938 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mswsock.dll","0.0000060","","4408"
"10:46:36.5102830 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5103325 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000043","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.5103508 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000060","","2512"
"10:46:36.5105236 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mswsock.dll","0.0000197","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5105727 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","4408"
"10:46:36.5105838 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mswsock.dll","0.0000060","","4408"
"10:46:36.5106175 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5106482 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.5106593 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000043","","2512"
"10:46:36.5110041 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5110356 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.5110442 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winrnr.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5110467 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000047","","2512"
"10:46:36.5110770 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000034","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","4408"
"10:46:36.5110864 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winrnr.dll","0.0000047","","4408"
"10:46:36.5113236 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winrnr.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5113305 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5113544 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000029","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","4408"
"10:46:36.5113642 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winrnr.dll","0.0000089","","4408"
"10:46:36.5113655 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000029","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.5113821 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000068","","2512"
"10:46:36.5116471 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\winrnr.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5116522 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5116744 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000025","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","4408"
"10:46:36.5116812 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.5116833 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\winrnr.dll","0.0000043","","4408"
"10:46:36.5116927 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000043","","2512"
"10:46:36.5119995 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wshbth.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5120055 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5120298 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","4408"
"10:46:36.5120392 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wshbth.dll","0.0000042","","4408"
"10:46:36.5120422 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000029","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","2512"
"10:46:36.5120575 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000064","","2512"
"10:46:36.5123195 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wshbth.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5123511 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000059","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","4408"
"10:46:36.5123545 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5123698 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wshbth.dll","0.0000064","","4408"
"10:46:36.5123890 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","2512"
"10:46:36.5124035 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000043","","2512"
"10:46:36.5126463 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\wshbth.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5126762 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000030","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","4408"
"10:46:36.5126851 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\wshbth.dll","0.0000043","","4408"
"10:46:36.5127223 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5127645 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","2512"
"10:46:36.5127811 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000060","","2512"
"10:46:36.5130542 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sspicli.dll","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5130973 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000034","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","4408"
"10:46:36.5131067 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5131080 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sspicli.dll","0.0000051","","4408"
"10:46:36.5131383 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000029","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:36.5131494 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000042","","2512"
"10:46:36.5133405 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sspicli.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5133695 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","4408"
"10:46:36.5133789 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sspicli.dll","0.0000043","","4408"
"10:46:36.5134054 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5134344 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000038","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:36.5134463 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000039","","2512"
"10:46:36.5136067 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\sspicli.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5136362 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","4408"
"10:46:36.5136451 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\sspicli.dll","0.0000043","","4408"
"10:46:36.5136904 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5137172 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000030","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:36.5137279 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000039","","2512"
"10:46:36.5139280 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\devobj.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5139575 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000029","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","4408"
"10:46:36.5139664 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\devobj.dll","0.0000039","","4408"
"10:46:36.5140099 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000180","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5140556 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000034","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","2512"
"10:46:36.5140671 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000047","","2512"
"10:46:36.5142058 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\devobj.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5142352 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","4408"
"10:46:36.5142450 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\devobj.dll","0.0000039","","4408"
"10:46:36.5143624 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5144230 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000034","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","2512"
"10:46:36.5144366 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000051","","2512"
"10:46:36.5144695 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\devobj.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5144972 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","4408"
"10:46:36.5145074 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\devobj.dll","0.0000043","","4408"
"10:46:36.5146542 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5146956 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000026","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","2512"
"10:46:36.5147067 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000047","","2512"
"10:46:36.5147980 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\DWrite.dll","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5148500 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000030","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","4408"
"10:46:36.5148594 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\DWrite.dll","0.0000047","","4408"
"10:46:36.5150105 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5150433 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.5150544 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000047","","2512"
"10:46:36.5150830 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\DWrite.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5151112 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000025","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","4408"
"10:46:36.5151193 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\DWrite.dll","0.0000038","","4408"
"10:46:36.5152848 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5153151 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.5153262 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000043","","2512"
"10:46:36.5153471 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\DWrite.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5153800 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000030","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","4408"
"10:46:36.5153894 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\DWrite.dll","0.0000042","","4408"
"10:46:36.5155412 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5155724 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.5155835 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000043","","2512"
"10:46:36.5156718 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mscms.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5157021 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000043","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","4408"
"10:46:36.5157119 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mscms.dll","0.0000043","","4408"
"10:46:36.5158868 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000146","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5159188 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","2512"
"10:46:36.5159295 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000043","","2512"
"10:46:36.5159436 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mscms.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5160242 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","4408"
"10:46:36.5160340 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mscms.dll","0.0000056","","4408"
"10:46:36.5162043 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5162393 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","2512"
"10:46:36.5162508 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000043","","2512"
"10:46:36.5163754 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\mscms.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5164121 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","4408"
"10:46:36.5164219 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\mscms.dll","0.0000047","","4408"
"10:46:36.5165085 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5165401 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","2512"
"10:46:36.5165520 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000043","","2512"
"10:46:36.5167346 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5167572 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","4408"
"10:46:36.5167666 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000043","","4408"
"10:46:36.5168486 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5168737 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000034","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","2512"
"10:46:36.5168848 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000043","","2512"
"10:46:36.5170585 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5170866 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000039","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","4408"
"10:46:36.5171011 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000060","","4408"
"10:46:36.5172125 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5172432 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000034","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","2512"
"10:46:36.5172607 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000056","","2512"
"10:46:36.5173785 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5173981 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","4408"
"10:46:36.5174071 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000089","","4408"
"10:46:36.5175018 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5175235 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000030","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","2512"
"10:46:36.5175351 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000042","","2512"
"10:46:36.5177083 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5177407 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","4408"
"10:46:36.5177493 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000038","","4408"
"10:46:36.5178145 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5178482 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:36.5178598 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000042","","2512"
"10:46:36.5179592 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5179865 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","4408"
"10:46:36.5179950 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000039","","4408"
"10:46:36.5180774 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5181128 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:36.5181239 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000047","","2512"
"10:46:36.5182476 AM","firefox.exe","7336","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5182758 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000029","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","4408"
"10:46:36.5182847 AM","firefox.exe","7336","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000043","","4408"
"10:46:36.5183479 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5183747 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:36.5183850 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000038","","2512"
"10:46:36.5185390 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5185603 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","4408"
"10:46:36.5185689 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000038","","4408"
"10:46:36.5186329 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5186623 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","2512"
"10:46:36.5186738 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000039","","2512"
"10:46:36.5187651 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5187843 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000047","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","4408"
"10:46:36.5187971 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000056","","4408"
"10:46:36.5188739 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5189008 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","2512"
"10:46:36.5189119 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000043","","2512"
"10:46:36.5189772 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5189947 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000021","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","4408"
"10:46:36.5190037 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000038","","4408"
"10:46:36.5191005 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5191282 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","2512"
"10:46:36.5191406 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000043","","2512"
"10:46:36.5192575 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5192767 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","4408"
"10:46:36.5192844 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000038","","4408"
"10:46:36.5193949 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5194261 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000025","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.5194363 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000043","","2512"
"10:46:36.5194781 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5194956 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","4408"
"10:46:36.5195037 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000038","","4408"
"10:46:36.5196385 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5196658 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000030","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.5196765 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000043","","2512"
"10:46:36.5196889 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5197064 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000021","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","4408"
"10:46:36.5197166 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000034","","4408"
"10:46:36.5198736 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5198988 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000026","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.5199086 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000039","","2512"
"10:46:36.5201271 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5201471 AM","firefox.exe","7336","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","4408"
"10:46:36.5201557 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000038","","4408"
"10:46:36.5201736 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5202030 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:36.5202133 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000042","","2512"
"10:46:36.5202593 AM","firefox.exe","7336","CreateFile","C:\Program Files\Firefox Nightly","0.0000116","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","4408"
"10:46:36.5202901 AM","firefox.exe","7336","QueryDirectory","C:\Program Files\Firefox Nightly\xul.dll","0.0000128","Filter: xul.dll, 1: xul.dll","4408"
"10:46:36.5203195 AM","firefox.exe","7336","CloseFile","C:\Program Files\Firefox Nightly","0.0000043","","4408"
"10:46:36.5204923 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5205354 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000038","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:36.5205499 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000051","","2512"
"10:46:36.5208878 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\psapi.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5209168 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\psapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:36.5209279 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\psapi.dll","0.0000056","","2512"
"10:46:36.5213106 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5213550 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","2512"
"10:46:36.5213721 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000060","","2512"
"10:46:36.5215901 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5216187 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","2512"
"10:46:36.5216289 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000039","","2512"
"10:46:36.5218248 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbgcore.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5218521 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbgcore.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","2512"
"10:46:36.5218627 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbgcore.dll","0.0000043","","2512"
"10:46:36.5221252 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5221554 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","2512"
"10:46:36.5221657 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000043","","2512"
"10:46:36.5223585 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5223854 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","2512"
"10:46:36.5223957 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000038","","2512"
"10:46:36.5225842 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5226107 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","2512"
"10:46:36.5226205 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000043","","2512"
"10:46:36.5228957 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5229243 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:36.5229341 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000039","","2512"
"10:46:36.5231227 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5231487 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:36.5231590 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000038","","2512"
"10:46:36.5233360 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5233616 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000022","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:36.5233714 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000039","","2512"
"10:46:36.5236462 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5236876 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000038","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","2512"
"10:46:36.5237038 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000064","","2512"
"10:46:36.5239304 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5239598 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000030","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","2512"
"10:46:36.5239705 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000038","","2512"
"10:46:36.5241574 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5241842 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000026","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","2512"
"10:46:36.5241941 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000042","","2512"
"10:46:36.5244637 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5244944 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000030","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","2512"
"10:46:36.5245047 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000042","","2512"
"10:46:36.5247129 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5247445 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000029","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","2512"
"10:46:36.5247547 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000043","","2512"
"10:46:36.5249476 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5249744 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000022","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","2512"
"10:46:36.5249842 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000039","","2512"
"10:46:36.5252407 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5252688 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.5252791 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000038","","2512"
"10:46:36.5254608 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5254873 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000025","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.5254975 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000039","","2512"
"10:46:36.5256878 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5257130 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.5257232 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000034","","2512"
"10:46:36.5259869 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5260151 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","2512"
"10:46:36.5260253 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000039","","2512"
"10:46:36.5262058 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5262314 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000021","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","2512"
"10:46:36.5262412 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000038","","2512"
"10:46:36.5264260 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5264516 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","2512"
"10:46:36.5264614 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000038","","2512"
"10:46:36.5267306 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5268112 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000069","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:36.5268373 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000153","","2512"
"10:46:36.5271521 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5271880 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000034","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:36.5272004 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000046","","2512"
"10:46:36.5274073 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\netprofm.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5274376 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\netprofm.dll","0.0000030","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:36.5274487 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\netprofm.dll","0.0000042","","2512"
"10:46:36.5277153 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5277456 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2512"
"10:46:36.5277563 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000043","","2512"
"10:46:36.5279475 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5279752 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2512"
"10:46:36.5279854 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000039","","2512"
"10:46:36.5281732 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5282000 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2512"
"10:46:36.5282103 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000038","","2512"
"10:46:36.5284599 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5284897 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000030","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","2512"
"10:46:36.5285000 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000043","","2512"
"10:46:36.5286864 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5287137 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000026","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","2512"
"10:46:36.5287236 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000038","","2512"
"10:46:36.5289100 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5289365 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000030","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","2512"
"10:46:36.5289467 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000038","","2512"
"10:46:36.5291997 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5292279 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:36.5292377 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000038","","2512"
"10:46:36.5294399 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5294677 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:36.5294779 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000038","","2512"
"10:46:36.5296635 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5296900 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:36.5297002 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000038","","2512"
"10:46:36.5299613 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5299912 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000025","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","2512"
"10:46:36.5300014 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000043","","2512"
"10:46:36.5301879 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5302143 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000026","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","2512"
"10:46:36.5302246 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000038","","2512"
"10:46:36.5304080 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\npmproxy.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5304345 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\npmproxy.dll","0.0000026","CreationTime: 4/25/2019 5:32:17 PM, LastAccessTime: 4/25/2019 5:32:17 PM, LastWriteTime: 2/5/2019 7:28:50 PM, ChangeTime: 4/25/2019 8:21:08 PM, FileAttributes: A","2512"
"10:46:36.5304447 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\npmproxy.dll","0.0000039","","2512"
"10:46:36.5307003 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5307280 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.5307383 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000038","","2512"
"10:46:36.5309260 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5309520 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.5309623 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000038","","2512"
"10:46:36.5312405 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winnsi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5312682 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winnsi.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.5312789 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winnsi.dll","0.0000042","","2512"
"10:46:36.5315349 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5315562 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.5315664 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000035","","2512"
"10:46:36.5317563 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5317751 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.5317853 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000039","","2512"
"10:46:36.5319615 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5319799 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.5319897 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc6.dll","0.0000038","","2512"
"10:46:36.5322448 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5322768 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:36.5322875 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000043","","2512"
"10:46:36.5324697 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5324983 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:36.5325090 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000038","","2512"
"10:46:36.5326911 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5327193 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:36.5327295 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemprox.dll","0.0000039","","2512"
"10:46:36.5329864 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5330154 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:36.5330256 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000039","","2512"
"10:46:36.5332168 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5332437 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:36.5332539 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000039","","2512"
"10:46:36.5334306 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbemcomn.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5334562 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbemcomn.dll","0.0000021","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:36.5334660 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbemcomn.dll","0.0000038","","2512"
"10:46:36.5337220 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5337531 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:36.5337634 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000038","","2512"
"10:46:36.5339400 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5339682 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000021","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:36.5339780 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000038","","2512"
"10:46:36.5341512 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5341781 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:04 PM, FileAttributes: A","2512"
"10:46:36.5341879 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\wbemsvc.dll","0.0000038","","2512"
"10:46:36.5344345 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5344644 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","2512"
"10:46:36.5344746 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000038","","2512"
"10:46:36.5346542 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5346815 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000022","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","2512"
"10:46:36.5346914 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000038","","2512"
"10:46:36.5348727 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wbem\fastprox.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5348996 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wbem\fastprox.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:25:05 PM, FileAttributes: A","2512"
"10:46:36.5349094 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wbem\fastprox.dll","0.0000038","","2512"
"10:46:36.5351726 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5352016 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000030","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.5352123 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000039","","2512"
"10:46:36.5354018 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5354282 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000026","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.5354380 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000039","","2512"
"10:46:36.5356219 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msctf.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5356475 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msctf.dll","0.0000026","CreationTime: 4/25/2019 5:33:52 PM, LastAccessTime: 4/25/2019 5:33:52 PM, LastWriteTime: 2/16/2019 5:53:02 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:36.5356578 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msctf.dll","0.0000038","","2512"
"10:46:36.5359214 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5359496 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000030","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","2512"
"10:46:36.5359603 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000042","","2512"
"10:46:36.5362777 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5363063 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000030","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","2512"
"10:46:36.5363170 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000042","","2512"
"10:46:36.5365068 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winsta.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5365333 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winsta.dll","0.0000025","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","2512"
"10:46:36.5365435 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winsta.dll","0.0000039","","2512"
"10:46:36.5368093 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5368371 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","2512"
"10:46:36.5368469 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000038","","2512"
"10:46:36.5370376 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5370636 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","2512"
"10:46:36.5370739 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000038","","2512"
"10:46:36.5372565 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\devobj.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5372821 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","2512"
"10:46:36.5372919 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\devobj.dll","0.0000038","","2512"
"10:46:36.5375534 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5375816 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","2512"
"10:46:36.5375923 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000034","","2512"
"10:46:36.5378124 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5378397 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","2512"
"10:46:36.5378504 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000038","","2512"
"10:46:36.5380373 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dcomp.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5380629 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dcomp.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:08:47 PM, FileAttributes: A","2512"
"10:46:36.5380731 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dcomp.dll","0.0000039","","2512"
"10:46:36.5383338 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5383615 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","2512"
"10:46:36.5383718 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000038","","2512"
"10:46:36.5386367 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5386649 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","2512"
"10:46:36.5386756 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000042","","2512"
"10:46:36.5389162 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5389474 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000029","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","2512"
"10:46:36.5389585 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000042","","2512"
"10:46:36.5392366 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5392584 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","2512"
"10:46:36.5392686 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000039","","2512"
"10:46:36.5394628 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5394824 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","2512"
"10:46:36.5394922 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000039","","2512"
"10:46:36.5396680 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5396868 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000025","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","2512"
"10:46:36.5396966 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000038","","2512"
"10:46:36.5399769 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5399978 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000030","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:36.5400076 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000039","","2512"
"10:46:36.5402047 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5402235 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000026","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:36.5402329 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000038","","2512"
"10:46:36.5404070 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\TextInputFramework.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5404249 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\TextInputFramework.dll","0.0000021","CreationTime: 3/20/2019 7:38:45 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:45 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:36.5404343 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\TextInputFramework.dll","0.0000038","","2512"
"10:46:36.5407231 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000146","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5407462 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000025","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:36.5407556 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000038","","2512"
"10:46:36.5409540 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5409727 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000026","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:36.5409826 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000034","","2512"
"10:46:36.5411575 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreUIComponents.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5411758 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreUIComponents.dll","0.0000026","CreationTime: 3/20/2019 7:38:49 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:49 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:36.5411852 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreUIComponents.dll","0.0000039","","2512"
"10:46:36.5414387 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5414574 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000026","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","2512"
"10:46:36.5414673 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000038","","2512"
"10:46:36.5416516 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5416703 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000022","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","2512"
"10:46:36.5416797 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000039","","2512"
"10:46:36.5418743 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CoreMessaging.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5418926 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CoreMessaging.dll","0.0000026","CreationTime: 3/20/2019 7:38:30 PM, LastAccessTime: 3/20/2019 7:38:31 PM, LastWriteTime: 3/20/2019 7:38:30 PM, ChangeTime: 4/25/2019 8:10:27 PM, FileAttributes: A","2512"
"10:46:36.5419020 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CoreMessaging.dll","0.0000039","","2512"
"10:46:36.5421730 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5422126 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.5422229 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000038","","2512"
"10:46:36.5424034 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5424298 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.5424396 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000039","","2512"
"10:46:36.5426222 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\WinTypes.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5426483 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\WinTypes.dll","0.0000025","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.5426585 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\WinTypes.dll","0.0000038","","2512"
"10:46:36.5429162 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5429448 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","2512"
"10:46:36.5429550 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000039","","2512"
"10:46:36.5431389 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5431645 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","2512"
"10:46:36.5431748 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000038","","2512"
"10:46:36.5434786 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wscapi.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5435195 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wscapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:43 PM, LastAccessTime: 4/11/2018 4:34:43 PM, LastWriteTime: 4/11/2018 4:34:43 PM, ChangeTime: 3/20/2019 7:05:17 PM, FileAttributes: A","2512"
"10:46:36.5435357 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wscapi.dll","0.0000064","","2512"
"10:46:36.5439253 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5439586 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000030","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","2512"
"10:46:36.5439697 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000051","","2512"
"10:46:36.5442760 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5443063 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000030","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","2512"
"10:46:36.5443174 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000043","","2512"
"10:46:36.5445162 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\urlmon.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5445444 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\urlmon.dll","0.0000030","CreationTime: 4/25/2019 5:33:54 PM, LastAccessTime: 4/25/2019 5:33:54 PM, LastWriteTime: 3/6/2019 1:28:35 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","2512"
"10:46:36.5445550 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\urlmon.dll","0.0000043","","2512"
"10:46:36.5448802 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5449245 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000043","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","2512"
"10:46:36.5449412 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000064","","2512"
"10:46:36.5451558 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5451840 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000029","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","2512"
"10:46:36.5451946 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000043","","2512"
"10:46:36.5453819 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\iertutil.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5454092 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\iertutil.dll","0.0000026","CreationTime: 4/25/2019 5:34:08 PM, LastAccessTime: 4/25/2019 5:34:08 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:18:09 PM, FileAttributes: A","2512"
"10:46:36.5454195 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\iertutil.dll","0.0000038","","2512"
"10:46:36.5457348 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5457574 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000021","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:36.5457672 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000038","","2512"
"10:46:36.5459648 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5459844 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000025","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:36.5459942 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000038","","2512"
"10:46:36.5462481 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.Globalization.dll","0.0000520","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5463142 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.Globalization.dll","0.0000047","CreationTime: 3/20/2019 7:38:44 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:44 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:36.5463308 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.Globalization.dll","0.0000069","","2512"
"10:46:36.5466760 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5466978 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:36.5467080 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000056","","2512"
"10:46:36.5469038 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5469226 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:36.5469324 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000039","","2512"
"10:46:36.5471159 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47Langs.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5471338 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47Langs.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:36.5471436 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47Langs.dll","0.0000039","","2512"
"10:46:36.5474316 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5474628 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:36.5474730 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000039","","2512"
"10:46:36.5476522 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5476787 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000025","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:36.5476889 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000039","","2512"
"10:46:36.5478724 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\BCP47mrm.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5478984 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\BCP47mrm.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:36.5479082 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\BCP47mrm.dll","0.0000039","","2512"
"10:46:36.5481839 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5482129 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000025","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","2512"
"10:46:36.5482227 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000038","","2512"
"10:46:36.5484010 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5484271 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000025","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","2512"
"10:46:36.5484369 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000038","","2512"
"10:46:36.5486173 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MMDevAPI.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5486434 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MMDevAPI.dll","0.0000025","CreationTime: 4/11/2018 4:34:02 PM, LastAccessTime: 4/11/2018 4:34:02 PM, LastWriteTime: 4/11/2018 4:34:02 PM, ChangeTime: 3/20/2019 6:51:25 PM, FileAttributes: A","2512"
"10:46:36.5486536 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MMDevAPI.dll","0.0000039","","2512"
"10:46:36.5489327 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5489612 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000026","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","2512"
"10:46:36.5489715 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000038","","2512"
"10:46:36.5491554 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5491814 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000026","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","2512"
"10:46:36.5491912 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000039","","2512"
"10:46:36.5493879 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\propsys.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5494135 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\propsys.dll","0.0000030","CreationTime: 4/25/2019 5:33:21 PM, LastAccessTime: 4/25/2019 5:33:21 PM, LastWriteTime: 2/16/2019 1:02:23 AM, ChangeTime: 4/26/2019 8:05:51 AM, FileAttributes: A","2512"
"10:46:36.5494237 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\propsys.dll","0.0000039","","2512"
"10:46:36.5496994 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5497297 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000030","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","2512"
"10:46:36.5497399 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000038","","2512"
"10:46:36.5499255 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5499520 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000025","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","2512"
"10:46:36.5499618 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000038","","2512"
"10:46:36.5501376 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\AudioSes.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5501636 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\AudioSes.dll","0.0000025","CreationTime: 4/25/2019 5:33:37 PM, LastAccessTime: 4/25/2019 5:33:37 PM, LastWriteTime: 2/16/2019 1:01:47 AM, ChangeTime: 4/25/2019 8:15:26 PM, FileAttributes: A","2512"
"10:46:36.5501734 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\AudioSes.dll","0.0000038","","2512"
"10:46:36.5504477 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5504682 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000026","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:36.5504780 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000039","","2512"
"10:46:36.5506581 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5506773 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000026","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:36.5506867 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000038","","2512"
"10:46:36.5508834 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\Windows.UI.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5509026 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\Windows.UI.dll","0.0000021","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:36.5509120 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\Windows.UI.dll","0.0000034","","2512"
"10:46:36.5511769 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5511965 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:36.5512064 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000034","","2512"
"10:46:36.5513920 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\InputHost.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5514095 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\InputHost.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:31:50 PM, FileAttributes: A","2512"
"10:46:36.5514193 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\InputHost.dll","0.0000034","","2512"
"10:46:36.5516859 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5517094 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000034","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","2512"
"10:46:36.5517235 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000055","","2512"
"10:46:36.5519351 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5519539 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000025","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","2512"
"10:46:36.5519680 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000042","","2512"
"10:46:36.5521570 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DataExchange.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5521757 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DataExchange.dll","0.0000022","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:06:40 PM, FileAttributes: A","2512"
"10:46:36.5521851 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DataExchange.dll","0.0000039","","2512"
"10:46:36.5524544 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5524761 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000022","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.5524855 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000038","","2512"
"10:46:36.5526826 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5527035 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000034","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.5527163 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000052","","2512"
"10:46:36.5529122 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.appcore.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5529301 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.appcore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:48 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.5529399 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.appcore.dll","0.0000034","","2512"
"10:46:36.5532168 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5532471 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000026","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.5532573 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000039","","2512"
"10:46:36.5534421 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5534686 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000025","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.5534784 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000038","","2512"
"10:46:36.5537190 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rmclient.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5537467 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rmclient.dll","0.0000026","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:36.5537570 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rmclient.dll","0.0000038","","2512"
"10:46:36.5541145 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5541470 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000029","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","2512"
"10:46:36.5541580 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000043","","2512"
"10:46:36.5543513 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5543786 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","2512"
"10:46:36.5543889 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000038","","2512"
"10:46:36.5545719 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\twinapi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5545984 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\twinapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:39 PM, LastAccessTime: 4/11/2018 4:34:39 PM, LastWriteTime: 4/11/2018 4:34:39 PM, ChangeTime: 3/20/2019 7:07:39 PM, FileAttributes: A","2512"
"10:46:36.5546086 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\twinapi.dll","0.0000034","","2512"
"10:46:36.5549068 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5549282 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:36.5549380 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000043","","2512"
"10:46:36.5551142 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5551330 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:36.5551428 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000038","","2512"
"10:46:36.5553113 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5553297 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:36.5553395 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000034","","2512"
"10:46:36.5556083 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5556279 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","2512"
"10:46:36.5556373 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000038","","2512"
"10:46:36.5558169 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5558353 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000021","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","2512"
"10:46:36.5558442 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000039","","2512"
"10:46:36.5560119 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5560298 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000022","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","2512"
"10:46:36.5560392 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000034","","2512"
"10:46:36.5563294 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imagehlp.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5563592 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imagehlp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:36.5563695 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imagehlp.dll","0.0000038","","2512"
"10:46:36.5565640 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imagehlp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5565909 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imagehlp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:36.5566007 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imagehlp.dll","0.0000039","","2512"
"10:46:36.5567774 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imagehlp.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5568030 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imagehlp.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:36.5568132 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imagehlp.dll","0.0000034","","2512"
"10:46:36.5570935 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rsaenh.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5571212 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rsaenh.dll","0.0000030","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.5571315 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rsaenh.dll","0.0000043","","2512"
"10:46:36.5573145 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rsaenh.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5573401 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rsaenh.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.5573499 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rsaenh.dll","0.0000039","","2512"
"10:46:36.5575240 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rsaenh.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5575496 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rsaenh.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:36.5575599 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rsaenh.dll","0.0000034","","2512"
"10:46:36.5578551 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5578769 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.5578867 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000038","","2512"
"10:46:36.5580744 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5580940 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.5581039 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000038","","2512"
"10:46:36.5582809 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5583001 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.5583099 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000035","","2512"
"10:46:36.5586009 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5586317 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000042","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","2512"
"10:46:36.5586440 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000047","","2512"
"10:46:36.5588463 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5588800 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000025","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","2512"
"10:46:36.5588898 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000038","","2512"
"10:46:36.5590741 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5591006 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000025","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","2512"
"10:46:36.5591108 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000038","","2512"
"10:46:36.5593869 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sspicli.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5594150 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.5594248 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sspicli.dll","0.0000039","","2512"
"10:46:36.5596087 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sspicli.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5596352 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000025","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.5596450 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sspicli.dll","0.0000038","","2512"
"10:46:36.5598289 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sspicli.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5598549 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:36.5598647 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sspicli.dll","0.0000039","","2512"
"10:46:36.5603370 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5603661 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000034","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:36.5603793 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000055","","2512"
"10:46:36.5605960 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5606182 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000026","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:36.5606289 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000042","","2512"
"10:46:36.5607223 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000060","AllocationSize: 81,920, EndOfFile: 81,920, NumberOfLinks: 1, DeletePending: False, Directory: False","8244"
"10:46:36.5607530 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000064","Offset: 56, Length: 4,096","8244"
"10:46:36.5607910 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000418","Offset: 0, Length: 4,096, Priority: Normal","8244"
"10:46:36.5608281 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5608478 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000038","Offset: 4,176, Length: 4,096","8244"
"10:46:36.5608610 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000038","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:36.5608699 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000043","Offset: 4,096, Length: 4,096","8244"
"10:46:36.5608781 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000059","","2512"
"10:46:36.5608845 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000025","Offset: 8,296, Length: 4,096","8244"
"10:46:36.5608968 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000026","Offset: 20,480, Length: 4,096","8244"
"10:46:36.5609083 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000022","Offset: 12,416, Length: 4,096","8244"
"10:46:36.5609229 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000029","Offset: 45,056, Length: 4,096","8244"
"10:46:36.5609348 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000017","Offset: 16,536, Length: 4,096","8244"
"10:46:36.5609455 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000025","Offset: 49,152, Length: 4,096","8244"
"10:46:36.5609566 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000021","Offset: 20,656, Length: 4,096","8244"
"10:46:36.5609698 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000025","Offset: 53,248, Length: 4,096","8244"
"10:46:36.5609809 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000021","Offset: 24,776, Length: 4,096","8244"
"10:46:36.5609915 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000026","Offset: 57,344, Length: 4,096","8244"
"10:46:36.5610026 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000022","Offset: 28,896, Length: 4,096","8244"
"10:46:36.5610129 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000025","Offset: 61,440, Length: 4,096","8244"
"10:46:36.5610240 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000021","Offset: 33,016, Length: 4,096","8244"
"10:46:36.5610346 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000026","Offset: 65,536, Length: 4,096","8244"
"10:46:36.5610457 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000022","Offset: 37,136, Length: 4,096","8244"
"10:46:36.5610581 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000026","Offset: 69,632, Length: 4,096","8244"
"10:46:36.5610722 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000021","Offset: 41,256, Length: 4,096","8244"
"10:46:36.5610833 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000025","Offset: 73,728, Length: 4,096","8244"
"10:46:36.5610961 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0000051","Offset: 45,376, Length: 4,096","8244"
"10:46:36.5611102 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000029","Offset: 77,824, Length: 4,096","8244"
"10:46:36.5611285 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000461","EndOfFile: 81,920","8244"
"10:46:36.5611929 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0000248","AllocationSize: 81,920","8244"
"10:46:36.5611985 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000529","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5612352 AM","firefox.exe","7384","FlushBuffersFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.6407462","","8244"
"10:46:36.5612877 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000051","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","2512"
"10:46:36.5612898 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.0030468","Offset: 0, Length: 8,192, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8244"
"10:46:36.5613051 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000073","","2512"
"10:46:36.5616388 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5616776 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000034","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","2512"
"10:46:36.5616909 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000051","","2512"
"10:46:36.5618982 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5619281 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000030","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","2512"
"10:46:36.5619396 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000043","","2512"
"10:46:36.5622391 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5622698 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000030","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/27/2019 7:17:12 PM, FileAttributes: A","2512"
"10:46:36.5622809 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000047","","2512"
"10:46:36.5624763 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5625041 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000025","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/27/2019 7:17:12 PM, FileAttributes: A","2512"
"10:46:36.5625139 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000043","","2512"
"10:46:36.5627012 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5627285 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000026","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/27/2019 7:17:12 PM, FileAttributes: A","2512"
"10:46:36.5627387 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000039","","2512"
"10:46:36.5630259 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5630562 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000030","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:36 PM, FileAttributes: A","2512"
"10:46:36.5630664 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000043","","2512"
"10:46:36.5632618 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5632887 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000030","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:36 PM, FileAttributes: A","2512"
"10:46:36.5632990 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000038","","2512"
"10:46:36.5634811 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5635072 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:36 PM, FileAttributes: A","2512"
"10:46:36.5635174 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000039","","2512"
"10:46:36.5639172 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5639505 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000034","CreationTime: 4/11/2018 4:34:35 PM, LastAccessTime: 4/11/2018 4:34:35 PM, LastWriteTime: 4/11/2018 4:34:35 PM, ChangeTime: 3/20/2019 7:07:22 PM, FileAttributes: A","2512"
"10:46:36.5639667 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000090","","2512"
"10:46:36.5642257 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5642483 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000030","CreationTime: 4/11/2018 4:34:35 PM, LastAccessTime: 4/11/2018 4:34:35 PM, LastWriteTime: 4/11/2018 4:34:35 PM, ChangeTime: 3/20/2019 7:07:22 PM, FileAttributes: A","2512"
"10:46:36.5642598 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000043","","2512"
"10:46:36.5644126 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.2967598","Offset: 20,480, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8244"
"10:46:36.5644608 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5644817 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000025","CreationTime: 4/11/2018 4:34:35 PM, LastAccessTime: 4/11/2018 4:34:35 PM, LastWriteTime: 4/11/2018 4:34:35 PM, ChangeTime: 3/20/2019 7:07:22 PM, FileAttributes: A","2512"
"10:46:36.5644919 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000043","","2512"
"10:46:36.5647944 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000295","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5648328 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000026","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:46:36 PM, FileAttributes: A","2512"
"10:46:36.5648426 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000043","","2512"
"10:46:36.5650359 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5650547 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000026","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:46:36 PM, FileAttributes: A","2512"
"10:46:36.5650649 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000039","","2512"
"10:46:36.5652522 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5652710 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000026","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:46:36 PM, FileAttributes: A","2512"
"10:46:36.5652808 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000039","","2512"
"10:46:36.5655774 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MrmCoreR.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5656098 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MrmCoreR.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","2512"
"10:46:36.5656200 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MrmCoreR.dll","0.0000043","","2512"
"10:46:36.5658201 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MrmCoreR.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5658479 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MrmCoreR.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","2512"
"10:46:36.5658585 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MrmCoreR.dll","0.0000039","","2512"
"10:46:36.5660446 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\MrmCoreR.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5660714 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\MrmCoreR.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:18:07 PM, FileAttributes: A","2512"
"10:46:36.5660817 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\MrmCoreR.dll","0.0000043","","2512"
"10:46:36.5664708 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5664960 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:36.5665071 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000038","","2512"
"10:46:36.5666065 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5666317 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000123","Filter: softokn3.dll, 1: softokn3.dll","2512"
"10:46:36.5666577 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000068","","2512"
"10:46:36.5668284 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5668480 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:36.5668578 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000038","","2512"
"10:46:36.5669500 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5669717 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000098","Filter: softokn3.dll, 1: softokn3.dll","2512"
"10:46:36.5669926 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000039","","2512"
"10:46:36.5671108 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5671385 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000030","AllocationSize: 249,856, EndOfFile: 247,496, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.5671556 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.5671676 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000021","AllocationSize: 249,856, EndOfFile: 247,496, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.5671876 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.5672388 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000056","","2512"
"10:46:36.5673822 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.5674108 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000029","AllocationSize: 249,856, EndOfFile: 247,496, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.5674257 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.5674368 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000021","AllocationSize: 249,856, EndOfFile: 247,496, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.5674560 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.5675033 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0380677","Offset: 217,088, Length: 30,408, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:36.6056564 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000068","AllocationSize: 249,856, EndOfFile: 247,496, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.6056828 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000124","","2512"
"10:46:36.6058974 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000175","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6059358 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000030","AllocationSize: 249,856, EndOfFile: 247,496, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.6059537 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.6059674 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000017","AllocationSize: 249,856, EndOfFile: 247,496, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.6059883 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.6064692 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000085","","2512"
"10:46:36.6068813 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6069086 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000039","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:36.6069227 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000047","","2512"
"10:46:36.6071160 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6071365 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000029","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:36.6071480 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000038","","2512"
"10:46:36.6073677 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6073873 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:36.6073972 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000042","","2512"
"10:46:36.6074978 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6075222 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000119","Filter: softokn3.dll, 1: softokn3.dll","2512"
"10:46:36.6075469 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000043","","2512"
"10:46:36.6077270 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6077462 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:36.6077564 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000034","","2512"
"10:46:36.6078682 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6078908 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000102","Filter: softokn3.dll, 1: softokn3.dll","2512"
"10:46:36.6079126 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000038","","2512"
"10:46:36.6081280 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6081489 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","2512"
"10:46:36.6081596 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000038","","2512"
"10:46:36.6082535 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6082752 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000098","Filter: freebl3.dll, 1: freebl3.dll","2512"
"10:46:36.6082961 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000035","","2512"
"10:46:36.6084600 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6084783 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","2512"
"10:46:36.6084881 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000039","","2512"
"10:46:36.6085799 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6086008 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000089","Filter: freebl3.dll, 1: freebl3.dll","2512"
"10:46:36.6086208 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000034","","2512"
"10:46:36.6087271 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6087531 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000030","AllocationSize: 585,728, EndOfFile: 583,368, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.6087697 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.6087817 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000017","AllocationSize: 585,728, EndOfFile: 583,368, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.6088030 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.6088666 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000051","","2512"
"10:46:36.6089839 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6090117 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000021","AllocationSize: 585,728, EndOfFile: 583,368, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.6090253 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.6090368 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000017","AllocationSize: 585,728, EndOfFile: 583,368, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.6090556 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.6091089 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000022","AllocationSize: 585,728, EndOfFile: 583,368, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.6091213 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000051","","2512"
"10:46:36.6092361 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6092613 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000021","AllocationSize: 585,728, EndOfFile: 583,368, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.6092736 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.6092839 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000017","AllocationSize: 585,728, EndOfFile: 583,368, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.6093022 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.6095096 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0157094","Offset: 565,248, Length: 18,120, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:36.6230076 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0012664","Offset: 19,922,944, Length: 172,032, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:36.6253487 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000146","","2512"
"10:46:36.6257946 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6258232 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000043","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","2512"
"10:46:36.6258369 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000046","","2512"
"10:46:36.6260271 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6260476 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","2512"
"10:46:36.6260583 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000038","","2512"
"10:46:36.6261714 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0014728","Offset: 20,094,976, Length: 344,064, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:36.6262746 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6262938 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000030","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","2512"
"10:46:36.6263049 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000039","","2512"
"10:46:36.6264112 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6264376 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000128","Filter: freebl3.dll, 1: freebl3.dll","2512"
"10:46:36.6264683 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000043","","2512"
"10:46:36.6266573 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6266765 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000030","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","2512"
"10:46:36.6266868 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000042","","2512"
"10:46:36.6268276 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000179","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6268604 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000128","Filter: freebl3.dll, 1: freebl3.dll","2512"
"10:46:36.6268860 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000039","","2512"
"10:46:36.6272090 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000478","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6272739 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000051","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.6272918 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000081","","2512"
"10:46:36.6273434 AM","firefox.exe","7384","CreateFile","C:\","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6273673 AM","firefox.exe","7384","QueryDirectory","C:\PROGRA~1","0.0000162","Filter: PROGRA~1, 1: Program Files","2512"
"10:46:36.6274074 AM","firefox.exe","7384","CloseFile","C:\","0.0000107","","2512"
"10:46:36.6275371 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6275610 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\FIREFO~1","0.0000115","Filter: FIREFO~1, 1: Firefox Nightly","2512"
"10:46:36.6275841 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000038","","2512"
"10:46:36.6276933 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6277176 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000111","Filter: nssckbi.dll, 1: nssckbi.dll","2512"
"10:46:36.6277394 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000038","","2512"
"10:46:36.6279169 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6279390 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.6279493 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000047","","2512"
"10:46:36.6279826 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6280013 AM","firefox.exe","7384","QueryDirectory","C:\PROGRA~1","0.0000107","Filter: PROGRA~1, 1: Program Files","2512"
"10:46:36.6280218 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.6281208 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6281417 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\FIREFO~1","0.0000115","Filter: FIREFO~1, 1: Firefox Nightly","2512"
"10:46:36.6281652 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000034","","2512"
"10:46:36.6282603 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6282821 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000094","Filter: nssckbi.dll, 1: nssckbi.dll","2512"
"10:46:36.6283013 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000034","","2512"
"10:46:36.6284331 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6284621 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000035","AllocationSize: 425,984, EndOfFile: 423,624, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.6284796 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.6284929 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000021","AllocationSize: 425,984, EndOfFile: 423,624, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.6285129 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.6285671 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000055","","2512"
"10:46:36.6286908 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000116","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6287198 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000026","AllocationSize: 425,984, EndOfFile: 423,624, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.6287339 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.6287454 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000018","AllocationSize: 425,984, EndOfFile: 423,624, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.6287634 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.6288286 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000022","AllocationSize: 425,984, EndOfFile: 423,624, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.6288419 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000051","","2512"
"10:46:36.6289805 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6290138 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000026","AllocationSize: 425,984, EndOfFile: 423,624, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.6290270 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.6290377 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000017","AllocationSize: 425,984, EndOfFile: 423,624, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:36.6290561 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:36.6292954 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0162851","Offset: 393,216, Length: 30,408, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:36.6308801 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0344973","Offset: 20,439,040, Length: 532,480, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:36.6458104 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000162","","2512"
"10:46:36.6462815 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6463143 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000043","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.6463297 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000055","","2512"
"10:46:36.6465038 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000153","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6465434 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000035","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.6465754 AM","firefox.exe","7384","CreateFileMapping","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.6466151 AM","firefox.exe","7384","QueryNameInformationFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0000051","Name: \PROGRA~1\FIREFO~1\nssckbi.dll","2512"
"10:46:36.6466591 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000064","","2512"
"10:46:36.6468724 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6468942 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000029","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.6469053 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000038","","2512"
"10:46:36.6470081 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000106","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6470345 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.6470542 AM","firefox.exe","7384","CreateFileMapping","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.6470887 AM","firefox.exe","7384","QueryNameInformationFile","C:\PROGRA~1\FIREFO~1\nssckbi.dll","0.0000039","Name: \PROGRA~1\FIREFO~1\nssckbi.dll","2512"
"10:46:36.6471199 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000051","","2512"
"10:46:36.6473336 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6473537 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.6473639 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000043","","2512"
"10:46:36.6474659 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6474902 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000128","Filter: nssckbi.dll, 1: nssckbi.dll","2512"
"10:46:36.6475154 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000038","","2512"
"10:46:36.6477377 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6477594 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:36.6477693 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000055","","2512"
"10:46:36.6478060 AM","firefox.exe","7384","CreateFile","C:\","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6478269 AM","firefox.exe","7384","QueryDirectory","C:\PROGRA~1","0.0000123","Filter: PROGRA~1, 1: Program Files","2512"
"10:46:36.6478529 AM","firefox.exe","7384","CloseFile","C:\","0.0000055","","2512"
"10:46:36.6479911 AM","firefox.exe","7384","CreateFile","C:\Program Files","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6480223 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\FIREFO~1","0.0000136","Filter: FIREFO~1, 1: Firefox Nightly","2512"
"10:46:36.6480521 AM","firefox.exe","7384","CloseFile","C:\Program Files","0.0000056","","2512"
"10:46:36.6481968 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000119","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6482202 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\nssckbi.dll","0.0000111","Filter: nssckbi.dll, 1: nssckbi.dll","2512"
"10:46:36.6482424 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000039","","2512"
"10:46:36.6484596 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6484942 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000030","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","2512"
"10:46:36.6485057 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000043","","2512"
"10:46:36.6485415 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6485688 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000103","Filter: Windows, 1: Windows","2512"
"10:46:36.6485902 AM","firefox.exe","7384","CloseFile","C:\","0.0000042","","2512"
"10:46:36.6486913 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6487135 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:36.6487348 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.6488282 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000099","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6488492 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wininet.dll","0.0000157","Filter: wininet.dll, 1: wininet.dll","2512"
"10:46:36.6488756 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:36.6490493 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6490787 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000026","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","2512"
"10:46:36.6490889 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000043","","2512"
"10:46:36.6491222 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6491401 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:36.6491593 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:36.6492536 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6492741 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:36.6492942 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:36.6493855 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6494060 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wininet.dll","0.0000115","Filter: wininet.dll, 1: wininet.dll","2512"
"10:46:36.6494281 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000035","","2512"
"10:46:36.6495408 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6495817 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wininet.dll","0.0000030","AllocationSize: 4,939,776, EndOfFile: 4,937,728, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.6495988 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wininet.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.6496116 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wininet.dll","0.0000021","AllocationSize: 4,939,776, EndOfFile: 4,937,728, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.6496321 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wininet.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.6497272 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000056","","2512"
"10:46:36.6498889 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6499303 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wininet.dll","0.0000030","AllocationSize: 4,939,776, EndOfFile: 4,937,728, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.6499457 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wininet.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.6499572 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wininet.dll","0.0000017","AllocationSize: 4,939,776, EndOfFile: 4,937,728, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.6499764 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wininet.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.6500588 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000055","","2512"
"10:46:36.6502670 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6502909 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000025","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:36.6503020 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000038","","2512"
"10:46:36.6504726 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6504940 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000025","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:36.6505042 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000030","","2512"
"10:46:36.6506156 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000123","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.6506527 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wininet.dll","0.0000025","AllocationSize: 4,939,776, EndOfFile: 4,937,728, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.6506676 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wininet.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.6506791 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wininet.dll","0.0000017","AllocationSize: 4,939,776, EndOfFile: 4,937,728, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.6506979 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wininet.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.6508148 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wininet.dll","0.0000021","AllocationSize: 4,939,776, EndOfFile: 4,937,728, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.6508272 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wininet.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.6508374 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wininet.dll","0.0000017","AllocationSize: 4,939,776, EndOfFile: 4,937,728, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:36.6508545 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wininet.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.6509684 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\wininet.dll","0.0284988","Offset: 0, Length: 524,288, Priority: Normal","2512"
"10:46:36.6510661 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\wininet.dll","0.0282292","Offset: 32,768, Length: 491,520, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2512"
"10:46:36.6701480 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0373389","Offset: 20,971,520, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:36.7383460 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0726636","Offset: 22,020,096, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:36.7511025 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\wininet.dll","0.0389637","Offset: 1,572,864, Length: 524,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:36.7958070 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\wininet.dll","0.0351599","Offset: 2,097,152, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:36.8289100 AM","firefox.exe","7384","ReadFile","C:\Program Files\Firefox Nightly\omni.ja","0.0153113","Offset: 23,068,672, Length: 16,384, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","5316"
"10:46:36.8534753 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000090","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:36.8535061 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000046","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:36.8535304 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 1,073,741,824, Length: 1","5316"
"10:46:36.8540385 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000286","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8541072 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000094","Offset: 24, Length: 16","5316"
"10:46:36.8544588 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8545168 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:36.8545561 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","Offset: 1,073,741,826, Length: 510","5316"
"10:46:36.8546525 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000128","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:36.8546785 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:36.8546965 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5316"
"10:46:36.8550886 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000251","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8551496 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000085","Offset: 24, Length: 16","5316"
"10:46:36.8555336 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8555882 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:36.8556253 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 1,073,741,826, Length: 510","5316"
"10:46:36.8559240 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:36.8559500 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:36.8559696 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,824, Length: 1","5316"
"10:46:36.8563553 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000278","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8564522 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000141","Offset: 24, Length: 16","5316"
"10:46:36.8573252 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000238","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8573828 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:36.8574212 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 1,073,741,826, Length: 510","5316"
"10:46:36.8575986 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000035","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:36.8576170 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:36.8576336 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,824, Length: 1","5316"
"10:46:36.8577493 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\wininet.dll","0.0134690","Offset: 3,145,728, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:36.8580274 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8580774 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Offset: 24, Length: 16","5316"
"10:46:36.8584400 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8585010 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000060","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:36.8585394 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 1,073,741,826, Length: 510","5316"
"10:46:36.8612347 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000081","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:36.8612556 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:36.8612697 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5316"
"10:46:36.8612927 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite","0.2955324","Offset: 45,056, Length: 36,864, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","8244"
"10:46:36.8615777 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8616221 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 24, Length: 16","5316"
"10:46:36.8618175 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8618504 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:36.8618760 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Offset: 1,073,741,826, Length: 510","5316"
"10:46:36.8619967 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:36.8620083 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:36.8620176 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5316"
"10:46:36.8623475 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000337","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8624183 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000094","Offset: 24, Length: 16","5316"
"10:46:36.8626295 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8626636 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:36.8626871 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5316"
"10:46:36.8628014 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:36.8628121 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:36.8628215 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5316"
"10:46:36.8630412 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8630988 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000154","Offset: 24, Length: 16","5316"
"10:46:36.8633830 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8634158 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:36.8634380 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5316"
"10:46:36.8635558 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:36.8635673 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:36.8635771 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5316"
"10:46:36.8637759 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8638096 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5316"
"10:46:36.8640208 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8640511 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:36.8640716 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5316"
"10:46:36.8641744 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:36.8641860 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:36.8641958 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5316"
"10:46:36.8644010 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8644330 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5316"
"10:46:36.8646139 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8646429 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:36.8646630 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5316"
"10:46:36.8647854 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:36.8647965 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:36.8648059 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5316"
"10:46:36.8649962 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8650265 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5316"
"10:46:36.8652065 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8652351 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:36.8652548 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5316"
"10:46:36.8653550 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:36.8653665 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:36.8653764 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5316"
"10:46:36.8655679 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8656004 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5316"
"10:46:36.8658026 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8658329 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:36.8658525 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,826, Length: 510","5316"
"10:46:36.8659455 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:36.8659566 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:36.8659669 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5316"
"10:46:36.8661708 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8662032 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5316"
"10:46:36.8663944 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8664264 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:36.8664456 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5316"
"10:46:36.8665314 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:36.8665429 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:36.8665527 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5316"
"10:46:36.8667647 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8667972 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 24, Length: 16","5316"
"10:46:36.8669785 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8670084 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:36.8670284 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Offset: 1,073,741,826, Length: 510","5316"
"10:46:36.8671223 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:36.8671334 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:36.8671436 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000009","Offset: 1,073,741,824, Length: 1","5316"
"10:46:36.8673326 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8673659 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5316"
"10:46:36.8675472 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8675950 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:36.8676151 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5316"
"10:46:36.8677055 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:36.8677171 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:36.8677273 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5316"
"10:46:36.8679364 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8679743 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000052","Offset: 24, Length: 16","5316"
"10:46:36.8681868 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8682184 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:36.8682393 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","5316"
"10:46:36.8683754 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:36.8683933 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000022","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:36.8684104 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5316"
"10:46:36.8686877 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8687231 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000056","Offset: 24, Length: 16","5316"
"10:46:36.8689156 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8689463 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000038","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:36.8689685 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5316"
"10:46:36.8690747 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:36.8690858 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:36.8690960 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5316"
"10:46:36.8692893 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8693213 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 24, Length: 16","5316"
"10:46:36.8695287 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:36.8695594 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:36.8695803 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5316"
"10:46:36.8884919 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:36.8885256 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41187, endtime: 41187, seqnum: 0, connid: 0","0"
"10:46:36.8886139 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:36.8886302 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41187, endtime: 41187, seqnum: 0, connid: 0","0"
"10:46:36.8898500 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:36.8898867 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41187, endtime: 41187, seqnum: 0, connid: 0","0"
"10:46:36.8899699 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:36.8899955 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41187, endtime: 41187, seqnum: 0, connid: 0","0"
"10:46:36.8912499 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000132","Name: \Windows\System32\sechost.dll","2956"
"10:46:36.8921630 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000111","Name: \Windows\System32\sechost.dll","2956"
"10:46:36.8928435 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:36.8928751 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41187, endtime: 41187, seqnum: 0, connid: 0","0"
"10:46:36.8929275 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:36.8929472 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41187, endtime: 41187, seqnum: 0, connid: 0","0"
"10:46:36.8929787 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:36.8929907 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41187, endtime: 41187, seqnum: 0, connid: 0","0"
"10:46:36.8930265 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:36.8930355 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41187, endtime: 41187, seqnum: 0, connid: 0","0"
"10:46:36.8930829 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:36.8930935 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41187, endtime: 41187, seqnum: 0, connid: 0","0"
"10:46:36.8931643 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000167","Name: \Windows\System32\sechost.dll","2956"
"10:46:36.8932616 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:36.8932868 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41187, endtime: 41187, seqnum: 0, connid: 0","0"
"10:46:36.8933542 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:36.8933679 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41187, endtime: 41187, seqnum: 0, connid: 0","0"
"10:46:36.8935543 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:36.8935701 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41187, endtime: 41187, seqnum: 0, connid: 0","0"
"10:46:36.8936222 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:36.8936414 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41187, endtime: 41187, seqnum: 0, connid: 0","0"
"10:46:36.8946777 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000141","Name: \Windows\System32\sechost.dll","2956"
"10:46:36.8959219 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:36.8959560 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 41187, endtime: 41187, seqnum: 0, connid: 0","0"
"10:46:36.8960520 AM","firefox.exe","7384","TCP Receive","LAPTOP-49TAGD3F:49743 -> LAPTOP-49TAGD3F:49744","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:36.8960742 AM","firefox.exe","7384","TCP Send","LAPTOP-49TAGD3F:49744 -> LAPTOP-49TAGD3F:49743","0.0000000","Length: 1, startime: 41187, endtime: 41187, seqnum: 0, connid: 0","0"
"10:46:36.8963528 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000098","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:36.8963921 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:36.8964266 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000069","Offset: 1,073,741,824, Length: 1","5728"
"10:46:36.8968746 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000273","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:36.8969438 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000093","Offset: 24, Length: 16","5728"
"10:46:36.8972906 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:36.8973482 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:36.8973926 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 1,073,741,826, Length: 510","5728"
"10:46:36.8975846 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:36.8976077 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000025","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:36.8976281 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000017","Offset: 1,073,741,824, Length: 1","5728"
"10:46:36.8979486 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000213","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:36.8980002 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000072","Offset: 24, Length: 16","5728"
"10:46:36.8983620 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:36.8984175 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000059","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:36.8984589 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000042","Offset: 1,073,741,826, Length: 510","5728"
"10:46:36.8987848 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\wininet.dll","0.0105690","Offset: 4,194,304, Length: 743,424, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:36.8994223 AM","firefox.exe","7336","TCP Receive","LAPTOP-49TAGD3F:49747 -> LAPTOP-49TAGD3F:49748","0.0000000","Length: 1, seqnum: 0, connid: 0","0"
"10:46:36.8994620 AM","firefox.exe","7336","TCP Send","LAPTOP-49TAGD3F:49748 -> LAPTOP-49TAGD3F:49747","0.0000000","Length: 1, startime: 41188, endtime: 41188, seqnum: 0, connid: 0","0"
"10:46:36.9004194 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\97CFA549897ECA75A30A13A2EA3204AB0C02DCA2","0.0000555","Desired Access: Generic Read/Write, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:36.9005666 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\97CFA549897ECA75A30A13A2EA3204AB0C02DCA2","0.0001007","Offset: 19,179, Length: 9,088, Priority: Normal","6572"
"10:46:36.9007262 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\97CFA549897ECA75A30A13A2EA3204AB0C02DCA2","0.0000738","EndOfFile: 28,267","6572"
"10:46:36.9008217 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\97CFA549897ECA75A30A13A2EA3204AB0C02DCA2","0.0000256","AllocationSize: 28,267","6572"
"10:46:36.9008759 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\97CFA549897ECA75A30A13A2EA3204AB0C02DCA2","0.0000316","","6572"
"10:46:36.9223471 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000282","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9224060 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000230","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:36.9226581 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000308","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.9228083 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000150","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9228420 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000034","Information: DACL","2512"
"10:46:36.9228587 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000047","","2512"
"10:46:36.9230033 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000175","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.9231113 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000119","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9231369 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:36.9231492 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000039","","2512"
"10:46:36.9235064 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000247","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:36.9236787 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000188","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.9237995 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000179","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9238315 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000021","Information: DACL","2512"
"10:46:36.9238439 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000042","","2512"
"10:46:36.9239527 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000140","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.9240504 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000119","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9240743 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:36.9240853 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000039","","2512"
"10:46:36.9245491 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9245769 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000038","CreationTime: 4/25/2019 5:41:27 PM, LastAccessTime: 4/25/2019 5:41:27 PM, LastWriteTime: 4/3/2019 9:56:07 AM, ChangeTime: 4/25/2019 8:12:25 PM, AllocationSize: 110592, EndOfFile: 106993, FileAttributes: A","2512"
"10:46:36.9245909 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000052","","2512"
"10:46:36.9246409 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000047","","2512"
"10:46:36.9246567 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:36.9248469 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9248700 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","CreationTime: 4/25/2019 5:41:27 PM, LastAccessTime: 4/25/2019 5:41:27 PM, LastWriteTime: 4/3/2019 9:56:07 AM, ChangeTime: 4/25/2019 8:12:25 PM, AllocationSize: 110592, EndOfFile: 106993, FileAttributes: A","2512"
"10:46:36.9248815 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000043","","2512"
"10:46:36.9250087 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9250372 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","AllocationSize: 110,592, EndOfFile: 106,993, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.9250543 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.9250675 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","AllocationSize: 110,592, EndOfFile: 106,993, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.9250867 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.9251733 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000035","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:36.9251883 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000060","CreationTime: 4/25/2019 5:41:27 PM, LastAccessTime: 4/25/2019 5:41:27 PM, LastWriteTime: 4/3/2019 9:56:07 AM, ChangeTime: 4/25/2019 8:12:25 PM, FileAttributes: A, AllocationSize: 110,592, EndOfFile: 106,993, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x1d00000001874a, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:36.9253176 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9253474 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","AllocationSize: 110,592, EndOfFile: 106,993, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.9253628 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.9253735 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","AllocationSize: 110,592, EndOfFile: 106,993, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.9253918 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.9254771 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000060","","2512"
"10:46:36.9256312 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000140","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9256615 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000029","AllocationSize: 110,592, EndOfFile: 106,993, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.9256764 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.9256871 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","AllocationSize: 110,592, EndOfFile: 106,993, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.9257054 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.9257476 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000060","","2512"
"10:46:36.9259354 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000136","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9259716 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","AllocationSize: 110,592, EndOfFile: 106,993, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.9259866 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.9259972 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000022","AllocationSize: 110,592, EndOfFile: 106,993, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.9260156 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.9261223 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000055","","2512"
"10:46:36.9291874 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000222","","2512"
"10:46:36.9292676 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1879_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000090","","2512"
"10:46:36.9298884 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000274","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9299512 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000055","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","2512"
"10:46:36.9300113 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000141","","2512"
"10:46:36.9303386 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9303783 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000034","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","2512"
"10:46:36.9303919 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000051","","2512"
"10:46:36.9306202 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wininet.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9306513 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wininet.dll","0.0000034","CreationTime: 4/25/2019 5:35:15 PM, LastAccessTime: 4/25/2019 5:35:15 PM, LastWriteTime: 3/6/2019 1:28:14 AM, ChangeTime: 4/25/2019 8:19:40 PM, FileAttributes: A","2512"
"10:46:36.9306633 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wininet.dll","0.0000038","","2512"
"10:46:36.9307008 AM","firefox.exe","7384","CreateFile","C:\","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9307239 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000128","Filter: Windows, 1: Windows","2512"
"10:46:36.9307495 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.9308459 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9308685 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:36.9308903 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.9309867 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9310080 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wininet.dll","0.0000120","Filter: wininet.dll, 1: wininet.dll","2512"
"10:46:36.9310306 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:36.9312299 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\WININET.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2512"
"10:46:36.9314744 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9314983 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000029","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:36.9315098 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000047","","2512"
"10:46:36.9315460 AM","firefox.exe","7384","CreateFile","C:\","0.0000082","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9315652 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000103","Filter: Windows, 1: Windows","2512"
"10:46:36.9315866 AM","firefox.exe","7384","CloseFile","C:\","0.0000042","","2512"
"10:46:36.9316792 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9317009 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000103","Filter: System32, 1: System32","2512"
"10:46:36.9317214 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.9318968 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9319177 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000025","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:36.9319279 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000039","","2512"
"10:46:36.9319608 AM","firefox.exe","7384","CreateFile","C:\","0.0000076","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9319787 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000089","Filter: Windows, 1: Windows","2512"
"10:46:36.9319979 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:36.9320879 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9321084 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:36.9321276 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:36.9322513 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9322803 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000030","AllocationSize: 69,632, EndOfFile: 67,584, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.9322978 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.9323111 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000017","AllocationSize: 69,632, EndOfFile: 67,584, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.9323315 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.9323862 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000055","","2512"
"10:46:36.9325201 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9325500 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000030","AllocationSize: 69,632, EndOfFile: 67,584, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.9325649 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.9325760 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000022","AllocationSize: 69,632, EndOfFile: 67,584, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.9325952 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.9326387 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000052","","2512"
"10:46:36.9328371 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9328606 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000030","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:36.9328717 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:36.9330586 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9330803 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:36.9330906 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:36.9331981 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9332254 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000030","AllocationSize: 69,632, EndOfFile: 67,584, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.9332403 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.9332519 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000021","AllocationSize: 69,632, EndOfFile: 67,584, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.9332702 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.9333491 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000026","AllocationSize: 69,632, EndOfFile: 67,584, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.9333624 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.9333722 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000017","AllocationSize: 69,632, EndOfFile: 67,584, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.9333897 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:36.9334409 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0198571","Offset: 0, Length: 67,584, Priority: Normal","2512"
"10:46:36.9334891 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0197624","Offset: 32,768, Length: 34,816, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2512"
"10:46:36.9540387 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000187","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9540796 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000158","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:36.9542328 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000218","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.9543510 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000124","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9543796 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000051","Information: DACL","2512"
"10:46:36.9544043 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000068","","2512"
"10:46:36.9545426 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.9546454 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000119","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9546710 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:36.9546834 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:36.9549274 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000149","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:36.9550657 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.9553938 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000119","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9554194 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000025","Information: DACL","2512"
"10:46:36.9554322 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000042","","2512"
"10:46:36.9555499 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:36.9556498 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000106","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9556719 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000022","Information: DACL","2512"
"10:46:36.9556835 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:36.9561622 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9561997 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:15:26 PM, ChangeTime: 3/20/2019 7:07:49 PM, AllocationSize: 479232, EndOfFile: 476542, FileAttributes: A","2512"
"10:46:36.9562151 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0010~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000060","","2512"
"10:46:36.9564404 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9564660 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:29:46 PM, ChangeTime: 3/20/2019 7:10:41 PM, AllocationSize: 462848, EndOfFile: 460400, FileAttributes: A","2512"
"10:46:36.9564788 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","","2512"
"10:46:36.9565701 AM","firefox.exe","7384","ReadFile","C:","0.0003703","Offset: 749,568, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:36.9571410 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0088593","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9660327 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000060","CreationTime: 3/20/2019 7:27:26 PM, LastAccessTime: 3/20/2019 7:42:46 PM, LastWriteTime: 1/10/2019 4:08:43 AM, ChangeTime: 3/20/2019 7:42:30 PM, AllocationSize: 188416, EndOfFile: 186630, FileAttributes: A","2512"
"10:46:36.9660532 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000094","","2512"
"10:46:36.9662102 AM","firefox.exe","7384","ReadFile","C:","0.0004015","Offset: 1,048,576, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:36.9668058 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1390_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0007130","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9675516 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1390_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000064","CreationTime: 4/25/2019 5:40:13 PM, LastAccessTime: 4/25/2019 5:40:13 PM, LastWriteTime: 4/3/2019 9:55:09 AM, ChangeTime: 4/25/2019 8:12:14 PM, AllocationSize: 188416, EndOfFile: 186824, FileAttributes: A","2512"
"10:46:36.9675909 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1390_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000124","","2512"
"10:46:36.9676528 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000072","","2512"
"10:46:36.9676762 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000060","","2512"
"10:46:36.9679429 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9679732 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","CreationTime: 3/20/2019 7:27:26 PM, LastAccessTime: 3/20/2019 7:42:46 PM, LastWriteTime: 1/10/2019 4:08:43 AM, ChangeTime: 3/20/2019 7:42:30 PM, AllocationSize: 188416, EndOfFile: 186630, FileAttributes: A","2512"
"10:46:36.9679860 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000047","","2512"
"10:46:36.9681503 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000136","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:36.9681801 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","AllocationSize: 188,416, EndOfFile: 186,630, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.9681972 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:36.9682100 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","AllocationSize: 188,416, EndOfFile: 186,630, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:36.9682309 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:36.9682770 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0453449","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:37.0136829 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0145344","Offset: 155,648, Length: 30,982, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:37.0283227 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000056","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:37.0283457 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000082","CreationTime: 3/20/2019 7:27:26 PM, LastAccessTime: 3/20/2019 7:42:46 PM, LastWriteTime: 1/10/2019 4:08:43 AM, ChangeTime: 3/20/2019 7:42:30 PM, FileAttributes: A, AllocationSize: 188,416, EndOfFile: 186,630, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x200000006f2d2, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:37.0285467 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000201","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0285872 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","AllocationSize: 188,416, EndOfFile: 186,630, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.0286069 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.0286209 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000018","AllocationSize: 188,416, EndOfFile: 186,630, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.0286410 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.0287059 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000068","","2512"
"10:46:37.0288518 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0288842 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","AllocationSize: 188,416, EndOfFile: 186,630, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.0289008 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.0289136 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","AllocationSize: 188,416, EndOfFile: 186,630, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.0289380 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.0289742 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000056","","2512"
"10:46:37.0291679 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000137","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0291974 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000051","AllocationSize: 188,416, EndOfFile: 186,630, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.0292281 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.0292469 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","AllocationSize: 188,416, EndOfFile: 186,630, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.0292716 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.0293254 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0008781","Offset: 122,880, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:37.0302564 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0008972","Offset: 90,112, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:37.0312036 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0008716","Offset: 57,344, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:37.0321252 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0008576","Offset: 32,768, Length: 24,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:37.0331129 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000094","","2512"
"10:46:37.0357399 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000102","","2512"
"10:46:37.0357941 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1363_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000047","","2512"
"10:46:37.0361081 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0361367 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000038","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:37.0361503 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000043","","2512"
"10:46:37.0363654 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0363867 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000030","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:37.0363978 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000038","","2512"
"10:46:37.0366120 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0366325 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000025","CreationTime: 4/11/2018 4:34:06 PM, LastAccessTime: 4/11/2018 4:34:06 PM, LastWriteTime: 4/11/2018 4:34:06 PM, ChangeTime: 4/25/2019 8:10:29 PM, FileAttributes: A","2512"
"10:46:37.0366427 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OnDemandConnRouteHelper.dll","0.0000043","","2512"
"10:46:37.0366798 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0367029 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000136","Filter: Windows, 1: Windows","2512"
"10:46:37.0367285 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.0368253 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0368479 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:37.0368748 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:37.0370715 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\ondemandconnroutehelper.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2512"
"10:46:37.0373100 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0373437 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000030","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","2512"
"10:46:37.0373548 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000043","","2512"
"10:46:37.0373898 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0374090 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000102","Filter: Windows, 1: Windows","2512"
"10:46:37.0374303 AM","firefox.exe","7384","CloseFile","C:\","0.0000035","","2512"
"10:46:37.0375298 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0375511 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:37.0375716 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000042","","2512"
"10:46:37.0376654 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0376868 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\winhttp.dll","0.0000123","Filter: winhttp.dll, 1: winhttp.dll","2512"
"10:46:37.0377094 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:37.0378801 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0379142 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000034","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","2512"
"10:46:37.0379253 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000047","","2512"
"10:46:37.0379590 AM","firefox.exe","7384","CreateFile","C:\","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0379786 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:37.0379982 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:37.0380887 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0381096 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:37.0381288 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.0382205 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0382414 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\winhttp.dll","0.0000111","Filter: winhttp.dll, 1: winhttp.dll","2512"
"10:46:37.0382628 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:37.0383758 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0384121 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winhttp.dll","0.0000030","AllocationSize: 901,120, EndOfFile: 899,728, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.0384300 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winhttp.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.0384428 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winhttp.dll","0.0000022","AllocationSize: 901,120, EndOfFile: 899,728, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.0384637 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winhttp.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.0385299 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000055","","2512"
"10:46:37.0386617 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0386997 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winhttp.dll","0.0000030","AllocationSize: 901,120, EndOfFile: 899,728, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.0387150 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winhttp.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.0387266 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winhttp.dll","0.0000021","AllocationSize: 901,120, EndOfFile: 899,728, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.0387449 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winhttp.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.0388183 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\winhttp.dll","0.0150059","Offset: 868,352, Length: 31,376, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:37.0401951 AM","firefox.exe","7904","Thread Exit","","0.0000000","Thread ID: 572, User Time: 0.0000000, Kernel Time: 0.0000000","572"
"10:46:37.0480868 AM","firefox.exe","7904","Thread Exit","","0.0000000","Thread ID: 7580, User Time: 0.0000000, Kernel Time: 0.0156250","7580"
"10:46:37.0539134 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winhttp.dll","0.0000068","AllocationSize: 901,120, EndOfFile: 899,728, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.0539411 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000115","","2512"
"10:46:37.0541489 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000179","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0541996 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winhttp.dll","0.0000030","AllocationSize: 901,120, EndOfFile: 899,728, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.0542184 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winhttp.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.0542329 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winhttp.dll","0.0000017","AllocationSize: 901,120, EndOfFile: 899,728, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.0542530 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winhttp.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.0547172 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000060","","2512"
"10:46:37.0552151 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0552514 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000034","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","2512"
"10:46:37.0552642 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000047","","2512"
"10:46:37.0554788 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0555095 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000026","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","2512"
"10:46:37.0555206 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000043","","2512"
"10:46:37.0557271 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winhttp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0557548 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winhttp.dll","0.0000030","CreationTime: 4/25/2019 5:33:35 PM, LastAccessTime: 4/25/2019 5:33:35 PM, LastWriteTime: 2/5/2019 8:00:52 PM, ChangeTime: 4/25/2019 8:18:02 PM, FileAttributes: A","2512"
"10:46:37.0557659 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winhttp.dll","0.0000039","","2512"
"10:46:37.0558018 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0558248 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000132","Filter: Windows, 1: Windows","2512"
"10:46:37.0558551 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:37.0559524 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0559746 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:37.0559968 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.0561273 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000120","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0561512 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\winhttp.dll","0.0000132","Filter: winhttp.dll, 1: winhttp.dll","2512"
"10:46:37.0561755 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:37.0563667 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\winhttp.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","2512"
"10:46:37.0565753 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0566073 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000030","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/27/2019 7:17:12 PM, FileAttributes: A","2512"
"10:46:37.0566184 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000043","","2512"
"10:46:37.0566534 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0566730 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000103","Filter: Windows, 1: Windows","2512"
"10:46:37.0566939 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:37.0567861 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0568070 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:37.0568279 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:37.0569380 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0569593 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\rasadhlp.dll","0.0000179","Filter: rasadhlp.dll, 1: rasadhlp.dll","2512"
"10:46:37.0569883 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:37.0571692 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0571978 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000030","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/27/2019 7:17:12 PM, FileAttributes: A","2512"
"10:46:37.0572085 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000043","","2512"
"10:46:37.0572418 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0572606 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000093","Filter: Windows, 1: Windows","2512"
"10:46:37.0572802 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:37.0573702 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0573907 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:37.0574103 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:37.0575012 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0575217 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\rasadhlp.dll","0.0000128","Filter: rasadhlp.dll, 1: rasadhlp.dll","2512"
"10:46:37.0575443 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:37.0576633 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0577000 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000030","AllocationSize: 20,480, EndOfFile: 16,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.0577179 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rasadhlp.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.0577346 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000030","AllocationSize: 20,480, EndOfFile: 16,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.0577615 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rasadhlp.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.0578135 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000060","","2512"
"10:46:37.0579590 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0579978 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000030","AllocationSize: 20,480, EndOfFile: 16,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.0580132 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rasadhlp.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.0580247 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000021","AllocationSize: 20,480, EndOfFile: 16,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.0580439 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rasadhlp.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.0580874 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000052","","2512"
"10:46:37.0582841 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0583072 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000025","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:37.0583178 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:37.0584864 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0585073 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000021","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:37.0585171 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:37.0586216 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0586583 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000026","AllocationSize: 20,480, EndOfFile: 16,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.0586728 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rasadhlp.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.0586839 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000022","AllocationSize: 20,480, EndOfFile: 16,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.0587018 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rasadhlp.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.0588102 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000026","AllocationSize: 20,480, EndOfFile: 16,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.0588230 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rasadhlp.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.0588341 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000043","AllocationSize: 20,480, EndOfFile: 16,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.0588845 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rasadhlp.dll","0.0000085","SyncType: SyncTypeOther","2512"
"10:46:37.0589472 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\rasadhlp.dll","0.0000422","Offset: 0, Length: 16,896, Priority: Normal","2512"
"10:46:37.0595108 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000218","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0595590 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000213","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:37.0597399 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000252","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.0603646 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000256","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0604375 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000051","Information: DACL","2512"
"10:46:37.0604661 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000077","","2512"
"10:46:37.0606534 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000248","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.0608070 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000162","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0608454 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000030","Information: DACL","2512"
"10:46:37.0610093 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000081","","2512"
"10:46:37.0613237 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000218","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:37.0615247 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000230","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.0616919 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000167","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0617299 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000034","Information: DACL","2512"
"10:46:37.0617495 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000060","","2512"
"10:46:37.0619070 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000200","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.0620482 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000153","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.0620823 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000030","Information: DACL","2512"
"10:46:37.0621007 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000051","","2512"
"10:46:37.0884632 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000115","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:37.0884990 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:37.0885199 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,824, Length: 1","5316"
"10:46:37.0889854 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:37.0890447 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000094","Offset: 24, Length: 16","5316"
"10:46:37.0893656 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000234","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:37.0894172 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:37.0894543 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","Offset: 1,073,741,826, Length: 510","5316"
"10:46:37.0895281 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:37.0895401 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:37.0895499 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5316"
"10:46:37.0897880 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:37.0898217 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","Offset: 24, Length: 16","5316"
"10:46:37.0900128 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:37.0900444 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:37.0900640 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5316"
"10:46:37.0902163 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:37.0902279 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:37.0902377 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Offset: 1,073,741,824, Length: 1","5316"
"10:46:37.0904356 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:37.0904676 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5316"
"10:46:37.0906494 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:37.0906788 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000035","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:37.0906972 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5316"
"10:46:37.0907808 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5316"
"10:46:37.0907911 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000012","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5316"
"10:46:37.0908000 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000013","Offset: 1,073,741,824, Length: 1","5316"
"10:46:37.0909882 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:37.0910193 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000043","Offset: 24, Length: 16","5316"
"10:46:37.0911977 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5316"
"10:46:37.0912267 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000034","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5316"
"10:46:37.0912459 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000021","Offset: 1,073,741,826, Length: 510","5316"
"10:46:37.0972196 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0204024","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.1176506 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000056","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:26:32 PM, ChangeTime: 3/20/2019 7:06:55 PM, AllocationSize: 212992, EndOfFile: 210502, FileAttributes: A","2512"
"10:46:37.1176724 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000094","","2512"
"10:46:37.1177295 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000064","","2512"
"10:46:37.1177487 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000047","","2512"
"10:46:37.1180555 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.1180982 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:26:32 PM, ChangeTime: 3/20/2019 7:06:55 PM, AllocationSize: 212992, EndOfFile: 210502, FileAttributes: A","2512"
"10:46:37.1181127 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","","2512"
"10:46:37.1182543 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.1182855 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 212,992, EndOfFile: 210,502, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.1183030 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.1183158 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 212,992, EndOfFile: 210,502, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.1183367 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.1183832 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0257895","Offset: 0, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:37.1442315 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0121643","Offset: 180,224, Length: 30,278, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:37.1565033 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0009285","Offset: 32,768, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:37.1575128 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0091832","Offset: 65,536, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:37.1668078 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0391224","Offset: 98,304, Length: 81,920, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:37.2021529 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000158","Offset: 123, Length: 1","8244"
"10:46:37.2022677 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000106","Exclusive: True, Offset: 124, Length: 4, Fail Immediately: True","8244"
"10:46:37.2023458 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0002739","EndOfFile: 0","8244"
"10:46:37.2026820 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-wal","0.0001497","AllocationSize: 0","8244"
"10:46:37.2029068 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000090","Offset: 124, Length: 4","8244"
"10:46:37.2029823 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000047","Offset: 120, Length: 1","8244"
"10:46:37.2030156 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\storage\permanent\chrome\idb\1657114595AmcateirvtiSty.sqlite-shm","0.0000034","Offset: 121, Length: 1","8244"
"10:46:37.2065655 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000209","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:37.2067140 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000307","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:26:32 PM, ChangeTime: 3/20/2019 7:06:55 PM, FileAttributes: A, AllocationSize: 212,992, EndOfFile: 210,502, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x6000000060abe, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:37.2073919 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000658","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.2075549 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000120","AllocationSize: 212,992, EndOfFile: 210,502, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.2076215 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000111","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.2076697 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000073","AllocationSize: 212,992, EndOfFile: 210,502, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.2077401 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000056","SyncType: SyncTypeOther","2512"
"10:46:37.2080209 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000260","","2512"
"10:46:37.2085661 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000781","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.2087274 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000149","AllocationSize: 212,992, EndOfFile: 210,502, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.2088059 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000132","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.2088618 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000090","AllocationSize: 212,992, EndOfFile: 210,502, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.2089412 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","SyncType: SyncTypeOther","2512"
"10:46:37.2090756 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000222","","2512"
"10:46:37.2098606 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0001293","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.2100561 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000111","AllocationSize: 212,992, EndOfFile: 210,502, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.2101102 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000094","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.2101491 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","AllocationSize: 212,992, EndOfFile: 210,502, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.2102114 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","SyncType: SyncTypeOther","2512"
"10:46:37.2107579 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000261","","2512"
"10:46:37.2202376 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000320","","2512"
"10:46:37.2204693 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00113~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000137","","2512"
"10:46:37.2214775 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000482","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.2215940 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000115","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/27/2019 7:17:12 PM, FileAttributes: A","2512"
"10:46:37.2216405 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000192","","2512"
"10:46:37.2222971 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000397","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.2223940 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000094","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/27/2019 7:17:12 PM, FileAttributes: A","2512"
"10:46:37.2224298 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000133","","2512"
"10:46:37.2230788 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000363","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.2231680 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000089","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/27/2019 7:17:12 PM, FileAttributes: A","2512"
"10:46:37.2232004 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000132","","2512"
"10:46:37.2233113 AM","firefox.exe","7384","CreateFile","C:\","0.0000295","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.2233796 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000388","Filter: Windows, 1: Windows","2512"
"10:46:37.2234628 AM","firefox.exe","7384","CloseFile","C:\","0.0000175","","2512"
"10:46:37.2238647 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000363","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.2239419 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000359","Filter: System32, 1: System32","2512"
"10:46:37.2240132 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000124","","2512"
"10:46:37.2243148 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000320","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.2243835 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\rasadhlp.dll","0.0000576","Filter: rasadhlp.dll, 1: rasadhlp.dll","2512"
"10:46:37.2244753 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000128","","2512"
"10:46:37.2251771 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rasadhlp.dll","0.0000384","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.2252697 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rasadhlp.dll","0.0000103","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/27/2019 7:17:12 PM, FileAttributes: A","2512"
"10:46:37.2253030 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rasadhlp.dll","0.0000132","","2512"
"10:46:37.2254105 AM","firefox.exe","7384","CreateFile","C:\","0.0000265","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.2254703 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000307","Filter: Windows, 1: Windows","2512"
"10:46:37.2255338 AM","firefox.exe","7384","CloseFile","C:\","0.0000111","","2512"
"10:46:37.2259131 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000376","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.2259887 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000324","Filter: System32, 1: System32","2512"
"10:46:37.2260539 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000116","","2512"
"10:46:37.2263437 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000311","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.2264085 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\rasadhlp.dll","0.0000602","Filter: rasadhlp.dll, 1: rasadhlp.dll","2512"
"10:46:37.2264998 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000158","","2512"
"10:46:37.2275059 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000640","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.2276693 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000154","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:36 PM, FileAttributes: A","2512"
"10:46:37.2277303 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000222","","2512"
"10:46:37.2279624 AM","firefox.exe","7384","CreateFile","C:\","0.0000709","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.2280640 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000247","Filter: Windows, 1: Windows","2512"
"10:46:37.2281165 AM","firefox.exe","7384","CloseFile","C:\","0.0000098","","2512"
"10:46:37.2283127 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000171","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.2283498 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000171","Filter: System32, 1: System32","2512"
"10:46:37.2283844 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000064","","2512"
"10:46:37.2285401 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.2285743 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\FWPUCLNT.DLL","0.0000187","Filter: FWPUCLNT.DLL, 1: FWPUCLNT.DLL","2512"
"10:46:37.2286101 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000064","","2512"
"10:46:37.2289041 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.2289523 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000055","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:36 PM, FileAttributes: A","2512"
"10:46:37.2289702 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000073","","2512"
"10:46:37.2290257 AM","firefox.exe","7384","CreateFile","C:\","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.2290564 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000154","Filter: Windows, 1: Windows","2512"
"10:46:37.2290884 AM","firefox.exe","7384","CloseFile","C:\","0.0000055","","2512"
"10:46:37.2292441 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.2292783 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000158","Filter: System32, 1: System32","2512"
"10:46:37.2293107 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000060","","2512"
"10:46:37.2294592 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.2294929 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\FWPUCLNT.DLL","0.0000175","Filter: FWPUCLNT.DLL, 1: FWPUCLNT.DLL","2512"
"10:46:37.2295266 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000060","","2512"
"10:46:37.2297109 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000205","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.2297711 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000051","AllocationSize: 450,560, EndOfFile: 446,976, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.2297979 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\FWPUCLNT.DLL","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.2298184 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000034","AllocationSize: 450,560, EndOfFile: 446,976, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.2298543 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\FWPUCLNT.DLL","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:37.2299294 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000089","","2512"
"10:46:37.2301380 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000192","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.2301969 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000042","AllocationSize: 450,560, EndOfFile: 446,976, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.2302208 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\FWPUCLNT.DLL","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.2302387 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000030","AllocationSize: 450,560, EndOfFile: 446,976, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.2302686 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\FWPUCLNT.DLL","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:37.2303394 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000085","","2512"
"10:46:37.2306538 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.2306905 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000047","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:37.2307080 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000060","","2512"
"10:46:37.2310831 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.2311189 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000047","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:37.2311364 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000060","","2512"
"10:46:37.2313062 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000214","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.2313736 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000047","AllocationSize: 450,560, EndOfFile: 446,976, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.2313980 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\FWPUCLNT.DLL","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.2314159 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000030","AllocationSize: 450,560, EndOfFile: 446,976, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.2314453 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\FWPUCLNT.DLL","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:37.2315729 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000038","AllocationSize: 450,560, EndOfFile: 446,976, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.2315934 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\FWPUCLNT.DLL","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.2316096 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000025","AllocationSize: 450,560, EndOfFile: 446,976, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.2316373 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\FWPUCLNT.DLL","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.2318989 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\FWPUCLNT.DLL","0.0752474","Offset: 0, Length: 446,976, Priority: Normal","2512"
"10:46:37.2320213 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\FWPUCLNT.DLL","0.0746540","Offset: 32,768, Length: 414,208, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2512"
"10:46:37.3184577 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000520","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.3185699 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000465","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:37.3189761 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000538","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.3193422 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000443","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.3194360 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000081","Information: DACL","2512"
"10:46:37.3194791 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000137","","2512"
"10:46:37.3198469 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000427","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.3201614 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000354","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.3202471 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000069","Information: DACL","2512"
"10:46:37.3202834 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000128","","2512"
"10:46:37.3209388 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000452","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:37.3213765 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000470","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.3217481 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000376","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.3218275 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000073","Information: DACL","2512"
"10:46:37.3218668 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000123","","2512"
"10:46:37.3221996 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000520","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.3225204 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000388","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.3225993 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000069","Information: DACL","2512"
"10:46:37.3226437 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000128","","2512"
"10:46:37.3446888 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000998","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.3448658 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000137","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:14:21 PM, ChangeTime: 3/20/2019 7:05:46 PM, AllocationSize: 405504, EndOfFile: 404923, FileAttributes: A","2512"
"10:46:37.3449226 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000187","","2512"
"10:46:37.3458118 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0011~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000537","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.3459052 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0011~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000102","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:16:17 PM, ChangeTime: 3/20/2019 7:05:53 PM, AllocationSize: 303104, EndOfFile: 302781, FileAttributes: A","2512"
"10:46:37.3459500 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0011~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000154","","2512"
"10:46:37.3466647 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1382_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0155268","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.3622909 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1382_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000175","CreationTime: 3/20/2019 7:27:26 PM, LastAccessTime: 3/20/2019 7:42:30 PM, LastWriteTime: 1/10/2019 4:03:45 AM, ChangeTime: 3/20/2019 7:42:30 PM, AllocationSize: 16384, EndOfFile: 15625, FileAttributes: A","2512"
"10:46:37.3623630 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1382_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000290","","2512"
"10:46:37.3633316 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0016132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.3650451 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000183","CreationTime: 4/25/2019 5:40:25 PM, LastAccessTime: 4/25/2019 5:40:25 PM, LastWriteTime: 4/3/2019 9:55:39 AM, ChangeTime: 4/25/2019 8:12:15 PM, AllocationSize: 16384, EndOfFile: 15620, FileAttributes: A","2512"
"10:46:37.3651265 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000316","","2512"
"10:46:37.3653369 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000200","","2512"
"10:46:37.3654137 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000196","","2512"
"10:46:37.3665030 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000593","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.3666105 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000111","CreationTime: 4/25/2019 5:40:25 PM, LastAccessTime: 4/25/2019 5:40:25 PM, LastWriteTime: 4/3/2019 9:55:39 AM, ChangeTime: 4/25/2019 8:12:15 PM, AllocationSize: 16384, EndOfFile: 15620, FileAttributes: A","2512"
"10:46:37.3666638 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000180","","2512"
"10:46:37.3671707 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000504","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.3672799 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000107","AllocationSize: 16,384, EndOfFile: 15,620, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.3673380 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000102","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.3673823 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000069","AllocationSize: 16,384, EndOfFile: 15,620, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.3674510 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000052","SyncType: SyncTypeOther","2512"
"10:46:37.3675901 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0228899","Offset: 0, Length: 15,620, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:37.3907313 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000192","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:37.3908815 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000550","CreationTime: 4/25/2019 5:40:25 PM, LastAccessTime: 4/25/2019 5:40:25 PM, LastWriteTime: 4/3/2019 9:55:39 AM, ChangeTime: 4/25/2019 8:12:15 PM, FileAttributes: A, AllocationSize: 16,384, EndOfFile: 15,620, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0xe000000017ea9, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:37.3917105 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000862","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.3918769 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000128","AllocationSize: 16,384, EndOfFile: 15,620, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.3919460 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000115","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.3919955 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000072","AllocationSize: 16,384, EndOfFile: 15,620, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.3920731 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000056","SyncType: SyncTypeOther","2512"
"10:46:37.3923134 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000264","","2512"
"10:46:37.3928749 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000622","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.3930199 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000154","AllocationSize: 16,384, EndOfFile: 15,620, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.3932815 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000358","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.3935597 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000460","AllocationSize: 16,384, EndOfFile: 15,620, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.3937098 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000086","SyncType: SyncTypeOther","2512"
"10:46:37.3940102 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000329","","2512"
"10:46:37.3948516 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000691","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.3949907 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000119","AllocationSize: 16,384, EndOfFile: 15,620, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.3950705 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000102","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.3951144 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000073","AllocationSize: 16,384, EndOfFile: 15,620, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.3951810 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000051","SyncType: SyncTypeOther","2512"
"10:46:37.3954899 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000631","","2512"
"10:46:37.3970703 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000708","","2512"
"10:46:37.3973779 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1409_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000358","","2512"
"10:46:37.3984714 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000576","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.3986105 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000133","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:36 PM, FileAttributes: A","2512"
"10:46:37.3986617 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000184","","2512"
"10:46:37.3994545 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000465","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.3995671 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000107","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:36 PM, FileAttributes: A","2512"
"10:46:37.3996098 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000162","","2512"
"10:46:37.4003646 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000443","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.4004725 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000094","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:36 PM, FileAttributes: A","2512"
"10:46:37.4005118 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000149","","2512"
"10:46:37.4006457 AM","firefox.exe","7384","CreateFile","C:\","0.0000333","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.4007255 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000423","Filter: Windows, 1: Windows","2512"
"10:46:37.4008224 AM","firefox.exe","7384","CloseFile","C:\","0.0000145","","2512"
"10:46:37.4013340 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000571","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.4014602 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000530","Filter: System32, 1: System32","2512"
"10:46:37.4015763 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000213","","2512"
"10:46:37.4021284 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000550","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.4023012 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\FWPUCLNT.DLL","0.0000653","Filter: FWPUCLNT.DLL, 1: FWPUCLNT.DLL","2512"
"10:46:37.4024343 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000248","","2512"
"10:46:37.4035151 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000636","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.4036781 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000158","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:36 PM, FileAttributes: A","2512"
"10:46:37.4037438 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\FWPUCLNT.DLL","0.0000243","","2512"
"10:46:37.4039336 AM","firefox.exe","7384","CreateFile","C:\","0.0000478","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.4040395 AM","firefox.exe","7384","QueryDirectory","C:\WINDOWS","0.0000537","Filter: WINDOWS, 1: Windows","2512"
"10:46:37.4042647 AM","firefox.exe","7384","CloseFile","C:\","0.0000670","","2512"
"10:46:37.4049956 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000597","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.4051646 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0001058","Filter: System32, 1: System32","2512"
"10:46:37.4053532 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000247","","2512"
"10:46:37.4058310 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000440","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.4059240 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\fwpuclnt.dll","0.0000495","Filter: fwpuclnt.dll, 1: FWPUCLNT.DLL","2512"
"10:46:37.4060179 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000149","","2512"
"10:46:37.4070091 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000593","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.4071238 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000141","CreationTime: 4/11/2018 4:34:35 PM, LastAccessTime: 4/11/2018 4:34:35 PM, LastWriteTime: 4/11/2018 4:34:35 PM, ChangeTime: 3/20/2019 7:07:22 PM, FileAttributes: A","2512"
"10:46:37.4071712 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000188","","2512"
"10:46:37.4073508 AM","firefox.exe","7384","CreateFile","C:\","0.0000405","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.4074379 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000422","Filter: Windows, 1: Windows","2512"
"10:46:37.4075223 AM","firefox.exe","7384","CloseFile","C:\","0.0000167","","2512"
"10:46:37.4078722 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000367","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.4079537 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000375","Filter: System32, 1: System32","2512"
"10:46:37.4080331 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000140","","2512"
"10:46:37.4087490 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000422","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.4088250 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000106","CreationTime: 4/11/2018 4:34:35 PM, LastAccessTime: 4/11/2018 4:34:35 PM, LastWriteTime: 4/11/2018 4:34:35 PM, ChangeTime: 3/20/2019 7:07:22 PM, FileAttributes: A","2512"
"10:46:37.4088634 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000153","","2512"
"10:46:37.4089892 AM","firefox.exe","7384","CreateFile","C:\","0.0000286","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.4090639 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000363","Filter: Windows, 1: Windows","2512"
"10:46:37.4091407 AM","firefox.exe","7384","CloseFile","C:\","0.0000141","","2512"
"10:46:37.4094735 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000358","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.4095516 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000362","Filter: System32, 1: System32","2512"
"10:46:37.4096267 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000136","","2512"
"10:46:37.4105598 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000695","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.4107484 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000162","AllocationSize: 4,784,128, EndOfFile: 4,782,592, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.4111162 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ExplorerFrame.dll","0.0000273","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.4112476 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0003076","AllocationSize: 4,784,128, EndOfFile: 4,782,592, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.4117058 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ExplorerFrame.dll","0.0000137","SyncType: SyncTypeOther","2512"
"10:46:37.4122140 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000456","","2512"
"10:46:37.4130298 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000691","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.4131881 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000149","AllocationSize: 4,784,128, EndOfFile: 4,782,592, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.4132759 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ExplorerFrame.dll","0.0000128","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.4133442 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000103","AllocationSize: 4,784,128, EndOfFile: 4,782,592, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.4134615 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ExplorerFrame.dll","0.0000094","SyncType: SyncTypeOther","2512"
"10:46:37.4139151 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000307","","2512"
"10:46:37.4149165 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000486","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.4150057 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000106","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:37.4150509 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000145","","2512"
"10:46:37.4157114 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000426","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.4157899 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000094","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:37.4158304 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000124","","2512"
"10:46:37.4163561 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000610","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.4165011 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000150","AllocationSize: 4,784,128, EndOfFile: 4,782,592, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.4166061 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ExplorerFrame.dll","0.0000247","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.4167230 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000188","AllocationSize: 4,784,128, EndOfFile: 4,782,592, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.4168625 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ExplorerFrame.dll","0.0000102","SyncType: SyncTypeOther","2512"
"10:46:37.4175422 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000175","AllocationSize: 4,784,128, EndOfFile: 4,782,592, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.4176215 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ExplorerFrame.dll","0.0000120","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.4176783 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000072","AllocationSize: 4,784,128, EndOfFile: 4,782,592, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.4177564 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ExplorerFrame.dll","0.0000055","SyncType: SyncTypeOther","2512"
"10:46:37.4184685 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0404864","Offset: 0, Length: 524,288, Priority: Normal","2512"
"10:46:37.4187364 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0399429","Offset: 32,768, Length: 491,520, I/O Flags: Non-cached, Paging I/O, Priority: Normal","2512"
"10:46:37.4974527 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0027622","Offset: 1,572,864, Length: 524,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:37.5039124 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0178292","Offset: 2,097,152, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:37.5290529 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0023164","Offset: 3,145,728, Length: 1,048,576, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:37.5385975 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\ExplorerFrame.dll","0.0013504","Offset: 4,194,304, Length: 588,288, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:37.5446378 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000192","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.5446771 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000166","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:37.5448166 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000200","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.5449361 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000123","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.5449642 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000026","Information: DACL","2512"
"10:46:37.5449783 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000047","","2512"
"10:46:37.5450990 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.5452292 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000119","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.5452539 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000022","Information: DACL","2512"
"10:46:37.5452663 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:37.5455249 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000149","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:37.5456558 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000150","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.5457621 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000119","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.5457873 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000021","Information: DACL","2512"
"10:46:37.5457996 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000039","","2512"
"10:46:37.5459059 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.5460125 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000107","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.5460356 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:37.5460471 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:37.5686259 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000525","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.5687232 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000111","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:27:21 PM, ChangeTime: 3/20/2019 7:07:51 PM, AllocationSize: 323584, EndOfFile: 319494, FileAttributes: A","2512"
"10:46:37.5687765 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000162","","2512"
"10:46:37.5689101 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000123","","2512"
"10:46:37.5689553 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000102","","2512"
"10:46:37.5696141 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000422","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.5696857 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000086","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:27:21 PM, ChangeTime: 3/20/2019 7:07:51 PM, AllocationSize: 323584, EndOfFile: 319494, FileAttributes: A","2512"
"10:46:37.5697190 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000120","","2512"
"10:46:37.5700796 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000367","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.5701628 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000085","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.5702101 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000077","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.5702430 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000059","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.5702942 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","SyncType: SyncTypeOther","2512"
"10:46:37.5712264 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000090","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:37.5712691 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000120","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:27:21 PM, ChangeTime: 3/20/2019 7:07:51 PM, FileAttributes: A, AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x3000000061084, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:37.5716348 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000418","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.5717350 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000086","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.5717803 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000068","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.5718212 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000060","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.5718745 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","SyncType: SyncTypeOther","2512"
"10:46:37.5720572 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000170","","2512"
"10:46:37.5724919 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000401","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.5725785 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000073","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.5726174 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.5726464 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.5726942 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","SyncType: SyncTypeOther","2512"
"10:46:37.5728030 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000192","","2512"
"10:46:37.5734955 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000384","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.5735787 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000072","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.5736162 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.5736444 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.5736917 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","SyncType: SyncTypeOther","2512"
"10:46:37.5743172 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000154","","2512"
"10:46:37.5873301 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000453","","2512"
"10:46:37.5876911 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000286","","2512"
"10:46:37.5887373 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000354","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.5888056 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000085","CreationTime: 4/11/2018 4:34:35 PM, LastAccessTime: 4/11/2018 4:34:35 PM, LastWriteTime: 4/11/2018 4:34:35 PM, ChangeTime: 3/20/2019 7:07:22 PM, FileAttributes: A","2512"
"10:46:37.5888388 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000120","","2512"
"10:46:37.5893560 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000285","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.5894101 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000069","CreationTime: 4/11/2018 4:34:35 PM, LastAccessTime: 4/11/2018 4:34:35 PM, LastWriteTime: 4/11/2018 4:34:35 PM, ChangeTime: 3/20/2019 7:07:22 PM, FileAttributes: A","2512"
"10:46:37.5894383 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000111","","2512"
"10:46:37.5898795 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.5899145 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000047","CreationTime: 4/11/2018 4:34:35 PM, LastAccessTime: 4/11/2018 4:34:35 PM, LastWriteTime: 4/11/2018 4:34:35 PM, ChangeTime: 3/20/2019 7:07:22 PM, FileAttributes: A","2512"
"10:46:37.5899320 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000072","","2512"
"10:46:37.5899904 AM","firefox.exe","7384","CreateFile","C:\","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.5900250 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000205","Filter: Windows, 1: Windows","2512"
"10:46:37.5900638 AM","firefox.exe","7384","CloseFile","C:\","0.0000064","","2512"
"10:46:37.5902136 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.5902485 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000171","Filter: System32, 1: System32","2512"
"10:46:37.5902823 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:37.5905933 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ExplorerFrame.dll","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.5906261 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ExplorerFrame.dll","0.0000043","CreationTime: 4/11/2018 4:34:35 PM, LastAccessTime: 4/11/2018 4:34:35 PM, LastWriteTime: 4/11/2018 4:34:35 PM, ChangeTime: 3/20/2019 7:07:22 PM, FileAttributes: A","2512"
"10:46:37.5906419 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ExplorerFrame.dll","0.0000064","","2512"
"10:46:37.5906936 AM","firefox.exe","7384","CreateFile","C:\","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.5907226 AM","firefox.exe","7384","QueryDirectory","C:\WINDOWS","0.0000145","Filter: WINDOWS, 1: Windows","2512"
"10:46:37.5907529 AM","firefox.exe","7384","CloseFile","C:\","0.0000055","","2512"
"10:46:37.5908941 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.5909257 AM","firefox.exe","7384","QueryDirectory","C:\Windows\system32","0.0000145","Filter: system32, 1: System32","2512"
"10:46:37.5909560 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000059","","2512"
"10:46:37.5912939 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.5913284 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000064","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:46:36 PM, FileAttributes: A","2512"
"10:46:37.5913472 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000064","","2512"
"10:46:37.5913997 AM","firefox.exe","7384","CreateFile","C:\","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.5914287 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000154","Filter: Windows, 1: Windows","2512"
"10:46:37.5914603 AM","firefox.exe","7384","CloseFile","C:\","0.0000055","","2512"
"10:46:37.5916770 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000214","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.5917240 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000209","Filter: System32, 1: System32","2512"
"10:46:37.5917696 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000107","","2512"
"10:46:37.5921242 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000251","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.5921690 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000064","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:46:36 PM, FileAttributes: A","2512"
"10:46:37.5921933 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000102","","2512"
"10:46:37.5922650 AM","firefox.exe","7384","CreateFile","C:\","0.0000153","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.5922978 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000167","Filter: Windows, 1: Windows","2512"
"10:46:37.5923311 AM","firefox.exe","7384","CloseFile","C:\","0.0000064","","2512"
"10:46:37.5924736 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.5925056 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000145","Filter: System32, 1: System32","2512"
"10:46:37.5925363 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000056","","2512"
"10:46:37.5927125 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000184","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.5927552 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000073","AllocationSize: 6,979,584, EndOfFile: 6,979,024, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.5927855 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.5928043 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000034","AllocationSize: 6,979,584, EndOfFile: 6,979,024, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.5928341 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:37.5929826 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000090","","2512"
"10:46:37.5932079 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000192","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.5932595 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000064","AllocationSize: 6,979,584, EndOfFile: 6,979,024, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.5932924 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.5933176 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000038","AllocationSize: 6,979,584, EndOfFile: 6,979,024, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.5933487 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:37.5934857 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0092616","Offset: 6,905,856, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:37.6029180 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000102","AllocationSize: 6,979,584, EndOfFile: 6,979,024, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.6029611 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000179","","2512"
"10:46:37.6033515 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000290","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6034189 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000051","AllocationSize: 6,979,584, EndOfFile: 6,979,024, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.6034492 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.6034714 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000034","AllocationSize: 6,979,584, EndOfFile: 6,979,024, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.6035047 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:37.6046759 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0007309","Offset: 6,938,624, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:37.6066420 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0005380","Offset: 6,971,392, Length: 7,632, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","2512"
"10:46:37.6076489 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000230","","2512"
"10:46:37.6095501 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6095936 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000060","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:46:36 PM, FileAttributes: A","2512"
"10:46:37.6096150 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000076","","2512"
"10:46:37.6099269 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6099593 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000043","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:46:36 PM, FileAttributes: A","2512"
"10:46:37.6099759 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000064","","2512"
"10:46:37.6103245 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6103676 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000047","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:46:36 PM, FileAttributes: A","2512"
"10:46:37.6103851 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000073","","2512"
"10:46:37.6104521 AM","firefox.exe","7384","CreateFile","C:\","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6104866 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000210","Filter: Windows, 1: Windows","2512"
"10:46:37.6105268 AM","firefox.exe","7384","CloseFile","C:\","0.0000064","","2512"
"10:46:37.6107081 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000171","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6107439 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000180","Filter: System32, 1: System32","2512"
"10:46:37.6107793 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000064","","2512"
"10:46:37.6110810 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6111121 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000043","CreationTime: 4/11/2018 4:34:07 PM, LastAccessTime: 4/11/2018 4:34:07 PM, LastWriteTime: 4/11/2018 4:34:07 PM, ChangeTime: 3/20/2019 7:46:36 PM, FileAttributes: A","2512"
"10:46:37.6111271 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\OneCoreUAPCommonProxyStub.dll","0.0000060","","2512"
"10:46:37.6111774 AM","firefox.exe","7384","CreateFile","C:\","0.0000120","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6112056 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000183","Filter: Windows, 1: Windows","2512"
"10:46:37.6112401 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:37.6113827 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6114142 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000145","Filter: System32, 1: System32","2512"
"10:46:37.6114441 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000060","","2512"
"10:46:37.6116835 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000029","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6117044 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Keyboard Layouts","0.0000093","Desired Access: Enumerate Sub Keys","2512"
"10:46:37.6117274 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000077","Desired Access: Enumerate Sub Keys","2512"
"10:46:37.6117513 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000047","Index: 0, Name: 00000401","2512"
"10:46:37.6117684 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6117824 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000401","0.0000086","Desired Access: Query Value","2512"
"10:46:37.6118063 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000401\Layout File","0.0000047","Type: REG_SZ, Length: 20, Data: KBDA1.DLL","2512"
"10:46:37.6118277 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000401","0.0000021","","2512"
"10:46:37.6118452 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 1, Name: 00000402","2512"
"10:46:37.6118592 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6118720 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000402","0.0000073","Desired Access: Query Value","2512"
"10:46:37.6118921 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000402\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDBU.DLL","2512"
"10:46:37.6119087 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000402","0.0000013","","2512"
"10:46:37.6119228 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 2, Name: 00000404","2512"
"10:46:37.6119356 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6119484 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000404","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6119676 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000404\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:37.6119821 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000404","0.0000017","","2512"
"10:46:37.6119949 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 3, Name: 00000405","2512"
"10:46:37.6120077 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6120197 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000405","0.0000068","Desired Access: Query Value","2512"
"10:46:37.6120380 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000405\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDCZ.DLL","2512"
"10:46:37.6120525 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000405","0.0000017","","2512"
"10:46:37.6120649 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000090","Index: 4, Name: 00000406","2512"
"10:46:37.6120841 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6120965 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000406","0.0000072","Desired Access: Query Value","2512"
"10:46:37.6121157 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000406\Layout File","0.0000055","Type: REG_SZ, Length: 20, Data: KBDDA.DLL","2512"
"10:46:37.6121396 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000406","0.0000034","","2512"
"10:46:37.6121617 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000047","Index: 5, Name: 00000407","2512"
"10:46:37.6121835 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6122014 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000407","0.0000073","Desired Access: Query Value","2512"
"10:46:37.6122215 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000407\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDGR.DLL","2512"
"10:46:37.6122368 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000407","0.0000013","","2512"
"10:46:37.6122492 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 6, Name: 00000408","2512"
"10:46:37.6122616 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6122740 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000408","0.0000059","Desired Access: Query Value","2512"
"10:46:37.6122919 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000408\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDHE.DLL","2512"
"10:46:37.6123060 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000408","0.0000012","","2512"
"10:46:37.6123175 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000051","Index: 7, Name: 00000409","2512"
"10:46:37.6123320 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6123444 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000409","0.0000076","Desired Access: Query Value","2512"
"10:46:37.6123648 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000409\Layout File","0.0000064","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:37.6123845 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000409","0.0000012","","2512"
"10:46:37.6123964 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 8, Name: 0000040a","2512"
"10:46:37.6124088 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6124207 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040a","0.0000069","Desired Access: Query Value","2512"
"10:46:37.6124391 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040a\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDSP.DLL","2512"
"10:46:37.6124532 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040a","0.0000012","","2512"
"10:46:37.6124655 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 9, Name: 0000040b","2512"
"10:46:37.6124779 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6124899 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040b","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6125073 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040b\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDFI.DLL","2512"
"10:46:37.6125210 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040b","0.0000017","","2512"
"10:46:37.6125325 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 10, Name: 0000040c","2512"
"10:46:37.6125453 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6125573 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040c","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6125752 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040c\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDFR.DLL","2512"
"10:46:37.6125888 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040c","0.0000013","","2512"
"10:46:37.6126004 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 11, Name: 0000040d","2512"
"10:46:37.6126127 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6126247 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040d","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6126422 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040d\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDHEB.DLL","2512"
"10:46:37.6126563 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040d","0.0000017","","2512"
"10:46:37.6126678 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 12, Name: 0000040e","2512"
"10:46:37.6126806 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6126925 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040e","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6127109 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040e\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDHU.DLL","2512"
"10:46:37.6127249 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040e","0.0000018","","2512"
"10:46:37.6127365 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 13, Name: 0000040f","2512"
"10:46:37.6127488 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6127608 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040f","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6127779 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040f\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDIC.DLL","2512"
"10:46:37.6127919 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040f","0.0000013","","2512"
"10:46:37.6128035 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 14, Name: 00000410","2512"
"10:46:37.6128158 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6128282 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000410","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6128461 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000410\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDIT.DLL","2512"
"10:46:37.6128602 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000410","0.0000013","","2512"
"10:46:37.6128756 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000038","Index: 15, Name: 00000411","2512"
"10:46:37.6128918 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6129041 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000411","0.0000094","Desired Access: Query Value","2512"
"10:46:37.6129255 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000411\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDJPN.DLL","2512"
"10:46:37.6129396 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000411","0.0000012","","2512"
"10:46:37.6129515 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 16, Name: 00000412","2512"
"10:46:37.6129639 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6129758 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000412","0.0000069","Desired Access: Query Value","2512"
"10:46:37.6129942 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000412\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDKOR.DLL","2512"
"10:46:37.6130083 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000412","0.0000012","","2512"
"10:46:37.6130206 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 17, Name: 00000413","2512"
"10:46:37.6130330 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6130449 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000413","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6130624 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000413\Layout File","0.0000035","Type: REG_SZ, Length: 20, Data: KBDNE.DLL","2512"
"10:46:37.6130765 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000413","0.0000017","","2512"
"10:46:37.6130880 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 18, Name: 00000414","2512"
"10:46:37.6131004 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6131124 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000414","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6131303 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000414\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDNO.DLL","2512"
"10:46:37.6131439 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000414","0.0000013","","2512"
"10:46:37.6131555 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 19, Name: 00000415","2512"
"10:46:37.6131678 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6131798 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000415","0.0000072","Desired Access: Query Value","2512"
"10:46:37.6131981 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000415\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDPL1.DLL","2512"
"10:46:37.6132118 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000415","0.0000017","","2512"
"10:46:37.6132233 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 20, Name: 00000416","2512"
"10:46:37.6132361 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6132480 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000416","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6132655 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000416\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDBR.DLL","2512"
"10:46:37.6132796 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000416","0.0000013","","2512"
"10:46:37.6132907 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 21, Name: 00000418","2512"
"10:46:37.6133035 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6133155 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000418","0.0000059","Desired Access: Query Value","2512"
"10:46:37.6133329 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000418\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDRO.DLL","2512"
"10:46:37.6133466 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000418","0.0000017","","2512"
"10:46:37.6133603 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 22, Name: 00000419","2512"
"10:46:37.6133731 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6133850 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000419","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6134025 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000419\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDRU.DLL","2512"
"10:46:37.6134161 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000419","0.0000018","","2512"
"10:46:37.6134277 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 23, Name: 0000041a","2512"
"10:46:37.6134400 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6134520 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041a","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6134695 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041a\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDCR.DLL","2512"
"10:46:37.6134836 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041a","0.0000012","","2512"
"10:46:37.6134947 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 24, Name: 0000041b","2512"
"10:46:37.6135070 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6135190 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041b","0.0000068","Desired Access: Query Value","2512"
"10:46:37.6135369 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041b\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDSL.DLL","2512"
"10:46:37.6135510 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041b","0.0000013","","2512"
"10:46:37.6135621 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 25, Name: 0000041c","2512"
"10:46:37.6135744 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6135864 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041c","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6136039 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041c\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDAL.DLL","2512"
"10:46:37.6136175 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041c","0.0000013","","2512"
"10:46:37.6136286 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 26, Name: 0000041d","2512"
"10:46:37.6136410 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6136529 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041d","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6136704 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041d\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDSW.DLL","2512"
"10:46:37.6136841 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041d","0.0000017","","2512"
"10:46:37.6136956 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 27, Name: 0000041e","2512"
"10:46:37.6137080 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6137199 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041e","0.0000073","Desired Access: Query Value","2512"
"10:46:37.6137383 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041e\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDTH0.DLL","2512"
"10:46:37.6137519 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041e","0.0000017","","2512"
"10:46:37.6137635 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 28, Name: 0000041f","2512"
"10:46:37.6137758 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6137878 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041f","0.0000059","Desired Access: Query Value","2512"
"10:46:37.6138048 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041f\Layout File","0.0000035","Type: REG_SZ, Length: 22, Data: KBDTUQ.DLL","2512"
"10:46:37.6138189 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041f","0.0000013","","2512"
"10:46:37.6138300 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 29, Name: 00000420","2512"
"10:46:37.6138424 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6138543 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000420","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6138714 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000420\Layout File","0.0000034","Type: REG_SZ, Length: 24, Data: KBDURDU.DLL","2512"
"10:46:37.6138855 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000420","0.0000017","","2512"
"10:46:37.6138970 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 30, Name: 00000422","2512"
"10:46:37.6139094 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6139213 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000422","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6139384 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000422\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDUR.DLL","2512"
"10:46:37.6139525 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000422","0.0000012","","2512"
"10:46:37.6139640 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 31, Name: 00000423","2512"
"10:46:37.6139759 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6139879 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000423","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6140054 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000423\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDBLR.DLL","2512"
"10:46:37.6140190 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000423","0.0000017","","2512"
"10:46:37.6140305 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 32, Name: 00000424","2512"
"10:46:37.6140429 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6140544 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000424","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6140719 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000424\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDCR.DLL","2512"
"10:46:37.6140856 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000424","0.0000030","","2512"
"10:46:37.6141001 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 33, Name: 00000425","2512"
"10:46:37.6141125 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6141244 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000425","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6141423 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000425\Layout File","0.0000039","Type: REG_SZ, Length: 22, Data: KBDEST.DLL","2512"
"10:46:37.6141573 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000425","0.0000012","","2512"
"10:46:37.6141688 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 34, Name: 00000426","2512"
"10:46:37.6141850 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6142038 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000426","0.0000085","Desired Access: Query Value","2512"
"10:46:37.6142307 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000426\Layout File","0.0000042","Type: REG_SZ, Length: 20, Data: KBDLV.DLL","2512"
"10:46:37.6142516 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000426","0.0000021","","2512"
"10:46:37.6142691 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000038","Index: 35, Name: 00000427","2512"
"10:46:37.6142883 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6143070 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000427","0.0000111","Desired Access: Query Value","2512"
"10:46:37.6143369 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000427\Layout File","0.0000038","Type: REG_SZ, Length: 20, Data: KBDLT.DLL","2512"
"10:46:37.6143574 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000427","0.0000021","","2512"
"10:46:37.6143753 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000043","Index: 36, Name: 00000428","2512"
"10:46:37.6143945 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6144137 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000428","0.0000090","Desired Access: Query Value","2512"
"10:46:37.6144406 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000428\Layout File","0.0000042","Type: REG_SZ, Length: 26, Data: KBDTAJIK.DLL","2512"
"10:46:37.6144619 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000428","0.0000021","","2512"
"10:46:37.6144798 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000039","Index: 37, Name: 00000429","2512"
"10:46:37.6144990 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6145178 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000429","0.0000090","Desired Access: Query Value","2512"
"10:46:37.6145443 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000429\Layout File","0.0000038","Type: REG_SZ, Length: 20, Data: KBDFA.DLL","2512"
"10:46:37.6145652 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000429","0.0000021","","2512"
"10:46:37.6145831 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000038","Index: 38, Name: 0000042a","2512"
"10:46:37.6146023 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6146215 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042a","0.0000094","Desired Access: Query Value","2512"
"10:46:37.6146496 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042a\Layout File","0.0000043","Type: REG_SZ, Length: 24, Data: KBDVNTC.DLL","2512"
"10:46:37.6146710 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042a","0.0000021","","2512"
"10:46:37.6146893 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000043","Index: 39, Name: 0000042b","2512"
"10:46:37.6147085 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6147277 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042b","0.0000090","Desired Access: Query Value","2512"
"10:46:37.6147495 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042b\Layout File","0.0000034","Type: REG_SZ, Length: 24, Data: kbdarme.dll","2512"
"10:46:37.6147640 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042b","0.0000017","","2512"
"10:46:37.6147759 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 40, Name: 0000042c","2512"
"10:46:37.6147887 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6148011 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042c","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6148182 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042c\Layout File","0.0000034","Type: REG_SZ, Length: 24, Data: KBDAZEL.DLL","2512"
"10:46:37.6148323 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042c","0.0000017","","2512"
"10:46:37.6148442 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 41, Name: 0000042e","2512"
"10:46:37.6148566 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6148685 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042e","0.0000056","Desired Access: Query Value","2512"
"10:46:37.6148856 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042e\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: KBDSORST.DLL","2512"
"10:46:37.6148997 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042e","0.0000012","","2512"
"10:46:37.6149137 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 42, Name: 0000042f","2512"
"10:46:37.6149261 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6149381 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042f","0.0000059","Desired Access: Query Value","2512"
"10:46:37.6149556 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042f\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDMAC.DLL","2512"
"10:46:37.6149696 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042f","0.0000013","","2512"
"10:46:37.6149807 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 43, Name: 00000432","2512"
"10:46:37.6149931 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6150055 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000432","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6150230 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000432\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDNSO.DLL","2512"
"10:46:37.6150371 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000432","0.0000012","","2512"
"10:46:37.6150481 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000035","Index: 44, Name: 00000437","2512"
"10:46:37.6150609 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6150729 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000437","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6150904 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000437\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: kbdgeo.dll","2512"
"10:46:37.6151040 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000437","0.0000017","","2512"
"10:46:37.6151156 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 45, Name: 00000438","2512"
"10:46:37.6151279 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6151399 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000438","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6151574 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000438\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDFO.DLL","2512"
"10:46:37.6151710 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000438","0.0000013","","2512"
"10:46:37.6151825 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 46, Name: 00000439","2512"
"10:46:37.6151949 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6152069 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000439","0.0000059","Desired Access: Query Value","2512"
"10:46:37.6152244 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000439\Layout File","0.0000029","Type: REG_SZ, Length: 26, Data: KBDINDEV.DLL","2512"
"10:46:37.6152380 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000439","0.0000017","","2512"
"10:46:37.6152508 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 47, Name: 0000043a","2512"
"10:46:37.6152632 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6152751 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043a","0.0000069","Desired Access: Query Value","2512"
"10:46:37.6152931 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043a\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: KBDMLT47.DLL","2512"
"10:46:37.6153071 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043a","0.0000013","","2512"
"10:46:37.6153187 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 48, Name: 0000043b","2512"
"10:46:37.6153310 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6153430 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043b","0.0000059","Desired Access: Query Value","2512"
"10:46:37.6153622 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043b\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDNO1.DLL","2512"
"10:46:37.6153763 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043b","0.0000012","","2512"
"10:46:37.6153878 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 49, Name: 0000043f","2512"
"10:46:37.6154001 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6154121 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043f","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6154292 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043f\Layout File","0.0000029","Type: REG_SZ, Length: 22, Data: KBDKAZ.DLL","2512"
"10:46:37.6154432 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043f","0.0000013","","2512"
"10:46:37.6154560 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 50, Name: 00000440","2512"
"10:46:37.6154684 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6154808 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000440","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6154987 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000440\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDKYR.DLL","2512"
"10:46:37.6155124 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000440","0.0000012","","2512"
"10:46:37.6155239 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 51, Name: 00000442","2512"
"10:46:37.6155367 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6155486 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000442","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6155661 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000442\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDTURME.DLL","2512"
"10:46:37.6155798 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000442","0.0000013","","2512"
"10:46:37.6155913 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 52, Name: 00000444","2512"
"10:46:37.6156037 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6156156 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000444","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6156327 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000444\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDTAT.DLL","2512"
"10:46:37.6156463 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000444","0.0000017","","2512"
"10:46:37.6156579 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 53, Name: 00000445","2512"
"10:46:37.6156702 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6156826 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000445","0.0000068","Desired Access: Query Value","2512"
"10:46:37.6157005 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000445\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDINBEN.DLL","2512"
"10:46:37.6157142 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000445","0.0000017","","2512"
"10:46:37.6157261 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 54, Name: 00000446","2512"
"10:46:37.6157385 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6157504 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000446","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6157679 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000446\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDINPUN.DLL","2512"
"10:46:37.6157816 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000446","0.0000013","","2512"
"10:46:37.6157931 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 55, Name: 00000447","2512"
"10:46:37.6158059 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6158179 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000447","0.0000059","Desired Access: Query Value","2512"
"10:46:37.6158354 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000447\Layout File","0.0000029","Type: REG_SZ, Length: 26, Data: KBDINGUJ.DLL","2512"
"10:46:37.6158490 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000447","0.0000017","","2512"
"10:46:37.6158605 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 56, Name: 00000448","2512"
"10:46:37.6158729 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6158848 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000448","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6159019 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000448\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDINORI.DLL","2512"
"10:46:37.6159156 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000448","0.0000017","","2512"
"10:46:37.6159271 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 57, Name: 00000449","2512"
"10:46:37.6159395 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6159514 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000449","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6159689 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000449\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: KBDINTAM.DLL","2512"
"10:46:37.6159830 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000449","0.0000013","","2512"
"10:46:37.6159945 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 58, Name: 0000044a","2512"
"10:46:37.6160069 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6160188 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044a","0.0000068","Desired Access: Query Value","2512"
"10:46:37.6160372 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044a\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDINTEL.DLL","2512"
"10:46:37.6160508 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044a","0.0000013","","2512"
"10:46:37.6160623 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 59, Name: 0000044b","2512"
"10:46:37.6160747 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6160867 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044b","0.0000059","Desired Access: Query Value","2512"
"10:46:37.6161037 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044b\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: KBDINKAN.DLL","2512"
"10:46:37.6161178 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044b","0.0000013","","2512"
"10:46:37.6161289 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 60, Name: 0000044c","2512"
"10:46:37.6161417 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6161536 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044c","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6161707 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044c\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: KBDINMAL.DLL","2512"
"10:46:37.6161848 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044c","0.0000013","","2512"
"10:46:37.6161980 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 61, Name: 0000044d","2512"
"10:46:37.6162108 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6162228 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044d","0.0000068","Desired Access: Query Value","2512"
"10:46:37.6162415 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044d\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDINASA.DLL","2512"
"10:46:37.6162552 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044d","0.0000013","","2512"
"10:46:37.6162667 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000043","Index: 62, Name: 0000044e","2512"
"10:46:37.6162808 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6162927 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044e","0.0000069","Desired Access: Query Value","2512"
"10:46:37.6163111 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044e\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDINMAR.DLL","2512"
"10:46:37.6163264 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044e","0.0000018","","2512"
"10:46:37.6163397 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 63, Name: 00000450","2512"
"10:46:37.6163525 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6163683 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000450","0.0000093","Desired Access: Query Value","2512"
"10:46:37.6163951 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000450\Layout File","0.0000043","Type: REG_SZ, Length: 22, Data: KBDMON.DLL","2512"
"10:46:37.6164165 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000450","0.0000021","","2512"
"10:46:37.6164348 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000043","Index: 64, Name: 00000451","2512"
"10:46:37.6164540 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6164728 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000451","0.0000098","Desired Access: Query Value","2512"
"10:46:37.6165001 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000451\Layout File","0.0000043","Type: REG_SZ, Length: 26, Data: KBDTIPRC.DLL","2512"
"10:46:37.6165214 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000451","0.0000017","","2512"
"10:46:37.6165423 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000043","Index: 65, Name: 00000452","2512"
"10:46:37.6165620 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6165812 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000452","0.0000085","Desired Access: Query Value","2512"
"10:46:37.6166072 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000452\Layout File","0.0000038","Type: REG_SZ, Length: 22, Data: KBDUKX.DLL","2512"
"10:46:37.6166281 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000452","0.0000021","","2512"
"10:46:37.6166456 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000038","Index: 66, Name: 00000453","2512"
"10:46:37.6166644 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6166836 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000453","0.0000085","Desired Access: Query Value","2512"
"10:46:37.6167096 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000453\Layout File","0.0000043","Type: REG_SZ, Length: 24, Data: KBDKHMR.DLL","2512"
"10:46:37.6167309 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000453","0.0000017","","2512"
"10:46:37.6167484 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000039","Index: 67, Name: 00000454","2512"
"10:46:37.6167676 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6167868 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000454","0.0000086","Desired Access: Query Value","2512"
"10:46:37.6168128 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000454\Layout File","0.0000043","Type: REG_SZ, Length: 22, Data: KBDLAO.DLL","2512"
"10:46:37.6168338 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000454","0.0000021","","2512"
"10:46:37.6168512 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000043","Index: 68, Name: 0000045a","2512"
"10:46:37.6168696 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6168884 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045a","0.0000089","Desired Access: Query Value","2512"
"10:46:37.6169097 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045a\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDSYR1.DLL","2512"
"10:46:37.6169238 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045a","0.0000013","","2512"
"10:46:37.6169357 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 69, Name: 0000045b","2512"
"10:46:37.6169481 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6169596 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045b","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6169775 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045b\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDSN1.DLL","2512"
"10:46:37.6169912 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045b","0.0000017","","2512"
"10:46:37.6170027 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 70, Name: 0000045c","2512"
"10:46:37.6170147 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6170266 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045c","0.0000073","Desired Access: Query Value","2512"
"10:46:37.6170595 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045c\Layout File","0.0000029","Type: REG_SZ, Length: 24, Data: KBDCHER.DLL","2512"
"10:46:37.6170735 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045c","0.0000013","","2512"
"10:46:37.6170851 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 71, Name: 00000461","2512"
"10:46:37.6170974 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6171094 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000461","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6171269 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000461\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDNEPR.DLL","2512"
"10:46:37.6171410 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000461","0.0000012","","2512"
"10:46:37.6171520 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 72, Name: 00000463","2512"
"10:46:37.6171644 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6171764 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000463","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6171943 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000463\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDPASH.DLL","2512"
"10:46:37.6172079 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000463","0.0000013","","2512"
"10:46:37.6172195 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 73, Name: 00000465","2512"
"10:46:37.6172318 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6172438 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000465","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6172617 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000465\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDDIV1.DLL","2512"
"10:46:37.6172754 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000465","0.0000012","","2512"
"10:46:37.6172869 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 74, Name: 00000468","2512"
"10:46:37.6172992 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6173112 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000468","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6173291 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000468\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDHAU.DLL","2512"
"10:46:37.6173428 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000468","0.0000017","","2512"
"10:46:37.6173560 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 75, Name: 0000046a","2512"
"10:46:37.6173684 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6173803 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046a","0.0000068","Desired Access: Query Value","2512"
"10:46:37.6173982 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046a\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDYBA.DLL","2512"
"10:46:37.6174119 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046a","0.0000013","","2512"
"10:46:37.6174234 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 76, Name: 0000046c","2512"
"10:46:37.6174358 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6174477 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046c","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6174656 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046c\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDNSO.DLL","2512"
"10:46:37.6174793 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046c","0.0000017","","2512"
"10:46:37.6174908 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 77, Name: 0000046d","2512"
"10:46:37.6175032 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6175151 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046d","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6175322 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046d\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDBASH.DLL","2512"
"10:46:37.6175459 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046d","0.0000017","","2512"
"10:46:37.6175574 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 78, Name: 0000046e","2512"
"10:46:37.6175698 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6175821 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046e","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6175996 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046e\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDSF.DLL","2512"
"10:46:37.6176133 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046e","0.0000017","","2512"
"10:46:37.6176256 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 79, Name: 0000046f","2512"
"10:46:37.6176380 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6176500 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046f","0.0000059","Desired Access: Query Value","2512"
"10:46:37.6176670 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046f\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDGRLND.DLL","2512"
"10:46:37.6176811 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046f","0.0000013","","2512"
"10:46:37.6176931 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 80, Name: 00000470","2512"
"10:46:37.6177054 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6177174 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000470","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6177349 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000470\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDIBO.DLL","2512"
"10:46:37.6177485 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000470","0.0000017","","2512"
"10:46:37.6177605 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 81, Name: 00000474","2512"
"10:46:37.6177728 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6177848 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000474","0.0000068","Desired Access: Query Value","2512"
"10:46:37.6178027 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000474\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDGN.DLL","2512"
"10:46:37.6178168 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000474","0.0000013","","2512"
"10:46:37.6178287 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 82, Name: 00000475","2512"
"10:46:37.6178411 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6178535 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000475","0.0000072","Desired Access: Query Value","2512"
"10:46:37.6178723 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000475\Layout File","0.0000029","Type: REG_SZ, Length: 22, Data: KBDHAW.DLL","2512"
"10:46:37.6178859 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000475","0.0000017","","2512"
"10:46:37.6178974 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 83, Name: 00000480","2512"
"10:46:37.6179098 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6179218 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000480","0.0000059","Desired Access: Query Value","2512"
"10:46:37.6179388 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000480\Layout File","0.0000034","Type: REG_SZ, Length: 24, Data: KBDUGHR.DLL","2512"
"10:46:37.6179525 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000480","0.0000017","","2512"
"10:46:37.6179640 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 84, Name: 00000481","2512"
"10:46:37.6179764 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6179883 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000481","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6180058 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000481\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDMAORI.DLL","2512"
"10:46:37.6180195 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000481","0.0000012","","2512"
"10:46:37.6180310 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 85, Name: 00000485","2512"
"10:46:37.6180434 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6180553 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000485","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6180732 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000485\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDYAK.DLL","2512"
"10:46:37.6180869 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000485","0.0000017","","2512"
"10:46:37.6180984 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 86, Name: 00000488","2512"
"10:46:37.6181108 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6181227 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000488","0.0000068","Desired Access: Query Value","2512"
"10:46:37.6181406 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000488\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDWOL.DLL","2512"
"10:46:37.6181543 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000488","0.0000017","","2512"
"10:46:37.6181667 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 87, Name: 00000492","2512"
"10:46:37.6181790 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6181910 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000492","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6182085 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000492\Layout File","0.0000034","Type: REG_SZ, Length: 24, Data: KBDKURD.DLL","2512"
"10:46:37.6182226 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000492","0.0000012","","2512"
"10:46:37.6182341 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 88, Name: 00000804","2512"
"10:46:37.6182464 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6182584 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000804","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6182763 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000804\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:37.6182900 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000804","0.0000012","","2512"
"10:46:37.6183015 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 89, Name: 00000807","2512"
"10:46:37.6183139 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6183258 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000807","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6183433 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000807\Layout File","0.0000047","Type: REG_SZ, Length: 20, Data: KBDSG.DLL","2512"
"10:46:37.6183757 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000807","0.0000017","","2512"
"10:46:37.6183881 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 90, Name: 00000809","2512"
"10:46:37.6184009 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6184133 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000809","0.0000059","Desired Access: Query Value","2512"
"10:46:37.6184312 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000809\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDUK.DLL","2512"
"10:46:37.6184448 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000809","0.0000018","","2512"
"10:46:37.6184564 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 91, Name: 0000080a","2512"
"10:46:37.6184687 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6184820 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080a","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6184999 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080a\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDLA.DLL","2512"
"10:46:37.6185135 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080a","0.0000043","","2512"
"10:46:37.6185349 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000059","Index: 92, Name: 0000080c","2512"
"10:46:37.6185579 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6185767 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080c","0.0000072","Desired Access: Query Value","2512"
"10:46:37.6185963 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080c\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDBE.DLL","2512"
"10:46:37.6186108 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080c","0.0000017","","2512"
"10:46:37.6186228 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 93, Name: 00000813","2512"
"10:46:37.6186351 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6186471 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000813","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6186646 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000813\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDBE.DLL","2512"
"10:46:37.6186787 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000813","0.0000017","","2512"
"10:46:37.6186902 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 94, Name: 00000816","2512"
"10:46:37.6187030 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6187149 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000816","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6187324 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000816\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDPO.DLL","2512"
"10:46:37.6187461 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000816","0.0000017","","2512"
"10:46:37.6187576 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 95, Name: 0000081a","2512"
"10:46:37.6187700 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6187819 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000081a","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6187998 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000081a\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDYCL.DLL","2512"
"10:46:37.6188135 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000081a","0.0000017","","2512"
"10:46:37.6188250 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 96, Name: 0000082c","2512"
"10:46:37.6188378 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6188493 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000082c","0.0000069","Desired Access: Query Value","2512"
"10:46:37.6188677 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000082c\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDAZE.DLL","2512"
"10:46:37.6188813 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000082c","0.0000013","","2512"
"10:46:37.6188928 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 97, Name: 0000083b","2512"
"10:46:37.6189052 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6189172 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000083b","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6189351 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000083b\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDFI1.DLL","2512"
"10:46:37.6189492 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000083b","0.0000012","","2512"
"10:46:37.6189607 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 98, Name: 00000843","2512"
"10:46:37.6189731 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6189850 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000843","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6190029 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000843\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDUZB.DLL","2512"
"10:46:37.6190166 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000843","0.0000013","","2512"
"10:46:37.6190277 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 99, Name: 00000850","2512"
"10:46:37.6190405 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6190524 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000850","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6190699 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000850\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: KBDMONMO.DLL","2512"
"10:46:37.6190840 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000850","0.0000013","","2512"
"10:46:37.6190964 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 100, Name: 0000085d","2512"
"10:46:37.6191087 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6191203 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085d","0.0000068","Desired Access: Query Value","2512"
"10:46:37.6191386 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085d\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDIULAT.DLL","2512"
"10:46:37.6191523 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085d","0.0000012","","2512"
"10:46:37.6191638 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 101, Name: 0000085f","2512"
"10:46:37.6191762 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6191881 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085f","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6192056 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085f\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDTZM.DLL","2512"
"10:46:37.6192197 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085f","0.0000013","","2512"
"10:46:37.6192308 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 102, Name: 00000c04","2512"
"10:46:37.6192436 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6192555 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c04","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6192734 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c04\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:37.6192875 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c04","0.0000013","","2512"
"10:46:37.6192990 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 103, Name: 00000c0c","2512"
"10:46:37.6193114 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6193234 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c0c","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6193408 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c0c\Layout File","0.0000035","Type: REG_SZ, Length: 20, Data: KBDFC.DLL","2512"
"10:46:37.6193575 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c0c","0.0000013","","2512"
"10:46:37.6193690 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 104, Name: 00000c1a","2512"
"10:46:37.6193818 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6193938 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c1a","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6194112 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c1a\Layout File","0.0000035","Type: REG_SZ, Length: 22, Data: KBDYCC.DLL","2512"
"10:46:37.6194253 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c1a","0.0000013","","2512"
"10:46:37.6194364 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 105, Name: 00000C51","2512"
"10:46:37.6194492 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6194607 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000C51","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6194782 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000C51\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDDZO.DLL","2512"
"10:46:37.6194919 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000C51","0.0000013","","2512"
"10:46:37.6195038 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 106, Name: 00001004","2512"
"10:46:37.6195162 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6195282 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001004","0.0000059","Desired Access: Query Value","2512"
"10:46:37.6195456 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001004\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:37.6195593 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001004","0.0000013","","2512"
"10:46:37.6195717 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 107, Name: 00001009","2512"
"10:46:37.6195840 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6195960 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001009","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6196135 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001009\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDCA.DLL","2512"
"10:46:37.6196271 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001009","0.0000017","","2512"
"10:46:37.6196387 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 108, Name: 0000100c","2512"
"10:46:37.6196510 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6196630 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000100c","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6196809 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000100c\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDSF.DLL","2512"
"10:46:37.6196946 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000100c","0.0000012","","2512"
"10:46:37.6197061 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 109, Name: 0000105f","2512"
"10:46:37.6197184 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6197300 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000105f","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6197479 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000105f\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDTIFI.DLL","2512"
"10:46:37.6197620 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000105f","0.0000012","","2512"
"10:46:37.6197735 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 110, Name: 00001404","2512"
"10:46:37.6197859 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6197978 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001404","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6198153 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001404\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:37.6198290 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001404","0.0000017","","2512"
"10:46:37.6198405 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 111, Name: 00001809","2512"
"10:46:37.6198528 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6198648 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001809","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6198823 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001809\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDIR.DLL","2512"
"10:46:37.6198964 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001809","0.0000012","","2512"
"10:46:37.6199083 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 112, Name: 0000201a","2512"
"10:46:37.6199207 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6199326 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000201a","0.0000069","Desired Access: Query Value","2512"
"10:46:37.6199506 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000201a\Layout File","0.0000029","Type: REG_SZ, Length: 22, Data: KBDBHC.DLL","2512"
"10:46:37.6199646 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000201a","0.0000013","","2512"
"10:46:37.6199762 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 113, Name: 00004009","2512"
"10:46:37.6199890 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6200009 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00004009","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6200184 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00004009\Layout File","0.0000034","Type: REG_SZ, Length: 24, Data: KBDINEN.DLL","2512"
"10:46:37.6200320 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00004009","0.0000013","","2512"
"10:46:37.6200436 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 114, Name: 00010401","2512"
"10:46:37.6200559 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6200679 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010401","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6200862 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010401\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDA2.DLL","2512"
"10:46:37.6200999 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010401","0.0000017","","2512"
"10:46:37.6201114 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 115, Name: 00010402","2512"
"10:46:37.6201242 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6201362 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010402","0.0000059","Desired Access: Query Value","2512"
"10:46:37.6201536 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010402\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:37.6201673 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010402","0.0000013","","2512"
"10:46:37.6201788 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 116, Name: 00010405","2512"
"10:46:37.6201912 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6202031 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010405","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6202262 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010405\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDCZ1.DLL","2512"
"10:46:37.6202407 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010405","0.0000013","","2512"
"10:46:37.6202522 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 117, Name: 00010407","2512"
"10:46:37.6202650 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6202770 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010407","0.0000068","Desired Access: Query Value","2512"
"10:46:37.6202953 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010407\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDGR1.DLL","2512"
"10:46:37.6203090 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010407","0.0000012","","2512"
"10:46:37.6203218 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000038","Index: 118, Name: 00010408","2512"
"10:46:37.6203354 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6203486 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010408","0.0000069","Desired Access: Query Value","2512"
"10:46:37.6203704 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010408\Layout File","0.0000043","Type: REG_SZ, Length: 26, Data: KBDHE220.DLL","2512"
"10:46:37.6203913 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010408","0.0000021","","2512"
"10:46:37.6204075 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000047","Index: 119, Name: 00010409","2512"
"10:46:37.6204250 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6204421 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010409","0.0000085","Desired Access: Query Value","2512"
"10:46:37.6204672 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010409\Layout File","0.0000035","Type: REG_SZ, Length: 20, Data: KBDDV.DLL","2512"
"10:46:37.6204818 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010409","0.0000017","","2512"
"10:46:37.6204941 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 120, Name: 0001040a","2512"
"10:46:37.6205069 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6205189 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040a","0.0000081","Desired Access: Query Value","2512"
"10:46:37.6205389 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040a\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDES.DLL","2512"
"10:46:37.6205530 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040a","0.0000013","","2512"
"10:46:37.6205701 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000038","Index: 121, Name: 0001040e","2512"
"10:46:37.6205837 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6205957 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040e","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6206136 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040e\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDHU1.DLL","2512"
"10:46:37.6206272 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040e","0.0000018","","2512"
"10:46:37.6206388 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 122, Name: 00010410","2512"
"10:46:37.6206546 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6206742 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010410","0.0000094","Desired Access: Query Value","2512"
"10:46:37.6207023 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010410\Layout File","0.0000039","Type: REG_SZ, Length: 26, Data: KBDIT142.DLL","2512"
"10:46:37.6207232 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010410","0.0000022","","2512"
"10:46:37.6207420 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000039","Index: 123, Name: 00010415","2512"
"10:46:37.6207608 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6207796 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010415","0.0000094","Desired Access: Query Value","2512"
"10:46:37.6208064 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010415\Layout File","0.0000043","Type: REG_SZ, Length: 20, Data: KBDPL.DLL","2512"
"10:46:37.6208274 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010415","0.0000021","","2512"
"10:46:37.6208453 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000042","Index: 124, Name: 00010416","2512"
"10:46:37.6208645 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6208837 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010416","0.0000085","Desired Access: Query Value","2512"
"10:46:37.6209106 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010416\Layout File","0.0000046","Type: REG_SZ, Length: 20, Data: KBDBR.DLL","2512"
"10:46:37.6209319 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010416","0.0000021","","2512"
"10:46:37.6209511 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000043","Index: 125, Name: 00010418","2512"
"10:46:37.6209703 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6209891 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010418","0.0000089","Desired Access: Query Value","2512"
"10:46:37.6210151 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010418\Layout File","0.0000043","Type: REG_SZ, Length: 24, Data: KBDROST.DLL","2512"
"10:46:37.6210364 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010418","0.0000022","","2512"
"10:46:37.6210539 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000043","Index: 126, Name: 00010419","2512"
"10:46:37.6210731 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6210919 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010419","0.0000090","Desired Access: Query Value","2512"
"10:46:37.6211192 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010419\Layout File","0.0000043","Type: REG_SZ, Length: 22, Data: KBDRU1.DLL","2512"
"10:46:37.6211397 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010419","0.0000025","","2512"
"10:46:37.6211572 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000042","Index: 127, Name: 0001041b","2512"
"10:46:37.6211764 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6211922 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041b","0.0000068","Desired Access: Query Value","2512"
"10:46:37.6212109 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041b\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDSL1.DLL","2512"
"10:46:37.6212250 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041b","0.0000013","","2512"
"10:46:37.6212365 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 128, Name: 0001041e","2512"
"10:46:37.6212493 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6212613 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041e","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6212792 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041e\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDTH1.DLL","2512"
"10:46:37.6212933 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041e","0.0000017","","2512"
"10:46:37.6213125 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 129, Name: 0001041f","2512"
"10:46:37.6213253 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6213394 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041f","0.0000068","Desired Access: Query Value","2512"
"10:46:37.6213577 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041f\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDTUF.DLL","2512"
"10:46:37.6213714 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041f","0.0000017","","2512"
"10:46:37.6213829 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 130, Name: 00010426","2512"
"10:46:37.6213957 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6214072 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010426","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6214251 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010426\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDLV1.DLL","2512"
"10:46:37.6214388 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010426","0.0000013","","2512"
"10:46:37.6214503 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 131, Name: 00010427","2512"
"10:46:37.6214622 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6214742 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010427","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6214921 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010427\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDLT1.DLL","2512"
"10:46:37.6215058 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010427","0.0000012","","2512"
"10:46:37.6215169 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 132, Name: 0001042b","2512"
"10:46:37.6215297 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6215416 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042b","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6215591 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042b\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: kbdarmw.dll","2512"
"10:46:37.6215727 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042b","0.0000018","","2512"
"10:46:37.6215843 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 133, Name: 0001042c","2512"
"10:46:37.6215971 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6216086 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042c","0.0000068","Desired Access: Query Value","2512"
"10:46:37.6216269 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042c\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDAZST.DLL","2512"
"10:46:37.6216406 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042c","0.0000013","","2512"
"10:46:37.6216521 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 134, Name: 0001042e","2512"
"10:46:37.6216645 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6216764 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042e","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6216943 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042e\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDSOREX.DLL","2512"
"10:46:37.6217080 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042e","0.0000017","","2512"
"10:46:37.6217195 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 135, Name: 0001042f","2512"
"10:46:37.6217319 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6217438 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042f","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6217618 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042f\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: KBDMACST.DLL","2512"
"10:46:37.6217754 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042f","0.0000017","","2512"
"10:46:37.6217874 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 136, Name: 00010437","2512"
"10:46:37.6217997 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6218117 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010437","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6218292 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010437\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: kbdgeoqw.dll","2512"
"10:46:37.6218433 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010437","0.0000012","","2512"
"10:46:37.6218543 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000035","Index: 137, Name: 00010439","2512"
"10:46:37.6218671 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6218787 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010439","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6218966 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010439\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDINHIN.DLL","2512"
"10:46:37.6219102 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010439","0.0000013","","2512"
"10:46:37.6219218 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 138, Name: 0001043a","2512"
"10:46:37.6219341 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6219465 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043a","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6219640 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043a\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: KBDMLT48.DLL","2512"
"10:46:37.6219781 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043a","0.0000017","","2512"
"10:46:37.6219913 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 139, Name: 0001043b","2512"
"10:46:37.6220037 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6220156 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043b","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6220331 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043b\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: KBDSMSNO.DLL","2512"
"10:46:37.6220472 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043b","0.0000013","","2512"
"10:46:37.6220587 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 140, Name: 00010444","2512"
"10:46:37.6220711 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6220830 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010444","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6221005 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010444\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDTT102.DLL","2512"
"10:46:37.6221185 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010444","0.0000017","","2512"
"10:46:37.6221368 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000047","Index: 141, Name: 00010445","2512"
"10:46:37.6221556 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6221748 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010445","0.0000098","Desired Access: Query Value","2512"
"10:46:37.6222029 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010445\Layout File","0.0000047","Type: REG_SZ, Length: 26, Data: KBDINBE1.DLL","2512"
"10:46:37.6222251 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010445","0.0000022","","2512"
"10:46:37.6222443 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000047","Index: 142, Name: 00010451","2512"
"10:46:37.6222631 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6222819 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010451","0.0000076","Desired Access: Query Value","2512"
"10:46:37.6223041 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010451\Layout File","0.0000038","Type: REG_SZ, Length: 26, Data: KBDTIPRD.DLL","2512"
"10:46:37.6223190 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010451","0.0000017","","2512"
"10:46:37.6223322 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 143, Name: 00010453","2512"
"10:46:37.6223450 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6223570 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010453","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6223749 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010453\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDKNI.DLL","2512"
"10:46:37.6223890 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010453","0.0000012","","2512"
"10:46:37.6224005 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 144, Name: 0001045a","2512"
"10:46:37.6224129 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6224248 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045a","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6224427 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045a\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDSYR2.DLL","2512"
"10:46:37.6224564 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045a","0.0000017","","2512"
"10:46:37.6224683 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 145, Name: 0001045b","2512"
"10:46:37.6224807 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6224922 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045b","0.0000068","Desired Access: Query Value","2512"
"10:46:37.6225101 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045b\Layout File","0.0000034","Type: REG_SZ, Length: 24, Data: KBDSW09.DLL","2512"
"10:46:37.6225238 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045b","0.0000017","","2512"
"10:46:37.6225353 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 146, Name: 0001045c","2512"
"10:46:37.6225477 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6225596 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045c","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6225775 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045c\Layout File","0.0000035","Type: REG_SZ, Length: 26, Data: KBDCHERP.DLL","2512"
"10:46:37.6225916 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045c","0.0000013","","2512"
"10:46:37.6226031 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 147, Name: 0001045d","2512"
"10:46:37.6226155 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6226275 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045d","0.0000059","Desired Access: Query Value","2512"
"10:46:37.6226450 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045d\Layout File","0.0000029","Type: REG_SZ, Length: 26, Data: KBDINUK2.DLL","2512"
"10:46:37.6226586 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045d","0.0000017","","2512"
"10:46:37.6226706 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 148, Name: 00010465","2512"
"10:46:37.6226829 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6226949 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010465","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6227124 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010465\Layout File","0.0000034","Type: REG_SZ, Length: 24, Data: KBDDIV2.DLL","2512"
"10:46:37.6227265 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010465","0.0000012","","2512"
"10:46:37.6227375 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000035","Index: 149, Name: 00010480","2512"
"10:46:37.6227503 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6227619 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010480","0.0000081","Desired Access: Query Value","2512"
"10:46:37.6227815 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010480\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDUGHR1.DLL","2512"
"10:46:37.6227951 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010480","0.0000018","","2512"
"10:46:37.6228067 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 150, Name: 0001080c","2512"
"10:46:37.6228203 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6228323 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001080c","0.0000068","Desired Access: Query Value","2512"
"10:46:37.6228515 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001080c\Layout File","0.0000038","Type: REG_SZ, Length: 24, Data: KBDBENE.DLL","2512"
"10:46:37.6228724 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001080c","0.0000021","","2512"
"10:46:37.6228899 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000047","Index: 151, Name: 0001083b","2512"
"10:46:37.6229095 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6229278 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001083b","0.0000094","Desired Access: Query Value","2512"
"10:46:37.6229556 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001083b\Layout File","0.0000042","Type: REG_SZ, Length: 22, Data: KBDFI1.DLL","2512"
"10:46:37.6229765 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001083b","0.0000021","","2512"
"10:46:37.6229944 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000043","Index: 152, Name: 00010850","2512"
"10:46:37.6230132 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6230328 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010850","0.0000090","Desired Access: Query Value","2512"
"10:46:37.6230601 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010850\Layout File","0.0000043","Type: REG_SZ, Length: 26, Data: KBDMONST.DLL","2512"
"10:46:37.6230814 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010850","0.0000022","","2512"
"10:46:37.6230994 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000038","Index: 153, Name: 00010c00","2512"
"10:46:37.6231181 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6231369 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010c00","0.0000090","Desired Access: Query Value","2512"
"10:46:37.6231638 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010c00\Layout File","0.0000043","Type: REG_SZ, Length: 24, Data: KBDMYAN.DLL","2512"
"10:46:37.6231847 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010c00","0.0000017","","2512"
"10:46:37.6232022 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000043","Index: 154, Name: 00011009","2512"
"10:46:37.6232218 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6232402 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011009","0.0000093","Desired Access: Query Value","2512"
"10:46:37.6232670 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011009\Layout File","0.0000043","Type: REG_SZ, Length: 22, Data: KBDCAN.DLL","2512"
"10:46:37.6232875 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011009","0.0000022","","2512"
"10:46:37.6233059 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000038","Index: 155, Name: 0001105f","2512"
"10:46:37.6233246 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6233464 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001105f","0.0000090","Desired Access: Query Value","2512"
"10:46:37.6233729 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001105f\Layout File","0.0000042","Type: REG_SZ, Length: 26, Data: KBDTIFI2.DLL","2512"
"10:46:37.6233933 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001105f","0.0000013","","2512"
"10:46:37.6234057 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 156, Name: 00011809","2512"
"10:46:37.6234185 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6234309 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011809","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6234492 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011809\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDGAE.DLL","2512"
"10:46:37.6234629 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011809","0.0000017","","2512"
"10:46:37.6234744 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 157, Name: 00020401","2512"
"10:46:37.6234872 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6234991 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020401","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6235171 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020401\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDA3.DLL","2512"
"10:46:37.6235311 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020401","0.0000013","","2512"
"10:46:37.6235427 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 158, Name: 00020402","2512"
"10:46:37.6235550 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6235670 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020402","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6235845 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020402\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDBGPH.DLL","2512"
"10:46:37.6235986 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020402","0.0000012","","2512"
"10:46:37.6236097 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 159, Name: 00020405","2512"
"10:46:37.6236225 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6236344 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020405","0.0000085","Desired Access: Query Value","2512"
"10:46:37.6236549 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020405\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDCZ2.DLL","2512"
"10:46:37.6236685 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020405","0.0000017","","2512"
"10:46:37.6236801 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 160, Name: 00020408","2512"
"10:46:37.6236924 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6237044 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020408","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6237219 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020408\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: KBDHE319.DLL","2512"
"10:46:37.6237359 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020408","0.0000013","","2512"
"10:46:37.6237470 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 161, Name: 00020409","2512"
"10:46:37.6237594 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6237714 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020409","0.0000059","Desired Access: Query Value","2512"
"10:46:37.6237889 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020409\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDUSX.DLL","2512"
"10:46:37.6238029 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020409","0.0000013","","2512"
"10:46:37.6238153 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 162, Name: 0002040d","2512"
"10:46:37.6238281 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6238401 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002040d","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6238648 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002040d\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: kbdhebl3.dll","2512"
"10:46:37.6238793 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002040d","0.0000013","","2512"
"10:46:37.6238908 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 163, Name: 00020418","2512"
"10:46:37.6239032 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6239151 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020418","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6239331 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020418\Layout File","0.0000034","Type: REG_SZ, Length: 24, Data: KBDROPR.DLL","2512"
"10:46:37.6239471 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020418","0.0000013","","2512"
"10:46:37.6239587 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 164, Name: 00020419","2512"
"10:46:37.6239715 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6239830 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020419","0.0000068","Desired Access: Query Value","2512"
"10:46:37.6240013 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020419\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDRUM.DLL","2512"
"10:46:37.6240150 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020419","0.0000017","","2512"
"10:46:37.6240265 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 165, Name: 0002041e","2512"
"10:46:37.6240393 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6240508 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002041e","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6240687 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002041e\Layout File","0.0000035","Type: REG_SZ, Length: 22, Data: KBDTH2.DLL","2512"
"10:46:37.6240824 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002041e","0.0000017","","2512"
"10:46:37.6240952 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 166, Name: 00020422","2512"
"10:46:37.6241076 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6241195 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020422","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6241379 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020422\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDUR1.DLL","2512"
"10:46:37.6241515 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020422","0.0000013","","2512"
"10:46:37.6241630 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000035","Index: 167, Name: 00020426","2512"
"10:46:37.6241758 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6241878 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020426","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6242053 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020426\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDLVST.DLL","2512"
"10:46:37.6242189 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020426","0.0000017","","2512"
"10:46:37.6242305 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 168, Name: 00020427","2512"
"10:46:37.6242428 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6242548 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020427","0.0000059","Desired Access: Query Value","2512"
"10:46:37.6242723 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020427\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDLT2.DLL","2512"
"10:46:37.6242859 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020427","0.0000017","","2512"
"10:46:37.6242974 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000035","Index: 169, Name: 0002042b","2512"
"10:46:37.6243102 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6243222 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042b","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6243414 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042b\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: kbdarmph.dll","2512"
"10:46:37.6243550 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042b","0.0000017","","2512"
"10:46:37.6243674 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 170, Name: 0002042e","2512"
"10:46:37.6243802 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6243922 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042e","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6244101 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042e\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDSORS1.DLL","2512"
"10:46:37.6244242 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042e","0.0000012","","2512"
"10:46:37.6244353 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 171, Name: 00020437","2512"
"10:46:37.6244481 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6244600 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020437","0.0000090","Desired Access: Query Value","2512"
"10:46:37.6244801 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020437\Layout File","0.0000029","Type: REG_SZ, Length: 26, Data: kbdgeoer.dll","2512"
"10:46:37.6244941 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020437","0.0000013","","2512"
"10:46:37.6245052 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 172, Name: 00020445","2512"
"10:46:37.6245176 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6245300 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020445","0.0000068","Desired Access: Query Value","2512"
"10:46:37.6245483 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020445\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: KBDINBE2.DLL","2512"
"10:46:37.6245624 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020445","0.0000013","","2512"
"10:46:37.6245739 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 173, Name: 00020449","2512"
"10:46:37.6245863 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6245982 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020449","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6246157 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020449\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: KBDTAM99.DLL","2512"
"10:46:37.6246298 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020449","0.0000013","","2512"
"10:46:37.6246409 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 174, Name: 0002083b","2512"
"10:46:37.6246537 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6246652 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002083b","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6246831 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002083b\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDSMSFI.DLL","2512"
"10:46:37.6246968 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002083b","0.0000013","","2512"
"10:46:37.6247083 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 175, Name: 00020c00","2512"
"10:46:37.6247207 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6247326 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020c00","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6247506 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020c00\Layout File","0.0000029","Type: REG_SZ, Length: 22, Data: KBDNTL.DLL","2512"
"10:46:37.6247642 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020c00","0.0000017","","2512"
"10:46:37.6247762 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 176, Name: 00030402","2512"
"10:46:37.6247890 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6248005 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030402","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6248184 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030402\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDBULG.DLL","2512"
"10:46:37.6248325 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030402","0.0000013","","2512"
"10:46:37.6248440 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 177, Name: 00030408","2512"
"10:46:37.6248564 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6248683 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030408","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6248862 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030408\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDHELA2.DLL","2512"
"10:46:37.6248999 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030408","0.0000017","","2512"
"10:46:37.6249123 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 178, Name: 00030409","2512"
"10:46:37.6249246 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6249366 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030409","0.0000068","Desired Access: Query Value","2512"
"10:46:37.6249549 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030409\Layout File","0.0000047","Type: REG_SZ, Length: 22, Data: KBDUSL.DLL","2512"
"10:46:37.6249703 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030409","0.0000017","","2512"
"10:46:37.6249818 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 179, Name: 0003041e","2512"
"10:46:37.6249942 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6250066 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003041e","0.0000072","Desired Access: Query Value","2512"
"10:46:37.6250253 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003041e\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDTH3.DLL","2512"
"10:46:37.6250390 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003041e","0.0000021","","2512"
"10:46:37.6250561 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000042","Index: 180, Name: 0003042b","2512"
"10:46:37.6250753 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6250940 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003042b","0.0000094","Desired Access: Query Value","2512"
"10:46:37.6251209 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003042b\Layout File","0.0000043","Type: REG_SZ, Length: 26, Data: kbdarmty.dll","2512"
"10:46:37.6251418 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003042b","0.0000021","","2512"
"10:46:37.6251602 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000038","Index: 181, Name: 00030437","2512"
"10:46:37.6251789 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6251973 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030437","0.0000085","Desired Access: Query Value","2512"
"10:46:37.6252237 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030437\Layout File","0.0000043","Type: REG_SZ, Length: 26, Data: kbdgeome.dll","2512"
"10:46:37.6252446 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030437","0.0000022","","2512"
"10:46:37.6252617 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000051","Index: 182, Name: 00030c00","2512"
"10:46:37.6252818 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6253001 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030c00","0.0000090","Desired Access: Query Value","2512"
"10:46:37.6253291 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030c00\Layout File","0.0000043","Type: REG_SZ, Length: 26, Data: KBDTAILE.DLL","2512"
"10:46:37.6253500 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030c00","0.0000022","","2512"
"10:46:37.6253679 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000043","Index: 183, Name: 00040402","2512"
"10:46:37.6253867 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6254059 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040402","0.0000094","Desired Access: Query Value","2512"
"10:46:37.6254328 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040402\Layout File","0.0000043","Type: REG_SZ, Length: 26, Data: KBDBGPH1.DLL","2512"
"10:46:37.6254541 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040402","0.0000017","","2512"
"10:46:37.6254712 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000043","Index: 184, Name: 00040408","2512"
"10:46:37.6254904 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6255096 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040408","0.0000094","Desired Access: Query Value","2512"
"10:46:37.6255369 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040408\Layout File","0.0000043","Type: REG_SZ, Length: 26, Data: KBDHELA3.DLL","2512"
"10:46:37.6255578 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040408","0.0000017","","2512"
"10:46:37.6255736 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 185, Name: 00040409","2512"
"10:46:37.6255868 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6255988 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040409","0.0000072","Desired Access: Query Value","2512"
"10:46:37.6256175 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040409\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDUSR.DLL","2512"
"10:46:37.6256312 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040409","0.0000013","","2512"
"10:46:37.6256427 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 186, Name: 00040437","2512"
"10:46:37.6256551 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6256670 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040437","0.0000069","Desired Access: Query Value","2512"
"10:46:37.6256854 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040437\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: kbdgeooa.dll","2512"
"10:46:37.6256990 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040437","0.0000017","","2512"
"10:46:37.6257106 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 187, Name: 00040c00","2512"
"10:46:37.6257229 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6257349 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040c00","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6257524 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040c00\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDOGHAM.DLL","2512"
"10:46:37.6257660 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040c00","0.0000013","","2512"
"10:46:37.6257775 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 188, Name: 00050408","2512"
"10:46:37.6257899 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6258019 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050408","0.0000068","Desired Access: Query Value","2512"
"10:46:37.6258202 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050408\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDGKL.DLL","2512"
"10:46:37.6258339 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050408","0.0000012","","2512"
"10:46:37.6258454 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 189, Name: 00050409","2512"
"10:46:37.6258578 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6258697 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050409","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6258872 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050409\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDUSA.DLL","2512"
"10:46:37.6259009 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050409","0.0000017","","2512"
"10:46:37.6259124 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 190, Name: 00050429","2512"
"10:46:37.6259247 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000018","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6259367 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050429","0.0000068","Desired Access: Query Value","2512"
"10:46:37.6259550 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050429\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: kbdfar.dll","2512"
"10:46:37.6259687 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050429","0.0000013","","2512"
"10:46:37.6259802 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 191, Name: 00060408","2512"
"10:46:37.6259926 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6260045 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00060408","0.0000069","Desired Access: Query Value","2512"
"10:46:37.6260276 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00060408\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDHEPT.DLL","2512"
"10:46:37.6260417 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00060408","0.0000017","","2512"
"10:46:37.6260536 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 192, Name: 00070c00","2512"
"10:46:37.6260660 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6260779 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00070c00","0.0000111","Desired Access: Query Value","2512"
"10:46:37.6261005 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00070c00\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: kbdlisub.dll","2512"
"10:46:37.6261146 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00070c00","0.0000017","","2512"
"10:46:37.6261261 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 193, Name: 00080c00","2512"
"10:46:37.6261385 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6261505 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00080c00","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6261684 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00080c00\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: kbdlisus.dll","2512"
"10:46:37.6261825 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00080c00","0.0000012","","2512"
"10:46:37.6261940 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 194, Name: 00090c00","2512"
"10:46:37.6262063 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6262183 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00090c00","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6262362 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00090c00\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: kbdnko.dll","2512"
"10:46:37.6262503 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00090c00","0.0000013","","2512"
"10:46:37.6262618 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 195, Name: 000a0c00","2512"
"10:46:37.6262742 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6262861 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000a0c00","0.0000069","Desired Access: Query Value","2512"
"10:46:37.6263045 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000a0c00\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: kbdphags.dll","2512"
"10:46:37.6263186 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000a0c00","0.0000012","","2512"
"10:46:37.6263314 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 196, Name: 000b0c00","2512"
"10:46:37.6263442 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6263565 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000b0c00","0.0000086","Desired Access: Query Value","2512"
"10:46:37.6263762 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000b0c00\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDBUG.DLL","2512"
"10:46:37.6263898 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000b0c00","0.0000017","","2512"
"10:46:37.6264018 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 197, Name: 000c0c00","2512"
"10:46:37.6264167 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6264291 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000c0c00","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6264474 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000c0c00\Layout File","0.0000034","Type: REG_SZ, Length: 24, Data: KBDGTHC.DLL","2512"
"10:46:37.6264615 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000c0c00","0.0000013","","2512"
"10:46:37.6264730 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 198, Name: 000d0c00","2512"
"10:46:37.6264858 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6264982 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000d0c00","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6265161 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000d0c00\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDOLCH.DLL","2512"
"10:46:37.6265302 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000d0c00","0.0000013","","2512"
"10:46:37.6265417 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 199, Name: 000e0c00","2512"
"10:46:37.6265545 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6265673 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000e0c00","0.0000077","Desired Access: Query Value","2512"
"10:46:37.6265865 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000e0c00\Layout File","0.0000039","Type: REG_SZ, Length: 22, Data: KBDOSM.DLL","2512"
"10:46:37.6266010 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000e0c00","0.0000017","","2512"
"10:46:37.6266138 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 200, Name: 000f0c00","2512"
"10:46:37.6266262 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6266381 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000f0c00","0.0000077","Desired Access: Query Value","2512"
"10:46:37.6266569 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000f0c00\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: KBDOLDIT.DLL","2512"
"10:46:37.6266706 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000f0c00","0.0000017","","2512"
"10:46:37.6266821 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 201, Name: 00100c00","2512"
"10:46:37.6266945 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6267064 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00100c00","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6267243 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00100c00\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDSORA.DLL","2512"
"10:46:37.6267380 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00100c00","0.0000017","","2512"
"10:46:37.6267495 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 202, Name: 00110c00","2512"
"10:46:37.6267619 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6267738 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00110c00","0.0000064","Desired Access: Query Value","2512"
"10:46:37.6267917 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00110c00\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDJAV.DLL","2512"
"10:46:37.6268050 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00110c00","0.0000017","","2512"
"10:46:37.6268165 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 203, Name: 00120c00","2512"
"10:46:37.6268289 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6268408 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00120c00","0.0000068","Desired Access: Query Value","2512"
"10:46:37.6268592 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00120c00\Layout File","0.0000034","Type: REG_SZ, Length: 26, Data: KBDFTHRK.DLL","2512"
"10:46:37.6268728 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00120c00","0.0000017","","2512"
"10:46:37.6268843 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 204, Name: 00130c00","2512"
"10:46:37.6268967 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6269086 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00130c00","0.0000069","Desired Access: Query Value","2512"
"10:46:37.6269270 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00130c00\Layout File","0.0000034","Type: REG_SZ, Length: 24, Data: KBDMYAN.DLL","2512"
"10:46:37.6269406 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00130c00","0.0000018","","2512"
"10:46:37.6269522 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 205, Length: 288","2512"
"10:46:37.6269667 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","","2512"
"10:46:37.6273788 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6274189 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000056","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","2512"
"10:46:37.6274386 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000081","","2512"
"10:46:37.6277483 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6277790 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000043","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","2512"
"10:46:37.6277948 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000064","","2512"
"10:46:37.6282091 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6282595 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000047","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:37.6282765 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000090","","2512"
"10:46:37.6283427 AM","firefox.exe","7384","CreateFile","C:\","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6283760 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000192","Filter: Windows, 1: Windows","2512"
"10:46:37.6284131 AM","firefox.exe","7384","CloseFile","C:\","0.0000064","","2512"
"10:46:37.6285641 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6285970 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000162","Filter: System32, 1: System32","2512"
"10:46:37.6286298 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000060","","2512"
"10:46:37.6287736 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6288056 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\DWrite.dll","0.0000166","Filter: DWrite.dll, 1: DWrite.dll","2512"
"10:46:37.6288376 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000060","","2512"
"10:46:37.6291064 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6291499 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000047","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:37.6291661 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000069","","2512"
"10:46:37.6292165 AM","firefox.exe","7384","CreateFile","C:\","0.0000119","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6292442 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000141","Filter: Windows, 1: Windows","2512"
"10:46:37.6292732 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:37.6294128 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6294439 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000149","Filter: System32, 1: System32","2512"
"10:46:37.6294738 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:37.6296124 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6296432 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\DWrite.dll","0.0000157","Filter: DWrite.dll, 1: DWrite.dll","2512"
"10:46:37.6296777 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000077","","2512"
"10:46:37.6299102 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000201","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6299687 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000047","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.6299952 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000042","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.6300135 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000030","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.6300434 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:37.6301658 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000086","","2512"
"10:46:37.6303681 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000209","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6304342 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000043","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.6304568 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.6304739 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000030","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.6305025 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:37.6306100 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000085","","2512"
"10:46:37.6309112 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6309462 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000043","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:37.6309628 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000056","","2512"
"10:46:37.6312393 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6312696 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000043","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:37.6312854 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000047","","2512"
"10:46:37.6314420 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000175","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6314957 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000043","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.6315179 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.6315341 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000030","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.6315610 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:37.6317185 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000038","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.6317372 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.6317522 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000025","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.6317778 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:37.6319395 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DWrite.dll","0.0001502","Offset: 0, Length: 524,288, Priority: Normal","2512"
"10:46:37.6595210 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000174","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6595564 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000145","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:37.6597138 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000273","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.6598623 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000124","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6598909 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000030","Information: DACL","2512"
"10:46:37.6599054 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000042","","2512"
"10:46:37.6600180 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.6601418 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000119","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6601661 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:37.6601780 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:37.6604225 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000154","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:37.6605479 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.6606525 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000115","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6606768 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000021","Information: DACL","2512"
"10:46:37.6606887 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000043","","2512"
"10:46:37.6608001 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.6608970 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000106","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6609196 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000017","Information: DACL","2512"
"10:46:37.6609307 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:37.6613659 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000157","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6613932 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000055","CreationTime: 3/20/2019 7:27:26 PM, LastAccessTime: 3/20/2019 7:42:46 PM, LastWriteTime: 1/10/2019 4:06:49 AM, ChangeTime: 3/20/2019 7:42:30 PM, AllocationSize: 28672, EndOfFile: 26225, FileAttributes: A","2512"
"10:46:37.6614081 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000051","","2512"
"10:46:37.6616871 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1405_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000188","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6617217 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1405_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000038","CreationTime: 4/25/2019 5:40:17 PM, LastAccessTime: 4/25/2019 5:40:17 PM, LastWriteTime: 4/3/2019 9:55:05 AM, ChangeTime: 4/25/2019 8:12:15 PM, AllocationSize: 28672, EndOfFile: 26417, FileAttributes: A","2512"
"10:46:37.6617396 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1405_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000060","","2512"
"10:46:37.6617878 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000043","","2512"
"10:46:37.6618036 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000039","","2512"
"10:46:37.6620042 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6620387 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","CreationTime: 3/20/2019 7:27:26 PM, LastAccessTime: 3/20/2019 7:42:46 PM, LastWriteTime: 1/10/2019 4:06:49 AM, ChangeTime: 3/20/2019 7:42:30 PM, AllocationSize: 28672, EndOfFile: 26225, FileAttributes: A","2512"
"10:46:37.6620511 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000043","","2512"
"10:46:37.6621740 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6622017 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.6622205 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.6622320 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.6622508 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.6623131 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000029","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:37.6623310 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000042","CreationTime: 3/20/2019 7:27:26 PM, LastAccessTime: 3/20/2019 7:42:46 PM, LastWriteTime: 1/10/2019 4:06:49 AM, ChangeTime: 3/20/2019 7:42:30 PM, FileAttributes: A, AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x200000006f2f0, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:37.6624445 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6624735 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000025","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.6624880 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.6624987 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.6625166 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.6625729 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000055","","2512"
"10:46:37.6627077 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6627359 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.6627538 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.6627645 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.6627824 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.6628157 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000051","","2512"
"10:46:37.6629625 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6629953 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.6630090 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.6630196 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.6630371 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.6630909 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000051","","2512"
"10:46:37.6634386 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000060","","2512"
"10:46:37.6634783 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","","2512"
"10:46:37.6637398 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6637761 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000034","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:37.6637885 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000042","","2512"
"10:46:37.6639847 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6640142 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000025","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:37.6640253 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000042","","2512"
"10:46:37.6642288 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6642565 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000026","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:37.6642668 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000042","","2512"
"10:46:37.6643018 AM","firefox.exe","7384","CreateFile","C:\","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6643227 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000128","Filter: Windows, 1: Windows","2512"
"10:46:37.6643466 AM","firefox.exe","7384","CloseFile","C:\","0.0000042","","2512"
"10:46:37.6644404 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6644622 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:37.6644835 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:37.6645770 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6645979 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\DWrite.dll","0.0000111","Filter: DWrite.dll, 1: DWrite.dll","2512"
"10:46:37.6646192 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.6648270 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6648492 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000025","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","2512"
"10:46:37.6648598 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000039","","2512"
"10:46:37.6648931 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6649115 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000089","Filter: Windows, 1: Windows","2512"
"10:46:37.6649311 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:37.6650258 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6650463 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:37.6650659 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:37.6652391 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6652588 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000025","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","2512"
"10:46:37.6652690 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000039","","2512"
"10:46:37.6653023 AM","firefox.exe","7384","CreateFile","C:\","0.0000072","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6653198 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:37.6653394 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:37.6654397 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6654691 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000132","Filter: System32, 1: System32","2512"
"10:46:37.6654973 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:37.6656598 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000167","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6656970 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000038","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.6657140 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.6657264 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000021","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.6657460 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.6657874 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000060","","2512"
"10:46:37.6659137 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6659419 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000030","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.6659564 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.6659666 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000021","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.6659850 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:37.6660229 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000052","","2512"
"10:46:37.6662205 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6662431 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:37.6662538 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000038","","2512"
"10:46:37.6664278 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6664483 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:37.6664586 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:37.6665601 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6665866 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000029","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.6666006 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.6666113 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000017","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.6666292 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.6667009 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000021","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.6667133 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.6667227 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000017","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.6667397 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.6667760 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\coloradapterclient.dll","0.0000188","Offset: 0, Length: 49,152, Priority: Normal","2512"
"10:46:37.6672718 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6672978 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000128","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:37.6674194 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000188","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.6675269 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6675517 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000021","Information: DACL","2512"
"10:46:37.6675641 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000038","","2512"
"10:46:37.6676682 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.6677697 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000107","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6677919 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000017","Information: DACL","2512"
"10:46:37.6678026 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:37.6680675 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000141","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:37.6681857 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000167","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.6682902 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000116","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6683141 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000017","Information: DACL","2512"
"10:46:37.6683257 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000038","","2512"
"10:46:37.6684336 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.6685347 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000103","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6685569 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000017","Information: DACL","2512"
"10:46:37.6685676 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:37.6689742 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6690015 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, AllocationSize: 294912, EndOfFile: 291839, FileAttributes: A","2512"
"10:46:37.6690147 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","","2512"
"10:46:37.6692225 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6692456 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:20:29 PM, ChangeTime: 3/20/2019 7:06:10 PM, AllocationSize: 454656, EndOfFile: 452785, FileAttributes: A","2512"
"10:46:37.6692571 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","","2512"
"10:46:37.6692904 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:37.6693049 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:37.6695067 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6695289 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, AllocationSize: 294912, EndOfFile: 291839, FileAttributes: A","2512"
"10:46:37.6695429 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","","2512"
"10:46:37.6696688 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6696961 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.6697132 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.6697243 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.6697422 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:37.6701266 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:37.6701488 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, FileAttributes: A, AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x300000006193f, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:37.6702845 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000153","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6703208 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000029","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.6703400 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.6703519 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.6703707 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.6704313 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000059","","2512"
"10:46:37.6705678 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000136","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6706024 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000029","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.6706177 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.6706284 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.6706467 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.6706821 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000052","","2512"
"10:46:37.6709074 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6709356 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.6709531 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.6709637 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.6709812 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.6712287 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000055","","2512"
"10:46:37.6752347 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000230","","2512"
"10:46:37.6753405 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","","2512"
"10:46:37.6758009 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6758269 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000034","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","2512"
"10:46:37.6758393 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000042","","2512"
"10:46:37.6760338 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6760547 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","2512"
"10:46:37.6760658 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000039","","2512"
"10:46:37.6762843 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6763039 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","2512"
"10:46:37.6763141 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000043","","2512"
"10:46:37.6763611 AM","firefox.exe","7384","CreateFile","C:\","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6763875 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000133","Filter: Windows, 1: Windows","2512"
"10:46:37.6764136 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.6765066 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6765292 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:37.6765505 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:37.6767592 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6767920 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","2512"
"10:46:37.6768031 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000043","","2512"
"10:46:37.6768368 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6768560 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:37.6768761 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:37.6769669 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6769870 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:37.6770066 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:37.6770984 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6771188 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\mscms.dll","0.0000111","Filter: mscms.dll, 1: mscms.dll","2512"
"10:46:37.6771406 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:37.6773326 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6773612 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","2512"
"10:46:37.6773719 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000042","","2512"
"10:46:37.6774051 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6774235 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:37.6774431 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.6775319 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6775519 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:37.6775720 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:37.6776628 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6776829 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\mscms.dll","0.0000107","Filter: mscms.dll, 1: mscms.dll","2512"
"10:46:37.6777034 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:37.6778190 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6778544 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000034","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.6778715 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.6778834 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000022","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.6779060 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000056","SyncType: SyncTypeOther","2512"
"10:46:37.6779777 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000064","","2512"
"10:46:37.6781736 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000183","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6782277 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000043","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.6782499 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.6782670 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000030","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.6782913 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.6783430 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000059","","2512"
"10:46:37.6785465 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6785704 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000025","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:37.6785810 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000039","","2512"
"10:46:37.6787585 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6787794 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:37.6787897 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:37.6788963 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6789326 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000026","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.6789471 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.6789582 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000021","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.6789761 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.6790602 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000025","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.6790726 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.6790824 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000017","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.6790994 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.6792782 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\mscms.dll","0.0001088","Offset: 0, Length: 524,288, Priority: Normal","2512"
"10:46:37.6840509 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6840825 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000141","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:37.6842152 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000196","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.6843261 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000120","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6843521 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000026","Information: DACL","2512"
"10:46:37.6843654 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000042","","2512"
"10:46:37.6844737 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.6845813 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000110","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6846043 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000017","Information: DACL","2512"
"10:46:37.6846154 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:37.6848454 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000140","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:37.6849695 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.6850813 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6851052 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000021","Information: DACL","2512"
"10:46:37.6851167 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000039","","2512"
"10:46:37.6852277 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.6853232 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000115","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6853471 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000022","Information: DACL","2512"
"10:46:37.6853582 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000039","","2512"
"10:46:37.6857443 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6857717 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, AllocationSize: 294912, EndOfFile: 291839, FileAttributes: A","2512"
"10:46:37.6857900 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000055","","2512"
"10:46:37.6860119 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6860358 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:20:29 PM, ChangeTime: 3/20/2019 7:06:10 PM, AllocationSize: 454656, EndOfFile: 452785, FileAttributes: A","2512"
"10:46:37.6860481 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","","2512"
"10:46:37.6860827 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:37.6860972 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:37.6863016 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6863246 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, AllocationSize: 294912, EndOfFile: 291839, FileAttributes: A","2512"
"10:46:37.6863361 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","","2512"
"10:46:37.6864488 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6864765 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.6864978 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.6865098 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.6865281 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.6868264 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:37.6868422 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, FileAttributes: A, AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x300000006193f, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:37.6869719 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000149","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6870039 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.6870235 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.6870350 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.6870529 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.6871114 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000060","","2512"
"10:46:37.6872902 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000204","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6873328 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.6873554 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.6873721 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.6874019 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:37.6874698 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000072","","2512"
"10:46:37.6876379 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6876682 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.6876818 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.6876921 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.6877096 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.6879570 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000056","","2512"
"10:46:37.6919737 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000111","","2512"
"10:46:37.6920594 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","","2512"
"10:46:37.6925019 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6925420 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000038","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","2512"
"10:46:37.6925557 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000042","","2512"
"10:46:37.6927511 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6927797 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000029","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","2512"
"10:46:37.6927912 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000038","","2512"
"10:46:37.6929926 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6930203 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","2512"
"10:46:37.6930310 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000042","","2512"
"10:46:37.6930668 AM","firefox.exe","7384","CreateFile","C:\","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6930886 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000128","Filter: Windows, 1: Windows","2512"
"10:46:37.6931133 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:37.6932140 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6932366 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:37.6932580 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:37.6933510 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.6933723 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\mscms.dll","0.0000111","Filter: mscms.dll, 1: mscms.dll","2512"
"10:46:37.6933936 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:37.6934990 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000022","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6935127 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Keyboard Layouts","0.0000077","Desired Access: Enumerate Sub Keys","2512"
"10:46:37.6935293 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000064","Desired Access: Enumerate Sub Keys","2512"
"10:46:37.6935464 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000034","Index: 0, Name: 00000401","2512"
"10:46:37.6935579 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6935698 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000401","0.0000043","Desired Access: Query Value","2512"
"10:46:37.6935984 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000401\Layout File","0.0000052","Type: REG_SZ, Length: 20, Data: KBDA1.DLL","2512"
"10:46:37.6936193 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000401","0.0000017","","2512"
"10:46:37.6936347 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000064","Index: 1, Name: 00000402","2512"
"10:46:37.6936513 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6936633 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000402","0.0000034","Desired Access: Query Value","2512"
"10:46:37.6937354 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000402\Layout File","0.0000866","Type: REG_SZ, Length: 20, Data: KBDBU.DLL","2512"
"10:46:37.6938459 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000402","0.0000017","","2512"
"10:46:37.6938621 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 2, Name: 00000404","2512"
"10:46:37.6938753 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6938890 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000404","0.0000038","Desired Access: Query Value","2512"
"10:46:37.6939026 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000404\Layout File","0.0000026","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:37.6939150 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000404","0.0000009","","2512"
"10:46:37.6939240 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 3, Name: 00000405","2512"
"10:46:37.6939334 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6939428 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000405","0.0000025","Desired Access: Query Value","2512"
"10:46:37.6939526 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000405\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDCZ.DLL","2512"
"10:46:37.6939628 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000405","0.0000009","","2512"
"10:46:37.6939709 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 4, Name: 00000406","2512"
"10:46:37.6939795 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6939880 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000406","0.0000025","Desired Access: Query Value","2512"
"10:46:37.6939974 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000406\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDDA.DLL","2512"
"10:46:37.6940072 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000406","0.0000008","","2512"
"10:46:37.6940153 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 5, Name: 00000407","2512"
"10:46:37.6940238 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6940319 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000407","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6940409 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000407\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDGR.DLL","2512"
"10:46:37.6940503 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000407","0.0000008","","2512"
"10:46:37.6940580 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 6, Name: 00000408","2512"
"10:46:37.6940661 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6940742 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000408","0.0000025","Desired Access: Query Value","2512"
"10:46:37.6940831 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000408\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDHE.DLL","2512"
"10:46:37.6940925 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000408","0.0000009","","2512"
"10:46:37.6941011 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000042","Index: 7, Name: 00000409","2512"
"10:46:37.6941121 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6941203 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000409","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6941292 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000409\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:37.6941386 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000409","0.0000009","","2512"
"10:46:37.6941463 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 8, Name: 0000040a","2512"
"10:46:37.6941544 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6941625 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040a","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6941715 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040a\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDSP.DLL","2512"
"10:46:37.6941808 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040a","0.0000009","","2512"
"10:46:37.6941889 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 9, Name: 0000040b","2512"
"10:46:37.6941971 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6942047 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040b","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6942137 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040b\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDFI.DLL","2512"
"10:46:37.6942227 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040b","0.0000008","","2512"
"10:46:37.6942303 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 10, Name: 0000040c","2512"
"10:46:37.6942384 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6942465 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040c","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6942555 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040c\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDFR.DLL","2512"
"10:46:37.6942645 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040c","0.0000012","","2512"
"10:46:37.6942721 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 11, Name: 0000040d","2512"
"10:46:37.6942807 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6942884 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040d","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6942973 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040d\Layout File","0.0000026","Type: REG_SZ, Length: 22, Data: KBDHEB.DLL","2512"
"10:46:37.6943071 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040d","0.0000009","","2512"
"10:46:37.6943148 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 12, Name: 0000040e","2512"
"10:46:37.6943233 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6943310 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040e","0.0000026","Desired Access: Query Value","2512"
"10:46:37.6943404 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040e\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDHU.DLL","2512"
"10:46:37.6943494 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040e","0.0000013","","2512"
"10:46:37.6943571 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 13, Name: 0000040f","2512"
"10:46:37.6943652 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6943745 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040f","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6943831 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040f\Layout File","0.0000025","Type: REG_SZ, Length: 20, Data: KBDIC.DLL","2512"
"10:46:37.6943929 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040f","0.0000008","","2512"
"10:46:37.6944006 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 14, Name: 00000410","2512"
"10:46:37.6944095 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6944181 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000410","0.0000030","Desired Access: Query Value","2512"
"10:46:37.6944287 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000410\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDIT.DLL","2512"
"10:46:37.6944381 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000410","0.0000009","","2512"
"10:46:37.6944458 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 15, Name: 00000411","2512"
"10:46:37.6944539 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6944620 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000411","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6944710 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000411\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDJPN.DLL","2512"
"10:46:37.6944804 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000411","0.0000008","","2512"
"10:46:37.6944876 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 16, Name: 00000412","2512"
"10:46:37.6944961 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6945038 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000412","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6945128 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000412\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDKOR.DLL","2512"
"10:46:37.6945222 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000412","0.0000008","","2512"
"10:46:37.6945307 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 17, Name: 00000413","2512"
"10:46:37.6945392 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6945469 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000413","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6945559 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000413\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDNE.DLL","2512"
"10:46:37.6945653 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000413","0.0000008","","2512"
"10:46:37.6945725 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 18, Name: 00000414","2512"
"10:46:37.6945811 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6945892 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000414","0.0000025","Desired Access: Query Value","2512"
"10:46:37.6945985 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000414\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDNO.DLL","2512"
"10:46:37.6946079 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000414","0.0000009","","2512"
"10:46:37.6946156 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 19, Name: 00000415","2512"
"10:46:37.6946237 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6946314 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000415","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6946404 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000415\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDPL1.DLL","2512"
"10:46:37.6946493 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000415","0.0000009","","2512"
"10:46:37.6946570 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 20, Name: 00000416","2512"
"10:46:37.6946655 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6946732 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000416","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6946822 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000416\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDBR.DLL","2512"
"10:46:37.6946911 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000416","0.0000013","","2512"
"10:46:37.6946988 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 21, Name: 00000418","2512"
"10:46:37.6947073 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6947150 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000418","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6947240 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000418\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDRO.DLL","2512"
"10:46:37.6947329 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000418","0.0000009","","2512"
"10:46:37.6947406 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 22, Name: 00000419","2512"
"10:46:37.6947487 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6947568 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000419","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6947658 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000419\Layout File","0.0000017","Type: REG_SZ, Length: 20, Data: KBDRU.DLL","2512"
"10:46:37.6947748 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000419","0.0000008","","2512"
"10:46:37.6947820 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 23, Name: 0000041a","2512"
"10:46:37.6947905 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6947982 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041a","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6948072 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041a\Layout File","0.0000017","Type: REG_SZ, Length: 20, Data: KBDCR.DLL","2512"
"10:46:37.6948161 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041a","0.0000009","","2512"
"10:46:37.6948238 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 24, Name: 0000041b","2512"
"10:46:37.6948319 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6948396 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041b","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6948486 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041b\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDSL.DLL","2512"
"10:46:37.6948575 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041b","0.0000013","","2512"
"10:46:37.6948652 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 25, Name: 0000041c","2512"
"10:46:37.6948737 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6948814 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041c","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6948900 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041c\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDAL.DLL","2512"
"10:46:37.6948989 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041c","0.0000009","","2512"
"10:46:37.6949066 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 26, Name: 0000041d","2512"
"10:46:37.6949147 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6949228 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041d","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6949313 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041d\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDSW.DLL","2512"
"10:46:37.6949407 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041d","0.0000009","","2512"
"10:46:37.6949480 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 27, Name: 0000041e","2512"
"10:46:37.6949565 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6949642 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041e","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6949732 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041e\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDTH0.DLL","2512"
"10:46:37.6949821 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041e","0.0000013","","2512"
"10:46:37.6949898 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 28, Name: 0000041f","2512"
"10:46:37.6949983 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6950060 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041f","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6950150 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041f\Layout File","0.0000017","Type: REG_SZ, Length: 22, Data: KBDTUQ.DLL","2512"
"10:46:37.6950239 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041f","0.0000009","","2512"
"10:46:37.6950312 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 29, Name: 00000420","2512"
"10:46:37.6950397 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6950478 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000420","0.0000017","Desired Access: Query Value","2512"
"10:46:37.6950564 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000420\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDURDU.DLL","2512"
"10:46:37.6950657 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000420","0.0000009","","2512"
"10:46:37.6950734 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 30, Name: 00000422","2512"
"10:46:37.6950815 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6950896 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000422","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6951012 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000422\Layout File","0.0000025","Type: REG_SZ, Length: 20, Data: KBDUR.DLL","2512"
"10:46:37.6951178 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000422","0.0000013","","2512"
"10:46:37.6951259 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 31, Name: 00000423","2512"
"10:46:37.6951344 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6951425 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000423","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6951511 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000423\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDBLR.DLL","2512"
"10:46:37.6951605 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000423","0.0000008","","2512"
"10:46:37.6951677 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 32, Name: 00000424","2512"
"10:46:37.6951763 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6951839 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000424","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6951929 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000424\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDCR.DLL","2512"
"10:46:37.6952019 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000424","0.0000008","","2512"
"10:46:37.6952104 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 33, Name: 00000425","2512"
"10:46:37.6952189 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6952266 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000425","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6952356 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000425\Layout File","0.0000017","Type: REG_SZ, Length: 22, Data: KBDEST.DLL","2512"
"10:46:37.6952445 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000425","0.0000009","","2512"
"10:46:37.6952522 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 34, Name: 00000426","2512"
"10:46:37.6952603 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6952680 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000426","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6952769 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000426\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDLV.DLL","2512"
"10:46:37.6952859 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000426","0.0000009","","2512"
"10:46:37.6952936 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 35, Name: 00000427","2512"
"10:46:37.6953021 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6953098 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000427","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6953188 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000427\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDLT.DLL","2512"
"10:46:37.6953281 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000427","0.0000009","","2512"
"10:46:37.6953354 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 36, Name: 00000428","2512"
"10:46:37.6953439 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6953516 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000428","0.0000026","Desired Access: Query Value","2512"
"10:46:37.6953606 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000428\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDTAJIK.DLL","2512"
"10:46:37.6953700 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000428","0.0000008","","2512"
"10:46:37.6953776 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 37, Name: 00000429","2512"
"10:46:37.6953866 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6953943 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000429","0.0000034","Desired Access: Query Value","2512"
"10:46:37.6954045 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000429\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDFA.DLL","2512"
"10:46:37.6954139 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000429","0.0000009","","2512"
"10:46:37.6954212 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 38, Name: 0000042a","2512"
"10:46:37.6954293 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6954374 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042a","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6954459 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042a\Layout File","0.0000026","Type: REG_SZ, Length: 24, Data: KBDVNTC.DLL","2512"
"10:46:37.6954553 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042a","0.0000008","","2512"
"10:46:37.6954630 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 39, Name: 0000042b","2512"
"10:46:37.6954715 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6954792 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042b","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6954877 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042b\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: kbdarme.dll","2512"
"10:46:37.6954971 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042b","0.0000009","","2512"
"10:46:37.6955044 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 40, Name: 0000042c","2512"
"10:46:37.6955129 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6955206 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042c","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6955295 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042c\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDAZEL.DLL","2512"
"10:46:37.6955389 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042c","0.0000009","","2512"
"10:46:37.6955466 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 41, Name: 0000042e","2512"
"10:46:37.6955551 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6955658 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042e","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6955748 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042e\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDSORST.DLL","2512"
"10:46:37.6955841 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042e","0.0000009","","2512"
"10:46:37.6955927 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 42, Name: 0000042f","2512"
"10:46:37.6956012 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6956089 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042f","0.0000043","Desired Access: Query Value","2512"
"10:46:37.6956238 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042f\Layout File","0.0000043","Type: REG_SZ, Length: 22, Data: KBDMAC.DLL","2512"
"10:46:37.6956396 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042f","0.0000013","","2512"
"10:46:37.6956524 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 43, Name: 00000432","2512"
"10:46:37.6956656 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6956789 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000432","0.0000034","Desired Access: Query Value","2512"
"10:46:37.6956921 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000432\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDNSO.DLL","2512"
"10:46:37.6957023 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000432","0.0000009","","2512"
"10:46:37.6957100 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 44, Name: 00000437","2512"
"10:46:37.6957181 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6957262 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000437","0.0000026","Desired Access: Query Value","2512"
"10:46:37.6957356 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000437\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: kbdgeo.dll","2512"
"10:46:37.6957446 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000437","0.0000008","","2512"
"10:46:37.6957523 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 45, Name: 00000438","2512"
"10:46:37.6957604 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6957685 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000438","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6957774 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000438\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDFO.DLL","2512"
"10:46:37.6957864 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000438","0.0000013","","2512"
"10:46:37.6957941 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 46, Name: 00000439","2512"
"10:46:37.6958022 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6958099 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000439","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6958188 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000439\Layout File","0.0000017","Type: REG_SZ, Length: 26, Data: KBDINDEV.DLL","2512"
"10:46:37.6958278 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000439","0.0000008","","2512"
"10:46:37.6958363 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 47, Name: 0000043a","2512"
"10:46:37.6958444 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6958521 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043a","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6958606 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043a\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDMLT47.DLL","2512"
"10:46:37.6958700 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043a","0.0000009","","2512"
"10:46:37.6958777 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 48, Name: 0000043b","2512"
"10:46:37.6958858 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6958939 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043b","0.0000017","Desired Access: Query Value","2512"
"10:46:37.6959024 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043b\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDNO1.DLL","2512"
"10:46:37.6959118 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043b","0.0000009","","2512"
"10:46:37.6959191 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 49, Name: 0000043f","2512"
"10:46:37.6959276 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6959353 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043f","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6959443 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043f\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDKAZ.DLL","2512"
"10:46:37.6959532 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043f","0.0000009","","2512"
"10:46:37.6959626 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 50, Name: 00000440","2512"
"10:46:37.6959707 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6959784 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000440","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6959873 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000440\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDKYR.DLL","2512"
"10:46:37.6959963 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000440","0.0000009","","2512"
"10:46:37.6960040 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 51, Name: 00000442","2512"
"10:46:37.6960125 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6960202 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000442","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6960287 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000442\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDTURME.DLL","2512"
"10:46:37.6960381 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000442","0.0000009","","2512"
"10:46:37.6960454 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 52, Name: 00000444","2512"
"10:46:37.6960535 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6960616 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000444","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6960701 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000444\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDTAT.DLL","2512"
"10:46:37.6960795 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000444","0.0000009","","2512"
"10:46:37.6960868 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 53, Name: 00000445","2512"
"10:46:37.6960983 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6961068 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000445","0.0000026","Desired Access: Query Value","2512"
"10:46:37.6961162 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000445\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINBEN.DLL","2512"
"10:46:37.6961252 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000445","0.0000008","","2512"
"10:46:37.6961328 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 54, Name: 00000446","2512"
"10:46:37.6961409 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6961486 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000446","0.0000026","Desired Access: Query Value","2512"
"10:46:37.6961576 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000446\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINPUN.DLL","2512"
"10:46:37.6961665 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000446","0.0000009","","2512"
"10:46:37.6961742 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 55, Name: 00000447","2512"
"10:46:37.6961823 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6961904 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000447","0.0000017","Desired Access: Query Value","2512"
"10:46:37.6961990 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000447\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINGUJ.DLL","2512"
"10:46:37.6962079 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000447","0.0000009","","2512"
"10:46:37.6962169 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 56, Name: 00000448","2512"
"10:46:37.6962250 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6962331 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000448","0.0000034","Desired Access: Query Value","2512"
"10:46:37.6962433 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000448\Layout File","0.0000018","Type: REG_SZ, Length: 26, Data: KBDINORI.DLL","2512"
"10:46:37.6962523 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000448","0.0000009","","2512"
"10:46:37.6962600 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 57, Name: 00000449","2512"
"10:46:37.6962681 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6962758 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000449","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6962847 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000449\Layout File","0.0000017","Type: REG_SZ, Length: 26, Data: KBDINTAM.DLL","2512"
"10:46:37.6962937 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000449","0.0000008","","2512"
"10:46:37.6963014 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 58, Name: 0000044a","2512"
"10:46:37.6963095 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6963172 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044a","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6963261 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044a\Layout File","0.0000017","Type: REG_SZ, Length: 26, Data: KBDINTEL.DLL","2512"
"10:46:37.6963351 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044a","0.0000008","","2512"
"10:46:37.6963423 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 59, Name: 0000044b","2512"
"10:46:37.6963509 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6963585 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044b","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6963675 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044b\Layout File","0.0000017","Type: REG_SZ, Length: 26, Data: KBDINKAN.DLL","2512"
"10:46:37.6963765 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044b","0.0000008","","2512"
"10:46:37.6963837 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 60, Name: 0000044c","2512"
"10:46:37.6963923 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6963999 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044c","0.0000026","Desired Access: Query Value","2512"
"10:46:37.6964089 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044c\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINMAL.DLL","2512"
"10:46:37.6964183 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044c","0.0000008","","2512"
"10:46:37.6964255 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 61, Name: 0000044d","2512"
"10:46:37.6964341 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6964417 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044d","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6964503 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044d\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINASA.DLL","2512"
"10:46:37.6964597 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044d","0.0000008","","2512"
"10:46:37.6964669 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 62, Name: 0000044e","2512"
"10:46:37.6964750 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6964831 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044e","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6964917 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044e\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINMAR.DLL","2512"
"10:46:37.6965006 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044e","0.0000009","","2512"
"10:46:37.6965087 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 63, Name: 00000450","2512"
"10:46:37.6965168 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6965249 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000450","0.0000026","Desired Access: Query Value","2512"
"10:46:37.6965339 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000450\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDMON.DLL","2512"
"10:46:37.6965433 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000450","0.0000008","","2512"
"10:46:37.6965514 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 64, Name: 00000451","2512"
"10:46:37.6965595 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6965676 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000451","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6965761 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000451\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDTIPRC.DLL","2512"
"10:46:37.6965855 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000451","0.0000009","","2512"
"10:46:37.6965945 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 65, Name: 00000452","2512"
"10:46:37.6966030 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6966111 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000452","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6966197 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000452\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDUKX.DLL","2512"
"10:46:37.6966291 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000452","0.0000008","","2512"
"10:46:37.6966363 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 66, Name: 00000453","2512"
"10:46:37.6966448 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6966525 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000453","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6966611 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000453\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDKHMR.DLL","2512"
"10:46:37.6966704 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000453","0.0000009","","2512"
"10:46:37.6966777 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 67, Name: 00000454","2512"
"10:46:37.6966862 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6966939 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000454","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6967029 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000454\Layout File","0.0000017","Type: REG_SZ, Length: 22, Data: KBDLAO.DLL","2512"
"10:46:37.6967118 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000454","0.0000009","","2512"
"10:46:37.6967191 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 68, Name: 0000045a","2512"
"10:46:37.6967276 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6967353 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045a","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6967438 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045a\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDSYR1.DLL","2512"
"10:46:37.6967532 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045a","0.0000009","","2512"
"10:46:37.6967609 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 69, Name: 0000045b","2512"
"10:46:37.6967690 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6967767 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045b","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6967856 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045b\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDSN1.DLL","2512"
"10:46:37.6967946 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045b","0.0000009","","2512"
"10:46:37.6968023 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 70, Name: 0000045c","2512"
"10:46:37.6968104 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6968181 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045c","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6968270 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045c\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDCHER.DLL","2512"
"10:46:37.6968360 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045c","0.0000008","","2512"
"10:46:37.6968437 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 71, Name: 00000461","2512"
"10:46:37.6968526 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6968607 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000461","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6968693 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000461\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDNEPR.DLL","2512"
"10:46:37.6968787 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000461","0.0000012","","2512"
"10:46:37.6968868 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 72, Name: 00000463","2512"
"10:46:37.6968970 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6969047 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000463","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6969136 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000463\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDPASH.DLL","2512"
"10:46:37.6969230 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000463","0.0000009","","2512"
"10:46:37.6969303 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 73, Name: 00000465","2512"
"10:46:37.6969388 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6969465 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000465","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6969555 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000465\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDDIV1.DLL","2512"
"10:46:37.6969644 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000465","0.0000009","","2512"
"10:46:37.6969721 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 74, Name: 00000468","2512"
"10:46:37.6969802 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6969883 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000468","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6969968 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000468\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDHAU.DLL","2512"
"10:46:37.6970058 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000468","0.0000013","","2512"
"10:46:37.6970135 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 75, Name: 0000046a","2512"
"10:46:37.6970216 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6970297 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046a","0.0000043","Desired Access: Query Value","2512"
"10:46:37.6970412 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046a\Layout File","0.0000017","Type: REG_SZ, Length: 22, Data: KBDYBA.DLL","2512"
"10:46:37.6970506 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046a","0.0000009","","2512"
"10:46:37.6970579 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 76, Name: 0000046c","2512"
"10:46:37.6970668 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6970745 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046c","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6970835 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046c\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDNSO.DLL","2512"
"10:46:37.6970954 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046c","0.0000013","","2512"
"10:46:37.6971039 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 77, Name: 0000046d","2512"
"10:46:37.6971125 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6971201 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046d","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6971291 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046d\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDBASH.DLL","2512"
"10:46:37.6971381 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046d","0.0000008","","2512"
"10:46:37.6971457 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000018","Index: 78, Name: 0000046e","2512"
"10:46:37.6971539 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6971615 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046e","0.0000026","Desired Access: Query Value","2512"
"10:46:37.6971709 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046e\Layout File","0.0000017","Type: REG_SZ, Length: 20, Data: KBDSF.DLL","2512"
"10:46:37.6971799 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046e","0.0000008","","2512"
"10:46:37.6971880 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 79, Name: 0000046f","2512"
"10:46:37.6971961 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6972042 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046f","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6972127 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046f\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDGRLND.DLL","2512"
"10:46:37.6972230 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046f","0.0000013","","2512"
"10:46:37.6972336 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 80, Name: 00000470","2512"
"10:46:37.6972447 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6972550 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000470","0.0000034","Desired Access: Query Value","2512"
"10:46:37.6972673 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000470\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDIBO.DLL","2512"
"10:46:37.6972810 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000470","0.0000009","","2512"
"10:46:37.6972891 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 81, Name: 00000474","2512"
"10:46:37.6972976 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6973057 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000474","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6973151 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000474\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDGN.DLL","2512"
"10:46:37.6973241 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000474","0.0000013","","2512"
"10:46:37.6973318 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 82, Name: 00000475","2512"
"10:46:37.6973403 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6973484 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000475","0.0000026","Desired Access: Query Value","2512"
"10:46:37.6973574 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000475\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDHAW.DLL","2512"
"10:46:37.6973672 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000475","0.0000008","","2512"
"10:46:37.6973753 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 83, Name: 00000480","2512"
"10:46:37.6973834 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6973915 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000480","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6974000 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000480\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDUGHR.DLL","2512"
"10:46:37.6974094 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000480","0.0000009","","2512"
"10:46:37.6974171 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 84, Name: 00000481","2512"
"10:46:37.6974252 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6974333 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000481","0.0000017","Desired Access: Query Value","2512"
"10:46:37.6974419 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000481\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDMAORI.DLL","2512"
"10:46:37.6974512 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000481","0.0000009","","2512"
"10:46:37.6974593 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 85, Name: 00000485","2512"
"10:46:37.6974675 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6974756 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000485","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6974845 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000485\Layout File","0.0000017","Type: REG_SZ, Length: 22, Data: KBDYAK.DLL","2512"
"10:46:37.6974935 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000485","0.0000008","","2512"
"10:46:37.6975012 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 86, Name: 00000488","2512"
"10:46:37.6975093 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6975169 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000488","0.0000026","Desired Access: Query Value","2512"
"10:46:37.6975259 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000488\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDWOL.DLL","2512"
"10:46:37.6975349 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000488","0.0000012","","2512"
"10:46:37.6975434 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 87, Name: 00000492","2512"
"10:46:37.6975515 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6975592 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000492","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6975681 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000492\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDKURD.DLL","2512"
"10:46:37.6975775 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000492","0.0000009","","2512"
"10:46:37.6975848 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 88, Name: 00000804","2512"
"10:46:37.6975933 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6976010 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000804","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6976100 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000804\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:37.6976189 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000804","0.0000009","","2512"
"10:46:37.6976266 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 89, Name: 00000807","2512"
"10:46:37.6976347 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6976428 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000807","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6976513 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000807\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDSG.DLL","2512"
"10:46:37.6976603 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000807","0.0000009","","2512"
"10:46:37.6976680 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 90, Name: 00000809","2512"
"10:46:37.6976761 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6976842 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000809","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6976927 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000809\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDUK.DLL","2512"
"10:46:37.6977017 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000809","0.0000008","","2512"
"10:46:37.6977094 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 91, Name: 0000080a","2512"
"10:46:37.6977175 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6977256 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080a","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6977341 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080a\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDLA.DLL","2512"
"10:46:37.6977435 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080a","0.0000009","","2512"
"10:46:37.6977508 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 92, Name: 0000080c","2512"
"10:46:37.6977589 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6977670 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080c","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6977759 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080c\Layout File","0.0000017","Type: REG_SZ, Length: 20, Data: KBDBE.DLL","2512"
"10:46:37.6977849 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080c","0.0000008","","2512"
"10:46:37.6977921 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 93, Name: 00000813","2512"
"10:46:37.6978007 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6978084 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000813","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6978169 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000813\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDBE.DLL","2512"
"10:46:37.6978263 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000813","0.0000008","","2512"
"10:46:37.6978335 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 94, Name: 00000816","2512"
"10:46:37.6978421 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6978497 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000816","0.0000030","Desired Access: Query Value","2512"
"10:46:37.6978596 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000816\Layout File","0.0000029","Type: REG_SZ, Length: 20, Data: KBDPO.DLL","2512"
"10:46:37.6978694 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000816","0.0000008","","2512"
"10:46:37.6978771 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 95, Name: 0000081a","2512"
"10:46:37.6978856 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6978933 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000081a","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6979022 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000081a\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDYCL.DLL","2512"
"10:46:37.6979112 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000081a","0.0000008","","2512"
"10:46:37.6979189 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 96, Name: 0000082c","2512"
"10:46:37.6979270 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6979351 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000082c","0.0000017","Desired Access: Query Value","2512"
"10:46:37.6979436 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000082c\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDAZE.DLL","2512"
"10:46:37.6979526 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000082c","0.0000008","","2512"
"10:46:37.6979603 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 97, Name: 0000083b","2512"
"10:46:37.6979684 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6979760 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000083b","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6979850 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000083b\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDFI1.DLL","2512"
"10:46:37.6979940 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000083b","0.0000008","","2512"
"10:46:37.6980016 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 98, Name: 00000843","2512"
"10:46:37.6980097 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6980179 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000843","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6980264 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000843\Layout File","0.0000025","Type: REG_SZ, Length: 22, Data: KBDUZB.DLL","2512"
"10:46:37.6980358 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000843","0.0000008","","2512"
"10:46:37.6980435 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 99, Name: 00000850","2512"
"10:46:37.6980516 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6980597 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000850","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6980686 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000850\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDMONMO.DLL","2512"
"10:46:37.6980780 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000850","0.0000009","","2512"
"10:46:37.6980861 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 100, Name: 0000085d","2512"
"10:46:37.6980989 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000167","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6981348 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085d","0.0000034","Desired Access: Query Value","2512"
"10:46:37.6981467 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085d\Layout File","0.0000026","Type: REG_SZ, Length: 26, Data: KBDIULAT.DLL","2512"
"10:46:37.6981574 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085d","0.0000008","","2512"
"10:46:37.6981663 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 101, Name: 0000085f","2512"
"10:46:37.6981753 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6981830 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085f","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6981919 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085f\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDTZM.DLL","2512"
"10:46:37.6982013 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085f","0.0000009","","2512"
"10:46:37.6982086 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 102, Name: 00000c04","2512"
"10:46:37.6982167 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6982244 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c04","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6982333 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c04\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:37.6982427 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c04","0.0000009","","2512"
"10:46:37.6982500 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 103, Name: 00000c0c","2512"
"10:46:37.6982581 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6982657 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c0c","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6982743 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c0c\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDFC.DLL","2512"
"10:46:37.6982837 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c0c","0.0000008","","2512"
"10:46:37.6982909 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 104, Name: 00000c1a","2512"
"10:46:37.6982990 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6983067 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c1a","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6983157 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c1a\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDYCC.DLL","2512"
"10:46:37.6983246 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c1a","0.0000009","","2512"
"10:46:37.6983319 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 105, Name: 00000C51","2512"
"10:46:37.6983404 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6983481 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000C51","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6983571 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000C51\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDDZO.DLL","2512"
"10:46:37.6983660 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000C51","0.0000009","","2512"
"10:46:37.6983737 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 106, Name: 00001004","2512"
"10:46:37.6983818 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6983895 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001004","0.0000017","Desired Access: Query Value","2512"
"10:46:37.6983980 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001004\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:37.6984070 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001004","0.0000008","","2512"
"10:46:37.6984155 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 107, Name: 00001009","2512"
"10:46:37.6984236 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6984313 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001009","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6984398 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001009\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDCA.DLL","2512"
"10:46:37.6984488 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001009","0.0000008","","2512"
"10:46:37.6984565 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 108, Name: 0000100c","2512"
"10:46:37.6984641 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6984723 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000100c","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6984808 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000100c\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDSF.DLL","2512"
"10:46:37.6984897 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000100c","0.0000009","","2512"
"10:46:37.6984970 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 109, Name: 0000105f","2512"
"10:46:37.6985051 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6985128 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000105f","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6985217 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000105f\Layout File","0.0000018","Type: REG_SZ, Length: 24, Data: KBDTIFI.DLL","2512"
"10:46:37.6985307 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000105f","0.0000009","","2512"
"10:46:37.6985380 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 110, Name: 00001404","2512"
"10:46:37.6985461 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6985537 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001404","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6985627 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001404\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:37.6985717 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001404","0.0000008","","2512"
"10:46:37.6985793 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000018","Index: 111, Name: 00001809","2512"
"10:46:37.6985875 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6985951 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001809","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6986037 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001809\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDIR.DLL","2512"
"10:46:37.6986126 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001809","0.0000009","","2512"
"10:46:37.6986207 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 112, Name: 0000201a","2512"
"10:46:37.6986288 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6986365 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000201a","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6986451 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000201a\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDBHC.DLL","2512"
"10:46:37.6986540 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000201a","0.0000009","","2512"
"10:46:37.6986617 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 113, Name: 00004009","2512"
"10:46:37.6986698 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6986775 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00004009","0.0000060","Desired Access: Query Value","2512"
"10:46:37.6986907 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00004009\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDINEN.DLL","2512"
"10:46:37.6986997 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00004009","0.0000008","","2512"
"10:46:37.6987073 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 114, Name: 00010401","2512"
"10:46:37.6987155 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6987236 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010401","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6987321 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010401\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDA2.DLL","2512"
"10:46:37.6987411 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010401","0.0000008","","2512"
"10:46:37.6987487 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 115, Name: 00010402","2512"
"10:46:37.6987568 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6987649 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010402","0.0000018","Desired Access: Query Value","2512"
"10:46:37.6987731 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010402\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:37.6987820 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010402","0.0000013","","2512"
"10:46:37.6987897 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 116, Name: 00010405","2512"
"10:46:37.6987978 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6988055 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010405","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6988144 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010405\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDCZ1.DLL","2512"
"10:46:37.6988234 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010405","0.0000009","","2512"
"10:46:37.6988307 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 117, Name: 00010407","2512"
"10:46:37.6988388 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6988469 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010407","0.0000017","Desired Access: Query Value","2512"
"10:46:37.6988554 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010407\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDGR1.DLL","2512"
"10:46:37.6988644 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010407","0.0000008","","2512"
"10:46:37.6988716 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 118, Name: 00010408","2512"
"10:46:37.6988797 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6988878 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010408","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6988964 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010408\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDHE220.DLL","2512"
"10:46:37.6989053 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010408","0.0000009","","2512"
"10:46:37.6989134 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 119, Name: 00010409","2512"
"10:46:37.6989215 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6989296 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010409","0.0000017","Desired Access: Query Value","2512"
"10:46:37.6989382 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010409\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDDV.DLL","2512"
"10:46:37.6989471 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010409","0.0000009","","2512"
"10:46:37.6989544 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 120, Name: 0001040a","2512"
"10:46:37.6989625 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6989702 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040a","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6989787 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040a\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDES.DLL","2512"
"10:46:37.6989877 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040a","0.0000008","","2512"
"10:46:37.6989953 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000018","Index: 121, Name: 0001040e","2512"
"10:46:37.6990035 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6990111 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040e","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6990201 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040e\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDHU1.DLL","2512"
"10:46:37.6990291 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040e","0.0000008","","2512"
"10:46:37.6990363 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 122, Name: 00010410","2512"
"10:46:37.6990448 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6990525 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010410","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6990611 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010410\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDIT142.DLL","2512"
"10:46:37.6990700 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010410","0.0000013","","2512"
"10:46:37.6990777 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 123, Name: 00010415","2512"
"10:46:37.6990896 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6990977 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010415","0.0000026","Desired Access: Query Value","2512"
"10:46:37.6991067 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010415\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDPL.DLL","2512"
"10:46:37.6991161 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010415","0.0000008","","2512"
"10:46:37.6991233 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 124, Name: 00010416","2512"
"10:46:37.6991315 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6991396 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010416","0.0000017","Desired Access: Query Value","2512"
"10:46:37.6991481 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010416\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDBR.DLL","2512"
"10:46:37.6991571 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010416","0.0000008","","2512"
"10:46:37.6991652 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 125, Name: 00010418","2512"
"10:46:37.6991737 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6991814 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010418","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6991899 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010418\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDROST.DLL","2512"
"10:46:37.6991989 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010418","0.0000008","","2512"
"10:46:37.6992066 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 126, Name: 00010419","2512"
"10:46:37.6992147 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6992228 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010419","0.0000017","Desired Access: Query Value","2512"
"10:46:37.6992313 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010419\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDRU1.DLL","2512"
"10:46:37.6992403 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010419","0.0000008","","2512"
"10:46:37.6992479 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 127, Name: 0001041b","2512"
"10:46:37.6992560 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6992637 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041b","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6992727 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041b\Layout File","0.0000017","Type: REG_SZ, Length: 22, Data: KBDSL1.DLL","2512"
"10:46:37.6992816 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041b","0.0000009","","2512"
"10:46:37.6992889 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 128, Name: 0001041e","2512"
"10:46:37.6992974 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6993051 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041e","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6993136 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041e\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDTH1.DLL","2512"
"10:46:37.6993230 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041e","0.0000017","","2512"
"10:46:37.6993367 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 129, Name: 0001041f","2512"
"10:46:37.6993452 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6993529 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041f","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6993619 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041f\Layout File","0.0000042","Type: REG_SZ, Length: 22, Data: KBDTUF.DLL","2512"
"10:46:37.6993747 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041f","0.0000008","","2512"
"10:46:37.6993823 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 130, Name: 00010426","2512"
"10:46:37.6993904 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6993986 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010426","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6994071 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010426\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDLV1.DLL","2512"
"10:46:37.6994186 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010426","0.0000009","","2512"
"10:46:37.6994263 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 131, Name: 00010427","2512"
"10:46:37.6994344 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6994425 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010427","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6994510 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010427\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDLT1.DLL","2512"
"10:46:37.6994600 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010427","0.0000008","","2512"
"10:46:37.6994677 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 132, Name: 0001042b","2512"
"10:46:37.6994758 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6994835 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042b","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6994920 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042b\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: kbdarmw.dll","2512"
"10:46:37.6995014 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042b","0.0000008","","2512"
"10:46:37.6995086 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 133, Name: 0001042c","2512"
"10:46:37.6995176 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6995253 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042c","0.0000038","Desired Access: Query Value","2512"
"10:46:37.6995368 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042c\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDAZST.DLL","2512"
"10:46:37.6995462 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042c","0.0000008","","2512"
"10:46:37.6995539 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 134, Name: 0001042e","2512"
"10:46:37.6995620 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6995696 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042e","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6995782 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042e\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDSOREX.DLL","2512"
"10:46:37.6995876 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042e","0.0000008","","2512"
"10:46:37.6995952 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 135, Name: 0001042f","2512"
"10:46:37.6996034 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6996110 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042f","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6996196 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042f\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDMACST.DLL","2512"
"10:46:37.6996290 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042f","0.0000008","","2512"
"10:46:37.6996362 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 136, Name: 00010437","2512"
"10:46:37.6996443 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6996524 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010437","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6996610 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010437\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: kbdgeoqw.dll","2512"
"10:46:37.6996703 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010437","0.0000009","","2512"
"10:46:37.6996776 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 137, Name: 00010439","2512"
"10:46:37.6996857 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6996938 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010439","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6997023 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010439\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDINHIN.DLL","2512"
"10:46:37.6997117 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010439","0.0000009","","2512"
"10:46:37.6997190 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 138, Name: 0001043a","2512"
"10:46:37.6997271 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6997348 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043a","0.0000025","Desired Access: Query Value","2512"
"10:46:37.6997437 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043a\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDMLT48.DLL","2512"
"10:46:37.6997527 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043a","0.0000008","","2512"
"10:46:37.6997604 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 139, Name: 0001043b","2512"
"10:46:37.6997685 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6997762 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043b","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6997851 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043b\Layout File","0.0000017","Type: REG_SZ, Length: 26, Data: KBDSMSNO.DLL","2512"
"10:46:37.6997941 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043b","0.0000008","","2512"
"10:46:37.6998013 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 140, Name: 00010444","2512"
"10:46:37.6998094 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6998175 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010444","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6998261 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010444\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDTT102.DLL","2512"
"10:46:37.6998350 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010444","0.0000009","","2512"
"10:46:37.6998431 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 141, Name: 00010445","2512"
"10:46:37.6998512 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6998589 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010445","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6998679 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010445\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINBE1.DLL","2512"
"10:46:37.6998768 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010445","0.0000009","","2512"
"10:46:37.6998845 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 142, Name: 00010451","2512"
"10:46:37.6998926 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6999007 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010451","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6999093 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010451\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDTIPRD.DLL","2512"
"10:46:37.6999182 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010451","0.0000009","","2512"
"10:46:37.6999268 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 143, Name: 00010453","2512"
"10:46:37.6999349 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6999426 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010453","0.0000021","Desired Access: Query Value","2512"
"10:46:37.6999511 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010453\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDKNI.DLL","2512"
"10:46:37.6999605 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010453","0.0000008","","2512"
"10:46:37.6999677 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 144, Name: 0001045a","2512"
"10:46:37.6999758 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.6999839 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045a","0.0000022","Desired Access: Query Value","2512"
"10:46:37.6999925 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045a\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDSYR2.DLL","2512"
"10:46:37.7000014 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045a","0.0000009","","2512"
"10:46:37.7000091 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 145, Name: 0001045b","2512"
"10:46:37.7000172 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7000249 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045b","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7000339 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045b\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDSW09.DLL","2512"
"10:46:37.7000428 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045b","0.0000009","","2512"
"10:46:37.7000501 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 146, Name: 0001045c","2512"
"10:46:37.7000582 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7000663 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045c","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7000748 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045c\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDCHERP.DLL","2512"
"10:46:37.7000893 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045c","0.0000013","","2512"
"10:46:37.7000974 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 147, Name: 0001045d","2512"
"10:46:37.7001060 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7001136 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045d","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7001226 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045d\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINUK2.DLL","2512"
"10:46:37.7001320 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045d","0.0000008","","2512"
"10:46:37.7001401 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 148, Name: 00010465","2512"
"10:46:37.7001486 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7001563 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010465","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7001653 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010465\Layout File","0.0000017","Type: REG_SZ, Length: 24, Data: KBDDIV2.DLL","2512"
"10:46:37.7001742 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010465","0.0000009","","2512"
"10:46:37.7001815 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 149, Name: 00010480","2512"
"10:46:37.7001900 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7001977 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010480","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7002067 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010480\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDUGHR1.DLL","2512"
"10:46:37.7002156 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010480","0.0000009","","2512"
"10:46:37.7002233 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 150, Name: 0001080c","2512"
"10:46:37.7002314 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7002391 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001080c","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7002480 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001080c\Layout File","0.0000018","Type: REG_SZ, Length: 24, Data: KBDBENE.DLL","2512"
"10:46:37.7002570 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001080c","0.0000009","","2512"
"10:46:37.7002643 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 151, Name: 0001083b","2512"
"10:46:37.7002728 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7002805 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001083b","0.0000017","Desired Access: Query Value","2512"
"10:46:37.7002890 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001083b\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDFI1.DLL","2512"
"10:46:37.7002980 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001083b","0.0000012","","2512"
"10:46:37.7003056 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 152, Name: 00010850","2512"
"10:46:37.7003138 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7003219 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010850","0.0000038","Desired Access: Query Value","2512"
"10:46:37.7003330 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010850\Layout File","0.0000017","Type: REG_SZ, Length: 26, Data: KBDMONST.DLL","2512"
"10:46:37.7003419 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010850","0.0000009","","2512"
"10:46:37.7003492 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 153, Name: 00010c00","2512"
"10:46:37.7003577 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7003658 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010c00","0.0000017","Desired Access: Query Value","2512"
"10:46:37.7003739 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010c00\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDMYAN.DLL","2512"
"10:46:37.7003833 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010c00","0.0000009","","2512"
"10:46:37.7003906 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 154, Name: 00011009","2512"
"10:46:37.7003987 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7004068 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011009","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7004153 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011009\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDCAN.DLL","2512"
"10:46:37.7004243 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011009","0.0000008","","2512"
"10:46:37.7004319 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 155, Name: 0001105f","2512"
"10:46:37.7004400 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7004482 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001105f","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7004567 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001105f\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDTIFI2.DLL","2512"
"10:46:37.7004656 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001105f","0.0000009","","2512"
"10:46:37.7004729 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 156, Name: 00011809","2512"
"10:46:37.7004810 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7004891 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011809","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7004976 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011809\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDGAE.DLL","2512"
"10:46:37.7005066 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011809","0.0000009","","2512"
"10:46:37.7005143 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 157, Name: 00020401","2512"
"10:46:37.7005224 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7005305 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020401","0.0000017","Desired Access: Query Value","2512"
"10:46:37.7005390 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020401\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDA3.DLL","2512"
"10:46:37.7005480 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020401","0.0000008","","2512"
"10:46:37.7005557 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 158, Name: 00020402","2512"
"10:46:37.7005646 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7005723 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020402","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7005808 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020402\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDBGPH.DLL","2512"
"10:46:37.7005902 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020402","0.0000013","","2512"
"10:46:37.7005983 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 159, Name: 00020405","2512"
"10:46:37.7006082 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7006163 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020405","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7006248 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020405\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDCZ2.DLL","2512"
"10:46:37.7006342 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020405","0.0000008","","2512"
"10:46:37.7006414 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 160, Name: 00020408","2512"
"10:46:37.7006495 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7006572 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020408","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7006662 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020408\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDHE319.DLL","2512"
"10:46:37.7006751 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020408","0.0000009","","2512"
"10:46:37.7006828 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 161, Name: 00020409","2512"
"10:46:37.7006909 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7006986 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020409","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7007076 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020409\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDUSX.DLL","2512"
"10:46:37.7007165 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020409","0.0000009","","2512"
"10:46:37.7007246 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 162, Name: 0002040d","2512"
"10:46:37.7007327 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7007408 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002040d","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7007494 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002040d\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: kbdhebl3.dll","2512"
"10:46:37.7007583 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002040d","0.0000009","","2512"
"10:46:37.7007656 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 163, Name: 00020418","2512"
"10:46:37.7007741 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7007818 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020418","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7007903 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020418\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDROPR.DLL","2512"
"10:46:37.7007993 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020418","0.0000013","","2512"
"10:46:37.7008070 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 164, Name: 00020419","2512"
"10:46:37.7008151 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7008228 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020419","0.0000025","Desired Access: Query Value","2512"
"10:46:37.7008317 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020419\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDRUM.DLL","2512"
"10:46:37.7008407 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020419","0.0000013","","2512"
"10:46:37.7008484 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 165, Name: 0002041e","2512"
"10:46:37.7008565 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7008642 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002041e","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7008731 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002041e\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDTH2.DLL","2512"
"10:46:37.7008821 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002041e","0.0000008","","2512"
"10:46:37.7008902 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 166, Name: 00020422","2512"
"10:46:37.7008983 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7009060 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020422","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7009149 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020422\Layout File","0.0000017","Type: REG_SZ, Length: 22, Data: KBDUR1.DLL","2512"
"10:46:37.7009239 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020422","0.0000008","","2512"
"10:46:37.7009311 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 167, Name: 00020426","2512"
"10:46:37.7009392 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7009469 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020426","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7009559 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020426\Layout File","0.0000017","Type: REG_SZ, Length: 24, Data: KBDLVST.DLL","2512"
"10:46:37.7009648 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020426","0.0000009","","2512"
"10:46:37.7009721 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 168, Name: 00020427","2512"
"10:46:37.7009802 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7009883 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020427","0.0000017","Desired Access: Query Value","2512"
"10:46:37.7009968 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020427\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDLT2.DLL","2512"
"10:46:37.7010058 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020427","0.0000009","","2512"
"10:46:37.7010131 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 169, Name: 0002042b","2512"
"10:46:37.7010216 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7010293 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042b","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7010378 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042b\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: kbdarmph.dll","2512"
"10:46:37.7010472 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042b","0.0000008","","2512"
"10:46:37.7010544 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 170, Name: 0002042e","2512"
"10:46:37.7010626 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7010702 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042e","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7010805 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042e\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDSORS1.DLL","2512"
"10:46:37.7010899 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042e","0.0000008","","2512"
"10:46:37.7010975 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 171, Name: 00020437","2512"
"10:46:37.7011056 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7011133 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020437","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7011223 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020437\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: kbdgeoer.dll","2512"
"10:46:37.7011312 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020437","0.0000009","","2512"
"10:46:37.7011394 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 172, Name: 00020445","2512"
"10:46:37.7011475 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7011556 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020445","0.0000030","Desired Access: Query Value","2512"
"10:46:37.7011654 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020445\Layout File","0.0000025","Type: REG_SZ, Length: 26, Data: KBDINBE2.DLL","2512"
"10:46:37.7011748 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020445","0.0000012","","2512"
"10:46:37.7011829 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 173, Name: 00020449","2512"
"10:46:37.7011910 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7011987 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020449","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7012072 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020449\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDTAM99.DLL","2512"
"10:46:37.7012166 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020449","0.0000008","","2512"
"10:46:37.7012238 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 174, Name: 0002083b","2512"
"10:46:37.7012319 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7012396 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002083b","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7012482 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002083b\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDSMSFI.DLL","2512"
"10:46:37.7012575 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002083b","0.0000009","","2512"
"10:46:37.7012648 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 175, Name: 00020c00","2512"
"10:46:37.7012729 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7012806 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020c00","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7012895 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020c00\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDNTL.DLL","2512"
"10:46:37.7012985 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020c00","0.0000009","","2512"
"10:46:37.7013062 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 176, Name: 00030402","2512"
"10:46:37.7013143 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7013220 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030402","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7013309 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030402\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDBULG.DLL","2512"
"10:46:37.7013399 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030402","0.0000008","","2512"
"10:46:37.7013471 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 177, Name: 00030408","2512"
"10:46:37.7013552 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7013629 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030408","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7013719 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030408\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDHELA2.DLL","2512"
"10:46:37.7013808 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030408","0.0000009","","2512"
"10:46:37.7013881 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 178, Name: 00030409","2512"
"10:46:37.7013962 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7014043 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030409","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7014128 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030409\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDUSL.DLL","2512"
"10:46:37.7014218 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030409","0.0000013","","2512"
"10:46:37.7014295 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 179, Name: 0003041e","2512"
"10:46:37.7014376 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7014453 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003041e","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7014542 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003041e\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDTH3.DLL","2512"
"10:46:37.7014632 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003041e","0.0000008","","2512"
"10:46:37.7014704 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 180, Name: 0003042b","2512"
"10:46:37.7014786 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7014867 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003042b","0.0000017","Desired Access: Query Value","2512"
"10:46:37.7014952 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003042b\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: kbdarmty.dll","2512"
"10:46:37.7015042 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003042b","0.0000008","","2512"
"10:46:37.7015114 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 181, Name: 00030437","2512"
"10:46:37.7015195 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7015272 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030437","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7015357 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030437\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: kbdgeome.dll","2512"
"10:46:37.7015447 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030437","0.0000008","","2512"
"10:46:37.7015528 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 182, Name: 00030c00","2512"
"10:46:37.7015609 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7015686 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030c00","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7015771 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030c00\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDTAILE.DLL","2512"
"10:46:37.7015861 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030c00","0.0000013","","2512"
"10:46:37.7015938 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 183, Name: 00040402","2512"
"10:46:37.7016019 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7016095 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040402","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7016181 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040402\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDBGPH1.DLL","2512"
"10:46:37.7016270 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040402","0.0000013","","2512"
"10:46:37.7016347 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 184, Name: 00040408","2512"
"10:46:37.7016428 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7016505 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040408","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7016590 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040408\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDHELA3.DLL","2512"
"10:46:37.7016684 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040408","0.0000009","","2512"
"10:46:37.7016757 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 185, Name: 00040409","2512"
"10:46:37.7016838 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7016915 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040409","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7017004 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040409\Layout File","0.0000017","Type: REG_SZ, Length: 22, Data: KBDUSR.DLL","2512"
"10:46:37.7017094 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040409","0.0000008","","2512"
"10:46:37.7017166 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 186, Name: 00040437","2512"
"10:46:37.7017247 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7017324 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040437","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7017414 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040437\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: kbdgeooa.dll","2512"
"10:46:37.7017503 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040437","0.0000009","","2512"
"10:46:37.7017580 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 187, Name: 00040c00","2512"
"10:46:37.7017661 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7017747 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040c00","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7017836 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040c00\Layout File","0.0000017","Type: REG_SZ, Length: 26, Data: KBDOGHAM.DLL","2512"
"10:46:37.7017926 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040c00","0.0000008","","2512"
"10:46:37.7017998 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 188, Name: 00050408","2512"
"10:46:37.7018088 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7018190 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050408","0.0000017","Desired Access: Query Value","2512"
"10:46:37.7018276 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050408\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDGKL.DLL","2512"
"10:46:37.7018370 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050408","0.0000008","","2512"
"10:46:37.7018442 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 189, Name: 00050409","2512"
"10:46:37.7018523 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7018604 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050409","0.0000017","Desired Access: Query Value","2512"
"10:46:37.7018690 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050409\Layout File","0.0000017","Type: REG_SZ, Length: 22, Data: KBDUSA.DLL","2512"
"10:46:37.7018775 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050409","0.0000013","","2512"
"10:46:37.7018852 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 190, Name: 00050429","2512"
"10:46:37.7018933 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7019014 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050429","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7019103 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050429\Layout File","0.0000017","Type: REG_SZ, Length: 22, Data: kbdfar.dll","2512"
"10:46:37.7019193 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050429","0.0000009","","2512"
"10:46:37.7019266 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 191, Name: 00060408","2512"
"10:46:37.7019347 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7019423 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00060408","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7019509 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00060408\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDHEPT.DLL","2512"
"10:46:37.7019603 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00060408","0.0000008","","2512"
"10:46:37.7019675 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 192, Name: 00070c00","2512"
"10:46:37.7019756 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7019837 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00070c00","0.0000030","Desired Access: Query Value","2512"
"10:46:37.7019935 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00070c00\Layout File","0.0000017","Type: REG_SZ, Length: 26, Data: kbdlisub.dll","2512"
"10:46:37.7020025 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00070c00","0.0000009","","2512"
"10:46:37.7020098 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 193, Name: 00080c00","2512"
"10:46:37.7020179 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7020260 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00080c00","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7020345 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00080c00\Layout File","0.0000026","Type: REG_SZ, Length: 26, Data: kbdlisus.dll","2512"
"10:46:37.7020439 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00080c00","0.0000008","","2512"
"10:46:37.7020516 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 194, Name: 00090c00","2512"
"10:46:37.7020597 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7020674 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00090c00","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7020759 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00090c00\Layout File","0.0000038","Type: REG_SZ, Length: 22, Data: kbdnko.dll","2512"
"10:46:37.7020870 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00090c00","0.0000008","","2512"
"10:46:37.7020947 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 195, Name: 000a0c00","2512"
"10:46:37.7021028 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7021104 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000a0c00","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7021194 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000a0c00\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: kbdphags.dll","2512"
"10:46:37.7021284 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000a0c00","0.0000008","","2512"
"10:46:37.7021360 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000018","Index: 196, Name: 000b0c00","2512"
"10:46:37.7021442 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7021518 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000b0c00","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7021604 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000b0c00\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDBUG.DLL","2512"
"10:46:37.7021698 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000b0c00","0.0000008","","2512"
"10:46:37.7021770 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 197, Name: 000c0c00","2512"
"10:46:37.7021855 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7021932 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000c0c00","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7022018 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000c0c00\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDGTHC.DLL","2512"
"10:46:37.7022111 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000c0c00","0.0000009","","2512"
"10:46:37.7022184 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 198, Name: 000d0c00","2512"
"10:46:37.7022269 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7022346 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000d0c00","0.0000017","Desired Access: Query Value","2512"
"10:46:37.7022431 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000d0c00\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDOLCH.DLL","2512"
"10:46:37.7022521 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000d0c00","0.0000009","","2512"
"10:46:37.7022594 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 199, Name: 000e0c00","2512"
"10:46:37.7022675 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7022756 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000e0c00","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7022845 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000e0c00\Layout File","0.0000017","Type: REG_SZ, Length: 22, Data: KBDOSM.DLL","2512"
"10:46:37.7022935 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000e0c00","0.0000008","","2512"
"10:46:37.7023012 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 200, Name: 000f0c00","2512"
"10:46:37.7023097 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7023174 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000f0c00","0.0000017","Desired Access: Query Value","2512"
"10:46:37.7023259 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000f0c00\Layout File","0.0000017","Type: REG_SZ, Length: 26, Data: KBDOLDIT.DLL","2512"
"10:46:37.7023349 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000f0c00","0.0000008","","2512"
"10:46:37.7023421 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 201, Name: 00100c00","2512"
"10:46:37.7023507 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7023583 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00100c00","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7023673 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00100c00\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDSORA.DLL","2512"
"10:46:37.7023763 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00100c00","0.0000008","","2512"
"10:46:37.7023839 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 202, Name: 00110c00","2512"
"10:46:37.7023920 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7023997 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00110c00","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7024087 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00110c00\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDJAV.DLL","2512"
"10:46:37.7024176 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00110c00","0.0000009","","2512"
"10:46:37.7024253 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 203, Name: 00120c00","2512"
"10:46:37.7024334 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7024415 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00120c00","0.0000017","Desired Access: Query Value","2512"
"10:46:37.7024496 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00120c00\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDFTHRK.DLL","2512"
"10:46:37.7024586 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00120c00","0.0000009","","2512"
"10:46:37.7024663 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 204, Name: 00130c00","2512"
"10:46:37.7024744 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7024825 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00130c00","0.0000017","Desired Access: Query Value","2512"
"10:46:37.7024910 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00130c00\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDMYAN.DLL","2512"
"10:46:37.7025000 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00130c00","0.0000008","","2512"
"10:46:37.7025072 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 205, Length: 288","2512"
"10:46:37.7025171 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","","2512"
"10:46:37.7027820 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000218","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7028174 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000094","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","2512"
"10:46:37.7028366 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000073","","2512"
"10:46:37.7030355 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7030564 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000030","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","2512"
"10:46:37.7030670 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000043","","2512"
"10:46:37.7032996 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7033209 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","2512"
"10:46:37.7033316 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000042","","2512"
"10:46:37.7034399 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7034643 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000123","Filter: freebl3.dll, 1: freebl3.dll","2512"
"10:46:37.7034894 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000039","","2512"
"10:46:37.7036546 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7036738 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000025","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","2512"
"10:46:37.7036836 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000038","","2512"
"10:46:37.7037817 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7038035 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000098","Filter: freebl3.dll, 1: freebl3.dll","2512"
"10:46:37.7038244 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000038","","2512"
"10:46:37.7039592 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7039865 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000030","AllocationSize: 585,728, EndOfFile: 583,368, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.7040036 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7040164 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000017","AllocationSize: 585,728, EndOfFile: 583,368, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.7040360 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.7040940 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000056","","2512"
"10:46:37.7042143 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000116","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7042429 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000030","AllocationSize: 585,728, EndOfFile: 583,368, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.7042574 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7042685 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000017","AllocationSize: 585,728, EndOfFile: 583,368, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.7042869 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:37.7043462 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000025","AllocationSize: 585,728, EndOfFile: 583,368, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.7043607 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000055","","2512"
"10:46:37.7044913 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7045177 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000026","AllocationSize: 585,728, EndOfFile: 583,368, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.7045309 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7045420 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000017","AllocationSize: 585,728, EndOfFile: 583,368, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.7045595 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.7048795 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000064","","2512"
"10:46:37.7052959 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000163","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7053233 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000029","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","2512"
"10:46:37.7053352 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000047","","2512"
"10:46:37.7055319 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7055532 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","2512"
"10:46:37.7055639 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000043","","2512"
"10:46:37.7057636 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7057828 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000025","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","2512"
"10:46:37.7057930 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000039","","2512"
"10:46:37.7058920 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7059155 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000115","Filter: freebl3.dll, 1: freebl3.dll","2512"
"10:46:37.7059394 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000038","","2512"
"10:46:37.7061446 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7061663 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:37.7061766 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000043","","2512"
"10:46:37.7062722 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7062935 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000102","Filter: softokn3.dll, 1: softokn3.dll","2512"
"10:46:37.7063148 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000039","","2512"
"10:46:37.7064782 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7064970 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:37.7065068 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000039","","2512"
"10:46:37.7065998 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7066199 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000090","Filter: softokn3.dll, 1: softokn3.dll","2512"
"10:46:37.7066399 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000039","","2512"
"10:46:37.7067449 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7067701 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000030","AllocationSize: 249,856, EndOfFile: 247,496, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.7067859 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7067978 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000021","AllocationSize: 249,856, EndOfFile: 247,496, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.7068170 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.7068631 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000051","","2512"
"10:46:37.7069907 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7070180 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000025","AllocationSize: 249,856, EndOfFile: 247,496, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.7070321 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7070431 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000022","AllocationSize: 249,856, EndOfFile: 247,496, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.7070623 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000039","SyncType: SyncTypeOther","2512"
"10:46:37.7071161 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000021","AllocationSize: 249,856, EndOfFile: 247,496, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.7071289 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000051","","2512"
"10:46:37.7072445 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000116","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7072701 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000022","AllocationSize: 249,856, EndOfFile: 247,496, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.7072829 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7072932 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000017","AllocationSize: 249,856, EndOfFile: 247,496, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.7073111 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.7075662 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000052","","2512"
"10:46:37.7078786 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7079003 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:37.7079118 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000047","","2512"
"10:46:37.7081115 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7081320 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:37.7081422 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000039","","2512"
"10:46:37.7083364 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7083551 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:37.7083654 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000038","","2512"
"10:46:37.7084622 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000099","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7084849 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000102","Filter: softokn3.dll, 1: softokn3.dll","2512"
"10:46:37.7085070 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000039","","2512"
"10:46:37.7086355 AM","firefox.exe","7384","RegQueryKey","HKLM","0.0000021","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7086491 AM","firefox.exe","7384","RegOpenKey","HKLM\SYSTEM\CurrentControlSet\Control\Keyboard Layouts","0.0000077","Desired Access: Enumerate Sub Keys","2512"
"10:46:37.7086662 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000060","Desired Access: Enumerate Sub Keys","2512"
"10:46:37.7086850 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000042","Index: 0, Name: 00000401","2512"
"10:46:37.7086986 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7087187 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000401","0.0000064","Desired Access: Query Value","2512"
"10:46:37.7087477 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000401\Layout File","0.0000051","Type: REG_SZ, Length: 20, Data: KBDA1.DLL","2512"
"10:46:37.7087720 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000401","0.0000021","","2512"
"10:46:37.7088868 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000038","Index: 1, Name: 00000402","2512"
"10:46:37.7089000 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7089128 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000402","0.0000038","Desired Access: Query Value","2512"
"10:46:37.7089260 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000402\Layout File","0.0000026","Type: REG_SZ, Length: 20, Data: KBDBU.DLL","2512"
"10:46:37.7089380 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000402","0.0000025","","2512"
"10:46:37.7089503 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 2, Name: 00000404","2512"
"10:46:37.7089602 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7089695 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000404","0.0000026","Desired Access: Query Value","2512"
"10:46:37.7089806 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000404\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:37.7089951 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000404","0.0000013","","2512"
"10:46:37.7090084 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 3, Name: 00000405","2512"
"10:46:37.7090212 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7090348 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000405","0.0000034","Desired Access: Query Value","2512"
"10:46:37.7090489 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000405\Layout File","0.0000034","Type: REG_SZ, Length: 20, Data: KBDCZ.DLL","2512"
"10:46:37.7090664 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000405","0.0000017","","2512"
"10:46:37.7090788 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 4, Name: 00000406","2512"
"10:46:37.7090920 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7091052 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000406","0.0000034","Desired Access: Query Value","2512"
"10:46:37.7091193 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000406\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDDA.DLL","2512"
"10:46:37.7091342 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000406","0.0000013","","2512"
"10:46:37.7091470 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 5, Name: 00000407","2512"
"10:46:37.7091598 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7091731 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000407","0.0000030","Desired Access: Query Value","2512"
"10:46:37.7091867 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000407\Layout File","0.0000026","Type: REG_SZ, Length: 20, Data: KBDGR.DLL","2512"
"10:46:37.7092012 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000407","0.0000013","","2512"
"10:46:37.7092127 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 6, Name: 00000408","2512"
"10:46:37.7092255 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7092383 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000408","0.0000039","Desired Access: Query Value","2512"
"10:46:37.7092524 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000408\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDHE.DLL","2512"
"10:46:37.7092669 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000408","0.0000009","","2512"
"10:46:37.7092785 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 7, Name: 00000409","2512"
"10:46:37.7092917 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7093023 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000409","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7093113 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000409\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:37.7093211 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000409","0.0000009","","2512"
"10:46:37.7093288 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 8, Name: 0000040a","2512"
"10:46:37.7093369 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7093450 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040a","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7093540 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040a\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDSP.DLL","2512"
"10:46:37.7093634 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040a","0.0000008","","2512"
"10:46:37.7093715 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 9, Name: 0000040b","2512"
"10:46:37.7093800 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7093881 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040b","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7093971 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040b\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDFI.DLL","2512"
"10:46:37.7094065 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040b","0.0000008","","2512"
"10:46:37.7094137 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 10, Name: 0000040c","2512"
"10:46:37.7094222 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7094303 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040c","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7094393 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040c\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDFR.DLL","2512"
"10:46:37.7094487 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040c","0.0000008","","2512"
"10:46:37.7094559 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 11, Name: 0000040d","2512"
"10:46:37.7094645 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7094722 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040d","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7094811 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040d\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDHEB.DLL","2512"
"10:46:37.7094905 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040d","0.0000009","","2512"
"10:46:37.7094982 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 12, Name: 0000040e","2512"
"10:46:37.7095063 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7095144 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040e","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7095234 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040e\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDHU.DLL","2512"
"10:46:37.7095327 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040e","0.0000009","","2512"
"10:46:37.7095404 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 13, Name: 0000040f","2512"
"10:46:37.7095485 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7095566 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040f","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7095652 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040f\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDIC.DLL","2512"
"10:46:37.7095746 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000040f","0.0000008","","2512"
"10:46:37.7095822 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 14, Name: 00000410","2512"
"10:46:37.7095904 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7095985 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000410","0.0000025","Desired Access: Query Value","2512"
"10:46:37.7096078 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000410\Layout File","0.0000018","Type: REG_SZ, Length: 20, Data: KBDIT.DLL","2512"
"10:46:37.7096168 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000410","0.0000009","","2512"
"10:46:37.7096241 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 15, Name: 00000411","2512"
"10:46:37.7096322 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7096403 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000411","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7096488 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000411\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDJPN.DLL","2512"
"10:46:37.7096582 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000411","0.0000008","","2512"
"10:46:37.7096663 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 16, Name: 00000412","2512"
"10:46:37.7096744 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7096821 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000412","0.0000038","Desired Access: Query Value","2512"
"10:46:37.7096932 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000412\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDKOR.DLL","2512"
"10:46:37.7097026 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000412","0.0000008","","2512"
"10:46:37.7097107 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 17, Name: 00000413","2512"
"10:46:37.7097188 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7097265 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000413","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7097354 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000413\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDNE.DLL","2512"
"10:46:37.7097448 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000413","0.0000009","","2512"
"10:46:37.7097521 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 18, Name: 00000414","2512"
"10:46:37.7097606 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7097683 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000414","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7097772 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000414\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDNO.DLL","2512"
"10:46:37.7097862 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000414","0.0000008","","2512"
"10:46:37.7097939 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 19, Name: 00000415","2512"
"10:46:37.7098020 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7098101 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000415","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7098186 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000415\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDPL1.DLL","2512"
"10:46:37.7098280 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000415","0.0000009","","2512"
"10:46:37.7098353 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 20, Name: 00000416","2512"
"10:46:37.7098434 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7098515 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000416","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7098604 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000416\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDBR.DLL","2512"
"10:46:37.7098698 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000416","0.0000009","","2512"
"10:46:37.7098771 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 21, Name: 00000418","2512"
"10:46:37.7098856 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7098933 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000418","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7099022 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000418\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDRO.DLL","2512"
"10:46:37.7099116 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000418","0.0000009","","2512"
"10:46:37.7099189 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 22, Name: 00000419","2512"
"10:46:37.7099274 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7099351 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000419","0.0000026","Desired Access: Query Value","2512"
"10:46:37.7099441 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000419\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDRU.DLL","2512"
"10:46:37.7099534 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000419","0.0000009","","2512"
"10:46:37.7099611 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 23, Name: 0000041a","2512"
"10:46:37.7099692 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7099769 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041a","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7099854 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041a\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDCR.DLL","2512"
"10:46:37.7099948 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041a","0.0000009","","2512"
"10:46:37.7100021 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 24, Name: 0000041b","2512"
"10:46:37.7100106 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7100183 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041b","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7100273 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041b\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDSL.DLL","2512"
"10:46:37.7100362 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041b","0.0000009","","2512"
"10:46:37.7100439 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 25, Name: 0000041c","2512"
"10:46:37.7100520 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7100601 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041c","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7100686 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041c\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDAL.DLL","2512"
"10:46:37.7100780 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041c","0.0000009","","2512"
"10:46:37.7100853 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 26, Name: 0000041d","2512"
"10:46:37.7100947 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7101028 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041d","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7101113 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041d\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDSW.DLL","2512"
"10:46:37.7101207 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041d","0.0000009","","2512"
"10:46:37.7101284 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 27, Name: 0000041e","2512"
"10:46:37.7101365 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7101442 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041e","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7101531 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041e\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDTH0.DLL","2512"
"10:46:37.7101621 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041e","0.0000013","","2512"
"10:46:37.7101698 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 28, Name: 0000041f","2512"
"10:46:37.7101779 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7101860 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041f","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7101945 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041f\Layout File","0.0000026","Type: REG_SZ, Length: 22, Data: KBDTUQ.DLL","2512"
"10:46:37.7102039 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000041f","0.0000009","","2512"
"10:46:37.7102116 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 29, Name: 00000420","2512"
"10:46:37.7102197 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7102278 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000420","0.0000017","Desired Access: Query Value","2512"
"10:46:37.7102363 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000420\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDURDU.DLL","2512"
"10:46:37.7102457 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000420","0.0000009","","2512"
"10:46:37.7102534 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 30, Name: 00000422","2512"
"10:46:37.7102615 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7102692 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000422","0.0000038","Desired Access: Query Value","2512"
"10:46:37.7102794 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000422\Layout File","0.0000026","Type: REG_SZ, Length: 20, Data: KBDUR.DLL","2512"
"10:46:37.7102888 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000422","0.0000009","","2512"
"10:46:37.7102965 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 31, Name: 00000423","2512"
"10:46:37.7103050 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7103136 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000423","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7103225 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000423\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDBLR.DLL","2512"
"10:46:37.7103328 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000423","0.0000012","","2512"
"10:46:37.7103443 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 32, Name: 00000424","2512"
"10:46:37.7103571 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7103699 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000424","0.0000034","Desired Access: Query Value","2512"
"10:46:37.7103835 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000424\Layout File","0.0000026","Type: REG_SZ, Length: 20, Data: KBDCR.DLL","2512"
"10:46:37.7103972 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000424","0.0000013","","2512"
"10:46:37.7104100 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 33, Name: 00000425","2512"
"10:46:37.7104219 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7104347 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000425","0.0000030","Desired Access: Query Value","2512"
"10:46:37.7104484 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000425\Layout File","0.0000025","Type: REG_SZ, Length: 22, Data: KBDEST.DLL","2512"
"10:46:37.7104620 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000425","0.0000013","","2512"
"10:46:37.7104736 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000029","Index: 34, Name: 00000426","2512"
"10:46:37.7104864 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7104983 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000426","0.0000030","Desired Access: Query Value","2512"
"10:46:37.7105120 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000426\Layout File","0.0000025","Type: REG_SZ, Length: 20, Data: KBDLV.DLL","2512"
"10:46:37.7105260 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000426","0.0000013","","2512"
"10:46:37.7105376 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 35, Name: 00000427","2512"
"10:46:37.7105504 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7105632 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000427","0.0000034","Desired Access: Query Value","2512"
"10:46:37.7105768 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000427\Layout File","0.0000026","Type: REG_SZ, Length: 20, Data: KBDLT.DLL","2512"
"10:46:37.7105909 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000427","0.0000013","","2512"
"10:46:37.7106028 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 36, Name: 00000428","2512"
"10:46:37.7106156 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7106284 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000428","0.0000030","Desired Access: Query Value","2512"
"10:46:37.7106417 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000428\Layout File","0.0000029","Type: REG_SZ, Length: 26, Data: KBDTAJIK.DLL","2512"
"10:46:37.7106562 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000428","0.0000012","","2512"
"10:46:37.7106677 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 37, Name: 00000429","2512"
"10:46:37.7106801 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7106894 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000429","0.0000026","Desired Access: Query Value","2512"
"10:46:37.7106984 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000429\Layout File","0.0000026","Type: REG_SZ, Length: 20, Data: KBDFA.DLL","2512"
"10:46:37.7107082 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000429","0.0000009","","2512"
"10:46:37.7107159 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 38, Name: 0000042a","2512"
"10:46:37.7107244 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7107321 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042a","0.0000026","Desired Access: Query Value","2512"
"10:46:37.7107411 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042a\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDVNTC.DLL","2512"
"10:46:37.7107505 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042a","0.0000008","","2512"
"10:46:37.7107577 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 39, Name: 0000042b","2512"
"10:46:37.7107662 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7107739 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042b","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7107829 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042b\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: kbdarme.dll","2512"
"10:46:37.7107923 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042b","0.0000008","","2512"
"10:46:37.7108000 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 40, Name: 0000042c","2512"
"10:46:37.7108081 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7108162 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042c","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7108247 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042c\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDAZEL.DLL","2512"
"10:46:37.7108341 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042c","0.0000008","","2512"
"10:46:37.7108413 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 41, Name: 0000042e","2512"
"10:46:37.7108499 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7108580 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042e","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7108665 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042e\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDSORST.DLL","2512"
"10:46:37.7108755 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042e","0.0000013","","2512"
"10:46:37.7108840 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 42, Name: 0000042f","2512"
"10:46:37.7108925 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7109002 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042f","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7109092 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042f\Layout File","0.0000017","Type: REG_SZ, Length: 22, Data: KBDMAC.DLL","2512"
"10:46:37.7109181 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000042f","0.0000009","","2512"
"10:46:37.7109258 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 43, Name: 00000432","2512"
"10:46:37.7109339 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7109416 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000432","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7109506 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000432\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDNSO.DLL","2512"
"10:46:37.7109595 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000432","0.0000009","","2512"
"10:46:37.7109672 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 44, Name: 00000437","2512"
"10:46:37.7109753 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7109834 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000437","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7109924 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000437\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: kbdgeo.dll","2512"
"10:46:37.7110013 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000437","0.0000009","","2512"
"10:46:37.7110090 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 45, Name: 00000438","2512"
"10:46:37.7110171 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7110252 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000438","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7110342 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000438\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDFO.DLL","2512"
"10:46:37.7110432 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000438","0.0000012","","2512"
"10:46:37.7110508 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 46, Name: 00000439","2512"
"10:46:37.7110589 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7110670 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000439","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7110760 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000439\Layout File","0.0000017","Type: REG_SZ, Length: 26, Data: KBDINDEV.DLL","2512"
"10:46:37.7110850 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000439","0.0000008","","2512"
"10:46:37.7110939 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 47, Name: 0000043a","2512"
"10:46:37.7111025 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7111101 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043a","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7111187 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043a\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDMLT47.DLL","2512"
"10:46:37.7111281 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043a","0.0000008","","2512"
"10:46:37.7111357 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 48, Name: 0000043b","2512"
"10:46:37.7111438 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7111515 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043b","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7111605 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043b\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDNO1.DLL","2512"
"10:46:37.7111694 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043b","0.0000009","","2512"
"10:46:37.7111771 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 49, Name: 0000043f","2512"
"10:46:37.7111857 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7111933 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043f","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7112023 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043f\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDKAZ.DLL","2512"
"10:46:37.7112113 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000043f","0.0000012","","2512"
"10:46:37.7112198 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 50, Name: 00000440","2512"
"10:46:37.7112279 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7112373 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000440","0.0000043","Desired Access: Query Value","2512"
"10:46:37.7112497 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000440\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDKYR.DLL","2512"
"10:46:37.7112586 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000440","0.0000009","","2512"
"10:46:37.7112663 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 51, Name: 00000442","2512"
"10:46:37.7112748 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7112825 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000442","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7112915 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000442\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDTURME.DLL","2512"
"10:46:37.7113004 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000442","0.0000009","","2512"
"10:46:37.7113081 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 52, Name: 00000444","2512"
"10:46:37.7113162 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7113243 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000444","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7113329 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000444\Layout File","0.0000025","Type: REG_SZ, Length: 22, Data: KBDTAT.DLL","2512"
"10:46:37.7113422 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000444","0.0000009","","2512"
"10:46:37.7113499 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 53, Name: 00000445","2512"
"10:46:37.7113580 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7113661 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000445","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7113747 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000445\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINBEN.DLL","2512"
"10:46:37.7113841 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000445","0.0000008","","2512"
"10:46:37.7113917 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 54, Name: 00000446","2512"
"10:46:37.7113998 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7114080 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000446","0.0000017","Desired Access: Query Value","2512"
"10:46:37.7114165 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000446\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINPUN.DLL","2512"
"10:46:37.7114254 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000446","0.0000009","","2512"
"10:46:37.7114331 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 55, Name: 00000447","2512"
"10:46:37.7114417 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7114493 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000447","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7114583 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000447\Layout File","0.0000017","Type: REG_SZ, Length: 26, Data: KBDINGUJ.DLL","2512"
"10:46:37.7114673 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000447","0.0000008","","2512"
"10:46:37.7114745 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 56, Name: 00000448","2512"
"10:46:37.7114830 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7114907 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000448","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7114997 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000448\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINORI.DLL","2512"
"10:46:37.7115086 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000448","0.0000009","","2512"
"10:46:37.7115163 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 57, Name: 00000449","2512"
"10:46:37.7115244 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7115325 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000449","0.0000017","Desired Access: Query Value","2512"
"10:46:37.7115411 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000449\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINTAM.DLL","2512"
"10:46:37.7115500 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000449","0.0000009","","2512"
"10:46:37.7115577 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 58, Name: 0000044a","2512"
"10:46:37.7115662 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7115739 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044a","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7115825 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044a\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINTEL.DLL","2512"
"10:46:37.7115918 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044a","0.0000009","","2512"
"10:46:37.7115991 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 59, Name: 0000044b","2512"
"10:46:37.7116072 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7116149 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044b","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7116238 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044b\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDINKAN.DLL","2512"
"10:46:37.7116341 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044b","0.0000008","","2512"
"10:46:37.7116413 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 60, Name: 0000044c","2512"
"10:46:37.7116499 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7116580 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044c","0.0000025","Desired Access: Query Value","2512"
"10:46:37.7116674 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044c\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINMAL.DLL","2512"
"10:46:37.7116763 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044c","0.0000013","","2512"
"10:46:37.7116861 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 61, Name: 0000044d","2512"
"10:46:37.7116989 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7117113 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044d","0.0000030","Desired Access: Query Value","2512"
"10:46:37.7117250 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044d\Layout File","0.0000025","Type: REG_SZ, Length: 26, Data: KBDINASA.DLL","2512"
"10:46:37.7117382 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044d","0.0000013","","2512"
"10:46:37.7117497 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 62, Name: 0000044e","2512"
"10:46:37.7117621 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7117745 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044e","0.0000034","Desired Access: Query Value","2512"
"10:46:37.7117881 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044e\Layout File","0.0000026","Type: REG_SZ, Length: 26, Data: KBDINMAR.DLL","2512"
"10:46:37.7118018 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000044e","0.0000012","","2512"
"10:46:37.7118137 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 63, Name: 00000450","2512"
"10:46:37.7118265 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7118389 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000450","0.0000030","Desired Access: Query Value","2512"
"10:46:37.7118521 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000450\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDMON.DLL","2512"
"10:46:37.7118662 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000450","0.0000013","","2512"
"10:46:37.7118781 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 64, Name: 00000451","2512"
"10:46:37.7118914 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7119037 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000451","0.0000030","Desired Access: Query Value","2512"
"10:46:37.7119174 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000451\Layout File","0.0000026","Type: REG_SZ, Length: 26, Data: KBDTIPRC.DLL","2512"
"10:46:37.7119310 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000451","0.0000013","","2512"
"10:46:37.7119451 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 65, Name: 00000452","2512"
"10:46:37.7119575 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7119699 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000452","0.0000034","Desired Access: Query Value","2512"
"10:46:37.7119835 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000452\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDUKX.DLL","2512"
"10:46:37.7119976 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000452","0.0000009","","2512"
"10:46:37.7120091 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 66, Name: 00000453","2512"
"10:46:37.7120219 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7120343 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000453","0.0000030","Desired Access: Query Value","2512"
"10:46:37.7120467 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000453\Layout File","0.0000025","Type: REG_SZ, Length: 24, Data: KBDKHMR.DLL","2512"
"10:46:37.7120590 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000453","0.0000018","","2512"
"10:46:37.7120701 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 67, Name: 00000454","2512"
"10:46:37.7120817 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7120970 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000454","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7121064 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000454\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDLAO.DLL","2512"
"10:46:37.7121158 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000454","0.0000008","","2512"
"10:46:37.7121235 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 68, Name: 0000045a","2512"
"10:46:37.7121320 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7121401 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045a","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7121491 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045a\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDSYR1.DLL","2512"
"10:46:37.7121580 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045a","0.0000009","","2512"
"10:46:37.7121657 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 69, Name: 0000045b","2512"
"10:46:37.7121742 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7121824 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045b","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7121909 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045b\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDSN1.DLL","2512"
"10:46:37.7122003 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045b","0.0000008","","2512"
"10:46:37.7122075 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 70, Name: 0000045c","2512"
"10:46:37.7122161 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7122237 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045c","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7122327 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045c\Layout File","0.0000017","Type: REG_SZ, Length: 24, Data: KBDCHER.DLL","2512"
"10:46:37.7122417 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000045c","0.0000008","","2512"
"10:46:37.7122489 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 71, Name: 00000461","2512"
"10:46:37.7122574 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7122651 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000461","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7122737 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000461\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDNEPR.DLL","2512"
"10:46:37.7122830 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000461","0.0000009","","2512"
"10:46:37.7122907 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 72, Name: 00000463","2512"
"10:46:37.7122988 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7123065 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000463","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7123155 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000463\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDPASH.DLL","2512"
"10:46:37.7123244 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000463","0.0000009","","2512"
"10:46:37.7123321 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 73, Name: 00000465","2512"
"10:46:37.7123402 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7123479 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000465","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7123569 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000465\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDDIV1.DLL","2512"
"10:46:37.7123662 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000465","0.0000009","","2512"
"10:46:37.7123744 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 74, Name: 00000468","2512"
"10:46:37.7123854 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7123974 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000468","0.0000030","Desired Access: Query Value","2512"
"10:46:37.7124106 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000468\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDHAU.DLL","2512"
"10:46:37.7124247 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000468","0.0000013","","2512"
"10:46:37.7124362 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 75, Name: 0000046a","2512"
"10:46:37.7124486 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7124614 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046a","0.0000034","Desired Access: Query Value","2512"
"10:46:37.7124738 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046a\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDYBA.DLL","2512"
"10:46:37.7124874 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046a","0.0000013","","2512"
"10:46:37.7124968 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 76, Name: 0000046c","2512"
"10:46:37.7125058 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7125139 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046c","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7125228 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046c\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDNSO.DLL","2512"
"10:46:37.7125322 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046c","0.0000009","","2512"
"10:46:37.7125399 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 77, Name: 0000046d","2512"
"10:46:37.7125480 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7125557 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046d","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7125646 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046d\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDBASH.DLL","2512"
"10:46:37.7125736 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046d","0.0000009","","2512"
"10:46:37.7125813 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 78, Name: 0000046e","2512"
"10:46:37.7125898 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7125975 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046e","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7126065 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046e\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDSF.DLL","2512"
"10:46:37.7126154 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046e","0.0000009","","2512"
"10:46:37.7126240 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 79, Name: 0000046f","2512"
"10:46:37.7126321 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7126397 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046f","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7126487 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046f\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDGRLND.DLL","2512"
"10:46:37.7126577 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000046f","0.0000008","","2512"
"10:46:37.7126653 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 80, Name: 00000470","2512"
"10:46:37.7126734 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7126816 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000470","0.0000017","Desired Access: Query Value","2512"
"10:46:37.7126901 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000470\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDIBO.DLL","2512"
"10:46:37.7126995 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000470","0.0000008","","2512"
"10:46:37.7127072 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 81, Name: 00000474","2512"
"10:46:37.7127153 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7127229 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000474","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7127319 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000474\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDGN.DLL","2512"
"10:46:37.7127413 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000474","0.0000008","","2512"
"10:46:37.7127485 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 82, Name: 00000475","2512"
"10:46:37.7127571 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7127648 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000475","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7127737 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000475\Layout File","0.0000017","Type: REG_SZ, Length: 22, Data: KBDHAW.DLL","2512"
"10:46:37.7127827 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000475","0.0000008","","2512"
"10:46:37.7127904 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 83, Name: 00000480","2512"
"10:46:37.7127985 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7128061 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000480","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7128151 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000480\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDUGHR.DLL","2512"
"10:46:37.7128241 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000480","0.0000008","","2512"
"10:46:37.7128313 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 84, Name: 00000481","2512"
"10:46:37.7128398 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7128475 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000481","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7128565 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000481\Layout File","0.0000017","Type: REG_SZ, Length: 26, Data: KBDMAORI.DLL","2512"
"10:46:37.7128654 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000481","0.0000009","","2512"
"10:46:37.7128731 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 85, Name: 00000485","2512"
"10:46:37.7128817 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7128893 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000485","0.0000039","Desired Access: Query Value","2512"
"10:46:37.7129000 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000485\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDYAK.DLL","2512"
"10:46:37.7129090 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000485","0.0000008","","2512"
"10:46:37.7129162 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 86, Name: 00000488","2512"
"10:46:37.7129248 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7129324 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000488","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7129414 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000488\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDWOL.DLL","2512"
"10:46:37.7129504 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000488","0.0000008","","2512"
"10:46:37.7129585 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 87, Name: 00000492","2512"
"10:46:37.7129666 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7129747 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000492","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7129832 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000492\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDKURD.DLL","2512"
"10:46:37.7129926 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000492","0.0000008","","2512"
"10:46:37.7129998 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 88, Name: 00000804","2512"
"10:46:37.7130084 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7130161 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000804","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7130250 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000804\Layout File","0.0000017","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:37.7130340 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000804","0.0000017","","2512"
"10:46:37.7130425 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 89, Name: 00000807","2512"
"10:46:37.7130506 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7130587 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000807","0.0000026","Desired Access: Query Value","2512"
"10:46:37.7130677 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000807\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDSG.DLL","2512"
"10:46:37.7130788 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000807","0.0000013","","2512"
"10:46:37.7130869 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 90, Name: 00000809","2512"
"10:46:37.7130954 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7131035 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000809","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7131125 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000809\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDUK.DLL","2512"
"10:46:37.7131214 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000809","0.0000009","","2512"
"10:46:37.7131304 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 91, Name: 0000080a","2512"
"10:46:37.7131432 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7131560 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080a","0.0000030","Desired Access: Query Value","2512"
"10:46:37.7131692 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080a\Layout File","0.0000026","Type: REG_SZ, Length: 20, Data: KBDLA.DLL","2512"
"10:46:37.7131829 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080a","0.0000013","","2512"
"10:46:37.7131944 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 92, Name: 0000080c","2512"
"10:46:37.7132072 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7132200 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080c","0.0000034","Desired Access: Query Value","2512"
"10:46:37.7132337 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080c\Layout File","0.0000025","Type: REG_SZ, Length: 20, Data: KBDBE.DLL","2512"
"10:46:37.7132477 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000080c","0.0000013","","2512"
"10:46:37.7132593 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 93, Name: 00000813","2512"
"10:46:37.7132716 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7132844 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000813","0.0000030","Desired Access: Query Value","2512"
"10:46:37.7132977 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000813\Layout File","0.0000025","Type: REG_SZ, Length: 20, Data: KBDBE.DLL","2512"
"10:46:37.7133113 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000813","0.0000013","","2512"
"10:46:37.7133228 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 94, Name: 00000816","2512"
"10:46:37.7133356 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7133484 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000816","0.0000030","Desired Access: Query Value","2512"
"10:46:37.7133617 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000816\Layout File","0.0000029","Type: REG_SZ, Length: 20, Data: KBDPO.DLL","2512"
"10:46:37.7133753 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000816","0.0000013","","2512"
"10:46:37.7133868 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 95, Name: 0000081a","2512"
"10:46:37.7133996 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7134129 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000081a","0.0000029","Desired Access: Query Value","2512"
"10:46:37.7134261 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000081a\Layout File","0.0000025","Type: REG_SZ, Length: 22, Data: KBDYCL.DLL","2512"
"10:46:37.7134402 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000081a","0.0000012","","2512"
"10:46:37.7134521 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 96, Name: 0000082c","2512"
"10:46:37.7134645 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7134773 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000082c","0.0000030","Desired Access: Query Value","2512"
"10:46:37.7134909 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000082c\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDAZE.DLL","2512"
"10:46:37.7135020 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000082c","0.0000009","","2512"
"10:46:37.7135097 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 97, Name: 0000083b","2512"
"10:46:37.7135182 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7135264 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000083b","0.0000017","Desired Access: Query Value","2512"
"10:46:37.7135349 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000083b\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDFI1.DLL","2512"
"10:46:37.7135438 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000083b","0.0000009","","2512"
"10:46:37.7135515 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 98, Name: 00000843","2512"
"10:46:37.7135596 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7135677 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000843","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7135767 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000843\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDUZB.DLL","2512"
"10:46:37.7135857 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000843","0.0000008","","2512"
"10:46:37.7135933 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 99, Name: 00000850","2512"
"10:46:37.7136014 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7136096 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000850","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7136185 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000850\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDMONMO.DLL","2512"
"10:46:37.7136275 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000850","0.0000008","","2512"
"10:46:37.7136360 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 100, Name: 0000085d","2512"
"10:46:37.7136441 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7136522 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085d","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7136608 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085d\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDIULAT.DLL","2512"
"10:46:37.7136701 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085d","0.0000009","","2512"
"10:46:37.7136782 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 101, Name: 0000085f","2512"
"10:46:37.7136864 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7136945 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085f","0.0000034","Desired Access: Query Value","2512"
"10:46:37.7137051 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085f\Layout File","0.0000026","Type: REG_SZ, Length: 22, Data: KBDTZM.DLL","2512"
"10:46:37.7137149 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000085f","0.0000009","","2512"
"10:46:37.7137222 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 102, Name: 00000c04","2512"
"10:46:37.7137307 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7137388 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c04","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7137474 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c04\Layout File","0.0000025","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:37.7137568 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c04","0.0000012","","2512"
"10:46:37.7137644 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 103, Name: 00000c0c","2512"
"10:46:37.7137725 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7137806 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c0c","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7137892 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c0c\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDFC.DLL","2512"
"10:46:37.7137986 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c0c","0.0000008","","2512"
"10:46:37.7138062 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000018","Index: 104, Name: 00000c1a","2512"
"10:46:37.7138144 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7138220 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c1a","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7138310 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c1a\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDYCC.DLL","2512"
"10:46:37.7138404 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000c1a","0.0000008","","2512"
"10:46:37.7138476 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 105, Name: 00000C51","2512"
"10:46:37.7138562 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7138638 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000C51","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7138728 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000C51\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDDZO.DLL","2512"
"10:46:37.7138818 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00000C51","0.0000008","","2512"
"10:46:37.7138894 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 106, Name: 00001004","2512"
"10:46:37.7138976 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7139057 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001004","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7139142 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001004\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:37.7139232 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001004","0.0000008","","2512"
"10:46:37.7139313 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 107, Name: 00001009","2512"
"10:46:37.7139398 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7139475 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001009","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7139560 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001009\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDCA.DLL","2512"
"10:46:37.7139654 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001009","0.0000008","","2512"
"10:46:37.7139726 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 108, Name: 0000100c","2512"
"10:46:37.7139812 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7139889 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000100c","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7139974 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000100c\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDSF.DLL","2512"
"10:46:37.7140064 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000100c","0.0000008","","2512"
"10:46:37.7140140 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 109, Name: 0000105f","2512"
"10:46:37.7140226 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7140302 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000105f","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7140388 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000105f\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDTIFI.DLL","2512"
"10:46:37.7140477 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000105f","0.0000013","","2512"
"10:46:37.7140554 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 110, Name: 00001404","2512"
"10:46:37.7140635 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7140716 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001404","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7140814 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001404\Layout File","0.0000022","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:37.7140908 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001404","0.0000009","","2512"
"10:46:37.7140985 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 111, Name: 00001809","2512"
"10:46:37.7141066 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7141147 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001809","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7141233 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001809\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDIR.DLL","2512"
"10:46:37.7141326 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00001809","0.0000009","","2512"
"10:46:37.7141408 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 112, Name: 0000201a","2512"
"10:46:37.7141493 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7141570 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000201a","0.0000017","Desired Access: Query Value","2512"
"10:46:37.7141655 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000201a\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDBHC.DLL","2512"
"10:46:37.7141745 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0000201a","0.0000008","","2512"
"10:46:37.7141821 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 113, Name: 00004009","2512"
"10:46:37.7141907 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7141984 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00004009","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7142069 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00004009\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDINEN.DLL","2512"
"10:46:37.7142163 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00004009","0.0000008","","2512"
"10:46:37.7142235 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 114, Name: 00010401","2512"
"10:46:37.7142321 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7142397 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010401","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7142483 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010401\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDA2.DLL","2512"
"10:46:37.7142577 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010401","0.0000008","","2512"
"10:46:37.7142653 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 115, Name: 00010402","2512"
"10:46:37.7142734 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7142816 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010402","0.0000017","Desired Access: Query Value","2512"
"10:46:37.7142901 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010402\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDUS.DLL","2512"
"10:46:37.7142990 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010402","0.0000013","","2512"
"10:46:37.7143067 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 116, Name: 00010405","2512"
"10:46:37.7143153 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7143229 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010405","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7143319 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010405\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDCZ1.DLL","2512"
"10:46:37.7143409 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010405","0.0000012","","2512"
"10:46:37.7143485 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 117, Name: 00010407","2512"
"10:46:37.7143566 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7143648 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010407","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7143733 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010407\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDGR1.DLL","2512"
"10:46:37.7143827 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010407","0.0000008","","2512"
"10:46:37.7143899 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 118, Name: 00010408","2512"
"10:46:37.7143985 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7144074 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010408","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7144160 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010408\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDHE220.DLL","2512"
"10:46:37.7144253 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010408","0.0000009","","2512"
"10:46:37.7144334 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 119, Name: 00010409","2512"
"10:46:37.7144424 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7144501 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010409","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7144590 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010409\Layout File","0.0000026","Type: REG_SZ, Length: 20, Data: KBDDV.DLL","2512"
"10:46:37.7144727 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010409","0.0000013","","2512"
"10:46:37.7144842 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 120, Name: 0001040a","2512"
"10:46:37.7144966 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7145090 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040a","0.0000030","Desired Access: Query Value","2512"
"10:46:37.7145222 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040a\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDES.DLL","2512"
"10:46:37.7145358 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040a","0.0000013","","2512"
"10:46:37.7145478 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 121, Name: 0001040e","2512"
"10:46:37.7145602 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7145730 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040e","0.0000030","Desired Access: Query Value","2512"
"10:46:37.7145866 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040e\Layout File","0.0000026","Type: REG_SZ, Length: 22, Data: KBDHU1.DLL","2512"
"10:46:37.7146003 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001040e","0.0000013","","2512"
"10:46:37.7146122 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 122, Name: 00010410","2512"
"10:46:37.7146246 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7146370 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010410","0.0000034","Desired Access: Query Value","2512"
"10:46:37.7146502 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010410\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDIT142.DLL","2512"
"10:46:37.7146643 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010410","0.0000013","","2512"
"10:46:37.7146762 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 123, Name: 00010415","2512"
"10:46:37.7146890 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7147014 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010415","0.0000030","Desired Access: Query Value","2512"
"10:46:37.7147146 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010415\Layout File","0.0000030","Type: REG_SZ, Length: 20, Data: KBDPL.DLL","2512"
"10:46:37.7147287 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010415","0.0000013","","2512"
"10:46:37.7147402 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 124, Name: 00010416","2512"
"10:46:37.7147530 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7147654 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010416","0.0000030","Desired Access: Query Value","2512"
"10:46:37.7147786 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010416\Layout File","0.0000026","Type: REG_SZ, Length: 20, Data: KBDBR.DLL","2512"
"10:46:37.7147923 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010416","0.0000013","","2512"
"10:46:37.7148051 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 125, Name: 00010418","2512"
"10:46:37.7148175 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7148273 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010418","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7148362 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010418\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDROST.DLL","2512"
"10:46:37.7148456 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010418","0.0000009","","2512"
"10:46:37.7148533 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 126, Name: 00010419","2512"
"10:46:37.7148618 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7148695 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010419","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7148785 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010419\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDRU1.DLL","2512"
"10:46:37.7148874 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010419","0.0000009","","2512"
"10:46:37.7148951 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 127, Name: 0001041b","2512"
"10:46:37.7149032 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7149109 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041b","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7149199 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041b\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDSL1.DLL","2512"
"10:46:37.7149292 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041b","0.0000009","","2512"
"10:46:37.7149365 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 128, Name: 0001041e","2512"
"10:46:37.7149450 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7149527 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041e","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7149612 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041e\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDTH1.DLL","2512"
"10:46:37.7149706 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041e","0.0000009","","2512"
"10:46:37.7149843 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 129, Name: 0001041f","2512"
"10:46:37.7149928 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7150005 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041f","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7150090 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041f\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDTUF.DLL","2512"
"10:46:37.7150180 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001041f","0.0000008","","2512"
"10:46:37.7150257 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 130, Name: 00010426","2512"
"10:46:37.7150338 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7150419 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010426","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7150504 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010426\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDLV1.DLL","2512"
"10:46:37.7150594 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010426","0.0000008","","2512"
"10:46:37.7150671 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 131, Name: 00010427","2512"
"10:46:37.7150752 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7150841 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010427","0.0000026","Desired Access: Query Value","2512"
"10:46:37.7150965 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010427\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDLT1.DLL","2512"
"10:46:37.7151059 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010427","0.0000008","","2512"
"10:46:37.7151136 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 132, Name: 0001042b","2512"
"10:46:37.7151217 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7151298 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042b","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7151387 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042b\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: kbdarmw.dll","2512"
"10:46:37.7151481 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042b","0.0000009","","2512"
"10:46:37.7151554 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 133, Name: 0001042c","2512"
"10:46:37.7151639 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7151716 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042c","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7151805 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042c\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDAZST.DLL","2512"
"10:46:37.7151895 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042c","0.0000013","","2512"
"10:46:37.7151972 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 134, Name: 0001042e","2512"
"10:46:37.7152057 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7152134 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042e","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7152219 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042e\Layout File","0.0000026","Type: REG_SZ, Length: 26, Data: KBDSOREX.DLL","2512"
"10:46:37.7152313 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042e","0.0000009","","2512"
"10:46:37.7152394 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 135, Name: 0001042f","2512"
"10:46:37.7152480 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7152556 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042f","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7152646 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042f\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDMACST.DLL","2512"
"10:46:37.7152736 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001042f","0.0000012","","2512"
"10:46:37.7152812 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 136, Name: 00010437","2512"
"10:46:37.7152898 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7152975 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010437","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7153060 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010437\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: kbdgeoqw.dll","2512"
"10:46:37.7153154 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010437","0.0000008","","2512"
"10:46:37.7153226 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 137, Name: 00010439","2512"
"10:46:37.7153312 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7153388 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010439","0.0000039","Desired Access: Query Value","2512"
"10:46:37.7153491 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010439\Layout File","0.0000025","Type: REG_SZ, Length: 26, Data: KBDINHIN.DLL","2512"
"10:46:37.7153585 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010439","0.0000008","","2512"
"10:46:37.7153661 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 138, Name: 0001043a","2512"
"10:46:37.7153743 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7153824 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043a","0.0000017","Desired Access: Query Value","2512"
"10:46:37.7153909 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043a\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDMLT48.DLL","2512"
"10:46:37.7153999 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043a","0.0000008","","2512"
"10:46:37.7154075 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 139, Name: 0001043b","2512"
"10:46:37.7154156 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7154237 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043b","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7154323 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043b\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDSMSNO.DLL","2512"
"10:46:37.7154417 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001043b","0.0000008","","2512"
"10:46:37.7154489 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 140, Name: 00010444","2512"
"10:46:37.7154575 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7154651 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010444","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7154741 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010444\Layout File","0.0000017","Type: REG_SZ, Length: 26, Data: KBDTT102.DLL","2512"
"10:46:37.7154826 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010444","0.0000013","","2512"
"10:46:37.7154903 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 141, Name: 00010445","2512"
"10:46:37.7154984 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7155061 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010445","0.0000026","Desired Access: Query Value","2512"
"10:46:37.7155151 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010445\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDINBE1.DLL","2512"
"10:46:37.7155244 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010445","0.0000009","","2512"
"10:46:37.7155317 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 142, Name: 00010451","2512"
"10:46:37.7155402 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7155479 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010451","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7155564 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010451\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDTIPRD.DLL","2512"
"10:46:37.7155658 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010451","0.0000009","","2512"
"10:46:37.7155739 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 143, Name: 00010453","2512"
"10:46:37.7155820 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7155897 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010453","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7155983 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010453\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDKNI.DLL","2512"
"10:46:37.7156072 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010453","0.0000013","","2512"
"10:46:37.7156149 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 144, Name: 0001045a","2512"
"10:46:37.7156234 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7156311 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045a","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7156401 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045a\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDSYR2.DLL","2512"
"10:46:37.7156490 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045a","0.0000009","","2512"
"10:46:37.7156567 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 145, Name: 0001045b","2512"
"10:46:37.7156648 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7156729 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045b","0.0000017","Desired Access: Query Value","2512"
"10:46:37.7156815 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045b\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDSW09.DLL","2512"
"10:46:37.7156904 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045b","0.0000009","","2512"
"10:46:37.7156981 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 146, Name: 0001045c","2512"
"10:46:37.7157062 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7157139 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045c","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7157228 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045c\Layout File","0.0000017","Type: REG_SZ, Length: 26, Data: KBDCHERP.DLL","2512"
"10:46:37.7157318 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045c","0.0000009","","2512"
"10:46:37.7157395 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 147, Name: 0001045d","2512"
"10:46:37.7157480 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7157557 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045d","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7157642 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045d\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDINUK2.DLL","2512"
"10:46:37.7157745 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001045d","0.0000008","","2512"
"10:46:37.7157826 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 148, Name: 00010465","2512"
"10:46:37.7157911 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7157988 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010465","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7158082 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010465\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDDIV2.DLL","2512"
"10:46:37.7158176 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010465","0.0000008","","2512"
"10:46:37.7158257 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 149, Name: 00010480","2512"
"10:46:37.7158385 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7158513 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010480","0.0000034","Desired Access: Query Value","2512"
"10:46:37.7158653 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010480\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDUGHR1.DLL","2512"
"10:46:37.7158794 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010480","0.0000013","","2512"
"10:46:37.7158914 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 150, Name: 0001080c","2512"
"10:46:37.7159037 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7159165 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001080c","0.0000030","Desired Access: Query Value","2512"
"10:46:37.7159298 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001080c\Layout File","0.0000025","Type: REG_SZ, Length: 24, Data: KBDBENE.DLL","2512"
"10:46:37.7159434 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001080c","0.0000013","","2512"
"10:46:37.7159554 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 151, Name: 0001083b","2512"
"10:46:37.7159682 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7159810 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001083b","0.0000030","Desired Access: Query Value","2512"
"10:46:37.7159946 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001083b\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDFI1.DLL","2512"
"10:46:37.7160083 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001083b","0.0000013","","2512"
"10:46:37.7160198 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 152, Name: 00010850","2512"
"10:46:37.7160326 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7160454 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010850","0.0000030","Desired Access: Query Value","2512"
"10:46:37.7160586 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010850\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDMONST.DLL","2512"
"10:46:37.7160727 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010850","0.0000009","","2512"
"10:46:37.7160868 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 153, Name: 00010c00","2512"
"10:46:37.7160992 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7161120 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010c00","0.0000029","Desired Access: Query Value","2512"
"10:46:37.7161252 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010c00\Layout File","0.0000030","Type: REG_SZ, Length: 24, Data: KBDMYAN.DLL","2512"
"10:46:37.7161393 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00010c00","0.0000012","","2512"
"10:46:37.7161508 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 154, Name: 00011009","2512"
"10:46:37.7161632 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7161755 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011009","0.0000026","Desired Access: Query Value","2512"
"10:46:37.7161883 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011009\Layout File","0.0000034","Type: REG_SZ, Length: 22, Data: KBDCAN.DLL","2512"
"10:46:37.7161994 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011009","0.0000013","","2512"
"10:46:37.7162075 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 155, Name: 0001105f","2512"
"10:46:37.7162161 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7162237 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001105f","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7162327 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001105f\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDTIFI2.DLL","2512"
"10:46:37.7162417 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0001105f","0.0000012","","2512"
"10:46:37.7162493 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 156, Name: 00011809","2512"
"10:46:37.7162575 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7162656 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011809","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7162741 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011809\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDGAE.DLL","2512"
"10:46:37.7162831 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00011809","0.0000008","","2512"
"10:46:37.7162907 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 157, Name: 00020401","2512"
"10:46:37.7162988 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7163069 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020401","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7163155 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020401\Layout File","0.0000021","Type: REG_SZ, Length: 20, Data: KBDA3.DLL","2512"
"10:46:37.7163249 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020401","0.0000008","","2512"
"10:46:37.7163321 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 158, Name: 00020402","2512"
"10:46:37.7163407 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7163483 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020402","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7163569 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020402\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDBGPH.DLL","2512"
"10:46:37.7163663 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020402","0.0000008","","2512"
"10:46:37.7163735 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 159, Name: 00020405","2512"
"10:46:37.7163820 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7163897 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020405","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7163987 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020405\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDCZ2.DLL","2512"
"10:46:37.7164076 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020405","0.0000009","","2512"
"10:46:37.7164149 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 160, Name: 00020408","2512"
"10:46:37.7164234 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7164311 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020408","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7164396 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020408\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDHE319.DLL","2512"
"10:46:37.7164490 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020408","0.0000009","","2512"
"10:46:37.7164563 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 161, Name: 00020409","2512"
"10:46:37.7164648 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7164725 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020409","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7164810 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020409\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDUSX.DLL","2512"
"10:46:37.7164904 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020409","0.0000009","","2512"
"10:46:37.7164985 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 162, Name: 0002040d","2512"
"10:46:37.7165071 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7165147 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002040d","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7165233 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002040d\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: kbdhebl3.dll","2512"
"10:46:37.7165327 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002040d","0.0000008","","2512"
"10:46:37.7165399 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 163, Name: 00020418","2512"
"10:46:37.7165480 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7165561 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020418","0.0000017","Desired Access: Query Value","2512"
"10:46:37.7165647 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020418\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDROPR.DLL","2512"
"10:46:37.7165740 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020418","0.0000009","","2512"
"10:46:37.7165813 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 164, Name: 00020419","2512"
"10:46:37.7165898 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7165975 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020419","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7166065 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020419\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDRUM.DLL","2512"
"10:46:37.7166154 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020419","0.0000013","","2512"
"10:46:37.7166231 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 165, Name: 0002041e","2512"
"10:46:37.7166312 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7166393 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002041e","0.0000026","Desired Access: Query Value","2512"
"10:46:37.7166483 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002041e\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDTH2.DLL","2512"
"10:46:37.7166577 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002041e","0.0000008","","2512"
"10:46:37.7166653 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 166, Name: 00020422","2512"
"10:46:37.7166739 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7166816 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020422","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7166905 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020422\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDUR1.DLL","2512"
"10:46:37.7166999 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020422","0.0000009","","2512"
"10:46:37.7167072 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 167, Name: 00020426","2512"
"10:46:37.7167157 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7167234 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020426","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7167319 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020426\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDLVST.DLL","2512"
"10:46:37.7167413 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020426","0.0000008","","2512"
"10:46:37.7167485 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 168, Name: 00020427","2512"
"10:46:37.7167571 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7167648 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020427","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7167737 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020427\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDLT2.DLL","2512"
"10:46:37.7167827 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020427","0.0000008","","2512"
"10:46:37.7167904 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 169, Name: 0002042b","2512"
"10:46:37.7167985 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7168066 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042b","0.0000017","Desired Access: Query Value","2512"
"10:46:37.7168151 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042b\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: kbdarmph.dll","2512"
"10:46:37.7168241 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042b","0.0000008","","2512"
"10:46:37.7168313 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 170, Name: 0002042e","2512"
"10:46:37.7168399 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7168480 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042e","0.0000017","Desired Access: Query Value","2512"
"10:46:37.7168565 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042e\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDSORS1.DLL","2512"
"10:46:37.7168659 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002042e","0.0000008","","2512"
"10:46:37.7168731 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 171, Name: 00020437","2512"
"10:46:37.7168812 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7168893 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020437","0.0000018","Desired Access: Query Value","2512"
"10:46:37.7168979 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020437\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: kbdgeoer.dll","2512"
"10:46:37.7169068 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020437","0.0000009","","2512"
"10:46:37.7169145 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 172, Name: 00020445","2512"
"10:46:37.7169231 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7169307 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020445","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7169397 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020445\Layout File","0.0000017","Type: REG_SZ, Length: 26, Data: KBDINBE2.DLL","2512"
"10:46:37.7169487 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020445","0.0000008","","2512"
"10:46:37.7169559 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 173, Name: 00020449","2512"
"10:46:37.7169644 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7169725 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020449","0.0000018","Desired Access: Query Value","2512"
"10:46:37.7169811 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020449\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDTAM99.DLL","2512"
"10:46:37.7169900 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020449","0.0000009","","2512"
"10:46:37.7169981 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 174, Name: 0002083b","2512"
"10:46:37.7170063 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7170139 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002083b","0.0000026","Desired Access: Query Value","2512"
"10:46:37.7170237 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002083b\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: KBDSMSFI.DLL","2512"
"10:46:37.7170327 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0002083b","0.0000009","","2512"
"10:46:37.7170404 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 175, Name: 00020c00","2512"
"10:46:37.7170485 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7170562 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020c00","0.0000025","Desired Access: Query Value","2512"
"10:46:37.7170651 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020c00\Layout File","0.0000022","Type: REG_SZ, Length: 22, Data: KBDNTL.DLL","2512"
"10:46:37.7170758 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00020c00","0.0000009","","2512"
"10:46:37.7170835 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 176, Name: 00030402","2512"
"10:46:37.7170916 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7170993 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030402","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7171082 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030402\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDBULG.DLL","2512"
"10:46:37.7171172 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030402","0.0000008","","2512"
"10:46:37.7171249 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 177, Name: 00030408","2512"
"10:46:37.7171338 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7171419 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030408","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7171509 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030408\Layout File","0.0000017","Type: REG_SZ, Length: 26, Data: KBDHELA2.DLL","2512"
"10:46:37.7171599 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030408","0.0000008","","2512"
"10:46:37.7171675 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 178, Name: 00030409","2512"
"10:46:37.7171761 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7171837 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030409","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7171957 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030409\Layout File","0.0000030","Type: REG_SZ, Length: 22, Data: KBDUSL.DLL","2512"
"10:46:37.7172093 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030409","0.0000013","","2512"
"10:46:37.7172209 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 179, Name: 0003041e","2512"
"10:46:37.7172337 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000012","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7172465 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003041e","0.0000034","Desired Access: Query Value","2512"
"10:46:37.7172605 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003041e\Layout File","0.0000026","Type: REG_SZ, Length: 22, Data: KBDTH3.DLL","2512"
"10:46:37.7172742 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003041e","0.0000013","","2512"
"10:46:37.7172857 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 180, Name: 0003042b","2512"
"10:46:37.7172985 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7173113 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003042b","0.0000030","Desired Access: Query Value","2512"
"10:46:37.7173245 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003042b\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: kbdarmty.dll","2512"
"10:46:37.7173386 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\0003042b","0.0000013","","2512"
"10:46:37.7173501 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000030","Index: 181, Name: 00030437","2512"
"10:46:37.7173629 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7173757 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030437","0.0000030","Desired Access: Query Value","2512"
"10:46:37.7173885 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030437\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: kbdgeome.dll","2512"
"10:46:37.7174026 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030437","0.0000013","","2512"
"10:46:37.7174141 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 182, Name: 00030c00","2512"
"10:46:37.7174265 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7174393 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030c00","0.0000030","Desired Access: Query Value","2512"
"10:46:37.7174525 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030c00\Layout File","0.0000030","Type: REG_SZ, Length: 26, Data: KBDTAILE.DLL","2512"
"10:46:37.7174666 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00030c00","0.0000013","","2512"
"10:46:37.7174786 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 183, Name: 00040402","2512"
"10:46:37.7174909 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7175033 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040402","0.0000034","Desired Access: Query Value","2512"
"10:46:37.7175174 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040402\Layout File","0.0000026","Type: REG_SZ, Length: 26, Data: KBDBGPH1.DLL","2512"
"10:46:37.7175311 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040402","0.0000012","","2512"
"10:46:37.7175439 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000025","Index: 184, Name: 00040408","2512"
"10:46:37.7175537 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7175618 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040408","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7175707 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040408\Layout File","0.0000017","Type: REG_SZ, Length: 26, Data: KBDHELA3.DLL","2512"
"10:46:37.7175797 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040408","0.0000008","","2512"
"10:46:37.7175869 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 185, Name: 00040409","2512"
"10:46:37.7175955 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7176032 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040409","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7176121 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040409\Layout File","0.0000017","Type: REG_SZ, Length: 22, Data: KBDUSR.DLL","2512"
"10:46:37.7176211 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040409","0.0000008","","2512"
"10:46:37.7176283 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 186, Name: 00040437","2512"
"10:46:37.7176369 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7176445 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040437","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7176531 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040437\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: kbdgeooa.dll","2512"
"10:46:37.7176625 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040437","0.0000008","","2512"
"10:46:37.7176701 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000018","Index: 187, Name: 00040c00","2512"
"10:46:37.7176783 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7176859 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040c00","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7176949 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040c00\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDOGHAM.DLL","2512"
"10:46:37.7177039 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00040c00","0.0000008","","2512"
"10:46:37.7177115 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 188, Name: 00050408","2512"
"10:46:37.7177196 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7177273 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050408","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7177363 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050408\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: KBDGKL.DLL","2512"
"10:46:37.7177452 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050408","0.0000009","","2512"
"10:46:37.7177529 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 189, Name: 00050409","2512"
"10:46:37.7177610 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7177687 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050409","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7177777 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050409\Layout File","0.0000017","Type: REG_SZ, Length: 22, Data: KBDUSA.DLL","2512"
"10:46:37.7177866 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050409","0.0000009","","2512"
"10:46:37.7177939 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 190, Name: 00050429","2512"
"10:46:37.7178020 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7178101 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050429","0.0000034","Desired Access: Query Value","2512"
"10:46:37.7178208 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050429\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: kbdfar.dll","2512"
"10:46:37.7178297 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00050429","0.0000009","","2512"
"10:46:37.7178374 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 191, Name: 00060408","2512"
"10:46:37.7178455 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7178536 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00060408","0.0000017","Desired Access: Query Value","2512"
"10:46:37.7178621 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00060408\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDHEPT.DLL","2512"
"10:46:37.7178711 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00060408","0.0000009","","2512"
"10:46:37.7178788 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 192, Name: 00070c00","2512"
"10:46:37.7178873 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7178950 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00070c00","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7179040 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00070c00\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: kbdlisub.dll","2512"
"10:46:37.7179129 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00070c00","0.0000009","","2512"
"10:46:37.7179206 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 193, Name: 00080c00","2512"
"10:46:37.7179287 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7179364 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00080c00","0.0000025","Desired Access: Query Value","2512"
"10:46:37.7179458 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00080c00\Layout File","0.0000017","Type: REG_SZ, Length: 26, Data: kbdlisus.dll","2512"
"10:46:37.7179547 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00080c00","0.0000009","","2512"
"10:46:37.7179624 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 194, Name: 00090c00","2512"
"10:46:37.7179705 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7179782 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00090c00","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7179872 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00090c00\Layout File","0.0000021","Type: REG_SZ, Length: 22, Data: kbdnko.dll","2512"
"10:46:37.7179961 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00090c00","0.0000009","","2512"
"10:46:37.7180038 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 195, Name: 000a0c00","2512"
"10:46:37.7180119 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7180200 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000a0c00","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7180285 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000a0c00\Layout File","0.0000022","Type: REG_SZ, Length: 26, Data: kbdphags.dll","2512"
"10:46:37.7180375 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000a0c00","0.0000013","","2512"
"10:46:37.7180452 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 196, Name: 000b0c00","2512"
"10:46:37.7180533 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7180614 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000b0c00","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7180712 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000b0c00\Layout File","0.0000017","Type: REG_SZ, Length: 22, Data: KBDBUG.DLL","2512"
"10:46:37.7180802 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000b0c00","0.0000008","","2512"
"10:46:37.7180879 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 197, Name: 000c0c00","2512"
"10:46:37.7180960 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7181036 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000c0c00","0.0000026","Desired Access: Query Value","2512"
"10:46:37.7181126 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000c0c00\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDGTHC.DLL","2512"
"10:46:37.7181216 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000c0c00","0.0000012","","2512"
"10:46:37.7181292 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 198, Name: 000d0c00","2512"
"10:46:37.7181373 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7181450 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000d0c00","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7181540 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000d0c00\Layout File","0.0000017","Type: REG_SZ, Length: 24, Data: KBDOLCH.DLL","2512"
"10:46:37.7181629 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000d0c00","0.0000009","","2512"
"10:46:37.7181702 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000026","Index: 199, Name: 000e0c00","2512"
"10:46:37.7181826 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7181920 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000e0c00","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7182005 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000e0c00\Layout File","0.0000026","Type: REG_SZ, Length: 22, Data: KBDOSM.DLL","2512"
"10:46:37.7182099 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000e0c00","0.0000013","","2512"
"10:46:37.7182184 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 200, Name: 000f0c00","2512"
"10:46:37.7182269 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7182346 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000f0c00","0.0000017","Desired Access: Query Value","2512"
"10:46:37.7182432 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000f0c00\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDOLDIT.DLL","2512"
"10:46:37.7182521 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\000f0c00","0.0000013","","2512"
"10:46:37.7182598 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000021","Index: 201, Name: 00100c00","2512"
"10:46:37.7182679 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7182756 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00100c00","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7182845 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00100c00\Layout File","0.0000022","Type: REG_SZ, Length: 24, Data: KBDSORA.DLL","2512"
"10:46:37.7182935 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00100c00","0.0000009","","2512"
"10:46:37.7183012 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 202, Name: 00110c00","2512"
"10:46:37.7183093 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7183170 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00110c00","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7183259 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00110c00\Layout File","0.0000017","Type: REG_SZ, Length: 22, Data: KBDJAV.DLL","2512"
"10:46:37.7183349 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00110c00","0.0000008","","2512"
"10:46:37.7183426 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000017","Index: 203, Name: 00120c00","2512"
"10:46:37.7183507 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000008","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7183584 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00120c00","0.0000021","Desired Access: Query Value","2512"
"10:46:37.7183669 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00120c00\Layout File","0.0000021","Type: REG_SZ, Length: 26, Data: KBDFTHRK.DLL","2512"
"10:46:37.7183763 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00120c00","0.0000008","","2512"
"10:46:37.7183835 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 204, Name: 00130c00","2512"
"10:46:37.7183916 AM","firefox.exe","7384","RegQueryKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000013","Query: HandleTags, HandleTags: 0x0","2512"
"10:46:37.7183997 AM","firefox.exe","7384","RegOpenKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00130c00","0.0000022","Desired Access: Query Value","2512"
"10:46:37.7184083 AM","firefox.exe","7384","RegQueryValue","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00130c00\Layout File","0.0000021","Type: REG_SZ, Length: 24, Data: KBDMYAN.DLL","2512"
"10:46:37.7184172 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts\00130c00","0.0000013","","2512"
"10:46:37.7184249 AM","firefox.exe","7384","RegEnumKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000022","Index: 205, Length: 288","2512"
"10:46:37.7184347 AM","firefox.exe","7384","RegCloseKey","HKLM\System\CurrentControlSet\Control\Keyboard Layouts","0.0000009","","2512"
"10:46:37.7186971 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7187253 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000038","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","2512"
"10:46:37.7187385 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000051","","2512"
"10:46:37.7190141 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7190444 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000043","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","2512"
"10:46:37.7190615 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000077","","2512"
"10:46:37.7193329 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7193563 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:37.7193674 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000047","","2512"
"10:46:37.7195360 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7195547 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:37.7195650 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000042","","2512"
"10:46:37.7196763 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000116","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7197032 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000030","AllocationSize: 90,112, EndOfFile: 87,200, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.7197199 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7197322 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000022","AllocationSize: 90,112, EndOfFile: 87,200, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.7197523 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.7198035 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000055","","2512"
"10:46:37.7199473 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000170","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7199882 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000034","AllocationSize: 90,112, EndOfFile: 87,200, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.7200036 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7200155 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000017","AllocationSize: 90,112, EndOfFile: 87,200, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.7200360 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.7200876 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000022","AllocationSize: 90,112, EndOfFile: 87,200, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.7201009 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000055","","2512"
"10:46:37.7202246 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7202506 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000026","AllocationSize: 90,112, EndOfFile: 87,200, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.7202634 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7202737 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000021","AllocationSize: 90,112, EndOfFile: 87,200, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.7202916 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.7207161 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000056","","2512"
"10:46:37.7210622 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7210865 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:37.7210988 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000043","","2512"
"10:46:37.7213024 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7213224 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:37.7213331 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000043","","2512"
"10:46:37.7215306 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7215494 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:37.7215596 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000043","","2512"
"10:46:37.7217687 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7218037 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000030","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","2512"
"10:46:37.7218148 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000043","","2512"
"10:46:37.7218502 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7218724 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000132","Filter: Windows, 1: Windows","2512"
"10:46:37.7218971 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:37.7219940 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7220162 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:37.7220379 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:37.7221344 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7221561 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\shell32.dll","0.0000115","Filter: shell32.dll, 1: shell32.dll","2512"
"10:46:37.7221775 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.7223584 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7223874 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000030","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","2512"
"10:46:37.7223980 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000043","","2512"
"10:46:37.7224318 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7224505 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:37.7224706 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:37.7225602 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7225807 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000093","Filter: System32, 1: System32","2512"
"10:46:37.7226003 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:37.7226907 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7227108 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\shell32.dll","0.0000111","Filter: shell32.dll, 1: shell32.dll","2512"
"10:46:37.7227351 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:37.7228499 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7228844 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shell32.dll","0.0000030","AllocationSize: 21,389,312, EndOfFile: 21,388,752, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7229002 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shell32.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7229118 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shell32.dll","0.0000021","AllocationSize: 21,389,312, EndOfFile: 21,388,752, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7229310 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shell32.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:37.7230406 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000056","","2512"
"10:46:37.7231652 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7232019 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shell32.dll","0.0000030","AllocationSize: 21,389,312, EndOfFile: 21,388,752, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7232168 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shell32.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7232283 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shell32.dll","0.0000022","AllocationSize: 21,389,312, EndOfFile: 21,388,752, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7232475 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shell32.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.7233649 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shell32.dll","0.0000038","AllocationSize: 21,389,312, EndOfFile: 21,388,752, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7233858 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000081","","2512"
"10:46:37.7236324 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000136","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7236704 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shell32.dll","0.0000025","AllocationSize: 21,389,312, EndOfFile: 21,388,752, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7236849 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shell32.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7236964 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shell32.dll","0.0000017","AllocationSize: 21,389,312, EndOfFile: 21,388,752, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7237147 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shell32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.7284589 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000089","","2512"
"10:46:37.7314118 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7314502 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000039","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","2512"
"10:46:37.7314643 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000051","","2512"
"10:46:37.7316623 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7316917 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000030","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","2512"
"10:46:37.7317032 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000043","","2512"
"10:46:37.7319132 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shell32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7319413 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000030","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","2512"
"10:46:37.7319524 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shell32.dll","0.0000038","","2512"
"10:46:37.7319887 AM","firefox.exe","7384","CreateFile","C:\","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7320138 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000278","Filter: Windows, 1: Windows","2512"
"10:46:37.7320535 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:37.7321478 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7321700 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:37.7321913 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:37.7322903 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7323121 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\shell32.dll","0.0000136","Filter: shell32.dll, 1: shell32.dll","2512"
"10:46:37.7323364 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.7325591 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7325903 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","2512"
"10:46:37.7326014 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000042","","2512"
"10:46:37.7326355 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7326547 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:37.7326743 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:37.7327644 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7327853 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000093","Filter: System32, 1: System32","2512"
"10:46:37.7328049 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.7328970 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7329175 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dwmapi.dll","0.0000107","Filter: dwmapi.dll, 1: dwmapi.dll","2512"
"10:46:37.7329384 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:37.7331138 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7331420 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000029","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","2512"
"10:46:37.7331526 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000043","","2512"
"10:46:37.7331855 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7332038 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:37.7332234 AM","firefox.exe","7384","CloseFile","C:\","0.0000035","","2512"
"10:46:37.7333203 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7333408 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000089","Filter: System32, 1: System32","2512"
"10:46:37.7333600 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.7334568 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7334773 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dwmapi.dll","0.0000137","Filter: dwmapi.dll, 1: dwmapi.dll","2512"
"10:46:37.7335008 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.7336130 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7336488 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dwmapi.dll","0.0000047","AllocationSize: 147,456, EndOfFile: 146,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7336749 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000064","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7336932 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dwmapi.dll","0.0000021","AllocationSize: 147,456, EndOfFile: 146,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7337133 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:37.7337610 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000052","","2512"
"10:46:37.7338831 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7339189 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dwmapi.dll","0.0000026","AllocationSize: 147,456, EndOfFile: 146,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7339334 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7339445 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dwmapi.dll","0.0000021","AllocationSize: 147,456, EndOfFile: 146,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7339633 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.7340111 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dwmapi.dll","0.0000017","AllocationSize: 147,456, EndOfFile: 146,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7340234 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000069","","2512"
"10:46:37.7341527 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7341864 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dwmapi.dll","0.0000026","AllocationSize: 147,456, EndOfFile: 146,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7341997 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7342103 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dwmapi.dll","0.0000017","AllocationSize: 147,456, EndOfFile: 146,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7342282 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dwmapi.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.7344761 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000052","","2512"
"10:46:37.7348021 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7348333 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000029","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","2512"
"10:46:37.7348452 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000047","","2512"
"10:46:37.7350901 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7351200 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","2512"
"10:46:37.7351315 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000043","","2512"
"10:46:37.7354246 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7354656 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000042","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","2512"
"10:46:37.7354826 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000060","","2512"
"10:46:37.7355338 AM","firefox.exe","7384","CreateFile","C:\","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7355569 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000119","Filter: Windows, 1: Windows","2512"
"10:46:37.7355808 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.7356793 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7357011 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:37.7357216 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000043","","2512"
"10:46:37.7358172 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7358385 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dwmapi.dll","0.0000107","Filter: dwmapi.dll, 1: dwmapi.dll","2512"
"10:46:37.7358594 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:37.7360889 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7361214 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000030","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","2512"
"10:46:37.7361325 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000042","","2512"
"10:46:37.7361679 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7361867 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:37.7362071 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:37.7362972 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7363176 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:37.7363373 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.7364299 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7364508 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\pnrpnsp.dll","0.0000128","Filter: pnrpnsp.dll, 1: pnrpnsp.dll","2512"
"10:46:37.7364742 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:37.7366466 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7366748 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000029","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","2512"
"10:46:37.7366854 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000039","","2512"
"10:46:37.7367179 AM","firefox.exe","7384","CreateFile","C:\","0.0000076","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7367358 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000089","Filter: Windows, 1: Windows","2512"
"10:46:37.7367550 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.7368441 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7368638 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:37.7368838 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:37.7369811 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7370012 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\pnrpnsp.dll","0.0000153","Filter: pnrpnsp.dll, 1: pnrpnsp.dll","2512"
"10:46:37.7370289 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.7371552 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7371902 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000034","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7372064 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7372192 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000021","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7372388 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.7372819 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000056","","2512"
"10:46:37.7374048 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7374406 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000030","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7374547 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7374662 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000017","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7374850 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.7375247 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000051","","2512"
"10:46:37.7377175 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7377401 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:37.7377508 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000039","","2512"
"10:46:37.7379394 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7379595 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000025","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:37.7379697 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000030","","2512"
"10:46:37.7380883 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7381246 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000030","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7381391 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7381497 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000018","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7381677 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:37.7382406 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000022","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7382526 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7382624 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000017","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7382790 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\pnrpnsp.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.7383336 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\pnrpnsp.dll","0.0000278","Offset: 0, Length: 84,992, Priority: Normal","2512"
"10:46:37.7390760 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7391021 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000123","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:37.7392134 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000188","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.7393209 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000107","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7393453 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000025","Information: DACL","2512"
"10:46:37.7393581 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000042","","2512"
"10:46:37.7394630 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.7395595 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000102","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7395816 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000017","Information: DACL","2512"
"10:46:37.7395923 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:37.7398278 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000145","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:37.7399661 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000239","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.7401359 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000170","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7401721 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000035","Information: DACL","2512"
"10:46:37.7401905 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000060","","2512"
"10:46:37.7403326 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.7404333 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7404563 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:37.7404674 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:37.7408877 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-PeerToPeer-Full-Package~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7409146 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-PeerToPeer-Full-Package~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 2:46:43 PM, ChangeTime: 3/20/2019 6:59:18 PM, AllocationSize: 20480, EndOfFile: 18721, FileAttributes: A","2512"
"10:46:37.7409278 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-PeerToPeer-Full-Package~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","","2512"
"10:46:37.7411548 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7411799 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","CreationTime: 4/25/2019 5:43:24 PM, LastAccessTime: 4/25/2019 5:43:24 PM, LastWriteTime: 4/3/2019 9:59:09 AM, ChangeTime: 4/25/2019 8:12:34 PM, AllocationSize: 12288, EndOfFile: 11272, FileAttributes: A","2512"
"10:46:37.7411919 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000043","","2512"
"10:46:37.7412252 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000042","","2512"
"10:46:37.7412401 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:37.7414470 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7414696 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","CreationTime: 4/25/2019 5:43:24 PM, LastAccessTime: 4/25/2019 5:43:24 PM, LastWriteTime: 4/3/2019 9:59:09 AM, ChangeTime: 4/25/2019 8:12:34 PM, AllocationSize: 12288, EndOfFile: 11272, FileAttributes: A","2512"
"10:46:37.7414812 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000038","","2512"
"10:46:37.7415925 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7416190 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","AllocationSize: 12,288, EndOfFile: 11,272, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7416356 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7416476 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","AllocationSize: 12,288, EndOfFile: 11,272, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7416668 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.7417338 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000046","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:37.7417551 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000055","CreationTime: 4/25/2019 5:43:24 PM, LastAccessTime: 4/25/2019 5:43:24 PM, LastWriteTime: 4/3/2019 9:59:09 AM, ChangeTime: 4/25/2019 8:12:34 PM, FileAttributes: A, AllocationSize: 12,288, EndOfFile: 11,272, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x12000000019a27, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:37.7419104 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000213","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7419560 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","AllocationSize: 12,288, EndOfFile: 11,272, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7419718 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000047","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7419855 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","AllocationSize: 12,288, EndOfFile: 11,272, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7420047 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.7420768 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000064","","2512"
"10:46:37.7422163 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000137","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7422458 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000029","AllocationSize: 12,288, EndOfFile: 11,272, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7422765 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7422880 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","AllocationSize: 12,288, EndOfFile: 11,272, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7423072 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.7423430 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000056","","2512"
"10:46:37.7424702 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7424979 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","AllocationSize: 12,288, EndOfFile: 11,272, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7425163 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7425269 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000022","AllocationSize: 12,288, EndOfFile: 11,272, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7425448 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.7425901 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000055","","2512"
"10:46:37.7427223 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000064","","2512"
"10:46:37.7427642 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3010_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","","2512"
"10:46:37.7430317 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7430696 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000035","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","2512"
"10:46:37.7430816 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000043","","2512"
"10:46:37.7432796 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7433103 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000025","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","2512"
"10:46:37.7433210 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000042","","2512"
"10:46:37.7435266 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7435548 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000025","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","2512"
"10:46:37.7435650 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000043","","2512"
"10:46:37.7436008 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7436230 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000133","Filter: Windows, 1: Windows","2512"
"10:46:37.7436482 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.7437425 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7437647 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:37.7437864 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:37.7438803 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7439016 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\pnrpnsp.dll","0.0000171","Filter: pnrpnsp.dll, 1: pnrpnsp.dll","2512"
"10:46:37.7439298 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.7441423 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7441751 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000035","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:37.7441867 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000042","","2512"
"10:46:37.7442242 AM","firefox.exe","7384","CreateFile","C:\","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7442519 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000133","Filter: Windows, 1: Windows","2512"
"10:46:37.7442814 AM","firefox.exe","7384","CloseFile","C:\","0.0000055","","2512"
"10:46:37.7444171 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7444474 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000132","Filter: System32, 1: System32","2512"
"10:46:37.7444759 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000060","","2512"
"10:46:37.7445830 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7446044 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\winmm.dll","0.0000119","Filter: winmm.dll, 1: winmm.dll","2512"
"10:46:37.7446266 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.7447964 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7448245 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:37.7448352 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000043","","2512"
"10:46:37.7448680 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7448864 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:37.7449064 AM","firefox.exe","7384","CloseFile","C:\","0.0000035","","2512"
"10:46:37.7450024 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7450229 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000120","Filter: System32, 1: System32","2512"
"10:46:37.7450989 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:37.7452043 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7452247 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\winmm.dll","0.0000120","Filter: winmm.dll, 1: winmm.dll","2512"
"10:46:37.7452474 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:37.7453604 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000150","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7454027 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmm.dll","0.0000038","AllocationSize: 126,976, EndOfFile: 123,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7454214 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7454334 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmm.dll","0.0000021","AllocationSize: 126,976, EndOfFile: 123,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7454534 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.7454999 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000056","","2512"
"10:46:37.7456220 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7456578 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmm.dll","0.0000026","AllocationSize: 126,976, EndOfFile: 123,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7456723 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7456830 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmm.dll","0.0000021","AllocationSize: 126,976, EndOfFile: 123,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7457018 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:37.7457512 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmm.dll","0.0000018","AllocationSize: 126,976, EndOfFile: 123,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7457640 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000052","","2512"
"10:46:37.7458839 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7459176 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmm.dll","0.0000022","AllocationSize: 126,976, EndOfFile: 123,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7459304 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000018","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7459407 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmm.dll","0.0000017","AllocationSize: 126,976, EndOfFile: 123,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7459578 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmm.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.7462445 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000055","","2512"
"10:46:37.7465862 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7466174 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000034","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:37.7466293 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000047","","2512"
"10:46:37.7468192 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7468465 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:37.7468576 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000038","","2512"
"10:46:37.7470564 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmm.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7470837 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000026","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:37.7470940 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmm.dll","0.0000038","","2512"
"10:46:37.7471285 AM","firefox.exe","7384","CreateFile","C:\","0.0000086","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7471490 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000107","Filter: Windows, 1: Windows","2512"
"10:46:37.7471712 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.7472638 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7472851 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000103","Filter: System32, 1: System32","2512"
"10:46:37.7473060 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:37.7473995 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7474208 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\winmm.dll","0.0000154","Filter: winmm.dll, 1: winmm.dll","2512"
"10:46:37.7474468 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:37.7476538 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7476845 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000030","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","2512"
"10:46:37.7476951 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000043","","2512"
"10:46:37.7477289 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7477472 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:37.7477707 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.7478607 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7478820 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:37.7479017 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.7479989 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7480198 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wtsapi32.dll","0.0000111","Filter: wtsapi32.dll, 1: wtsapi32.dll","2512"
"10:46:37.7480412 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.7482217 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7482502 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000030","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","2512"
"10:46:37.7482609 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000043","","2512"
"10:46:37.7482929 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7483125 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:37.7483317 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:37.7484636 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7484943 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000132","Filter: System32, 1: System32","2512"
"10:46:37.7485237 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000052","","2512"
"10:46:37.7486611 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7486897 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wtsapi32.dll","0.0000166","Filter: wtsapi32.dll, 1: wtsapi32.dll","2512"
"10:46:37.7487191 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000043","","2512"
"10:46:37.7488331 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000123","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7488681 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000034","AllocationSize: 65,536, EndOfFile: 64,168, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7488838 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7488958 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000021","AllocationSize: 65,536, EndOfFile: 64,168, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7489150 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.7489564 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000051","","2512"
"10:46:37.7490844 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000123","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7491206 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000026","AllocationSize: 65,536, EndOfFile: 64,168, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7491347 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7491458 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000017","AllocationSize: 65,536, EndOfFile: 64,168, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7491642 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:37.7492107 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000017","AllocationSize: 65,536, EndOfFile: 64,168, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7492230 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000056","","2512"
"10:46:37.7493425 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7493754 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000021","AllocationSize: 65,536, EndOfFile: 64,168, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7493877 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7493980 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000017","AllocationSize: 65,536, EndOfFile: 64,168, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7494155 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wtsapi32.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:37.7496813 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000055","","2512"
"10:46:37.7500047 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7500367 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000030","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","2512"
"10:46:37.7500486 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000043","","2512"
"10:46:37.7502415 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7502697 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000029","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","2512"
"10:46:37.7502807 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000043","","2512"
"10:46:37.7504902 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7505175 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000026","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","2512"
"10:46:37.7505278 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000043","","2512"
"10:46:37.7505623 AM","firefox.exe","7384","CreateFile","C:\","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7505824 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000107","Filter: Windows, 1: Windows","2512"
"10:46:37.7506046 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.7506959 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7507168 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:37.7507377 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.7508307 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7508516 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wtsapi32.dll","0.0000115","Filter: wtsapi32.dll, 1: wtsapi32.dll","2512"
"10:46:37.7508734 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:37.7510910 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7511221 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000030","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:37.7511328 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000043","","2512"
"10:46:37.7511665 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7511849 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:37.7512049 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.7513039 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7513244 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:37.7513449 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:37.7514353 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7514558 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\DWrite.dll","0.0000145","Filter: DWrite.dll, 1: DWrite.dll","2512"
"10:46:37.7514810 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.7516491 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7516768 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000026","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:37.7516870 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000043","","2512"
"10:46:37.7517190 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7517370 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000085","Filter: Windows, 1: Windows","2512"
"10:46:37.7517557 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:37.7518441 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7518641 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000085","Filter: System32, 1: System32","2512"
"10:46:37.7518829 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:37.7519733 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000116","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7519955 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\DWrite.dll","0.0000103","Filter: DWrite.dll, 1: DWrite.dll","2512"
"10:46:37.7520156 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:37.7521257 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7521594 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000030","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7521752 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7521867 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000021","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7522059 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.7522784 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000051","","2512"
"10:46:37.7524017 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7524380 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000042","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7524546 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7524657 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000017","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7524845 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.7525621 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000069","","2512"
"10:46:37.7528548 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7528856 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000029","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:37.7528971 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000042","","2512"
"10:46:37.7530750 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7530968 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000025","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:37.7531070 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:37.7532179 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7532550 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000030","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7532704 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7532815 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000021","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7532994 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.7534022 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000026","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7534146 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7534244 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\DWrite.dll","0.0000017","AllocationSize: 3,215,360, EndOfFile: 3,212,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7534411 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\DWrite.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.7535302 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\DWrite.dll","0.0001502","Offset: 0, Length: 524,288, Priority: Normal","2512"
"10:46:37.7756222 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000150","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7756542 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000150","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:37.7757754 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000188","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.7758850 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000116","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7759111 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000042","Information: DACL","2512"
"10:46:37.7759264 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000039","","2512"
"10:46:37.7760497 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.7761538 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7761777 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000022","Information: DACL","2512"
"10:46:37.7761897 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:37.7764491 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000149","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:37.7765716 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.7766757 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000115","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7767000 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000021","Information: DACL","2512"
"10:46:37.7767115 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000038","","2512"
"10:46:37.7768152 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.7769142 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7769368 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:37.7769479 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:37.7773391 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7773664 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000035","CreationTime: 3/20/2019 7:27:26 PM, LastAccessTime: 3/20/2019 7:42:46 PM, LastWriteTime: 1/10/2019 4:06:49 AM, ChangeTime: 3/20/2019 7:42:30 PM, AllocationSize: 28672, EndOfFile: 26225, FileAttributes: A","2512"
"10:46:37.7773831 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000051","","2512"
"10:46:37.7775785 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1405_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7776024 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1405_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","CreationTime: 4/25/2019 5:40:17 PM, LastAccessTime: 4/25/2019 5:40:17 PM, LastWriteTime: 4/3/2019 9:55:05 AM, ChangeTime: 4/25/2019 8:12:15 PM, AllocationSize: 28672, EndOfFile: 26417, FileAttributes: A","2512"
"10:46:37.7776177 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1405_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000043","","2512"
"10:46:37.7776510 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000043","","2512"
"10:46:37.7776660 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:37.7778597 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7778861 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","CreationTime: 3/20/2019 7:27:26 PM, LastAccessTime: 3/20/2019 7:42:46 PM, LastWriteTime: 1/10/2019 4:06:49 AM, ChangeTime: 3/20/2019 7:42:30 PM, AllocationSize: 28672, EndOfFile: 26225, FileAttributes: A","2512"
"10:46:37.7778976 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000039","","2512"
"10:46:37.7780192 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7780465 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7780662 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7780781 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000022","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7780973 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.7781596 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:37.7781737 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000043","CreationTime: 3/20/2019 7:27:26 PM, LastAccessTime: 3/20/2019 7:42:46 PM, LastWriteTime: 1/10/2019 4:06:49 AM, ChangeTime: 3/20/2019 7:42:30 PM, FileAttributes: A, AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x200000006f2f0, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:37.7782842 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000137","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7783124 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000025","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7783303 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7783409 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000022","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7783589 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:37.7784156 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000060","","2512"
"10:46:37.7785645 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7785931 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7786076 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7786187 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7786375 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.7786708 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000059","","2512"
"10:46:37.7788977 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000188","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7789379 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000038","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7789588 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7789758 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","AllocationSize: 28,672, EndOfFile: 26,225, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7790053 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:37.7791038 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000064","","2512"
"10:46:37.7794597 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000064","","2512"
"10:46:37.7795006 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1378_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000039","","2512"
"10:46:37.7797831 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7798198 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000034","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:37.7798326 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000042","","2512"
"10:46:37.7800259 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7800549 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000025","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:37.7800655 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000039","","2512"
"10:46:37.7802644 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\DWrite.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7802912 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000026","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:37.7803015 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\DWrite.dll","0.0000042","","2512"
"10:46:37.7803369 AM","firefox.exe","7384","CreateFile","C:\","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7803672 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000183","Filter: Windows, 1: Windows","2512"
"10:46:37.7803971 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.7804896 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7805114 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:37.7805327 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:37.7806262 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7806475 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\DWrite.dll","0.0000107","Filter: DWrite.dll, 1: DWrite.dll","2512"
"10:46:37.7806688 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:37.7808839 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7809069 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:37.7809172 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000042","","2512"
"10:46:37.7810144 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7810366 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000103","Filter: lgpllibs.dll, 1: lgpllibs.dll","2512"
"10:46:37.7810580 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000038","","2512"
"10:46:37.7812235 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7812423 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000025","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:37.7812521 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000038","","2512"
"10:46:37.7813434 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7813639 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000094","Filter: lgpllibs.dll, 1: lgpllibs.dll","2512"
"10:46:37.7813839 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000039","","2512"
"10:46:37.7814893 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7815145 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000030","AllocationSize: 40,960, EndOfFile: 39,112, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.7815299 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7815418 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000021","AllocationSize: 40,960, EndOfFile: 39,112, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.7815614 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.7816015 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000052","","2512"
"10:46:37.7817163 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7817432 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000030","AllocationSize: 40,960, EndOfFile: 39,112, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.7817573 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7817684 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000021","AllocationSize: 40,960, EndOfFile: 39,112, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.7817871 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.7818341 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000021","AllocationSize: 40,960, EndOfFile: 39,112, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.7818469 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000047","","2512"
"10:46:37.7819625 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7819877 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000021","AllocationSize: 40,960, EndOfFile: 39,112, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.7819996 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7820094 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000022","AllocationSize: 40,960, EndOfFile: 39,112, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.7820273 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.7822791 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000051","","2512"
"10:46:37.7825833 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7826051 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000029","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:37.7826166 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000042","","2512"
"10:46:37.7828035 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7828231 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000025","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:37.7828333 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000039","","2512"
"10:46:37.7830283 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7830462 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:37.7830565 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000034","","2512"
"10:46:37.7831563 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7831789 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000115","Filter: lgpllibs.dll, 1: lgpllibs.dll","2512"
"10:46:37.7832037 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000038","","2512"
"10:46:37.7834793 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7835241 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000043","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","2512"
"10:46:37.7835416 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000060","","2512"
"10:46:37.7835864 AM","firefox.exe","7384","CreateFile","C:\","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7836082 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000110","Filter: Windows, 1: Windows","2512"
"10:46:37.7836303 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:37.7837280 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7837498 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:37.7837703 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:37.7838633 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7838842 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\avrt.dll","0.0000132","Filter: avrt.dll, 1: avrt.dll","2512"
"10:46:37.7839077 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.7840852 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7841133 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","2512"
"10:46:37.7841240 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000043","","2512"
"10:46:37.7841581 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7841760 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:37.7841952 AM","firefox.exe","7384","CloseFile","C:\","0.0000035","","2512"
"10:46:37.7842895 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7843096 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:37.7843296 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000035","","2512"
"10:46:37.7844214 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7844410 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\avrt.dll","0.0000115","Filter: avrt.dll, 1: avrt.dll","2512"
"10:46:37.7844628 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:37.7845831 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7846164 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\avrt.dll","0.0000030","AllocationSize: 32,768, EndOfFile: 30,056, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7846317 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7846432 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\avrt.dll","0.0000022","AllocationSize: 32,768, EndOfFile: 30,056, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7846629 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.7847034 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000051","","2512"
"10:46:37.7848229 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7848574 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\avrt.dll","0.0000026","AllocationSize: 32,768, EndOfFile: 30,056, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7848715 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7848826 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\avrt.dll","0.0000017","AllocationSize: 32,768, EndOfFile: 30,056, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7849035 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.7849496 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\avrt.dll","0.0000017","AllocationSize: 32,768, EndOfFile: 30,056, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7849620 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000051","","2512"
"10:46:37.7850780 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7851117 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\avrt.dll","0.0000022","AllocationSize: 32,768, EndOfFile: 30,056, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7851245 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7851352 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\avrt.dll","0.0000017","AllocationSize: 32,768, EndOfFile: 30,056, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.7851531 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\avrt.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.7854091 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000051","","2512"
"10:46:37.7857317 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7857628 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000034","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","2512"
"10:46:37.7857752 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000047","","2512"
"10:46:37.7859668 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7859945 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","2512"
"10:46:37.7860056 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000043","","2512"
"10:46:37.7862121 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\avrt.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7862390 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000025","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","2512"
"10:46:37.7862492 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\avrt.dll","0.0000043","","2512"
"10:46:37.7862838 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7863034 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000107","Filter: Windows, 1: Windows","2512"
"10:46:37.7863256 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.7864229 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7864442 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:37.7864655 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:37.7865581 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7865786 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\avrt.dll","0.0000115","Filter: avrt.dll, 1: avrt.dll","2512"
"10:46:37.7866004 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.7868163 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7868466 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000029","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:37.7868572 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000043","","2512"
"10:46:37.7868926 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7869114 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:37.7869315 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.7870223 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000099","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7870432 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:37.7870663 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.7871593 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7871794 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\msasn1.dll","0.0000115","Filter: msasn1.dll, 1: msasn1.dll","2512"
"10:46:37.7872015 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:37.7873778 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7874051 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:37.7874157 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000056","","2512"
"10:46:37.7874499 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7874691 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000089","Filter: Windows, 1: Windows","2512"
"10:46:37.7874917 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:37.7876248 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7876542 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000133","Filter: System32, 1: System32","2512"
"10:46:37.7876832 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000056","","2512"
"10:46:37.7878253 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7878475 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\msasn1.dll","0.0000124","Filter: msasn1.dll, 1: msasn1.dll","2512"
"10:46:37.7878701 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:37.7879896 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7880250 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msasn1.dll","0.0000030","AllocationSize: 65,536, EndOfFile: 65,184, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7880412 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msasn1.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7880527 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msasn1.dll","0.0000022","AllocationSize: 65,536, EndOfFile: 65,184, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7880719 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msasn1.dll","0.0000018","SyncType: SyncTypeOther","2512"
"10:46:37.7881133 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000056","","2512"
"10:46:37.7882345 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7882708 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msasn1.dll","0.0000025","AllocationSize: 65,536, EndOfFile: 65,184, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7882849 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msasn1.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7882964 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msasn1.dll","0.0000017","AllocationSize: 65,536, EndOfFile: 65,184, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7883147 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msasn1.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.7883625 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msasn1.dll","0.0000017","AllocationSize: 65,536, EndOfFile: 65,184, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7883749 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000051","","2512"
"10:46:37.7884999 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7885340 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msasn1.dll","0.0000026","AllocationSize: 65,536, EndOfFile: 65,184, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7885473 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msasn1.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7885579 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msasn1.dll","0.0000017","AllocationSize: 65,536, EndOfFile: 65,184, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7885754 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msasn1.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.7888412 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000056","","2512"
"10:46:37.7891599 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7891907 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:37.7892022 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000043","","2512"
"10:46:37.7894002 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7894283 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:37.7894386 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000042","","2512"
"10:46:37.7896408 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msasn1.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7896673 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:37.7896775 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msasn1.dll","0.0000043","","2512"
"10:46:37.7897121 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7897325 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000103","Filter: Windows, 1: Windows","2512"
"10:46:37.7897543 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.7898550 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7898785 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000106","Filter: System32, 1: System32","2512"
"10:46:37.7898998 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.7899928 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7900137 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\msasn1.dll","0.0000111","Filter: msasn1.dll, 1: msasn1.dll","2512"
"10:46:37.7900350 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:37.7902403 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7902718 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:37.7902821 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000042","","2512"
"10:46:37.7903154 AM","firefox.exe","7384","CreateFile","C:\","0.0000076","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7903337 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:37.7903533 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:37.7904438 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7904638 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:37.7904835 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.7906597 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7906789 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000025","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:37.7906887 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000038","","2512"
"10:46:37.7907207 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7907386 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000085","Filter: Windows, 1: Windows","2512"
"10:46:37.7907574 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:37.7908449 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7908645 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000089","Filter: System32, 1: System32","2512"
"10:46:37.7908854 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.7909912 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7910168 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KernelBase.dll","0.0000026","AllocationSize: 2,572,288, EndOfFile: 2,571,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7910313 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KernelBase.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7910428 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KernelBase.dll","0.0000022","AllocationSize: 2,572,288, EndOfFile: 2,571,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7910659 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KernelBase.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.7911457 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000055","","2512"
"10:46:37.7912651 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7912916 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KernelBase.dll","0.0000030","AllocationSize: 2,572,288, EndOfFile: 2,571,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7913052 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KernelBase.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7913159 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KernelBase.dll","0.0000021","AllocationSize: 2,572,288, EndOfFile: 2,571,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7913342 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KernelBase.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.7914106 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KernelBase.dll","0.0000021","AllocationSize: 2,572,288, EndOfFile: 2,571,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7914226 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000068","","2512"
"10:46:37.7915873 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000170","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7916239 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KernelBase.dll","0.0000039","AllocationSize: 2,572,288, EndOfFile: 2,571,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7916444 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KernelBase.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7916606 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\KernelBase.dll","0.0000030","AllocationSize: 2,572,288, EndOfFile: 2,571,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7916905 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\KernelBase.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:37.7926113 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000064","","2512"
"10:46:37.7932828 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7933067 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:37.7933187 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000047","","2512"
"10:46:37.7935196 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7935414 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:37.7935521 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000042","","2512"
"10:46:37.7937556 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7937752 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:37.7937850 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000043","","2512"
"10:46:37.7938209 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7938418 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000119","Filter: Windows, 1: Windows","2512"
"10:46:37.7938648 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:37.7939595 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7939809 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:37.7940013 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:37.7942040 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7942369 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000029","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:37.7942475 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000043","","2512"
"10:46:37.7942812 AM","firefox.exe","7384","CreateFile","C:\","0.0000086","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7943004 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000090","Filter: Windows, 1: Windows","2512"
"10:46:37.7943201 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.7944097 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7944297 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000103","Filter: System32, 1: System32","2512"
"10:46:37.7944502 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.7945428 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7945633 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\uxtheme.dll","0.0000119","Filter: uxtheme.dll, 1: uxtheme.dll","2512"
"10:46:37.7945854 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:37.7947621 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7947907 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000030","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:37.7948013 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000043","","2512"
"10:46:37.7948342 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7948521 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000090","Filter: Windows, 1: Windows","2512"
"10:46:37.7948730 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:37.7949626 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7949827 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000089","Filter: System32, 1: System32","2512"
"10:46:37.7950019 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:37.7950983 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7951188 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\uxtheme.dll","0.0000111","Filter: uxtheme.dll, 1: uxtheme.dll","2512"
"10:46:37.7951401 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:37.7952481 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7952830 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\uxtheme.dll","0.0000030","AllocationSize: 602,112, EndOfFile: 599,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7952993 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7953112 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\uxtheme.dll","0.0000021","AllocationSize: 602,112, EndOfFile: 599,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7953313 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:37.7953901 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000052","","2512"
"10:46:37.7955105 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000123","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7955472 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\uxtheme.dll","0.0000025","AllocationSize: 602,112, EndOfFile: 599,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7955612 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7955728 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\uxtheme.dll","0.0000021","AllocationSize: 602,112, EndOfFile: 599,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7955911 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.7956368 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000051","","2512"
"10:46:37.7958309 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7958544 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000025","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:37.7958650 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:37.7960391 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7960596 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000030","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:37.7960698 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:37.7961714 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.7962081 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\uxtheme.dll","0.0000029","AllocationSize: 602,112, EndOfFile: 599,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7962234 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7962345 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\uxtheme.dll","0.0000017","AllocationSize: 602,112, EndOfFile: 599,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7962524 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.7963280 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\uxtheme.dll","0.0000021","AllocationSize: 602,112, EndOfFile: 599,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7963399 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.7963493 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\uxtheme.dll","0.0000017","AllocationSize: 602,112, EndOfFile: 599,040, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.7963664 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\uxtheme.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:37.7965178 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\uxtheme.dll","0.0001024","Offset: 0, Length: 524,288, Priority: Normal","2512"
"10:46:37.8009961 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8010281 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000132","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:37.8011514 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000290","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.8012717 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000124","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8012982 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000026","Information: DACL","2512"
"10:46:37.8013114 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000039","","2512"
"10:46:37.8014181 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.8015226 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8015461 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:37.8015576 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:37.8017936 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000140","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:37.8019147 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.8020308 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000119","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8020555 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000022","Information: DACL","2512"
"10:46:37.8020679 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000038","","2512"
"10:46:37.8021716 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.8022689 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000106","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8022911 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:37.8023021 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000039","","2512"
"10:46:37.8026968 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8027254 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:28:17 PM, ChangeTime: 3/20/2019 7:09:36 PM, AllocationSize: 577536, EndOfFile: 575537, FileAttributes: A","2512"
"10:46:37.8027395 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","","2512"
"10:46:37.8027753 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000047","","2512"
"10:46:37.8027915 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000039","","2512"
"10:46:37.8030049 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8030292 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:28:17 PM, ChangeTime: 3/20/2019 7:09:36 PM, AllocationSize: 577536, EndOfFile: 575537, FileAttributes: A","2512"
"10:46:37.8030411 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","","2512"
"10:46:37.8031640 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8031926 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 577,536, EndOfFile: 575,537, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8032092 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8032216 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 577,536, EndOfFile: 575,537, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8032400 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:37.8036107 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000081","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:37.8036444 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:28:17 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A, AllocationSize: 577,536, EndOfFile: 575,537, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x4000000061c39, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:37.8037788 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000150","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8038104 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 577,536, EndOfFile: 575,537, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8038266 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8038373 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","AllocationSize: 577,536, EndOfFile: 575,537, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8038582 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.8039278 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000059","","2512"
"10:46:37.8040677 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8040980 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 577,536, EndOfFile: 575,537, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8041240 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8041351 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 577,536, EndOfFile: 575,537, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8041535 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:37.8041902 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","","2512"
"10:46:37.8046066 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8046369 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 577,536, EndOfFile: 575,537, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8046518 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8046625 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 577,536, EndOfFile: 575,537, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8046800 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.8050512 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","","2512"
"10:46:37.8130571 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000116","","2512"
"10:46:37.8131578 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00115~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","","2512"
"10:46:37.8136178 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8136575 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000038","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:37.8136707 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000051","","2512"
"10:46:37.8138772 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8139066 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000030","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:37.8139182 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000038","","2512"
"10:46:37.8141281 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8141575 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000026","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:37.8141686 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000047","","2512"
"10:46:37.8142057 AM","firefox.exe","7384","CreateFile","C:\","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8142352 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000175","Filter: Windows, 1: Windows","2512"
"10:46:37.8142697 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:37.8144101 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8144425 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000145","Filter: System32, 1: System32","2512"
"10:46:37.8144733 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:37.8145795 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8146013 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\uxtheme.dll","0.0000162","Filter: uxtheme.dll, 1: uxtheme.dll","2512"
"10:46:37.8146281 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000043","","2512"
"10:46:37.8148479 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8148803 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000034","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:37.8148914 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000043","","2512"
"10:46:37.8149255 AM","firefox.exe","7384","CreateFile","C:\","0.0000086","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8149447 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:37.8149644 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.8150548 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8150757 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:37.8150953 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000035","","2512"
"10:46:37.8151875 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8152080 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wsock32.dll","0.0000124","Filter: wsock32.dll, 1: wsock32.dll","2512"
"10:46:37.8152306 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:37.8154064 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8154350 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:37.8154452 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000043","","2512"
"10:46:37.8154776 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8154956 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000093","Filter: Windows, 1: Windows","2512"
"10:46:37.8155148 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:37.8156086 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8156291 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:37.8156483 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:37.8157388 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8157588 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wsock32.dll","0.0000115","Filter: wsock32.dll, 1: wsock32.dll","2512"
"10:46:37.8157801 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:37.8158928 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8159286 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wsock32.dll","0.0000030","AllocationSize: 20,480, EndOfFile: 18,432, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8159465 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8159589 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wsock32.dll","0.0000021","AllocationSize: 20,480, EndOfFile: 18,432, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8159790 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.8160221 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000051","","2512"
"10:46:37.8161496 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8161897 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wsock32.dll","0.0000030","AllocationSize: 20,480, EndOfFile: 18,432, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8162042 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8162153 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wsock32.dll","0.0000017","AllocationSize: 20,480, EndOfFile: 18,432, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8162341 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.8162725 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000051","","2512"
"10:46:37.8164654 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8164880 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000030","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:37.8164986 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000039","","2512"
"10:46:37.8166732 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8166936 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:37.8167039 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000030","","2512"
"10:46:37.8168127 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8168485 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wsock32.dll","0.0000026","AllocationSize: 20,480, EndOfFile: 18,432, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8168626 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8168737 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wsock32.dll","0.0000017","AllocationSize: 20,480, EndOfFile: 18,432, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8168916 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.8169641 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wsock32.dll","0.0000022","AllocationSize: 20,480, EndOfFile: 18,432, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8169761 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8169859 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wsock32.dll","0.0000013","AllocationSize: 20,480, EndOfFile: 18,432, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8170025 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wsock32.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.8170375 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\wsock32.dll","0.0000133","Offset: 0, Length: 18,432, Priority: Normal","2512"
"10:46:37.8173639 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000120","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8173895 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000120","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:37.8175017 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000188","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.8176088 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8176332 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000029","Information: DACL","2512"
"10:46:37.8176464 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000038","","2512"
"10:46:37.8177518 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.8178708 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8178938 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000018","Information: DACL","2512"
"10:46:37.8179049 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000035","","2512"
"10:46:37.8181362 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000136","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:37.8182906 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000214","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.8184566 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000167","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8184925 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000029","Information: DACL","2512"
"10:46:37.8185108 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000056","","2512"
"10:46:37.8186234 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.8187241 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8187472 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000017","Information: DACL","2512"
"10:46:37.8187583 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:37.8191645 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8191922 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:29:46 PM, ChangeTime: 3/20/2019 7:10:41 PM, AllocationSize: 462848, EndOfFile: 460400, FileAttributes: A","2512"
"10:46:37.8192054 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","","2512"
"10:46:37.8192400 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000043","","2512"
"10:46:37.8192545 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:37.8194584 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8194870 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:29:46 PM, ChangeTime: 3/20/2019 7:10:41 PM, AllocationSize: 462848, EndOfFile: 460400, FileAttributes: A","2512"
"10:46:37.8194994 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","","2512"
"10:46:37.8196283 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000136","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8196568 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8196735 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8196854 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8197033 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000018","SyncType: SyncTypeOther","2512"
"10:46:37.8200750 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:37.8200955 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000046","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:29:46 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A, AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x30000000623b7, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:37.8202260 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000154","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8202580 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8202781 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8202896 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8203084 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:37.8203775 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","","2512"
"10:46:37.8205140 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8205490 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8205639 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8205746 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8205925 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.8206288 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","","2512"
"10:46:37.8209560 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000133","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8209851 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000029","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8210034 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8210141 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8210320 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.8213652 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000060","","2512"
"10:46:37.8276705 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000085","","2512"
"10:46:37.8277767 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","","2512"
"10:46:37.8281902 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8282290 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000034","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:37.8282422 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000047","","2512"
"10:46:37.8284389 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8284688 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:37.8284799 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000043","","2512"
"10:46:37.8286907 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wsock32.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8287197 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:37.8287303 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wsock32.dll","0.0000043","","2512"
"10:46:37.8287666 AM","firefox.exe","7384","CreateFile","C:\","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8287948 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000426","Filter: Windows, 1: Windows","2512"
"10:46:37.8288571 AM","firefox.exe","7384","CloseFile","C:\","0.0000064","","2512"
"10:46:37.8289740 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8289974 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:37.8290230 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:37.8291229 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8291451 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wsock32.dll","0.0000132","Filter: wsock32.dll, 1: wsock32.dll","2512"
"10:46:37.8291690 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:37.8293806 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8294126 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000047","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:37.8294254 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000043","","2512"
"10:46:37.8294604 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8294800 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000102","Filter: Windows, 1: Windows","2512"
"10:46:37.8295043 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:37.8296374 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8296677 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000137","Filter: System32, 1: System32","2512"
"10:46:37.8296976 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:37.8298354 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8298576 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\shlwapi.dll","0.0000128","Filter: shlwapi.dll, 1: shlwapi.dll","2512"
"10:46:37.8298815 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:37.8300786 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8301089 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:37.8301200 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000043","","2512"
"10:46:37.8301541 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8301725 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:37.8301925 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:37.8302826 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8303030 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000099","Filter: System32, 1: System32","2512"
"10:46:37.8303231 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.8304153 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8304353 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\shlwapi.dll","0.0000124","Filter: shlwapi.dll, 1: shlwapi.dll","2512"
"10:46:37.8304579 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:37.8305697 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8306055 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shlwapi.dll","0.0000030","AllocationSize: 327,680, EndOfFile: 326,496, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8306222 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shlwapi.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8306346 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shlwapi.dll","0.0000021","AllocationSize: 327,680, EndOfFile: 326,496, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8306538 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shlwapi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.8307020 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000055","","2512"
"10:46:37.8308295 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8308671 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shlwapi.dll","0.0000030","AllocationSize: 327,680, EndOfFile: 326,496, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8308816 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shlwapi.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8308927 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shlwapi.dll","0.0000021","AllocationSize: 327,680, EndOfFile: 326,496, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8309115 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shlwapi.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:37.8309627 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shlwapi.dll","0.0000017","AllocationSize: 327,680, EndOfFile: 326,496, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8309750 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000056","","2512"
"10:46:37.8311060 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8311444 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shlwapi.dll","0.0000034","AllocationSize: 327,680, EndOfFile: 326,496, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8311632 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shlwapi.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8311756 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\shlwapi.dll","0.0000017","AllocationSize: 327,680, EndOfFile: 326,496, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8311935 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\shlwapi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.8315267 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000056","","2512"
"10:46:37.8319077 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8319406 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000034","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:37.8319530 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000047","","2512"
"10:46:37.8321650 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8321932 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:37.8322038 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000043","","2512"
"10:46:37.8324052 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8324317 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","2512"
"10:46:37.8324423 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000039","","2512"
"10:46:37.8324769 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8324978 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000120","Filter: Windows, 1: Windows","2512"
"10:46:37.8325213 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.8326147 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8326369 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:37.8326578 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:37.8327521 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8327734 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\shlwapi.dll","0.0000184","Filter: shlwapi.dll, 1: shlwapi.dll","2512"
"10:46:37.8328025 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.8330341 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8330661 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","2512"
"10:46:37.8330772 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000043","","2512"
"10:46:37.8331118 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8331306 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000093","Filter: Windows, 1: Windows","2512"
"10:46:37.8331510 AM","firefox.exe","7384","CloseFile","C:\","0.0000035","","2512"
"10:46:37.8332406 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8332611 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:37.8332812 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.8333738 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8333938 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\NapiNSP.dll","0.0000162","Filter: NapiNSP.dll, 1: NapiNSP.dll","2512"
"10:46:37.8334211 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:37.8335901 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8336187 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","2512"
"10:46:37.8336289 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000043","","2512"
"10:46:37.8336622 AM","firefox.exe","7384","CreateFile","C:\","0.0000072","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8336797 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000089","Filter: Windows, 1: Windows","2512"
"10:46:37.8337057 AM","firefox.exe","7384","CloseFile","C:\","0.0000064","","2512"
"10:46:37.8338154 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8338358 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000103","Filter: System32, 1: System32","2512"
"10:46:37.8338563 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:37.8339481 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8339681 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\NapiNSP.dll","0.0000111","Filter: NapiNSP.dll, 1: NapiNSP.dll","2512"
"10:46:37.8339890 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:37.8340982 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000116","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8341328 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000030","AllocationSize: 69,632, EndOfFile: 67,072, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8341490 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8341614 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000021","AllocationSize: 69,632, EndOfFile: 67,072, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8341814 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.8342224 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000051","","2512"
"10:46:37.8343495 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000116","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8343858 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000026","AllocationSize: 69,632, EndOfFile: 67,072, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8344003 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8344114 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000017","AllocationSize: 69,632, EndOfFile: 67,072, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8344298 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:37.8344869 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000069","","2512"
"10:46:37.8347694 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8348027 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000038","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:37.8348193 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000056","","2512"
"10:46:37.8350706 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8350928 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:37.8351030 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000035","","2512"
"10:46:37.8352396 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8352805 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000039","AllocationSize: 69,632, EndOfFile: 67,072, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8353002 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8353121 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000017","AllocationSize: 69,632, EndOfFile: 67,072, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8353305 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:37.8354081 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000021","AllocationSize: 69,632, EndOfFile: 67,072, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8354205 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8354299 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000017","AllocationSize: 69,632, EndOfFile: 67,072, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8354469 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\NapiNSP.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.8354964 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\NapiNSP.dll","0.0000239","Offset: 0, Length: 67,072, Priority: Normal","2512"
"10:46:37.8361181 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000171","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8361505 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000128","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:37.8362623 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000188","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.8363890 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000107","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8364133 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000030","Information: DACL","2512"
"10:46:37.8364261 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000043","","2512"
"10:46:37.8365320 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.8366369 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8366600 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:37.8366710 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000039","","2512"
"10:46:37.8369117 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000252","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:37.8370589 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.8371630 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8371869 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000025","Information: DACL","2512"
"10:46:37.8371988 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000039","","2512"
"10:46:37.8373029 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000133","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.8373998 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000107","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8374224 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000017","Information: DACL","2512"
"10:46:37.8374331 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:37.8378427 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8378700 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:29:46 PM, ChangeTime: 3/20/2019 7:10:41 PM, AllocationSize: 462848, EndOfFile: 460400, FileAttributes: A","2512"
"10:46:37.8378832 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","","2512"
"10:46:37.8379190 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000043","","2512"
"10:46:37.8379340 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:37.8381426 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8381657 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000029","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:29:46 PM, ChangeTime: 3/20/2019 7:10:41 PM, AllocationSize: 462848, EndOfFile: 460400, FileAttributes: A","2512"
"10:46:37.8381772 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","","2512"
"10:46:37.8382988 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8383269 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000035","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8383436 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8383555 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8383743 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.8387344 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:37.8387506 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:29:46 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A, AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x30000000623b7, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:37.8388944 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000222","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8389477 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000052","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8389742 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8389904 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8390105 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.8390834 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000073","","2512"
"10:46:37.8392315 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000149","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8392630 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8392784 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8392899 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8393083 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.8393454 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","","2512"
"10:46:37.8396957 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000136","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8397379 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8397541 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8397669 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000022","AllocationSize: 462,848, EndOfFile: 460,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8397887 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.8401015 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000068","","2512"
"10:46:37.8465151 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000141","","2512"
"10:46:37.8466218 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00117~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","","2512"
"10:46:37.8471043 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8471453 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000043","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","2512"
"10:46:37.8471594 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000047","","2512"
"10:46:37.8473578 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8473872 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","2512"
"10:46:37.8473987 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000039","","2512"
"10:46:37.8476432 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8476718 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","2512"
"10:46:37.8476829 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000043","","2512"
"10:46:37.8477213 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8477435 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000136","Filter: Windows, 1: Windows","2512"
"10:46:37.8477691 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.8478642 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8478864 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:37.8479073 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:37.8480025 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8480238 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\NapiNSP.dll","0.0000115","Filter: NapiNSP.dll, 1: NapiNSP.dll","2512"
"10:46:37.8480456 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.8482632 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8482935 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000029","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","2512"
"10:46:37.8483046 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000042","","2512"
"10:46:37.8483383 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8483575 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:37.8483779 AM","firefox.exe","7384","CloseFile","C:\","0.0000035","","2512"
"10:46:37.8484680 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8484884 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000099","Filter: System32, 1: System32","2512"
"10:46:37.8485089 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:37.8486007 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8486211 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\nlaapi.dll","0.0000116","Filter: nlaapi.dll, 1: nlaapi.dll","2512"
"10:46:37.8486425 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.8488238 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8488524 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","2512"
"10:46:37.8488626 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000047","","2512"
"10:46:37.8488955 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8489134 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:37.8489330 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:37.8490218 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8490414 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:37.8490610 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:37.8491515 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8491720 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\nlaapi.dll","0.0000106","Filter: nlaapi.dll, 1: nlaapi.dll","2512"
"10:46:37.8491929 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.8493038 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8493392 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nlaapi.dll","0.0000034","AllocationSize: 81,920, EndOfFile: 80,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8493571 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8493695 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nlaapi.dll","0.0000021","AllocationSize: 81,920, EndOfFile: 80,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8493900 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.8494339 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000086","","2512"
"10:46:37.8496161 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8496541 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nlaapi.dll","0.0000030","AllocationSize: 81,920, EndOfFile: 80,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8496690 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8496806 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nlaapi.dll","0.0000017","AllocationSize: 81,920, EndOfFile: 80,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8497015 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.8497420 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000055","","2512"
"10:46:37.8499485 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8499720 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000025","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:37.8499826 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:37.8501524 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8501734 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000025","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:37.8501832 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:37.8502847 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8503270 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nlaapi.dll","0.0000029","AllocationSize: 81,920, EndOfFile: 80,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8503419 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8503526 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nlaapi.dll","0.0000017","AllocationSize: 81,920, EndOfFile: 80,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8503701 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.8504434 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nlaapi.dll","0.0000026","AllocationSize: 81,920, EndOfFile: 80,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8504558 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8504652 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nlaapi.dll","0.0000017","AllocationSize: 81,920, EndOfFile: 80,896, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8504818 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nlaapi.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.8505399 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\nlaapi.dll","0.0000234","Offset: 0, Length: 80,896, Priority: Normal","2512"
"10:46:37.8518459 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000200","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8518924 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000205","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:37.8520865 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000248","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.8522474 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000171","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8522862 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000034","Information: DACL","2512"
"10:46:37.8523067 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000060","","2512"
"10:46:37.8524667 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000200","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.8526118 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000153","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8526459 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000026","Information: DACL","2512"
"10:46:37.8526634 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000055","","2512"
"10:46:37.8529966 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000188","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:37.8531728 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000197","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.8533256 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000170","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8533631 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000030","Information: DACL","2512"
"10:46:37.8533819 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000055","","2512"
"10:46:37.8535526 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000187","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.8536998 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000157","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8537339 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000026","Information: DACL","2512"
"10:46:37.8537510 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000055","","2512"
"10:46:37.8542839 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000222","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8543253 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:25:49 PM, ChangeTime: 3/20/2019 7:08:49 PM, AllocationSize: 249856, EndOfFile: 246781, FileAttributes: A","2512"
"10:46:37.8543466 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000068","","2512"
"10:46:37.8543978 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000060","","2512"
"10:46:37.8544204 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000051","","2512"
"10:46:37.8547404 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8547767 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:25:49 PM, ChangeTime: 3/20/2019 7:08:49 PM, AllocationSize: 249856, EndOfFile: 246781, FileAttributes: A","2512"
"10:46:37.8547954 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","","2512"
"10:46:37.8549635 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000184","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8550032 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","AllocationSize: 249,856, EndOfFile: 246,781, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8550271 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8550450 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 249,856, EndOfFile: 246,781, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8550745 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:37.8554896 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:37.8555118 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000060","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:25:49 PM, ChangeTime: 3/20/2019 7:08:49 PM, FileAttributes: A, AllocationSize: 249,856, EndOfFile: 246,781, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x5000000061736, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:37.8556970 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000213","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8557486 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","AllocationSize: 249,856, EndOfFile: 246,781, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8557772 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8557956 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000029","AllocationSize: 249,856, EndOfFile: 246,781, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8558263 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:37.8559099 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000085","","2512"
"10:46:37.8561220 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000209","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8561727 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","AllocationSize: 249,856, EndOfFile: 246,781, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8561958 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8562133 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","AllocationSize: 249,856, EndOfFile: 246,781, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8562457 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","SyncType: SyncTypeOther","2512"
"10:46:37.8563105 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000077","","2512"
"10:46:37.8566066 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000201","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8566625 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000124","AllocationSize: 249,856, EndOfFile: 246,781, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8569877 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000055","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8570103 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","AllocationSize: 249,856, EndOfFile: 246,781, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8570410 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:37.8572974 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000132","","2512"
"10:46:37.8619041 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000192","","2512"
"10:46:37.8620467 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00112~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000059","","2512"
"10:46:37.8624597 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8625019 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000043","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","2512"
"10:46:37.8625164 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000051","","2512"
"10:46:37.8627460 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8627775 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","2512"
"10:46:37.8627891 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000042","","2512"
"10:46:37.8630378 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8630664 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","2512"
"10:46:37.8630775 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000042","","2512"
"10:46:37.8631155 AM","firefox.exe","7384","CreateFile","C:\","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8631381 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000145","Filter: Windows, 1: Windows","2512"
"10:46:37.8631649 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:37.8632605 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8632836 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:37.8633057 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:37.8634005 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8634222 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\nlaapi.dll","0.0000120","Filter: nlaapi.dll, 1: nlaapi.dll","2512"
"10:46:37.8634448 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:37.8636885 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8637145 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:37.8637252 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000047","","2512"
"10:46:37.8638241 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8638468 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000111","Filter: msvcp140.dll, 1: msvcp140.dll","2512"
"10:46:37.8638685 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000039","","2512"
"10:46:37.8640366 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8640567 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:37.8640669 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000039","","2512"
"10:46:37.8641604 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8641817 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000098","Filter: msvcp140.dll, 1: msvcp140.dll","2512"
"10:46:37.8642077 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000039","","2512"
"10:46:37.8643221 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8643498 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000030","AllocationSize: 626,688, EndOfFile: 625,808, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.8643681 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8643814 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000021","AllocationSize: 626,688, EndOfFile: 625,808, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.8644019 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:37.8644620 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000056","","2512"
"10:46:37.8646195 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8646561 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000039","AllocationSize: 626,688, EndOfFile: 625,808, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.8646762 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8646933 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000030","AllocationSize: 626,688, EndOfFile: 625,808, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.8647197 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:37.8647978 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000034","AllocationSize: 626,688, EndOfFile: 625,808, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.8648166 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000081","","2512"
"10:46:37.8650423 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000192","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8650845 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000039","AllocationSize: 626,688, EndOfFile: 625,808, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.8651046 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8651221 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000025","AllocationSize: 626,688, EndOfFile: 625,808, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.8651515 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:37.8660996 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000200","","2512"
"10:46:37.8668087 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000247","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8668526 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000060","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:37.8668744 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000081","","2512"
"10:46:37.8672959 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0002249","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8675502 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000060","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:37.8675711 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000094","","2512"
"10:46:37.8686728 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000341","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8687406 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000073","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:37.8687654 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000239","","2512"
"10:46:37.8690047 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000201","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8690491 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000205","Filter: msvcp140.dll, 1: msvcp140.dll","2512"
"10:46:37.8690926 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000073","","2512"
"10:46:37.8694502 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000307","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8695103 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000047","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:37.8695261 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000056","","2512"
"10:46:37.8696644 AM","firefox.exe","7384","CreateFile","C:\","0.0000226","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8697134 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000226","Filter: Windows, 1: Windows","2512"
"10:46:37.8697582 AM","firefox.exe","7384","CloseFile","C:\","0.0000086","","2512"
"10:46:37.8699421 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000179","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8699792 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000175","Filter: System32, 1: System32","2512"
"10:46:37.8699916 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000068","Name: \Windows\System32\sechost.dll","2956"
"10:46:37.8700159 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000069","","2512"
"10:46:37.8702032 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000201","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8702442 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\kernel32.dll","0.0000559","Filter: kernel32.dll, 1: kernel32.dll","2512"
"10:46:37.8703184 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000064","","2512"
"10:46:37.8706099 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000243","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8706675 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000059","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:37.8706875 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000081","","2512"
"10:46:37.8707511 AM","firefox.exe","7384","CreateFile","C:\","0.0000153","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8707524 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000068","Name: \Windows\System32\sechost.dll","2956"
"10:46:37.8707852 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000192","Filter: Windows, 1: Windows","2512"
"10:46:37.8708215 AM","firefox.exe","7384","CloseFile","C:\","0.0000068","","2512"
"10:46:37.8709798 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000239","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8710224 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000193","Filter: System32, 1: System32","2512"
"10:46:37.8710600 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000064","","2512"
"10:46:37.8712870 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000422","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8713531 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\kernel32.dll","0.0000260","Filter: kernel32.dll, 1: kernel32.dll","2512"
"10:46:37.8713983 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000077","","2512"
"10:46:37.8716198 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000264","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8716898 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel32.dll","0.0000059","AllocationSize: 720,896, EndOfFile: 719,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8717209 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel32.dll","0.0000060","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8717439 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel32.dll","0.0000039","AllocationSize: 720,896, EndOfFile: 719,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8717764 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel32.dll","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:37.8724194 AM","firefox.exe","7384","ReadFile","C:","0.0088179","Offset: 962,560, Length: 4,096, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","6572"
"10:46:37.8759884 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000427","","2512"
"10:46:37.8764032 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000260","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8764812 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel32.dll","0.0000060","AllocationSize: 720,896, EndOfFile: 719,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8765132 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel32.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8765341 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel32.dll","0.0000030","AllocationSize: 720,896, EndOfFile: 719,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8765691 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel32.dll","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:37.8766937 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel32.dll","0.0000039","AllocationSize: 720,896, EndOfFile: 719,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8769275 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000226","","2512"
"10:46:37.8788433 AM","firefox.exe","7384","QueryNameInformationFile","C:\Windows\System32\sechost.dll","0.0000076","Name: \Windows\System32\sechost.dll","2956"
"10:46:37.8789316 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000294","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8797602 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel32.dll","0.0000115","AllocationSize: 720,896, EndOfFile: 719,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8798062 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel32.dll","0.0000060","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8798327 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel32.dll","0.0000038","AllocationSize: 720,896, EndOfFile: 719,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8798711 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel32.dll","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:37.8804010 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000077","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:37.8804386 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:37.8804659 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000030","Offset: 1,073,741,824, Length: 1","5728"
"10:46:37.8809096 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:37.8809860 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000102","Offset: 24, Length: 16","5728"
"10:46:37.8810568 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000132","","2512"
"10:46:37.8814101 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000239","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:37.8814737 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000064","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:37.8815227 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000047","Offset: 1,073,741,826, Length: 510","5728"
"10:46:37.8815744 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\9D81F92D2FB0CD30EC037BF51F5BA5AD70F9B2C5","0.0000341","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","6572"
"10:46:37.8817843 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000055","Exclusive: True, Offset: 1,073,741,824, Length: 1, Fail Immediately: True","5728"
"10:46:37.8818133 AM","firefox.exe","7384","LockFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Exclusive: False, Offset: 1,073,741,826, Length: 510, Fail Immediately: True","5728"
"10:46:37.8818363 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000026","Offset: 1,073,741,824, Length: 1","5728"
"10:46:37.8821947 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-journal","0.0000231","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:37.8822515 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000094","Offset: 24, Length: 16","5728"
"10:46:37.8825877 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db-wal","0.0000282","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","5728"
"10:46:37.8826521 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000051","AllocationSize: 229,376, EndOfFile: 229,376, NumberOfLinks: 1, DeletePending: False, Directory: False","5728"
"10:46:37.8826952 AM","firefox.exe","7384","UnlockFileSingle","C:\Users\diggles\AppData\Roaming\Mozilla\Firefox\Profiles\lq450czk.test\cert9.db","0.0000039","Offset: 1,073,741,826, Length: 510","5728"
"10:46:37.8827195 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000244","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8827754 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000047","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:37.8827955 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000166","","2512"
"10:46:37.8845260 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\38ED2A82492971F77141EDA89A442BD4E0CD8F8B","0.0000529","Desired Access: Generic Read/Write, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","6572"
"10:46:37.8846387 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\38ED2A82492971F77141EDA89A442BD4E0CD8F8B","0.0000708","Offset: 25,946, Length: 9,266, Priority: Normal","6572"
"10:46:37.8847556 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\38ED2A82492971F77141EDA89A442BD4E0CD8F8B","0.0000584","EndOfFile: 35,212","6572"
"10:46:37.8848345 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\38ED2A82492971F77141EDA89A442BD4E0CD8F8B","0.0000316","AllocationSize: 35,212","6572"
"10:46:37.8849105 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\38ED2A82492971F77141EDA89A442BD4E0CD8F8B","0.0000379","","6572"
"10:46:37.8856943 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000256","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8857561 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000060","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:37.8857792 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000085","","2512"
"10:46:37.8861952 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel32.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8862451 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000047","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:37.8862647 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel32.dll","0.0000068","","2512"
"10:46:37.8863232 AM","firefox.exe","7384","CreateFile","C:\","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8863573 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000188","Filter: Windows, 1: Windows","2512"
"10:46:37.8863919 AM","firefox.exe","7384","CloseFile","C:\","0.0000055","","2512"
"10:46:37.8865041 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000119","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8865280 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:37.8865506 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.8866513 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8866735 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\kernel32.dll","0.0000209","Filter: kernel32.dll, 1: kernel32.dll","2512"
"10:46:37.8867059 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000043","","2512"
"10:46:37.8869346 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000217","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8869747 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000030","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","2512"
"10:46:37.8869858 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000042","","2512"
"10:46:37.8870208 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8870400 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:37.8870604 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:37.8871518 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8871727 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:37.8871931 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000035","","2512"
"10:46:37.8872844 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000099","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8873054 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\webauthn.dll","0.0000115","Filter: webauthn.dll, 1: webauthn.dll","2512"
"10:46:37.8873267 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.8874961 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8875242 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000052","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","2512"
"10:46:37.8875370 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000043","","2512"
"10:46:37.8875707 AM","firefox.exe","7384","CreateFile","C:\","0.0000086","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8876057 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:37.8876266 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:37.8877615 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8877918 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000140","Filter: System32, 1: System32","2512"
"10:46:37.8878216 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000056","","2512"
"10:46:37.8879577 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8879889 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\webauthn.dll","0.0000170","Filter: webauthn.dll, 1: webauthn.dll","2512"
"10:46:37.8880213 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000060","","2512"
"10:46:37.8881834 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000137","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8882231 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\webauthn.dll","0.0000030","AllocationSize: 286,720, EndOfFile: 284,160, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8882423 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8882551 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\webauthn.dll","0.0000021","AllocationSize: 286,720, EndOfFile: 284,160, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8882752 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.8883204 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000055","","2512"
"10:46:37.8884484 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8884864 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\webauthn.dll","0.0000025","AllocationSize: 286,720, EndOfFile: 284,160, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8885013 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8885128 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\webauthn.dll","0.0000017","AllocationSize: 286,720, EndOfFile: 284,160, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8885320 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.8885777 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000055","","2512"
"10:46:37.8887782 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8888017 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000030","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:37.8888128 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000038","","2512"
"10:46:37.8889839 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8890048 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000025","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:37.8890150 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:37.8891289 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8891652 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\webauthn.dll","0.0000030","AllocationSize: 286,720, EndOfFile: 284,160, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8891801 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8891912 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\webauthn.dll","0.0000017","AllocationSize: 286,720, EndOfFile: 284,160, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8892091 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.8892864 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\webauthn.dll","0.0000021","AllocationSize: 286,720, EndOfFile: 284,160, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8892983 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8893081 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\webauthn.dll","0.0000017","AllocationSize: 286,720, EndOfFile: 284,160, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.8893252 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\webauthn.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.8894741 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\webauthn.dll","0.0000580","Offset: 0, Length: 284,160, Priority: Normal","2512"
"10:46:37.8917167 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000157","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8917487 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000153","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:37.8918954 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000235","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.8920128 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000123","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8920401 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000025","Information: DACL","2512"
"10:46:37.8920537 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000043","","2512"
"10:46:37.8921621 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.8922611 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8922841 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000022","Information: DACL","2512"
"10:46:37.8922952 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000039","","2512"
"10:46:37.8926502 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000158","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:37.8927961 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000162","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.8929024 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000123","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8929280 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000021","Information: DACL","2512"
"10:46:37.8929403 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000043","","2512"
"10:46:37.8930568 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.8931575 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000124","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8931853 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000029","Information: DACL","2512"
"10:46:37.8933773 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000162","","2512"
"10:46:37.8944290 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000269","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8944785 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:14:21 PM, ChangeTime: 3/20/2019 7:05:46 PM, AllocationSize: 405504, EndOfFile: 404923, FileAttributes: A","2512"
"10:46:37.8945037 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000183","","2512"
"10:46:37.8945907 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000068","","2512"
"10:46:37.8946150 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000051","","2512"
"10:46:37.8949384 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000235","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8949798 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:14:21 PM, ChangeTime: 3/20/2019 7:05:46 PM, AllocationSize: 405504, EndOfFile: 404923, FileAttributes: A","2512"
"10:46:37.8950007 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000068","","2512"
"10:46:37.8953570 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000311","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8954193 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","AllocationSize: 405,504, EndOfFile: 404,923, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8954658 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8954875 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 405,504, EndOfFile: 404,923, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8955200 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:37.8964232 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000124","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:37.8964629 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000132","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:14:21 PM, ChangeTime: 3/20/2019 7:05:46 PM, FileAttributes: A, AllocationSize: 405,504, EndOfFile: 404,923, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x30000000603f8, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:37.8970329 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000214","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8970769 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","AllocationSize: 405,504, EndOfFile: 404,923, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8970982 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8971136 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 405,504, EndOfFile: 404,923, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8971341 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.8972215 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000077","","2512"
"10:46:37.8974673 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000222","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8975151 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","AllocationSize: 405,504, EndOfFile: 404,923, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8975364 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8975509 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","AllocationSize: 405,504, EndOfFile: 404,923, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8975761 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:37.8978986 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000116","","2512"
"10:46:37.8983001 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000180","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.8983501 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","AllocationSize: 405,504, EndOfFile: 404,923, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8983697 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.8983838 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 405,504, EndOfFile: 404,923, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.8984042 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000018","SyncType: SyncTypeOther","2512"
"10:46:37.8987298 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000068","","2512"
"10:46:37.9043895 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000354","","2512"
"10:46:37.9045244 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001021~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","","2512"
"10:46:37.9049408 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9049813 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000047","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","2512"
"10:46:37.9049958 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000043","","2512"
"10:46:37.9051942 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9052249 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000030","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","2512"
"10:46:37.9052360 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000043","","2512"
"10:46:37.9054566 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\webauthn.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9054852 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000030","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","2512"
"10:46:37.9054959 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\webauthn.dll","0.0000042","","2512"
"10:46:37.9055330 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9055556 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000149","Filter: Windows, 1: Windows","2512"
"10:46:37.9055825 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.9056776 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9056998 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:37.9057216 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.9058155 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9058368 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\webauthn.dll","0.0000119","Filter: webauthn.dll, 1: webauthn.dll","2512"
"10:46:37.9058594 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:37.9060702 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9061077 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000026","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:37.9061184 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000043","","2512"
"10:46:37.9061521 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9061709 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000102","Filter: Windows, 1: Windows","2512"
"10:46:37.9061918 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:37.9062818 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9063031 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:37.9063228 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.9064256 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9064465 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\usp10.dll","0.0000119","Filter: usp10.dll, 1: usp10.dll","2512"
"10:46:37.9064691 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:37.9066406 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9066692 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000030","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:37.9066799 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000042","","2512"
"10:46:37.9067127 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9067315 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000090","Filter: Windows, 1: Windows","2512"
"10:46:37.9067507 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:37.9068386 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9068595 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:37.9068787 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:37.9069687 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9069888 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\usp10.dll","0.0000111","Filter: usp10.dll, 1: usp10.dll","2512"
"10:46:37.9070101 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:37.9071215 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9071569 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\usp10.dll","0.0000030","AllocationSize: 81,920, EndOfFile: 79,360, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9071748 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9071872 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\usp10.dll","0.0000038","AllocationSize: 81,920, EndOfFile: 79,360, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9072098 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.9072584 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000060","","2512"
"10:46:37.9074406 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000171","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9074931 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\usp10.dll","0.0000043","AllocationSize: 81,920, EndOfFile: 79,360, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9075162 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9075341 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\usp10.dll","0.0000030","AllocationSize: 81,920, EndOfFile: 79,360, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9075678 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000025","SyncType: SyncTypeOther","2512"
"10:46:37.9076139 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000055","","2512"
"10:46:37.9078174 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9078417 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:37.9078524 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000038","","2512"
"10:46:37.9080243 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9080456 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:37.9080559 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:37.9081583 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9081933 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\usp10.dll","0.0000030","AllocationSize: 81,920, EndOfFile: 79,360, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9082082 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9082193 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\usp10.dll","0.0000017","AllocationSize: 81,920, EndOfFile: 79,360, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9082372 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.9083102 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\usp10.dll","0.0000021","AllocationSize: 81,920, EndOfFile: 79,360, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9083221 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9083319 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\usp10.dll","0.0000013","AllocationSize: 81,920, EndOfFile: 79,360, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9083482 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\usp10.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:37.9083985 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\usp10.dll","0.0000247","Offset: 0, Length: 79,360, Priority: Normal","2512"
"10:46:37.9091080 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9091345 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000128","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:37.9092476 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000187","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.9093555 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9093798 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000026","Information: DACL","2512"
"10:46:37.9093926 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000039","","2512"
"10:46:37.9094976 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.9095966 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9096196 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000022","Information: DACL","2512"
"10:46:37.9096307 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000039","","2512"
"10:46:37.9101338 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000512","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:37.9103620 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000231","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.9104909 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000141","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9105242 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000055","Information: DACL","2512"
"10:46:37.9105796 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000086","","2512"
"10:46:37.9109636 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000222","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.9110891 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000132","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9111172 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000026","Information: DACL","2512"
"10:46:37.9111309 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:37.9116488 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000619","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9117252 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:20:29 PM, ChangeTime: 3/20/2019 7:06:10 PM, AllocationSize: 454656, EndOfFile: 452785, FileAttributes: A","2512"
"10:46:37.9117534 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000055","","2512"
"10:46:37.9117931 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000047","","2512"
"10:46:37.9118084 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000039","","2512"
"10:46:37.9120171 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000140","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9120418 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:20:29 PM, ChangeTime: 3/20/2019 7:06:10 PM, AllocationSize: 454656, EndOfFile: 452785, FileAttributes: A","2512"
"10:46:37.9120589 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","","2512"
"10:46:37.9121826 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9122112 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","AllocationSize: 454,656, EndOfFile: 452,785, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.9122287 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9122406 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000022","AllocationSize: 454,656, EndOfFile: 452,785, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.9122594 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.9126408 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:37.9126571 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:20:29 PM, ChangeTime: 3/20/2019 7:06:10 PM, FileAttributes: A, AllocationSize: 454,656, EndOfFile: 452,785, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x3000000060657, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:37.9127974 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000150","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9128316 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 454,656, EndOfFile: 452,785, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.9128597 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9128717 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 454,656, EndOfFile: 452,785, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.9128900 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.9129651 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","","2512"
"10:46:37.9131051 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000136","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9131354 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000029","AllocationSize: 454,656, EndOfFile: 452,785, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.9131503 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9131610 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","AllocationSize: 454,656, EndOfFile: 452,785, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.9131823 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.9132237 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000060","","2512"
"10:46:37.9135565 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9135876 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 454,656, EndOfFile: 452,785, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.9136030 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9136141 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 454,656, EndOfFile: 452,785, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.9136324 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.9139473 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","","2512"
"10:46:37.9202854 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000090","","2512"
"10:46:37.9203853 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","","2512"
"10:46:37.9207928 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9208316 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000038","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:37.9208448 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000043","","2512"
"10:46:37.9210475 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9210782 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000030","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:37.9210897 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000043","","2512"
"10:46:37.9213163 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\usp10.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9213444 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000030","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","2512"
"10:46:37.9213555 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\usp10.dll","0.0000043","","2512"
"10:46:37.9213926 AM","firefox.exe","7384","CreateFile","C:\","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9214148 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000137","Filter: Windows, 1: Windows","2512"
"10:46:37.9214404 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:37.9215505 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9215740 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:37.9215957 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:37.9216900 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9217114 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\usp10.dll","0.0000119","Filter: usp10.dll, 1: usp10.dll","2512"
"10:46:37.9217340 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.9220203 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9220531 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000030","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:37.9220646 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000047","","2512"
"10:46:37.9221018 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9221252 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000124","Filter: Windows, 1: Windows","2512"
"10:46:37.9221534 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:37.9222549 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9222771 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000103","Filter: System32, 1: System32","2512"
"10:46:37.9222980 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:37.9224026 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9224235 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\user32.dll","0.0000123","Filter: user32.dll, 1: user32.dll","2512"
"10:46:37.9224461 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.9226214 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9226500 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000030","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:37.9226607 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000043","","2512"
"10:46:37.9226936 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9227119 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000102","Filter: Windows, 1: Windows","2512"
"10:46:37.9227324 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:37.9228207 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9228403 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:37.9228600 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:37.9229491 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9229688 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\user32.dll","0.0000106","Filter: user32.dll, 1: user32.dll","2512"
"10:46:37.9229897 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:37.9231032 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9231381 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\user32.dll","0.0000030","AllocationSize: 1,642,496, EndOfFile: 1,639,560, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9231548 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\user32.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9231667 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\user32.dll","0.0000022","AllocationSize: 1,642,496, EndOfFile: 1,639,560, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9231868 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\user32.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.9232568 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000055","","2512"
"10:46:37.9233912 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000123","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9234283 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\user32.dll","0.0000030","AllocationSize: 1,642,496, EndOfFile: 1,639,560, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9234436 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\user32.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9234547 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\user32.dll","0.0000022","AllocationSize: 1,642,496, EndOfFile: 1,639,560, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9234735 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\user32.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.9235482 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\user32.dll","0.0000021","AllocationSize: 1,642,496, EndOfFile: 1,639,560, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9235631 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000098","","2512"
"10:46:37.9237116 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9237470 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\user32.dll","0.0000026","AllocationSize: 1,642,496, EndOfFile: 1,639,560, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9237611 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\user32.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9237722 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\user32.dll","0.0000017","AllocationSize: 1,642,496, EndOfFile: 1,639,560, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9237905 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\user32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.9244071 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000055","","2512"
"10:46:37.9249489 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9249813 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000030","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:37.9249937 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000043","","2512"
"10:46:37.9251943 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9252241 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000030","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:37.9252352 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000043","","2512"
"10:46:37.9254439 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\user32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9254712 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000029","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:37.9254848 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\user32.dll","0.0000043","","2512"
"10:46:37.9255207 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9255416 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000111","Filter: Windows, 1: Windows","2512"
"10:46:37.9255637 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:37.9256572 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9256789 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:37.9257003 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:37.9257937 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9258146 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\user32.dll","0.0000111","Filter: user32.dll, 1: user32.dll","2512"
"10:46:37.9258360 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.9260510 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9260809 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:37.9260915 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000043","","2512"
"10:46:37.9261252 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9261440 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:37.9261641 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:37.9263296 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000149","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9263599 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000132","Filter: System32, 1: System32","2512"
"10:46:37.9263885 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:37.9265272 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0002534","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9268062 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\IPHLPAPI.DLL","0.0000192","Filter: IPHLPAPI.DLL, 1: IPHLPAPI.DLL","2512"
"10:46:37.9268425 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000064","","2512"
"10:46:37.9270780 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9271138 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000034","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:37.9271262 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000047","","2512"
"10:46:37.9271642 AM","firefox.exe","7384","CreateFile","C:\","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9271855 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000111","Filter: Windows, 1: Windows","2512"
"10:46:37.9272081 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:37.9273033 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9273255 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000106","Filter: System32, 1: System32","2512"
"10:46:37.9273464 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.9274394 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9274603 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\IPHLPAPI.DLL","0.0000119","Filter: IPHLPAPI.DLL, 1: IPHLPAPI.DLL","2512"
"10:46:37.9274825 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:37.9275994 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000123","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9276369 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000030","AllocationSize: 221,184, EndOfFile: 219,616, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9276540 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9276659 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000026","AllocationSize: 221,184, EndOfFile: 219,616, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9276860 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.9277355 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000055","","2512"
"10:46:37.9278686 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9279061 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000026","AllocationSize: 221,184, EndOfFile: 219,616, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9279207 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9279317 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000018","AllocationSize: 221,184, EndOfFile: 219,616, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9279501 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.9279987 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000022","AllocationSize: 221,184, EndOfFile: 219,616, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9280115 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000052","","2512"
"10:46:37.9281417 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9281771 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000025","AllocationSize: 221,184, EndOfFile: 219,616, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9281903 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9282010 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000017","AllocationSize: 221,184, EndOfFile: 219,616, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9282185 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\IPHLPAPI.DLL","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:37.9285180 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000055","","2512"
"10:46:37.9288841 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9289165 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:37.9289289 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000047","","2512"
"10:46:37.9291196 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9291486 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:37.9291597 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000043","","2512"
"10:46:37.9293833 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9294200 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000038","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:37.9294362 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000055","","2512"
"10:46:37.9294904 AM","firefox.exe","7384","CreateFile","C:\","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9295258 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000153","Filter: Windows, 1: Windows","2512"
"10:46:37.9295578 AM","firefox.exe","7384","CloseFile","C:\","0.0000060","","2512"
"10:46:37.9296973 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9297293 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000145","Filter: System32, 1: System32","2512"
"10:46:37.9297592 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000047","","2512"
"10:46:37.9298586 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9298808 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\IPHLPAPI.DLL","0.0000119","Filter: IPHLPAPI.DLL, 1: IPHLPAPI.DLL","2512"
"10:46:37.9299034 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:37.9301099 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9301321 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:37.9301427 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000039","","2512"
"10:46:37.9302387 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9302609 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\xul.dll","0.0000090","Filter: xul.dll, 1: xul.dll","2512"
"10:46:37.9302806 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000038","","2512"
"10:46:37.9304440 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9304623 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:37.9304721 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000039","","2512"
"10:46:37.9305660 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9305865 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\xul.dll","0.0000094","Filter: xul.dll, 1: xul.dll","2512"
"10:46:37.9306061 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000038","","2512"
"10:46:37.9307119 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000107","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9307367 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000029","AllocationSize: 109,776,896, EndOfFile: 109,775,560, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.9307520 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9307640 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000017","AllocationSize: 109,776,896, EndOfFile: 109,775,560, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.9307823 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.9308928 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000056","","2512"
"10:46:37.9310178 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9310451 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000026","AllocationSize: 109,776,896, EndOfFile: 109,775,560, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.9310596 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9310703 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000021","AllocationSize: 109,776,896, EndOfFile: 109,775,560, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.9310887 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.9312081 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000022","AllocationSize: 109,776,896, EndOfFile: 109,775,560, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.9312214 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000051","","2512"
"10:46:37.9313366 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9313622 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000021","AllocationSize: 109,776,896, EndOfFile: 109,775,560, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.9313754 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9313860 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000018","AllocationSize: 109,776,896, EndOfFile: 109,775,560, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.9314044 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\xul.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.9317295 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000056","","2512"
"10:46:37.9320482 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9320708 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:37.9320824 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000042","","2512"
"10:46:37.9322620 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9322816 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:37.9322919 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000038","","2512"
"10:46:37.9324962 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9325154 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:37.9325252 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000039","","2512"
"10:46:37.9326234 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9326464 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\xul.dll","0.0000107","Filter: xul.dll, 1: xul.dll","2512"
"10:46:37.9326695 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000038","","2512"
"10:46:37.9328866 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9329182 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000030","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","2512"
"10:46:37.9329293 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000043","","2512"
"10:46:37.9329639 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9329839 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000107","Filter: Windows, 1: Windows","2512"
"10:46:37.9330057 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.9330966 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9331183 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000103","Filter: System32, 1: System32","2512"
"10:46:37.9331392 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:37.9332314 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9332523 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\rpcrt4.dll","0.0000115","Filter: rpcrt4.dll, 1: rpcrt4.dll","2512"
"10:46:37.9332736 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:37.9334439 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9334720 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000030","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","2512"
"10:46:37.9334827 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000043","","2512"
"10:46:37.9335172 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9335352 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:37.9335544 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.9336435 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9336640 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:37.9336849 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:37.9337984 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9338291 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\rpcrt4.dll","0.0000154","Filter: rpcrt4.dll, 1: rpcrt4.dll","2512"
"10:46:37.9338603 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000055","","2512"
"10:46:37.9340335 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000167","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9340822 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000038","AllocationSize: 1,191,936, EndOfFile: 1,188,000, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9341001 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rpcrt4.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9341125 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000021","AllocationSize: 1,191,936, EndOfFile: 1,188,000, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9341325 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rpcrt4.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.9341952 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000056","","2512"
"10:46:37.9343211 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9343574 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000029","AllocationSize: 1,191,936, EndOfFile: 1,188,000, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9343719 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rpcrt4.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9343830 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000021","AllocationSize: 1,191,936, EndOfFile: 1,188,000, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9344013 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rpcrt4.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.9344764 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000021","AllocationSize: 1,191,936, EndOfFile: 1,188,000, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9344892 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000068","","2512"
"10:46:37.9346125 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9346471 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000025","AllocationSize: 1,191,936, EndOfFile: 1,188,000, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9346603 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rpcrt4.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9346710 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000017","AllocationSize: 1,191,936, EndOfFile: 1,188,000, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9346889 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\rpcrt4.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.9352005 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000055","","2512"
"10:46:37.9356497 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9356813 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000030","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","2512"
"10:46:37.9356933 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000046","","2512"
"10:46:37.9359053 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9359343 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000030","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","2512"
"10:46:37.9359454 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000043","","2512"
"10:46:37.9361451 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9361720 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000025","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","2512"
"10:46:37.9361822 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000039","","2512"
"10:46:37.9362163 AM","firefox.exe","7384","CreateFile","C:\","0.0000086","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9362368 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000115","Filter: Windows, 1: Windows","2512"
"10:46:37.9362594 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:37.9363516 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9363734 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000106","Filter: System32, 1: System32","2512"
"10:46:37.9363947 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.9364886 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9365099 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\rpcrt4.dll","0.0000115","Filter: rpcrt4.dll, 1: rpcrt4.dll","2512"
"10:46:37.9365317 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.9367429 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9367731 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000030","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:37.9367842 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000043","","2512"
"10:46:37.9368175 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9368363 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:37.9368563 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:37.9369451 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9369660 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:37.9369852 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.9370752 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9370953 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\ucrtbase.dll","0.0000111","Filter: ucrtbase.dll, 1: ucrtbase.dll","2512"
"10:46:37.9371200 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:37.9372933 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9373214 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000030","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:37.9373321 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000042","","2512"
"10:46:37.9373649 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9373833 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000106","Filter: Windows, 1: Windows","2512"
"10:46:37.9374038 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.9374942 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9375147 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:37.9375339 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:37.9376252 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9376453 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\ucrtbase.dll","0.0000106","Filter: ucrtbase.dll, 1: ucrtbase.dll","2512"
"10:46:37.9376657 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:37.9377797 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9378138 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000030","AllocationSize: 1,015,808, EndOfFile: 1,014,344, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9378296 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ucrtbase.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9378411 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000021","AllocationSize: 1,015,808, EndOfFile: 1,014,344, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9378599 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ucrtbase.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:37.9379183 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000051","","2512"
"10:46:37.9380374 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9380732 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000030","AllocationSize: 1,015,808, EndOfFile: 1,014,344, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9380877 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ucrtbase.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9380988 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000017","AllocationSize: 1,015,808, EndOfFile: 1,014,344, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9381167 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ucrtbase.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.9381816 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000038","AllocationSize: 1,015,808, EndOfFile: 1,014,344, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9381957 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000055","","2512"
"10:46:37.9383471 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000167","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9383949 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000038","AllocationSize: 1,015,808, EndOfFile: 1,014,344, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9384158 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ucrtbase.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9384325 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000029","AllocationSize: 1,015,808, EndOfFile: 1,014,344, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9384623 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ucrtbase.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:37.9389999 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000060","","2512"
"10:46:37.9394356 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9394676 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000034","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:37.9394816 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000047","","2512"
"10:46:37.9396864 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9397154 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000030","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:37.9397265 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000047","","2512"
"10:46:37.9399288 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9399561 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000025","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:37.9399663 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000043","","2512"
"10:46:37.9400009 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9400214 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000111","Filter: Windows, 1: Windows","2512"
"10:46:37.9400440 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.9401370 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9401583 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000103","Filter: System32, 1: System32","2512"
"10:46:37.9401792 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:37.9402727 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9402936 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\ucrtbase.dll","0.0000145","Filter: ucrtbase.dll, 1: ucrtbase.dll","2512"
"10:46:37.9403188 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.9405295 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9405607 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000030","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:37.9405718 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000042","","2512"
"10:46:37.9406059 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9406247 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:37.9406443 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.9407330 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9407535 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:37.9407736 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.9408645 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9408849 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\d3d11.dll","0.0000154","Filter: d3d11.dll, 1: d3d11.dll","2512"
"10:46:37.9409110 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.9410825 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9411102 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000030","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:37.9411209 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000038","","2512"
"10:46:37.9411529 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9411708 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000090","Filter: Windows, 1: Windows","2512"
"10:46:37.9411900 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:37.9412830 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9413031 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:37.9413223 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:37.9414127 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9414324 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\d3d11.dll","0.0000149","Filter: d3d11.dll, 1: d3d11.dll","2512"
"10:46:37.9414575 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:37.9415766 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9416107 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\d3d11.dll","0.0000030","AllocationSize: 3,182,592, EndOfFile: 3,179,760, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9416269 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9416389 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\d3d11.dll","0.0000021","AllocationSize: 3,182,592, EndOfFile: 3,179,760, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9416585 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.9417336 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000051","","2512"
"10:46:37.9418565 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9418953 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\d3d11.dll","0.0000030","AllocationSize: 3,182,592, EndOfFile: 3,179,760, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9419098 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9419213 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\d3d11.dll","0.0000017","AllocationSize: 3,182,592, EndOfFile: 3,179,760, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9419401 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.9420314 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\d3d11.dll","0.0000021","AllocationSize: 3,182,592, EndOfFile: 3,179,760, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9420442 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000051","","2512"
"10:46:37.9421726 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9422076 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\d3d11.dll","0.0000030","AllocationSize: 3,182,592, EndOfFile: 3,179,760, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9422213 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9422315 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\d3d11.dll","0.0000017","AllocationSize: 3,182,592, EndOfFile: 3,179,760, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9422494 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\d3d11.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.9432709 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000106","","2512"
"10:46:37.9440282 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9440632 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000038","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:37.9440760 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000047","","2512"
"10:46:37.9442765 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9443055 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000026","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:37.9443166 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000043","","2512"
"10:46:37.9445317 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\d3d11.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9445611 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000030","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:37.9445722 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\d3d11.dll","0.0000043","","2512"
"10:46:37.9446106 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9446366 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000158","Filter: Windows, 1: Windows","2512"
"10:46:37.9446691 AM","firefox.exe","7384","CloseFile","C:\","0.0000059","","2512"
"10:46:37.9448094 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9448419 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000140","Filter: System32, 1: System32","2512"
"10:46:37.9448721 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000060","","2512"
"10:46:37.9450053 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9450279 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\d3d11.dll","0.0000141","Filter: d3d11.dll, 1: d3d11.dll","2512"
"10:46:37.9450531 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.9452835 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9453159 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:37.9453270 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000047","","2512"
"10:46:37.9453624 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9453820 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000103","Filter: Windows, 1: Windows","2512"
"10:46:37.9454025 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.9454968 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9455181 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:37.9455377 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:37.9456291 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9456495 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dhcpcsvc.dll","0.0000111","Filter: dhcpcsvc.dll, 1: dhcpcsvc.dll","2512"
"10:46:37.9456709 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.9458415 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9458701 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000030","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:37.9458804 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000042","","2512"
"10:46:37.9459132 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9459316 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000093","Filter: Windows, 1: Windows","2512"
"10:46:37.9459508 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.9460395 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9460596 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000093","Filter: System32, 1: System32","2512"
"10:46:37.9460788 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.9461692 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9461893 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dhcpcsvc.dll","0.0000111","Filter: dhcpcsvc.dll, 1: dhcpcsvc.dll","2512"
"10:46:37.9462102 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.9463258 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9463621 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000034","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:37.9463791 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9463911 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000021","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:37.9464107 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.9464547 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000055","","2512"
"10:46:37.9465775 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9466147 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000029","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:37.9466292 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9466403 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000017","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:37.9466582 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.9466961 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000052","","2512"
"10:46:37.9468877 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9469108 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000025","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:37.9469210 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000038","","2512"
"10:46:37.9470904 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9471109 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000025","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:37.9471207 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:37.9472197 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9472555 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000026","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:37.9472696 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9472803 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000021","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:37.9472982 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.9473728 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000022","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:37.9473848 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9473946 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000017","AllocationSize: 86,016, EndOfFile: 84,992, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:37.9474117 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dhcpcsvc.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:37.9474458 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\dhcpcsvc.dll","0.0000239","Offset: 0, Length: 84,992, Priority: Normal","2512"
"10:46:37.9481733 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000123","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9481980 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000124","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:37.9483153 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000184","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.9484271 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9484515 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000025","Information: DACL","2512"
"10:46:37.9484792 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000043","","2512"
"10:46:37.9485871 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.9486857 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9487083 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:37.9487194 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:37.9489592 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000145","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:37.9490944 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000205","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.9492451 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000157","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9492792 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000030","Information: DACL","2512"
"10:46:37.9492971 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000056","","2512"
"10:46:37.9494456 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000175","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.9495595 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000115","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9495838 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000022","Information: DACL","2512"
"10:46:37.9495954 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:37.9500148 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0015~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9500421 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0015~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:19:44 PM, ChangeTime: 3/20/2019 7:09:04 PM, AllocationSize: 630784, EndOfFile: 629106, FileAttributes: A","2512"
"10:46:37.9500557 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0015~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","","2512"
"10:46:37.9502546 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000170","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9502827 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","CreationTime: 3/20/2019 7:27:24 PM, LastAccessTime: 3/20/2019 7:42:23 PM, LastWriteTime: 1/10/2019 4:08:41 AM, ChangeTime: 3/20/2019 7:42:23 PM, AllocationSize: 20480, EndOfFile: 20005, FileAttributes: A","2512"
"10:46:37.9502964 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000042","","2512"
"10:46:37.9504960 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1021_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9505178 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1021_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","CreationTime: 4/25/2019 5:39:19 PM, LastAccessTime: 4/25/2019 5:39:19 PM, LastWriteTime: 4/3/2019 9:55:20 AM, ChangeTime: 4/25/2019 8:12:11 PM, AllocationSize: 20480, EndOfFile: 20196, FileAttributes: A","2512"
"10:46:37.9505289 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1021_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000038","","2512"
"10:46:37.9505618 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000042","","2512"
"10:46:37.9505767 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:37.9507772 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9507990 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000025","CreationTime: 3/20/2019 7:27:24 PM, LastAccessTime: 3/20/2019 7:42:23 PM, LastWriteTime: 1/10/2019 4:08:41 AM, ChangeTime: 3/20/2019 7:42:23 PM, AllocationSize: 20480, EndOfFile: 20005, FileAttributes: A","2512"
"10:46:37.9508096 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000039","","2512"
"10:46:37.9509270 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9509539 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","AllocationSize: 20,480, EndOfFile: 20,005, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.9509705 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9509820 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000022","AllocationSize: 20,480, EndOfFile: 20,005, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.9510004 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.9510819 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:37.9510998 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000055","CreationTime: 3/20/2019 7:27:24 PM, LastAccessTime: 3/20/2019 7:42:23 PM, LastWriteTime: 1/10/2019 4:08:41 AM, ChangeTime: 3/20/2019 7:42:23 PM, FileAttributes: A, AllocationSize: 20,480, EndOfFile: 20,005, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x200000006f00e, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:37.9512367 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000137","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9512653 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","AllocationSize: 20,480, EndOfFile: 20,005, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.9512798 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9512901 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","AllocationSize: 20,480, EndOfFile: 20,005, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.9513080 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.9513613 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000060","","2512"
"10:46:37.9514974 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000133","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9515264 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","AllocationSize: 20,480, EndOfFile: 20,005, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.9515401 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9515503 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000022","AllocationSize: 20,480, EndOfFile: 20,005, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.9515683 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:37.9516003 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000047","","2512"
"10:46:37.9517283 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9517560 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","AllocationSize: 20,480, EndOfFile: 20,005, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.9517692 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9517795 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","AllocationSize: 20,480, EndOfFile: 20,005, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.9517970 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:37.9518528 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000052","","2512"
"10:46:37.9520922 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000056","","2512"
"10:46:37.9521306 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1009_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","","2512"
"10:46:37.9523823 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9524178 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000029","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:37.9524293 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000042","","2512"
"10:46:37.9526234 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9526524 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:37.9526631 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000038","","2512"
"10:46:37.9528675 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9528952 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:37.9529054 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000043","","2512"
"10:46:37.9529408 AM","firefox.exe","7384","CreateFile","C:\","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9529622 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000124","Filter: Windows, 1: Windows","2512"
"10:46:37.9529861 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.9530791 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9531013 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:37.9531243 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:37.9532190 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9532480 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dhcpcsvc.dll","0.0000158","Filter: dhcpcsvc.dll, 1: dhcpcsvc.dll","2512"
"10:46:37.9532800 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000056","","2512"
"10:46:37.9535808 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000214","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9536116 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000030","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","2512"
"10:46:37.9536227 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000042","","2512"
"10:46:37.9536568 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9536764 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000107","Filter: Windows, 1: Windows","2512"
"10:46:37.9536978 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.9537895 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9538104 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:37.9538313 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.9539243 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9539456 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\msvcp140.dll","0.0000116","Filter: msvcp140.dll, 1: msvcp140.dll","2512"
"10:46:37.9539674 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.9541381 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9541586 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000029","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","2512"
"10:46:37.9541688 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000038","","2512"
"10:46:37.9542008 AM","firefox.exe","7384","CreateFile","C:\","0.0000072","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9542183 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:37.9542375 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:37.9543254 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9543459 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000089","Filter: System32, 1: System32","2512"
"10:46:37.9543651 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.9544568 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9544773 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\msvcp140.dll","0.0000111","Filter: msvcp140.dll, 1: msvcp140.dll","2512"
"10:46:37.9544986 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:37.9546078 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9546343 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp140.dll","0.0000026","AllocationSize: 679,936, EndOfFile: 675,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.9546492 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9546612 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp140.dll","0.0000021","AllocationSize: 679,936, EndOfFile: 675,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.9546799 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000018","SyncType: SyncTypeOther","2512"
"10:46:37.9547358 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000052","","2512"
"10:46:37.9548677 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9548954 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp140.dll","0.0000026","AllocationSize: 679,936, EndOfFile: 675,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.9549095 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9549202 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp140.dll","0.0000017","AllocationSize: 679,936, EndOfFile: 675,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.9549385 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.9549987 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp140.dll","0.0000021","AllocationSize: 679,936, EndOfFile: 675,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.9550115 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000051","","2512"
"10:46:37.9551390 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9551659 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp140.dll","0.0000026","AllocationSize: 679,936, EndOfFile: 675,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.9551783 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9551885 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp140.dll","0.0000017","AllocationSize: 679,936, EndOfFile: 675,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.9552060 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp140.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.9556446 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000056","","2512"
"10:46:37.9559655 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9559890 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000029","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","2512"
"10:46:37.9560005 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000042","","2512"
"10:46:37.9561993 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9562198 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000025","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","2512"
"10:46:37.9562305 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000038","","2512"
"10:46:37.9564357 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9564562 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000025","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","2512"
"10:46:37.9564664 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000034","","2512"
"10:46:37.9564997 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9565189 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000106","Filter: Windows, 1: Windows","2512"
"10:46:37.9565449 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.9566362 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9566580 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:37.9566785 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.9567706 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9567919 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\msvcp140.dll","0.0000116","Filter: msvcp140.dll, 1: msvcp140.dll","2512"
"10:46:37.9568137 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.9570296 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9570612 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000030","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","2512"
"10:46:37.9570718 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000043","","2512"
"10:46:37.9571055 AM","firefox.exe","7384","CreateFile","C:\","0.0000082","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9571243 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:37.9571444 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:37.9572579 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9572783 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000099","Filter: System32, 1: System32","2512"
"10:46:37.9572984 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.9573901 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000116","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9574127 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\version.dll","0.0000111","Filter: version.dll, 1: version.dll","2512"
"10:46:37.9574354 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.9576658 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000157","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9577089 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000046","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","2512"
"10:46:37.9577259 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000064","","2512"
"10:46:37.9577750 AM","firefox.exe","7384","CreateFile","C:\","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9578023 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000124","Filter: Windows, 1: Windows","2512"
"10:46:37.9578305 AM","firefox.exe","7384","CloseFile","C:\","0.0000051","","2512"
"10:46:37.9579358 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000099","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9579567 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000099","Filter: System32, 1: System32","2512"
"10:46:37.9579768 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.9580694 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9580894 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\version.dll","0.0000111","Filter: version.dll, 1: version.dll","2512"
"10:46:37.9581108 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:37.9582243 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9582588 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\version.dll","0.0000030","AllocationSize: 32,768, EndOfFile: 30,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9582746 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\version.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9582866 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\version.dll","0.0000017","AllocationSize: 32,768, EndOfFile: 30,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9583053 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\version.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.9583463 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000055","","2512"
"10:46:37.9584675 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9585033 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\version.dll","0.0000026","AllocationSize: 32,768, EndOfFile: 30,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9585178 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\version.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9585285 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\version.dll","0.0000017","AllocationSize: 32,768, EndOfFile: 30,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9585468 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\version.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.9585921 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\version.dll","0.0000021","AllocationSize: 32,768, EndOfFile: 30,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9586044 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000051","","2512"
"10:46:37.9587222 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9587550 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\version.dll","0.0000026","AllocationSize: 32,768, EndOfFile: 30,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9587674 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\version.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9587781 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\version.dll","0.0000017","AllocationSize: 32,768, EndOfFile: 30,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9587960 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\version.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.9590524 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000051","","2512"
"10:46:37.9593737 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9594057 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000030","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","2512"
"10:46:37.9594172 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000047","","2512"
"10:46:37.9596208 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9596498 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000025","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","2512"
"10:46:37.9596604 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000043","","2512"
"10:46:37.9599382 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\version.dll","0.0000166","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9599745 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000034","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","2512"
"10:46:37.9599860 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\version.dll","0.0000051","","2512"
"10:46:37.9600257 AM","firefox.exe","7384","CreateFile","C:\","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9600474 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000132","Filter: Windows, 1: Windows","2512"
"10:46:37.9600726 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:37.9601686 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9601912 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:37.9602125 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000035","","2512"
"10:46:37.9603068 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9603282 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\version.dll","0.0000115","Filter: version.dll, 1: version.dll","2512"
"10:46:37.9603504 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:37.9605786 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9606093 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:37.9606204 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000047","","2512"
"10:46:37.9606550 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9606738 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:37.9606942 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:37.9607838 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000099","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9608043 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:37.9608240 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:37.9609153 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9609357 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\cryptsp.dll","0.0000124","Filter: cryptsp.dll, 1: cryptsp.dll","2512"
"10:46:37.9609579 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:37.9611282 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9611559 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:37.9611666 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000042","","2512"
"10:46:37.9611994 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9612173 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:37.9612370 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.9613257 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9613458 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000089","Filter: System32, 1: System32","2512"
"10:46:37.9613650 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:37.9614576 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9614772 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\cryptsp.dll","0.0000119","Filter: cryptsp.dll, 1: cryptsp.dll","2512"
"10:46:37.9614989 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:37.9616240 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9616594 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptsp.dll","0.0000030","AllocationSize: 81,920, EndOfFile: 79,696, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9616764 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000043","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9616905 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptsp.dll","0.0000017","AllocationSize: 81,920, EndOfFile: 79,696, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9617097 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.9617639 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000073","","2512"
"10:46:37.9619405 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000167","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9619934 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptsp.dll","0.0000047","AllocationSize: 81,920, EndOfFile: 79,696, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9620173 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000035","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9620348 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptsp.dll","0.0000030","AllocationSize: 81,920, EndOfFile: 79,696, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9620656 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000021","SyncType: SyncTypeOther","2512"
"10:46:37.9621266 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptsp.dll","0.0000025","AllocationSize: 81,920, EndOfFile: 79,696, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9621402 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000056","","2512"
"10:46:37.9622682 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9623028 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptsp.dll","0.0000025","AllocationSize: 81,920, EndOfFile: 79,696, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9623160 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9623267 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptsp.dll","0.0000017","AllocationSize: 81,920, EndOfFile: 79,696, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9623442 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptsp.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:37.9627166 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000099","","2512"
"10:46:37.9631186 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9631548 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:37.9631693 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000047","","2512"
"10:46:37.9633857 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9634164 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:37.9634283 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000043","","2512"
"10:46:37.9636348 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9636626 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","2512"
"10:46:37.9636732 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000043","","2512"
"10:46:37.9637095 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9637308 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000128","Filter: Windows, 1: Windows","2512"
"10:46:37.9637552 AM","firefox.exe","7384","CloseFile","C:\","0.0000042","","2512"
"10:46:37.9638490 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9638716 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:37.9638930 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.9639877 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9640090 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\cryptsp.dll","0.0000128","Filter: cryptsp.dll, 1: cryptsp.dll","2512"
"10:46:37.9640321 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.9642608 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9642821 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000030","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","2512"
"10:46:37.9642928 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000042","","2512"
"10:46:37.9643926 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9644148 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000106","Filter: freebl3.dll, 1: freebl3.dll","2512"
"10:46:37.9644365 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000039","","2512"
"10:46:37.9646110 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9646302 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","2512"
"10:46:37.9646401 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000038","","2512"
"10:46:37.9647322 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9647531 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000094","Filter: freebl3.dll, 1: freebl3.dll","2512"
"10:46:37.9647732 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000038","","2512"
"10:46:37.9648781 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9649042 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000025","AllocationSize: 585,728, EndOfFile: 583,368, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.9649195 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9649315 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000017","AllocationSize: 585,728, EndOfFile: 583,368, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.9649507 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.9649993 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000051","","2512"
"10:46:37.9651137 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9651405 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000026","AllocationSize: 585,728, EndOfFile: 583,368, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.9651542 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9651657 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000017","AllocationSize: 585,728, EndOfFile: 583,368, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.9651841 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.9652370 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000017","AllocationSize: 585,728, EndOfFile: 583,368, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.9652489 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000051","","2512"
"10:46:37.9653633 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000166","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9653948 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000026","AllocationSize: 585,728, EndOfFile: 583,368, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.9654076 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9654204 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000026","AllocationSize: 585,728, EndOfFile: 583,368, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:37.9654486 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:37.9657323 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000060","","2512"
"10:46:37.9660532 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9660758 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000030","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","2512"
"10:46:37.9660877 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000043","","2512"
"10:46:37.9662815 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9663011 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000030","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","2512"
"10:46:37.9663117 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000039","","2512"
"10:46:37.9665072 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9665264 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000025","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","2512"
"10:46:37.9665362 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000051","","2512"
"10:46:37.9666484 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9666714 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000111","Filter: freebl3.dll, 1: freebl3.dll","2512"
"10:46:37.9666945 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000038","","2512"
"10:46:37.9669027 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9669381 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","2512"
"10:46:37.9669492 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000043","","2512"
"10:46:37.9669842 AM","firefox.exe","7384","CreateFile","C:\","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9670042 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000107","Filter: Windows, 1: Windows","2512"
"10:46:37.9670256 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.9671169 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9671382 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:37.9671587 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.9672508 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9672717 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dbghelp.dll","0.0000128","Filter: dbghelp.dll, 1: dbghelp.dll","2512"
"10:46:37.9672944 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.9674774 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9675064 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","2512"
"10:46:37.9675167 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000042","","2512"
"10:46:37.9675495 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9675683 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:37.9675883 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:37.9676852 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9677052 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000099","Filter: System32, 1: System32","2512"
"10:46:37.9677249 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:37.9678166 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9678367 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dbghelp.dll","0.0000115","Filter: dbghelp.dll, 1: dbghelp.dll","2512"
"10:46:37.9678580 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.9679655 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9680005 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dbghelp.dll","0.0000034","AllocationSize: 1,728,512, EndOfFile: 1,728,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9680167 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9680287 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dbghelp.dll","0.0000017","AllocationSize: 1,728,512, EndOfFile: 1,728,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9680483 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.9681144 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000056","","2512"
"10:46:37.9682364 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9682731 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dbghelp.dll","0.0000026","AllocationSize: 1,728,512, EndOfFile: 1,728,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9682876 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9682987 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dbghelp.dll","0.0000022","AllocationSize: 1,728,512, EndOfFile: 1,728,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9683171 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.9684007 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000056","","2512"
"10:46:37.9685983 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000174","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9686256 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000025","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:37.9686362 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:37.9688039 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9688248 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:37.9688346 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:37.9689605 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9689963 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dbghelp.dll","0.0000030","AllocationSize: 1,728,512, EndOfFile: 1,728,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9690108 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9690219 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dbghelp.dll","0.0000017","AllocationSize: 1,728,512, EndOfFile: 1,728,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9690399 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.9691350 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dbghelp.dll","0.0000026","AllocationSize: 1,728,512, EndOfFile: 1,728,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9691474 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9691572 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dbghelp.dll","0.0000017","AllocationSize: 1,728,512, EndOfFile: 1,728,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9691743 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dbghelp.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:37.9693227 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\dbghelp.dll","0.0001519","Offset: 0, Length: 524,288, Priority: Normal","2512"
"10:46:37.9816312 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000171","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9816671 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000149","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:37.9817942 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000201","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.9819167 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000119","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9819440 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000060","Information: DACL","2512"
"10:46:37.9819628 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000051","","2512"
"10:46:37.9820762 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.9821752 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000103","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9821978 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000022","Information: DACL","2512"
"10:46:37.9822094 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:37.9824474 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000146","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:37.9825784 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.9826911 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000115","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9827158 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000022","Information: DACL","2512"
"10:46:37.9827278 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000038","","2512"
"10:46:37.9828353 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:37.9829402 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9829629 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:37.9829740 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000055","","2512"
"10:46:37.9833964 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9834245 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:27:21 PM, ChangeTime: 3/20/2019 7:07:51 PM, AllocationSize: 323584, EndOfFile: 319494, FileAttributes: A","2512"
"10:46:37.9834382 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","","2512"
"10:46:37.9836617 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0015~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9836856 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0015~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:19:44 PM, ChangeTime: 3/20/2019 7:09:04 PM, AllocationSize: 630784, EndOfFile: 629106, FileAttributes: A","2512"
"10:46:37.9836976 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0015~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","","2512"
"10:46:37.9837313 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000043","","2512"
"10:46:37.9837471 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:37.9839463 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9839689 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:27:21 PM, ChangeTime: 3/20/2019 7:07:51 PM, AllocationSize: 323584, EndOfFile: 319494, FileAttributes: A","2512"
"10:46:37.9839852 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","","2512"
"10:46:37.9841004 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000123","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9841277 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000029","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.9841673 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9841793 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.9841981 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.9845530 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000035","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:37.9845688 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:27:21 PM, ChangeTime: 3/20/2019 7:07:51 PM, FileAttributes: A, AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x3000000061084, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:37.9846921 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000150","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9847229 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.9847386 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9847506 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.9847685 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.9848274 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000060","","2512"
"10:46:37.9849631 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9849934 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.9850079 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9850185 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000022","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.9850365 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:37.9850723 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","","2512"
"10:46:37.9853573 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000137","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9853868 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.9854008 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9854115 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 323,584, EndOfFile: 319,494, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:37.9854290 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.9856667 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000055","","2512"
"10:46:37.9901202 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000107","","2512"
"10:46:37.9902333 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package00114~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","","2512"
"10:46:37.9906164 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9906552 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","2512"
"10:46:37.9906680 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000043","","2512"
"10:46:37.9908805 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9909100 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","2512"
"10:46:37.9909211 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000038","","2512"
"10:46:37.9911246 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9911527 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","2512"
"10:46:37.9911630 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000042","","2512"
"10:46:37.9911992 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9912214 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000137","Filter: Windows, 1: Windows","2512"
"10:46:37.9912466 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.9913490 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9913716 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:37.9913968 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:37.9914911 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9915120 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dbghelp.dll","0.0000119","Filter: dbghelp.dll, 1: dbghelp.dll","2512"
"10:46:37.9915346 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:37.9917432 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9917654 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000026","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","2512"
"10:46:37.9917757 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000038","","2512"
"10:46:37.9918119 AM","firefox.exe","7384","CreateFile","C:\","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9918333 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000145","Filter: Windows, 1: Windows","2512"
"10:46:37.9918593 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.9919493 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9919698 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:37.9919894 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:37.9921784 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9921989 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000026","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","2512"
"10:46:37.9922087 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000039","","2512"
"10:46:37.9922407 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9922587 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000093","Filter: Windows, 1: Windows","2512"
"10:46:37.9922779 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:37.9923704 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9923909 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:37.9924106 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:37.9925211 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9925484 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000025","AllocationSize: 4,333,568, EndOfFile: 4,332,032, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9925650 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9925770 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000021","AllocationSize: 4,333,568, EndOfFile: 4,332,032, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9925974 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.9926819 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000056","","2512"
"10:46:37.9928056 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9928342 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000026","AllocationSize: 4,333,568, EndOfFile: 4,332,032, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9928483 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9928590 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000021","AllocationSize: 4,333,568, EndOfFile: 4,332,032, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9928773 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:37.9929767 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000073","","2512"
"10:46:37.9932775 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9933104 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000030","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:37.9933219 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000047","","2512"
"10:46:37.9934994 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9935203 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:37.9935306 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:37.9936603 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000123","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:37.9936897 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000026","AllocationSize: 4,333,568, EndOfFile: 4,332,032, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9937046 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9937162 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000021","AllocationSize: 4,333,568, EndOfFile: 4,332,032, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9937345 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.9938510 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000025","AllocationSize: 4,333,568, EndOfFile: 4,332,032, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9938638 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:37.9938740 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000017","AllocationSize: 4,333,568, EndOfFile: 4,332,032, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:37.9938911 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\D3DCompiler_47.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:37.9940827 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\D3DCompiler_47.dll","0.0001002","Offset: 0, Length: 524,288, Priority: Normal","2512"
"10:46:38.0238628 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000302","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0239122 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000158","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:38.0240402 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000192","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:38.0241520 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000116","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0241785 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000025","Information: DACL","2512"
"10:46:38.0241921 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000039","","2512"
"10:46:38.0243940 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000234","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:38.0245386 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000128","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0245685 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000025","Information: DACL","2512"
"10:46:38.0245834 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:38.0248181 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000157","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:38.0249584 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000158","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:38.0250736 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000124","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0250997 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000021","Information: DACL","2512"
"10:46:38.0251116 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000043","","2512"
"10:46:38.0252221 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:38.0253232 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000107","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0253458 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000018","Information: DACL","2512"
"10:46:38.0253569 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000039","","2512"
"10:46:38.0257482 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0257764 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, AllocationSize: 294912, EndOfFile: 291839, FileAttributes: A","2512"
"10:46:38.0257900 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","","2512"
"10:46:38.0260110 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0260349 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:20:29 PM, ChangeTime: 3/20/2019 7:06:10 PM, AllocationSize: 454656, EndOfFile: 452785, FileAttributes: A","2512"
"10:46:38.0260464 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","","2512"
"10:46:38.0260814 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000043","","2512"
"10:46:38.0260964 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000051","","2512"
"10:46:38.0263579 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0263929 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, AllocationSize: 294912, EndOfFile: 291839, FileAttributes: A","2512"
"10:46:38.0264108 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000060","","2512"
"10:46:38.0267218 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000188","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0267637 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0267841 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0267974 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0268166 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0271233 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:38.0271442 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, FileAttributes: A, AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x300000006193f, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:38.0272842 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000162","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0273217 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0273452 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0273567 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000022","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0273751 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0274357 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000068","","2512"
"10:46:38.0275769 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0276080 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0276277 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0276388 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0276571 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.0276934 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000055","","2512"
"10:46:38.0278564 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000136","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0278854 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0278990 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0279088 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000022","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0279268 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:38.0281452 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000060","","2512"
"10:46:38.0320991 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000073","","2512"
"10:46:38.0321729 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","","2512"
"10:46:38.0325646 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0325911 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000030","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","2512"
"10:46:38.0326030 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000043","","2512"
"10:46:38.0328036 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0328253 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000026","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","2512"
"10:46:38.0328360 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000043","","2512"
"10:46:38.0330382 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0330583 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000025","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","2512"
"10:46:38.0330685 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000039","","2512"
"10:46:38.0331044 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0331261 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000133","Filter: Windows, 1: Windows","2512"
"10:46:38.0331513 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:38.0332473 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0332699 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000115","Filter: System32, 1: System32","2512"
"10:46:38.0332921 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.0335020 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0335357 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000030","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:38.0335468 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000043","","2512"
"10:46:38.0335810 AM","firefox.exe","7384","CreateFile","C:\","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0336006 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000102","Filter: Windows, 1: Windows","2512"
"10:46:38.0336219 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:38.0337115 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0337328 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000099","Filter: System32, 1: System32","2512"
"10:46:38.0337529 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:38.0338455 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0338660 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wshbth.dll","0.0000111","Filter: wshbth.dll, 1: wshbth.dll","2512"
"10:46:38.0338873 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:38.0340563 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0340844 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000030","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:38.0340951 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000043","","2512"
"10:46:38.0341275 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0341454 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000090","Filter: Windows, 1: Windows","2512"
"10:46:38.0341646 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:38.0342611 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0342820 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:38.0343024 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:38.0343972 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000119","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0344198 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wshbth.dll","0.0000141","Filter: wshbth.dll, 1: wshbth.dll","2512"
"10:46:38.0344437 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:38.0345525 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0345883 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wshbth.dll","0.0000030","AllocationSize: 65,536, EndOfFile: 63,488, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0346054 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0346173 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wshbth.dll","0.0000022","AllocationSize: 65,536, EndOfFile: 63,488, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0346374 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.0346800 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000052","","2512"
"10:46:38.0348004 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0348375 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wshbth.dll","0.0000025","AllocationSize: 65,536, EndOfFile: 63,488, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0348520 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0348635 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wshbth.dll","0.0000017","AllocationSize: 65,536, EndOfFile: 63,488, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0348823 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0349211 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000051","","2512"
"10:46:38.0351144 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0351370 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:38.0351477 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000038","","2512"
"10:46:38.0353200 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0353405 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:38.0353503 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000039","","2512"
"10:46:38.0354681 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0355035 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wshbth.dll","0.0000030","AllocationSize: 65,536, EndOfFile: 63,488, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0355184 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0355295 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wshbth.dll","0.0000017","AllocationSize: 65,536, EndOfFile: 63,488, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0355470 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0356187 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wshbth.dll","0.0000026","AllocationSize: 65,536, EndOfFile: 63,488, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0356311 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0356405 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wshbth.dll","0.0000017","AllocationSize: 65,536, EndOfFile: 63,488, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0356575 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wshbth.dll","0.0000009","SyncType: SyncTypeOther","2512"
"10:46:38.0357075 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\wshbth.dll","0.0000217","Offset: 0, Length: 63,488, Priority: Normal","2512"
"10:46:38.0362937 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000124","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0363189 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000128","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:38.0364298 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000192","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:38.0365378 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000106","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0365616 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000026","Information: DACL","2512"
"10:46:38.0365740 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000039","","2512"
"10:46:38.0366841 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:38.0367801 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000107","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0368023 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:38.0368138 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:38.0370877 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000150","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:38.0372106 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:38.0373130 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0373365 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000021","Information: DACL","2512"
"10:46:38.0373476 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000038","","2512"
"10:46:38.0374495 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:38.0375443 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000102","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0375660 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000017","Information: DACL","2512"
"10:46:38.0375767 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:38.0380051 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0011~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0380328 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0011~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:16:17 PM, ChangeTime: 3/20/2019 7:05:53 PM, AllocationSize: 303104, EndOfFile: 302781, FileAttributes: A","2512"
"10:46:38.0380465 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0011~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","","2512"
"10:46:38.0382726 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0382973 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","CreationTime: 3/20/2019 7:27:26 PM, LastAccessTime: 3/20/2019 7:42:31 PM, LastWriteTime: 1/10/2019 4:09:14 AM, ChangeTime: 3/20/2019 7:42:31 PM, AllocationSize: 40960, EndOfFile: 39200, FileAttributes: A","2512"
"10:46:38.0383089 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000046","","2512"
"10:46:38.0385128 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1456_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0385388 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1456_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","CreationTime: 4/25/2019 5:40:33 PM, LastAccessTime: 4/25/2019 5:40:33 PM, LastWriteTime: 4/3/2019 9:55:09 AM, ChangeTime: 4/25/2019 8:12:16 PM, AllocationSize: 40960, EndOfFile: 40463, FileAttributes: A","2512"
"10:46:38.0385572 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1456_for_KB4493464~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000047","","2512"
"10:46:38.0385905 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:38.0386054 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:38.0388008 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0388230 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000030","CreationTime: 3/20/2019 7:27:26 PM, LastAccessTime: 3/20/2019 7:42:31 PM, LastWriteTime: 1/10/2019 4:09:14 AM, ChangeTime: 3/20/2019 7:42:31 PM, AllocationSize: 40960, EndOfFile: 39200, FileAttributes: A","2512"
"10:46:38.0388341 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000042","","2512"
"10:46:38.0389476 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000123","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0389745 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000025","AllocationSize: 40,960, EndOfFile: 39,200, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0389902 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0390018 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","AllocationSize: 40,960, EndOfFile: 39,200, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0390214 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0391191 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:38.0391340 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000039","CreationTime: 3/20/2019 7:27:26 PM, LastAccessTime: 3/20/2019 7:42:31 PM, LastWriteTime: 1/10/2019 4:09:14 AM, ChangeTime: 3/20/2019 7:42:31 PM, FileAttributes: A, AllocationSize: 40,960, EndOfFile: 39,200, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x200000006f356, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:38.0392488 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0392863 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","AllocationSize: 40,960, EndOfFile: 39,200, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0393017 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0393124 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","AllocationSize: 40,960, EndOfFile: 39,200, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0393303 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.0394097 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000059","","2512"
"10:46:38.0395458 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000136","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0395756 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","AllocationSize: 40,960, EndOfFile: 39,200, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0395944 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0396055 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","AllocationSize: 40,960, EndOfFile: 39,200, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0396234 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.0396567 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000051","","2512"
"10:46:38.0398030 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0398308 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000025","AllocationSize: 40,960, EndOfFile: 39,200, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0398440 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0398542 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000017","AllocationSize: 40,960, EndOfFile: 39,200, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0398713 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.0399357 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000056","","2512"
"10:46:38.0404460 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000060","","2512"
"10:46:38.0404883 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1429_for_KB4480976~31bf3856ad364e35~amd64~~10.0.1.5.cat","0.0000034","","2512"
"10:46:38.0407494 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0407839 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000035","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:38.0407959 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000043","","2512"
"10:46:38.0409858 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0410143 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:38.0410254 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000039","","2512"
"10:46:38.0412337 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wshbth.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0412614 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:38.0412716 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wshbth.dll","0.0000043","","2512"
"10:46:38.0413075 AM","firefox.exe","7384","CreateFile","C:\","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0413288 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000128","Filter: Windows, 1: Windows","2512"
"10:46:38.0413531 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:38.0414457 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0414675 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:38.0414897 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:38.0415827 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0416036 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wshbth.dll","0.0000162","Filter: wshbth.dll, 1: wshbth.dll","2512"
"10:46:38.0416305 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:38.0418399 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000210","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0418783 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000030","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","2512"
"10:46:38.0418894 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000039","","2512"
"10:46:38.0419227 AM","firefox.exe","7384","CreateFile","C:\","0.0000086","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0419419 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:38.0419620 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.0420524 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0420733 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:38.0420930 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:38.0421877 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0422086 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\ole32.dll","0.0000119","Filter: ole32.dll, 1: ole32.dll","2512"
"10:46:38.0422308 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:38.0424010 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0424283 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000030","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","2512"
"10:46:38.0424390 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000038","","2512"
"10:46:38.0424710 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0424889 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000090","Filter: Windows, 1: Windows","2512"
"10:46:38.0425085 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:38.0426062 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0426267 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:38.0426468 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:38.0427381 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0427581 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\ole32.dll","0.0000107","Filter: ole32.dll, 1: ole32.dll","2512"
"10:46:38.0427786 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:38.0428870 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000875","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0429988 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ole32.dll","0.0000030","AllocationSize: 1,380,352, EndOfFile: 1,376,672, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0430150 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ole32.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0430269 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ole32.dll","0.0000022","AllocationSize: 1,380,352, EndOfFile: 1,376,672, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0430461 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ole32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0431234 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000085","","2512"
"10:46:38.0434472 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000154","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0434950 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ole32.dll","0.0000034","AllocationSize: 1,380,352, EndOfFile: 1,376,672, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0435129 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ole32.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0435257 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ole32.dll","0.0000017","AllocationSize: 1,380,352, EndOfFile: 1,376,672, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0435453 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ole32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0436179 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ole32.dll","0.0000021","AllocationSize: 1,380,352, EndOfFile: 1,376,672, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0436320 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000059","","2512"
"10:46:38.0437642 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0438005 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ole32.dll","0.0000025","AllocationSize: 1,380,352, EndOfFile: 1,376,672, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0438141 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ole32.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0438252 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ole32.dll","0.0000017","AllocationSize: 1,380,352, EndOfFile: 1,376,672, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0438427 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ole32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0444029 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000056","","2512"
"10:46:38.0448928 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0449248 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000034","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","2512"
"10:46:38.0449371 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000047","","2512"
"10:46:38.0451274 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0451560 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000030","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","2512"
"10:46:38.0451731 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000047","","2512"
"10:46:38.0455089 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ole32.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0455443 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000034","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","2512"
"10:46:38.0455575 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ole32.dll","0.0000051","","2512"
"10:46:38.0455980 AM","firefox.exe","7384","CreateFile","C:\","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0456215 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000132","Filter: Windows, 1: Windows","2512"
"10:46:38.0456471 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.0457457 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0457683 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000106","Filter: System32, 1: System32","2512"
"10:46:38.0457900 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:38.0458865 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0459078 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\ole32.dll","0.0000124","Filter: ole32.dll, 1: ole32.dll","2512"
"10:46:38.0459308 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:38.0461591 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0461817 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000030","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:38.0461945 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000047","","2512"
"10:46:38.0462295 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0462487 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:38.0462692 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.0463592 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0463805 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:38.0464006 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.0465794 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0465990 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000026","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:38.0466088 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000038","","2512"
"10:46:38.0466417 AM","firefox.exe","7384","CreateFile","C:\","0.0000072","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0466596 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000089","Filter: Windows, 1: Windows","2512"
"10:46:38.0466788 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:38.0467667 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0467867 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:38.0468059 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:38.0469160 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0469420 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000030","AllocationSize: 643,072, EndOfFile: 641,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0469604 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp_win.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0469745 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000017","AllocationSize: 643,072, EndOfFile: 641,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0469932 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp_win.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0470470 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000055","","2512"
"10:46:38.0471690 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0471989 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000025","AllocationSize: 643,072, EndOfFile: 641,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0472134 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp_win.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0472245 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000021","AllocationSize: 643,072, EndOfFile: 641,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0472428 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp_win.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0472987 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000022","AllocationSize: 643,072, EndOfFile: 641,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0473111 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000051","","2512"
"10:46:38.0474336 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0474592 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000025","AllocationSize: 643,072, EndOfFile: 641,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0474720 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp_win.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0474826 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000017","AllocationSize: 643,072, EndOfFile: 641,984, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0475005 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcp_win.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.0478875 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000051","","2512"
"10:46:38.0482822 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0483048 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000030","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:38.0483168 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000042","","2512"
"10:46:38.0485066 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0485280 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000029","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:38.0485391 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000042","","2512"
"10:46:38.0488160 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0488450 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000034","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:38.0488612 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000060","","2512"
"10:46:38.0489111 AM","firefox.exe","7384","CreateFile","C:\","0.0000120","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0489401 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000150","Filter: Windows, 1: Windows","2512"
"10:46:38.0489725 AM","firefox.exe","7384","CloseFile","C:\","0.0000047","","2512"
"10:46:38.0490707 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0490924 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:38.0491138 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.0493339 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0493561 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:38.0493664 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000042","","2512"
"10:46:38.0494005 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0494188 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000099","Filter: Windows, 1: Windows","2512"
"10:46:38.0494389 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:38.0495281 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0495490 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:38.0495690 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:38.0497401 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0497593 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:38.0497691 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000039","","2512"
"10:46:38.0498007 AM","firefox.exe","7384","CreateFile","C:\","0.0000073","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0498178 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000085","Filter: Windows, 1: Windows","2512"
"10:46:38.0498361 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:38.0499232 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0499428 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000089","Filter: System32, 1: System32","2512"
"10:46:38.0499620 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:38.0500687 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000110","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0500943 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000029","AllocationSize: 495,616, EndOfFile: 494,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0501096 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcryptprimitives.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0501216 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000017","AllocationSize: 495,616, EndOfFile: 494,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0501403 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcryptprimitives.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0501885 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000052","","2512"
"10:46:38.0503153 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0503430 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000026","AllocationSize: 495,616, EndOfFile: 494,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0503571 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcryptprimitives.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0503682 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000017","AllocationSize: 495,616, EndOfFile: 494,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0503865 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcryptprimitives.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0504381 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000018","AllocationSize: 495,616, EndOfFile: 494,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0504509 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000047","","2512"
"10:46:38.0505866 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0506122 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000022","AllocationSize: 495,616, EndOfFile: 494,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0506246 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcryptprimitives.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0506353 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000017","AllocationSize: 495,616, EndOfFile: 494,400, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0506532 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcryptprimitives.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.0510103 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000051","","2512"
"10:46:38.0513836 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0514063 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000029","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:38.0514178 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000042","","2512"
"10:46:38.0516012 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0516209 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:38.0516311 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000038","","2512"
"10:46:38.0518312 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0518496 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:38.0518594 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000038","","2512"
"10:46:38.0518935 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0519136 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000119","Filter: Windows, 1: Windows","2512"
"10:46:38.0519366 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:38.0520279 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0520497 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:38.0520701 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000035","","2512"
"10:46:38.0522784 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0522993 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000025","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:38.0523095 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000043","","2512"
"10:46:38.0523424 AM","firefox.exe","7384","CreateFile","C:\","0.0000076","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0523603 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:38.0523803 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:38.0524691 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0524896 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000093","Filter: System32, 1: System32","2512"
"10:46:38.0525088 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.0526841 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0527029 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:38.0527127 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000038","","2512"
"10:46:38.0527460 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0527639 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.0527835 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:38.0529128 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0529431 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000132","Filter: System32, 1: System32","2512"
"10:46:38.0529721 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000060","","2512"
"10:46:38.0531304 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000162","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0531663 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000055","AllocationSize: 61,440, EndOfFile: 57,960, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0531901 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel.appcore.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0532029 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000022","AllocationSize: 61,440, EndOfFile: 57,960, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0532230 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel.appcore.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.0532648 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000056","","2512"
"10:46:38.0533903 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0534180 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000026","AllocationSize: 61,440, EndOfFile: 57,960, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0534316 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel.appcore.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0534427 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000022","AllocationSize: 61,440, EndOfFile: 57,960, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0534615 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel.appcore.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.0535076 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000021","AllocationSize: 61,440, EndOfFile: 57,960, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0535200 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000051","","2512"
"10:46:38.0536480 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0536740 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000026","AllocationSize: 61,440, EndOfFile: 57,960, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0536868 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel.appcore.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0536970 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000017","AllocationSize: 61,440, EndOfFile: 57,960, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0537145 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\kernel.appcore.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.0539816 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000051","","2512"
"10:46:38.0542982 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0543208 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:38.0543323 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000043","","2512"
"10:46:38.0545452 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0545657 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:38.0545764 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000038","","2512"
"10:46:38.0547825 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0548021 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:38.0548119 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000043","","2512"
"10:46:38.0548460 AM","firefox.exe","7384","CreateFile","C:\","0.0000082","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0548661 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000107","Filter: Windows, 1: Windows","2512"
"10:46:38.0548879 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.0549783 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0549996 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:38.0550206 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.0552245 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0552458 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000026","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:38.0552556 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000043","","2512"
"10:46:38.0552885 AM","firefox.exe","7384","CreateFile","C:\","0.0000073","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0553064 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000090","Filter: Windows, 1: Windows","2512"
"10:46:38.0553260 AM","firefox.exe","7384","CloseFile","C:\","0.0000035","","2512"
"10:46:38.0554152 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0554357 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:38.0554553 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:38.0556303 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0556495 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000025","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:38.0556593 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000042","","2512"
"10:46:38.0556917 AM","firefox.exe","7384","CreateFile","C:\","0.0000068","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0557083 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.0557275 AM","firefox.exe","7384","CloseFile","C:\","0.0000035","","2512"
"10:46:38.0558142 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0558338 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:38.0558534 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:38.0559631 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0559891 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32full.dll","0.0000030","AllocationSize: 1,638,400, EndOfFile: 1,634,912, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0560049 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32full.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0560160 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32full.dll","0.0000021","AllocationSize: 1,638,400, EndOfFile: 1,634,912, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0560382 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32full.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0561026 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000055","","2512"
"10:46:38.0562284 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0562558 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32full.dll","0.0000025","AllocationSize: 1,638,400, EndOfFile: 1,634,912, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0562703 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32full.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0562818 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32full.dll","0.0000017","AllocationSize: 1,638,400, EndOfFile: 1,634,912, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0563001 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32full.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0563697 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32full.dll","0.0000017","AllocationSize: 1,638,400, EndOfFile: 1,634,912, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0563816 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000056","","2512"
"10:46:38.0565019 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000116","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0565275 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32full.dll","0.0000026","AllocationSize: 1,638,400, EndOfFile: 1,634,912, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0565399 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32full.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0565506 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32full.dll","0.0000017","AllocationSize: 1,638,400, EndOfFile: 1,634,912, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0565676 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32full.dll","0.0000030","SyncType: SyncTypeOther","2512"
"10:46:38.0573459 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000068","","2512"
"10:46:38.0578711 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0578954 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000030","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:38.0579074 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000042","","2512"
"10:46:38.0580947 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0581147 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000026","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:38.0581254 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000038","","2512"
"10:46:38.0583272 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0583464 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000026","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:38.0583562 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000043","","2512"
"10:46:38.0583904 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0584104 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000115","Filter: Windows, 1: Windows","2512"
"10:46:38.0584335 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.0585248 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0585461 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:38.0585666 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.0587735 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0588059 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2512"
"10:46:38.0588166 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000043","","2512"
"10:46:38.0588503 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0588691 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.0588891 AM","firefox.exe","7384","CloseFile","C:\","0.0000035","","2512"
"10:46:38.0589792 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0589997 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:38.0590201 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:38.0591131 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0591332 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\mswsock.dll","0.0000119","Filter: mswsock.dll, 1: mswsock.dll","2512"
"10:46:38.0591567 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:38.0593320 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0593606 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2512"
"10:46:38.0593713 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000042","","2512"
"10:46:38.0594037 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0594216 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.0594408 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:38.0595296 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0595492 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:38.0595688 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:38.0596815 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0597024 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\mswsock.dll","0.0000115","Filter: mswsock.dll, 1: mswsock.dll","2512"
"10:46:38.0597241 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:38.0598914 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000213","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0599477 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mswsock.dll","0.0000034","AllocationSize: 405,504, EndOfFile: 401,968, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0599669 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0599801 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mswsock.dll","0.0000022","AllocationSize: 405,504, EndOfFile: 401,968, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0599998 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0600480 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000059","","2512"
"10:46:38.0601815 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0602191 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mswsock.dll","0.0000030","AllocationSize: 405,504, EndOfFile: 401,968, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0602336 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0602451 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mswsock.dll","0.0000017","AllocationSize: 405,504, EndOfFile: 401,968, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0602634 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.0603163 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mswsock.dll","0.0000018","AllocationSize: 405,504, EndOfFile: 401,968, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0603291 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000052","","2512"
"10:46:38.0604593 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0604951 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mswsock.dll","0.0000026","AllocationSize: 405,504, EndOfFile: 401,968, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0605083 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0605190 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mswsock.dll","0.0000017","AllocationSize: 405,504, EndOfFile: 401,968, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0605369 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mswsock.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.0608749 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000055","","2512"
"10:46:38.0612520 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0612832 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2512"
"10:46:38.0612947 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000047","","2512"
"10:46:38.0614850 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0615123 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2512"
"10:46:38.0615230 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000038","","2512"
"10:46:38.0617307 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mswsock.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0617576 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","2512"
"10:46:38.0617683 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mswsock.dll","0.0000038","","2512"
"10:46:38.0618037 AM","firefox.exe","7384","CreateFile","C:\","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0618246 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000115","Filter: Windows, 1: Windows","2512"
"10:46:38.0618472 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:38.0619398 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0619654 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000154","Filter: System32, 1: System32","2512"
"10:46:38.0619914 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000035","","2512"
"10:46:38.0620909 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000140","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0621229 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\mswsock.dll","0.0000157","Filter: mswsock.dll, 1: mswsock.dll","2512"
"10:46:38.0621544 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000056","","2512"
"10:46:38.0624458 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0624689 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","2512"
"10:46:38.0624795 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000043","","2512"
"10:46:38.0625145 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0625333 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000102","Filter: Windows, 1: Windows","2512"
"10:46:38.0625542 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:38.0626451 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0626660 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:38.0626861 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.0628823 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0629019 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","2512"
"10:46:38.0629118 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000042","","2512"
"10:46:38.0629446 AM","firefox.exe","7384","CreateFile","C:\","0.0000073","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0629621 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000090","Filter: Windows, 1: Windows","2512"
"10:46:38.0629847 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:38.0630743 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0630939 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:38.0631131 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000035","","2512"
"10:46:38.0633077 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0633346 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptbase.dll","0.0000030","AllocationSize: 32,768, EndOfFile: 31,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0633508 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0633627 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptbase.dll","0.0000022","AllocationSize: 32,768, EndOfFile: 31,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0633824 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0634259 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000055","","2512"
"10:46:38.0635488 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0635761 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptbase.dll","0.0000025","AllocationSize: 32,768, EndOfFile: 31,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0635897 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0636004 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptbase.dll","0.0000017","AllocationSize: 32,768, EndOfFile: 31,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0636192 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.0636670 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptbase.dll","0.0000017","AllocationSize: 32,768, EndOfFile: 31,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0636793 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000047","","2512"
"10:46:38.0637967 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0638214 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptbase.dll","0.0000026","AllocationSize: 32,768, EndOfFile: 31,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0638338 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0638440 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cryptbase.dll","0.0000017","AllocationSize: 32,768, EndOfFile: 31,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0638615 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cryptbase.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.0641197 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000051","","2512"
"10:46:38.0644623 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0644849 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000030","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","2512"
"10:46:38.0644964 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000043","","2512"
"10:46:38.0646833 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0647033 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000022","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","2512"
"10:46:38.0647136 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000038","","2512"
"10:46:38.0649086 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0649273 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000022","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","2512"
"10:46:38.0649367 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000043","","2512"
"10:46:38.0649713 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0649909 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000115","Filter: Windows, 1: Windows","2512"
"10:46:38.0650135 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:38.0651040 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0651253 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000103","Filter: System32, 1: System32","2512"
"10:46:38.0651475 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000043","","2512"
"10:46:38.0653570 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0653886 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000025","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:38.0653992 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000043","","2512"
"10:46:38.0654329 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0654517 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000090","Filter: Windows, 1: Windows","2512"
"10:46:38.0654713 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:38.0655601 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0655810 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:38.0656006 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:38.0656919 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0657124 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\bcrypt.dll","0.0000111","Filter: bcrypt.dll, 1: bcrypt.dll","2512"
"10:46:38.0657337 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000035","","2512"
"10:46:38.0659031 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0659309 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000029","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:38.0659415 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000043","","2512"
"10:46:38.0659740 AM","firefox.exe","7384","CreateFile","C:\","0.0000076","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0659923 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.0660115 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:38.0660994 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0661194 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:38.0661399 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000051","","2512"
"10:46:38.0662624 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0662927 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\bcrypt.dll","0.0000158","Filter: bcrypt.dll, 1: bcrypt.dll","2512"
"10:46:38.0663247 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000051","","2512"
"10:46:38.0664894 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000162","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0665342 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcrypt.dll","0.0000030","AllocationSize: 139,264, EndOfFile: 137,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0665504 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcrypt.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0665623 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcrypt.dll","0.0000022","AllocationSize: 139,264, EndOfFile: 137,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0665815 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcrypt.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.0666250 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000056","","2512"
"10:46:38.0667552 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0667914 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcrypt.dll","0.0000026","AllocationSize: 139,264, EndOfFile: 137,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0668055 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcrypt.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0668162 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcrypt.dll","0.0000017","AllocationSize: 139,264, EndOfFile: 137,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0668345 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcrypt.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.0668836 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcrypt.dll","0.0000017","AllocationSize: 139,264, EndOfFile: 137,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0668960 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000055","","2512"
"10:46:38.0670210 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0670556 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcrypt.dll","0.0000025","AllocationSize: 139,264, EndOfFile: 137,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0670684 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcrypt.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0670790 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\bcrypt.dll","0.0000022","AllocationSize: 139,264, EndOfFile: 137,568, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0670969 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\bcrypt.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0673807 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000051","","2512"
"10:46:38.0677049 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0677374 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000034","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:38.0677493 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000047","","2512"
"10:46:38.0679699 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0679985 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000025","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:38.0680092 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000042","","2512"
"10:46:38.0682349 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0682626 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000030","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:38.0682733 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000042","","2512"
"10:46:38.0683078 AM","firefox.exe","7384","CreateFile","C:\","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0683287 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000115","Filter: Windows, 1: Windows","2512"
"10:46:38.0683518 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.0684439 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0684657 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:38.0684866 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.0685800 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0686014 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\bcrypt.dll","0.0000111","Filter: bcrypt.dll, 1: bcrypt.dll","2512"
"10:46:38.0686231 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:38.0688241 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0688471 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000026","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","2512"
"10:46:38.0688574 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000038","","2512"
"10:46:38.0688898 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0689077 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:38.0689278 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:38.0690165 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0690370 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:38.0690558 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.0692392 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0692593 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000026","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","2512"
"10:46:38.0692695 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000039","","2512"
"10:46:38.0693011 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0693190 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.0693382 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:38.0694257 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0694457 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:38.0694649 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:38.0695716 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0695972 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000026","AllocationSize: 90,112, EndOfFile: 89,248, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:38.0696126 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0696245 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000017","AllocationSize: 90,112, EndOfFile: 89,248, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:38.0696437 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.0696843 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000055","","2512"
"10:46:38.0698007 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000116","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0698272 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000025","AllocationSize: 90,112, EndOfFile: 89,248, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:38.0698408 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0698515 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000021","AllocationSize: 90,112, EndOfFile: 89,248, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:38.0698699 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0699159 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000022","AllocationSize: 90,112, EndOfFile: 89,248, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:38.0699283 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000051","","2512"
"10:46:38.0700435 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0700687 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000025","AllocationSize: 90,112, EndOfFile: 89,248, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:38.0700811 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0700917 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000017","AllocationSize: 90,112, EndOfFile: 89,248, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:38.0701109 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\vcruntime140.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.0707040 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000064","","2512"
"10:46:38.0710517 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0710773 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000030","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","2512"
"10:46:38.0710897 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000043","","2512"
"10:46:38.0712864 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0713073 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000026","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","2512"
"10:46:38.0713175 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000039","","2512"
"10:46:38.0715134 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0715330 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000021","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","2512"
"10:46:38.0715428 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000039","","2512"
"10:46:38.0715765 AM","firefox.exe","7384","CreateFile","C:\","0.0000086","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0715961 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000116","Filter: Windows, 1: Windows","2512"
"10:46:38.0716192 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.0717109 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0717327 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:38.0717536 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.0719691 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0719917 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","2512"
"10:46:38.0720023 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000043","","2512"
"10:46:38.0720360 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0720540 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:38.0720744 AM","firefox.exe","7384","CloseFile","C:\","0.0000035","","2512"
"10:46:38.0721657 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0721862 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:38.0722059 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.0723778 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0723974 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","2512"
"10:46:38.0724077 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000038","","2512"
"10:46:38.0724397 AM","firefox.exe","7384","CreateFile","C:\","0.0000076","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0724576 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.0724768 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.0725651 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0725852 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000089","Filter: System32, 1: System32","2512"
"10:46:38.0726044 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:38.0727144 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000116","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0727405 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000025","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0727554 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0727673 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000018","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0727861 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0728267 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000051","","2512"
"10:46:38.0729619 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0729901 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000030","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0730041 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0730157 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000017","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0730340 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0730741 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000051","","2512"
"10:46:38.0732764 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0732990 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000030","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:38.0733096 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000039","","2512"
"10:46:38.0734795 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0735004 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000021","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:38.0735102 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:38.0736117 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000107","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0736377 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000030","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0736523 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0736633 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000018","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0736808 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0737504 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000021","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0737623 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0737721 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000018","AllocationSize: 49,152, EndOfFile: 49,152, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0737892 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\coloradapterclient.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.0738123 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\coloradapterclient.dll","0.0000183","Offset: 0, Length: 49,152, Priority: Normal","2512"
"10:46:38.0742906 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000123","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0743162 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000170","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:38.0744403 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000184","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:38.0745466 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000106","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0745713 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000026","Information: DACL","2512"
"10:46:38.0745841 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000038","","2512"
"10:46:38.0746963 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:38.0747923 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000103","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0748145 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000021","Information: DACL","2512"
"10:46:38.0748256 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:38.0750658 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000141","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:38.0752092 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000209","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:38.0753602 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000158","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0753943 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000030","Information: DACL","2512"
"10:46:38.0754118 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000056","","2512"
"10:46:38.0755650 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000166","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:38.0756695 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0756926 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000025","Information: DACL","2512"
"10:46:38.0757041 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:38.0761171 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0761675 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, AllocationSize: 294912, EndOfFile: 291839, FileAttributes: A","2512"
"10:46:38.0761820 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","","2512"
"10:46:38.0764098 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0764350 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:20:29 PM, ChangeTime: 3/20/2019 7:06:10 PM, AllocationSize: 454656, EndOfFile: 452785, FileAttributes: A","2512"
"10:46:38.0764469 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","","2512"
"10:46:38.0764917 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000060","","2512"
"10:46:38.0765608 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000082","","2512"
"10:46:38.0768100 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0768343 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, AllocationSize: 294912, EndOfFile: 291839, FileAttributes: A","2512"
"10:46:38.0768463 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","","2512"
"10:46:38.0769679 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0769965 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0770131 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0770251 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0770434 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0773246 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:38.0773404 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000042","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, FileAttributes: A, AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x300000006193f, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:38.0774675 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0774982 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0775200 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0775315 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0775503 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.0776109 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000059","","2512"
"10:46:38.0777512 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000146","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0777850 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000029","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0777995 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0778106 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0778285 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.0778711 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000056","","2512"
"10:46:38.0780968 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000154","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0781276 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0781404 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0781510 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.0781685 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.0783755 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000055","","2512"
"10:46:38.0824403 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000081","","2512"
"10:46:38.0825235 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","","2512"
"10:46:38.0829728 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0829997 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000034","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","2512"
"10:46:38.0830121 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000042","","2512"
"10:46:38.0832113 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0832326 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","2512"
"10:46:38.0832437 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000039","","2512"
"10:46:38.0834596 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0834793 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000029","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","2512"
"10:46:38.0834895 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000043","","2512"
"10:46:38.0835258 AM","firefox.exe","7384","CreateFile","C:\","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0835475 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000137","Filter: Windows, 1: Windows","2512"
"10:46:38.0835757 AM","firefox.exe","7384","CloseFile","C:\","0.0000042","","2512"
"10:46:38.0836734 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0836956 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000115","Filter: System32, 1: System32","2512"
"10:46:38.0837178 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000068","","2512"
"10:46:38.0839708 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0840049 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000034","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:38.0840164 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000047","","2512"
"10:46:38.0840518 AM","firefox.exe","7384","CreateFile","C:\","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0840736 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000102","Filter: Windows, 1: Windows","2512"
"10:46:38.0840945 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.0841867 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0842076 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000106","Filter: System32, 1: System32","2512"
"10:46:38.0842285 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.0843228 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0843437 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\win32u.dll","0.0000124","Filter: win32u.dll, 1: win32u.dll","2512"
"10:46:38.0843663 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:38.0845634 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0845929 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000029","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:38.0846035 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000043","","2512"
"10:46:38.0846377 AM","firefox.exe","7384","CreateFile","C:\","0.0000076","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0846560 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.0846756 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:38.0847644 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0847844 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:38.0848036 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:38.0848941 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0849150 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\win32u.dll","0.0000115","Filter: win32u.dll, 1: win32u.dll","2512"
"10:46:38.0849363 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:38.0850481 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000137","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0850857 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\win32u.dll","0.0000034","AllocationSize: 126,976, EndOfFile: 124,048, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:38.0851040 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\win32u.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0851168 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\win32u.dll","0.0000021","AllocationSize: 126,976, EndOfFile: 124,048, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:38.0851369 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\win32u.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0851825 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000051","","2512"
"10:46:38.0853169 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0853536 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\win32u.dll","0.0000026","AllocationSize: 126,976, EndOfFile: 124,048, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:38.0853681 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\win32u.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0853792 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\win32u.dll","0.0000021","AllocationSize: 126,976, EndOfFile: 124,048, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:38.0853980 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\win32u.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0854526 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\win32u.dll","0.0000030","AllocationSize: 126,976, EndOfFile: 124,048, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:38.0854709 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000069","","2512"
"10:46:38.0856156 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0856506 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\win32u.dll","0.0000025","AllocationSize: 126,976, EndOfFile: 124,048, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:38.0856642 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\win32u.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0856749 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\win32u.dll","0.0000017","AllocationSize: 126,976, EndOfFile: 124,048, NumberOfLinks: 4, DeletePending: False, Directory: False","2512"
"10:46:38.0856924 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\win32u.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0859723 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000055","","2512"
"10:46:38.0863375 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0863695 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000034","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:38.0863814 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000047","","2512"
"10:46:38.0865717 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0866003 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:38.0866110 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000043","","2512"
"10:46:38.0868196 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\win32u.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0868478 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","2512"
"10:46:38.0868580 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\win32u.dll","0.0000043","","2512"
"10:46:38.0868930 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0869144 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000110","Filter: Windows, 1: Windows","2512"
"10:46:38.0869408 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.0870334 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0870564 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000103","Filter: System32, 1: System32","2512"
"10:46:38.0870778 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.0871708 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0871917 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\win32u.dll","0.0000124","Filter: win32u.dll, 1: win32u.dll","2512"
"10:46:38.0872143 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:38.0874182 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0874481 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000030","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:38.0874588 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000042","","2512"
"10:46:38.0874921 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0875104 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.0875300 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:38.0876196 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0876397 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:38.0876593 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:38.0877519 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0877720 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\gdi32.dll","0.0000110","Filter: gdi32.dll, 1: gdi32.dll","2512"
"10:46:38.0877933 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:38.0879699 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0879972 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000052","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:38.0880152 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000072","","2512"
"10:46:38.0880672 AM","firefox.exe","7384","CreateFile","C:\","0.0000115","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0880920 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000106","Filter: Windows, 1: Windows","2512"
"10:46:38.0881133 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.0882042 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0882246 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:38.0882443 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:38.0883450 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0883646 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\gdi32.dll","0.0000107","Filter: gdi32.dll, 1: gdi32.dll","2512"
"10:46:38.0883851 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:38.0884930 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0885331 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32.dll","0.0000026","AllocationSize: 155,648, EndOfFile: 155,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0885515 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0885634 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32.dll","0.0000022","AllocationSize: 155,648, EndOfFile: 155,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0885826 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.0886266 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000051","","2512"
"10:46:38.0887546 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000123","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0887913 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32.dll","0.0000025","AllocationSize: 155,648, EndOfFile: 155,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0888058 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0888169 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32.dll","0.0000017","AllocationSize: 155,648, EndOfFile: 155,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0888348 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0888830 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32.dll","0.0000017","AllocationSize: 155,648, EndOfFile: 155,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0888954 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000051","","2512"
"10:46:38.0890200 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000123","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0890558 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32.dll","0.0000026","AllocationSize: 155,648, EndOfFile: 155,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0890690 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0890793 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\gdi32.dll","0.0000021","AllocationSize: 155,648, EndOfFile: 155,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0890976 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\gdi32.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.0893856 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000051","","2512"
"10:46:38.0897244 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0897564 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000030","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:38.0897683 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000047","","2512"
"10:46:38.0899565 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0899851 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000030","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:38.0899962 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000042","","2512"
"10:46:38.0902112 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\gdi32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0902385 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000030","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:38.0902488 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\gdi32.dll","0.0000042","","2512"
"10:46:38.0902833 AM","firefox.exe","7384","CreateFile","C:\","0.0000086","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0903038 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000107","Filter: Windows, 1: Windows","2512"
"10:46:38.0903260 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.0904190 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0904408 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:38.0904612 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:38.0905551 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0905760 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\gdi32.dll","0.0000162","Filter: gdi32.dll, 1: gdi32.dll","2512"
"10:46:38.0906029 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000043","","2512"
"10:46:38.0908068 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0908376 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000029","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:38.0908487 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000042","","2512"
"10:46:38.0908819 AM","firefox.exe","7384","CreateFile","C:\","0.0000086","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0909011 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.0909212 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.0910185 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0910394 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:38.0910607 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.0911529 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0911738 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\sechost.dll","0.0000158","Filter: sechost.dll, 1: sechost.dll","2512"
"10:46:38.0912002 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:38.0913709 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0913995 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000025","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:38.0914097 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000039","","2512"
"10:46:38.0914417 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0914601 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000089","Filter: Windows, 1: Windows","2512"
"10:46:38.0914793 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:38.0915740 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0915940 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:38.0916137 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:38.0917033 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0917233 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\sechost.dll","0.0000107","Filter: sechost.dll, 1: sechost.dll","2512"
"10:46:38.0917442 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:38.0918543 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0918884 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\sechost.dll","0.0000030","AllocationSize: 368,640, EndOfFile: 368,448, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0919042 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\sechost.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0919157 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\sechost.dll","0.0000022","AllocationSize: 368,640, EndOfFile: 368,448, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0919354 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\sechost.dll","0.0000042","SyncType: SyncTypeOther","2512"
"10:46:38.0920066 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000077","","2512"
"10:46:38.0921393 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0921760 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\sechost.dll","0.0000026","AllocationSize: 368,640, EndOfFile: 368,448, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0921905 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\sechost.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0922025 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\sechost.dll","0.0000021","AllocationSize: 368,640, EndOfFile: 368,448, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0922217 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\sechost.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:38.0922729 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\sechost.dll","0.0000017","AllocationSize: 368,640, EndOfFile: 368,448, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0922857 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000051","","2512"
"10:46:38.0924115 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0924465 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\sechost.dll","0.0000026","AllocationSize: 368,640, EndOfFile: 368,448, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0924597 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\sechost.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0924704 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\sechost.dll","0.0000017","AllocationSize: 368,640, EndOfFile: 368,448, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0924879 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\sechost.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0928186 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000051","","2512"
"10:46:38.0933348 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0933715 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000034","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:38.0933843 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000052","","2512"
"10:46:38.0936032 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0936327 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000025","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:38.0936437 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000043","","2512"
"10:46:38.0938549 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\sechost.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0938827 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:38.0938933 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\sechost.dll","0.0000043","","2512"
"10:46:38.0939300 AM","firefox.exe","7384","CreateFile","C:\","0.0000086","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0939509 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000137","Filter: Windows, 1: Windows","2512"
"10:46:38.0939765 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:38.0940717 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0940935 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000106","Filter: System32, 1: System32","2512"
"10:46:38.0941148 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.0942078 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0942283 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\sechost.dll","0.0000115","Filter: sechost.dll, 1: sechost.dll","2512"
"10:46:38.0942500 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:38.0944574 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0944971 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000030","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","2512"
"10:46:38.0945077 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000043","","2512"
"10:46:38.0945415 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0945602 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:38.0945803 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.0946699 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0946899 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:38.0947096 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.0948017 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0948218 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\advapi32.dll","0.0000175","Filter: advapi32.dll, 1: advapi32.dll","2512"
"10:46:38.0948495 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000043","","2512"
"10:46:38.0950215 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0950513 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000030","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","2512"
"10:46:38.0950616 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000042","","2512"
"10:46:38.0950948 AM","firefox.exe","7384","CreateFile","C:\","0.0000082","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0951128 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.0951324 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:38.0952211 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0952416 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:38.0952608 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:38.0953530 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0953730 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\advapi32.dll","0.0000162","Filter: advapi32.dll, 1: advapi32.dll","2512"
"10:46:38.0953995 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:38.0955121 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0955475 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\advapi32.dll","0.0000035","AllocationSize: 647,168, EndOfFile: 645,320, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0955642 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\advapi32.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0955761 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\advapi32.dll","0.0000022","AllocationSize: 647,168, EndOfFile: 645,320, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0955958 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\advapi32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0956448 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000056","","2512"
"10:46:38.0957690 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0958057 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\advapi32.dll","0.0000025","AllocationSize: 647,168, EndOfFile: 645,320, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0958202 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\advapi32.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0958313 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\advapi32.dll","0.0000021","AllocationSize: 647,168, EndOfFile: 645,320, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0958496 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\advapi32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0959098 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\advapi32.dll","0.0000025","AllocationSize: 647,168, EndOfFile: 645,320, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0959239 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000051","","2512"
"10:46:38.0960591 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0960941 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\advapi32.dll","0.0000026","AllocationSize: 647,168, EndOfFile: 645,320, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0961069 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\advapi32.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0961176 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\advapi32.dll","0.0000017","AllocationSize: 647,168, EndOfFile: 645,320, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.0961359 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\advapi32.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.0965276 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000081","","2512"
"10:46:38.0969654 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0969986 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000034","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","2512"
"10:46:38.0970114 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000047","","2512"
"10:46:38.0972141 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0972431 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000030","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","2512"
"10:46:38.0972546 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000043","","2512"
"10:46:38.0974778 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\advapi32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0975055 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000030","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","2512"
"10:46:38.0975162 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\advapi32.dll","0.0000042","","2512"
"10:46:38.0975520 AM","firefox.exe","7384","CreateFile","C:\","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0975734 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000123","Filter: Windows, 1: Windows","2512"
"10:46:38.0975972 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:38.0976907 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0977129 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:38.0977338 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.0978302 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0978511 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\advapi32.dll","0.0000115","Filter: advapi32.dll, 1: advapi32.dll","2512"
"10:46:38.0978729 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:38.0981046 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0981267 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:38.0981374 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000038","","2512"
"10:46:38.0982338 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0982552 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000098","Filter: softokn3.dll, 1: softokn3.dll","2512"
"10:46:38.0982761 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000034","","2512"
"10:46:38.0984395 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0984591 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:38.0984685 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000043","","2512"
"10:46:38.0985696 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0985905 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000090","Filter: softokn3.dll, 1: softokn3.dll","2512"
"10:46:38.0986102 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000038","","2512"
"10:46:38.0987164 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0987428 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000030","AllocationSize: 249,856, EndOfFile: 247,496, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:38.0987591 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0987706 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000021","AllocationSize: 249,856, EndOfFile: 247,496, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:38.0987894 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.0988333 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000051","","2512"
"10:46:38.0989502 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0989771 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000025","AllocationSize: 249,856, EndOfFile: 247,496, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:38.0989916 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0990023 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000021","AllocationSize: 249,856, EndOfFile: 247,496, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:38.0990227 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.0990714 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000021","AllocationSize: 249,856, EndOfFile: 247,496, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:38.0990838 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000051","","2512"
"10:46:38.0991964 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0992224 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000026","AllocationSize: 249,856, EndOfFile: 247,496, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:38.0992352 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.0992455 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000017","AllocationSize: 249,856, EndOfFile: 247,496, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:38.0992630 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:38.0995190 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000051","","2512"
"10:46:38.0998343 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.0998573 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:38.0998684 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000043","","2512"
"10:46:38.1000497 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1000694 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:38.1000796 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000038","","2512"
"10:46:38.1002750 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1002942 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","2512"
"10:46:38.1003036 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000038","","2512"
"10:46:38.1004243 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000150","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1004581 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000153","Filter: softokn3.dll, 1: softokn3.dll","2512"
"10:46:38.1004960 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000060","","2512"
"10:46:38.1008229 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000200","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1008728 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000047","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:38.1008911 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000064","","2512"
"10:46:38.1009440 AM","firefox.exe","7384","CreateFile","C:\","0.0000133","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1009743 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000158","Filter: Windows, 1: Windows","2512"
"10:46:38.1010067 AM","firefox.exe","7384","CloseFile","C:\","0.0000064","","2512"
"10:46:38.1011723 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1012056 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000187","Filter: System32, 1: System32","2512"
"10:46:38.1012406 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:38.1013822 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1014138 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\combase.dll","0.0000217","Filter: combase.dll, 1: combase.dll","2512"
"10:46:38.1015094 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000081","","2512"
"10:46:38.1017833 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000183","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1018281 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000047","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:38.1018456 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000064","","2512"
"10:46:38.1018993 AM","firefox.exe","7384","CreateFile","C:\","0.0000133","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1019283 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000141","Filter: Windows, 1: Windows","2512"
"10:46:38.1019582 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:38.1020892 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1021114 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:38.1021327 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:38.1022326 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1022539 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\combase.dll","0.0000158","Filter: combase.dll, 1: combase.dll","2512"
"10:46:38.1022808 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:38.1023990 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000123","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1024365 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\combase.dll","0.0000030","AllocationSize: 3,293,184, EndOfFile: 3,291,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1024540 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\combase.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1024664 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\combase.dll","0.0000021","AllocationSize: 3,293,184, EndOfFile: 3,291,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1024869 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\combase.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1025709 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000056","","2512"
"10:46:38.1026976 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1027416 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\combase.dll","0.0000030","AllocationSize: 3,293,184, EndOfFile: 3,291,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1027565 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\combase.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1027676 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\combase.dll","0.0000017","AllocationSize: 3,293,184, EndOfFile: 3,291,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1027859 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\combase.dll","0.0000018","SyncType: SyncTypeOther","2512"
"10:46:38.1028687 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\combase.dll","0.0000022","AllocationSize: 3,293,184, EndOfFile: 3,291,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1028815 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000056","","2512"
"10:46:38.1030185 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1030552 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\combase.dll","0.0000025","AllocationSize: 3,293,184, EndOfFile: 3,291,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1030688 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\combase.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1030795 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\combase.dll","0.0000017","AllocationSize: 3,293,184, EndOfFile: 3,291,632, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1030974 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\combase.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1040634 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000064","","2512"
"10:46:38.1048045 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1048369 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000030","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:38.1048489 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000051","","2512"
"10:46:38.1050507 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1050797 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000030","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:38.1050908 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000043","","2512"
"10:46:38.1053016 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\combase.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1053289 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000025","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:38.1053395 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\combase.dll","0.0000043","","2512"
"10:46:38.1053745 AM","firefox.exe","7384","CreateFile","C:\","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1053954 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000116","Filter: Windows, 1: Windows","2512"
"10:46:38.1054181 AM","firefox.exe","7384","CloseFile","C:\","0.0000042","","2512"
"10:46:38.1055111 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1055328 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000103","Filter: System32, 1: System32","2512"
"10:46:38.1055537 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:38.1056472 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1056681 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\combase.dll","0.0000153","Filter: combase.dll, 1: combase.dll","2512"
"10:46:38.1056937 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:38.1059045 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1059356 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:38.1059463 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000042","","2512"
"10:46:38.1059804 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1059996 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000128","Filter: Windows, 1: Windows","2512"
"10:46:38.1060231 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:38.1061161 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1061366 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:38.1061562 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:38.1062471 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1062671 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\fltLib.dll","0.0000111","Filter: fltLib.dll, 1: fltLib.dll","2512"
"10:46:38.1062880 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:38.1064638 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1064916 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000029","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:38.1065022 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000043","","2512"
"10:46:38.1065346 AM","firefox.exe","7384","CreateFile","C:\","0.0000082","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1065526 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.1065722 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:38.1066652 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1066853 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000089","Filter: System32, 1: System32","2512"
"10:46:38.1067040 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:38.1067941 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1068145 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\fltLib.dll","0.0000167","Filter: fltLib.dll, 1: fltLib.dll","2512"
"10:46:38.1068414 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:38.1069822 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000196","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1070347 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\fltLib.dll","0.0000043","AllocationSize: 32,768, EndOfFile: 31,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1070569 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\fltLib.dll","0.0000034","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1070740 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\fltLib.dll","0.0000029","AllocationSize: 32,768, EndOfFile: 31,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1071038 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\fltLib.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:38.1080604 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000064","","2512"
"10:46:38.1081931 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1082315 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\fltLib.dll","0.0000030","AllocationSize: 32,768, EndOfFile: 31,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1082473 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\fltLib.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1082592 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\fltLib.dll","0.0000022","AllocationSize: 32,768, EndOfFile: 31,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1082780 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\fltLib.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1083245 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\fltLib.dll","0.0000021","AllocationSize: 32,768, EndOfFile: 31,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1083369 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000055","","2512"
"10:46:38.1084589 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1084935 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\fltLib.dll","0.0000025","AllocationSize: 32,768, EndOfFile: 31,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1085067 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\fltLib.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1085169 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\fltLib.dll","0.0000022","AllocationSize: 32,768, EndOfFile: 31,584, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1085349 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\fltLib.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:38.1087934 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000051","","2512"
"10:46:38.1091232 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1091548 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:38.1091668 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000046","","2512"
"10:46:38.1093575 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1093861 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:38.1093972 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000038","","2512"
"10:46:38.1095934 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\fltLib.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1096207 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:38.1096314 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\fltLib.dll","0.0000038","","2512"
"10:46:38.1096668 AM","firefox.exe","7384","CreateFile","C:\","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1096886 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000123","Filter: Windows, 1: Windows","2512"
"10:46:38.1097125 AM","firefox.exe","7384","CloseFile","C:\","0.0000047","","2512"
"10:46:38.1099646 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000201","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1100116 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000196","Filter: System32, 1: System32","2512"
"10:46:38.1100542 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000094","","2512"
"10:46:38.1102189 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000154","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1102492 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\fltLib.dll","0.0000171","Filter: fltLib.dll, 1: fltLib.dll","2512"
"10:46:38.1102799 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000043","","2512"
"10:46:38.1105163 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1105513 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000034","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:38.1105632 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000052","","2512"
"10:46:38.1106004 AM","firefox.exe","7384","CreateFile","C:\","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1106217 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000111","Filter: Windows, 1: Windows","2512"
"10:46:38.1106439 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.1107377 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1107595 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:38.1107800 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.1108734 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1108939 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dxgi.dll","0.0000115","Filter: dxgi.dll, 1: dxgi.dll","2512"
"10:46:38.1109161 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:38.1110915 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1111200 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000030","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:38.1111311 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000043","","2512"
"10:46:38.1111653 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1111840 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.1112037 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.1112933 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1113133 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:38.1113329 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:38.1114311 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1114511 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dxgi.dll","0.0000107","Filter: dxgi.dll, 1: dxgi.dll","2512"
"10:46:38.1114720 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000035","","2512"
"10:46:38.1115817 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1116175 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dxgi.dll","0.0000030","AllocationSize: 749,568, EndOfFile: 748,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1116350 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1116474 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dxgi.dll","0.0000017","AllocationSize: 749,568, EndOfFile: 748,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1116670 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1117327 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000056","","2512"
"10:46:38.1118573 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1118936 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dxgi.dll","0.0000025","AllocationSize: 749,568, EndOfFile: 748,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1119081 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1119192 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dxgi.dll","0.0000017","AllocationSize: 749,568, EndOfFile: 748,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1119380 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:38.1120207 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dxgi.dll","0.0000022","AllocationSize: 749,568, EndOfFile: 748,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1120335 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000056","","2512"
"10:46:38.1121543 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1121901 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dxgi.dll","0.0000030","AllocationSize: 749,568, EndOfFile: 748,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1122042 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1122170 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dxgi.dll","0.0000017","AllocationSize: 749,568, EndOfFile: 748,512, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1122349 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dxgi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1126539 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000056","","2512"
"10:46:38.1130900 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1131228 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000034","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:38.1131352 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000047","","2512"
"10:46:38.1133336 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1133613 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000026","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:38.1133716 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000042","","2512"
"10:46:38.1135862 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dxgi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1136148 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000029","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","2512"
"10:46:38.1136254 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dxgi.dll","0.0000039","","2512"
"10:46:38.1136604 AM","firefox.exe","7384","CreateFile","C:\","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1136809 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000119","Filter: Windows, 1: Windows","2512"
"10:46:38.1137044 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.1137965 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1138183 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000106","Filter: System32, 1: System32","2512"
"10:46:38.1138396 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:38.1139322 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1139535 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dxgi.dll","0.0000116","Filter: dxgi.dll, 1: dxgi.dll","2512"
"10:46:38.1139753 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000047","","2512"
"10:46:38.1141903 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1142206 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000034","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","2512"
"10:46:38.1142317 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000043","","2512"
"10:46:38.1142659 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1142855 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:38.1143055 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:38.1143956 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1144160 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000103","Filter: System32, 1: System32","2512"
"10:46:38.1144369 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000035","","2512"
"10:46:38.1145278 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1145479 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\imm32.dll","0.0000111","Filter: imm32.dll, 1: imm32.dll","2512"
"10:46:38.1145692 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:38.1147377 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1147646 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000030","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","2512"
"10:46:38.1147753 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000043","","2512"
"10:46:38.1148073 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1148256 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000090","Filter: Windows, 1: Windows","2512"
"10:46:38.1148444 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:38.1149323 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1149519 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:38.1149758 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000064","","2512"
"10:46:38.1150782 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1150987 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\imm32.dll","0.0000107","Filter: imm32.dll, 1: imm32.dll","2512"
"10:46:38.1151196 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:38.1152284 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1152677 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\imm32.dll","0.0000034","AllocationSize: 176,128, EndOfFile: 173,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1152873 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\imm32.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1152992 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\imm32.dll","0.0000022","AllocationSize: 176,128, EndOfFile: 173,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1153189 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\imm32.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:38.1153641 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000055","","2512"
"10:46:38.1154823 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1155177 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\imm32.dll","0.0000026","AllocationSize: 176,128, EndOfFile: 173,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1155318 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\imm32.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1155437 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\imm32.dll","0.0000017","AllocationSize: 176,128, EndOfFile: 173,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1155616 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\imm32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1156128 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\imm32.dll","0.0000017","AllocationSize: 176,128, EndOfFile: 173,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1156252 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000051","","2512"
"10:46:38.1157438 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1157775 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\imm32.dll","0.0000026","AllocationSize: 176,128, EndOfFile: 173,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1157903 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\imm32.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1158010 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\imm32.dll","0.0000017","AllocationSize: 176,128, EndOfFile: 173,648, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1158185 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\imm32.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.1161150 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000060","","2512"
"10:46:38.1164440 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1164751 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000030","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","2512"
"10:46:38.1164875 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000047","","2512"
"10:46:38.1166842 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1167119 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000030","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","2512"
"10:46:38.1167230 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000043","","2512"
"10:46:38.1169244 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\imm32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1169517 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000026","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","2512"
"10:46:38.1169620 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\imm32.dll","0.0000051","","2512"
"10:46:38.1170029 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1170268 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000111","Filter: Windows, 1: Windows","2512"
"10:46:38.1170499 AM","firefox.exe","7384","CloseFile","C:\","0.0000042","","2512"
"10:46:38.1171433 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1171646 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:38.1171860 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.1172794 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1172999 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\imm32.dll","0.0000111","Filter: imm32.dll, 1: imm32.dll","2512"
"10:46:38.1173212 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:38.1175299 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1175512 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:38.1175614 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000039","","2512"
"10:46:38.1176621 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1176835 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\nss3.dll","0.0000102","Filter: nss3.dll, 1: nss3.dll","2512"
"10:46:38.1177044 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000038","","2512"
"10:46:38.1178682 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1178870 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:38.1178964 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000038","","2512"
"10:46:38.1180167 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1180380 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\nss3.dll","0.0000103","Filter: nss3.dll, 1: nss3.dll","2512"
"10:46:38.1180594 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000038","","2512"
"10:46:38.1181647 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1181903 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000030","AllocationSize: 2,195,456, EndOfFile: 2,193,608, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:38.1182057 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1182176 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000022","AllocationSize: 2,195,456, EndOfFile: 2,193,608, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:38.1182368 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000018","SyncType: SyncTypeOther","2512"
"10:46:38.1183090 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000055","","2512"
"10:46:38.1184323 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1184600 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000026","AllocationSize: 2,195,456, EndOfFile: 2,193,608, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:38.1184736 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1184843 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000017","AllocationSize: 2,195,456, EndOfFile: 2,193,608, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:38.1185027 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:38.1185991 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000021","AllocationSize: 2,195,456, EndOfFile: 2,193,608, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:38.1186119 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000051","","2512"
"10:46:38.1187348 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1187612 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000022","AllocationSize: 2,195,456, EndOfFile: 2,193,608, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:38.1187736 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1187838 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000017","AllocationSize: 2,195,456, EndOfFile: 2,193,608, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:38.1188018 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\nss3.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:38.1190898 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000055","","2512"
"10:46:38.1194089 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1194311 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:38.1194426 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000047","","2512"
"10:46:38.1196248 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1196444 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:38.1196547 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000038","","2512"
"10:46:38.1198556 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1198744 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:38.1198846 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000039","","2512"
"10:46:38.1199866 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1200096 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\nss3.dll","0.0000107","Filter: nss3.dll, 1: nss3.dll","2512"
"10:46:38.1200323 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000042","","2512"
"10:46:38.1202447 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1202755 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000029","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:38.1202866 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000042","","2512"
"10:46:38.1203211 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1203407 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000107","Filter: Windows, 1: Windows","2512"
"10:46:38.1203625 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.1204594 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1204798 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000103","Filter: System32, 1: System32","2512"
"10:46:38.1205003 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:38.1205933 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1206138 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\nsi.dll","0.0000115","Filter: nsi.dll, 1: nsi.dll","2512"
"10:46:38.1206356 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:38.1208101 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1208374 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:38.1208480 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000043","","2512"
"10:46:38.1208809 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1208988 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.1209184 AM","firefox.exe","7384","CloseFile","C:\","0.0000035","","2512"
"10:46:38.1210149 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1210358 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:38.1210563 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.1211540 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1211749 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\nsi.dll","0.0000111","Filter: nsi.dll, 1: nsi.dll","2512"
"10:46:38.1211962 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:38.1213106 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1213451 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nsi.dll","0.0000030","AllocationSize: 28,672, EndOfFile: 24,888, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.1213609 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nsi.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1213724 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nsi.dll","0.0000022","AllocationSize: 28,672, EndOfFile: 24,888, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.1213916 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nsi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1214334 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000056","","2512"
"10:46:38.1215674 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1216037 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nsi.dll","0.0000025","AllocationSize: 28,672, EndOfFile: 24,888, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.1216178 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nsi.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1216284 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nsi.dll","0.0000017","AllocationSize: 28,672, EndOfFile: 24,888, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.1216468 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nsi.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.1216946 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nsi.dll","0.0000021","AllocationSize: 28,672, EndOfFile: 24,888, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.1217065 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000051","","2512"
"10:46:38.1218238 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1218584 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nsi.dll","0.0000021","AllocationSize: 28,672, EndOfFile: 24,888, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.1218708 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nsi.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1218810 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\nsi.dll","0.0000017","AllocationSize: 28,672, EndOfFile: 24,888, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.1218985 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\nsi.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.1221630 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000056","","2512"
"10:46:38.1224779 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1225086 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:38.1225206 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000043","","2512"
"10:46:38.1227139 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1227420 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:38.1227527 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000038","","2512"
"10:46:38.1229490 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\nsi.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1229805 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","2512"
"10:46:38.1229912 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\nsi.dll","0.0000043","","2512"
"10:46:38.1230266 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1230471 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000111","Filter: Windows, 1: Windows","2512"
"10:46:38.1230697 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.1231614 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000099","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1231828 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000106","Filter: System32, 1: System32","2512"
"10:46:38.1232041 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.1232971 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1233180 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\nsi.dll","0.0000154","Filter: nsi.dll, 1: nsi.dll","2512"
"10:46:38.1233441 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000042","","2512"
"10:46:38.1235506 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1235809 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000029","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:38.1235915 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000043","","2512"
"10:46:38.1236252 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1236436 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.1236636 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:38.1237690 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1237895 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:38.1238100 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.1239017 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1239222 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\crypt32.dll","0.0000119","Filter: crypt32.dll, 1: crypt32.dll","2512"
"10:46:38.1239444 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:38.1241223 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1241505 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000029","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:38.1241611 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000043","","2512"
"10:46:38.1241944 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1242127 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000090","Filter: Windows, 1: Windows","2512"
"10:46:38.1242319 AM","firefox.exe","7384","CloseFile","C:\","0.0000035","","2512"
"10:46:38.1243271 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1243476 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:38.1243676 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:38.1244589 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1244790 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\crypt32.dll","0.0000115","Filter: crypt32.dll, 1: crypt32.dll","2512"
"10:46:38.1245007 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:38.1246091 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1246437 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\crypt32.dll","0.0000030","AllocationSize: 1,961,984, EndOfFile: 1,960,688, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1246590 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\crypt32.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1246710 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\crypt32.dll","0.0000017","AllocationSize: 1,961,984, EndOfFile: 1,960,688, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1246898 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\crypt32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1247572 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000051","","2512"
"10:46:38.1248771 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1249129 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\crypt32.dll","0.0000026","AllocationSize: 1,961,984, EndOfFile: 1,960,688, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1249270 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\crypt32.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1249377 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\crypt32.dll","0.0000021","AllocationSize: 1,961,984, EndOfFile: 1,960,688, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1249611 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\crypt32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1250358 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\crypt32.dll","0.0000034","AllocationSize: 1,961,984, EndOfFile: 1,960,688, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1250499 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000051","","2512"
"10:46:38.1251770 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1252120 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\crypt32.dll","0.0000026","AllocationSize: 1,961,984, EndOfFile: 1,960,688, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1252252 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\crypt32.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1252359 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\crypt32.dll","0.0000017","AllocationSize: 1,961,984, EndOfFile: 1,960,688, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1252534 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\crypt32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1259279 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000056","","2512"
"10:46:38.1266200 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1266631 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:38.1266780 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000056","","2512"
"10:46:38.1269106 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1269443 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000145","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:38.1269720 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000077","","2512"
"10:46:38.1272131 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\crypt32.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1272434 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:38.1272540 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\crypt32.dll","0.0000043","","2512"
"10:46:38.1272929 AM","firefox.exe","7384","CreateFile","C:\","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1273159 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000145","Filter: Windows, 1: Windows","2512"
"10:46:38.1273424 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.1274392 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1274618 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000103","Filter: System32, 1: System32","2512"
"10:46:38.1274832 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:38.1275787 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1276001 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\crypt32.dll","0.0000183","Filter: crypt32.dll, 1: crypt32.dll","2512"
"10:46:38.1276295 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:38.1278659 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1278974 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:38.1279085 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000043","","2512"
"10:46:38.1279427 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1279619 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000243","Filter: Windows, 1: Windows","2512"
"10:46:38.1279977 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:38.1280916 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1281125 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:38.1281330 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.1282256 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1282456 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\powrprof.dll","0.0000111","Filter: powrprof.dll, 1: powrprof.dll","2512"
"10:46:38.1282669 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000035","","2512"
"10:46:38.1284368 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1284649 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:38.1284752 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000038","","2512"
"10:46:38.1285076 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1285259 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.1285451 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:38.1286398 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1286603 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:38.1286795 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:38.1287708 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1287909 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\powrprof.dll","0.0000107","Filter: powrprof.dll, 1: powrprof.dll","2512"
"10:46:38.1288114 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:38.1289214 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1289577 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\powrprof.dll","0.0000034","AllocationSize: 303,104, EndOfFile: 300,208, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1289773 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\powrprof.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1289901 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\powrprof.dll","0.0000022","AllocationSize: 303,104, EndOfFile: 300,208, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1290102 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\powrprof.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.1290657 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000055","","2512"
"10:46:38.1291907 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1292278 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\powrprof.dll","0.0000026","AllocationSize: 303,104, EndOfFile: 300,208, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1292427 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\powrprof.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1292538 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\powrprof.dll","0.0000022","AllocationSize: 303,104, EndOfFile: 300,208, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1292726 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\powrprof.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.1293272 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\powrprof.dll","0.0000021","AllocationSize: 303,104, EndOfFile: 300,208, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1293396 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000055","","2512"
"10:46:38.1294612 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1294957 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\powrprof.dll","0.0000026","AllocationSize: 303,104, EndOfFile: 300,208, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1295085 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\powrprof.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1295188 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\powrprof.dll","0.0000021","AllocationSize: 303,104, EndOfFile: 300,208, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1295363 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\powrprof.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1298541 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000052","","2512"
"10:46:38.1302198 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1302522 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000056","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:38.1302667 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000047","","2512"
"10:46:38.1304596 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1304882 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:38.1304988 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000043","","2512"
"10:46:38.1306981 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\powrprof.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1307267 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:38.1307378 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\powrprof.dll","0.0000042","","2512"
"10:46:38.1307732 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1307937 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000119","Filter: Windows, 1: Windows","2512"
"10:46:38.1308265 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:38.1309686 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1310002 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000140","Filter: System32, 1: System32","2512"
"10:46:38.1310305 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:38.1311696 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1311956 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\powrprof.dll","0.0000166","Filter: powrprof.dll, 1: powrprof.dll","2512"
"10:46:38.1312233 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000043","","2512"
"10:46:38.1314362 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1314682 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","2512"
"10:46:38.1314793 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000047","","2512"
"10:46:38.1315139 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1315331 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:38.1315536 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:38.1316444 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000099","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1316653 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:38.1316850 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.1317767 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1317972 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\mscms.dll","0.0000111","Filter: mscms.dll, 1: mscms.dll","2512"
"10:46:38.1318185 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:38.1319981 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1320263 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","2512"
"10:46:38.1320365 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000043","","2512"
"10:46:38.1320694 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1320877 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.1321069 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:38.1322017 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1322221 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:38.1322413 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:38.1323497 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1323702 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\mscms.dll","0.0000107","Filter: mscms.dll, 1: mscms.dll","2512"
"10:46:38.1323911 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:38.1324991 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1325332 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000030","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1325498 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1325622 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000021","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1325814 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1326369 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000055","","2512"
"10:46:38.1327593 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1327960 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000026","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1328105 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1328216 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000021","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1328400 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:38.1328907 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000052","","2512"
"10:46:38.1330917 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1331147 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:38.1331254 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:38.1333008 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1333221 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:38.1333319 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000030","","2512"
"10:46:38.1334377 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1334736 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000025","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1334881 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1334992 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000017","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1335171 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1336242 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000025","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1336370 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1336468 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\mscms.dll","0.0000017","AllocationSize: 667,648, EndOfFile: 666,112, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1336639 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\mscms.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:38.1338422 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\mscms.dll","0.0001045","Offset: 0, Length: 524,288, Priority: Normal","2512"
"10:46:38.1386094 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1386392 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000132","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:38.1387578 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000192","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:38.1388683 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1388939 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000026","Information: DACL","2512"
"10:46:38.1389072 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000038","","2512"
"10:46:38.1390155 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000133","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:38.1391235 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000107","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1391465 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000022","Information: DACL","2512"
"10:46:38.1391580 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000039","","2512"
"10:46:38.1394175 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000145","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:38.1395856 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000209","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:38.1397383 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000167","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1397737 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000030","Information: DACL","2512"
"10:46:38.1397916 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000056","","2512"
"10:46:38.1399179 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:38.1400195 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000111","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1400425 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000017","Information: DACL","2512"
"10:46:38.1400536 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:38.1404713 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1404986 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, AllocationSize: 294912, EndOfFile: 291839, FileAttributes: A","2512"
"10:46:38.1405119 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","","2512"
"10:46:38.1407260 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1407499 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:20:29 PM, ChangeTime: 3/20/2019 7:06:10 PM, AllocationSize: 454656, EndOfFile: 452785, FileAttributes: A","2512"
"10:46:38.1407619 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0016~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","","2512"
"10:46:38.1407956 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000043","","2512"
"10:46:38.1408110 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000034","","2512"
"10:46:38.1410234 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1410460 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, AllocationSize: 294912, EndOfFile: 291839, FileAttributes: A","2512"
"10:46:38.1410571 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000039","","2512"
"10:46:38.1411706 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000133","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1411992 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.1412159 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1412270 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.1412457 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1415243 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000035","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:38.1415410 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000038","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:13:35 PM, ChangeTime: 3/20/2019 7:09:08 PM, FileAttributes: A, AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x300000006193f, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:38.1416626 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000149","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1416942 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000025","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.1417095 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1417210 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.1417394 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.1417978 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","","2512"
"10:46:38.1419536 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1419851 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.1420001 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1420107 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000018","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.1420287 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:38.1420683 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000056","","2512"
"10:46:38.1422266 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000133","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1422552 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.1422689 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1422787 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 294,912, EndOfFile: 291,839, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.1422962 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1425057 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000055","","2512"
"10:46:38.1464809 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000141","","2512"
"10:46:38.1465778 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package001020~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000051","","2512"
"10:46:38.1470279 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1470676 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000038","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","2512"
"10:46:38.1470804 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000047","","2512"
"10:46:38.1472754 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1473044 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","2512"
"10:46:38.1473155 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000043","","2512"
"10:46:38.1475297 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\mscms.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1475574 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","2512"
"10:46:38.1475681 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\mscms.dll","0.0000043","","2512"
"10:46:38.1476044 AM","firefox.exe","7384","CreateFile","C:\","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1476265 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000137","Filter: Windows, 1: Windows","2512"
"10:46:38.1476521 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:38.1477464 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1477716 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000128","Filter: System32, 1: System32","2512"
"10:46:38.1477955 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:38.1478889 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1479098 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\mscms.dll","0.0000141","Filter: mscms.dll, 1: mscms.dll","2512"
"10:46:38.1479354 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:38.1482256 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1482700 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000042","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:38.1482832 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000047","","2512"
"10:46:38.1483190 AM","firefox.exe","7384","CreateFile","C:\","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1483386 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000103","Filter: Windows, 1: Windows","2512"
"10:46:38.1483596 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.1484526 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1484735 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:38.1484935 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:38.1485857 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1486062 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\setupapi.dll","0.0000162","Filter: setupapi.dll, 1: setupapi.dll","2512"
"10:46:38.1486330 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:38.1488093 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1488378 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:38.1488489 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000039","","2512"
"10:46:38.1488814 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1488997 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.1489210 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:38.1490111 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1490311 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:38.1490508 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:38.1491416 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1491617 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\setupapi.dll","0.0000107","Filter: setupapi.dll, 1: setupapi.dll","2512"
"10:46:38.1491822 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:38.1492931 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1493289 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\setupapi.dll","0.0000035","AllocationSize: 4,534,272, EndOfFile: 4,530,784, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1493464 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\setupapi.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1493588 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\setupapi.dll","0.0000021","AllocationSize: 4,534,272, EndOfFile: 4,530,784, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1493784 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\setupapi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1494881 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000055","","2512"
"10:46:38.1496127 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1496494 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\setupapi.dll","0.0000030","AllocationSize: 4,534,272, EndOfFile: 4,530,784, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1496647 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\setupapi.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1496762 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\setupapi.dll","0.0000022","AllocationSize: 4,534,272, EndOfFile: 4,530,784, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1496950 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\setupapi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1497833 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\setupapi.dll","0.0000022","AllocationSize: 4,534,272, EndOfFile: 4,530,784, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1497966 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000051","","2512"
"10:46:38.1499702 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1500056 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\setupapi.dll","0.0000026","AllocationSize: 4,534,272, EndOfFile: 4,530,784, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1500193 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\setupapi.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1500304 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\setupapi.dll","0.0000017","AllocationSize: 4,534,272, EndOfFile: 4,530,784, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1500483 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\setupapi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1512639 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000059","","2512"
"10:46:38.1521496 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1521825 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000034","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:38.1521953 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000047","","2512"
"10:46:38.1523869 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1524159 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:38.1524274 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000043","","2512"
"10:46:38.1526335 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\setupapi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1526612 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:38.1526715 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\setupapi.dll","0.0000042","","2512"
"10:46:38.1527069 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1527291 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000106","Filter: Windows, 1: Windows","2512"
"10:46:38.1527512 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:38.1528447 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1528664 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000103","Filter: System32, 1: System32","2512"
"10:46:38.1528869 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:38.1529829 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1530038 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\setupapi.dll","0.0000120","Filter: setupapi.dll, 1: setupapi.dll","2512"
"10:46:38.1530256 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:38.1532274 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1532585 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:38.1532692 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000043","","2512"
"10:46:38.1533025 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1533217 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.1533413 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:38.1534305 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1534514 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:38.1534706 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.1535611 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1535811 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\cfgmgr32.dll","0.0000115","Filter: cfgmgr32.dll, 1: cfgmgr32.dll","2512"
"10:46:38.1536029 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:38.1538098 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1538384 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:38.1538491 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000042","","2512"
"10:46:38.1538840 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1539024 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:38.1539224 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:38.1540120 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1540317 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:38.1540509 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.1541422 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1541618 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\cfgmgr32.dll","0.0000115","Filter: cfgmgr32.dll, 1: cfgmgr32.dll","2512"
"10:46:38.1541836 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:38.1542983 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1543337 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000035","AllocationSize: 290,816, EndOfFile: 286,744, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1543542 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cfgmgr32.dll","0.0000060","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1543713 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000017","AllocationSize: 290,816, EndOfFile: 286,744, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1543905 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cfgmgr32.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.1544353 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000051","","2512"
"10:46:38.1545552 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1545915 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000025","AllocationSize: 290,816, EndOfFile: 286,744, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1546055 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cfgmgr32.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1546166 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000017","AllocationSize: 290,816, EndOfFile: 286,744, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1546354 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cfgmgr32.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.1546853 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000017","AllocationSize: 290,816, EndOfFile: 286,744, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1546977 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000051","","2512"
"10:46:38.1548193 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1548539 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000021","AllocationSize: 290,816, EndOfFile: 286,744, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1548667 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cfgmgr32.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1548773 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000017","AllocationSize: 290,816, EndOfFile: 286,744, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1548952 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\cfgmgr32.dll","0.0000035","SyncType: SyncTypeOther","2512"
"10:46:38.1552161 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000055","","2512"
"10:46:38.1555596 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1555916 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:38.1556039 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000047","","2512"
"10:46:38.1558006 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1558292 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:38.1558399 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000042","","2512"
"10:46:38.1562631 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1562900 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","2512"
"10:46:38.1563003 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000038","","2512"
"10:46:38.1563348 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1563553 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000107","Filter: Windows, 1: Windows","2512"
"10:46:38.1563775 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.1564696 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1564914 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:38.1565123 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000043","","2512"
"10:46:38.1566062 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1566267 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\cfgmgr32.dll","0.0000119","Filter: cfgmgr32.dll, 1: cfgmgr32.dll","2512"
"10:46:38.1566488 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:38.1568566 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1568873 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:38.1568997 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000043","","2512"
"10:46:38.1569339 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1569526 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.1569727 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:38.1570627 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1570832 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:38.1571067 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.1571984 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1572189 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wintrust.dll","0.0000115","Filter: wintrust.dll, 1: wintrust.dll","2512"
"10:46:38.1572406 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:38.1574177 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1574459 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000029","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:38.1574565 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000043","","2512"
"10:46:38.1574894 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1575073 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.1575269 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:38.1576161 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1576362 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000089","Filter: System32, 1: System32","2512"
"10:46:38.1576549 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:38.1577471 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1577671 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wintrust.dll","0.0000111","Filter: wintrust.dll, 1: wintrust.dll","2512"
"10:46:38.1577880 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:38.1579178 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1579536 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wintrust.dll","0.0000034","AllocationSize: 352,256, EndOfFile: 349,656, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1579698 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wintrust.dll","0.0000038","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1579830 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wintrust.dll","0.0000022","AllocationSize: 352,256, EndOfFile: 349,656, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1580022 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wintrust.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1580547 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000073","","2512"
"10:46:38.1582373 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000171","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1582894 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wintrust.dll","0.0000038","AllocationSize: 352,256, EndOfFile: 349,656, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1583111 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wintrust.dll","0.0000035","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1583286 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wintrust.dll","0.0000030","AllocationSize: 352,256, EndOfFile: 349,656, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1583589 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wintrust.dll","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:38.1584251 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wintrust.dll","0.0000025","AllocationSize: 352,256, EndOfFile: 349,656, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1584391 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000069","","2512"
"10:46:38.1585868 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1586235 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wintrust.dll","0.0000025","AllocationSize: 352,256, EndOfFile: 349,656, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1586367 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wintrust.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1586469 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\wintrust.dll","0.0000017","AllocationSize: 352,256, EndOfFile: 349,656, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1586648 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\wintrust.dll","0.0000018","SyncType: SyncTypeOther","2512"
"10:46:38.1589917 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000055","","2512"
"10:46:38.1593526 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1593846 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:38.1593970 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000043","","2512"
"10:46:38.1595873 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1596223 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:38.1596334 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000042","","2512"
"10:46:38.1598523 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\wintrust.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1598817 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:38.1598924 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\wintrust.dll","0.0000038","","2512"
"10:46:38.1599274 AM","firefox.exe","7384","CreateFile","C:\","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1599487 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000132","Filter: Windows, 1: Windows","2512"
"10:46:38.1599730 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.1600656 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1600869 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000107","Filter: System32, 1: System32","2512"
"10:46:38.1601083 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.1602008 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1602218 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\wintrust.dll","0.0000153","Filter: wintrust.dll, 1: wintrust.dll","2512"
"10:46:38.1602474 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:38.1604526 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1604739 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000026","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:38.1604846 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000038","","2512"
"10:46:38.1605174 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1605358 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:38.1605554 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.1606446 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1606646 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:38.1606838 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:38.1608724 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1608938 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000025","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:38.1609036 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000038","","2512"
"10:46:38.1609356 AM","firefox.exe","7384","CreateFile","C:\","0.0000076","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1609535 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.1609727 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:38.1610610 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1610811 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000093","Filter: System32, 1: System32","2512"
"10:46:38.1611003 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:38.1612261 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1612522 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmmbase.dll","0.0000029","AllocationSize: 163,840, EndOfFile: 162,240, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1612679 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1612799 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmmbase.dll","0.0000021","AllocationSize: 163,840, EndOfFile: 162,240, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1612995 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.1613456 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000047","","2512"
"10:46:38.1614655 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1614928 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmmbase.dll","0.0000026","AllocationSize: 163,840, EndOfFile: 162,240, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1615064 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1615171 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmmbase.dll","0.0000017","AllocationSize: 163,840, EndOfFile: 162,240, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1615350 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1615841 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmmbase.dll","0.0000021","AllocationSize: 163,840, EndOfFile: 162,240, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1615965 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000051","","2512"
"10:46:38.1617138 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1617394 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmmbase.dll","0.0000021","AllocationSize: 163,840, EndOfFile: 162,240, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1617518 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1617620 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winmmbase.dll","0.0000017","AllocationSize: 163,840, EndOfFile: 162,240, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1617795 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winmmbase.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1620662 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000052","","2512"
"10:46:38.1624093 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1624323 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000030","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:38.1624438 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000043","","2512"
"10:46:38.1626333 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1626550 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000026","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:38.1626657 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000047","","2512"
"10:46:38.1629332 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000150","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1629614 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000034","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","2512"
"10:46:38.1629776 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000055","","2512"
"10:46:38.1630275 AM","firefox.exe","7384","CreateFile","C:\","0.0000120","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1630565 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000150","Filter: Windows, 1: Windows","2512"
"10:46:38.1630877 AM","firefox.exe","7384","CloseFile","C:\","0.0000055","","2512"
"10:46:38.1631939 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1632161 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:38.1632370 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:38.1634512 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1634832 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:38.1634939 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000042","","2512"
"10:46:38.1635276 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1635463 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000099","Filter: Windows, 1: Windows","2512"
"10:46:38.1635664 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.1636577 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1636782 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:38.1636982 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:38.1637921 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1638126 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\profapi.dll","0.0000111","Filter: profapi.dll, 1: profapi.dll","2512"
"10:46:38.1638335 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:38.1640882 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1641181 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:38.1641283 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000043","","2512"
"10:46:38.1641612 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1641795 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.1641991 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:38.1642896 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1643092 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:38.1643284 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:38.1644261 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1644462 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\profapi.dll","0.0000145","Filter: profapi.dll, 1: profapi.dll","2512"
"10:46:38.1644714 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:38.1645908 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1646262 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\profapi.dll","0.0000026","AllocationSize: 118,784, EndOfFile: 115,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1646420 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\profapi.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1646535 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\profapi.dll","0.0000022","AllocationSize: 118,784, EndOfFile: 115,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1646727 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\profapi.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.1647163 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000051","","2512"
"10:46:38.1648370 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1648746 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\profapi.dll","0.0000025","AllocationSize: 118,784, EndOfFile: 115,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1648891 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\profapi.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1649002 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\profapi.dll","0.0000017","AllocationSize: 118,784, EndOfFile: 115,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1649189 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\profapi.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.1649663 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\profapi.dll","0.0000017","AllocationSize: 118,784, EndOfFile: 115,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1649787 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000051","","2512"
"10:46:38.1650964 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1651301 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\profapi.dll","0.0000026","AllocationSize: 118,784, EndOfFile: 115,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1651434 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\profapi.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1651536 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\profapi.dll","0.0000017","AllocationSize: 118,784, EndOfFile: 115,800, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1651711 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\profapi.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.1654484 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000051","","2512"
"10:46:38.1657714 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1658030 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:38.1658149 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000043","","2512"
"10:46:38.1660219 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1660500 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:38.1660611 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000043","","2512"
"10:46:38.1662599 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\profapi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1662877 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","2512"
"10:46:38.1662983 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\profapi.dll","0.0000043","","2512"
"10:46:38.1663325 AM","firefox.exe","7384","CreateFile","C:\","0.0000085","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1663525 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000107","Filter: Windows, 1: Windows","2512"
"10:46:38.1663743 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.1664660 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1664874 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000106","Filter: System32, 1: System32","2512"
"10:46:38.1665083 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.1666017 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1666222 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\profapi.dll","0.0000119","Filter: profapi.dll, 1: profapi.dll","2512"
"10:46:38.1666448 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:38.1668641 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1668991 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000034","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:38.1669102 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000047","","2512"
"10:46:38.1669439 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1669639 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000099","Filter: Windows, 1: Windows","2512"
"10:46:38.1669844 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:38.1671193 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1671500 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000128","Filter: System32, 1: System32","2512"
"10:46:38.1671786 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:38.1673168 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1673475 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dnsapi.dll","0.0000150","Filter: dnsapi.dll, 1: dnsapi.dll","2512"
"10:46:38.1673740 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000042","","2512"
"10:46:38.1675506 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1675796 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:38.1675903 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000043","","2512"
"10:46:38.1676236 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1676419 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.1676615 AM","firefox.exe","7384","CloseFile","C:\","0.0000035","","2512"
"10:46:38.1677520 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1677725 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:38.1677917 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.1678860 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1679065 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dnsapi.dll","0.0000106","Filter: dnsapi.dll, 1: dnsapi.dll","2512"
"10:46:38.1679269 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:38.1680345 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000123","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1680694 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dnsapi.dll","0.0000030","AllocationSize: 770,048, EndOfFile: 766,704, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1680852 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1680976 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dnsapi.dll","0.0000017","AllocationSize: 770,048, EndOfFile: 766,704, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1681172 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.1681731 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000056","","2512"
"10:46:38.1682981 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000120","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1683340 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dnsapi.dll","0.0000030","AllocationSize: 770,048, EndOfFile: 766,704, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1683485 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1683596 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dnsapi.dll","0.0000017","AllocationSize: 770,048, EndOfFile: 766,704, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1683775 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1684377 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dnsapi.dll","0.0000021","AllocationSize: 770,048, EndOfFile: 766,704, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1684505 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000051","","2512"
"10:46:38.1685695 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1686036 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dnsapi.dll","0.0000026","AllocationSize: 770,048, EndOfFile: 766,704, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1686164 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1686271 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\dnsapi.dll","0.0000017","AllocationSize: 770,048, EndOfFile: 766,704, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1686446 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\dnsapi.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.1690862 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000060","","2512"
"10:46:38.1694847 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1695167 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:38.1695286 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000047","","2512"
"10:46:38.1697181 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1697471 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:38.1697578 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000042","","2512"
"10:46:38.1699677 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1699958 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:38.1700061 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000043","","2512"
"10:46:38.1700406 AM","firefox.exe","7384","CreateFile","C:\","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1700616 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000106","Filter: Windows, 1: Windows","2512"
"10:46:38.1700837 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:38.1701776 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1701994 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000123","Filter: System32, 1: System32","2512"
"10:46:38.1702224 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.1703158 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000103","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1703372 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\dnsapi.dll","0.0000106","Filter: dnsapi.dll, 1: dnsapi.dll","2512"
"10:46:38.1703585 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:38.1705620 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1705932 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","2512"
"10:46:38.1706038 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000043","","2512"
"10:46:38.1706367 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1706555 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.1706789 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:38.1707685 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1707890 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:38.1708082 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:38.1709072 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1709277 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\userenv.dll","0.0000115","Filter: userenv.dll, 1: userenv.dll","2512"
"10:46:38.1709490 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:38.1711244 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1711517 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","2512"
"10:46:38.1711619 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000039","","2512"
"10:46:38.1711939 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1712114 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000090","Filter: Windows, 1: Windows","2512"
"10:46:38.1712306 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:38.1713253 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1713458 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:38.1713663 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000047","","2512"
"10:46:38.1715071 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000137","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1715365 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\userenv.dll","0.0000163","Filter: userenv.dll, 1: userenv.dll","2512"
"10:46:38.1715681 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000056","","2512"
"10:46:38.1717285 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1717652 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\userenv.dll","0.0000030","AllocationSize: 151,552, EndOfFile: 147,872, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1717814 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1717938 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\userenv.dll","0.0000022","AllocationSize: 151,552, EndOfFile: 147,872, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1718134 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.1718851 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000051","","2512"
"10:46:38.1720076 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1720438 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\userenv.dll","0.0000030","AllocationSize: 151,552, EndOfFile: 147,872, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1720579 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1720690 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\userenv.dll","0.0000022","AllocationSize: 151,552, EndOfFile: 147,872, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1720878 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.1721347 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\userenv.dll","0.0000022","AllocationSize: 151,552, EndOfFile: 147,872, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1721475 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000047","","2512"
"10:46:38.1722666 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1723007 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\userenv.dll","0.0000026","AllocationSize: 151,552, EndOfFile: 147,872, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1723135 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1723242 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\userenv.dll","0.0000017","AllocationSize: 151,552, EndOfFile: 147,872, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1723421 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\userenv.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.1726267 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000051","","2512"
"10:46:38.1729936 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1730248 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000029","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","2512"
"10:46:38.1730367 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000047","","2512"
"10:46:38.1732313 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1732590 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","2512"
"10:46:38.1732697 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000042","","2512"
"10:46:38.1734676 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\userenv.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1734949 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","2512"
"10:46:38.1735052 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\userenv.dll","0.0000038","","2512"
"10:46:38.1735389 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1735589 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000107","Filter: Windows, 1: Windows","2512"
"10:46:38.1735811 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:38.1736729 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1736942 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:38.1737155 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:38.1738085 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000099","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1738295 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\userenv.dll","0.0000157","Filter: userenv.dll, 1: userenv.dll","2512"
"10:46:38.1738576 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:38.1740978 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1741290 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:38.1741401 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000042","","2512"
"10:46:38.1741738 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1741925 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000099","Filter: Windows, 1: Windows","2512"
"10:46:38.1742130 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:38.1743022 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1743223 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000106","Filter: System32, 1: System32","2512"
"10:46:38.1743432 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:38.1744345 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1744549 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\ws2_32.dll","0.0000111","Filter: ws2_32.dll, 1: ws2_32.dll","2512"
"10:46:38.1744759 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:38.1746444 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1746721 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:38.1746824 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000038","","2512"
"10:46:38.1747148 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1747331 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000090","Filter: Windows, 1: Windows","2512"
"10:46:38.1747519 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.1748453 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1748671 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000090","Filter: System32, 1: System32","2512"
"10:46:38.1748859 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.1749857 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1750058 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\ws2_32.dll","0.0000106","Filter: ws2_32.dll, 1: ws2_32.dll","2512"
"10:46:38.1750267 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:38.1751410 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1751820 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ws2_32.dll","0.0000034","AllocationSize: 434,176, EndOfFile: 430,408, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1751986 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ws2_32.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1752106 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ws2_32.dll","0.0000021","AllocationSize: 434,176, EndOfFile: 430,408, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1752302 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ws2_32.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.1752831 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000056","","2512"
"10:46:38.1756031 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000145","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1756466 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ws2_32.dll","0.0000034","AllocationSize: 434,176, EndOfFile: 430,408, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1756624 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ws2_32.dll","0.0000051","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1756825 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ws2_32.dll","0.0000055","AllocationSize: 434,176, EndOfFile: 430,408, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1757187 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ws2_32.dll","0.0000026","SyncType: SyncTypeOther","2512"
"10:46:38.1757879 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ws2_32.dll","0.0000021","AllocationSize: 434,176, EndOfFile: 430,408, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1758019 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000064","","2512"
"10:46:38.1759602 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000137","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1759982 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ws2_32.dll","0.0000026","AllocationSize: 434,176, EndOfFile: 430,408, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1760110 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ws2_32.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1760217 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\ws2_32.dll","0.0000017","AllocationSize: 434,176, EndOfFile: 430,408, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1760392 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\ws2_32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1766403 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000094","","2512"
"10:46:38.1771826 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1772227 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000039","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:38.1772368 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000047","","2512"
"10:46:38.1775073 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1775436 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000034","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:38.1775572 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000064","","2512"
"10:46:38.1778103 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1778423 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000029","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:38.1778529 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000043","","2512"
"10:46:38.1778913 AM","firefox.exe","7384","CreateFile","C:\","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1779148 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000149","Filter: Windows, 1: Windows","2512"
"10:46:38.1779421 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.1780377 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1780603 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:38.1780820 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:38.1781879 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000119","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1782139 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\ws2_32.dll","0.0000136","Filter: ws2_32.dll, 1: ws2_32.dll","2512"
"10:46:38.1782382 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:38.1786201 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000209","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1786598 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000029","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:38.1786708 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000043","","2512"
"10:46:38.1787058 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1787250 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000103","Filter: Windows, 1: Windows","2512"
"10:46:38.1787459 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:38.1788398 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1788607 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:38.1788808 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.1789734 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000093","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1789938 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\SHCore.dll","0.0000111","Filter: SHCore.dll, 1: SHCore.dll","2512"
"10:46:38.1790152 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:38.1791824 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1792097 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:38.1792200 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000042","","2512"
"10:46:38.1792524 AM","firefox.exe","7384","CreateFile","C:\","0.0000072","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1792699 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.1792891 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.1793770 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1793970 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:38.1794167 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:38.1795165 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1795361 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\SHCore.dll","0.0000107","Filter: SHCore.dll, 1: SHCore.dll","2512"
"10:46:38.1795566 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:38.1796761 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000123","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1797128 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\SHCore.dll","0.0000034","AllocationSize: 679,936, EndOfFile: 678,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1797307 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\SHCore.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1797435 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\SHCore.dll","0.0000021","AllocationSize: 679,936, EndOfFile: 678,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1797635 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\SHCore.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1798258 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000069","","2512"
"10:46:38.1799526 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1799892 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\SHCore.dll","0.0000026","AllocationSize: 679,936, EndOfFile: 678,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1800038 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\SHCore.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1800153 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\SHCore.dll","0.0000017","AllocationSize: 679,936, EndOfFile: 678,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1800336 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\SHCore.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1800934 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\SHCore.dll","0.0000021","AllocationSize: 679,936, EndOfFile: 678,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1801062 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000046","","2512"
"10:46:38.1802252 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1802589 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\SHCore.dll","0.0000026","AllocationSize: 679,936, EndOfFile: 678,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1802721 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\SHCore.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1802828 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\SHCore.dll","0.0000017","AllocationSize: 679,936, EndOfFile: 678,840, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1803007 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\SHCore.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.1807022 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000056","","2512"
"10:46:38.1811037 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1811344 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:38.1811464 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000042","","2512"
"10:46:38.1814015 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1814301 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:38.1814412 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000043","","2512"
"10:46:38.1816422 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\SHCore.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1816699 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","2512"
"10:46:38.1816806 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\SHCore.dll","0.0000038","","2512"
"10:46:38.1817155 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1817356 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000115","Filter: Windows, 1: Windows","2512"
"10:46:38.1817586 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:38.1818538 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1818751 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000103","Filter: System32, 1: System32","2512"
"10:46:38.1818956 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.1819903 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1820108 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\SHCore.dll","0.0000111","Filter: SHCore.dll, 1: SHCore.dll","2512"
"10:46:38.1820317 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:38.1822391 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1822604 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:38.1822702 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000043","","2512"
"10:46:38.1823658 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1823875 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000107","Filter: mozglue.dll, 1: mozglue.dll","2512"
"10:46:38.1824093 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000038","","2512"
"10:46:38.1825783 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1825966 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:38.1826064 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000039","","2512"
"10:46:38.1826986 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000089","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1827186 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000098","Filter: mozglue.dll, 1: mozglue.dll","2512"
"10:46:38.1827395 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000035","","2512"
"10:46:38.1828462 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000107","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1828714 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000030","AllocationSize: 569,344, EndOfFile: 566,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:38.1828867 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1828987 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000021","AllocationSize: 569,344, EndOfFile: 566,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:38.1829183 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1829670 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000051","","2512"
"10:46:38.1830817 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1831082 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000025","AllocationSize: 569,344, EndOfFile: 566,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:38.1831218 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1831325 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000017","AllocationSize: 569,344, EndOfFile: 566,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:38.1831508 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.1832038 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000017","AllocationSize: 569,344, EndOfFile: 566,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:38.1832161 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000051","","2512"
"10:46:38.1833305 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1833552 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000026","AllocationSize: 569,344, EndOfFile: 566,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:38.1833676 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1833774 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000017","AllocationSize: 569,344, EndOfFile: 566,984, NumberOfLinks: 1, DeletePending: False, Directory: False","2512"
"10:46:38.1833949 AM","firefox.exe","7384","CreateFileMapping","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.1836535 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000051","","2512"
"10:46:38.1839679 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1839905 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:38.1840016 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000043","","2512"
"10:46:38.1841821 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1842013 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000021","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:38.1842111 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000039","","2512"
"10:46:38.1844053 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1844240 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000022","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","2512"
"10:46:38.1844338 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000039","","2512"
"10:46:38.1845298 AM","firefox.exe","7384","CreateFile","C:\Program Files\Firefox Nightly","0.0000099","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1845520 AM","firefox.exe","7384","QueryDirectory","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000111","Filter: mozglue.dll, 1: mozglue.dll","2512"
"10:46:38.1845746 AM","firefox.exe","7384","CloseFile","C:\Program Files\Firefox Nightly","0.0000039","","2512"
"10:46:38.1847807 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1848123 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000026","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:38.1848242 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000043","","2512"
"10:46:38.1848579 AM","firefox.exe","7384","CreateFile","C:\","0.0000086","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1848771 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000107","Filter: Windows, 1: Windows","2512"
"10:46:38.1848981 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.1849877 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1850086 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:38.1850290 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:38.1851212 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1851413 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\oleaut32.dll","0.0000119","Filter: oleaut32.dll, 1: oleaut32.dll","2512"
"10:46:38.1851669 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000034","","2512"
"10:46:38.1853469 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1853751 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000030","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:38.1853853 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000060","","2512"
"10:46:38.1854207 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1854391 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.1854587 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:38.1855799 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000140","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1856102 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000136","Filter: System32, 1: System32","2512"
"10:46:38.1856392 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000051","","2512"
"10:46:38.1857855 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1858162 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\oleaut32.dll","0.0000171","Filter: oleaut32.dll, 1: oleaut32.dll","2512"
"10:46:38.1858440 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000042","","2512"
"10:46:38.1859579 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1859942 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\oleaut32.dll","0.0000029","AllocationSize: 786,432, EndOfFile: 786,080, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1860095 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\oleaut32.dll","0.0000039","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1860232 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\oleaut32.dll","0.0000017","AllocationSize: 786,432, EndOfFile: 786,080, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1860449 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\oleaut32.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1861004 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000051","","2512"
"10:46:38.1862301 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000124","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1862672 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\oleaut32.dll","0.0000026","AllocationSize: 786,432, EndOfFile: 786,080, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1862813 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\oleaut32.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1862924 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\oleaut32.dll","0.0000017","AllocationSize: 786,432, EndOfFile: 786,080, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1863099 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\oleaut32.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.1863722 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\oleaut32.dll","0.0000021","AllocationSize: 786,432, EndOfFile: 786,080, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1863846 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000055","","2512"
"10:46:38.1865109 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000119","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1865454 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\oleaut32.dll","0.0000021","AllocationSize: 786,432, EndOfFile: 786,080, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1865582 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\oleaut32.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1865685 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\oleaut32.dll","0.0000017","AllocationSize: 786,432, EndOfFile: 786,080, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1865855 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\oleaut32.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.1870549 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000064","","2512"
"10:46:38.1874781 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1875110 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000034","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:38.1875233 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000047","","2512"
"10:46:38.1877059 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1877337 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000030","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:38.1877448 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000038","","2512"
"10:46:38.1879594 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1879875 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000026","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:38.1879982 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000039","","2512"
"10:46:38.1881710 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1881966 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000026","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:38.1882069 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000038","","2512"
"10:46:38.1883967 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1884223 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000026","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","2512"
"10:46:38.1884326 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000038","","2512"
"10:46:38.1884658 AM","firefox.exe","7384","CreateFile","C:\","0.0000086","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1884867 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000222","Filter: Windows, 1: Windows","2512"
"10:46:38.1885213 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.1886139 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1886365 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000102","Filter: System32, 1: System32","2512"
"10:46:38.1886574 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:38.1887551 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1887760 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\oleaut32.dll","0.0000141","Filter: oleaut32.dll, 1: oleaut32.dll","2512"
"10:46:38.1888008 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:38.1890205 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1890517 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000029","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","2512"
"10:46:38.1890623 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000043","","2512"
"10:46:38.1890960 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1891148 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.1891344 AM","firefox.exe","7384","CloseFile","C:\","0.0000034","","2512"
"10:46:38.1892232 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1892437 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000093","Filter: System32, 1: System32","2512"
"10:46:38.1892633 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:38.1893537 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1893738 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\winrnr.dll","0.0000111","Filter: winrnr.dll, 1: winrnr.dll","2512"
"10:46:38.1893947 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000038","","2512"
"10:46:38.1895675 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1895948 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000030","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","2512"
"10:46:38.1896050 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000043","","2512"
"10:46:38.1896379 AM","firefox.exe","7384","CreateFile","C:\","0.0000077","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1896558 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000094","Filter: Windows, 1: Windows","2512"
"10:46:38.1896750 AM","firefox.exe","7384","CloseFile","C:\","0.0000039","","2512"
"10:46:38.1897676 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1897872 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:38.1898086 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.1898994 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000090","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1899195 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\winrnr.dll","0.0000111","Filter: winrnr.dll, 1: winrnr.dll","2512"
"10:46:38.1899425 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000035","","2512"
"10:46:38.1900782 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000171","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1901273 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winrnr.dll","0.0000043","AllocationSize: 32,768, EndOfFile: 31,232, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1901610 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000064","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1901819 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winrnr.dll","0.0000030","AllocationSize: 32,768, EndOfFile: 31,232, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1902126 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:38.1902698 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000072","","2512"
"10:46:38.1904161 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1904537 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winrnr.dll","0.0000025","AllocationSize: 32,768, EndOfFile: 31,232, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1904682 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1904793 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winrnr.dll","0.0000017","AllocationSize: 32,768, EndOfFile: 31,232, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1904972 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1905365 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000055","","2512"
"10:46:38.1907344 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1907570 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/11/2018 4:38:21 PM, LastAccessTime: 4/11/2018 4:38:21 PM, LastWriteTime: 4/11/2018 4:38:21 PM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: D","2512"
"10:46:38.1907677 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000039","","2512"
"10:46:38.1909392 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1909601 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000026","CreationTime: 4/12/2018 2:24:44 AM, LastAccessTime: 4/12/2018 2:24:44 AM, LastWriteTime: 4/12/2018 2:24:44 AM, ChangeTime: 3/20/2019 7:11:23 PM, FileAttributes: DNCI","2512"
"10:46:38.1909700 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}","0.0000034","","2512"
"10:46:38.1910809 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000115","Desired Access: Generic Read, Disposition: Open, Options: Sequential Access, Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1911167 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winrnr.dll","0.0000026","AllocationSize: 32,768, EndOfFile: 31,232, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1911312 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1911423 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winrnr.dll","0.0000022","AllocationSize: 32,768, EndOfFile: 31,232, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1911602 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000018","SyncType: SyncTypeOther","2512"
"10:46:38.1912306 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winrnr.dll","0.0000026","AllocationSize: 32,768, EndOfFile: 31,232, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1912430 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000017","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1912524 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\winrnr.dll","0.0000017","AllocationSize: 32,768, EndOfFile: 31,232, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.1912690 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\winrnr.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.1912925 AM","firefox.exe","7384","ReadFile","C:\Windows\System32\winrnr.dll","0.0000149","Offset: 0, Length: 31,232, Priority: Normal","2512"
"10:46:38.1916462 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000120","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1916714 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2\{????????????????????????????????????}","0.0000119","Filter: {????????????????????????????????????}, 1: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}","2512"
"10:46:38.1917832 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000435","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:38.1919150 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000107","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1919389 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000026","Information: DACL","2512"
"10:46:38.1919513 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000038","","2512"
"10:46:38.1920558 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000132","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:38.1921518 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000103","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1921740 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000017","Information: DACL","2512"
"10:46:38.1921847 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000038","","2512"
"10:46:38.1924210 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000150","0: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}","2512"
"10:46:38.1926412 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000256","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:38.1928379 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot","0.0000943","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1929510 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\CatRoot","0.0000030","Information: DACL","2512"
"10:46:38.1929668 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot","0.0000046","","2512"
"10:46:38.1931276 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000235","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","2512"
"10:46:38.1933047 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\catroot2","0.0000187","Desired Access: Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1933418 AM","firefox.exe","7384","QuerySecurityFile","C:\Windows\System32\catroot2","0.0000034","Information: DACL","2512"
"10:46:38.1933601 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000060","","2512"
"10:46:38.1940083 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000251","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1940539 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:21:19 PM, ChangeTime: 3/20/2019 7:08:08 PM, AllocationSize: 335872, EndOfFile: 333889, FileAttributes: A","2512"
"10:46:38.1941115 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000098","","2512"
"10:46:38.1941742 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\catroot2","0.0000073","","2512"
"10:46:38.1942003 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\catroot2","0.0000064","","2512"
"10:46:38.1945437 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000226","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1945830 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000047","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:21:19 PM, ChangeTime: 3/20/2019 7:08:08 PM, AllocationSize: 335872, EndOfFile: 333889, FileAttributes: A","2512"
"10:46:38.1946022 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000068","","2512"
"10:46:38.1947775 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000150","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1948100 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","AllocationSize: 335,872, EndOfFile: 333,889, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.1948283 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1948407 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 335,872, EndOfFile: 333,889, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.1948595 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1951718 AM","firefox.exe","7384","QueryInformationVolume","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000034","VolumeCreationTime: 2/14/2017 10:47:29 PM, VolumeSerialNumber: 7E01-DEAB, SupportsObjects: True, VolumeLabel: Win","2512"
"10:46:38.1951880 AM","firefox.exe","7384","QueryAllInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000060","CreationTime: 4/11/2018 4:30:03 PM, LastAccessTime: 4/11/2018 4:30:03 PM, LastWriteTime: 4/11/2018 3:21:19 PM, ChangeTime: 3/20/2019 7:08:08 PM, FileAttributes: A, AllocationSize: 335,872, EndOfFile: 333,889, NumberOfLinks: 3, DeletePending: False, Directory: False, IndexNumber: 0x3000000061276, EaSize: 0, Access: Generic Read, Position: 0, Mode: Synchronous IO Non-Alert, AlignmentRequirement: Word","2512"
"10:46:38.1953540 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000157","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1953872 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000035","AllocationSize: 335,872, EndOfFile: 333,889, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.1954043 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1954163 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000021","AllocationSize: 335,872, EndOfFile: 333,889, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.1954350 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.1954982 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000064","","2512"
"10:46:38.1956377 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1956680 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000030","AllocationSize: 335,872, EndOfFile: 333,889, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.1956825 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1956936 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 335,872, EndOfFile: 333,889, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.1957111 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","SyncType: SyncTypeOther","2512"
"10:46:38.1957486 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000056","","2512"
"10:46:38.1959991 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.1960336 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","AllocationSize: 335,872, EndOfFile: 333,889, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.1960477 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000026","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.1960584 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000017","AllocationSize: 335,872, EndOfFile: 333,889, NumberOfLinks: 3, DeletePending: False, Directory: False","2512"
"10:46:38.1960763 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.1963413 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000055","","2512"
"10:46:38.2009228 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000081","","2512"
"10:46:38.2010060 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Client-Features-Package0017~31bf3856ad364e35~amd64~~10.0.17134.1.cat","0.0000043","","2512"
"10:46:38.2014284 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2014677 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000038","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","2512"
"10:46:38.2014813 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000047","","2512"
"10:46:38.2016874 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2017177 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000030","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","2512"
"10:46:38.2017292 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000043","","2512"
"10:46:38.2019472 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\winrnr.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2019754 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000030","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","2512"
"10:46:38.2019865 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\winrnr.dll","0.0000043","","2512"
"10:46:38.2020236 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2020462 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000133","Filter: Windows, 1: Windows","2512"
"10:46:38.2020714 AM","firefox.exe","7384","CloseFile","C:\","0.0000043","","2512"
"10:46:38.2021730 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000106","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2021960 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000111","Filter: System32, 1: System32","2512"
"10:46:38.2022186 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000038","","2512"
"10:46:38.2023125 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000102","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2023342 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\winrnr.dll","0.0000116","Filter: winrnr.dll, 1: winrnr.dll","2512"
"10:46:38.2023564 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:38.2025685 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2025902 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000030","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:38.2026005 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000042","","2512"
"10:46:38.2026338 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2026521 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:38.2026722 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.2027788 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000098","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2027993 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000098","Filter: System32, 1: System32","2512"
"10:46:38.2028194 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000034","","2512"
"10:46:38.2030032 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2030224 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000030","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:38.2030327 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000038","","2512"
"10:46:38.2030651 AM","firefox.exe","7384","CreateFile","C:\","0.0000081","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2030835 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000098","Filter: Windows, 1: Windows","2512"
"10:46:38.2031031 AM","firefox.exe","7384","CloseFile","C:\","0.0000038","","2512"
"10:46:38.2031910 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2032110 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000094","Filter: System32, 1: System32","2512"
"10:46:38.2032302 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:38.2033407 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000116","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2033672 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\windows.storage.dll","0.0000030","AllocationSize: 7,438,336, EndOfFile: 7,436,016, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.2033826 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\windows.storage.dll","0.0000029","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.2033949 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\windows.storage.dll","0.0000017","AllocationSize: 7,438,336, EndOfFile: 7,436,016, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.2034137 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\windows.storage.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.2035140 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000055","","2512"
"10:46:38.2036398 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000111","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2036671 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\windows.storage.dll","0.0000026","AllocationSize: 7,438,336, EndOfFile: 7,436,016, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.2036812 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\windows.storage.dll","0.0000022","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.2036923 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\windows.storage.dll","0.0000034","AllocationSize: 7,438,336, EndOfFile: 7,436,016, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.2037132 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\windows.storage.dll","0.0000022","SyncType: SyncTypeOther","2512"
"10:46:38.2038455 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\windows.storage.dll","0.0000030","AllocationSize: 7,438,336, EndOfFile: 7,436,016, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.2038608 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000064","","2512"
"10:46:38.2040392 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000128","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2040682 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\windows.storage.dll","0.0000021","AllocationSize: 7,438,336, EndOfFile: 7,436,016, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.2040823 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\windows.storage.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.2040938 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\windows.storage.dll","0.0000017","AllocationSize: 7,438,336, EndOfFile: 7,436,016, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.2041126 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\windows.storage.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.2059434 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000068","","2512"
"10:46:38.2073420 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000145","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2073685 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000038","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:38.2073817 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000047","","2512"
"10:46:38.2075810 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2076014 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000026","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:38.2076121 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000043","","2512"
"10:46:38.2079022 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2079274 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000039","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","2512"
"10:46:38.2079402 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000047","","2512"
"10:46:38.2079795 AM","firefox.exe","7384","CreateFile","C:\","0.0000094","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2080021 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000149","Filter: Windows, 1: Windows","2512"
"10:46:38.2080290 AM","firefox.exe","7384","CloseFile","C:\","0.0000042","","2512"
"10:46:38.2081489 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2082193 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000217","Filter: System32, 1: System32","2512"
"10:46:38.2082675 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000089","","2512"
"10:46:38.2086092 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000201","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2086591 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000043","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:38.2086771 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000064","","2512"
"10:46:38.2087334 AM","firefox.exe","7384","CreateFile","C:\","0.0000136","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2087645 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000150","Filter: Windows, 1: Windows","2512"
"10:46:38.2087961 AM","firefox.exe","7384","CloseFile","C:\","0.0000056","","2512"
"10:46:38.2089352 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2089668 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000136","Filter: System32, 1: System32","2512"
"10:46:38.2089958 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000055","","2512"
"10:46:38.2091298 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000145","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2091605 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\msvcrt.dll","0.0000166","Filter: msvcrt.dll, 1: msvcrt.dll","2512"
"10:46:38.2091925 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000055","","2512"
"10:46:38.2094468 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2094877 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000039","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:38.2095039 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000060","","2512"
"10:46:38.2095551 AM","firefox.exe","7384","CreateFile","C:\","0.0000116","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2095825 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000132","Filter: Windows, 1: Windows","2512"
"10:46:38.2096102 AM","firefox.exe","7384","CloseFile","C:\","0.0000055","","2512"
"10:46:38.2097749 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000141","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2098103 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000179","Filter: System32, 1: System32","2512"
"10:46:38.2098444 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000047","","2512"
"10:46:38.2099571 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000119","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2099861 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\msvcrt.dll","0.0000192","Filter: msvcrt.dll, 1: msvcrt.dll","2512"
"10:46:38.2100228 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000055","","2512"
"10:46:38.2101576 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000141","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2101994 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcrt.dll","0.0000034","AllocationSize: 638,976, EndOfFile: 636,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.2102182 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcrt.dll","0.0000030","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.2102310 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcrt.dll","0.0000017","AllocationSize: 638,976, EndOfFile: 636,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.2102510 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcrt.dll","0.0000018","SyncType: SyncTypeOther","2512"
"10:46:38.2103116 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000060","","2512"
"10:46:38.2104439 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2104827 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcrt.dll","0.0000030","AllocationSize: 638,976, EndOfFile: 636,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.2104981 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcrt.dll","0.0000021","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.2105096 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcrt.dll","0.0000017","AllocationSize: 638,976, EndOfFile: 636,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.2105280 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcrt.dll","0.0000012","SyncType: SyncTypeOther","2512"
"10:46:38.2105851 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcrt.dll","0.0000022","AllocationSize: 638,976, EndOfFile: 636,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.2105984 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000051","","2512"
"10:46:38.2107456 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000132","Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2107818 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcrt.dll","0.0000026","AllocationSize: 638,976, EndOfFile: 636,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.2107955 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcrt.dll","0.0000025","SyncType: SyncTypeCreateSection, PageProtection: PAGE_EXECUTE_READ","2512"
"10:46:38.2108066 AM","firefox.exe","7384","QueryStandardInformationFile","C:\Windows\System32\msvcrt.dll","0.0000017","AllocationSize: 638,976, EndOfFile: 636,936, NumberOfLinks: 2, DeletePending: False, Directory: False","2512"
"10:46:38.2108245 AM","firefox.exe","7384","CreateFileMapping","C:\Windows\System32\msvcrt.dll","0.0000013","SyncType: SyncTypeOther","2512"
"10:46:38.2112140 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000056","","2512"
"10:46:38.2116531 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2116855 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000034","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:38.2116979 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000047","","2512"
"10:46:38.2119014 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2119304 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:38.2119411 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000077","","2512"
"10:46:38.2122299 AM","firefox.exe","7384","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2122705 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000038","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","2512"
"10:46:38.2122880 AM","firefox.exe","7384","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000059","","2512"
"10:46:38.2123404 AM","firefox.exe","7384","CreateFile","C:\","0.0000128","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2123716 AM","firefox.exe","7384","QueryDirectory","C:\Windows","0.0000153","Filter: Windows, 1: Windows","2512"
"10:46:38.2124006 AM","firefox.exe","7384","CloseFile","C:\","0.0000047","","2512"
"10:46:38.2125017 AM","firefox.exe","7384","CreateFile","C:\Windows","0.0000111","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2125252 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32","0.0000106","Filter: System32, 1: System32","2512"
"10:46:38.2125465 AM","firefox.exe","7384","CloseFile","C:\Windows","0.0000039","","2512"
"10:46:38.2126421 AM","firefox.exe","7384","CreateFile","C:\Windows\System32","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","2512"
"10:46:38.2126643 AM","firefox.exe","7384","QueryDirectory","C:\Windows\System32\msvcrt.dll","0.0000187","Filter: msvcrt.dll, 1: msvcrt.dll","2512"
"10:46:38.2126988 AM","firefox.exe","7384","CloseFile","C:\Windows\System32","0.0000039","","2512"
"10:46:38.2134553 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000205","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2134865 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000042","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","6944"
"10:46:38.2135001 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000064","","6944"
"10:46:38.2137582 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2137847 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000034","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","6944"
"10:46:38.2137966 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000056","","6944"
"10:46:38.2140403 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2140646 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000034","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:28 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:33:40 AM, FileAttributes: A","6944"
"10:46:38.2140765 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\firefox.exe","0.0000052","","6944"
"10:46:38.2143586 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ntdll.dll","0.0000179","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2143982 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000043","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","6944"
"10:46:38.2144115 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ntdll.dll","0.0000055","","6944"
"10:46:38.2146918 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ntdll.dll","0.0000158","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2147272 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000038","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","6944"
"10:46:38.2147396 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ntdll.dll","0.0000068","","6944"
"10:46:38.2149815 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ntdll.dll","0.0000154","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2150161 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ntdll.dll","0.0000034","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 8:04:21 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","6944"
"10:46:38.2150284 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ntdll.dll","0.0000056","","6944"
"10:46:38.2153117 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\kernel32.dll","0.0000295","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2153736 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000068","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","6944"
"10:46:38.2153915 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\kernel32.dll","0.0000069","","6944"
"10:46:38.2156275 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\kernel32.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2156569 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000030","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","6944"
"10:46:38.2156663 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\kernel32.dll","0.0000043","","6944"
"10:46:38.2158873 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\kernel32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2159151 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\kernel32.dll","0.0000029","CreationTime: 4/25/2019 5:33:32 PM, LastAccessTime: 4/25/2019 5:33:32 PM, LastWriteTime: 4/2/2019 5:33:43 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","6944"
"10:46:38.2159240 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\kernel32.dll","0.0000043","","6944"
"10:46:38.2161391 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2161587 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","6944"
"10:46:38.2161672 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000039","","6944"
"10:46:38.2163805 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2163985 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000025","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","6944"
"10:46:38.2164066 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000038","","6944"
"10:46:38.2165785 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\KernelBase.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2165964 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\KernelBase.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","6944"
"10:46:38.2166041 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\KernelBase.dll","0.0000039","","6944"
"10:46:38.2168102 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\advapi32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2168388 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000025","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","6944"
"10:46:38.2168469 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\advapi32.dll","0.0000043","","6944"
"10:46:38.2170449 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\advapi32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2170696 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000030","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","6944"
"10:46:38.2170777 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\advapi32.dll","0.0000039","","6944"
"10:46:38.2172471 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\advapi32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2172710 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\advapi32.dll","0.0000026","CreationTime: 3/20/2019 7:39:30 PM, LastAccessTime: 3/20/2019 7:43:56 PM, LastWriteTime: 3/20/2019 7:39:30 PM, ChangeTime: 4/25/2019 8:10:41 PM, FileAttributes: A","6944"
"10:46:38.2172791 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\advapi32.dll","0.0000034","","6944"
"10:46:38.2174749 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2175010 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","6944"
"10:46:38.2175091 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000038","","6944"
"10:46:38.2176913 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000153","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2177442 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","6944"
"10:46:38.2177527 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000043","","6944"
"10:46:38.2179315 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\msvcrt.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2179554 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\msvcrt.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","6944"
"10:46:38.2179635 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\msvcrt.dll","0.0000034","","6944"
"10:46:38.2181636 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\sechost.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2181905 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000030","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","6944"
"10:46:38.2181990 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\sechost.dll","0.0000034","","6944"
"10:46:38.2183705 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\sechost.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2183944 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","6944"
"10:46:38.2184025 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\sechost.dll","0.0000034","","6944"
"10:46:38.2185775 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\sechost.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2186009 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\sechost.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","6944"
"10:46:38.2186086 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\sechost.dll","0.0000038","","6944"
"10:46:38.2188147 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2188411 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000026","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","6944"
"10:46:38.2188497 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000038","","6944"
"10:46:38.2190229 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2190468 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000025","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","6944"
"10:46:38.2190549 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000034","","6944"
"10:46:38.2192285 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\rpcrt4.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2192516 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\rpcrt4.dll","0.0000025","CreationTime: 4/25/2019 5:33:49 PM, LastAccessTime: 4/25/2019 5:33:49 PM, LastWriteTime: 3/6/2019 2:16:21 AM, ChangeTime: 4/25/2019 8:17:11 PM, FileAttributes: A","6944"
"10:46:38.2192593 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\rpcrt4.dll","0.0000038","","6944"
"10:46:38.2194764 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2195033 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000026","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","6944"
"10:46:38.2195119 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000038","","6944"
"10:46:38.2196859 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2197141 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000026","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","6944"
"10:46:38.2197222 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000038","","6944"
"10:46:38.2198971 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ucrtbase.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2199210 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ucrtbase.dll","0.0000022","CreationTime: 4/25/2019 5:33:47 PM, LastAccessTime: 4/25/2019 5:33:47 PM, LastWriteTime: 3/14/2019 1:26:13 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","6944"
"10:46:38.2199287 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ucrtbase.dll","0.0000038","","6944"
"10:46:38.2201186 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2201374 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","6944"
"10:46:38.2201455 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000038","","6944"
"10:46:38.2203468 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2203652 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","6944"
"10:46:38.2203729 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000038","","6944"
"10:46:38.2205363 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2205521 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","6944"
"10:46:38.2205593 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\mozglue.dll","0.0000039","","6944"
"10:46:38.2207586 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\crypt32.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2207872 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","6944"
"10:46:38.2207953 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\crypt32.dll","0.0000038","","6944"
"10:46:38.2209715 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\crypt32.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2209958 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","6944"
"10:46:38.2210039 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\crypt32.dll","0.0000039","","6944"
"10:46:38.2211742 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\crypt32.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2211976 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\crypt32.dll","0.0000022","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","6944"
"10:46:38.2212053 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\crypt32.dll","0.0000038","","6944"
"10:46:38.2213943 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\msasn1.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2214199 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","6944"
"10:46:38.2214280 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\msasn1.dll","0.0000034","","6944"
"10:46:38.2216111 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\msasn1.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2216354 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","6944"
"10:46:38.2216435 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\msasn1.dll","0.0000034","","6944"
"10:46:38.2218146 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\msasn1.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2218380 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\msasn1.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 3/20/2019 8:09:10 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","6944"
"10:46:38.2218457 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\msasn1.dll","0.0000039","","6944"
"10:46:38.2220428 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wintrust.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2220689 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000025","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","6944"
"10:46:38.2220770 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wintrust.dll","0.0000038","","6944"
"10:46:38.2222690 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wintrust.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2222937 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","6944"
"10:46:38.2223018 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wintrust.dll","0.0000039","","6944"
"10:46:38.2224691 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wintrust.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2224930 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wintrust.dll","0.0000021","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","6944"
"10:46:38.2225007 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wintrust.dll","0.0000038","","6944"
"10:46:38.2227025 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2227221 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000021","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","6944"
"10:46:38.2227298 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000038","","6944"
"10:46:38.2229107 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2229273 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000026","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","6944"
"10:46:38.2229350 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000034","","6944"
"10:46:38.2230993 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\msvcp140.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2231159 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\msvcp140.dll","0.0000021","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:01 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 9/10/2018 6:10:01 PM, FileAttributes: A","6944"
"10:46:38.2231232 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\msvcp140.dll","0.0000034","","6944"
"10:46:38.2233224 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2233416 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000026","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","6944"
"10:46:38.2233497 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000034","","6944"
"10:46:38.2235353 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2235520 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000025","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","6944"
"10:46:38.2235596 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000035","","6944"
"10:46:38.2237282 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\vcruntime140.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2237448 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\vcruntime140.dll","0.0000026","CreationTime: 8/27/2018 11:26:56 PM, LastAccessTime: 9/10/2018 6:10:05 PM, LastWriteTime: 8/27/2018 11:26:56 PM, ChangeTime: 3/27/2019 8:06:11 PM, FileAttributes: A","6944"
"10:46:38.2237525 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\vcruntime140.dll","0.0000038","","6944"
"10:46:38.2239479 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\version.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2239748 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000030","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","6944"
"10:46:38.2239833 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\version.dll","0.0000039","","6944"
"10:46:38.2241578 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\version.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2241822 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000025","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","6944"
"10:46:38.2241898 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\version.dll","0.0000039","","6944"
"10:46:38.2243550 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\version.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2243784 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\version.dll","0.0000022","CreationTime: 4/11/2018 4:34:34 PM, LastAccessTime: 4/11/2018 4:34:34 PM, LastWriteTime: 4/11/2018 4:34:34 PM, ChangeTime: 3/20/2019 7:15:03 PM, FileAttributes: A","6944"
"10:46:38.2243861 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\version.dll","0.0000034","","6944"
"10:46:38.2245836 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2246097 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","6944"
"10:46:38.2246178 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000038","","6944"
"10:46:38.2248051 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2248294 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","6944"
"10:46:38.2248375 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000034","","6944"
"10:46:38.2250048 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dbghelp.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2250282 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dbghelp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/21/2019 9:20:06 PM, FileAttributes: A","6944"
"10:46:38.2250359 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dbghelp.dll","0.0000034","","6944"
"10:46:38.2252369 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2252548 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","6944"
"10:46:38.2252629 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000034","","6944"
"10:46:38.2254451 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2254622 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000021","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","6944"
"10:46:38.2254694 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000039","","6944"
"10:46:38.2256354 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\cryptbase.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2256516 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\cryptbase.dll","0.0000021","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:13:31 PM, FileAttributes: A","6944"
"10:46:38.2256589 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\cryptbase.dll","0.0000034","","6944"
"10:46:38.2258654 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2258837 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","6944"
"10:46:38.2258914 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000038","","6944"
"10:46:38.2260710 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2260877 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000021","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","6944"
"10:46:38.2260953 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000034","","6944"
"10:46:38.2263010 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\bcryptprimitives.dll","0.0000149","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2263245 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\bcryptprimitives.dll","0.0000038","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","6944"
"10:46:38.2263355 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\bcryptprimitives.dll","0.0000056","","6944"
"10:46:38.2266197 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000196","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2266500 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000038","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","6944"
"10:46:38.2266628 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000145","","6944"
"10:46:38.2270545 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000328","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2271151 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000384","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","6944"
"10:46:38.2271693 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000102","","6944"
"10:46:38.2274820 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2275029 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","6944"
"10:46:38.2275123 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\vcruntime140.dll","0.0000047","","6944"
"10:46:38.2277410 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2277645 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","6944"
"10:46:38.2277726 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000042","","6944"
"10:46:38.2279633 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2279812 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","6944"
"10:46:38.2279893 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000034","","6944"
"10:46:38.2281540 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2281706 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","6944"
"10:46:38.2281783 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\msvcp140.dll","0.0000034","","6944"
"10:46:38.2283703 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2283882 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","6944"
"10:46:38.2283959 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000034","","6944"
"10:46:38.2285777 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2285943 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000022","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","6944"
"10:46:38.2286016 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000038","","6944"
"10:46:38.2287675 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2287838 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000021","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","6944"
"10:46:38.2287914 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\nss3.dll","0.0000035","","6944"
"10:46:38.2290052 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2290359 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","6944"
"10:46:38.2290445 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000038","","6944"
"10:46:38.2292194 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2292450 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","6944"
"10:46:38.2292527 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000042","","6944"
"10:46:38.2294221 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ws2_32.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2294459 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ws2_32.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","6944"
"10:46:38.2294541 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ws2_32.dll","0.0000038","","6944"
"10:46:38.2296768 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\winmm.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2297135 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000038","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","6944"
"10:46:38.2297246 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\winmm.dll","0.0000055","","6944"
"10:46:38.2299097 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\winmm.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2299349 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000026","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","6944"
"10:46:38.2299430 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\winmm.dll","0.0000039","","6944"
"10:46:38.2301133 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\winmm.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2301376 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\winmm.dll","0.0000025","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","6944"
"10:46:38.2301453 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\winmm.dll","0.0000038","","6944"
"10:46:38.2303693 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wsock32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2303966 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000030","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","6944"
"10:46:38.2304051 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wsock32.dll","0.0000038","","6944"
"10:46:38.2305766 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wsock32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2306009 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","6944"
"10:46:38.2306090 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wsock32.dll","0.0000035","","6944"
"10:46:38.2307951 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wsock32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2308198 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wsock32.dll","0.0000022","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","6944"
"10:46:38.2308275 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wsock32.dll","0.0000038","","6944"
"10:46:38.2310421 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2310617 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000026","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","6944"
"10:46:38.2310698 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000039","","6944"
"10:46:38.2312422 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2312593 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000025","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","6944"
"10:46:38.2312670 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000034","","6944"
"10:46:38.2314402 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\winmmbase.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2314564 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\winmmbase.dll","0.0000026","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 3/20/2019 6:51:35 PM, FileAttributes: A","6944"
"10:46:38.2314641 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\winmmbase.dll","0.0000034","","6944"
"10:46:38.2316813 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2317094 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","6944"
"10:46:38.2317180 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000038","","6944"
"10:46:38.2318903 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2319155 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","6944"
"10:46:38.2319236 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000038","","6944"
"10:46:38.2321352 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\cfgmgr32.dll","0.0000133","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2321668 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\cfgmgr32.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:42 PM, FileAttributes: A","6944"
"10:46:38.2321753 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\cfgmgr32.dll","0.0000039","","6944"
"10:46:38.2323797 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2323989 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","6944"
"10:46:38.2324070 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000034","","6944"
"10:46:38.2325743 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2325909 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","6944"
"10:46:38.2325986 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000038","","6944"
"10:46:38.2327663 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2327829 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000021","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:27 AM, ChangeTime: 3/25/2020 10:26:27 AM, FileAttributes: A","6944"
"10:46:38.2327902 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\lgpllibs.dll","0.0000034","","6944"
"10:46:38.2329941 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2330116 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","6944"
"10:46:38.2330193 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000038","","6944"
"10:46:38.2332190 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2332348 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","6944"
"10:46:38.2332424 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000034","","6944"
"10:46:38.2334029 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000098","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2334186 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000022","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","6944"
"10:46:38.2334259 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000034","","6944"
"10:46:38.2336414 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\user32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2336708 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000030","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","6944"
"10:46:38.2336789 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\user32.dll","0.0000043","","6944"
"10:46:38.2338637 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\user32.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2338888 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000026","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","6944"
"10:46:38.2338969 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\user32.dll","0.0000039","","6944"
"10:46:38.2340736 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\user32.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2340970 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\user32.dll","0.0000026","CreationTime: 3/20/2019 7:38:58 PM, LastAccessTime: 3/20/2019 7:43:54 PM, LastWriteTime: 3/20/2019 7:38:58 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","6944"
"10:46:38.2341047 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\user32.dll","0.0000039","","6944"
"10:46:38.2343091 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\win32u.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2343356 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","6944"
"10:46:38.2343437 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\win32u.dll","0.0000038","","6944"
"10:46:38.2345446 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\win32u.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2345694 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","6944"
"10:46:38.2345775 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\win32u.dll","0.0000038","","6944"
"10:46:38.2347481 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\win32u.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2347720 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\win32u.dll","0.0000022","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","6944"
"10:46:38.2347797 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\win32u.dll","0.0000039","","6944"
"10:46:38.2349824 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\gdi32.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2350080 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000025","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","6944"
"10:46:38.2350157 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\gdi32.dll","0.0000038","","6944"
"10:46:38.2351953 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\gdi32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2352192 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000021","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","6944"
"10:46:38.2352269 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\gdi32.dll","0.0000034","","6944"
"10:46:38.2353997 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\gdi32.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2354227 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\gdi32.dll","0.0000026","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:44:00 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","6944"
"10:46:38.2354304 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\gdi32.dll","0.0000038","","6944"
"10:46:38.2356322 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2356497 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000047","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","6944"
"10:46:38.2356595 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000038","","6944"
"10:46:38.2358511 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2358681 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000022","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","6944"
"10:46:38.2358758 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000034","","6944"
"10:46:38.2360491 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\gdi32full.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2360653 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\gdi32full.dll","0.0000021","CreationTime: 4/25/2019 5:33:16 PM, LastAccessTime: 4/25/2019 5:33:16 PM, LastWriteTime: 4/2/2019 5:33:53 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","6944"
"10:46:38.2360729 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\gdi32full.dll","0.0000035","","6944"
"10:46:38.2362765 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2362940 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000025","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","6944"
"10:46:38.2363016 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000039","","6944"
"10:46:38.2364710 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2364868 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000026","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","6944"
"10:46:38.2364945 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000034","","6944"
"10:46:38.2366686 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\msvcp_win.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2366852 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\msvcp_win.dll","0.0000021","CreationTime: 4/25/2019 5:32:41 PM, LastAccessTime: 4/25/2019 5:32:41 PM, LastWriteTime: 2/16/2019 1:01:40 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","6944"
"10:46:38.2366925 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\msvcp_win.dll","0.0000038","","6944"
"10:46:38.2368960 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\shell32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2369237 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000026","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","6944"
"10:46:38.2369318 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\shell32.dll","0.0063612","","6944"
"10:46:38.2435473 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\shell32.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2435810 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000034","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","6944"
"10:46:38.2435912 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\shell32.dll","0.0047292","","6944"
"10:46:38.2485581 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\shell32.dll","0.0000192","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2485952 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\shell32.dll","0.0000034","CreationTime: 3/20/2019 7:39:05 PM, LastAccessTime: 3/20/2019 7:44:01 PM, LastWriteTime: 3/20/2019 7:39:05 PM, ChangeTime: 4/25/2019 8:10:38 PM, FileAttributes: A","6944"
"10:46:38.2486059 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\shell32.dll","0.0005137","","6944"
"10:46:38.2494012 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\SHCore.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2494387 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000034","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","6944"
"10:46:38.2494498 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\SHCore.dll","0.0000047","","6944"
"10:46:38.2496482 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\SHCore.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2496759 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","6944"
"10:46:38.2496845 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\SHCore.dll","0.0000042","","6944"
"10:46:38.2498654 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\SHCore.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2498910 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\SHCore.dll","0.0000030","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:44:07 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","6944"
"10:46:38.2498995 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\SHCore.dll","0.0000039","","6944"
"10:46:38.2501436 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\combase.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2501717 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000026","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","6944"
"10:46:38.2501803 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\combase.dll","0.0000038","","6944"
"10:46:38.2504017 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\combase.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2504277 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000026","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","6944"
"10:46:38.2504358 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\combase.dll","0.0000039","","6944"
"10:46:38.2506069 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\combase.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2506308 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\combase.dll","0.0000026","CreationTime: 4/25/2019 5:34:29 PM, LastAccessTime: 4/25/2019 5:34:29 PM, LastWriteTime: 2/16/2019 1:02:20 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","6944"
"10:46:38.2506389 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\combase.dll","0.0000039","","6944"
"10:46:38.2508591 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2508779 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000025","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","6944"
"10:46:38.2508860 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000051","","6944"
"10:46:38.2510857 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2511036 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000025","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","6944"
"10:46:38.2511117 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000034","","6944"
"10:46:38.2512832 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\windows.storage.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2512998 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\windows.storage.dll","0.0000022","CreationTime: 4/25/2019 5:34:59 PM, LastAccessTime: 4/25/2019 5:34:59 PM, LastWriteTime: 3/14/2019 1:26:38 AM, ChangeTime: 4/25/2019 8:17:13 PM, FileAttributes: A","6944"
"10:46:38.2513071 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\windows.storage.dll","0.0000038","","6944"
"10:46:38.2515268 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2515529 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","6944"
"10:46:38.2515610 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000038","","6944"
"10:46:38.2517568 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2517820 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","6944"
"10:46:38.2517901 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000034","","6944"
"10:46:38.2519603 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\shlwapi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2519842 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\shlwapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:33 PM, LastAccessTime: 4/11/2018 4:34:33 PM, LastWriteTime: 4/11/2018 4:34:33 PM, ChangeTime: 3/20/2019 7:10:41 PM, FileAttributes: A","6944"
"10:46:38.2519923 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\shlwapi.dll","0.0000034","","6944"
"10:46:38.2522180 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2522372 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","6944"
"10:46:38.2522453 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000039","","6944"
"10:46:38.2524224 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2524395 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000025","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","6944"
"10:46:38.2524472 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000034","","6944"
"10:46:38.2526140 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\kernel.appcore.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2526302 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\kernel.appcore.dll","0.0000021","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:38:39 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","6944"
"10:46:38.2526379 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\kernel.appcore.dll","0.0000034","","6944"
"10:46:38.2528555 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\profapi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2528828 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","6944"
"10:46:38.2528909 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\profapi.dll","0.0000034","","6944"
"10:46:38.2530701 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\profapi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2530948 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000022","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","6944"
"10:46:38.2531025 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\profapi.dll","0.0000039","","6944"
"10:46:38.2532689 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\profapi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2532928 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\profapi.dll","0.0000021","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","6944"
"10:46:38.2533005 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\profapi.dll","0.0000034","","6944"
"10:46:38.2535262 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\powrprof.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2535535 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","6944"
"10:46:38.2535616 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\powrprof.dll","0.0000038","","6944"
"10:46:38.2537327 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\powrprof.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2537570 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","6944"
"10:46:38.2537651 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\powrprof.dll","0.0000034","","6944"
"10:46:38.2539328 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\powrprof.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2539563 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\powrprof.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","6944"
"10:46:38.2539644 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\powrprof.dll","0.0000034","","6944"
"10:46:38.2541880 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\fltLib.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2542148 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000030","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","6944"
"10:46:38.2542234 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\fltLib.dll","0.0000038","","6944"
"10:46:38.2544017 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\fltLib.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2544260 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","6944"
"10:46:38.2544341 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\fltLib.dll","0.0000039","","6944"
"10:46:38.2546027 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\fltLib.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2546261 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\fltLib.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:10:43 PM, FileAttributes: A","6944"
"10:46:38.2546342 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\fltLib.dll","0.0000035","","6944"
"10:46:38.2548864 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ole32.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2549137 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000026","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","6944"
"10:46:38.2549218 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ole32.dll","0.0000039","","6944"
"10:46:38.2551078 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ole32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2551322 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000025","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","6944"
"10:46:38.2551403 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ole32.dll","0.0000038","","6944"
"10:46:38.2553144 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ole32.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2553378 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ole32.dll","0.0000026","CreationTime: 3/20/2019 7:39:12 PM, LastAccessTime: 3/20/2019 7:44:09 PM, LastWriteTime: 3/20/2019 7:39:12 PM, ChangeTime: 4/25/2019 8:10:39 PM, FileAttributes: A","6944"
"10:46:38.2553455 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ole32.dll","0.0000038","","6944"
"10:46:38.2555674 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\imm32.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2555925 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000026","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","6944"
"10:46:38.2556006 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\imm32.dll","0.0000039","","6944"
"10:46:38.2557790 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\imm32.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2558020 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000026","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","6944"
"10:46:38.2558101 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\imm32.dll","0.0000035","","6944"
"10:46:38.2559761 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\imm32.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2559987 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\imm32.dll","0.0000026","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 7:10:39 PM, FileAttributes: A","6944"
"10:46:38.2560064 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\imm32.dll","0.0000038","","6944"
"10:46:38.2562351 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\setupapi.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2562620 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","6944"
"10:46:38.2562701 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\setupapi.dll","0.0000038","","6944"
"10:46:38.2564536 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\setupapi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2564783 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","6944"
"10:46:38.2564864 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\setupapi.dll","0.0000039","","6944"
"10:46:38.2566626 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\setupapi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2566861 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\setupapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","6944"
"10:46:38.2566942 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\setupapi.dll","0.0000034","","6944"
"10:46:38.2569182 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2569442 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000022","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","6944"
"10:46:38.2569519 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000038","","6944"
"10:46:38.2571426 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2571669 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000026","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","6944"
"10:46:38.2571751 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000034","","6944"
"10:46:38.2573427 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2573658 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000025","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","6944"
"10:46:38.2573735 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000034","","6944"
"10:46:38.2575522 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2575761 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000026","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","6944"
"10:46:38.2575842 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000034","","6944"
"10:46:38.2577464 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\oleaut32.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2577694 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\oleaut32.dll","0.0000026","CreationTime: 4/25/2019 5:33:38 PM, LastAccessTime: 4/25/2019 5:33:38 PM, LastWriteTime: 4/2/2019 1:19:53 AM, ChangeTime: 4/25/2019 8:17:12 PM, FileAttributes: A","6944"
"10:46:38.2577771 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\oleaut32.dll","0.0000038","","6944"
"10:46:38.2579977 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\avrt.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2580271 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000026","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","6944"
"10:46:38.2580352 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\avrt.dll","0.0000039","","6944"
"10:46:38.2582157 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\avrt.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2582404 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000026","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","6944"
"10:46:38.2582485 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\avrt.dll","0.0000035","","6944"
"10:46:38.2584167 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\avrt.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2584401 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\avrt.dll","0.0000026","CreationTime: 4/11/2018 4:34:04 PM, LastAccessTime: 4/11/2018 4:34:04 PM, LastWriteTime: 4/11/2018 4:34:04 PM, ChangeTime: 10/22/2019 8:23:09 PM, FileAttributes: A","6944"
"10:46:38.2584482 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\avrt.dll","0.0000034","","6944"
"10:46:38.2586961 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\usp10.dll","0.0000167","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2587328 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000034","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","6944"
"10:46:38.2587452 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\usp10.dll","0.0000060","","6944"
"10:46:38.2590289 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\usp10.dll","0.0000171","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2590665 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000038","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","6944"
"10:46:38.2590801 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\usp10.dll","0.0000056","","6944"
"10:46:38.2593097 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\usp10.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2593361 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\usp10.dll","0.0000026","CreationTime: 4/11/2018 4:34:24 PM, LastAccessTime: 4/11/2018 4:34:24 PM, LastWriteTime: 4/11/2018 4:34:24 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","6944"
"10:46:38.2593447 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\usp10.dll","0.0000038","","6944"
"10:46:38.2596544 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\d3d11.dll","0.0000141","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2596830 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000026","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","6944"
"10:46:38.2596915 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\d3d11.dll","0.0000039","","6944"
"10:46:38.2599032 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\d3d11.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2599283 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000026","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","6944"
"10:46:38.2599364 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\d3d11.dll","0.0000039","","6944"
"10:46:38.2601276 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\d3d11.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2601532 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\d3d11.dll","0.0000030","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","6944"
"10:46:38.2601617 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\d3d11.dll","0.0000043","","6944"
"10:46:38.2603921 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dxgi.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2604186 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000025","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","6944"
"10:46:38.2604271 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dxgi.dll","0.0000038","","6944"
"10:46:38.2606072 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dxgi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2606311 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000025","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","6944"
"10:46:38.2606387 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dxgi.dll","0.0000039","","6944"
"10:46:38.2608239 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dxgi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2608474 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dxgi.dll","0.0000025","CreationTime: 3/20/2019 7:38:50 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:50 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","6944"
"10:46:38.2608555 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dxgi.dll","0.0000034","","6944"
"10:46:38.2611162 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2611439 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","6944"
"10:46:38.2611524 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000039","","6944"
"10:46:38.2613269 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2613513 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000025","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","6944"
"10:46:38.2613594 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000034","","6944"
"10:46:38.2615283 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2615518 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","6944"
"10:46:38.2615599 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\IPHLPAPI.DLL","0.0000034","","6944"
"10:46:38.2617878 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2618155 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000025","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","6944"
"10:46:38.2618236 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000038","","6944"
"10:46:38.2620126 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000162","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2620433 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000026","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","6944"
"10:46:38.2620514 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000043","","6944"
"10:46:38.2622221 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dnsapi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2622464 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dnsapi.dll","0.0000188","CreationTime: 3/20/2019 7:38:36 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:38:36 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","6944"
"10:46:38.2622716 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dnsapi.dll","0.0000043","","6944"
"10:46:38.2625165 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\nsi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2625434 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","6944"
"10:46:38.2625519 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\nsi.dll","0.0000034","","6944"
"10:46:38.2627307 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\nsi.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2627550 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","6944"
"10:46:38.2627631 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\nsi.dll","0.0000039","","6944"
"10:46:38.2629594 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\nsi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2629837 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\nsi.dll","0.0000021","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 3/20/2019 7:44:43 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","6944"
"10:46:38.2629922 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\nsi.dll","0.0000039","","6944"
"10:46:38.2632376 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2632653 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","6944"
"10:46:38.2632738 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000043","","6944"
"10:46:38.2634560 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2634820 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","6944"
"10:46:38.2634902 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000034","","6944"
"10:46:38.2636604 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dwmapi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2636839 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dwmapi.dll","0.0000042","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 6:51:21 PM, FileAttributes: A","6944"
"10:46:38.2636937 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dwmapi.dll","0.0000042","","6944"
"10:46:38.2640115 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000184","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2640516 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000039","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","6944"
"10:46:38.2640649 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000055","","6944"
"10:46:38.2643064 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2643324 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000026","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","6944"
"10:46:38.2643409 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000039","","6944"
"10:46:38.2645240 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\uxtheme.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2645487 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\uxtheme.dll","0.0000026","CreationTime: 4/11/2018 4:34:36 PM, LastAccessTime: 4/11/2018 4:34:36 PM, LastWriteTime: 4/11/2018 4:34:36 PM, ChangeTime: 3/20/2019 6:51:33 PM, FileAttributes: A","6944"
"10:46:38.2645568 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\uxtheme.dll","0.0000039","","6944"
"10:46:38.2647928 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2648205 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000030","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","6944"
"10:46:38.2648290 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000034","","6944"
"10:46:38.2650138 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2650458 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000034","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","6944"
"10:46:38.2651042 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000073","","6944"
"10:46:38.2652984 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wtsapi32.dll","0.0000119","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2653235 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wtsapi32.dll","0.0000026","CreationTime: 4/11/2018 4:34:37 PM, LastAccessTime: 4/11/2018 4:34:37 PM, LastWriteTime: 4/11/2018 4:34:37 PM, ChangeTime: 3/20/2019 7:15:00 PM, FileAttributes: A","6944"
"10:46:38.2653316 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wtsapi32.dll","0.0000039","","6944"
"10:46:38.2655740 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2656017 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","6944"
"10:46:38.2656098 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000039","","6944"
"10:46:38.2657801 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2658048 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","6944"
"10:46:38.2658129 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000034","","6944"
"10:46:38.2659883 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\dhcpcsvc.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2660152 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\dhcpcsvc.dll","0.0000025","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","6944"
"10:46:38.2660228 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\dhcpcsvc.dll","0.0000043","","6944"
"10:46:38.2662609 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\userenv.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2662874 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","6944"
"10:46:38.2662955 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\userenv.dll","0.0000038","","6944"
"10:46:38.2664666 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\userenv.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2664909 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000021","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","6944"
"10:46:38.2664986 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\userenv.dll","0.0000038","","6944"
"10:46:38.2666739 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\userenv.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2666978 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\userenv.dll","0.0000022","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:29 PM, FileAttributes: A","6944"
"10:46:38.2667055 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\userenv.dll","0.0000039","","6944"
"10:46:38.2669568 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2669760 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000026","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","6944"
"10:46:38.2669837 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000038","","6944"
"10:46:38.2671586 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2671757 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000026","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","6944"
"10:46:38.2671834 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000034","","6944"
"10:46:38.2673587 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2673754 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000025","CreationTime: 4/11/2018 4:34:08 PM, LastAccessTime: 4/11/2018 4:34:08 PM, LastWriteTime: 4/11/2018 4:34:08 PM, ChangeTime: 3/20/2019 6:51:17 PM, FileAttributes: A","6944"
"10:46:38.2673831 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\D3DCompiler_47.dll","0.0000034","","6944"
"10:46:38.2676173 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2676438 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","6944"
"10:46:38.2676514 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000039","","6944"
"10:46:38.2678247 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2678481 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","6944"
"10:46:38.2678558 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000039","","6944"
"10:46:38.2680342 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\cryptsp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2680581 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\cryptsp.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:31:51 PM, FileAttributes: A","6944"
"10:46:38.2680662 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\cryptsp.dll","0.0000034","","6944"
"10:46:38.2682991 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2683243 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","6944"
"10:46:38.2683324 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000038","","6944"
"10:46:38.2685035 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2685291 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000026","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","6944"
"10:46:38.2685368 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000038","","6944"
"10:46:38.2687207 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\ntmarta.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2687450 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\ntmarta.dll","0.0000025","CreationTime: 4/11/2018 4:34:23 PM, LastAccessTime: 4/11/2018 4:34:23 PM, LastWriteTime: 4/11/2018 4:34:23 PM, ChangeTime: 3/20/2019 7:12:36 PM, FileAttributes: A","6944"
"10:46:38.2687531 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\ntmarta.dll","0.0000034","","6944"
"10:46:38.2689801 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000175","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2690125 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000026","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","6944"
"10:46:38.2690206 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000039","","6944"
"10:46:38.2691909 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000110","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2692147 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000022","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","6944"
"10:46:38.2692224 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000039","","6944"
"10:46:38.2693978 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\NapiNSP.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2694217 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\NapiNSP.dll","0.0000025","CreationTime: 4/11/2018 4:34:40 PM, LastAccessTime: 4/11/2018 4:34:40 PM, LastWriteTime: 4/11/2018 4:34:40 PM, ChangeTime: 3/20/2019 7:06:32 PM, FileAttributes: A","6944"
"10:46:38.2694298 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\NapiNSP.dll","0.0000034","","6944"
"10:46:38.2696657 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\webauthn.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2696926 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","6944"
"10:46:38.2697007 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\webauthn.dll","0.0000039","","6944"
"10:46:38.2698705 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\webauthn.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2698949 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","6944"
"10:46:38.2699025 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\webauthn.dll","0.0000039","","6944"
"10:46:38.2700920 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\webauthn.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2701163 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\webauthn.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 3/20/2019 7:09:36 PM, FileAttributes: A","6944"
"10:46:38.2701244 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\webauthn.dll","0.0000038","","6944"
"10:46:38.2704047 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2704312 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000030","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","6944"
"10:46:38.2704397 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000038","","6944"
"10:46:38.2706112 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2706347 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","6944"
"10:46:38.2706428 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000034","","6944"
"10:46:38.2708177 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\bcrypt.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2708416 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\bcrypt.dll","0.0000026","CreationTime: 3/20/2019 7:38:37 PM, LastAccessTime: 3/20/2019 7:43:53 PM, LastWriteTime: 3/20/2019 7:38:37 PM, ChangeTime: 4/25/2019 8:10:28 PM, FileAttributes: A","6944"
"10:46:38.2708497 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\bcrypt.dll","0.0000039","","6944"
"10:46:38.2710925 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000137","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2711202 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000026","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","6944"
"10:46:38.2711283 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000039","","6944"
"10:46:38.2713011 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2713255 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000025","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","6944"
"10:46:38.2713336 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000034","","6944"
"10:46:38.2715111 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\pnrpnsp.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2715354 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\pnrpnsp.dll","0.0000021","CreationTime: 4/11/2018 4:33:56 PM, LastAccessTime: 4/11/2018 4:33:56 PM, LastWriteTime: 4/11/2018 4:33:56 PM, ChangeTime: 4/25/2019 8:10:46 PM, FileAttributes: A","6944"
"10:46:38.2715431 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\pnrpnsp.dll","0.0000038","","6944"
"10:46:38.2717816 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000123","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2718089 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","6944"
"10:46:38.2718174 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000034","","6944"
"10:46:38.2720081 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2720320 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000030","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","6944"
"10:46:38.2720406 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000038","","6944"
"10:46:38.2722172 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\nlaapi.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2722407 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\nlaapi.dll","0.0000025","CreationTime: 4/11/2018 4:34:32 PM, LastAccessTime: 4/11/2018 4:34:32 PM, LastWriteTime: 4/11/2018 4:34:32 PM, ChangeTime: 3/20/2019 6:51:27 PM, FileAttributes: A","6944"
"10:46:38.2722484 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\nlaapi.dll","0.0000038","","6944"
"10:46:38.2724877 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\mswsock.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2725133 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000021","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","6944"
"10:46:38.2725214 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\mswsock.dll","0.0000034","","6944"
"10:46:38.2727032 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\mswsock.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2727271 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","6944"
"10:46:38.2727352 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\mswsock.dll","0.0000038","","6944"
"10:46:38.2729174 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\mswsock.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2729413 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\mswsock.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:41 PM, FileAttributes: A","6944"
"10:46:38.2729494 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\mswsock.dll","0.0000034","","6944"
"10:46:38.2731845 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\winrnr.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2732105 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000025","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","6944"
"10:46:38.2732186 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\winrnr.dll","0.0000038","","6944"
"10:46:38.2733965 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\winrnr.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2734208 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000026","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","6944"
"10:46:38.2734289 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\winrnr.dll","0.0000035","","6944"
"10:46:38.2736124 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\winrnr.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2736359 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\winrnr.dll","0.0000025","CreationTime: 4/11/2018 4:34:25 PM, LastAccessTime: 4/11/2018 4:34:25 PM, LastWriteTime: 4/11/2018 4:34:25 PM, ChangeTime: 3/20/2019 7:11:09 PM, FileAttributes: A","6944"
"10:46:38.2736440 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\winrnr.dll","0.0000034","","6944"
"10:46:38.2739021 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wshbth.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2739286 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000025","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","6944"
"10:46:38.2739367 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wshbth.dll","0.0000038","","6944"
"10:46:38.2741180 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wshbth.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2741419 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","6944"
"10:46:38.2741500 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wshbth.dll","0.0000034","","6944"
"10:46:38.2743394 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\wshbth.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2743633 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\wshbth.dll","0.0000026","CreationTime: 4/11/2018 4:34:12 PM, LastAccessTime: 4/11/2018 4:34:12 PM, LastWriteTime: 4/11/2018 4:34:12 PM, ChangeTime: 4/25/2019 8:10:37 PM, FileAttributes: A","6944"
"10:46:38.2743710 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\wshbth.dll","0.0000039","","6944"
"10:46:38.2746053 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\sspicli.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2746317 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","6944"
"10:46:38.2746398 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\sspicli.dll","0.0000039","","6944"
"10:46:38.2748182 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\sspicli.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2748425 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000025","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","6944"
"10:46:38.2748502 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\sspicli.dll","0.0000038","","6944"
"10:46:38.2750272 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\sspicli.dll","0.0000116","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2750511 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\sspicli.dll","0.0000026","CreationTime: 3/20/2019 7:39:14 PM, LastAccessTime: 3/20/2019 7:43:57 PM, LastWriteTime: 3/20/2019 7:39:14 PM, ChangeTime: 4/25/2019 8:10:40 PM, FileAttributes: A","6944"
"10:46:38.2750588 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\sspicli.dll","0.0000038","","6944"
"10:46:38.2752926 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\devobj.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2753182 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000026","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","6944"
"10:46:38.2753263 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\devobj.dll","0.0000039","","6944"
"10:46:38.2755034 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\devobj.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2755273 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","6944"
"10:46:38.2755350 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\devobj.dll","0.0000034","","6944"
"10:46:38.2757086 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\devobj.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2757321 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\devobj.dll","0.0000025","CreationTime: 4/11/2018 4:34:22 PM, LastAccessTime: 4/11/2018 4:34:22 PM, LastWriteTime: 4/11/2018 4:34:22 PM, ChangeTime: 3/20/2019 7:12:32 PM, FileAttributes: A","6944"
"10:46:38.2757398 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\devobj.dll","0.0000038","","6944"
"10:46:38.2759740 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\DWrite.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2759996 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000026","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","6944"
"10:46:38.2760077 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\DWrite.dll","0.0000039","","6944"
"10:46:38.2762731 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\DWrite.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2762987 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000030","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","6944"
"10:46:38.2763072 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\DWrite.dll","0.0000039","","6944"
"10:46:38.2764766 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\DWrite.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2765005 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\DWrite.dll","0.0000026","CreationTime: 3/20/2019 7:38:51 PM, LastAccessTime: 3/20/2019 7:38:55 PM, LastWriteTime: 3/20/2019 7:38:51 PM, ChangeTime: 4/25/2019 8:10:30 PM, FileAttributes: A","6944"
"10:46:38.2765082 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\DWrite.dll","0.0000038","","6944"
"10:46:38.2767446 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\mscms.dll","0.0000132","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2767719 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000030","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","6944"
"10:46:38.2767804 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\mscms.dll","0.0000034","","6944"
"10:46:38.2769609 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\mscms.dll","0.0000136","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2769878 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000025","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","6944"
"10:46:38.2769959 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\mscms.dll","0.0000038","","6944"
"10:46:38.2771678 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\mscms.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2771917 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\mscms.dll","0.0000021","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:06:38 PM, FileAttributes: A","6944"
"10:46:38.2771994 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\mscms.dll","0.0000038","","6944"
"10:46:38.2774409 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2774601 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","6944"
"10:46:38.2774678 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000038","","6944"
"10:46:38.2776572 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2776747 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000026","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","6944"
"10:46:38.2776828 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000034","","6944"
"10:46:38.2778560 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\coloradapterclient.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2778731 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\coloradapterclient.dll","0.0000021","CreationTime: 4/11/2018 4:34:10 PM, LastAccessTime: 4/11/2018 4:34:10 PM, LastWriteTime: 4/11/2018 4:34:10 PM, ChangeTime: 3/20/2019 7:05:15 PM, FileAttributes: A","6944"
"10:46:38.2778808 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\coloradapterclient.dll","0.0000034","","6944"
"10:46:38.2781470 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000124","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2781748 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000025","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","6944"
"10:46:38.2781829 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000038","","6944"
"10:46:38.2783638 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000111","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2783885 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000026","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","6944"
"10:46:38.2783962 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000038","","6944"
"10:46:38.2785690 AM","firefox.exe","7904","CreateFile","C:\Windows\System32\clbcatq.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2785929 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Windows\System32\clbcatq.dll","0.0000021","CreationTime: 4/11/2018 4:34:20 PM, LastAccessTime: 4/11/2018 4:34:20 PM, LastWriteTime: 4/11/2018 4:34:20 PM, ChangeTime: 3/20/2019 7:10:40 PM, FileAttributes: A","6944"
"10:46:38.2786006 AM","firefox.exe","7904","CloseFile","C:\Windows\System32\clbcatq.dll","0.0000034","","6944"
"10:46:38.2788404 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000128","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2788600 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","6944"
"10:46:38.2788681 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000038","","6944"
"10:46:38.2790409 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000107","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2790580 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000025","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","6944"
"10:46:38.2790656 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000035","","6944"
"10:46:38.2792286 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000103","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2792448 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000026","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:26 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","6944"
"10:46:38.2792525 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\softokn3.dll","0.0000034","","6944"
"10:46:38.2794851 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000115","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2795030 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000025","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","6944"
"10:46:38.2795107 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000034","","6944"
"10:46:38.2796775 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000102","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2796937 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000021","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","6944"
"10:46:38.2797014 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000034","","6944"
"10:46:38.2798742 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000106","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2798908 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000026","CreationTime: 3/25/2020 10:26:15 AM, LastAccessTime: 3/25/2020 10:26:27 AM, LastWriteTime: 3/25/2020 10:26:28 AM, ChangeTime: 3/25/2020 10:26:28 AM, FileAttributes: A","6944"
"10:46:38.2798985 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\freebl3.dll","0.0000034","","6944"
"10:46:38.2802560 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000120","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2802748 AM","firefox.exe","7904","QueryBasicInformationFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000030","CreationTime: 3/25/2020 10:26:16 AM, LastAccessTime: 3/25/2020 10:26:22 AM, LastWriteTime: 3/25/2020 10:26:26 AM, ChangeTime: 3/25/2020 10:26:26 AM, FileAttributes: A","6944"
"10:46:38.2802833 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly\xul.dll","0.0000035","","6944"
"10:46:38.2803776 AM","firefox.exe","7904","CreateFile","C:\Program Files\Firefox Nightly","0.0000107","Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Directory, Synchronous IO Non-Alert, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","6944"
"10:46:38.2804079 AM","firefox.exe","7904","QueryDirectory","C:\Program Files\Firefox Nightly\xul.dll","0.0000120","Filter: xul.dll, 1: xul.dll","6944"
"10:46:38.2804352 AM","firefox.exe","7904","CloseFile","C:\Program Files\Firefox Nightly","0.0000039","","6944"
"10:46:38.7208121 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\379144A330545D387B35A59DFEBCEBA6972BDC15","0.0001605","Offset: 0, Length: 9,387, Priority: Normal","6572"
"10:46:38.7210489 AM","firefox.exe","7384","SetEndOfFileInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\379144A330545D387B35A59DFEBCEBA6972BDC15","0.0001498","EndOfFile: 9,387","6572"
"10:46:38.7212550 AM","firefox.exe","7384","SetAllocationInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\379144A330545D387B35A59DFEBCEBA6972BDC15","0.0000764","AllocationSize: 9,387","6572"
"10:46:38.7214491 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\cache2\entries\379144A330545D387B35A59DFEBCEBA6972BDC15","0.0000922","","6572"
"10:46:38.7688877 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache","0.0000725","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","7232"
"10:46:38.7697171 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache-new.bin","0.0000483","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7232"
"10:46:38.7700939 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache-new.bin","0.0052297","Desired Access: Generic Write, Read Attributes, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","7232"
"10:46:38.7755373 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache-new.bin","0.0002240","Offset: 0, Length: 16, Priority: Normal","7232"
"10:46:38.7759008 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache-new.bin","0.0000542","Offset: 16, Length: 4, Priority: Normal","7232"
"10:46:38.7760425 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache-new.bin","0.0021022","Offset: 20, Length: 2,645, Priority: Normal","7232"
"10:46:38.7782394 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache-new.bin","0.0003273","","7232"
"10:46:38.7797187 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache-new.bin","0.0000759","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7232"
"10:46:38.7798518 AM","firefox.exe","7384","QueryNetworkOpenInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache-new.bin","0.0000175","CreationTime: 3/26/2020 10:46:38 AM, LastAccessTime: 3/26/2020 10:46:38 AM, LastWriteTime: 3/26/2020 10:46:38 AM, ChangeTime: 3/26/2020 10:46:38 AM, AllocationSize: 4096, EndOfFile: 2665, FileAttributes: A","7232"
"10:46:38.7799196 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache-new.bin","0.0000252","","7232"
"10:46:38.7809283 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache-new.bin","0.0000686","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7232"
"10:46:38.7810473 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache-new.bin","0.0000141","CreationTime: 3/26/2020 10:46:38 AM, LastAccessTime: 3/26/2020 10:46:38 AM, LastWriteTime: 3/26/2020 10:46:38 AM, ChangeTime: 3/26/2020 10:46:38 AM, FileAttributes: A","7232"
"10:46:38.7811066 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache-new.bin","0.0000230","","7232"
"10:46:38.7816638 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache-new.bin","0.0000832","Desired Access: Read Attributes, Delete, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened","7232"
"10:46:38.7818106 AM","firefox.exe","7384","QueryAttributeTagFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache-new.bin","0.0000196","Attributes: A, ReparseTag: 0x0","7232"
"10:46:38.7818929 AM","firefox.exe","7384","QueryBasicInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache-new.bin","0.0000124","CreationTime: 3/26/2020 10:46:38 AM, LastAccessTime: 3/26/2020 10:46:38 AM, LastWriteTime: 3/26/2020 10:46:38 AM, ChangeTime: 3/26/2020 10:46:38 AM, FileAttributes: A","7232"
"10:46:38.7823764 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache","0.0000704","Desired Access: Write Data/Add File, Synchronize, Disposition: Open, Options: , Attributes: n/a, ShareMode: Read, Write, AllocationSize: n/a, OpenResult: Opened","7232"
"10:46:38.7841880 AM","firefox.exe","7384","SetRenameInformationFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache-new.bin","0.0004356","ReplaceIfExists: True, FileName: C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache.bin","7232"
"10:46:38.7846787 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache","0.0000934","","7232"
"10:46:38.7849453 AM","firefox.exe","7384","CloseFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\urlCache.bin","0.0001327","","7232"
"10:46:38.7864621 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache","0.0000645","Desired Access: Read Data/List Directory, Synchronize, Disposition: Create, Options: Directory, Synchronous IO Non-Alert, Open Reparse Point, Attributes: N, ShareMode: Read, Write, AllocationSize: 0","7232"
"10:46:38.7873018 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000516","Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a","7232"
"10:46:38.7876990 AM","firefox.exe","7384","CreateFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0011968","Desired Access: Generic Write, Read Attributes, Disposition: OpenIf, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: n/a, ShareMode: Read, Write, AllocationSize: 0, OpenResult: Created","7232"
"10:46:38.7890891 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0002048","Offset: 0, Length: 16, Priority: Normal","7232"
"10:46:38.7894066 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000426","Offset: 16, Length: 4, Priority: Normal","7232"
"10:46:38.7895158 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0008217","Offset: 20, Length: 6,123, Priority: Normal","7232"
"10:46:38.7904557 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0001076","Offset: 6,143, Length: 9,104, Priority: Normal","7232"
"10:46:38.7906021 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000239","Offset: 15,247, Length: 6,830","7232"
"10:46:38.7906853 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000994","Offset: 22,077, Length: 14,390, Priority: Normal","7232"
"10:46:38.7908171 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000171","Offset: 36,467, Length: 894","7232"
"10:46:38.7908577 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000345","Offset: 37,361, Length: 21,586","7232"
"10:46:38.7909451 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0001161","Offset: 58,947, Length: 34,848, Priority: Normal","7232"
"10:46:38.7910923 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000201","Offset: 93,795, Length: 5,519","7232"
"10:46:38.7911640 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0002240","Offset: 99,314, Length: 121,408, Priority: Normal","7232"
"10:46:38.7914226 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0002031","Offset: 220,722, Length: 160,678","7232"
"10:46:38.7916568 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000580","Offset: 381,400, Length: 34,389","7232"
"10:46:38.7917409 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000341","Offset: 415,789, Length: 25,846","7232"
"10:46:38.7917993 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000149","Offset: 441,635, Length: 3,977","7232"
"10:46:38.7918381 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000316","Offset: 445,612, Length: 22,029","7232"
"10:46:38.7918936 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000375","Offset: 467,641, Length: 31,680","7232"
"10:46:38.7919563 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000359","Offset: 499,321, Length: 4,494","7232"
"10:46:38.7920173 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000162","Offset: 503,815, Length: 1,700","7232"
"10:46:38.7920574 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0001865","Offset: 505,515, Length: 20,641","7232"
"10:46:38.7921667 AM","firefox.exe","7384","ReadFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000213","Offset: 524,288, Length: 32,768, I/O Flags: Non-cached, Paging I/O, Synchronous Paging I/O, Priority: Normal","7232"
"10:46:38.7922750 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000227","Offset: 526,156, Length: 3,308","7232"
"10:46:38.7923224 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000171","Offset: 529,464, Length: 7,003","7232"
"10:46:38.7923634 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000251","Offset: 536,467, Length: 8,480","7232"
"10:46:38.7924133 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000119","Offset: 544,947, Length: 1,230","7232"
"10:46:38.7924487 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000589","Offset: 546,177, Length: 26,034","7232"
"10:46:38.7925336 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000282","Offset: 572,211, Length: 8,564","7232"
"10:46:38.7926155 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0001622","Offset: 580,775, Length: 20,145, Priority: Normal","7232"
"10:46:38.7928109 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000440","Offset: 600,920, Length: 18,320","7232"
"10:46:38.7928830 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000303","Offset: 619,240, Length: 16,187","7232"
"10:46:38.7929385 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000103","Offset: 635,427, Length: 2,651","7232"
"10:46:38.7929718 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000166","Offset: 638,078, Length: 8,234","7232"
"10:46:38.7930123 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000367","Offset: 646,312, Length: 12,829","7232"
"10:46:38.7930742 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000247","Offset: 659,141, Length: 7,082","7232"
"10:46:38.7931237 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000179","Offset: 666,223, Length: 6,595","7232"
"10:46:38.7931924 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000111","Offset: 672,818, Length: 2,280","7232"
"10:46:38.7932449 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000175","Offset: 675,098, Length: 6,247","7232"
"10:46:38.7932871 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","0.0000183","Offset: 681,345, Length: 7,064","7232"
"10:46:38.7933289 AM","firefox.exe","7384","WriteFile","C:\Users\diggles\AppData\Local\Mozilla\Firefox\Profiles\lq450czk.test\startupCache\scriptCache-child-new.bin","","Offset: 688,409, Length: 27,253","7232"
